apache中的奇怪日志,是否被攻击了?
服务器是自己的在公网上,apache一旦启动,access_log就不断增长,但只有很少的请求是我们自己访问的,那些请求是哪来的呢?现在apache总是很慢,是否与这个有关呢?
随便贴一部分吧,access_log中这些请求地址与我们的服务器完全不相干:
46.21.156.110 - - [07/Jul/2012:19:59:01 +0800] "GET http://46.21.156.110/check.php HTTP/1.1" 200 736 "-" "-"
222.147.70.18 - - [07/Jul/2012:19:59:01 +0800] "GET http://video.fc2.com/ginfo.php?mimi=1368c1028a77c0d04086906df7a65af1&v=20120707N4AbrNWr&tk=T1RVME1USTBOVEk9&otag=0&playid=undefined&playlistid=undefined&upid=20120707N4AbrNWr&onLoad=%5Btype%20Function%5D HTTP/1.0" 502 839 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; ja; rv:1.9) Gecko/2008052906 Firefox/3.0"
67.205.96.219 - - [07/Jul/2012:19:58:40 +0800] "GET http://iascen.org/pages/all HTTP/1.0" 404 224 "http://iascen.org/pages/all" "Mozilla/4.0 (compatible; MSIE 5.0; Windows 95) Opera 6.01 [en]"
114.112.37.133 - - [07/Jul/2012:19:59:01 +0800] "GET http://androidsdk.ads.mp.mydas.mobi/getAd.php5?sdkapid=62479&hdid=mmh_3F257A8442837CAF10626415FE6F487D_EC2E9FC3BF1F9DCECAF86E436CE70617D3E8B4C3&ua=Mozilla%2F5.0+%28Linux%3B+U%3B+Android+2.3.5%3B+en-us%3B+SCH-I500+Build%2FGINGERBREAD%29+AppleWebKit%2F533.1+%28KHTML+like+Gecko%29+Version%2F4.0+Mobile+Safari%2F533.1&dm=SCH-I500&dv=Android2.3.5&density=1.0&hpx=480&wpx=854&mmisdk=4.5.0-11.10.11.a&bl=0&plugged=true&space=5186592&conn=gprs&language=en&country=us&video=true&cachedvideo=false&adtype=MMBannerAdTop HTTP/1.1" 200 767 "-" "Java/1.6.0_11"
203.92.73.115 - - [07/Jul/2012:19:59:01 +0800] "GET http://66.196.106.201/?.src=pop&.intl=e1&.help=1&.v=0&.u=c7q3ijt6f92tf&.last=&.last=&promo=&.bypass=&.partner=&pkg=&stepid=&.pd=pop_ver%253D0%2526c%253D%2526ivt%253D%2526sg%253D&.ab=&.done=http%3A//espanol.pop.yahoo.com/sports/%3Fei=UTF-8%26category=sports&login=utomo_55&passwd=1984 HTTP/1.0" 999 1123 "-" "-"
88.198.51.36 - - [07/Jul/2012:19:59:01 +0800] "GET http://www.bing.com HTTP/1.1" 301 - "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.0.3705; .NET CLR 1.1.4322; Media Center PC 3.1; yplus 5.1.04b)"
108.171.205.125 - - [07/Jul/2012:19:59:01 +0800] "GET http://www.tazhao.org/feed.asp?cate=6 HTTP/1.1" 403 728 "http://www.miibeian.gov.cn" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 5.1)"
124.126.141.147 - - [07/Jul/2012:19:59:01 +0800] "GET http://www.baidu.com/ HTTP/1.1" 200 3451 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)"
95.42.194.20 - - [07/Jul/2012:19:59:01 +0800] "CONNECT 205.188.251.36:443 HTTP/1.0" 200 - "-" "-"
176.9.158.207 - - [07/Jul/2012:19:59:02 +0800] "CONNECT fortunatime.com:80 HTTP/1.1" 403 219 "-" "Mozilla/5.0 (Windows NT 6.1 AppleWebKit/535.19 (KHTML, like Gecko Chrome/18.0.1025.165 Safari/535.19 YI"
176.9.158.207 - - [07/Jul/2012:19:59:02 +0800] "CONNECT fortunatime.com:80 HTTP/1.1" 403 219 "-" "Mozilla/5.0 (Windows NT 6.1 AppleWebKit/535.19 (KHTML, like Gecko Chrome/18.0.1025.165 Safari/535.19 YI"
114.113.74.144 - - [07/Jul/2012:19:59:02 +0800] "GET http://www.baidu.com/ HTTP/1.1" 200 3451 "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322)"
110.234.103.170 - - [07/Jul/2012:19:58:47 +0800] "POST http://www.silkroad4arab.com/ HTTP/1.1" 502 449 "-" "-"
119.161.183.202 - - [07/Jul/2012:19:59:02 +0800] "GET http://req.adsmogo.net/exrequest.ashx?appid=6e335449eb7341c9b626733927c9d077&nid=893c7a6437ac4776a2fd8de5e1d874b8&type=33&uuid=632fc3be5f20482c91e47b7299c990df&client=2&adtype=1&country=en HTTP/1.1" 200 - "-" "Mozilla/5.0 (Linux; U; Android 2.2; de-de; GT-I9000 Build/FROYO) AppleWebKit/533.1 (KHTML, like Gecko) Version/4.0 Mobile Safari/533.1"
62.109.21.77 - - [07/Jul/2012:19:59:00 +0800] "GET http://internet.yandex.ru/ HTTP/1.1" 200 30054 "-" "PycURL/7.21.3"
46.4.71.16 - - [07/Jul/2012:19:58:59 +0800] "GET http://www.arisa-flamenca.jp/tree1212.php?n=642 HTTP/1.1" 502 484 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)"
