OwlCyberSecurity - MANAGER
Edit File: awstats122025.akcpa.onebox.pk.txt
AWSTATS DATA FILE 7.9 (build 20230108) # If you remove this file, all statistics for date 202512 will be lost/reset. # Last config file used to build this data file was /home/oneboxpk/tmp/awstats/ssl/awstats.akcpa.onebox.pk.conf. # Position (offset in bytes) in this file for beginning of each section for # direct I/O access. If you made changes somewhere in this file, you should # also remove completely the MAP section (AWStats will rewrite it at next # update). BEGIN_MAP 28 POS_GENERAL 2050 POS_TIME 2734 POS_VISITOR 9016 POS_DAY 12299 POS_DOMAIN 3757 POS_LOGIN 4148 POS_ROBOT 4303 POS_WORMS 4704 POS_EMAILSENDER 4835 POS_EMAILRECEIVER 4978 POS_SESSION 12740 POS_FILESIZE 13307 POS_SIDER 12940 POS_FILETYPES 5113 POS_DOWNLOADS 5212 POS_OS 5260 POS_BROWSER 5543 POS_SCREENSIZE 6700 POS_UNKNOWNREFERER 6774 POS_UNKNOWNREFERERBROWSER 7473 POS_ORIGIN 7867 POS_SEREFERRALS 8003 POS_PAGEREFS 8166 POS_SEARCHWORDS 8314 POS_KEYWORDS 8466 POS_MISC 2396 POS_ERRORS 8525 POS_CLUSTER 4004 POS_SIDER_404 8682 END_MAP # LastLine = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value # FirstTime = Date of first visit for history file # LastTime = Date of last visit for history file # LastUpdate = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped # TotalVisits = Number of visits # TotalUnique = Number of unique visitors # MonthHostsKnown = Number of hosts known # MonthHostsUnKnown = Number of hosts unknown BEGIN_GENERAL 8 LastLine 20260101000000 127215 110860527 60709893472523 FirstTime 0 LastTime 20251231222009 LastUpdate 20260101150116 127215 3 127211 0 0 TotalVisits 99 TotalUnique 84 MonthHostsKnown 0 MonthHostsUnknown 84 END_GENERAL # Misc ID - Pages - Hits - Bandwidth BEGIN_MISC 10 WindowsMediaPlayerSupport 0 0 0 TotalMisc 0 0 0 RealPlayerSupport 0 0 0 FlashSupport 0 0 0 QuickTimeSupport 0 0 0 DirectorSupport 0 0 0 PDFSupport 0 0 0 JavascriptDisabled 0 0 0 JavaEnabled 0 0 0 AddToFavourites 0 299 0 END_MISC # Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth BEGIN_TIME 24 0 2 2 4115 225379 225606 4684184159 1 0 0 0 219002 219185 4495989017 2 14 14 12966 213843 214050 4767572440 3 0 0 0 215224 215438 4592007481 4 2 2 2468 221638 221845 4431591590 5 17 17 20480 210551 210742 4446514508 6 9 9 13629 219995 220190 4711167399 7 2 2 2468 223097 223296 4682178155 8 74 74 72712 226368 226608 4655544078 9 5 5 8300 226038 226231 5036164444 10 1 1 2040 226654 226850 5311443278 11 67 67 101517 230408 230662 4848927549 12 0 0 0 225628 225835 5365294327 13 3 3 4150 232690 232877 5061290592 14 3 3 6225 224330 224530 5238390350 15 1 1 2075 233233 233448 5415428230 16 5 5 6190 233467 233681 5749085786 17 21 21 23490 231449 231666 5267248130 18 5 5 8300 230643 230850 5241817726 19 11 11 12892 230105 230349 5183372553 20 10 10 14390 226031 226257 4866023900 21 1 1 2075 227053 227265 4759417020 22 8 8 10205 224016 224240 4679301234 23 21 21 25600 214598 214785 4619863520 END_TIME # Domain - Pages - Hits - Bandwidth # The 25 first Pages must be first (order not required for others) BEGIN_DOMAIN 13 