# cat access_log-20230205 | grep "91.197.38.243" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:12 -0600] "GET / HTTP/1.1" 200 257486 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:14 -0600] "GET /Cogent_Rapid_Query_Abuse_2023_02_04_1951cdt.txt HTTP/1.1" 200 15416 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:16 -0600] "GET /fonts/true-crimes.ttf HTTP/1.1" 200 43928 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:19 -0600] "GET /ukrainian_terrorist_20230204.txt HTTP/1.1" 200 14502 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:20 -0600] "GET /fonts/ZCOOLKuaiLe-Regular.ttf HTTP/1.1" 200 3263456 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:24 -0600] "GET /whois.depref.net.txt HTTP/1.1" 200 2066 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:26 -0600] "GET /fonts/Teko-Regular.ttf HTTP/1.1" 200 311780 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:29 -0600] "GET /whois.loopback0.network.txt HTTP/1.1" 200 5260 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:30 -0600] "GET /fonts/OpenSans-Regular.ttf HTTP/1.1" 200 217276 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:33 -0600] "GET /traceroute.saturn.loopback0.network.txt HTTP/1.1" 200 1375 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:34 -0600] "GET /fonts/MonospaceTypewriter.ttf HTTP/1.1" 200 38748 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:36 -0600] "GET /raceroute.harpoon.loopback0.network.txt HTTP/1.1" 404 16 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:38 -0600] "GET /fonts/LinLibertine_R.otf HTTP/1.1" 200 528064 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:41 -0600] "GET /whois.thechurchboard.com.txt HTTP/1.1" 200 2293 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:42 -0600] "GET /fonts/KaushanScript-Regular.otf HTTP/1.1" 200 89168 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:44 -0600] "GET /index.d4abuse.nortel_breach.2022.06.php HTTP/1.1" 200 6643 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:46 -0600] "GET /fonts/Jura-Regular.ttf HTTP/1.1" 200 172232 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:48 -0600] "GET /index.d4abuse.attacks.2022.05.php HTTP/1.1" 200 10519 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:50 -0600] "GET /fonts/GrandHotel-Regular.ttf HTTP/1.1" 200 61128 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:52 -0600] "GET /index.d4abuse.format.2022.05.php HTTP/1.1" 200 8408 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:54 -0600] "GET /fonts/Damion-Regular.ttf HTTP/1.1" 200 35940 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:56 -0600] "GET /index.d4abuse.digest.2022.05.php HTTP/1.1" 200 43924 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:58 -0600] "GET /fonts/Cinzel-Regular.ttf HTTP/1.1" 200 56124 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:00 -0600] "GET /index.d4abuse.fraud.2022.05.php HTTP/1.1" 200 46319 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:01 -0600] "GET /fonts/CarroisGothic-Regular.ttf HTTP/1.1" 200 41680 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:03 -0600] "GET /index.d4abuse.public_notice.2022.05.php HTTP/1.1" 200 94345 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:06 -0600] "GET /fonts/Amaranth-Regular.ttf HTTP/1.1" 200 62064 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:08 -0600] "GET /index.d4abuse.extortion.php HTTP/1.1" 200 34991 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:10 -0600] "GET /fonts/Aleo-Regular.ttf HTTP/1.1" 200 92956 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:12 -0600] "GET /index.d4abuse.timeline.php HTTP/1.1" 200 13464 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:14 -0600] "GET / HTTP/1.1" 200 257486 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:16 -0600] "GET /index.20220705.omnibus.php HTTP/1.1" 200 228114 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:19 -0600] "GET /index.2023.01.workstations.php HTTP/1.1" 200 10674 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:20 -0600] "GET /terms_2021_3Q.php HTTP/1.1" 200 10932 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:22 -0600] "GET /index.2022.01.intro.php HTTP/1.1" 200 13001 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:24 -0600] "GET /privacy_policy_criminal.php HTTP/1.1" 200 10413 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:26 -0600] "GET /rs_ssl.2023.01.php HTTP/1.1" 200 6420 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:27 -0600] "GET /index.php HTTP/1.1" 