Guest User

Какая-то хуйня из логов

a guest
Oct 23rd, 2017
183
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Nginx 28.31 KB | None | 0 0
  1. Nov 27 06:51:44 scw-76845f sshd[24933]: Accepted password for rngnrs from 94.73.226.102 port 42698 ssh2
  2. Nov 27 06:51:44 scw-76845f sshd[24933]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  3. Nov 27 06:57:02 scw-76845f sshd[25141]: Accepted password for rngnrs from 94.73.226.102 port 41602 ssh2
  4. Nov 27 06:57:02 scw-76845f sshd[25141]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  5. Nov 27 07:56:23 scw-76845f sshd[24933]: pam_unix(sshd:session): session closed for user rngnrs
  6. Nov 27 08:19:53 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  7. Nov 27 08:19:53 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  8. Nov 27 12:34:58 scw-76845f sudo: pam_unix(sudo:auth): authentication failure; logname=rngnrs uid=1002 euid=0 tty=/dev/pts/1 ruser=rngnrs rhost= user=rngnrs
  9. Nov 27 12:35:06 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  10. Nov 27 12:35:06 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  11. Nov 27 13:36:36 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  12. Nov 27 13:36:36 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  13. Nov 27 15:47:29 scw-76845f sshd[25141]: pam_unix(sshd:session): session closed for user rngnrs
  14. Nov 27 18:54:59 scw-76845f sshd[4658]: Accepted password for rngnrs from 94.73.226.102 port 56310 ssh2
  15. Nov 27 18:54:59 scw-76845f sshd[4658]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  16. Nov 27 18:56:52 scw-76845f sshd[4870]: Accepted password for rngnrs from 94.73.226.102 port 37915 ssh2
  17. Nov 27 18:56:52 scw-76845f sshd[4870]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  18. Nov 27 18:57:05 scw-76845f sshd[5056]: Accepted password for rngnrs from 94.73.226.102 port 48347 ssh2
  19. Nov 27 18:57:05 scw-76845f sshd[5056]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  20. Nov 27 18:59:29 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  21. Nov 27 18:59:29 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  22. Nov 27 18:59:58 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  23. Nov 27 18:59:58 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  24. Nov 27 19:01:38 scw-76845f sshd[5056]: pam_unix(sshd:session): session closed for user rngnrs
  25. Nov 27 19:15:07 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  26. Nov 27 19:15:07 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  27. Nov 27 19:42:15 scw-76845f passwd[6128]: pam_unix(passwd:chauthtok): password changed for rngnrs
  28. Nov 27 19:43:50 scw-76845f sudo: pam_unix(sudo:auth): authentication failure; logname=rngnrs uid=1002 euid=0 tty=/dev/pts/1 ruser=rngnrs rhost= user=rngnrs
  29. Nov 27 19:43:56 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/inc/mod ; USER=root ; COMMAND=/bin/nano auth.php
  30. Nov 27 19:43:56 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  31. Nov 27 19:44:56 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/mkdir ololord
  32. Nov 27 19:44:56 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  33. Nov 27 19:45:30 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/ololord ; USER=root ; COMMAND=/usr/bin/git clone https://github.com/rngnrs/tumbach
  34. Nov 27 19:45:30 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  35. Nov 27 19:46:43 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/ololord ; USER=root ; COMMAND=/bin/mv tumbach/ ../ololord/
  36. Nov 27 19:46:43 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  37. Nov 27 19:47:08 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/rm -rf ololord/
  38. Nov 27 19:47:08 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  39. Nov 27 19:47:15 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/bin/git clone https://github.com/rngnrs/tumbach
  40. Nov 27 19:47:15 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  41. Nov 27 19:48:33 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/mv tumbach/ ololord/
  42. Nov 27 19:48:33 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  43. Nov 27 19:58:26 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www/brchan/html/rus ; USER=root ; COMMAND=/bin/nano index.html
  44. Nov 27 19:58:26 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  45. Nov 27 20:00:04 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/nano nginx.conf
  46. Nov 27 20:00:04 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  47. Nov 27 20:00:30 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/service nginx reload
  48. Nov 27 20:00:30 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  49. Nov 27 20:01:00 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/service nginx restart
  50. Nov 27 20:01:00 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  51. Nov 27 20:01:04 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/nano nginx.conf
  52. Nov 27 20:01:04 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  53. Nov 27 20:02:28 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/service nginx reload
  54. Nov 27 20:02:28 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  55. Nov 27 20:04:02 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/service nginx reload
  56. Nov 27 20:04:02 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  57. Nov 27 20:04:07 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/nano nginx.conf
  58. Nov 27 20:04:07 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  59. Nov 27 20:08:52 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/bin/nano nginx.conf
  60. Nov 27 20:08:52 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  61. Nov 27 20:10:19 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/service nginx reload
  62. Nov 27 20:10:19 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  63. Nov 27 20:10:38 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  64. Nov 27 20:10:38 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  65. Nov 27 20:10:51 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/opt/www ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  66. Nov 27 20:10:51 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  67. Nov 27 20:11:29 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/etc/nginx/sites-available ; USER=root ; COMMAND=/bin/nano default
  68. Nov 27 20:11:29 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  69. Nov 27 20:12:04 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/etc/nginx/sites-available ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  70. Nov 27 20:12:04 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  71. Nov 27 20:14:38 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/etc/nginx/sites-available ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  72. Nov 27 20:14:38 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  73. Nov 27 20:14:40 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/etc/nginx/sites-available ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  74. Nov 27 20:14:40 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  75. Nov 27 20:15:20 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/etc/nginx/sites-available ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  76. Nov 27 20:15:20 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  77. Nov 27 20:17:51 scw-76845f sshd[3733]: Accepted password for rngnrs from 94.73.226.102 port 58312 ssh2
  78. Nov 27 20:17:51 scw-76845f sshd[3733]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  79. Nov 27 20:18:02 scw-76845f sudo: pam_unix(sudo:auth): authentication failure; logname=rngnrs uid=1002 euid=0 tty=/dev/pts/1 ruser=rngnrs rhost= user=rngnrs
  80. Nov 27 20:18:10 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  81. Nov 27 20:18:10 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  82. Nov 27 20:18:45 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  83. Nov 27 20:18:45 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  84. Nov 27 20:19:13 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  85. Nov 27 20:19:13 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  86. Nov 27 20:19:30 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  87. Nov 27 20:19:30 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  88. Nov 27 20:19:54 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  89. Nov 27 20:19:54 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  90. Nov 27 20:20:08 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  91. Nov 27 20:20:08 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  92. Nov 27 20:20:46 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  93. Nov 27 20:20:46 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  94. Nov 27 20:20:53 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  95. Nov 27 20:20:53 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  96. Nov 27 20:21:11 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  97. Nov 27 20:21:11 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  98. Nov 27 20:21:15 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  99. Nov 27 20:21:15 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  100. Nov 27 20:21:38 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  101. Nov 27 20:21:38 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  102. Nov 27 20:21:45 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  103. Nov 27 20:21:45 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  104. Nov 27 20:21:49 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  105. Nov 27 20:21:49 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  106. Nov 27 20:21:57 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  107. Nov 27 20:21:57 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  108. Nov 27 20:22:11 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  109. Nov 27 20:22:11 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  110. Nov 27 20:30:09 scw-76845f sshd[4053]: Accepted password for rngnrs from 94.73.226.102 port 58478 ssh2
  111. Nov 27 20:30:09 scw-76845f sshd[4053]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  112. Nov 27 20:30:20 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  113. Nov 27 20:30:20 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  114. Nov 27 20:30:46 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  115. Nov 27 20:30:46 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  116. Nov 27 20:31:27 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /etc/nginx/sites-available/default
  117. Nov 27 20:31:27 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  118. Nov 27 20:32:21 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  119. Nov 27 20:32:21 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  120. Nov 27 20:32:25 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  121. Nov 27 20:32:25 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  122. Nov 27 20:34:44 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  123. Nov 27 20:34:44 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  124. Nov 27 20:34:48 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /etc/nginx/sites-available/default
  125. Nov 27 20:34:48 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  126. Nov 27 20:35:01 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /etc/nginx/sites-enabled/default
  127. Nov 27 20:35:01 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  128. Nov 27 20:35:21 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /etc/nginx/sites-available/default
  129. Nov 27 20:35:21 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  130. Nov 27 20:35:29 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  131. Nov 27 20:35:29 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  132. Nov 27 20:35:33 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  133. Nov 27 20:35:33 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  134. Nov 27 20:36:51 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /etc/nginx/sites-available/default
  135. Nov 27 20:36:51 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  136. Nov 27 20:37:17 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  137. Nov 27 20:37:17 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  138. Nov 27 20:37:19 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  139. Nov 27 20:37:19 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  140. Nov 27 20:37:30 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  141. Nov 27 20:37:30 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  142. Nov 27 20:38:15 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service nginx configtest
  143. Nov 27 20:38:15 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  144. Nov 27 20:38:18 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/nginx -s reload
  145. Nov 27 20:38:18 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  146. Nov 27 20:39:58 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  147. Nov 27 20:39:58 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  148. Nov 27 20:42:17 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/mv /opt/www/brchan/html/rus/src/1480278108366.png /opt/www/brchan/html/rus/src/1480278108366-0.png
  149. Nov 27 20:42:17 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  150. Nov 27 20:42:30 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/mv /opt/www/brchan/html/rus/src/1480278108366.png /opt/www/brchan/html/rus/src/1480278108366-0.png
  151. Nov 27 20:42:30 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  152. Nov 27 20:47:13 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  153. Nov 27 20:47:13 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  154. Nov 27 20:48:49 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  155. Nov 27 20:48:49 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  156. Nov 27 20:52:20 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  157. Nov 27 20:52:20 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  158. Nov 27 20:58:39 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/nginx.conf
  159. Nov 27 20:58:39 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  160. Nov 27 21:02:20 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/brchan/html/inc/config.php
  161. Nov 27 21:02:20 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  162. Nov 27 21:02:33 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/nano /opt/www/brchan/html/inc/secrets.php
  163. Nov 27 21:02:33 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  164. Nov 27 21:04:55 scw-76845f sshd[4053]: pam_unix(sshd:session): session closed for user rngnrs
  165. Nov 27 21:07:51 scw-76845f sshd[4749]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=94.73.226.102 user=rngnrs
  166. Nov 27 21:07:53 scw-76845f sshd[4749]: Failed password for rngnrs from 94.73.226.102 port 59478 ssh2
  167. Nov 27 21:07:58 scw-76845f sshd[4749]: Accepted password for rngnrs from 94.73.226.102 port 59478 ssh2
  168. Nov 27 21:07:58 scw-76845f sshd[4749]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  169. Nov 27 21:21:12 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  170. Nov 27 21:21:12 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  171. Nov 27 21:21:35 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  172. Nov 27 21:21:35 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  173. Nov 27 21:23:56 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  174. Nov 27 21:23:56 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  175. Nov 27 21:24:02 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  176. Nov 27 21:24:02 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  177. Nov 27 21:24:02 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  178. Nov 27 21:24:02 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  179. Nov 27 21:24:02 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  180. Nov 27 21:24:02 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  181. Nov 27 21:24:15 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  182. Nov 27 21:24:15 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  183. Nov 27 21:24:17 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  184. Nov 27 21:24:17 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  185. Nov 27 21:24:56 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  186. Nov 27 21:24:56 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  187. Nov 27 21:24:58 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  188. Nov 27 21:24:58 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  189. Nov 27 21:24:59 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  190. Nov 27 21:24:59 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  191. Nov 27 21:25:01 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  