[23/Dec/2022:01:00:31 +0100] 34.76.158.233 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 301 [23/Dec/2022:01:30:14 +0100] 194.110.203.44 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/localhost_db.tar.gz HTTP/1.1" 416 [23/Dec/2022:01:39:06 +0100] 198.12.252.180 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/localhost_db.tar.gz HTTP/1.1" 399 [23/Dec/2022:01:41:43 +0100] 64.227.188.62 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 374 [23/Dec/2022:01:46:04 +0100] 162.142.125.8 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:01:46:04 +0100] 162.142.125.8 TLSv1.2 AES256-SHA "PRI * HTTP/2.0" 379 [23/Dec/2022:01:47:04 +0100] 194.110.203.39 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/localhost_db.tar.gz HTTP/1.1" 408 [23/Dec/2022:04:02:13 +0100] 50.84.48.188 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 308 [23/Dec/2022:04:02:15 +0100] 50.84.48.188 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /robots.txt HTTP/1.1" 315 [23/Dec/2022:04:02:17 +0100] 50.84.48.188 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /sitemap.xml HTTP/1.1" 315 [23/Dec/2022:04:45:15 +0100] 194.110.203.42 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/localhost_database.tar.gz HTTP/1.1" 414 [23/Dec/2022:05:17:49 +0100] 193.106.29.122 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.0" 388 [23/Dec/2022:05:53:16 +0100] 45.33.96.205 TLSv1.2 AES256-SHA "GET /owa/ HTTP/1.1" 304 [23/Dec/2022:05:53:38 +0100] 45.33.96.205 TLSv1.2 AES256-SHA "GET /autodiscover/autodiscover.json?a..foo.var/owa/?&Email=autodiscover/autodiscover.json?a..foo.var&Protocol=XYZ&FooProtocol=%50owershell HTTP/1.1" 378 [23/Dec/2022:06:03:33 +0100] 207.154.241.133 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:06:05:51 +0100] 198.199.104.136 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:06:27:28 +0100] 207.46.13.230 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 311 [23/Dec/2022:06:27:29 +0100] 207.46.13.230 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 311 [23/Dec/2022:06:27:36 +0100] 157.55.39.65 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 304 [23/Dec/2022:06:47:30 +0100] 20.120.217.166 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /.git/config HTTP/1.1" 310 [23/Dec/2022:06:55:41 +0100] 194.110.203.38 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/localhost-database.tar.gz HTTP/1.1" 414 [23/Dec/2022:08:28:55 +0100] 107.170.250.10 TLSv1.2 AES256-SHA "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 335 [23/Dec/2022:08:33:04 +0100] 185.7.214.218 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 452 [23/Dec/2022:08:41:26 +0100] 183.136.225.32 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 383 [23/Dec/2022:08:41:39 +0100] 68.183.224.182 TLSv1.2 AES256-SHA "GET /ab2g HTTP/1.1" 304 [23/Dec/2022:08:41:42 +0100] 68.183.224.182 TLSv1.2 AES256-SHA "GET /ab2h HTTP/1.1" 304 [23/Dec/2022:08:41:50 +0100] 68.183.224.182 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:08:43:29 +0100] 194.110.203.39 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/harmdb.tar.gz HTTP/1.1" 393 [23/Dec/2022:08:45:44 +0100] 162.142.125.219 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Dec/2022:08:45:44 +0100] 162.142.125.219 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:08:45:45 +0100] 162.142.125.219 TLSv1.2 AES256-SHA "PRI * HTTP/2.0" 379 [23/Dec/2022:08:47:47 +0100] 183.136.225.32 TLSv1.2 AES256-SHA "GET /favicon.ico HTTP/1.1" 309 [23/Dec/2022:08:48:08 +0100] 183.136.225.32 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 308 [23/Dec/2022:09:51:19 +0100] 194.110.203.41 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/harm_db.tar.gz HTTP/1.1" 394 [23/Dec/2022:10:22:26 +0100] 64.62.197.96 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:10:28:56 +0100] 4.184.57.28 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 301 [23/Dec/2022:10:30:42 +0100] 64.62.197.93 TLSv1.2 AES256-SHA "GET /favicon.ico HTTP/1.1" 309 [23/Dec/2022:10:33:37 +0100] 64.62.197.98 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:10:34:19 +0100] 64.62.197.92 TLSv1.2 AES256-SHA "GET /.git/config HTTP/1.1" 310 [23/Dec/2022:10:46:40 +0100] 67.205.185.49 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:11:50:14 +0100] 194.110.203.47 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/easyzumfuehrerschein-db.tar.gz HTTP/1.1" 427 [23/Dec/2022:11:59:29 +0100] 167.99.36.6 TLSv1.2 AES256-SHA "GET /ab2g HTTP/1.1" 304 [23/Dec/2022:11:59:29 +0100] 167.99.36.6 TLSv1.2 AES256-SHA "GET /ab2h HTTP/1.1" 304 [23/Dec/2022:11:59:30 +0100] 167.99.36.6 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:12:19:18 +0100] 20.77.43.140 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 383 [23/Dec/2022:12:20:27 +0100] 172.105.161.142 TLSv1.2 AES256-SHA "GET /admin/ HTTP/1.1" 305 [23/Dec/2022:12:20:57 +0100] 107.170.237.20 TLSv1.2 AES256-SHA "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 328 [23/Dec/2022:12:37:33 +0100] 138.246.253.24 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 404 [23/Dec/2022:13:30:02 +0100] 194.110.203.47 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/harm_database.tar.gz HTTP/1.1" 400 [23/Dec/2022:15:42:33 +0100] 