us 124 124 171115 gb 37 37 42590 cl 33 33 33153 be 24 24 34786 in 20 20 24018 ru 17 17 21239 cz 16 16 17046 lt 4 4 1179 ca 3 3 4543 co 1 1 2075 de 1 1 393 ma 1 1 2075 nl 1 1 2075 END_DOMAIN # Cluster ID - Pages - Hits - Bandwidth BEGIN_CLUSTER 0 END_CLUSTER # Login - Pages - Hits - Bandwidth - Last visit # The 10 first Pages must be first (order not required for others) BEGIN_LOGIN 0 END_LOGIN # Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt # The 25 first Hits must be first (order not required for others) BEGIN_ROBOT 7 bot[\s_+:,\.\;\/\\-] 5356326 117832175438 20251231235959 117 robot 102 32334 20251231194756 102 Go\-http\-client/ 23 14285 20251225223111 5 curl 5 10340 20251231204739 0 no_user_agent 3 6225 20251222081937 0 crawl 2 4150 20251221140410 0 unknown 2 634 20251226221144 2 END_ROBOT # Worm ID - Hits - Bandwidth - Last visit # The 5 first Hits must be first (order not required for others) BEGIN_WORMS 0 END_WORMS # EMail - Hits - Bandwidth - Last visit # The 20 first Hits must be first (order not required for others) BEGIN_EMAILSENDER 0 END_EMAILSENDER # EMail - Hits - Bandwidth - Last visit # The 20 first hits must be first (order not required for others) BEGIN_EMAILRECEIVER 0 END_EMAILRECEIVER # Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression BEGIN_FILETYPES 2 html 278 354944 0 0 php 4 1343 0 0 END_FILETYPES # Downloads - Hits - Bandwidth BEGIN_DOWNLOADS 0 END_DOWNLOADS # OS ID - Hits BEGIN_OS ID - Hits - Pages 15 android12 17 17 androidoreo 1 1 win10 68 68 linux 27 27 macosx15 32 32 android13 4 4 android10 33 33 androidcupcake 1 1 ios_iphone 19 19 win7 12 12 win11 1 1 androidkitkat 1 1 androidpie 1 1 android 3 3 Unknown 62 62 END_OS # Browser ID - Hits - Pages BEGIN_BROWSER 57 chrome142.0.0.0 15 15 chrome60.0.3112.113 11 11 safari16.5.1 1 1 chrome71.0.3578.98 1 1 chrome90.0.4430.85 2 2 chrome126.0.0.0 2 2 chrome125.0.0.0 9 9 chrome136.0.0.0 1 1 chrome72.0.3626.105 1 1 firefox142.0 1 1 safari26.66 4 4 chrome91.0.4472.124 2 2 chrome104.0.5112.79 1 1 chrome106.0.0.0 1 1 netscape5.0 6 6 chrome133.0.0.0 1 1 safari16.0 2 2 chrome143.0.0.0 6 6 chrome140.0.0.0 3 3 chrome112.0.0.0 3 3 chrome30.0.1599.103 1 1 safari26.0 1 1 chrome104.0.5112.101 4 4 firefox144.0 1 1 chrome116.0.0.0 13 13 chrome140.0.7339.110 6 6 firefox121.0 1 1 safari18.4 3 3 chrome120.0.0.0 3 3 chrome104.0.0.0 1 1 chrome141.0.0.0 7 7 mozilla 49 49 msie10.0 12 12 chrome134.0.0.0 19 19 chrome137.0.0.0 1 1 safari17.3 8 8 chrome121.0.0.0 1 1 chrome109.0.0.0 4 4 safari 4 4 chrome124.0.0.0 2 2 android 1 1 chrome139.0.0.0 5 5 firefox119.0 1 1 chrome73.0.3683.86 1 1 chrome76.0.3809.111 1 1 chrome58.0.3029.110 1 1 safari17.0.1 1 1 firefox145.0 3 3 firefox124.0 2 2 chrome117.0.0.0 17 17 chrome140.0.7339.112 17 17 chrome138.0.0.0 1 1 chrome108.0.0.0 1 1 safari18.0 4 4 Unknown 7 7 safari15.0 4 4 chrome119.0.0.0 1 1 END_BROWSER # Screen size - Hits BEGIN_SCREENSIZE 0 END_SCREENSIZE # Unknown referer OS - Last visit date BEGIN_UNKNOWNREFERER 9 Mozilla/5.0_(l9scan/2.0.0323e2634323e20363e27333;__https://leakix.net) 20251222082011 python-requests/2.32.5 20251221173802 