128.1.248.26 - - [26/Feb/2023:01:09:30 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 194.110.203.47 - - [26/Feb/2023:01:27:26 +0100] "GET /backup_03082022.zip HTTP/1.1" 301 405 "-" "Firefox" 89.248.172.16 - - [26/Feb/2023:03:28:48 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 89.248.172.16 - - [26/Feb/2023:03:28:58 +0100] "" 400 379 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:28:59 +0100] "" 400 379 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:29:01 +0100] "" 400 379 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:29:08 +0100] "quit" 400 379 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:29:09 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:29:10 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:29:10 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 89.248.172.16 - - [26/Feb/2023:03:29:11 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 89.248.172.16 - - [26/Feb/2023:03:29:13 +0100] "" 400 379 "-" "-" 51.158.237.126 - - [26/Feb/2023:04:13:58 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:104.0) Gecko/20100101 Firefox/104.0" 51.158.237.126 - - [26/Feb/2023:04:13:58 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:104.0) Gecko/20100101 Firefox/104.0" 198.98.57.108 - - [26/Feb/2023:05:28:17 +0100] "GET /1.sql HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.67 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:20 +0100] "GET /backup.sql HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/35.0.2309.372 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:23 +0100] "GET /database.sql HTTP/1.1" 301 397 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/55.0.2919.83 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:25 +0100] "GET /data.sql HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:28 +0100] "GET /db_backup.sql HTTP/1.1" 301 398 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2227.0 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:30 +0100] "GET /dbdump.sql HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/35.0.3319.102 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:33 +0100] "GET /db.sql HTTP/1.1" 301 391 "-" "Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.67 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:35 +0100] "GET /dump.sql HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:38 +0100] "GET /bahlsen.2web.at.sql HTTP/1.1" 301 404 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:44 +0100] "GET /bahlsen.2web.at_db.sql HTTP/1.1" 301 407 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/55.0.2919.83 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:47 +0100] "GET /localhost.sql HTTP/1.1" 301 398 "-" "Mozilla/5.0 (X11; OpenBSD i386) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.125 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:53 +0100] "GET /mysqldump.sql HTTP/1.1" 301 398 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:55 +0100] "GET /mysql.sql HTTP/1.1" 301 394 "-" "Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1866.237 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:28:58 +0100] "GET /site.sql HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.36 (KHTML like Gecko) Chrome/44.0.2403.155 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:29:00 +0100] "GET /sql.sql HTTP/1.1" 301 392 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2225.0 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:29:02 +0100] "GET /temp.sql HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.36 (KHTML like Gecko) Chrome/44.0.2403.155 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:29:09 +0100] "GET /translate.sql HTTP/1.1" 301 398 "-" "Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.36 (KHTML like Gecko) Chrome/44.0.2403.155 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:29:11 +0100] "GET /users.sql HTTP/1.1" 301 394 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/55.0.2919.83 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:29:13 +0100] "GET /wp-content/uploads/dump.sql HTTP/1.1" 301 412 "-" "Mozilla/5.0 (Windows NT 4.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2049.0 Safari/537.36" 198.98.57.108 - - [26/Feb/2023:05:29:15 +0100] "GET /wp-content/mysql.sql HTTP/1.1" 301 405 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2227.1 Safari/537.36" 194.110.203.45 - - [26/Feb/2023:05:33:27 +0100] "GET /backup_31072022.zip HTTP/1.1" 301 413 "-" "Firefox" 45.155.126.4 - - [26/Feb/2023:05:58:41 +0100] "-" 408 - "-" "-" 143.244.168.236 - - [26/Feb/2023:05:58:46 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 143.244.168.236 - - [26/Feb/2023:05:58:48 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 185.165.190.34 - - [26/Feb/2023:06:06:31 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 185.165.190.34 - - [26/Feb/2023:06:06:37 +0100] "" 400 379 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:38 +0100] "" 400 379 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:39 +0100] "" 400 379 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:43 +0100] "quit" 400 379 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:43 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:45 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:45 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 185.165.190.34 - - [26/Feb/2023:06:06:46 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 185.165.190.34 - - [26/Feb/2023:06:06:48 +0100] "" 400 379 "-" "-" 87.236.176.208 - - [26/Feb/2023:06:07:20 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 194.110.203.38 - - [26/Feb/2023:06:35:39 +0100] "GET /backup_30072022.zip HTTP/1.1" 301 405 "-" "Firefox" 107.170.247.16 - - [26/Feb/2023:07:35:35 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.46 - - [26/Feb/2023:08:58:19 +0100] "GET /backup_29072022.zip HTTP/1.1" 301 396 "-" "Firefox" 107.170.243.22 - - [26/Feb/2023:09:05:38 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 154.89.5.112 - - [26/Feb/2023:09:17:01 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 193.235.141.146 - - [26/Feb/2023:09:51:24 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 194.110.203.45 - - [26/Feb/2023:09:51:24 +0100] "GET /backup_28072022.zip HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.44 - - [26/Feb/2023:10:29:29 +0100] "GET /backup_28072022.zip HTTP/1.1" 301 396 "-" "Firefox" 184.105.247.254 - - [26/Feb/2023:10:36:16 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0" 192.241.134.52 - - [26/Feb/2023:10:39:13 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 192.241.134.52 - - [26/Feb/2023:10:39:14 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 192.241.134.52 - - [26/Feb/2023:10:39:17 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 192.241.134.52 - - [26/Feb/2023:10:39:18 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 184.105.247.254 - - [26/Feb/2023:10:43:18 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" 184.105.247.254 - - [26/Feb/2023:10:47:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.0 Safari/605.1.15" 184.105.247.254 - - [26/Feb/2023:10:49:10 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:106.0) Gecko/20100101 Firefox/106.0" 198.235.24.58 - - [26/Feb/2023:10:49:11 +0100] "GET / HTTP/1.1" 301 377 "-" "-" 194.110.203.45 - - [26/Feb/2023:11:01:07 +0100] "GET /backup_27072022.zip HTTP/1.1" 301 405 "-" "Firefox" 109.237.98.53 - - [26/Feb/2023:11:25:00 +0100] "GET /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:01 +0100] "POST /.env HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:02 +0100] "GET /.aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:03 +0100] "POST /.aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:03 +0100] "GET /.aws/config HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:04 +0100] "POST /.aws/config HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:05 +0100] "GET /aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:06 +0100] "POST /aws/credentials HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:06 +0100] "GET /credentials HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:07 +0100] "POST /credentials HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:08 +0100] "GET /test.php HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:09 +0100] "POST /test.php HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:09 +0100] "GET /laravel/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:10 +0100] "POST /laravel/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:11 +0100] "GET /demo/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:12 +0100] "POST /demo/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:12 +0100] "GET /web/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:13 +0100] "POST /web/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:13 +0100] "GET /phpinfo HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:14 +0100] "POST /phpinfo HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:15 +0100] "GET /admin/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:15 +0100] "POST /admin/.env HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:16 +0100] "GET /backend/.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:17 +0100] "POST /backend/.