????
Current Path : C:/inetpub/logs/wmsvc/W3SVC1/ |
Current File : C:/inetpub/logs/wmsvc/W3SVC1/ex241014.log |
#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 03:16:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 03:16:55 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 - 116.96.78.127 - - 401 2 5 25 2024-10-14 03:16:55 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 38 2024-10-14 03:16:55 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 25 2024-10-14 03:16:55 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 504 2024-10-14 03:16:55 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 VS17.0:PublishDialog:WTE17.11.231.19466;sid=5db4359e-89fb-4877-bfe5-e0ee21bbc1a2;op=Sync - 200 0 0 375 2024-10-14 03:17:05 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 24 2024-10-14 03:17:05 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 22 2024-10-14 03:17:05 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 994 2024-10-14 03:17:05 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 VS17.0:PublishDialog:WTE17.11.231.19466;sid=29c76db3-225f-43b6-9d21-9d9de7311347;op=Sync - 200 0 0 894 2024-10-14 03:17:06 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 22 2024-10-14 03:17:07 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 VS17.0:PublishDialog:WTE17.11.231.19466;sid=29c76db3-225f-43b6-9d21-9d9de7311347;op=Sync - 200 0 0 1098 2024-10-14 03:17:07 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 1204 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 03:45:28 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 03:45:28 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 - 116.96.78.127 - - 401 2 5 27 2024-10-14 03:45:28 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 58 2024-10-14 03:45:28 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 26 2024-10-14 03:45:28 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 477 2024-10-14 03:45:28 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=d4aca363-03af-4973-b949-3c1377456017;op=Sync - 200 0 0 339 2024-10-14 03:45:28 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 25 2024-10-14 03:45:49 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 20367 2024-10-14 03:45:49 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=d4aca363-03af-4973-b949-3c1377456017;op=Sync - 200 0 0 20232 2024-10-14 03:45:57 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 35 2024-10-14 03:45:57 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 26 2024-10-14 03:45:57 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=d38fc1eb-cbd3-40bd-a9d8-69f38257e8cd;op=Sync - 200 0 0 197 2024-10-14 03:45:57 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 445 2024-10-14 03:45:57 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 31 2024-10-14 03:46:18 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 20394 2024-10-14 03:46:18 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=d38fc1eb-cbd3-40bd-a9d8-69f38257e8cd;op=Sync - 200 0 0 20245 2024-10-14 03:46:25 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 26 2024-10-14 03:46:25 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 22 2024-10-14 03:46:25 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=0ab7eb8d-a4d3-46ed-8794-d24f5b08e6a2;op=Sync - 200 0 0 199 2024-10-14 03:46:25 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 318 2024-10-14 03:46:25 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 24 2024-10-14 03:46:46 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 20297 2024-10-14 03:46:46 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=0ab7eb8d-a4d3-46ed-8794-d24f5b08e6a2;op=Sync - 200 0 0 20207 2024-10-14 03:46:57 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 27 2024-10-14 03:46:57 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 65 2024-10-14 03:46:57 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 408 2024-10-14 03:46:57 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=9bf669d9-89c2-4252-95a0-2328349e6eeb;op=Sync - 200 0 0 233 2024-10-14 03:46:57 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 27 2024-10-14 03:47:10 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 12696 2024-10-14 03:47:10 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=9bf669d9-89c2-4252-95a0-2328349e6eeb;op=Sync - 200 0 0 12561 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 05:04:14 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 05:04:14 103.153.214.94 GET / - 8172 - 147.185.133.20 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 276 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 07:03:15 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 07:03:15 103.153.214.94 POST / g=sys_hand_upfile 8172 - 107.189.28.251 Mozilla/5.0+(compatible;+MSIE+6.0;+Windows+98;+Trident/3.0) - 404 7 0 209 2024-10-14 07:03:15 103.153.214.94 GET /attachements/90vmpbp7ps.php - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+12_2_8;+en)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.2+Safari/605.1.15 - 404 7 0 205 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 07:19:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 07:19:55 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 49 2024-10-14 07:19:55 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 28 2024-10-14 07:19:55 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 