152.89.196.211 - - [02/Feb/2023:01:19:22 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 35.87.185.38 - - [02/Feb/2023:01:31:40 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 51.158.118.231 - - [02/Feb/2023:01:32:04 +0100] "GET / HTTP/1.1" 301 386 "-" "-" 152.89.196.211 - - [02/Feb/2023:01:53:40 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.41 - - [02/Feb/2023:02:14:50 +0100] "GET /wp-config.php~ HTTP/1.1" 301 400 "-" "Firefox" 165.22.40.131 - - [02/Feb/2023:02:33:09 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.22.40.131 - - [02/Feb/2023:02:33:10 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.22.40.131 - - [02/Feb/2023:02:33:14 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 152.89.196.211 - - [02/Feb/2023:03:19:07 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [02/Feb/2023:03:39:35 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [02/Feb/2023:04:00:56 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [02/Feb/2023:04:31:53 +0100] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 24.142.190.18 - - [02/Feb/2023:05:34:08 +0100] "GET /cgi-bin/login?LD_DEBUG=files HTTP/1.1" 301 325 "-" "python-requests/2.25.1" 152.89.196.211 - - [02/Feb/2023:05:36:28 +0100] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.40 - - [02/Feb/2023:05:55:47 +0100] "GET /*.rar HTTP/1.1" 301 382 "-" "Firefox" 152.89.196.211 - - [02/Feb/2023:06:04:32 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.35.18.108 - - [02/Feb/2023:06:18:03 +0100] "POST /ztp/cgi-bin/handler HTTP/1.1" 301 402 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 4.184.57.28 - - [02/Feb/2023:07:22:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 192.241.227.9 - - [02/Feb/2023:07:26:43 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [02/Feb/2023:07:55:05 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 64.62.197.74 - - [02/Feb/2023:08:25:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; rv:103.0) Gecko/20100101 Firefox/103.0" 64.62.197.64 - - [02/Feb/2023:08:32:32 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 64.62.197.66 - - [02/Feb/2023:08:36:10 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" 64.62.197.76 - - [02/Feb/2023:08:37:01 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:104.0) Gecko/20100101 Firefox/104.0" 138.246.253.24 - - [02/Feb/2023:08:42:19 +0100] "GET /robots.txt HTTP/1.1" 301 387 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 163.172.180.25 - - [02/Feb/2023:09:20:18 +0100] "GET / HTTP/1.1" 301 393 "-" "-" 132.148.166.136 - - [02/Feb/2023:10:00:58 +0100] "GET /*.bzip HTTP/1.1" 301 383 "-" "Firefox" 101.68.211.2 - - [02/Feb/2023:10:06:06 +0100] "GET / HTTP/1.1" 301 394 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 107.170.224.15 - - [02/Feb/2023:10:25:27 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.211 - - [02/Feb/2023:10:41:58 +0100] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 183.136.225.32 - - [02/Feb/2023:11:33:50 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 94.102.61.8 - - [02/Feb/2023:11:53:15 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.26.0" 152.89.196.211 - - [02/Feb/2023:12:13:17 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.45 - - [02/Feb/2023:12:38:48 +0100] "GET /harm_092022.zip HTTP/1.1" 301 392 "-" "Firefox" 152.89.196.211 - - [02/Feb/2023:14:32:14 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 46.8.16.187 - - [02/Feb/2023:14:32:47 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36" 165.154.44.158 - - [02/Feb/2023:14:44:51 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 194.110.203.46 - - [02/Feb/2023:14:58:59 +0100] "GET /harm_072022.zip HTTP/1.1" 301 392 "-" "Firefox" 183.136.225.32 - - [02/Feb/2023:15:14:28 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 66.240.236.116 - - [02/Feb/2023:15:32:16 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 107.170.227.34 - - [02/Feb/2023:16:02:39 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 51.15.247.214 - - [02/Feb/2023:16:14:04 +0100] "GET / HTTP/1.1" 301 398 "-" "-" 194.110.203.42 - - [02/Feb/2023:16:49:45 +0100] "GET /easyzumfuehrerschein_062022.zip HTTP/1.1" 301 425 "-" "Firefox" 192.241.218.16 - - [02/Feb/2023:19:29:37 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 51.15.247.214 - - [02/Feb/2023:20:47:33 +0100] "GET / HTTP/1.1" 301 391 "-" "-" 54.194.212.145 - - [02/Feb/2023:21:42:56 +0100] "GET / HTTP/1.0" 301 387 "-" "Mozilla/5.0 (compatible; NetcraftSurveyAgent/1.0; +info@netcraft.com)" 194.110.203.41 - - [02/Feb/2023:21:45:56 +0100] "GET /easyzumfuehrerschein_022022.zip HTTP/1.1" 301 425 "-" "Firefox" 23.90.160.114 - - [02/Feb/2023:22:02:11 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 60.217.75.70 - - [02/Feb/2023:22:27:37 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 194.110.203.44 - - [02/Feb/2023:22:30:47 +0100] "GET /klub_012022.zip HTTP/1.1" 301 401 "-" "Firefox" 185.180.143.137 - - [02/Feb/2023:23:09:31 +0100] "GET /cgi-bin/config.exp HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.211 - - [02/Feb/2023:23:13:03 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.155.126.4 - - [02/Feb/2023:23:22:01 +0100] "-" 408 - "-" "-" 152.89.196.211 - - [02/Feb/2023:23:38:44 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 198.12.231.234 - - [02/Feb/2023:23:48:36 +0100] "GET /klub_28092022.zip HTTP/1.1" 301 403 "-" "Firefox" 185.180.143.138 - - [03/Feb/2023:00:03:14 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.138 - - [03/Feb/2023:00:03:23 +0100] "HEAD /icons/sphere1.png HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.138 - - [03/Feb/2023:00:03:23 +0100] "HEAD /icons/.%%32%65/.%%32%65/apache2/icons/non-existant-image.png HTTP/1.1" 400 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.38 - - [03/Feb/2023:00:37:12 +0100] "GET /easyzumfuehrerschein_28092022.zip HTTP/1.1" 301 427 "-" "Firefox" 52.211.56.62 - - [03/Feb/2023:00:43:01 +0100] "GET / HTTP/1.0" 301 379 "-" "Mozilla/5.0 (compatible; NetcraftSurveyAgent/1.0; +info@netcraft.com)" 35.195.93.98 - - [03/Feb/2023:00:45:25 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2" 179.43.154.247 - - [03/Feb/2023:00:49:03 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 185.224.128.202 - - [03/Feb/2023:00:56:43 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0"