????
Current Path : C:/inetpub/logs/wmsvc/W3SVC1/ |
Current File : C:/inetpub/logs/wmsvc/W3SVC1/ex241202.log |
#Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 00:22:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 00:22:03 103.153.214.94 GET /wp-content/plugins/task-manager-pro/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:109.0)+Gecko/20100101+Firefox/115.0 - 404 7 0 254 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 01:52:06 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 01:52:06 103.153.214.94 GET /wp-content/plugins/backupbuddy/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.15;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 221 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 03:24:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 03:24:11 103.153.214.94 GET /wp-content/plugins/all-in-one-event-calendar/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.5+Safari/605.4.26 - 404 7 0 233 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 03:48:52 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 03:48:52 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 - 116.96.77.117 - - 401 2 5 23 2024-12-02 03:48:52 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 40 2024-12-02 03:48:52 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 24 2024-12-02 03:48:52 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 509 2024-12-02 03:48:52 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=e1e56e31-0086-4d76-b9dc-a7d8c10fdb02;op=Sync - 200 0 0 393 2024-12-02 03:48:57 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 24 2024-12-02 03:48:58 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 23 2024-12-02 03:48:59 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=57c5da5b-809c-4605-85af-f7ab4dce3b7a;op=Sync - 200 0 0 1003 2024-12-02 03:48:59 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 1120 2024-12-02 03:48:59 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 37 2024-12-02 03:49:00 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=57c5da5b-809c-4605-85af-f7ab4dce3b7a;op=Sync - 200 0 0 955 2024-12-02 03:49:00 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 1077 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 04:39:18 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 04:39:18 103.153.214.94 GET / - 8172 - 162.216.150.161 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 279 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 04:55:11 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 04:55:11 103.153.214.94 POST /integration/saveGangster.action - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.2+Safari/605.1.15 - 404 7 0 221 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 06:25:07 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 06:25:07 103.153.214.94 GET /wp-content/plugins/examapp/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(SS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 220 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 07:54:50 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 07:54:50 103.153.214.94 POST /eis/service/api.aspx action=saveImg 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/100.0.4896.127+Safari/537.36 - 404 7 0 207 2024-12-02 07:54:50 103.153.214.94 GET / - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 202 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 09:27:04 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 09:27:04 103.153.214.94 OPTIONS / - 8172 - 107.189.28.251 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/124.0.0.0+Safari/537.36 - 404 7 0 210 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 09:51:03 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 09:51:03 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 33 2024-12-02 09:51:03 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 25 2024-12-02 09:51:03 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=65af9894-7b7e-4625-9a0e-283323da2abf;op=Sync - 200 0 0 281 2024-12-02 09:51:03 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 392 2024-12-02 09:51:09 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 29 2024-12-02 09:51:09 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 25 2024-12-02 09:51:10 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=2981014d-6e27-467e-b044-c67828317d71;op=Sync - 200 0 0 946 2024-12-02 09:51:10 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 1064 2024-12-02 09:51:10 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 25 2024-12-02 09:51:11 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=2981014d-6e27-467e-b044-c67828317d71;op=Sync - 200 0 0 1127 2024-12-02 09:51:11 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 1245 2024-12-02 09:53:03 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 39 2024-12-02 09:53:03 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 27 2024-12-02 09:53:03 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 488 2024-12-02 09:53:03 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=410103f5-4a5f-4f28-bad1-d0d6f198226e;op=Sync - 200 0 0 364 2024-12-02 09:53:09 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 25 2024-12-02 09:53:09 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 26 2024-12-02 09:53:09 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 952 2024-12-02 09:53:09 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=3d65e676-a4d8-4775-b54e-c27e0ebaacd5;op=Sync - 200 0 0 839 2024-12-02 09:53:10 103.153.214.94 HEAD /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 33 2024-12-02 09:53:11 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 - - 200 0 0 1365 2024-12-02 09:53:11 103.153.214.94 POST /msdeploy.axd site=kiemkegpmb.gdtsolutions.vn 8172 kiemke 116.96.77.117 VS17.0:PublishDialog:WTE17.11.231.19466;sid=3d65e676-a4d8-4775-b54e-c27e0ebaacd5;op=Sync - 200 0 0 1217 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 10:57:49 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 10:57:49 103.153.214.94 GET /wp-content/plugins/Ultimate_VC_Addons/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Knoppix;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 207 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 12:28:08 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 12:28:08 103.153.214.94 GET /wp-content/plugins/wordpress-users/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Knoppix;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 205 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 14:09:33 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 14:09:33 103.153.214.94 PUT /SDK/webLanguage - 8172 - 107.189.28.251 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 220 2024-12-02 14:09:33 103.153.214.94 GET /x - 8172 - 107.189.28.251 Mozilla/5.0+(X11;+Ubuntu;+Linux+x86_64;+rv:109.0)+Gecko/20100101+Firefox/115.0 - 404 7 0 210 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 14:24:57 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 14:24:57 103.153.214.94 GET / - 8172 - 162.142.125.221 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 404 7 0 296 2024-12-02 14:38:19 103.153.214.94 GET / - 8172 - 147.185.133.73 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 276 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 15:49:00 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 15:49:00 103.153.214.94 GET /cgi-bin/login LD_DEBUG=files 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.13;+rv:88.0)+Gecko/20100101+Firefox/88.0 - 404 7 0 214 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 17:19:54 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 17:19:54 103.153.214.94 GET /wp-content/plugins/vaultpress/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/17.4 - 404 7 0 199 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 18:51:00 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 18:51:00 103.153.214.94 GET /wp-content/plugins/ultimate-member/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(SS;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 217 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 20:20:27 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 20:20:27 103.153.214.94 GET /wp-content/plugins/angwp/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/67.0.3396.99+Safari/537.36 - 404 7 0 213 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 21:49:33 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 21:49:33 103.153.214.94 GET /wp-content/plugins/shopp/readme.txt - 8172 - 107.189.28.251 Mozilla/5.0+(Fedora;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 205 #Software: Microsoft Internet Information Services 10.0 #Version: 1.0 #Date: 2024-12-02 23:18:45 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2024-12-02 23:18:45 103.153.214.94 GET /api/snapshots/:key - 8172 - 107.189.28.251 Mozilla/5.0+(CentOS;+Linux+i686;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 400 0 0 223