HEX
Server: Apache
System: Linux darrell.nocdirect.com 4.18.0-513.18.2.el8_9.x86_64 #1 SMP Sat Mar 30 06:10:41 EDT 2024 x86_64
User: joderbya (1358)
PHP: 8.0.30
Disabled: NONE
Upload Files
File: /home/joderbya/wlsa.quick-step-ei.com/tmp/awstats/awstats092025.gn.quick-step-ei.com.txt
AWSTATS DATA FILE 8.0 (build 20240604)
# If you remove this file, all statistics for date 202509 will be lost/reset.
# Last config file used to build this data file was /home/joderbya/tmp/awstats/awstats.gn.quick-step-ei.com.conf.

# Position (offset in bytes) in this file for beginning of each section for
# direct I/O access. If you made changes somewhere in this file, you should
# also remove completely the MAP section (AWStats will rewrite it at next
# update).
BEGIN_MAP 28
POS_GENERAL 2088                
POS_TIME 2760                
POS_VISITOR 8715                
POS_DAY 10161               
POS_DOMAIN 3420                
POS_LOGIN 3712                
POS_ROBOT 3867                
POS_WORMS 4073                
POS_EMAILSENDER 4204                
POS_EMAILRECEIVER 4347                
POS_SESSION 10684               
POS_FILESIZE 11410               
POS_REQUESTTIME 11543               
POS_SIDER 10880               
POS_FILETYPES 4482                
POS_DOWNLOADS 4606                
POS_OS 4654                
POS_BROWSER 4810                
POS_SCREENSIZE 5148                
POS_UNKNOWNREFERER 5222                
POS_UNKNOWNREFERERBROWSER 5666                
POS_ORIGIN 6002                
POS_SEREFERRALS 6136                
POS_PAGEREFS 6280                
POS_SEARCHWORDS 6428                
POS_KEYWORDS 6580                
POS_MISC 2424                
POS_ERRORS 6639                
POS_CLUSTER 3568                
POS_SIDER_404 6741                
END_MAP

# LastLine    = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value
# FirstTime   = Date of first visit for history file
# LastTime    = Date of last visit for history file
# LastUpdate  = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped
# TotalVisits = Number of visits
# TotalUnique = Number of unique visitors
# MonthHostsKnown   = Number of hosts known
# MonthHostsUnKnown = Number of hosts unknown
BEGIN_GENERAL 8
LastLine 20251001032450 1 0 14854939376846
FirstTime 20250901003920
LastTime 20250926102839
LastUpdate 20251001093424 1 0 0 0 0
TotalVisits 89                  
TotalUnique 36                  
MonthHostsKnown 0                   
MonthHostsUnknown 36                  
END_GENERAL

# Misc ID - Pages - Hits - Bandwidth
BEGIN_MISC 10
RealPlayerSupport 0 0 0
JavaEnabled 0 0 0
JavascriptDisabled 0 0 0
FlashSupport 0 0 0
DirectorSupport 0 0 0
WindowsMediaPlayerSupport 0 0 0
QuickTimeSupport 0 0 0
PDFSupport 0 0 0
AddToFavourites 0 6 0
TotalMisc 0 0 0
END_MISC

# Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth
BEGIN_TIME 24
0 4 4 318866 1 1 50133
1 4 4 0 3 4 466710
2 38 38 175816 2 2 147844
3 2 2 0 3 3 160259
4 2 2 0 2 2 159433
5 2 2 0 2 2 159433
6 50 50 177500 6 6 455947
7 73 73 435 1 1 0
8 44 44 177372 3 3 295688
9 48 48 496238 3 3 295688
10 10 10 797991 4 6 148670
11 7 7 637732 1 2 147844
12 50 50 179850 63 63 8438697
13 4 4 0 12 14 826
14 3 3 0 10 11 0
15 29 29 478299 45 45 0
16 19 19 0 19 19 0
17 20 20 159433 31 31 2513348
18 3 3 0 11 11 159433
19 7 7 5513 8 9 1034908
20 0 0 0 0 1 0
21 1 1 826 0 1 0
22 5 5 1277498 2 3 148670
23 1 1 826 1 1 0
END_TIME

# Domain - Pages - Hits - Bandwidth
# The 25 first Pages must be first (order not required for others)
BEGIN_DOMAIN 6
us 415 415 3287657
nl 4 4 0
ca 4 4 319779
se 1 1 159433
zz 1 1 87
ir 1 1 1117239
END_DOMAIN

# Cluster ID - Pages - Hits - Bandwidth
BEGIN_CLUSTER 0
END_CLUSTER

# Login - Pages - Hits - Bandwidth - Last visit
# The 10 first Pages must be first (order not required for others)
BEGIN_LOGIN 0
END_LOGIN

# Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt
# The 25 first Hits must be first (order not required for others)
BEGIN_ROBOT 2
checker 7 798817 20250921132954 0
no_user_agent 6 480777 20250927222355 0
END_ROBOT

# Worm ID - Hits - Bandwidth - Last visit
# The 5 first Hits must be first (order not required for others)
BEGIN_WORMS 0
END_WORMS

# EMail - Hits - Bandwidth - Last visit
# The 20 first Hits must be first (order not required for others)
BEGIN_EMAILSENDER 0
END_EMAILSENDER

# EMail - Hits - Bandwidth - Last visit
# The 20 first hits must be first (order not required for others)
BEGIN_EMAILRECEIVER 0
END_EMAILRECEIVER

# Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression
BEGIN_FILETYPES 3
html 47 3681883 0 0
Unknown 8 1117802 0 0
php 371 84510 0 0
END_FILETYPES

# Downloads - Hits - Bandwidth
BEGIN_DOWNLOADS 0
END_DOWNLOADS

# OS ID - Hits
BEGIN_OS ID - Hits - Pages 6
macosx15 1 1
androidkitkat 1 1
androidlollipop 3 3
linux 8 8
Unknown 194 194
win10 219 219
END_OS

# Browser ID - Hits - Pages
BEGIN_BROWSER 14
chrome139.0.0.0 3 3
chrome96.0.4664.45 4 4
mozilla 5 5
firefox41.0 1 1
chrome74.0.3729.169 5 5
chrome73.0.3683.90 3 3
chrome104.0.0.0 2 2
chrome88.0.4240.193 3 3
chrome106.0.0.0 1 1
Unknown 189 189
chrome78.0.3904.108 207 207
firefox139.0 1 1
chrome136.0.0.0 1 1
chrome126.0.6478.20 1 1
END_BROWSER

# Screen size - Hits
BEGIN_SCREENSIZE 0
END_SCREENSIZE

# Unknown referer OS - Last visit date
BEGIN_UNKNOWNREFERER 4
Mozilla/5.0_(compatible;_Let's_Encrypt_validation_server;__https://www.letsencrypt.org) 20250913072123
Cpanel-HTTP-Client/1.0 20250913065616
Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20250926102839
WordPress/6.8.2;_http://gn.quick-step-ei.com 20250918115916
END_UNKNOWNREFERER

# Unknown referer Browser - Last visit date
BEGIN_UNKNOWNREFERERBROWSER 3
Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20250926102839
Cpanel-HTTP-Client/1.0 20250913065616
WordPress/6.8.2;_http://gn.quick-step-ei.com 20250918115916
END_UNKNOWNREFERERBROWSER

# Origin - Pages - Hits 
BEGIN_ORIGIN 6
From0 421 421
From1 0 0
From2 0 0
From3 0 0
From4 5 5
From5 0 0
END_ORIGIN

# Search engine referers ID - Pages - Hits
BEGIN_SEREFERRALS 0
END_SEREFERRALS

# External page referers - Pages - Hits
# The 25 first Pages must be first (order not required for others)
BEGIN_PAGEREFS 0
END_PAGEREFS

# Search keyphrases - Number of search
# The 10 first number of search must be first (order not required for others)
BEGIN_SEARCHWORDS 0
END_SEARCHWORDS

# Search keywords - Number of search
# The 25 first number of search must be first (order not required for others)
BEGIN_KEYWORDS 0
END_KEYWORDS

# Errors - Hits - Bandwidth
BEGIN_ERRORS 2
301 25 0
404 199 13503937
END_ERRORS

# URL with 404 errors - Hits - Last URL referrer
BEGIN_SIDER_404 118
/xmlrpc.php 5 -
/home 6 -
/robots.txt 1 -
/lock360.php 2 -
/bolt.php 1 -
/demo 1 -
/co.php 1 -
/new 7 -
/we.php 2 -
/bc 7 -
/file7.php 1 -
/aaaa.php 1 -
/pp.php 3 -
/dejavu.php 1 -
/old-site 1 -
/new.php 2 -
/bak 1 -
/wsr2.php 1 -
/.well-known/security.txt 3 -
/abcd.php 1 -
/oldsite 1 -
/dex.php 1 -
/sitio 1 -
/WordPress 1 -
/wordpress 7 -
/test 1 -
/BACKUP 1 -
/main 7 -
/wp-update.php 1 -
/Sanskrit.php 1 -
/lc.php 1 -
/2020 1 -
/2019 1 -
/bac 1 -
/wp.php 2 -
/z.php 1 -
/modules/mod_simplefileuploadv1.3/elements/filemanager.php 1 -
/Site 1 -
/TEST 1 -
/bless.php 1 -
/blog/wp-includes/wlwmanifest.xml 1 -
/shell 1 -
/past.php 1 -
/golden.php 1 -
/WWW 1 -
/ 5 -
/num.php 1 -
/cfile.php 1 -
/xpas2.php 1 -
/file17.php 1 -
/pass.php 1 -
/gold.php 1 -
/file2.php 1 -
/xc.php 1 -
/re.php 1 -
/Wordpress 1 -
/webshell 2 -
/nc4.php 1 -
/asd67.php 1 -
/www 1 -
/wp-old 1 -
/class20.php 1 -
/2017 1 -
/2024 1 -
/ot.php 1 -
/bk 7 -
/CLA.php 1 -
/gmo.php 2 -
/NEW 1 -
/file8.php 1 -
/New 1 -
/wp-gr.php 2 -
/2022 1 -
/Wp 1 -
/file4.php 1 -
/aa.php 1 -
/webshell.php 2 -
/SITE 1 -
/wordpress/ 3 -
/gfile.php 1 -
/great.php 1 -
/site 1 -
/ss.php 1 -
/witmm.php 1 -
/2018 1 -
/file.php 1 -
/2021 1 -
/WP 1 -
/ffile.php 1 -
/wp-mn.php 1 -
/sito 1 -
/ar.php 2 -
/wp-includes/wlwmanifest.xml 1 -
/Www 1 -
/wp-content/plugins/lwbdene/ 1 -
/ahax.php 1 -
/lo.php 1 -
/bv3.php 1 -
/old 7 -
/class9.php 1 -
/ol.php 2 -
/WORDPRESS 1 -
/Backup 1 -
/Test 1 -
/axx.php 2 -
/about.php 1 -
/wp 7 -
/OLD 1 -
/BLOG 1 -
/Old 1 -
/blog 1 -
/Blog 1 -
/style.php 2 www.google.com
/shell.php 2 -
/wp-content/plugins/hellopress/wp_filemanager.php 2 -
/file5.php 1 -
/backup 7 -
/error.php 1 -
END_SIDER_404

# Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit]
# [Start date of last visit] and [Last page of last visit] are saved only if session is not finished
# The 25 first Hits must be first (order not required for others)
BEGIN_VISITOR 36
74.81.95.250 184 184 1435025 20250918115919
34.138.234.128 43 43 177372 20250917125704
34.148.252.82 43 43 177372 20250917060145
34.14.55.12 43 43 177372 20250915085810
104.199.119.38 43 43 177372 20250914095201
34.73.128.234 35 35 174164 20250914023605
185.40.56.217 4 4 0 20250911170938
34.77.190.44 3 3 2478 20250923124508
52.163.78.113 1 1 0 20250904153142
18.206.148.56 1 1 826 20250919024357
205.169.39.47 1 1 159433 20250913105840
3.89.196.216 1 1 826 20250925024633
209.38.102.184 1 1 826 20250923221007
3.14.9.152 1 1 87 20250913072123
147.185.132.97 1 1 826 20250919215543
161.35.212.48 1 1 159433 20250904102018
47.128.154.99 1 1 87 20250913072123
34.87.113.235 1 1 159433 20250901003920
34.124.236.43 1 1 826 20250919234931
13.67.61.103 1 1 0 20250908144203
13.53.48.201 1 1 87 20250913072123
157.180.62.71 1 1 159433 20250902092435
54.191.249.36 1 1 87 20250913072123
147.185.132.252 1 1 5513 20250908191220
68.183.207.199 1 1 159433 20250918115915
34.124.241.3 1 1 159433 20250912220309
13.76.136.55 1 1 0 20250909153148
34.19.111.74 1 1 0 20250916132735
52.230.28.29 1 1 0 20250907180449
205.210.31.163 1 1 826 20250926102839
31.58.220.70 1 1 1117239 20250912225752
205.210.31.87 1 1 159433 20250903004516
147.185.132.61 1 1 159433 20250908171536
23.178.112.213 1 1 87 20250913072123
52.187.5.170 1 1 0 20250905150412
64.15.129.115 1 1 159433 20250906091139
END_VISITOR

# Date - Pages - Hits - Bandwidth - Visits
BEGIN_DAY 22
20250901 6 6 159433 3
20250902 8 8 159433 5
20250903 9 9 159433 4
20250904 12 12 637732 5
20250905 7 7 0 4
20250906 6 6 159433 3
20250907 8 8 0 4
20250908 13 13 164946 8
20250909 6 6 0 3
20250910 5 5 0 2
20250911 62 62 478299 4
20250912 8 8 1276672 4
20250913 13 13 159996 8
20250914 89 89 351536 5
20250915 50 50 177372 6
20250916 8 8 0 4
20250917 97 97 354744 7
20250918 10 10 637732 3
20250919 3 3 2478 3
20250923 4 4 3304 2
20250925 1 1 826 1
20250926 1 1 826 1
END_DAY

# Session range - Number of visits
BEGIN_SESSION 6
30s-2mn 2
0s-30s 62
2mn-5mn 1
15mn-30mn 18
1h+ 4
30mn-1h 2
END_SESSION

# URL - Pages - Bandwidth - Entry - Exit
# The 25 first Pages must be first (order not required for others)
BEGIN_SIDER 14
/xmlrpc.php 197 78997 0 5
/wp-cron.php 155 0 41 51
/ 38 3674393 27 24
/wp-admin/admin-ajax.php 18 0 11 0
/.well-known/acme-challenge/q9O4TRfgWTFRC3rr4l3uXJNTiBKMII_0Ou1I4eQ7V44 5 435 5 5
/wp-json/wp/v2/users/ 5 7490 0 0
/Shop/ 1 0 0 0
/.well-known/acme-challenge/9P7DT2_RHWK2JI8KP_O1ST2JSEX1R0P9 1 64 1 0
/2023/ 1 0 1 1
/wp-json 1 1117239 1 1
/shop/ 1 0 0 1
/.well-known/acme-challenge/AM2AH-29W4Q4S174L33DKBY6U2N-8XT2 1 64 0 0
/SHOP/ 1 0 1 0
/wp-login.php 1 5513 1 1
END_SIDER

# Payload Range - Payload Frequency
BEGIN_FILESIZE 6
1K-2K 5
0-44 322
5K+ 125
500-1K 14
100-500 197
44-100 7
END_FILESIZE

# Request Time Range - Request Time Frequency
BEGIN_REQUESTTIME 0
END_REQUESTTIME