194.110.203.41 - - [08/Oct/2022:02:05:15 +0200] "GET /backup/backup.tar HTTP/1.1" 301 411 "-" "Firefox" 194.110.203.45 - - [08/Oct/2022:03:00:42 +0200] "GET /backup/backup.tar.gz HTTP/1.1" 301 414 "-" "Firefox" 192.241.219.250 - - [08/Oct/2022:03:47:06 +0200] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 192.241.213.128 - - [08/Oct/2022:03:57:33 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 192.241.218.58 - - [08/Oct/2022:03:58:48 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.219.120 - - [08/Oct/2022:04:00:05 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 43.131.66.209 - - [08/Oct/2022:04:01:56 +0200] "GET / HTTP/1.1" 400 500 "-" "curl/7.64.1" 192.241.216.172 - - [08/Oct/2022:04:02:37 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 178.128.231.235 - - [08/Oct/2022:04:35:32 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 198.235.24.165 - - [08/Oct/2022:04:55:27 +0200] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 138.68.54.18 - - [08/Oct/2022:05:57:50 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/55.0.2883.87 Safari/537.36" 192.241.201.8 - - [08/Oct/2022:06:04:21 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 173.82.74.163 - - [08/Oct/2022:06:12:54 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36" 152.89.196.23 - - [08/Oct/2022:06:21:23 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 194.110.203.39 - - [08/Oct/2022:06:36:57 +0200] "GET /backup/backup.tgz HTTP/1.1" 301 403 "-" "Firefox" 193.118.53.210 - - [08/Oct/2022:06:42:46 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/1.1" 301 330 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.46 - - [08/Oct/2022:07:04:21 +0200] "GET /backup/backup.tgz HTTP/1.1" 301 411 "-" "Firefox" 192.241.213.10 - - [08/Oct/2022:07:14:13 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 185.7.214.218 - - [08/Oct/2022:07:48:42 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 207.246.113.16 - - [08/Oct/2022:08:09:15 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.39 - - [08/Oct/2022:09:06:52 +0200] "GET /backup/backup.zip HTTP/1.1" 301 394 "-" "Firefox" 128.14.209.162 - - [08/Oct/2022:09:08:22 +0200] "GET /remote/login HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.38 - - [08/Oct/2022:09:18:39 +0200] "GET /backup/backup.zip HTTP/1.1" 301 411 "-" "Firefox" 188.166.41.80 - - [08/Oct/2022:09:29:18 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 157.245.222.100 - - [08/Oct/2022:09:34:24 +0200] "GET / HTTP/1.0" 301 380 "-" "Mozilla/5.0 (compatible; NetcraftSurveyAgent/1.0; +info@netcraft.com)" 194.110.203.38 - - [08/Oct/2022:09:35:48 +0200] "GET /backup/backup.zip HTTP/1.1" 301 411 "-" "Firefox" 192.241.213.56 - - [08/Oct/2022:09:56:34 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 128.1.248.26 - - [08/Oct/2022:10:13:04 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 146.190.236.223 - - [08/Oct/2022:11:29:44 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [08/Oct/2022:12:14:59 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.42 - - [08/Oct/2022:12:23:08 +0200] "GET /dump.rar HTTP/1.1" 301 385 "-" "Firefox" 64.62.197.120 - - [08/Oct/2022:13:48:56 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36" 64.62.197.107 - - [08/Oct/2022:14:02:42 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:104.0) Gecko/20100101 Firefox/104.0" 64.62.197.120 - - [08/Oct/2022:14:06:27 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" 152.89.196.211 - - [08/Oct/2022:14:46:11 +0200] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.219.22 - - [08/Oct/2022:15:02:18 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 208.67.105.124 - - [08/Oct/2022:15:21:16 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 208.67.105.124 - - [08/Oct/2022:15:21:16 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 137.184.101.190 - - [08/Oct/2022:16:05:08 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 198.235.24.172 - - [08/Oct/2022:17:22:51 +0200] "GET / HTTP/1.1" 301 394 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 194.110.203.44 - - [08/Oct/2022:17:35:05 +0200] "GET /dump.bck HTTP/1.1" 301 385 "-" "Firefox" 128.14.133.58 - - [08/Oct/2022:18:00:05 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 188.166.9.226 - - [08/Oct/2022:18:13:06 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.42 - - [08/Oct/2022:18:20:13 +0200] "GET /dump.sql.gz HTTP/1.1" 301 397 "-" "Firefox" 88.214.43.215 - - [08/Oct/2022:18:40:56 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:40:58 +0200] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:40:59 +0200] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:01 +0200] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:02 +0200] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:03 +0200] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:05 +0200] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:06 +0200] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:07 +0200] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:08 +0200] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:11 +0200] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 88.214.43.215 - - [08/Oct/2022:18:41:13 +0200] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.42 - - [08/Oct/2022:19:28:09 +0200] "GET /dump.sql.gz HTTP/1.1" 301 397 "-" "Firefox" 185.7.214.218 - - [08/Oct/2022:19:31:10 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 192.241.213.107 - - [08/Oct/2022:20:04:04 +0200] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 3.252.152.210 - - [08/Oct/2022:20:10:39 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 12; SM-G991U) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.41 Mobile Safari/537.36" 152.89.196.23 - - [08/Oct/2022:20:26:47 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 