File: /home/vmasmheia229/access-logs/mpycdev.theomggroup.com
64.15.129.115 - - [10/Mar/2026:16:58:38 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 11 **0/11457**
192.175.111.253 - - [10/Mar/2026:16:58:38 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 15 **0/15803**
64.15.129.108 - - [10/Mar/2026:16:58:38 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 526 **0/526529**
192.175.111.238 - - [10/Mar/2026:16:58:40 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 1299 **1/1299326**
192.175.111.246 - - [10/Mar/2026:17:53:55 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 14 **0/14954**
192.175.111.243 - - [10/Mar/2026:17:53:55 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 12 **0/12417**
64.15.129.122 - - [10/Mar/2026:17:53:55 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 8 **0/8115**
192.175.111.242 - - [10/Mar/2026:17:53:56 -0700] "GET / HTTP/1.1" 200 432 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" 11 **0/11427**
40.69.66.178 - - [10/Mar/2026:20:07:30 -0700] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 200 432 "-" "-" 9 **0/9313**
40.69.66.178 - - [10/Mar/2026:20:07:30 -0700] "GET /ws81.php HTTP/1.1" 200 432 "-" "-" 9 **0/9097**
40.69.66.178 - - [10/Mar/2026:20:07:30 -0700] "GET /hnikt.php HTTP/1.1" 200 432 "-" "-" 22 **0/22200**
40.69.66.178 - - [10/Mar/2026:20:07:30 -0700] "GET /awh.php HTTP/1.1" 200 432 "-" "-" 56 **0/56632**
40.69.66.178 - - [10/Mar/2026:20:07:30 -0700] "GET /js.php HTTP/1.1" 200 432 "-" "-" 6 **0/6492**
40.69.66.178 - - [10/Mar/2026:20:07:30 -0700] "GET /34.php HTTP/1.1" 200 432 "-" "-" 6 **0/6707**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /rafa.php HTTP/1.1" 200 432 "-" "-" 10 **0/10184**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /gu.php HTTP/1.1" 200 432 "-" "-" 91 **0/91693**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /wp-wlx.php HTTP/1.1" 200 432 "-" "-" 6 **0/6903**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /.well-known/pki-validation/gu.php HTTP/1.1" 404 - "-" "-" 10 **0/10288**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /.well-known/pki-validation/rafa.php HTTP/1.1" 404 - "-" "-" 10 **0/10060**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /wp-content/themes/pridmag/js.php HTTP/1.1" 200 432 "-" "-" 49 **0/49562**
40.69.66.178 - - [10/Mar/2026:20:07:31 -0700] "GET /wp-content/themes/pridmag/34.php HTTP/1.1" 200 432 "-" "-" 23 **0/23455**
72.167.124.219 - - [10/Mar/2026:20:30:27 -0700] "POST /deleteme.cha49ad9322df47497283026b6844e7b270.php?n=1&m=4 HTTP/1.1" 200 9263 "-" "Installatron Plugin/10.0.6/547" 12 **0/12062**
72.167.124.219 - - [10/Mar/2026:20:30:27 -0700] "POST /deleteme.cha49ad9322df47497283026b6844e7b270.php?n=2&m=4 HTTP/1.1" 200 9263 "-" "Installatron Plugin/10.0.6/547" 304 **0/304637**
72.167.124.219 - - [10/Mar/2026:20:30:27 -0700] "POST /deleteme.cha49ad9322df47497283026b6844e7b270.php?n=3&m=4 HTTP/1.1" 200 9263 "-" "Installatron Plugin/10.0.6/547" 342 **0/342561**
86.48.2.230 - - [10/Mar/2026:20:32:20 -0700] "GET /wp-admin/css/ HTTP/1.1" 403 432 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" 20 **0/20741**
178.128.88.98 - - [10/Mar/2026:20:45:57 -0700] "GET /license.txt HTTP/1.1" 200 7296 "-" "python-requests/2.27.1" 11 **0/11224**