################### Logwatch 7.4.0 (03/01/11) ####################
Processing Initiated: Mon May 27 04:42:08 2019
Date Range Processed: yesterday
( 2019-May-26 )
Period is day.
Detail Level of Output: 0
Type of Output/Format: mail / text
Logfiles for Host:
h2361197.stratoserver.net
##################################################################
--------------------- fail2ban-messages Begin ------------------------
Banned services with Fail2Ban: Bans:Unbans
ssh: [ 6:6 ]
---------------------- fail2ban-messages End -------------------------
--------------------- httpd Begin ------------------------
Connection attempts using mod_proxy:
59.36.132.222 ->
www.baidu.com:443: 1 Time(s)
A total of 1 sites probed the server
61.219.11.153
Requests with error response codes
400 Bad Request
null: 2 Time(s)
/: 1 Time(s)
/moo: 1 Time(s)
/w00tw00t.at.ISC.SANS.DFind:): 1 Time(s)
http://123.125.114.144/: 1 Time(s)
http://172.247.32.25/ddd.html: 1 Time(s)
http://189.40.48.3:7189/tl6kyzwpv2tdszto6r ... tkj391boc37syvi: 1 Time(s)
http://www.baidu.com/: 1 Time(s)
www.baidu.com:443: 1 Time(s)
403 Forbidden
/resolutionen/: 1 Time(s)
404 Not Found
/robots.txt: 42 Time(s)
/berlin/apple-touch-icon.png: 4 Time(s)
/.git/HEAD: 1 Time(s)
/berichte/WiSe14/Bericht_WiSe14-Bremen.pdf: 1 Time(s)
/reader/2016_sose_konstanz_lang.pdf: 1 Time(s)
500 Internal Server Error
/: 7 Time(s)
---------------------- httpd End -------------------------
--------------------- pam_unix Begin ------------------------
sshd:
Authentication Failures:
root (111.61.110.136): 6 Time(s)
root (190.97.81.61): 6 Time(s)
root (60.178.119.41): 6 Time(s)
unknown (110.12.202.244): 6 Time(s)
unknown (
cpe946a771bc995-cm946a771bc993.cpe.net.cable.rogers.com): 6 Time(s)
root (
exit4.tor-network.net): 2 Time(s)
root (
zrh-exit.privateinternetaccess.com): 2 Time(s)
unknown (lfbn-ren-1-350-184.w2-10.abo.wanadoo.fr): 2 Time(s)
root (exit1.ipredator.se): 1 Time(s)
root (
exit3.tor-network.net): 1 Time(s)
unknown (136.55.215.72): 1 Time(s)
unknown (
138.66.21.109.rev.sfr.net): 1 Time(s)
unknown (159.192.228.240): 1 Time(s)
unknown (193.32.163.89): 1 Time(s)
unknown (223.17.237.138): 1 Time(s)
Invalid Users:
Unknown Account: 19 Time(s)
---------------------- pam_unix End -------------------------
--------------------- Postfix Begin ------------------------
16 Miscellaneous warnings
10.040K Bytes accepted 10,281
10.040K Bytes sent via SMTP 10,281
======== ==================================================
1 Accepted 100.00%
-------- --------------------------------------------------
1 Total 100.00%
======== ==================================================
3 4xx Reject relay denied 100.00%
-------- --------------------------------------------------
3 Total 4xx Rejects 100.00%
======== ==================================================
1336 Connections
175 Connections lost (inbound)
1336 Disconnections
1 Removed from queue
1 Sent via SMTP
1 SMTP dialog errors
---------------------- Postfix End -------------------------
--------------------- sendmail-largeboxes (large mail spool files) Begin
------------------------
Large Mailbox threshold: 40MB (41943040 bytes)
Warning: Large mailbox: mailman.gz (1747199807)
Warning: Large mailbox: mailman (235703599967)
---------------------- sendmail-largeboxes (large mail spool files) End
-------------------------
--------------------- SSHD Begin ------------------------
Disconnecting after too many authentication failures for user:
invalid : 1 Time(s)
root : 3 Time(s)
Failed logins from:
31.220.0.225 (
exit3.tor-network.net): 1 time
31.220.40.54 (
exit4.tor-network.net): 2 times
60.178.119.41 (41.119.178.60.broad.nb.zj.dynamic.163data.com.cn): 6 times
111.61.110.136: 6 times
190.97.81.61 (cny-pal-97-81-61.ert.com.co): 6 times
195.206.105.217 (
zrh-exit.privateinternetaccess.com): 2 times
197.231.221.211 (exit1.ipredator.se): 1 time
Illegal users from:
undef: 7 times
2.10.182.184 (lfbn-ren-1-350-184.w2-10.abo.wanadoo.fr): 2 times
109.21.66.138 (
138.66.21.109.rev.sfr.net): 1 time
110.12.202.244: 6 times
136.55.215.72: 1 time
139.162.122.110 (
scan-8.security.ipip.net): 1 time
159.192.228.240: 1 time
174.114.231.16 (
CPE946a771bc995-CM946a771bc993.cpe.net.cable.rogers.com): 6 times
193.32.163.89 (srv.eqaltech.su): 1 time
223.17.237.138 (
138-237-17-223-on-nets.com): 1 time
---------------------- SSHD End -------------------------
--------------------- Disk Space Begin ------------------------
Filesystem Size Used Avail Use% Mounted on
/dev/vzfs 400G 242G 159G 61% /
---------------------- Disk Space End -------------------------
###################### Logwatch End #########################