|
Dec 2, 02:17:06
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:17:06
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 2, 02:17:06
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 2, 02:16:50
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
grep -E "Accepted|session opened"
|
Info
|
|
|
Dec 2, 02:16:50
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
tail -20
|
Info
|
|
|
Dec 2, 02:16:50
2 weeks ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:50
2 weeks ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:50
2 weeks ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_802
|
No details
|
Info
|
|
|
Dec 2, 02:16:49
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo ""
|
Info
|
|
|
Dec 2, 02:16:49
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== SSH AUTH LOG - RECENT LOGINS ==="
|
Critical
|
|
|
Dec 2, 02:16:49
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
tail -50 /var/log/auth.log 2> /dev/null
|
Info
|
|
|
Dec 2, 02:16:48
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast mariadb -u azuracast -pREffK...
|
Critical
|
|
|
Dec 2, 02:16:47
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
head -20
|
Info
|
|
|
Dec 2, 02:16:47
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo ""
|
Info
|
|
|
Dec 2, 02:16:47
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== ACTIVE DATABASE CONNECTIONS ==="
|
Info
|
|
|
Dec 2, 02:16:46
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker network ls
|
Info
|
|
|
Dec 2, 02:16:46
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker inspect azuracast 2> /dev/null
|
Info
|
|
|
Dec 2, 02:16:46
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
grep -A5 "NetworkSettings"
|
Info
|
|
|
Dec 2, 02:16:45
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
grep -E "3306|mysql|maria"
|
Info
|
|
|
Dec 2, 02:16:45
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo ""
|
Info
|
|
|
Dec 2, 02:16:45
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== DOCKER NETWORK CONFIG ==="
|
Info
|
|
|
Dec 2, 02:16:44
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== MYSQL PORT EXPOSURE ==="
|
Info
|
|
|
Dec 2, 02:16:44
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
netstat -tlnp
|
Info
|
|
|
Dec 2, 02:16:43
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 2, 02:16:43
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:43
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 2, 02:16:42
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:42
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Dec 2, 02:16:42
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 2, 02:16:41
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 2, 02:16:41
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Dec 2, 02:16:41
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:40
2 weeks ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|
|
Dec 2, 02:16:40
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:40
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 2, 02:16:22
2 weeks ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_801
|
No details
|
Info
|
|
|
Dec 2, 02:16:21
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast mariadb -u azuracast -pREffK...
|
Info
|
|
|
Dec 2, 02:16:21
2 weeks ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:21
2 weeks ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:20
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 2, 02:16:20
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== RECENT AUDIT LOG ENTRIES ==="
|
Info
|
|
|
Dec 2, 02:16:19
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 2, 02:16:19
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 2, 02:16:19
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:18
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:18
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:18
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Dec 2, 02:16:17
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 2, 02:16:17
2 weeks ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Dec 2, 02:16:16
2 weeks ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|