34.76.96.55 - - [14/Mar/2023:01:10:01 +0100] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2" 152.32.141.84 - - [14/Mar/2023:01:16:40 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.29.0" 194.110.203.45 - - [14/Mar/2023:01:39:39 +0100] "GET /backup_01012022.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.47 - - [14/Mar/2023:01:42:14 +0100] "GET /backup_01012022.zip HTTP/1.1" 301 396 "-" "Firefox" 4.184.57.28 - - [14/Mar/2023:01:57:12 +0100] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 194.110.203.45 - - [14/Mar/2023:03:49:17 +0100] "GET /backup_31122021.zip HTTP/1.1" 301 396 "-" "Firefox" 194.110.203.46 - - [14/Mar/2023:04:15:20 +0100] "GET /backup_31122021.zip HTTP/1.1" 301 413 "-" "Firefox" 194.110.203.44 - - [14/Mar/2023:04:25:52 +0100] "GET /backup_31122021.zip HTTP/1.1" 301 405 "-" "Firefox" 45.14.226.53 - - [14/Mar/2023:05:14:55 +0100] "{\"id\": 1, \"method\": \"mining.subscribe\", \"params\": [\"cpuminer/2.5.1\"]}" 400 379 "-" "-" 45.14.226.53 - - [14/Mar/2023:05:15:03 +0100] "{\"id\": 1, \"method\": \"mining.subscribe\", \"params\": [\"MinerName/1.0.0\", \"EthereumStratum/1.0.0\"]}" 400 379 "-" "-" 45.14.226.53 - - [14/Mar/2023:05:15:06 +0100] "{\"id\":1,\"method\":\"eth_submitLogin\",\"worker\":\"eth1.0\",\"params\":[\"0x5a2c25a29246c3fabfef0751cb1e2e9e475e6c9a\",\"x\"],\"jsonrpc\":\"2.0\"}" 400 379 "-" "-" 45.14.226.53 - - [14/Mar/2023:05:15:12 +0100] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"445C5GAZZQcMprNfER4dweXhMZ3NguVts3ysdemPqpL9XscGbZC1mmeEcoLPDb3Taz1FxEKTNn5fbQcoV9pqnViSGs1EyWg\",\"pass\":\"x\",\"agent\":\"XMRig/6.15.3 (Windows NT 10.0; Win64; x64) libuv/1.42.0 msvc/2019\",\"algo\":[\"cn/1\",\"cn/2\",\"cn/r\",\"cn/fast\",\"cn/half\",\"cn/xao\",\"cn/rto\",\"cn/rwz\",\"cn/zls\",\"cn/double\",\"cn/ccx\",\"cn-lite/1\",\"cn-heavy/0\",\"cn-heavy/tube\",\"cn-heavy/xhv\",\"cn-pico\",\"cn-pico/tlo\",\"cn/upx2\",\"rx/0\",\"rx/wow\",\"rx/arq\",\"rx/graft\",\"rx/sfx\",\"rx/keva\",\"argon2/chukwa\",\"argon2/chukwav2\",\"argon2/ninja\",\"astrobwt\"]}}" 400 379 "-" "-" 45.14.226.53 - - [14/Mar/2023:05:15:16 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:18 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:22 +0100] "POST / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:29 +0100] "GET /WuEL HTTP/1.1" 301 387 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0; ; NCLIENT50_AAPCDA5841E333)" 45.14.226.53 - - [14/Mar/2023:05:15:33 +0100] "GET stager64 HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:35 +0100] "GET /a HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:43 +0100] "GET /download/file.ext HTTP/1.1" 301 313 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:49 +0100] "GET /SiteLoader HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 45.14.226.53 - - [14/Mar/2023:05:15:57 +0100] "GET /mPlayer HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/94.0.4606.61 Safari/537.36" 128.14.141.34 - - [14/Mar/2023:05:59:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 178.128.210.87 - - [14/Mar/2023:06:38:18 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 178.128.210.87 - - [14/Mar/2023:06:38:20 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 178.128.210.87 - - [14/Mar/2023:06:38:28 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 178.128.210.87 - - [14/Mar/2023:06:38:31 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 107.170.244.11 - - [14/Mar/2023:06:43:15 +0100] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 194.110.203.38 - - [14/Mar/2023:07:21:04 +0100] "GET /klub_2022.tar HTTP/1.1" 301 399 "-" "Firefox" 107.170.241.5 - - [14/Mar/2023:08:07:32 +0100] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 117.187.173.5 - - [14/Mar/2023:08:15:39 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/554.49 (KHTML, like Gecko) Chrome/95.0.169 Safari/537.36" 194.110.203.42 - - [14/Mar/2023:09:02:34 +0100] "GET /easyzumfuehrerschein_092022.tar HTTP/1.1" 301 425 "-" "Firefox" 107.170.192.16 - - [14/Mar/2023:09:39:31 +0100] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 192.241.200.29 - - [14/Mar/2023:09:42:14 +0100] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 198.199.111.75 - - [14/Mar/2023:09:42:27 +0100] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 185.189.182.234 - - [14/Mar/2023:09:52:44 +0100] "GET /cBUb HTTP/1.1" 400 379 "-" "-" 109.237.97.180 - - [14/Mar/2023:09:55:40 +0100] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:41 +0100] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:41 +0100] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:41 +0100] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:42 +0100] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:43 +0100] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:43 +0100] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:43 +0100] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:44 +0100] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:45 +0100] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:45 +0100] "GET /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:46 +0100] "POST /test.php HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:46 +0100] "GET /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:46 +0100] "POST /laravel/.env HTTP/1.1" 301 309 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:47 +0100] "GET /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:47 +0100] "POST /demo/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:48 +0100] "GET /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:48 +0100] "POST /web/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:49 +0100] "GET /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:49 +0100] "POST /phpinfo HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:50 +0100] "GET /admin/.env HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:50 +0100] "POST /admin/.env HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:51 +0100] "GET /backend/.env HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:51 +0100] "POST /backend/.env HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:52 +0100] "GET /app/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [14/Mar/2023:09:55:52 +0100] "POST /app/.env HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 198.199.97.121 - - [14/Mar/2023:10:00:58 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 193.235.141.7 - - [14/Mar/2023:10:03:39 +0100] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 185.180.143.6 - - [14/Mar/2023:10:34:40 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.6 - - [14/Mar/2023:10:34:48 +0100] "GET /dana-na/../dana/html5acc/guacamole/../../../../../../../etc/services?/dana/html5acc/guacamole/ HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 165.232.82.181 - - [14/Mar/2023:10:43:41 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.232.82.181 - - [14/Mar/2023:10:43:42 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.232.82.181 - - [14/Mar/2023:10:43:43 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 165.232.82.181 - - [14/Mar/2023:10:43:43 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 185.180.143.11 - - [14/Mar/2023:11:06:10 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:06:27 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:06:29 +0100] "GET /webfig/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:06:43 +0100] "GET /owa/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:06:45 +0100] "GET /autodiscover/autodiscover.json?a..foo.var/owa/?&Email=autodiscover/autodiscover.json?a..foo.var&Protocol=XYZ&FooProtocol=%50owershell HTTP/1.1" 301 378 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:06:58 +0100] "GET /solr/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:07:15 +0100] "GET /admin/ HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.11 - - [14/Mar/2023:11:07:16 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 205.210.31.149 - - [14/Mar/2023:11:40:29 +0100] "GET / HTTP/1.1" 301 393 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 198.235.24.143 - - [14/Mar/2023:11:44:47 +0100] "GET / HTTP/1.1" 301 394 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 194.110.203.46 - - [14/Mar/2023:12:14:39 +0100] "GET /easyzumfuehrerschein_082022.tar HTTP/1.1" 301 425 "-" "Firefox" 165.227.138.188 - - [14/Mar/2023:13:35:19 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 138.246.253.24 - - [14/Mar/2023:13:51:32 +0100] "GET /robots.txt HTTP/1.1" 301 393 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 194.110.203.46 - - [14/Mar/2023:14:14:03 +0100] "GET /klub_082022.tar HTTP/1.1" 301 401 "-" "Firefox" 92.118.39.108 - - [14/Mar/2023:14:16:25 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 139.162.194.254 - - [14/Mar/2023:14:26:18 +0100] "-" 408 - "-" "-" 64.62.197.25 - - [14/Mar/2023:14:34:06 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 64.62.197.22 - - [14/Mar/2023:14:41:45 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 OPR/95.0.0.0 (Edition Yx 05)" 64.62.197.26 - - [14/Mar/2023:14:45:00 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.50" 128.14.134.134 - - [14/Mar/2023:14:45:42 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 64.62.197.30 - - [14/Mar/2023:14:46:49 +0100] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36" 165.227.138.188 - - [14/Mar/2023:15:35:46 +0100] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.227.138.188 - - [14/Mar/2023:15:35:47 +0100] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 165.227.138.188 - - [14/Mar/2023:15:35:50 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 