164.92.229.138 - - [26/Oct/2022:02:21:07 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 206.189.116.84 - - [26/Oct/2022:03:22:05 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 206.189.116.84 - - [26/Oct/2022:03:22:06 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 206.189.116.84 - - [26/Oct/2022:03:22:07 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 124.156.223.97 - - [26/Oct/2022:03:37:27 +0200] "GET / HTTP/1.1" 301 301 "-" "'Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:101.0) Gecko/20100101 Firefox/101.0'" 192.241.220.110 - - [26/Oct/2022:03:52:24 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.215.109 - - [26/Oct/2022:03:55:34 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 192.241.218.58 - - [26/Oct/2022:03:58:35 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 167.248.133.120 - - [26/Oct/2022:04:23:43 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 167.248.133.120 - - [26/Oct/2022:04:23:44 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.248.133.120 - - [26/Oct/2022:04:23:45 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 152.89.196.211 - - [26/Oct/2022:04:40:23 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.212.97 - - [26/Oct/2022:04:49:49 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 109.248.6.108 - - [26/Oct/2022:05:28:23 +0200] "GET /favicon.ico HTTP/1.0" 301 399 "-" "masscan-ng/1.3 (https://github.com/bi-zone/masscan-ng)" 184.105.247.248 - - [26/Oct/2022:05:28:38 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.88 Safari/537.36" 184.105.247.224 - - [26/Oct/2022:05:40:25 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.5 Safari/605.1.15" 184.105.247.200 - - [26/Oct/2022:05:44:24 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.102 Safari/537.36 OPR/90.0.4480.117" 45.83.67.91 - - [26/Oct/2022:05:46:55 +0200] "GET / HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0" 45.83.67.61 - - [26/Oct/2022:05:46:56 +0200] "GET /favicon.ico HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0" 208.100.26.248 - - [26/Oct/2022:05:52:41 +0200] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 208.100.26.236 - - [26/Oct/2022:05:52:42 +0200] "GET / HTTP/1.1" 301 298 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.23 - - [26/Oct/2022:05:55:10 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 194.110.203.39 - - [26/Oct/2022:06:30:13 +0200] "GET /config/db.bak HTTP/1.1" 301 399 "-" "Firefox" 152.89.196.211 - - [26/Oct/2022:06:42:00 +0200] "-" 408 - "-" "-" 192.241.215.228 - - [26/Oct/2022:07:09:43 +0200] "GET /ReportServer HTTP/1.1" 301 307 "-" "Mozilla/5.0 zgrab/0.x" 198.12.252.180 - - [26/Oct/2022:07:27:24 +0200] "GET /config/db.bak HTTP/1.1" 301 390 "-" "Firefox" 192.241.219.83 - - [26/Oct/2022:07:32:29 +0200] "GET /login HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.38 - - [26/Oct/2022:08:13:00 +0200] "GET /config/db.bck HTTP/1.1" 301 390 "-" "Firefox" 154.6.13.152 - - [26/Oct/2022:08:50:19 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 154.6.13.152 - - [26/Oct/2022:08:50:20 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 193.106.29.122 - - [26/Oct/2022:09:02:41 +0200] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 188.166.87.233 - - [26/Oct/2022:09:02:43 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 188.166.87.233 - - [26/Oct/2022:09:02:45 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 188.166.87.233 - - [26/Oct/2022:09:02:46 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 188.166.87.233 - - [26/Oct/2022:09:03:07 +0200] "-" 408 - "-" "-" 179.43.175.204 - - [26/Oct/2022:09:07:51 +0200] "GET /.esmtprc HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.41 Safari/537.36 Edg/101.0.1210.26" 164.52.24.172 - - [26/Oct/2022:09:27:00 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 164.52.24.172 - - [26/Oct/2022:09:27:23 +0200] "GET /favicon.ico HTTP/1.1" 301 394 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 128.1.248.26 - - [26/Oct/2022:09:54:17 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.47 - - [26/Oct/2022:10:52:32 +0200] "GET /config/db.php.bak HTTP/1.1" 301 394 "-" "Firefox" 194.110.203.39 - - [26/Oct/2022:10:58:13 +0200] "GET /config/db.php.bak HTTP/1.1" 301 411 "-" "Firefox" 162.248.160.43 - - [26/Oct/2022:11:24:22 +0200] "GET /application/themes/cms/assets/js/fileupload/js/app.js HTTP/1.1" 301 438 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.1.6) Gecko/20091201 Firefox/3.5.6" 161.35.29.185 - - [26/Oct/2022:11:28:25 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 161.35.29.185 - - [26/Oct/2022:11:28:27 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 161.35.29.185 - - [26/Oct/2022:11:28:38 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.46 - - [26/Oct/2022:12:28:27 +0200] "GET /config/db.php.bck HTTP/1.1" 301 394 "-" "Firefox" 198.235.24.172 - - [26/Oct/2022:13:24:43 +0200] "GET / HTTP/1.1" 301 394 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 208.100.26.246 - - [26/Oct/2022:13:36:48 +0200] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 Edg/84.0.522.52" 176.34.163.103 - - [26/Oct/2022:13:49:44 +0200] "GET /robots.txt HTTP/1.1" 301 304 "-" "webprosbot/2.0 (+mailto:abuse-6337@webpros.com)" 176.34.163.103 - - [26/Oct/2022:13:49:44 +0200] "GET /robots.txt HTTP/1.1" 200 101 "-" "webprosbot/2.0 (+mailto:abuse-6337@webpros.com)" 194.110.203.44 - - [26/Oct/2022:14:02:23 +0200] "GET /config/database.php~ HTTP/1.1" 301 406 "-" "Firefox" 194.110.203.47 - - [26/Oct/2022:14:07:58 +0200] "GET /config/database.php~ HTTP/1.1" 301 414 "-" "Firefox" 192.3.251.168 - - [26/Oct/2022:15:04:40 