• This forum has a zero tolerance policy regarding spam. If you register here to publish advertising, your user account will be deleted without further questions.

Plesk Sicherheitsfragen

paine

New Member
Hallo liebe Leute,

Ich hatte ein Problem mit meinen Domains, bzw mit einer (DB wurde gelöscht) und bin nun dabei, mein vhost sicherer zu machen.

Ich habe fail2ban, plesk firewall und modsecurity installier und am laufen.

die firewall hab ich lediglich installiert weil ich von den einstellungen keine ahnung habe. reicht das so?
ich habe gesehen das ich die regelverwaltung aktivieren kann, darunter sind alle settings auf grün und alle zulassen, außer eingehender traffic und weitergeleiteter traffic... (eigentlich nicht gut oder?)

modsecurity ist ein und eine kostenlose regel ist aktiv (cosmos oder so hieß das)
fail2ban läuft mit allen jails an

nun bin ich in den erweiterungen auf folgendes gestoßen:
- Sentinel Anti-malware
- Juggernaut Security and Firewall
- Warden Anti-Spam & Viren Schutz

Ich habe schon länger mit Spam zu kämpfen der immer weider mein Postfach belastet.
Auch habe ich über eine Domain zahlreiche zugriffe pro tag, so dass mein vhost öfter Down geht (1-2 x pro monat mindestens)
Damit meine ich genauer:
eine WP installation die zwar mit ithemes gesichert ist, aber iwie wurde dennoch die DB gelöscht und die page war down.
Habe das testweise 1 monat so gelassen (die domain ohne inhalt) und siehe da es gab keine ausfälle mehr...

Ich gehe davon aus das meine domain regelmäßig durch bruteforce usw angegriffen wird (wie bei fast allen WP seiten im netz)


Daher möchte ich gern mein grundsystem generell sicherer machen und nicht nur die WP installation.

meine Frage:
die oben genannten erweiterungen, hat da jmd erfahrung? ich finde nichts genaueres im netz...
großer nachteil davon ist allerdings, das es monatlich 25 € kostet... da hab ich eigentlich gar keine lust drauf, weil ich das geld schlicht weg nicht habe!

Gibt es auch kostenfreie opensource erweiterungen die das selbe können oder meinem wunsch nach mehr sicherheit nachkommen?
Das wäre denke ich das einfachste, falls es aber nur manuell geht wäre ich bereit mit eurer hilfe es auch händisch zu machen.

Danke für Eure tipps
Gruß
 
Last edited:
bei einem sauber konfigurierten System, welches immer aktuell gehalten wird brauchst Du keines der oben genannten "Tools".
 
bei einem sauber konfigurierten System, welches immer aktuell gehalten wird brauchst Du keines der oben genannten "Tools".

Also aktuell ist es, habe in Plesk alle Updates und die neuste Version drauf die zur Verfügung steht.
Am System selbst (Linux) hab ich nichts konfiguriert, ist so wie es beim einrichten des vServers eingerichtet wurde.

Hast du da einen Leitfaden für mich?
Heute war schon wieder HTTP Status kritisch von 5:48 Uhr - 7:14 Uhr, erst dann war mein vHost wieder erreichbar
 
Last edited:
Hast du da einen Leitfaden für mich?
Für was genau brauchst du einen Leitfaden? Um einen Server abzusichern? Auf Verwundbarkeiten zu testen/prüfen/beheben?

Heute war schon wieder HTTP Status kritisch von 5:48 Uhr - 7:14 Uhr, erst dann war mein vHost wieder erreichbar
Und? Bedeutet was für dich?
Kann alles sein: Angriffe, zu viele Besucher, schlecht programmierte Webanwendung, lahmer SQL-Server, schlecht konfigurierte serverseitige Sprache etc.
 
Für was genau brauchst du einen Leitfaden? Um einen Server abzusichern? Auf Verwundbarkeiten zu testen/prüfen/beheben?

Und? Bedeutet was für dich?
Kann alles sein: Angriffe, zu viele Besucher, schlecht programmierte Webanwendung, lahmer SQL-Server, schlecht konfigurierte serverseitige Sprache etc.

zu 1.) Ja das wäre nett, absichern und zu testen wie wo was und was man dann machen sollte

zu 2.) das bedeutet das meine seite offline war, wie kann ich das auswerten was es war? auf meiner adresse kommen am tag 100-200 besucher, also nicht viel. webanwendungen läuft nur wordpress 2x, SQL Server kann ich mir nich vorstellen da nicht viel drauf ist...

Ich hab den vserver gemietet, geupdatet und wordpress installiert und eingerichtet mehr nicht und das ganze 2x.


Ich hab auch mal geschaut bei den sicherheitseinstellugnen in plesk, da steht Firewall aktivieren, sprich diese ist anscheinend gar nicht an.
Wenn ich die Regeln aber anschalte, ist alles auf Grün "alle zulassen" das ist ja auch nicht richtig dann oder?


Desweiteren hab ich mir die ModSecurity Logs mal angeschaut die letzten Tage, da gefallen mir viele Sachen nicht.
Wenn ich es richtig verstehe sind da verschiedene URL Angriffe drin, die von WP die config auslesen wollen usw ... bzw es wird versucht iwie verbindung zu bekommen, werd aber nicht ganz schlau drauß.

Wo gibts denn in plesk oder meinem vServer eine Log datei, die das speichert, wer was auf meinem vServer probiert`?
Könnte das ja hier posten und wie analysieren Stück für Stück, wäre das eine Idee?


