109.237.97.180 - - [12/May/2023:02:17:00 +0200] "GET /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:00 +0200] "POST /.env HTTP/1.1" 301 304 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:01 +0200] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:02 +0200] "POST /.aws/credentials HTTP/1.1" 301 311 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:02 +0200] "GET /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:03 +0200] "POST /.aws/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:04 +0200] "GET /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:04 +0200] "POST /aws/credentials HTTP/1.1" 301 310 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:04 +0200] "GET /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 109.237.97.180 - - [12/May/2023:02:17:05 +0200] "POST /credentials HTTP/1.1" 301 308 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 92.118.39.108 - - [12/May/2023:02:51:08 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" 193.235.141.153 - - [12/May/2023:03:39:54 +0200] "GET / HTTP/1.1" 301 307 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 167.94.138.49 - - [12/May/2023:04:00:44 +0200] "GET / HTTP/1.1" 301 383 "-" "-" 167.94.138.49 - - [12/May/2023:04:00:45 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 167.94.138.49 - - [12/May/2023:04:00:45 +0200] "PRI * HTTP/2.0" 400 379 "-" "-" 152.89.196.144 - - [12/May/2023:07:08:28 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.144 - - [12/May/2023:07:22:39 +0200] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 331 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.144 - - [12/May/2023:07:27:37 +0200] "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.106.29.122 - - [12/May/2023:07:32:14 +0200] "GET / HTTP/1.0" 301 388 "-" "Mozilla/5.0" 152.89.196.144 - - [12/May/2023:07:35:16 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 301 327 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 161.156.29.33 - - [12/May/2023:08:09:05 +0200] "GET /robots.txt HTTP/1.1" 301 397 "-" "Mozilla/5.0 (compatible; oBot/2.3.1; http://www.xforce-security.com/crawler/)" 161.156.29.33 - - [12/May/2023:08:09:05 +0200] "GET / HTTP/1.1" 301 387 "-" "Mozilla/5.0 (compatible; oBot/2.3.1; http://www.xforce-security.com/crawler/)" 152.89.196.144 - - [12/May/2023:08:49:13 +0200] "GET /_ignition/execute-solution HTTP/1.1" 301 319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.144 - - [12/May/2023:08:53:10 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 4.184.57.28 - - [12/May/2023:09:04:17 +0200] "GET / HTTP/1.1" 301 301 "-" "Python/3.10 aiohttp/3.8.3" 152.89.196.144 - - [12/May/2023:09:07:43 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.144 - - [12/May/2023:09:26:24 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 138.246.253.24 - - [12/May/2023:09:45:07 +0200] "GET /robots.txt HTTP/1.1" 301 404 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 103.149.192.59 - - [12/May/2023:09:46:56 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36" 152.89.196.144 - - [12/May/2023:10:01:29 +0200] "GET /actuator/gateway/routes HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 152.89.196.144 - - [12/May/2023:10:08:48 +0200] "GET /geoserver HTTP/1.1" 301 305 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 81.209.177.16 - - [12/May/2023:10:52:00 +0200] "GET /robots.txt HTTP/1.1" 301 394 "-" "netEstate NE Crawler (+http://www.website-datenbank.de/)" 81.209.177.16 - - [12/May/2023:10:52:01 +0200] "GET / HTTP/1.1" 301 384 "-" "netEstate NE Crawler (+http://www.website-datenbank.de/)" 65.49.20.69 - - [12/May/2023:10:59:59 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Firefox/102.0" 65.49.20.69 - - [12/May/2023:11:06:59 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 65.49.20.69 - - [12/May/2023:11:10:55 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36 Edg/110.0.1587.41" 65.49.20.69 - - [12/May/2023:11:13:14 +0200] "GET /geoserver/web/ HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 YaBrowser/23.1.2.987 Yowser/2.5 Safari/537.36" 65.49.20.69 - - [12/May/2023:11:13:44 +0200] "GET /.git/config HTTP/1.1" 301 310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36" 138.246.253.24 - - [12/May/2023:11:20:04 +0200] "GET /robots.txt HTTP/1.1" 301 387 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 182.92.135.136 - - [12/May/2023:11:46:12 +0200] "GET /.env HTTP/1.1" 301 304 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:13 +0200] "GET /core/.env HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:14 +0200] "GET /web/.env HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:16 +0200] "GET /app/.env HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:17 +0200] "GET /laravel/.env HTTP/1.1" 301 309 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:18 +0200] "GET /crm/.env HTTP/1.1" 301 306 