[Linux]本番サーバにPHPMyAdminをインストール時、気をつけること

カテゴリ: Linux

WebサーバのログにPHPMyAdminがインストールされているかスキャンしている不正なアクセスがあったのでメモ代わりに残しておきます。

以下のようにありがちなパスを片っ端にスキャンされているので、パスワードを掛けておくのは当然ですが、/phpMyAdminなどの類推されやすいディレクトリ名を使うのは避けた方がよさそうです。

118.200.217.29 - - [23/Sep/2017:09:19:04 +0000] "HEAD http://x.x.x.x:80/mysql/admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:04 +0000] "HEAD http://x.x.x.x:80/mysql/dbadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:04 +0000] "HEAD http://x.x.x.x:80/mysql/sqlmanager/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:05 +0000] "HEAD http://x.x.x.x:80/mysql/mysqlmanager/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:05 +0000] "HEAD http://x.x.x.x:80/phpmyadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:05 +0000] "HEAD http://x.x.x.x:80/phpMyadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:05 +0000] "HEAD http://x.x.x.x:80/phpMyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:06 +0000] "HEAD http://x.x.x.x:80/phpmyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:06 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:06 +0000] "HEAD http://x.x.x.x:80/phpmyadmin3/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:07 +0000] "HEAD http://x.x.x.x:80/phpmyadmin4/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:07 +0000] "HEAD http://x.x.x.x:80/2phpmyadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:07 +0000] "HEAD http://x.x.x.x:80/phpmy/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:08 +0000] "HEAD http://x.x.x.x:80/phppma/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:08 +0000] "HEAD http://x.x.x.x:80/myadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:08 +0000] "HEAD http://x.x.x.x:80/shopdb/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:09 +0000] "HEAD http://x.x.x.x:80/MyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:09 +0000] "HEAD http://x.x.x.x:80/program/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:09 +0000] "HEAD http://x.x.x.x:80/PMA/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:10 +0000] "HEAD http://x.x.x.x:80/dbadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:10 +0000] "HEAD http://x.x.x.x:80/pma/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:10 +0000] "HEAD http://x.x.x.x:80/db/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:10 +0000] "HEAD http://x.x.x.x:80/admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:11 +0000] "HEAD http://x.x.x.x:80/mysql/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:11 +0000] "HEAD http://x.x.x.x:80/database/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:11 +0000] "HEAD http://x.x.x.x:80/db/phpmyadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:12 +0000] "HEAD http://x.x.x.x:80/db/phpMyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:12 +0000] "HEAD http://x.x.x.x:80/sqlmanager/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:12 +0000] "HEAD http://x.x.x.x:80/mysqlmanager/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:13 +0000] "HEAD http://x.x.x.x:80/php-myadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:13 +0000] "HEAD http://x.x.x.x:80/phpmy-admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:13 +0000] "HEAD http://x.x.x.x:80/mysqladmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:14 +0000] "HEAD http://x.x.x.x:80/mysql-admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:14 +0000] "HEAD http://x.x.x.x:80/admin/phpmyadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:14 +0000] "HEAD http://x.x.x.x:80/admin/phpMyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:15 +0000] "HEAD http://x.x.x.x:80/admin/sysadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:15 +0000] "HEAD http://x.x.x.x:80/admin/sqladmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:15 +0000] "HEAD http://x.x.x.x:80/admin/db/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:16 +0000] "HEAD http://x.x.x.x:80/admin/web/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:16 +0000] "HEAD http://x.x.x.x:80/admin/pMA/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:16 +0000] "HEAD http://x.x.x.x:80/mysql/pma/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:16 +0000] "HEAD http://x.x.x.x:80/mysql/db/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:17 +0000] "HEAD http://x.x.x.x:80/mysql/web/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:17 +0000] "HEAD http://x.x.x.x:80/mysql/pMA/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:17 +0000] "HEAD http://x.x.x.x:80/sql/phpmanager/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:18 +0000] "HEAD http://x.x.x.x:80/sql/php-myadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:18 +0000] "HEAD http://x.x.x.x:80/sql/phpmy-admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:18 +0000] "HEAD http://x.x.x.x:80/sql/sql/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:19 +0000] "HEAD http://x.x.x.x:80/sql/myadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:19 +0000] "HEAD http://x.x.x.x:80/sql/webadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:19 +0000] "HEAD http://x.x.x.x:80/sql/sqlweb/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:20 +0000] "HEAD http://x.x.x.x:80/sql/websql/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:20 +0000] "HEAD