Angefügt ein Maillog file. So wie es aussieht will ständig jmd auf mein mailserver. kann man das besser unterbinden?
Code:
Apr  5 05:20:08 SERVER postfix/smtpd[32216]: connect from unknown[141.98.10.141]
Apr  5 05:20:08 SERVER plesk_saslauthd[32219]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:20:08 SERVER plesk_saslauthd[32219]: privileges set to (107:113) (effective 107:113)
Apr  5 05:20:08 SERVER plesk_saslauthd[32219]: failed mail authentication attempt for user 'indiana' (password len=7)
Apr  5 05:20:08 SERVER postfix/smtpd[32216]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:20:08 SERVER postfix/smtpd[32216]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:20:38 SERVER plesk_saslauthd[32219]: select timeout, exiting
Apr  5 05:21:28 SERVER postfix/smtpd[32216]: connect from unknown[185.36.81.57]
Apr  5 05:21:29 SERVER plesk_saslauthd[32220]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:21:29 SERVER plesk_saslauthd[32220]: privileges set to (107:113) (effective 107:113)
Apr  5 05:21:29 SERVER plesk_saslauthd[32220]: failed mail authentication attempt for user 'michael' (password len=7)
Apr  5 05:21:29 SERVER postfix/smtpd[32216]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:21:29 SERVER postfix/smtpd[32216]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:21:59 SERVER plesk_saslauthd[32220]: select timeout, exiting
Apr  5 05:24:49 SERVER postfix/anvil[32218]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 05:20:08
Apr  5 05:24:49 SERVER postfix/anvil[32218]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 05:20:08
Apr  5 05:24:49 SERVER postfix/anvil[32218]: statistics: max cache size 1 at Apr  5 05:20:08
Apr  5 05:28:30 SERVER postfix/smtpd[32226]: connect from unknown[141.98.10.137]
Apr  5 05:28:31 SERVER plesk_saslauthd[32229]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:28:31 SERVER plesk_saslauthd[32229]: privileges set to (107:113) (effective 107:113)
Apr  5 05:28:31 SERVER plesk_saslauthd[32229]: failed mail authentication attempt for user '7654321' (password len=7)
Apr  5 05:28:31 SERVER postfix/smtpd[32226]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:28:31 SERVER postfix/smtpd[32226]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:29:01 SERVER plesk_saslauthd[32229]: select timeout, exiting
Apr  5 05:31:51 SERVER postfix/anvil[32228]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 05:28:30
Apr  5 05:31:51 SERVER postfix/anvil[32228]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 05:28:30
Apr  5 05:31:51 SERVER postfix/anvil[32228]: statistics: max cache size 1 at Apr  5 05:28:30
Apr  5 05:38:32 SERVER postfix/smtpd[32317]: connect from unknown[185.36.81.23]
Apr  5 05:38:32 SERVER plesk_saslauthd[32320]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:38:32 SERVER plesk_saslauthd[32320]: privileges set to (107:113) (effective 107:113)
Apr  5 05:38:32 SERVER plesk_saslauthd[32320]: failed mail authentication attempt for user 'chocolat' (password len=7)
Apr  5 05:38:32 SERVER postfix/smtpd[32317]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:38:32 SERVER postfix/smtpd[32317]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:39:02 SERVER plesk_saslauthd[32320]: select timeout, exiting
Apr  5 05:40:41 SERVER postfix/smtpd[32404]: connect from unknown[141.98.10.141]
Apr  5 05:40:42 SERVER plesk_saslauthd[32406]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:40:42 SERVER plesk_saslauthd[32406]: privileges set to (107:113) (effective 107:113)
Apr  5 05:40:42 SERVER plesk_saslauthd[32406]: failed mail authentication attempt for user '123123q' (password len=7)
Apr  5 05:40:42 SERVER postfix/smtpd[32404]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:40:42 SERVER postfix/smtpd[32404]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:41:12 SERVER plesk_saslauthd[32406]: select timeout, exiting
Apr  5 05:42:19 SERVER postfix/smtpd[32404]: connect from unknown[185.36.81.57]
Apr  5 05:42:19 SERVER plesk_saslauthd[32407]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:42:19 SERVER plesk_saslauthd[32407]: privileges set to (107:113) (effective 107:113)
Apr  5 05:42:19 SERVER plesk_saslauthd[32407]: failed mail authentication attempt for user 'tech19' (password len=7)
Apr  5 05:42:19 SERVER postfix/smtpd[32404]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:42:19 SERVER postfix/smtpd[32404]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:42:49 SERVER plesk_saslauthd[32407]: select timeout, exiting
Apr  5 05:45:40 SERVER postfix/anvil[32319]: statistics: max connection rate 1/60s for (smtp:185.36.81.23) at Apr  5 05:38:32
Apr  5 05:45:40 SERVER postfix/anvil[32319]: statistics: max connection count 1 for (smtp:185.36.81.23) at Apr  5 05:38:32
Apr  5 05:45:40 SERVER postfix/anvil[32319]: statistics: max cache size 1 at Apr  5 05:38:32
Apr  5 05:46:37 SERVER postfix/smtpd[32409]: connect from unknown[185.36.81.78]
Apr  5 05:46:37 SERVER plesk_saslauthd[32412]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:46:37 SERVER plesk_saslauthd[32412]: privileges set to (107:113) (effective 107:113)
Apr  5 05:46:37 SERVER plesk_saslauthd[32412]: failed mail authentication attempt for user 'bert' (password len=5)
Apr  5 05:46:37 SERVER postfix/smtpd[32409]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:46:37 SERVER postfix/smtpd[32409]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:47:07 SERVER plesk_saslauthd[32412]: select timeout, exiting
Apr  5 05:49:57 SERVER postfix/anvil[32411]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 05:46:37
Apr  5 05:49:57 SERVER postfix/anvil[32411]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 05:46:37
Apr  5 05:49:57 SERVER postfix/anvil[32411]: statistics: max cache size 1 at Apr  5 05:46:37
Apr  5 05:53:46 SERVER postfix/smtpd[32451]: connect from unknown[141.98.10.137]
Apr  5 05:53:46 SERVER plesk_saslauthd[32454]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 05:53:46 SERVER plesk_saslauthd[32454]: privileges set to (107:113) (effective 107:113)
Apr  5 05:53:46 SERVER plesk_saslauthd[32454]: failed mail authentication attempt for user '666666' (password len=7)
Apr  5 05:53:46 SERVER postfix/smtpd[32451]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 05:53:46 SERVER postfix/smtpd[32451]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 05:54:16 SERVER plesk_saslauthd[32454]: select timeout, exiting
Apr  5 05:57:06 SERVER postfix/anvil[32453]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 05:53:46
Apr  5 05:57:06 SERVER postfix/anvil[32453]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 05:53:46
Apr  5 05:57:06 SERVER postfix/anvil[32453]: statistics: max cache size 1 at Apr  5 05:53:46
Apr  5 06:01:15 SERVER postfix/smtpd[32685]: connect from unknown[141.98.10.141]
Apr  5 06:01:15 SERVER plesk_saslauthd[32688]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:01:15 SERVER plesk_saslauthd[32688]: privileges set to (107:113) (effective 107:113)
Apr  5 06:01:15 SERVER plesk_saslauthd[32688]: failed mail authentication attempt for user 'sophia' (password len=7)
Apr  5 06:01:15 SERVER postfix/smtpd[32685]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:01:15 SERVER postfix/smtpd[32685]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:01:45 SERVER plesk_saslauthd[32688]: select timeout, exiting
Apr  5 06:03:11 SERVER postfix/smtpd[32691]: connect from unknown[185.36.81.57]
Apr  5 06:03:11 SERVER plesk_saslauthd[32693]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:03:11 SERVER plesk_saslauthd[32693]: privileges set to (107:113) (effective 107:113)
Apr  5 06:03:11 SERVER plesk_saslauthd[32693]: failed mail authentication attempt for user 'dream' (password len=7)
Apr  5 06:03:11 SERVER postfix/smtpd[32691]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:03:11 SERVER postfix/smtpd[32691]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:03:41 SERVER plesk_saslauthd[32693]: select timeout, exiting
Apr  5 06:06:31 SERVER postfix/anvil[32687]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 06:01:15
Apr  5 06:06:31 SERVER postfix/anvil[32687]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 06:01:15
Apr  5 06:06:31 SERVER postfix/anvil[32687]: statistics: max cache size 1 at Apr  5 06:01:15
Apr  5 06:09:50 SERVER postfix/smtpd[403]: connect from unknown[185.36.81.23]
Apr  5 06:09:51 SERVER plesk_saslauthd[406]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:09:51 SERVER plesk_saslauthd[406]: privileges set to (107:113) (effective 107:113)
Apr  5 06:09:51 SERVER plesk_saslauthd[406]: failed mail authentication attempt for user 'photo' (password len=7)
Apr  5 06:09:51 SERVER postfix/smtpd[403]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:09:51 SERVER postfix/smtpd[403]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:10:21 SERVER plesk_saslauthd[406]: select timeout, exiting
Apr  5 06:13:11 SERVER postfix/anvil[405]: statistics: max connection rate 1/60s for (smtp:185.36.81.23) at Apr  5 06:09:50
Apr  5 06:13:11 SERVER postfix/anvil[405]: statistics: max connection count 1 for (smtp:185.36.81.23) at Apr  5 06:09:50
Apr  5 06:13:11 SERVER postfix/anvil[405]: statistics: max cache size 1 at Apr  5 06:09:50
Apr  5 06:18:34 SERVER postfix/smtpd[419]: connect from unknown[185.36.81.78]
Apr  5 06:18:34 SERVER plesk_saslauthd[422]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:18:34 SERVER plesk_saslauthd[422]: privileges set to (107:113) (effective 107:113)
Apr  5 06:18:34 SERVER plesk_saslauthd[422]: failed mail authentication attempt for user 'wildone' (password len=8)
Apr  5 06:18:34 SERVER postfix/smtpd[419]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:18:34 SERVER postfix/smtpd[419]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:19:00 SERVER postfix/smtpd[419]: connect from unknown[141.98.10.137]
Apr  5 06:19:00 SERVER plesk_saslauthd[422]: failed mail authentication attempt for user 'svetik' (password len=7)
Apr  5 06:19:00 SERVER postfix/smtpd[419]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:19:00 SERVER postfix/smtpd[419]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:19:30 SERVER plesk_saslauthd[422]: select timeout, exiting
Apr  5 06:21:47 SERVER postfix/smtpd[470]: connect from unknown[141.98.10.141]
Apr  5 06:21:47 SERVER plesk_saslauthd[472]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:21:47 SERVER plesk_saslauthd[472]: privileges set to (107:113) (effective 107:113)
Apr  5 06:21:47 SERVER plesk_saslauthd[472]: failed mail authentication attempt for user 'goldstar' (password len=7)
Apr  5 06:21:47 SERVER postfix/smtpd[470]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:21:47 SERVER postfix/smtpd[470]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:22:17 SERVER plesk_saslauthd[472]: select timeout, exiting
Apr  5 06:24:02 SERVER postfix/smtpd[477]: connect from unknown[185.36.81.57]
Apr  5 06:24:02 SERVER plesk_saslauthd[479]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:24:02 SERVER plesk_saslauthd[479]: privileges set to (107:113) (effective 107:113)
Apr  5 06:24:02 SERVER plesk_saslauthd[479]: failed mail authentication attempt for user 'bootys' (password len=7)
Apr  5 06:24:02 SERVER postfix/smtpd[477]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:24:03 SERVER postfix/smtpd[477]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:24:33 SERVER plesk_saslauthd[479]: select timeout, exiting
Apr  5 06:27:23 SERVER postfix/anvil[421]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 06:18:34
Apr  5 06:27:23 SERVER postfix/anvil[421]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 06:18:34
Apr  5 06:27:23 SERVER postfix/anvil[421]: statistics: max cache size 2 at Apr  5 06:19:00
Apr  5 06:36:20 SERVER postfix/smtpd[573]: warning: hostname zg-0312c-155.stretchoid.com does not resolve to address 162.243.129.240: Name or service not known
Apr  5 06:36:20 SERVER postfix/smtpd[573]: connect from unknown[162.243.129.240]
Apr  5 06:36:20 SERVER postfix/smtpd[573]: SSL_accept error from unknown[162.243.129.240]: -1
Apr  5 06:36:20 SERVER postfix/smtpd[573]: warning: TLS library problem: error:1408F10B:SSL routines:ssl3_get_record:wrong version number:../ssl/record/ssl3_record.c:332:
Apr  5 06:36:20 SERVER postfix/smtpd[573]: lost connection after CONNECT from unknown[162.243.129.240]
Apr  5 06:36:20 SERVER postfix/smtpd[573]: disconnect from unknown[162.243.129.240] commands=0/0
Apr  5 06:41:09 SERVER postfix/smtpd[672]: connect from unknown[185.36.81.23]
Apr  5 06:41:09 SERVER plesk_saslauthd[675]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:41:09 SERVER plesk_saslauthd[675]: privileges set to (107:113) (effective 107:113)
Apr  5 06:41:09 SERVER plesk_saslauthd[675]: failed mail authentication attempt for user 'luckyone' (password len=7)
Apr  5 06:41:09 SERVER postfix/smtpd[672]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:41:09 SERVER postfix/smtpd[672]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:41:39 SERVER plesk_saslauthd[675]: select timeout, exiting
Apr  5 06:42:22 SERVER postfix/smtpd[672]: connect from unknown[141.98.10.141]
Apr  5 06:42:22 SERVER plesk_saslauthd[677]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:42:22 SERVER plesk_saslauthd[677]: privileges set to (107:113) (effective 107:113)
Apr  5 06:42:22 SERVER plesk_saslauthd[677]: failed mail authentication attempt for user 'nebraska' (password len=7)
Apr  5 06:42:22 SERVER postfix/smtpd[672]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:42:22 SERVER postfix/smtpd[672]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:42:52 SERVER plesk_saslauthd[677]: select timeout, exiting
Apr  5 06:44:15 SERVER postfix/smtpd[678]: connect from unknown[141.98.10.137]
Apr  5 06:44:15 SERVER plesk_saslauthd[680]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:44:15 SERVER plesk_saslauthd[680]: privileges set to (107:113) (effective 107:113)
Apr  5 06:44:15 SERVER plesk_saslauthd[680]: failed mail authentication attempt for user 'hhhhhh' (password len=7)
Apr  5 06:44:15 SERVER postfix/smtpd[678]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:44:15 SERVER postfix/smtpd[678]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:44:45 SERVER plesk_saslauthd[680]: select timeout, exiting
Apr  5 06:44:55 SERVER postfix/smtpd[678]: connect from unknown[185.36.81.57]
Apr  5 06:44:55 SERVER plesk_saslauthd[731]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:44:55 SERVER plesk_saslauthd[731]: privileges set to (107:113) (effective 107:113)
Apr  5 06:44:55 SERVER plesk_saslauthd[731]: failed mail authentication attempt for user 'stockton' (password len=7)
Apr  5 06:44:55 SERVER postfix/smtpd[678]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:44:55 SERVER postfix/smtpd[678]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:45:25 SERVER plesk_saslauthd[731]: select timeout, exiting
Apr  5 06:48:16 SERVER postfix/anvil[674]: statistics: max connection rate 1/60s for (smtp:185.36.81.23) at Apr  5 06:41:09
Apr  5 06:48:16 SERVER postfix/anvil[674]: statistics: max connection count 1 for (smtp:185.36.81.23) at Apr  5 06:41:09
Apr  5 06:48:16 SERVER postfix/anvil[674]: statistics: max cache size 2 at Apr  5 06:44:55
Apr  5 06:50:33 SERVER postfix/smtpd[772]: connect from unknown[185.36.81.78]
Apr  5 06:50:33 SERVER plesk_saslauthd[775]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 06:50:33 SERVER plesk_saslauthd[775]: privileges set to (107:113) (effective 107:113)
Apr  5 06:50:33 SERVER plesk_saslauthd[775]: failed mail authentication attempt for user 'hang' (password len=5)
Apr  5 06:50:33 SERVER postfix/smtpd[772]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 06:50:34 SERVER postfix/smtpd[772]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 06:51:04 SERVER plesk_saslauthd[775]: select timeout, exiting
Apr  5 06:53:54 SERVER postfix/anvil[774]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 06:50:33
Apr  5 06:53:54 SERVER postfix/anvil[774]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 06:50:33
Apr  5 06:53:54 SERVER postfix/anvil[774]: statistics: max cache size 1 at Apr  5 06:50:33
Apr  5 07:02:56 SERVER postfix/smtpd[1045]: connect from unknown[141.98.10.141]
Apr  5 07:02:56 SERVER plesk_saslauthd[1048]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:02:56 SERVER plesk_saslauthd[1048]: privileges set to (107:113) (effective 107:113)
Apr  5 07:02:56 SERVER plesk_saslauthd[1048]: failed mail authentication attempt for user 'unicornio' (password len=7)
Apr  5 07:02:56 SERVER postfix/smtpd[1045]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:02:56 SERVER postfix/smtpd[1045]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:03:26 SERVER plesk_saslauthd[1048]: select timeout, exiting
Apr  5 07:05:48 SERVER postfix/smtpd[1082]: connect from unknown[185.36.81.57]
Apr  5 07:05:48 SERVER plesk_saslauthd[1084]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:05:48 SERVER plesk_saslauthd[1084]: privileges set to (107:113) (effective 107:113)
Apr  5 07:05:48 SERVER plesk_saslauthd[1084]: failed mail authentication attempt for user '18071989' (password len=7)
Apr  5 07:05:48 SERVER postfix/smtpd[1082]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:05:48 SERVER postfix/smtpd[1082]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:06:18 SERVER plesk_saslauthd[1084]: select timeout, exiting
Apr  5 07:09:08 SERVER postfix/anvil[1047]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 07:02:56
Apr  5 07:09:08 SERVER postfix/anvil[1047]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 07:02:56
Apr  5 07:09:08 SERVER postfix/anvil[1047]: statistics: max cache size 1 at Apr  5 07:02:56
Apr  5 07:09:35 SERVER postfix/smtpd[1219]: connect from unknown[141.98.10.137]
Apr  5 07:09:35 SERVER plesk_saslauthd[1222]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:09:35 SERVER plesk_saslauthd[1222]: privileges set to (107:113) (effective 107:113)
Apr  5 07:09:35 SERVER plesk_saslauthd[1222]: failed mail authentication attempt for user 'tech22' (password len=7)
Apr  5 07:09:35 SERVER postfix/smtpd[1219]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:09:35 SERVER postfix/smtpd[1219]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:10:05 SERVER plesk_saslauthd[1222]: select timeout, exiting
Apr  5 07:12:27 SERVER postfix/smtpd[1227]: connect from unknown[185.36.81.23]
Apr  5 07:12:27 SERVER plesk_saslauthd[1229]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:12:27 SERVER plesk_saslauthd[1229]: privileges set to (107:113) (effective 107:113)
Apr  5 07:12:27 SERVER plesk_saslauthd[1229]: failed mail authentication attempt for user 'grapes' (password len=7)
Apr  5 07:12:27 SERVER postfix/smtpd[1227]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:12:27 SERVER postfix/smtpd[1227]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:12:57 SERVER plesk_saslauthd[1229]: select timeout, exiting
Apr  5 07:15:47 SERVER postfix/anvil[1221]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 07:09:35
Apr  5 07:15:47 SERVER postfix/anvil[1221]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 07:09:35
Apr  5 07:15:47 SERVER postfix/anvil[1221]: statistics: max cache size 1 at Apr  5 07:09:35
Apr  5 07:22:29 SERVER postfix/smtpd[1268]: connect from unknown[185.36.81.78]
Apr  5 07:22:30 SERVER plesk_saslauthd[1271]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:22:30 SERVER plesk_saslauthd[1271]: privileges set to (107:113) (effective 107:113)
Apr  5 07:22:30 SERVER plesk_saslauthd[1271]: failed mail authentication attempt for user 'dogdog' (password len=7)
Apr  5 07:22:30 SERVER postfix/smtpd[1268]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:22:30 SERVER postfix/smtpd[1268]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:23:00 SERVER plesk_saslauthd[1271]: select timeout, exiting
Apr  5 07:23:28 SERVER postfix/smtpd[1268]: connect from unknown[141.98.10.141]
Apr  5 07:23:28 SERVER plesk_saslauthd[1275]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:23:28 SERVER plesk_saslauthd[1275]: privileges set to (107:113) (effective 107:113)
Apr  5 07:23:28 SERVER plesk_saslauthd[1275]: failed mail authentication attempt for user 'bolton' (password len=7)
Apr  5 07:23:28 SERVER postfix/smtpd[1268]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:23:28 SERVER postfix/smtpd[1268]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:23:58 SERVER plesk_saslauthd[1275]: select timeout, exiting
Apr  5 07:26:37 SERVER postfix/smtpd[1277]: connect from unknown[185.36.81.57]
Apr  5 07:26:37 SERVER plesk_saslauthd[1279]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:26:37 SERVER plesk_saslauthd[1279]: privileges set to (107:113) (effective 107:113)
Apr  5 07:26:37 SERVER plesk_saslauthd[1279]: failed mail authentication attempt for user 'gordon' (password len=7)
Apr  5 07:26:37 SERVER postfix/smtpd[1277]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:26:37 SERVER postfix/smtpd[1277]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:27:07 SERVER plesk_saslauthd[1279]: select timeout, exiting
Apr  5 07:29:57 SERVER postfix/anvil[1270]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 07:22:29
Apr  5 07:29:57 SERVER postfix/anvil[1270]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 07:22:29
Apr  5 07:29:57 SERVER postfix/anvil[1270]: statistics: max cache size 2 at Apr  5 07:23:28
Apr  5 07:34:49 SERVER postfix/smtpd[1370]: connect from unknown[141.98.10.137]
Apr  5 07:34:50 SERVER plesk_saslauthd[1373]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:34:50 SERVER plesk_saslauthd[1373]: privileges set to (107:113) (effective 107:113)
Apr  5 07:34:50 SERVER plesk_saslauthd[1373]: failed mail authentication attempt for user 'brady' (password len=7)
Apr  5 07:34:50 SERVER postfix/smtpd[1370]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:34:50 SERVER postfix/smtpd[1370]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:35:20 SERVER plesk_saslauthd[1373]: select timeout, exiting
Apr  5 07:38:10 SERVER postfix/anvil[1372]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 07:34:49
Apr  5 07:38:10 SERVER postfix/anvil[1372]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 07:34:49
Apr  5 07:38:10 SERVER postfix/anvil[1372]: statistics: max cache size 1 at Apr  5 07:34:49
Apr  5 07:43:37 SERVER postfix/smtpd[1456]: connect from unknown[141.98.10.141]
Apr  5 07:43:38 SERVER plesk_saslauthd[1459]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:43:38 SERVER plesk_saslauthd[1459]: privileges set to (107:113) (effective 107:113)
Apr  5 07:43:38 SERVER plesk_saslauthd[1459]: failed mail authentication attempt for user 'destin' (password len=7)
Apr  5 07:43:38 SERVER postfix/smtpd[1456]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:43:38 SERVER postfix/smtpd[1456]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:43:45 SERVER postfix/smtpd[1456]: connect from unknown[185.36.81.23]
Apr  5 07:43:45 SERVER plesk_saslauthd[1459]: failed mail authentication attempt for user 'makaveli' (password len=7)
Apr  5 07:43:45 SERVER postfix/smtpd[1456]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:43:45 SERVER postfix/smtpd[1456]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:44:15 SERVER plesk_saslauthd[1459]: select timeout, exiting
Apr  5 07:47:05 SERVER postfix/anvil[1458]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 07:43:37
Apr  5 07:47:05 SERVER postfix/anvil[1458]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 07:43:37
Apr  5 07:47:05 SERVER postfix/anvil[1458]: statistics: max cache size 2 at Apr  5 07:43:45
Apr  5 07:47:25 SERVER postfix/smtpd[1462]: connect from unknown[185.36.81.57]
Apr  5 07:47:25 SERVER plesk_saslauthd[1465]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:47:25 SERVER plesk_saslauthd[1465]: privileges set to (107:113) (effective 107:113)
Apr  5 07:47:25 SERVER plesk_saslauthd[1465]: failed mail authentication attempt for user 'berlin' (password len=7)
Apr  5 07:47:25 SERVER postfix/smtpd[1462]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:47:25 SERVER postfix/smtpd[1462]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:47:55 SERVER plesk_saslauthd[1465]: select timeout, exiting
Apr  5 07:50:45 SERVER postfix/anvil[1464]: statistics: max connection rate 1/60s for (smtp:185.36.81.57) at Apr  5 07:47:25
Apr  5 07:50:45 SERVER postfix/anvil[1464]: statistics: max connection count 1 for (smtp:185.36.81.57) at Apr  5 07:47:25
Apr  5 07:50:45 SERVER postfix/anvil[1464]: statistics: max cache size 1 at Apr  5 07:47:25
Apr  5 07:54:28 SERVER postfix/smtpd[1511]: connect from unknown[185.36.81.78]
Apr  5 07:54:29 SERVER plesk_saslauthd[1514]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:54:29 SERVER plesk_saslauthd[1514]: privileges set to (107:113) (effective 107:113)
Apr  5 07:54:29 SERVER plesk_saslauthd[1514]: failed mail authentication attempt for user '02091982' (password len=9)
Apr  5 07:54:29 SERVER postfix/smtpd[1511]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:54:29 SERVER postfix/smtpd[1511]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 07:54:59 SERVER plesk_saslauthd[1514]: select timeout, exiting
Apr  5 07:57:49 SERVER postfix/anvil[1513]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 07:54:28
Apr  5 07:57:49 SERVER postfix/anvil[1513]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 07:54:28
Apr  5 07:57:49 SERVER postfix/anvil[1513]: statistics: max cache size 1 at Apr  5 07:54:28
Apr  5 07:59:45 SERVER postfix/smtpd[1736]: connect from unknown[141.98.10.137]
Apr  5 07:59:45 SERVER plesk_saslauthd[1739]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 07:59:45 SERVER plesk_saslauthd[1739]: privileges set to (107:113) (effective 107:113)
Apr  5 07:59:45 SERVER plesk_saslauthd[1739]: failed mail authentication attempt for user '12021991' (password len=7)
Apr  5 07:59:45 SERVER postfix/smtpd[1736]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 07:59:45 SERVER postfix/smtpd[1736]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:00:15 SERVER plesk_saslauthd[1739]: select timeout, exiting
Apr  5 08:03:06 SERVER postfix/anvil[1738]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 07:59:45
Apr  5 08:03:06 SERVER postfix/anvil[1738]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 07:59:45
Apr  5 08:03:06 SERVER postfix/anvil[1738]: statistics: max cache size 1 at Apr  5 07:59:45
Apr  5 08:04:16 SERVER postfix/smtpd[1781]: connect from unknown[141.98.10.141]
Apr  5 08:04:16 SERVER plesk_saslauthd[1784]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:04:16 SERVER plesk_saslauthd[1784]: privileges set to (107:113) (effective 107:113)
Apr  5 08:04:16 SERVER plesk_saslauthd[1784]: failed mail authentication attempt for user '01051990' (password len=7)
Apr  5 08:04:16 SERVER postfix/smtpd[1781]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:04:16 SERVER postfix/smtpd[1781]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:04:46 SERVER plesk_saslauthd[1784]: select timeout, exiting
Apr  5 08:07:36 SERVER postfix/anvil[1783]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 08:04:16
Apr  5 08:07:36 SERVER postfix/anvil[1783]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 08:04:16
Apr  5 08:07:36 SERVER postfix/anvil[1783]: statistics: max cache size 1 at Apr  5 08:04:16
Apr  5 08:08:15 SERVER postfix/smtpd[1837]: connect from unknown[185.36.81.57]
Apr  5 08:08:15 SERVER plesk_saslauthd[1840]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:08:15 SERVER plesk_saslauthd[1840]: privileges set to (107:113) (effective 107:113)
Apr  5 08:08:15 SERVER plesk_saslauthd[1840]: failed mail authentication attempt for user 'ilovegod' (password len=7)
Apr  5 08:08:15 SERVER postfix/smtpd[1837]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:08:15 SERVER postfix/smtpd[1837]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:08:45 SERVER plesk_saslauthd[1840]: select timeout, exiting
Apr  5 08:11:35 SERVER postfix/anvil[1839]: statistics: max connection rate 1/60s for (smtp:185.36.81.57) at Apr  5 08:08:15
Apr  5 08:11:35 SERVER postfix/anvil[1839]: statistics: max connection count 1 for (smtp:185.36.81.57) at Apr  5 08:08:15
Apr  5 08:11:35 SERVER postfix/anvil[1839]: statistics: max cache size 1 at Apr  5 08:08:15
Apr  5 08:15:05 SERVER postfix/smtpd[1925]: connect from unknown[185.36.81.23]
Apr  5 08:15:06 SERVER plesk_saslauthd[1928]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:15:06 SERVER plesk_saslauthd[1928]: privileges set to (107:113) (effective 107:113)
Apr  5 08:15:06 SERVER plesk_saslauthd[1928]: failed mail authentication attempt for user 'phat' (password len=7)
Apr  5 08:15:06 SERVER postfix/smtpd[1925]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:15:06 SERVER postfix/smtpd[1925]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:15:36 SERVER plesk_saslauthd[1928]: select timeout, exiting
