103.149.192.73 - - [02/Mar/2023:01:00:54 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:37 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:38 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:38 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:40 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:40 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:41 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:41 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:42 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:43 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:47 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [02/Mar/2023:01:29:48 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 92.118.39.109 - - [02/Mar/2023:01:56:21 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 194.163.154.32 - - [02/Mar/2023:03:02:20 +0100] "GET /.env HTTP/1.1" 301 299 "-" "python-requests/2.6.0 CPython/2.7.5 Linux/3.10.0-1160.83.1.el7.x86_64" 194.163.154.32 - - [02/Mar/2023:03:02:20 +0100] "POST / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.163.154.32 - - [02/Mar/2023:03:02:20 +0100] "POST /core/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.163.154.32 - - [02/Mar/2023:03:02:20 +0100] "GET /core/.env HTTP/1.1" 301 303 "-" "python-requests/2.6.0 CPython/2.7.5 Linux/3.10.0-1160.83.1.el7.x86_64" 194.163.154.32 - - [02/Mar/2023:03:02:21 +0100] "POST / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.163.154.32 - - [02/Mar/2023:03:02:21 +0100] "POST /core/.env HTTP/1.1" 301 303 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.46 - - [02/Mar/2023:03:05:40 +0100] "GET /backup_09062022.zip HTTP/1.1" 301 396 "-" "Firefox" 83.136.32.58 - - [02/Mar/2023:04:12:42 +0100] "HEAD / HTTP/1.0" 301 - "https://cert.at/de/services/statistic-survey/" "CERT.at-Statistics-Survey/1.0 (+http://www.cert.at/about/consec/content.html)" 185.142.236.35 - - [02/Mar/2023:04:22:19 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.102 Safari/537.36" 185.142.236.35 - - [02/Mar/2023:04:22:23 +0100] "" 400 379 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:24 +0100] "" 400 379 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:25 +0100] "" 400 379 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:28 +0100] "quit" 400 379 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:29 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:30 +0100] "GET /sitemap.xml HTTP/1.1" 301 394 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:30 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 407 "-" "-" 185.142.236.35 - - [02/Mar/2023:04:22:31 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 185.142.236.35 - - [02/Mar/2023:04:22:32 +0100] "" 400 379 "-" "-" 43.158.217.52 - - [02/Mar/2023:05:27:49 +0100] "GET / HTTP/1.1" 301 301 "-" "'Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:101.0) Gecko/20100101 Firefox/101.0'" 43.158.217.52 - - [02/Mar/2023:05:28:17 +0100] "-" 408 - "-" "-" 43.158.217.52 - - [02/Mar/2023:05:28:23 +0100] "-" 408 - "-" "-" 95.181.232.21 - - [02/Mar/2023:05:38:33 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 95.181.232.21 - - [02/Mar/2023:05:38:34 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" 194.110.203.39 - - [02/Mar/2023:05:43:36 +0100] "GET /backup_08062022.zip HTTP/1.1" 301 405 "-" "Firefox" 120.211.145.96 - - [02/Mar/2023:06:24:47 +0100] "GET / HTTP/1.0" 301 383 "-" "-" 222.161.44.59 - - [02/Mar/2023:06:25:03 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36" 194.110.203.44 - - [02/Mar/2023:06:28:03 +0100] "GET /backup_07062022.zip HTTP/1.1" 301 396 "-" "Firefox" 45.83.65.189 - - [02/Mar/2023:06:54:11 +0100] "GET / HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0" 45.83.64.212 - - [02/Mar/2023:06:54:11 +0100] "GET /favicon.ico HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0" 192.241.226.6 - - [02/Mar/2023:07:36:14 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.44 - - [02/Mar/2023:07:43:43 +0100] "GET /backup_06062022.zip HTTP/1.1" 301 413 "-" "Firefox" 107.170.227.21 - - [02/Mar/2023:09:13:35 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 23.90.160.138 - - [02/Mar/2023:09:50:41 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36" 194.110.203.38 - - [02/Mar/2023:10:10:51 +0100] "GET /backup_05062022.zip HTTP/1.1" 301 405 "-" "Firefox" 192.241.223.31 - - [02/Mar/2023:10:25:08 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.45 - - [02/Mar/2023:11:05:13 +0100] "GET /backup_04062022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.44 - - [02/Mar/2023:11:21:53 +0100] "GET /backup_04062022.zip HTTP/1.1" 301 405 "-" "Firefox" 38.106.120.230 - - [02/Mar/2023:11:37:12 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; Zoom 3.6.0; rv:11.0) like Gecko" 142.93.139.247 - - [02/Mar/2023:11:56:11 +0100] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Go-http-client/1.1" 45.134.144.119 - - [02/Mar/2023:12:01:44 +0100] "GET ///remote/fgt_lang?lang=/../../../..