Sun Aug 25 06:25:02 MDT 2019 06:25:02 up 4 days, 10:14, 1 user, load average: 0.08, 0.02, 0.01 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Tue22 4days 9:32 1.25s /usr/bin/lxsession -s LXDE-pi -e LXDE 54.81.179.218 - - [25/Aug/2019:13:16:31 +0000] "GET / HTTP/1.1" 200 25000 "" "Cloud mapping experiment. Contact research@pdrlabs.net" 5.39.37.10 - - [25/Aug/2019:13:32:19 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 5.39.37.10 - - [25/Aug/2019:13:32:19 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 31.170.172.176 - - [25/Aug/2019:15:16:57 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/601.7.7 (KHTML, like Gecko) Version/9.1.2 Safari/601.7.7" 66.240.205.34 - - [25/Aug/2019:15:44:00 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 100.25.145.245 - - [25/Aug/2019:17:28:11 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.2;en-US) AppleWebKit/537.32.36 (KHTML, live Gecko) Chrome/60.0.3041.108 Safari/537.32" 219.234.88.88 - - [25/Aug/2019:18:28:44 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 219.234.88.88 - - [25/Aug/2019:18:28:48 +0000] "GET /TP/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:48 +0000] "GET /TP/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:50 +0000] "GET /thinkphp/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:50 +0000] "GET /html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:52 +0000] "GET /public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:52 +0000] "GET /TP/html/public/index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:53 +0000] "GET /elrekt.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:54 +0000] "GET /index.php HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 219.234.88.88 - - [25/Aug/2019:18:28:54 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows; U; Windows NT 6.0;en-US; rv:1.9.2) Gecko/20100115 Firefox/3.6)" 89.248.174.39 - - [25/Aug/2019:18:29:33 +0000] "GET /y000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:18:29:34 +0000] "GET /000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:18:29:34 +0000] "GET /polycom/000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:18:29:34 +0000] "GET /yealink/y000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:18:29:35 +0000] "GET /pv/y000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:18:29:35 +0000] "GET /pv/000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 195.154.86.34 - - [25/Aug/2019:19:00:38 +0000] "GET /w00tw00t.at.blackhats.romanian.anti-sec:) HTTP/1.1" 404 0 "" "ZmEu" 195.154.86.34 - - [25/Aug/2019:19:00:39 +0000] "GET /phpmyadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 195.154.86.34 - - [25/Aug/2019:19:00:39 +0000] "GET /pma/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 195.154.86.34 - - [25/Aug/2019:19:00:39 +0000] "GET /myadmin/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 195.154.86.34 - - [25/Aug/2019:19:00:40 +0000] "GET /mysql/scripts/setup.php HTTP/1.1" 404 0 "" "ZmEu" 60.191.52.254 - - [25/Aug/2019:19:26:06 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 60.191.52.254 - - [25/Aug/2019:19:26:06 +0000] "HEAD / HTTP/1.1" 200 0 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.143 Safari/537.36" 95.81.230.141 - - [25/Aug/2019:21:55:04 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 13.83.85.78 - - [25/Aug/2019:22:34:24 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 77.247.110.69 - - [25/Aug/2019:22:57:04 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.69 - - [25/Aug/2019:22:57:04 +0000] "HEAD /robots.txt HTTP/1.0" 404 0 "" "" 89.248.174.39 - - [25/Aug/2019:23:15:59 +0000] "GET /y000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:23:16:00 +0000] "GET /000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:23:16:00 +0000] "GET /polycom/000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:23:16:01 +0000] "GET /yealink/y000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:23:16:02 +0000] "GET /pv/y000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 89.248.174.39 - - [25/Aug/2019:23:16:02 +0000] "GET /pv/000000000000.cfg HTTP/1.1" 404 0 "" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0" 5.234.242.148 - - [25/Aug/2019:23:55:24 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 104.193.238.77 - - [26/Aug/2019:00:00:43 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.103 Safari/537.36" 47.89.192.12 - - [26/Aug/2019:02:02:13 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 zgrab/0.x" 13.57.205.209 - - [26/Aug/2019:02:28:08 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36" 62.173.149.190 - - [26/Aug/2019:05:41:05 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 62.173.149.190 - - [26/Aug/2019:05:41:05 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 62.173.149.190 - - [26/Aug/2019:05:41:05 +0000] "GET /HNAP1/ HTTP/1.1" 404 0 "http://162.250.19.14/" "Mozilla/5.0 (Windows NT 5.1; rv:9.0.1) Gecko/20100101 Firefox/9.0.1" 24.12.190.15 - - [26/Aug/2019:05:44:38 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 24.12.190.15 - - [26/Aug/2019:05:44:38 +0000] "GET / HTTP/1.1" 200 25000 "" "" 14.102.94.116 - - [26/Aug/2019:05:52:55 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2743.116 Safari/537.36" 46.246.42.134 - - [26/Aug/2019:06:54:06 +0000] "GET /muieblackcat HTTP/1.1" 404 0 "" "" 46.246.42.134 - - [26/Aug/2019:06:54:07 +0000] "GET //phpMyAdmin/scripts/setup.php HTTP/1.1" 400 0 "" "" 46.246.42.134 - - [26/Aug/2019:06:54:09 +0000] "GET //phpmyadmin/scripts/setup.php HTTP/1.1" 400 0 "" "" 46.246.42.134 - - [26/Aug/2019:06:54:10 +0000] "GET //pma/scripts/setup.php HTTP/1.1" 400 0 "" "" 46.246.42.134 - - [26/Aug/2019:06:54:10 +0000] "GET //myadmin/scripts/setup.php HTTP/1.1" 400 0 "" "" 46.246.42.134 - - [26/Aug/2019:06:54:11 +0000] "GET //MyAdmin/scripts/setup.php HTTP/1.1" 400 0 "" "" 172.104.242.173 - - [26/Aug/2019:07:23:59 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.69 - - [26/Aug/2019:08:25:42 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.69 - - [26/Aug/2019:08:25:42 +0000] "HEAD /robots.txt HTTP/1.0" 404 0 "" "" 159.65.154.19 - - [26/Aug/2019:09:32:26 +0000] "GET / HTTP/1.0" 200 25000 "" "masscan/1.0 (https://github.com/robertdavidgraham/masscan)" 193.106.29.210 - - [26/Aug/2019:09:50:32 +0000] "GET / HTTP/1.1" 200 25000 "" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0) Gecko/20100101 Firefox/67.0" 77.247.110.69 - - [26/Aug/2019:10:59:14 +0000] "UNKNOWN UNKNOWN" 0 0 "" "" 77.247.110.69 - - [26/Aug/2019:10:59:14 +0000] "HEAD /robots.txt HTTP/1.0" 404 0 "" "" 45.196.213.186 - - [26/Aug/2019:11:03:28 +0000] "UNKNOWN UNKNOWN" 400 0 "" "" 185.35.63.49 - - [26/Aug/2019:11:49:30 +0000] "GET / HTTP/1.1" 200 25000 "" "tv" Mon Aug 26 06:25:06 MDT 2019 06:25:06 up 5 days, 10:14, 1 user, load average: 0.00, 0.01, 0.00 USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT pi tty7 :0 Tue22 5days 10:13 1.25s /usr/bin/lxsession -s LXDE-pi -e LXDE