Apr  5 08:18:26 SERVER postfix/anvil[1927]: statistics: max connection rate 1/60s for (smtp:185.36.81.23) at Apr  5 08:15:05
Apr  5 08:18:26 SERVER postfix/anvil[1927]: statistics: max connection count 1 for (smtp:185.36.81.23) at Apr  5 08:15:05
Apr  5 08:18:26 SERVER postfix/anvil[1927]: statistics: max cache size 1 at Apr  5 08:15:05
Apr  5 08:24:07 SERVER postfix/smtpd[1973]: connect from unknown[141.98.10.141]
Apr  5 08:24:07 SERVER plesk_saslauthd[1976]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:24:07 SERVER plesk_saslauthd[1976]: privileges set to (107:113) (effective 107:113)
Apr  5 08:24:07 SERVER plesk_saslauthd[1976]: failed mail authentication attempt for user 'banan' (password len=7)
Apr  5 08:24:07 SERVER postfix/smtpd[1973]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:24:08 SERVER postfix/smtpd[1973]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:24:38 SERVER plesk_saslauthd[1976]: select timeout, exiting
Apr  5 08:24:51 SERVER postfix/smtpd[1973]: connect from unknown[141.98.10.137]
Apr  5 08:24:51 SERVER plesk_saslauthd[1977]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:24:51 SERVER plesk_saslauthd[1977]: privileges set to (107:113) (effective 107:113)
Apr  5 08:24:51 SERVER plesk_saslauthd[1977]: failed mail authentication attempt for user '1234zxcv' (password len=7)
Apr  5 08:24:51 SERVER postfix/smtpd[1973]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:24:51 SERVER postfix/smtpd[1973]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:25:21 SERVER plesk_saslauthd[1977]: select timeout, exiting
Apr  5 08:26:26 SERVER postfix/smtpd[1973]: connect from unknown[185.36.81.78]
Apr  5 08:26:27 SERVER plesk_saslauthd[1978]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:26:27 SERVER plesk_saslauthd[1978]: privileges set to (107:113) (effective 107:113)
Apr  5 08:26:27 SERVER plesk_saslauthd[1978]: failed mail authentication attempt for user 'niners' (password len=7)
Apr  5 08:26:27 SERVER postfix/smtpd[1973]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:26:27 SERVER postfix/smtpd[1973]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:26:56 SERVER plesk_saslauthd[1978]: select timeout, exiting
Apr  5 08:29:04 SERVER postfix/smtpd[1979]: connect from unknown[185.36.81.57]
Apr  5 08:29:04 SERVER plesk_saslauthd[1981]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:29:04 SERVER plesk_saslauthd[1981]: privileges set to (107:113) (effective 107:113)
Apr  5 08:29:04 SERVER plesk_saslauthd[1981]: failed mail authentication attempt for user 'sexx' (password len=7)
Apr  5 08:29:04 SERVER postfix/smtpd[1979]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:29:04 SERVER postfix/smtpd[1979]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:29:34 SERVER plesk_saslauthd[1981]: select timeout, exiting
Apr  5 08:32:24 SERVER postfix/anvil[1975]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 08:24:07
Apr  5 08:32:24 SERVER postfix/anvil[1975]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 08:24:07
Apr  5 08:32:24 SERVER postfix/anvil[1975]: statistics: max cache size 2 at Apr  5 08:24:51
Apr  5 08:33:01 SERVER postfix/smtpd[2038]: connect from ns3167284.ip-51-178-78.eu[51.178.78.153]
Apr  5 08:33:01 SERVER postfix/smtpd[2038]: lost connection after CONNECT from ns3167284.ip-51-178-78.eu[51.178.78.153]
Apr  5 08:33:01 SERVER postfix/smtpd[2038]: disconnect from ns3167284.ip-51-178-78.eu[51.178.78.153] commands=0/0
Apr  5 08:36:21 SERVER postfix/anvil[2040]: statistics: max connection rate 1/60s for (smtps:51.178.78.153) at Apr  5 08:33:01
Apr  5 08:36:21 SERVER postfix/anvil[2040]: statistics: max connection count 1 for (smtps:51.178.78.153) at Apr  5 08:33:01
Apr  5 08:36:21 SERVER postfix/anvil[2040]: statistics: max cache size 1 at Apr  5 08:33:01
Apr  5 08:41:37 SERVER dovecot: pop3-login: Disconnected: Too many bad commands (no auth attempts in 1 secs): user=<>, rip=51.178.78.153, lip=81.169.150.137, session=<CAkycYWiso0zsk6Z>
Apr  5 08:44:38 SERVER postfix/smtpd[2165]: connect from unknown[141.98.10.141]
Apr  5 08:44:38 SERVER plesk_saslauthd[2168]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:44:38 SERVER plesk_saslauthd[2168]: privileges set to (107:113) (effective 107:113)
Apr  5 08:44:38 SERVER plesk_saslauthd[2168]: failed mail authentication attempt for user 'five' (password len=7)
Apr  5 08:44:38 SERVER postfix/smtpd[2165]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:44:38 SERVER postfix/smtpd[2165]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:45:08 SERVER plesk_saslauthd[2168]: select timeout, exiting
Apr  5 08:46:23 SERVER postfix/smtpd[2169]: connect from unknown[185.36.81.23]
Apr  5 08:46:23 SERVER plesk_saslauthd[2171]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:46:23 SERVER plesk_saslauthd[2171]: privileges set to (107:113) (effective 107:113)
Apr  5 08:46:23 SERVER plesk_saslauthd[2171]: failed mail authentication attempt for user 'zebra' (password len=7)
Apr  5 08:46:23 SERVER postfix/smtpd[2169]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:46:23 SERVER postfix/smtpd[2169]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:46:53 SERVER plesk_saslauthd[2171]: select timeout, exiting
Apr  5 08:49:44 SERVER postfix/anvil[2167]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 08:44:38
Apr  5 08:49:44 SERVER postfix/anvil[2167]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 08:44:38
Apr  5 08:49:44 SERVER postfix/anvil[2167]: statistics: max cache size 1 at Apr  5 08:44:38
Apr  5 08:49:51 SERVER postfix/smtpd[2208]: connect from unknown[185.36.81.57]
Apr  5 08:49:52 SERVER plesk_saslauthd[2211]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:49:52 SERVER plesk_saslauthd[2211]: privileges set to (107:113) (effective 107:113)
Apr  5 08:49:52 SERVER plesk_saslauthd[2211]: failed mail authentication attempt for user 'doodle' (password len=7)
Apr  5 08:49:52 SERVER postfix/smtpd[2208]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:49:52 SERVER postfix/smtpd[2208]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:50:08 SERVER postfix/smtpd[2208]: connect from unknown[141.98.10.137]
Apr  5 08:50:08 SERVER plesk_saslauthd[2211]: failed mail authentication attempt for user 'parol' (password len=7)
Apr  5 08:50:08 SERVER postfix/smtpd[2208]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:50:08 SERVER postfix/smtpd[2208]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:50:38 SERVER plesk_saslauthd[2211]: select timeout, exiting
Apr  5 08:53:28 SERVER postfix/anvil[2210]: statistics: max connection rate 1/60s for (smtp:185.36.81.57) at Apr  5 08:49:52
Apr  5 08:53:28 SERVER postfix/anvil[2210]: statistics: max connection count 1 for (smtp:185.36.81.57) at Apr  5 08:49:52
Apr  5 08:53:28 SERVER postfix/anvil[2210]: statistics: max cache size 2 at Apr  5 08:50:08
Apr  5 08:58:25 SERVER postfix/smtpd[2238]: connect from unknown[185.36.81.78]
Apr  5 08:58:25 SERVER plesk_saslauthd[2241]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 08:58:25 SERVER plesk_saslauthd[2241]: privileges set to (107:113) (effective 107:113)
Apr  5 08:58:25 SERVER plesk_saslauthd[2241]: failed mail authentication attempt for user 'evgeniy' (password len=8)
Apr  5 08:58:25 SERVER postfix/smtpd[2238]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 08:58:25 SERVER postfix/smtpd[2238]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 08:58:55 SERVER plesk_saslauthd[2241]: select timeout, exiting
Apr  5 09:01:45 SERVER postfix/anvil[2240]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 08:58:25
Apr  5 09:01:45 SERVER postfix/anvil[2240]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 08:58:25
Apr  5 09:01:45 SERVER postfix/anvil[2240]: statistics: max cache size 1 at Apr  5 08:58:25
Apr  5 09:05:08 SERVER postfix/smtpd[2483]: connect from unknown[141.98.10.141]
Apr  5 09:05:08 SERVER plesk_saslauthd[2486]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:05:08 SERVER plesk_saslauthd[2486]: privileges set to (107:113) (effective 107:113)
Apr  5 09:05:08 SERVER plesk_saslauthd[2486]: failed mail authentication attempt for user 'river' (password len=7)
Apr  5 09:05:08 SERVER postfix/smtpd[2483]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:05:08 SERVER postfix/smtpd[2483]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:05:38 SERVER plesk_saslauthd[2486]: select timeout, exiting
Apr  5 09:08:28 SERVER postfix/anvil[2485]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 09:05:08
Apr  5 09:08:28 SERVER postfix/anvil[2485]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 09:05:08
Apr  5 09:08:28 SERVER postfix/anvil[2485]: statistics: max cache size 1 at Apr  5 09:05:08
Apr  5 09:10:40 SERVER postfix/smtpd[2622]: connect from unknown[185.36.81.57]
Apr  5 09:10:40 SERVER plesk_saslauthd[2625]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:10:40 SERVER plesk_saslauthd[2625]: privileges set to (107:113) (effective 107:113)
Apr  5 09:10:40 SERVER plesk_saslauthd[2625]: failed mail authentication attempt for user 'camber' (password len=7)
Apr  5 09:10:40 SERVER postfix/smtpd[2622]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:10:40 SERVER postfix/smtpd[2622]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:11:10 SERVER plesk_saslauthd[2625]: select timeout, exiting
Apr  5 09:14:00 SERVER postfix/anvil[2624]: statistics: max connection rate 1/60s for (smtp:185.36.81.57) at Apr  5 09:10:40
Apr  5 09:14:00 SERVER postfix/anvil[2624]: statistics: max connection count 1 for (smtp:185.36.81.57) at Apr  5 09:10:40
Apr  5 09:14:00 SERVER postfix/anvil[2624]: statistics: max cache size 1 at Apr  5 09:10:40
Apr  5 09:15:27 SERVER postfix/smtpd[2628]: connect from unknown[141.98.10.137]
Apr  5 09:15:27 SERVER plesk_saslauthd[2631]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:15:27 SERVER plesk_saslauthd[2631]: privileges set to (107:113) (effective 107:113)
Apr  5 09:15:27 SERVER plesk_saslauthd[2631]: failed mail authentication attempt for user 'long' (password len=7)
Apr  5 09:15:27 SERVER postfix/smtpd[2628]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:15:27 SERVER postfix/smtpd[2628]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:15:57 SERVER plesk_saslauthd[2631]: select timeout, exiting
Apr  5 09:17:42 SERVER postfix/smtpd[2632]: connect from unknown[185.36.81.23]
Apr  5 09:17:42 SERVER plesk_saslauthd[2634]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:17:42 SERVER plesk_saslauthd[2634]: privileges set to (107:113) (effective 107:113)
Apr  5 09:17:42 SERVER plesk_saslauthd[2634]: failed mail authentication attempt for user '25011993' (password len=7)
Apr  5 09:17:42 SERVER postfix/smtpd[2632]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:17:42 SERVER postfix/smtpd[2632]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:18:12 SERVER plesk_saslauthd[2634]: select timeout, exiting
Apr  5 09:21:02 SERVER postfix/anvil[2630]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 09:15:27
Apr  5 09:21:02 SERVER postfix/anvil[2630]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 09:15:27
Apr  5 09:21:02 SERVER postfix/anvil[2630]: statistics: max cache size 1 at Apr  5 09:15:27
Apr  5 09:25:38 SERVER postfix/smtpd[2684]: connect from unknown[141.98.10.141]
Apr  5 09:25:38 SERVER plesk_saslauthd[2687]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:25:38 SERVER plesk_saslauthd[2687]: privileges set to (107:113) (effective 107:113)
Apr  5 09:25:38 SERVER plesk_saslauthd[2687]: failed mail authentication attempt for user 'angus' (password len=7)
Apr  5 09:25:38 SERVER postfix/smtpd[2684]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:25:38 SERVER postfix/smtpd[2684]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:26:08 SERVER plesk_saslauthd[2687]: select timeout, exiting
Apr  5 09:28:59 SERVER postfix/anvil[2686]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 09:25:38
Apr  5 09:28:59 SERVER postfix/anvil[2686]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 09:25:38
Apr  5 09:28:59 SERVER postfix/anvil[2686]: statistics: max cache size 1 at Apr  5 09:25:38
Apr  5 09:30:20 SERVER postfix/smtpd[2692]: connect from unknown[185.36.81.78]
Apr  5 09:30:20 SERVER plesk_saslauthd[2695]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:30:20 SERVER plesk_saslauthd[2695]: privileges set to (107:113) (effective 107:113)
Apr  5 09:30:20 SERVER plesk_saslauthd[2695]: failed mail authentication attempt for user 'micheal' (password len=8)
Apr  5 09:30:20 SERVER postfix/smtpd[2692]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:30:21 SERVER postfix/smtpd[2692]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:30:50 SERVER plesk_saslauthd[2695]: select timeout, exiting
Apr  5 09:31:29 SERVER postfix/smtpd[2692]: connect from unknown[185.36.81.57]
Apr  5 09:31:29 SERVER plesk_saslauthd[2743]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:31:29 SERVER plesk_saslauthd[2743]: privileges set to (107:113) (effective 107:113)
Apr  5 09:31:29 SERVER plesk_saslauthd[2743]: failed mail authentication attempt for user 'atlantic' (password len=7)
Apr  5 09:31:29 SERVER postfix/smtpd[2692]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:31:29 SERVER postfix/smtpd[2692]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:31:59 SERVER plesk_saslauthd[2743]: select timeout, exiting
Apr  5 09:34:49 SERVER postfix/anvil[2694]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 09:30:20
Apr  5 09:34:49 SERVER postfix/anvil[2694]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 09:30:20
Apr  5 09:34:49 SERVER postfix/anvil[2694]: statistics: max cache size 1 at Apr  5 09:30:20
Apr  5 09:40:50 SERVER postfix/smtpd[2861]: connect from unknown[141.98.10.137]
Apr  5 09:40:50 SERVER plesk_saslauthd[2864]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:40:50 SERVER plesk_saslauthd[2864]: privileges set to (107:113) (effective 107:113)
Apr  5 09:40:50 SERVER plesk_saslauthd[2864]: failed mail authentication attempt for user 'delete' (password len=7)
Apr  5 09:40:50 SERVER postfix/smtpd[2861]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:40:50 SERVER postfix/smtpd[2861]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:41:20 SERVER plesk_saslauthd[2864]: select timeout, exiting
Apr  5 09:44:10 SERVER postfix/anvil[2863]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 09:40:50
Apr  5 09:44:10 SERVER postfix/anvil[2863]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 09:40:50
Apr  5 09:44:10 SERVER postfix/anvil[2863]: statistics: max cache size 1 at Apr  5 09:40:50
Apr  5 09:46:10 SERVER postfix/smtpd[2867]: connect from unknown[141.98.10.141]
Apr  5 09:46:10 SERVER plesk_saslauthd[2870]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:46:10 SERVER plesk_saslauthd[2870]: privileges set to (107:113) (effective 107:113)
Apr  5 09:46:10 SERVER plesk_saslauthd[2870]: failed mail authentication attempt for user '19911991' (password len=7)
Apr  5 09:46:10 SERVER postfix/smtpd[2867]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:46:10 SERVER postfix/smtpd[2867]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:46:40 SERVER plesk_saslauthd[2870]: select timeout, exiting
Apr  5 09:49:00 SERVER postfix/smtpd[2871]: connect from unknown[185.36.81.23]
Apr  5 09:49:00 SERVER plesk_saslauthd[2873]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:49:00 SERVER plesk_saslauthd[2873]: privileges set to (107:113) (effective 107:113)
Apr  5 09:49:00 SERVER plesk_saslauthd[2873]: failed mail authentication attempt for user 'wilder' (password len=7)
Apr  5 09:49:00 SERVER postfix/smtpd[2871]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:49:00 SERVER postfix/smtpd[2871]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:49:30 SERVER plesk_saslauthd[2873]: select timeout, exiting
Apr  5 09:52:17 SERVER postfix/smtpd[2912]: connect from unknown[185.36.81.57]
Apr  5 09:52:17 SERVER plesk_saslauthd[2914]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 09:52:17 SERVER plesk_saslauthd[2914]: privileges set to (107:113) (effective 107:113)
Apr  5 09:52:17 SERVER plesk_saslauthd[2914]: failed mail authentication attempt for user 'sharc' (password len=7)
Apr  5 09:52:17 SERVER postfix/smtpd[2912]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 09:52:17 SERVER postfix/smtpd[2912]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 09:52:47 SERVER plesk_saslauthd[2914]: select timeout, exiting
Apr  5 09:55:37 SERVER postfix/anvil[2869]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 09:46:10
Apr  5 09:55:38 SERVER postfix/anvil[2869]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 09:46:10
Apr  5 09:55:38 SERVER postfix/anvil[2869]: statistics: max cache size 1 at Apr  5 09:46:10
Apr  5 10:02:15 SERVER postfix/smtpd[3142]: connect from unknown[185.36.81.78]
Apr  5 10:02:16 SERVER plesk_saslauthd[3145]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:02:16 SERVER plesk_saslauthd[3145]: privileges set to (107:113) (effective 107:113)
Apr  5 10:02:16 SERVER plesk_saslauthd[3145]: failed mail authentication attempt for user 'rain' (password len=5)
Apr  5 10:02:16 SERVER postfix/smtpd[3142]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:02:16 SERVER postfix/smtpd[3142]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:02:46 SERVER plesk_saslauthd[3145]: select timeout, exiting
Apr  5 10:05:36 SERVER postfix/anvil[3144]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 10:02:15
Apr  5 10:05:36 SERVER postfix/anvil[3144]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 10:02:15
Apr  5 10:05:36 SERVER postfix/anvil[3144]: statistics: max cache size 1 at Apr  5 10:02:15
Apr  5 10:06:14 SERVER postfix/smtpd[3232]: connect from unknown[141.98.10.137]
Apr  5 10:06:14 SERVER plesk_saslauthd[3235]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:06:14 SERVER plesk_saslauthd[3235]: privileges set to (107:113) (effective 107:113)
Apr  5 10:06:14 SERVER plesk_saslauthd[3235]: failed mail authentication attempt for user 'brittany' (password len=7)
Apr  5 10:06:14 SERVER postfix/smtpd[3232]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:06:14 SERVER postfix/smtpd[3232]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:06:38 SERVER postfix/smtpd[3232]: connect from unknown[141.98.10.141]
Apr  5 10:06:38 SERVER plesk_saslauthd[3235]: failed mail authentication attempt for user 'button' (password len=7)
Apr  5 10:06:38 SERVER postfix/smtpd[3232]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:06:38 SERVER postfix/smtpd[3232]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:07:08 SERVER plesk_saslauthd[3235]: select timeout, exiting
Apr  5 10:09:58 SERVER postfix/anvil[3234]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 10:06:14
Apr  5 10:09:58 SERVER postfix/anvil[3234]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 10:06:14
Apr  5 10:09:58 SERVER postfix/anvil[3234]: statistics: max cache size 2 at Apr  5 10:06:38
Apr  5 10:13:06 SERVER postfix/smtpd[5371]: connect from unknown[185.36.81.57]
Apr  5 10:13:06 SERVER plesk_saslauthd[5374]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:13:06 SERVER plesk_saslauthd[5374]: privileges set to (107:113) (effective 107:113)
Apr  5 10:13:06 SERVER plesk_saslauthd[5374]: failed mail authentication attempt for user 'dicky' (password len=7)
Apr  5 10:13:06 SERVER postfix/smtpd[5371]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:13:06 SERVER postfix/smtpd[5371]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:13:36 SERVER plesk_saslauthd[5374]: select timeout, exiting
Apr  5 10:16:26 SERVER postfix/anvil[5373]: statistics: max connection rate 1/60s for (smtp:185.36.81.57) at Apr  5 10:13:06
Apr  5 10:16:26 SERVER postfix/anvil[5373]: statistics: max connection count 1 for (smtp:185.36.81.57) at Apr  5 10:13:06
Apr  5 10:16:26 SERVER postfix/anvil[5373]: statistics: max cache size 1 at Apr  5 10:13:06
Apr  5 10:20:19 SERVER postfix/smtpd[5517]: connect from unknown[185.36.81.23]
Apr  5 10:20:19 SERVER plesk_saslauthd[5520]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:20:19 SERVER plesk_saslauthd[5520]: privileges set to (107:113) (effective 107:113)
Apr  5 10:20:19 SERVER plesk_saslauthd[5520]: failed mail authentication attempt for user 'claudia' (password len=7)
Apr  5 10:20:19 SERVER postfix/smtpd[5517]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:20:19 SERVER postfix/smtpd[5517]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:20:49 SERVER plesk_saslauthd[5520]: select timeout, exiting
Apr  5 10:23:40 SERVER postfix/anvil[5519]: statistics: max connection rate 1/60s for (smtp:185.36.81.23) at Apr  5 10:20:19
Apr  5 10:23:40 SERVER postfix/anvil[5519]: statistics: max connection count 1 for (smtp:185.36.81.23) at Apr  5 10:20:19
Apr  5 10:23:40 SERVER postfix/anvil[5519]: statistics: max cache size 1 at Apr  5 10:20:19
Apr  5 10:27:04 SERVER postfix/smtpd[5525]: connect from unknown[141.98.10.141]
Apr  5 10:27:05 SERVER plesk_saslauthd[5528]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:27:05 SERVER plesk_saslauthd[5528]: privileges set to (107:113) (effective 107:113)
Apr  5 10:27:05 SERVER plesk_saslauthd[5528]: failed mail authentication attempt for user 'engage' (password len=7)
Apr  5 10:27:05 SERVER postfix/smtpd[5525]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:27:05 SERVER postfix/smtpd[5525]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:27:35 SERVER plesk_saslauthd[5528]: select timeout, exiting
Apr  5 10:30:25 SERVER postfix/anvil[5527]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 10:27:04
Apr  5 10:30:25 SERVER postfix/anvil[5527]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 10:27:04
Apr  5 10:30:25 SERVER postfix/anvil[5527]: statistics: max cache size 1 at Apr  5 10:27:04
Apr  5 10:31:37 SERVER postfix/smtpd[5578]: connect from unknown[141.98.10.137]
Apr  5 10:31:37 SERVER plesk_saslauthd[5581]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:31:37 SERVER plesk_saslauthd[5581]: privileges set to (107:113) (effective 107:113)
Apr  5 10:31:37 SERVER plesk_saslauthd[5581]: failed mail authentication attempt for user 'steam' (password len=7)
Apr  5 10:31:37 SERVER postfix/smtpd[5578]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:31:37 SERVER postfix/smtpd[5578]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:32:07 SERVER plesk_saslauthd[5581]: select timeout, exiting
Apr  5 10:33:54 SERVER postfix/smtpd[5583]: connect from unknown[185.36.81.57]
Apr  5 10:33:54 SERVER plesk_saslauthd[5585]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:33:54 SERVER plesk_saslauthd[5585]: privileges set to (107:113) (effective 107:113)
Apr  5 10:33:54 SERVER plesk_saslauthd[5585]: failed mail authentication attempt for user 'shamrock' (password len=7)
Apr  5 10:33:54 SERVER postfix/smtpd[5583]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:33:54 SERVER postfix/smtpd[5583]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:34:12 SERVER postfix/smtpd[5583]: connect from unknown[185.36.81.78]
Apr  5 10:34:12 SERVER plesk_saslauthd[5585]: failed mail authentication attempt for user 'giuseppe' (password len=9)
Apr  5 10:34:12 SERVER postfix/smtpd[5583]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:34:12 SERVER postfix/smtpd[5583]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:34:42 SERVER plesk_saslauthd[5585]: select timeout, exiting
Apr  5 10:37:32 SERVER postfix/anvil[5580]: statistics: max connection rate 1/60s for (smtp:141.98.10.137) at Apr  5 10:31:37
Apr  5 10:37:33 SERVER postfix/anvil[5580]: statistics: max connection count 1 for (smtp:141.98.10.137) at Apr  5 10:31:37
Apr  5 10:37:33 SERVER postfix/anvil[5580]: statistics: max cache size 2 at Apr  5 10:34:12
Apr  5 10:47:31 SERVER postfix/smtpd[5703]: connect from unknown[141.98.10.141]
Apr  5 10:47:31 SERVER plesk_saslauthd[5706]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:47:31 SERVER plesk_saslauthd[5706]: privileges set to (107:113) (effective 107:113)
Apr  5 10:47:31 SERVER plesk_saslauthd[5706]: failed mail authentication attempt for user '727272' (password len=7)
Apr  5 10:47:31 SERVER postfix/smtpd[5703]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:47:31 SERVER postfix/smtpd[5703]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:48:01 SERVER plesk_saslauthd[5706]: select timeout, exiting
Apr  5 10:50:51 SERVER postfix/anvil[5705]: statistics: max connection rate 1/60s for (smtp:141.98.10.141) at Apr  5 10:47:31
Apr  5 10:50:51 SERVER postfix/anvil[5705]: statistics: max connection count 1 for (smtp:141.98.10.141) at Apr  5 10:47:31
Apr  5 10:50:51 SERVER postfix/anvil[5705]: statistics: max cache size 1 at Apr  5 10:47:31
Apr  5 10:51:36 SERVER postfix/smtpd[5742]: connect from unknown[185.36.81.23]
Apr  5 10:51:37 SERVER plesk_saslauthd[5745]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:51:37 SERVER plesk_saslauthd[5745]: privileges set to (107:113) (effective 107:113)
Apr  5 10:51:37 SERVER plesk_saslauthd[5745]: failed mail authentication attempt for user 'savior' (password len=7)
Apr  5 10:51:37 SERVER postfix/smtpd[5742]: warning: unknown[185.36.81.23]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:51:37 SERVER postfix/smtpd[5742]: disconnect from unknown[185.36.81.23] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:52:07 SERVER plesk_saslauthd[5745]: select timeout, exiting
Apr  5 10:54:43 SERVER postfix/smtpd[5748]: connect from unknown[185.36.81.57]
Apr  5 10:54:43 SERVER plesk_saslauthd[5750]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:54:43 SERVER plesk_saslauthd[5750]: privileges set to (107:113) (effective 107:113)
Apr  5 10:54:43 SERVER plesk_saslauthd[5750]: failed mail authentication attempt for user 'rasta' (password len=7)
Apr  5 10:54:43 SERVER postfix/smtpd[5748]: warning: unknown[185.36.81.57]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:54:43 SERVER postfix/smtpd[5748]: disconnect from unknown[185.36.81.57] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:55:13 SERVER plesk_saslauthd[5750]: select timeout, exiting
Apr  5 10:57:00 SERVER postfix/smtpd[5773]: connect from unknown[141.98.10.137]
Apr  5 10:57:00 SERVER plesk_saslauthd[5775]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 10:57:00 SERVER plesk_saslauthd[5775]: privileges set to (107:113) (effective 107:113)
Apr  5 10:57:00 SERVER plesk_saslauthd[5775]: failed mail authentication attempt for user 'sunny1' (password len=7)
Apr  5 10:57:00 SERVER postfix/smtpd[5773]: warning: unknown[141.98.10.137]: SASL LOGIN authentication failed: authentication failure
Apr  5 10:57:00 SERVER postfix/smtpd[5773]: disconnect from unknown[141.98.10.137] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 10:57:30 SERVER plesk_saslauthd[5775]: select timeout, exiting
Apr  5 11:00:20 SERVER postfix/anvil[5744]: statistics: max connection rate 1/60s for (smtp:185.36.81.23) at Apr  5 10:51:36
Apr  5 11:00:20 SERVER postfix/anvil[5744]: statistics: max connection count 1 for (smtp:185.36.81.23) at Apr  5 10:51:36
Apr  5 11:00:20 SERVER postfix/anvil[5744]: statistics: max cache size 1 at Apr  5 10:51:36
Apr  5 11:06:12 SERVER postfix/smtpd[6353]: connect from unknown[185.36.81.78]
Apr  5 11:06:12 SERVER plesk_saslauthd[6356]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 11:06:12 SERVER plesk_saslauthd[6356]: privileges set to (107:113) (effective 107:113)
Apr  5 11:06:12 SERVER plesk_saslauthd[6356]: failed mail authentication attempt for user 'johndoe' (password len=8)
Apr  5 11:06:12 SERVER postfix/smtpd[6353]: warning: unknown[185.36.81.78]: SASL LOGIN authentication failed: authentication failure
Apr  5 11:06:12 SERVER postfix/smtpd[6353]: disconnect from unknown[185.36.81.78] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 11:06:42 SERVER plesk_saslauthd[6356]: select timeout, exiting
Apr  5 11:07:59 SERVER postfix/smtpd[6491]: connect from unknown[141.98.10.141]
Apr  5 11:07:59 SERVER plesk_saslauthd[6493]: listen=6, status=5, dbpath='/plesk/passwd.db', keypath='/plesk/passwd_db_key', chroot=1, unprivileged=1
Apr  5 11:07:59 SERVER plesk_saslauthd[6493]: privileges set to (107:113) (effective 107:113)
Apr  5 11:07:59 SERVER plesk_saslauthd[6493]: failed mail authentication attempt for user 'brodie' (password len=7)
Apr  5 11:07:59 SERVER postfix/smtpd[6491]: warning: unknown[141.98.10.141]: SASL LOGIN authentication failed: authentication failure
Apr  5 11:07:59 SERVER postfix/smtpd[6491]: disconnect from unknown[141.98.10.141] ehlo=1 auth=0/1 quit=1 commands=2/3
Apr  5 11:08:29 SERVER plesk_saslauthd[6493]: select timeout, exiting
Apr  5 11:11:19 SERVER postfix/anvil[6355]: statistics: max connection rate 1/60s for (smtp:185.36.81.78) at Apr  5 11:06:12
Apr  5 11:11:19 SERVER postfix/anvil[6355]: statistics: max connection count 1 for (smtp:185.36.81.78) at Apr  5 11:06:12
Apr  5 11:11:19 SERVER postfix/anvil[6355]: statistics: max cache size 1 at Apr  5 11:06:12


