[01/Oct/2023:08:10:05 +0800] 193.105.134.40 - - "GET / HTTP/1.0" 362
[01/Oct/2023:09:19:53 +0800] 14.153.78.16 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /MobileAPI/api/deviceservice/salt/140?device_time=1696123189035&token=468843 HTTP/1.1" 94
[01/Oct/2023:09:19:54 +0800] 14.153.78.16 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /MobileAPI/api/deviceservice/salt/140 HTTP/1.1" 56
[01/Oct/2023:09:47:07 +0800] 172.104.96.196 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:11:28:07 +0800] 223.104.150.107 TLSv1 AES128-SHA "GET /MobileAPI/images/6df5ff2a-8f4d-4853-afba-64e6e9ee94fe HTTP/1.1" 54795
[01/Oct/2023:11:28:07 +0800] 223.104.150.107 TLSv1 AES128-SHA "GET /MobileAPI/images/c6491026-6f54-43e4-8e01-51f57472d30a.png HTTP/1.1" 26546
[01/Oct/2023:11:42:44 +0800] 165.154.182.92 - - "GET / HTTP/1.0" 362
[01/Oct/2023:11:42:56 +0800] 165.154.182.92 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:11:42:58 +0800] 165.154.182.92 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "t3 12.1.2\n" 226
[01/Oct/2023:11:43:12 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:11:43:13 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[01/Oct/2023:11:43:14 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /robots.txt HTTP/1.1" 208
[01/Oct/2023:11:43:14 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /sitemap.xml HTTP/1.1" 209
[01/Oct/2023:11:43:15 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /axis2-admin/ HTTP/1.1" 210
[01/Oct/2023:11:43:21 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /axis2/ HTTP/1.1" 204
[01/Oct/2023:11:43:21 +0800] 101.36.108.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /axis2/axis2-admin/ HTTP/1.1" 216
[01/Oct/2023:12:12:02 +0800] 184.105.247.195 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:12:52:34 +0800] 66.249.69.195 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /robots.txt HTTP/1.1" 208
[01/Oct/2023:12:52:37 +0800] 66.249.69.193 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /.well-known/assetlinks.json HTTP/1.1" 225
[01/Oct/2023:14:03:40 +0800] 35.203.211.130 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:14:12:58 +0800] 192.241.225.11 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /owa/auth/x.js HTTP/1.1" 211
[01/Oct/2023:14:35:32 +0800] 42.185.68.147 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /MobileAPI/api/deviceservice/salt/1607?device_time=1696142126595&token=792456 HTTP/1.1" 94
[01/Oct/2023:14:35:32 +0800] 42.185.68.147 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /MobileAPI/api/deviceservice/salt/1607 HTTP/1.1" 56
[01/Oct/2023:14:35:32 +0800] 42.185.68.147 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /MobileAPI/api/deviceservice/salt/1955?device_time=1696142126527&token=203589 HTTP/1.1" 94
[01/Oct/2023:14:35:32 +0800] 42.185.68.147 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /MobileAPI/api/deviceservice/salt/1955 HTTP/1.1" 56
[01/Oct/2023:14:41:31 +0800] 52.167.144.189 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /logs/secure_access_log.20200518 HTTP/1.1" 128761
[01/Oct/2023:15:20:49 +0800] 34.243.148.96 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /icons/apache_pb.gif HTTP/1.1" 228
[01/Oct/2023:16:33:42 +0800] 172.104.96.196 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:16:47:54 +0800] 88.214.26.9 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /owa/auth.owa HTTP/1.1" 210
[01/Oct/2023:16:53:07 +0800] 192.46.231.74 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:17:17:35 +0800] 40.77.167.10 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /logs/secure_access_log.20210519 HTTP/1.1" 330623
[01/Oct/2023:17:38:00 +0800] 52.167.144.206 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /logs/secure_access_log.20200625 HTTP/1.1" 39703
[01/Oct/2023:18:24:44 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:18:24:53 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /webfig/ HTTP/1.1" 205
[01/Oct/2023:18:25:01 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon-32x32.png HTTP/1.1" 215
[01/Oct/2023:18:25:02 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/1.1" 228
[01/Oct/2023:18:25:15 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /remote/login HTTP/1.1" 210
[01/Oct/2023:18:25:16 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /sugar_version.json HTTP/1.1" 216
[01/Oct/2023:18:25:27 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /cgi-bin/config.exp HTTP/1.1" 227
[01/Oct/2023:18:25:42 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /cgi-bin/authLogin.cgi HTTP/1.1" 230
[01/Oct/2023:18:25:53 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:18:25:54 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /solr/ HTTP/1.1" 203
[01/Oct/2023:18:26:08 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "HEAD /icons/sphere1.png HTTP/1.1" -
[01/Oct/2023:18:26:09 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:18:26:10 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:18:26:11 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /showLogin.cc HTTP/1.1" 210
[01/Oct/2023:18:26:21 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[01/Oct/2023:18:26:34 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /api/session/properties HTTP/1.1" 220
[01/Oct/2023:18:26:45 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[01/Oct/2023:18:26:46 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /admin/ HTTP/1.1" 204
[01/Oct/2023:18:26:47 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /static/historypage.js HTTP/1.1" 219
[01/Oct/2023:18:27:01 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /owa/ HTTP/1.1" 202
[01/Oct/2023:18:27:02 +0800] 45.156.129.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /autodiscover/autodiscover.json?a..foo.var/owa/?&Email=autodiscover/autodiscover.json?a..foo.var&Protocol=XYZ&FooProtocol=%50owershell HTTP/1.1" 228
[01/Oct/2023:19:35:02 +0800] 43.250.200.122 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[01/Oct/2023:19:46:01 +0800] 192.241.231.44 - - "GET / HTTP/1.0" 362
[01/Oct/2023:20:05:53 +0800] 106.34.154.10 TLSv1 AES128-SHA "GET /MobileAPI/api/companyservice/companys/diff?last_updated_time=1694747271498&id=134 HTTP/1.1" 28
