美文网首页
一些常见黑客漏洞扫描

一些常见黑客漏洞扫描

作者: ittony | 来源:发表于2019-06-26 18:44 被阅读0次

从日志中摘取的扫描信息:大部分是js,还有ThinkPHP,Apache,rockmongo,weblogic,jenkins,solr...

59.36.132.140 - - [:05:34:04 +0800] "GET /wp-includes/js/comment-reply.min.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:04 +0800] "GET /skins/vector/csshover.htc HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:04 +0800] "GET /misc/states.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:04 +0800] "GET /static/js/md5.js HTTP/1.1" 200 2954 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:04 +0800] "GET /include/js/md5.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:04 +0800] "GET /include/js/common.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:04 +0800] "GET /include/js/ajax.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /res/js/dev/pages/common/global.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /js/wind_editor.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /styles/prosilver/template/forum_fn.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /styles/prosilver/template/styleswitcher.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /editor/ubb/uploader.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /template/default/style.css HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /static/js/reset.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /images/js/common.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /templets/style/dede.css HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /include/dedeajax2.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /images/default/inc.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /js/lang/core/zh-cn.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:05 +0800] "GET /js/lang/cms/zh-cn.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /d/js/acmsd/ecms_dialog.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /skin/default/js/tabs.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /media/system/js/tab.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /media/system/css/mootree.css HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /lang/zh/front.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /style/default/content.css HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /lang/zh/edit.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /rockmongo/ HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /server-status HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /ueditor.all.js HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /wikilib.d/PmWiki.ChangeLog HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:06 +0800] "GET /4e5e5d7364f443e28fbf0d3ae744a59a HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:07 +0800] "GET /jenkins/ HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:07 +0800] "GET /console/login/LoginForm.jsp HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:07 +0800] "GET /solr/ HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:07 +0800] "GET / HTTP/1.1" 502 568 "https://10.0.0.1/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36" "-"

59.36.132.140 - - [:05:34:07 +0800] "GET / HTTP/1.1" 502 166 "-" "python-requests/2.19.1" "-"

相关文章

  • 一些常见黑客漏洞扫描

    从日志中摘取的扫描信息:大部分是js,还有ThinkPHP,Apache,rockmongo,weblogic,j...

  • Nginx日志安全分析脚本

    功能 统计Top 20 地址 SQL注入分析 SQL from查询统计 常见扫描器、黑客工具分析 漏洞利用检测 敏...

  • 真题解析之数据分析

    网络环境 黑客攻击流程攻入server0,拿到shell内网扫描扫描到有漏洞的服务后,设置代理进行内网攻击黑客会在...

  • 渗透测试——信息收集

    域名探测 域名漏洞扫描: 渗透测试人员常见方法是直接通漏洞扫描器来对指定目标站点进行渗透,当指定的目标站点无漏洞情...

  • 逻辑漏洞

    一、什么是逻辑漏洞 逻辑漏洞是指程序流程设计上存在漏洞,从而导致被黑客利用,造成业务上的危害。常见的逻辑漏洞场景有...

  • 系统漏洞扫描原理及工具 - 安全工具篇

    漏洞扫描器对漏洞进行扫描,以验证具体目标是否存在对应的具体漏洞。但是也存在错误扫描,需要对扫描结果进行漏洞验证。 ...

  • 黑客如何获取IP地址

    黑客一般都是用扫描工具获取IP地址,然后IP地址肯定会有某些端口是开放的,系统有漏洞电脑,然后黑客喜欢用远程链接或...

  • 网络安全常用的工具

    [概念基础]黑客如何工作的白帽子的法律约束 [技术基础]漏洞扫描工具AWVS ***网络安全审计工具Nm...

  • 风炫安全WEB安全学习第四十七节课 信息收集之主机漏洞扫描器

    信息收集之主机漏洞扫描 主机漏洞扫描工具,直白来解释就是:检测扫描目标主机中可能存在的漏洞,如果发现潜在漏洞,就报...

  • 网络安全行业中5款超好用的网络漏洞扫描器!

    漏洞扫描器是用于对企业网络进行漏洞扫描的一种硬件设备,按常规标准,传统的漏洞扫描器可以分为两种类型:主机漏洞扫描器...

网友评论

      本文标题:一些常见黑客漏洞扫描

      本文链接:https://www.haomeiwen.com/subject/fodhcctx.html