Kontaktdaten neues Stapfikon
by anna
Moin,
Könnt ihr mich bitte den verschiedenen StaPF Mailverteilern hinzufügen?
meine Emailadresse ist anna(a)glockenbach.net und mein
ZaPF-Auth-Benutzername ist PhiSchick.
Ganz lieben Dank,
Anna aus Kiel
5 Jahre, 11 Monate
Logwatch for h2361197.stratoserver.net (Linux)
by root@zapf.in
################### Logwatch 7.4.0 (03/01/11) ####################
Processing Initiated: Sun Nov 3 04:42:04 2019
Date Range Processed: yesterday
( 2019-Nov-02 )
Period is day.
Detail Level of Output: 0
Type of Output/Format: mail / text
Logfiles for Host: h2361197.stratoserver.net
##################################################################
--------------------- fail2ban-messages Begin ------------------------
Banned services with Fail2Ban: Bans:Unbans
ssh: [119:113]
---------------------- fail2ban-messages End -------------------------
--------------------- httpd Begin ------------------------
Connection attempts using mod_proxy:
60.191.52.254 -> zapf.wiki:443: 1 Time(s)
A total of 4 sites probed the server
157.230.216.203
172.104.242.173
61.219.11.153
80.82.64.125
Requests with error response codes
400 Bad Request
null: 5 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... O9BUTm4qQB0ABI6: 3 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... knCMH53DB5MABDl: 3 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... pE50D4uhixhABDX: 3 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... uwo-mTVjzPeABJH: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... -htcxqcRZ-AABHf: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... 2T9cq29jndDAA_U: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... PQU1B4LBBAiABG9: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... X16oWOnXjjvABFv: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... _RT65tdGS0nABB5: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... bs8MdG_6ObyAA_c: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... kkXDB9PHQGvABFr: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... lyod-q5bOReABG_: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... uDop6m7ORcUABBl: 3 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... yXf-jCftgqiABJw: 3 Time(s)
/socket.io/?noteId=features&EIO=3&transpor ... yMY73LYq8IBABK6: 3 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... MCSMT26VGcCABFH: 2 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... VTg7h28uVNhABFO: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... 7P93iVEo7TeABJz: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... FbDeAIupecaABCt: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... RmpZAOPZZTAABDO: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... WU5rp8q3EYTABKD: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... X9bMEk1q_2aABJf: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... cnRYBVjwBSFABGH: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... hvrp4gcrVlcABE-: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... rqzKG3KkygVABGT: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... tvRf0XcGwnvABGf: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... u8RtX1k7k0gABH6: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... xW_oFgfydJSABEI: 2 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... xfK-1W_AAjvABHX: 2 Time(s)
/: 1 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... -xOAvBOtBA-ABFE: 1 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... 17BqI7c9TxpABDs: 1 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... YDmHWi2wwWCABLQ: 1 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... l8e6AJDH6aiABI5: 1 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... rplgenB6432ABJF: 1 Time(s)
/socket.io/?noteId=_XXa6gH8QtmmDPpLJoodlw& ... xwcOpMQsl26ABI7: 1 Time(s)
/socket.io/?noteId=awareness&EIO=3&transpo ... oBFXtYv3Ep0ABNp: 1 Time(s)
mstshash=Administr: 1 Time(s)
zapf.wiki:443: 1 Time(s)
403 Forbidden
/reader/: 3 Time(s)
/resolutionen/: 2 Time(s)
/resolutionen/wise18/: 1 Time(s)
404 Not Found
/robots.txt: 32 Time(s)
/berlin/apple-touch-icon.png: 15 Time(s)
/reader/1989-wi-berlin.pdf: 6 Time(s)
/datenschutz/: 2 Time(s)
/null: 2 Time(s)
/protokolle/Protokoll_MV_12.11.2016.pdf: 2 Time(s)
/404: 1 Time(s)
/berlin//apple-touch-icon.png: 1 Time(s)
/download/reader_bw92.pdf: 1 Time(s)
/download/reader_ma91.pdf: 1 Time(s)
/reader/2016_sose_konstanz_lang.pdf: 1 Time(s)
/reader/2017_SoSe_Berlin.pdf%7C: 1 Time(s)
/resolutionen/wise15/Transparenz_in_der_Dr ... sparenz_in_der_: 1 Time(s)
/resolutionen/wise17/Akkreditierung_PosPap/Pospap_: 1 Time(s)
/sites/all/libraries/elfinder-1.2/elfinder.php.html: 1 Time(s)
/sites/all/libraries/elfinder-1.2/src/elfinder-src.php.html: 1 Time(s)
/sites/all/libraries/elfinder/__elfinder.php.html: 1 Time(s)
/sites/all/libraries/elfinder/_elfinder.php.html: 1 Time(s)
/sites/default/files/1987_SoSe_Aachen.pdf: 1 Time(s)
/user/login?destination=comment%2Freply%2F32%23comment-form: 1 Time(s)
/zapf/reader/%7CZaPF: 1 Time(s)
/zapf/reader/2018_WiSe_Wuerzburg: 1 Time(s)
/zapf/reader/2018_WiSe_Wuerzburg.pdf: 1 Time(s)
499 (undefined)
/apple-touch-icon.png: 12 Time(s)
/favicon.png: 10 Time(s)
/fonts/SourceSansPro-Regular.woff: 7 Time(s)
/fonts/SourceCodePro-Regular.woff: 6 Time(s)
/build/emojify.js/dist/css/basic/emojify.min.css: 5 Time(s)
/build/font-pack.2c73dce02b1eaa3a3b4e.css: 5 Time(s)
/build/cover-styles-pack.2c73dce02b1eaa3a3b4e.css: 3 Time(s)
/js/mathjax-config-extra.js: 3 Time(s)
/build/260ef443edb4dfd026d82e2b21a4c75c.woff: 2 Time(s)
/build/cover.2c73dce02b1eaa3a3b4e.css: 2 Time(s)
/build/emojify.js/dist/images/basic/smile.png: 2 Time(s)
/fonts/SourceCodePro-Medium.woff: 2 Time(s)
/fonts/SourceSansPro-Light.woff: 2 Time(s)
/build/MathJax/MathJax.js: 1 Time(s)
