194.110.203.46 - - [08/Jan/2023:01:26:39 +0100] "GET /database/easyzumfuehrerschein_dump.sql.gz HTTP/1.1" 301 435 "-" "Firefox" 194.110.203.38 - - [08/Jan/2023:01:32:55 +0100] "GET /database/harm_dump.sql.gz HTTP/1.1" 301 402 "-" "Firefox" 170.64.176.154 - - [08/Jan/2023:02:09:17 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 170.64.176.154 - - [08/Jan/2023:02:09:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 194.110.203.41 - - [08/Jan/2023:03:24:21 +0100] "GET /database/easyzumfuehrerschein-dump.sql.gz HTTP/1.1" 301 435 "-" "Firefox" 157.55.39.156 - - [08/Jan/2023:03:50:37 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 107.170.192.6 - - [08/Jan/2023:03:55:13 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 37.48.73.13 - - [08/Jan/2023:04:32:53 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US) AppleWebKit/533.20.25 (KHTML, like Gecko) Version/5.0.4 Safari/533.20.27" 152.89.196.211 - - [08/Jan/2023:04:44:43 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 198.199.92.167 - - [08/Jan/2023:04:55:57 +0100] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 3.8.144.113 - - [08/Jan/2023:04:57:55 +0100] "GET / HTTP/1.0" 301 388 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:05:01:55 +0100] "GET / HTTP/1.0" 301 388 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:05:05:54 +0100] "GET / HTTP/1.0" 301 388 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 194.110.203.46 - - [08/Jan/2023:05:27:39 +0100] "GET /database/klubbackup.sql.gz HTTP/1.1" 301 412 "-" "Firefox" 194.110.203.40 - - [08/Jan/2023:05:38:15 +0100] "GET /database/harmbackup.sql.gz HTTP/1.1" 301 403 "-" "Firefox" 3.8.144.113 - - [08/Jan/2023:05:59:44 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:00:01 +0100] "GET /manage/account/login HTTP/1.1" 301 316 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:00:18 +0100] "GET /admin/index.html HTTP/1.1" 301 312 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:00:37 +0100] "GET /index.html HTTP/1.1" 301 308 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:00:52 +0100] "GET /+CSCOE+/logon.html HTTP/1.1" 301 315 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:01:09 +0100] "GET / HTTP/1.1" 301 301 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:01:25 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:01:42 +0100] "GET /manage/account/login HTTP/1.1" 301 316 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:01:58 +0100] "GET /admin/index.html HTTP/1.1" 301 312 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:02:15 +0100] "GET /index.html HTTP/1.1" 301 308 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:02:32 +0100] "GET /+CSCOE+/logon.html HTTP/1.1" 301 315 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 3.8.144.113 - - [08/Jan/2023:06:02:49 +0100] "GET / HTTP/1.1" 301 301 "-" "'Cloud mapping experiment. Contact research@pdrlabs.net'" 162.142.125.212 - - [08/Jan/2023:06:20:32 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.212 - - [08/Jan/2023:06:20:32 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.212 - - [08/Jan/2023:06:20:33 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 198.199.108.164 - - [08/Jan/2023:06:40:47 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 109.237.98.53 - - [08/Jan/2023:07:03:51 +0100] "GET /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:51 +0100] "POST /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:52 +0100] "GET /.aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:53 +0100] "POST /.aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:53 +0100] "GET /.aws/config HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:54 +0100] "POST /.aws/config HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:54 +0100] "GET /aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:54 +0100] "POST /aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:55 +0100] "GET /credentials HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:55 +0100] "POST /credentials HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:56 +0100] "GET /test.php HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:56 +0100] "POST /test.php HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:57 +0100] "GET /laravel/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:58 +0100] "POST /laravel/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:58 +0100] "GET /demo/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:59 +0100] "POST /demo/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:03:59 +0100] "GET /web/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:04:00 +0100] "POST /web/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:04:00 +0100] "GET /phpinfo HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [08/Jan/2023:07:04:01 +0100] "POST /phpinfo HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:50 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:50 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:51 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:51 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:52 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:52 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:53 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:54 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:54 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:55 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:55 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:56 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:57 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:57 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:58 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:58 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:16:59 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:17:00 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:17:01 