152.89.196.211 - - [04/Mar/2023:01:00:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.44 - - [04/Mar/2023:01:05:46 +0100] "GET /backup_12052022.zip HTTP/1.1" 301 405 "-" "Firefox" 152.89.196.211 - - [04/Mar/2023:01:19:34 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 18.237.76.147 - - [04/Mar/2023:01:37:25 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.187.143.10 - - [04/Mar/2023:01:37:51 +0100] "GET /favicon.ico HTTP/1.1" 301 302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 54.187.143.10 - - [04/Mar/2023:01:37:54 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 152.89.196.211 - - [04/Mar/2023:01:38:22 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 167.71.47.44 - - [04/Mar/2023:01:41:14 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 152.89.196.211 - - [04/Mar/2023:02:02:03 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 92.118.39.109 - - [04/Mar/2023:02:21:34 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 152.89.196.211 - - [04/Mar/2023:02:38:39 +0100] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 194.110.203.47 - - [04/Mar/2023:02:40:28 +0100] "GET /backup_11052022.zip HTTP/1.1" 301 405 "-" "Firefox" 64.62.197.62 - - [04/Mar/2023:03:23:14 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.50" 64.62.197.69 - - [04/Mar/2023:03:30:23 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:109.0) Gecko/20100101 Firefox/109.0" 64.62.197.74 - - [04/Mar/2023:03:33:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; rv:108.0) Gecko/20100101 Firefox/108.0" 64.62.197.74 - - [04/Mar/2023:03:34:39 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/111.0" 194.110.203.47 - - [04/Mar/2023:04:29:22 +0100] "GET /backup_10052022.zip HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.47 - - [04/Mar/2023:05:01:59 +0100] "GET /backup_10052022.zip HTTP/1.1" 301 396 "-" "Firefox" 87.236.176.126 - - [04/Mar/2023:05:16:50 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 152.89.196.211 - - [04/Mar/2023:05:38:51 +0100] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 128.14.141.34 - - [04/Mar/2023:05:56:13 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 128.14.141.34 - - [04/Mar/2023:05:56:24 +0100] "HEAD /icons/sphere1.png HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 183.136.225.32 - - [04/Mar/2023:06:07:41 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 183.136.225.32 - - [04/Mar/2023:06:13:21 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 109.123.248.102 - - [04/Mar/2023:06:14:43 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 206.189.152.121 - - [04/Mar/2023:06:25:29 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 206.189.152.121 - - [04/Mar/2023:06:25:31 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 206.189.152.121 - - [04/Mar/2023:06:25:39 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 206.189.152.121 - - [04/Mar/2023:06:25:41 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 194.110.203.42 - - [04/Mar/2023:06:46:37 +0100] "GET /backup_09052022.zip HTTP/1.1" 301 396 "-" "Firefox" 152.89.196.211 - - [04/Mar/2023:06:46:56 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.211 - - [04/Mar/2023:06:55:52 +0100] "GET /geoserver HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 4.184.57.28 - - [04/Mar/2023:07:02:01 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 192.119.110.180 - - [04/Mar/2023:07:03:41 +0100] "GET /.vscode/sftp.json HTTP/1.1" 301 411 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36" 198.199.109.203 - - [04/Mar/2023:07:59:45 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 167.94.146.59 - - [04/Mar/2023:09:15:57 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.146.59 - - [04/Mar/2023:09:15:57 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.146.59 - - [04/Mar/2023:09:15:57 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 192.241.207.44 - - [04/Mar/2023:09:43:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 164.52.36.213 - - [04/Mar/2023:09:58:31 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 164.52.36.213 - - [04/Mar/2023:09:58:43 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 193.235.141.127 - - [04/Mar/2023:11:07:52 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 91.247.173.177 - - [04/Mar/2023:11:50:26 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; Trident/6.0)" 