MOON
Server: Apache
System: Linux server1.quantilytics.org 3.10.0-1160.119.1.el7.tuxcare.els21.x86_64 #1 SMP Tue Jun 17 03:11:12 UTC 2025 x86_64
User: hnhtennm (1016)
PHP: 8.0.30
Disabled: exec,passthru,shell_exec,system
Upload Files
File: /home/hnhtennm/tmp/awstats/awstats092025.securityredalert.hnhtechsolutions.com.txt
AWSTATS DATA FILE 7.9 (build 20230108)
# If you remove this file, all statistics for date 202509 will be lost/reset.
# Last config file used to build this data file was /home/hnhtennm/tmp/awstats/awstats.securityredalert.hnhtechsolutions.com.conf.

# Position (offset in bytes) in this file for beginning of each section for
# direct I/O access. If you made changes somewhere in this file, you should
# also remove completely the MAP section (AWStats will rewrite it at next
# update).
BEGIN_MAP 28
POS_GENERAL 2068                
POS_TIME 2726                
POS_VISITOR 12166               
POS_DAY 14512               
POS_DOMAIN 3321                
POS_LOGIN 3652                
POS_ROBOT 3807                
POS_WORMS 4081                
POS_EMAILSENDER 4212                
POS_EMAILRECEIVER 4355                
POS_SESSION 14850               
POS_FILESIZE 15379               
POS_SIDER 14997               
POS_FILETYPES 4490                
POS_DOWNLOADS 4591                
POS_OS 4639                
POS_BROWSER 4817                
POS_SCREENSIZE 5274                
POS_UNKNOWNREFERER 5348                
POS_UNKNOWNREFERERBROWSER 5991                
POS_ORIGIN 6302                
POS_SEREFERRALS 6434                
POS_PAGEREFS 6600                
POS_SEARCHWORDS 6748                
POS_KEYWORDS 6900                
POS_MISC 2390                
POS_ERRORS 6959                
POS_CLUSTER 3508                
POS_SIDER_404 7047                
END_MAP

# LastLine    = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value
# FirstTime   = Date of first visit for history file
# LastTime    = Date of last visit for history file
# LastUpdate  = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped
# TotalVisits = Number of visits
# TotalUnique = Number of unique visitors
# MonthHostsKnown   = Number of hosts known
# MonthHostsUnKnown = Number of hosts unknown
BEGIN_GENERAL 8
LastLine 20251001151010 1 0 9030700628091
FirstTime 0
LastTime 20250930080622
LastUpdate 20251002121322 1 0 0 0 0
TotalVisits 65                  
TotalUnique 61                  
MonthHostsKnown 0                   
MonthHostsUnknown 61                  
END_GENERAL

# Misc ID - Pages - Hits - Bandwidth
BEGIN_MISC 10
FlashSupport 0 0 0
TotalMisc 0 0 0
PDFSupport 0 0 0
WindowsMediaPlayerSupport 0 0 0
AddToFavourites 0 0 0
JavascriptDisabled 0 0 0
QuickTimeSupport 0 0 0
DirectorSupport 0 0 0
JavaEnabled 0 0 0
RealPlayerSupport 0 0 0
END_MISC

# Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth
BEGIN_TIME 24
0 1 1 447 0 2 0
1 0 0 0 3 5 0
2 1 1 447 2 2 0
3 5 5 2235 50 50 1852
4 16 16 2786 45 45 3161
5 1 1 447 4 4 0
6 3 3 1341 44 44 2714
7 1 1 447 25 25 0
8 2 2 894 16 17 0
9 3 3 1341 2 4 0
10 2 2 894 131 169 1788
11 3 3 1341 10 10 1389
12 0 0 0 6 8 894
13 3 3 1341 5 7 1341
14 3 3 1341 9 9 495
15 8 8 3576 3 11 894
16 5 5 2235 43 45 910
17 2 2 894 2 4 0
18 10 10 4023 14 21 479
19 6 6 2682 4 7 0
20 3 3 1341 246 321 447
21 0 0 0 3 3 447
22 3 3 1341 2 2 0
23 2 2 894 6 7 447
END_TIME