Hier ein Auszug meiner Apache Log, darin steht auch was von ModSecurity was mir Sorgen macht (ich hab ModSecurity ja erst seit ner Woche an, aber glaube es wurden daten ausgelesen wenn ich die Zugriffs versuche sehe)
Hat da vielleicht der ein oder andere ein Rat wie man das verbessern kann?


Code:
[Sat Apr 04 05:15:56.424670 2020] [ssl:warn] [pid 763:tid 140233777884096] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sat Apr 04 05:15:56.425171 2020] [ssl:warn] [pid 763:tid 140233777884096] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sat Apr 04 05:15:56.441753 2020] [mpm_event:notice] [pid 763:tid 140233777884096] AH00489: Apache/2.4.29 (Ubuntu) OpenSSL/1.1.1 mod_fcgid/2.3.9 configured -- resuming normal operations
[Sat Apr 04 05:15:56.441788 2020] [core:notice] [pid 763:tid 140233777884096] AH00094: Command line: '/usr/sbin/apache2'
[Sat Apr 04 05:15:56.441799 2020] [mpm_event:notice] [pid 763:tid 140233777884096] AH00493: SIGUSR1 received.  Doing graceful restart
[Sat Apr 04 05:15:56.755747 2020] [ssl:warn] [pid 763:tid 140233777884096] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sat Apr 04 05:15:56.756117 2020] [ssl:warn] [pid 763:tid 140233777884096] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sat Apr 04 05:15:56.764439 2020] [mpm_event:notice] [pid 763:tid 140233777884096] AH00489: Apache/2.4.29 (Ubuntu) OpenSSL/1.1.1 mod_fcgid/2.3.9 configured -- resuming normal operations
[Sat Apr 04 05:15:56.764473 2020] [core:notice] [pid 763:tid 140233777884096] AH00094: Command line: '/usr/sbin/apache2'
[Sat Apr 04 09:09:45.424049 2020] [cgi:error] [pid 1979:tid 140233223923456] [client 154.70.134.71:43882] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binmainfunction.cgi
[Sat Apr 04 09:40:15.867228 2020] [cgi:error] [pid 1979:tid 140233257494272] [client 186.96.113.66:46288] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binmainfunction.cgi
[Sat Apr 04 10:10:02.104989 2020] [:error] [pid 1979:tid 140233265886976] [client 62.210.80.125:12168] [client 62.210.80.125] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/modsecurity.d/rules/comodo_free/10_HTTP_HTTP.conf"] [line "32"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.facebook.com:443|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.facebook.com"] [uri "/"] [unique_id "XohA2mlgWqPBpGayNwuh6gAAAEc"]
[Sat Apr 04 10:38:49.997124 2020] [cgi:error] [pid 1979:tid 140233173567232] [client 83.66.123.87:52449] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binmainfunction.cgi
[Sat Apr 04 10:42:43.233285 2020] [:error] [pid 1979:tid 140233156781824] [client 45.13.93.90:60470] [client 45.13.93.90] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^(?i:(?:[a-z]{3,10}\\\\s+(?:\\\\w{3,7}?://[\\\\w\\\\-\\\\./]*(?::\\\\d+)?)?/[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?|connect (?:\\\\d{1,3}\\\\.){3}\\\\d{1,3}\\\\.?(?::\\\\d+)?|options \\\\*)\\\\s+[\\\\w\\\\./]+|get /[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?)$" against "REQUEST_LINE" required. [file "/etc/apache2/modsecurity.d/rules/comodo_free/12_HTTP_Protocol.conf"] [line "114"] [id "217210"] [rev "1"] [msg "COMODO WAF: Invalid HTTP Request Line||ip.ws.126.net:443|F|4"] [data "CONNECT ip.ws.126.net:443 HTTP/1.1"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ip.ws.126.net"] [uri "/"] [unique_id "XohIg2lgWqPBpGayNwuh8AAAAFQ"]
[Sat Apr 04 13:23:00.215548 2020] [cgi:error] [pid 1979:tid 140233173567232] [client 206.223.174.86:57596] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binmainfunction.cgi
[Sat Apr 04 17:40:33.934276 2020] [:error] [pid 1979:tid 140233299457792] [client 89.17.206.133:36268] [client 89.17.206.133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/modsecurity.d/rules/comodo_free/02_Global_Generic.conf"] [line "122"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "************.de"] [uri "/wp-admin/admin-ajax.php"] [unique_id "XoiqcWlgWqPBpGayNwuiDQAAAEM"]
[Sat Apr 04 19:29:41.455226 2020] [cgi:error] [pid 1979:tid 140233291065088] [client 51.79.39.238:62458] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binphp
[Sat Apr 04 19:29:41.851836 2020] [cgi:error] [pid 1951:tid 140233106491136] [client 51.79.39.238:62757] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binphp5
[Sat Apr 04 20:12:15.496726 2020] [cgi:error] [pid 1979:tid 140233148389120] [client 51.79.39.238:55425] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binphp
[Sat Apr 04 20:12:16.393837 2020] [cgi:error] [pid 1951:tid 140233072920320] [client 51.79.39.238:55749] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binphp5
[Sat Apr 04 21:20:56.872879 2020] [cgi:error] [pid 1951:tid 140233056134912] [client 70.62.209.94:43157] AH02811: script not found or unable to stat: /var/www/vhosts/default/cgi-binmainfunction.cgi
[Sun Apr 05 00:23:19.755172 2020] [mpm_event:notice] [pid 763:tid 140233777884096] AH00491: caught SIGTERM, shutting down
[Sun Apr 05 00:23:21.628080 2020] [ssl:warn] [pid 16580:tid 139874942180288] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:21.628566 2020] [ssl:warn] [pid 16580:tid 139874942180288] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:21.628705 2020] [suexec:notice] [pid 16580:tid 139874942180288] AH01232: suEXEC mechanism enabled (wrapper: /usr/lib/apache2/suexec)
[Sun Apr 05 00:23:21.655887 2020] [ssl:warn] [pid 16581:tid 139874942180288] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:21.656237 2020] [ssl:warn] [pid 16581:tid 139874942180288] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:21.658157 2020] [mpm_event:notice] [pid 16581:tid 139874942180288] AH00489: Apache/2.4.29 (Ubuntu) mod_fcgid/2.3.9 OpenSSL/1.1.1 configured -- resuming normal operations
[Sun Apr 05 00:23:21.658186 2020] [core:notice] [pid 16581:tid 139874942180288] AH00094: Command line: '/usr/sbin/apache2'
[Sun Apr 05 00:23:28.162426 2020] [mpm_event:notice] [pid 16581:tid 139874942180288] AH00491: caught SIGTERM, shutting down
[Sun Apr 05 00:23:29.237899 2020] [ssl:warn] [pid 16890:tid 139718606805952] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:29.238312 2020] [ssl:warn] [pid 16890:tid 139718606805952] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:29.238468 2020] [suexec:notice] [pid 16890:tid 139718606805952] AH01232: suEXEC mechanism enabled (wrapper: /usr/lib/apache2/suexec)
[Sun Apr 05 00:23:29.260922 2020] [ssl:warn] [pid 16891:tid 139718606805952] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:29.261304 2020] [ssl:warn] [pid 16891:tid 139718606805952] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:23:29.263642 2020] [mpm_event:notice] [pid 16891:tid 139718606805952] AH00489: Apache/2.4.29 (Ubuntu) mod_fcgid/2.3.9 OpenSSL/1.1.1 configured -- resuming normal operations
[Sun Apr 05 00:23:29.263685 2020] [core:notice] [pid 16891:tid 139718606805952] AH00094: Command line: '/usr/sbin/apache2'
[Sun Apr 05 00:25:34.558271 2020] [mpm_event:notice] [pid 16891:tid 139718606805952] AH00491: caught SIGTERM, shutting down
[Sun Apr 05 00:25:36.038061 2020] [ssl:warn] [pid 18299:tid 140673752468416] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:25:36.038455 2020] [ssl:warn] [pid 18299:tid 140673752468416] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:25:36.038561 2020] [:notice] [pid 18299:tid 140673752468416] ModSecurity for Apache/2.9.3 (http://www.modsecurity.org/) configured.
[Sun Apr 05 00:25:36.038568 2020] [:notice] [pid 18299:tid 140673752468416] ModSecurity: APR compiled version="1.6.3"; loaded version="1.6.3"
[Sun Apr 05 00:25:36.038573 2020] [:notice] [pid 18299:tid 140673752468416] ModSecurity: PCRE compiled version="8.39 "; loaded version="8.39 2016-06-14"
[Sun Apr 05 00:25:36.038576 2020] [:notice] [pid 18299:tid 140673752468416] ModSecurity: LUA compiled version="Lua 5.1"
[Sun Apr 05 00:25:36.038580 2020] [:notice] [pid 18299:tid 140673752468416] ModSecurity: LIBXML compiled version="2.9.4"
[Sun Apr 05 00:25:36.038583 2020] [:notice] [pid 18299:tid 140673752468416] ModSecurity: Status engine is currently disabled, enable it by set SecStatusEngine to On.
[Sun Apr 05 00:25:36.038901 2020] [suexec:notice] [pid 18299:tid 140673752468416] AH01232: suEXEC mechanism enabled (wrapper: /usr/lib/apache2/suexec)
[Sun Apr 05 00:25:36.332440 2020] [ssl:warn] [pid 18300:tid 140673752468416] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:25:36.333036 2020] [ssl:warn] [pid 18300:tid 140673752468416] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:25:36.361032 2020] [mpm_event:notice] [pid 18300:tid 140673752468416] AH00489: Apache/2.4.29 (Ubuntu) OpenSSL/1.1.1 mod_fcgid/2.3.9 configured -- resuming normal operations
[Sun Apr 05 00:25:36.361102 2020] [core:notice] [pid 18300:tid 140673752468416] AH00094: Command line: '/usr/sbin/apache2'
[Sun Apr 05 00:26:22.436156 2020] [mpm_event:notice] [pid 18300:tid 140673752468416] AH00491: caught SIGTERM, shutting down
[Sun Apr 05 00:26:23.815304 2020] [ssl:warn] [pid 20396:tid 140516592278464] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:26:23.815885 2020] [ssl:warn] [pid 20396:tid 140516592278464] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:26:23.816049 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity for Apache/2.9.3 (http://www.modsecurity.org/) configured.
[Sun Apr 05 00:26:23.816060 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity: APR compiled version="1.6.3"; loaded version="1.6.3"
[Sun Apr 05 00:26:23.816067 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity: PCRE compiled version="8.39 "; loaded version="8.39 2016-06-14"
[Sun Apr 05 00:26:23.816073 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity: LUA compiled version="Lua 5.1"
[Sun Apr 05 00:26:23.816084 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity: LIBXML compiled version="2.9.4"
[Sun Apr 05 00:26:23.816090 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity: Original server signature: Apache
[Sun Apr 05 00:26:23.816095 2020] [:notice] [pid 20396:tid 140516592278464] ModSecurity: Status engine is currently disabled, enable it by set SecStatusEngine to On.
[Sun Apr 05 00:26:23.816594 2020] [suexec:notice] [pid 20396:tid 140516592278464] AH01232: suEXEC mechanism enabled (wrapper: /usr/lib/apache2/suexec)
[Sun Apr 05 00:26:23.943398 2020] [ssl:warn] [pid 20397:tid 140516592278464] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:26:23.943923 2020] [ssl:warn] [pid 20397:tid 140516592278464] AH01909: default-SERVER:443:0 server certificate does NOT include an ID which matches the server name
[Sun Apr 05 00:26:23.960311 2020] [mpm_event:notice] [pid 20397:tid 140516592278464] AH00489: Apache/2.4.29 (Ubuntu) OpenSSL/1.1.1 Apache mod_fcgid/2.3.9 configured -- resuming normal operations
[Sun Apr 05 00:26:23.960389 2020] [core:notice] [pid 20397:tid 140516592278464] AH00094: Command line: '/usr/sbin/apache2'
[Sun Apr 05 05:18:12.760800 2020] [mpm_event:notice] [pid 20397:tid 140516592278464] AH00493: SIGUSR1 received.  Doing graceful restart