/build/af7ae505a9eed503f8b8e6982036873e.woff2: 1 Time(s)
/build/constant.js: 1 Time(s)
/build/index-styles-pack.2c73dce02b1eaa3a3b4e.css: 1 Time(s)
/build/index-styles.2c73dce02b1eaa3a3b4e.css: 1 Time(s)
/build/index.2c73dce02b1eaa3a3b4e.css: 1 Time(s)
/me: 1 Time(s)
/socket.io/?noteId=awareness&EIO=3&transpo ... oBFXtYv3Ep0ABNp: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... 7P93iVEo7TeABJz: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... FbDeAIupecaABCt: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... PQU1B4LBBAiABG9: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... RmpZAOPZZTAABDO: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... UkgyHfCim8lABKK: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... WU5rp8q3EYTABKD: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... X16oWOnXjjvABFv: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... X9bMEk1q_2aABJf: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... cnRYBVjwBSFABGH: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... hvrp4gcrVlcABE-: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... kkkU-VN8IphABA_: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... rqzKG3KkygVABGT: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... tvRf0XcGwnvABGf: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... u8RtX1k7k0gABH6: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... xW_oFgfydJSABEI: 1 Time(s)
/socket.io/?noteId=awarenessak&EIO=3&trans ... xfK-1W_AAjvABHX: 1 Time(s)
/socket.io/?noteId=berlin17_ak_pratikum_2_ ... EiidWH2sAxVABEy: 1 Time(s)
500 Internal Server Error
/: 74 Time(s)
/HNAP1/: 2 Time(s)
/dns-query: 2 Time(s)
---------------------- httpd End -------------------------
--------------------- pam_unix Begin ------------------------
sshd:
Authentication Failures:
unknown (122.192.19.95.dynamic.jazztel.es): 80 Time(s)
unknown (ec2-52-83-237-146.cn-northwest-1.compute.amazonaws.com.cn): 41 Time(s)
root (180.68.177.209): 39 Time(s)
root (177.42.254.199): 35 Time(s)
unknown (200.60.60.84): 35 Time(s)
root (104.210.60.193): 34 Time(s)
root (182.72.178.114): 34 Time(s)
root (50-78-110-183-static.hfc.comcastbusiness.net): 34 Time(s)
unknown (180.68.177.209): 34 Time(s)
root (proxmox1-tc2.macrolan.co.za): 33 Time(s)
root (223.220.159.78): 32 Time(s)
root (81.26.130.133): 32 Time(s)
root (119.18.192.98): 31 Time(s)
root (180.168.141.246): 31 Time(s)
unknown (121.166.26.234): 31 Time(s)
root (245.ip-51-255-173.eu): 30 Time(s)
root (106.12.36.173): 29 Time(s)
root (190.196.60.203): 29 Time(s)
root (ppp.83-171-99-217.pppoe.avangarddsl.ru): 29 Time(s)
unknown (122.199.152.157): 29 Time(s)
root (196.1.120.131): 28 Time(s)
unknown (121.67.246.142): 28 Time(s)
root (134.175.36.138): 27 Time(s)
root (138.197.179.111): 27 Time(s)
root (146.185.181.64): 27 Time(s)
unknown (h-32-16.a182.priv.bahnhof.se): 27 Time(s)
root (106.12.218.193): 26 Time(s)
root (128.199.142.138): 26 Time(s)
root (138.68.93.14): 26 Time(s)
root (202.29.33.74): 26 Time(s)
root (209.ip-66-70-189.net): 26 Time(s)
unknown (183.239.61.55): 26 Time(s)
root (061092169178.static.ctinets.com): 25 Time(s)
root (182.253.184.20): 25 Time(s)
unknown (106.12.218.193): 25 Time(s)
unknown (91.ip-54-37-8.eu): 25 Time(s)
root (213.251.35.49): 24 Time(s)
root (78.108.217.2): 24 Time(s)
root (mail.calimport.cl): 24 Time(s)
unknown (119.18.192.98): 24 Time(s)
unknown (149.ip-51-77-195.eu): 24 Time(s)
unknown (mail.calimport.cl): 24 Time(s)
root (139.155.112.94): 23 Time(s)
root (190.210.42.209): 23 Time(s)
unknown (118.70.233.163): 23 Time(s)
unknown (106.38.62.126): 22 Time(s)
unknown (128.199.142.138): 22 Time(s)
unknown (134.175.36.138): 22 Time(s)
unknown (182.253.184.20): 22 Time(s)
unknown (202.131.126.142): 22 Time(s)
unknown (78.108.217.2): 22 Time(s)
root (118.24.143.110): 21 Time(s)
root (202.131.126.142): 21 Time(s)
unknown (061092169178.static.ctinets.com): 21 Time(s)
unknown (138.197.179.111): 21 Time(s)
unknown (180.168.141.246): 21 Time(s)
unknown (202.29.33.74): 21 Time(s)
unknown (209.ip-66-70-189.net): 21 Time(s)
root (ip-148-72-65-10.ip.secureserver.net): 20 Time(s)
unknown (106.12.36.173): 20 Time(s)
unknown (118.24.143.110): 20 Time(s)
unknown (118.70.72.103): 20 Time(s)
unknown (138.68.93.14): 20 Time(s)
unknown (146.185.181.64): 20 Time(s)
unknown (190.210.42.209): 20 Time(s)
unknown (213.251.35.49): 20 Time(s)
root (106.38.62.126): 19 Time(s)
unknown (196.1.120.131): 19 Time(s)
unknown (245.ip-51-255-173.eu): 19 Time(s)
unknown (27.109.17.18): 19 Time(s)
unknown (ppp.83-171-99-217.pppoe.avangarddsl.ru): 19 Time(s)
root (27.109.17.18): 18 Time(s)
root (91.ip-54-37-8.eu): 18 Time(s)
unknown (119.29.114.235): 18 Time(s)
unknown (proxmox1-tc2.macrolan.co.za): 18 Time(s)
root (139.186.25.202): 17 Time(s)
root (211.159.219.115): 17 Time(s)
unknown (104.210.60.193): 16 Time(s)
unknown (223.220.159.78): 16 Time(s)
unknown (81.26.130.133): 16 Time(s)
root (94.191.76.23): 15 Time(s)
unknown (111.230.53.144): 15 Time(s)
unknown (190.196.60.203): 15 Time(s)
unknown (201.22.95.52.static.gvt.net.br): 15 Time(s)
unknown (50-78-110-183-static.hfc.comcastbusiness.net): 15 Time(s)
root (149.ip-51-77-195.eu): 14 Time(s)
unknown (177.42.254.199): 14 Time(s)
unknown (182.72.178.114): 14 Time(s)
root (197.251.69.4): 13 Time(s)
root (121.166.187.237): 12 Time(s)
root (121.ip-51-38-185.eu): 12 Time(s)
root (200.60.60.84): 12 Time(s)
root (242.ip-91-134-140.eu): 12 Time(s)
root (45.249.111.40): 12 Time(s)
root (h-32-16.a182.priv.bahnhof.se): 12 Time(s)
unknown (45.249.111.40): 12 Time(s)
unknown (73.ip-149-56-131.net): 12 Time(s)
root (122.199.152.157): 11 Time(s)
unknown (13.80.112.16): 11 Time(s)
unknown (139.155.112.94): 11 Time(s)
root (201.22.95.52.static.gvt.net.br): 10 Time(s)
root (85.185.149.28): 10 Time(s)
