138.246.253.15 - - [12/Nov/2020:01:52:01 +0100] "HEAD / HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/40.0.2214.85 Safari/537.36" 131.220.6.152 - - [12/Nov/2020:04:58:41 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:18 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:18 +0100] "GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1" 301 332 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:19 +0100] "POST /api/jsonws/invoke HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:20 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:21 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:21 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:22 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:05:28:23 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 182.74.234.250 - - [12/Nov/2020:06:06:19 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 74.82.47.5 - - [12/Nov/2020:06:25:46 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 125.167.117.125 - - [12/Nov/2020:07:21:26 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 102.134.159.82 - - [12/Nov/2020:07:27:08 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 83.97.20.29 - - [12/Nov/2020:09:14:16 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 95.247.16.15 - - [12/Nov/2020:09:24:45 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 95.247.16.15 - - [12/Nov/2020:09:25:09 +0100] "-" 408 - "-" "-" 49.36.129.190 - - [12/Nov/2020:09:48:22 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 194.153.113.100 - - [12/Nov/2020:10:14:11 +0100] "GET /robots.txt HTTP/1.1" 301 397 "-" "Mozilla/5.0 (compatible; oBot/2.3.1; http://www.xforce-security.com/crawler/)" 194.153.113.100 - - [12/Nov/2020:10:14:11 +0100] "GET / HTTP/1.1" 301 387 "-" "Mozilla/5.0 (compatible; oBot/2.3.1; http://www.xforce-security.com/crawler/)" 193.118.53.194 - - [12/Nov/2020:10:22:45 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 27.4.170.43 - - [12/Nov/2020:10:57:05 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 112.206.110.1 - - [12/Nov/2020:12:13:21 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 18.237.190.173 - - [12/Nov/2020:13:14:12 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla: Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:47.0) Gecko/20100101 Firefox/47.3 Mozilla/5.0 (Macintosh; Intel Mac OS X x.y; rv:42.0) Gecko/20100101 Firefox/43.4" 91.241.19.84 - - [12/Nov/2020:14:43:06 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:08 +0100] "GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1" 301 332 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:11 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:11 +0100] "POST /api/jsonws/invoke HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:17 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:17 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:19 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 91.241.19.84 - - [12/Nov/2020:14:43:21 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 167.248.133.56 - - [12/Nov/2020:15:09:57 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.248.133.56 - - [12/Nov/2020:15:09:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 113.130.126.121 - - [12/Nov/2020:15:32:34 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 51.36.17.39 - - [12/Nov/2020:17:09:41 +0100] "GET /currentsetting.htm HTTP/1.1" 301 401 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:14 +0100] "" 400 379 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:17 +0100] "" 400 379 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:18 +0100] "" 400 379 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:22 +0100] "quit" 400 379 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:24 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:26 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:30 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 185.142.236.43 - - [12/Nov/2020:18:55:34 +0100] "" 400 379 "-" "-" 89.248.160.152 - - [12/Nov/2020:19:41:10 +0100] "GET /gigaset/42/2/sifsroot.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:11 +0100] "GET /gigaset/42/2/baselines.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:11 +0100] "GET /gigaset/42/2/master.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:11 +0100] "GET /gigaset/41/2/sifsroot.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:11 +0100] "GET /gigaset/41/2/baselines.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:11 +0100] "GET /gigaset/41/2/master.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:11 +0100] "GET /gigaset/40/2/sifsroot.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:12 +0100] "GET /gigaset/40/2/baselines.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:12 +0100] "GET /gigaset/40/2/master.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:12 +0100] "GET /provisioning/42/2/sifsroot.bin HTTP/1.1" 301 317 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:12 +0100] "GET /provisioning/42/2/baselines.bin HTTP/1.1" 301 317 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:12 +0100] "GET /provisioning/42/2/master.bin HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:12 +0100] "GET /provision/42/2/sifsroot.bin HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:13 +0100] "GET /provision/42/2/baselines.bin HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:13 +0100] "GET /provision/42/2/master.bin HTTP/1.1" 301 313 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:13 +0100] "GET /phone/42/2/sifsroot.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:13 +0100] "GET /phone/42/2/baselines.bin HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:13 +0100] "GET /phone/42/2/master.bin HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:13 +0100] "GET /cfg/42/2/sifsroot.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:14 +0100] "GET /cfg/42/2/baselines.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:14 +0100] "GET /cfg/42/2/master.bin HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:14 +0100] "GET /config/42/2/sifsroot.bin HTTP/1.1" 301 313 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:14 +0100] "GET /config/42/2/baselines.bin HTTP/1.1" 301 313 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 89.248.160.152 - - [12/Nov/2020:19:41:14 +0100] "GET /config/42/2/master.bin HTTP/1.1" 301 312 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0" 128.14.134.170 - - [12/Nov/2020:22:00:26 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 128.14.134.170 - - [13/Nov/2020:00:18:49 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36"