Von meiner Seite wo die Datenbank gelöscht wurde habe ich folgenen log gefunden (datei access_ssl_log)
Ein kleiner Auszug:

Code:
157.55.39.5 - - [15/Feb/2020:15:20:42 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.16 - - [15/Feb/2020:15:20:43 +0100] "GET /robots.txt HTTP/1.1" 200 1946 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.16 - - [15/Feb/2020:15:20:43 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
46.229.168.151 - - [15/Feb/2020:15:21:11 +0100] "GET /robots.txt HTTP/1.1" 200 3660 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
46.229.168.146 - - [15/Feb/2020:15:21:14 +0100] "GET /tag/driptip/ HTTP/1.1" 200 25887 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
157.55.39.226 - - [15/Feb/2020:15:21:15 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-960x720.jpg HTTP/1.1" 200 159091 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [15/Feb/2020:16:29:42 +0100] "POST /wp-cron.php?doing_wp_cron=1581780582.7820119857788085937500 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581780582.7820119857788085937500" "WordPress/5.3.2; https://SERVER.de"
157.55.39.206 - - [15/Feb/2020:16:29:42 +0100] "GET /category/information/ HTTP/1.1" 200 26691 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
207.46.13.143 - - [15/Feb/2020:16:53:12 +0100] "GET /youtube-kanal-gallerie/ HTTP/1.1" 200 26928 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
40.77.188.251 - - [15/Feb/2020:16:53:17 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/all.min.css?ver=5.7.2 HTTP/1.1" 200 58160 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.182 - - [15/Feb/2020:16:53:18 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/v4-shims.min.css?ver=5.7.2 HTTP/1.1" 200 30086 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.128 - - [15/Feb/2020:16:53:19 +0100] "GET /wp-content/plugins/easy-social-icons/css/cnss.css?ver=1.0 HTTP/1.1" 200 14642 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.136 - - [15/Feb/2020:16:53:19 +0100] "GET /wp-includes/css/dist/block-library/style.min.css?ver=5.3.2 HTTP/1.1" 200 45142 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.193 - - [15/Feb/2020:16:53:20 +0100] "GET /wp-content/plugins/custom-facebook-feed/css/cff-style.css?ver=2.12.2 HTTP/1.1" 200 19660 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.130 - - [15/Feb/2020:16:53:21 +0100] "GET /wp-content/plugins/feed-them-social/feeds/css/styles.css?ver=2.7.8 HTTP/1.1" 200 108699 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.193 - - [15/Feb/2020:16:53:21 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/ffwd_frontend.css?ver=1.1.16 HTTP/1.1" 200 5300 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.193 - - [15/Feb/2020:16:53:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/jquery.mCustomScrollbar.css?ver=1.1.16 HTTP/1.1" 200 13640 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.97 - - [15/Feb/2020:16:53:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/fonts.css?ver=1.1.16 HTTP/1.1" 200 6047 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.60 - - [15/Feb/2020:16:53:23 +0100] "GET /wp-content/themes/colormag/style.css?ver=5.3.2 HTTP/1.1" 200 82567 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.136 - - [15/Feb/2020:16:53:23 +0100] "GET /wp-content/themes/colormag/fontawesome/css/font-awesome.css?ver=4.2.1 HTTP/1.1" 200 37847 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.136 - - [15/Feb/2020:16:53:24 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/styles/ytprefs.min.css?ver=13.1.2.3 HTTP/1.1" 200 8959 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.130 - - [15/Feb/2020:16:53:24 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.css?ver=13.1.2.3 HTTP/1.1" 200 3495 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.60 - - [15/Feb/2020:16:53:24 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.css?ver=13.1.2.3 HTTP/1.1" 200 53748 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.215 - - [15/Feb/2020:16:53:25 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 5902 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.45 - - [15/Feb/2020:16:53:26 +0100] "GET /wp-includes/js/jquery/jquery.js?ver=1.12.4-wp HTTP/1.1" 200 100650 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.128 - - [15/Feb/2020:16:53:27 +0100] "GET /wp-content/plugins/feed-them-social/admin/js/admin.js?ver=2.7.8 HTTP/1.1" 200 4348 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.252 - - [15/Feb/2020:16:53:27 +0100] "GET /wp-content/plugins/feed-them-social/feeds/js/fts-global.js?ver=2.7.8 HTTP/1.1" 200 10554 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.252 - - [15/Feb/2020:16:53:28 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_frontend.js?ver=1.1.16 HTTP/1.1" 200 47414 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:28 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mobile.js?ver=1.1.16 HTTP/1.1" 200 10048 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.215 - - [15/Feb/2020:16:53:29 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mCustomScrollbar.concat.min.js?ver=1.1.16 HTTP/1.1" 200 25586 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.168 - - [15/Feb/2020:16:53:30 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.fullscreen-0.4.1.js?ver=0.4.1 HTTP/1.1" 200 11213 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.189.164 - - [15/Feb/2020:16:53:30 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_gallery_box.js?ver=1.1.16 HTTP/1.1" 200 45606 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.53 - - [15/Feb/2020:16:53:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.js?ver=13.1.2.3 HTTP/1.1" 200 8734 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.168 - - [15/Feb/2020:16:53:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/wdi_frontend.min.css?ver=1.3.22 HTTP/1.1" 200 14689 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts.css?ver=1.3.22 HTTP/1.1" 200 2974 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:32 +0100] "GET /wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 HTTP/1.1" 200 4318 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.128 - - [15/Feb/2020:16:53:33 +0100] "GET /wp-includes/js/jquery/ui/sortable.min.js?ver=1.11.4 HTTP/1.1" 200 28551 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.252 - - [15/Feb/2020:16:53:34 +0100] "GET /wp-content/themes/colormag/js/jquery.bxslider.min.js?ver=4.2.10 HTTP/1.1" 200 27770 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:34 +0100] "GET /wp-content/themes/colormag/js/navigation.js?ver=5.3.2 HTTP/1.1" 200 3470 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.182 - - [15/Feb/2020:16:53:35 +0100] "GET /wp-content/themes/colormag/js/fitvids/jquery.fitvids.js?ver=20150311 HTTP/1.1" 200 6979 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.168 - - [15/Feb/2020:16:53:35 +0100] "GET /wp-content/themes/colormag/js/skip-link-focus-fix.js?ver=5.3.2 HTTP/1.1" 200 1045 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:35 +0100] "GET /wp-content/themes/colormag/js/colormag-custom.js?ver=5.3.2 HTTP/1.1" 200 5064 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.168 - - [15/Feb/2020:16:53:36 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_instagram.min.js?ver=1.3.22 HTTP/1.1" 200 21979 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.146 - - [15/Feb/2020:16:53:37 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_frontend.min.js?ver=1.3.22 HTTP/1.1" 200 53584 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.182 - - [15/Feb/2020:16:53:37 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_responsive.min.js?ver=1.3.22 HTTP/1.1" 200 5288 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:37 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/wdi_gallery_box.min.js?ver=1.3.22 HTTP/1.1" 200 21351 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.188.193 - - [15/Feb/2020:16:53:38 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/jquery.mobile.js?ver=1.3.22 HTTP/1.1" 200 10048 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
40.77.190.224 - - [15/Feb/2020:16:53:39 +0100] "GET /wp-content/themes/colormag/fontawesome/fonts/fontawesome-webfont.ttf?v=4.7.0 HTTP/1.1" 200 166205 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534+ (KHTML, like Gecko) BingPreview/1.0b"
SERVER - - [15/Feb/2020:17:31:04 +0100] "POST /wp-cron.php?doing_wp_cron=1581784264.4674460887908935546875 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581784264.4674460887908935546875" "WordPress/5.3.2; https://SERVER.de"
66.249.76.166 - - [15/Feb/2020:17:31:04 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:17:31:05 +0100] "GET / HTTP/1.1" 200 24360 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.66.54 - - [15/Feb/2020:17:31:10 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3962 "https://SERVER.de/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Googlebot/2.1; +http://www.google.com/bot.html) Chrome/79.0.3945.120 Safari/537.36"
66.249.76.168 - - [15/Feb/2020:17:31:11 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3903 "https://SERVER.de/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Googlebot/2.1; +http://www.google.com/bot.html) Chrome/79.0.3945.120 Safari/537.36"
159.138.155.77 - - [15/Feb/2020:18:13:07 +0100] "GET /2018/11 HTTP/1.1" 301 3366 "-" "Mozilla/5.0(Linux;Android 5.1.1;OPPO A33 Build/LMY47V;wv) AppleWebKit/537.36(KHTML,link Gecko) Version/4.0 Chrome/42.0.2311.138 Mobile Safari/537.36"
159.138.149.31 - - [15/Feb/2020:18:13:08 +0100] "GET /2018/11/ HTTP/1.1" 200 22654 "-" "Mozilla/5.0(Linux;Android 5.1.1;OPPO A33 Build/LMY47V;wv) AppleWebKit/537.36(KHTML,link Gecko) Version/4.0 Chrome/42.0.2311.138 Mobile Safari/537.36"
114.119.143.206 - - [15/Feb/2020:18:18:37 +0100] "GET /impressum HTTP/1.1" 301 3368 "-" "Mozilla/5.0(Linux;Android 5.1.1;OPPO A33 Build/LMY47V;wv) AppleWebKit/537.36(KHTML,link Gecko) Version/4.0 Chrome/42.0.2311.138 Mobile Safari/537.36"
114.119.143.206 - - [15/Feb/2020:18:18:37 +0100] "GET /impressum/ HTTP/1.1" 200 23949 "-" "Mozilla/5.0(Linux;Android 5.1.1;OPPO A33 Build/LMY47V;wv) AppleWebKit/537.36(KHTML,link Gecko) Version/4.0 Chrome/42.0.2311.138 Mobile Safari/537.36"
SERVER - - [15/Feb/2020:18:42:29 +0100] "POST /wp-cron.php?doing_wp_cron=1581788549.0251529216766357421875 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581788549.0251529216766357421875" "WordPress/5.3.2; https://SERVER.de"
66.249.76.168 - - [15/Feb/2020:18:42:28 +0100] "GET /.well-known/assetlinks.json HTTP/1.1" 404 113685 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
207.46.13.80 - - [15/Feb/2020:18:44:25 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on.png HTTP/1.1" 200 133437 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [15/Feb/2020:19:01:15 +0100] "POST /wp-cron.php?doing_wp_cron=1581789675.6461520195007324218750 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581789675.6461520195007324218750" "WordPress/5.3.2; https://SERVER.de"
51.68.50.3 - - [15/Feb/2020:19:01:15 +0100] "GET / HTTP/1.1" 200 27437 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
SERVER - - [15/Feb/2020:19:31:54 +0100] "POST /wp-cron.php?doing_wp_cron=1581791514.6008279323577880859375 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581791514.6008279323577880859375" "WordPress/5.3.2; https://SERVER.de"
162.243.126.96 - - [15/Feb/2020:19:31:54 +0100] "GET /wp-content/plugins/profile-builder/assets/css/serial-notice.css HTTP/1.1" 404 112035 "SERVER.de" "Mozilla/5.1 (Windows NT 6.0; WOW64) AppleWebKit/537.37 (KHTML, like Gecko) Chrome/58.0.1145.75 Safari/537.37"
SERVER - - [15/Feb/2020:20:48:31 +0100] "POST /wp-cron.php?doing_wp_cron=1581796111.2855429649353027343750 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581796111.2855429649353027343750" "WordPress/5.3.2; https://SERVER.de"
157.55.39.71 - - [15/Feb/2020:20:48:31 +0100] "GET / HTTP/1.1" 200 27602 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
35.220.219.142 - - [15/Feb/2020:20:54:31 +0100] "GET /wp-login.php HTTP/1.1" 401 4530 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:32 +0100] "GET /blog/wp-login.php HTTP/1.1" 404 110567 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:33 +0100] "GET /blogs/wp-login.php HTTP/1.1" 401 1381 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:33 +0100] "GET /home/wp-login.php HTTP/1.1" 404 110583 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:34 +0100] "GET /wordpress/wp-login.php HTTP/1.1" 403 3258 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:35 +0100] "GET /press/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:36 +0100] "GET /wp/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:37 +0100] "GET /wpmu/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:38 +0100] "GET /web/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:39 +0100] "GET /new/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:40 +0100] "GET /news/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:41 +0100] "GET /site/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:42 +0100] "GET /sites/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:43 +0100] "GET /sitio/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:44 +0100] "GET /en/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:45 +0100] "GET /old/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:45 +0100] "GET /info/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:46 +0100] "GET /demo/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:47 +0100] "GET /portal/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:48 +0100] "GET /english/wp-login.php HTTP/1.1" 403 3343 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
35.220.219.142 - - [15/Feb/2020:20:54:49 +0100] "GET //wp-login.php HTTP/1.1" 401 1530 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
SERVER - - [15/Feb/2020:21:41:19 +0100] "POST /wp-cron.php?doing_wp_cron=1581799279.0834379196166992187500 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581799279.0834379196166992187500" "WordPress/5.3.2; https://SERVER.de"
91.242.162.68 - - [15/Feb/2020:21:41:18 +0100] "GET /robots.txt HTTP/1.1" 200 3604 "-" "Mozilla/5.0 (compatible; Qwantify/2.4w; +https://www.qwant.com/)/2.4w"
91.242.162.68 - - [15/Feb/2020:21:41:19 +0100] "GET /robots.txt HTTP/1.1" 200 666 "-" "Mozilla/5.0 (compatible; Qwantify/2.4w; +https://www.qwant.com/)/2.4w"
91.242.162.68 - - [15/Feb/2020:21:41:19 +0100] "GET /datenschutzerklaerung/ HTTP/1.1" 200 27443 "-" "Mozilla/5.0 (compatible; Qwantify/2.4w; +https://www.qwant.com/)/2.4w"
SERVER - - [15/Feb/2020:21:54:05 +0100] "POST /wp-cron.php?doing_wp_cron=1581800045.7869579792022705078125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581800045.7869579792022705078125" "WordPress/5.3.2; https://SERVER.de"
66.249.76.168 - - [15/Feb/2020:21:54:05 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:21:54:07 +0100] "GET / HTTP/1.1" 200 27603 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2272.96 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.168 - - [15/Feb/2020:21:54:21 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/styles/dist/cookie-banner.css?ver=2.0.4 HTTP/1.1" 200 4640 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:21:54:21 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.js?ver=13.1.2.3 HTTP/1.1" 200 4717 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.168 - - [15/Feb/2020:21:54:22 +0100] "GET /wp-content/plugins/feed-them-social/admin/js/admin.js?ver=2.7.8 HTTP/1.1" 200 811 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:21:54:23 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.168 - - [15/Feb/2020:21:54:23 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.168 - - [15/Feb/2020:21:54:25 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.66.205 - - [15/Feb/2020:22:03:50 +0100] "GET /robots.txt HTTP/1.1" 301 3834 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.11 - - [15/Feb/2020:22:03:50 +0100] "GET / HTTP/1.1" 301 3814 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2272.96 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:22:03:52 +0100] "GET /wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 HTTP/1.1" 200 5500 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.66.52 - - [15/Feb/2020:22:03:53 +0100] "GET /wp-content/plugins/easy-social-icons/js/cnss.js?ver=1.0 HTTP/1.1" 200 3849 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:22:03:54 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:22:03:54 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [15/Feb/2020:22:03:55 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
157.55.39.226 - - [15/Feb/2020:22:34:23 +0100] "GET /wp-content/uploads/2018/02/IMG_5734.jpg HTTP/1.1" 200 2903093 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
207.46.13.143 - - [15/Feb/2020:22:35:49 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170300.jpg HTTP/1.1" 200 3867777 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.226 - - [15/Feb/2020:23:25:40 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-960x720.jpg HTTP/1.1" 200 159091 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [15/Feb/2020:23:27:18 +0100] "POST /wp-cron.php?doing_wp_cron=1581805637.9956541061401367187500 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581805637.9956541061401367187500" "WordPress/5.3.2; https://SERVER.de"
54.36.149.16 - - [15/Feb/2020:23:27:17 +0100] "GET /robots.txt HTTP/1.1" 200 3490 "-" "Mozilla/5.0 (compatible; AhrefsBot/6.1; +http://ahrefs.com/robot/)"
54.36.150.29 - - [15/Feb/2020:23:27:18 +0100] "GET /tag/cotton/ HTTP/1.1" 200 25683 "-" "Mozilla/5.0 (compatible; AhrefsBot/6.1; +http://ahrefs.com/robot/)"
SERVER - - [15/Feb/2020:23:41:26 +0100] "POST /wp-cron.php?doing_wp_cron=1581806486.8985779285430908203125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581806486.8985779285430908203125" "WordPress/5.3.2; https://SERVER.de"
46.229.168.138 - - [15/Feb/2020:23:41:26 +0100] "GET /robots.txt HTTP/1.1" 200 3660 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
46.229.168.144 - - [15/Feb/2020:23:41:28 +0100] "GET /category/akkutraeger/ HTTP/1.1" 200 25888 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
157.55.39.71 - - [15/Feb/2020:23:44:56 +0100] "GET / HTTP/1.1" 200 27598 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
46.229.168.129 - - [16/Feb/2020:00:05:15 +0100] "GET /robots.txt HTTP/1.1" 200 3660 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
46.229.168.146 - - [16/Feb/2020:00:05:16 +0100] "GET /tag/kanthal/ HTTP/1.1" 200 25880 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
185.220.101.28 - - [16/Feb/2020:00:16:54 +0100] "GET /wp-config.php-lixo HTTP/1.1" 403 3285 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:16:55 +0100] "GET /wp-config.php_ori HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:16:56 +0100] "GET /wp-config.php_revision HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:16:57 +0100] "GET /wp-config.php.2 HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:16:58 +0100] "GET /wp-config_2.txt HTTP/1.1" 404 110519 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:16:59 +0100] "GET /wp-config.php_____ HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:17:00 +0100] "GET /wp-config.php.bkp HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:17:01 +0100] "GET /wp-config.php---- HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:17:02 +0100] "GET /wp-config.php-- HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
185.220.101.28 - - [16/Feb/2020:00:17:03 +0100] "GET /wp-config.php--- HTTP/1.1" 403 347 "-" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)"
157.55.39.226 - - [16/Feb/2020:00:40:50 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170252.jpg HTTP/1.1" 200 3439029 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:01:33:54 +0100] "POST /wp-cron.php?doing_wp_cron=1581813234.2582690715789794921875 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581813234.2582690715789794921875" "WordPress/5.3.2; https://SERVER.de"
66.249.93.229 - - [16/Feb/2020:01:33:54 +0100] "GET / HTTP/1.1" 200 27602 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.75 Safari/537.36 Google Favicon"
66.249.93.233 - - [16/Feb/2020:01:33:55 +0100] "GET /wp-content/uploads/2017/07/cropped-dk-logo_2_simple_FINAL-1-32x32.png HTTP/1.1" 200 4819 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.75 Safari/537.36 Google Favicon"
157.55.39.71 - - [16/Feb/2020:01:39:02 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170252-800x445.jpg HTTP/1.1" 200 83168 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
207.46.13.80 - - [16/Feb/2020:01:40:53 +0100] "GET /wp-content/uploads/2018/02/titelbild-1920x1151.jpg HTTP/1.1" 200 787649 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
46.229.168.148 - - [16/Feb/2020:02:14:53 +0100] "GET /robots.txt HTTP/1.1" 200 3660 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
46.229.168.142 - - [16/Feb/2020:02:14:56 +0100] "GET /wartungsarbeiten-erfolgreich/ HTTP/1.1" 200 26306 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
SERVER - - [16/Feb/2020:02:30:40 +0100] "POST /wp-cron.php?doing_wp_cron=1581816640.7471570968627929687500 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581816640.7471570968627929687500" "WordPress/5.3.2; https://SERVER.de"
213.186.4.78 - - [16/Feb/2020:02:30:40 +0100] "GET / HTTP/1.1" 200 25701 "-" "Mediatoolkitbot (complaints@mediatoolkit.com)"
213.186.4.78 - - [16/Feb/2020:02:37:33 +0100] "GET /tag/316l/ HTTP/1.1" 200 24014 "-" "Mediatoolkitbot (complaints@mediatoolkit.com)"
157.55.39.71 - - [16/Feb/2020:02:54:03 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-800x445.png HTTP/1.1" 200 110110 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
159.138.152.161 - - [16/Feb/2020:03:09:34 +0100] "GET /tag/dampfen HTTP/1.1" 301 3370 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
159.138.149.156 - - [16/Feb/2020:03:09:35 +0100] "GET /tag/dampfen/ HTTP/1.1" 200 23053 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
157.55.39.71 - - [16/Feb/2020:05:18:02 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-1360x583.png HTTP/1.1" 200 162529 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.71 - - [16/Feb/2020:05:49:08 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-1360x583.png HTTP/1.1" 200 162529 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:05:52:05 +0100] "POST /wp-cron.php?doing_wp_cron=1581828725.7778789997100830078125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581828725.7778789997100830078125" "WordPress/5.3.2; https://SERVER.de"
157.55.39.16 - - [16/Feb/2020:05:52:05 +0100] "GET /robots.txt HTTP/1.1" 200 1946 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.16 - - [16/Feb/2020:05:52:06 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.226 - - [16/Feb/2020:05:52:35 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-800x445.jpg HTTP/1.1" 200 99336 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.226 - - [16/Feb/2020:06:54:42 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-1360x583.png HTTP/1.1" 200 162529 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
