Jump to content

Analysis of log files


Recommended Posts

KiraCreedeth
Posted

Hey, I am not sure if I should be worried, but I am seeing weird connections in emby logs. Not sure if I should publicly share the logs, should I PM them to admin?

Posted

Hi there, what do you mean by weird?

Happy2Play
Posted

Yes you can PM to a mod and we can add devs if needed.  But any specifics can help troubleshoot this on the forum.

KiraCreedeth
Posted

On second thought I can post logs here, I'll just edit my public IP address out from it. Wil post when  I get home.

Posted
6 hours ago, KiraCreedeth said:

I'll just edit my public IP address out from it.

Hi.  The server can already do that for you.  See the "Logs" tabs in the dash.

KiraCreedeth
Posted

2022-11-13 19.36.03.049 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.36.03.049 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.36.15.808 Info HttpClient: POST https://mb3admin.com/admin/service/registration/validate
2022-11-13 19.36.15.812 Info LiveTvManager: Refreshing guide with 7 days of guide data
2022-11-13 19.36.16.568 Info HttpClient: Http response 200 from https://mb3admin.com/admin/service/registration/validate after 760ms. HeadersServer=nginx, Date=Sun, 13 Nov 2022 17:36:16 GMT, Connection=keep-alive, Access-Control-Allow-Origin=*, Access-Control-Allow-Headers=Content-Type, Range, Accept, X-Emby-Token, X-Admin-Token, X-Application, Access-Control-Allow-Methods=GET, POST, PUT, DELETE, OPTIONS, Cache-Control=no-store, must-revalidate, no-cache, Pragma=no-cache, Vary=Accept-Encoding
2022-11-13 19.36.16.570 Info SecurityManager: Registered for MBSupporter
2022-11-13 19.39.10.488 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.39.10.488 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 1ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.43.36.158 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.43.36.158 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.46.35.466 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.46.35.466 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.49.34.501 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.49.34.501 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.52.33.709 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.52.33.709 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.55.31.312 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.55.31.312 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 19.58.31.704 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 19.58.31.704 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.01.28.953 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.01.28.954 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.04.24.549 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.04.24.549 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.07.23.844 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.07.23.845 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.10.20.904 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.10.20.904 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 1ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.13.18.653 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.13.18.653 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.16.18.318 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.16.18.318 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.19.13.525 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.19.13.525 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.22.10.916 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.22.10.916 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.25.09.763 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.25.09.763 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.28.07.931 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.28.07.931 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.31.05.761 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.31.05.761 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.34.07.489 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.34.07.490 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.40.04.531 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.40.04.531 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.43.02.266 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.43.02.267 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.46.01.440 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.46.01.440 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.49.00.507 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.49.00.508 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.50.55.703 Info HttpClient: GET https://api.github.com/repos/MediaBrowser/Emby.Releases/releases
2022-11-13 20.50.57.716 Info HttpClient: GET https://www.mb3admin.com/admin/service/EmbyPackages.json
2022-11-13 20.54.56.803 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.54.56.803 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 1ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 20.57.56.163 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 20.57.56.163 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 21.02.41.598 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 21.02.41.599 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 21.04.03.279 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 21.04.03.279 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 21.05.38.079 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 21.05.38.079 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 21.07.25.518 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 21.07.25.518 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 21.10.42.481 Info Server: http/1.1 CONNECT http://‌‍‍188.214.129.95‌:4444/. UserAgent: 
2022-11-13 21.10.42.481 Info Server: http/1.1 Response 302 to ‌‍‍146.190.36.157‌. Time: 0ms. http://‌‍‍188.214.129.95‌:4444/
2022-11-13 22.29.47.195 Info Server: http/1.1 POST http://MY-PUBLIC-IP‌:80/GponForm/diag_Form?images/. UserAgent: Momentum
2022-11-13 22.29.47.195 Info Server: http/1.1 Response 302 to ‌‍‍41.216.183.151‌. Time: 0ms. http://‌‍‍MY-PUBLIC-IP‌:80/GponForm/diag_Form?images/

KiraCreedeth
Posted

Hey all, and thanks for answering. I have attached now some logs.

Posted

If you don't' recognize that IP address you could try something like changing the public facing port of the server and see if they stop after that.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...