LittleDemon WebShell


Linux hosting5.siteguarding.com 3.10.0-962.3.2.lve1.5.88.el7.x86_64 #1 SMP Fri Sep 26 14:06:42 UTC 2025 x86_64
Path : /home/devsafetybis/tmp/awstats/ssl/
File Upload :
Command :
Current File : /home/devsafetybis/tmp/awstats/ssl/awstats082023.wp.dev.safetybis.com.txt

AWSTATS DATA FILE 7.8 (build 20200416)
# If you remove this file, all statistics for date 202308 will be lost/reset.
# Last config file used to build this data file was /home/devsafetybis/tmp/awstats/ssl/awstats.wp.dev.safetybis.com.conf.

# Position (offset in bytes) in this file for beginning of each section for
# direct I/O access. If you made changes somewhere in this file, you should
# also remove completely the MAP section (AWStats will rewrite it at next
# update).
BEGIN_MAP 28
POS_GENERAL 2025                
POS_TIME 2703                
POS_VISITOR 8852                
POS_DAY 12189               
POS_DOMAIN 3396                
POS_LOGIN 3732                
POS_ROBOT 3887                
POS_WORMS 4222                
POS_EMAILSENDER 4353                
POS_EMAILRECEIVER 4496                
POS_SESSION 12885               
POS_SIDER 13086               
POS_FILETYPES 4631                
POS_DOWNLOADS 4734                
POS_OS 4782                
POS_BROWSER 5125                
POS_SCREENSIZE 5768                
POS_UNKNOWNREFERER 5842                
POS_UNKNOWNREFERERBROWSER 6599                
POS_ORIGIN 7127                
POS_SEREFERRALS 7265                
POS_PAGEREFS 7433                
POS_SEARCHWORDS 7581                
POS_KEYWORDS 7733                
POS_MISC 2367                
POS_ERRORS 7792                
POS_CLUSTER 3588                
POS_SIDER_404 7902                
END_MAP

# LastLine    = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value
# FirstTime   = Date of first visit for history file
# LastTime    = Date of last visit for history file
# LastUpdate  = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped
# TotalVisits = Number of visits
# TotalUnique = Number of unique visitors
# MonthHostsKnown   = Number of hosts known
# MonthHostsUnKnown = Number of hosts unknown
BEGIN_GENERAL 8
LastLine 20230901000831 84 15608 9204348042242
FirstTime 20230801173654
LastTime 20230831233638
LastUpdate 20230901141056 84 0 83 0 0
TotalVisits 211                 
TotalUnique 83                  
MonthHostsKnown 0                   
MonthHostsUnknown 83                  
END_GENERAL

# Misc ID - Pages - Hits - Bandwidth
BEGIN_MISC 10
JavaEnabled 0 0 0
QuickTimeSupport 0 0 0
RealPlayerSupport 0 0 0
DirectorSupport 0 0 0
PDFSupport 0 0 0
JavascriptDisabled 0 0 0
WindowsMediaPlayerSupport 0 0 0
AddToFavourites 0 5 0
FlashSupport 0 0 0
TotalMisc 0 0 0
END_MISC

# Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth
BEGIN_TIME 24
0 27 27 178776 6 6 0
1 11 11 42322 3 3 0
2 19 19 75392 19 20 598
3 7 7 20419 1 2 7161
4 10 10 39136 2 3 7161
5 19 19 85818 3 3 7135
6 24 24 118359 39 39 86601
7 8 8 33801 0 1 26
8 8 8 34187 1 1 0
9 13 13 42317 2 2 7135
10 15 15 98862 8 10 14296
11 15 15 59746 1 1 10083
12 16 16 72587 3 5 7161
13 14 14 42290 3 4 7277
14 11 11 35477 26 26 43408
15 19 19 83906 4 5 14270
16 27 27 94622 0 2 52
17 15 15 47568 4 6 14296
18 15 15 62415 1 5 14270
19 6 6 25356 2 2 17186
20 15 15 52323 2 2 10086
21 22 22 76076 19 20 624
22 15 15 62374 4 5 14296
23 20 20 67637 20 20 7733
END_TIME

# Domain - Pages - Hits - Bandwidth
# The 25 first Pages must be first (order not required for others)
BEGIN_DOMAIN 9
us 289 289 1380409
nl 66 66 10086
ca 4 4 40248
eu 3 3 30190
hu 2 2 20200
de 2 2 20192
cn 2 2 20140
gb 2 2 20215
be 1 1 10086
END_DOMAIN

# Cluster ID - Pages - Hits - Bandwidth
BEGIN_CLUSTER 0
END_CLUSTER

# Login - Pages - Hits - Bandwidth - Last visit
# The 10 first Pages must be first (order not required for others)
BEGIN_LOGIN 0
END_LOGIN

# Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt
# The 25 first Hits must be first (order not required for others)
BEGIN_ROBOT 5
unknown 11 286 20230827122805 11
Go\-http\-client/ 9 43252 20230831143924 0
(firefox/)([0-9]\.|[0-1][0]\.) 2 20117 20230827061849 0
no_user_agent 1 10083 20230827114223 0
survey 1 10086 20230806200543 0
END_ROBOT

# Worm ID - Hits - Bandwidth - Last visit
# The 5 first Hits must be first (order not required for others)
BEGIN_WORMS 0
END_WORMS

# EMail - Hits - Bandwidth - Last visit
# The 20 first Hits must be first (order not required for others)
BEGIN_EMAILSENDER 0
END_EMAILSENDER

# EMail - Hits - Bandwidth - Last visit
# The 20 first hits must be first (order not required for others)
BEGIN_EMAILRECEIVER 0
END_EMAILRECEIVER

# Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression
BEGIN_FILETYPES 2
php 320 1071082 0 0
html 51 480684 0 0
END_FILETYPES

# Downloads - Hits - Bandwidth
BEGIN_DOWNLOADS 0
END_DOWNLOADS

# OS ID - Hits
BEGIN_OS ID - Hits - Pages 21
win8 12 12
macosx8 16 16
macosx9 60 60
macosx7 4 4
win8.1 24 24
win7 75 75
macosx6 2 2
macosx11 2 2
macosx 12 12
ios_iphone 14 14
android 1 1
androidkitkat 2 2
Unknown 83 83
win10 2 2
ios_ipad 6 6
macosx10 20 20
linux 13 13
linuxubuntu 10 10
winxp 8 8
macosx13 1 1
winlong 4 4
END_OS

# Browser ID - Hits - Pages
BEGIN_BROWSER 33
firefox83.0 1 1
firefox31.0 20 20
firefox30.0 28 28
firefox47.0 2 2
msie11.0 16 16
netscape5.0 6 6
firefox40.0 1 1
chrome42.0.2311.90 16 16
chrome42.0.2312.90 2 2
chrome103.0.5060.114 1 1
safari7.0.5 2 2
firefox24.0 4 4
opera12.14 1 1
safari7.0.4 2 2
chrome35.0.1916.114 2 2
safari7.0.3 4 4
safari7.0.2 6 6
mozilla 5 5
safari 6 6
chrome64.0.3282.186 2 2
Unknown 72 72
chrome36.0.1985.125 90 90
safari5.1.9 2 2
safari6.1.5 4 4
chrome108.0.0.0 14 14
msie9.0 6 6
chrome36.0.1985.143 14 14
chrome110.0.0.0 1 1
chrome35.0.1916.153 12 12
safari8.0 12 12
firefox58.0 1 1
safari7.0 14 14
android 2 2
END_BROWSER

# Screen size - Hits
BEGIN_SCREENSIZE 0
END_SCREENSIZE

# Unknown referer OS - Last visit date
BEGIN_UNKNOWNREFERER 7
WordPress/5.2.18;_https://wp.dev.safetybis.com 20230831143852
Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20230808125711
Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20230830161749
python-requests/2.31.0 20230827053132
Mozilla/5.0_zgrab/0.x 20230827103306
WordPress/5.2.18;_http://wp.dev.safetybis.com 20230831233638
Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20230831225206
END_UNKNOWNREFERER

# Unknown referer Browser - Last visit date
BEGIN_UNKNOWNREFERERBROWSER 4
python-requests/2.31.0 20230827053132
WordPress/5.2.18;_http://wp.dev.safetybis.com 20230831233638
Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20230830161749
WordPress/5.2.18;_https://wp.dev.safetybis.com 20230831143852
END_UNKNOWNREFERERBROWSER

# Origin - Pages - Hits 
BEGIN_ORIGIN 6
From0 285 285
From1 0 0
From2 12 12
From3 0 0
From4 74 74
From5 0 0
END_ORIGIN

# Search engine referers ID - Pages - Hits
BEGIN_SEREFERRALS 1
www_google_com_hk 12 12
END_SEREFERRALS

# External page referers - Pages - Hits
# The 25 first Pages must be first (order not required for others)
BEGIN_PAGEREFS 0
END_PAGEREFS

# Search keyphrases - Number of search
# The 10 first number of search must be first (order not required for others)
BEGIN_SEARCHWORDS 0
END_SEARCHWORDS

# Search keywords - Number of search
# The 25 first number of search must be first (order not required for others)
BEGIN_KEYWORDS 0
END_KEYWORDS

# Errors - Hits - Bandwidth
BEGIN_ERRORS 3
404 29 206915
301 134 0
401 1 116
END_ERRORS

# URL with 404 errors - Hits - Last URL referrer
BEGIN_SIDER_404 14
/wp-content/themes/finley/min.php 1 www.google.com
/wp-content/plugins/ioptimization/IOptimize.php 2 www.google.com
/.git/ 1 https://www.wp.dev.safetybis.com/.git/
/wp-head.php 1 www.google.com
/ 3 http://www.google.com.hk
/class.api.php 1 www.google.com
/.env 3 -
/inputs.php 3 www.google.com
/wp-content/plugins/rxr/rx.php 1 www.google.com
/xxl.php 2 www.google.com
/static/admin/javascript/hetong.js 1 https://www.wp.dev.safetybis.com/static/admin/javascript/hetong.js
/Public/home/js/check.js 1 https://www.wp.dev.safetybis.com/Public/home/js/check.js
/wp-content/plugins/core-plugin/include.php 7 -
/shell20211028.php 2 www.google.com
END_SIDER_404

# Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit]
# [Start date of last visit] and [Last page of last visit] are saved only if session is not finished
# The 25 first Hits must be first (order not required for others)
BEGIN_VISITOR 83
212.32.252.174 65 65 0 20230831233638
107.189.4.216 12 12 50717 20230831215459
185.72.157.169 12 12 120798 20230828003629
107.189.11.148 12 12 50747 20230828064029
107.189.3.99 10 10 42297 20230829232826
107.189.14.13 10 10 42302 20230831164452
107.189.28.148 10 10 42300 20230831233638
104.244.73.234 10 10 42337 20230827184106
199.195.253.110 10 10 42267 20230819205603
107.189.28.226 8 8 31332 20230823025952
198.98.51.73 8 8 33797 20230831201810
107.189.8.106 6 6 25385 20230820022137
107.189.31.97 6 6 29933 20230831154526
107.189.29.195 6 6 25363 20230826124658
104.244.78.174 6 6 25374 20230828214114
205.185.116.37 6 6 25387 20230831165639
107.189.7.66 6 6 25360 20230831182833
209.141.55.144 6 6 25339 20230831214454
205.185.116.66 6 6 29948 20230810103858
107.189.29.200 6 6 25362 20230829040519
209.141.49.93 6 6 25352 20230831223502
198.98.58.52 6 6 25379 20230831224420
107.189.28.127 5 5 19365 20230830025856
107.189.13.92 4 4 16890 20230831182734
209.141.58.11 4 4 15686 20230809000249
142.54.169.131 2 2 7363 20230828112106
209.141.49.234 2 2 8476 20230807093955
194.140.197.160 2 2 20200 20230827053132
87.236.176.84 1 1 10086 20230808125711
45.61.188.28 2 2 8440 20230804024013
45.61.184.148 2 2 8452 20230831193051
209.141.34.136 2 2 8462 20230808112757
107.189.12.60 4 4 16901 20230831232836
199.195.252.219 4 4 16927 20230805054352
171.67.70.233 3 3 30235 20230827103306
107.189.5.223 2 2 8463 20230819235805
47.88.94.159 1 1 10066 20230827182231
62.146.227.83 2 2 20192 20230811123643
104.244.75.17 4 4 16906 20230828134742
69.4.89.106 1 1 10034 20230827201715
107.189.7.170 2 2 8442 20230805122830
104.244.75.150 2 2 8446 20230831201752
209.141.59.217 4 4 16932 20230831191715
159.223.164.2 1 1 10034 20230810100855
165.232.105.71 1 1 10098 20230824112725
183.136.225.44 1 1 10054 20230817101131
209.141.62.124 2 2 8449 20230804150719
209.141.42.174 4 4 16910 20230829013540
209.141.53.194 2 2 8458 20230831173806
167.94.146.57 1 1 10071 20230812150933
89.207.131.169 1 1 10086 20230805151029
146.70.133.93 1 1 10071 20230827061700
104.244.75.48 2 2 8471 20230805154143
183.136.225.46 1 1 10086 20230824185320
107.189.12.210 2 2 8468 20230825005216
162.142.125.217 1 1 10034 20230831225206
107.189.14.134 3 3 12133 20230816170507
209.141.51.55 4 4 15677 20230806084128
209.141.37.40 2 2 8466 20230826015642
205.210.31.209 1 1 10054 20230830161749
171.67.70.229 3 3 30234 20230827063303
93.119.227.34 1 1 10068 20230827225411
51.75.133.70 1 1 10144 20230830100337
198.235.24.234 1 1 10054 20230805044653
205.185.122.226 2 2 8455 20230804050553
69.4.87.74 1 1 10066 20230827065900
107.189.1.238 2 2 8456 20230831232008
45.61.187.155 2 2 8442 20230806065501
93.119.227.91 1 1 10051 20230827064735
93.119.227.19 1 1 10071 20230828054735
107.189.31.85 2 2 8464 20230831222521
47.242.224.70 1 1 10086 20230827141808
167.94.138.49 2 2 20139 20230807173915
107.189.1.109 4 4 16910 20230825113403
205.185.124.182 4 4 16912 20230805162313
209.141.57.60 2 2 8460 20230806055340
205.185.115.214 4 4 16917 20230826051741
107.189.8.33 4 4 16900 20230814051447
209.141.55.154 4 4 16924 20230831214558
107.189.1.46 4 4 16905 20230826214656
107.189.1.12 2 2 8473 20230809141433
198.235.24.243 1 1 10054 20230826080804
209.141.36.118 4 4 16921 20230827123714
END_VISITOR

# Date - Pages - Hits - Bandwidth - Visits
BEGIN_DAY 29
20230801 1 1 0 1
20230802 1 1 0 1
20230803 2 2 20128 1
20230804 8 8 33811 4
20230805 17 17 62425 11
20230806 12 12 32579 7
20230807 6 6 28615 5
20230808 20 20 89394 12
20230809 14 14 49518 7
20230810 12 12 48455 6
20230811 3 3 20192 2
20230812 1 1 10071 1
20230813 2 2 20128 1
20230814 8 8 25359 4
20230816 2 2 3685 2
20230817 2 2 10054 2
20230818 9 9 40529 5
20230819 30 30 118423 16
20230820 19 19 74921 9
20230822 2 2 8465 1
20230823 3 3 23825 2
20230824 10 10 37094 8
20230825 21 21 67684 13
20230826 18 18 69254 11
20230827 34 34 210347 22
20230828 23 23 96822 14
20230829 21 21 67674 11
20230830 9 9 39563 5
20230831 61 61 242751 27
END_DAY

# Session range - Number of visits
BEGIN_SESSION 6
30s-2mn 8
5mn-15mn 5
0s-30s 183
15mn-30mn 4
2mn-5mn 4
30mn-1h 7
END_SESSION

# URL - Pages - Bandwidth - Entry - Exit
# The 25 first Pages must be first (order not required for others)
BEGIN_SIDER 8
/wp-login.php/wp-login.php 166 699466 81 81
/wp-login.php 85 356895 36 36
/wp-cron.php 65 0 59 59
/ 44 443166 32 32
/wp-login.php/ 5 18440 1 0
/wp-login.php/wp-content/plugins/core-plugin/include.php 3 11036 1 2
/author/admin/ 2 19078 0 0
//wp-login.php 1 3685 1 1
END_SIDER

LittleDemon - FACEBOOK
[ KELUAR ]