Edit C:\inetpub\logs\LogFiles\W3SVC5\u_ex230916.log
#Software: Microsoft Internet Information Services 8.5 #Version: 1.0 #Date: 2023-09-16 02:28:28 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-09-16 02:28:28 172.16.53.98 GET / - 85 - 183.136.225.42 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10.11;+rv:47.0)+Gecko/20100101+Firefox/47.0 - 200 0 0 1220 2023-09-16 02:28:32 172.16.53.98 GET / - 85 - 183.136.225.42 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.132+Safari/537.36+QIHU+360SE - 200 0 0 261 2023-09-16 02:28:58 172.16.53.98 GET /robots.txt - 85 - 183.136.225.42 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.132+Safari/537.36+QIHU+360SE - 404 0 2 260 2023-09-16 02:43:11 172.16.53.98 GET / - 85 - 172.105.246.139 - - 200 0 0 20 2023-09-16 02:43:11 172.16.53.98 GET / - 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 49 2023-09-16 02:43:11 172.16.53.98 GET / - 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 49 2023-09-16 02:43:11 172.16.53.98 GET / =PHPE9568F36-D428-11d2-A769-00AA001ACF42 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 52 2023-09-16 02:43:11 172.16.53.98 GET /start.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:11 172.16.53.98 GET /Portal0000.htm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:11 172.16.53.98 GET /Portal/Portal.mwsl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:11 172.16.53.98 GET /.git/HEAD - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 69 2023-09-16 02:43:11 172.16.53.98 GET / =PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 48 2023-09-16 02:43:11 172.16.53.98 GET /docs/cplugError.html/ - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:11 172.16.53.98 GET /__Additional - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:11 172.16.53.98 GET /start.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:11 172.16.53.98 GET / - 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 59 2023-09-16 02:43:11 172.16.53.98 GET /nmaplowercheck1694832190 - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:11 172.16.53.98 GET /fTZH - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:11 172.16.53.98 GET /CSS/Miniweb.css - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:11 172.16.53.98 GET /menu.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:11 172.16.53.98 POST /sdk - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:11 172.16.53.98 GET /HNAP1 - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:11 172.16.53.98 GET /pools/default/buckets - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:11 172.16.53.98 GET /main.cgi - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:11 172.16.53.98 HEAD / - 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 59 2023-09-16 02:43:11 172.16.53.98 GET /pools - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:12 172.16.53.98 GET / - 85 - 172.105.246.139 curl/7.54.0 - 200 0 0 50 2023-09-16 02:43:12 172.16.53.98 GET /robots.txt - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:12 172.16.53.98 GET /readme.txt - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:12 172.16.53.98 GET /favicon.ico - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:12 172.16.53.98 GET /main.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 106 2023-09-16 02:43:12 172.16.53.98 GET /menu.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:12 172.16.53.98 GET /main.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:12 172.16.53.98 GET /admin.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 64 2023-09-16 02:43:13 172.16.53.98 GET /index.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:13 172.16.53.98 GET /admin.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 64 2023-09-16 02:43:13 172.16.53.98 GET /index.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:13 172.16.53.98 GET /home.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:13 172.16.53.98 GET /main.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:13 172.16.53.98 GET /admin.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:13 172.16.53.98 GET /base.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:14 172.16.53.98 GET /admin.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:14 172.16.53.98 GET /localstart.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:14 172.16.53.98 GET /default.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:14 172.16.53.98 GET /admin.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:14 172.16.53.98 GET /index.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:14 172.16.53.98 GET /admin.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:14 172.16.53.98 GET /admin.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:15 172.16.53.98 GET /default.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:15 172.16.53.98 GET /admin.cgi - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:15 172.16.53.98 GET /home.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:15 172.16.53.98 GET /index.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:15 172.16.53.98 GET /start.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 61 2023-09-16 02:43:15 172.16.53.98 GET /indice.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:15 172.16.53.98 GET / - 85 - 172.105.246.139 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/36.0.1985.125+Safari/537.36 - 200 0 0 20 2023-09-16 02:43:16 172.16.53.98 GET /admin.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:16 172.16.53.98 GET /admin.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 61 2023-09-16 02:43:16 172.16.53.98 GET /admin.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:16 172.16.53.98 GET /home.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 58 2023-09-16 02:43:16 172.16.53.98 GET /localstart.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:16 172.16.53.98 GET /start.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:17 172.16.53.98 GET /menu.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:17 172.16.53.98 GET /index.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 65 2023-09-16 02:43:17 172.16.53.98 GET /base.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:17 172.16.53.98 GET /inicio.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:17 172.16.53.98 GET /index.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:17 172.16.53.98 GET /index.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:18 172.16.53.98 GET /base.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:18 172.16.53.98 GET /indice.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 64 2023-09-16 02:43:18 172.16.53.98 GET /start.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 66 2023-09-16 02:43:18 172.16.53.98 GET /localstart.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:18 172.16.53.98 GET /inicio.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:18 172.16.53.98 GET /base.cgi - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:18 172.16.53.98 GET /menu.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:19 172.16.53.98 GET /base.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 65 2023-09-16 02:43:19 172.16.53.98 GET /base.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 67 2023-09-16 02:43:19 172.16.53.98 GET /indice.cgi - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:19 172.16.53.98 GET /base.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 64 2023-09-16 02:43:19 172.16.53.98 GET /start.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:19 172.16.53.98 GET /base.inc - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:19 172.16.53.98 GET /indice.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:21 172.16.53.98 GET /menu.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 62 2023-09-16 02:43:21 172.16.53.98 GET /home.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:21 172.16.53.98 GET /main.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:21 172.16.53.98 GET /main.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:21 172.16.53.98 GET /main.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:21 172.16.53.98 GET /base.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:21 172.16.53.98 GET /start.cgi - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:22 172.16.53.98 GET /inicio.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:22 172.16.53.98 GET /indice.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:22 172.16.53.98 GET /indice.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:22 172.16.53.98 GET /localstart.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:22 172.16.53.98 GET /indice.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:22 172.16.53.98 GET /main.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:23 172.16.53.98 GET /indice.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:23 172.16.53.98 GET /indice.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 64 2023-09-16 02:43:23 172.16.53.98 GET /localstart.php - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:23 172.16.53.98 GET /localstart.cfm - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:23 172.16.53.98 GET /indice.aspx - 85 - 172.105.246.139 curl/7.54.0 - 404 0 0 62 2023-09-16 02:43:23 172.16.53.98 GET /index.html - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:24 172.16.53.98 GET /main.asp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:24 172.16.53.98 GET /localstart.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:24 172.16.53.98 GET /inicio.shtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:24 172.16.53.98 GET /index.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:24 172.16.53.98 GET /inicio.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:24 172.16.53.98 GET /menu.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 67 2023-09-16 02:43:24 172.16.53.98 GET /base.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 61 2023-09-16 02:43:25 172.16.53.98 GET /home.pl - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 59 2023-09-16 02:43:25 172.16.53.98 GET /inicio.jsp - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:25 172.16.53.98 GET /inicio.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:25 172.16.53.98 GET /inicio.jhtml - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 62 2023-09-16 02:43:25 172.16.53.98 GET /inicio.cgi - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 60 2023-09-16 02:43:25 172.16.53.98 GET /menu.jsa - 85 - 172.105.246.139 curl/7.54.0 - 404 0 2 63 2023-09-16 02:43:26 172.16.53.98 GET / - 85 - 172.105.246.139 - - 200 0 0 51 2023-09-16 02:43:26 172.16.53.98 GET / - 85 - 172.105.246.139 - - 200 0 0 20 #Software: Microsoft Internet Information Services 8.5 #Version: 1.0 #Date: 2023-09-16 03:20:15 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-09-16 03:20:15 172.16.53.98 GET / - 85 - 184.105.247.196 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64;+rv:109.0)+Gecko/20100101+Firefox/112.0 - 200 0 0 259 2023-09-16 03:20:24 172.16.53.98 GET /favicon.ico - 85 - 184.105.247.196 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/108.0.0.0+YaBrowser/23.1.2.987+Yowser/2.5+Safari/537.36 - 404 0 2 138 2023-09-16 03:20:26 172.16.53.98 GET / format=json 85 - 184.105.247.196 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/605.1.15+(KHTML,+like+Gecko)+Version/15.4+Safari/605.1.15 - 200 0 0 138 #Software: Microsoft Internet Information Services 8.5 #Version: 1.0 #Date: 2023-09-16 05:34:41 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-09-16 05:34:41 172.16.53.98 GET / - 85 - 82.142.6.202 - - 200 0 64 2312 #Software: Microsoft Internet Information Services 8.5 #Version: 1.0 #Date: 2023-09-16 20:02:57 #Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken 2023-09-16 20:02:57 172.16.53.98 GET / - 85 - 185.36.81.33 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/90.0.4430.85+Safari/537.36+Edg/90.0.818.46 - 200 0 0 171 2023-09-16 20:15:26 172.16.53.98 GET / - 85 - 171.67.70.84 Mozilla/5.0+zgrab/0.x - 200 0 64 156
Ms-Dos/Windows
Unix
Write backup
jsp File Browser version 1.2 by
www.vonloesch.de