74.82.47.4 - - [04/Nov/2020:01:11:55 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 192.241.233.16 - - [04/Nov/2020:02:47:45 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 193.27.229.26 - - [04/Nov/2020:03:00:20 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:20 +0100] "POST /api/jsonws/invoke HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:21 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:21 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:21 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:21 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:21 +0100] "GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1" 301 332 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.229.26 - - [04/Nov/2020:03:00:21 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.118.53.194 - - [04/Nov/2020:03:22:29 +0100] "GET /cgi-bin/config.exp HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 131.220.6.152 - - [04/Nov/2020:04:56:36 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36" 192.241.234.57 - - [04/Nov/2020:06:38:47 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 192.241.233.21 - - [04/Nov/2020:07:00:59 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 185.191.171.10 - - [04/Nov/2020:07:02:40 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)" 185.191.171.43 - - [04/Nov/2020:07:02:43 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)" 83.97.20.29 - - [04/Nov/2020:08:50:06 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 128.14.133.58 - - [04/Nov/2020:09:55:33 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 74.120.14.51 - - [04/Nov/2020:12:30:37 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 74.120.14.51 - - [04/Nov/2020:12:30:38 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 104.244.78.139 - - [04/Nov/2020:15:04:14 +0100] "POST /web_shell_cmd.gch HTTP/1.1" 301 309 "-" "HaxerMen" 104.244.78.139 - - [04/Nov/2020:15:04:14 +0100] "POST /web_shell_cmd.gch HTTP/1.1" 301 309 "-" "HaxerMen" 104.244.78.139 - - [04/Nov/2020:15:04:19 +0100] "POST /web_shell_cmd.gch HTTP/1.1" 301 309 "-" "HaxerMen" 5.8.10.202 - - [04/Nov/2020:16:22:01 +0100] "GET / HTTP/1.1" 301 383 "-" "fasthttp" 5.8.10.202 - - [04/Nov/2020:16:22:01 +0100] "GET / HTTP/1.1" 400 379 "-" "-" 167.248.133.36 - - [04/Nov/2020:18:39:52 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.248.133.36 - - [04/Nov/2020:18:39:52 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 207.46.13.91 - - [04/Nov/2020:19:12:35 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 207.46.13.91 - - [04/Nov/2020:19:12:38 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 83.136.38.138 - - [04/Nov/2020:19:24:08 +0100] "HEAD / HTTP/1.0" 301 - "https://cert.at/de/services/statistic-survey/" "CERT.at-Statistics-Survey/1.0 (+http://www.cert.at/about/consec/content.html)" 164.52.24.162 - - [04/Nov/2020:23:57:16 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 172.105.13.165 - - [05/Nov/2020:00:02:09 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 172.105.13.165 - - [05/Nov/2020:00:14:10 +0100] "GET /nmaplowercheck1604531645 HTTP/1.1" 301 407 "-" "\"Mozilla/5.0" 172.105.13.165 - - [05/Nov/2020:00:14:11 +0100] "GET /evox/about HTTP/1.1" 301 393 "-" "\"Mozilla/5.0" 172.105.13.165 - - [05/Nov/2020:00:14:45 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 172.105.13.165 - - [05/Nov/2020:00:14:46 +0100] "GET / HTTP/1.1" 301 383 "-" "-"