Fri Feb 21 06:25:06 MST 2020 06:25:06 up 2 days, 17:00, 1 user, load average: 0.28, 0.23, 0.26 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Tue13 2days 2:19 0.35s /usr/bin/lxsession -s LXDE-pi -e LXDE 83.97.20.33 - - [21/Feb/2020:13:40:04 +0000] "GET / HTTP/1.0" 200 25000 "" "" 162.243.131.220 - - [21/Feb/2020:14:18:01 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 62.173.154.34 - - [21/Feb/2020:15:04:52 +0000] "GET / HTTP/1.1" 200 25000 "" "" 189.157.234.229 - - [21/Feb/2020:15:22:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 5.54.32.55 - - [21/Feb/2020:16:09:56 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 5.54.32.55 - - [21/Feb/2020:16:09:57 +0000] "GET / HTTP/1.1" 400 0 "" "" 119.236.37.180 - - [21/Feb/2020:16:51:28 +0000] "GET / HTTP/1.1" 400 0 "" "" 37.130.217.242 - - [21/Feb/2020:17:05:02 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 62.173.150.13 - - [21/Feb/2020:17:12:14 +0000] "GET / HTTP/1.1" 200 25000 "" "python-requests/2.18.4" 216.221.205.143 - - [21/Feb/2020:17:37:10 +0000] "POST /HNAP1/ HTTP/1.0" 404 0 "" "" 182.185.252.113 - - [21/Feb/2020:17:51:43 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 95.133.5.189 - - [21/Feb/2020:19:08:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 92.81.19.27 - - [21/Feb/2020:20:13:24 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 92.81.19.27 - - [21/Feb/2020:20:13:24 +0000] "GET / HTTP/1.1" 400 0 "" "" 66.240.205.34 - - [21/Feb/2020:21:06:35 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 116.92.226.106 - - [21/Feb/2020:22:10:38 +0000] "GET / HTTP/1.1" 400 0 "" "" 66.50.0.99 - - [21/Feb/2020:22:46:32 +0000] "GET / HTTP/1.1" 400 0 "" "" 211.22.218.77 - - [21/Feb/2020:23:13:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 182.52.137.20 - - [21/Feb/2020:23:58:25 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 202.40.191.115 - - [22/Feb/2020:00:18:02 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 202.40.191.115 - - [22/Feb/2020:00:18:09 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:09 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:10 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:11 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:11 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:12 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:13 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:13 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 202.40.191.115 - - [22/Feb/2020:00:18:14 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 5.101.0.209 - - [22/Feb/2020:02:26:39 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 47.106.176.189 - - [22/Feb/2020:02:28:55 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 168.232.87.194 - - [22/Feb/2020:02:45:03 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 5.101.0.209 - - [22/Feb/2020:02:54:35 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 5.101.0.209 - - [22/Feb/2020:02:54:36 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 80.45.206.193 - - [22/Feb/2020:02:57:11 +0000] "GET / HTTP/1.1" 400 0 "" "" 5.101.0.209 - - [22/Feb/2020:03:01:33 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 128.14.133.58 - - [22/Feb/2020:03:42:14 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 " 60.190.59.207 - - [22/Feb/2020:05:34:52 +0000] "GET /manager/html HTTP/1.1" 404 0 "" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.2; WOW64; Trident/6.0)" 151.235.213.165 - - [22/Feb/2020:05:58:46 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 151.235.213.165 - - [22/Feb/2020:05:58:46 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 193.57.40.38 - - [22/Feb/2020:08:31:55 +0000] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 79.100.211.71 - - [22/Feb/2020:08:49:47 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 95.92.110.33 - - [22/Feb/2020:09:02:43 +0000] "GET /phpmyadmin/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 222.186.19.221 - - [22/Feb/2020:09:16:58 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 193.57.40.38 - - [22/Feb/2020:09:50:29 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 190.57.144.46 - - [22/Feb/2020:10:03:29 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 212.107.224.141 - - [22/Feb/2020:10:21:36 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 193.57.40.38 - - [22/Feb/2020:10:39:26 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.57.40.38 - - [22/Feb/2020:11:39:23 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 46.227.152.110 - - [22/Feb/2020:13:03:21 +0000] "GET / HTTP/1.1" 400 0 "" "" 94.102.51.22 - - [22/Feb/2020:13:06:21 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 94.102.51.22 - - [22/Feb/2020:13:06:22 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 94.102.51.22 - - [22/Feb/2020:13:06:22 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 94.102.51.22 - - [22/Feb/2020:13:06:22 +0000] "GET / HTTP/1.1" 200 25000 "" "curl/7.60.0" Sat Feb 22 06:25:06 MST 2020 06:25:06 up 3 days, 17:00, 1 user, load average: 0.33, 0.26, 0.26 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Tue13 3days 2:54 0.35s /usr/bin/lxsession -s LXDE-pi -e LXDE