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36" 68.183.180.219 - - [26/Oct/2022:15:47:46 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 68.183.180.219 - - [26/Oct/2022:15:47:48 +0200] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 194.110.203.40 - - [26/Oct/2022:16:08:00 +0200] "GET /config/database.bak HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.42 - - [26/Oct/2022:16:09:54 +0200] "GET /config/database.bak HTTP/1.1" 301 396 "-" "Firefox" 192.241.200.74 - - [26/Oct/2022:16:14:53 +0200] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 205.210.31.156 - - [26/Oct/2022:16:18:53 +0200] "GET / HTTP/1.1" 301 385 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 179.43.175.204 - - [26/Oct/2022:16:49:24 +0200] "GET /api/settings/values HTTP/1.1" 301 313 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.6; rv:25.0) Gecko/20100101 Firefox/25.0" 194.110.203.44 - - [26/Oct/2022:17:40:32 +0200] "GET /config/database.bak HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.42 - - [26/Oct/2022:17:54:41 +0200] "GET /config/database.bck HTTP/1.1" 301 413 "-" "Firefox" 213.32.122.82 - - [26/Oct/2022:17:55:17 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 138.246.253.24 - - [26/Oct/2022:18:03:43 +0200] "GET /robots.txt HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 142.93.159.182 - - [26/Oct/2022:18:47:30 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 142.93.159.182 - - [26/Oct/2022:18:47:31 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 142.93.159.182 - - [26/Oct/2022:18:47:36 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 198.235.24.177 - - [26/Oct/2022:18:55:08 +0200] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.183.96.203 - - [26/Oct/2022:19:25:08 +0200] "GET /autodiscover/autodiscover.json?@test.com/owa/?&Email=autodiscover/autodiscover.json%3F@test.com HTTP/1.1" 301 349 "-" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; WOW64; Trident/6.0)" 146.190.232.230 - - [26/Oct/2022:19:53:54 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 146.190.232.230 - - [26/Oct/2022:19:53:54 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 146.190.232.230 - - [26/Oct/2022:19:53:57 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 205.210.31.144 - - [26/Oct/2022:20:16:55 +0200] "GET / HTTP/1.1" 301 379 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.180.143.5 - - [26/Oct/2022:20:35:15 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 205.210.31.3 - - [26/Oct/2022:20:55:48 +0200] "GET / HTTP/1.1" 301 380 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 192.241.213.215 - - [26/Oct/2022:20:56:08 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.23 - - [26/Oct/2022:20:57:13 +0200] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 173.249.27.105 - - [26/Oct/2022:20:58:08 +0200] "GET /style.php?sig=rename HTTP/1.1" 301 399 "-" "Mozilla/5.0 (Linux; Android 7.1.2; Redmi 4X) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.120 Mobile Safari/537.36" 194.110.203.47 - - [26/Oct/2022:21:54:51 +0200] "GET /config/database.php.bck HTTP/1.1" 301 409 "-" "Firefox" 194.110.203.40 - - [26/Oct/2022:22:02:57 +0200] "GET /config/database.php.bck HTTP/1.1" 301 400 "-" "Firefox" 198.12.252.180 - - [26/Oct/2022:22:23:41 +0200] "GET /config/database.php.bck HTTP/1.1" 301 417 "-" "Firefox" 162.142.125.121 - - [26/Oct/2022:23:22:07 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.121 - - [26/Oct/2022:23:22:09 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 193.235.141.168 - - [26/Oct/2022:23:31:12 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 137.226.113.44 - - [26/Oct/2022:23:32:08 +0200] "GET / HTTP/1.1" 301 308 "-" "Mozilla/5.0 zgrab/0.x (compatible; Researchscan/http; +http://researchscan.comsys.rwth-aachen.de)" 194.110.203.47 - - [27/Oct/2022:00:01:06 +0200] "GET /config/connect.php~ HTTP/1.1" 301 413 "-" "Firefox" 128.14.141.34 - - [27/Oct/2022:00:19:40 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 54.159.37.85 - - [27/Oct/2022:01:12:18 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.2;en-US) AppleWebKit/537.32.36 (KHTML, live Gecko) Chrome/54.0.3083.101 Safari/537.32" 54.159.20.212 - - [27/Oct/2022:01:26:09 +0200] "GET /.git/config HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 11; zh-CN; M2012K11AC Build/RKQ1.200826.002) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/78.0.3904.108 Quark/5.4.8.200 Mobile Safari/537.36" 3.237.9.122 - - [27/Oct/2022:01:34:15 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 3.237.9.122 - - [27/Oct/2022:01:34:15 +0200] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 3.237.9.122 - - [27/Oct/2022:01:34:15 +0200] "GET /99vt HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 3.237.9.122 - - [27/Oct/2022:01:34:15 +0200] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 3.237.9.122 - - [27/Oct/2022:01:34:16 +0200] "GET /99vu HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 34.76.158.233 - - [27/Oct/2022:01:34:49 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 35.175.209.67 - - [27/Oct/2022:01:45:15 +0200] "GET /.git/config HTTP/1.1" 301 304 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 6_0 like Mac OS X) AppleWebKit/536.26 (KHTML, like Gecko) Version/6.0 Mobile/10A403 Safari/8536.25" 3.71.77.46 - - [27/Oct/2022:01:49:16 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "python-requests/2.18.4" 3.71.77.46 - - [27/Oct/2022:01:49:16 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "python-requests/2.18.4" 161.35.24.13 - - [27/Oct/2022:01:50:35 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36"