~/logs/cloudflare.logs.prod
- 1740575813000000 172.18.0.1 - - [26/Feb/2025:13:16:53 +0000] "POST /rest/v1/site_pages HTTP/1.1" 409 223 "-" "python-httpx/0.27.2" event body
- 1740698518000000 172.18.0.1 - - [27/Feb/2025:23:21:58 +0000] "POST /rest/v1/site_pages HTTP/1.1" 400 100 "-" "python-httpx/0.27.2" event body
- 1740703443000000 172.18.0.1 - - [28/Feb/2025:00:44:03 +0000] "POST /rest/v1/site_pages HTTP/1.1" 409 229 "-" "python-httpx/0.27.2" event body
- 1740709897000000 172.18.0.1 - - [28/Feb/2025:02:31:37 +0000] "POST /rest/v1/site_pages HTTP/1.1" 409 229 "-" "python-httpx/0.27.2" event body
- 1741504804000000 27.158.245.195 - - [09/Mar/2025:07:20:04 +0000] "GET / HTTP/1.1" 401 197 "http://123.31.43.16:8000/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" event body
- 1741556480000000 116.104.68.207 - - [09/Mar/2025:21:41:20 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=system HTTP/1.1" 401 30 "-" "-" event body
- 1742072913000000 116.104.68.207 - - [15/Mar/2025:21:08:33 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=admin HTTP/1.1" 401 30 "-" "-" event body
- 1742080547000000 116.104.68.207 - - [15/Mar/2025:23:15:47 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1742080547000000 116.104.68.207 - - [15/Mar/2025:23:15:47 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1742989620000000 116.111.18.201 - - [26/Mar/2025:11:47:00 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=systems HTTP/1.1" 401 30 "-" "-" event body
- 1743327869000000 125.46.5.26 - - [30/Mar/2025:09:44:29 +0000] "GET / HTTP/1.1" 401 197 "http://123.31.43.16:8000/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" event body
- 1743327927000000 125.46.5.26 - - [30/Mar/2025:09:45:27 +0000] "GET / HTTP/1.1" 401 197 "http://123.31.43.16:8000/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" event body
- 1743327971000000 125.46.5.26 - - [30/Mar/2025:09:46:11 +0000] "GET / HTTP/1.1" 401 197 "http://123.31.43.16:8000/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" event body
- 1743565376000000 149.104.28.200 - - [02/Apr/2025:03:42:56 +0000] "GET /examples/jsp/snp/snoop.jsp HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2227.1 Safari/537.36" event body
- 1744684694000000 205.210.31.9 - - [15/Apr/2025:02:38:14 +0000] "GET / HTTP/1.1" 401 30 "-" "curl/7.68.0" event body
- 1744737142000000 116.104.79.251 - - [15/Apr/2025:17:12:22 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1744737144000000 116.104.79.251 - - [15/Apr/2025:17:12:24 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Olym HTTP/1.1" 401 30 "-" "-" event body
- 1744737144000000 116.104.79.251 - - [15/Apr/2025:17:12:24 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=hik HTTP/1.1" 401 30 "-" "-" event body
- 1744805732000000 116.104.79.251 - - [16/Apr/2025:12:15:32 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=1&random=10003239 HTTP/1.1" 401 30 "-" "-" event body
- 1744805732000000 116.104.79.251 - - [16/Apr/2025:12:15:32 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1744805736000000 116.104.79.251 - - [16/Apr/2025:12:15:36 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=view HTTP/1.1" 401 30 "-" "-" event body
- 1744805736000000 116.104.79.251 - - [16/Apr/2025:12:15:36 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=myst HTTP/1.1" 401 30 "-" "-" event body
- 1744870926000000 134.199.216.126 - - [17/Apr/2025:06:22:06 +0000] "GET /login HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" event body
- 1745270206000000 116.111.21.89 - - [21/Apr/2025:21:16:46 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=admin1&random=10012684 HTTP/1.1" 401 30 "-" "-" event body
- 1745270206000000 116.111.21.89 - - [21/Apr/2025:21:16:46 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1745300047000000 116.111.21.89 - - [22/Apr/2025:05:34:07 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1745382134000000 92.255.57.45 - - [23/Apr/2025:04:22:14 +0000] "GET /aaa9 HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36" event body
