46.148.206.226 - - [11/May/2025:15:43:18 +0330] "GET / HTTP/1.0" 301 0 "http://optimyar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 3.87.168.5 - - [11/May/2025:17:15:08 +0330] "GET / HTTP/1.1" 301 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 162.62.213.187 - - [11/May/2025:17:19:44 +0330] "GET / HTTP/1.1" 301 20 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 91.151.95.70 - - [11/May/2025:17:34:22 +0330] "GET / HTTP/1.1" 301 20 "https://www.google.ru" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.134 Safari/537.36" 43.153.192.98 - - [11/May/2025:18:19:37 +0330] "GET / HTTP/1.1" 301 20 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 31.214.174.196 - - [11/May/2025:19:29:51 +0330] "GET /.well-known/pki-validation/file.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:02 +0330] "GET /.well-known/pki-validation/themes.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:16 +0330] "GET /.well-known/pki-validation/shell.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:20 +0330] "GET /.well-known/pki-validation/x.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:20 +0330] "GET /.well-known/pki-validation/autoload_classmap.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:25 +0330] "GET /.well-known/pki-validation/about.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:31:23 +0330] "GET /.well-known/pki-validation/cloud.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:31:32 +0330] "GET /.well-known/pki-validation/index.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:29:49 +0330] "GET /.well-known/pki-validation/wp-sigunq.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:29:52 +0330] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:29:55 +0330] "GET /.well-known/pki-validation/mariju.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:03 +0330] "GET /.well-known/pki-validation/admin.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:07 +0330] "GET /.well-known/pki-validation/wp-config.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:19:30:10 +0330] "GET /.well-known/pki-validation/classwithtostring.php HTTP/1.1" 404 796 "-" "get_local:DCV" 72.152.84.13 - - [11/May/2025:19:57:32 +0330] "GET / HTTP/1.1" 301 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36" 31.214.174.196 - - [11/May/2025:20:20:55 +0330] "GET /.well-known/pki-validation/wp-sigunq.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:20:58 +0330] "GET /.well-known/pki-validation/file.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:20:59 +0330] "GET /.well-known/pki-validation/wp-login.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:10 +0330] "GET /.well-known/pki-validation/admin.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:22:34 +0330] "GET /.well-known/pki-validation/cloud.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:22:43 +0330] "GET /.well-known/pki-validation/index.php HTTP/1.1" 404 796 "-" "get_local:DCV" 111.172.249.49 - - [11/May/2025:20:34:09 +0330] "GET / HTTP/1.1" 301 20 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 31.214.174.196 - - [11/May/2025:20:21:02 +0330] "GET /.well-known/pki-validation/mariju.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:09 +0330] "GET /.well-known/pki-validation/themes.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:14 +0330] "GET /.well-known/pki-validation/wp-config.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:17 +0330] "GET /.well-known/pki-validation/classwithtostring.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:24 +0330] "GET /.well-known/pki-validation/shell.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:28 +0330] "GET /.well-known/pki-validation/x.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:28 +0330] "GET /.well-known/pki-validation/autoload_classmap.php HTTP/1.1" 404 796 "-" "get_local:DCV" 31.214.174.196 - - [11/May/2025:20:21:33 +0330] "GET /.well-known/pki-validation/about.php HTTP/1.1" 404 796 "-" "get_local:DCV" 173.249.43.220 - - [11/May/2025:21:04:12 +0330] "GET /wp-content/plugins/HelloDollyV2/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:04:26 +0330] "GET /wp-content/themes/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:04:45 +0330] "GET /style.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:05:59 +0330] "GET /wp-content/plugins/HelloDollyV2/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:06:08 +0330] "GET /wp-content/themes/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:06:24 +0330] "GET /style.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:15 +0330] "GET /wp-content/plugins/HelloDollyV2/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:25 +0330] "GET /wp-content/themes/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:47 +0330] "GET /wp-content/plugins/suretriggers/readme.txt HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:04:35 +0330] "GET /wp-content/themes/include.