128.14.209.162 - - [29/May/2022:02:01:16 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 193.106.191.48 - - [29/May/2022:02:15:25 +0200] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 169.228.66.212 - - [29/May/2022:02:49:32 +0200] "-" 408 - "-" "-" 192.241.222.59 - - [29/May/2022:03:38:10 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 193.106.191.48 - - [29/May/2022:04:07:59 +0200] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 131.220.6.152 - - [29/May/2022:04:49:27 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36" 193.106.191.48 - - [29/May/2022:04:50:20 +0200] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.191.48 - - [29/May/2022:05:18:02 +0200] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 128.14.133.58 - - [29/May/2022:06:23:44 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 45.134.144.140 - - [29/May/2022:06:33:37 +0200] "GET ///remote/fgt_lang?lang=/../../../..//////////dev/ HTTP/1.1" 301 325 "-" "python-requests/2.6.0 CPython/2.7.5 Linux/3.10.0-1160.el7.x86_64" 193.106.191.48 - - [29/May/2022:06:46:28 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 34.140.248.32 - - [29/May/2022:06:50:40 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.27.1" 193.106.191.48 - - [29/May/2022:07:27:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.191.48 - - [29/May/2022:08:33:13 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 157.55.39.125 - - [29/May/2022:08:43:37 +0200] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 193.106.191.48 - - [29/May/2022:08:55:44 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.223.66 - - [29/May/2022:13:18:49 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 192.241.221.222 - - [29/May/2022:13:19:48 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.221.20 - - [29/May/2022:13:20:25 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 64.62.197.152 - - [29/May/2022:14:18:12 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 128.14.134.134 - - [29/May/2022:14:52:43 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:52 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:53 +0200] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:53 +0200] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:53 +0200] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:54 +0200] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:54 +0200] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:55 +0200] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:55 +0200] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:56 +0200] "GET /.aws HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:56 +0200] "POST /.aws HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:57 +0200] "GET /public/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:57 +0200] "POST /public/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:58 +0200] "GET /public/.aws/credentials HTTP/1.1" 301 316 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:58 +0200] "POST /public/.aws/credentials HTTP/1.1" 301 316 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:59 +0200] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:33:59 +0200] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:34:00 +0200] "GET /public/aws/credentials HTTP/1.1" 301 316 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:34:00 +0200] "POST /public/aws/credentials HTTP/1.1" 301 316 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:34:01 +0200] "GET /public/.aws HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.103.38 - - [29/May/2022:16:34:02 +0200] "POST /public/.aws HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 162.214.112.164 - - [29/May/2022:17:40:12 +0200] "GET /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:83.0) Gecko/20100101 Firefox/83.0" 162.214.112.164 - - [29/May/2022:17:40:13 +0200] "POST / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:83.0) Gecko/20100101 Firefox/83.0" 192.241.221.251 - - [29/May/2022:18:23:53 +0200] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 162.142.125.220 - - [29/May/2022:19:05:14 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.220 - - [29/May/2022:19:05:15 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 198.235.24.154 - - [29/May/2022:19:07:17 +0200] "GET / HTTP/1.1" 301 391 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 193.106.191.48 - - [29/May/2022:20:28:51 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.213.219 - - [29/May/2022:20:51:29 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 193.106.191.48 - - [29/May/2022:21:45:06 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.191.48 - - [29/May/2022:22:37:52 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.191.48 - - [30/May/2022:00:11:33 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.191.48 - - [30/May/2022:00:38:52 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "HEAD / HTTP/1.1" 301 - "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "GET /server-status HTTP/1.1" 301 396 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "POST / HTTP/1.1" 301 383 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "GET /menu.asp HTTP/1.1" 301 391 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:05 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET /LXEs HTTP/1.1" 301 387 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 925 "-" "-" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET /nmaplowercheck1653865745 HTTP/1.1" 301 407 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET /main.jsa HTTP/1.1" 301 391 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:06 +0200] "GET /Portal/Portal.mwsl HTTP/1.1" 301 401 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:07 +0200] "GET /HNAP1 HTTP/1.1" 301 388 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:07 +0200] "GET /pools/default/buckets HTTP/1.1" 301 404 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:07 +0200] "GET /favicon.ico HTTP/1.1" 301 394 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:07 +0200] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:07 +0200] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:07 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 109.74.204.123 - - [30/May/2022:01:09:08 +0200] "GET /tomcatwar.jsp HTTP/1.1" 301 396 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:08 +0200] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:08 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:08 +0200] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 301 424 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:08 +0200] "GET /tomcatwar.jsp?pwd=j&cmd=id HTTP/1.1" 301 413 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:09 +0200] "GET /ghksjdghdfksanitycheckqwerjlhfgjksdghlid HTTP/1.1" 301 423 "-" "curl/7.54.0" 109.74.204.123 - - [30/May/2022:01:09:16 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 193.106.191.48 - - [30/May/2022:01:57:08 +0200] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"