python-requests/2.32.3 20251224161144 Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20251230045408 Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20251231222009 Mozilla/5.0 20251228201056 python-requests/2.32.4 20251204084134 Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20251224142332 Python/3.14_aiohttp/3.13.2 20251203003353 END_UNKNOWNREFERER # Unknown referer Browser - Last visit date BEGIN_UNKNOWNREFERERBROWSER 5 python-requests/2.32.3 20251224161144 python-requests/2.32.5 20251221173802 Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20251230045408 Python/3.14_aiohttp/3.13.2 20251203003353 python-requests/2.32.4 20251204084134 END_UNKNOWNREFERERBROWSER # Origin - Pages - Hits BEGIN_ORIGIN 6 From0 220 220 From1 1 1 From2 2 2 From3 0 0 From4 59 59 From5 0 0 END_ORIGIN # Search engine referers ID - Pages - Hits BEGIN_SEREFERRALS 1 www_google_com 2 2 END_SEREFERRALS # External page referers - Pages - Hits # The 25 first Pages must be first (order not required for others) BEGIN_PAGEREFS 0 END_PAGEREFS # Search keyphrases - Number of search # The 10 first number of search must be first (order not required for others) BEGIN_SEARCHWORDS 0 END_SEARCHWORDS # Search keywords - Number of search # The 25 first number of search must be first (order not required for others) BEGIN_KEYWORDS 0 END_KEYWORDS # Errors - Hits - Bandwidth BEGIN_ERRORS 6 404 27 9545 500 38329 275604034 403 1307 458174 502 4 600 301 56 15788 400 1 248 END_ERRORS # URL with 404 errors - Hits - Last URL referrer BEGIN_SIDER_404 2 /plugins/.env 1 - / 26 - END_SIDER_404 # Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit] # [Start date of last visit] and [Last page of last visit] are saved only if session is not finished # The 25 first Hits must be first (order not required for others) BEGIN_VISITOR 84 193.105.73.213 23 23 32746 20251225110552 31.6.58.50 21 21 19926 20251223110620 181.214.218.71 18 18 25576 20251225110537 79.127.224.162 16 16 17046 20251229021253 154.28.229.154 9 9 8742 20251223233626 154.28.229.93 9 9 8742 20251223173316 181.214.218.56 9 9 5219 20251222085953 185.132.187.24 9 9 7635 20251222083926 103.4.251.188 9 9 8742 20251223190340 199.45.155.69 7 7 8164 20251223110611 162.142.125.119 7 7 8165 20251221234536 167.94.138.45 7 7 8165 20251230202941 199.45.154.138 7 7 8165 20251231222009 199.45.154.154 7 7 8165 20251229051041 167.94.138.197 6 6 6090 20251229050929 181.214.218.34 6 6 2358 20251229021356 128.90.145.142 6 6 8877 20251223110545 66.132.153.129 6 6 6090 20251230170150 146.70.123.103 6 6 5304 20251222083625 170.205.30.32 4 4 3219 20251204084134 13.209.26.79 3 3 6225 20251224075412 209.38.29.70 3 3 4150 20251219134914 149.22.90.217 3 3 4334 20251223110543 170.64.167.148 3 3 4150 20251218182445 170.64.129.112 3 3 4150 20251219053900 3.27.228.221 1 1 2075 20251223163126 164.92.123.167 1 1 2040 20251204105043 204.76.203.25 1 1 2040 20251202164250 159.223.170.32 1 1 2075 20251227063434 87.236.176.234 1 1 2040 20251204115917 192.241.133.102 1 1 2075 20251228061018 3.67.195.103 1 1 184 20251222083640 31.6.58.158 2 2 4150 20251224110916 