#Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 00:48:33 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 00:48:32 W3SVC890 W2K3WEB1 192.168.25.10 GET /.ftpconfig - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 404 2 1869 270 15 2018-01-14 00:48:33 W3SVC890 W2K3WEB1 192.168.25.10 GET /.remote-sync.json - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 404 2 1869 277 0 2018-01-14 00:48:33 W3SVC890 W2K3WEB1 192.168.25.10 GET /.vscode/ftp-sync.json - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 404 3 1869 281 0 2018-01-14 00:48:33 W3SVC890 W2K3WEB1 192.168.25.10 GET /sftp-config.json - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 404 2 1869 276 0 2018-01-14 00:48:33 W3SVC890 W2K3WEB1 192.168.25.10 GET /.env - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 404 2 1869 264 0 2018-01-14 00:48:33 W3SVC890 W2K3WEB1 192.168.25.10 GET /deployment-config.json - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.3;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 404 2 1869 282 0 2018-01-14 00:52:06 W3SVC890 W2K3WEB1 192.168.25.10 GET /IF+DRINKING+DON'R+KILL+ME.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2323 321 15 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 01:40:28 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 01:40:27 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+AhrefsBot/5.2;++http://ahrefs.com/robot/) - - 200 0 1150 196 125 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 01:59:18 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 01:59:17 W3SVC890 W2K3WEB1 192.168.25.10 GET /PAINTED+MYSELF+INTO.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2918 309 15 2018-01-14 01:59:36 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOING+JUST+WHAT+I+MUST+DO.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 3443 321 0 2018-01-14 02:04:25 W3SVC890 W2K3WEB1 192.168.25.10 GET /BITE+GENTLY-V+.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2432 304 15 2018-01-14 02:19:02 W3SVC890 W2K3WEB1 192.168.25.10 GET /LET+IT+BE+ME.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2805 304 0 2018-01-14 02:33:44 W3SVC890 W2K3WEB1 192.168.25.10 GET /HONKY+TONK+CROWD.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2908 306 15 2018-01-14 02:37:59 W3SVC890 W2K3WEB1 192.168.25.10 GET /ALL+ALONE+AGAIN.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 1961 305 0 2018-01-14 02:39:55 W3SVC890 W2K3WEB1 192.168.25.10 GET /LET+ME+SHOW+YOU+THE+WORLD.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2977 321 0 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 03:35:15 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 03:35:15 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/page-google-maps/pr.php - 80 - 192.168.25.52 HTTP/1.1 GNU+IceCat/16.13+(Windows+NT+6.1+4.0;+ar_DZ;) - - 404 3 1869 477 15 2018-01-14 03:41:49 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/dzs-videogallery/admin/upload.php - 80 - 192.168.25.52 HTTP/1.1 Flock/15.16+(Linux+2.4.22-10mdk+1.4;+be_BY;) - - 404 3 1850 534 0 2018-01-14 03:42:13 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/dzs-portfolio/upload.php - 80 - 192.168.25.52 HTTP/1.1 Firefox/15.15+(BitLinux+5.0;+ar_AE;) - - 404 3 1850 614 15 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 05:10:57 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 05:10:56 W3SVC890 W2K3WEB1 192.168.25.10 GET /PROPS.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+AhrefsBot/5.2;++http://ahrefs.com/robot/) - - 404 2 1850 206 15 2018-01-14 05:16:53 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 404 2 1869 291 0 2018-01-14 05:16:53 W3SVC890 W2K3WEB1 192.168.25.10 GET /BITE+GENTLY+IF+YOU'RE+#43D.aiff - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 404 2 1869 324 0 2018-01-14 05:22:59 W3SVC890 W2K3WEB1 192.168.25.10 GET /THE+LADY+BELONGS+TO+ME.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2838 316 15 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 06:01:51 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 06:01:50 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/page-google-maps/pr.php - 80 - 192.168.25.52 HTTP/1.1 IBrowse/11.4+(BackTrack+Linux+3.2;+en_PH;) - - 404 3 1850 476 0 2018-01-14 06:04:33 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm) - - 200 0 1146 297 109 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 06:36:15 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 06:36:14 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-admin/admin-post.php page=wysija_campaigns&action=themes 80 - 192.168.25.52 HTTP/1.1 Tor+Browser/15.15+(Windows+NT+1.9;+ar_IQ;) - - 404 3 1850 2120 15 2018-01-14 06:49:22 W3SVC890 W2K3WEB1 192.168.25.10 GET /OFF+OF+MY+MIND.