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [08/Jan/2023:07:17:01 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 162.221.192.26 - - [08/Jan/2023:08:59:10 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 184.105.247.254 - - [08/Jan/2023:09:09:07 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 184.105.247.254 - - [08/Jan/2023:09:26:16 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0" 194.110.203.39 - - [08/Jan/2023:09:32:49 +0100] "GET /database/backupeasyzumfuehrerschein.sql.gz HTTP/1.1" 301 436 "-" "Firefox" 194.110.203.39 - - [08/Jan/2023:09:44:22 +0100] "GET /database/backupklub.sql.gz HTTP/1.1" 301 412 "-" "Firefox" 4.184.57.28 - - [08/Jan/2023:09:44:23 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 198.235.24.179 - - [08/Jan/2023:12:17:51 +0100] "GET / HTTP/1.1" 301 390 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 194.110.203.40 - - [08/Jan/2023:13:35:02 +0100] "GET /database/backup_klub.sql.gz HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.41 - - [08/Jan/2023:14:04:15 +0100] "GET /database/backup_harm.sql.gz HTTP/1.1" 301 404 "-" "Firefox" 157.55.39.156 - - [08/Jan/2023:14:07:15 +0100] "GET / HTTP/1.1" 301 304 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 192.241.225.18 - - [08/Jan/2023:14:14:27 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 103.187.190.123 - - [08/Jan/2023:14:46:58 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 103.187.190.123 - - [08/Jan/2023:14:46:59 +0100] "GET /nmaplowercheck1673185618 HTTP/1.1" 301 407 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" 103.187.190.123 - - [08/Jan/2023:14:46:59 +0100] "POST /sdk HTTP/1.1" 301 386 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" 103.187.190.123 - - [08/Jan/2023:14:47:00 +0100] "GET /evox/about HTTP/1.1" 301 393 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" 103.187.190.123 - - [08/Jan/2023:14:47:00 +0100] "GET /HNAP1 HTTP/1.1" 301 388 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" 103.187.190.123 - - [08/Jan/2023:14:47:00 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 103.187.190.123 - - [08/Jan/2023:14:47:01 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 194.110.203.41 - - [08/Jan/2023:15:48:47 +0100] "GET /database/db.sql.tar HTTP/1.1" 301 396 "-" "Firefox" 194.110.203.44 - - [08/Jan/2023:16:01:08 +0100] "GET /database/db.sql.tar HTTP/1.1" 301 413 "-" "Firefox" 35.92.126.155 - - [08/Jan/2023:16:10:48 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36" 128.14.134.170 - - [08/Jan/2023:17:18:32 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.44 - - [08/Jan/2023:18:18:55 +0100] "GET /database/dump.sql.tar HTTP/1.1" 301 415 "-" "Firefox" 192.241.210.43 - - [08/Jan/2023:19:12:49 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 128.1.248.26 - - [08/Jan/2023:19:19:42 +0100] "GET /cgi-bin/config.exp HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 183.136.225.32 - - [08/Jan/2023:19:52:13 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.32 - - [08/Jan/2023:19:54:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.32 - - [08/Jan/2023:19:54:48 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.32 - - [08/Jan/2023:19:55:30 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 162.221.192.26 - - [08/Jan/2023:20:28:37 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.211 - - [08/Jan/2023:20:29:25 +0100] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.47 - - [08/Jan/2023:20:39:54 +0100] "GET /database/dbdump.sql.tar HTTP/1.1" 301 409 "-" "Firefox" 194.110.203.42 - - [08/Jan/2023:20:45:22 +0100] "GET /database/dbdump.sql.tar HTTP/1.1" 301 400 "-" "Firefox" 185.180.143.13 - - [08/Jan/2023:20:59:49 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36" 194.110.203.46 - - [08/Jan/2023:21:57:46 +0100] "GET /database/database.sql.tar HTTP/1.1" 301 402 "-" "Firefox" 94.102.51.9 - - [08/Jan/2023:22:02:29 +0100] "GET / HTTP/1.1" 301 298 "-" "Apache-HttpClient/4.5.12 (Java/1.8.0_352)" 104.244.72.123 - - [08/Jan/2023:22:21:25 +0100] "GET /.git/config HTTP/1.1" 301 314 "-" "Go-http-client/1.1" 185.243.218.41 - - [08/Jan/2023:22:21:26 +0100] "GET /.DS_Store HTTP/1.1" 301 312 "-" "Go-http-client/1.1" 185.220.102.246 - - [08/Jan/2023:22:21:52 +0100] "GET /.DS_Store HTTP/1.1" 301 312 "-" "Go-http-client/1.1" 109.237.98.226 - - [08/Jan/2023:22:45:44 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:45 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:45 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:46 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:46 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:47 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:47 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:48 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:48 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:48 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:49 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:49 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:50 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:50 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:50 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:51 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:52 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:52 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:52 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [08/Jan/2023:22:45:53 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 54.218.70.164 - - [08/Jan/2023:22:48:46 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 60.217.75.70 - - [08/Jan/2023:23:26:37 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 194.110.203.42 - - [09/Jan/2023:00:30:32 +0100] "GET /database/backup.sql.tar HTTP/1.1" 301 417 "-" "Firefox" 130.211.54.158 - - [09/Jan/2023:00:34:22 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1"