200 257486 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:30 -0600] "GET /teamspeak3.php HTTP/1.1" 200 42755 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:32 -0600] "GET /rs_host.2023.01.php HTTP/1.1" 200 10191 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:34 -0600] "GET /bw_universe.php HTTP/1.1" 200 16945 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:36 -0600] "GET /rs_metal.2023.01.php HTTP/1.1" 200 10076 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:37 -0600] "GET /7a_registration.2023.01.php HTTP/1.1" 200 7272 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:39 -0600] "GET /fs_about.php HTTP/1.1" 200 12661 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:41 -0600] "GET /catalog/index.php HTTP/1.1" 200 7695 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:42 -0600] "GET /fs_more.php HTTP/1.1" 200 14758 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:44 -0600] "GET /fs_policy_082019.php HTTP/1.1" 200 9850 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:46 -0600] "GET /fs_consulting.php HTTP/1.1" 200 9493 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:47 -0600] "GET /index.2022.01.attacks.php HTTP/1.1" 200 19271 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:49 -0600] "GET /fs_advnet_hcl.php HTTP/1.1" 200 9940 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:51 -0600] "GET /index.2022.10.14.security_report.php HTTP/1.1" 200 15119 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:53 -0600] "GET /fs_management_2020_05_05.php HTTP/1.1" 200 23163 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:54 -0600] "GET /index.2023.01.ravencoin.php HTTP/1.1" 200 10118 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:56 -0600] "GET /fs_pricing_2020_05_05.php HTTP/1.1" 200 10853 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:58 -0600] "GET /index.d4abuse.php HTTP/1.1" 200 5142 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:00 -0600] "GET /fs_namespace_2020_05_05.php HTTP/1.1" 200 9840 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:01 -0600] "GET /fs_seriousgames_2021_04_06.php HTTP/1.1" 200 11909 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:03 -0600] "GET /fs_freeproduct_2020_05_05.php HTTP/1.1" 200 9767 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:05 -0600] "GET /fs_covid19_2020_05_05.php HTTP/1.1" 200 12229 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" # whois 91.197.38.243 [Querying whois.ripe.net] [whois.ripe.net] % This is the RIPE Database query service. % The objects are in RPSL format. % % The RIPE Database is subject to Terms and Conditions. % See http://www.ripe.net/db/support/db-terms-conditions.pdf % Note: this output has been filtered. % To receive output for a database update, use the "-B" flag. % Information related to '91.197.38.0 - 91.197.39.255' % Abuse contact for '91.197.38.0 - 91.197.39.255' is 'abuse@elitework.com' inetnum: 91.197.38.0 - 91.197.39.255 netname: ELITEWORK-LLC descr: Infrastructure of EliteWork LLC descr: San Francisco, California country: US org: ORG-EL285-RIPE admin-c: XN156-RIPE tech-c: XN156-RIPE status: ASSIGNED PA mnt-by: digital-RO mnt-lower: digital-RO mnt-routes: MNT-XTGLOBAL created: 2018-07-07T21:38:51Z last-modified: 2019-07-09T18:38:09Z source: RIPE organisation: ORG-EL285-RIPE org-name: EliteWork LLC org-type: OTHER descr: EliteWork LLC address: EliteWork LLC address: 8512 122nd Ave Ne # 5 address: Kirkland, WA 98033, USA phone: +1 253-200-1460 admin-c: AR41691-RIPE tech-c: AR41691-RIPE abuse-c: AR41691-RIPE mnt-by: TerraNova-MNT mnt-ref: MNT-XTGLOBAL created: 2017-06-18T14:46:46Z last-modified: 2019-04-17T11:11:39Z source: RIPE # Filtered role: XTGLOBAL NOC address: OMC Chambers, Wickhams Cay 1 address: VG1110, Road Town, Tortola address: BRITISH VIRGIN ISLANDS phone: +40 748 10 8000 abuse-mailbox: abuse@xtglobal.vg admin-c: CH10914-RIPE tech-c: CH10914-RIPE nic-hdl: XN156-RIPE remarks: -------------------------------- remarks: Abuse reports: abuse@xtglobal.vg remarks: NOC Phone 24x7: +40 748 10 8000 remarks: NOC E-mail: noc@xtglobal.vg remarks: -------------------------------- mnt-by: MNT-XTGLOBAL created: 2014-12-23T15:37:53Z last-modified: 2020-02-06T16:53:17Z source: RIPE # Filtered % Information related to '91.197.36.0/22AS48095' route: 91.197.36.0/22 descr: EliteWork LLC origin: AS48095 mnt-by: MNT-XTGLOBAL created: 2019-03-25T12:29:39Z last-modified: 2019-03-25T12:29:39Z source: RIPE % This query was served by the