45.227.255.123 - - [02/Aug/2022:02:01:14 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_2_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.81 Safari/537.36" 40.79.246.9 - - [02/Aug/2022:02:21:14 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 128.14.209.146 - - [02/Aug/2022:02:26:11 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36" 208.100.26.249 - - [02/Aug/2022:02:30:02 +0200] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4217.2 Safari/537.36" 208.100.26.236 - - [02/Aug/2022:02:30:02 +0200] "GET / HTTP/1.1" 301 298 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_4_8 like Mac OS X) AppleWebKit/607.3.9 (KHTML, like Gecko) Version/12.1.2 Mobile/16G201 Safari/604.1" 205.210.31.147 - - [02/Aug/2022:02:45:02 +0200] "GET / HTTP/1.1" 301 380 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 192.241.208.201 - - [02/Aug/2022:04:16:57 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 207.46.13.120 - - [02/Aug/2022:04:30:04 +0200] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 192.241.221.145 - - [02/Aug/2022:04:59:55 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 34.77.127.183 - - [02/Aug/2022:05:41:03 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 162.142.125.10 - - [02/Aug/2022:06:05:37 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.10 - - [02/Aug/2022:06:05:37 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.10 - - [02/Aug/2022:06:05:38 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 185.7.214.104 - - [02/Aug/2022:07:54:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 163.172.180.25 - - [02/Aug/2022:09:15:47 +0200] "GET / HTTP/1.1" 301 381 "-" "-" 142.54.177.164 - - [02/Aug/2022:09:30:51 +0200] "GET / HTTP/1.1" 301 295 "http://www.google.com.hk" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.90 Safari/537.36" 142.54.177.164 - - [02/Aug/2022:09:31:21 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 301 396 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.125 Safari/537.36" 54.91.110.5 - - [02/Aug/2022:10:39:20 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows CE; IEMobile 8.12; MSIEMobile6.0)" 23.250.19.242 - - [02/Aug/2022:10:51:37 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 23.250.19.242 - - [02/Aug/2022:10:51:39 +0200] "" 400 379 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:40 +0200] "" 400 379 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:40 +0200] "" 400 379 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:43 +0200] "quit" 400 379 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:44 +0200] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:44 +0200] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:45 +0200] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 23.250.19.242 - - [02/Aug/2022:10:51:46 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 23.250.19.242 - - [02/Aug/2022:10:51:46 +0200] "" 400 379 "-" "-" 208.100.26.244 - - [02/Aug/2022:11:21:36 +0200] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 11_4 like Mac OS X) AppleWebKit/604.1.34 (KHTML, like Gecko) Mobile/15F79 Safari/604.1" 192.241.236.175 - - [02/Aug/2022:11:35:24 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 192.241.235.168 - - [02/Aug/2022:11:37:37 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.237.70 - - [02/Aug/2022:11:37:43 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 185.7.214.104 - - [02/Aug/2022:11:57:09 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 198.235.24.147 - - [02/Aug/2022:12:19:32 +0200] "GET / HTTP/1.1" 301 379 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.189.182.234 - - [02/Aug/2022:12:50:55 +0200] "GET /fFv: HTTP/1.1" 400 379 "-" "-" 54.242.172.95 - - [02/Aug/2022:12:54:49 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 167.94.145.57 - - [02/Aug/2022:13:06:51 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.145.57 - - [02/Aug/2022:13:06:51 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.145.57 - - [02/Aug/2022:13:06:51 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 185.7.214.104 - - [02/Aug/2022:13:13:08 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 163.172.148.199 - - [02/Aug/2022:13:19:49 +0200] "GET / HTTP/1.1" 301 389 "-" "-" 205.210.31.17 - - [02/Aug/2022:13:49:33 +0200] "GET / HTTP/1.1" 301 393 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 35.194.37.64 - - [02/Aug/2022:14:12:42 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/61.0.3163.79 Safari/537.36" 93.159.230.88 - - [02/Aug/2022:15:34:40 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 51.158.109.3 - - [02/Aug/2022:17:09:07 +0200] "GET / HTTP/1.1" 301 380 "-" "-" 106.75.179.120 - - [02/Aug/2022:17:55:31 +0200] "{\"method\":\"login\",\"params\":{\"login\":\"45JymPWP1DeQxxMZNJv9w2bTQ2WJDAmw18wUSryDQa3RPrympJPoUSVcFEDv3bhiMJGWaCD4a3KrFCorJHCMqXJUKApSKDV\",\"pass\":\"xxoo\",\"agent\":\"xmr-stak-cpu/1.3.0-1.5.0\"},\"id\":1}" 400 379 "-" "-" 106.75.179.120 - - [02/Aug/2022:17:55:35 +0200] "{\"id\":1,\"method\":\"mining.subscribe\",\"params\":[]}" 400 379 "-" "-" 106.75.179.120 - - [02/Aug/2022:17:55:37 +0200] "{\"params\": [\"miner1\", \"password\"], \"id\": 2, \"method\": \"mining.authorize\"}" 400 379 "-" "-" 106.75.179.120 - - [02/Aug/2022:17:55:41 +0200] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"blue1\",\"pass\":\"x\",\"agent\":\"Windows NT 6.1; Win64; x64\"}}" 400 379 "-" "-" 106.75.179.120 - - [02/Aug/2022:17:55:44 +0200] "{\"params\": [\"miner1\", \"bf\", \"00000001\", \"504e86ed\", \"b2957c02\"], \"id\": 4, \"method\": \"mining.submit\"}" 400 379 "-" "-" 106.75.179.120 - - [02/Aug/2022:17:55:46 +0200] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"x\",\"pass\":\"null\",\"agent\":\"XMRig/5.13.1\",\"algo\":[\"cn/1\",\"cn/2\",\"cn/r\",\"cn/fast\",\"cn/half\",\"cn/xao\",\"cn/rto\",\"cn/rwz\",\"cn/zls\",\"cn/double\",\"rx/0\",\"rx/wow\",\"rx/loki\",\"rx/arq\",\"rx/sfx\",\"rx/keva\"]}}" 400 379 "-" "-" 207.46.13.120 - - [02/Aug/2022:18:28:34 +0200] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 66.240.236.116 - - [02/Aug/2022:18:34:45 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 51.222.253.9 - - [02/Aug/2022:19:15:49 +0200] "GET /robots.txt HTTP/1.1" 301 303 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 89.248.165.52 - - [02/Aug/2022:19:23:45 +0200] "-" 408 - "-" "-" 180.149.125.167 - - [02/Aug/2022:20:13:04 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.90 Safari/537.36" 83.136.32.58 - - [02/Aug/2022:21:47:21 +0200] "HEAD / HTTP/1.0" 301 - "https://cert.at/de/services/statistic-survey/" "CERT.at-Statistics-Survey/1.0 (+http://www.cert.at/about/consec/content.html)" 198.235.24.18 - - [02/Aug/2022:22:05:14 +0200] "GET / HTTP/1.1" 301 394 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 213.32.122.82 - - [02/Aug/2022:22:11:03 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 89.248.165.52 - - [02/Aug/2022:22:39:56 +0200] "-" 408 - "-" "-" 92.118.161.45 - - [02/Aug/2022:22:45:02 +0200] "GET / HTTP/1.1" 301 383 "-" "NetSystemsResearch studies the availability of various services across the internet. Our website is netsystemsresearch.com" 20.204.74.136 - - [02/Aug/2022:23:36:41 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.98 Safari/537.36" 51.158.66.83 - - [03/Aug/2022:00:21:13 +0200] "GET / HTTP/1.1" 301 391 "-" "-" 172.105.189.111 - - [03/Aug/2022:00:29:44 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 104.248.34.89 - - [03/Aug/2022:00:36:54 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 94.102.61.8 - - [03/Aug/2022:00:56:40 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 34.221.1.29 - - [03/Aug/2022:01:35:21 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.187.2.100 - - [03/Aug/2022:01:35:58 +0200] "GET /favicon.ico HTTP/1.1" 301 313 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.187.2.100 - - [03/Aug/2022:01:36:02 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"