192. Nov 27 21:25:01 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  193. Nov 27 21:25:03 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  194. Nov 27 21:25:03 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  195. Nov 27 21:25:04 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  196. Nov 27 21:25:04 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  197. Nov 27 21:25:06 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  198. Nov 27 21:25:06 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  199. Nov 27 21:25:13 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  200. Nov 27 21:25:13 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  201. Nov 27 21:25:17 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  202. Nov 27 21:25:17 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  203. Nov 27 21:25:18 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  204. Nov 27 21:25:18 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  205. Nov 27 21:25:20 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  206. Nov 27 21:25:20 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  207. Nov 27 21:25:23 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  208. Nov 27 21:25:23 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  209. Nov 27 21:25:25 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  210. Nov 27 21:25:25 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  211. Nov 27 21:25:27 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  212. Nov 27 21:25:27 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  213. Nov 27 21:25:29 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  214. Nov 27 21:25:29 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  215. Nov 27 21:25:31 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  216. Nov 27 21:25:31 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  217. Nov 27 21:25:33 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/sbin/service mysql stop
  218. Nov 27 21:25:33 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  219. Nov 27 21:29:19 scw-76845f sshd[3854]: Accepted password for rngnrs from 94.73.226.102 port 59826 ssh2
  220. Nov 27 21:29:19 scw-76845f sshd[3854]: pam_unix(sshd:session): session opened for user rngnrs by (uid=0)
  221. Nov 27 21:30:53 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/etc/init.d/mysql stop
  222. Nov 27 21:30:53 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  223. Nov 27 21:32:42 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/etc/init.d/mysql stop
  224. Nov 27 21:32:42 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  225. Nov 27 21:33:04 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/etc/init.d/mysql stop
  226. Nov 27 21:33:04 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  227. Nov 27 21:35:29 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/etc/init.d/mysql stop
  228. Nov 27 21:35:29 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  229. Nov 27 21:35:57 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/etc/init.d/mysql stop
  230. Nov 27 21:35:57 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  231. Nov 27 21:36:06 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/bin/mysqld_safe —skip-grant-tables
  232. Nov 27 21:36:06 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  233. Nov 27 21:36:39 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/bin/mysqld_safe —skip-grant-tables
  234. Nov 27 21:36:39 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  235. Nov 27 21:36:54 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/usr/bin/mysql -u root -p
  236. Nov 27 21:36:54 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  237. Nov 27 21:37:58 scw-76845f passwd[5803]: pam_unix(passwd:chauthtok): password changed for rngnrs
  238. Nov 27 21:39:01 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/bin/mv /home/brchan/ /home/hackers/
  239. Nov 27 21:39:01 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  240. Nov 27 21:39:08 scw-76845f sudo: rngnrs : TTY=pts/1 ; PWD=/home/rngnrs ; USER=root ; COMMAND=/sbin/reboot
  241. Nov 27 21:39:08 scw-76845f sudo: pam_unix(sudo:session): session opened for user root by rngnrs(uid=0)
  242. Nov 27 21:41:21 scw-76845f sshd[3693]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=171.33.251.239 user=rngnrs
  243. Nov 27 21:41:23 scw-76845f sshd[3693]: Failed password for rngnrs from 171.33.251.239 port 51154 ssh2
  244. Nov 27 21:41:29 scw-76845f sshd[3693]: Failed password for rngnrs from 171.33.251.239 port 51154 ssh2
  245. Nov 27 21:41:36 scw-76845f sshd[3693]: Failed password for rngnrs from 171.33.251.239 port 51154 ssh2
  246. Nov 27 21:41:36 scw-76845f sshd[3693]: PAM 2 more authentication failures; logname= uid=0 euid=0 tty=ssh ruser= rhost=171.33.251.239 user=rngnrs
  247. Nov 27 21:41:46 scw-76845f sshd[3695]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=171.33.251.239 user=rngnrs
  248. Nov 27 21:41:48 scw-76845f sshd[3695]: Failed password for rngnrs from 171.33.251.239 port 51155 ssh2
  249. Nov 27 21:41:55 scw-76845f sshd[3695]: Failed password for rngnrs from 171.33.251.239 port 51155 ssh2
  250. Nov 27 21:41:57 scw-76845f sshd[3695]: PAM 1 more authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=171.33.251.239 user=rngnrs
  251. Nov 27 21:42:34 scw-76845f sshd[3697]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=171.33.251.239 user=rngnrs
  252. Nov 27 21:42:36 scw-76845f sshd[3697]: Failed password for rngnrs from 171.33.251.239 port 51156 ssh2
Advertisement
Add Comment
Please, Sign In to add comment