52.42.197.9 - - [14/Jan/2023:01:40:33 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 20.203.155.119 - - [14/Jan/2023:01:41:27 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 20.203.155.119 - - [14/Jan/2023:01:41:27 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 205.210.31.161 - - [14/Jan/2023:01:48:48 +0100] "GET / HTTP/1.1" 301 379 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 96.9.88.210 - - [14/Jan/2023:01:52:08 +0100] "GET / HTTP/1.1" 301 383 "-" "Java/1.8.0_321" 96.9.88.210 - - [14/Jan/2023:02:08:31 +0100] "GET / HTTP/1.1" 301 383 "-" "Java/1.8.0_321" 128.14.209.162 - - [14/Jan/2023:02:53:58 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 87.236.176.210 - - [14/Jan/2023:03:07:17 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 65.49.20.69 - - [14/Jan/2023:03:20:01 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:107.0) Gecko/20100101 Firefox/107.0" 65.49.20.69 - - [14/Jan/2023:03:30:36 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.126 Safari/537.36" 65.49.20.69 - - [14/Jan/2023:03:36:32 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" 65.49.20.69 - - [14/Jan/2023:03:38:43 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0" 194.110.203.39 - - [14/Jan/2023:04:10:58 +0100] "GET /database/easyzumfuehrerschein.com-database.zip HTTP/1.1" 301 440 "-" "Firefox" 198.235.24.52 - - [14/Jan/2023:04:23:23 +0100] "GET / HTTP/1.1" 301 381 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 194.110.203.47 - - [14/Jan/2023:04:25:48 +0100] "GET /database/klub.kornland.at-database.zip HTTP/1.1" 301 424 "-" "Firefox" 152.89.196.211 - - [14/Jan/2023:05:26:29 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.82.85.3 - - [14/Jan/2023:05:30:10 +0100] "GET /owa/ HTTP/1.1" 301 300 "-" "python-requests/2.28.1" 168.181.229.133 - - [14/Jan/2023:05:30:15 +0100] "GET /owa/ HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 200.10.34.102 - - [14/Jan/2023:05:30:19 +0100] "GET /RDWeb HTTP/1.1" 301 301 "-" "python-urllib3/1.26.12" 181.215.184.106 - - [14/Jan/2023:05:30:19 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 181.215.184.240 - - [14/Jan/2023:05:30:19 +0100] "GET /vpntunnel HTTP/1.1" 301 303 "-" "python-urllib3/1.26.12" 108.165.219.191 - - [14/Jan/2023:05:30:19 +0100] "GET /svpn/index.cgi HTTP/1.1" 301 307 "-" "SSLVPN-Client/3.0" 23.26.229.121 - - [14/Jan/2023:05:30:19 +0100] "GET /remote/login HTTP/1.1" 301 305 "-" "python-urllib3/1.26.12" 108.165.219.133 - - [14/Jan/2023:05:30:19 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 108.165.219.198 - - [14/Jan/2023:05:30:19 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 181.215.185.172 - - [14/Jan/2023:05:30:19 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 50.114.104.107 - - [14/Jan/2023:05:30:19 +0100] "POST /clients HTTP/1.1" 301 301 "-" "python-urllib3/1.26.12" 154.16.150.227 - - [14/Jan/2023:05:30:19 +0100] "POST / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 103.230.69.109 - - [14/Jan/2023:05:30:19 +0100] "GET /sslvpnclient?launchplatform=mac&neProto=3&supportipv6=yes HTTP/1.1" 301 342 "-" "python-urllib3/1.26.12" 199.181.239.144 - - [14/Jan/2023:05:30:19 +0100] "GET /myvpn?sess=none&hdlc_framing=no&ipv4=1&ipv6=1&Z=none&hostname=none HTTP/1.1" 301 345 "-" "python-urllib3/1.26.12" 2.59.60.21 - - [14/Jan/2023:05:30:19 +0100] "POST /global-protect/prelogin.esp?tmp=tmp&clientVer=4100&clientos=Windows HTTP/1.1" 301 346 "-" "PAN GlobalProtect" 185.33.85.244 - - [14/Jan/2023:05:30:20 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 185.33.85.247 - - [14/Jan/2023:05:30:20 +0100] "SSTP_DUPLEX_POST /sra_%7BBA195980-CD49-458b-9E23-C84EE0ADCD75%7D/ HTTP/1.1" 301 337 "-" "python-urllib3/1.26.12" 181.215.184.240 - - [14/Jan/2023:05:30:20 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 200.10.34.102 - - [14/Jan/2023:05:30:21 +0100] "GET /sslvpnclient?launchplatform=mac&neProto=3&supportipv6=yes HTTP/1.1" 301 343 "-" "python-urllib3/1.26.12" 