185.180.143.49 - - [26/Aug/2023:02:08:52 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 37.129.207.129 - - [26/Aug/2023:02:28:48 +0200] "GET /Pelago/chat_connect.png HTTP/1.1" 404 301 "http://widget.mibbit.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36" 37.129.207.129 - - [26/Aug/2023:02:29:09 +0200] "-" 408 - "-" "-" 198.235.24.149 - - [26/Aug/2023:02:30:24 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 130.211.54.158 - - [26/Aug/2023:02:40:51 +0200] "GET / HTTP/1.1" 200 274 "-" "python-requests/2.31.0" 128.14.134.134 - - [26/Aug/2023:03:08:48 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 161.35.49.87 - - [26/Aug/2023:04:44:57 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 45.79.172.21 - - [26/Aug/2023:05:44:32 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 45.79.181.179 - - [26/Aug/2023:05:53:39 +0200] "\x16\x03\x01" 400 383 "-" "-" 205.210.31.148 - - [26/Aug/2023:07:07:41 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 205.210.31.192 - - [26/Aug/2023:07:42:06 +0200] "\x16\x03\x01" 400 383 "-" "-" 162.216.150.96 - - [26/Aug/2023:07:42:12 +0200] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 165.227.175.42 - - [26/Aug/2023:07:47:14 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 65.49.20.69 - - [26/Aug/2023:08:18:53 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:102.0) Gecko/20100101 Firefox/102.0" 65.49.20.69 - - [26/Aug/2023:08:21:27 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:109.0) Gecko/20100101 Firefox/110.0" 65.49.20.69 - - [26/Aug/2023:08:22:38 +0200] "GET /geoserver/web/ HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:102.0) Gecko/20100101 Firefox/102.0" 191.96.227.142 - - [26/Aug/2023:10:00:34 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:75.0) Gecko/20100101 Firefox/75.0" 188.136.168.205 - - [26/Aug/2023:11:11:13 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 154.209.125.126 - - [26/Aug/2023:11:34:13 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 188.241.82.3 - - [26/Aug/2023:11:35:04 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:71.0) Gecko/20100101 Firefox/71.0" 109.237.98.226 - - [26/Aug/2023:12:18:47 +0200] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [26/Aug/2023:12:18:47 +0200] "\x16\x03\x01\x01H\x01" 400 383 "-" "-" 83.97.73.87 - - [26/Aug/2023:13:04:13 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.233.19.180 - - [26/Aug/2023:14:21:07 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 35.203.211.24 - - [26/Aug/2023:14:21:34 +0200] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 45.61.185.119 - - [26/Aug/2023:14:34:58 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 83.97.73.87 - - [26/Aug/2023:14:45:56 +0200] "GET /actuator/gateway/routes HTTP/1.1" 404 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 162.142.125.223 - - [26/Aug/2023:15:14:46 +0200] "GET / HTTP/1.1" 200 423 "-" "-" 162.142.125.223 - - [26/Aug/2023:15:14:46 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.223 - - [26/Aug/2023:15:14:46 +0200] "PRI * HTTP/2.0" 400 383 "-" "-" 162.142.125.223 - - [26/Aug/2023:15:14:46 +0200] "GET /activities.ico HTTP/1.1" 200 1406 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.223 - - [26/Aug/2023:15:14:46 +0200] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 179.49.141.184 - - [26/Aug/2023:15:15:40 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 198.235.24.207 - - [26/Aug/2023:15:27:49 +0200] "GET / HTTP/1.0" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 162.243.143.49 - - [26/Aug/2023:15:27:58 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 zgrab/0.x" 64.62.197.57 - - [26/Aug/2023:15:42:10 +0200] "\x16\x03\x01" 400 383 "-" "-" 163.5.32.15 - - [26/Aug/2023:16:20:20 +0200] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 163.5.32.15 - - [26/Aug/2023:16:20:20 +0200] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 179.43.191.194 - - [26/Aug/2023:16:41:26 +0200] "GET / HTTP/1.1" 200 423 "-" "Hello World" 72.167.56.142 - - [26/Aug/2023:16:54:22 +0200] "GET /wp-content/plugins/woocommerce-payments/dist/blocks-checkout.css HTTP/1.1" 404 416 "-" "Mozilla/5.0 (Linux; Android 7.1.1; Nokia 2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.83 Mobile Safari/537.36" 80.66.88.215 - - [26/Aug/2023:16:57:36 +0200] "\x03" 400 383 "-" "-" 179.43.191.162 - - [26/Aug/2023:17:29:31 +0200] "GET /_profiler/phpinfo HTTP/1.1" 404 289 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:31 +0200] "GET /info.php HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:31 +0200] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:31 +0200] "GET /env.js HTTP/1.1" 404 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:31 +0200] "GET /.env.example HTTP/1.1" 404 286 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:31 +0200] "GET /.env.production HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /.env.prod HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /.env/backup HTTP/1.1" 404 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET //api/.env HTTP/1.1" 404 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /.s3cfg HTTP/1.1" 404 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /app/.env HTTP/1.1" 404 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /laravel/.env HTTP/1.1" 404 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /backend/.env HTTP/1.1" 404 286 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /admin/.env HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /prod/.env HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /.env.save HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /.env.bak HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /web/.env HTTP/1.1" 404 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /crm/.env HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /local/.env HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /application/.env HTTP/1.1" 404 288 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:32 +0200] "GET /.aws/credentials HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /.aws/config HTTP/1.1" 404 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /app/config/parameters.yml HTTP/1.1" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /config.js HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /?phpinfo=1 HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /infophp.php HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /dashboard/phpinfo.php HTTP/1.1" 404 290 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /config/default.json HTTP/1.1" 404 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /.hg HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 179.43.191.162 - - [26/Aug/2023:17:29:33 +0200] "GET /.svn HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 185.36.81.33 - - [26/Aug/2023:17:56:33 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 107.170.254.24 - - [26/Aug/2023:18:21:20 +0200] "GET /manager/text/list HTTP/1.1" 404 289 "-" "Mozilla/5.0 zgrab/0.x" 185.216.71.5 - - [26/Aug/2023:18:24:44 +0200] "CONNECT google.com:443 HTTP/1.1" 200 423 "-" "Go-http-client/1.1" 104.152.52.233 - - [26/Aug/2023:18:54:19 +0200] "GET / HTTP/1.0" 200 423 "-" "masscan/1.3 (https://github.com/robertdavidgraham/masscan)" 181.214.227.19 - - [26/Aug/2023:20:01:28 +0200] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.0" 404 309 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 211.24.75.49 - - [26/Aug/2023:20:27:13 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 181.214.164.109 - - [26/Aug/2023:20:29:11 +0200] "POST /65649225 HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 5.0; rv:21.0) Gecko/20100101 Firefox/21.0" 20.127.49.156 - - [26/Aug/2023:21:03:44 +0200] "GET /.ftpconfig HTTP/1.1" 404 288 "-" "Mozilla/5.0 (Linux; Android 11; M2010J19SI) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Mobile Safari/537.36" 20.127.49.156 - - [26/Aug/2023:21:03:48 +0200] "GET /.vscode/sftp.json HTTP/1.1" 404 292 "-" "Mozilla/5.0 (Linux; Android 11; M2010J19SI) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Mobile Safari/537.36" 20.127.49.156 - - [26/Aug/2023:21:03:49 +0200] "GET /sftp-config.json HTTP/1.1" 404 292 "-" "Mozilla/5.0 (Linux; Android 11; M2010J19SI) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Mobile Safari/537.36" 198.235.24.33 - - [26/Aug/2023:23:29:31 +0200] "GET / HTTP/1.0" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 104.168.96.242 - - [27/Aug/2023:00:00:57 +0200] "GET /config/getuser?index=0 HTTP/1.1" 404 287 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0" 164.77.147.186 - - [27/Aug/2023:00:05:21 +0200] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 111.42.95.134 - - [27/Aug/2023:00:24:17 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 373 "-" "Custom-AsyncHttpClient" 111.42.95.134 - - [27/Aug/2023:00:24:24 +0200] "POST /cgi-bin/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/%%32%65%%32%65/bin/sh HTTP/1.1" 400 373 "-" "Custom-AsyncHttpClient" 82.64.48.200 - - [27/Aug/2023:00:25:47 +0200] "GET / HTTP/1.0" 200 423 "-" "-" 5.188.210.227 - - [27/Aug/2023:00:54:16 +0200] "GET http://5.188.210.227/echo.php HTTP/1.1" 404 283 "https://www.google.com/" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36" 41.250.225.21 - - [27/Aug/2023:01:59:28 +0200] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 41.250.225.21 - - [27/Aug/2023:01:59:29 +0200] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 60.217.75.70 - - [27/Aug/2023:01:59:42 +0200] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0"