{"success":true,"ip":"112.167.228.78","family":"IPv4","data":{"open_ports":[{"port":80,"proto":"tcp","last_seen":"2026-06-18 05:19:48.000","service":"http"}],"banners":[{"port":80,"server_str":"Microsoft-IIS\/7.5","observed_at":"2026-06-18 05:20:40.240"}],"tls_certs":[],"co_hosted_domains":[],"external_refs":[{"ref_domain":"go.microsoft.com","source":"href","total":1}],"leak_candidates":[],"titles":[{"target":"112.167.228.78:80","title":"IIS7","status":200,"login_flag":0,"last_seen":"2026-06-18 05:20:40.240"}],"login_ports":[],"icmp_reachable":null,"tracking":{"first_seen":"2026-06-18 05:19:38.000","last_seen":"2026-06-18 05:19:48.000","observations":2},"techs":[],"ptr":null,"bgp":{"asn":4766,"as_name":"KT Corporation (Korea Telecom)","prefix":"112.160.0.0\/12","rpki_status":null,"observed_at":"2026-08-30 18:06:38","country_code":"KR","registry":"apnic","allocated":"1996-04-22","info_type":"Cable\/DSL\/ISP"},"allocation":{"registry":"apnic","country_code":"KR","status":"allocated","allocated_date":"20090210","start_ip":"112.160.0.0","block_size":2097152},"geo":{"country_code":"KR","country_name":"South Korea","continent_code":"AS"},"honeypot":null,"honeypot_recent":[],"honeypot_actor":null,"honeypot_ja":null,"honeypot_classes":[],"hosted_domains":[],"hosted_domains_count":0,"hosted_is_bulk":false,"cves":[{"cve_id":"CVE-2010-3972","cvss_score":10,"cvss_severity":"HIGH","description":"Heap-based buffer overflow in the TELNET_STREAM_CONTEXT::OnSendData function in ftpsvc.dll in Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) 7.0, and IIS 7.5, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted FTP command, aka \"IIS FTP Service Heap Buffer Overrun Vulnerability.\" NOTE: some of these details are obtained from third party information.","software":"Microsoft-IIS 7.5"},{"cve_id":"CVE-2010-2730","cvss_score":9.3,"cvss_severity":"HIGH","description":"Buffer overflow in Microsoft Internet Information Services (IIS) 7.5, when FastCGI is enabled, allows remote attackers to execute arbitrary code via crafted headers in a request, aka \"Request Header Buffer Overflow Vulnerability.\"","software":"Microsoft-IIS 7.5"},{"cve_id":"CVE-2010-1899","cvss_score":4.3,"cvss_severity":"MEDIUM","description":"Stack consumption vulnerability in the ASP implementation in Microsoft Internet Information Services (IIS) 5.1, 6.0, 7.0, and 7.5 allows remote attackers to cause a denial of service (daemon outage) via a crafted request, related to asp.dll, aka \"IIS Repeated Parameter Request Denial of Service Vulnerability.\"","software":"Microsoft-IIS 7.5"}],"probe_findings":[],"threat_matches":[],"threat_count":0}}