コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2023/12/13 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2023/12/13分です。

特徴
共通

GPONルータの脆弱性を狙うアクセス
zgrabによるスキャン行為
.jsへのスキャン行為
/.envへのスキャン行為

Location:JP

phpMyAdminへのスキャン行為
5.188.210.227に関する不正通信

を確認しました。

Location:US

Apache HTTP Serverの脆弱性(CVE-2021-41773)を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
IDBTE4M CODE87によるスキャン行為
/.gitへのスキャン行為
phpMyAdminへのスキャン行為

を確認しました。

Location:UK

Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
WordPressへのスキャン行為
phpMyAdminへのスキャン行為
Gh0stRATのような動き

を確認しました。

Location:SG

Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
curlによるスキャン行為
infrawatchによるスキャン行為

を確認しました。

アクセス数推移

JP:総アクセス数:72 (前日比:-154)
US:総アクセス数:139 (前日比:35)
UK:総アクセス数:188 (前日比:87)
SG:総アクセス数:93 (前日比:11)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
2 3.9.179.193 United States
1 5.78.88.164 Germany
1 5.188.210.227 Russia
1 15.204.170.50 United States
2 31.7.58.42 Panama
1 34.140.241.64 United States
1 45.56.108.128 United States
2 45.91.169.251 Israel
3 61.219.11.155 Taiwan
1 65.49.1.70 United States
1 65.49.1.75 United States
1 65.49.1.77 United States
1 71.6.134.232 United States
1 84.54.51.127 Bulgaria
14 101.32.192.203 Singapore
1 107.170.232.50 United States
10 135.125.244.48 France
4 135.125.246.189 France
3 139.155.242.161 China
1 139.170.203.206 China
1 146.190.106.242 United States
2 159.223.138.47 United States
1 167.99.207.156 United States
1 172.105.128.11 United States
1 172.105.128.13 United States
1 178.128.164.155 United States
1 184.105.247.194 United States
1 185.100.87.136 Seychelles
1 185.180.140.5 Portugal
4 185.224.128.142 Netherlands
1 188.165.52.169 France
1 192.155.90.220 United States
2 198.235.24.8 United States
2 198.235.24.58 United States

UserAgent一覧

件数 UserAgent
1 'Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.1.2 Safari/605.1.15'
21 -
3 Go-http-client/1.1
1 Mozilla/5.0 (Linux; Android 7.0; LGL84VL Build/NRD90U) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.125 Mobile Safari/537.36
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
3 Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3464.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
14 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 YaBrowser/23.1.2.987 Yowser/2.5 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.41
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36
16 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:109.0) Gecko/20100101 Firefox/109.0
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 zgrab/0.x

