Apache-2.2
攻擊?日誌(網路掃描)中的第二個狀態程式碼(286、289)是什麼?
今天瀏覽我的評估日誌,我發現有很多條目試圖訪問頁面。(不存在)。像
- robots.txt(我知道這是做什麼用的)
- 申請
- favicon.ico(我知道這是做什麼用的)
- ETC
因此,顯然 a
404
已返回,但還有其他 3 位程式碼(?)以及 404。ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 312 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 285 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 286 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 287 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 288 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 289 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 290 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 295 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 296 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 297 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 298 ip-address - - [date & time] "GET /some/file_OR_folder HTTP/1.1" 404 301
搜尋給了我這個:ossec-OSSEC Wiki檢測到的攻擊樣本:據說是
a web scan detected by ossec (looking for Wordpress, xmlrpc and awstats)
。上述日誌中的第二個狀態碼(286、289)是什麼?
它們不是狀態程式碼,它們是以字節為單位的響應長度。