[23/Oct/2021:02:26:43 +0200] 35.85.65.176 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 295 [23/Oct/2021:03:14:47 +0200] 128.14.133.58 TLSv1.2 DHE-RSA-AES256-SHA256 "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/1.1" 330 [23/Oct/2021:03:18:04 +0200] 80.82.78.39 TLSv1.2 AES256-SHA "GET /about.php HTTP/1.1" 307 [23/Oct/2021:03:30:58 +0200] 213.238.178.239 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /.env HTTP/1.1" 310 [23/Oct/2021:03:30:58 +0200] 213.238.178.239 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /.env HTTP/1.1" 310 [23/Oct/2021:03:30:59 +0200] 213.238.178.239 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "POST /.env HTTP/1.1" 310 [23/Oct/2021:03:30:59 +0200] 213.238.178.239 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "POST /.env HTTP/1.1" 310 [23/Oct/2021:03:39:42 +0200] 192.241.207.167 TLSv1.2 AES256-SHA "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 348 [23/Oct/2021:04:17:34 +0200] 80.82.78.39 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Oct/2021:04:19:02 +0200] 64.62.197.152 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Oct/2021:04:24:40 +0200] 207.46.13.32 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 304 [23/Oct/2021:04:53:13 +0200] 131.220.6.152 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 295 [23/Oct/2021:06:04:43 +0200] 34.96.130.28 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 393 [23/Oct/2021:06:11:58 +0200] 128.1.248.26 TLSv1.2 AES256-SHA "GET /remote/login HTTP/1.1" 309 [23/Oct/2021:07:01:47 +0200] 162.142.125.42 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Oct/2021:07:01:47 +0200] 162.142.125.42 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Oct/2021:08:52:36 +0200] 192.241.208.229 TLSv1.2 AES256-SHA "GET /owa/auth/x.js HTTP/1.1" 310 [23/Oct/2021:08:55:06 +0200] 192.241.208.5 TLSv1.2 AES256-SHA "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 348 [23/Oct/2021:08:55:14 +0200] 192.241.198.125 TLSv1.2 AES256-SHA "GET /owa/auth/logon.aspx HTTP/1.1" 314 [23/Oct/2021:09:15:52 +0200] 106.75.223.50 TLSv1.2 AES256-SHA "GET / HTTP/1.0" 383 [23/Oct/2021:10:13:53 +0200] 192.241.199.149 TLSv1.2 AES256-SHA "GET /actuator/health HTTP/1.1" 310 [23/Oct/2021:11:24:36 +0200] 128.14.134.134 TLSv1.2 DHE-RSA-AES256-SHA256 "GET / HTTP/1.1" 301 [23/Oct/2021:12:50:38 +0200] 141.98.9.3 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /wp-login.php HTTP/1.1" 310 [23/Oct/2021:12:57:19 +0200] 106.75.173.120 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Oct/2021:13:42:37 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /dns-query?dns=OiUBAAABAAAAAAAAA3d3dwZnb29nbGUDY29tAAABAAE HTTP/1.1" 340 [23/Oct/2021:13:42:38 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /dns-query?dns=ncQBAAABAAAAAAAAA3d3dwZnb29nbGUDY29tAAABAAE HTTP/1.1" 340 [23/Oct/2021:13:42:41 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /dns-query?dns=8oIBAAABAAAAAAAAA3d3dwZnb29nbGUDY29tAAABAAE HTTP/1.1" 333 [23/Oct/2021:13:42:42 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "PRI * HTTP/2.0" 379 [23/Oct/2021:13:42:43 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /dns-query?dns=etEBAAABAAAAAAAAA3d3dwZnb29nbGUDY29tAAABAAE HTTP/1.1" 335 [23/Oct/2021:13:42:44 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "PRI * HTTP/2.0" 379 [23/Oct/2021:13:42:45 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /dns-query?dns=bSABAAABAAAAAAAAA3d3dwZnb29nbGUDY29tAAABAAE HTTP/1.1" 334 [23/Oct/2021:13:42:46 +0200] 147.139.32.106 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "PRI * HTTP/2.0" 379 [23/Oct/2021:13:47:56 +0200] 192.241.206.215 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Oct/2021:14:10:45 +0200] 207.46.13.32 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 304 [23/Oct/2021:14:49:03 +0200] 128.1.248.26 TLSv1.2 DHE-RSA-AES256-SHA256 "GET / HTTP/1.1" 301 [23/Oct/2021:15:08:50 +0200] 192.241.205.198 TLSv1.2 AES256-SHA "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 335 [23/Oct/2021:16:41:48 +0200] 193.118.53.210 TLSv1.2 DHE-RSA-AES256-SHA256 "GET / HTTP/1.1" 301 [23/Oct/2021:19:53:15 +0200] 182.161.66.103 