185.132.187.152 2 2 2836 20251229021302 18.171.163.169 1 1 2040 20251201220828 159.89.187.43 1 1 2075 20251224171025 198.235.24.205 1 1 2075 20251230045408 13.115.99.100 1 1 2075 20251228091445 195.178.110.54 2 2 4150 20251228182033 157.230.19.140 2 2 4150 20251222082010 3.34.1.50 1 1 2075 20251223204118 164.90.241.135 2 2 2468 20251222083231 46.101.202.111 1 1 2075 20251225065642 31.6.58.185 2 2 4150 20251225110045 51.81.245.138 1 1 2075 20251222081935 3.127.232.221 1 1 2075 20251228093214 149.22.90.228 2 2 4150 20251224110633 41.140.202.252 1 1 2075 20251225231408 49.13.211.144 2 2 786 20251222083234 45.148.10.99 2 2 4150 20251228201056 167.71.99.99 1 1 2075 20251218185649 185.247.137.69 1 1 2075 20251224142332 146.70.176.248 1 1 2075 20251225110129 181.62.205.12 1 1 2075 20251225231408 146.70.185.32 1 1 0 20251222093426 91.224.92.150 2 2 393 20251221173803 195.40.88.243 1 1 393 20251222083222 131.186.47.110 1 1 2040 20251203003353 161.35.156.194 1 1 2075 20251222175707 103.4.251.104 1 1 2075 20251223233558 167.99.187.92 1 1 2075 20251223053234 103.4.250.218 1 1 2075 20251223173250 45.87.212.75 2 2 2835 20251222083427 34.221.21.250 2 2 4150 20251223142336 45.131.155.101 1 1 2075 20251225194135 77.90.185.12 1 1 393 20251230060445 185.169.4.152 1 1 393 20251220073212 103.4.250.120 1 1 2075 20251223190334 54.208.67.139 1 1 2075 20251221230710 91.224.92.24 2 2 786 20251204041936 195.40.88.229 1 1 2442 20251222083437 45.130.203.152 1 1 0 20251224161144 54.252.131.222 1 1 2075 20251229001042 184.151.190.194 1 1 393 20251229021255 45.130.203.178 1 1 0 20251224161144 146.70.123.106 1 1 2075 20251224110631 35.180.113.105 1 1 2075 20251223200659 52.37.217.213 1 1 2075 20251223063043 185.177.72.8 2 2 4150 20251226093844 13.250.114.239 1 1 2075 20251228153619 54.164.74.93 2 2 4150 20251224023531 143.244.168.161 2 2 4150 20251222082011 3.112.27.81 1 1 2075 20251218163125 45.131.155.103 1 1 2040 20251203171007 END_VISITOR # Date - Pages - Hits - Bandwidth - Visits BEGIN_DAY 18 20251201 1 1 2040 1 20251202 1 1 2040 1 20251203 3 3 4473 3 20251204 7 7 7692 5 20251218 5 5 8300 3 20251219 6 6 8300 2 20251220 1 1 393 1 20251221 10 10 10633 3 20251222 74 74 72354 18 20251223 55 55 70401 18 20251224 14 14 24900 12 20251225 46 46 71902 9 20251226 2 2 4150 2 20251227 1 1 2075 1 20251228 8 8 16600 8 20251229 26 26 25146 7 20251230 15 15 16723 4 20251231 7 7 8165 1 END_DAY # Session range - Number of visits BEGIN_SESSION 6 0s-30s 77 30mn-1h 1 30s-2mn 8 5mn-15mn 6 15mn-30mn 1 2mn-5mn 6 END_SESSION # URL - Pages - Bandwidth - Entry - Exit # The 25 first Pages must be first (order not required for others) BEGIN_SIDER 12 / 131 257055 80 64 /7889e/ 32 12576 3 3 /wp-admin/ 27 10611 9 7 /d19b7f/ 21 51297 3 3 /e4e358/ 21 8253 1 7 /wp-content/ 18 7074 0 4 /trmcos.html 14 2576 2 6 /wp-includes/ 14 5502 1 4 /wp-admin/mah.php 1 393 0 0 /wp-includes/mah.php 1 164 0 1 /wp-admin/index.php 1 393 0 0 /wp-includes/index.php 1 393 0 0 END_SIDER # Payload Range - Payload Frequency BEGIN_FILESIZE 6 100-500 1781 5K+ 3948066 1K-2K 939501 500-1K 772 2K-5K 506607 0-44 41 END_FILESIZE