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:06:17 +0330] "GET /wp-content/themes/include.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:06:32 +0330] "GET /wp-content/plugins/suretriggers/readme.txt HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:00 +0330] "GET /wp-content/plugins/HelloDollyV2/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:07 +0330] "GET /wp-content/themes/hello_dolly_v2.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:14 +0330] "GET /wp-content/themes/include.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:21 +0330] "GET /style.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:30 +0330] "GET /wp-content/plugins/suretriggers/readme.txt HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:32 +0330] "GET /wp-content/themes/include.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 173.249.43.220 - - [11/May/2025:21:07:39 +0330] "GET /style.php HTTP/1.1" 301 20 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" 143.244.57.92 - - [11/May/2025:21:29:53 +0330] "GET / HTTP/1.1" 301 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 196.251.86.177 - - [11/May/2025:21:59:38 +0330] "GET / HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:21:59:49 +0330] "GET /wordpress HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:21:59:54 +0330] "GET /wp-admin/setup-config.php HTTP/1.1" 409 2838 "-" "-" 196.251.86.177 - - [11/May/2025:21:59:56 +0330] "GET /wp-admin/install.php HTTP/1.1" 403 17008 "-" "-" 196.251.86.177 - - [11/May/2025:21:59:56 +0330] "GET /wp HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:09 +0330] "GET /new HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:14 +0330] "GET /old HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:21 +0330] "GET /newsite HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:26 +0330] "GET /test HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:33 +0330] "GET /main HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:03 +0330] "GET /blog HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:39 +0330] "GET /testing HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:44 +0330] "GET /site HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:50 +0330] "GET /backup HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:00:56 +0330] "GET /demo HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:01:01 +0330] "GET /home HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:01:11 +0330] "GET /tmp HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:01:16 +0330] "GET /dev HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:01:22 +0330] "GET /cms HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:01:28 +0330] "GET /portal HTTP/1.1" 301 0 "-" "-" 196.251.86.177 - - [11/May/2025:22:01:33 +0330] "GET /web HTTP/1.1" 301 0 "-" "-" 66.179.95.92 - - [11/May/2025:22:23:40 +0330] "GET /style.php HTTP/1.1" 403 6634 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" 45.90.217.58 - - [11/May/2025:22:35:40 +0330] "GET / HTTP/1.0" 301 8 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36" 149.88.106.158 - - [11/May/2025:22:40:26 +0330] "GET / HTTP/1.1" 301 0 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0" 31.43.185.65 - - [11/May/2025:23:39:49 +0330] "GET / HTTP/1.0" 301 0 "http://optimyar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Avast/131.0.0.0" 118.195.165.218 - - [11/May/2025:23:41:56 +0330] "GET / HTTP/1.1" 301 20 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1" 181.174.125.214 - - [12/May/2025:00:25:13 +0330] "GET /wp-login.php HTTP/1.1" 301 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:137.0) Gecko/20100101 Firefox/137.0" 62.33.138.39 - - [12/May/2025:00:40:06 +0330] "GET / HTTP/1.0" 301 0 "http://optimyar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 CCleaner/130.0.0.0" 62.33.138.39 - - [12/May/2025:00:40:16 +0330] "GET / HTTP/1.0" 301 0 "http://optimyar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 CCleaner/130.0.0.0" 62.33.138.39 - - [12/May/2025:00:40:22 +0330] "GET / HTTP/1.0" 301 0 "http://optimyar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 CCleaner/130.0.0.0" 62.33.138.39 - - [12/May/2025:00:40:12 +0330] "GET / HTTP/1.0" 301 0 "http://optimyar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 CCleaner/130.0.0.0" 156.242.35.10 - - [12/May/2025:00:48:45 +0330] "GET /vendor/phpunit/phpunit/LICENSE HTTP/1.1" 301 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" 156.242.35.10 - - [12/May/2025:00:48:50 +0330] "GET /vendor/phpunit/phpunit/src/Util/PHP/ HTTP/1.1" 301 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" 156.242.35.10 - - [12/May/2025:00:48:55 +0330] "GET /wp-login.php HTTP/1.1" 301 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"