Current File : /home/tdmfgi5/.imh/str_2019-06-30_09:43:07 |
>>> /opt/sharedrads/check_user tdmfgi5 --plaintext
#################################################################################
INMOTION HOSTING .:: SHARED RADS ::. SHARED RESOURCE ABUSE DETECTION SCRIPTS
#################################################################################
Sun Jun 30 09:43:02 EDT 2019
Displaying today's most recent CPU usage data as recorded by process accounting
CPU minutes: 73.70cp (3.84%) Actual time: 1836.12re (0.42%)
(since my last data poll @ 09:07 EDT tdmfgi5 burned another ~28 cp)
# of executions for CPU intensive processes that have been spawned by this user today
php: 2615 perl: 0 imap: 177 pop3: 0 exim: 1 boxtrap: 0 ftp: 2 cron: 0
CPU minutes used today Historical CPU usage data Most expensive processes
12:00AM EDT :: 0.10cp Jun 29 :: 108.80cp (1.98%) php-cgi :: 47.21 secs
03:00AM EDT :: 10.9cp Jun 28 :: 105.80cp (1.98%) php-cgi :: 46.36 secs
06:00AM EDT :: 34.4cp Jun 27 :: 126.82cp (2.16%) php-cgi :: 45.69 secs
09:00AM EDT :: 45.4cp Jun 26 :: 101.74cp (1.60%) php-cgi :: 45.46 secs
(no data available) Jun 25 :: 113.24cp (2.05%) php-cgi :: 44.97 secs
(no data available) Jun 24 :: 117.13cp (1.92%) php-cgi :: 44.33 secs
(no data available) Jun 23 :: 83.06cp (1.51%) php-cgi :: 43.99 secs
(no data available) Jun 22 :: 92.03cp (1.93%) php-cgi :: 43.60 secs
Displaying top utilization processes for user as recorded by cPanel and dcpumon
Top Process %CPU 125 /opt/php56/bin/php-cgi /home/tdmfgi5/public_html/tdmfginc.com/index.php
Top Process %CPU 98.0 /opt/php56/bin/php-cgi /home/tdmfgi5/public_html/tdmfginc.com/index.php
Top Process %CPU 96.9 /opt/php56/bin/php-cgi /home/tdmfgi5/public_html/tdmfginc.com/wp-admin/admin-ajax.php
RADS has detected these custom cron jobs currently enabled for this account
SHELL="/bin/bash"
* * * * * cd /home/tdmfgi5/public_html; php /home/tdmfgi5/public_html/cron.php > /dev/null
2 23 * * 0 /usr/local/bin/imap-archiver -p -q
USER QUERIES TIME LOCKTIME ROWSSENT ROWSRECVD
ERROR: Could not locate any bandwidth data for tdmfgi5 in /var/cpanel/bandwidth/
>>> /opt/sharedrads/nlp tdmfgi5 -p -w 80 --today
Using /var/log/apache2/domlogs/tdmfgi5/tdmfginc.com
[1;35m-Hourly hits (30/Jun/2019)------------------------------------------------------[0m
08: 77 09: 1638
[1;35m-HTTP response codes------------------------------------------------------------[0m
200: 585 301: 823 304: 3 403: 2 404: 297 406: 1 500: 1 503: 3
[1;35m-Duplicate requests + response codes--------------------------------------------[0m
140 200 GET /
64 200 GET /products-2
35 200 GET /about-us
35 200 GET /careers
33 200 GET /contact
33 200 GET /request-a-quote
29 200 GET /wp-login.php
25 200 POST /wp-login.php
10 200 POST /careers
5 200 GET /robots.txt
[1;35m-Requests for non-static content------------------------------------------------[0m
144 200 GET /
64 200 GET /products-2
43 200 GET /request-a-quote
35 200 GET /about-us
35 200 GET /careers
33 200 GET /contact
29 200 GET /wp-login.php
25 200 POST /wp-login.php
13 200 POST /wp-cron.php
12 301 GET /request-a-quote/
[1;35m-Top user agents----------------------------------------------------------------[0m
1422 "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chro
125 "Mozilla/5.0 (X11; NetBSD) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/
55 "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/
28 "Mozilla/5.0 (Linux; Android 8.1.0; SM-T580) AppleWebKit/537.36 (KHTML, l
22 "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.2)"
14 "WordPress/4.9.10; http://tdmfginc.com"
12 "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)"
8 "Mozilla/5.0 (compatible; YandexBot/3.0; +http://yandex.com/bots)"
5 "Mozilla/5.0 (compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
4 "Mozilla/5.0 (compatible; SeznamBot/3.2; +http://napoveda.seznam.cz/en/se
[1;35m-Top IPs with PTR records-------------------------------------------------------[0m
1422 5.45.77.43 No Record Found
125 54.93.87.210 ec2-54-93-87-210.eu-central-1.compute.amazonaws.com.
28 73.10.31.113 c-73-10-31-113.hsd1.nj.comcast.net.
22 193.169.252.246 No Record Found
14 144.208.76.152 ecld208.inmotionhosting.com.
12 5.188.211.15 No Record Found
4 118.41.132.101 No Record Found
4 172.92.92.136 Query Timed Out
4 190.3.203.203 Query Timed Out
4 220.233.70.12 12.70.233.220.static.exetel.com.au.
>>> /opt/sharedrads/recent-cp tdmfgi5 -b
[2K+------------+------------------+------------------+------------------+------------------+
| command | 1m | [4m5m[0m | 15m | 60m |
+------------+------------------+------------------+------------------+------------------+
| english | 0.00s 0.0% | 0.00s 0.0% | 0.00s 0.0% | 0.39s 0.0% |
| awstats.pl | 0.00s 0.0% | 0.00s 0.0% | 0.00s 0.0% | 2.76s 0.1% |
| logrunner | 0.00s 0.0% | 0.00s 0.0% | 0.00s 0.0% | 0.02s 0.0% |
| cpanellogd | 0.00s 0.0% | 0.00s 0.0% | 0.00s 0.0% | 0.13s 0.0% |
| exim | 0.00s 0.0% | 0.00s 0.0% | 0.00s 0.0% | 0.00s 0.0% |
| imap | 0.00s 0.0% | 0.00s 0.0% | 0.74s 0.1% | 0.89s 0.0% |
| bash | 0.00s 0.0% | 0.01s 0.0% | 0.02s 0.0% | 0.06s 0.0% |
| pop3 | 0.00s 0.0% | 0.18s 0.1% | 0.72s 0.1% | 0.72s 0.0% |
| php-cgi | 2.99s 100.0% | 237.30s 99.9% | 794.08s 99.8% | 1855.65s 99.7% |
+------------+------------------+------------------+------------------+------------------+
| total | 2.99s 100.0% | 237.49s 100.0% | 795.56s 100.0% | 1860.62s 100.0% |
+------------+------------------+------------------+------------------+------------------+
s = processs user time in cpu seconds, cp = user time + system time in cpu minutes
>>> Running processes prior to suspension
USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND
tdmfgi5 307492 0.0 0.0 84896 5588 ? S Jun29 0:00 dovecot/imap
tdmfgi5 1736149 0.0 0.0 84516 4932 ? S 07:35 0:00 dovecot/imap
tdmfgi5 1945270 0.0 0.0 84840 5360 ? S 08:51 0:00 dovecot/imap
tdmfgi5 2009869 0.0 0.0 84516 4928 ? S 09:09 0:00 dovecot/imap
tdmfgi5 2112172 0.4 0.0 43104 9032 ? S 09:42 0:00 dovecot/pop3
tdmfgi5 2113806 52.0 0.0 350252 91720 ? R 09:43 0:01 /opt/php56/bin/php-cgi /home/tdmfgi5/public_html/tdmfginc.com/index.php
tdmfgi5 2113860 0.0 0.0 289696 32284 ? R 09:43 0:00 /opt/php56/bin/php-cgi /home/tdmfgi5/public_html/tdmfginc.com/index.php