124.156.226.179 - - [24/Sep/2025:15:57:54 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 207.180.203.50 - - [24/Sep/2025:16:15:28 +0330] "GET /.well-known/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:15:58 +0330] "GET /.well-known/wcgbtezdng.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:16:46 +0330] "GET /sites/default/files/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:16:53 +0330] "GET /admin/controller/extension/extension/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 182.44.10.67 - - [24/Sep/2025:16:10:34 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 207.180.203.50 - - [24/Sep/2025:16:15:06 +0330] "GET /wp-admin/css/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:15:17 +0330] "GET /.well-known/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:15:37 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:15:47 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:15:52 +0330] "POST /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:16:12 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:17:00 +0330] "GET /uploads/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:17:08 +0330] "GET /images/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:16:17:16 +0330] "GET /files/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 104.41.205.21 - - [24/Sep/2025:19:23:47 +0330] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:47 +0330] "GET /gifclass4.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:47 +0330] "GET /ggs.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:48 +0330] "GET /wp-update.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:48 +0330] "GET /asd67.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:48 +0330] "GET /tinyfilemanager.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:48 +0330] "GET /x.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:48 +0330] "GET /dev.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:49 +0330] "GET /winkel.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:49 +0330] "GET /dropdown.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:49 +0330] "GET /wp-mn.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:49 +0330] "GET /v3.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:50 +0330] "GET /aaaa.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:50 +0330] "GET /aa.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:50 +0330] "GET /wp.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:50 +0330] "GET /ss.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:51 +0330] "GET /nqsa.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:51 +0330] "GET /2.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:51 +0330] "GET /f35.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:51 +0330] "GET /Sanskrit.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:51 +0330] "GET /02.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:52 +0330] "GET /lo.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:52 +0330] "GET /6.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:52 +0330] "GET /.well-known/info.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:52 +0330] "GET /456.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:53 +0330] "GET /bu5.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:53 +0330] "GET /gmo.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:53 +0330] "GET /oiepfuav.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:53 +0330] "GET /trd.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:54 +0330] "GET /yasnu.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:54 +0330] "GET /10.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:54 +0330] "GET /nc4.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:54 +0330] "GET /12.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:54 +0330] "GET /v2.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:55 +0330] "GET /aw.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:55 +0330] "GET /xl.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:55 +0330] "GET /baxa1.phP8 HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:55 +0330] "GET /gfile.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:56 +0330] "GET /file2.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:56 +0330] "GET /13k.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:56 +0330] "GET /.well-known/xin1.php?p HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:56 +0330] "GET /co.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:57 +0330] "GET /zt2.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:57 +0330] "GET /mjq.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:57 +0330] "GET /css.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:57 +0330] "GET /we.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:57 +0330] "GET /sder52u.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:58 +0330] "GET /lc.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:58 +0330] "GET /zex4.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:58 +0330] "GET /as.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:58 +0330] "GET /ar.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:59 +0330] "GET /get.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:59 +0330] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:59 +0330] "GET /ol.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:59 +0330] "GET /xojryvch.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:23:59 +0330] "GET /blue.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:00 +0330] "GET /mo.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:00 +0330] "GET /shlo.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:00 +0330] "GET /class9.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:00 +0330] "GET /new4.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:01 +0330] "GET /btufulhs.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:01 +0330] "GET /great.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:01 +0330] "GET /fm.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:01 +0330] "GET /re.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:02 +0330] "GET /7.php HTTP/1.1" 301 795 "-" "-" 104.41.205.21 - - [24/Sep/2025:19:24:02 +0330] "GET /wp-content/themes/pridmag/db.php HTTP/1.1" 301 795 "-" "-" 60.188.57.0 - - [24/Sep/2025:20:08:07 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 172.105.82.111 - - [24/Sep/2025:20:33:13 +0330] "GET / HTTP/1.1" 301 795 "-" "python-requests/2.32.4" 172.105.82.111 - - [24/Sep/2025:20:33:16 +0330] "GET / HTTP/1.1" 301 795 "-" "python-requests/2.32.4" 43.157.175.122 - - [24/Sep/2025:21:21:28 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 3.222.165.167 - - [24/Sep/2025:21:27:10 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36" 3.222.165.167 - - [24/Sep/2025:21:27:10 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Edg/124.0.0.0" 3.222.165.167 - - [24/Sep/2025:21:27:10 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4093.0 Safari/537.36 Edg/83.0.470.0" 207.180.203.50 - - [24/Sep/2025:22:15:39 +0330] "GET /wp-admin/css/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:46 +0330] "GET /.well-known/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:48 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:50 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:52 +0330] "POST /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:59 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:16:07 +0330] "GET /sites/default/files/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:16:10 +0330] "GET /admin/controller/extension/extension/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:16:13 +0330] "GET /uploads/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:45 +0330] "GET /.well-known/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:15:54 +0330] "GET /.well-known/fhisiailvt.