34.77.127.183 - - [14/Feb/2023:01:02:30 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2" 18.237.105.84 - - [14/Feb/2023:01:16:38 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 34.220.92.54 - - [14/Feb/2023:01:17:03 +0100] "GET /favicon.ico HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 34.220.92.54 - - [14/Feb/2023:01:17:07 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 194.110.203.40 - - [14/Feb/2023:01:46:48 +0100] "GET /easyzumfuehrerschein_26032022.zip HTTP/1.1" 301 427 "-" "Firefox" 152.89.196.211 - - [14/Feb/2023:01:48:22 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 62.233.50.248 - - [14/Feb/2023:02:38:31 +0100] "-" 408 - "-" "-" 173.249.8.100 - - [14/Feb/2023:02:47:01 +0100] "GET /api/v2/cmdb/system/admin/admin HTTP/1.0" 301 407 "-" "Report Runner" 141.98.10.56 - - [14/Feb/2023:03:32:11 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 194.110.203.45 - - [14/Feb/2023:03:40:01 +0100] "GET /klub_25032022.zip HTTP/1.1" 301 403 "-" "Firefox" 128.14.209.234 - - [14/Feb/2023:03:45:09 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36" 194.110.203.46 - - [14/Feb/2023:03:52:01 +0100] "GET /harm_26032022.zip HTTP/1.1" 301 394 "-" "Firefox" 162.142.125.9 - - [14/Feb/2023:04:06:55 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.9 - - [14/Feb/2023:04:06:56 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.9 - - [14/Feb/2023:04:06:56 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 152.89.196.211 - - [14/Feb/2023:04:15:38 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:17 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:17 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:18 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:18 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:19 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:19 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:19 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:20 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:20 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:21 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:21 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:22 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:22 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:23 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:23 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:24 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:24 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:25 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:25 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Feb/2023:05:06:26 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.44 - - [14/Feb/2023:05:13:57 +0100] "GET /easyzumfuehrerschein_25032022.zip HTTP/1.1" 301 427 "-" "Firefox" 128.1.34.58 - - [14/Feb/2023:05:32:16 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 128.1.34.58 - - [14/Feb/2023:05:32:17 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 128.1.34.58 - - [14/Feb/2023:05:32:22 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 128.1.34.58 - - [14/Feb/2023:05:32:25 +0100] "GET /sitemap.xml HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 154.89.5.118 - - [14/Feb/2023:05:33:24 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 141.98.10.56 - - [14/Feb/2023:05:38:18 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 198.211.109.100 - - [14/Feb/2023:05:47:53 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 54.146.107.30 - - [14/Feb/2023:05:53:13 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36" 62.233.50.248 - - [14/Feb/2023:06:07:13 +0100] "-" 408 - "-" "-" 141.98.10.56 - - [14/Feb/2023:06:43:02 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 192.241.209.74 - - [14/Feb/2023:07:41:49 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 143.244.41.219 - - [14/Feb/2023:07:46:10 +0100] "-" 408 - "-" "-" 171.22.30.127 - - [14/Feb/2023:07:52:31 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 171.22.30.127 - - [14/Feb/2023:07:52:31 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 4.184.57.28 - - [14/Feb/2023:08:10:56 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 194.110.203.40 - - [14/Feb/2023:08:23:36 +0100] "GET /easyzumfuehrerschein_24032022.zip HTTP/1.1" 301 427 "-" "Firefox" 193.235.141.133 - - [14/Feb/2023:08:41:39 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 141.98.10.56 - - [14/Feb/2023:08:57:03 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 134.209.145.9 - - [14/Feb/2023:09:06:44 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.209.145.9 - - [14/Feb/2023:09:06:46 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.46 - - [14/Feb/2023:09:09:48 +0100] "GET /harm_24032022.zip HTTP/1.1" 301 394 "-" "Firefox" 62.233.50.248 - - [14/Feb/2023:09:34:49 +0100] "-" 408 - "-" "-" 141.98.10.56 - - [14/Feb/2023:11:35:45 +0100] "GET / HTTP/1.1" 301 383 "-" "Hello World" 194.110.203.46 - - [14/Feb/2023:11:38:09 +0100] "GET /harm_23032022.zip HTTP/1.1" 301 394 "-" "Firefox" 205.210.31.156 - - [14/Feb/2023:12:15:59 +0100] "GET / HTTP/1.1" 301 389 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.189.182.234 - - [14/Feb/2023:12:46:55 +0100] "GET /4hrN HTTP/1.1" 400 379 "-" "-" 194.110.203.40 - - [14/Feb/2023:12:55:20 +0100] "GET /klub_22032022.zip HTTP/1.1" 301 403 "-" "Firefox" 194.110.203.40 - - [14/Feb/2023:15:28:07 +0100] "GET /harm_22032022.zip HTTP/1.1" 301 394 "-" "Firefox" 209.141.51.44 - - [14/Feb/2023:15:41:01 +0100] "GET ///wp-login.php HTTP/1.1" 301 306 "http://www.google.com.hk" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.90 Safari/537.36" 167.94.146.58 - - [14/Feb/2023:15:43:23 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.146.58 - - [14/Feb/2023:15:43:23 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.146.58 - - [14/Feb/2023:15:43:24 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 194.110.203.40 - - [14/Feb/2023:16:10:41 +0100] "GET /klub_21032022.zip HTTP/1.1" 301 403 "-" "Firefox" 193.118.53.210 - - [14/Feb/2023:17:37:04 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 51.15.247.214 - - [14/Feb/2023:18:36:13 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 209.141.51.44 - - [14/Feb/2023:18:46:34 +0100] "GET ///wp-login.php HTTP/1.1" 301 304 "http://www.google.com.hk" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.90 Safari/537.36" 206.189.120.50 - - [14/Feb/2023:19:23:35 +0100] "GET /aaa9 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 206.189.120.50 - - [14/Feb/2023:19:23:38 +0100] "GET /aab8 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 193.235.141.142 - - [14/Feb/2023:19:33:18 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 162.243.143.23 - - [14/Feb/2023:19:37:09 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 128.14.141.34 - - [14/Feb/2023:19:58:23 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 157.55.39.82 - - [14/Feb/2023:22:30:31 +0100] "GET /robots.txt HTTP/1.1" 301 315 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 157.55.39.82 - - [14/Feb/2023:22:30:32 +0100] "GET /robots.txt HTTP/1.1" 301 315 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 207.46.13.41 - - [14/Feb/2023:22:30:40 +0100] "GET / HTTP/1.1" 301 308 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/103.0.5060.134 Safari/537.36" 194.110.203.38 - - [14/Feb/2023:23:19:45 +0100] "GET /harm_20032022.zip HTTP/1.1" 301 394 "-" "Firefox" 175.178.191.129 - - [14/Feb/2023:23:43:38 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.80 Safari/537.36" 213.32.122.82 - - [14/Feb/2023:23:53:04 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 185.180.143.71 - - [15/Feb/2023:00:05:03 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 20.113.26.150 - - [15/Feb/2023:00:42:56 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.98 Safari/537.36"