128.1.248.42 - - [05/Aug/2022:02:05:44 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 142.93.199.246 - - [05/Aug/2022:02:25:39 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 205.210.31.6 - - [05/Aug/2022:02:40:00 +0200] "GET / HTTP/1.1" 301 389 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 207.46.13.120 - - [05/Aug/2022:02:52:32 +0200] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 185.7.214.104 - - [05/Aug/2022:02:56:00 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.202.61 - - [05/Aug/2022:04:18:16 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 185.7.214.104 - - [05/Aug/2022:04:48:10 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.214.48 - - [05/Aug/2022:05:00:39 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 173.249.58.188 - - [05/Aug/2022:05:54:13 +0200] "HEAD /wordpress HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD / HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /wp HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /bc HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /bk HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /backup HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /old HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /new HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:14 +0200] "HEAD /main HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 173.249.58.188 - - [05/Aug/2022:05:54:15 +0200] "HEAD /home HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.195.93.98 - - [05/Aug/2022:05:58:17 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 77.74.177.119 - - [05/Aug/2022:07:03:47 +0200] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 185.7.214.104 - - [05/Aug/2022:07:56:32 +0200] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.29.122 - - [05/Aug/2022:08:06:18 +0200] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 128.14.141.34 - - [05/Aug/2022:09:00:03 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 182.161.66.103 - - [05/Aug/2022:09:14:46 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.122 Safari/537.36" 88.214.43.118 - - [05/Aug/2022:09:49:25 +0200] "GET /env/config HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.118 - - [05/Aug/2022:09:49:26 +0200] "POST /env/config HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 205.210.31.130 - - [05/Aug/2022:10:50:50 +0200] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 193.201.9.69 - - [05/Aug/2022:10:53:04 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 198.235.24.130 - - [05/Aug/2022:11:18:01 +0200] "GET / HTTP/1.1" 301 379 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 192.241.237.136 - - [05/Aug/2022:11:37:11 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 192.241.206.79 - - [05/Aug/2022:11:39:17 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.237.61 - - [05/Aug/2022:11:39:38 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 64.62.197.137 - - [05/Aug/2022:11:51:19 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 64.62.197.137 - - [05/Aug/2022:12:00:10 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 zgrab/0.x" 64.62.197.140 - - [05/Aug/2022:12:04:43 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 193.201.9.69 - - [05/Aug/2022:12:08:06 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 128.14.134.170 - - [05/Aug/2022:13:31:14 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 167.248.133.45 - - [05/Aug/2022:13:32:46 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 167.248.133.45 - - [05/Aug/2022:13:32:46 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.248.133.45 - - [05/Aug/2022:13:32:47 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 178.73.215.171 - - [05/Aug/2022:14:16:00 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 178.73.215.171 - - [05/Aug/2022:14:16:22 +0200] "-" 408 - "-" "-" 178.73.215.171 - - [05/Aug/2022:14:16:23 +0200] "-" 408 - "-" "-" 178.73.215.171 - - [05/Aug/2022:14:16:28 +0200] "-" 408 - "-" "-" 194.163.187.35 - - [05/Aug/2022:14:26:34 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.125 Safari/537.36" 54.36.148.145 - - [05/Aug/2022:14:55:37 +0200] "GET /robots.txt HTTP/1.1" 301 314 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 54.36.148.109 - - [05/Aug/2022:14:55:38 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 205.210.31.147 - - [05/Aug/2022:15:13:58 +0200] "GET / HTTP/1.1" 301 393 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 139.162.226.50 - - [05/Aug/2022:16:05:11 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20100101 Firefox/8.0" 157.55.39.210 - - [05/Aug/2022:16:57:03 +0200] "GET /robots.txt HTTP/1.1" 301 311 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 157.55.39.210 - - [05/Aug/2022:16:57:04 +0200] "GET /robots.txt HTTP/1.1" 301 311 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 207.46.13.120 - - [05/Aug/2022:16:57:13 +0200] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 179.43.155.171 - - [05/Aug/2022:17:44:49 +0200] "GET /Dockerrun.aws.json HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 176.58.119.171 - - [05/Aug/2022:18:10:46 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20100101 Firefox/8.0" 212.7.207.167 - - [05/Aug/2022:20:11:38 +0200] "GET //%24%7BClass.forName%28%22com.opensymphony.webwork.ServletActionContext%22%29.getMethod%28%22getResponse%22%2Cnull%29.invoke%28null%2Cnull%29.setHeader%28%22X-Confluence%22%2C1%29%7D// HTTP/1.1" 301 410 "-" "python-requests/2.25.1" 193.118.53.210 - - [05/Aug/2022:20:24:56 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 93.159.230.88 - - [05/Aug/2022:21:12:52 +0200] "GET / HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 192.241.213.196 - - [05/Aug/2022:21:37:41 +0200] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 185.7.214.104 - - [05/Aug/2022:21:41:34 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.7.214.104 - - [05/Aug/2022:22:07:17 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 34.217.122.58 - - [05/Aug/2022:23:17:09 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 44.234.114.229 - - [05/Aug/2022:23:18:53 +0200] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 185.7.214.104 - - [05/Aug/2022:23:56:05 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.7.214.104 - - [06/Aug/2022:00:42:48 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.7.214.104 - - [06/Aug/2022:01:05:57 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 94.232.45.12 - - [06/Aug/2022:01:22:36 +0200] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 43.128.61.192 - - [06/Aug/2022:01:43:49 +0200] "POST /dns-query HTTP/1.1" 301 392 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.125 Safari/537.36"