- 1745795076000000 193.174.89.19 - - [27/Apr/2025:23:04:36 +0000] "GET /metadata HTTP/1.1" 401 30 "-" "FH Muenster/Security-Scanner/fh-muenster.de" event body
- 1745866390000000 116.111.17.49 - - [28/Apr/2025:18:53:10 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Admin&random=10026261 HTTP/1.1" 401 30 "-" "-" event body
- 1745866395000000 116.111.17.49 - - [28/Apr/2025:18:53:15 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=admin1 HTTP/1.1" 401 30 "-" "-" event body
- 1745927962000000 116.111.17.49 - - [29/Apr/2025:11:59:22 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1746636649000000 206.168.34.38 - - [07/May/2025:16:50:49 +0000] "GET / HTTP/1.1" 401 30 "-" "-" event body
- 1746787439000000 152.53.248.175 - - [09/May/2025:10:43:59 +0000] "CONNECT www.google.com:443 HTTP/1.1" 400 12 "-" "-" event body
- 1746982609000000 171.242.235.176 - - [11/May/2025:16:56:49 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=user1 HTTP/1.1" 401 30 "-" "-" event body
- 1747167174000000 2025/05/13 20:12:54 [warn] 1115#0: *158984664 using uninitialized "kong_proxy_mode" variable while logging request, client: 171.242.235.176, server: kong, request: "GET /ISAPI/Security/sessionLogin/capabilities?username=1&random=10014238 HTTP/1.1", host: "123.31.43.16" event body
- 1747477241000000 171.242.235.176 - - [17/May/2025:10:20:41 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=systems HTTP/1.1" 401 30 "-" "-" event body
- 1747477246000000 171.242.235.176 - - [17/May/2025:10:20:46 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Olym HTTP/1.1" 401 30 "-" "-" event body
- 1747729234000000 171.242.235.176 - - [20/May/2025:08:20:34 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=admin&random=10014681 HTTP/1.1" 401 30 "-" "-" event body
- 1747729236000000 171.242.235.176 - - [20/May/2025:08:20:36 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1747729237000000 171.242.235.176 - - [20/May/2025:08:20:37 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=hik&random=10014688 HTTP/1.1" 401 30 "-" "-" event body
- 1747731834000000 171.242.235.176 - - [20/May/2025:09:03:54 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1747731838000000 171.242.235.176 - - [20/May/2025:09:03:58 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=myst HTTP/1.1" 401 30 "-" "-" event body
- 1747769633000000 138.197.201.5 - - [20/May/2025:19:33:53 +0000] "GET /samples/.git/config HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Debian; Linux x86_64; rv:122.0) Gecko/20100101 Firefox/122.0" event body
- 1747951956000000 103.238.235.121 - - [22/May/2025:22:12:36 +0000] "CONNECT www.google.com:443 HTTP/1.1" 400 12 "-" "-" event body
- 1748114776000000 116.111.24.146 - - [24/May/2025:19:26:16 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=operator HTTP/1.1" 401 30 "-" "-" event body
- 1748142204000000 185.226.196.25 - - [25/May/2025:03:03:24 +0000] "GET / HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36" event body
- 1748424241000000 116.111.26.129 - - [28/May/2025:09:24:01 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Admin&random=10023290 HTTP/1.1" 401 30 "-" "-" event body
- 1748424243000000 116.111.26.129 - - [28/May/2025:09:24:03 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=user HTTP/1.1" 401 30 "-" "-" event body
- 1748424243000000 116.111.26.129 - - [28/May/2025:09:24:03 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=view&random=10023296 HTTP/1.1" 401 30 "-" "-" event body
- 1748424245000000 116.111.26.129 - - [28/May/2025:09:24:05 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=myst HTTP/1.1" 401 30 "-" "-" event body
- 1748424245000000 116.111.26.129 - - [28/May/2025:09:24:05 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=view&random=10023299 HTTP/1.1" 401 30 "-" "-" event body
- 1748443532000000 68.69.186.106 - - [28/May/2025:14:45:32 +0000] "CONNECT www.google.com:443 HTTP/1.1" 400 12 "-" "-" event body