108.165.219.198 - - [14/Jan/2023:05:30:21 +0100] "POST / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 154.16.150.227 - - [14/Jan/2023:05:30:21 +0100] "POST /global-protect/prelogin.esp?tmp=tmp&clientVer=4100&clientos=Windows HTTP/1.1" 301 347 "-" "PAN GlobalProtect" 23.26.229.121 - - [14/Jan/2023:05:30:21 +0100] "GET /vpntunnel HTTP/1.1" 301 304 "-" "python-urllib3/1.26.12" 108.165.219.191 - - [14/Jan/2023:05:30:21 +0100] "GET /RDWeb HTTP/1.1" 301 303 "-" "python-urllib3/1.26.12" 68.67.198.209 - - [14/Jan/2023:05:30:21 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 108.165.219.133 - - [14/Jan/2023:05:30:21 +0100] "GET /svpn/index.cgi HTTP/1.1" 301 308 "-" "SSLVPN-Client/3.0" 181.215.184.240 - - [14/Jan/2023:05:30:21 +0100] "GET /myvpn?sess=none&hdlc_framing=no&ipv4=1&ipv6=1&Z=none&hostname=none HTTP/1.1" 301 346 "-" "python-urllib3/1.26.12" 103.230.69.109 - - [14/Jan/2023:05:30:21 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 181.215.184.106 - - [14/Jan/2023:05:30:21 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 92.255.85.182 - - [14/Jan/2023:05:30:21 +0100] "" 400 379 "-" "-" 199.181.239.144 - - [14/Jan/2023:05:30:21 +0100] "GET /remote/login HTTP/1.1" 301 306 "-" "python-urllib3/1.26.12" 2.59.60.21 - - [14/Jan/2023:05:30:22 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 185.33.85.244 - - [14/Jan/2023:05:30:22 +0100] "SSTP_DUPLEX_POST /sra_%7BBA195980-CD49-458b-9E23-C84EE0ADCD75%7D/ HTTP/1.1" 301 338 "-" "python-urllib3/1.26.12" 50.114.104.107 - - [14/Jan/2023:05:30:22 +0100] "POST /clients HTTP/1.1" 301 302 "-" "python-urllib3/1.26.12" 108.165.219.198 - - [14/Jan/2023:05:30:22 +0100] "GET /dana-na HTTP/1.1" 301 301 "-" "ncsrv" 154.16.150.227 - - [14/Jan/2023:05:30:22 +0100] "CONNECT /CSCOSSLC/tunnel HTTP/1.1" 400 379 "-" "-" 185.33.85.247 - - [14/Jan/2023:05:30:22 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 199.181.239.144 - - [14/Jan/2023:05:30:22 +0100] "GET /my.policy HTTP/1.1" 301 303 "-" "python-urllib3/1.26.12" 103.230.69.109 - - [14/Jan/2023:05:30:22 +0100] "GET / HTTP/1.1" 301 297 "-" "python-urllib3/1.26.12" 23.26.229.121 - - [14/Jan/2023:05:30:22 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 2.59.60.21 - - [14/Jan/2023:05:30:23 +0100] "POST /ssl-vpn/prelogin.esp?tmp=tmp&clientVer=4100&clientos=Windows HTTP/1.1" 301 341 "-" "PAN GlobalProtect" 200.10.34.102 - - [14/Jan/2023:05:30:24 +0100] "GET / HTTP/1.1" 301 298 "-" "python-urllib3/1.26.12" 108.165.219.198 - - [14/Jan/2023:05:30:24 +0100] "CONNECT /CSCOSSLC/tunnel HTTP/1.1" 400 379 "-" "-" 92.255.85.182 - - [14/Jan/2023:05:30:24 +0100] "" 400 379 "-" "-" 154.16.150.227 - - [14/Jan/2023:05:30:24 +0100] "POST /ssl-vpn/prelogin.esp?tmp=tmp&clientVer=4100&clientos=Windows HTTP/1.1" 301 342 "-" "PAN GlobalProtect" 181.215.184.240 - - [14/Jan/2023:05:30:24 +0100] "GET /my.policy HTTP/1.1" 301 304 "-" "python-urllib3/1.26.12" 2.59.60.21 - - [14/Jan/2023:05:30:24 +0100] "GET /dana-na HTTP/1.1" 301 302 "-" "ncsrv" 94.124.161.68 - - [14/Jan/2023:05:30:29 +0100] "GET /owa/ HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 94.124.161.68 - - [14/Jan/2023:05:30:43 +0100] "GET /owa/ HTTP/1.1" 301 300 "-" "python-requests/2.28.1" 167.172.94.187 - - [14/Jan/2023:05:35:21 +0100] "POST /login.php HTTP/1.1" 301 308 "-" "'Mozilla/5.0'" 107.170.239.28 - - [14/Jan/2023:05:56:40 +0100] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.46 - - [14/Jan/2023:06:19:18 +0100] "GET /database/easyzumfuehrerscheindb.zip HTTP/1.1" 301 429 "-" "Firefox" 192.241.237.24 - - [14/Jan/2023:06:47:24 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 4.184.57.28 - - [14/Jan/2023:07:05:09 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 152.89.196.211 - - [14/Jan/2023:07:36:02 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.180.143.72 - - [14/Jan/2023:07:43:55 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 198.235.24.53 - - [14/Jan/2023:08:36:13 +0100] "GET / HTTP/1.1" 301 393 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 198.199.93.53 - - [14/Jan/2023:08:53:11 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 51.12.217.93 - - [14/Jan/2023:11:29:05 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 194.110.203.44 - - [14/Jan/2023:11:35:00 +0100] "GET /database/easyzumfuehrerschein-db.zip HTTP/1.1" 301 430 "-" "Firefox" 107.170.192.15 - - [14/Jan/2023:11:59:44 +0100] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 178.128.159.24 - - [14/Jan/2023:12:20:59 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 178.128.159.24 - - [14/Jan/2023:12:21:00 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 178.128.159.24 - - [14/Jan/2023:12:21:04 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 107.170.192.15 - - [14/Jan/2023:12:34:32 +0100] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 52.91.141.118 - - [14/Jan/2023:12:38:29 +0100] "GET / HTTP/1.1" 301 302 "-" "Go-http-client/1.1" 194.110.203.111 - - [14/Jan/2023:12:44:43 +0100] "GET /Autodiscover/autodiscover.json?a=cecelia.muller@ratke-ullrich.name/mapi/nspi/ HTTP/1.1" 301 460 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36 Edg/108.0.1462.46" 194.110.203.44 - - [14/Jan/2023:12:52:10 +0100] "GET /database/harm_database.zip HTTP/1.1" 301 403 "-" "Firefox" 194.110.203.44 - - [14/Jan/2023:12:53:12 +0100] "GET /database/klub_database.zip HTTP/1.1" 301 412 "-" "Firefox" 107.170.192.15 - - [14/Jan/2023:13:03:17 +0100] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 205.210.31.19 - - [14/Jan/2023:13:47:53 +0100] "GET / HTTP/1.1" 301 394 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.180.143.138 - - [14/Jan/2023:13:51:14 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:41 +0100] "GET /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:42 +0100] "POST /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:42 +0100] "GET /.aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:43 +0100] "POST /.aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:44 +0100] "GET /.aws/config HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:44 +0100] "POST /.aws/config HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:45 +0100] "GET /aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:45 +0100] "POST /aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:46 +0100] "GET /credentials HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:46 +0100] "POST /credentials HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:47 +0100] "GET /test.php HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:47 +0100] "POST /test.php HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:48 +0100] "GET /laravel/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:48 +0100] "POST /laravel/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:49 +0100] "GET /demo/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:49 +0100] "POST /demo/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:50 +0100] "GET /web/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:50 +0100] "POST /web/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:51 +0100] "GET /phpinfo HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [14/Jan/2023:14:35:52 +0100] "POST /phpinfo HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.44 - - [14/Jan/2023:14:48:42 +0100] "GET /database/harm-database.zip HTTP/1.1" 301 403 "-" "Firefox" 194.110.203.40 - - [14/Jan/2023:17:01:09 +0100] "GET /database/db.tar.gz HTTP/1.1" 301 395 "-" "Firefox" 183.136.225.32 - - [14/Jan/2023:18:05:21 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 172.104.43.121 - - [14/Jan/2023:18:06:55 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 172.104.43.121 - - [14/Jan/2023:18:06:59 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 167.172.28.49 - - [14/Jan/2023:18:07:18 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 167.172.28.49 - - [14/Jan/2023:18:07:19 