nginx 1.16.0
tcp/443
The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31f3e1b683f3e1b68306eeb477
Apache Status Apache Server Status for xn--80aeshfq1a7bxd.xn--p1acf (via 127.0.0.1) Server Version: Apache/2.4.10 (Debian) mpm-itk/2.4.7-02 OpenSSL/1.0.1t Server MPM: prefork Server Built: Sep 30 2019 19:32:08 Current Time: Tuesday, 12-Mar-2024 20:47:41 MSK Restart Time: Tuesday, 12-Mar-2024 19:11:50 MSK Parent Server Config. Generation: 10 Parent Server MPM Generation: 9 Server uptime: 1 hour 35 minutes 50 seconds Server load: 10.85 10.62 10.58 Total accesses: 25100 - Total Traffic: 924.7 MB CPU Usage: u2.59 s.95 cu0 cs0 - .0616% CPU load 4.37 requests/sec - 164.7 kB/second - 37.7 kB/request 3 requests currently being processed, 3 idle workers _WW__.W......................................................... ................................................................ ............ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-9266370/17/2599_ 0.050550.00.1256.53 216.244.66.237idpol.ru:8080GET /files/images/goods/parquet_Tarkett_SalsaArt_TouchOfGrey.jp 1-9266380/24/2740W 0.00000.00.30111.30 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 2-9266340/19/2410W 0.00000.00.12108.54 139.59.132.8xn--80aeshfq1a7bxd.xn--p1acf:80GET /server-status HTTP/1.0 3-9266860/11/2701_ 0.00010.00.05174.24 139.59.132.8xn--80aeshfq1a7bxd.xn--p1acf:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 4-9266350/15/2441_ 0.00010.00.0845.48 159.89.12.166xn--80aeshfq1a7bxd.xn--p1acf:80GET /login.action HTTP/1.0 5-8-0/0/2198. 0.54186430.00.0080.52 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 6-9266360/18/1896W 0.00000.00.18102.96 37.140.192.234sredneuralskbibl.ru:8080POST /wp-login.php HTTP/1.0 7-8-0/0/2492. 1.199100.00.00109.40 89.113.153.63xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 8-8-0/0/1966. 0.67187720.00.0036.45 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 9-8-0/0/1136. 0.0022700.00.0055.96 66.249.79.167xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 10-8-0/0/1140. 0.56176620.00.0017.96 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 11-8-0/0/694. 0.531640850.00.0014.09 194.147.50.365mirov.com:8080POST /wp-admin/admin-ajax.php HTTP/1.0 12-8-0/0/687. 0.00183990.00.0011.22 52.167.144.218diadema.su:8080GET /jewelry-catalog/brand_atoll~aelita~delta~diamant~zlato~zol SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 0 miss Apache/2.4.10 (Debian) Server at xn--80aeshfq1a7bxd.xn--p1acf Port 80
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31f3e1b683f3e1b6831d996b6c
Apache Status Apache Server Status for xn--80aeshfq1a7bxd.xn--p1acf (via 127.0.0.1) Server Version: Apache/2.4.10 (Debian) mpm-itk/2.4.7-02 OpenSSL/1.0.1t Server MPM: prefork Server Built: Sep 30 2019 19:32:08 Current Time: Tuesday, 12-Mar-2024 20:47:44 MSK Restart Time: Tuesday, 12-Mar-2024 19:11:50 MSK Parent Server Config. Generation: 10 Parent Server MPM Generation: 9 Server uptime: 1 hour 35 minutes 54 seconds Server load: 10.85 10.62 10.58 Total accesses: 25148 - Total Traffic: 924.8 MB CPU Usage: u2.74 s1.15 cu0 cs0 - .0676% CPU load 4.37 requests/sec - 164.6 kB/second - 37.7 kB/request 5 requests currently being processed, 1 idle workers _WWWW.W......................................................... ................................................................ ............ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-9266370/27/2609_ 0.00020.00.1556.56 165.227.84.14xn--80aeshfq1a7bxd.xn--p1acf:80GET /server-status HTTP/1.0 1-9266380/36/2752W 0.00000.00.33111.34 95.108.213.116autounion-zapad.ru:8080GET /?yclid=7710547526903176844 HTTP/1.0 2-9266340/21/2412W 0.00300.00.12108.54 52.167.144.211abk-63.ru:8080GET /content/best-way-choose-dehumidifier-2 HTTP/1.0 3-9266860/22/2712W 0.15000.00.09174.28 142.93.0.66xn--80aeshfq1a7bxd.xn--p1acf:80GET /server-status HTTP/1.0 4-9266350/18/2444W 0.25000.00.1345.53 94.230.175.210volkswagen2.ru:8080POST /?ajax-request=jnews HTTP/1.0 5-8-0/0/2198. 0.54226430.00.0080.52 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 6-9266360/28/1906W 0.00000.00.20102.99 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 7-8-0/0/2492. 