54.213.45.145 - - [05/Dec/2022:01:18:00 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.202.59.224 - - [05/Dec/2022:01:19:58 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 185.7.214.218 - - [05/Dec/2022:01:34:03 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 43.134.234.251 - - [05/Dec/2022:02:42:00 +0100] "GET / HTTP/1.1" 301 301 "-" "'Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:101.0) Gecko/20100101 Firefox/101.0'" 43.134.234.251 - - [05/Dec/2022:02:42:27 +0100] "-" 408 - "-" "-" 172.105.246.139 - - [05/Dec/2022:02:58:51 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /docs/cplugError.html/ HTTP/1.1" 301 404 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /pools/default/buckets HTTP/1.1" 301 404 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "POST /sdk HTTP/1.1" 301 386 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /nmaplowercheck1670205531 HTTP/1.1" 301 407 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:58:57 +0100] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:59:07 +0100] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:59:07 +0100] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 172.105.246.139 - - [05/Dec/2022:02:59:07 +0100] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 165.22.85.212 - - [05/Dec/2022:03:39:08 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.22.85.212 - - [05/Dec/2022:03:39:08 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.22.85.212 - - [05/Dec/2022:03:39:09 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.46 - - [05/Dec/2022:03:39:58 +0100] "GET /db/database.sql HTTP/1.1" 301 401 "-" "Firefox" 40.77.167.4 - - [05/Dec/2022:03:41:59 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 152.89.196.211 - - [05/Dec/2022:03:50:41 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 52.91.141.118 - - [05/Dec/2022:04:24:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Go-http-client/1.1" 154.89.5.99 - - [05/Dec/2022:04:41:25 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 208.100.26.236 - - [05/Dec/2022:04:50:05 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Linux; Android 7.1.2; LG-SP200) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.93 Mobile Safari/537.36" 152.89.196.211 - - [05/Dec/2022:04:56:11 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [05/Dec/2022:05:16:41 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.192.110 - - [05/Dec/2022:05:25:41 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.40 - - [05/Dec/2022:05:59:49 +0100] "GET /db/sql.sql HTTP/1.1" 301 396 "-" "Firefox" 144.91.106.14 - - [05/Dec/2022:06:04:40 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.82 Safari/537.36" 216.218.206.67 - - [05/Dec/2022:07:00:01 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36 Edg/105.0.1343.53" 208.100.26.249 - - [05/Dec/2022:07:05:15 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.143 Safari/537.36" 208.100.26.244 - - [05/Dec/2022:07:05:15 +0100] "GET / HTTP/1.1" 301 298 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 216.218.206.115 - - [05/Dec/2022:07:10:12 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 194.110.203.46 - - [05/Dec/2022:07:12:25 +0100] "GET /db/sql.sql HTTP/1.1" 301 404 "-" "Firefox" 181.214.218.69 - - [05/Dec/2022:07:12:47 +0100] "-" 408 - "-" "-" 216.218.206.115 - - [05/Dec/2022:07:16:07 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36" 216.218.206.75 - - [05/Dec/2022:07:18:09 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:106.0) Gecko/20100101 Firefox/106.0" 152.89.196.211 - - [05/Dec/2022:07:44:24 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [05/Dec/2022:07:47:58 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.45 - - [05/Dec/2022:08:05:14 +0100] "GET /db/bak.sql HTTP/1.1" 301 387 "-" "Firefox" 192.241.193.82 - - [05/Dec/2022:08:07:39 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [05/Dec/2022:08:15:40 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.29.122 - - [05/Dec/2022:08:20:11 +0100] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 