Aurora
Adminer
Auto Root
WP Admin
cPanel Reset
Anti Backdoor
Root
home3
homscoke
tmp
awstats
ssl
Upload
New Folder
New File
Name
Size
Permissions
Actions
..
-
-
-
Upload File
Select File
New Folder
Folder Name
New File
File Name
Add WordPress Admin
Database Host
Database Name
Database User
Database Password
Admin Username
Admin Password
cPanel Password Reset
Email Address
Edit: awstats022023.cdn3.homs.co.ke.txt
AWSTATS DATA FILE 7.8 (build 20200416) # If you remove this file, all statistics for date 202302 will be lost/reset. # Last config file used to build this data file was /home3/homscoke/tmp/awstats/ssl/awstats.cdn3.homs.co.ke.conf. # Position (offset in bytes) in this file for beginning of each section for # direct I/O access. If you made changes somewhere in this file, you should # also remove completely the MAP section (AWStats will rewrite it at next # update). BEGIN_MAP 28 POS_GENERAL 2017 POS_TIME 2689 POS_VISITOR 15950 POS_DAY 17147 POS_DOMAIN 3258 POS_LOGIN 3528 POS_ROBOT 3683 POS_WORMS 3927 POS_EMAILSENDER 4058 POS_EMAILRECEIVER 4201 POS_SESSION 17584 POS_SIDER 17752 POS_FILETYPES 4336 POS_DOWNLOADS 4441 POS_OS 4528 POS_BROWSER 4711 POS_SCREENSIZE 5061 POS_UNKNOWNREFERER 5135 POS_UNKNOWNREFERERBROWSER 5694 POS_ORIGIN 6061 POS_SEREFERRALS 6193 POS_PAGEREFS 6354 POS_SEARCHWORDS 6562 POS_KEYWORDS 6714 POS_MISC 2352 POS_ERRORS 6773 POS_CLUSTER 3384 POS_SIDER_404 6906 END_MAP # LastLine = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value # FirstTime = Date of first visit for history file # LastTime = Date of last visit for history file # LastUpdate = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped # TotalVisits = Number of visits # TotalUnique = Number of unique visitors # MonthHostsKnown = Number of hosts known # MonthHostsUnKnown = Number of hosts unknown BEGIN_GENERAL 8 LastLine 20230301065420 1 0 8147602474427 FirstTime 20230202054645 LastTime 20230228174736 LastUpdate 20230302053346 1 0 0 0 0 TotalVisits 33 TotalUnique 30 MonthHostsKnown 0 MonthHostsUnknown 32 END_GENERAL # Misc ID - Pages - Hits - Bandwidth BEGIN_MISC 10 RealPlayerSupport 0 0 0 FlashSupport 0 0 0 DirectorSupport 0 0 0 JavaEnabled 0 0 0 TotalMisc 0 0 0 AddToFavourites 0 14 0 QuickTimeSupport 0 0 0 WindowsMediaPlayerSupport 0 0 0 JavascriptDisabled 0 0 0 PDFSupport 0 0 0 END_MISC # Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth BEGIN_TIME 24 0 2 2 0 18 19 4125 1 1 1 0 0 1 248 2 0 1 1361 14 15 2817 3 2 3 1361 48 48 9188 4 0 0 0 1 1 0 5 4 5 1361 16 21 5289 6 2 2 0 3 6 908 7 4 4 0 19 22 5364 8 1 2 1361 15 15 2569 9 3 3 0 2 3 761 10 0 0 0 3 4 218 11 2 2 0 2 3 107 12 2 2 0 0 1 553 13 0 0 0 0 1 218 14 1 1 0 110 110 0 15 1 1 0 30 31 4887 16 2 2 0 38 38 226 17 2 2 0 37 38 842 18 0 0 0 1 2 218 19 1 1 0 21 21 3473 20 2 2 0 1 1 208 21 0 0 0 2 2 0 22 4 4 0 106 109 2595 23 2 2 0 3 5 