66.249.76.166 - - [16/Feb/2020:07:27:52 +0100] "GET /neues-material/ HTTP/1.1" 200 27723 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2272.96 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:07:28:03 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/styles/dist/cookie-banner.css?ver=2.0.4 HTTP/1.1" 200 1398 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:07:28:10 +0100] "GET /wp-content/plugins/simple-lightbox/client/js/prod/lib.core.js?ver=2.7.1 HTTP/1.1" 200 6466 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:07:28:16 +0100] "GET /wp-content/plugins/simple-lightbox/themes/baseline/js/prod/client.js?ver=2.7.1 HTTP/1.1" 200 3874 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:07:28:21 +0100] "GET /wp-content/plugins/simple-lightbox/themes/default/js/prod/client.js?ver=2.7.1 HTTP/1.1" 200 4536 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:07:28:28 +0100] "GET /wp-content/plugins/simple-lightbox/template-tags/ui/js/prod/tag.ui.js?ver=2.7.1 HTTP/1.1" 200 4326 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:07:28:36 +0100] "GET /wp-content/plugins/simple-lightbox/content-handlers/image/js/prod/handler.image.js?ver=2.7.1 HTTP/1.1" 200 3906 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.66.52 - - [16/Feb/2020:07:28:44 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3962 "https://SERVER.de/neues-material/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
SERVER - - [16/Feb/2020:07:44:02 +0100] "POST /wp-cron.php?doing_wp_cron=1581835442.3271179199218750000000 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581835442.3271179199218750000000" "WordPress/5.3.2; https://SERVER.de"
103.82.235.2 - - [16/Feb/2020:07:44:02 +0100] "GET /wp-content/plugins/smart-slide-show/js/swfupload/js/upload.php HTTP/1.1" 404 113792 "http://www.google.com/" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/56.0.2896.3 Safari/537.36"
157.55.39.71 - - [16/Feb/2020:08:11:28 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170248-800x445.jpg HTTP/1.1" 200 90656 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.226 - - [16/Feb/2020:09:06:02 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170307-800x445.jpg HTTP/1.1" 200 54436 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
40.77.167.123 - - [16/Feb/2020:09:29:29 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-800x445.png HTTP/1.1" 200 110110 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:10:03:24 +0100] "POST /wp-cron.php?doing_wp_cron=1581843804.5309379100799560546875 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581843804.5309379100799560546875" "WordPress/5.3.2; https://SERVER.de"
159.138.156.147 - - [16/Feb/2020:10:03:24 +0100] "GET /tag/316l HTTP/1.1" 301 3367 "-" "Mozilla/5.0(Linux;U;Android 5.1.1;zh-CN;OPPO A33 Build/LMY47V) AppleWebKit/537.36(KHTML,like Gecko) Version/4.0 Chrome/40.0.2214.89 Mobile Safari/537.36"
159.138.152.154 - - [16/Feb/2020:10:03:25 +0100] "GET /tag/316l/ HTTP/1.1" 200 22777 "-" "Mozilla/5.0(Linux;U;Android 5.1.1;zh-CN;OPPO A33 Build/LMY47V) AppleWebKit/537.36(KHTML,like Gecko) Version/4.0 Chrome/40.0.2214.89 Mobile Safari/537.36"
207.46.13.80 - - [16/Feb/2020:10:30:02 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on.png HTTP/1.1" 200 133437 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:11:08:52 +0100] "POST /wp-cron.php?doing_wp_cron=1581847732.2998061180114746093750 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581847732.2998061180114746093750" "WordPress/5.3.2; https://SERVER.de"
66.249.76.170 - - [16/Feb/2020:11:08:52 +0100] "GET / HTTP/1.1" 200 27600 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2272.96 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:11:08:59 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3962 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.168 - - [16/Feb/2020:11:08:59 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3962 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:11:09:00 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
40.77.167.123 - - [16/Feb/2020:11:12:14 +0100] "GET /wp-content/uploads/2018/11/maintenance-2422173_1920-2-768x512.jpg HTTP/1.1" 200 28285 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:11:30:14 +0100] "POST /wp-cron.php?doing_wp_cron=1581849014.1630759239196777343750 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581849014.1630759239196777343750" "WordPress/5.3.2; https://SERVER.de"
157.55.39.74 - - [16/Feb/2020:11:30:14 +0100] "GET / HTTP/1.1" 200 27601 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
44.233.199.206 - - [16/Feb/2020:11:37:49 +0100] "GET / HTTP/1.1" 200 27341 "-" "Go-http-client/1.1"
66.249.76.168 - - [16/Feb/2020:11:49:03 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3962 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.170 - - [16/Feb/2020:11:49:04 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3962 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.76.166 - - [16/Feb/2020:11:49:04 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3903 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.120 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
159.138.155.189 - - [16/Feb/2020:12:00:27 +0100] "GET /category/zubehoer HTTP/1.1" 301 3376 "-" "Mozilla/5.0(Linux;U;Android 5.1.1;zh-CN;OPPO A33 Build/LMY47V) AppleWebKit/537.36(KHTML,like Gecko) Version/4.0 Chrome/40.0.2214.89 Mobile Safari/537.36"
159.138.153.111 - - [16/Feb/2020:12:00:28 +0100] "GET /category/zubehoer/ HTTP/1.1" 200 22806 "-" "Mozilla/5.0(Linux;U;Android 5.1.1;zh-CN;OPPO A33 Build/LMY47V) AppleWebKit/537.36(KHTML,like Gecko) Version/4.0 Chrome/40.0.2214.89 Mobile Safari/537.36"
66.249.76.168 - - [16/Feb/2020:12:15:47 +0100] "GET /tag/kanthal/ HTTP/1.1" 200 25916 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2272.96 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
SERVER - - [16/Feb/2020:13:36:31 +0100] "POST /wp-cron.php?doing_wp_cron=1581856591.8292229175567626953125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581856591.8292229175567626953125" "WordPress/5.3.2; https://SERVER.de"
157.55.39.74 - - [16/Feb/2020:13:36:31 +0100] "GET /category-sitemap.xml HTTP/1.1" 200 3974 "-" "msnbot/2.0b (+http://search.msn.com/msnbot.htm)"
SERVER - - [16/Feb/2020:14:35:50 +0100] "POST /wp-cron.php?doing_wp_cron=1581860150.5114419460296630859375 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581860150.5114419460296630859375" "WordPress/5.3.2; https://SERVER.de"
46.229.168.134 - - [16/Feb/2020:14:35:50 +0100] "GET /robots.txt HTTP/1.1" 200 3660 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
SERVER - - [16/Feb/2020:14:35:51 +0100] "GET /wp-content/plugins/simple-lightbox/themes/baseline/layout.html HTTP/1.1" 200 3680 "https://SERVER.de/wp-content/plugins/simple-lightbox/themes/baseline/layout.html" "WordPress/5.3.2; https://SERVER.de"
46.229.168.141 - - [16/Feb/2020:14:35:51 +0100] "GET /first-photo-shooting/ HTTP/1.1" 200 28317 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
5.255.251.4 - - [16/Feb/2020:14:36:34 +0100] "GET /robots.txt HTTP/1.1" 200 3719 "-" "Mozilla/5.0 (compatible; YandexBot/3.0; +http://yandex.com/bots)"
5.255.251.4 - - [16/Feb/2020:14:36:38 +0100] "GET /category/zubehoer/ HTTP/1.1" 200 22694 "-" "Mozilla/5.0 (compatible; YandexBot/3.0; +http://yandex.com/bots)"
46.229.168.162 - - [16/Feb/2020:14:38:43 +0100] "GET /first-photo-shooting/img_5725/ HTTP/1.1" 301 3559 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
46.229.168.130 - - [16/Feb/2020:14:46:40 +0100] "GET /category/zubehoer/ HTTP/1.1" 200 25902 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
SERVER - - [16/Feb/2020:15:17:06 +0100] "POST /wp-cron.php?doing_wp_cron=1581862626.3355820178985595703125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581862626.3355820178985595703125" "WordPress/5.3.2; https://SERVER.de"
157.55.39.5 - - [16/Feb/2020:15:17:06 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:16:09:20 +0100] "POST /wp-cron.php?doing_wp_cron=1581865760.6298160552978515625000 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581865760.6298160552978515625000" "WordPress/5.3.2; https://SERVER.de"
54.246.175.95 - - [16/Feb/2020:16:09:20 +0100] "HEAD / HTTP/1.1" 200 3367 "-" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:20 +0100] "GET /robots.txt HTTP/1.1" 200 455 "-" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:21 +0100] "GET / HTTP/1.1" 200 27434 "-" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-includes/js/wp-emoji-release.min.js?ver=5.3.2 HTTP/1.1" 200 5072 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-includes/js/jquery/jquery.js?ver=1.12.4-wp HTTP/1.1" 200 34340 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1 HTTP/1.1" 200 4460 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/easy-social-icons/js/cnss.js?ver=1.0 HTTP/1.1" 200 607 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/feed-them-social/admin/js/admin.js?ver=2.7.8 HTTP/1.1" 200 811 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-analytics-events.js?ver=5.3.9 HTTP/1.1" 200 1364 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-scrolldepth.js?ver=5.3.9 HTTP/1.1" 200 1693 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/feed-them-social/feeds/js/fts-global.js?ver=2.7.8 HTTP/1.1" 200 2211 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_frontend.js?ver=1.1.16 HTTP/1.1" 200 8983 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mobile.js?ver=1.1.16 HTTP/1.1" 200 2919 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mCustomScrollbar.concat.min.js?ver=1.1.16 HTTP/1.1" 200 6587 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.fullscreen-0.4.1.js?ver=0.4.1 HTTP/1.1" 200 2874 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_gallery_box.js?ver=1.1.16 HTTP/1.1" 200 9523 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.js?ver=13.1.2.3 HTTP/1.1" 200 2805 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/ytprefs.min.js?ver=13.1.2.3 HTTP/1.1" 200 4128 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.js?ver=13.1.2.3 HTTP/1.1" 200 1475 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 HTTP/1.1" 200 2258 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:22 +0100] "GET /wp-includes/js/jquery/ui/widget.min.js?ver=1.11.4 HTTP/1.1" 200 3005 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:23 +0100] "GET /wp-includes/js/jquery/ui/mouse.min.js?ver=1.11.4 HTTP/1.1" 200 1378 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:23 +0100] "GET /wp-includes/js/jquery/ui/sortable.min.js?ver=1.11.4 HTTP/1.1" 200 6898 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:23 +0100] "GET /wp-content/plugins/custom-facebook-feed/js/cff-scripts.js?ver=2.12.2 HTTP/1.1" 200 13840 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/scripts/dist/cookie-banner.js?ver=2.0.4 HTTP/1.1" 200 1365 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/themes/colormag/js/jquery.bxslider.min.js?ver=4.2.10 HTTP/1.1" 200 6697 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/themes/colormag/js/navigation.js?ver=5.3.2 HTTP/1.1" 200 1505 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/themes/colormag/js/fitvids/jquery.fitvids.js?ver=20150311 HTTP/1.1" 200 1729 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/themes/colormag/js/skip-link-focus-fix.js?ver=5.3.2 HTTP/1.1" 200 804 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/themes/colormag/js/colormag-custom.js?ver=5.3.2 HTTP/1.1" 200 1944 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/fitvids.min.js?ver=13.1.2.3 HTTP/1.1" 200 1220 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-includes/js/wp-embed.min.js?ver=5.3.2 HTTP/1.1" 200 1126 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-includes/js/underscore.min.js?ver=1.8.3 HTTP/1.1" 200 6122 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_instagram.min.js?ver=1.3.22 HTTP/1.1" 200 4438 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_frontend.min.js?ver=1.3.22 HTTP/1.1" 200 12100 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_responsive.min.js?ver=1.3.22 HTTP/1.1" 200 1734 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/wdi_gallery_box.min.js?ver=1.3.22 HTTP/1.1" 200 6589 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:24 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/jquery.mobile.js?ver=1.3.22 HTTP/1.1" 200 2919 "https://SERVER.de/" "CheckMarkNetwork/1.0 (+http://www.checkmarknetwork.com/spider.html)"
54.246.175.95 - - [16/Feb/2020:16:09:25 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 627 "https://SERVER.de/" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:60.0) Gecko/20100101 Firefox/60.0"
54.246.175.95 - - [16/Feb/2020:16:09:25 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 569 "https://SERVER.de/" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:60.0) Gecko/20100101 Firefox/60.0"
SERVER - - [16/Feb/2020:16:26:17 +0100] "POST /wp-cron.php?doing_wp_cron=1581866777.5121440887451171875000 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581866777.5121440887451171875000" "WordPress/5.3.2; https://SERVER.de"
159.138.159.172 - - [16/Feb/2020:16:26:17 +0100] "GET /facebook HTTP/1.1" 301 3367 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
159.138.159.181 - - [16/Feb/2020:16:26:18 +0100] "GET /facebook/ HTTP/1.1" 200 22836 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
SERVER - - [16/Feb/2020:16:48:03 +0100] "POST /wp-cron.php?doing_wp_cron=1581868083.0803549289703369140625 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581868083.0803549289703369140625" "WordPress/5.3.2; https://SERVER.de"
5.255.251.4 - - [16/Feb/2020:16:48:02 +0100] "GET / HTTP/1.1" 200 27630 "-" "Mozilla/5.0 (compatible; YandexBot/3.0; +http://yandex.com/bots)"
SERVER - - [16/Feb/2020:17:24:33 +0100] "POST /wp-cron.php?doing_wp_cron=1581870273.9257190227508544921875 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581870273.9257190227508544921875" "WordPress/5.3.2; https://SERVER.de"
157.55.39.16 - - [16/Feb/2020:17:24:33 +0100] "GET /robots.txt HTTP/1.1" 200 1946 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.16 - - [16/Feb/2020:17:24:34 +0100] "GET /robots.txt HTTP/1.1" 200 3697 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
157.55.39.74 - - [16/Feb/2020:17:28:05 +0100] "GET /2017/08/ HTTP/1.1" 200 25740 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:17:35:22 +0100] "POST /wp-cron.php?doing_wp_cron=1581870922.8019449710845947265625 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581870922.8019449710845947265625" "WordPress/5.3.2; https://SERVER.de"
114.119.128.219 - - [16/Feb/2020:17:35:22 +0100] "GET / HTTP/1.1" 200 27401 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
207.46.13.80 - - [16/Feb/2020:17:37:26 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170307.jpg HTTP/1.1" 200 3300872 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
207.46.13.80 - - [16/Feb/2020:18:01:21 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on.png HTTP/1.1" 200 133437 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
168.62.57.38 - - [16/Feb/2020:18:02:57 +0100] "GET /administrator/ HTTP/1.1" 404 113706 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
168.62.57.38 - - [16/Feb/2020:18:02:59 +0100] "GET /index.php?option=com_jce&task=plugin&plugin=imgmanager&file=imgmanager&method=form HTTP/1.1" 301 3659 "-" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0"
168.62.57.38 - - [16/Feb/2020:18:02:59 +0100] "GET /?option=com_jce&task=plugin&plugin=imgmanager&file=imgmanager&method=form HTTP/1.1" 200 24347 "-" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0"
168.62.57.38 - - [16/Feb/2020:18:03:01 +0100] "GET / HTTP/1.1" 200 27628 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:07 +0100] "GET / HTTP/1.1" 200 27629 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:09 +0100] "GET / HTTP/1.1" 200 27629 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:11 +0100] "GET / HTTP/1.1" 200 27629 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:12 +0100] "GET /XxX.php?XxX HTTP/1.1" 404 113705 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:13 +0100] "GET /index.php?option=com_fabrik&format=raw&task=plugin.pluginAjax&plugin=fileupload&method=ajax_upload HTTP/1.1" 301 3675 "-" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0"
168.62.57.38 - - [16/Feb/2020:18:03:14 +0100] "GET /?option=com_fabrik&format=raw&task=plugin.pluginAjax&plugin=fileupload&method=ajax_upload HTTP/1.1" 200 24348 "-" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0"
168.62.57.38 - - [16/Feb/2020:18:03:15 +0100] "GET /raiz0.html HTTP/1.1" 403 6568 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:18 +0100] "GET /index.php?option=com_fabrik&format=raw&task=plugin.pluginAjax&plugin=fileupload&method=ajax_upload HTTP/1.1" 403 6501 "-" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0"
168.62.57.38 - - [16/Feb/2020:18:03:20 +0100] "GET /miNuS.php HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:23 +0100] "GET /modules/mod_simplefileuploadv1.3/elements/udd.php HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:25 +0100] "GET /modules/mod_simplefileuploadv1.3/elements/mudxizxnc.php HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:27 +0100] "GET /components/com_facileforms/libraries/jquery/uploadify.php HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:28 +0100] "GET /components/com_facileforms/libraries/jquery/mudxizxnc.php HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:29 +0100] "GET /components/com_sexycontactform/fileupload/ HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
168.62.57.38 - - [16/Feb/2020:18:03:30 +0100] "GET /components/com_sexycontactform/fileupload/files/mudxizxnc.php HTTP/1.1" 403 6501 "-" "python-requests/2.22.0"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET / HTTP/1.1" 200 27632 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/all.min.css?ver=5.7.2 HTTP/1.1" 200 15549 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/easy-social-icons/css/cnss.css?ver=1.0 HTTP/1.1" 200 2024 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/v4-shims.min.css?ver=5.7.2 HTTP/1.1" 200 4512 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/css/dist/block-library/style.min.css?ver=5.3.2 HTTP/1.1" 200 6752 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/custom-facebook-feed/css/cff-style.css?ver=2.12.2 HTTP/1.1" 200 3855 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/feed-them-social/feeds/css/styles.css?ver=2.7.8 HTTP/1.1" 200 18133 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/hupso-share-buttons-for-twitter-facebook-google/style.css?ver=5.3.2 HTTP/1.1" 200 785 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/styles/dist/cookie-banner.css?ver=2.0.4 HTTP/1.1" 200 1398 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/ffwd_frontend.css?ver=1.1.16 HTTP/1.1" 200 1577 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/fonts.css?ver=1.1.16 HTTP/1.1" 200 1054 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/jquery.mCustomScrollbar.css?ver=1.1.16 HTTP/1.1" 200 2056 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag/style.css?ver=5.3.2 HTTP/1.1" 200 13224 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag-child/style.css?ver=5.3.2 HTTP/1.1" 200 1494 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag/fontawesome/css/font-awesome.css?ver=4.2.1 HTTP/1.1" 200 7871 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/simple-lightbox/client/css/app.css?ver=2.7.1 HTTP/1.1" 200 484 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/styles/ytprefs.min.css?ver=13.1.2.3 HTTP/1.1" 200 2253 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.css?ver=13.1.2.3 HTTP/1.1" 200 1338 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.css?ver=13.1.2.3 HTTP/1.1" 200 4010 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/wdi_frontend.min.css?ver=1.3.22 HTTP/1.1" 200 3132 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts.css?ver=1.3.22 HTTP/1.1" 200 1092 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/default_theme.css?ver=1.3.22 HTTP/1.1" 200 3500 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/js/jquery/jquery.js?ver=1.12.4-wp HTTP/1.1" 200 34340 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1 HTTP/1.1" 200 4460 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/easy-social-icons/js/cnss.js?ver=1.0 HTTP/1.1" 200 607 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/feed-them-social/admin/js/admin.js?ver=2.7.8 HTTP/1.1" 200 811 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-analytics-events.js?ver=5.3.9 HTTP/1.1" 200 1364 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-scrolldepth.js?ver=5.3.9 HTTP/1.1" 200 1693 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/feed-them-social/feeds/js/fts-global.js?ver=2.7.8 HTTP/1.1" 200 2211 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mobile.js?ver=1.1.16 HTTP/1.1" 200 2919 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_frontend.js?ver=1.1.16 HTTP/1.1" 200 8983 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mCustomScrollbar.concat.min.js?ver=1.1.16 HTTP/1.1" 200 6587 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.fullscreen-0.4.1.js?ver=0.4.1 HTTP/1.1" 200 2874 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_gallery_box.js?ver=1.1.16 HTTP/1.1" 200 9523 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/ytprefs.min.js?ver=13.1.2.3 HTTP/1.1" 200 4128 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.js?ver=13.1.2.3 HTTP/1.1" 200 1475 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.js?ver=13.1.2.3 HTTP/1.1" 200 2805 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 HTTP/1.1" 200 2258 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/js/jquery/ui/widget.min.js?ver=1.11.4 HTTP/1.1" 200 3005 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/js/jquery/ui/mouse.min.js?ver=1.11.4 HTTP/1.1" 200 1378 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/scripts/dist/cookie-banner.js?ver=2.0.4 HTTP/1.1" 200 1365 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-includes/js/jquery/ui/sortable.min.js?ver=1.11.4 HTTP/1.1" 200 6898 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/plugins/custom-facebook-feed/js/cff-scripts.js?ver=2.12.2 HTTP/1.1" 200 13840 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag/js/jquery.bxslider.min.js?ver=4.2.10 HTTP/1.1" 200 6697 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag/js/navigation.js?ver=5.3.2 HTTP/1.1" 200 1505 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag/js/skip-link-focus-fix.js?ver=5.3.2 HTTP/1.1" 200 804 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /wp-content/themes/colormag/js/fitvids/jquery.fitvids.js?ver=20150311 HTTP/1.1" 200 1729 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:31 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/themes/colormag/js/colormag-custom.js?ver=5.3.2 HTTP/1.1" 200 1944 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/fitvids.min.js?ver=13.1.2.3 HTTP/1.1" 200 1220 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-includes/js/wp-embed.min.js?ver=5.3.2 HTTP/1.1" 200 1126 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-includes/js/underscore.min.js?ver=1.8.3 HTTP/1.1" 200 6122 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_instagram.min.js?ver=1.3.22 HTTP/1.1" 200 4438 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/jquery.mobile.js?ver=1.3.22 HTTP/1.1" 200 2919 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_frontend.min.js?ver=1.3.22 HTTP/1.1" 200 12100 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_responsive.min.js?ver=1.3.22 HTTP/1.1" 200 1734 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-includes/js/wp-emoji-release.min.js?ver=5.3.2 HTTP/1.1" 200 5072 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/wdi_gallery_box.min.js?ver=1.3.22 HTTP/1.1" 200 6589 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2017/07/cropped-DK_100height_logo.png HTTP/1.1" 200 4336 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2018/11/maintenance-2422173_1920-2-768x512-768x445.jpg HTTP/1.1" 200 24246 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/themes/colormag/fontawesome/fonts/fontawesome-webfont.woff2?v=4.7.0 HTTP/1.1" 200 77605 "https://SERVER.de/wp-content/themes/colormag/fontawesome/css/font-awesome.css?ver=4.2.1" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/webfonts/fa-regular-400.woff2 HTTP/1.1" 200 13920 "https://SERVER.de/wp-content/plugins/easy-social-icons/css/font-awesome/css/all.min.css?ver=5.7.2" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/fonts/ffwd.ttf?4bafj3 HTTP/1.1" 200 9884 "https://SERVER.de/wp-content/plugins/wd-facebook-feed/css/fonts.css?ver=1.1.16" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2018/02/titelbild-800x445.jpg HTTP/1.1" 200 160236 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-800x445.jpg HTTP/1.1" 200 96094 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2017/08/instagram-icon.png HTTP/1.1" 200 19091 "-" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2017/07/youtube-icon.png HTTP/1.1" 200 22332 "-" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-facebook-feed/images/ajax_loader.png HTTP/1.1" 200 6182 "https://SERVER.de/wp-content/plugins/wd-facebook-feed/css/ffwd_frontend.css?ver=1.1.16" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/images/ajax_loader.png HTTP/1.1" 200 6182 "https://SERVER.de/wp-content/plugins/wd-instagram-feed/css/wdi_frontend.min.css?ver=1.3.22" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2017/07/facebook-icon.png HTTP/1.1" 200 16364 "-" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-800x445.png HTTP/1.1" 200 106868 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts/tenweb.ttf?4znsty HTTP/1.1" 200 10701 "https://SERVER.de/wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts.css?ver=1.3.22" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:33 +0100] "GET /wp-content/uploads/2017/07/cropped-dk-logo_2_simple_FINAL-1-192x192.png HTTP/1.1" 200 7419 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:33 +0100] "GET /wp-content/uploads/2017/07/cropped-dk-logo_2_simple_FINAL-1-180x180.png HTTP/1.1" 200 6985 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:18:05:33 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 10; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
