|
Dec 1, 23:45:13
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 1, 23:45:12
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 1, 23:45:12
3 months ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|
|
Dec 1, 23:45:12
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 1, 23:45:12
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 1, 23:45:03
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_727
|
No details
|
Info
|
|
|
Dec 1, 23:45:03
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 1, 23:45:03
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 1, 23:45:01
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast md5sum /var/azuracast/www/ba...
|
Critical
|
|
|
Dec 1, 23:45:00
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 1, 23:45:00
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 1, 23:45:00
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 1, 23:44:59
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Dec 1, 23:44:59
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 1, 23:44:58
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Dec 1, 23:44:58
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 1, 23:44:58
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 1, 23:44:57
3 months ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|
|
Dec 1, 23:44:57
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 1, 23:44:57
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 1, 23:44:57
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 1, 23:44:47
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 1, 23:44:47
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 1, 23:44:47
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_726
|
No details
|
Info
|
|
|
Dec 1, 23:44:46
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 1, 23:44:46
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo '=== COMPROMISED: Reports/Analytics Controlle...
|
Info
|
|
|
Dec 1, 23:44:46
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast find /var/azuracast/www/back...
|
Info
|
|
|
Dec 1, 23:44:45
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 1, 23:44:45
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 1, 23:44:45
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 1, 23:44:44
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Dec 1, 23:44:44
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 1, 23:44:44
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 1, 23:44:44
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Dec 1, 23:44:43
3 months ago
|
default-host
|
Ssh Login
|
140.82.46.49
|
66.135.25.80
|
root
|
No details
|
Warning
|
|
|
Dec 1, 23:44:43
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Dec 1, 23:44:43
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Dec 1, 23:44:43
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Dec 1, 23:44:33
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 1, 23:44:33
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
root
|
No details
|
Info
|
|
|
Dec 1, 23:44:33
3 months ago
|
default-host
|
Ssh Logout
|
140.82.46.49
|
N/A
|
session_724
|
No details
|
Info
|
|
|
Dec 1, 23:44:32
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
xargs grep -l -i 'listener.*report\|report.*listen...
|
Info
|
|
|
Dec 1, 23:44:32
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
head -20
|
Info
|
|
|
Dec 1, 23:44:31
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|
|
Dec 1, 23:44:31
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Dec 1, 23:44:31
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
echo '=== COMPROMISED: Listener Report Files ==='
|
Info
|
|
|
Dec 1, 23:44:31
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
docker exec azuracast find /var/azuracast/www -nam...
|
Info
|
|
|
Dec 1, 23:44:30
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Dec 1, 23:44:30
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Dec 1, 23:44:29
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
66.135.25.80
|
root
|
shopt -s histappend
|
Critical
|
|