shell bypass 403

UnknownSec Shell

: /home/bouloter/tmp/awstats/ssl/ [ drwx------ ]

name : awstats082025.infix.bouloter.com.txt
AWSTATS DATA FILE 7.9 (build 20230108)
# If you remove this file, all statistics for date 202508 will be lost/reset.
# Last config file used to build this data file was /home/bouloter/tmp/awstats/ssl/awstats.infix.bouloter.com.conf.

# Position (offset in bytes) in this file for beginning of each section for
# direct I/O access. If you made changes somewhere in this file, you should
# also remove completely the MAP section (AWStats will rewrite it at next
# update).
BEGIN_MAP 28
POS_GENERAL 2053                
POS_TIME 2724                
POS_VISITOR 12855               
POS_DAY 14401               
POS_DOMAIN 3451                
POS_LOGIN 3782                
POS_ROBOT 3937                
POS_WORMS 4280                
POS_EMAILSENDER 4411                
POS_EMAILRECEIVER 4554                
POS_SESSION 14883               
POS_FILESIZE 15253               
POS_SIDER 15050               
POS_FILETYPES 4689                
POS_DOWNLOADS 4876                
POS_OS 4962                
POS_BROWSER 5275                
POS_SCREENSIZE 5937                
POS_UNKNOWNREFERER 6011                
POS_UNKNOWNREFERERBROWSER 6656                
POS_ORIGIN 6975                
POS_SEREFERRALS 7107                
POS_PAGEREFS 7251                
POS_SEARCHWORDS 7399                
POS_KEYWORDS 7551                
POS_MISC 2388                
POS_ERRORS 7610                
POS_CLUSTER 3638                
POS_SIDER_404 7759                
END_MAP

# LastLine    = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value
# FirstTime   = Date of first visit for history file
# LastTime    = Date of last visit for history file
# LastUpdate  = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped
# TotalVisits = Number of visits
# TotalUnique = Number of unique visitors
# MonthHostsKnown   = Number of hosts known
# MonthHostsUnKnown = Number of hosts unknown
BEGIN_GENERAL 8
LastLine 20250901062959 1 0 3659246303625
FirstTime 20250801081722
LastTime 20250831001659
LastUpdate 20250901203752 1 0 0 0 0
TotalVisits 37                  
TotalUnique 35                  
MonthHostsKnown 0                   
MonthHostsUnknown 37                  
END_GENERAL

# Misc ID - Pages - Hits - Bandwidth
BEGIN_MISC 10
PDFSupport 0 0 0
TotalMisc 0 0 0
QuickTimeSupport 0 0 0
JavascriptDisabled 0 0 0
DirectorSupport 0 0 0
WindowsMediaPlayerSupport 0 0 0
FlashSupport 0 0 0
AddToFavourites 0 0 0
RealPlayerSupport 0 0 0
JavaEnabled 0 0 0
END_MISC

# Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth
BEGIN_TIME 24
0 20 20 2382150 286 303 37872110
1 5 6 831090 43 52 5547745
2 4 6 599424 64 99 4106970
3 1 1 132624 1 6 584330
4 1 3 777398 5 13 1115480
5 0 0 0 0 4 390374
6 0 0 0 2 5 553177
7 1 1 132627 2 6 514255
8 5 6 1095473 2 5 352944
9 2 3 299646 8 13 1062112
10 3 4 432173 0 2 87295
11 2 5 682388 1 4 361695
12 2 2 213363 2 5 802180
13 0 0 0 0 3 289317
14 3 5 466745 52 53 4743162
15 4 20 406414 2 4 1242
16 4 6 1899340 103 116 13250321
17 4 5 962964 3 10 655184
18 0 0 0 21 24 2433170
19 2 3 299696 2 6 451770
20 2 2 265177 1 2 249462
21 0 0 0 2 5 397371
22 1 1 531386 15 18 1840448
23 2 2 265192 0 3 242833
END_TIME

# Domain - Pages - Hits - Bandwidth
# The 25 first Pages must be first (order not required for others)
BEGIN_DOMAIN 8
us 44 53 5796902
ru 11 29 2092122
ca 5 5 2654794
cn 3 7 1425279
zz 2 2 265197
gb 1 2 167134
be 1 2 167132
fi 1 1 106710
END_DOMAIN