92.119.161.50 - - [04/Mar/2023:11:50:26 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.0; Trident/5.0)" 154.7.193.55 - - [04/Mar/2023:11:50:28 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.80 Safari/537.36" 91.232.8.245 - - [04/Mar/2023:11:50:29 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/5.0 (Windows NT 6.3; Trident/7.0; rv:11.0) like Gecko" 77.90.152.95 - - [04/Mar/2023:11:50:29 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.0; Trident/5.0)" 91.199.112.220 - - [04/Mar/2023:11:50:30 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.80 Safari/537.36" 77.91.117.155 - - [04/Mar/2023:11:50:31 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)" 185.209.50.3 - - [04/Mar/2023:11:50:31 +0100] "GET /owa/ HTTP/1.0" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.80 Safari/537.36 Edg/97.0.1072.69" 194.110.203.47 - - [04/Mar/2023:11:59:47 +0100] "GET /backup_07052022.zip HTTP/1.1" 301 413 "-" "Firefox" 64.227.41.39 - - [04/Mar/2023:12:06:30 +0100] "GET /aaa9 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 64.227.41.39 - - [04/Mar/2023:12:06:35 +0100] "GET /aab8 HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.44 - - [04/Mar/2023:12:27:59 +0100] "GET /backup_06052022.zip HTTP/1.1" 301 405 "-" "Firefox" 94.102.56.151 - - [04/Mar/2023:13:57:23 +0100] "GET / HTTP/1.1" 301 383 "-" "libwww-perl/6.61" 142.4.218.114 - - [04/Mar/2023:14:13:43 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 209.126.85.200 - - [04/Mar/2023:14:40:17 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 178.32.197.91 - - [04/Mar/2023:14:44:35 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 194.110.203.41 - - [04/Mar/2023:15:05:25 +0100] "GET /backup_05052022.zip HTTP/1.1" 301 396 "-" "Firefox" 205.210.31.23 - - [04/Mar/2023:15:16:56 +0100] "GET / HTTP/1.1" 301 385 "-" "-" 194.110.203.44 - - [04/Mar/2023:15:25:36 +0100] "GET /backup_05052022.zip HTTP/1.1" 301 405 "-" "Firefox" 188.165.87.104 - - [04/Mar/2023:15:40:23 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 188.165.87.106 - - [04/Mar/2023:15:45:21 +0100] "GET / HTTP/1.1" 500 2946 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 188.165.87.105 - - [04/Mar/2023:15:48:57 +0100] "GET /favicon.ico HTTP/1.1" 301 394 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 128.14.133.58 - - [04/Mar/2023:15:50:48 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 51.254.49.106 - - [04/Mar/2023:16:02:43 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 51.254.49.100 - - [04/Mar/2023:16:33:28 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 2.59.40.18 - - [04/Mar/2023:16:36:20 +0100] "GET / HTTP/1.1" 301 379 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 14_7 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/92.0.4515.90 Mobile/15E148 Safari/604.1" 51.254.49.109 - - [04/Mar/2023:16:48:49 +0100] "GET / HTTP/1.1" 500 2946 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:58.0) Gecko/20100101 Firefox/58.0" 194.110.203.40 - - [04/Mar/2023:18:18:28 +0100] "GET /backup_04052022.zip HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.46 - - [04/Mar/2023:18:27:20 +0100] "GET /backup_04052022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.47 - - [04/Mar/2023:20:32:11 +0100] "GET /backup_03052022.zip HTTP/1.1" 301 396 "-" "Firefox" 192.241.195.5 - - [04/Mar/2023:20:37:17 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 209.126.85.200 - - [04/Mar/2023:20:39:46 +0100] "GET /cgi-bin/luci HTTP/1.1" 301 395 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; rv:1.7.3) Gecko/20041001 Firefox/0.10.1" 51.222.253.4 - - [04/Mar/2023:20:59:05 +0100] "GET /robots.txt HTTP/1.1" 301 304 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 54.36.148.190 - - [04/Mar/2023:20:59:08 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 51.222.253.20 - - [04/Mar/2023:22:23:46 +0100] "GET /robots.txt HTTP/1.1" 301 302 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 54.36.149.88 - - [04/Mar/2023:22:23:49 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)" 205.210.31.172 - - [04/Mar/2023:23:24:33 +0100] "GET / HTTP/1.1" 301 380 "-" "-" 194.110.203.45 - - [05/Mar/2023:00:33:13 +0100] "GET /backup_02052022.zip HTTP/1.1" 301 405 "-" "Firefox" 34.76.158.233 - - [05/Mar/2023:00:36:46 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2"