unknown (110.35.173.100): 10 Time(s)
unknown (112.215.113.10): 10 Time(s)
unknown (211.159.219.115): 10 Time(s)
root (ec2-52-83-237-146.cn-northwest-1.compute.amazonaws.com.cn): 9 Time(s)
unknown (139.186.25.202): 9 Time(s)
root (106.12.58.4): 8 Time(s)
root (150.109.52.25): 8 Time(s)
root (183.239.61.55): 8 Time(s)
root (73.ip-149-56-131.net): 8 Time(s)
unknown (121.166.187.237): 8 Time(s)
unknown (121.ip-51-38-185.eu): 8 Time(s)
unknown (123.206.13.46): 8 Time(s)
unknown (85.185.149.28): 8 Time(s)
unknown (ip-148-72-65-10.ip.secureserver.net): 8 Time(s)
unknown (ns3101768.ip-54-36-168.eu): 8 Time(s)
root (119.29.114.235): 7 Time(s)
root (122.192.19.95.dynamic.jazztel.es): 7 Time(s)
root (45.80.64.246): 7 Time(s)
unknown (197.251.69.4): 7 Time(s)
unknown (242.ip-91-134-140.eu): 7 Time(s)
unknown (67.55.92.90): 7 Time(s)
root (112.215.113.10): 6 Time(s)
root (121.142.12.192): 6 Time(s)
root (121.67.246.142): 6 Time(s)
root (153.35.93.7): 6 Time(s)
root (185.216.132.15): 6 Time(s)
root (118.70.233.163): 5 Time(s)
root (159.224.220.209): 5 Time(s)
root (67.55.92.90): 5 Time(s)
unknown (121.142.12.192): 5 Time(s)
unknown (150.109.52.25): 5 Time(s)
unknown (94.191.76.23): 5 Time(s)
unknown (ns3019850.ip-54-38-192.eu): 5 Time(s)
root (111.230.53.144): 4 Time(s)
root (118.70.72.103): 4 Time(s)
root (121.166.26.234): 4 Time(s)
root (13.80.112.16): 4 Time(s)
root (211.239.121.27): 4 Time(s)
root (ns3019850.ip-54-38-192.eu): 4 Time(s)
unknown (106.12.58.4): 4 Time(s)
unknown (153.35.93.7): 4 Time(s)
unknown (157.230.235.233): 4 Time(s)
unknown (182.61.23.89): 4 Time(s)
unknown (211.239.121.27): 4 Time(s)
root (110.35.173.100): 3 Time(s)
root (150.223.10.13): 2 Time(s)
root (182.61.23.89): 2 Time(s)
temp (190.196.60.203): 2 Time(s)
unknown (1.232.77.64): 2 Time(s)
unknown (117.0.35.153): 2 Time(s)
unknown (150.223.10.13): 2 Time(s)
unknown (61.172.238.14): 2 Time(s)
unknown (host.62.65.78.89.bitcom.se): 2 Time(s)
backup (202.131.126.142): 1 Time(s)
list (122.192.19.95.dynamic.jazztel.es): 1 Time(s)
mail (122.192.19.95.dynamic.jazztel.es): 1 Time(s)
mailman (46.209.45.58): 1 Time(s)
mysql (138.68.93.14): 1 Time(s)
mysql (202.131.126.142): 1 Time(s)
news (196.1.120.131): 1 Time(s)
postgres (177.42.254.199): 1 Time(s)
root (103.216.112.71): 1 Time(s)
root (106.12.204.102): 1 Time(s)
root (111.10.43.244): 1 Time(s)
root (117.0.35.153): 1 Time(s)
root (140.143.228.18): 1 Time(s)
root (148.70.1.210): 1 Time(s)
root (182.61.21.155): 1 Time(s)
root (72.142.126.27): 1 Time(s)
root (77.51.211.220): 1 Time(s)
root (h79-138-37-5.cust.a3fiber.se): 1 Time(s)
root (ip4d16e789.dynamic.kabel-deutschland.de): 1 Time(s)
temp (138.197.179.111): 1 Time(s)
temp (146.185.181.64): 1 Time(s)
unknown (139.59.79.56): 1 Time(s)
unknown (145.249.105.204): 1 Time(s)
unknown (159.224.220.209): 1 Time(s)
unknown (182.23.104.231): 1 Time(s)
unknown (188.2.141.94.dsl.static.ip.kpnqwest.it): 1 Time(s)
unknown (197.47.67.36): 1 Time(s)
unknown (220.191.208.204): 1 Time(s)
unknown (31.163.8.91): 1 Time(s)
unknown (77.51.211.220): 1 Time(s)
unknown (92.63.194.26): 1 Time(s)
uucp (ppp.83-171-99-217.pppoe.avangarddsl.ru): 1 Time(s)
www-data (213.251.35.49): 1 Time(s)
www-data (223.220.159.78): 1 Time(s)
www-data (ppp.83-171-99-217.pppoe.avangarddsl.ru): 1 Time(s)
Invalid Users:
Unknown Account: 1315 Time(s)
---------------------- pam_unix End -------------------------
--------------------- Postfix Begin ------------------------
3 Miscellaneous warnings
21.552K Bytes accepted 22,069
21.552K Bytes sent via SMTP 22,069
======== ==================================================
1 Accepted 100.00%
-------- --------------------------------------------------
1 Total 100.00%
======== ==================================================
1 4xx Reject relay denied 100.00%
-------- --------------------------------------------------
1 Total 4xx Rejects 100.00%
======== ==================================================
6839 Connections
6805 Connections lost (inbound)
6840 Disconnections
1 Removed from queue
1 Sent via SMTP
1 Hostname verification errors (FCRDNS)
---------------------- Postfix End -------------------------
--------------------- sendmail-largeboxes (large mail spool files) Begin ------------------------
Large Mailbox threshold: 40MB (41943040 bytes)
Warning: Large mailbox: mailman.gz (1747199807)
Warning: Large mailbox: mailman (235703599967)
---------------------- sendmail-largeboxes (large mail spool files) End -------------------------
--------------------- SSHD Begin ------------------------
Failed logins from:
13.80.112.16: 4 times
27.109.17.18: 18 times
45.80.64.246: 7 times
45.249.111.40: 12 times
46.209.45.58: 1 time
50.78.110.183 (50-78-110-183-static.hfc.comcastbusiness.net): 34 times
51.38.185.121 (121.ip-51-38-185.eu): 12 times
51.77.195.149 (149.ip-51-77-195.eu): 14 times
51.255.173.245 (245.ip-51-255-173.eu): 30 times
52.83.237.146 (ec2-52-83-237-146.cn-northwest-1.compute.amazonaws.com.cn): 9 times
54.37.8.91 (91.ip-54-37-8.eu): 18 times
54.38.192.96 (ns3019850.ip-54-38-192.eu): 4 times
61.92.169.178 (061092169178.static.ctinets.com): 25 times
66.70.189.209 (209.ip-66-70-189.net): 26 times
67.55.92.90: 5 times
72.142.126.27 (unallocated-static.rogers.com): 1 time
77.22.231.137 (ip4d16e789.dynamic.kabel-deutschland.de): 1 time
77.51.211.220 (pppoe-static.mosoblast.rt.ru): 1 time
78.108.217.2: 24 times
79.138.37.5 (h79-138-37-5.cust.a3fiber.se): 1 time
81.26.130.133 (mail.nl-group.ru): 32 times
83.171.99.217 (ppp.83-171-99-217.pppoe.avangarddsl.ru): 31 times
85.185.149.28: 10 times
91.134.140.242 (242.ip-91-134-140.eu): 12 times
94.191.76.23: 15 times
95.19.192.122 (122.192.19.95.dynamic.jazztel.es): 9 times
103.216.112.71: 1 time
104.210.60.193: 34 times
106.12.36.173: 29 times
106.12.58.4: 8 times
106.12.204.102: 1 time
106.12.218.193: 26 times
106.38.62.126: 19 times
110.35.173.100: 3 times
111.10.43.244: 1 time
111.230.53.144: 4 times
112.215.113.10: 6 times
117.0.35.153: 1 time
118.24.143.110: 21 times
118.70.72.103: 4 times
118.70.233.163: 5 times
119.18.192.98: 31 times
119.29.114.235: 7 times
121.67.246.142: 6 times
121.142.12.192: 6 times
121.166.26.234: 4 times
121.166.187.237: 12 times
122.199.152.157 (static.122-199-152-157.nexg.net): 11 times
128.199.142.138: 26 times
134.175.36.138: 27 times
138.68.93.14: 27 times
138.197.179.111: 28 times
139.155.112.94: 23 times
139.186.25.202: 17 times
140.143.228.18: 1 time
146.185.181.64: 28 times
148.70.1.210: 1 time
148.72.65.10 (ip-148-72-65-10.ip.secureserver.net): 20 times
149.56.131.73 (73.ip-149-56-131.net): 8 times
150.109.52.25: 8 times
150.223.10.13: 2 times
153.35.93.7: 6 times
154.70.208.66 (proxmox1-tc2.macrolan.co.za): 33 times
155.4.32.16 (h-32-16.A182.priv.bahnhof.se): 12 times
159.224.220.209 (209.220.224.159.triolan.net): 5 times
177.42.254.199 (177.42.254.199.static.host.gvt.net.br): 36 times
180.68.177.209: 39 times
180.168.141.246: 31 times
182.61.21.155: 1 time
182.61.23.89: 2 times
182.72.178.114 (nsg-static-114.178.72.182.airtel.in): 34 times
182.253.184.20 (mail.eunikenathanabadi.com): 25 times
183.239.61.55: 8 times
185.216.132.15: 6 times
190.196.60.203: 31 times
190.210.42.209 (oficina.todoprepago.com): 23 times
190.215.112.122 (mail.calimport.cl): 24 times
196.1.120.131: 29 times
197.251.69.4: 13 times
200.60.60.84: 12 times
201.22.95.52 (201.22.95.52.static.gvt.net.br): 10 times
202.29.33.74: 26 times
202.131.126.142: 23 times
211.159.219.115: 17 times
211.239.121.27: 4 times
213.251.35.49: 25 times
223.220.159.78: 33 times
Illegal users from:
undef: 1056 times
1.232.77.64: 2 times
13.80.112.16: 11 times
27.109.17.18: 19 times
31.163.8.91 (ip-31-163-8-91.dsl.surnet.ru): 1 time
45.249.111.40: 12 times
50.78.110.183 (50-78-110-183-static.hfc.comcastbusiness.net): 15 times
51.38.185.121 (121.ip-51-38-185.eu): 8 times
51.77.195.149 (149.ip-51-77-195.eu): 24 times
51.255.173.245 (245.ip-51-255-173.eu): 19 times
52.83.237.146 (ec2-52-83-237-146.cn-northwest-1.compute.amazonaws.com.cn): 41 times
54.36.168.119 (ns3101768.ip-54-36-168.eu): 8 times
54.37.8.91 (91.ip-54-37-8.eu): 25 times
54.38.192.96 (ns3019850.ip-54-38-192.eu): 5 times
61.92.169.178 (061092169178.static.ctinets.com): 21 times
61.172.238.14: 2 times
62.65.78.89 (host.62.65.78.89.bitcom.se): 2 times
66.70.189.209 (209.ip-66-70-189.net): 21 times
67.55.92.90: 7 times
77.51.211.220 (pppoe-static.mosoblast.rt.ru): 1 time
78.108.217.2: 22 times
81.26.130.133 (mail.nl-group.ru): 16 times
83.171.99.217 (ppp.83-171-99-217.pppoe.avangarddsl.ru): 19 times
85.185.149.28: 8 times
91.134.140.242 (242.ip-91-134-140.eu): 7 times
92.63.194.26: 1 time
94.141.2.188 (188.2.141.94.dsl.static.ip.kpnqwest.it): 1 time
94.191.76.23: 5 times
95.19.192.122 (122.192.19.95.dynamic.jazztel.es): 80 times
104.210.60.193: 16 times
106.12.36.173: 20 times
106.12.58.4: 4 times
106.12.218.193: 25 times
106.38.62.126: 22 times
110.35.173.100: 10 times
111.230.53.144: 15 times
112.215.113.10: 10 times
117.0.35.153: 3 times
118.24.143.110: 20 times
118.70.72.103: 20 times
118.70.233.163: 23 times
119.18.192.98: 24 times
119.29.114.235: 18 times
121.67.246.142: 28 times
121.142.12.192: 5 times
121.166.26.234: 31 times
121.166.187.237: 8 times
122.199.152.157 (static.122-199-152-157.nexg.net): 29 times
123.206.13.46: 8 times
128.199.142.138: 22 times
134.175.36.138: 22 times
138.68.93.14: 20 times
138.197.179.111: 21 times
139.59.79.56: 1 time
139.155.112.94: 11 times
139.162.122.110 (scan-8.security.ipip.net): 1 time
139.186.25.202: 9 times
145.249.105.204: 1 time
146.185.181.64: 20 times
148.72.65.10 (ip-148-72-65-10.ip.secureserver.net): 8 times
149.56.131.73 (73.ip-149-56-131.net): 12 times
150.109.52.25: 5 times
150.223.10.13: 2 times
153.35.93.7: 4 times
154.70.208.66 (proxmox1-tc2.macrolan.co.za): 18 times
155.4.32.16 (h-32-16.A182.priv.bahnhof.se): 27 times
157.230.235.233: 4 times
159.224.220.209 (209.220.224.159.triolan.net): 1 time
177.42.254.199 (177.42.254.199.static.host.gvt.net.br): 14 times
180.68.177.209: 34 times
180.168.141.246: 21 times
182.23.104.231: 1 time
182.61.23.89: 4 times
182.72.178.114 (nsg-static-114.178.72.182.airtel.in): 14 times
182.253.184.20 (mail.eunikenathanabadi.com): 22 times
183.239.61.55: 26 times
190.196.60.203: 15 times
190.210.42.209 (oficina.todoprepago.com): 20 times
190.215.112.122 (mail.calimport.cl): 24 times
196.1.120.131: 19 times
197.47.67.36 (host-197.47.67.36.tedata.net): 1 time
197.251.69.4: 7 times
200.60.60.84: 35 times
201.22.95.52 (201.22.95.52.static.gvt.net.br): 15 times
202.29.33.74: 21 times
202.131.126.142: 22 times
211.159.219.115: 10 times
211.239.121.27: 4 times
213.251.35.49: 20 times
220.191.208.204: 1 time
223.220.159.78: 16 times
---------------------- SSHD End -------------------------
--------------------- Disk Space Begin ------------------------
Filesystem Size Used Avail Use% Mounted on
/dev/vzfs 400G 242G 159G 61% /
---------------------- Disk Space End -------------------------
###################### Logwatch End #########################
5 Jahre, 11 Monate
Your operating system has been hacked by cybercriminals. Change the authorization method.
by topf@zapf.in
Hello!
I'm a programmer who cracked your email account and device about half year ago.
You entered a password on one of the insecure site you visited, and I catched it.
Of course you can will change your password, or already made it.
But it doesn't matter, my rat software update it every time.
Please don't try to contact me or find me, it is impossible, since I sent you an email from your email account.
Through your e-mail, I uploaded malicious code to your Operation System.
I saved all of your contacts with friends, colleagues, relatives and a complete history of visits to the Internet resources.
Also I installed a rat software on your device and long tome spying for you.
You are not my only victim, I usually lock devices and ask for a ransom.
But I was struck by the sites of intimate content that you very often visit.
I am in shock of your reach fantasies! Wow! I've never seen anything like this!
I did not even know that SUCH content could be so exciting!
So, when you had fun on intime sites (you know what I mean!)
I made screenshot with using my program from your camera of yours device.
After that, I jointed them to the content of the currently viewed site.
Will be funny when I send these photos to your contacts! And if your relatives see it?
BUT I'm sure you don't want it. I definitely would not want to ...
I will not do this if you pay me a little amount.
I think $916 is a nice price for it!
I accept only Bitcoins.
My BTC wallet: 12hBxZ7mzn3LgT3SjCsS6yS4tVefPBWCPt
If you have difficulty with this - Ask Google "how to make a payment on a bitcoin wallet". It's easy.
After receiving the above amount, all your data will be immediately removed automatically.
My virus will also will be destroy itself from your operating system.
My Trojan have auto alert, after this email is looked, I will be know it!
You have 2 days (48 hours) for make a payment.
If this does not happen - all your contacts will get crazy shots with your dirty life!
And so that you do not obstruct me, your device will be locked (also after 48 hours)
Do not take this frivolously! This is the last warning!
Various security services or antiviruses won't help you for sure (I have already collected all your data).
Here are the recommendations of a professional:
Antiviruses do not help against modern malicious code. Just do not enter your passwords on unsafe sites!
I hope you will be prudent.
Bye.
5 Jahre, 11 Monate
winter19-teilnehmika@zapf.in post from chantal.beck@gmx.net requires approval
by winter19-teilnehmika-owner@zapf.in
As list administrator, your authorization is requested for the
following mailing list posting:
List: winter19-teilnehmika(a)zapf.in
From: chantal.beck(a)gmx.net
Subject: Antragstexte Zwischenplenum
The message is being held because:
The message is larger than the 40 KB maximum size
At your convenience, visit your dashboard to approve or deny the
request.
5 Jahre, 11 Monate
Wegen Matrix
by Tobias Guttenberger
Damit Jörg meine Emailadresse hat.
Tobias (bn)
5 Jahre, 11 Monate
Logwatch for h2361197.stratoserver.net (Linux)
by root@zapf.in
################### Logwatch 7.4.0 (03/01/11) ####################
Processing Initiated: Sat Nov 2 04:42:04 2019
Date Range Processed: yesterday
( 2019-Nov-01 )
Period is day.
Detail Level of Output: 0
Type of Output/Format: mail / text
Logfiles for Host: h2361197.stratoserver.net
##################################################################
--------------------- fail2ban-messages Begin ------------------------
Banned services with Fail2Ban: Bans:Unbans
ssh: [165:166]
---------------------- fail2ban-messages End -------------------------
--------------------- httpd Begin ------------------------
A total of 3 sites probed the server
132.148.144.214
198.108.67.80
5.188.210.101
Requests with error response codes
400 Bad Request
null: 8 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... BsH0ZrhxWnwAA7O: 4 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... 56ef_CGtVYgAA79: 3 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... 1YLqgrwhuglAA7z: 2 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... PfsLct5NXawAA8H: 2 Time(s)
/: 1 Time(s)
\xDB\xEB\x05\xE6QE\x88\xCD\xAD\x00\x00\xA0 ... C0$\xC0\x14\xC0: 1 Time(s)
http://5.188.210.101/echo.php: 1 Time(s)
404 Not Found
/robots.txt: 25 Time(s)
/datenschutz/: 17 Time(s)
/berlin/apple-touch-icon.png: 15 Time(s)
/wp-login.php: 4 Time(s)
/sites/default/files/2004_WiSe_Hamburg.pdf: 3 Time(s)
/berlin//apple-touch-icon.png: 2 Time(s)
/reader/1998-so-reader_ro98.pdf: 2 Time(s)
/-%20Zusammenkunft%20aller%20Physik-Fachschaften: 1 Time(s)
/.git/config: 1 Time(s)
/berlin/exkursionen/apple-touch-icon.png: 1 Time(s)
/berlin/zapf/apple-touch-icon.png: 1 Time(s)
/node?page=1: 1 Time(s)
/protokolle/Protokoll_MV_12.11.2016.pdf: 1 Time(s)
/reader/2017_SoSe_Berlin_vorlaeufig.pdf: 1 Time(s)
/reader/2017_SoSe_Berlin_vorlaeufig.pdf%7C: 1 Time(s)
/reader/www.dfg.de/download/programme/grad ... e/2_22/2_22.pdf: 1 Time(s)
/resolutionen/sose15/Netzneutralitaet_in_U ... %A4tsnetzen.pdf: 1 Time(s)
/sites/default/files/1984_WiSe_Bonn.pdf: 1 Time(s)
/sites/default/files/2001_SoSe_Erlangen.pdf: 1 Time(s)
/sites/default/files/2009_WiSe_M%C3%BCnchen.pdf: 1 Time(s)
/user: 1 Time(s)
/zapf/resolutionen/sose19: 1 Time(s)
499 (undefined)
/apple-touch-icon.png: 5 Time(s)
/fonts/SourceSansPro-Regular.woff: 5 Time(s)
/build/font-pack.2c73dce02b1eaa3a3b4e.css: 4 Time(s)
/favicon.png: 4 Time(s)
/build/af7ae505a9eed503f8b8e6982036873e.woff2: 2 Time(s)
/build/emojify.js/dist/css/basic/emojify.min.css: 2 Time(s)
/build/index-styles-pack.2c73dce02b1eaa3a3b4e.css: 2 Time(s)
/fonts/SourceCodePro-Medium.woff: 2 Time(s)
/fonts/SourceCodePro-Regular.woff: 2 Time(s)
/fonts/SourceSansPro-Italic.woff: 2 Time(s)
/build/cover.2c73dce02b1eaa3a3b4e.css: 1 Time(s)
/build/emojify.js/dist/images/basic/smile.png: 1 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... 1YLqgrwhuglAA7z: 1 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... BsH0ZrhxWnwAA7O: 1 Time(s)
/socket.io/?noteId=8CkbtYP5S527TvsF_TuNKw& ... PfsLct5NXawAA8H: 1 Time(s)
500 Internal Server Error
/: 30 Time(s)
/MyAdmin/index.php: 1 Time(s)
/MySQL/index.php: 1 Time(s)
/MySQLDumper-1.24.4/index.php: 1 Time(s)
/MySQLDumper/index.php: 1 Time(s)
/P/M/A/index.php: 1 Time(s)
/PMA/index.php: 1 Time(s)
/SQL/index.php: 1 Time(s)
/_MySQL/index.php: 1 Time(s)
/_SQL/index.php: 1 Time(s)
/_dumper/index.php: 1 Time(s)
/_mysql/index.php: 1 Time(s)
/_phpMyAdmin/index.php: 1 Time(s)
/_phpmyadmin/index.php: 1 Time(s)
/_sql/index.php: 1 Time(s)
/api/v1/pods: 1 Time(s)
/backup/index.php: 1 Time(s)
/database/index.php: 1 Time(s)
/datenbank/index.php: 1 Time(s)
/dba/index.php: 1 Time(s)
/dbadmin/index.php: 1 Time(s)
/dbs/index.php: 1 Time(s)
/msd-1.24.4/index.php: 1 Time(s)
/msd/index.php: 1 Time(s)
/msd1.24.4/index.php: 1 Time(s)
/myadmin/index.php: 1 Time(s)
/mysql/index.php: 1 Time(s)
/mysql_dumper/index.php: 1 Time(s)
/mysqldumper-1.24.4/index.php: 1 Time(s)
/mysqldumper/index.php: 1 Time(s)
/p/m/a/index.php: 1 Time(s)
/phpMyAdmin/index.php: 1 Time(s)
/phpmyadmin/index.php: 1 Time(s)
/pma/index.php: 1 Time(s)
/sb/index.php: 1 Time(s)
/sql/index.php: 1 Time(s)
/sqla/index.php: 1 Time(s)
/sqladmin/index.php: 1 Time(s)
---------------------- httpd End -------------------------
--------------------- pam_unix Begin ------------------------
sshd:
Authentication Failures:
unknown (203.48.246.66): 46 Time(s)
unknown (207.154.211.36): 45 Time(s)
unknown (87.101.240.10): 44 Time(s)
unknown (132.232.52.60): 40 Time(s)
unknown (180.68.177.209): 40 Time(s)
root (180.68.177.209): 35 Time(s)
unknown (180.76.173.189): 34 Time(s)
root (80.211.237.180): 32 Time(s)
unknown (159.65.30.66): 32 Time(s)
unknown (218.28.168.4): 32 Time(s)
root (106.75.134.239): 31 Time(s)
root (139.59.3.151): 31 Time(s)
unknown (188.213.49.60): 31 Time(s)
root (201.48.206.146): 30 Time(s)
root (smartspace.wenet.my): 30 Time(s)
unknown (193.112.164.113): 30 Time(s)
unknown (106.12.74.222): 29 Time(s)
unknown (109.116.196.174): 29 Time(s)
unknown (193.112.49.155): 29 Time(s)
root (123.207.233.222): 28 Time(s)
root (139.155.5.132): 28 Time(s)
unknown (127.ip-51-75-248.eu): 28 Time(s)
root (106.13.6.116): 27 Time(s)
unknown (cable-86-56-81-242.cust.telecolumbus.net): 27 Time(s)
root (106.13.120.176): 26 Time(s)
root (128.199.173.127): 26 Time(s)
root (49.73.235.149): 26 Time(s)
root (fixed-187-190-236-88.totalplay.net): 26 Time(s)
unknown (178.128.217.58): 26 Time(s)
unknown (58.221.60.145): 26 Time(s)
root (106.12.58.4): 25 Time(s)
root (139.198.18.120): 25 Time(s)
root (167.172.82.230): 25 Time(s)
root (188.131.213.192): 25 Time(s)
unknown (106.248.49.62): 25 Time(s)
unknown (2.ip-158-69-222.net): 25 Time(s)
unknown (212.192.35.149): 25 Time(s)
root (112.21.191.54): 24 Time(s)
root (178.62.239.205): 24 Time(s)
root (190.210.42.83): 24 Time(s)
root (221.132.17.74): 24 Time(s)
unknown (139.198.18.120): 24 Time(s)
unknown (190.210.42.83): 24 Time(s)
root (122.152.214.172): 23 Time(s)
unknown (188.131.213.192): 23 Time(s)
unknown (49.247.207.56): 23 Time(s)
unknown (60.255.230.202): 23 Time(s)
unknown (96.ip-167-114-98.net): 23 Time(s)
root (45.80.64.246): 22 Time(s)
unknown (122.152.214.172): 22 Time(s)
unknown (167.172.82.230): 22 Time(s)
unknown (fixed-187-190-236-88.totalplay.net): 22 Time(s)
root (196.ip-213-32-71.eu): 21 Time(s)
root (68.183.114.226): 21 Time(s)
unknown (139.155.5.132): 21 Time(s)
unknown (178.62.239.205): 21 Time(s)
unknown (221.132.17.74): 21 Time(s)
unknown (123.207.233.222): 20 Time(s)
unknown (128.199.170.77): 20 Time(s)
unknown (128.199.173.127): 20 Time(s)
unknown (201.48.206.146): 20 Time(s)
root (157.230.235.233): 19 Time(s)
unknown (106.13.120.176): 19 Time(s)
unknown (106.75.134.239): 19 Time(s)
unknown (45.80.64.246): 19 Time(s)
unknown (smartspace.wenet.my): 19 Time(s)
unknown (49.73.235.149): 18 Time(s)
root (58.221.60.145): 17 Time(s)
unknown (139.59.3.151): 17 Time(s)
unknown (157.230.235.233): 17 Time(s)
unknown (196.ip-213-32-71.eu): 17 Time(s)
unknown (68.183.114.226): 17 Time(s)
root (178.128.217.58): 16 Time(s)
root (51.68.115.235): 16 Time(s)
root (60.255.230.202): 16 Time(s)
root (96.ip-167-114-98.net): 16 Time(s)
unknown (222.242.223.75): 16 Time(s)
unknown (80.211.237.180): 16 Time(s)
unknown (106.13.6.116): 15 Time(s)
root (106.12.74.222): 14 Time(s)
root (106.248.49.62): 14 Time(s)
root (119.29.245.158): 14 Time(s)
root (2.ip-158-69-222.net): 14 Time(s)
root (94.191.76.23): 14 Time(s)
unknown (51.68.115.235): 14 Time(s)
root (209-50-54-22.us-chi1.upcloud.host): 13 Time(s)
root (212.192.35.149): 13 Time(s)
root (49.247.207.56): 13 Time(s)
root (cable-86-56-81-242.cust.telecolumbus.net): 13 Time(s)
unknown (106.12.202.181): 13 Time(s)
unknown (112.21.191.54): 13 Time(s)
root (139.155.112.94): 12 Time(s)
root (188.213.49.60): 12 Time(s)
unknown (94.191.76.23): 12 Time(s)
root (132.232.52.60): 11 Time(s)
root (206.189.30.229): 11 Time(s)
unknown (106.12.58.4): 11 Time(s)
root (109.116.196.174): 10 Time(s)
root (180.76.173.189): 10 Time(s)
root (42.51.156.6): 10 Time(s)
root (193.112.49.155): 9 Time(s)
unknown (104.248.32.164): 9 Time(s)
unknown (134.176.71.202.sta.prodatanet.com.ph): 9 Time(s)
root (134.176.71.202.sta.prodatanet.com.ph): 8 Time(s)
unknown (119.29.245.158): 8 Time(s)
unknown (42.51.156.6): 8 Time(s)
root (127.ip-51-75-248.eu): 7 Time(s)
root (218.28.168.4): 7 Time(s)
root (87.101.240.10): 7 Time(s)
root (128.199.170.77): 6 Time(s)
root (182.135.65.186): 6 Time(s)
root (193.112.164.113): 6 Time(s)
root (207.154.211.36): 6 Time(s)
root (put92-5-82-243-236-16.fbx.proxad.net): 6 Time(s)
unknown (112.171.248.197): 6 Time(s)
unknown (118.24.143.110): 6 Time(s)
root (106.12.202.181): 5 Time(s)
unknown (27.red-2-137-102.dynamicip.rima-tde.net): 5 Time(s)
root (109.131.12.106): 4 Time(s)
root (113.31.112.11): 4 Time(s)
root (118.24.143.110): 4 Time(s)
unknown (113.31.112.11): 4 Time(s)
unknown (121.160.198.198): 4 Time(s)
unknown (139.155.112.94): 4 Time(s)
unknown (206.189.30.229): 4 Time(s)
unknown (209-50-54-22.us-chi1.upcloud.host): 4 Time(s)
root (203.48.246.66): 3 Time(s)
root (167.71.220.221): 2 Time(s)
unknown (132.232.52.48): 2 Time(s)
unknown (193.32.163.182): 2 Time(s)
unknown (49.151.240.222): 2 Time(s)
unknown (ool-addccea2.static.optonline.net): 2 Time(s)
backup (180.76.173.189): 1 Time(s)
backup (smartspace.wenet.my): 1 Time(s)
deployment (206.189.30.229): 1 Time(s)
games (188.131.213.192): 1 Time(s)
mysql (106.13.6.116): 1 Time(s)
news (106.248.49.62): 1 Time(s)
postgres (190.210.42.83): 1 Time(s)
postgres (49.247.207.56): 1 Time(s)
postgres (49.73.235.149): 1 Time(s)
root (159.65.30.66): 1 Time(s)
root (182.23.104.231): 1 Time(s)
root (192.144.184.199): 1 Time(s)
root (253.ip-79-137-73.eu): 1 Time(s)
root (72-11-168-29.cpe.axion.ca): 1 Time(s)
root (82.187.186.115): 1 Time(s)
root (86.43.103.111): 1 Time(s)
root (pd907ef75.dip0.t-ipconnect.de): 1 Time(s)
unknown (103.79.141.92): 1 Time(s)
unknown (106.13.39.233): 1 Time(s)
unknown (106.51.230.190): 1 Time(s)
unknown (109.131.12.106): 1 Time(s)
unknown (123.133.78.91): 1 Time(s)
unknown (123.20.211.253): 1 Time(s)
unknown (145.249.105.204): 1 Time(s)
unknown (182.23.104.231): 1 Time(s)
unknown (187.230.1.93.rev.sfr.net): 1 Time(s)
unknown (197.47.173.240): 1 Time(s)
unknown (200.69.250.253): 1 Time(s)
unknown (92.63.194.26): 1 Time(s)
unknown (c-76-27-163-60.hsd1.va.comcast.net): 1 Time(s)
Invalid Users:
Unknown Account: 1356 Time(s)
Bad User: +: 2 Time(s)
systemd-user:
Unknown Entries:
session closed for user root: 1 Time(s)
session opened for user root by (uid=0): 1 Time(s)
---------------------- pam_unix End -------------------------
--------------------- Postfix Begin ------------------------
24.392K Bytes accepted 24,977
24.392K Bytes sent via SMTP 24,977
======== ==================================================
1 Accepted 100.00%
-------- --------------------------------------------------
1 Total 100.00%
======== ==================================================
4 4xx Reject relay denied 100.00%
-------- --------------------------------------------------
4 Total 4xx Rejects 100.00%
======== ==================================================
2043 Connections
2004 Connections lost (inbound)
2042 Disconnections
1 Removed from queue
1 Sent via SMTP
1 Hostname verification errors (FCRDNS)
---------------------- Postfix End -------------------------
--------------------- sendmail-largeboxes (large mail spool files) Begin ------------------------
Large Mailbox threshold: 40MB (41943040 bytes)
Warning: Large mailbox: mailman.gz (1747199807)
Warning: Large mailbox: mailman (235703599967)
---------------------- sendmail-largeboxes (large mail spool files) End -------------------------
--------------------- SSHD Begin ------------------------
Disconnecting after too many authentication failures for user:
invalid : 1 Time(s)
root : 1 Time(s)
Failed logins from:
42.51.156.6 (idc.ly.ha): 10 times
45.80.64.246: 22 times
49.73.235.149: 27 times
49.247.207.56: 14 times
51.68.115.235 (ip-51-68-115.eu): 16 times
51.75.248.127 (127.ip-51-75-248.eu): 7 times
58.221.60.145: 17 times
60.255.230.202: 16 times
68.183.114.226: 21 times
72.11.168.29 (72-11-168-29.cpe.axion.ca): 1 time
79.137.73.253 (253.ip-79-137-73.eu): 1 time
80.211.237.180 (host180-237-211-80.serverdedicati.aruba.it): 32 times
82.187.186.115: 1 time
82.243.236.16 (put92-5-82-243-236-16.fbx.proxad.net): 6 times
86.43.103.111: 1 time
86.56.81.242 (cable-86-56-81-242.cust.telecolumbus.net): 13 times
87.101.240.10: 7 times
94.191.76.23: 14 times
106.12.58.4: 25 times
106.12.74.222: 14 times
106.12.202.181: 5 times
106.13.6.116: 28 times
106.13.120.176: 26 times
106.75.134.239: 31 times
106.248.49.62: 15 times
109.116.196.174: 10 times
109.131.12.106 (106.12-131-109.adsl-dyn.isp.belgacom.be): 4 times
112.21.191.54: 24 times
113.31.112.11: 4 times
118.24.143.110: 4 times
119.29.245.158: 14 times
122.152.214.172: 23 times
123.207.233.222: 28 times
128.199.170.77: 6 times
128.199.173.127: 26 times
132.232.52.60: 11 times
139.59.3.151: 31 times
139.155.5.132: 28 times
139.155.112.94: 12 times
139.198.18.120: 25 times
157.230.235.233: 19 times
158.69.222.2 (2.ip-158-69-222.net): 14 times
159.65.30.66: 1 time
167.71.220.221: 2 times
167.114.98.96 (96.ip-167-114-98.net): 16 times
167.172.82.230: 25 times
178.62.239.205: 24 times
178.128.217.58: 16 times
180.68.177.209: 35 times
180.76.173.189: 11 times
182.23.104.231: 1 time
182.135.65.186: 6 times
187.190.236.88 (fixed-187-190-236-88.totalplay.net): 26 times
188.131.213.192: 26 times
188.213.49.60: 12 times
190.210.42.83 (customer-static-210-42-83.iplannetworks.net): 25 times
192.144.184.199: 1 time
193.112.49.155: 9 times
193.112.164.113: 6 times
201.48.206.146 (201-048-206-146.static.ctbctelecom.com.br): 30 times
202.71.176.134 (134.176.71.202.sta.prodatanet.com.ph): 8 times
202.73.9.76 (smartspace.wenet.my): 31 times
203.48.246.66: 3 times
206.189.30.229: 12 times
207.154.211.36: 6 times
209.50.54.22 (209-50-54-22.us-chi1.upcloud.host): 13 times
212.192.35.149: 13 times
213.32.71.196 (196.ip-213-32-71.eu): 21 times
217.7.239.117 (pd907ef75.dip0.t-ipconnect.de): 1 time
218.28.168.4 (pc0.zz.ha.cn): 7 times
221.132.17.74: 24 times
Illegal users from:
undef: 1123 times
2.137.102.27 (27.red-2-137-102.dynamicip.rima-tde.net): 5 times
42.51.156.6 (idc.ly.ha): 8 times
45.80.64.246: 19 times
49.73.235.149: 18 times
49.151.240.222 (dsl.49.151.240.222.pldt.net): 2 times
49.247.207.56: 23 times
51.68.115.235 (ip-51-68-115.eu): 14 times
51.75.248.127 (127.ip-51-75-248.eu): 28 times
58.221.60.145: 26 times
60.255.230.202: 23 times
68.183.114.226: 17 times
76.27.163.60 (c-76-27-163-60.hsd1.va.comcast.net): 1 time
80.211.237.180 (host180-237-211-80.serverdedicati.aruba.it): 16 times
86.56.81.242 (cable-86-56-81-242.cust.telecolumbus.net): 27 times
87.101.240.10: 44 times
92.63.194.26: 1 time
93.1.230.187 (187.230.1.93.rev.sfr.net): 1 time
94.191.76.23: 12 times
103.79.141.92: 1 time
104.248.32.164: 9 times
106.12.58.4: 11 times
106.12.74.222: 29 times
106.12.202.181: 13 times
106.13.6.116: 15 times
106.13.39.233: 1 time
106.13.120.176: 19 times
106.51.230.190 (broadband.actcorp.in): 1 time
106.75.134.239: 19 times
106.248.49.62: 25 times
109.116.196.174: 29 times
109.131.12.106 (106.12-131-109.adsl-dyn.isp.belgacom.be): 1 time
112.21.191.54: 13 times
112.171.248.197: 6 times
113.31.112.11: 4 times
118.24.143.110: 6 times
119.29.245.158: 8 times
121.160.198.198: 4 times
122.152.214.172: 22 times
123.20.211.253: 1 time
123.133.78.91: 1 time
123.207.233.222: 20 times
128.199.170.77: 20 times
128.199.173.127: 20 times
132.232.52.48: 2 times
132.232.52.60: 40 times
139.59.3.151: 17 times
139.155.5.132: 21 times
139.155.112.94: 4 times
139.198.18.120: 24 times
145.249.105.204: 1 time
157.230.235.233: 17 times
158.69.222.2 (2.ip-158-69-222.net): 25 times
159.65.30.66: 32 times
167.114.98.96 (96.ip-167-114-98.net): 23 times
167.172.82.230: 22 times
173.220.206.162 (ool-addccea2.static.optonline.net): 2 times
178.62.239.205: 21 times
178.128.217.58: 26 times
180.68.177.209: 41 times
180.76.173.189: 34 times
182.23.104.231: 1 time
187.190.236.88 (fixed-187-190-236-88.totalplay.net): 22 times
188.131.213.192: 23 times
188.213.49.60: 31 times
190.210.42.83 (customer-static-210-42-83.iplannetworks.net): 24 times
193.32.163.182 (hosting-by.cloud-home.me): 2 times
193.112.49.155: 29 times
193.112.164.113: 30 times
197.47.173.240 (host-197.47.173.240.tedata.net): 1 time
200.69.250.253 (customer-static-250-253.iplannetworks.net): 1 time
201.48.206.146 (201-048-206-146.static.ctbctelecom.com.br): 20 times
202.71.176.134 (134.176.71.202.sta.prodatanet.com.ph): 9 times
202.73.9.76 (smartspace.wenet.my): 19 times
203.48.246.66: 46 times
206.189.30.229: 4 times
207.154.211.36: 45 times
209.50.54.22 (209-50-54-22.us-chi1.upcloud.host): 4 times
212.192.35.149: 26 times
213.32.71.196 (196.ip-213-32-71.eu): 17 times
218.28.168.4 (pc0.zz.ha.cn): 32 times
221.132.17.74: 21 times
222.242.223.75: 16 times
Users logging in through sshd:
root:
192.52.1.151 (eduroam-192-52-1-151.mobile.uni-freiburg.de): 2 times
192.52.1.68 (eduroam-192-52-1-68.mobile.uni-freiburg.de): 1 time
**Unmatched Entries**
fatal: no matching cipher found: client aes256-cbc,rijndael-cbc(a)lysator.liu.se,aes192-cbc,aes128-cbc,arcfour128,arcfour,3des-cbc,none server aes128-ctr,aes192-ctr,aes256-ctr,aes128-gcm@openssh.com,aes256-gcm@openssh.com,chacha20-poly1305@openssh.com [preauth] : 7 time(s)
error: Received disconnect from 180.149.125.161: 7: Service not available [preauth] : 1 time(s)
error: Received disconnect from 103.79.141.92: 3: com.jcraft.jsch.JSchException: Auth fail [preauth] : 1 time(s)
Disconnecting: Change of username or service not allowed: (admin,ssh-connection) -> (user,ssh-connection) [preauth] : 1 time(s)
---------------------- SSHD End -------------------------
--------------------- Disk Space Begin ------------------------
Filesystem Size Used Avail Use% Mounted on
/dev/vzfs 400G 242G 159G 61% /
---------------------- Disk Space End -------------------------
###################### Logwatch End #########################
5 Jahre, 11 Monate
Your operating system has been hacked by cybercriminals. Change the authorization method.
by topf@zapf.in
Hello!
I'm a programmer who cracked your email account and device about half year ago.
You entered a password on one of the insecure site you visited, and I catched it.
Of course you can will change your password, or already made it.
But it doesn't matter, my rat software update it every time.
Please don't try to contact me or find me, it is impossible, since I sent you an email from your email account.
Through your e-mail, I uploaded malicious code to your Operation System.
I saved all of your contacts with friends, colleagues, relatives and a complete history of visits to the Internet resources.
Also I installed a rat software on your device and long tome spying for you.
You are not my only victim, I usually lock devices and ask for a ransom.
But I was struck by the sites of intimate content that you very often visit.
I am in shock of your reach fantasies! Wow! I've never seen anything like this!
I did not even know that SUCH content could be so exciting!
So, when you had fun on intime sites (you know what I mean!)
I made screenshot with using my program from your camera of yours device.
After that, I jointed them to the content of the currently viewed site.
Will be funny when I send these photos to your contacts! And if your relatives see it?
BUT I'm sure you don't want it. I definitely would not want to ...
I will not do this if you pay me a little amount.
I think $967 is a nice price for it!
I accept only Bitcoins.
My BTC wallet: 12hBxZ7mzn3LgT3SjCsS6yS4tVefPBWCPt
If you have difficulty with this - Ask Google "how to make a payment on a bitcoin wallet". It's easy.
After receiving the above amount, all your data will be immediately removed automatically.
My virus will also will be destroy itself from your operating system.
My Trojan have auto alert, after this email is looked, I will be know it!
You have 2 days (48 hours) for make a payment.
If this does not happen - all your contacts will get crazy shots with your dirty life!
And so that you do not obstruct me, your device will be locked (also after 48 hours)
Do not take this frivolously! This is the last warning!
Various security services or antiviruses won't help you for sure (I have already collected all your data).
Here are the recommendations of a professional:
Antiviruses do not help against modern malicious code. Just do not enter your passwords on unsafe sites!
I hope you will be prudent.
Bye.
5 Jahre, 11 Monate