# Cluster ID - Pages - Hits - Bandwidth
BEGIN_CLUSTER 0
END_CLUSTER

# Login - Pages - Hits - Bandwidth - Last visit
# The 10 first Pages must be first (order not required for others)
BEGIN_LOGIN 0
END_LOGIN

# Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt
# The 25 first Hits must be first (order not required for others)
BEGIN_ROBOT 5
bot[\s_+:,\.\;\/\\-] 73 3856984 20250812041706 0
Go\-http\-client/ 3 262144 20250815113819 0
(firefox/)([0-9]\.|[0-1][0]\.) 2 0 20250818151423 0
survey 2 456108 20250811141259 0
scrapy 2 265197 20250828120237 0
END_ROBOT

# Worm ID - Hits - Bandwidth - Last visit
# The 5 first Hits must be first (order not required for others)
BEGIN_WORMS 0
END_WORMS

# EMail - Hits - Bandwidth - Last visit
# The 20 first Hits must be first (order not required for others)
BEGIN_EMAILSENDER 0
END_EMAILSENDER

# EMail - Hits - Bandwidth - Last visit
# The 20 first hits must be first (order not required for others)
BEGIN_EMAILRECEIVER 0
END_EMAILRECEIVER

# Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression
BEGIN_FILETYPES 7
Unknown 6 5166 0 0
php 2 264253 0 0
png 14 483238 0 0
html 59 10092787 0 0
log 2 1261568 0 0
json 1 0 0 0
js 17 568258 0 0
END_FILETYPES

# Downloads - Hits - Bandwidth
BEGIN_DOWNLOADS 1
/storage/logs/laravel.log 2 0 1261568
END_DOWNLOADS

# OS ID - Hits
BEGIN_OS ID - Hits - Pages 18
win8.1 1 0
macosx8 1 0
androidcupcake 1 0
Unknown 35 26
macosx14 2 0
ios_ipad 1 0
macosx15 1 1
linux 10 4
androidnougat 20 20
win10 12 10
macosx7 1 0
androidpie 2 1
android10 1 1
win7 8 2
ios_iphone 1 1
android12 1 1
androidoreo 2 0
android11 1 1
END_OS

# Browser ID - Hits - Pages
BEGIN_BROWSER 30
chrome75.0.3770.80 1 0
firefox139.0 1 1
firefox40.0 1 0
chrome69.0.3497.100 1 0
chrome60.0.3112.107 20 20
chrome71.0.2623.112 2 2
chrome76.0.3809.111 3 1
Unknown 8 8
safari11.0 1 1
chrome104.0.0.0 2 2
chrome78.0.3904.62 1 1
chrome63.0.3239.132 4 0
chrome48.0.2564.116 1 0
chrome83.0.4086.0 1 1
chrome89.0 1 1
chrome139.0.0.0 6 3
chrome40.0.2214.89 1 0
chrome70.0.3538.113 1 0
mozilla 25 15
chrome70.0.3538.110 1 0
chrome101.0.4951.61 1 1
chrome70.0.3538.67 1 0
chrome91.0.4472.124 8 6
android 1 0
safari5.1 1 0
netscape5.0 3 3
chrome136.0.0.0 1 1
chrome75.0.3770.142 1 0
chrome100.0.4896.60 1 1
firefox21.0 1 0
END_BROWSER

# Screen size - Hits
BEGIN_SCREENSIZE 0
END_SCREENSIZE

# Unknown referer OS - Last visit date
BEGIN_UNKNOWNREFERER 7
Mozilla/5.0_zgrab/0.x 20250828195539
python-requests/2.32.4 20250821085537
Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20250829160042
Python/3.13_aiohttp/3.12.15 20250830231115
Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20250821082342
Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20250815020651
Mozilla/5.0_(compatible;_UGAResearchAgent/1.0;_Please_visit:_NISLabUGA.github.io) 20250810030232
END_UNKNOWNREFERER

# Unknown referer Browser - Last visit date
BEGIN_UNKNOWNREFERERBROWSER 3
python-requests/2.32.4 20250821085537
Hello_from_Palo_Alto_Networks,_find_out_more_about_our_scans_in_https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity 20250829160042
Python/3.13_aiohttp/3.12.15 20250830231115
END_UNKNOWNREFERERBROWSER