RIPE Database Query Service version 1.105 (ABERDEEN) # cat access_log-20230205 | grep "91.197.38.243" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:12 -0600] "GET / HTTP/1.1" 200 257486 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:14 -0600] "GET /Cogent_Rapid_Query_Abuse_2023_02_04_1951cdt.txt HTTP/1.1" 200 15416 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:16 -0600] "GET /fonts/true-crimes.ttf HTTP/1.1" 200 43928 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:19 -0600] "GET /ukrainian_terrorist_20230204.txt HTTP/1.1" 200 14502 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:20 -0600] "GET /fonts/ZCOOLKuaiLe-Regular.ttf HTTP/1.1" 200 3263456 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:24 -0600] "GET /whois.depref.net.txt HTTP/1.1" 200 2066 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:26 -0600] "GET /fonts/Teko-Regular.ttf HTTP/1.1" 200 311780 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:29 -0600] "GET /whois.loopback0.network.txt HTTP/1.1" 200 5260 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:30 -0600] "GET /fonts/OpenSans-Regular.ttf HTTP/1.1" 200 217276 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:33 -0600] "GET /traceroute.saturn.loopback0.network.txt HTTP/1.1" 200 1375 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:34 -0600] "GET /fonts/MonospaceTypewriter.ttf HTTP/1.1" 200 38748 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:36 -0600] "GET /raceroute.harpoon.loopback0.network.txt HTTP/1.1" 404 16 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:38 -0600] "GET /fonts/LinLibertine_R.otf HTTP/1.1" 200 528064 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:41 -0600] "GET /whois.thechurchboard.com.txt HTTP/1.1" 200 2293 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:42 -0600] "GET /fonts/KaushanScript-Regular.otf HTTP/1.1" 200 89168 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:44 -0600] "GET /index.d4abuse.nortel_breach.2022.06.php HTTP/1.1" 200 6643 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:46 -0600] "GET /fonts/Jura-Regular.ttf HTTP/1.1" 200 172232 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:48 -0600] "GET /index.d4abuse.attacks.2022.05.php HTTP/1.1" 200 10519 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:50 -0600] "GET /fonts/GrandHotel-Regular.ttf HTTP/1.1" 200 61128 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:52 -0600] "GET /index.d4abuse.format.2022.05.php HTTP/1.1" 200 8408 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:54 -0600] "GET /fonts/Damion-Regular.ttf HTTP/1.1" 200 35940 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:56 -0600] "GET /index.d4abuse.digest.2022.05.php HTTP/1.1" 200 43924 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:06:58 -0600] "GET /fonts/Cinzel-Regular.ttf HTTP/1.1" 200 56124 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:00 -0600] "GET /index.d4abuse.fraud.2022.05.php HTTP/1.1" 200 46319 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:01 -0600] "GET /fonts/CarroisGothic-Regular.ttf HTTP/1.1" 200 41680 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:03 -0600] "GET /index.d4abuse.public_notice.2022.05.php HTTP/1.1" 200 94345 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:06 -0600] "GET /fonts/Amaranth-Regular.ttf HTTP/1.1" 200 62064 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:08 -0600] "GET /index.d4abuse.extortion.php HTTP/1.1" 200 34991 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:10 -0600] "GET /fonts/Aleo-Regular.ttf HTTP/1.1" 200 92956 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:12 -0600] "GET /index.d4abuse.timeline.php HTTP/1.1" 200 13464 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:14 -0600] "GET / HTTP/1.1" 200 257486 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:16 -0600] "GET /index.20220705.omnibus.php HTTP/1.1" 200 228114 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:19 -0600] "GET /index.2023.01.workstations.php HTTP/1.1" 200 10674 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:20 -0600] "GET /terms_2021_3Q.php HTTP/1.1" 200 10932 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:22 -0600] "GET /index.2022.01.intro.php HTTP/1.1" 200 13001 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:24 -0600] "GET /privacy_policy_criminal.php HTTP/1.1" 200 10413 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:26 -0600] "GET /rs_ssl.2023.01.php HTTP/1.1" 200 6420 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:27 -0600] "GET /index.php HTTP/1.1" 200 257486 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:30 -0600] "GET /teamspeak3.php HTTP/1.1" 200 42755 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:32 -0600] "GET /rs_host.2023.01.php HTTP/1.1" 200 10191 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:34 -0600] "GET /bw_universe.php HTTP/1.1" 200 16945 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:36 -0600] "GET /rs_metal.2023.01.php HTTP/1.1" 200 10076 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:37 -0600] "GET /7a_registration.2023.01.php HTTP/1.1" 200 7272 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:39 -0600] "GET /fs_about.php HTTP/1.1" 200 12661 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:41 -0600] "GET /catalog/index.php HTTP/1.1" 200 7695 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:42 -0600] "GET /fs_more.php HTTP/1.1" 200 14758 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:44 -0600] "GET /fs_policy_082019.php HTTP/1.1" 200 9850 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:46 -0600] "GET /fs_consulting.php HTTP/1.1" 200 9493 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:47 -0600] "GET /index.2022.01.attacks.php HTTP/1.1" 200 19271 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:49 -0600] "GET /fs_advnet_hcl.php HTTP/1.1" 200 9940 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:51 -0600] "GET /index.2022.10.14.security_report.php HTTP/1.1" 200 15119 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:53 -0600] "GET /fs_management_2020_05_05.php HTTP/1.1" 200 23163 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:54 -0600] "GET /index.2023.01.ravencoin.php HTTP/1.1" 200 10118 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:56 -0600] "GET /fs_pricing_2020_05_05.php HTTP/1.1" 200 10853 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:07:58 -0600] "GET /index.d4abuse.php HTTP/1.1" 200 5142 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:00 -0600] "GET /fs_namespace_2020_05_05.php HTTP/1.1" 200 9840 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:01 -0600] "GET /fs_seriousgames_2021_04_06.php HTTP/1.1" 200 11909 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:03 -0600] "GET /fs_freeproduct_2020_05_05.php HTTP/1.1" 200 9767 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" 91.197.38.243 - - 91.197.38.243 - - [04/Feb/2023:22:08:05 -0600] "GET /fs_covid19_2020_05_05.php HTTP/1.1" 200 12229 "https://www.sdpmultimediagroup.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15" [root@bunny httpd]# cat access_log-20230205 | grep "154.95.1.44" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:06 -0600] "GET / HTTP/1.1" 200 257486 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:15 -0600] "GET /Cogent_Rapid_Query_Abuse_2023_02_04_1951cdt.txt HTTP/1.1" 200 15416 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:17 -0600] "GET /index.2023.01.workstations.php HTTP/1.1" 200 10674 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:21 -0600] "GET /ukrainian_terrorist_20230204.txt HTTP/1.1" 200 14502 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:23 -0600] "GET /index.2022.01.intro.php HTTP/1.1" 200 13001 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:28 -0600] "GET /whois.depref.net.txt HTTP/1.1" 200 2066 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:30 -0600] "GET /rs_ssl.2023.01.php HTTP/1.1" 200 6420 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:32 -0600] "GET /whois.loopback0.network.txt HTTP/1.1" 200 5260 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:33 -0600] "GET /teamspeak3.php HTTP/1.1" 200 42755 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:35 -0600] "GET /traceroute.saturn.loopback0.network.txt HTTP/1.1" 200 1375 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:37 -0600] "GET /bw_universe.php HTTP/1.1" 200 16945 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:39 -0600] "GET /raceroute.harpoon.loopback0.network.txt HTTP/1.1" 404 16 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:41 -0600] "GET /7a_registration.2023.01.php HTTP/1.1" 200 7272 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:43 -0600] "GET /whois.thechurchboard.com.txt HTTP/1.1" 200 2293 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:45 -0600] "GET / HTTP/1.1" 200 257486 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:48 -0600] "GET /index.d4abuse.php HTTP/1.1" 200 5142 