Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Beispiel1:
- OSSEC HIDS Notification.
- 2016 Feb 07 12:30:07
- Received From: mail->/var/log/apache2/error.log
- Rule: 1003 fired (level 13) -> "Non standard syslog message (size too large)."
- Portion of the log(s):
- [Sun Feb 07 12:30:06.204552 2016] [core:error] [pid 19109] (36)File name too long: [client 51.255.65.45:40023] AH00036: access to /http%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother failed (filesystem path '/var/www/html/friendica.anonsys.net/http%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fp
- rofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprofile%252Fstop_big_brother%3Fzrl%3Dhttp%253A%252F%252Fsoz-net.neue-mitte-mv.de%252Fprof
- --END OF NOTIFICATION
- Beispiel 2:
- OSSEC HIDS Notification.
- 2016 Feb 07 12:40:50
- Received From: mail->/var/log/apache2/error.log
- Rule: 1003 fired (level 13) -> "Non standard syslog message (size too large)."
- Portion of the log(s):
- [Sun Feb 07 12:40:48.825860 2016] [core:error] [pid 20907] (36)File name too long: [client 51.255.65.12:25785] AH00036: access to /https%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%2525252525252Fprofile%2525252525252Fx%2525252525253Fzrl%2525252525253Dhttps%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%2525252525252Fprofile%2525252525252Fx%2525252525253Fzrl%2525252525253Dhttps%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%2525252525252Fprofile%2525252525252Fx%2525252525253Fzrl%2525252525253Dhttps%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%2525252525252Fprofile%2525252525252Fx failed (filesystem path '/var/www/html/friendica.anonsys.net/https%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%2525252525252Fprofile%2525252525252Fx%2525252525253Fzrl%2525252525253Dhttps%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%25252525
- 25252Fprofile%2525252525252Fx%2525252525253Fzrl%2525252525253Dhttps%2525252525253A%2525252525252F%2525252525252Ffriendica.ambientedigital.org%2525252525252Fprofile%2525252525252Fx%2525252525253Fzrl%2525252525253Dhttps%2525252525253A%2525252525252F%2525252525
- --END OF NOTIFICATION
- Beispiel 3:
- OSSEC HIDS Notification.
- 2016 Feb 07 13:28:56
- Received From: mail->/var/log/apache2/error.log
- Rule: 1003 fired (level 13) -> "Non standard syslog message (size too large)."
- Portion of the log(s):
- [Sun Feb 07 13:28:56.398599 2016] [core:error] [pid 27446] (36)File name too long: [client 51.255.65.46:44397] AH00036: access to /http%25252525252525253A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525252525252Fneue-mitte_mv%25253Fzrl%25253Dhttp%25252525252525253A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525252525252Fneue-mitte_mv%25253Fzrl%25253Dhttp%25252525252525253A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525252525252Fneue-mitte_mv%25253Fzrl%25253Dhttp%25252525252525253A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525252525252Fneue-mitte_mv failed (filesystem path '/var/www/html/friendica.anonsys.net/http%25252525252525253A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525252525252Fneue-mitte_mv%25253Fzrl%25253Dhttp%25252525252525253
- A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525252525252Fneue-mitte_mv%25253Fzrl%25253Dhttp%25252525252525253A%25252525252525252F%25252525252525252Fsoz-net.neue-mitte-mv.de%25252525252525252Fprofile%25252525
- --END OF NOTIFICATION
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement