|
Nov 26, 20:17:13
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
grep -E Nov.\*0\[78\]
|
Info
|
|
|
Nov 26, 20:17:13
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
grep -i -E '(session opened|sudo|reboot|shutdown)'
|
Critical
|
|
|
Nov 26, 20:17:12
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Nov 26, 20:17:12
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
eval "zcat /var/log/auth.log.*.gz 2>/dev/null < /d...
|
Critical
|
|
|
Nov 26, 20:17:11
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:17:11
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Nov 26, 20:17:11
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Nov 26, 20:17:10
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:17:10
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:17:10
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Nov 26, 20:17:09
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Nov 26, 20:17:09
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Nov 26, 20:17:08
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:17:08
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
source /etc/profile.d/honeypot.sh 2> /dev/null
|
Critical
|
|
|
Nov 26, 20:17:08
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Nov 26, 20:17:07
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
true
|
Info
|
|
|
Nov 26, 20:17:07
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
mesg n 2> /dev/null
|
Info
|
|
|
Nov 26, 20:17:06
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:17:06
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Nov 26, 20:17:06
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Nov 26, 20:17:05
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Nov 26, 20:17:05
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:17:04
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Nov 26, 20:17:04
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:17:03
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:17:03
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Nov 26, 20:17:02
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
[ -f ~/.bashrc ]
|
Critical
|
|
|
Nov 26, 20:17:02
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
. ~/.bashrc
|
Critical
|
|
|
Nov 26, 20:17:01
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Nov 26, 20:17:01
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
[ "$BASH" ]
|
Critical
|
|
|
Nov 26, 20:17:01
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
unset i
|
Info
|
|
|
Nov 26, 20:17:00
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Nov 26, 20:16:59
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILESIZE=50000
|
Info
|
|
|
Nov 26, 20:16:59
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:16:58
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:16:58
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Nov 26, 20:16:57
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:16:52
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
ls -la /var/log/auth.log* 2>&1 < /dev/null
|
Info
|
|
|
Nov 26, 20:16:51
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:16:51
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILE="${HOME}/.bash_history_$(date +%Y%...
|
Critical
|
|
|
Nov 26, 20:16:51
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
eval 'ls -la /var/log/auth.log* 2>&1' \< /dev/null
|
Info
|
|
|
Nov 26, 20:16:50
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=""
|
Info
|
|
|
Nov 26, 20:16:50
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTSIZE=50000
|
Info
|
|
|
Nov 26, 20:16:49
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
shopt -s histappend
|
Critical
|
|
|
Nov 26, 20:16:49
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTCONTROL=
|
Info
|
|
|
Nov 26, 20:16:49
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:16:48
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTTIMEFORMAT="%Y-%m-%d %H:%M:%S "
|
Critical
|
|
|
Nov 26, 20:16:48
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTFILESIZE=10000
|
Info
|
|
|
Nov 26, 20:16:48
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
export HISTSIZE=10000
|
Info
|
|
|
Nov 26, 20:16:47
3 months ago
|
default-host
|
Command
|
140.82.46.49
|
209.6.216.95
|
root
|
mesg n 2> /dev/null
|
Info
|
|