VS17.0:PublishDialog:WTE17.11.231.19466;sid=f523c894-882f-4535-8d68-e87e3910ccc7;op=Sync - 200 0 0 281 2024-10-14 07:19:55 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 395 2024-10-14 07:20:00 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 29 2024-10-14 07:20:00 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 26 2024-10-14 07:20:01 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 1011 2024-10-14 07:20:01 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 VS17.0:PublishDialog:WTE17.11.231.19466;sid=8a7afcc2-a34a-4840-9739-00c4d7ed4252;op=Sync - 200 0 0 880 2024-10-14 07:20:01 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 32 2024-10-14 07:20:02 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 - - 200 0 0 1028 2024-10-14 07:20:02 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.78.127 VS17.0:PublishDialog:WTE17.11.231.19466;sid=8a7afcc2-a34a-4840-9739-00c4d7ed4252;op=Sync - 200 0 0 892 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 08:35:49 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 08:35:49 103.153.214.94 GET /wp-content/plugins/watupro/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 212 2024-10-14 08:42:49 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 - 119.82.130.75 - - 401 2 5 15 2024-10-14 08:42:49 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 23 2024-10-14 08:42:49 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 21 2024-10-14 08:42:49 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=2fa236b0-bfa9-434d-ba8f-9e41186af146;op=Sync - 200 0 0 464 2024-10-14 08:42:49 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 579 2024-10-14 08:42:49 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 9 2024-10-14 08:44:07 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=2fa236b0-bfa9-434d-ba8f-9e41186af146;op=Sync - 200 0 0 77395 2024-10-14 08:44:07 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 77422 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 09:10:42 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 09:10:42 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 - 116.96.78.127 - - 401 2 5 46 2024-10-14 09:10:42 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 54 2024-10-14 09:10:42 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 29 2024-10-14 09:10:42 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 525 2024-10-14 09:10:42 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=35c5b851-510b-4ec3-a2cb-f67962105d7c;op=Sync - 200 0 0 355 2024-10-14 09:10:56 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 30 2024-10-14 09:10:56 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 26 2024-10-14 09:10:56 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=a592cdf9-a370-4d75-9dd9-07e0df57e3f4;op=Sync - 200 0 0 243 2024-10-14 09:10:56 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 386 2024-10-14 09:10:56 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 25 2024-10-14 09:11:17 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 20344 2024-10-14 09:11:17 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=a592cdf9-a370-4d75-9dd9-07e0df57e3f4;op=Sync - 200 0 0 20232 2024-10-14 09:11:23 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 28 2024-10-14 09:11:23 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 29 2024-10-14 09:11:23 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 339 2024-10-14 09:11:23 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=1d9cede7-90a1-49e9-9fd5-26942b16be37;op=Sync - 200 0 0 191 2024-10-14 09:11:23 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 27 2024-10-14 09:11:43 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 20345 2024-10-14 09:11:43 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=1d9cede7-90a1-49e9-9fd5-26942b16be37;op=Sync - 200 0 0 20227 2024-10-14 09:11:54 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 38 2024-10-14 09:11:54 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 32 2024-10-14 09:11:54 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 473 2024-10-14 09:11:54 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=e22fc908-03ff-443d-b12f-ab30e35474a4;op=Sync - 200 0 0 275 2024-10-14 09:11:54 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 30 2024-10-14 09:12:14 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 20321 2024-10-14 09:12:14 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=e22fc908-03ff-443d-b12f-ab30e35474a4;op=Sync - 200 0 0 20192 2024-10-14 09:12:25 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 44 2024-10-14 09:12:25 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 26 2024-10-14 09:12:26 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 536 2024-10-14 09:12:26 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=d9f4b584-bdc3-42a8-8945-dea270a5fb42;op=Sync - 200 0 0 176 2024-10-14 09:12:26 103.153.214.94 HEAD /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 37 2024-10-14 09:12:39 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 VSCmdLine:WTE8.0.10.46919;sid=d9f4b584-bdc3-42a8-8945-dea270a5fb42;op=Sync - 200 0 0 12423 2024-10-14 09:12:39 103.153.214.94 POST /msdeploy.axd site=yte.nextform.vn 8172 yte 116.96.78.127 - - 200 0 0 12602 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 12:06:39 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 12:06:39 103.153.214.94 GET / - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.3)+AppleWebKit/616.20.13+(KHTML,+like+Gecko)+Version/17.7.74+Safari/616.20.13 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 208 2024-10-14 12:06:39 103.153.214.94 GET /cgi-bin/status - 8172 - 107.189.28.251 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 205 2024-10-14 12:06:40 103.153.214.94 GET /cgi-bin/stats - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64;+rv:81.0)+Gecko/20100101+Firefox/81.