リクエスト内容一覧

件数 Method Request Protocol
1 \x16\x03\x01\x01\x07\x01
2 \x16\x03\x01\x01\xfa\x01
1 \x16\x03\x01\x02
15 \x16\x03\x01
2 ``
1 CONNECT google[.]com:443 HTTP/1.1
18 GET /.env HTTP/1.1
1 GET /ReportServer HTTP/1.1
1 GET /Temporary_Listen_Addresses/ HTTP/1.1
1 GET /db_backup/ HTTP/1.1
2 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /imgs/ms_check_license HTTP/1.1
1 GET /js/NewWindow_2_all.js HTTP/1.1
2 GET /phpmyadmin/index.php HTTP/1.1
1 GET /phpmyadmin4.8.5/index.php HTTP/1.1
1 GET /pmd/index.php HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
1 GET /var/lib/mysql HTTP/1.1
1 GET /webui/ HTTP/1.1
1 GET http[:]//5[.]188[.]210[.]227/echo.php HTTP/1.1
14 HEAD /Core/Skin/Login.aspx HTTP/1.1
2 POST /boaform/admin/formLogin HTTP/1.1
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
2 3.9.165.157 United States
1 5.78.88.164 Germany
1 13.83.14.73 United States
1 15.204.170.50 United States
2 31.7.58.42 Panama
4 38.75.137.31 United States
2 45.79.128.205 United States
1 45.79.172.21 United States
1 45.79.181.179 United States
2 45.91.169.251 Israel
1 52.81.61.158 China
1 52.81.239.40 China
8 54.36.115.221 France
5 54.37.79.75 France
1 54.223.58.116 China
1 65.49.1.113 United States
1 65.49.1.114 United States
1 65.49.1.120 United States
1 68.69.186.30 United States
2 68.183.229.66 United States
2 78.153.140.221 Russia
2 83.97.73.87 Germany
2 84.54.51.29 Bulgaria
1 84.54.51.127 Bulgaria
2 89.36.76.131 Romania
24 90.151.171.106 Russia
6 90.151.171.108 Russia
1 91.92.243.232 Bulgaria
1 94.156.68.3 Bulgaria
9 95.214.235.169 Ukraine
1 103.207.38.26 Vietnam
1 124.235.138.16 China
1 139.59.101.104 Singapore
1 139.59.186.46 Singapore
2 146.190.47.101 United States
2 159.223.138.47 United States
2 162.142.125.14 United States
2 162.142.125.215 United States
2 167.71.217.188 United States
2 167.94.138.52 United States
2 167.94.138.124 United States
2 167.94.145.57 United States
2 167.94.146.52 United States
2 167.248.133.50 United States
1 172.104.11.4 United States
2 172.104.11.34 United States
2 172.104.11.46 United States
2 172.104.11.51 United States
1 172.105.128.11 United States
1 180.149.125.169 Mongolia
1 185.180.140.6 Portugal
1 185.224.128.191 Netherlands
1 192.155.90.118 United States
1 192.155.90.220 United States
1 192.241.204.39 United States
2 193.35.18.187 Bulgaria
1 198.199.113.61 United States
2 199.45.155.18 United States
2 205.210.31.84 United States
2 205.210.31.140 United States
2 205.210.31.145 United States
1 216.218.206.68 United States

UserAgent一覧

件数 UserAgent
43 -
2 Abcd
6 Go-http-client/1.1
2 IDBTE4M CODE87
1 Mozilla/5.0 (Linux; Android 5.1; Lenovo P70-A) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; rv:108.0) Gecko/20100101 Firefox/108.0
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 YaBrowser/19.7.2.455 Yowser/2.5 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36
15 Mozilla/5.0 (Windows NT 6.1; rv:16.0) Gecko/20100101 Firefox/16.0 (+https[:]//best-proxies.ru/faq/#from) Z73802194750Q1
15 Mozilla/5.0 (Windows NT 6.1; rv:16.0) Gecko/20100101 Firefox/16.0 (+https[:]//best-proxies.ru/faq/#from)
27 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:109.0) Gecko/20100101 Firefox/110.0
3 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
8 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 zgrab/0.x
3 Mozilla/5.0

