205.210.31.24 - - [03/Jan/2023:01:18:50 +0100] "GET / HTTP/1.1" 301 394 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 194.110.203.39 - - [03/Jan/2023:01:47:50 +0100] "GET /database/klub-database.sql HTTP/1.1" 301 412 "-" "Firefox" 42.236.10.78 - - [03/Jan/2023:02:37:46 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Linux; Android 8.0; Pixel 2 Build/OPD3.170816.012) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Mobile Safari/537.36" 42.236.10.78 - - [03/Jan/2023:02:37:47 +0100] "GET / HTTP/1.1" 301 297 "http://baidu.com/" "Mozilla/5.0 (Linux; Android 8.0; Pixel 2 Build/OPD3.170816.012) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Mobile Safari/537.36" 137.184.89.107 - - [03/Jan/2023:02:51:39 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.141 Safari/537.36" 66.240.236.116 - - [03/Jan/2023:03:40:19 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.44 - - [03/Jan/2023:04:02:37 +0100] "GET /database/harm_dump.sql HTTP/1.1" 301 399 "-" "Firefox" 35.208.7.196 - - [03/Jan/2023:04:05:34 +0100] "" 400 379 "-" "-" 152.32.129.53 - - [03/Jan/2023:04:32:09 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 141.11.127.101 - - [03/Jan/2023:04:37:03 +0100] "POST / HTTP/1.1" 301 301 "-" "Python/3.7 aiohttp/3.7.4.post0" 159.89.169.44 - - [03/Jan/2023:04:38:43 +0100] "GET / HTTP/1.1" 400 374 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36" 65.49.20.66 - - [03/Jan/2023:04:53:11 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:106.0) Gecko/20100101 Firefox/106.0" 65.49.20.66 - - [03/Jan/2023:05:01:48 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36 Edg/105.0.1343.53" 65.49.20.66 - - [03/Jan/2023:05:05:11 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0" 65.49.20.66 - - [03/Jan/2023:05:06:22 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36" 194.110.203.39 - - [03/Jan/2023:05:41:11 +0100] "GET /database/easyzumfuehrerschein-dump.sql HTTP/1.1" 301 432 "-" "Firefox" 185.180.143.12 - - [03/Jan/2023:05:52:59 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36" 194.110.203.39 - - [03/Jan/2023:06:20:17 +0100] "GET /database/klub-dump.sql HTTP/1.1" 301 408 "-" "Firefox" 192.241.221.15 - - [03/Jan/2023:06:34:43 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 109.237.98.226 - - [03/Jan/2023:06:39:10 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:11 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:11 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:12 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:12 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:12 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:13 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:13 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:14 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:14 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:15 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:15 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:16 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:16 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:17 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:17 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:18 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:18 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:19 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [03/Jan/2023:06:39:19 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 4.184.57.28 - - [03/Jan/2023:06:51:26 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 138.199.21.231 - - [03/Jan/2023:07:41:23 +0100] "GET /a.txt HTTP/1.0" 301 384 "-" "360 Safe Browser 2.0" 45.142.182.42 - - [03/Jan/2023:07:58:35 +0100] "POST /config.json HTTP/1.1" 301 394 "-" "curl/7.74.0" 183.136.225.32 - - [03/Jan/2023:08:03:15 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 157.230.104.67 - - [03/Jan/2023:08:09:02 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 183.136.225.32 - - [03/Jan/2023:08:09:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.32 - - [03/Jan/2023:08:10:23 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.32 - - [03/Jan/2023:08:10:46 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 157.55.39.65 - - [03/Jan/2023:10:55:14 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 194.110.203.47 - - [03/Jan/2023:11:53:36 +0100] "GET /database/backupklub.sql HTTP/1.1" 301 409 "-" "Firefox" 194.110.203.47 - - [03/Jan/2023:12:02:38 +0100] "GET /database/backupharm.sql HTTP/1.1" 301 400 "-" "Firefox" 164.52.25.251 - - [03/Jan/2023:14:00:53 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 164.52.25.251 - - [03/Jan/2023:14:01:26 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 208.100.26.243 - - [03/Jan/2023:14:02:31 +0100] "GET / HTTP/1.1" 301 298 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_4_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.4.1 Mobile/15E148 Safari/604.1" 208.100.26.249 - - [03/Jan/2023:14:02:31 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 6.3; rv:75.0) Gecko/20100101 Firefox/75.0" 27.124.12.23 - - [03/Jan/2023:14:15:11 +0100] "GET /detail/238895.html HTTP/1.1" 301 402 "/detail/238895.html" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 194.110.203.47 - - [03/Jan/2023:14:19:51 +0100] "GET /database/backup-klub.sql HTTP/1.1" 301 410 "-" "Firefox" 152.89.196.211 - - [03/Jan/2023:15:10:58 +0100] "-" 408 - "-" "-" 194.110.203.42 - - [03/Jan/2023:15:15:22 +0100] "GET /database/backup_harm.sql HTTP/1.1" 301 401 "-" "Firefox" 205.210.31.128 - - [03/Jan/2023:15:29:46 +0100] "GET / HTTP/1.1" 301 385 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 193.118.53.210 - - [03/Jan/2023:15:48:12 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.211 - - [03/Jan/2023:16:12:57 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 40.67.233.210 - - [03/Jan/2023:16:39:43 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 185.247.224.141 - - [03/Jan/2023:16:46:57 +0100] "GET /views/13797/download.php HTTP/1.1" 400 379 "-" "-" 167.94.146.57 - - [03/Jan/2023:17:20:20 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.146.57 - - [03/Jan/2023:17:20:20 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.146.57 - - [03/Jan/2023:17:20:20 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 205.210.31.39 - - [03/Jan/2023:18:00:37 +0100] "GET / HTTP/1.1" 301 377 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 152.89.196.211 - - [03/Jan/2023:18:59:49 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 162.243.133.21 - - [03/Jan/2023:19:07:58 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.44 - - [03/Jan/2023:19:19:53 +0100] "GET /database/easyzumfuehrerschein.com_db.sql HTTP/1.1" 301 434 "-" "Firefox" 157.55.39.65 - - [03/Jan/2023:20:15:43 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" 194.110.203.40 - - [03/Jan/2023:21:26:45 +0100] "GET /database/easyzumfuehrerschein.com-db.sql HTTP/1.1" 301 434 "-" "Firefox" 194.110.203.40 - - [03/Jan/2023:21:29:29 +0100] "GET /database/harm.at-db.sql HTTP/1.1" 301 400 "-" "Firefox" 159.223.188.208 - - [03/Jan/2023:22:23:04 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 159.223.188.208 - - [03/Jan/2023:22:23:05 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 159.223.188.208 - - [03/Jan/2023:22:23:08 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 157.230.95.158 - - [03/Jan/2023:22:33:37 +0100] "GET /api/v1 HTTP/1.1" 301 305 "-" "python-requests/2.28.1" 194.110.203.38 - - [03/Jan/2023:23:09:51 +0100] "GET /database/klub.kornland.at_database.sql HTTP/1.1" 301 424 "-" "Firefox" 45.61.186.176 - - [03/Jan/2023:23:49:02 +0100] "POST /ztp/cgi-bin/handler HTTP/1.1" 301 315 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 212.47.253.194 - - [04/Jan/2023:00:28:24 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.87 Safari/537.36" 45.61.186.176 - - [04/Jan/2023:00:40:19 +0100] "POST /ztp/cgi-bin/handler HTTP/1.1" 301 315 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 34.140.248.32 - - [04/Jan/2023:00:51:25 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 194.110.203.44 - - [04/Jan/2023:00:56:29 +0100] "GET /database/klub.kornland.at-database.sql HTTP/1.1" 301 424 "-" "Firefox"