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2596 306 15 2018-01-14 06:56:06 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/42.0.2311.90+Safari/537.36 - - 200 0 1150 380 125 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 08:53:03 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 08:53:02 W3SVC890 W2K3WEB1 192.168.25.10 GET /ALICE'S+SONG.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 200 0 2533 302 15 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 11:37:41 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 11:37:41 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+DotBot/1.1;+http://www.opensiteexplorer.org/dotbot,+help@moz.com) - - 404 2 1850 254 0 2018-01-14 11:49:19 W3SVC890 W2K3WEB1 192.168.25.10 GET /BITE+GENTLY.html - 80 - 192.168.25.52 HTTP/1.0 CCBot/2.0+(http://commoncrawl.org/faq/) - - 404 2 1869 299 0 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 12:19:31 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 12:19:31 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+Yahoo!+Slurp;+http://help.yahoo.com/help/us/ysearch/slurp) - - 404 2 1850 192 0 2018-01-14 12:19:31 W3SVC890 W2K3WEB1 192.168.25.10 GET /JRCWMUSICSONGS.HTML - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+Yahoo!+Slurp;+http://help.yahoo.com/help/us/ysearch/slurp) - - 404 2 1850 224 0 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 12:42:38 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 12:42:38 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 CipaCrawler/3.0+(info@domaincrawler.com;+http://www.domaincrawler.com/rainho.com) - - 404 2 1869 239 0 2018-01-14 12:42:39 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 CipaCrawler/3.0+(info@domaincrawler.com;+http://www.domaincrawler.com/rainho.com) - - 200 0 2060 229 15 2018-01-14 12:51:21 W3SVC890 W2K3WEB1 192.168.25.10 POST /index.html %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 405 0 1822 988 15 2018-01-14 12:51:21 W3SVC890 W2K3WEB1 192.168.25.10 POST /cgi-bin/php %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 999 0 2018-01-14 12:51:21 W3SVC890 W2K3WEB1 192.168.25.10 POST /cgi-bin/php5 %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1000 0 2018-01-14 12:51:22 W3SVC890 W2K3WEB1 192.168.25.10 POST /cgi-bin/php4 %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1000 0 2018-01-14 12:51:22 W3SVC890 W2K3WEB1 192.168.25.10 POST /cgi-bin/php-cgi %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1003 0 2018-01-14 12:51:23 W3SVC890 W2K3WEB1 192.168.25.10 POST /cgi-bin/php.cgi %2D%64+%61%6C%6C%6F%77%5F%75%72%6C%5F%69%6E%63%6C%75%64%65%3D%6F%6E+%2D%64+%73%61%66%65%5F%6D%6F%64%65%3D%6F%66%66+%2D%64+%73%75%68%6F%73%69%6E%2E%73%69%6D%75%6C%61%74%69%6F%6E%3D%6F%6E+%2D%64+%64%69%73%61%62%6C%65%5F%66%75%6E%63%74%69%6F%6E%73%3D%22%22+%2D%64+%6F%70%65%6E%5F%62%61%73%65%64%69%72%3D%6E%6F%6E%65+%2D%64+%61%75%74%6F%5F%70%72%65%70%65%6E%64%5F%66%69%6C%65%3D%70%68%70%3A%2F%2F%69%6E%70%75%74+%2D%64+%63%67%69%2E%66%6F%72%63%65%5F%72%65%64%69%72%65%63%74%3D%30+%2D%64+%63%67%69%2E%72%65%64%69%72%65%63%74%5F%73%74%61%74%75%73%5F%65%6E%76%3D%30+%2D%6E 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/56.0.2924.87+Safari/537.36 - - 404 3 1850 1003 15 2018-01-14 13:05:43 W3SVC890 W2K3WEB1 192.168.25.10 GET /ALLI+NEED+IS+YOU-v.HTML - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+DotBot/1.1;+http://www.opensiteexplorer.org/dotbot,+help@moz.com) - - 200 0 2663 273 0 2018-01-14 13:17:27 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/mailpress/mp-includes/action.php - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64;+rv:7.0)+Gecko/20170127+Firefox/35.0 - - 404 3 1869 1773 0 2018-01-14 13:17:52 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-admin/admin-post.php page=wysija_campaigns&action=themes 80 - 192.168.25.52 HTTP/1.1 Opera/9.89+(Windows+95;+en-US)+Presto/2.12.303+Version/12.00 - - 404 3 1869 2145 0 2018-01-14 13:18:28 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/codecanyon-157782-video-gallery-wordpress-plugin-w-youtube-vimeo-/admin/upload.php - 80 - 192.168.25.52 HTTP/1.1 Opera/8.46+(X11;+Linux+i686;+en-US)+Presto/2.11.282+Version/11.00 - - 404 3 1869 624 0 2018-01-14 13:18:48 W3SVC890 W2K3WEB1 192.168.25.10 POST /wp-content/plugins/dzs-portfolio/admin/upload.php - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+MSIE+7.0;+Windows+95;+Trident/3.1) - - 404 3 1869 574 0 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 13:51:19 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 13:51:18 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm) - - 404 2 1850 274 0 2018-01-14 13:51:20 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm) - - 200 0 1146 297 15 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 15:08:17 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 15:08:17 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm) - - 200 0 1150 301 46 2018-01-14 15:13:45 W3SVC890 W2K3WEB1 192.168.25.10 GET /JUST+LOOK+AT+ME+NOW.html - 80 - 192.168.25.52 HTTP/1.1 Sogou+web+spider/4.0(+http://www.sogou.com/docs/help/webmasters.htm#07) - - 304 0 335 327 0 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 15:32:19 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 15:32:18 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - - 200 0 1146 954 109 2018-01-14 15:32:18 W3SVC890 W2K3WEB1 192.168.25.10 GET /favicon.ico - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 404 2 1850 994 15 2018-01-14 15:32:18 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOOR+MAGIC.jpeg - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 200 0 99762 955 31 2018-01-14 15:32:18 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOORMUSIC.jpeg - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 200 0 99424 952 62 2018-01-14 15:32:18 W3SVC890 W2K3WEB1 192.168.25.10 GET /JRM&MLOGO.jpeg - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 200 0 62182 954 125 2018-01-14 15:33:05 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/62.0.3202.94+Safari/537.36 - - 200 0 1150 477 109 2018-01-14 15:43:40 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - - 200 0 1146 954 109 2018-01-14 15:43:40 W3SVC890 W2K3WEB1 192.168.25.10 GET /favicon.ico - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 404 2 1850 994 0 2018-01-14 15:43:40 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOOR+MAGIC.jpeg - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 200 0 99762 955 0 2018-01-14 15:43:40 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOORMUSIC.jpeg - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 200 0 99424 952 0 2018-01-14 15:43:40 W3SVC890 W2K3WEB1 192.168.25.10 GET /JRM&MLOGO.jpeg - 80 - 192.168.25.52 HTTP/1.1 Opera/9.80+(Android;+Opera+Mini/30.0.2254/81.40;+U;+tr)+Presto/2.12.423+Version/12.16 - http://rainho.com/ 200 0 62182 954 78 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 16:20:57 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 16:20:56 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/7.0+(compatible;+MSIE4.00;+Windows+2006) - http://kabinet-uchi.ru/ 200 0 384 351 109 2018-01-14 16:20:57 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/7.0+(compatible;+MSIE2.00;+Windows+2002) - http://kabinet-domru.ru/ 200 0 384 352 93 2018-01-14 16:26:32 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/6.0+(compatible;+MSIE7.00;+Windows+2006) - http://kabinet-my-yota.ru/ 200 0 384 354 109 2018-01-14 16:28:58 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+MJ12bot/v1.4.8;+http://mj12bot.com/) - - 404 2 1850 191 0 2018-01-14 16:28:59 W3SVC890 W2K3WEB1 192.168.25.10 GET /JRCWSONGSMUSIC.HTML - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+MJ12bot/v1.4.8;+http://mj12bot.com/) - - 200 0 10522 387 0 2018-01-14 16:32:24 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+MSIE4.00;+Windows+2004) - http://kabinet-mosenergosbyt.ru/ 200 0 384 358 109 2018-01-14 16:42:49 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/4.0+(compatible;+MSIE6.00;+Windows+2006) - http://arendadogovor.ru/category/poleznaya-informatsiya/ 200 0 384 385 109 2018-01-14 16:42:49 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+MSIE6.00;+Windows+2006) - http://balticamberteethingnecklaces.net/product/amber-bracelet-for-babies-turquoise-collection-14cm/ 200 0 384 427 109 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 17:02:46 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 17:02:46 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/7.0+(compatible;+MSIE7.00;+Windows+2002) - http://noutboouk.ru 200 0 384 346 125 2018-01-14 17:02:47 W3SVC890 W2K3WEB1 192.168.25.10 HEAD /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/2.0+(compatible;+MSIE3.00;+Windows+2008) - https://idecobar.ru/catalog/stulya-i-kresla/stulya-dlya-fud-korta 200 0 384 392 109 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 19:30:37 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 19:30:37 W3SVC890 W2K3WEB1 192.168.25.10 GET /index.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.84+Safari/537.36 - https://www.google.com/ 200 0 1150 447 109 2018-01-14 19:30:37 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOOR+MAGIC.jpeg - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.84+Safari/537.36 - http://www.rainho.com/ 200 0 99762 387 0 2018-01-14 19:30:37 W3SVC890 W2K3WEB1 192.168.25.10 GET /JRM&MLOGO.jpeg - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.84+Safari/537.36 - http://www.rainho.com/ 200 0 62182 386 109 2018-01-14 19:30:37 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOORMUSIC.jpeg - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.84+Safari/537.36 - http://www.rainho.com/ 200 0 99424 384 109 2018-01-14 19:30:38 W3SVC890 W2K3WEB1 192.168.25.10 GET /favicon.ico - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/63.0.3239.84+Safari/537.36 - http://www.rainho.com/ 404 2 1850 381 15 2018-01-14 19:31:34 W3SVC890 W2K3WEB1 192.168.25.10 GET /INDEX.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(iPhone;+CPU+iPhone+OS+7_0+like+Mac+OS+X)+AppleWebKit/537.51.1+(KHTML,+like+Gecko)+Version/7.0+Mobile/11A465+Safari/9537.53+(compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm) - - 200 0 1098 434 0 2018-01-14 19:36:27 W3SVC890 W2K3WEB1 192.168.25.10 GET /JRCWSONGSMUSIC.HTML - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+bingbot/2.0;++http://www.bing.com/bingbot.htm) - - 200 0 3435 319 15 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 20:48:20 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 20:48:19 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+5.1;+rv:6.0.2)+Gecko/20100101+Firefox/6.0.2 - - 404 2 1869 248 0 2018-01-14 20:48:19 W3SVC890 W2K3WEB1 192.168.25.10 GET /robots.txt - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(Windows+NT+5.1;+rv:6.0.2)+Gecko/20100101+Firefox/6.0.2 - - 404 2 1869 248 15 2018-01-14 20:50:12 W3SVC890 W2K3WEB1 192.168.25.10 GET /JUST+LOOK+AT+ME+NOW.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+Baiduspider/2.0;++http://www.baidu.com/search/spider.html) - - 200 0 1309 280 0 #Software: Microsoft Internet Information Services 6.0 #Version: 1.0 #Date: 2018-01-14 23:08:44 #Fields: date time s-sitename s-computername s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs-version cs(User-Agent) cs(Cookie) cs(Referer) sc-status sc-win32-status sc-bytes cs-bytes time-taken 2018-01-14 23:08:44 W3SVC890 W2K3WEB1 192.168.25.10 GET /WHATHAVETHEYDONEBOSTON.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+SemrushBot/1.2~bl;++http://www.semrush.com/bot.html) - - 200 0 1778 249 0 2018-01-14 23:08:56 W3SVC890 W2K3WEB1 192.168.25.10 GET /DON'T+HELP+THIS+GOOD+GIRL.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+SemrushBot/1.2~bl;++http://www.semrush.com/bot.html) - - 200 0 1254 260 0 2018-01-14 23:09:25 W3SVC890 W2K3WEB1 192.168.25.10 GET /I'M+JUST+A+RAMBLIN'+COWBOY.HTML - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+SemrushBot/1.2~bl;++http://www.semrush.com/bot.html) - - 200 0 1328 261 0 2018-01-14 23:10:42 W3SVC890 W2K3WEB1 192.168.25.10 GET /JUST+LOOK+AT+ME+NOW.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+SemrushBot/1.2~bl;++http://www.semrush.com/bot.html) - - 200 0 1309 254 0 2018-01-14 23:11:01 W3SVC890 W2K3WEB1 192.168.25.10 GET /DOING+JUST+WHAT+I+MUST+DO.html - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+SemrushBot/1.2~bl;++http://www.semrush.com/bot.html) - - 200 0 1677 262 15 2018-01-14 23:11:37 W3SVC890 W2K3WEB1 192.168.25.10 GET /ALLI+NEED+IS+YOU-v.HTML - 80 - 192.168.25.52 HTTP/1.1 Mozilla/5.0+(compatible;+SemrushBot/1.2~bl;++http://www.semrush.com/bot.html) - - 200 0 1349 251 0