34.76.158.233 - - [22/Feb/2023:01:13:02 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2" 163.172.180.25 - - [22/Feb/2023:01:13:44 +0100] "GET / HTTP/1.1" 301 392 "-" "-" 194.110.203.45 - - [22/Feb/2023:01:24:37 +0100] "GET /backup_27092022.zip HTTP/1.1" 301 396 "-" "Firefox" 194.110.203.42 - - [22/Feb/2023:01:25:49 +0100] "GET /backup_27092022.zip HTTP/1.1" 301 405 "-" "Firefox" 167.94.138.119 - - [22/Feb/2023:01:27:44 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.119 - - [22/Feb/2023:01:27:45 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 27.124.12.16 - - [22/Feb/2023:01:43:42 +0100] "GET /haiwaiju/zwnyr/ HTTP/1.1" 301 398 "/haiwaiju/zwnyr/" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 92.118.39.108 - - [22/Feb/2023:01:52:57 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 64.227.190.2 - - [22/Feb/2023:02:00:13 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 64.227.190.2 - - [22/Feb/2023:02:00:15 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 64.227.190.2 - - [22/Feb/2023:02:00:22 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 64.227.190.2 - - [22/Feb/2023:02:00:24 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 109.237.97.180 - - [22/Feb/2023:02:31:17 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:18 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:18 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:19 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:19 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:19 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:20 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:20 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:21 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:21 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:22 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:22 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:23 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:23 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:24 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:24 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:24 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:25 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:25 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [22/Feb/2023:02:31:26 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 51.15.205.3 - - [22/Feb/2023:02:47:43 +0100] "GET / HTTP/1.1" 301 385 "-" "-" 198.235.24.163 - - [22/Feb/2023:02:48:01 +0100] "GET / HTTP/1.1" 301 383 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 216.218.206.69 - - [22/Feb/2023:03:19:48 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36 Edg/105.0.1343.53" 194.110.203.39 - - [22/Feb/2023:03:25:52 +0100] "GET /backup_26092022.zip HTTP/1.1" 301 396 "-" "Firefox" 216.218.206.69 - - [22/Feb/2023:03:29:10 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:104.0) Gecko/20100101 Firefox/104.0" 216.218.206.69 - - [22/Feb/2023:03:35:34 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.5112.126 Safari/537.36" 198.98.57.108 - - [22/Feb/2023:03:50:47 +0100] "GET /?\"\" HTTP/1.1" 301 337 "https://www.google.com/\"\"" "Mozilliqa\"\"" 198.98.57.108 - - [22/Feb/2023:03:50:49 +0100] "GET /?'' HTTP/1.1" 301 335 "https://www.google.com/''" "Mozilliqa''" 198.98.57.108 - - [22/Feb/2023:03:50:51 +0100] "GET /?'{${print(9347655345-4954366)}}' HTTP/1.1" 301 335 "https://www.google.com/'{${print(9347655345-4954366)}}'" "Mozilliqa'{${print(9347655345-4954366)}}'" 198.98.57.108 - - [22/Feb/2023:03:50:54 +0100] "GET /?\"{${print(9347655345-4954366)}}\" HTTP/1.1" 301 337 "https://www.google.com/\"{${print(9347655345-4954366)}}\"" "Mozilliqa\"{${print(9347655345-4954366)}}\"" 198.98.57.108 - - [22/Feb/2023:03:50:55 +0100] "GET /?'+print(9347655345-4954366)+' HTTP/1.1" 301 327 "https://www.google.com/'+print(9347655345-4954366)+'" "Mozilliqa'+print(9347655345-4954366)+'" 52.90.160.206 - - [22/Feb/2023:04:00:17 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.2;en-US) AppleWebKit/537.32.36 (KHTML, live Gecko) Chrome/59.0.3040.100 Safari/537.32" 162.221.192.90 - - [22/Feb/2023:04:13:19 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 212.193.30.38 - - [22/Feb/2023:05:05:51 +0100] "GET /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.85 Safari/537.36" 212.193.30.38 - - [22/Feb/2023:05:05:52 +0100] "POST / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.85 Safari/537.36" 159.223.12.224 - - [22/Feb/2023:05:37:30 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 194.110.203.38 - - [22/Feb/2023:05:54:04 +0100] "GET /backup_24092022.zip HTTP/1.1" 301 413 "-" "Firefox" 192.241.217.15 - - [22/Feb/2023:06:57:30 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 103.149.192.216 - - [22/Feb/2023:07:00:12 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36" 185.180.143.81 - - [22/Feb/2023:07:16:26 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.40 - - [22/Feb/2023:07:17:22 +0100] "GET /backup_23092022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.47 - - [22/Feb/2023:07:53:15 +0100] "GET /backup_23092022.zip HTTP/1.1" 301 405 "-" "Firefox" 193.106.29.122 - - [22/Feb/2023:08:07:54 +0100] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 4.184.57.28 - - [22/Feb/2023:08:20:01 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 162.243.133.21 - - [22/Feb/2023:09:04:00 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.47 - - [22/Feb/2023:09:40:17 +0100] "GET /backup_22092022.zip HTTP/1.1" 301 396 "-" "Firefox" 103.203.59.1 - - [22/Feb/2023:09:41:52 +0100] "GET / HTTP/1.1" 301 383 "-" "HTTP Banner Detection (https://security.ipip.net)" 139.144.41.61 - - [22/Feb/2023:09:43:22 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) Chrome/98.0.4758.132 Safari/537.36" 107.170.252.9 - - [22/Feb/2023:09:50:13 +0100] "GET /ReportServer HTTP/1.1" 301 307 "-" "Mozilla/5.0 zgrab/0.x" 195.144.21.56 - - [22/Feb/2023:09:51:32 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 195.144.21.56 - - [22/Feb/2023:09:51:33 +0100] "" 400 379 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:33 +0100] "" 