# Origin - Pages - Hits 
BEGIN_ORIGIN 6
From0 68 98
From1 0 0
From2 0 0
From3 0 0
From4 0 3
From5 0 0
END_ORIGIN

# Search engine referers ID - Pages - Hits
BEGIN_SEREFERRALS 0
END_SEREFERRALS

# External page referers - Pages - Hits
# The 25 first Pages must be first (order not required for others)
BEGIN_PAGEREFS 0
END_PAGEREFS

# Search keyphrases - Number of search
# The 10 first number of search must be first (order not required for others)
BEGIN_SEARCHWORDS 0
END_SEARCHWORDS

# Search keywords - Number of search
# The 25 first number of search must be first (order not required for others)
BEGIN_KEYWORDS 0
END_KEYWORDS

# Errors - Hits - Bandwidth
BEGIN_ERRORS 6
301 2 1590
405 12 6384
302 13 2311
404 604 73008275
403 37 45954
500 5 0
END_ERRORS

# URL with 404 errors - Hits - Last URL referrer
BEGIN_SIDER_404 234
/dump.sql 1 -
/server/s3.js 2 -
/phpinfo4.php 2 -
/docker-compose.dev.yml 2 -
/ocp.php 2 -
/aws-secret.yaml 2 -
/pi.php5 2 -
/sms.py 2 -
/apps/.env 6 -
/phpinfo.php4 2 -
/apache.php 2 -
/env.template 2 -
/dev/.env 1 -
/api/config/tsconfig.json 2 -
/.aws/config 2 -
/.travis.yml 3 -
/test_phpinfo.php 2 -
/aws/credentials 2 -
/dashboard/info.php 2 -
/vendor/file-manager/css/file-manager.css 1 -
/backup.zip 1 -
/test3.php 2 -
/token.php 2 -
/public/demo/file/1.txt 1 -
/.github/workflows 2 -
/web.php 2 -
/api/.env 7 -
/config/aws.json 2 -
/up.php 2 -
/aws.yml 2 -
/phpversion.php 2 -
/robots.txt 85 -
/test123.php 2 -
/public/frontend/infixlmstheme/fonts/fontawesome-webfont.svg 1 -
/i.php 2 -
/.env.local.php 1 -
/adminphp.php/configuration.php 2 -
/products/.gitlab-ci.yml 1 -
/phpinfo.php3 2 -
/application/.env 1 -
/terraform.tfstate.backup 1 -
/public/frontend/infixlmstheme/img/affiliate/dots.svg 1 -
/config/config.env 2 -
/infophp.php 4 -
/pinfo.php 2 -
/in.php 2 -
/public/frontend/infixlmstheme/img/affiliate/shape_img.svg 1 -
/index1.php 2 -
/of.php 2 -
/temp.php 2 -
/docker-compose.yml 2 -
/test8.php 2 -
/devs.php 2 -
/debug.log 1 -
/dashboard/test.php 2 -
/phpsysinfo.php 2 -
/webshell 1 -
/admin/info.php 2 -
/test_info.php 2 -
/wp-config.old 2 -
/shell 1 -
/helpers/utility.js 2 -
/~/.terraform.d/credentials.tfrc.json 1 -
/test1.php 2 -
/config/config.json 4 -
/test5.php 2 -
/phpsysinfo/info.php 2 -
/server/.env 2 -
/deploy.php 2 -
/terraform.tfstate 1 -
/wpp-config.php~ 2 -
/config.yml 2 -
/app/.env 7 -
/ini.php 2 -
/test_info5.php 2 -
/l.php 2 -
/terraform.tfvars 1 -
/config.yaml 2 -
/test_info2.php 2 -
/public/frontend/infixlmstheme/fonts/gijgo-material.svg 1 -
/symfony/_profiler/phpinfo 2 -
/.backup 1 -
/.env.bak 9 -
/db.sql 1 -
/dashboard/i.php 2 -
/wp.php 2 -
/phpinfo/info.php 2 -
/logs/app.log 1 -
/build.php 2 -
/test.php 2 -
/enhancecp 1 -
/.env.old 7 -
/config/parameters.php 1 -
/public/frontend/infixlmstheme/fonts/fontawesome-webfont.ttf 1 -