1314 END_TIME # Domain - Pages - Hits - Bandwidth # The 25 first Pages must be first (order not required for others) BEGIN_DOMAIN 6 us 15 19 5444 cn 9 9 0 ca 8 8 0 be 4 4 0 ro 1 1 0 gb 1 1 0 END_DOMAIN # Cluster ID - Pages - Hits - Bandwidth BEGIN_CLUSTER 0 END_CLUSTER # Login - Pages - Hits - Bandwidth - Last visit # The 10 first Pages must be first (order not required for others) BEGIN_LOGIN 0 END_LOGIN # Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt # The 25 first Hits must be first (order not required for others) BEGIN_ROBOT 3 no_user_agent 12 0 20230226020429 0 unknown 6 1206 20230223062648 6 bot[\s_+:,\.\;\/\\-] 1 107 20230208064128 1 END_ROBOT # Worm ID - Hits - Bandwidth - Last visit # The 5 first Hits must be first (order not required for others) BEGIN_WORMS 0 END_WORMS # EMail - Hits - Bandwidth - Last visit # The 20 first Hits must be first (order not required for others) BEGIN_EMAILSENDER 0 END_EMAILSENDER # EMail - Hits - Bandwidth - Last visit # The 20 first hits must be first (order not required for others) BEGIN_EMAILRECEIVER 0 END_EMAILRECEIVER # Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression BEGIN_FILETYPES 3 php 1 0 0 0 html 37 0 0 0 txt 4 5444 0 0 END_FILETYPES # Downloads - Hits - Bandwidth BEGIN_DOWNLOADS 1 //wp-includes/ID3/license.txt 4 0 5444 END_DOWNLOADS # OS ID - Hits BEGIN_OS ID - Hits - Pages 9 androidkitkat 1 1 linuxubuntu 1 1 win10 12 8 macosx11 3 3 Unknown 15 15 win8 1 1 win7 6 6 androidnougat 1 1 linux 2 2 END_OS # Browser ID - Hits - Pages BEGIN_BROWSER 15 chrome84.0.4147.105 1 1 Unknown 7 7 android 1 1 chrome88.0.4240.193 2 2 chrome91.0.4472.106 2 2 netscape5.0 1 1 chrome78.0.3904.108 1 1 mozilla 8 8 firefox72.0 1 1 chrome95.0.4638.69 5 1 chrome104.0.5112.101 2 2 chrome60.0.3112.107 1 1 firefox47.0 3 3 chrome63.0.3239.132 6 6 chrome27.0.1500.55 1 1 END_BROWSER # Screen size - Hits BEGIN_SCREENSIZE 0 END_SCREENSIZE # Unknown referer OS - Last visit date BEGIN_UNKNOWNREFERER 3 Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20230227221851 Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20230224220017 Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20230227061940 END_UNKNOWNREFERER # Unknown referer Browser - Last visit date BEGIN_UNKNOWNREFERERBROWSER 1 Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20230224220017 END_UNKNOWNREFERERBROWSER # Origin - Pages - Hits BEGIN_ORIGIN 6 From0 30 34 From1 0 0 From2 1 1 From3 3 3 From4 4 4 From5 0 0 END_ORIGIN # Search engine referers ID - Pages - Hits BEGIN_SEREFERRALS 1 www_bing_com 1 1 END_SEREFERRALS # External page referers - Pages - Hits # The 25 first Pages must be first (order not required for others) BEGIN_PAGEREFS 2 http://173.254.29.157:80 2 2 https://173.254.29.157:443 1 1 END_PAGEREFS # Search keyphrases - Number of search # The 10 first number of search must be first (order not required for others) BEGIN_SEARCHWORDS 0 END_SEARCHWORDS # Search keywords - Number of search # The 25 first number of search must be first (order not required for others) BEGIN_KEYWORDS 0 END_KEYWORDS # Errors - Hits - Bandwidth BEGIN_ERRORS 5 500 1 1241 409 9 747 404 316 0 302 21 4457 406 137 30962 END_ERRORS # URL with 404 errors - Hits - Last URL referrer BEGIN_SIDER_404 239 /extjs.php 1 - /up-kon.php 1 http://cdn3.homs.co.ke//up-kon.php /admin/controller/extension/wpm.php 1 http://cdn3.homs.co.ke//admin/controller/extension/wpm.php /wordpress/wp-login.php 1 http://cdn3.homs.co.ke /old-index.php 1 http://cdn3.homs.co.ke//old-index.php /wp-includes/pomo/treame.php 4 www.google.com /modules/mod_ariimageslidersa/mod_ariimageslidersa.php 1 - /404.php 2 http://cdn3.homs.co.ke//404.php /blog/wp-login.php 1 http://cdn3.homs.co.ke /feeds.php 1 - /wp-admin/xleet.php 1 http://cdn3.homs.co.ke//wp-admin/xleet.php /.libs.php 1 - /xx.php 1 http://cdn3.homs.co.ke/xx.php /wp-includes/assets/pi.php 1 http://cdn3.homs.co.ke//wp-includes/assets/pi.php /cloud.php 1 - /1.php 1 http://cdn3.homs.co.ke//1.php /ukauka.php 1 - /xlt.php 1 http://cdn3.homs.co.ke//xlt.php /radio.php 1 http://cdn3.homs.co.ke//radio.php /wp-includes/customize/class-wp-customize-nav-menu.php 1 http://cdn3.homs.co.ke//wp-includes/customize/class-wp-customize-nav-menu.php /var.php 1 - /wp-x.php 1 http://cdn3.homs.co.ke//wp-x.php /evi.php 1 - /kodox.php 1 - /css.php 1 - /wp-content/plugins/upspy/up.php 1 - /about.php 1 http://cdn3.homs.co.ke//about.php /wp-content/plugins/fighter/fk.php 1 http://cdn3.homs.co.ke//wp-content/plugins/fighter/fk.php /1h6j5.php 1 http://cdn3.homs.co.ke//1h6j5.php /alfacgiapi/perl.alfa 1 www.google.com /wp-content/themes/wp-pridmag/init.php 1 http://cdn3.homs.co.ke//wp-content/themes/wp-pridmag/init.php /backup.php 1 - /prgczmwr.php 1 www.google.com /wp-includes/ID3/vp.php 4 www.google.com /ALFA_DATA/alfacgiapi/ups.php 1 http://cdn3.homs.co.ke//ALFA_DATA/alfacgiapi/ups.php /crypted.php 1 http://cdn3.homs.co.ke//crypted.php /V3.php 1 - /wp-content/plugins/easybusy/wp-blog.php 1 http://cdn3.homs.co.ke//wp-content/plugins/easybusy/wp-blog.php /v3.php 1 - /con.php 1 - /xmlrqc.php 1 http://cdn3.homs.co.ke//xmlrqc.php /wp-content/xx.php 1 - /wp-22.php 1 http://cdn3.homs.co.ke//wp-22.php /xs.php 1 - /small.php 1 http://cdn3.homs.co.ke//small.php /uploads/up.php 1 http://cdn3.homs.co.ke//uploads/up.php /license.php 1 - /pi.php 1 http://cdn3.homs.co.ke//pi.php /api.php 1 - /mt/pekok.php 4 www.google.com /mad.php 1 http://cdn3.homs.co.ke//mad.php /wso1.php 1 - /wp-admin/adm.php 1 - /c.php 1 http://cdn3.homs.co.ke//c.php /dupal.php 1 - /plug.php 1 - /wp-plain.php 1 www.google.com /wp-content/upload.php 1 http://cdn3.homs.co.ke//wp-content/upload.php /wpx.php 1 http://cdn3.homs.co.ke//wpx.php /alphashell.php 1 - /.DS_Store 3 https://www.cdn3.homs.co.ke/.DS_Store /srx.php 1 http://cdn3.homs.co.ke//srx.php /V2.php 1 - /wp-mail.php 1 - /wp-2019.php 1 http://cdn3.homs.co.ke//wp-2019.php /google.php 1 http://cdn3.homs.co.ke//google.php /updater.php 1 - /dana-na 1 - /ups.php 1 http://cdn3.homs.co.ke//ups.php /wp-admin/xx.php 1 - /wp-2021.php 1 http://cdn3.homs.co.ke//wp-2021.php /mininew.php 1 http://cdn3.homs.co.ke//mininew.php /vega.php 1 - /configuration.php 1 - /wp-content/up.php 1 - /skinwizard.php 1 - /go.php 1 - /wp-content/plugins/instabuilder2/cache/up.php 4 www.google.com /db_magento.php 1 - /wp-content/plugins/ioptimization/IOptimize.php 4 www.google.com /wp-content/fw.php 1 http://cdn3.homs.co.ke//wp-content/fw.php /wp-2022.php 1 http://cdn3.homs.co.ke//wp-2022.php /doc.php 1 http://cdn3.homs.co.ke//doc.php /screenshot_1.php 1 http://cdn3.homs.co.ke//screenshot_1.php /wp-content/adm.php 1 - /tmp.php 1 - /wp-admin/style.php 1 - /view.php 1 - //feed/ 7 - /wp-content/plugins/seoplugins/mar.php 4 www.google.com /admin.php 1 http://cdn3.homs.co.ke//admin.php /config.php 1 - /v1.php 1 - /403.php 2 http://cdn3.homs.co.ke//403.php /wp-content/u.php 1 - /wp-includes/pomo/newup.php 4 www.google.com /xleet.php 2 http://cdn3.homs.co.ke//xleet.php /aa.php 1 - /semayan.php 1 - /wp/wp-login.php 1 http://cdn3.homs.co.ke /wp-content/wso.php 1 - /net.php 1 - /logo.php 1 - /wp-content/plugins/masterx/wpx.php 1 http://cdn3.homs.co.ke//wp-content/plugins//masterx/wpx.php /new-index.php 1 http://cdn3.homs.co.ke//new-index.php /wp-content/upl.php 1 - /wp-sign.php 1 - /405.php 1 - /DKIZ.php 1 http://cdn3.homs.co.ke//DKIZ.php /wp-content/x.php 1 - /plugin.php 1 - /style.php 1 - /.git/config 4 http://www.cdn3.homs.co.ke/.git/config /lock360.php 1 http://cdn3.homs.co.ke//lock360.php /wp_wrong_datlib.php 1 http://cdn3.homs.co.ke//wp_wrong_datlib.php /upil.php 1 - /dbs.php 1 - /alfa.php 1 http://cdn3.homs.co.ke//alfa.php /eX2.php 1 - /svpn/index.cgi 1 - /ssl-vpn/prelogin.esp 1 - /hehe.php 1 http://cdn3.homs.co.ke//hehe.php /v2.php 1 - /root.php 1 - /haxor.php 1 http://cdn3.homs.co.ke//haxor.php /alpha.php 1 - /wp-2020.php 1 http://cdn3.homs.co.ke//wp-2020.php /wp-content/themes/pridmag/db.php 4 www.google.com /wxo.php 1 http://cdn3.homs.co.ke//wxo.php /a.php 1 - /wp-admin/priv8.php 1 http://cdn3.homs.co.ke//wp-admin/priv8.php /wp-admin/rss.php 1 http://cdn3.homs.co.ke//wp-admin/rss.php /shell.php 2 http://cdn3.homs.co.ke//shell.php /indoxploit.php 1 - /installer.php 1 - /modules/mod_araticlws/mod_araticlws.php 1 - /0z.php 1 http://cdn3.homs.co.ke//0z.php /upload.php 2 http://cdn3.homs.co.ke//upload.php /wp-login.php 2 http://cdn3.homs.co.ke/wp-login.php /2index.php 2 http://cdn3.homs.co.ke//2index.php /mini.php 1 http://cdn3.homs.co.ke//mini.php /core.php 1 - /wp-content/plugins/upspy/sllolx.php 1 - /wp-mails.php 1 - /test1.php 1 - /wp-content/cache.php 1 - /tt.php 1 - /r00t.php 1 - /t1.php 1 - /4price.php 1 http://cdn3.homs.co.ke//4price.php /x.php 1 http://cdn3.homs.co.ke//x.php /autoload_classmap.php 1 http://cdn3.homs.co.ke//autoload_classmap.php /good.php 1 http://cdn3.homs.co.ke//good.php /xml.php 2 http://cdn3.homs.co.ke//xml.php /ngoi.php 1 - /ALFA_DATA/alfacgiapi/perl.alfa 1 www.google.com /vuln1.php 1 - /3x.php 1 http://cdn3.homs.co.ke//3x.php /wso.php 2 http://cdn3.homs.co.ke//wso.php /image/screenshot_1.php 1 http://cdn3.homs.co.ke//image/screenshot_1.php /vip.php 1 - /wp-admin/includes/logs.php 4 www.google.com /utchiha.php 1 http://cdn3.homs.co.ke//utchiha.php /wp-content/vuln.php 1 - /xl.php 2 http://cdn3.homs.co.ke//xl.php /xmlrp.php 1 - /.x.php 1 - /evil.php 1 - /cache.php 1 - /wikindex.php 2 http://cdn3.homs.co.ke//wikindex.php /ini.php 1 http://cdn3.homs.co.ke//ini.php /wp-admin/upl.php 1 - /wp-includes/1index.php 1 http://cdn3.homs.co.ke//wp-includes/1index.php /.well-known/acme-challenge/atomlib.php 4 www.google.com /wp-2018.php 1 http://cdn3.homs.co.ke//wp-2018.php /update.php 1 - /uka.php 1 - /wp-blog.php 1 http://cdn3.homs.co.ke//wp-blog.php /.well-known/pki-validation/atomlib.php 2 www.google.com /baindex.php 1 http://cdn3.homs.co.ke//baindex.php /C.php 1 http://cdn3.homs.co.ke//C.php /data.php 1 - /images/vuln.php 1 http://cdn3.homs.co.ke//images/vuln.php /js.php 1 - /wp-admin.php 1 - /global-protect/prelogin.esp 1 - /wp-content/plugins/upspy/con.php 1 - /log.php 1 - /1337.php 1 http://cdn3.homs.co.ke//1337.php /priv8.php 1 http://cdn3.homs.co.ke//priv8.php /feed.php 1 - /wp-content/themes/seotheme/mar.php 5 www.google.com /test.php 1 - /wp-info.php 1 http://cdn3.homs.co.ke//wp-info.php /wp-admin/fx.php 1 http://cdn3.homs.co.ke//wp-admin/fx.php /payout.php 1 http://cdn3.homs.co.ke//payout.php /01.php 1 http://cdn3.homs.co.ke//01.php /erorr.php 1 - /02.php 1 http://cdn3.homs.co.ke//02.php /xwxx.php 1 http://cdn3.homs.co.ke//xwxx.php /cmd.php 1 - /db.php 1 - /sendgrid.env 2 http://cdn3.homs.co.ke/sendgrid.env /backdoor.php 1 - /install.php 1 - /config.json 2 http://cdn3.homs.co.ke/config.json /.well-known/acme-challenge/Alfa.php 4 www.google.com /wp-admin/up.php 1 - /wp-content/plugins/instabuilder2/cache/plugins/moon.php 4 www.google.com /fw.php 1 http://cdn3.homs.co.ke//fw.php /mils.php 1 - /Deadcode1975xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php 1 http://cdn3.homs.co.ke//Deadcode1975xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php /uk.php 1 - /skins.php 1 - /mage.php 1 - /wp-admin/x.php 1 - /up.php 2 http://cdn3.homs.co.ke//up.php /uploads/xleet.php 1 http://cdn3.homs.co.ke//uploads/xleet.php /ws.php 1 - /wp-includes/embed-wp.php 4 www.google.com /reminder.php 1 http://cdn3.homs.co.ke//reminder.php /lufix.php 1 http://cdn3.homs.co.ke//lufix.php /marijuana.php 1 http://cdn3.homs.co.ke//marijuana.php /.index.php 1 - /wp-easy.php 1 http://cdn3.homs.co.ke//wp-easy.php /3index.php 1 http://cdn3.homs.co.ke//3index.php /wp-admin/wso.php 1 - /XxX.php 1 http://cdn3.homs.co.ke//XxX.php /media-admin.php 1 http://cdn3.homs.co.ke//media-admin.php /wp.php 1 http://cdn3.homs.co.ke//wp.php /wp_logx.php 1 http://cdn3.homs.co.ke//wp_logx.php /wp-content/plugins/seoplugins/db.php 4 www.google.com /vuln.php 1 - /.log.php 1 - /wp-admin/css/ 2 binance.com /Neko.php 1 - /wp-god.php 1 http://cdn3.homs.co.ke//wp-god.php /1index.php 2 http://cdn3.homs.co.ke//1index.php /wp-content/themes/seotheme/db.php 4 www.google.com END_SIDER_404 # Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit] # [Start date of last visit] and [Last page of last visit] are saved only if session is not finished # The 25 first Hits must be first (order not required for others) BEGIN_VISITOR 32 183.136.225.46 6 6 0 20230220070444 172.176.192.136 2 2 0 20230213001502 183.136.225.45 2 2 0 20230217175335 20.121.137.100 2 2 0 20230205155856 20.125.117.109 1 1 0 20230222161710 167.94.138.118 1 1 0 20230225235510 20.118.165.181 1 1 0 20230204073608 101.68.211.2 1 1 0 20230228174736 198.235.24.130 1 1 0 20230218032433 205.210.31.185 1 1 0 20230220224946 142.113.158.47 1 1 0 20230221062607 167.94.138.120 1 1 0 20230226234633 198.235.24.155 1 1 0 20230211015014 167.94.138.46 1 1 0 20230227061940 87.236.176.183 1 1 0 20230225124137 198.211.105.248 1 1 0 20230212033500 173.195.15.4 1 1 0 20230206164147 89.46.223.134 1 1 0 20230225201828 198.235.24.13 1 1 0 20230214201329 217.182.193.103 1 1 0 20230223144157 35.217.123.100 1 1 0 20230213115521 65.154.226.169 1 1 0 20230204091215 167.248.133.185 1 1 0 20230225225554 205.169.39.63 1 1 0 20230204094002 198.235.24.168 1 1 0 20230207113518 20.150.136.224 0 1 1361 4.233.135.237 0 3 4083 87.236.176.105 1 1 0 20230213093028 87.236.176.192 1 1 0 20230223055730 198.235.24.182 1 1 0 20230224220017 87.236.176.223 1 1 0 20230227221851 198.235.24.47 1 1 0 20230203081753 END_VISITOR # Date - Pages - Hits - Bandwidth - Visits BEGIN_DAY 22 20230202 3 3 0 1 20230203 1 1 0 1 20230204 4 4 0 4 20230205 1 1 0 1 20230206 1 1 0 1 20230207 1 1 0 1 20230211 1 1 0 1 20230212 1 1 0 1 20230213 4 4 0 3 20230214 1 3 2722 1 20230216 1 1 0 1 20230217 1 1 0 1 20230218 1 1 0 1 20230220 4 4 0 2 20230221 1 1 0 1 20230222 1 1 0 1 20230223 2 2 0 2 20230224 1 1 0 1 20230225 4 4 0 4 20230226 1 1 0 1 20230227 2 4 2722 2 20230228 1 1 0 1 END_DAY # Session range - Number of visits BEGIN_SESSION 3 0s-30s 31 5mn-15mn 1 2mn-5mn 1 END_SESSION # URL - Pages - Bandwidth - Entry - Exit # The 25 first Pages must be first (order not required for others) BEGIN_SIDER 3 / 36 0 31 31 // 1 0 1 1 /wp-content/index.php 1 0 1 1 END_SIDER