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 301 [23/Oct/2021:20:12:07 +0200] 192.3.154.35 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "POST /GponForm/diag_Form?style/ HTTP/1.1" 406 [23/Oct/2021:20:19:08 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "POST /api/jsonws/invoke HTTP/1.1" 314 [23/Oct/2021:20:19:10 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 331 [23/Oct/2021:20:19:12 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 331 [23/Oct/2021:20:19:12 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "GET /index.php?s=/Index/\\think\\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP21 HTTP/1.1" 390 [23/Oct/2021:20:19:15 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "POST /mifs/.;/services/LogService HTTP/1.1" 318 [23/Oct/2021:20:19:16 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1" 332 [23/Oct/2021:20:19:22 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 327 [23/Oct/2021:20:19:24 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "POST /Autodiscover/Autodiscover.xml HTTP/1.1" 315 [23/Oct/2021:20:19:25 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "GET /console/ HTTP/1.1" 307 [23/Oct/2021:20:19:26 +0200] 45.146.164.110 TLSv1.2 AES256-SHA "GET /_ignition/execute-solution HTTP/1.1" 319 [23/Oct/2021:21:23:48 +0200] 185.180.143.14 TLSv1.2 DHE-RSA-AES256-SHA256 "GET / HTTP/1.1" 301 [23/Oct/2021:22:02:08 +0200] 167.248.133.59 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Oct/2021:22:02:08 +0200] 167.248.133.59 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Oct/2021:22:26:35 +0200] 89.252.177.18 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /.env HTTP/1.1" 298 [23/Oct/2021:22:26:35 +0200] 89.252.177.18 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /.env HTTP/1.1" 300 [23/Oct/2021:22:26:36 +0200] 89.252.177.18 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "POST /.env HTTP/1.1" 298 [23/Oct/2021:22:26:36 +0200] 89.252.177.18 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "POST /.env HTTP/1.1" 300 [23/Oct/2021:22:56:33 +0200] 51.158.109.3 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 385 [23/Oct/2021:23:11:37 +0200] 52.27.27.244 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 307 [23/Oct/2021:23:12:09 +0200] 34.222.187.186 TLSv1.2 AES256-SHA "GET /favicon.ico HTTP/1.1" 314 [23/Oct/2021:23:12:55 +0200] 35.163.102.109 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 307 [23/Oct/2021:23:30:45 +0200] 45.72.48.130 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 295 [23/Oct/2021:23:34:33 +0200] 34.212.38.93 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 307 [23/Oct/2021:23:35:02 +0200] 34.219.252.159 TLSv1.2 AES256-SHA "GET /favicon.ico HTTP/1.1" 314 [23/Oct/2021:23:36:39 +0200] 207.46.13.32 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 304 [23/Oct/2021:23:42:13 +0200] 154.89.5.40 TLSv1.2 AES256-SHA "GET / HTTP/1.0" 383 [24/Oct/2021:00:36:48 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 379 [24/Oct/2021:00:37:13 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [24/Oct/2021:00:37:14 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET /cgi-bin/.%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/hosts HTTP/1.1" 293 [24/Oct/2021:00:37:15 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET /.DS_Store HTTP/1.1" 307 [24/Oct/2021:00:37:15 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET /api/search?folderIds=0 HTTP/1.1" 316 [24/Oct/2021:00:37:16 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET /.env HTTP/1.1" 304 [24/Oct/2021:00:37:16 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET /telescope/requests HTTP/1.1" 311 [24/Oct/2021:00:37:16 +0200] 161.35.188.242 TLSv1.2 AES256-SHA "GET /s/lkx/_/;/META-INF/maven/com.atlassian.jira/jira-webapp-dist/pom.properties HTTP/1.1" 353 [24/Oct/2021:01:15:38 +0200] 18.237.218.246 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 306 [24/Oct/2021:01:16:07 +0200] 34.220.251.29 TLSv1.2 AES256-SHA "GET /favicon.ico HTTP/1.1" 313 [24/Oct/2021:01:16:10 +0200] 34.220.251.29 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 306