165.227.138.188 - - [14/Mar/2023:15:35:51 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 43.130.10.173 - - [14/Mar/2023:16:36:59 +0100] "GET / HTTP/1.1" 301 383 "-" "curl/7.64.1" 205.185.121.69 - - [14/Mar/2023:16:37:33 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.34.187 - - [14/Mar/2023:16:37:37 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.33.65 - - [14/Mar/2023:16:37:42 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_0_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36" 209.141.36.112 - - [14/Mar/2023:16:37:50 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.34.187 - - [14/Mar/2023:16:37:51 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 205.185.116.89 - - [14/Mar/2023:16:37:51 +0100] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.36.231 - - [14/Mar/2023:16:37:56 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 205.185.116.89 - - [14/Mar/2023:16:38:00 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.51.222 - - [14/Mar/2023:16:38:01 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_0_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36" 209.141.36.231 - - [14/Mar/2023:16:38:04 +0100] "GET / HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_0_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36" 205.185.116.89 - - [14/Mar/2023:16:38:04 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.51.222 - - [14/Mar/2023:16:38:11 +0100] "GET /favicon.ico HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 209.141.33.65 - - [14/Mar/2023:16:38:14 +0100] "GET /favicon.ico HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.110 Safari/537.36" 185.254.75.36 - - [14/Mar/2023:17:20:21 +0100] "GET /db.sql HTTP/1.1" 301 306 "-" "python-requests/2.28.2" 167.94.138.36 - - [14/Mar/2023:19:33:20 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.138.36 - - [14/Mar/2023:19:33:21 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.36 - - [14/Mar/2023:19:33:31 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 128.14.134.134 - - [14/Mar/2023:19:56:24 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 152.89.196.54 - - [14/Mar/2023:20:17:15 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.235.141.135 - - [14/Mar/2023:20:32:44 +0100] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 152.89.196.54 - - [14/Mar/2023:20:36:35 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.54 - - [14/Mar/2023:20:55:11 +0100] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.54 - - [14/Mar/2023:21:31:25 +0100] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 101.68.211.2 - - [14/Mar/2023:22:09:00 +0100] "GET / HTTP/1.1" 301 377 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 3.239.13.53 - - [14/Mar/2023:22:18:00 +0100] "GET /.git/config HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.157 Safari/537.36" 20.74.166.164 - - [14/Mar/2023:23:27:15 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.98 Safari/537.36" 118.194.252.88 - - [14/Mar/2023:23:38:28 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 118.194.252.88 - - [14/Mar/2023:23:38:30 +0100] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 118.194.252.88 - - [14/Mar/2023:23:38:52 +0100] "GET /robots.txt HTTP/1.1" 301 308 "-" "Go-http-client/1.1" 118.194.252.88 - - [14/Mar/2023:23:39:11 +0100] "GET /sitemap.xml HTTP/1.1" 301 309 "-" "Go-http-client/1.1" 178.62.0.82 - - [14/Mar/2023:23:40:02 +0100] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 106.75.164.148 - - [15/Mar/2023:00:04:05 +0100] "{\"method\":\"login\",\"params\":{\"login\":\"45JymPWP1DeQxxMZNJv9w2bTQ2WJDAmw18wUSryDQa3RPrympJPoUSVcFEDv3bhiMJGWaCD4a3KrFCorJHCMqXJUKApSKDV\",\"pass\":\"xxoo\",\"agent\":\"xmr-stak-cpu/1.3.0-1.5.0\"},\"id\":1}" 400 379 "-" "-" 106.75.164.148 - - [15/Mar/2023:00:04:07 +0100] "{\"id\":1,\"method\":\"mining.subscribe\",\"params\":[]}" 400 379 "-" "-" 106.75.164.148 - - [15/Mar/2023:00:04:08 +0100] "{\"params\": [\"miner1\", \"password\"], \"id\": 2, \"method\": \"mining.authorize\"}" 400 379 "-" "-" 106.75.164.148 - - [15/Mar/2023:00:04:09 +0100] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"blue1\",\"pass\":\"x\",\"agent\":\"Windows NT 6.1; Win64; x64\"}}" 400 379 "-" "-" 106.75.164.148 - - [15/Mar/2023:00:04:13 +0100] "{\"params\": [\"miner1\", \"bf\", \"00000001\", \"504e86ed\", \"b2957c02\"], \"id\": 4, \"method\": \"mining.submit\"}" 400 379 "-" "-" 167.248.133.37 - - [15/Mar/2023:00:31:22 +0100] "GET / HTTP/1.1" 301 383 "-" "-" 167.248.133.37 - - [15/Mar/2023:00:31:22 +0100] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.248.133.37 - - [15/Mar/2023:00:31:23 +0100] "PRI * HTTP/2.0" 400 379 "-" "-" 178.79.179.70 - - [15/Mar/2023:00:54:36 +0100] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20100101 Firefox/8.0"