# Domain - Pages - Hits - Bandwidth
# The 25 first Pages must be first (order not required for others)
BEGIN_DOMAIN 10
us 49 49 18530
ru 8 8 3576
ca 8 8 2856
rs 4 4 1788
cz 4 4 1788
gr 3 3 1341
nl 2 2 894
zz 2 2 174
in 2 2 894
gb 1 1 447
END_DOMAIN

# Cluster ID - Pages - Hits - Bandwidth
BEGIN_CLUSTER 0
END_CLUSTER

# Login - Pages - Hits - Bandwidth - Last visit
# The 10 first Pages must be first (order not required for others)
BEGIN_LOGIN 0
END_LOGIN

# Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt
# The 25 first Hits must be first (order not required for others)
BEGIN_ROBOT 4
checker 17 7599 20250924115528 0
Go\-http\-client/ 12 5364 20250928212127 0
no_user_agent 8 3576 20250928043721 0
curl 3 447 20250922193806 0
END_ROBOT

# Worm ID - Hits - Bandwidth - Last visit
# The 5 first Hits must be first (order not required for others)
BEGIN_WORMS 0
END_WORMS

# EMail - Hits - Bandwidth - Last visit
# The 20 first Hits must be first (order not required for others)
BEGIN_EMAILSENDER 0
END_EMAILSENDER

# EMail - Hits - Bandwidth - Last visit
# The 20 first hits must be first (order not required for others)
BEGIN_EMAILRECEIVER 0
END_EMAILRECEIVER

# Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression
BEGIN_FILETYPES 2
Unknown 12 998 0 0
html 71 31290 0 0
END_FILETYPES

# Downloads - Hits - Bandwidth
BEGIN_DOWNLOADS 0
END_DOWNLOADS

# OS ID - Hits
BEGIN_OS ID - Hits - Pages 8
macosx15 7 7
Unknown 36 36
win10 11 11
win8.1 3 3
androidmarshmallow 6 6
android 2 2
linux 14 14
linuxubuntu 4 4
END_OS

# Browser ID - Hits - Pages
BEGIN_BROWSER 21
firefox122.0 2 2
netscape5.0 1 1
firefox121.0 1 1
chrome78.0.3904.108 3 3
chrome115.0.5790.102 1 1
chrome52.0.1109.98 6 6
firefox102.0 1 1
msie11.0 1 1
chrome118.0.5993.80 2 2
chrome91.0.4472.124 1 1
Unknown 10 10
firefox133.0 4 4
chrome139.0.0.0 10 10
chrome58.0.3029.110 4 4
chrome104.0.0.0 1 1
mozilla 25 25
chrome121.0.0.0 1 1
firefox134.0 4 4
chrome38.0.2125.102 1 1
firefox139.0 2 2
firefox110.0 2 2
END_BROWSER

# Screen size - Hits
BEGIN_SCREENSIZE 0
END_SCREENSIZE

# Unknown referer OS - Last visit date
BEGIN_UNKNOWNREFERER 7
Mozilla/5.0_zgrab/0.x 20250922202557
Cpanel-HTTP-Client/1.0 20250915044842
Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20250921224111
python-httpx/0.28.1 20250925034853
Mozilla/5.0_(compatible;_Let's_Encrypt_validation_server;__https://www.letsencrypt.org) 20250915044938
Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20250930080622
Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20250929170403
END_UNKNOWNREFERER

# Unknown referer Browser - Last visit date
BEGIN_UNKNOWNREFERERBROWSER 3
Cpanel-HTTP-Client/1.0 20250915044842
python-httpx/0.28.1 20250925034853
Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20250930080622
END_UNKNOWNREFERERBROWSER

# Origin - Pages - Hits 
BEGIN_ORIGIN 6
From0 82 82
From1 0 0
From2 1 1
From3 0 0
From4 0 0
From5 0 0
END_ORIGIN

# Search engine referers ID - Pages - Hits
BEGIN_SEREFERRALS 1
www_google_com_sg 1 1
END_SEREFERRALS

# External page referers - Pages - Hits
# The 25 first Pages must be first (order not required for others)
BEGIN_PAGEREFS 0
END_PAGEREFS

# Search keyphrases - Number of search
# The 10 first number of search must be first (order not required for others)
BEGIN_SEARCHWORDS 0
END_SEARCHWORDS

# Search keywords - Number of search
# The 25 first number of search must be first (order not required for others)
BEGIN_KEYWORDS 0
END_KEYWORDS

# Errors - Hits - Bandwidth
BEGIN_ERRORS 1
404 750 272
END_ERRORS

# URL with 404 errors - Hits - Last URL referrer
BEGIN_SIDER_404 213
/settings.py 3 -
/wordpress/wp-includes/wlwmanifest.xml 2 -
/appsettings.json 6 -
/.env.old 3 -
/app.js 3 -
/ar.php 1 -
/server/config/database.js 3 -
/api/config.env 3 -
/index.js 3 -
/error.php 1 -
/env.backup 3 -
/helpers/utility.js 3 -
/apis/config/config.js 3 -
/config/aws.yml 3 -
/ 66 -
/actuator/env 6 -
/server/s3.js 3 -
/new/.env.production 3 -
/.vscode/.env 3 -
/docker/.env 3 -
/phpinfo=1 1 -
/application.properties 3 -
/website/wp-includes/wlwmanifest.xml 2 -
/.env.example 3 -
/public/.env 3 -
/dev/.env 3 -
/gmo.php 1 -
/conf/.env 3 -
/xmlrpc.php 2 -
/karma.conf.json 3 -
/config/local.yml 3 -
/site/.env 3 -
/app.py 3 -
/node/.env_example 3 -
/_profiler/phpinfo 8 -
/apis/controllers/users.js 3 -
/robots.txt 2 -
/main/.env 3 -
/scripts/nodemailer.js 3 -
/gatsby-config.js 3 -
/swagger.js 3 -
/application/.env 3 -
/info.php 12 -
/wp-includes/wlwmanifest.xml 2 -
/server.js 3 -
/news/wp-includes/wlwmanifest.xml 2 -
/sito/wp-includes/wlwmanifest.xml 2 -
/app/config/parameters.yml 3 -
/test/wp-includes/wlwmanifest.xml 2 -
/crm/.env 3 -
/api/config/config.yml 3 -
/api/shared/config/.env 3 -
/config/application.yml 3 -
/s/331313e2433313e29323e26363/_/ 6 -
/_phpinfo.php 3 -
/storage/logs/laravel.log 3 -
/new/.env.local 3 -
/js/main.js 3 -
//installer.php 1 -
/we.php 1 -
/new.php 1 -
/config.json 9 -
/class20.php 1 -
/wordpress/ 1 -
/portal/.env 3 -
/pp.php 2 -
/aws/credentials 3 -
/login.action 6 -
/s3.js 3 -
/config/parameters.yml 3 -
/node_modules/.env 3 -
/main.js 3 -
/phpinfo.php 8 -
/kyc/.env 3 -
/api/objects/codes.php.save 3 -
/awstats/.env 3 -
/server_info.php 3 -
/ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application 6 -
/admin/server_info.php 3 -
/config/storage.yml 3 -
/mail/.env 3 -
/prod/.env 3 -
/.aws/config 3 -
/my_env/newsletter.py 3 -
/admin/config 3 -
/service/email_service.py 3 -
/abcd.php 1 -
/api/config.js 3 -
/_ignition/execute-solution 1 -
/static/js/main.e85f7a37.js 3 -
/wp-content/plugins/hellopress/wp_filemanager.php 1 -
/site/wp-includes/wlwmanifest.xml 2 -
/mytest/astech_robot.js 3 -
/user/config/config.js 3 -
/config/settings.prod 3 -
/_profiler/phpinfo/phpinfo.php 3 -
/config.js 3 -
/.env_sample 3 -
/.aws/credentials 5 -
/server-status 6 -
/development/.env 3 -
/server 6 -
/controller/api/post.js 3 -
/2019/wp-includes/wlwmanifest.xml 2 -
/server-info.php 3 -
/api/.env 6 -
/debug/default/view 9 -
/js/.env 3 -
/.env.bak 3 -
/cloud/Scraper.js 3 -
/wp.php 1 -
/api/shared/config.env 3 -
/wp1/wp-includes/wlwmanifest.xml 2 -
/media/wp-includes/wlwmanifest.xml 2 -
/config/settings.local 3 -
/.AWS_/credentials 3 -
/lock360.php 1 -
/backend/config/settings.yml 3 -
/getcpuutil.php-bakworking 3 -
/docker/app/.env 3 -
/2018/wp-includes/wlwmanifest.xml 2 -
/config/constants.js 3 -
/local/.env 3 -
/test.php 6 -
/.well-known/security.txt 2 -
/.circleci/configs/development.yml 3 -
/index.html 3 -
/mailer/.env 3 -
/sms.py 3 -
/core/.env 3 -
/new/.env.staging 3 -
/app_dev.php/_profiler/phpinfo 4 -
/axx.php 1 -
/.DS_Store 6 -
/wp-gr.php 1 -
/.env.production.local 3 -
/shared/config/config.js 3 -
/backend/config/default.yml 3 -
/api/shared/config/config.env 3 -
/user/controllers/index.js 3 -
/www/.env 3 -
/@vite/env 6 -
/xc.php 1 -
/laravel/.env 3 -
/index.php 2 -
/static/js/2.ca066a4b.chunk.js 3 -
/xampp/.env 3 -
/.env.local 3 -
/configs/routes.js 3 -
/cms/wp-includes/wlwmanifest.xml 2 -
/wp-config 3 -
/phpinfo 6 -
/secured/phpinfo.php 3 -
/config/config.json 3 -
/lara/info.php 3 -
/aws.yml 3 -
/backend/.env 3 -
/server-info 3 -
/_profiler/phpinfo/info.php 3 -
/controller/admin/post.js 3 -
/my_env/palash.py 3 -
/wp/wp-includes/wlwmanifest.xml 2 -
/configs/routes-4aug.js 3 -
/my_env/chakaash.py 3 -
/ol.php 1 -
/telescope/requests 6 -
/cron/.env 3 -
/admin/controllers/merchant.js 3 -
/helper.js 3 -
/backend/config/development.yml 3 -
/public/js/main.js 3 -
/wp2/wp-includes/wlwmanifest.xml 2 -
/.env.prod 3 -
/nginx/.env 3 -
/api/shared/.env 3 -
/lara/phpinfo.php 3 -
/aws-secret.yaml 3 -
/.env.stage 3 -
/apps/.env 3 -
/configs/s3_config.json 3 -
/static/js/main.141b0494.js 3 -
/tool/view/phpinfo.view.php 3 -
/env/.env 3 -
/controllers/settings.js 3 -
/wiki 1 -
/config/settings.json 3 -
/about 6 -
/modules/mod_simplefileuploadv1.3/elements/filemanager.php 1 -
/.vscode/sftp.json 6 -
/config.env 3 -
/dashboard/phpinfo.php 3 -
/wp-config.php.bak 3 -
/main.yml 3 -
/web/wp-includes/wlwmanifest.xml 2 -
/website/.env 3 -
/v2/_catalog 6 -
/web/.env 3 -
/.git/config 15 -
/partner/config/config.js 3 -
/blog/wp-includes/wlwmanifest.xml 2 -
/.travis.yml 3 -
/laravel/core/.env 3 -
/config/.env 3 -
/_all_dbs 6 -
/admin/controllers/partner.js 3 -
/xampp/phpinfo.php 3 -
/helper/EmailHelper.js 3 -
/laravel/info.php 3 -
/.env 16 -
/app/.env 3 -
/new/.env 3 -
/shop/wp-includes/wlwmanifest.xml 2 -
/admin/.env 3 -
END_SIDER_404

# Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit]
# [Start date of last visit] and [Last page of last visit] are saved only if session is not finished
# The 25 first Hits must be first (order not required for others)
BEGIN_VISITOR 61
95.173.216.34 4 4 1788 20250927141053
54.221.117.7 3 3 1341 20250916160747
185.242.177.54 3 3 1341 20250923031130
206.168.34.126 2 2 894 20250927152328
66.132.153.119 2 2 894 20250920154043
66.29.134.113 2 2 128 20250915044842
167.94.138.42 2 2 894 20250915150851
206.168.34.37 2 2 894 20250916162647
23.178.112.210 2 2 174 20250915044937
18.222.93.44 2 2 174 20250915044937
178.128.207.138 2 2 894 20250915045150
192.64.113.146 2 2 447 20250921184705
52.11.171.106 2 2 894 20250920192327
199.45.155.91 2 2 894 20250921131052
145.220.91.19 2 2 894 20250926091833
162.142.125.214 2 2 894 20250929170403
185.177.72.30 2 2 894 20250924184902
162.142.125.126 2 2 894 20250920153655
64.227.152.150 1 1 447 20250923183024
165.227.140.88 1 1 447 20250928105910
147.185.132.18 1 1 447 20250927070955
209.38.37.31 1 1 447 20250923182620
165.227.150.58 1 1 447 20250915203243
159.65.186.248 1 1 447 20250917182133
146.190.242.161 1 1 447 20250915064150
165.227.84.14 1 1 447 20250923031039
91.231.89.37 1 1 447 20250917234835
64.227.111.248 1 1 447 20250925185237
47.128.68.16 1 1 87 20250915044938
16.16.192.135 1 1 87 20250915044938
64.23.235.20 1 1 447 20250927191227
91.231.89.124 1 1 447 20250917235428
34.210.57.78 1 1 87 20250915044937
91.231.89.32 1 1 447 20250927090517
34.222.94.23 1 1 87 20250915044937
88.99.26.177 1 1 447 20250915114735
116.203.118.137 1 1 447 20250929064256
185.242.177.52 1 1 447 20250915045106
205.210.31.201 1 1 447 20250923005046
137.184.150.132 1 1 447 20250927191514
13.60.74.159 1 1 87 20250915044938
45.131.155.100 1 1 447 20250915055430
152.53.210.225 1 1 447 20250926081940
185.177.72.45 1 1 447 20250925034853
198.235.24.255 1 1 447 20250927021137
178.128.18.196 1 1 447 20250921145826
198.235.24.252 1 1 447 20250922223209
138.68.141.192 1 1 447 20250915193624
167.99.77.32 1 1 447 20250926192848
159.223.198.91 1 1 447 20250925181906
91.231.89.122 1 1 447 20250927090129
159.89.2.3 1 1 447 20250917182818
157.245.36.108 1 1 447 20250915064202
198.235.24.251 1 1 447 20250916205417
47.129.44.179 1 1 87 20250915044938
3.140.182.19 1 1 447 20250922202557
3.239.31.171 1 1 447 20250917104203
64.23.209.249 1 1 447 20250920184015
185.247.137.189 1 1 447 20250921224111
64.226.65.160 1 1 447 20250923031039
205.210.31.79 1 1 447 20250930080622
END_VISITOR

# Date - Pages - Hits - Bandwidth - Visits
BEGIN_DAY 14
20250915 24 24 6362 19
20250916 7 7 3129 4
20250917 5 5 2235 5
20250920 7 7 3129 4
20250921 6 6 2235 4
20250922 2 2 894 2
20250923 7 7 3129 6
20250924 2 2 894 2
20250925 3 3 1341 3
20250926 5 5 2235 4
20250927 10 10 4470 8
20250928 1 1 447 1
20250929 3 3 1341 2
20250930 1 1 447 1
END_DAY

# Session range - Number of visits
BEGIN_SESSION 1
0s-30s 65
END_SESSION

# URL - Pages - Bandwidth - Entry - Exit
# The 25 first Pages must be first (order not required for others)
BEGIN_SIDER 5
/ 71 31290 56 56
/.well-known/acme-challenge/uuk6lXBj42uuJ1FRTX04gNJMlX8EnoDvJUOELghMzlA 5 435 3 5
/.well-known/acme-challenge/c75iifhfwngOm5pKTZbh-Wr9jjEg6eoMKZhdkIxZyDQ 5 435 5 3
/.well-known/acme-challenge/DFU9P0PSY-8341CX4W9DOJLYHH3A3R45 1 64 0 1
/.well-known/acme-challenge/UMSK8RA5-UM-ZZDD42VTBAFP41I8RKG9 1 64 1 0
END_SIDER

# Payload Range - Payload Frequency
BEGIN_FILESIZE 3
44-100 12
0-44 785
100-500 108
END_FILESIZE