- 1748447319000000 103.238.235.121 - - [28/May/2025:15:48:39 +0000] "CONNECT www.google.com:443 HTTP/1.1" 400 12 "-" "-" event body
- 1748607366000000 116.99.53.137 - - [30/May/2025:12:16:06 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=system HTTP/1.1" 401 30 "-" "-" event body
- 1748607369000000 116.99.53.137 - - [30/May/2025:12:16:09 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Operator&random=10031485 HTTP/1.1" 401 30 "-" "-" event body
- 1748607369000000 116.99.53.137 - - [30/May/2025:12:16:09 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=user1&random=10031485 HTTP/1.1" 401 30 "-" "-" event body
- 1748607369000000 116.99.53.137 - - [30/May/2025:12:16:09 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Operator HTTP/1.1" 401 30 "-" "-" event body
- 1748607369000000 116.99.53.137 - - [30/May/2025:12:16:09 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Admin HTTP/1.1" 401 30 "-" "-" event body
- 1748607370000000 116.99.53.137 - - [30/May/2025:12:16:10 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Olym&random=10031485 HTTP/1.1" 401 30 "-" "-" event body
- 1748708427000000 206.168.34.115 - - [31/May/2025:16:20:27 +0000] "PRI * HTTP/2.0" 400 12 "-" "-" event body
- 1749129994000000 118.26.37.95 - - [05/Jun/2025:13:26:34 +0000] "GET / HTTP/1.1" 401 175 "http://171.253.123.160:10002" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36" event body
- 1749171380000000 172.236.228.115 - - [06/Jun/2025:00:56:20 +0000] "GET / HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" event body
- 1749266299000000 116.111.27.207 - - [07/Jun/2025:03:18:19 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1749266301000000 116.111.27.207 - - [07/Jun/2025:03:18:21 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1749338357000000 116.111.27.207 - - [07/Jun/2025:23:19:17 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1749404533000000 116.111.27.207 - - [08/Jun/2025:17:42:13 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1749523446000000 2025/06/10 02:44:06 [warn] 1110#0: *215564989 using uninitialized "kong_proxy_mode" variable while logging request, client: 3.143.33.63, server: kong, request: "GET / HTTP/1.1", host: "123.31.43.16:8443" event body
- 1750098206000000 149.86.227.49 - - [16/Jun/2025:18:23:26 +0000] "GET / HTTP/1.1" 401 30 "-" "Hello World/1.0" event body
- 1750323682000000 171.237.165.184 - - [19/Jun/2025:09:01:22 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Admin HTTP/1.1" 401 30 "-" "-" event body
- 1750323693000000 171.237.165.184 - - [19/Jun/2025:09:01:33 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Admin&random=10000177 HTTP/1.1" 401 30 "-" "-" event body
- 1750323711000000 171.237.165.184 - - [19/Jun/2025:09:01:51 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=operator HTTP/1.1" 401 30 "-" "-" event body
- 1750440557000000 171.237.165.184 - - [20/Jun/2025:17:29:17 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=user&random=10021358 HTTP/1.1" 401 30 "-" "-" event body
- 1750440562000000 171.237.165.184 - - [20/Jun/2025:17:29:22 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=1&random=10021374 HTTP/1.1" 401 30 "-" "-" event body
- 1750519431000000 162.142.125.212 - - [21/Jun/2025:15:23:51 +0000] "GET / HTTP/1.1" 401 30 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" event body
- 1750620865000000 171.237.165.184 - - [22/Jun/2025:19:34:25 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=hik HTTP/1.1" 401 30 "-" "-" event body
- 1750744818000000 171.237.165.184 - - [24/Jun/2025:06:00:18 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=user&random=10031906 HTTP/1.1" 401 30 "-" "-" event body
- 1751045067000000 171.237.165.79 - - [27/Jun/2025:17:24:27 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=system HTTP/1.1" 401 30 "-" "-" event body
- 1751045073000000 171.237.165.79 - - [27/Jun/2025:17:24:33 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=Admin HTTP/1.1" 401 30 "-" "-" event body