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:19 +0200] "GET /backend/.env HTTP/1.1" 301 310 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:20 +0200] "GET /local/.env HTTP/1.1" 301 308 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:21 +0200] "GET /application/.env HTTP/1.1" 301 312 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:22 +0200] "GET /admin/.env HTTP/1.1" 301 308 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:23 +0200] "GET /prod/.env HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:24 +0200] "GET /api/.env HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:25 +0200] "GET /.aws/credentials HTTP/1.1" 301 311 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:26 +0200] "GET /phpinfo HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:27 +0200] "GET /_profiler/phpinfo HTTP/1.1" 301 313 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:28 +0200] "GET /phpinfo.php HTTP/1.1" 301 309 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:29 +0200] "GET /info.php HTTP/1.1" 301 307 "-" "python-requests/2.20.1" 182.92.135.136 - - [12/May/2023:11:46:30 +0200] "POST / HTTP/1.1" 301 301 "-" "python-requests/2.20.1" 193.235.141.135 - - [12/May/2023:13:00:00 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 178.79.143.191 - - [12/May/2023:13:02:36 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0) Gecko/20100101 Firefox/8.0" 198.199.118.163 - - [12/May/2023:13:22:38 +0200] "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 301 328 "-" "Mozilla/5.0 zgrab/0.x" 18.236.103.229 - - [12/May/2023:14:15:29 +0200] "GET / HTTP/1.1" 301 306 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 198.199.103.192 - - [12/May/2023:15:21:38 +0200] "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 301 335 "-" "Mozilla/5.0 zgrab/0.x" 198.199.113.7 - - [12/May/2023:15:37:34 +0200] "GET /version HTTP/1.1" 301 305 "-" "Mozilla/5.0 zgrab/0.x" 192.241.210.29 - - [12/May/2023:15:43:57 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 zgrab/0.x" 198.199.117.207 - - [12/May/2023:16:14:34 +0200] "GET /owa/auth/logon.aspx HTTP/1.1" 301 314 "-" "Mozilla/5.0 zgrab/0.x" 162.243.136.18 - - [12/May/2023:16:15:51 +0200] "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 301 348 "-" "Mozilla/5.0 zgrab/0.x" 107.170.242.13 - - [12/May/2023:16:17:56 +0200] "GET /owa/auth/x.js HTTP/1.1" 301 310 "-" "Mozilla/5.0 zgrab/0.x" 193.118.53.194 - - [12/May/2023:16:50:19 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 172.104.11.46 - - [12/May/2023:16:59:12 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 104.131.179.93 - - [12/May/2023:19:27:57 +0200] "GET /ab2g HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 104.131.179.93 - - [12/May/2023:19:27:59 +0200] "GET /ab2h HTTP/1.1" 301 304 "-" "Mozilla/5.0 zgrab/0.x" 104.131.179.93 - - [12/May/2023:19:28:05 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 104.131.179.93 - - [12/May/2023:19:28:06 +0200] "GET /t4 HTTP/1.1" 301 302 "-" "Mozilla/5.0" 104.131.179.93 - - [12/May/2023:19:28:07 +0200] "GET /favicon.ico HTTP/1.1" 301 309 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" 138.246.253.24 - - [12/May/2023:19:36:54 +0200] "GET /robots.txt HTTP/1.1" 301 403 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.5060.134 Safari/537.36" 128.1.248.42 - - [12/May/2023:20:19:18 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 205.210.31.240 - - [12/May/2023:20:52:15 +0200] "GET / HTTP/1.1" 301 383 "-" "Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be excluded from our scans, please send IP addresses/domains to: scaninfo@paloaltonetworks.com" 185.180.143.190 - - [12/May/2023:20:55:54 +0200] "GET /owa/ HTTP/1.1" 301 304 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 185.180.143.190 - - [12/May/2023:20:56:17 +0200] "GET /autodiscover/autodiscover.json?a..foo.var/owa/?&Email=autodiscover/autodiscover.json?a..foo.var&Protocol=XYZ&FooProtocol=%50owershell HTTP/1.1" 301 378 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 15.235.33.21 - - [12/May/2023:22:01:25 +0200] "GET / HTTP/1.0" 301 388 "-" "masscan-ng/1.3 (https://github.com/bi-zone/masscan-ng)" 217.146.87.251 - - [12/May/2023:22:02:36 +0200] "GET / HTTP/1.1" 301 301 "-" "SEC-SGHX820/1.0 NetFront/3.2 Profile/MIDP-2.0 Configuration/CLDC-1.1" 104.168.236.227 - - [12/May/2023:23:44:26 +0200] "GET /.ftpconfig HTTP/1.1" 301 404 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36" 128.1.248.26 - - [13/May/2023:00:14:09 +0200] "GET / HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" 104.233.151.61 - - [13/May/2023:00:50:17 +0200] "GET /.vscode/sftp.json HTTP/1.1" 301 411 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36" 193.235.141.158 - - [13/May/2023:01:12:50 +0200] "GET / HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36" 34.76.158.233 - - [13/May/2023:01:38:34 +0200] "GET / HTTP/1.1" 301 301 "-" "python-requests/2.28.2"