152.89.196.211 - - [05/Dec/2022:08:28:18 +0100] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.204.44 - - [05/Dec/2022:09:29:09 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [05/Dec/2022:09:39:44 +0100] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 103.133.111.120 - - [05/Dec/2022:10:12:06 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 103.133.111.120 - - [05/Dec/2022:10:12:08 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 152.89.196.211 - - [05/Dec/2022:10:32:37 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.45 - - [05/Dec/2022:10:39:53 +0100] "GET /db/bck.sql HTTP/1.1" 301 396 "-" "Firefox" 87.236.176.77 - - [05/Dec/2022:11:39:02 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 35.216.244.6 - - [05/Dec/2022:11:51:19 +0100] "GET / HTTP/1.1" 400 379 "-" "-" 35.216.244.6 - - [05/Dec/2022:11:51:21 +0100] "GET / HTTP/1.1" 301 383 "-" "l9tcpid/v1.1.0" 35.216.244.6 - - [05/Dec/2022:11:51:31 +0100] "GET /.DS_Store HTTP/1.1" 301 307 "-" "Go-http-client/1.1" 35.216.244.6 - - [05/Dec/2022:11:51:31 +0100] "GET / HTTP/1.1" 301 301 "-" "Go-http-client/1.1" 35.216.244.6 - - [05/Dec/2022:11:51:32 +0100] "HEAD /favicon.ico HTTP/1.1" 301 - "-" "Go-http-client/1.1" 35.216.244.6 - - [05/Dec/2022:11:51:32 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 35.216.244.6 - - [05/Dec/2022:11:51:33 +0100] "GET /favicon.ico HTTP/1.1" 200 1150 "https://86.59.113.102/favicon.ico" "Go-http-client/1.1" 35.216.244.6 - - [05/Dec/2022:11:51:34 +0100] "GET /server-status HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.244.6 - - [05/Dec/2022:11:51:34 +0100] "GET /config.json HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.244.6 - - [05/Dec/2022:11:51:35 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.244.6 - - [05/Dec/2022:11:51:35 +0100] "GET /idx_config/ HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.244.6 - - [05/Dec/2022:11:51:36 +0100] "GET /telescope/requests HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.244.6 - - [05/Dec/2022:11:51:36 +0100] "GET /info.php HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 35.216.244.6 - - [05/Dec/2022:11:51:37 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:103.0) Gecko/20100101 Firefox/103.0 abuse.xmco.fr" 185.7.214.218 - - [05/Dec/2022:12:04:46 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 63.251.224.106 - - [05/Dec/2022:12:23:17 +0100] "GET /admin/config.php HTTP/1.0" 301 393 "-" "xfa1" 63.251.224.106 - - [05/Dec/2022:12:28:59 +0100] "GET /admin/modules/fw_ari/htdocs_ari/index.php HTTP/1.0" 301 418 "-" "xfa1" 63.251.224.106 - - [05/Dec/2022:12:38:20 +0100] "GET /recordings/index.php HTTP/1.0" 301 397 "-" "xfa1" 194.110.203.40 - - [05/Dec/2022:12:56:27 +0100] "GET /db/harm.at.bak.sql HTTP/1.1" 301 395 "-" "Firefox" 195.133.20.252 - - [05/Dec/2022:12:57:05 +0100] "GET /api/v2/cmdb/system/admin HTTP/1.1" 301 318 "-" "Report Runner" 194.110.203.45 - - [05/Dec/2022:13:03:17 +0100] "GET /db/easyzumfuehrerschein.com.bak.sql HTTP/1.1" 301 429 "-" "Firefox" 5.39.220.78 - - [05/Dec/2022:13:32:16 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /logon/LogonPoint/tmindex.html HTTP/1.1" 301 412 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "POST /ui/h5-vsan/rest/proxy/service/com.vmware.vsan.client.services.capability.VsanCapabilityProvider/getClusterCapabilityData HTTP/1.1" 301 503 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "PUT /api/v2/cmdb/system/admin/admin HTTP/1.1" 301 413 "-" "Report Runner - Internet Research" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "POST /casa/nodes/thumbprints HTTP/1.1" 301 398 "-" "Guayoyo - Mozilla/5.0 (compatible; vCenter)" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /aspnet-ajax/Telerik.Web.UI.WebResource.axd?type=rau HTTP/1.1" 301 434 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /+CSCOT+/translation-table?type=mst&textdomain=/%2bCSCOE%2b/portal_inc.lua&default-language&lang=../ HTTP/1.1" 301 498 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /rest/applinks/1.0/manifest HTTP/1.1" 301 409 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /dana-na/../dana/html5acc/guacamole/../../../../../../etc/passwd?