24.199.83.252 - - [25/Nov/2022:01:15:11 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 93.159.230.83 - - [25/Nov/2022:01:40:35 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 185.7.214.218 - - [25/Nov/2022:01:40:53 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 194.110.203.42 - - [25/Nov/2022:02:10:08 +0100] "GET /dump.7z HTTP/1.1" 301 401 "-" "Firefox" 194.110.203.39 - - [25/Nov/2022:02:17:59 +0100] "GET /dump.7z HTTP/1.1" 301 393 "-" "Firefox" 93.159.230.87 - - [25/Nov/2022:02:40:38 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 179.43.177.154 - - [25/Nov/2022:02:42:38 +0100] "GET /wp-content/.git/config HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/93.0.4577.63 Safari/537.36" 184.105.247.252 - - [25/Nov/2022:03:16:47 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:100.0) Gecko/20100101 Firefox/100.0" 184.105.247.238 - - [25/Nov/2022:03:28:34 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:104.0) Gecko/20100101 Firefox/104.0" 184.105.247.247 - - [25/Nov/2022:03:34:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 93.159.230.88 - - [25/Nov/2022:03:40:58 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 193.106.29.122 - - [25/Nov/2022:04:37:06 +0100] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 93.159.230.88 - - [25/Nov/2022:04:41:02 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 192.241.208.7 - - [25/Nov/2022:05:12:09 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.44 - - [25/Nov/2022:05:18:35 +0100] "GET /dbdump.7z HTTP/1.1" 301 403 "-" "Firefox" 167.94.138.46 - - [25/Nov/2022:05:36:02 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.138.46 - - [25/Nov/2022:05:36:03 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.46 - - [25/Nov/2022:05:36:04 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 93.159.230.89 - - [25/Nov/2022:05:40:48 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 93.159.230.83 - - [25/Nov/2022:06:41:20 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 134.209.157.159 - - [25/Nov/2022:06:42:54 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.209.157.159 - - [25/Nov/2022:06:42:56 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.209.157.159 - - [25/Nov/2022:06:43:01 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 198.235.24.54 - - [25/Nov/2022:07:22:18 +0100] "GET / HTTP/1.1" 301 393 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 93.159.230.89 - - [25/Nov/2022:07:41:04 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 192.241.210.7 - - [25/Nov/2022:07:53:20 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 162.142.125.8 - - [25/Nov/2022:08:35:20 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.8 - - [25/Nov/2022:08:35:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.8 - - [25/Nov/2022:08:35:21 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 194.110.203.44 - - [25/Nov/2022:08:37:02 +0100] "GET /backup.7z HTTP/1.1" 301 386 "-" "Firefox" 93.159.230.88 - - [25/Nov/2022:08:41:01 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 185.180.143.76 - - [25/Nov/2022:09:33:15 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36" 93.159.230.87 - - [25/Nov/2022:09:41:30 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.44 - - [25/Nov/2022:09:53:03 +0100] "GET /localhost.7z HTTP/1.1" 301 406 "-" "Firefox" 192.241.192.92 - - [25/Nov/2022:10:01:05 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 185.7.214.218 - - [25/Nov/2022:10:19:42 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 194.110.203.42 - - [25/Nov/2022:10:39:31 +0100] "GET /localhost.7z HTTP/1.1" 301 389 "-" "Firefox" 93.159.230.89 - - [25/Nov/2022:10:41:18 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 94.102.56.151 - - [25/Nov/2022:10:49:19 +0100] "GET / HTTP/1.1" 301 383 "-" "libwww-perl/6.61" 152.89.196.211 - - [25/Nov/2022:11:19:13 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 77.74.177.119 - - [25/Nov/2022:11:41:59 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.38 - - [25/Nov/2022:11:47:56 +0100] "GET /localhostdb.7z HTTP/1.1" 301 391 "-" "Firefox" 152.89.196.211 - - [25/Nov/2022:11:51:37 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 198.235.24.59 - - [25/Nov/2022:12:15:20 +0100] "GET / HTTP/1.1" 301 383 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 80.85.84.177 - - [25/Nov/2022:12:27:37 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20100101 Firefox/8.0" 154.89.5.210 - - [25/Nov/2022:13:04:56 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 194.110.203.42 - - [25/Nov/2022:13:25:42 +0100] "GET /localhost_db.7z HTTP/1.1" 301 392 "-" "Firefox" 194.110.203.46 - - [25/Nov/2022:14:11:49 +0100] "GET /localhost_db.7z HTTP/1.1" 301 409 "-" "Firefox" 152.89.196.211 - - [25/Nov/2022:14:13:18 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.66.88.47 - - [25/Nov/2022:14:36:34 +0100] "GET / HTTP/1.1" 301 301 "-" "Roku/DVP-4.1 (024.01E01250A)" 185.66.88.47 - - [25/Nov/2022:14:36:34 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Roku/DVP-4.1 (024.01E01250A)" 109.237.98.226 - - [25/Nov/2022:14:43:54 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:55 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:55 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:56 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:56 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:57 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:57 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:58 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:58 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:59 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:43:59 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:00 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:00 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:01 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:01 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:02 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:02 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:03 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:03 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [25/Nov/2022:14:44:04 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 152.89.196.211 - - [25/Nov/2022:15:37:23 +0100] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 23.81.180.11 - - [25/Nov/2022:15:41:13 +0100] "" 400 379 "-" "-" 51.158.103.247 - - [25/Nov/2022:15:43:36 +0100] "GET / HTTP/1.1" 301 389 "-" "-" 162.142.125.8 - - [25/Nov/2022:16:26:03 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.8 - - [25/Nov/2022:16:26:04 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.8 - - [25/Nov/2022:16:26:05 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 163.172.180.25 - - [25/Nov/2022:16:36:55 +0100] "GET / HTTP/1.1" 301 400 "-" "-" 152.89.196.211 - - [25/Nov/2022:16:46:10 +0100] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [25/Nov/2022:17:50:31 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.7.214.218 - - [25/Nov/2022:18:25:03 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 152.89.196.211 - - [25/Nov/2022:19:16:19 +0100] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.45 - - [25/Nov/2022:19:21:31 +0100] "GET /localhost-database.7z HTTP/1.1" 301 398 "-" "Firefox" 89.248.163.204 - - [25/Nov/2022:19:56:41 +0100] "-" 408 - "-" "-" 152.89.196.211 - - [25/Nov/2022:20:27:03 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 35.216.166.72 - - [25/Nov/2022:21:04:51 +0100] "GET / HTTP/1.1" 400 379 "-" "-" 35.216.166.72 - - [25/Nov/2022:21:04:53 +0100] "GET / HTTP/1.1" 301 383 "-" "l9tcpid/v1.1.0" 35.216.166.72 - - [25/Nov/2022:21:04:58 +0100] "GET /.DS_Store HTTP/1.1" 301 307 "-" "Go-http-client/1.1" 35.216.166.72 - - [25/Nov/2022:21:04:58 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.166.72 - - [25/Nov/2022:21:04:59 +0100] "GET /server-status HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.166.72 - - [25/Nov/2022:21:04:59 +0100] "GET /config.json HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.166.72 - - [25/Nov/2022:21:04:59 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.166.72 - - [25/Nov/2022:21:05:00 +0100] "GET /idx_config/ HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.166.72 - - [25/Nov/2022:21:05:00 +0100] "GET /telescope/requests HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.166.72 - - [25/Nov/2022:21:05:01 +0100] "GET /info.php HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 194.110.203.41 - - [25/Nov/2022:21:25:31 +0100] "GET /localhost_dump.7z HTTP/1.1" 301 394 "-" "Firefox" 152.89.196.211 - - [25/Nov/2022:21:49:25 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 23.251.102.74 - - [25/Nov/2022:22:08:31 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 205.210.31.52 - - [25/Nov/2022:22:20:02 +0100] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 92.222.9.85 - - [25/Nov/2022:22:21:11 +0100] "GET /wp-commentin.php HTTP/1.1" 301 395 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.4 Mobile/15E148 Safari/604.1" 159.65.94.153 - - [25/Nov/2022:22:44:42 +0100] "GET /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 159.65.94.153 - - [25/Nov/2022:22:44:42 +0100] "POST / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 139.59.119.203 - - [25/Nov/2022:23:43:46 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 139.59.119.203 - - [25/Nov/2022:23:43:49 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 139.59.119.203 - - [25/Nov/2022:23:43:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.38 - - [25/Nov/2022:23:55:35 +0100] "GET /localhost-dump.7z HTTP/1.1" 301 403 "-" "Firefox" 35.212.26.22 - - [26/Nov/2022:00:05:09 +0100] "" 400 379 "-" "-" 128.14.134.170 - - [26/Nov/2022:00:05:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 35.195.93.98 - - [26/Nov/2022:00:18:29 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 192.241.207.181 - - [26/Nov/2022:00:40:30 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x"