Class 5 Lab 5 ‐ Grep and Awk - Justin-Boyd/CIT-Class GitHub Wiki

Task 1

awk 'END{print NR}' cowrie.log

Task 2

awk '/2021-08-08/' cowrie.log

Task 3

awk '$1 ~ "2021-08-08" {print $2}' cowrie.log

Task 4

awk '$1 ~ "2021-08-09" {print $1, $2, $4}' cowrie.log

Task 5

awk '$1 !~ "2021-08-08" {print $1, $2, $3, $4}' cowrie.log | grep "unauthorized login"

Task 6

awk '$1 ~ "2021-08-08" || $1 ~ "2021-08-09" {print $3, $4}' cowrie.log

Task 7

grep -c "2021-08-10" cowrie.log

Task 8

grep -n "Ready to accept SSH connections" cowrie.log

Task 9

grep -i "ssh" cowrie.log | awk '{print $2, $4, $5, $6}'

Task 10

grep -iv "telnet" cowrie.log | awk '{print $2, $4, $5}' | grep login