/.dockerignore 1 -
/.env.dev 2 -
/php.php 2 -
/phpinfo1.php 2 -
/test_info3.php 2 -
/apache/phpinfo.php 2 -
/dev.php 2 -
/test4.php 2 -
/.gitlab-ci.yml 2 -
/etc/caddy/Caddyfile 2 -
/o.php 2 -
/public/frontend/infixlmstheme/js/'+videoPopup.embedLink+' 1 -
/webshell.php 1 -
/info2.php 2 -
/wp-config.php.backup 2 -
/isadmin.php 2 -
/logs/debug.log 1 -
/cache.php 2 -
/sendgrid/.env 2 -
/php-info.php 2 -
/.idea/workspace.xml 2 -
/info.php 7 -
/docker-compose.prod.yml 2 -
/test0.php 2 -
/_profiler/phpinfo.php 5 -
/phpinfo3.php 2 -
/developer.php 2 -
/phpinfo.txt 2 -
/.git-credentials 2 -
/.env.production 2 -
/test2.php 3 -
/.DS_Store 1 -
/123.php 2 -
/apache/i.php 2 -
/tz.php 2 -
/secrets.json 2 -
/phpinfo 8 -
/info4.php 2 -
/qq.php 2 -
/time.php 2 -
/main.js 1 -
/testing.php 2 -
/q.php 2 -
/info 6 -
/php1.php 2 -
/x.php 2 -
/secrets.yml 2 -
/test6.php 2 -
/backend/.env 3 -
/jo.php 2 -
/.well-known/security.txt 3 -
/phpinfo.php 8 -
/config.js 2 -
/p.php 2 -
/linusadmin-phpinfo.php 2 -
/rest.php 2 -
/error.log 1 -
/info1.php 2 -
/phpinfo.html 2 -
/database.sql 1 -
/.vscode/settings.json 2 -
/php.ini 2 -
/a.php 2 -
/*.tfvars.json 1 -
/phpinfos.php 2 -
/php_info.php 3 -
/main.yml 2 -
/s3.js 2 -
/_profiler/phpinfo/info.php 2 -
/phpinfo2.php 2 -
/u.php 2 -
/.env.prod 6 -
/test_phpinfo1.php 2 -
/phptest.php 2 -
/.env.stage 7 -
/admin/phpinfo.php 2 -
/docker-compose.override.yml 2 -
/.env.test 2 -
/phpsysinfo/phpsysinfo.php 2 -
/pi.php 2 -
/w.php 2 -
/.env.save 1 -
/*.tfvars 1 -
/.docker/config.json 1 -
/test_info1.php 2 -
/.env.production.local 4 -
/storage/logs/error.log 1 -
/phpcustom_info/phpinfo.php 2 -
/php52/phpinfo.php 2 -
/.circleci/config.yml 1 -
/public/frontend/infixlmstheme/js/'+c[k.imageUrlField]+' 1 -
/.env.local 6 -
/.aws/credentials 6 -
/config/.env 2 -
/phpsysinfo 2 -
/dep.php 2 -
/application.properties 2 -
/config/aws.yml 4 -
/public/frontend/infixlmstheme/fonts/gijgo-material.ttf 1 -
/_profiler/phpinfo/phpinfo.php 2 -
/old_phpinfo.php 2 -
/public/frontend/infixlmstheme/fonts/Flaticon.svg 1 -
/shell.php 1 -
/test_phpinfo5.php 2 -
/lindex.php 2 -
/.phpinfo 2 -
/test1 2 -
/phpsysinfo/phpinfo.php 2 -
/phpinfodev.php 2 -
/test9.php 2 -
/phpinfo.php5 2 -
/phpinfo/phpinfo.php 2 -
/config.json 2 -
/test_phpinfo4.php 2 -
/public/frontend/infixlmstheme/fonts/Flaticon.ttf 1 -
/.env.example 8 -
/test_phpinfo3.php 2 -
/new.php 2 -
/admin/.env 8 -
/_profiler/phpinfo 10 -
/wp-config.php.bak 2 -
/tester.php 2 -
/apache/info.php 2 -
/.kube/config 1 -
/test_info4.php 2 -
/wp-config.txt 2 -
/settings.py 2 -
/credentials.json 2 -
/test7.php 2 -
/vendor/laravel-filemanager/css/lfm.css 1 -
/inf.php 2 -
/apache2.php 2 -
/asdf.php 2 -
/dashboard/phpinfo.php 2 -
/.env.development 2 -
/infos.php 2 -
/backup.tar.gz 1 -
/info3.php 2 -
/main.php 2 -
/test_phpinfo2.php 2 -
END_SIDER_404

# Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit]
# [Start date of last visit] and [Last page of last visit] are saved only if session is not finished
# The 25 first Hits must be first (order not required for others)
BEGIN_VISITOR 37
40.81.16.66 20 20 2382150 20250831001706
206.168.34.202 2 3 299646 20250813092258
185.177.72.46 2 2 265177 20250801205842
185.177.72.179 2 2 48 20250811011030
162.142.125.215 2 3 299762 20250815020651
199.45.154.127 2 3 299669 20250805172329
199.45.155.73 2 3 299650 20250813103325
167.94.145.109 2 4 334180 20250809140346
206.168.34.81 2 3 299656 20250804012452
18.224.192.118 2 2 265134 20250828195539
134.175.247.134 2 2 265197 20250802170346
195.178.110.75 2 17 132570 20250818151423
185.177.72.106 2 4 1262048 20250813161250
185.177.72.58 2 2 265192 20250830231115
165.22.223.90 2 2 265142 20250821085540
68.183.87.227 1 1 132523 20250826101001
87.236.176.106 1 1 132615 20250806192434
205.210.31.96 1 1 531386 20250802011244
138.197.98.45 1 1 106618 20250818162122
198.235.24.235 1 1 530674 20250829160042
206.189.183.63 1 2 167086 20250812020851
167.172.184.52 1 2 167134 20250825111617
115.231.78.12 1 3 515254 20250815113819
44.202.35.195 1 1 106653 20250802121324
198.235.24.122 1 1 531386 20250804220620
185.247.137.216 0 1 34517 
81.29.134.51 1 1 106710 20250830152511
205.210.31.78 1 1 530674 20250801081722
128.192.12.102 1 1 132624 20250810030232
3.146.111.124 1 1 132565 20250809141306
115.231.78.8 1 3 777398 20250813044854
198.235.24.216 1 1 530674 20250805173954
185.247.137.197 1 1 132570 20250821082337
147.182.215.222 1 2 167134 20250811152652
124.222.209.139 1 1 132627 20250805070750
44.204.60.32 1 1 106710 20250802121325
87.236.176.114 0 1 34517 
END_VISITOR

# Date - Pages - Hits - Bandwidth - Visits
BEGIN_DAY 19
20250801 3 3 795851 2
20250802 5 5 1009946 5
20250804 3 4 831042 2
20250805 4 5 962970 3
20250806 1 2 167132 1
20250809 3 5 466745 2
20250810 1 1 132624 1
20250811 3 4 167182 2
20250812 1 2 167086 1
20250813 7 13 2638742 4
20250815 4 7 947586 3
20250818 3 18 239188 2
20250821 3 4 432229 2
20250825 1 2 167134 1
20250826 1 1 132523 1
20250828 1 1 132564 1
20250829 1 1 530674 1
20250830 3 3 371902 2
20250831 20 20 2382150 1
END_DAY

# Session range - Number of visits
BEGIN_SESSION 3
30s-2mn 5
2mn-5mn 1
0s-30s 31
END_SESSION

# URL - Pages - Bandwidth - Entry - Exit
# The 25 first Pages must be first (order not required for others)
BEGIN_SIDER 6
/ 59 10092787 34 34
/test 2 48 1 1
/.gitignore 2 480 1 1
/login 2 4638 1 0
/index.php 2 264253 0 0
//infix.bouloter.com/manifest.json 1 0 0 1
END_SIDER

# Payload Range - Payload Frequency
BEGIN_FILESIZE 6
500-1K 18
2K-5K 13
1K-2K 62
5K+ 724
0-44 26
100-500 19
END_FILESIZE

© 2025 UnknownSec
afwwrfwafr45458465
Password