Mon Oct 21 06:25:05 MDT 2019 06:25:05 up 3 days, 20:20, 1 user, load average: 0.25, 0.27, 0.33 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Thu09 3days 5:07 0.77s /usr/bin/lxsession -s LXDE-pi -e LXDE 212.125.6.214 - - [21/Oct/2019:12:58:27 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 77.247.110.240 - - [21/Oct/2019:13:10:46 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.240 - - [21/Oct/2019:13:10:46 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 185.234.219.43 - - [21/Oct/2019:13:19:46 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/68.0.3440.106 Safari/537.36" 109.100.190.15 - - [21/Oct/2019:14:02:43 +0000] "POST /editBlackAndWhiteList HTTP/1.1" 404 0 "" "ApiTool" 139.162.106.181 - - [21/Oct/2019:14:47:46 +0000] "GET / HTTP/1.1" 200 25000 "" "HTTP Banner Detection (https://security.ipip.net)" 187.72.221.126 - - [21/Oct/2019:15:36:33 +0000] "GET / HTTP/1.0" 200 25000 "" "" 187.72.221.126 - - [21/Oct/2019:16:25:42 +0000] "GET / HTTP/1.0" 200 25000 "" "" 202.158.27.205 - - [21/Oct/2019:16:30:49 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 89.248.169.17 - - [21/Oct/2019:17:27:52 +0000] "GET / HTTP/1.1" 200 25000 "" "" 187.72.221.126 - - [21/Oct/2019:17:51:34 +0000] "GET / HTTP/1.0" 200 25000 "" "" 95.12.138.196 - - [21/Oct/2019:18:07:44 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 123.200.4.34 - - [21/Oct/2019:19:28:34 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 110.78.152.7 - - [21/Oct/2019:19:30:44 +0000] "GET / HTTP/1.0" 200 25000 "" "" 179.104.237.57 - - [21/Oct/2019:23:14:26 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 169.255.5.214 - - [21/Oct/2019:23:42:09 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 179.104.237.57 - - [22/Oct/2019:00:15:10 +0000] "GET / HTTP/1.0" 200 25000 "" "" 192.168.19.27 - - [22/Oct/2019:00:38:53 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:38:58 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:39:26 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:39:31 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:39:36 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:39:41 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:39:46 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:41:40 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:41:46 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:12 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:17 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:22 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:27 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:32 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:37 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:42 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:47 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:52 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:42:57 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:43:02 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 192.168.19.27 - - [22/Oct/2019:00:43:07 +0000] "POST /cpca-capt HTTP/1.1" 404 0 "" "" 222.186.130.42 - - [22/Oct/2019:01:08:01 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 222.186.130.42 - - [22/Oct/2019:01:08:05 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:06 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:06 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:07 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:09 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:10 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:10 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:11 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 222.186.130.42 - - [22/Oct/2019:01:08:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 162.250.19.7 - - [22/Oct/2019:01:17:04 +0000] "GET /ac0xl/logs/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [22/Oct/2019:01:17:05 +0000] "GET /favicon.ico HTTP/1.1" 404 0 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 92.118.160.49 - - [22/Oct/2019:02:00:31 +0000] "GET / HTTP/1.0" 200 25000 "" "NetSystemsResearch studies the availability of various services across the internet. Our website is netsystemsresearch.com" 139.162.106.181 - - [22/Oct/2019:04:00:26 +0000] "GET / HTTP/1.1" 200 25000 "" "HTTP Banner Detection (https://security.ipip.net)" 189.177.246.163 - - [22/Oct/2019:04:07:21 +0000] "GET / HTTP/1.1" 200 25000 "" "" 47.89.192.12 - - [22/Oct/2019:04:29:44 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 78.142.33.13 - - [22/Oct/2019:04:44:38 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 60.191.52.254 - - [22/Oct/2019:04:46:39 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 60.191.52.254 - - [22/Oct/2019:04:46:39 +0000] "HEAD / HTTP/1.1" 200 0 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.143 Safari/537.36" 52.12.12.140 - - [22/Oct/2019:05:27:02 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36" 45.239.40.167 - - [22/Oct/2019:06:04:26 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 45.239.40.167 - - [22/Oct/2019:06:04:29 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:29 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:29 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:30 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:30 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:30 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:31 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:31 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 45.239.40.167 - - [22/Oct/2019:06:04:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 167.71.110.72 - - [22/Oct/2019:06:35:58 +0000] "GET /w00tw00t.at.blackhats.romanian.anti-sec:) HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:58 +0000] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:58 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:58 +0000] "GET /pma/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:58 +0000] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:58 +0000] "GET /MyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:59 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:59 +0000] "GET /mysql/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:59 +0000] "GET /phpMyAdmin-2.10.0.0/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:59 +0000] "GET /phpMyAdmin-2.10.0.1/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:59 +0000] "GET /phpMyAdmin-2.10.0.2/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 167.71.110.72 - - [22/Oct/2019:06:35:59 +0000] "GET /SQL/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 190.214.52.154 - - [22/Oct/2019:07:00:56 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 212.109.216.36 - - [22/Oct/2019:08:38:54 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 201.139.225.75 - - [22/Oct/2019:10:31:58 +0000] "POST /editBlackAndWhiteList HTTP/1.1" 404 0 "" "ApiTool" 191.37.54.203 - - [22/Oct/2019:11:34:12 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 192.143.67.222 - - [22/Oct/2019:12:06:13 +0000] "GET /phpmyadmin/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" Tue Oct 22 06:25:06 MDT 2019 06:25:06 up 4 days, 20:20, 1 user, load average: 0.31, 0.27, 0.31 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Thu09 4days 6:43 1.72s /usr/bin/lxsession -s LXDE-pi -e LXDE