Sun Sep 1 06:25:09 MDT 2019 06:25:09 up 10:23, 1 user, load average: 0.07, 0.28, 0.57 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 20:00 11:01m 43.75s 0.55s /usr/bin/lxsession -s LXDE-pi -e LXDE 123.21.23.5 - - [01/Sep/2019:12:38:04 +0000] "UNKNOWN HTTP" 400 0 "" "" 83.239.18.110 - - [01/Sep/2019:13:49:24 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 202.137.154.20 - - [01/Sep/2019:13:50:35 +0000] "UNKNOWN HTTP" 400 0 "" "" 60.191.0.245 - - [01/Sep/2019:14:28:39 +0000] "GET / HTTP/1.0" 200 25000 "" "" 115.238.44.234 - - [01/Sep/2019:14:28:57 +0000] "GET / HTTP/1.0" 200 25000 "" "" 45.67.171.152 - - [01/Sep/2019:14:30:43 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 36.49.86.135 - - [01/Sep/2019:15:06:04 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 89.23.192.57 - - [01/Sep/2019:15:21:28 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 177.188.124.197 - - [01/Sep/2019:15:57:57 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 177.188.124.197 - - [01/Sep/2019:15:57:57 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 187.188.183.106 - - [01/Sep/2019:16:47:05 +0000] "UNKNOWN HTTP" 400 0 "" "" 37.75.3.161 - - [01/Sep/2019:18:35:36 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 77.40.2.216 - - [01/Sep/2019:20:14:31 +0000] "GET /Security/users?auth=YWRtaW46MTEK HTTP/1.1" 404 0 "" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; Media Center PC 6.0; InfoPath.3; MS-RTC LM 8; Zune 4.7)" 138.204.135.118 - - [01/Sep/2019:20:15:57 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 94.228.236.103 - - [01/Sep/2019:20:29:30 +0000] "UNKNOWN HTTP" 400 0 "" "" 180.101.253.161 - - [01/Sep/2019:21:04:09 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 180.101.253.161 - - [01/Sep/2019:21:04:12 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:12 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:13 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:13 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:13 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:14 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:14 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:15 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 180.101.253.161 - - [01/Sep/2019:21:04:15 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 82.193.119.226 - - [01/Sep/2019:21:45:03 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 86.120.228.83 - - [01/Sep/2019:21:46:25 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 77.247.110.69 - - [01/Sep/2019:21:56:35 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.69 - - [01/Sep/2019:21:56:35 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 167.179.70.158 - - [01/Sep/2019:23:00:48 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 122.112.133.51 - - [02/Sep/2019:00:13:21 +0000] "GET /w00tw00t.at.blackhats.romanian.anti-sec:) HTTP/1.1" 404 0 "" "ZmEu" 122.112.133.51 - - [02/Sep/2019:00:13:22 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 52.26.78.182 - - [02/Sep/2019:00:29:23 +0000] "UNKNOWN HTTP/1.1" 501 0 "" "" 200.100.81.206 - - [02/Sep/2019:00:40:30 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 187.190.254.98 - - [02/Sep/2019:00:53:26 +0000] "UNKNOWN HTTP" 400 0 "" "" 138.68.216.55 - - [02/Sep/2019:01:37:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 103.73.183.209 - - [02/Sep/2019:03:24:37 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 71.6.158.166 - - [02/Sep/2019:04:07:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 71.6.158.166 - - [02/Sep/2019:04:07:33 +0000] "GET /robots.txt HTTP/1.1" 200 25 "" "" 71.6.158.166 - - [02/Sep/2019:04:07:33 +0000] "GET /sitemap.xml HTTP/1.1" 404 0 "" "" 71.6.158.166 - - [02/Sep/2019:04:07:33 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 0 "" "" 71.6.158.166 - - [02/Sep/2019:04:07:33 +0000] "GET /favicon.ico HTTP/1.1" 404 0 "" "python-requests/2.10.0" 77.247.110.69 - - [02/Sep/2019:04:29:10 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.69 - - [02/Sep/2019:04:29:10 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 218.102.107.192 - - [02/Sep/2019:04:34:53 +0000] "GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=busybox&curpath=/¤tsetting.htm=1 HTTP/1.1" 400 0 "" "Mozilla/5.0" 218.102.107.192 - - [02/Sep/2019:04:34:56 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.14 - - [02/Sep/2019:05:13:30 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.14 - - [02/Sep/2019:05:13:30 +0000] "GET /favicon.ico HTTP/1.1" 404 0 "http://162.250.19.14/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.14 - - [02/Sep/2019:05:13:34 +0000] "GET /AC0XL/ HTTP/1.1" 200 25000 "http://162.250.19.14/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.14 - - [02/Sep/2019:05:13:38 +0000] "GET /AC0XL/logs/ HTTP/1.1" 200 25000 "http://162.250.19.14/AC0XL/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.14 - - [02/Sep/2019:05:13:51 +0000] "GET /AC0XL/logs/2019.09.01 HTTP/1.1" 200 6488 "http://162.250.19.14/AC0XL/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 190.239.194.21 - - [02/Sep/2019:05:38:29 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 187.189.46.156 - - [02/Sep/2019:05:40:54 +0000] "UNKNOWN HTTP" 400 0 "" "" 113.172.29.84 - - [02/Sep/2019:06:04:55 +0000] "UNKNOWN HTTP" 400 0 "" "" 202.137.154.54 - - [02/Sep/2019:06:27:06 +0000] "UNKNOWN HTTP" 400 0 "" "" 61.219.11.153 - - [02/Sep/2019:07:40:27 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 147.92.33.27 - - [02/Sep/2019:07:56:38 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 147.92.33.27 - - [02/Sep/2019:07:56:45 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:46 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:46 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:47 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:47 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:47 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:48 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:48 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 147.92.33.27 - - [02/Sep/2019:07:56:48 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 103.79.114.134 - - [02/Sep/2019:08:33:48 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 192.186.4.210 - - [02/Sep/2019:08:56:01 +0000] "GET /phpmyadmin HTTP/1.1" 404 0 "http://162.250.19.14/phpmyadmin" "Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)" 187.188.209.138 - - [02/Sep/2019:09:21:42 +0000] "UNKNOWN HTTP" 400 0 "" "" 113.172.169.27 - - [02/Sep/2019:10:17:51 +0000] "UNKNOWN HTTP" 400 0 "" "" 201.95.47.54 - - [02/Sep/2019:10:25:46 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 191.100.27.153 - - [02/Sep/2019:10:30:07 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 218.173.135.231 - - [02/Sep/2019:10:47:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 89.248.174.219 - - [02/Sep/2019:10:49:24 +0000] "GET /lang/en/images/banner_bg.jpg HTTP/1.1" 404 0 "" "" 35.233.105.134 - - [02/Sep/2019:10:55:22 +0000] "GET / HTTP/1.1" 200 25000 "" "python-requests/2.18.4" 35.205.86.202 - - [02/Sep/2019:11:38:34 +0000] "GET / HTTP/1.1" 200 25000 "" "python-requests/2.18.4" 89.248.174.219 - - [02/Sep/2019:12:18:27 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" Mon Sep 2 06:25:03 MDT 2019 06:25:03 up 1 day, 10:23, 1 user, load average: 0.00, 0.00, 0.00 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Sat20 35:01m 1:55 0.74s /usr/bin/lxsession -s LXDE-pi -e LXDE