# Remote Address Threat Level Method Path Query String Headers Body Acceptable Timestamp Port Request Types Attack Types Analyse Request Other Requests by Actor CSV Dump
1 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-10-05 02:45:58.390909 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
2 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-10-02 19:20:52.194457 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
3 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-30 07:36:59.255865 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
4 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-28 00:50:34.684042 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
5 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-25 18:22:21.502366 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
6 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-23 10:43:14.702879 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
7 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-21 04:56:09.184647 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
8 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-18 17:18:17.490279 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
9 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-16 14:10:50.290805 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
10 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-14 05:40:58.523640 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
11 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-09-10 21:37:57.832195 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
12 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-08-10 20:32:17.284609 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
13 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-08-08 12:28:05.366253 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
14 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-08-01 10:12:53.060744 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
15 172.206.143.168 2 GET /autodiscover/autodiscover.json @foo.com/mapi/nspi/?=&Email=autodiscover/[email protected]
Header Value
Host 188.245.40.243:443
User-Agent Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36
Accept text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8
Connection close
Accept-Encoding gzip
Parameter Value
False 2024-07-30 12:29:42.234719 80
GRAB
SCAN
RECON
16 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-30 07:23:11.105179 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
17 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-28 05:25:10.923964 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
18 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-26 03:44:26.764968 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
19 172.206.143.168 3 POST /autodiscover/autodiscover.json
Header Value
Content-Type application/x-www-form-urlencoded
Content-Length 66
Host 188.245.40.243
User-Agent Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:128.0) Gecko/20100101 Firefox/128.0
Accept text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/png,image/svg+xml,*/*;q=0.8
Accept-Language en-US,en;q=0.5
Accept-Encoding gzip, deflate
Origin null
Connection close
Upgrade-Insecure-Requests 1
Sec-Fetch-Dest document
Sec-Fetch-Mode navigate
Sec-Fetch-Site cross-site
Sec-Fetch-User ?1
Priority u=0, i
Parameter Value
False 2024-07-25 05:37:04.764724 80
GRAB
SCAN
RECON
20 172.206.143.168 3 POST /autodiscover/autodiscover.json
Header Value
Content-Type application/x-www-form-urlencoded
Content-Length 66
Host 188.245.40.243
User-Agent Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:128.0) Gecko/20100101 Firefox/128.0
Accept text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/png,image/svg+xml,*/*;q=0.8
Accept-Language en-US,en;q=0.5
Accept-Encoding gzip, deflate
Origin null
Connection close
Upgrade-Insecure-Requests 1
Sec-Fetch-Dest document
Sec-Fetch-Mode navigate
Sec-Fetch-Site cross-site
Sec-Fetch-User ?1
Priority u=0, i
Parameter Value
False 2024-07-25 05:34:09.015946 80
GRAB
SCAN
RECON
21 172.206.143.168 3 POST /autodiscover/autodiscover.json
Header Value
Content-Type application/x-www-form-urlencoded
Content-Length 66
Host 188.245.40.243
Connection keep-alive
Cache-Control max-age=0
Sec-Ch-Ua "Not/A)Brand";v="8", "Chromium";v="126", "Google Chrome";v="126"
Sec-Ch-Ua-Mobile ?0
Sec-Ch-Ua-Platform "macOS"
Dnt 1
Upgrade-Insecure-Requests 1
User-Agent Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
Origin null
Accept text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
Sec-Fetch-Site cross-site
Sec-Fetch-Mode navigate
Sec-Fetch-User ?1
Sec-Fetch-Dest document
Accept-Encoding gzip, deflate, br, zstd
Accept-Language en-GB,en-US;q=0.9,en;q=0.8,ta;q=0.7
Parameter Value
False 2024-07-25 05:34:01.987213 80
GRAB
SCAN
RECON
22 172.206.143.168 3 POST /autodiscover/autodiscover.json
Header Value
Content-Type application/x-www-form-urlencoded
Content-Length 66
Host 188.245.40.243
Connection keep-alive
Cache-Control max-age=0
Sec-Ch-Ua "Not/A)Brand";v="8", "Chromium";v="126", "Google Chrome";v="126"
Sec-Ch-Ua-Mobile ?0
Sec-Ch-Ua-Platform "macOS"
Dnt 1
Upgrade-Insecure-Requests 1
User-Agent Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
Origin null
Accept text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
Sec-Fetch-Site cross-site
Sec-Fetch-Mode navigate
Sec-Fetch-User ?1
Sec-Fetch-Dest document
Accept-Encoding gzip, deflate, br, zstd
Accept-Language en-GB,en-US;q=0.9,en;q=0.8,ta;q=0.7
Parameter Value
False 2024-07-25 05:34:01.984810 80
GRAB
SCAN
RECON
23 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-24 06:52:09.230167 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
24 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-22 04:22:37.301460 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
25 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-20 02:29:59.218142 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
26 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-15 18:06:17.120407 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
27 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-13 17:02:27.946583 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
28 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-11 14:14:32.288041 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
29 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-09 12:02:55.401435 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
30 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-07 09:56:33.826358 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
31 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-05 07:03:36.112386 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
32 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-03 04:05:24.991364 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
33 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-01 00:31:58.801924 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
34 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-06-28 17:25:16.926425 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
35 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-06-28 13:06:00.173536 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI
36 172.206.143.168 6 GET /autodiscover/autodiscover.json @zdi/Powershell=
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-06-26 07:23:15.567798 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
RCE
LFI