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 167.172.28.49 - - [14/Jan/2023:18:07:23 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 185.180.143.137 - - [14/Jan/2023:18:10:49 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 162.142.125.10 - - [14/Jan/2023:18:11:47 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.10 - - [14/Jan/2023:18:11:48 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.10 - - [14/Jan/2023:18:11:49 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 183.136.225.32 - - [14/Jan/2023:18:12:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.32 - - [14/Jan/2023:18:12:48 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 183.136.225.32 - - [14/Jan/2023:18:13:30 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 157.245.147.154 - - [14/Jan/2023:18:16:08 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 157.245.147.154 - - [14/Jan/2023:18:16:12 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 194.110.203.46 - - [14/Jan/2023:19:11:29 +0100] "GET /database/dbdump.tar.gz HTTP/1.1" 301 416 "-" "Firefox" 24.199.127.17 - - [14/Jan/2023:19:21:34 +0100] "GET /auth.asp HTTP/1.1" 301 306 "-" "Mozilla/5.0 zgrab/0.x" 167.99.215.242 - - [14/Jan/2023:19:36:07 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 205.210.31.174 - - [14/Jan/2023:19:55:56 +0100] "GET / HTTP/1.1" 301 380 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 94.102.61.8 - - [14/Jan/2023:20:25:45 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 192.241.203.5 - - [14/Jan/2023:20:31:57 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.47 - - [14/Jan/2023:20:53:07 +0100] "GET /database/database.tar.gz HTTP/1.1" 301 418 "-" "Firefox" 94.102.61.8 - - [14/Jan/2023:22:40:02 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.26.0" 94.102.61.8 - - [14/Jan/2023:22:50:50 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.26.0" 194.110.203.46 - - [14/Jan/2023:22:56:10 +0100] "GET /database/localhostdb.tar.gz HTTP/1.1" 301 404 "-" "Firefox" 13.38.230.44 - - [14/Jan/2023:23:25:40 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Linux; Android 6.0.1; SM-G900F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 Mobile Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:35:59 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:35:59 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:00 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:00 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:01 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:01 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:02 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:02 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:03 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:03 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:03 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:04 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:04 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:05 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:05 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:06 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:06 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:07 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:07 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [14/Jan/2023:23:36:08 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 45.55.129.108 - - [14/Jan/2023:23:47:51 +0100] "GET /auth.asp HTTP/1.1" 301 306 "-" "Mozilla/5.0 zgrab/0.x" 34.140.248.32 - - [15/Jan/2023:00:19:37 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.1" 194.110.203.42 - - [15/Jan/2023:00:49:19 +0100] "GET /database/localhost_db.tar.gz HTTP/1.1" 301 414 "-" "Firefox" 18.236.154.200 - - [15/Jan/2023:00:49:35 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 35.92.96.48 - - [15/Jan/2023:00:50:07 +0100] "GET /favicon.ico HTTP/1.1" 301 313 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36"