194.110.203.38 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/klub-database.tar.gz HTTP/1.1" 409 [23/Dec/2022:16:00:04 +0100] 194.110.203.47 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/harm-database.tar.gz HTTP/1.1" 400 [23/Dec/2022:16:00:21 +0100] 176.58.116.44 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 301 [23/Dec/2022:17:15:39 +0100] 167.94.145.57 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Dec/2022:17:15:39 +0100] 167.94.145.57 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:17:15:39 +0100] 167.94.145.57 TLSv1.2 AES256-SHA "PRI * HTTP/2.0" 379 [23/Dec/2022:17:51:41 +0100] 183.136.225.32 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 383 [23/Dec/2022:17:54:18 +0100] 183.136.225.32 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:17:54:25 +0100] 192.241.226.14 TLSv1.2 AES256-SHA "GET /actuator/health HTTP/1.1" 310 [23/Dec/2022:17:55:04 +0100] 183.136.225.32 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 308 [23/Dec/2022:17:57:39 +0100] 142.93.68.90 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 301 [23/Dec/2022:17:57:41 +0100] 142.93.68.90 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 754 [23/Dec/2022:17:57:43 +0100] 142.93.68.90 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /favicon.ico HTTP/1.1" 1150 [23/Dec/2022:18:13:25 +0100] 207.46.13.230 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 311 [23/Dec/2022:18:13:26 +0100] 207.46.13.230 TLSv1.2 AES256-SHA "GET /robots.txt HTTP/1.1" 311 [23/Dec/2022:18:13:34 +0100] 157.55.39.65 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 304 [23/Dec/2022:18:34:56 +0100] 192.241.236.44 TLSv1.2 AES256-SHA "GET /owa/auth/logon.aspx?url=https%3a%2f%2f1%2fecp%2f HTTP/1.1" 335 [23/Dec/2022:19:00:23 +0100] 164.52.0.83 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "{\"id\": 1, \"method\": \"mining.subscribe\", \"params\": [], \"jsonrpc\":\"2.0\"}" 379 [23/Dec/2022:19:13:57 +0100] 194.110.203.45 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/klub.kornland.at_db.tar.gz HTTP/1.1" 415 [23/Dec/2022:20:24:13 +0100] 194.110.203.39 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/easyzumfuehrerschein.com_db.tar.gz HTTP/1.1" 431 [23/Dec/2022:20:42:27 +0100] 194.110.203.38 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/klub.kornland.at-db.tar.gz HTTP/1.1" 415 [23/Dec/2022:21:54:47 +0100] 128.1.248.26 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:22:02:51 +0100] 162.243.145.13 TLSv1.2 AES256-SHA "GET /owa/auth/logon.aspx HTTP/1.1" 314 [23/Dec/2022:22:07:06 +0100] 162.243.145.13 TLSv1.2 AES256-SHA "GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application HTTP/1.1" 348 [23/Dec/2022:22:10:46 +0100] 162.243.136.18 TLSv1.2 AES256-SHA "GET /owa/auth/x.js HTTP/1.1" 310 [23/Dec/2022:22:27:30 +0100] 60.217.75.70 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [23/Dec/2022:22:42:07 +0100] 198.12.252.180 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/easyzumfuehrerschein.com_database.tar.gz HTTP/1.1" 437 [23/Dec/2022:22:53:34 +0100] 194.110.203.40 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/harm.at_database.tar.gz HTTP/1.1" 403 [23/Dec/2022:22:58:48 +0100] 152.89.196.211 TLSv1.2 AES256-SHA "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 327 [23/Dec/2022:23:11:10 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 379 [23/Dec/2022:23:11:13 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 383 [23/Dec/2022:23:11:17 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /.DS_Store HTTP/1.1" 307 [23/Dec/2022:23:11:18 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /idx_config/ HTTP/1.1" 310 [23/Dec/2022:23:11:18 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /telescope/requests HTTP/1.1" 311 [23/Dec/2022:23:11:18 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /info.php HTTP/1.1" 307 [23/Dec/2022:23:11:19 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /.git/config HTTP/1.1" 310 [23/Dec/2022:23:11:19 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /server-status HTTP/1.1" 308 [23/Dec/2022:23:11:20 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /config.json HTTP/1.1" 311 [23/Dec/2022:23:11:20 +0100] 35.216.130.245 TLSv1.2 AES256-SHA "GET /.env HTTP/1.1" 304 [23/Dec/2022:23:42:10 +0100] 185.158.113.63 TLSv1.2 AES256-SHA "GET /login HTTP/1.1" 305 [23/Dec/2022:23:48:10 +0100] 162.221.192.26 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 301 [24/Dec/2022:00:39:48 +0100] 18.237.136.45 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 306 [24/Dec/2022:00:40:15 +0100] 34.214.10.132 TLSv1.2 AES256-SHA "GET / HTTP/1.1" 306 [24/Dec/2022:00:50:29 +0100] 198.235.24.169 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET / HTTP/1.1" 383 [24/Dec/2022:00:50:53 +0100] 194.110.203.38 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/klub.kornland.at-database.tar.gz HTTP/1.1" 421 [24/Dec/2022:00:51:19 +0100] 194.110.203.47 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /db/easyzumfuehrerschein.com-database.tar.gz HTTP/1.1" 437 [24/Dec/2022:00:52:41 +0100] 185.7.214.218 TLSv1.2 DHE-RSA-AES256-GCM-SHA384 "GET /remote/fgt_lang?lang=/../../../..//////////dev/cmdb/sslvpn_websession HTTP/1.1" 452