107.151.182.54 - - [18/Apr/2021:02:09:49 +0200] "GET /cgi-bin/config.exp HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 206.253.224.14 - - [18/Apr/2021:03:36:17 +0200] "GET /robots.txt HTTP/1.1" 301 397 "-" "Mozilla/5.0 (compatible; oBot/2.3.1; http://www.xforce-security.com/crawler/)" 206.253.224.14 - - [18/Apr/2021:03:36:17 +0200] "GET / HTTP/1.1" 301 387 "-" "Mozilla/5.0 (compatible; oBot/2.3.1; http://www.xforce-security.com/crawler/)" 45.155.205.211 - - [18/Apr/2021:04:36:25 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:04:36:25 +0200] "POST /api/jsonws/invoke HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:04:36:28 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:04:36:32 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:04:36:33 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 131.220.6.152 - - [18/Apr/2021:04:51:39 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36" 192.241.220.106 - - [18/Apr/2021:06:35:23 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 216.218.206.67 - - [18/Apr/2021:07:03:18 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 111.7.96.140 - - [18/Apr/2021:11:30:15 +0200] "HEAD / HTTP/1.1" 301 - "-" "Chrome/54.0 (Windows NT 10.0)" 54.176.188.51 - - [18/Apr/2021:11:56:10 +0200] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2226.0 Safari/537.36" 89.248.168.143 - - [18/Apr/2021:13:48:14 +0200] "GET / HTTP/1.1" 301 301 "https://google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 92.118.160.5 - - [18/Apr/2021:14:15:32 +0200] "GET / HTTP/1.1" 301 394 "-" "NetSystemsResearch studies the availability of various services across the internet. Our website is netsystemsresearch.com" 82.221.105.6 - - [18/Apr/2021:16:21:06 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.137 Safari/537.36" 82.221.105.6 - - [18/Apr/2021:16:21:39 +0200] "" 400 379 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:40 +0200] "" 400 379 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:40 +0200] "" 400 379 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:43 +0200] "quit" 400 379 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:44 +0200] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:45 +0200] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:46 +0200] "" 400 379 "-" "-" 82.221.105.6 - - [18/Apr/2021:16:21:47 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 34.77.163.42 - - [18/Apr/2021:16:21:51 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.25.1" 192.241.214.114 - - [18/Apr/2021:17:21:11 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 199.59.150.181 - - [18/Apr/2021:17:56:47 +0200] "GET /robots.txt HTTP/1.1" 301 387 "-" "Twitterbot/1.0" 199.59.150.181 - - [18/Apr/2021:17:56:49 +0200] "GET / HTTP/1.1" 301 295 "-" "Twitterbot/1.0" 74.207.228.142 - - [18/Apr/2021:18:02:29 +0200] "GET /owa/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 162.142.125.54 - - [18/Apr/2021:18:23:43 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 193.29.15.225 - - [18/Apr/2021:18:44:52 +0200] "GET /.env HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:86.0) Gecko/20100101 Firefox/86.0" 45.155.205.211 - - [18/Apr/2021:21:53:30 +0200] "POST /api/jsonws/invoke HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:32 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:34 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:35 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:37 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:39 +0200] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:40 +0200] "GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1" 301 332 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:41 +0200] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:42 +0200] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.205.211 - - [18/Apr/2021:21:53:44 +0200] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 34.77.163.42 - - [18/Apr/2021:22:37:57 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.25.1" 54.189.99.230 - - [18/Apr/2021:23:08:41 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.202.231.208 - - [18/Apr/2021:23:09:00 +0200] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 20.70.208.186 - - [18/Apr/2021:23:16:59 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 20.70.208.186 - - [18/Apr/2021:23:17:01 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 35.163.152.222 - - [18/Apr/2021:23:19:59 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.245.49.34 - - [18/Apr/2021:23:25:45 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.202.167.66 - - [18/Apr/2021:23:26:35 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.213.242.31 - - [18/Apr/2021:23:26:45 +0200] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.213.242.31 - - [18/Apr/2021:23:26:47 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 192.241.220.174 - - [18/Apr/2021:23:42:48 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x"