Fri Mar 13 06:25:06 MDT 2020 06:25:06 up 17 days, 10:53, 1 user, load average: 0.35, 0.33, 0.29 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 24Feb20 17days 17:00 1.54s /usr/bin/lxsession -s LXDE-pi -e LXDE 196.52.43.57 - - [13/Mar/2020:13:12:36 +0000] "GET / HTTP/1.0" 200 25000 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3602.2 Safari/537.36" 193.57.40.38 - - [13/Mar/2020:13:14:50 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 79.1.136.30 - - [13/Mar/2020:13:24:23 +0000] "GET / HTTP/1.0" 200 25000 "" "" 190.216.108.77 - - [13/Mar/2020:14:16:38 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 172.105.89.161 - - [13/Mar/2020:14:31:05 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 23.234.33.120 - - [13/Mar/2020:14:58:57 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 171.67.71.97 - - [13/Mar/2020:15:12:16 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 144.217.207.84 - - [13/Mar/2020:15:13:54 +0000] "GET /ssf.zip HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 152.169.68.171 - - [13/Mar/2020:15:25:55 +0000] "GET / HTTP/1.1" 400 0 "" "" 171.67.70.81 - - [13/Mar/2020:15:27:04 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 192.241.237.74 - - [13/Mar/2020:15:43:34 +0000] "GET /portal/redlion HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 111.220.91.188 - - [13/Mar/2020:16:19:01 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 77.232.6.163 - - [13/Mar/2020:16:31:02 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 191.97.18.157 - - [13/Mar/2020:17:19:14 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 190.122.148.102 - - [13/Mar/2020:17:21:42 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 31.185.5.197 - - [13/Mar/2020:17:24:18 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 93.140.107.103 - - [13/Mar/2020:18:48:58 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 35.228.243.100 - - [13/Mar/2020:19:45:31 +0000] "UNKNOWN HTTP/1.0" 501 0 "" "" 85.243.40.84 - - [13/Mar/2020:20:51:59 +0000] "GET / HTTP/1.0" 200 25000 "" "" 128.14.134.134 - - [13/Mar/2020:21:10:37 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 " 191.5.178.40 - - [13/Mar/2020:21:29:15 +0000] "GET / HTTP/1.0" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 202.40.191.121 - - [13/Mar/2020:21:52:37 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 2.84.46.35 - - [13/Mar/2020:22:10:26 +0000] "GET / HTTP/1.1" 400 0 "" "" 193.202.44.194 - - [13/Mar/2020:22:29:38 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 193.202.44.194 - - [13/Mar/2020:22:29:38 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 83.97.20.33 - - [13/Mar/2020:22:45:28 +0000] "GET / HTTP/1.0" 200 25000 "" "" 193.57.40.38 - - [13/Mar/2020:23:47:03 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.57.40.38 - - [14/Mar/2020:00:03:27 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.57.40.38 - - [14/Mar/2020:00:17:55 +0000] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 177.93.67.125 - - [14/Mar/2020:00:18:25 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 207.180.192.44 - - [14/Mar/2020:00:30:13 +0000] "GET / HTTP/1.1" 200 25000 "" "libwww-perl/5.833" 193.57.40.38 - - [14/Mar/2020:00:32:40 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 177.222.249.245 - - [14/Mar/2020:01:08:46 +0000] "GET / HTTP/1.1" 400 0 "" "" 193.57.40.38 - - [14/Mar/2020:01:29:57 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 171.67.71.97 - - [14/Mar/2020:01:52:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 103.126.30.134 - - [14/Mar/2020:02:40:19 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 75.183.184.112 - - [14/Mar/2020:03:00:12 +0000] "GET / HTTP/1.1" 400 0 "" "" 171.67.71.243 - - [14/Mar/2020:03:05:30 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 222.186.19.221 - - [14/Mar/2020:03:32:00 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 79.124.62.14 - - [14/Mar/2020:03:45:32 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 103.115.120.250 - - [14/Mar/2020:03:57:36 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 175.141.153.62 - - [14/Mar/2020:04:18:58 +0000] "GET / HTTP/1.1" 400 0 "" "" 192.241.238.137 - - [14/Mar/2020:04:28:15 +0000] "GET /hudson HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 174.94.16.54 - - [14/Mar/2020:05:51:29 +0000] "GET / HTTP/1.1" 400 0 "" "" 45.178.19.238 - - [14/Mar/2020:06:25:03 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 171.67.71.97 - - [14/Mar/2020:06:27:20 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 162.243.128.21 - - [14/Mar/2020:07:09:55 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 171.67.70.112 - - [14/Mar/2020:07:51:00 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 117.239.149.94 - - [14/Mar/2020:08:51:37 +0000] "GET /manager/html HTTP/1.1" 404 0 "" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.2; WOW64; Trident/6.0)" 98.156.168.169 - - [14/Mar/2020:10:25:57 +0000] "GET / HTTP/1.1" 400 0 "" "" 169.197.108.42 - - [14/Mar/2020:11:20:36 +0000] "GET /solr/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 " Sat Mar 14 06:25:05 MDT 2020 06:25:05 up 18 days, 10:53, 1 user, load average: 0.39, 0.27, 0.27 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 24Feb20 18days 17:36 1.54s /usr/bin/lxsession -s LXDE-pi -e LXDE