- 1751045079000000 171.237.165.79 - - [27/Jun/2025:17:24:39 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=operator&random=10029392 HTTP/1.1" 401 30 "-" "-" event body
- 1751045088000000 171.237.165.79 - - [27/Jun/2025:17:24:48 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1751045091000000 171.237.165.79 - - [27/Jun/2025:17:24:51 +0000] "POST /ISAPI/Security/sessionLogin HTTP/1.1" 401 30 "-" "-" event body
- 1751081510000000 139.162.3.141 - - [28/Jun/2025:03:31:50 +0000] "OPTIONS sip:nm SIP/2.0" 400 12 "-" "-" event body
- 1752488687000000 38.54.14.207 - - [14/Jul/2025:10:24:47 +0000] "POST /wp-admin/admin-ajax.php HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Knoppix; Linux i686; rv:127.0) Gecko/20100101 Firefox/127.0" event body
- 1752494210000000 38.54.14.207 - - [14/Jul/2025:11:56:50 +0000] "GET /model-versions/get-artifact?name=2zr9y1YmL7b0raW5EhezXiFNNC8&path=etc%2Fpasswd&version=1 HTTP/1.1" 401 30 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" event body
- 1753093488000000 172.232.159.13 - - [21/Jul/2025:10:24:48 +0000] "GET /?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 HTTP/1.1" 401 30 "-" "curl/7.54.0" event body
- 1754121334000000 193.46.255.153 - - [02/Aug/2025:07:55:34 +0000] "GET / HTTP/1.1" 401 30 "-" "Hello World/1.0" event body
- 1754933757000000 160.191.50.93 - - [11/Aug/2025:17:35:57 +0000] "CONNECT www.google.com:443 HTTP/1.1" 400 12 "-" "-" event body
- 1756136970000000 206.238.220.232 - - [25/Aug/2025:15:49:30 +0000] "GET /scp/login.php HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.3) AppleWebKit/614.31.14 (KHTML, like Gecko) Version/17.0.96 Safari/614.31.14" event body
- 1756140093000000 206.238.220.232 - - [25/Aug/2025:16:41:33 +0000] "PUT /wp-content/plugins/w3-total-cache/pub/sns.php HTTP/1.1" 401 30 "-" "Mozilla/5.0 (CentOS; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36" event body
- 1756158876000000 206.238.220.232 - - [25/Aug/2025:21:54:36 +0000] "GET /wp-content/uploads/wp_dndcf7_uploads/wpcf7-files/31mRpRfDOzbnTiygEhgM7r15ukX.svg HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4.1 Safari/605.1.15" event body
- 1756174846000000 206.238.220.232 - - [26/Aug/2025:02:20:46 +0000] "GET /ujpisfj HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Safari/107.0 Safari/537.36" event body
- 1756185078000000 206.238.220.232 - - [26/Aug/2025:05:11:18 +0000] "POST /ajax-api/2.0/mlflow/experiments/create HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_16) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.0.3 Safari/605.1.15" event body
- 1756193428000000 206.238.220.232 - - [26/Aug/2025:07:30:28 +0000] "POST /ajax-api/2.0/mlflow/experiments/delete HTTP/1.1" 401 30 "-" "Mozilla/5.0 (X11; Linux i686; rv:134.0) Gecko/20100101 Firefox/134.0" event body
- 1756197321000000 206.238.220.232 - - [26/Aug/2025:08:35:21 +0000] "POST /php/dal.php HTTP/1.1" 401 30 "-" "Mozilla/5.0 (SS; Linux i686; rv:121.0) Gecko/20100101 Firefox/121.0" event body
- 1756236523000000 206.238.220.232 - - [26/Aug/2025:19:28:43 +0000] "GET /?hhol28f0=opkwr2mp HTTP/1.1" 401 30 "-" "Mozilla/5.0 (SS; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36" event body
- 1756248911000000 206.238.220.232 - - [26/Aug/2025:22:55:11 +0000] "GET /nuclei.svg?shg40=x HTTP/1.1" 401 30 "-" "-" event body
- 1756258973000000 206.238.220.232 - - [27/Aug/2025:01:42:53 +0000] "GET /account/register HTTP/1.1" 401 30 "-" "Mozilla/5.0 (Debian; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36" event body
- 1756264711000000 206.238.220.232 - - [27/Aug/2025:03:18:31 +0000] "POST /v2/graphql-explorer HTTP/1.1" 401 30 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36" event body
- 1756769979000000 193.26.157.131 - - [01/Sep/2025:23:39:39 +0000] "CONNECT www.google.com:443 HTTP/1.1" 400 12 "-" "-" event body
- 1758019268000000 118.69.36.19 - - [16/Sep/2025:10:41:08 +0000] "GET /ISAPI/Security/sessionLogin/capabilities?username=admin&random=10030393 HTTP/1.1" 401 30 "-" "-" event body
random(tips): Match a field with regex (e.g. `m.browser:~"Firefox 5\d"`).