194.143.144.182 - - [07/Jul/2012:19:59:01 +0800] "POST http://www.museumprofessionals.org/forum/register.php?do=addmember HTTP/1.0" 200 1074 "http://www.museumprofessionals.org/forum/register.php" "Mozilla/4.0 (compatible; Powermarks/3.5; Windows 95/98/2000/NT)"
67.205.96.219 - - [07/Jul/2012:19:59:01 +0800] "GET http://hermesbar.net/pages/all HTTP/1.0" 404 389 "http://hermesbar.net/pages/all" "Mozilla/1.22 (compatible; MSIE 2.0d; Windows NT)"
113.240.21.159 - - [07/Jul/2012:19:59:01 +0800] "GET http://bbs.mumayi.com/forum.php?mod=viewthread&tid=767672 HTTP/1.0" 200 67903 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; zh-CN; rv:1.7.6)"
114.113.76.119 - - [07/Jul/2012:19:59:02 +0800] "GET http://www.baidu.com/s?wd=%d6%ce%c1%c6%b0%d7%f1%b0%b7%e7%b5%c4%d2%bd%d4%ba&rsv_bp=0&rsv_spt=3&inputT=2301 HTTP/1.1" 200 14419 "http://www.baidu.com/" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)"
46.165.192.134 - - [07/Jul/2012:19:59:02 +0800] "POST http://sports.sbobet.com/web_root/public/odds/frame-data.aspx HTTP/1.1" 200 1401 "http://sports.sbobet.com/web_root/public/odds/main.aspx?sport=1&page=2&mode=1" "Mozilla/5.0 (Windows NT 6.0; rv:6.0) Gecko/ /6.0"
124.126.184.158 - - [07/Jul/2012:19:59:01 +0800] "GET http://www.baidu.com/s?wd=%e3%f2%d6%dd%c4%d0%bf%c6%d2%bd%d4%ba%c4%c4%bc%d2%ba%c3&rsv_bp=0&rsv_spt=3&inputT=2229 HTTP/1.1" 200 14162 "http://www.baidu.com/" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)"
109.200.6.218 - - [07/Jul/2012:19:59:01 +0800] "GET http://www.google.com/search?as_q=%22%26%231054%3B%26%231090%3B%26%231079%3B%26%231099%3B%26%231074%3B%26%231099%3B%22+%22%26%231044%3B%26%231086%3B%26%231073%3B%26%231072%3B%26%231074%3B%26%231080%3B%26%231090%3B%26%231100%3B+%26%231079%3B%26%231072%3B%26%231087%3B%26%231080%3B%26%231089%3B%26%231100%3B%22+%22%26%231048%3B%26%231084%3B%26%231103%3B:+%2A%22+%22%26%231040%3B%26%231076%3B%26%231088%3B%26%231077%3B%26%231089%3B+%26%231101%3B%26%231083%3B%26%231077%3B%26%231082%3B%26%231090%3B%26%231088%3B%26%231086%3B%26%231085%3B%26%231085%3B%26%231086%3B%26%231081%3B+%26%231087%3B%26%231086%3B%26%231095%3B%26%231090%3B%26%231099%3B:%22+%22%26%231057%3B%26%231086%3B%26%231086%3B%26%231073%3B%26%231097%3B%26%231077%3B%26%231085%3B%26%231080%3B%26%231077%3B:+%2A%22+%26%231087%3B%26%231080%3B%26%231088%3B%26%231072%3B%26%231084%3B%26%231080%3B%26%231076%3B%26%231072%3B%26%231083%3B%26%231100%3B%26%231085%3B%26%231099%3B%26%231077%3B&num=100&hl=en&output=ie&filter=0 HTTP/1.0" 302 1661 "http://www.google.com/search?as_q=%22%26%231054%3B%26%231090%3B%26%231079%3B%26%231099%3B%26%231074%3B%26%231099%3B%22+%22%26%231044%3B%26%231086%3B%26%231073%3B%26%231072%3B%26%231074%3B%26%231080%3B%26%231090%3B%26%231100%3B+%26%231079%3B%26%231072%3B%26%231087%3B%26%231080%3B%26%231089%3B%26%231100%3B%22+%22%26%231048%3B%26%231084%3B%26%231103%3B:+%2A%22+%22%26%231040%3B%26%231076%3B%26%231088%3B%26%231077%3B%26%231089%3B+%26%231101%3B%26%231083%3B%26%231077%3B%26%231082%3B%26%231090%3B%26%231088%3B%26%231086%3B%26%231085%3B%26%231085%3B%26%231086%3B%26%231081%3B+%26%231087%3B%26%231086%3B%26%231095%3B%26%231090%3B%26%231099%3B:%22+%22%26%231057%3B%26%231086%3B%26%231086%3B%26%231073%3B%26%231097%3B%26%231077%3B%26%231085%3B%26%231080%3B%26%231077%3B:+%2A%22+%26%231087%3B%26%231080%3B%26%231088%3B%26%231072%3B%26%231084%3B%26%231080%3B%26%231076%3B%26%231072%3B%26%231083%3B%26%231100%3B%26%231085%3B%26%231099%3B%26%231077%3B&num=100&hl=en&output=ie&filter=0" "Mozilla/4.0 (compatible; MSIE 5.0; Windows 95) Opera 6.01 [en]"
94.244.138.231 - - [07/Jul/2012:19:59:01 +0800] "POST http://darkorbit.bigpoint.com:80/index.es HTTP/1.1" 200 20 "http://darkorbit.bigpoint.com/index.es" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/14.0.835.202 Safari/535.1"