70.67.230.165 - - [08/May/2023:02:31:40 +0200] "GET /manager/html HTTP/1.1" 301 308 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:83.0) Gecko/20100101 Firefox/83.0" 70.67.230.165 - - [08/May/2023:02:31:43 +0200] "GET /users/sign_in HTTP/1.1" 301 311 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:83.0) Gecko/20100101 Firefox/83.0" 64.62.197.74 - - [08/May/2023:03:30:11 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.0 Safari/605.1.15" 64.62.197.68 - - [08/May/2023:03:37:13 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36" 64.62.197.68 - - [08/May/2023:03:39:05 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:107.0) Gecko/20100101 Firefox/107.0" 64.62.197.71 - - [08/May/2023:03:40:31 +0200] "GET /geoserver/web/ HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 Edg/109.0.1518.78" 64.62.197.74 - - [08/May/2023:03:40:45 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36 OPR/95.0.0.0 (Edition Yx 05)" 198.199.116.56 - - [08/May/2023:05:01:07 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 87.236.176.23 - - [08/May/2023:05:06:42 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 35.92.159.107 - - [08/May/2023:05:34:01 +0200] "GET /.hg/hgrc HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Linux; Android 12; Pixel 4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/98.0.4758.101 Mobile Safari/537.36" 5.182.5.161 - - [08/May/2023:06:15:35 +0200] "GET /login?redir=%2F" 301 405 "-" "-" 152.89.196.144 - - [08/May/2023:07:08:27 +0200] "POST /mifs/.;/services/LogService HTTP/1.1" 301 318 "https://86.59.113.102:443" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.233.19.17 - - [08/May/2023:07:18:51 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 193.106.29.122 - - [08/May/2023:07:25:59 +0200] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 18.209.102.192 - - [08/May/2023:07:26:26 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.2;en-US) AppleWebKit/537.32.36 (KHTML, live Gecko) Chrome/59.0.3038.113 Safari/537.32" 152.89.196.144 - - [08/May/2023:08:15:30 +0200] "GET /console/ HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 34.65.46.100 - - [08/May/2023:08:47:59 +0200] "OPTIONS / HTTP/1.0" 301 383 "-" "-" 35.92.159.107 - - [08/May/2023:09:19:14 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Linux; U; Android 1.5; en-us; sdk Build/CUPCAKE) AppleWebkit/528.5 (KHTML, like Gecko) Version/3.1.2 Mobile Safari/525.20.1" 20.100.168.244 - - [08/May/2023:10:25:20 +0200] "GET / HTTP/1.1" 301 301 "-" "Python/3.8 aiohttp/3.8.4" 198.58.115.82 - - [08/May/2023:10:33:32 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64) Chrome/98.0.4758.132 Safari/537.36" 87.236.176.180 - - [08/May/2023:11:05:21 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)" 152.89.196.144 - - [08/May/2023:11:07:27 +0200] "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 4.184.57.28 - - [08/May/2023:11:29:55 +0200] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 152.89.196.144 - - [08/May/2023:11:41:26 +0200] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 46.60.81.212 - - [08/May/2023:13:32:24 +0200] "GET /agent/timeclock.php HTTP/1.1" 301 314 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/96.0.4664.45 Safari/537.36" 152.89.196.144 - - [08/May/2023:14:46:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 198.199.111.75 - - [08/May/2023:16:03:29 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 107.170.242.13 - - [08/May/2023:16:05:45 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 198.199.92.121 - - [08/May/2023:16:08:23 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 137.184.217.189 - - [08/May/2023:16:17:56 +0200] "GET / HTTP/1.1" 301 383 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:79.0) Gecko/20100101 Firefox/79.0" 152.89.196.144 - - [08/May/2023:16:27:52 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 167.94.138.124 - - [08/May/2023:16:53:33 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.124 - - [08/May/2023:16:53:34 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 35.92.159.107 - - [08/May/2023:17:12:00 +0200] "GET /.hg/hgrc HTTP/1.1" 301 307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.72 Safari/537.36" 198.199.104.82 - - [08/May/2023:18:06:16 +0200] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 106.75.165.117 - - [08/May/2023:18:20:39 +0200] "{\"method\":\"login\",\"params\":{\"login\":\"45JymPWP1DeQxxMZNJv9w2bTQ2WJDAmw18wUSryDQa3RPrympJPoUSVcFEDv3bhiMJGWaCD4a3KrFCorJHCMqXJUKApSKDV\",\"pass\":\"xxoo\",\"agent\":\"xmr-stak-cpu/1.3.0-1.5.0\"},\"id\":1}" 400 379 "-" "-" 106.75.165.117 - - [08/May/2023:18:20:40 +0200] "{\"id\":1,\"method\":\"mining.subscribe\",\"params\":[]}" 400 379 "-" "-" 106.75.165.117 - - [08/May/2023:18:20:43 +0200] "{\"params\": [\"miner1\", \"password\"], \"id\": 2, \"method\": \"mining.authorize\"}" 400 379 "-" "-" 106.75.165.117 - - [08/May/2023:18:20:44 +0200] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"blue1\",\"pass\":\"x\",\"agent\":\"Windows NT 6.1; Win64; x64\"}}" 400 379 "-" "-" 106.75.165.117 - - [08/May/2023:18:20:45 +0200] "{\"params\": [\"miner1\", \"bf\", \"00000001\", \"504e86ed\", \"b2957c02\"], \"id\": 4, \"method\": \"mining.submit\"}" 400 379 "-" "-" 106.75.165.117 - - [08/May/2023:18:20:46 +0200] "{\"id\":1,\"jsonrpc\":\"2.0\",\"method\":\"login\",\"params\":{\"login\":\"x\",\"pass\":\"null\",\"agent\":\"XMRig/5.13.1\",\"algo\":[\"cn/1\",\"cn/2\",\"cn/r\",\"cn/fast\",\"cn/half\",\"cn/xao\",\"cn/rto\",\"cn/rwz\",\"cn/zls\",\"cn/double\",\"rx/0\",\"rx/wow\",\"rx/loki\",\"rx/arq\",\"rx/sfx\",\"rx/keva\"]}}" 400 379 "-" "-" 134.122.97.33 - - [08/May/2023:18:50:49 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.122.97.33 - - [08/May/2023:18:50:49 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 134.122.97.33 - - [08/May/2023:18:50:50 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 134.122.97.33 - - [08/May/2023:18:50:50 +0200] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 134.122.97.33 - - [08/May/2023:18:50:51 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 152.89.196.144 - - [08/May/2023:19:29:08 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 162.142.125.216 - - [08/May/2023:20:08:54 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 162.142.125.216 - - [08/May/2023:20:08:55 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 162.142.125.216 - - [08/May/2023:20:08:55 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 35.92.159.107 - - [08/May/2023:20:12:07 +0200] "GET /.svn/wc.db HTTP/1.1" 301 308 "-" "SAMSUNG-SGH-E250/1.0 Profile/MIDP-2.0 Configuration/CLDC-1.1 UP.Browser/6.2.3.3.c.1.101 (GUI) MMP/2.0 (compatible; Googlebot-Mobile/2.1; http://www.google.com/bot.html)" 3.74.230.44 - - [08/May/2023:20:16:21 +0200] "GET /.git/config HTTP/1.1" 301 316 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36" 107.170.232.11 - - [08/May/2023:20:17:44 +0200] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 152.89.196.144 - - [08/May/2023:20:39:24 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 3.74.230.44 - - [08/May/2023:21:10:17 +0200] "GET /.git/config HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G930F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36" 154.7.179.243 - - [08/May/2023:21:33:49 +0200] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyBhRHJpdjQ7ZXZhbCgkX1BPU1RbJ3Z6J10pOw== HTTP/1.1" 301 460 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36" 172.105.128.11 - - [08/May/2023:23:06:39 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 209.38.252.47 - - [08/May/2023:23:08:09 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 138.197.36.171 - - [08/May/2023:23:17:29 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 138.197.36.171 - - [08/May/2023:23:17:30 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 138.197.36.171 - - [08/May/2023:23:17:35 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 138.197.36.171 - - [08/May/2023:23:17:36 +0200] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 138.197.36.171 - - [08/May/2023:23:17:39 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 60.217.75.70 - - [08/May/2023:23:33:11 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0" 128.1.248.26 - - [09/May/2023:00:26:00 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 198.235.24.231 - - [09/May/2023:01:06:13 +0200] "GET / HTTP/1.1" 301 398 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 35.240.121.17 - - [09/May/2023:01:23:29 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2" 198.235.24.36 - - [09/May/2023:01:58:21 +0200] "GET / HTTP/1.1" 301 381 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com"