# Remote Address Threat Level Method Path Query String Headers Body Acceptable Timestamp Port Request Types Attack Types Analyse Request Other Requests by Actor CSV Dump
1 52.160.33.137 5 GET /owa/auth/logon.aspx
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-08-10 06:40:41.728855 80
SCAN
ATTACK
MULTIPLE
2 52.160.33.137 5 GET /owa/auth/x.js
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Cookie X-AnonResource=true; X-AnonResource-Backend=localhost/ecp/default.flt?~3; X-BEResource=localhost/owa/auth/logon.aspx?~3;
Accept-Encoding gzip
Parameter Value
False 2024-07-21 23:20:26.950079 80
SCAN
ATTACK
GRAB
RECON
MULTIPLE
3 52.160.33.137 5 GET /owa/auth/logon.aspx
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-19 17:41:27.322179 80
SCAN
ATTACK
MULTIPLE
4 52.160.33.137 5 GET /owa/auth/logon.aspx
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-07-05 22:25:39.812966 80
SCAN
ATTACK
MULTIPLE
5 52.160.33.137 5 GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application
Header Value
Host 188.245.40.243
User-Agent Mozilla/5.0 zgrab/0.x
Accept */*
Accept-Encoding gzip
Parameter Value
False 2024-06-26 10:47:07.022643 80
SCAN
ATTACK
MULTIPLE