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:16:16 +0330] "GET /images/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 207.180.203.50 - - [24/Sep/2025:22:16:18 +0330] "GET /files/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 42.1.67.76 - - [24/Sep/2025:22:35:56 +0330] "GET / HTTP/1.1" 301 795 "https://www.google.com.hk" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.1.15" 167.86.107.62 - - [24/Sep/2025:22:46:25 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.3) AppleWebKit/614.31.14 (KHTML, like Gecko) Version/17.0.96 Safari/614.31.14" 4.217.180.27 - - [24/Sep/2025:23:27:58 +0330] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:00 +0330] "GET /ggs.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:00 +0330] "GET /wo.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:01 +0330] "GET /xex.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:01 +0330] "GET /xs.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:02 +0330] "GET /v4.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:02 +0330] "GET /test2.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:03 +0330] "GET /wp-update.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:03 +0330] "GET /asd67.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:04 +0330] "GET /tinyfilemanager.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:04 +0330] "GET /x.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:05 +0330] "GET /dev.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:05 +0330] "GET /winkel.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:06 +0330] "GET /dropdown.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:06 +0330] "GET /wp-mn.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:07 +0330] "GET /v3.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:07 +0330] "GET /aaaa.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:08 +0330] "GET /aa.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:08 +0330] "GET /wp.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:09 +0330] "GET /ss.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:10 +0330] "GET /nqsa.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:10 +0330] "GET /2.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:11 +0330] "GET /f35.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:11 +0330] "GET /Sanskrit.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:12 +0330] "GET /02.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:12 +0330] "GET /lo.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:13 +0330] "GET /6.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:13 +0330] "GET /.well-known/info.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:14 +0330] "GET /456.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:14 +0330] "GET /bu5.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:15 +0330] "GET /gmo.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:15 +0330] "GET /oiepfuav.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:16 +0330] "GET /trd.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:16 +0330] "GET /yasnu.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:17 +0330] "GET /10.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:17 +0330] "GET /nc4.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:18 +0330] "GET /12.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:18 +0330] "GET /v2.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:19 +0330] "GET /aw.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:20 +0330] "GET /xl.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:20 +0330] "GET /baxa1.phP8 HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:21 +0330] "GET /gfile.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:21 +0330] "GET /file2.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:22 +0330] "GET /13k.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:22 +0330] "GET /.well-known/xin1.php?p HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:23 +0330] "GET /co.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:23 +0330] "GET /zt2.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:24 +0330] "GET /mjq.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:24 +0330] "GET /css.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:25 +0330] "GET /we.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:25 +0330] "GET /sder52u.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:26 +0330] "GET /lc.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:26 +0330] "GET /zex4.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:27 +0330] "GET /as.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:27 +0330] "GET /ar.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:28 +0330] "GET /get.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:28 +0330] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:29 +0330] "GET /ol.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:29 +0330] "GET /xojryvch.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:30 +0330] "GET /blue.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:31 +0330] "GET /mo.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:31 +0330] "GET /shlo.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:31 +0330] "GET /class9.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:32 +0330] "GET /new4.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:33 +0330] "GET /btufulhs.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:33 +0330] "GET /great.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:34 +0330] "GET /fm.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:34 +0330] "GET /re.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:35 +0330] "GET /7.php HTTP/1.1" 301 795 "-" "-" 4.217.180.27 - - [24/Sep/2025:23:28:35 +0330] "GET /wp-content/themes/pridmag/db.php HTTP/1.1" 301 795 "-" "-" 124.156.134.41 - - [24/Sep/2025:23:24:00 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.88 Safari/537.36" 101.91.148.219 - - [24/Sep/2025:23:56:41 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 185.135.137.81 - - [25/Sep/2025:00:38:15 +0330] "GET /wp-admin/css/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:39:41 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:40:59 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:42:52 +0330] "GET /files/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:38:32 +0330] "GET /.well-known/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:38:50 +0330] "GET /.well-known/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:39:05 +0330] "GET /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:40:02 +0330] "POST /.well-known/fm.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:40:16 +0330] "GET /.well-known/aqahdperty.php HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:42:01 +0330] "GET /sites/default/files/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:42:17 +0330] "GET /admin/controller/extension/extension/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:42:35 +0330] "GET /uploads/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 185.135.137.81 - - [25/Sep/2025:00:42:42 +0330] "GET /images/ HTTP/1.1" 301 795 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 66.249.79.166 - - [25/Sep/2025:01:19:52 +0330] "GET /robots.txt HTTP/1.1" 301 795 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.167 - - [25/Sep/2025:01:19:53 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.84 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.166 - - [25/Sep/2025:01:19:54 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 196.251.71.192 - - [25/Sep/2025:01:27:00 +0330] "GET / HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36" 89.21.85.114 - - [25/Sep/2025:01:29:55 +0330] "GET /file-manager/tinymce HTTP/1.1" 301 795 "-" "Mozilla/5.0 (Linux; Android 11; M2010J19SI) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Mobile Safari/537.36"