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 208 2024-10-14 12:06:40 103.153.214.94 GET /cgi-bin/test - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/96.0.4664.110+Safari/537.36 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 207 2024-10-14 12:06:42 103.153.214.94 GET /cgi-bin/status/status.cgi - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11_0_0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/87.0.4280.88+Safari/537.36 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 205 2024-10-14 12:06:42 103.153.214.94 GET /test.cgi - 8172 - 107.189.28.251 Mozilla/5.0+(SS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 207 2024-10-14 12:06:43 103.153.214.94 GET /debug.cgi - 8172 - 107.189.28.251 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 208 2024-10-14 12:06:43 103.153.214.94 GET /cgi-bin/test-cgi - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.15-620 ()+{+ignored;+};+echo+Content-Type:+text/html;+echo+;+/bin/cat+/etc/passwd 404 7 0 214 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 13:15:30 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 13:15:30 103.153.214.94 GET / - 8172 - 162.142.125.220 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 404 7 0 259 2024-10-14 13:15:39 103.153.214.94 GET / - 8172 - 167.94.138.34 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 404 7 0 272 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 14:37:39 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 14:37:39 103.153.214.94 GET /wp-content/plugins/duplicator/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 211 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 15:10:10 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 15:10:10 103.153.214.94 GET / - 8172 - 147.185.133.2 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 281 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 16:01:36 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 16:01:36 103.153.214.94 GET /wp-content/plugins/barclaycart/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+12_1_8;+en)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0.4+Safari/605.1.15 - 404 7 0 210 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 16:26:02 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 16:26:02 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 - 119.82.130.75 - - 401 2 5 37 2024-10-14 16:26:02 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 35 2024-10-14 16:26:02 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 17 2024-10-14 16:26:02 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=feb3506e-cfce-4bea-9ebf-e2d9fc10f386;op=Sync - 200 0 0 414 2024-10-14 16:26:02 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 548 2024-10-14 16:26:02 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 13 2024-10-14 16:27:20 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=feb3506e-cfce-4bea-9ebf-e2d9fc10f386;op=Sync - 200 0 0 77443 2024-10-14 16:27:20 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 77481 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 17:24:10 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 17:24:10 103.153.214.94 GET /wp-content/plugins/i-dump-iphone-to-wordpress-photo-uploader/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 212 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 18:45:04 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 18:45:04 103.153.214.94 GET /wp-content/plugins/booking-calendar-contact-form/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+12_0)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.1.15 - 404 7 0 211 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 20:06:07 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 20:06:07 103.153.214.94 GET /wp-content/plugins/backwpup/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.1.27 - 404 7 0 211 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 21:25:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 21:25:55 103.153.214.94 GET /wp-content/plugins/wp-post-author/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+rv:128.0+)+Gecko/20100101+Firefox/128.0 - 404 7 0 211 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 22:49:45 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 22:49:45 103.153.214.94 GET /groovyconsole - 8172 - 107.189.28.251 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:120.0)+Gecko/20100101+Firefox/120.0 - 404 7 0 208 2024-10-14 22:49:45 103.153.214.94 GET /etc/groovyconsole.html - 8172 - 107.189.28.251 Mozilla/5.0+(Debian;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 228 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-10-14 23:52:30 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-10-14 23:52:30 103.153.214.94 GET / - 8172 - 87.236.176.131 Mozilla/5.0+(compatible;+InternetMeasurement/1.0;++https://internet-measurement.com/) - 404 7 0 318