/dana/html5acc/guacamole/ HTTP/1.1" 400 374 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /autodiscover/autodiscover.json?@abc.com/owa/?&Email=autodiscover/autodiscover.json%3F@abc.com HTTP/1.1" 301 484 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /tmui/login.jsp/..;/tmui/locallb/workspace/fileRead.jsp?fileName=/etc/passwd HTTP/1.1" 301 458 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/1.1" 301 422 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /secure/rest/applinks/1.0/manifest HTTP/1.1" 301 416 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /ui/login.action HTTP/1.1" 301 391 "-" "Guayoyo - Mozilla/5.0 (compatible; vCenter)" 5.39.220.78 - - [05/Dec/2022:13:32:17 +0100] "GET /jira/rest/applinks/1.0/manifest HTTP/1.1" 301 414 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:18 +0100] "GET /confluence/rest/applinks/1.0/manifest HTTP/1.1" 301 420 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:18 +0100] "GET /bitbucket/rest/applinks/1.0/manifest HTTP/1.1" 301 419 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:18 +0100] "GET /bamboo/rest/applinks/1.0/manifest HTTP/1.1" 301 416 "-" "curl/7.54.0" 5.39.220.78 - - [05/Dec/2022:13:32:18 +0100] "GET /crowd/rest/applinks/1.0/manifest HTTP/1.1" 301 415 "-" "curl/7.54.0" 43.134.92.75 - - [05/Dec/2022:14:45:02 +0100] "GET / HTTP/1.1" 400 500 "-" "curl/7.64.1" 54.177.109.248 - - [05/Dec/2022:14:50:57 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "python-requests/2.18.4" 54.177.109.248 - - [05/Dec/2022:14:50:59 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "python-requests/2.18.4" 194.110.203.41 - - [05/Dec/2022:15:12:44 +0100] "GET /db/klub.kornland.at.bck.sql HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.41 - - [05/Dec/2022:15:13:29 +0100] "GET /db/harm.at.bck.sql HTTP/1.1" 301 395 "-" "Firefox" 51.83.226.53 - - [05/Dec/2022:15:43:40 +0100] "GET /robots.txt HTTP/1.1" 301 397 "-" "Mozilla/5.0 (compatible; SeekportBot; +https://bot.seekport.com)" 51.83.226.53 - - [05/Dec/2022:15:43:40 +0100] "GET /robots.txt HTTP/1.1" 301 397 "-" "Mozilla/5.0 (compatible; SeekportBot; +https://bot.seekport.com)" 51.83.226.53 - - [05/Dec/2022:15:43:41 +0100] "GET / HTTP/1.1" 301 387 "-" "Mozilla/5.0 (compatible; SeekportBot; +https://bot.seekport.com)" 47.88.78.6 - - [05/Dec/2022:16:10:53 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; Android 11; M2004J15SC) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36" 47.251.14.232 - - [05/Dec/2022:16:10:58 +0100] "GET /Public/home/js/check.js HTTP/1.1" 301 316 "-" "Mozilla/5.0 (Linux; Android 11; M2004J15SC) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36" 47.88.87.97 - - [05/Dec/2022:16:11:01 +0100] "GET /static/admin/javascript/hetong.js HTTP/1.1" 301 325 "-" "Mozilla/5.0 (Linux; Android 11; M2004J15SC) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36" 209.141.55.120 - - [05/Dec/2022:16:29:51 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.41.193 - - [05/Dec/2022:16:29:52 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 205.185.116.89 - - [05/Dec/2022:16:29:54 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.34.187 - - [05/Dec/2022:16:29:54 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.51.222 - - [05/Dec/2022:16:29:58 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_0_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36" 209.141.34.187 - - [05/Dec/2022:16:29:59 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_0_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36" 205.185.116.25 - - [05/Dec/2022:16:30:03 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_0_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36" 209.141.34.187 - - [05/Dec/2022:16:30:15 +0100] "GET /favicon.ico HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.49.169 - - [05/Dec/2022:16:30:16 +0100] "GET /favicon.ico HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.49.169 - - [05/Dec/2022:16:30:22 +0100] "GET /favicon.ico HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.36.231 - - [05/Dec/2022:16:30:23 +0100] "-" 408 - "-" "-" 209.141.51.222 - - [05/Dec/2022:16:34:54 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 205.185.122.184 - - [05/Dec/2022:16:35:01 +0100] "GET /favicon.ico HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 185.73.125.93 - - [05/Dec/2022:16:36:41 +0100] "GET /api/v2/cmdb/system/admin HTTP/1.1" 301 318 "-" "Report Runner" 152.89.196.103 - - [05/Dec/2022:17:05:11 +0100] "GET /api/v2/cmdb/system/admin HTTP/1.1" 301 318 "-" "Report Runner" 194.110.203.38 - - [05/Dec/2022:17:38:21 +0100] "GET /db/easyzumfuehrerschein.bak.sql HTTP/1.1" 301 425 "-" "Firefox" 185.7.214.218 - - [05/Dec/2022:18:11:16 +0100] "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 301 452 "-" "Python-urllib/3.8" 40.77.167.4 - - [05/Dec/2022:18:22:33 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 183.136.225.32 - - [05/Dec/2022:19:17:04 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.32 - - [05/Dec/2022:19:23:52 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET /indice.html HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 925 "-" "-" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET /nmaplowercheck1670266212 HTTP/1.1" 301 407 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET /Portal/Portal.mwsl HTTP/1.1" 301 401 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:12 +0100] "GET /1joR HTTP/1.1" 301 387 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /inicio.aspx HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /docs/cplugError.html/ HTTP/1.1" 301 404 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /pools/default/buckets HTTP/1.1" 301 404 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "HEAD / HTTP/1.1" 301 - "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "POST /sdk HTTP/1.1" 301 386 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /localstart.jhtml HTTP/1.1" 301 399 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /HNAP1 HTTP/1.1" 301 388 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 301 424 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /server-status HTTP/1.1" 301 396 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /readme.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:13 +0100] "GET /main.php HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:14 +0100] "GET /admin.shtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:14 +0100] "GET /home.pl HTTP/1.1" 301 390 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:14 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:14 +0100] "GET /admin.pl HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:15 +0100] "GET /menu.jsp HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:15 +0100] "GET /admin.jsp HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:15 +0100] "GET /start.shtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:16 +0100] "GET /home.aspx HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:16 +0100] "GET /default.aspx HTTP/1.1" 301 395 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:16 +0100] "GET /admin.jsa HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:17 +0100] "GET /admin.jhtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:17 +0100] "GET /home.asp HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:17 +0100] "GET /default.jsp HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:17 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:18 +0100] "GET /base.asp HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:18 +0100] "GET /localstart.jsa HTTP/1.1" 301 397 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:18 +0100] "GET /admin.cgi HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:19 +0100] "GET /inicio.cfm HTTP/1.1" 301 393 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:19 +0100] "GET /menu.asp HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:19 +0100] "GET /admin.cfm HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:20 +0100] "GET /start.cfm HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:20 +0100] "GET /indice.php HTTP/1.1" 301 393 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:20 +0100] "GET /default.jsa HTTP/1.1" 301 394 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:20 +0100] "GET /admin.asp HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:21 +0100] "GET /localstart.shtml HTTP/1.1" 301 399 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:21 +0100] "GET /home.jsp HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:21 +0100] "GET /indice.jhtml HTTP/1.1" 301 395 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:22 +0100] "GET /start.cgi HTTP/1.1" 301 392 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:22 +0100] "GET /base.php HTTP/1.1" 301 391 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:22 +0100] "GET /inicio.jsp HTTP/1.1" 301 393 "-" "curl/7.54.0" 195.96.137.6 - - [05/Dec/2022:19:50:43 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 194.110.203.38 - - [05/Dec/2022:19:58:56 +0100] "GET /db/klub.bck.sql HTTP/1.1" 301 401 "-" "Firefox" 167.94.146.58 - - [05/Dec/2022:20:03:50 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.146.58 - - [05/Dec/2022:20:03:50 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.146.58 - - [05/Dec/2022:20:03:50 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 152.89.196.211 - - [05/Dec/2022:20:19:22 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [05/Dec/2022:20:49:39 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 205.210.31.183 - - [05/Dec/2022:21:13:40 +0100] "GET / HTTP/1.1" 301 386 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 152.89.196.211 - - [05/Dec/2022:21:48:19 +0100] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 106.75.178.169 - - [05/Dec/2022:22:06:19 +0100] "{\"method\":\"login\",\"params\":{\"login\":\"45JymPWP1DeQxxMZNJv9w2bTQ2WJDAmw18wUSryDQa3RPrympJPoUSVcFEDv3bhiMJGWaCD4a3KrFCorJHCMqXJUKApSKDV\",\"pass\":\"xxoo\",\"agent\":\"xmr-stak-cpu/1.3.0-1.5.0\"},\"id\":1}" 400 379 "-" "-" 106.75.178.169 - - [05/Dec/2022:22:06:20 +0100] "{\"id\":1,\"method\":\"mining.subscribe\",\"params\":[]}" 400 379 "-" "-" 106.75.178.169 - - [05/Dec/2022:22:06:21 +0100] "{\"params\": [\"miner1\", \"password\"], \"id\": 2, \"method\": \"mining.authorize\"}" 400 379 "-" "-" 106.75.178.169 - - [05/Dec/2022:22:06:23 +0100] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"blue1\",\"pass\":\"x\",\"agent\":\"Windows NT 6.1; Win64; x64\"}}" 400 379 "-" "-" 106.75.178.169 - - [05/Dec/2022:22:06:24 +0100] "{\"params\": [\"miner1\", \"bf\", \"00000001\", \"504e86ed\", \"b2957c02\"], \"id\": 4, \"method\": \"mining.submit\"}" 400 379 "-" "-" 106.75.178.169 - - [05/Dec/2022:22:06:25 +0100] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"x\",\"pass\":\"null\",\"agent\":\"XMRig/5.13.1\",\"algo\":[\"cn/1\",\"cn/2\",\"cn/r\",\"cn/fast\",\"cn/half\",\"cn/xao\",\"cn/rto\",\"cn/rwz\",\"cn/zls\",\"cn/double\",\"rx/0\",\"rx/wow\",\"rx/loki\",\"rx/arq\",\"rx/sfx\",\"rx/keva\"]}}" 400 379 "-" "-" 35.88.60.67 - - [05/Dec/2022:22:12:00 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 72.251.235.148 - - [05/Dec/2022:22:57:31 +0100] "GET /admin/modules/fw_ari/htdocs_ari/index.php HTTP/1.0" 301 418 "-" "xfa1" 152.89.196.211 - - [05/Dec/2022:23:07:23 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [05/Dec/2022:23:26:09 +0100] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 92.53.96.11 - - [05/Dec/2022:23:34:31 +0100] "GET /wp-22.php?sfilename=on.php&sfilecontent=<%3F%3D409723%2A20%3B&supfiles=on.php HTTP/1.1" 301 474 "-" "Mozilla/5.0 (Linux; Android 9; Redmi Note 7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.106 Mobile Safari/537.36" 192.241.212.203 - - [06/Dec/2022:00:21:25 +0100] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 87.236.176.5 - - [06/Dec/2022:00:22:39 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 34.76.96.55 - - [06/Dec/2022:00:22:41 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 198.12.252.180 - - [06/Dec/2022:00:35:41 +0100] "GET /db/1.sql HTTP/1.1" 301 385 "-" "Firefox"