18.237.61.32 - - [12/Mar/2023:01:30:01 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 34.222.219.248 - - [12/Mar/2023:01:30:47 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 107.170.243.22 - - [12/Mar/2023:04:59:00 +0100] "GET /actuator/health HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.41 - - [12/Mar/2023:05:01:55 +0100] "GET /backup_24012022.zip HTTP/1.1" 301 396 "-" "Firefox" 193.235.141.145 - - [12/Mar/2023:06:10:08 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 128.14.134.170 - - [12/Mar/2023:06:28:30 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 54.162.223.254 - - [12/Mar/2023:06:40:17 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.2;en-US) AppleWebKit/537.32.36 (KHTML, live Gecko) Chrome/52.0.3001.94 Safari/537.32" 124.156.223.178 - - [12/Mar/2023:06:44:31 +0100] "GET / HTTP/1.1" 301 301 "-" "'Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:101.0) Gecko/20100101 Firefox/101.0'" 124.156.223.178 - - [12/Mar/2023:06:44:59 +0100] "-" 408 - "-" "-" 152.89.196.54 - - [12/Mar/2023:07:02:33 +0100] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 192.241.227.38 - - [12/Mar/2023:08:06:52 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.39 - - [12/Mar/2023:08:41:07 +0100] "GET /backup_23012022.zip HTTP/1.1" 301 413 "-" "Firefox" 198.235.24.186 - - [12/Mar/2023:08:44:22 +0100] "GET / HTTP/1.1" 301 393 "-" "-" 159.203.224.7 - - [12/Mar/2023:09:56:42 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.45 - - [12/Mar/2023:10:24:46 +0100] "GET /backup_22012022.zip HTTP/1.1" 301 396 "-" "Firefox" 64.62.197.157 - - [12/Mar/2023:10:37:09 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 Edg/109.0.1518.70" 64.62.197.153 - - [12/Mar/2023:10:44:17 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:109.0) Gecko/20100101 Firefox/110.0" 64.62.197.154 - - [12/Mar/2023:10:48:08 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.41" 64.62.197.163 - - [12/Mar/2023:10:49:30 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15" 154.209.125.10 - - [12/Mar/2023:12:14:34 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 154.209.125.77 - - [12/Mar/2023:12:14:38 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36 QIHU 360SE" 172.105.209.150 - - [12/Mar/2023:12:49:57 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 159.203.2.192 - - [12/Mar/2023:13:54:23 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 159.203.2.192 - - [12/Mar/2023:13:54:25 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 159.203.2.192 - - [12/Mar/2023:13:54:29 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 159.203.2.192 - - [12/Mar/2023:13:54:30 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 107.170.192.15 - - [12/Mar/2023:14:42:27 +0100] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 107.170.252.8 - - [12/Mar/2023:14:44:01 +0100] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 162.243.140.44 - - [12/Mar/2023:14:46:18 +0100] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.47 - - [12/Mar/2023:15:01:37 +0100] "GET /backup_20012022.zip HTTP/1.1" 301 413 "-" "Firefox" 104.234.119.47 - - [12/Mar/2023:15:46:47 +0100] "GET / HTTP/1.1" 301 383 "-" "libwww-perl/6.68" 87.236.176.161 - - [12/Mar/2023:16:16:42 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 194.110.203.40 - - [12/Mar/2023:18:09:41 +0100] "GET /backup_18012022.zip HTTP/1.1" 301 413 "-" "Firefox" 3.81.76.245 - - [12/Mar/2023:18:56:50 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 3.81.76.245 - - [12/Mar/2023:18:56:50 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 134.209.185.55 - - [12/Mar/2023:19:00:21 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.209.185.55 - - [12/Mar/2023:19:00:21 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.209.185.55 - - [12/Mar/2023:19:00:23 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.209.185.55 - - [12/Mar/2023:19:00:23 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 194.110.203.38 - - [12/Mar/2023:19:35:00 +0100] "GET /backup_17012022.zip HTTP/1.1" 301 396 "-" "Firefox" 107.170.230.19 - - [12/Mar/2023:19:38:24 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.46 - - [12/Mar/2023:20:07:56 +0100] "GET /backup_23012022.zip HTTP/1.1" 301 405 "-" "Firefox" 3.81.76.245 - - [12/Mar/2023:20:23:25 +0100] "GET /_profiler/phpinfo HTTP/1.1" 301 313 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 3.81.76.245 - - [12/Mar/2023:20:23:25 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 194.110.203.39 - - [12/Mar/2023:20:52:17 +0100] "GET /backup_17012022.zip HTTP/1.1" 301 413 "-" "Firefox" 152.89.196.54 - - [12/Mar/2023:21:09:17 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.54 - - [12/Mar/2023:21:15:08 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.54 - - [12/Mar/2023:21:26:05 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.54 - - [12/Mar/2023:21:35:48 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 107.170.254.19 - - [12/Mar/2023:22:08:57 +0100] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 35.91.239.128 - - [12/Mar/2023:22:21:07 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 35.91.204.161 - - [12/Mar/2023:22:32:19 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 194.110.203.47 - - [12/Mar/2023:23:11:12 +0100] "GET /backup_16012022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.42 - - [12/Mar/2023:23:27:33 +0100] "GET /backup_18012022.zip HTTP/1.1" 301 405 "-" "Firefox" 194.110.203.41 - - [12/Mar/2023:23:51:43 +0100] "GET /backup_15012022.zip HTTP/1.1" 301 396 "-" "Firefox"