リクエスト内容一覧

件数 Method Request Protocol
2 \"?><DVR Platform=\"Hi3520\"><![CDATA[<?xml
1 \x16\x03\x01\x01H\x01
2 \x16\x03\x01\x01\x07\x01
1 \x16\x03\x01\x01\xfb\x01
1 \x16\x03\x01\x02
23 \x16\x03\x01
2 ``
3 CONNECT api[.]ipify[.]org:443 HTTP/1.1
5 CONNECT check.best-proxies[.]ru:443 HTTP/1.1
2 CONNECT checkip[.]amazonaws[.]com:443 HTTP/1.1
2 CONNECT fingerprints[.]bablosoft[.]com:443 HTTP/1.1
3 CONNECT google[.]com:443 HTTP/1.1
1 CONNECT ip[.]bablosoft[.]com:443 HTTP/1.1
2 CONNECT v4[.]ident[.]me:443 HTTP/1.1
2 GET ../../proc/ HTTP
1 GET /.DS_Store HTTP/1.1
31 GET /.env HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /.vscode/sftp.json HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /ReportServer HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
3 GET /cdn-cgi/trace HTTP/1.1
1 GET /cluster/cluster/ HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
10 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /js/NewWindow_2_all.js HTTP/1.1
1 GET /phpmyadmin/index.php HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /stalker_portal/server/tools/auth_simple.php HTTP/1.1
1 GET /webui/ HTTP/1.1
3 GET http[:]//api[.]ipify[.]org?Z73802194750Q1 HTTP/1.1
5 GET http[:]//check[.]best-proxies.ru/ip.php?Z73802194750Q1 HTTP/1.1
2 GET http[:]//checkip[.]amazonaws[.]com?Z73802194750Q1 HTTP/1.1
2 GET http[:]//fingerprints[.]bablosoft[.]com/ip?Z73802194750Q1 HTTP/1.1
1 GET http[:]//ip[.]bablosoft[.]com/?Z73802194750Q1 HTTP/1.1
2 GET http[:]//v4[.]ident[.]me?Z73802194750Q1 HTTP/1.1
3 POST /boaform/admin/formLogin HTTP/1.1
1 POST /cgi-bin/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/bin/sh HTTP/1.1
1 POST /cn/cmd HTTP/1.1
1 POST /dvr/cmd HTTP/1.1
8 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
2 13.40.170.118 United States
1 31.7.58.42 Panama
1 34.77.74.73 United States
90 42.192.53.183 China
1 45.33.80.243 United States
1 45.79.172.21 United States
2 45.79.181.179 United States
2 45.79.181.251 United States
4 54.37.79.75 France
13 57.129.23.166 France
1 64.62.197.56 United States
1 64.62.197.64 United States
1 64.62.197.69 United States
1 64.62.197.76 United States
1 66.240.192.82 United States
1 66.240.205.34 United States
1 68.69.186.30 United States
2 78.153.140.221 Russia
1 80.66.88.204 Russia
2 83.97.73.87 Germany
1 84.54.51.29 Bulgaria
1 84.54.51.127 Bulgaria
6 95.214.235.169 Ukraine
1 104.131.144.38 United States
1 139.59.101.104 Singapore
1 159.65.57.87 United States
2 159.223.138.47 United States
14 162.222.204.54 United States
1 162.243.144.29 United States
2 167.94.138.51 United States
2 167.94.145.56 United States
1 167.99.204.208 United States
2 167.248.133.182 United States
2 172.104.11.4 United States
1 172.105.128.11 United States
1 172.105.128.13 United States
2 178.128.61.189 United States
1 180.149.125.166 Mongolia
1 185.180.140.5 Portugal
1 185.192.16.53 Netherlands
6 185.224.128.142 Netherlands
1 185.224.128.191 Netherlands
2 192.155.90.220 United States
1 193.35.18.187 Bulgaria
1 197.253.239.97 Morocco
2 205.210.31.34 United States
2 205.210.31.49 United States

UserAgent一覧

件数 UserAgent
124 -
5 Go-http-client/1.1
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:109.0) Gecko/20100101 Firefox/110.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 OPR/95.0.0.0
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
16 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
1 Mozilla/5.0 (X11; CrOS x86_64 11647.154.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.114 Safari/537.36
25 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
3 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 zgrab/0.x
2 Mozilla/5.0

リクエスト内容一覧

件数 Method Request Protocol
1 Gh0st\xad
1 \x03
1 \x16\x03\x01\x01H\x01
1 \x16\x03\x01\x01\x07\x01
2 \x16\x03\x01\x01\xfc\x01
22 \x16\x03\x01
2 ``
2 CONNECT google[.]com:443 HTTP/1.1
1 GET ../../proc/ HTTP
25 GET /.env HTTP/1.1
1 GET /2018/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /ReportServer HTTP/1.1
1 GET /Temporary_Listen_Addresses/ HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1
2 GET /cdn-cgi/trace HTTP/1.1
1 GET /cluster/cluster/ HTTP/1.1
1 GET /cms/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
2 GET /db_backup/ HTTP/1.1
4 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /js/NewWindow_2_all.js HTTP/1.1
1 GET /media/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /shop/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /site/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /stalker_portal/server/tools/auth_simple.php HTTP/1.1
1 GET /test/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /var/lib/mysql HTTP/1.1
1 GET /web/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /webui/ HTTP/1.1
1 GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp1/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp2/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /xmlrpc.php?rsd HTTP/1.1
2 GET http[:]//132[.]145[.]66[.]34:80/MyAdmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/PHPMYADMIN/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/SQL/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/_phpMyAdmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/admin/phpmyadmin/scripts/setup.txt HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/admin/pma/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/admin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/db/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/dbadmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/myadmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/mysql-admin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/mysql/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/mysqladmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/mysqlmanager/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/php-myadmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/php/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.0/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.1.2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.3/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.4/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.7/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.11.9.2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.5.4/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.5.5-pl1/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.5.5/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.5.7-pl1/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2.8.0.2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin-2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin2/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpMyAdmin3/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpma/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpmanager/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpmy-admin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/phpmyadmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/pma/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/sqlmanager/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/sqlweb/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/web/phpMyAdmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/webadmin/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/webdb/scripts/setup.php HTTP/1.0
2 GET http[:]//132[.]145[.]66[.]34:80/websql/scripts/setup.php HTTP/1.0
1 GET http[:]//dyn[.]epicgifs[.]net/test6956.php HTTP/1.1
2 POST /boaform/admin/formLogin HTTP/1.1
3 PRI * HTTP/2.0
Location:SG