//////////dev/ HTTP/1.1" 301 325 "-" "python-requests/2.6.0 CPython/2.7.5 Linux/3.10.0-1160.el7.x86_64" 83.143.86.62 - - [02/Mar/2023:12:10:52 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.45 - - [02/Mar/2023:12:22:00 +0100] "GET /backup_03062022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.42 - - [02/Mar/2023:12:43:13 +0100] "GET /backup_03062022.zip HTTP/1.1" 301 405 "-" "Firefox" 170.64.166.144 - - [02/Mar/2023:14:16:27 +0100] "GET /aaa9 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 170.64.166.144 - - [02/Mar/2023:14:16:31 +0100] "GET /aab8 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 132.148.166.136 - - [02/Mar/2023:14:33:29 +0100] "GET /backup_02062022.zip HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.47 - - [02/Mar/2023:15:10:22 +0100] "GET /backup_01062022.zip HTTP/1.1" 301 413 "-" "Firefox" 64.62.197.87 - - [02/Mar/2023:15:50:06 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36" 64.62.197.91 - - [02/Mar/2023:15:56:58 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:108.0) Gecko/20100101 Firefox/108.0" 64.62.197.86 - - [02/Mar/2023:16:00:02 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 OPR/95.0.0.0" 64.62.197.79 - - [02/Mar/2023:16:01:31 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15" 107.170.234.17 - - [02/Mar/2023:16:10:07 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 138.246.253.24 - - [02/Mar/2023:16:17:41 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 208.100.26.237 - - [02/Mar/2023:16:38:15 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (compatible, MSIE 11, Windows NT 6.3; Trident/7.0; rv:11.0) like Gecko" 208.100.26.249 - - [02/Mar/2023:16:38:16 +0100] "GET / HTTP/1.1" 301 298 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36" 194.110.203.44 - - [02/Mar/2023:16:42:16 +0100] "GET /backup_31052022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.41 - - [02/Mar/2023:17:18:42 +0100] "GET /backup_31052022.zip HTTP/1.1" 301 405 "-" "Firefox" 152.89.196.211 - - [02/Mar/2023:17:46:31 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [02/Mar/2023:17:59:35 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:56 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:57 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:57 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:57 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:58 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:58 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:59 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:16:59 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:00 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:00 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:01 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:01 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:02 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:03 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:03 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:04 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:04 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:04 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:05 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:06 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:06 +0100] "GET /admin/.env HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:07 +0100] "POST /admin/.env HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:07 +0100] "GET /backend/.env HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:08 +0100] "POST /backend/.env HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:08 +0100] "GET /app/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.98.226 - - [02/Mar/2023:18:17:09 +0100] "POST /app/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 152.89.196.211 - - [02/Mar/2023:18:27:07 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [02/Mar/2023:18:34:38 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.40 - - [02/Mar/2023:18:37:17 +0100] "GET /backup_30052022.zip HTTP/1.1" 301 405 "-" "Firefox" 162.142.125.219 - - [02/Mar/2023:18:52:35 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.219 - - [02/Mar/2023:18:52:35 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.219 - - [02/Mar/2023:18:52:36 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 134.122.133.97 - - [02/Mar/2023:19:24:37 +0100] "GET / HTTP/1.1" 301 381 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 194.110.203.42 - - [02/Mar/2023:20:06:23 +0100] "GET /backup_29052022.zip HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.40 - - [02/Mar/2023:20:08:37 +0100] "GET /backup_29052022.zip HTTP/1.1" 301 413 "-" "Firefox" 138.246.253.24 - - [02/Mar/2023:20:24:02 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 194.110.203.47 - - [02/Mar/2023:21:46:21 +0100] "GET /backup_28052022.zip HTTP/1.1" 301 405 "-" "Firefox" 152.89.196.211 - - [02/Mar/2023:21:48:02 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.42 - - [02/Mar/2023:22:00:59 +0100] "GET /backup_28052022.zip HTTP/1.1" 301 413 "-" "Firefox" 152.89.196.211 - - [02/Mar/2023:22:10:00 +0100] "GET /geoserver HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.42 - - [02/Mar/2023:22:15:54 +0100] "GET /backup_03062022.zip HTTP/1.1" 301 396 "-" "Firefox" 54.187.28.177 - - [02/Mar/2023:22:19:09 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 18.246.33.221 - - [02/Mar/2023:22:19:49 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 18.246.33.221 - - [02/Mar/2023:22:19:57 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 35.87.219.2 - - [02/Mar/2023:22:22:55 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.186.24.85 - - [02/Mar/2023:22:23:39 +0100] "GET /favicon.ico HTTP/1.1" 301 314 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 925 "-" "-" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "POST /scripts/WPnBr.dll HTTP/1.1" 301 400 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "GET /inicio.cfm HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:11 +0100] "GET /nmaplowercheck1677794171 HTTP/1.1" 301 407 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /t7cN HTTP/1.1" 301 387 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /Portal/Portal.mwsl HTTP/1.1" 301 401 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /Portal0000.htm HTTP/1.1" 301 397 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "POST /sdk HTTP/1.1" 301 386 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /pools/default/buckets HTTP/1.1" 301 404 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /default.jhtml HTTP/1.1" 301 396 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 301 424 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "HEAD / HTTP/1.1" 301 - "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /server-status HTTP/1.1" 301 396 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /HNAP1 HTTP/1.1" 301 388 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /docs/cplugError.html/ HTTP/1.1" 301 404 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /.git/HEAD HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /pools HTTP/1.1" 301 388 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /__Additional HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /CSS/Miniweb.css HTTP/1.1" 301 398 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 301 424 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:12 +0100] "GET /start.asp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:13 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:13 +0100] "GET /main.php HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:13 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:13 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:13 +0100] "GET /start.jsp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:13 +0100] "GET /inicio.asp HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:14 +0100] "GET /menu.html HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:14 +0100] "GET /base.jhtml HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:14 +0100] "GET /home.jsp HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:15 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:15 +0100] "GET /index.php HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:15 +0100] "GET /readme.txt HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:16 +0100] "GET /menu.jsp HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:16 +0100] "GET /inicio.pl HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:16 +0100] "GET /default.cgi HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:16 +0100] "GET /admin.shtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:17 +0100] "GET /admin.pl HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:17 +0100] "GET /inicio.aspx HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:17 +0100] "GET /menu.jsa HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:18 +0100] "GET /indice.html HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:18 +0100] "GET /menu.pl HTTP/1.1" 301 390 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:18 +0100] "GET /start.jhtml HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:19 +0100] "GET /index.html HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:19 +0100] "GET /admin.jsa HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:19 +0100] "GET /inicio.shtml HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:20 +0100] "GET /indice.jhtml HTTP/1.1" 301 395 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:20 +0100] "GET /home.jsa HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:20 +0100] "GET /admin.jsp HTTP/1.1" 301 392 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:20 +0100] "GET /default.jsp HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:21 +0100] "GET /base.shtml HTTP/1.1" 301 393 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:21 +0100] "GET /home.php HTTP/1.1" 301 391 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:21 +0100] "GET /default.cfm HTTP/1.1" 301 394 "-" "curl/7.54.0" 178.79.139.171 - - [02/Mar/2023:22:56:37 +0100] "GET / HTTP/1.0" 301 388 "-" "-" 130.211.54.158 - - [03/Mar/2023:00:43:10 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2"