62.233.50.251 - - [07/Feb/2023:01:20:01 +0100] "-" 408 - "-" "-" 193.32.162.166 - - [07/Feb/2023:01:21:33 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 94.102.61.8 - - [07/Feb/2023:01:30:48 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 141.98.10.56 - - [07/Feb/2023:01:57:05 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 62.233.50.251 - - [07/Feb/2023:02:05:52 +0100] "-" 408 - "-" "-" 152.89.196.211 - - [07/Feb/2023:02:15:24 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 62.233.50.251 - - [07/Feb/2023:02:29:48 +0100] "-" 408 - "-" "-" 64.227.65.168 - - [07/Feb/2023:03:10:13 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 62.233.50.251 - - [07/Feb/2023:03:18:03 +0100] "-" 408 - "-" "-" 141.98.10.56 - - [07/Feb/2023:03:22:04 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 82.165.20.203 - - [07/Feb/2023:03:27:20 +0100] "GET /wp-content/plugins/core-stab/index.php HTTP/1.1" 301 322 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 82.165.20.203 - - [07/Feb/2023:03:27:23 +0100] "GET /wp/wp-content/plugins/core-stab/index.php HTTP/1.1" 301 323 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 82.165.20.203 - - [07/Feb/2023:03:27:26 +0100] "GET /wordpress/wp-content/plugins/core-stab/index.php HTTP/1.1" 301 329 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 82.165.20.203 - - [07/Feb/2023:03:27:29 +0100] "GET /blog/wp-content/plugins/core-stab/index.php HTTP/1.1" 301 326 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 82.165.20.203 - - [07/Feb/2023:03:27:35 +0100] "GET /wp-content/plugins/core-engine/index.php HTTP/1.1" 301 323 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 82.165.20.203 - - [07/Feb/2023:03:27:41 +0100] "GET /wp-content/plugins/wpyii2/wpyii2.php HTTP/1.1" 301 318 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 82.165.20.203 - - [07/Feb/2023:03:27:48 +0100] "GET /wp-content/plugins/wpzip/wpzip.php HTTP/1.1" 301 317 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 62.233.50.251 - - [07/Feb/2023:03:41:12 +0100] "-" 408 - "-" "-" 141.98.10.56 - - [07/Feb/2023:05:25:03 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 23.251.102.74 - - [07/Feb/2023:05:41:47 +0100] "GET /remote/login HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 141.98.10.56 - - [07/Feb/2023:06:27:41 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 138.68.208.16 - - [07/Feb/2023:07:35:48 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.40 - - [07/Feb/2023:07:51:33 +0100] "GET /easyzumfuehrerschein_05072022.zip HTTP/1.1" 301 427 "-" "Firefox" 103.203.59.1 - - [07/Feb/2023:09:52:18 +0100] "GET / HTTP/1.1" 301 383 "-" "HTTP Banner Detection (https://security.ipip.net)" 139.59.20.244 - - [07/Feb/2023:09:57:47 +0100] "GET / HTTP/1.1" 400 374 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:23 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:23 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:24 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:24 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:25 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:25 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:25 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:26 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:26 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:27 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:27 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:28 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:28 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:29 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:29 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:30 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:30 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:31 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:31 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [07/Feb/2023:09:58:32 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 4.184.57.28 - - [07/Feb/2023:10:04:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 128.14.133.58 - - [07/Feb/2023:10:50:36 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.45 - - [07/Feb/2023:10:51:35 +0100] "GET /easyzumfuehrerschein_03072022.zip HTTP/1.1" 301 427 "-" "Firefox" 45.143.223.121 - - [07/Feb/2023:10:51:36 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:36 +0100] "GET / HTTP/1.1" 400 292 "-" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:36 +0100] "GET / HTTP/1.1" 400 292 "-" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:37 +0100] "GET / HTTP/1.1" 400 292 "-" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:37 +0100] "GET / HTTP/1.1" 400 292 "-" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:37 +0100] "GET / HTTP/1.1" 400 292 "-" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:38 +0100] "GET /HNAP1/ HTTP/1.1" 400 292 "https://www.easydrivers.at/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:38 +0100] "GET /HNAP1/ HTTP/1.1" 400 292 "https://www.easydrivers.at/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 45.143.223.121 - - [07/Feb/2023:10:51:38 +0100] "GET /HNAP1/ HTTP/1.1" 400 292 "https://www.easydrivers.at/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 194.110.203.42 - - [07/Feb/2023:11:13:02 +0100] "GET /harm_02072022.zip HTTP/1.1" 301 394 "-" "Firefox" 154.89.5.78 - - [07/Feb/2023:12:05:23 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 194.110.203.39 - - [07/Feb/2023:12:56:10 +0100] "GET /klub_01072022.zip HTTP/1.1" 301 403 "-" "Firefox" 165.227.52.251 - - [07/Feb/2023:13:04:03 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1 Safari/605.1.15" 141.98.10.56 - - [07/Feb/2023:13:25:54 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 24.142.190.18 - - [07/Feb/2023:13:37:41 +0100] "GET /cgi-bin/login?LD_DEBUG=files HTTP/1.1" 301 325 "-" "python-requests/2.25.1" 194.110.203.45 - - [07/Feb/2023:13:45:25 +0100] "GET /harm_30062022.zip HTTP/1.1" 301 394 "-" "Firefox" 146.190.88.115 - - [07/Feb/2023:13:51:53 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 146.190.88.115 - - [07/Feb/2023:13:51:56 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 146.190.88.115 - - [07/Feb/2023:13:52:05 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 206.189.13.59 - - [07/Feb/2023:14:12:59 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 198.235.24.143 - - [07/Feb/2023:14:15:35 +0100] "GET / HTTP/1.1" 301 383 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 184.105.247.194 - - [07/Feb/2023:14:28:12 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:104.0) Gecko/20100101 Firefox/104.0" 184.105.247.194 - - [07/Feb/2023:14:41:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:100.0) Gecko/20100101 Firefox/100.0" 184.105.247.194 - - [07/Feb/2023:14:42:31 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.0 Safari/605.1.15" 194.110.203.41 - - [07/Feb/2023:15:04:08 +0100] "GET /easyzumfuehrerschein_29062022.zip HTTP/1.1" 301 427 "-" "Firefox" 141.98.10.56 - - [07/Feb/2023:15:09:16 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /nmaplowercheck1675781664 HTTP/1.1" 301 407 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /o4sF HTTP/1.1" 301 387 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /Portal/Portal.mwsl HTTP/1.1" 301 401 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "POST /sdk HTTP/1.1" 301 386 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /main.pl HTTP/1.1" 301 390 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 925 "-" "-" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /HNAP1 HTTP/1.1" 301 388 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /pools/default/buckets HTTP/1.1" 301 404 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /docs/cplugError.html/ HTTP/1.1" 301 404 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /home.html HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:24 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET /server-status HTTP/1.1" 301 396 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET /base.cgi HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 301 424 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:25 +0100] "GET /main.jsa HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:26 +0100] "GET /indice.jsp HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:26 +0100] "GET /indice.cfm HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:26 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:27 +0100] "GET /readme.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:27 +0100] "GET /start.cgi HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:27 +0100] "GET /admin.jhtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:28 +0100] "GET /main.aspx HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:28 +0100] "GET /admin.cfm HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:28 +0100] "GET /admin.php HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:29 +0100] "GET /admin.jsp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:29 +0100] "GET /inicio.jsp HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:29 +0100] "GET /admin.jsa HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:29 +0100] "GET /index.jhtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:30 +0100] "GET /default.asp HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:30 +0100] "GET /localstart.cfm HTTP/1.1" 301 397 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:30 +0100] "GET /indice.jhtml HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:31 +0100] "GET /admin.shtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:31 +0100] "GET /admin.html HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:31 +0100] "GET /localstart.jsp HTTP/1.1" 301 397 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:32 +0100] "GET /admin.cgi HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:32 +0100] "GET /index.aspx HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:32 +0100] "GET /admin.pl HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:32 +0100] "GET /indice.jsa HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:33 +0100] "GET /home.cgi HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:33 +0100] "GET /start.aspx HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:33 +0100] "GET /menu.cgi HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [07/Feb/2023:15:54:44 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.139.171 - - [07/Feb/2023:15:54:44 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 52.210.106.111 - - [07/Feb/2023:16:00:30 +0100] "GET / HTTP/1.0" 301 380 "-" "Mozilla/5.0 (compatible; NetcraftSurveyAgent/1.0; +info@netcraft.com)" 77.74.177.119 - - [07/Feb/2023:16:05:08 +0100] "GET / HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36" 194.110.203.41 - - [07/Feb/2023:16:36:07 +0100] "GET /harm_27062022.zip HTTP/1.1" 301 394 "-" "Firefox" 109.237.98.226 - - [07/Feb/2023:17:10:43 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:44 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:44 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:45 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:45 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:46 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:46 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:46 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:47 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:47 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:48 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:48 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:49 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:49 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:50 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:50 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:51 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:51 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:52 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [07/Feb/2023:17:10:52 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.46 - - [07/Feb/2023:17:40:25 +0100] "GET /easyzumfuehrerschein_26062022.zip HTTP/1.1" 301 427 "-" "Firefox" 45.56.78.64 - - [07/Feb/2023:17:49:59 +0100] "GET /6493205775247574395834.html HTTP/1.1" 301 410 "-" "-" 194.110.203.38 - - [07/Feb/2023:17:54:10 +0100] "GET /harm_26062022.zip HTTP/1.1" 301 394 "-" "Firefox" 194.110.203.41 - - [07/Feb/2023:19:23:30 +0100] "GET /klub_25062022.zip HTTP/1.1" 301 403 "-" "Firefox" 107.170.231.9 - - [07/Feb/2023:19:32:18 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 176.58.124.134 - - [07/Feb/2023:19:55:47 +0100] "GET / HTTP/1.1" 400 379 "-" "-" 192.241.212.99 - - [07/Feb/2023:20:21:06 +0100] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 13.57.19.17 - - [07/Feb/2023:20:21:13 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36" 20.113.27.135 - - [07/Feb/2023:20:59:05 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.98 Safari/537.36" 194.110.203.46 - - [07/Feb/2023:21:03:48 +0100] "GET /harm_23062022.zip HTTP/1.1" 301 394 "-" "Firefox" 194.110.203.38 - - [07/Feb/2023:21:05:10 +0100] "GET /klub_23062022.zip HTTP/1.1" 301 403 "-" "Firefox" 35.206.194.63 - - [07/Feb/2023:21:40:18 +0100] "" 400 379 "-" "-" 35.206.194.63 - - [07/Feb/2023:21:40:18 +0100] "" 400 379 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:36 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 185.142.236.34 - - [07/Feb/2023:22:02:39 +0100] "" 400 379 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:39 +0100] "" 400 379 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:40 +0100] "" 400 379 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:43 +0100] "quit" 400 379 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:43 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:43 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:44 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 185.142.236.34 - - [07/Feb/2023:22:02:44 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 185.142.236.34 - - [07/Feb/2023:22:02:46 +0100] "" 400 379 "-" "-" 185.224.128.236 - - [07/Feb/2023:22:04:49 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0" 43.252.75.21 - - [07/Feb/2023:23:49:02 +0100] "GET /api/v2/cmdb/system/admin/admin HTTP/1.0" 301 407 "-" "Report Runner" 138.246.253.24 - - [07/Feb/2023:23:55:30 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 18.246.47.247 - - [07/Feb/2023:23:57:20 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36" 139.59.62.49 - - [08/Feb/2023:00:39:57 +0100] "GET /aaa9 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 139.59.62.49 - - [08/Feb/2023:00:39:58 +0100] "GET /aab8 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 185.180.143.138 - - [08/Feb/2023:00:57:04 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36"