Thu May 7 06:25:08 MDT 2020 06:25:08 up 72 days, 10:53, 1 user, load average: 0.47, 0.32, 0.29 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 24Feb20 72days 1:26m 2.81s /usr/bin/lxsession -s LXDE-pi -e LXDE 213.233.179.200 - - [07/May/2020:12:45:27 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 185.202.1.196 - - [07/May/2020:12:51:30 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 77.159.94.38 - - [07/May/2020:13:04:08 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 94.140.114.17 - - [07/May/2020:13:22:14 +0000] "GET / HTTP/1.0" 200 25000 "" "Pandalytics/1.0 (https://domainsbot.com/pandalytics/)" 176.197.174.158 - - [07/May/2020:13:34:54 +0000] "GET / HTTP/1.1" 200 25000 "" "" 162.243.144.250 - - [07/May/2020:13:39:46 +0000] "GET /ReportServer HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 176.197.174.158 - - [07/May/2020:13:50:50 +0000] "GET / HTTP/1.1" 200 25000 "" "" 5.188.206.50 - - [07/May/2020:15:42:24 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 46.150.131.51 - - [07/May/2020:15:56:24 +0000] "GET / HTTP/1.1" 400 0 "" "" 114.34.229.27 - - [07/May/2020:16:37:53 +0000] "GET / HTTP/1.1" 400 0 "" "" 92.118.161.49 - - [07/May/2020:18:50:55 +0000] "GET / HTTP/1.1" 200 25000 "" "NetSystemsResearch studies the availability of various services across the internet. Our website is netsystemsresearch.com" 139.162.119.197 - - [07/May/2020:18:51:37 +0000] "GET / HTTP/1.1" 200 25000 "" "HTTP Banner Detection (https://security.ipip.net)" 46.38.50.191 - - [07/May/2020:18:54:51 +0000] "GET / HTTP/1.0" 200 25000 "" "masscan/1.0 (https://github.com/robertdavidgraham/masscan)" 177.223.108.6 - - [07/May/2020:19:21:43 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 121.33.238.218 - - [07/May/2020:20:56:43 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 193.42.99.162 - - [07/May/2020:21:11:34 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 193.42.99.162 - - [07/May/2020:21:11:34 +0000] "HEAD /robots.txt HTTP/1.0" 200 0 "" "" 45.174.215.99 - - [07/May/2020:21:26:26 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 89.121.143.119 - - [07/May/2020:21:55:27 +0000] "GET / HTTP/1.1" 400 0 "" "" 143.255.150.22 - - [07/May/2020:22:17:26 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 46.98.128.168 - - [07/May/2020:23:47:22 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 39.107.238.8 - - [08/May/2020:00:19:18 +0000] "GET /console HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:18 +0000] "GET /cgi-bin/test-cgi HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:19 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:20 +0000] "GET /horde/imp/test.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:20 +0000] "GET /login.action HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:21 +0000] "GET /login?from=0.000000 HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:22 +0000] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:22 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 39.107.238.8 - - [08/May/2020:00:19:23 +0000] "GET /login/do_login HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 51.158.28.134 - - [08/May/2020:00:30:20 +0000] "GET / HTTP/1.1" 200 25000 "" "" 60.191.52.254 - - [08/May/2020:01:04:53 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 60.191.52.254 - - [08/May/2020:01:04:53 +0000] "HEAD / HTTP/1.1" 200 0 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.143 Safari/537.36" 122.228.19.79 - - [08/May/2020:01:18:33 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 104.40.0.178 - - [08/May/2020:01:41:18 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 171.232.103.235 - - [08/May/2020:02:16:25 +0000] "GET / HTTP/1.1" 400 0 "" "" 51.254.59.113 - - [08/May/2020:02:55:20 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:21 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:22 +0000] "GET /ac0xl/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:23 +0000] "GET /delinquent-accounts/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:23 +0000] "GET /documents/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:24 +0000] "GET /downloads/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:24 +0000] "GET /freedom/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:25 +0000] "GET /memes/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:26 +0000] "GET /music/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:26 +0000] "GET /pictures/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:27 +0000] "GET /va/ HTTP/1.1" 401 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:27 +0000] "GET /videos/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:28 +0000] "GET /ac0xl/ac0xl/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:28 +0000] "GET /ac0xl/ac0xl/Dont-Be-Evil/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:29 +0000] "GET /ac0xl/ac0xl/illuminati/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:29 +0000] "GET /ac0xl/ac0xl/logs/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:30 +0000] "GET /ac0xl/ac0xl/www/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:31 +0000] "GET /delinquent-accounts/delinquent-accounts/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:31 +0000] "GET /delinquent-accounts/delinquent-accounts/I-Camp-RV-Park-Campground-Green-River-Utah-84525/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:32 +0000] "GET /documents/documents/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:32 +0000] "GET /downloads/downloads/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:33 +0000] "GET /downloads/downloads/4laws.com/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:33 +0000] "GET /freedom/freedom/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:34 +0000] "GET /freedom/freedom/freedom/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:34 +0000] "GET /freedom/freedom/freedom-2020-01-08/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:35 +0000] "GET /memes/memes/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:35 +0000] "GET /music/music/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:36 +0000] "GET /music/music/Songs/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:36 +0000] "GET /pictures/pictures/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:37 +0000] "GET /pictures/pictures/StMichaelTheArchangelMission/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:37 +0000] "GET /videos/videos/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:38 +0000] "GET /freedom/freedom/freedom/freedom/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 51.254.59.113 - - [08/May/2020:02:55:38 +0000] "GET /freedom/freedom/freedom/freedom/thttpd-extras/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 167.58.134.73 - - [08/May/2020:03:54:41 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 86.109.43.74 - - [08/May/2020:03:57:35 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 102.97.114.179 - - [08/May/2020:04:40:15 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 102.97.179.57 - - [08/May/2020:07:11:09 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 93.61.136.40 - - [08/May/2020:07:55:48 +0000] "POST /boaform/admin/formPing HTTP/1.1" 400 0 "" "polaris botnet" 93.61.136.40 - - [08/May/2020:07:55:48 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 130.61.36.89 - - [08/May/2020:08:36:46 +0000] "GET /console HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:46 +0000] "GET /cgi-bin/test-cgi HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:47 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:47 +0000] "GET /horde/imp/test.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:48 +0000] "GET /login.action HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:48 +0000] "GET /login?from=0.000000 HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:48 +0000] "GET /phpMyAdmin/scripts/setup.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:49 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 130.61.36.89 - - [08/May/2020:08:36:49 +0000] "GET /login/do_login HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0" 94.228.29.214 - - [08/May/2020:09:11:50 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 14.102.19.206 - - [08/May/2020:10:05:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 105.159.249.53 - - [08/May/2020:10:38:18 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 105.159.249.53 - - [08/May/2020:10:38:24 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 105.159.249.53 - - [08/May/2020:10:38:27 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 105.159.249.53 - - [08/May/2020:10:38:29 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 105.159.249.53 - - [08/May/2020:10:38:30 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 105.159.249.53 - - [08/May/2020:10:38:37 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 105.159.249.53 - - [08/May/2020:10:38:42 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 61.2.22.64 - - [08/May/2020:11:15:05 +0000] "GET / HTTP/1.1" 400 0 "" "" 175.4.219.164 - - [08/May/2020:11:26:24 +0000] "POST /HNAP1/ HTTP/1.0" 404 0 "" "" Fri May 8 06:25:07 MDT 2020 06:25:07 up 73 days, 10:53, 1 user, load average: 0.31, 0.27, 0.27 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 24Feb20 73days 1:27m 2.81s /usr/bin/lxsession -s LXDE-pi -e LXDE