1.199500.00.00109.40 89.113.153.63xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 8-8-0/0/1966. 0.67227720.00.0036.45 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 9-8-0/0/1136. 0.0023100.00.0055.96 66.249.79.167xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 10-8-0/0/1140. 0.56216620.00.0017.96 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 11-8-0/0/694. 0.532040850.00.0014.09 194.147.50.365mirov.com:8080POST /wp-admin/admin-ajax.php HTTP/1.0 12-8-0/0/687. 0.00223990.00.0011.22 52.167.144.218diadema.su:8080GET /jewelry-catalog/brand_atoll~aelita~delta~diamant~zlato~zol SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 0 miss Apache/2.4.10 (Debian) Server at xn--80aeshfq1a7bxd.xn--p1acf Port 80
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31f3e1b683f3e1b683d9c81ec0
Apache Status Apache Server Status for xn--80aeshfq1a7bxd.xn--p1acf (via 127.0.0.1) Server Version: Apache/2.4.10 (Debian) mpm-itk/2.4.7-02 OpenSSL/1.0.1t Server MPM: prefork Server Built: Sep 30 2019 19:32:08 Current Time: Tuesday, 12-Mar-2024 20:47:40 MSK Restart Time: Tuesday, 12-Mar-2024 19:11:50 MSK Parent Server Config. Generation: 10 Parent Server MPM Generation: 9 Server uptime: 1 hour 35 minutes 50 seconds Server load: 10.85 10.62 10.58 Total accesses: 25096 - Total Traffic: 924.6 MB CPU Usage: u2.68 s1.07 cu0 cs0 - .0652% CPU load 4.36 requests/sec - 164.7 kB/second - 37.7 kB/request 2 requests currently being processed, 4 idle workers __W__.W......................................................... ................................................................ ............ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-9266370/16/2598_ 0.00020.00.1256.53 139.59.132.8xn--80aeshfq1a7bxd.xn--p1acf:80GET /debug/default/view?panel=config HTTP/1.0 1-9266380/24/2740_ 0.00010.00.30111.30 139.59.132.8xn--80aeshfq1a7bxd.xn--p1acf:80GET /v2/_catalog HTTP/1.0 2-9266340/18/2409W 0.00000.00.11108.54 159.89.12.166xn--80aeshfq1a7bxd.xn--p1acf:80GET /server-status HTTP/1.0 3-9266860/10/2700_ 0.00010.00.05174.24 159.89.12.166xn--80aeshfq1a7bxd.xn--p1acf:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 4-9266350/14/2440_ 0.2603690.00.0845.48 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 5-8-0/0/2198. 0.54186430.00.0080.52 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 6-9266360/18/1896W 0.00000.00.18102.96 37.140.192.234sredneuralskbibl.ru:8080POST /wp-login.php HTTP/1.0 7-8-0/0/2492. 1.199100.00.00109.40 89.113.153.63xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 8-8-0/0/1966. 0.67187720.00.0036.45 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 9-8-0/0/1136. 0.0022700.00.0055.96 66.249.79.167xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 10-8-0/0/1140. 0.56176620.00.0017.96 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 11-8-0/0/694. 0.531640850.00.0014.09 194.147.50.365mirov.com:8080POST /wp-admin/admin-ajax.php HTTP/1.0 12-8-0/0/687. 0.00183990.00.0011.22 52.167.144.218diadema.su:8080GET /jewelry-catalog/brand_atoll~aelita~delta~diamant~zlato~zol SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 0 miss Apache/2.4.10 (Debian) Server at xn--80aeshfq1a7bxd.xn--p1acf Port 80
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31f3e1b683f3e1b683ba47050f
Apache Status Apache Server Status for xn--80aeshfq1a7bxd.xn--p1acf (via 127.0.0.1) Server Version: Apache/2.4.10 (Debian) mpm-itk/2.4.7-02 OpenSSL/1.0.1t Server MPM: prefork Server Built: Sep 30 2019 19:32:08 Current Time: Tuesday, 12-Mar-2024 20:47:44 MSK Restart Time: Tuesday, 12-Mar-2024 19:11:50 MSK Parent Server Config. Generation: 10 Parent Server MPM Generation: 9 Server uptime: 1 hour 35 minutes 54 seconds Server load: 10.85 10.62 10.58 Total accesses: 25147 - Total Traffic: 924.8 MB CPU Usage: u2.74 s1.15 cu0 cs0 - .0676% CPU load 4.37 requests/sec - 164.6 kB/second - 37.7 kB/request 4 requests currently being processed, 2 idle workers WWW_W._......................................................... ................................................................ ............ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-9266370/26/2608W 0.00000.00.1456.56 165.227.84.14xn--80aeshfq1a7bxd.xn--p1acf:80GET /server-status HTTP/1.0 1-9266380/36/2752W 0.00000.00.33111.34 95.108.213.116autounion-zapad.ru:8080GET /?yclid=7710547526903176844 HTTP/1.0 2-9266340/21/2412W 0.00300.00.12108.54 52.167.144.211abk-63.ru:8080GET /content/best-way-choose-dehumidifier-2 HTTP/1.0 3-9266860/22/2712_ 0.1502530.00.09174.28 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 4-9266350/18/2444W 0.25000.00.1345.53 94.230.175.210volkswagen2.ru:8080POST /?ajax-request=jnews HTTP/1.0 5-8-0/0/2198. 0.54226430.00.0080.52 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 6-9266360/28/1906_ 0.00010.00.20102.99 142.93.0.66xn--80aeshfq1a7bxd.xn--p1acf:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 7-8-0/0/2492. 1.199500.00.00109.40 89.113.153.63xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 8-8-0/0/1966. 0.67227720.00.0036.45 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 9-8-0/0/1136. 0.0023100.00.0055.96 66.249.79.167xn--80adbmlupgek4a.xn--p1ai:808GET /wp-json/wp-statistics/v2/hit?wp_statistics_hit_rest=yes&tr 10-8-0/0/1140. 0.56216620.00.0017.96 20.55.96.141viempelgroup.ru:8080POST /wp-login.php HTTP/1.0 11-8-0/0/694. 0.532040850.00.0014.09 194.147.50.365mirov.com:8080POST /wp-admin/admin-ajax.php HTTP/1.0 12-8-0/0/687. 0.00223990.00.0011.22 52.167.144.218diadema.su:8080GET /jewelry-catalog/brand_atoll~aelita~delta~diamant~zlato~zol SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 0 miss Apache/2.4.10 (Debian) Server at xn--80aeshfq1a7bxd.xn--p1acf Port 80
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-26 19:48
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Thu, 26 Sep 2024 19:48:22 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/>; rel="https://api.w.org/" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/wp/v2/pages/7>; rel="alternate"; type="application/json" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/>; rel=shortlink
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-24 23:40
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Tue, 24 Sep 2024 23:40:56 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/>; rel="https://api.w.org/" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/wp/v2/pages/7>; rel="alternate"; type="application/json" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/>; rel=shortlink
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-16 07:14
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Mon, 16 Sep 2024 07:14:21 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/>; rel="https://api.w.org/" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/wp/v2/pages/7>; rel="alternate"; type="application/json" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/>; rel=shortlink
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-14 06:07
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Sat, 14 Sep 2024 06:07:33 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/>; rel="https://api.w.org/" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/wp/v2/pages/7>; rel="alternate"; type="application/json" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/>; rel=shortlink
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-12 09:38
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Thu, 12 Sep 2024 09:38:34 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/>; rel="https://api.w.org/" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/wp-json/wp/v2/pages/7>; rel="alternate"; type="application/json" Link: <https://xn--80aeshfq1a7bxd.xn--p1acf/>; rel=shortlink
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-10 13:44
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Tue, 10 Sep 2024 13:44:41 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Cache-Control: max-age=3, must-revalidate
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-09-08 07:42
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Sun, 08 Sep 2024 07:42:38 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Cache-Control: max-age=3, must-revalidate
Open service 90.156.128.162:443 · xn--80aeshfq1a7bxd.xn--p1acf
2024-08-18 09:42
HTTP/1.1 200 OK Server: nginx/1.16.0 Date: Sun, 18 Aug 2024 09:42:12 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding,Cookie Cache-Control: max-age=3, must-revalidate