147.182.145.167 - - [08/Oct/2022:20:36:15 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.39 - - [08/Oct/2022:21:28:53 +0200] "GET /dump.sql.tgz HTTP/1.1" 301 406 "-" "Firefox" 194.110.203.45 - - [08/Oct/2022:21:50:41 +0200] "GET /dump.sql.tgz HTTP/1.1" 301 389 "-" "Firefox" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 925 "-" "-" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET /nmaplowercheck1665263776 HTTP/1.1" 301 407 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET /wXW6 HTTP/1.1" 301 387 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET /Portal/Portal.mwsl HTTP/1.1" 301 401 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET /indice.html HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "POST /sdk HTTP/1.1" 301 386 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:16 +0200] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /pools/default/buckets HTTP/1.1" 301 404 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /HNAP1 HTTP/1.1" 301 388 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /server-status HTTP/1.1" 301 396 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /docs/cplugError.html/ HTTP/1.1" 301 404 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "HEAD / HTTP/1.1" 301 - "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /home.aspx HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 301 424 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET /default.html HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:17 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:18 +0200] "GET /base.php HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:18 +0200] "GET /favicon.ico HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:18 +0200] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:18 +0200] "GET /readme.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:18 +0200] "GET /start.html HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:18 +0200] "GET /index.asp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:19 +0200] "GET /index.jsp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:19 +0200] "GET /index.pl HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:19 +0200] "GET /indice.aspx HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:20 +0200] "GET /main.html HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:20 +0200] "GET /admin.pl HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:20 +0200] "GET /base.jsp HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:21 +0200] "GET /localstart.jhtml HTTP/1.1" 301 399 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:21 +0200] "GET /admin.jsp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:21 +0200] "GET /start.shtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:22 +0200] "GET /start.asp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:22 +0200] "GET /menu.aspx HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:22 +0200] "GET /admin.jsa HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:22 +0200] "GET /admin.jhtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:23 +0200] "GET /menu.cgi HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:23 +0200] "GET /inicio.html HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:23 +0200] "GET /admin.html HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:24 +0200] "GET /menu.html HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:24 +0200] "GET /admin.cgi HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:24 +0200] "GET /indice.php HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:25 +0200] "GET /indice.asp HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:25 +0200] "GET /index.shtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:25 +0200] "GET /localstart.cfm HTTP/1.1" 301 397 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:26 +0200] "GET /index.cfm HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:26 +0200] "GET /base.jsa HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:26 +0200] "GET /admin.aspx HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:27 +0200] "GET /menu.jhtml HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.148.229 - - [08/Oct/2022:23:16:33 +0200] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.148.229 - - [08/Oct/2022:23:16:33 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 60.217.75.70 - - [08/Oct/2022:23:30:08 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 35.85.222.116 - - [08/Oct/2022:23:40:37 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 34.221.220.131 - - [08/Oct/2022:23:41:10 +0200] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 60.217.75.70 - - [08/Oct/2022:23:43:31 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 154.209.125.72 - - [08/Oct/2022:23:53:19 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 162.142.125.121 - - [09/Oct/2022:00:32:47 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.121 - - [09/Oct/2022:00:32:48 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 159.65.53.140 - - [09/Oct/2022:00:34:07 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.45 - - [09/Oct/2022:00:36:13 +0200] "GET /dump.sql.bck HTTP/1.1" 301 398 "-" "Firefox" 35.195.93.98 - - [09/Oct/2022:00:59:26 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 195.133.18.156 - - [09/Oct/2022:01:49:05 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 195.133.18.156 - - [09/Oct/2022:01:49:05 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 43.136.220.125 - - [09/Oct/2022:01:56:45 +0200] "POST /api/Ticket/query?m=18900547892&refer__2377=eu0%3DiKY5DK0ITxBkP56KGI94Wq7KQDCFtleD HTTP/1.1" 301 383 "https://ticket.gzhotelgroup.com/ticket-bk.html" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.92 Safari/537.36"