Sat Jun 20 06:25:08 MDT 2020 06:25:08 up 2 days, 21:40, 1 user, load average: 0.51, 0.27, 0.29 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 13Jun20 6days 2:01 0.30s /usr/bin/lxsession -s LXDE-pi -e LXDE 195.54.160.135 - - [20/Jun/2020:12:31:12 +0000] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 87.255.196.56 - - [20/Jun/2020:12:31:46 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 192.35.168.196 - - [20/Jun/2020:12:34:15 +0000] "GET / HTTP/1.1" 200 25000 "" "" 192.35.168.196 - - [20/Jun/2020:12:34:15 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 195.54.160.135 - - [20/Jun/2020:13:00:18 +0000] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 45.201.151.5 - - [20/Jun/2020:14:29:53 +0000] "GET / HTTP/1.1" 400 0 "" "" 202.182.108.7 - - [20/Jun/2020:17:58:01 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 84.194.172.110 - - [20/Jun/2020:18:42:06 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:37:41 +0000] "GET /ac0xl/logs/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:37:42 +0000] "GET /favicon.ico HTTP/1.1" 304 0 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:38:12 +0000] "GET /ac0xl/logs/2020.06.14 HTTP/1.1" 200 4376 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:38:53 +0000] "GET /ac0xl/logs/2020.06.15 HTTP/1.1" 200 61 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:39:13 +0000] "GET /ac0xl/logs/2020.06.16 HTTP/1.1" 200 61 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:39:31 +0000] "GET /ac0xl/logs/2020.06.17 HTTP/1.1" 200 61 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:39:47 +0000] "GET /ac0xl/logs/2020.06.18 HTTP/1.1" 200 14553 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:40:30 +0000] "GET /ac0xl/logs/2020.06.19 HTTP/1.1" 200 446935 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 162.250.19.7 - - [20/Jun/2020:19:41:46 +0000] "GET /ac0xl/logs/2020.06.20 HTTP/1.1" 200 10962 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (X11; Linux armv7l) AppleWebKit/537.36 (KHTML, like Gecko) Raspbian Chromium/72.0.3626.121 Chrome/72.0.3626.121 Safari/537.36" 149.34.41.95 - - [20/Jun/2020:19:47:55 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 78.83.133.220 - - [20/Jun/2020:20:31:17 +0000] "GET / HTTP/1.1" 400 0 "" "" 103.124.87.214 - - [20/Jun/2020:21:05:59 +0000] "GET / HTTP/1.1" 400 0 "" "" 82.64.41.64 - - [20/Jun/2020:21:22:50 +0000] "GET / HTTP/1.0" 200 25000 "" "" 185.107.80.34 - - [20/Jun/2020:21:51:35 +0000] "GET / HTTP/1.1" 200 25000 "http://162.250.19.7:80/left.html" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 45.173.78.221 - - [20/Jun/2020:21:58:25 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 203.128.9.14 - - [21/Jun/2020:01:10:36 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 195.54.160.135 - - [21/Jun/2020:02:06:40 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 195.54.160.135 - - [21/Jun/2020:02:15:13 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 195.54.160.135 - - [21/Jun/2020:02:15:14 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 195.54.160.135 - - [21/Jun/2020:02:35:34 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 82.191.134.50 - - [21/Jun/2020:02:47:29 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 83.97.20.21 - - [21/Jun/2020:03:50:02 +0000] "GET / HTTP/1.0" 200 25000 "" "" 195.54.160.135 - - [21/Jun/2020:06:03:46 +0000] "POST /api/jsonws/invoke HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 111.231.207.212 - - [21/Jun/2020:07:01:45 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 111.231.207.212 - - [21/Jun/2020:07:01:46 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:48 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:51 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:52 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:53 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:54 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:54 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:01:56 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 111.231.207.212 - - [21/Jun/2020:07:02:00 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 171.6.82.194 - - [21/Jun/2020:07:10:11 +0000] "GET /wp-login.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0" 94.177.214.123 - - [21/Jun/2020:07:32:00 +0000] "POST /boaform/admin/formLogin HTTP/1.1" 404 0 "http://162.250.19.7:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 178.94.55.36 - - [21/Jun/2020:07:48:17 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 94.177.214.123 - - [21/Jun/2020:08:32:32 +0000] "GET / HTTP/1.1" 200 25000 "http://162.250.19.7:80/left.html" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:77.0) Gecko/20100101 Firefox/77.0" 81.5.163.65 - - [21/Jun/2020:10:01:23 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 193.37.255.114 - - [21/Jun/2020:10:19:17 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/41.0.2228.0 Safari/537.36" 193.37.255.114 - - [21/Jun/2020:10:19:18 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "" 193.37.255.114 - - [21/Jun/2020:10:19:18 +0000] "GET /sitemap.xml HTTP/1.1" 200 186 "" "" 193.37.255.114 - - [21/Jun/2020:10:19:18 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 0 "" "" 193.37.255.114 - - [21/Jun/2020:10:19:19 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "python-requests/2.23.0" 185.156.73.64 - - [21/Jun/2020:10:27:17 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36" 185.156.73.64 - - [21/Jun/2020:10:27:17 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36" 185.156.73.64 - - [21/Jun/2020:10:27:18 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36" 88.253.231.118 - - [21/Jun/2020:10:41:02 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 94.182.245.95 - - [21/Jun/2020:10:47:20 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 205.185.114.231 - - [21/Jun/2020:11:09:46 +0000] "POST /boaform/admin/formLogin HTTP/1.1" 404 0 "http://162.250.19.7:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 162.243.138.29 - - [21/Jun/2020:12:06:37 +0000] "GET /hudson HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 84.243.204.97 - - [21/Jun/2020:12:13:09 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" Sun Jun 21 06:25:14 MDT 2020 06:25:15 up 3 days, 21:40, 1 user, load average: 0.61, 0.36, 0.31 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 13Jun20 7days 5:15 0.61s /usr/bin/lxsession -s LXDE-pi -e LXDE