|
Dec 2, 02:16:50
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
tail -20
|
Info
|
|
|
Dec 2, 02:16:50
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:50
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:50
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_802
|
No details
|
Info
|
|
|
Dec 2, 02:16:49
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo ""
|
Info
|
|
|
Dec 2, 02:16:49
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== SSH AUTH LOG - RECENT LOGINS ==="
|
Critical
|
|
|
Dec 2, 02:16:49
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
tail -50 /var/log/auth.log 2> /dev/null
|
Info
|
|
|
Dec 2, 02:16:48
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast mariadb -u azuracast -pREffK...
|
Critical
|
|
|
Dec 2, 02:16:47
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
head -20
|
Info
|
|
|
Dec 2, 02:16:47
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo ""
|
Info
|
|
|
Dec 2, 02:16:47
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== ACTIVE DATABASE CONNECTIONS ==="
|
Info
|
|
|
Dec 2, 02:16:46
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker network ls
|
Info
|
|
|
Dec 2, 02:16:46
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker inspect azuracast 2> /dev/null
|
Info
|
|
|
Dec 2, 02:16:46
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
grep -A5 "NetworkSettings"
|
Info
|
|
|
Dec 2, 02:16:45
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
grep -E "3306|mysql|maria"
|
Info
|
|
|
Dec 2, 02:16:45
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo ""
|
Info
|
|
|
Dec 2, 02:16:45
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== DOCKER NETWORK CONFIG ==="
|
Info
|
|
|
Dec 2, 02:16:44
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== MYSQL PORT EXPOSURE ==="
|
Info
|
|
|
Dec 2, 02:16:44
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
netstat -tlnp
|
Info
|
|
|
Dec 2, 02:16:43
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 2, 02:16:43
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:43
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 2, 02:16:42
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:42
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Dec 2, 02:16:42
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 2, 02:16:41
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 2, 02:16:41
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Dec 2, 02:16:41
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:40
3 months ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|
|
Dec 2, 02:16:40
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:40
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 2, 02:16:22
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_801
|
No details
|
Info
|
|
|
Dec 2, 02:16:21
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast mariadb -u azuracast -pREffK...
|
Info
|
|
|
Dec 2, 02:16:21
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:21
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:20
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 2, 02:16:20
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo "=== RECENT AUDIT LOG ENTRIES ==="
|
Info
|
|
|
Dec 2, 02:16:19
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 2, 02:16:19
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 2, 02:16:19
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:18
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 2, 02:16:18
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:18
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Dec 2, 02:16:17
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 2, 02:16:17
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Dec 2, 02:16:16
3 months ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|
|
Dec 2, 02:16:16
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 2, 02:16:16
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 2, 02:16:06
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 2, 02:16:06
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|