185.107.56.26 - - [16/Oct/2022:02:07:53 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.0.0 Safari/537.36" 185.107.56.26 - - [16/Oct/2022:02:07:53 +0200] "GET / HTTP/1.1" 500 2946 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.0.0 Safari/537.36" 164.92.164.249 - - [16/Oct/2022:02:39:44 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) Project-Resonance (http://project-resonance.com/) (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 93.159.230.88 - - [16/Oct/2022:02:56:52 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.39 - - [16/Oct/2022:03:03:25 +0200] "GET /www.harm.rar HTTP/1.1" 301 389 "-" "Firefox" 162.142.125.220 - - [16/Oct/2022:03:36:31 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.220 - - [16/Oct/2022:03:36:31 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.220 - - [16/Oct/2022:03:36:32 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 167.94.138.117 - - [16/Oct/2022:03:49:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.117 - - [16/Oct/2022:03:50:00 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 194.110.203.45 - - [16/Oct/2022:03:53:49 +0200] "GET /www.easyzumfuehrerschein.rar HTTP/1.1" 301 422 "-" "Firefox" 93.159.230.83 - - [16/Oct/2022:03:56:46 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 74.82.47.39 - - [16/Oct/2022:03:59:26 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; rv:103.0) Gecko/20100101 Firefox/103.0" 74.82.47.3 - - [16/Oct/2022:04:14:40 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.102 Safari/537.36 OPR/90.0.4480.100" 74.82.47.39 - - [16/Oct/2022:04:19:23 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:106.0) Gecko/20100101 Firefox/106.0" 93.159.230.87 - - [16/Oct/2022:04:57:26 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.39 - - [16/Oct/2022:05:25:19 +0200] "GET /www.easyzumfuehrerschein.sql HTTP/1.1" 301 422 "-" "Firefox" 194.110.203.39 - - [16/Oct/2022:05:27:30 +0200] "GET /www.harm.sql HTTP/1.1" 301 389 "-" "Firefox" 138.246.253.24 - - [16/Oct/2022:05:31:01 +0200] "GET /robots.txt HTTP/1.1" 301 403 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 185.142.236.41 - - [16/Oct/2022:05:52:57 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 185.142.236.41 - - [16/Oct/2022:05:53:04 +0200] "" 400 379 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:06 +0200] "" 400 379 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:07 +0200] "" 400 379 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:10 +0200] "quit" 400 379 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:12 +0200] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:13 +0200] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:14 +0200] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 185.142.236.41 - - [16/Oct/2022:05:53:18 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 185.142.236.41 - - [16/Oct/2022:05:53:19 +0200] "" 400 379 "-" "-" 77.74.177.119 - - [16/Oct/2022:05:56:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 138.246.253.24 - - [16/Oct/2022:06:04:55 +0200] "GET /robots.txt HTTP/1.1" 301 404 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 167.94.138.118 - - [16/Oct/2022:06:13:49 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.138.118 - - [16/Oct/2022:06:13:49 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.118 - - [16/Oct/2022:06:13:50 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 198.244.212.132 - - [16/Oct/2022:06:19:10 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; Android 11; RMX1921) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.88 Mobile Safari/537.36" 134.122.184.11 - - [16/Oct/2022:06:27:30 +0200] "GET /81160/ HTTP/1.1" 301 308 "https://www.google.com/search?q=www.illusioncn.org" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 192.241.221.77 - - [16/Oct/2022:06:43:51 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 93.159.230.88 - - [16/Oct/2022:06:57:46 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.39 - - [16/Oct/2022:07:35:22 +0200] "GET /www.klub.sql.gz HTTP/1.1" 301 401 "-" "Firefox" 81.209.177.16 - - [16/Oct/2022:07:41:36 +0200] "GET /robots.txt HTTP/1.1" 301 396 "-" "netEstate NE Crawler (+http://www.website-datenbank.de/)" 81.209.177.16 - - [16/Oct/2022:07:41:36 +0200] "GET / HTTP/1.1" 301 386 "-" "netEstate NE Crawler (+http://www.website-datenbank.de/)" 93.159.230.89 - - [16/Oct/2022:08:01:11 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.46 - - [16/Oct/2022:08:02:03 +0200] "GET /www.easyzumfuehrerschein.sql.gz HTTP/1.1" 301 425 "-" "Firefox" 183.136.225.35 - - [16/Oct/2022:08:33:55 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.35 - - [16/Oct/2022:08:34:27 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.35 - - [16/Oct/2022:08:34:49 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.35 - - [16/Oct/2022:08:35:30 +0200] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 194.110.203.41 - - [16/Oct/2022:09:21:50 +0200] "GET /www.klub.tar HTTP/1.1" 301 398 "-" "Firefox" 87.236.176.97 - - [16/Oct/2022:09:34:47 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 137.184.68.107 - - [16/Oct/2022:09:38:51 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 137.184.68.107 - - [16/Oct/2022:09:38:52 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 137.184.68.107 - - [16/Oct/2022:09:38:57 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 83.12.50.6 - - [16/Oct/2022:09:43:19 +0200] "GET /www.easyzumfuehrerschein.tar HTTP/1.1" 301 422 "-" "Firefox" 68.183.229.50 - - [16/Oct/2022:09:57:25 +0200] "GET /style.php?sig=rename HTTP/1.1" 301 399 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.75 Safari/537.36" 192.241.209.4 - - [16/Oct/2022:10:18:03 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 192.241.218.97 - - [16/Oct/2022:11:07:20 +0200] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 198.12.252.180 - - [16/Oct/2022:11:52:07 +0200] "GET /www.klub.tar.gz HTTP/1.1" 301 401 "-" "Firefox" 152.89.196.211 - - [16/Oct/2022:11:52:57 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 104.197.27.160 - - [16/Oct/2022:12:46:41 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/61.0.3163.79 Safari/537.36" 35.192.164.215 - - [16/Oct/2022:12:48:29 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:55.0) Gecko/20100101 Firefox/55.0" 152.89.196.211 - - [16/Oct/2022:13:47:10 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.23 - - [16/Oct/2022:13:51:27 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 194.110.203.40 - - [16/Oct/2022:13:51:51 +0200] "GET /www.harm.tgz HTTP/1.1" 301 389 "-" "Firefox" 83.12.50.6 - - [16/Oct/2022:14:09:46 +0200] "GET /www.easyzumfuehrerschein.tgz HTTP/1.1" 301 422 "-" "Firefox" 109.206.241.59 - - [16/Oct/2022:14:50:59 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 109.206.241.59 - - [16/Oct/2022:14:51:00 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 162.142.125.121 - - [16/Oct/2022:16:48:07 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.121 - - [16/Oct/2022:16:48:08 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 222.181.11.224 - - [16/Oct/2022:17:33:39 +0200] "GET / HTTP/1.0" 301 383 "-" "-" 222.94.163.222 - - [16/Oct/2022:17:33:50 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36" 193.235.141.169 - - [16/Oct/2022:17:38:07 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 192.241.217.241 - - [16/Oct/2022:18:13:37 +0200] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.45 - - [16/Oct/2022:18:29:09 +0200] "GET /www.easyzumfuehrerschein.7z HTTP/1.1" 301 421 "-" "Firefox" 183.136.225.9 - - [16/Oct/2022:20:58:21 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.9 - - [16/Oct/2022:20:58:38 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.9 - - [16/Oct/2022:20:59:06 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.9 - - [16/Oct/2022:20:59:26 +0200] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 34.71.45.209 - - [16/Oct/2022:21:07:53 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/61.0.3163.79 Safari/537.36" 194.110.203.45 - - [16/Oct/2022:21:49:49 +0200] "GET /www.klub.bck HTTP/1.1" 301 398 "-" "Firefox" 183.136.225.9 - - [16/Oct/2022:23:05:47 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.9 - - [16/Oct/2022:23:06:06 +0200] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 43.131.66.209 - - [16/Oct/2022:23:21:49 +0200] "GET / HTTP/1.1" 400 500 "-" "curl/7.64.1" 194.110.203.38 - - [16/Oct/2022:23:36:03 +0200] "GET /easyzumfuehrerschein.com.gz HTTP/1.1" 301 421 "-" "Firefox" 152.89.196.211 - - [16/Oct/2022:23:57:25 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 35.195.93.98 - - [17/Oct/2022:01:00:35 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 192.241.216.180 - - [17/Oct/2022:01:10:49 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.205.22 - - [17/Oct/2022:01:14:11 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.219.20 - - [17/Oct/2022:01:14:37 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.44 - - [17/Oct/2022:01:15:02 +0200] "GET /harm.at.sql HTTP/1.1" 301 388 "-" "Firefox" 139.59.247.127 - - [17/Oct/2022:01:33:53 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 139.59.247.127 - - [17/Oct/2022:01:33:55 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 139.59.247.127 - - [17/Oct/2022:01:34:03 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 60.217.75.70 - - [17/Oct/2022:01:38:09 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 152.89.196.211 - - [17/Oct/2022:01:44:48 +0200] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 35.91.4.141 - - [17/Oct/2022:01:53:40 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.212.186.235 - - [17/Oct/2022:01:54:08 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"