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:17 +0100] "GET /app/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.53 - - [26/Feb/2023:11:25:18 +0100] "POST /app/.env HTTP/1.1" 301 300 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 192.241.227.20 - - [26/Feb/2023:11:49:54 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.47 - - [26/Feb/2023:12:31:05 +0100] "GET /backup_26072022.zip HTTP/1.1" 301 413 "-" "Firefox" 109.123.248.102 - - [26/Feb/2023:12:38:45 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 20.243.253.21 - - [26/Feb/2023:12:57:09 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 20.243.253.21 - - [26/Feb/2023:12:57:12 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 64.227.30.80 - - [26/Feb/2023:13:10:37 +0100] "HEAD / HTTP/1.1" 301 - "https://www.bing.com" "Mozilla/5.0 (X11; OpenBSD i386) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/36.0.1985.125 Safari/537.36" 209.141.33.65 - - [26/Feb/2023:14:04:40 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.55.120 - - [26/Feb/2023:14:04:46 +0100] "GET /favicon.ico HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 203.150.43.53 - - [26/Feb/2023:14:23:31 +0100] "POST /owa/auth.owa HTTP/1.1" 301 308 "-" "python-requests/2.26.0" 194.110.203.39 - - [26/Feb/2023:15:40:26 +0100] "GET /backup_24072022.zip HTTP/1.1" 301 413 "-" "Firefox" 27.124.12.29 - - [26/Feb/2023:15:48:02 +0100] "GET /dongman/doupocangqiongnianfan/ HTTP/1.1" 301 414 "/dongman/doupocangqiongnianfan/" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 167.71.13.100 - - [26/Feb/2023:16:21:25 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 167.71.13.100 - - [26/Feb/2023:16:21:26 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 167.71.13.100 - - [26/Feb/2023:16:21:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 167.71.13.100 - - [26/Feb/2023:16:21:27 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 194.110.203.38 - - [26/Feb/2023:16:29:21 +0100] "GET /backup_24072022.zip HTTP/1.1" 301 405 "-" "Firefox" 144.91.67.218 - - [26/Feb/2023:17:32:05 +0100] "GET /backup_23072022.zip HTTP/1.1" 301 413 "-" "Firefox" 198.235.24.139 - - [26/Feb/2023:19:18:15 +0100] "GET / HTTP/1.1" 301 394 "-" "-" 193.235.141.134 - - [26/Feb/2023:19:30:30 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 194.110.203.45 - - [26/Feb/2023:19:33:21 +0100] "GET /backup_22072022.zip HTTP/1.1" 301 405 "-" "Firefox" 43.128.227.146 - - [26/Feb/2023:19:57:52 +0100] "GET / HTTP/1.1" 301 301 "-" "'Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:101.0) Gecko/20100101 Firefox/101.0'" 43.128.227.146 - - [26/Feb/2023:19:58:19 +0100] "-" 408 - "-" "-" 43.128.227.146 - - [26/Feb/2023:19:58:30 +0100] "-" 408 - "-" "-" 79.124.58.130 - - [26/Feb/2023:20:00:43 +0100] "GET /autodiscover/autodiscover.json?@1337.com/owa/?&Email=autodiscover/autodiscover.json%3F@1337.com HTTP/1.1" 301 350 "-" "Mozilla/5.0 (Windows NT 10.0; rv:68.0) Gecko/20100101 Firefox/68.0" 45.134.144.119 - - [26/Feb/2023:20:11:10 +0100] "GET ///remote/fgt_lang?lang=/../../../..//////////dev/ HTTP/1.1" 301 325 "-" "python-requests/2.6.0 CPython/2.7.5 Linux/3.10.0-1160.el7.x86_64" 194.110.203.46 - - [26/Feb/2023:20:20:53 +0100] "GET /backup_21072022.zip HTTP/1.1" 301 413 "-" "Firefox" 152.89.196.211 - - [26/Feb/2023:20:35:47 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:20:46:32 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:20:57:13 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:21:08:14 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:21:32:18 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:22:00:48 +0100] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 167.71.78.253 - - [26/Feb/2023:22:08:16 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:22:13:31 +0100] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 18.236.94.85 - - [26/Feb/2023:22:16:27 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 34.219.153.51 - - [26/Feb/2023:22:16:50 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 34.218.253.90 - - [26/Feb/2023:22:17:27 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.184.233.57 - - [26/Feb/2023:22:22:48 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.184.233.57 - - [26/Feb/2023:22:23:19 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.184.233.57 - - [26/Feb/2023:22:25:14 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:22:26:59 +0100] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 54.184.233.57 - - [26/Feb/2023:22:27:12 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 109.123.248.102 - - [26/Feb/2023:22:28:40 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 152.89.196.211 - - [26/Feb/2023:22:31:48 +0100] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:22:44:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:22:51:29 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:23:09:31 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [26/Feb/2023:23:20:02 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.41 - - [26/Feb/2023:23:56:53 +0100] "GET /backup_19072022.zip HTTP/1.1" 301 396 "-" "Firefox" 54.212.247.187 - - [27/Feb/2023:00:03:04 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.245.68.117 - - [27/Feb/2023:00:03:24 +0100] "GET /favicon.ico HTTP/1.1" 301 313 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.245.68.117 - - [27/Feb/2023:00:03:27 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 60.217.75.70 - - [27/Feb/2023:00:13:22 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 194.110.203.39 - - [27/Feb/2023:00:43:31 +0100] "GET /backup_18072022.zip HTTP/1.1" 301 405 "-" "Firefox" 35.195.93.98 - - [27/Feb/2023:00:53:53 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2"