SERVER - - [16/Feb/2020:18:44:21 +0100] "POST /wp-cron.php?doing_wp_cron=1581875061.4468200206756591796875 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581875061.4468200206756591796875" "WordPress/5.3.2; https://SERVER.de"
159.138.155.63 - - [16/Feb/2020:18:44:21 +0100] "GET /wartungsarbeiten-erfolgreich HTTP/1.1" 301 3387 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
159.138.152.182 - - [16/Feb/2020:18:44:22 +0100] "GET /wartungsarbeiten-erfolgreich/ HTTP/1.1" 200 23206 "-" "Mozilla/5.0 (iPad; CPU OS 7_0 like Mac OS X) AppleWebKit/537.51.1 (KHTML, like Gecko) Version/7.0 Mobile/11A465 Safari/9537.53"
157.55.39.226 - - [16/Feb/2020:19:18:52 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-800x445.jpg HTTP/1.1" 200 99336 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
217.82.250.207 - - [16/Feb/2020:19:33:09 +0100] "GET / HTTP/1.1" 200 27628 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/all.min.css?ver=5.7.2 HTTP/1.1" 200 12276 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/v4-shims.min.css?ver=5.7.2 HTTP/1.1" 200 7785 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/easy-social-icons/css/cnss.css?ver=1.0 HTTP/1.1" 200 2181 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/custom-facebook-feed/css/cff-style.css?ver=2.12.2 HTTP/1.1" 200 3855 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-includes/css/dist/block-library/style.min.css?ver=5.3.2 HTTP/1.1" 200 6752 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/hupso-share-buttons-for-twitter-facebook-google/style.css?ver=5.3.2 HTTP/1.1" 200 628 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/styles/dist/cookie-banner.css?ver=2.0.4 HTTP/1.1" 200 1398 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/feed-them-social/feeds/css/styles.css?ver=2.7.8 HTTP/1.1" 200 18133 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/ffwd_frontend.css?ver=1.1.16 HTTP/1.1" 200 1577 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/fonts.css?ver=1.1.16 HTTP/1.1" 200 1054 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/jquery.mCustomScrollbar.css?ver=1.1.16 HTTP/1.1" 200 2056 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/themes/colormag-child/style.css?ver=5.3.2 HTTP/1.1" 200 1494 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/themes/colormag/style.css?ver=5.3.2 HTTP/1.1" 200 13224 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/themes/colormag/fontawesome/css/font-awesome.css?ver=4.2.1 HTTP/1.1" 200 7871 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/simple-lightbox/client/css/app.css?ver=2.7.1 HTTP/1.1" 200 484 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/styles/ytprefs.min.css?ver=13.1.2.3 HTTP/1.1" 200 2253 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.css?ver=13.1.2.3 HTTP/1.1" 200 1338 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.css?ver=13.1.2.3 HTTP/1.1" 200 4010 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-includes/js/jquery/jquery.js?ver=1.12.4-wp HTTP/1.1" 200 34340 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1 HTTP/1.1" 200 4460 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/easy-social-icons/js/cnss.js?ver=1.0 HTTP/1.1" 200 607 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/feed-them-social/admin/js/admin.js?ver=2.7.8 HTTP/1.1" 200 811 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-analytics-events.js?ver=5.3.9 HTTP/1.1" 200 1364 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-scrolldepth.js?ver=5.3.9 HTTP/1.1" 200 1693 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/feed-them-social/feeds/js/fts-global.js?ver=2.7.8 HTTP/1.1" 200 2211 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_frontend.js?ver=1.1.16 HTTP/1.1" 200 8983 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mCustomScrollbar.concat.min.js?ver=1.1.16 HTTP/1.1" 200 6587 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mobile.js?ver=1.1.16 HTTP/1.1" 200 2919 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.fullscreen-0.4.1.js?ver=0.4.1 HTTP/1.1" 200 2874 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_gallery_box.js?ver=1.1.16 HTTP/1.1" 200 9523 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.js?ver=13.1.2.3 HTTP/1.1" 200 2805 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/ytprefs.min.js?ver=13.1.2.3 HTTP/1.1" 200 4128 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.js?ver=13.1.2.3 HTTP/1.1" 200 1475 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/uploads/2017/07/cropped-DK_100height_logo.png HTTP/1.1" 200 4336 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:11 +0100] "GET /wp-content/uploads/2017/08/instagram-icon.png HTTP/1.1" 200 19091 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/wdi_frontend.min.css?ver=1.3.22 HTTP/1.1" 200 3132 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts.css?ver=1.3.22 HTTP/1.1" 200 1092 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/default_theme.css?ver=1.3.22 HTTP/1.1" 200 3500 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 HTTP/1.1" 200 2258 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/jquery/ui/widget.min.js?ver=1.11.4 HTTP/1.1" 200 3005 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/jquery/ui/mouse.min.js?ver=1.11.4 HTTP/1.1" 200 1378 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/jquery/ui/sortable.min.js?ver=1.11.4 HTTP/1.1" 200 6898 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/custom-facebook-feed/js/cff-scripts.js?ver=2.12.2 HTTP/1.1" 200 13840 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/scripts/dist/cookie-banner.js?ver=2.0.4 HTTP/1.1" 200 1365 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/webfonts/fa-regular-400.woff2 HTTP/1.1" 200 13920 "https://SERVER.de/wp-content/plugins/easy-social-icons/css/font-awesome/css/all.min.css?ver=5.7.2" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/themes/colormag/fontawesome/fonts/fontawesome-webfont.woff2?v=4.7.0 HTTP/1.1" 200 77605 "https://SERVER.de/wp-content/themes/colormag/fontawesome/css/font-awesome.css?ver=4.2.1" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/themes/colormag/js/navigation.js?ver=5.3.2 HTTP/1.1" 200 1505 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/themes/colormag/js/jquery.bxslider.min.js?ver=4.2.10 HTTP/1.1" 200 6697 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/themes/colormag/js/fitvids/jquery.fitvids.js?ver=20150311 HTTP/1.1" 200 1729 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/uploads/2018/11/maintenance-2422173_1920-2-768x512-768x445.jpg HTTP/1.1" 200 24246 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/themes/colormag/js/skip-link-focus-fix.js?ver=5.3.2 HTTP/1.1" 200 804 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/uploads/2017/07/youtube-icon.png HTTP/1.1" 200 22332 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/themes/colormag/js/colormag-custom.js?ver=5.3.2 HTTP/1.1" 200 1944 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/fitvids.min.js?ver=13.1.2.3 HTTP/1.1" 200 1220 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/uploads/2017/07/facebook-icon.png HTTP/1.1" 200 16364 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/wp-embed.min.js?ver=5.3.2 HTTP/1.1" 200 1126 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/mechanic-visitor-counter/styles/image/glass/0.gif HTTP/1.1" 200 1591 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/underscore.min.js?ver=1.8.3 HTTP/1.1" 200 6122 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_instagram.min.js?ver=1.3.22 HTTP/1.1" 200 4438 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_frontend.min.js?ver=1.3.22 HTTP/1.1" 200 12100 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/mechanic-visitor-counter/styles/image/glass/2.gif HTTP/1.1" 200 1593 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/mechanic-visitor-counter/styles/image/glass/8.gif HTTP/1.1" 200 1588 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/wdi_responsive.min.js?ver=1.3.22 HTTP/1.1" 200 1734 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/wdi_gallery_box.min.js?ver=1.3.22 HTTP/1.1" 200 6589 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/js/gallerybox/jquery.mobile.js?ver=1.3.22 HTTP/1.1" 200 2919 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-includes/js/wp-emoji-release.min.js?ver=5.3.2 HTTP/1.1" 200 5072 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/mechanic-visitor-counter/styles/image/glass/7.gif HTTP/1.1" 200 1587 "-" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-facebook-feed/images/ajax_loader.png HTTP/1.1" 200 6182 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-800x445.jpg HTTP/1.1" 200 96094 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/uploads/2018/02/titelbild-800x445.jpg HTTP/1.1" 200 160236 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-800x445.png HTTP/1.1" 200 106868 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/fonts/ffwd.ttf?4bafj3 HTTP/1.1" 200 9884 "https://SERVER.de/wp-content/plugins/wd-facebook-feed/css/fonts.css?ver=1.1.16" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "GET /wp-content/plugins/wd-instagram-feed/images/ajax_loader.png HTTP/1.1" 200 6182 "https://SERVER.de/wp-content/plugins/wd-instagram-feed/css/wdi_frontend.min.css?ver=1.3.22" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:12 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 720 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:13 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts/tenweb.ttf?4znsty HTTP/1.1" 200 10701 "https://SERVER.de/wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts.css?ver=1.3.22" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:13 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:13 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:15 +0100] "GET /wp-content/uploads/2017/07/cropped-dk-logo_2_simple_FINAL-1-192x192.png HTTP/1.1" 200 7419 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:15 +0100] "GET /wp-content/uploads/2017/07/cropped-dk-logo_2_simple_FINAL-1-180x180.png HTTP/1.1" 200 6985 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:21 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 3850 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:24 +0100] "GET /liquid-shot-rechner/ HTTP/1.1" 200 24586 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:24 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:25 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:25 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:25 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:26 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:39 +0100] "POST /liquid-shot-rechner/ HTTP/1.1" 200 24756 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:41 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:41 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:41 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:42 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:42 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:52 +0100] "GET /liquid-shot-rechner/ HTTP/1.1" 200 24743 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:53 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:53 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:54 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:33:54 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:04 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 734 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
SERVER - - [16/Feb/2020:19:34:10 +0100] "POST /wp-cron.php?doing_wp_cron=1581878050.7928910255432128906250 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581878050.7928910255432128906250" "WordPress/5.3.2; https://SERVER.de"
217.82.250.207 - - [16/Feb/2020:19:34:10 +0100] "GET /2018/11/ HTTP/1.1" 200 22699 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:11 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:11 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:11 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:12 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:12 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:16 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 577 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:21 +0100] "GET /?s=Aroma+ HTTP/1.1" 200 22561 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:22 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/?s=Aroma+" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:22 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/?s=Aroma+" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:22 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/?s=Aroma+" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:23 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/?s=Aroma+" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:23 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/?s=Aroma+" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:27 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 577 "https://SERVER.de/?s=Aroma+" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:31 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:31 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/2018/11/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:32 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 819 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:33 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:33 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 662 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:33 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
217.82.250.207 - - [16/Feb/2020:19:34:34 +0100] "POST /wp-admin/admin-ajax.php HTTP/1.1" 200 661 "https://SERVER.de/" "Mozilla/5.0 (Linux; Android 9; SM-G955F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.99 Mobile Safari/537.36"
157.55.39.74 - - [16/Feb/2020:20:10:39 +0100] "GET /first-photo-shooting/img_5745/ HTTP/1.1" 301 3596 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
168.62.57.38 - - [16/Feb/2020:20:13:37 +0100] "GET / HTTP/1.1" 200 27625 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
SERVER - - [16/Feb/2020:20:34:23 +0100] "POST /wp-cron.php?doing_wp_cron=1581881663.4654419422149658203125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581881663.4654419422149658203125" "WordPress/5.3.2; http://SERVER.de"
54.149.74.229 - - [16/Feb/2020:20:34:23 +0100] "HEAD /wp-admin/ HTTP/1.1" 302 3473 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; rv:59.0) Gecko/20100101 Firefox/59.0"
54.149.74.229 - - [16/Feb/2020:20:34:24 +0100] "HEAD /wp-login.php?redirect_to=https%3A%2F%2FSERVER.de%2Fwp-admin%2F&reauth=1 HTTP/1.1" 401 467 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; rv:59.0) Gecko/20100101 Firefox/59.0"
46.229.168.142 - - [16/Feb/2020:20:44:02 +0100] "GET /robots.txt HTTP/1.1" 200 3660 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
46.229.168.142 - - [16/Feb/2020:20:44:05 +0100] "GET /datenschutzerklaerung/ HTTP/1.1" 200 30168 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
157.55.39.74 - - [16/Feb/2020:20:46:03 +0100] "GET /wp-content/uploads/2017/08/dk_hp_on-1360x583.png HTTP/1.1" 200 162529 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
46.229.168.129 - - [16/Feb/2020:20:53:23 +0100] "GET /category/information/ HTTP/1.1" 200 26648 "-" "Mozilla/5.0 (compatible; SemrushBot/6~bl; +http://www.semrush.com/bot.html)"
157.55.39.226 - - [16/Feb/2020:21:15:18 +0100] "GET /wp-content/uploads/2018/02/IMG_5787.jpg HTTP/1.1" 200 3799586 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
40.77.167.123 - - [16/Feb/2020:21:19:10 +0100] "GET /wp-content/uploads/2017/09/IMG_20170913_170155-1707x1280.jpg HTTP/1.1" 200 389246 "-" "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
SERVER - - [16/Feb/2020:21:32:14 +0100] "POST /wp-cron.php?doing_wp_cron=1581885134.3462269306182861328125 HTTP/1.1" 200 3357 "https://SERVER.de/wp-cron.php?doing_wp_cron=1581885134.3462269306182861328125" "WordPress/5.3.2; https://SERVER.de"
95.91.225.93 - - [16/Feb/2020:21:32:14 +0100] "GET /liquid-shot-rechner/ HTTP/1.1" 200 27863 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:14 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/all.min.css?ver=5.7.2 HTTP/1.1" 200 12276 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:14 +0100] "GET /wp-content/plugins/easy-social-icons/css/font-awesome/css/v4-shims.min.css?ver=5.7.2 HTTP/1.1" 200 7785 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:14 +0100] "GET /wp-content/plugins/easy-social-icons/css/cnss.css?ver=1.0 HTTP/1.1" 200 2024 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/css/dist/block-library/style.min.css?ver=5.3.2 HTTP/1.1" 200 6595 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/hupso-share-buttons-for-twitter-facebook-google/style.css?ver=5.3.2 HTTP/1.1" 200 785 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/custom-facebook-feed/css/cff-style.css?ver=2.12.2 HTTP/1.1" 200 3855 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/feed-them-social/feeds/css/styles.css?ver=2.7.8 HTTP/1.1" 200 18133 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/styles/dist/cookie-banner.css?ver=2.0.4 HTTP/1.1" 200 1555 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/ffwd_frontend.css?ver=1.1.16 HTTP/1.1" 200 1577 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/jquery.mCustomScrollbar.css?ver=1.1.16 HTTP/1.1" 200 2056 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/css/fonts.css?ver=1.1.16 HTTP/1.1" 200 1054 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/themes/colormag/style.css?ver=5.3.2 HTTP/1.1" 200 13224 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/themes/colormag-child/style.css?ver=5.3.2 HTTP/1.1" 200 1494 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/themes/colormag/fontawesome/css/font-awesome.css?ver=4.2.1 HTTP/1.1" 200 7871 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/simple-lightbox/client/css/app.css?ver=2.7.1 HTTP/1.1" 200 484 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/styles/ytprefs.min.css?ver=13.1.2.3 HTTP/1.1" 200 2253 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.css?ver=13.1.2.3 HTTP/1.1" 200 1338 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.css?ver=13.1.2.3 HTTP/1.1" 200 4010 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/tenweb-fonts/fonts.css?ver=1.3.22 HTTP/1.1" 200 1092 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/wdi_frontend.min.css?ver=1.3.22 HTTP/1.1" 200 3132 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-instagram-feed/css/default_theme.css?ver=1.3.22 HTTP/1.1" 200 3500 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/js/jquery/jquery.js?ver=1.12.4-wp HTTP/1.1" 200 34340 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1 HTTP/1.1" 200 4460 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/easy-social-icons/js/cnss.js?ver=1.0 HTTP/1.1" 200 607 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-analytics-events.js?ver=5.3.9 HTTP/1.1" 200 1364 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/feed-them-social/admin/js/admin.js?ver=2.7.8 HTTP/1.1" 200 811 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/google-analytics-dashboard-for-wp/front/js/tracking-scrolldepth.js?ver=5.3.9 HTTP/1.1" 200 1693 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/feed-them-social/feeds/js/fts-global.js?ver=2.7.8 HTTP/1.1" 200 2211 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /?display_custom_css=css&ver=5.3.2 HTTP/1.1" 200 771 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_frontend.js?ver=1.1.16 HTTP/1.1" 200 8983 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mobile.js?ver=1.1.16 HTTP/1.1" 200 2919 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.mCustomScrollbar.concat.min.js?ver=1.1.16 HTTP/1.1" 200 6587 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/jquery.fullscreen-0.4.1.js?ver=0.4.1 HTTP/1.1" 200 2874 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/wd-facebook-feed/js/ffwd_gallery_box.js?ver=1.1.16 HTTP/1.1" 200 9523 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/lity.min.js?ver=13.1.2.3 HTTP/1.1" 200 2805 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/ytprefs.min.js?ver=13.1.2.3 HTTP/1.1" 200 4128 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/youtube-embed-plus-pro/scripts/embdyn.min.js?ver=13.1.2.3 HTTP/1.1" 200 1475 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/uploads/2017/08/instagram-icon.png HTTP/1.1" 200 19091 "-" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/uploads/2017/07/cropped-DK_100height_logo.png HTTP/1.1" 200 4336 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/js/jquery/ui/core.min.js?ver=1.11.4 HTTP/1.1" 200 2258 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/js/jquery/ui/widget.min.js?ver=1.11.4 HTTP/1.1" 200 3005 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/js/jquery/ui/mouse.min.js?ver=1.11.4 HTTP/1.1" 200 1378 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-includes/js/jquery/ui/sortable.min.js?ver=1.11.4 HTTP/1.1" 200 6898 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/ilmenite-cookie-consent/assets/scripts/dist/cookie-banner.js?ver=2.0.4 HTTP/1.1" 200 1365 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/plugins/custom-facebook-feed/js/cff-scripts.js?ver=2.12.2 HTTP/1.1" 200 13840 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/themes/colormag/js/jquery.bxslider.min.js?ver=4.2.10 HTTP/1.1" 200 6697 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"
95.91.225.93 - - [16/Feb/2020:21:32:15 +0100] "GET /wp-content/themes/colormag/js/navigation.js?ver=5.3.2 HTTP/1.1" 200 1505 "https://SERVER.de/liquid-shot-rechner/" "Mozilla/5.0 (Linux; Android 8.0.0; SAMSUNG SM-G935F) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/10.2 Chrome/71.0.3578.99 Mobile Safari/537.36"