http://x.x.x.x:80/sql/webdb/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:20 +0000] "HEAD http://x.x.x.x:80/sql/sqladmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:21 +0000] "HEAD http://x.x.x.x:80/sql/sql-admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:21 +0000] "HEAD http://x.x.x.x:80/sql/phpmyadmin2/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:21 +0000] "HEAD http://x.x.x.x:80/sql/phpMyAdmin2/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:24 +0000] "HEAD http://x.x.x.x:80/sql/phpMyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:24 +0000] "HEAD http://x.x.x.x:80/db/myadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:24 +0000] "HEAD http://x.x.x.x:80/db/webadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:25 +0000] "HEAD http://x.x.x.x:80/db/dbweb/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:25 +0000] "HEAD http://x.x.x.x:80/db/websql/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:25 +0000] "HEAD http://x.x.x.x:80/db/webdb/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:26 +0000] "HEAD http://x.x.x.x:80/db/dbadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:26 +0000] "HEAD http://x.x.x.x:80/db/db-admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:26 +0000] "HEAD http://x.x.x.x:80/db/phpmyadmin3/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:27 +0000] "HEAD http://x.x.x.x:80/db/phpMyAdmin3/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:27 +0000] "HEAD http://x.x.x.x:80/db/phpMyAdmin-3/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:27 +0000] "HEAD http://x.x.x.x:80/administrator/phpmyadmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:27 +0000] "HEAD http://x.x.x.x:80/administrator/phpMyAdmin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:28 +0000] "HEAD http://x.x.x.x:80/administrator/db/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:28 +0000] "HEAD http://x.x.x.x:80/administrator/web/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:28 +0000] "HEAD http://x.x.x.x:80/administrator/pma/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:29 +0000] "HEAD http://x.x.x.x:80/administrator/PMA/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:29 +0000] "HEAD http://x.x.x.x:80/administrator/admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:29 +0000] "HEAD http://x.x.x.x:80/phpMyAdmin2/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:30 +0000] "HEAD http://x.x.x.x:80/phpMyAdmin3/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:30 +0000] "HEAD http://x.x.x.x:80/phpMyAdmin4/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:30 +0000] "HEAD http://x.x.x.x:80/phpMyAdmin-3/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:30 +0000] "HEAD http://x.x.x.x:80/php-my-admin/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:31 +0000] "HEAD http://x.x.x.x:80/PMA2011/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:31 +0000] "HEAD http://x.x.x.x:80/PMA2012/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:31 +0000] "HEAD http://x.x.x.x:80/PMA2013/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:32 +0000] "HEAD http://x.x.x.x:80/PMA2014/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:32 +0000] "HEAD http://x.x.x.x:80/PMA2015/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:32 +0000] "HEAD http://x.x.x.x:80/PMA2016/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:33 +0000] "HEAD http://x.x.x.x:80/PMA2017/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:33 +0000] "HEAD http://x.x.x.x:80/PMA2018/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:33 +0000] "HEAD http://x.x.x.x:80/pma2011/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:34 +0000] "HEAD http://x.x.x.x:80/pma2012/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:34 +0000] "HEAD http://x.x.x.x:80/pma2013/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:34 +0000] "HEAD http://x.x.x.x:80/pma2014/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:34 +0000] "HEAD http://x.x.x.x:80/pma2015/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:35 +0000] "HEAD http://x.x.x.x:80/pma2016/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:35 +0000] "HEAD http://x.x.x.x:80/pma2017/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:35 +0000] "HEAD http://x.x.x.x:80/pma2018/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:35 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2011/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:36 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2012/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:36 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2013/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:37 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2014/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:37 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2016/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:38 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2017/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:39 +0000] "HEAD http://x.x.x.x:80/phpmyadmin2018/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
118.200.217.29 - - [23/Sep/2017:09:19:40 +0000] "HEAD http://x.x.x.x:80/phpmanager/ HTTP/1.1" 404 0 "-" "Mozilla/5.0 Jorgee" "-"
こちらもおススメ

コメントを残す

メールアドレスが公開されることはありません。