192.241.219.250 - - [11/Oct/2022:02:19:00 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 139.59.81.35 - - [11/Oct/2022:02:37:38 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 185.7.214.218 - - [11/Oct/2022:03:41:02 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 194.110.203.41 - - [11/Oct/2022:04:48:29 +0200] "GET /htodcs.bck HTTP/1.1" 301 387 "-" "Firefox" 45.93.201.45 - - [11/Oct/2022:04:51:03 +0200] "GET /htodcs.bck HTTP/1.1" 301 404 "-" "Firefox" 162.142.125.8 - - [11/Oct/2022:04:58:47 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.8 - - [11/Oct/2022:04:58:47 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.8 - - [11/Oct/2022:04:58:48 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 128.14.133.58 - - [11/Oct/2022:05:09:06 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 162.19.196.234 - - [11/Oct/2022:05:31:26 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 162.19.196.234 - - [11/Oct/2022:05:31:26 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 152.89.196.211 - - [11/Oct/2022:05:41:08 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.23 - - [11/Oct/2022:06:30:26 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 192.241.216.164 - - [11/Oct/2022:07:17:33 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [11/Oct/2022:07:42:54 +0200] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.118.53.194 - - [11/Oct/2022:09:06:38 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.45 - - [11/Oct/2022:09:55:39 +0200] "GET /public_html.rar HTTP/1.1" 301 409 "-" "Firefox" 194.110.203.42 - - [11/Oct/2022:09:56:37 +0200] "GET /public_html.rar HTTP/1.1" 301 401 "-" "Firefox" 185.7.214.218 - - [11/Oct/2022:10:11:33 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 192.241.216.144 - - [11/Oct/2022:10:14:22 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 167.248.133.117 - - [11/Oct/2022:10:18:38 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 167.248.133.117 - - [11/Oct/2022:10:18:38 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.248.133.117 - - [11/Oct/2022:10:18:39 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 83.12.50.6 - - [11/Oct/2022:10:44:18 +0200] "GET /public_html.rar HTTP/1.1" 301 392 "-" "Firefox" 162.221.192.26 - - [11/Oct/2022:10:48:20 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 162.221.192.26 - - [11/Oct/2022:10:48:22 +0200] "GET /showLogin.cc HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 66.249.64.201 - - [11/Oct/2022:11:17:24 +0200] "GET /robots.txt HTTP/1.1" 301 303 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.64.203 - - [11/Oct/2022:11:17:24 +0200] "GET / HTTP/1.1" 301 296 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.5249.103 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 192.241.218.58 - - [11/Oct/2022:11:30:44 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.205.22 - - [11/Oct/2022:11:32:43 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.219.20 - - [11/Oct/2022:11:34:54 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 162.221.192.90 - - [11/Oct/2022:13:56:02 +0200] "GET /solr/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 216.218.206.98 - - [11/Oct/2022:14:46:04 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36" 216.218.206.66 - - [11/Oct/2022:15:01:32 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.81 Safari/537.36" 216.218.206.98 - - [11/Oct/2022:15:06:52 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; rv:103.0) Gecko/20100101 Firefox/103.0" 185.83.144.103 - - [11/Oct/2022:15:10:23 +0200] "GET /phpinfo.php.bak HTTP/1.1" 301 318 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 185.83.144.103 - - [11/Oct/2022:15:10:25 +0200] "POST /phpinfo.php.bak HTTP/1.1" 301 318 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.41 - - [11/Oct/2022:15:25:38 +0200] "GET /public_html.tar HTTP/1.1" 301 409 "-" "Firefox" 207.46.13.60 - - [11/Oct/2022:15:33:58 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 118.193.72.169 - - [11/Oct/2022:15:42:22 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 118.193.72.169 - - [11/Oct/2022:15:42:26 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 118.193.72.169 - - [11/Oct/2022:15:42:43 +0200] "GET /robots.txt HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 118.193.72.169 - - [11/Oct/2022:15:42:56 +0200] "GET /sitemap.xml HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 162.142.125.121 - - [11/Oct/2022:16:14:29 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.121 - - [11/Oct/2022:16:14:30 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 147.182.237.203 - - [11/Oct/2022:16:16:43 +0200] "HEAD / HTTP/1.1" 301 - "-" "python-requests/2.25.1" 193.235.141.168 - - [11/Oct/2022:16:20:54 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 109.206.241.59 - - [11/Oct/2022:16:50:01 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 109.206.241.59 - - [11/Oct/2022:16:50:01 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 51.159.99.253 - - [11/Oct/2022:17:19:06 +0200] "GET / HTTP/1.1" 301 383 "-" "\"Mozilla/5.0" 51.159.99.253 - - [11/Oct/2022:17:19:07 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:104.0) Gecko/20100101 Firefox/104.0" 157.245.155.166 - - [11/Oct/2022:17:38:48 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 157.245.155.166 - - [11/Oct/2022:17:38:52 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 157.245.155.166 - - [11/Oct/2022:17:39:05 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 192.241.214.81 - - [11/Oct/2022:17:45:29 +0200] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 162.62.191.231 - - [11/Oct/2022:18:36:00 +0200] "GET / HTTP/1.1" 400 500 "-" "curl/7.64.1" 47.243.233.244 - - [11/Oct/2022:19:41:01 +0200] "GET /dns-query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 343 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:05 +0200] "GET /dns-query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 343 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:07 +0200] "POST /dns-query HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:10 +0200] "POST /dns-query HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:13 +0200] "GET /query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 340 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:15 +0200] "GET /query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 340 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:19 +0200] "POST /query HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:21 +0200] "POST /query HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:25 +0200] "GET /resolve?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 342 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:27 +0200] "GET /resolve?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 342 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:31 +0200] "POST /resolve HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:33 +0200] "POST /resolve HTTP/1.1" 301 305 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:35 +0200] "GET /?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 337 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:38 +0200] "GET /?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 301 337 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:41 +0200] "POST / HTTP/1.1" 301 301 "-" "Go-http-client/1.1" 47.243.233.244 - - [11/Oct/2022:19:41:43 +0200] "POST / HTTP/1.1" 301 301 "-" "Go-http-client/1.1" 128.14.133.58 - - [11/Oct/2022:20:40:22 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.23 - - [11/Oct/2022:20:44:13 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 63.251.232.75 - - [11/Oct/2022:22:36:34 +0200] "GET /Electron/download/windows/\\Program%20Files\\3CX%20Phone%20System\\Data\\DB\\base\\16384\\16393 HTTP/1.0" 301 479 "-" "xfa1" 20.243.202.96 - - [11/Oct/2022:22:56:20 +0200] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:20 +0200] "GET /wordpress/ HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:21 +0200] "GET /wp/ HTTP/1.1" 301 299 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:22 +0200] "GET /blog/ HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:22 +0200] "GET /new/ HTTP/1.1" 301 299 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:23 +0200] "GET /old/ HTTP/1.1" 301 299 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:24 +0200] "GET /test/ HTTP/1.1" 301 300 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:25 +0200] "GET /site/ HTTP/1.1" 301 300 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:25 +0200] "GET /backup/ HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 20.243.202.96 - - [11/Oct/2022:22:56:26 +0200] "GET /demo/ HTTP/1.1" 301 300 "-" "Mozilla/5.0 (Windows NT 6.3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/65.0.2761.7 Safari/537.36" 205.210.31.15 - - [11/Oct/2022:23:00:08 +0200] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 83.136.32.58 - - [11/Oct/2022:23:24:16 +0200] "HEAD / HTTP/1.0" 301 - "https://cert.at/de/services/statistic-survey/" "CERT.at-Statistics-Survey/1.0 (+http://www.cert.at/about/consec/content.html)" 60.217.75.70 - - [11/Oct/2022:23:46:06 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 192.241.201.234 - - [11/Oct/2022:23:53:41 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 51.158.98.24 - - [12/Oct/2022:00:06:41 +0200] "GET / HTTP/1.1" 301 385 "-" "-" 198.235.24.174 - - [12/Oct/2022:00:25:40 +0200] "GET / HTTP/1.1" 301 383 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 20.203.44.229 - - [12/Oct/2022:00:35:01 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.98 Safari/537.36" 34.78.6.216 - - [12/Oct/2022:00:56:52 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 172.104.230.225 - - [12/Oct/2022:01:00:36 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.3 Safari/605.1.15" 69.167.169.55 - - [12/Oct/2022:01:11:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 69.167.169.55 - - [12/Oct/2022:01:12:00 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 194.110.203.45 - - [12/Oct/2022:01:30:33 +0200] "GET /public_html.tgz HTTP/1.1" 301 392 "-" "Firefox"