送信元IPアドレス一覧

件数 送信元IPアドレス
1 5.78.88.164 Germany
1 20.55.53.144 United States
1 23.94.101.120 United States
2 31.7.58.42 Panama
19 35.178.167.254 United States
2 45.33.80.243 United States
1 45.56.108.128 United States
1 45.79.128.205 United States
1 45.79.181.104 United States
1 45.79.181.223 United States
1 45.227.254.8 Belize
6 54.36.115.221 France
7 54.37.79.75 France
2 62.210.90.216 France
1 65.49.20.68 United States
1 68.69.186.30 United States
2 78.153.140.219 Russia
2 83.97.73.87 Germany
1 84.54.51.29 Bulgaria
1 84.54.51.127 Bulgaria
1 91.92.243.232 Bulgaria
1 94.156.68.3 Bulgaria
8 95.214.235.169 Ukraine
1 103.13.211.242 Japan
1 103.207.38.26 Vietnam
1 107.170.239.40 United States
2 162.142.125.214 United States
3 172.104.11.51 United States
1 172.105.128.13 United States
1 180.149.125.171 Mongolia
3 184.105.139.67 United States
3 185.134.22.149 United Kingdom
1 185.180.140.5 Portugal
2 185.224.128.142 Netherlands
1 185.224.128.191 Netherlands
1 192.155.90.118 United States
2 192.155.90.220 United States
1 192.241.216.41 United States
1 193.35.18.187 Bulgaria
2 205.210.31.143 United States
2 205.210.31.245 United States

UserAgent一覧

件数 UserAgent
8 'Cloud mapping experiment. Contact research@pdrlabs.net'
34 -
3 Go-http-client/1.1
2 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.41
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/112.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.117 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:107.0) Gecko/20100101 Firefox/107.0
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0
1 Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36
24 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
3 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0
1 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
3 Mozilla/5.0 infrawatch/0.1
2 Mozilla/5.0 zgrab/0.x
1 Mozilla/5.0
1 curl/7.81.0

リクエスト内容一覧

件数 Method Request Protocol
1 \x03
1 \x16\x03\x01\x01H\x01
28 \x16\x03\x01
1 ``
2 CONNECT google[.]com:443 HTTP/1.1
2 GET ../../proc/ HTTP
1 GET /+CSCOE+/logon.html HTTP/1.1
26 GET /.env HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /Ep1v HTTP/1.1
1 GET /GWqN HTTP/1.1
1 GET /ReportServer HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /admin/index.html HTTP/1.1
1 GET /cgi-bin/login.cgi HTTP/1.1
1 GET /config/getuser?index=0 HTTP/1.1
1 GET /db_backup/ HTTP/1.1
4 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /gui HTTP/1.1
1 GET /index.html HTTP/1.1
1 GET /js/NewWindow_2_all.js HTTP/1.1
1 GET /login.jsp HTTP/1.1
1 GET /logon.htm HTTP/1.1
1 GET /manage/account/login HTTP/1.1
1 GET /me9oPYg5yJljp3bvs6D1qfOKS7p HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /stalker_portal/server/tools/auth_simple.php HTTP/1.1
1 GET /systembc/password.php HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
1 GET /webui/ HTTP/1.1
1 HEAD / HTTP/1.1
3 POST /boaform/admin/formLogin HTTP/1.1
1 PRI * HTTP/2.0