400 379 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:34 +0100] "" 400 379 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:37 +0100] "quit" 400 379 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:40 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:40 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:40 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 195.144.21.56 - - [22/Feb/2023:09:51:44 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 195.144.21.56 - - [22/Feb/2023:09:51:45 +0100] "" 400 379 "-" "-" 47.254.74.59 - - [22/Feb/2023:10:01:19 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; Android 11; M2004J15SC) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36" 47.254.85.182 - - [22/Feb/2023:10:01:24 +0100] "GET /Public/home/js/check.js HTTP/1.1" 301 316 "-" "Mozilla/5.0 (Linux; Android 11; M2004J15SC) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36" 47.254.74.59 - - [22/Feb/2023:10:01:27 +0100] "GET /static/admin/javascript/hetong.js HTTP/1.1" 301 325 "-" "Mozilla/5.0 (Linux; Android 11; M2004J15SC) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.114 Mobile Safari/537.36" 162.243.133.18 - - [22/Feb/2023:10:06:08 +0100] "GET /login HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 128.14.133.58 - - [22/Feb/2023:10:17:05 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.42 - - [22/Feb/2023:10:58:28 +0100] "GET /backup_21092022.zip HTTP/1.1" 301 396 "-" "Firefox" 157.230.248.195 - - [22/Feb/2023:10:59:39 +0100] "GET /api/v1 HTTP/1.1" 301 305 "-" "python-requests/2.22.0" 139.177.197.81 - - [22/Feb/2023:11:00:13 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 104.248.229.49 - - [22/Feb/2023:11:32:36 +0100] "GET /aaa9 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 104.248.229.49 - - [22/Feb/2023:11:32:38 +0100] "GET /aab8 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 109.237.98.226 - - [22/Feb/2023:13:05:20 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:20 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:21 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:21 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:21 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:22 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:22 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:23 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:23 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:24 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:24 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:25 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:25 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:25 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:26 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:26 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:27 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:27 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:28 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [22/Feb/2023:13:05:28 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.39 - - [22/Feb/2023:13:31:44 +0100] "GET /backup_19092022.zip HTTP/1.1" 301 413 "-" "Firefox" 163.172.180.25 - - [22/Feb/2023:13:44:40 +0100] "GET / HTTP/1.1" 301 385 "-" "-" 194.110.203.44 - - [22/Feb/2023:15:29:16 +0100] "GET /backup_18092022.zip HTTP/1.1" 301 413 "-" "Firefox" 193.56.29.26 - - [22/Feb/2023:15:36:34 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 193.56.29.26 - - [22/Feb/2023:15:36:34 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 132.148.166.136 - - [22/Feb/2023:16:12:23 +0100] "GET /backup_18092022.zip HTTP/1.1" 301 405 "-" "Firefox" 192.241.211.4 - - [22/Feb/2023:16:14:51 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 128.14.134.134 - - [22/Feb/2023:17:02:07 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 94.102.61.7 - - [22/Feb/2023:18:44:10 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36" 152.89.196.211 - - [22/Feb/2023:19:26:30 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 83.136.32.58 - - [22/Feb/2023:19:47:02 +0100] "HEAD / HTTP/1.0" 301 - "https://cert.at/de/services/statistic-survey/" "CERT.at-Statistics-Survey/1.0 (+http://www.cert.at/about/consec/content.html)" 87.236.176.110 - - [22/Feb/2023:19:47:50 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 194.110.203.41 - - [22/Feb/2023:19:58:32 +0100] "GET /backup_16092022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.38 - - [22/Feb/2023:20:01:35 +0100] "GET /backup_16092022.zip HTTP/1.1" 301 405 "-" "Firefox" 162.243.131.17 - - [22/Feb/2023:20:19:26 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 162.243.136.22 - - [22/Feb/2023:20:41:06 +0100] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.42 - - [22/Feb/2023:22:10:59 +0100] "GET /backup_15092022.zip HTTP/1.1" 301 396 "-" "Firefox" 60.217.75.70 - - [22/Feb/2023:22:29:31 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 23.90.160.122 - - [22/Feb/2023:22:37:54 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:38:30 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:38:33 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:38:34 +0100] "GET /solr/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:38:55 +0100] "GET /webfig/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:39:04 +0100] "GET /owa/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:39:05 +0100] "GET /autodiscover/autodiscover.json?a..foo.var/owa/?&Email=autodiscover/autodiscover.json?a..foo.var&Protocol=XYZ&FooProtocol=%50owershell HTTP/1.1" 301 378 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 23.90.160.122 - - [22/Feb/2023:22:39:09 +0100] "GET /admin/ HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 60.217.75.70 - - [22/Feb/2023:22:48:29 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 194.110.203.47 - - [22/Feb/2023:23:10:45 +0100] "GET /backup_14092022.zip HTTP/1.1" 301 405 "-" "Firefox" 212.87.204.226 - - [23/Feb/2023:00:23:54 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 212.87.204.226 - - [23/Feb/2023:00:23:54 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30"