[01/Oct/2023:22:01:13 +0800] 39.144.218.170 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /MobileAPI/api/companyservice/companys/diff?last_updated_time=1693878750698&id=134 HTTP/1.1" 28
[01/Oct/2023:22:01:13 +0800] 39.144.218.170 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /MobileAPI/api/deviceservice/salt/2960?device_time=1696168869153&token=799447 HTTP/1.1" 94
[01/Oct/2023:22:01:13 +0800] 39.144.218.170 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /MobileAPI/api/deviceservice/salt/2960 HTTP/1.1" 56
[01/Oct/2023:22:14:29 +0800] 198.235.24.136 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[01/Oct/2023:22:33:37 +0800] 115.204.93.120 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[01/Oct/2023:23:04:55 +0800] 60.255.228.166 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[02/Oct/2023:00:13:54 +0800] 34.79.162.186 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:01:15:23 +0800] 198.98.57.135 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:01:22:39 +0800] 52.167.144.209 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /logs/secure_access_log.20220526 HTTP/1.1" -
[02/Oct/2023:01:36:08 +0800] 167.248.133.126 - - "GET / HTTP/1.0" 362
[02/Oct/2023:01:43:19 +0800] 34.88.83.128 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "OPTIONS / HTTP/1.0" -
[02/Oct/2023:02:31:00 +0800] 34.140.90.192 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /Teporary_Listen_Addresses/ HTTP/1.1" 224
[02/Oct/2023:02:36:30 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /dns-query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 207
[02/Oct/2023:02:36:31 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /dns-query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 207
[02/Oct/2023:02:36:33 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /dns-query HTTP/1.1" 207
[02/Oct/2023:02:36:35 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /dns-query HTTP/1.1" 207
[02/Oct/2023:02:36:36 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /dns-query?name=example.com&type=A HTTP/1.1" 207
[02/Oct/2023:02:36:38 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /dns-query?name=example.com&type=A HTTP/1.1" 207
[02/Oct/2023:02:36:40 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 203
[02/Oct/2023:02:36:41 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /query?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 203
[02/Oct/2023:02:36:43 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /query HTTP/1.1" 203
[02/Oct/2023:02:36:44 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /query HTTP/1.1" 203
[02/Oct/2023:02:36:46 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /query?name=example.com&type=A HTTP/1.1" 203
[02/Oct/2023:02:36:48 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /query?name=example.com&type=A HTTP/1.1" 203
[02/Oct/2023:02:36:49 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /resolve?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 205
[02/Oct/2023:02:36:51 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /resolve?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 205
[02/Oct/2023:02:36:52 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /resolve HTTP/1.1" 205
[02/Oct/2023:02:36:54 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST /resolve HTTP/1.1" 205
[02/Oct/2023:02:36:55 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /resolve?name=example.com&type=A HTTP/1.1" 205
[02/Oct/2023:02:36:57 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /resolve?name=example.com&type=A HTTP/1.1" 205
[02/Oct/2023:02:36:58 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 4096
[02/Oct/2023:02:37:00 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /?dns=q80BAAABAAAAAAAAA3d3dwdleGFtcGxlA2NvbQAAAQAB HTTP/1.1" 4096
[02/Oct/2023:02:37:02 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST / HTTP/1.1" 198
[02/Oct/2023:02:37:03 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "POST / HTTP/1.1" 198
[02/Oct/2023:02:37:05 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /?name=example.com&type=A HTTP/1.1" 4096
[02/Oct/2023:02:37:07 +0800] 47.91.125.252 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /?name=example.com&type=A HTTP/1.1" 4096
[02/Oct/2023:02:58:36 +0800] 92.117.246.94 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.0" 4096
[02/Oct/2023:03:23:48 +0800] 79.116.150.36 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.0" 4096
[02/Oct/2023:03:34:36 +0800] 60.217.75.70 - - "GET / HTTP/1.0" 362
[02/Oct/2023:03:55:36 +0800] 165.154.118.145 - - "GET / HTTP/1.0" 362
[02/Oct/2023:03:55:48 +0800] 165.154.118.145 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:03:55:50 +0800] 165.154.118.145 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "t3 12.1.2\n" 226
[02/Oct/2023:03:57:56 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:03:57:57 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[02/Oct/2023:03:57:57 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /robots.txt HTTP/1.1" 208
[02/Oct/2023:03:57:57 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /sitemap.xml HTTP/1.1" 209
[02/Oct/2023:03:57:59 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /axis2-admin/ HTTP/1.1" 210
[02/Oct/2023:03:58:00 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /axis2/ HTTP/1.1" 204
[02/Oct/2023:03:58:00 +0800] 165.154.172.111 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /axis2/axis2-admin/ HTTP/1.1" 216
[02/Oct/2023:04:18:01 +0800] 192.241.197.4 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /autodiscover/autodiscover.json?@zdi/Powershell HTTP/1.1" 228
[02/Oct/2023:04:33:46 +0800] 87.236.176.191 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:05:04:13 +0800] 52.167.144.226 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /logs/secure_access_log.20201115 HTTP/1.1" 43311
[02/Oct/2023:06:33:53 +0800] 94.102.61.88 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:06:57:12 +0800] 112.39.85.174 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET /favicon.ico HTTP/1.1" 209
[02/Oct/2023:07:26:42 +0800] 192.241.231.51 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
[02/Oct/2023:07:53:52 +0800] 172.104.96.196 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 "GET / HTTP/1.1" 4096