erschreckend finde ich die Zeile:
Code:
54.149.74.229 - - [16/Feb/2020:20:34:24 +0100] "HEAD /wp-login.php?redirect_to=https%3A%2F%2FSERVER.de%2Fwp-admin%2F&reauth=1 HTTP/1.1" 401 467 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; rv:59.0) Gecko/20100101 Firefox/59.0"

weil da jmd am login war... grade weil da HEAD steht...
viele Sachen wind auch bestimmt google geschuldet, aber ich denke nicht das google versucht ein "reauth" zu machen.

Habe bei einer anderen Wordpress Seite auch einen Crawler gefunden:
Ist sowas gefährlich? scheint ein OpenSource Crawler zu sein, also nichts von google oder?

Code:
82.165.224.195 - - [24/Feb/2020:02:31:30 +0100] "GET /salon-und-ich/ HTTP/1.1" 200 14642 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.227 - - [24/Feb/2020:02:31:45 +0100] "GET /datenschutzerklaerung/ HTTP/1.1" 200 18090 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.187 - - [24/Feb/2020:02:31:46 +0100] "GET /xmlrpc.php?rsd HTTP/1.1" 403 4223 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.235 - - [24/Feb/2020:02:31:47 +0100] "GET /leistungen/ HTTP/1.1" 200 17251 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.211 - - [24/Feb/2020:02:31:53 +0100] "GET /revisionen/ HTTP/1.1" 200 12677 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.211 - - [24/Feb/2020:02:31:56 +0100] "GET /impressum/ HTTP/1.1" 200 9901 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.235 - - [24/Feb/2020:02:47:16 +0100] "GET /?p=68 HTTP/1.1" 301 3530 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.251 - - [24/Feb/2020:02:47:16 +0100] "GET /?p=65 HTTP/1.1" 301 3525 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.211 - - [24/Feb/2020:02:47:17 +0100] "GET /?p=7 HTTP/1.1" 301 3536 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.227 - - [24/Feb/2020:02:47:17 +0100] "GET /?p=137 HTTP/1.1" 301 3525 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.163 - - [24/Feb/2020:02:47:19 +0100] "GET /?p=5 HTTP/1.1" 301 3524 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"
82.165.224.203 - - [24/Feb/2020:02:47:20 +0100] "GET /?p=46 HTTP/1.1" 301 3533 "-" "crawler4j (https://github.com/yasserg/crawler4j/)"


Hier auch wieder zahlreiche versuche auf den Login zu kommen, soweit ich aber sehen kann wurde immer 404 ausgegeben bzw 403 und 401 beim richtigen login. ist das so i.o.?
Code:
89.248.174.46 - - [04/Mar/2020:20:04:03 +0100] "GET /blog/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:04 +0100] "GET /blogs/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:05 +0100] "GET /home/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:05 +0100] "GET /wordpress/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:05 +0100] "GET /press/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:06 +0100] "GET /wp/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:06 +0100] "GET /wpmu/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:07 +0100] "GET /web/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:07 +0100] "GET /new/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:07 +0100] "GET /news/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:08 +0100] "GET /site/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:08 +0100] "GET /sites/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:08 +0100] "GET /sitio/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:09 +0100] "GET /en/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:09 +0100] "GET /old/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:09 +0100] "GET /info/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:10 +0100] "GET /demo/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:10 +0100] "GET /portal/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:10 +0100] "GET /english/wp-login.php HTTP/1.1" 404 28282 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
89.248.174.46 - - [04/Mar/2020:20:04:11 +0100] "GET //wp-login.php HTTP/1.1" 401 1378 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0)"
5.255.174.141 - - [04/Mar/2020:20:07:45 +0100] "GET /xmlrpc.php HTTP/1.1" 403 2602 "-" "Chrome 73.75 7|Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.75 Safari/537.36"
5.255.174.141 - - [04/Mar/2020:20:07:46 +0100] "GET /wp-login.php HTTP/1.1" 401 2906 "-" "Chrome 73.75 7|Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.75 Safari/537.36"

Ich hoffe Ihr könnt mir helfen
 
Last edited:
Das meiste davon kann man unter Grundrauschen verbuchen. In einem gut konfigurierten System sollte das aber keine Probleme verursachen. Problematisch wird es erst, wenn über installierte Anwendungen welche Sicherheitslöcher haben, unbefugte Zugriff bekommen. Die Spanne bei Plugins für WP ist da leider recht groß, so das man pauschal nicht sagen kann, welches genau verantwortlich dafür ist, das dir Jemand eine Datenbank löschen konnte. Ich würde ab diesem Zeitpunkt auch das System als "Nicht mehr Sicher" ansehen und heraus finden was passiert ist. Danach das System neu aufsetzen, Systemupdates einspielen und dann Stückweise die Webauftritte wieder einspielen.
Aber um auf deine Grundfragen zurück zu kommen, mir wäre jetzt kein Leitfaden bekannt wie man sein System testen kann. Sauber neu aufsetzen, Dienste die nicht gebraucht werden deaktivieren und das was da ist sicher Konfigurieren. Und dazu gehört nicht nur sichere Passwörter sondern noch viel mehr. Anleitungen dazu findet man zur genüge im Netz.
Da das kein einmaliger Prozess ist, sei erwähnt, das so ein Server immer Aufmerksankeit braucht. Systemupdates müssen regelmäßig gemacht werden und die Webanwendungen genauso. Danach muss geschaut werden ob die Konfigs noch passen oder vielleicht geändert werden müssen. Logfiles überprüfen usw.... Wartung und Instandhaltung gehört also genauso dazu.
 
Das meiste davon kann man unter Grundrauschen verbuchen. In einem gut konfigurierten System sollte das aber keine Probleme verursachen. Problematisch wird es erst, wenn über installierte Anwendungen welche Sicherheitslöcher haben, unbefugte Zugriff bekommen. Die Spanne bei Plugins für WP ist da leider recht groß, so das man pauschal nicht sagen kann, welches genau verantwortlich dafür ist, das dir Jemand eine Datenbank löschen konnte. Ich würde ab diesem Zeitpunkt auch das System als "Nicht mehr Sicher" ansehen und heraus finden was passiert ist. Danach das System neu aufsetzen, Systemupdates einspielen und dann Stückweise die Webauftritte wieder einspielen.
Aber um auf deine Grundfragen zurück zu kommen, mir wäre jetzt kein Leitfaden bekannt wie man sein System testen kann. Sauber neu aufsetzen, Dienste die nicht gebraucht werden deaktivieren und das was da ist sicher Konfigurieren. Und dazu gehört nicht nur sichere Passwörter sondern noch viel mehr. Anleitungen dazu findet man zur genüge im Netz.
Da das kein einmaliger Prozess ist, sei erwähnt, das so ein Server immer Aufmerksankeit braucht. Systemupdates müssen regelmäßig gemacht werden und die Webanwendungen genauso. Danach muss geschaut werden ob die Konfigs noch passen oder vielleicht geändert werden müssen. Logfiles überprüfen usw.... Wartung und Instandhaltung gehört also genauso dazu.

Danke für den Hinweis,

Ich habe das system regelmäßig geupdatet. sobald eine neue version in plesk verfügbar ist installiere ich diese auch umgehend.
ich bin nun schon soweit das ich herrausgefunden habe, das viele sachen cronjobs von WP waren, nur der zugriff auf das postfix sind mir unangenehm da ich dort nicht weiss wie ich das sichern soll.

kann man hinter plesk einfach am linux rum fummeln in punkto absichern? oder muss man im zusammenspiel mit plesk auf etwas besonderes achten ?
 
Ich bin bei Plesk leider zulange raus. Aber es gibt hier andere Experten/innen die dir da gezielter eine Aussage zu geben können.
 
ich hoffe es meldet sich noch der ein oder andere geduldige der mich etwas leiten kann in dem thema
 
bezüglich der WP-Logins:
Installiere über Plesk Installer fail2ban
In Plesks GUI gehe zu Einstellungen Sicherheit > Sperren von IP-Adressen
Tab Jail
Klicke auf plesk- wordpress
Einstellungen
Setze Anzahl der Fehlversuche auf 3
Bestätige mit OK

Damit wird nach 3 Versuchen die Angreifer-IP geblockt.
 
Back
Top