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:51 -0600] "GET /fs_policy_082019.php HTTP/1.1" 200 9850 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:53 -0600] "GET /index.d4abuse.nortel_breach.2022.06.php HTTP/1.1" 200 6643 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:55 -0600] "GET /index.2022.01.attacks.php HTTP/1.1" 200 19271 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:57 -0600] "GET /index.d4abuse.attacks.2022.05.php HTTP/1.1" 200 10519 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:12:59 -0600] "GET /index.2022.10.14.security_report.php HTTP/1.1" 200 15119 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:01 -0600] "GET /index.d4abuse.format.2022.05.php HTTP/1.1" 200 8408 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:03 -0600] "GET /index.2023.01.ravencoin.php HTTP/1.1" 200 10118 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:05 -0600] "GET /index.d4abuse.digest.2022.05.php HTTP/1.1" 200 43924 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:07 -0600] "GET /fs_seriousgames_2021_04_06.php HTTP/1.1" 200 11909 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:11 -0600] "GET /index.d4abuse.fraud.2022.05.php HTTP/1.1" 200 46319 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:13 -0600] "GET /fs_covid19_2020_05_05.php HTTP/1.1" 200 12229 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:19 -0600] "GET /index.d4abuse.public_notice.2022.05.php HTTP/1.1" 200 94345 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:22 -0600] "GET /fs_freeproduct_2020_05_05.php HTTP/1.1" 200 9767 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:25 -0600] "GET /index.d4abuse.extortion.php HTTP/1.1" 200 34991 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:27 -0600] "GET /fs_namespace_2020_05_05.php HTTP/1.1" 200 9840 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:33 -0600] "GET /index.d4abuse.timeline.php HTTP/1.1" 200 13464 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:35 -0600] "GET /fs_pricing_2020_05_05.php HTTP/1.1" 200 10853 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:38 -0600] "GET /index.20220705.omnibus.php HTTP/1.1" 200 228114 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:42 -0600] "GET /fs_management_2020_05_05.php HTTP/1.1" 200 23163 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:45 -0600] "GET /terms_2021_3Q.php HTTP/1.1" 200 10932 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:46 -0600] "GET /fs_advnet_hcl.php HTTP/1.1" 200 9940 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:53 -0600] "GET /privacy_policy_criminal.php HTTP/1.1" 200 10413 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:55 -0600] "GET /fs_consulting.php HTTP/1.1" 200 9493 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:13:59 -0600] "GET /index.php HTTP/1.1" 200 257486 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:14:01 -0600] "GET /fs_more.php HTTP/1.1" 200 14758 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:14:03 -0600] "GET /rs_host.2023.01.php HTTP/1.1" 200 10191 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:14:05 -0600] "GET /fs_about.php HTTP/1.1" 200 12661 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" 154.95.1.44 - - 154.95.1.44 - - [04/Feb/2023:22:14:08 -0600] "GET /rs_metal.2023.01.php HTTP/1.1" 200 10076 "https://outnumberedbyone.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36" # whois 154.95.1.44 [Querying whois.afrinic.net] [whois.afrinic.net] % This is the AfriNIC Whois server. % The AFRINIC whois database is subject to the following terms of Use. See https://afrinic.net/whois/terms % Note: this output has been filtered. % To receive output for a database update, use the "-B" flag. % Information related to '154.95.1.0 - 154.95.1.255' % No abuse contact registered for 154.95.1.0 - 154.95.1.255 inetnum: 154.95.1.0 - 154.95.1.255 netname: Future_Tech_Distribution descr: Future Tech Distribution country: FR admin-c: CIS1-AFRINIC tech-c: CIS1-AFRINIC status: ASSIGNED PA mnt-by: CIL1-MNT mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered parent: 154.80.0.0 - 154.95.255.255 person: Cloud Innovation Support address: Ebene address: MU address: Mahe address: Seychelles phone: tel:+248-4-610-795 nic-hdl: CIS1-AFRINIC abuse-mailbox: abuse@cloudinnovation.org mnt-by: CIL1-MNT source: AFRINIC # Filtered % Information related to '154.95.1.0/24AS9009' route: 154.95.1.0/24 descr: Future Tech Distribution origin: AS9009 mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered