Returning 10 result(s) out of 2,283 in 0.070 second(s)

  • 50.175.212.73:389 (udp/unknown) - last seen on 2024-11-07 at 05:33:24 UTC

    • IP
      50.175.212.73
      Network
      50.175.192.0/18
      Device

      <enterprise field>: device.class

      ASN
      AS7922
      Organization
      COMCAST-7922
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      b88711d8a6d0b2c3c536c681153f4671
    • 0\x84\x00\x00\x00-\x02\x01\x07c\x84\x00\x00\x00x04\x00
      \x01\x00
      \x01\x00\x02\x01\x00\x02\x01d\x01\x01\x00\x87\x0bobjectClass0\x84\x00\x00\x00\x00
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T05:33:24.000Z",
         "app" : {
            "length" : "52"
         },
         "asn" : "AS7922",
         "city" : "Oakland",
         "country" : "US",
         "data" : "0\\x84\\x00\\x00\\x00-\\x02\\x01\\x07c\\x84\\x00\\x00\\x00x04\\x00\n\\x01\\x00\n\\x01\\x00\\x02\\x01\\x00\\x02\\x01d\\x01\\x01\\x00\\x87\\x0bobjectClass0\\x84\\x00\\x00\\x00\\x00",
         "datamd5" : "b88711d8a6d0b2c3c536c681153f4671",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS7922",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "SFBA-CCS-1",
            "organization" : "Comcast Cable Communications, LLC",
            "subnet" : "50.175.212.0/23"
         },
         "ip" : "50.175.212.73",
         "ipv6" : "false",
         "latitude" : "37.8107",
         "location" : "37.8107,-122.2479",
         "longitude" : "-122.2479",
         "organization" : "COMCAST-7922",
         "port" : "389",
         "protocol" : "unknown",
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subnet" : "50.175.192.0/18",
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 192.121.162.136:389 (udp/unknown) - last seen on 2024-11-07 at 05:10:16 UTC

    • IP
      192.121.162.136
      Network
      192.121.162.0/24
      Domain(s)
      192.in-addr.arpa
      Device

      <enterprise field>: device.class

      Reverse DNS
      136.162.121.192.in-addr.arpa
      ASN
      AS9009
      Organization
      M247 Europe SRL
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      0e928d0d861ac9cf86c1014461c1d883
    • 0\x84\x00\x00\x0b=\x02\x01\x01d\x84\x00\x00\x0b4\x04\x000\x84\x00\x00\x0b,0\x84\x00\x00\x00&\x04\x0bcurrentTime1\x84\x00\x00\x00\x13\x04\x1120170722003128.0Z0\x84\x00\x00\x00W\x04\x11subschemaSubentry1\x84\x00\x00\x00>\x04<CN=Aggregate,CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00\x82\x04\x0ddsServiceName1\x84\x00\x00\x00m\x04kCN=NTDS Settings,CN=AD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00\xd4\x04\x0enamingContexts1\x84\x00\x00\x00\xbe\x04\x14DC=ntou,DC=edu,DC=tw\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw\x04&DC=DomainDnsZones,DC=ntou,DC=edu,DC=tw\x04&DC=ForestDnsZones,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x002\x04\x14defaultNamingContext1\x84\x00\x00\x00\x16\x04\x14DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00L\x04\x13schemaNamingContext1\x84\x00\x00\x001\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00I\x04\x1aconfigurationNamingContext1\x84\x00\x00\x00'\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x005\x04\x17rootDomainNamingContext1\x84\x00\x00\x00\x16\x04\x14DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x03\xa9\x04\x10supportedControl1\x84\x00\x00\x03\x91\x04\x161.2.840.113556.1.4.319\x04\x161.2.840.113556.1.4.801\x04\x161.2.840.113556.1.4.473\x04\x161.2.840.113556.1.4.528\x04\x161.2.840.113556.1.4.417\x04\x161.2.840.113556.1.4.619\x04\x161.2.840.113556.1.4.841\x04\x161.2.840.113556.1.4.529\x04\x161.2.840.113556.1.4.805\x04\x161.2.840.113556.1.4.521\x04\x161.2.840.113556.1.4.970\x04\x171.2.840.113556.1.4.1338\x04\x161.2.840.113556.1.4.474\x04\x171.2.840.113556.1.4.1339\x04\x171.2.840.113556.1.4.1340\x04\x171.2.840.113556.1.4.1413\x04\x172.16.840.1.113730.3.4.9\x04\x182.16.840.1.113730.3.4.10\x04\x171.2.840.113556.1.4.1504\x04\x171.2.840.113556.1.4.1852\x04\x161.2.840.113556.1.4.802\x04\x171.2.840.113556.1.4.1907\x04\x171.2.840.113556.1.4.1948\x04\x171.2.840.113556.1.4.1974\x04\x171.2.840.113556.1.4.1341\x04\x171.2.840.113556.1.4.2026\x04\x171.2.840.56.1
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T05:10:16.000Z",
         "app" : {
            "length" : "1472"
         },
         "asn" : "AS9009",
         "city" : "Tokyo",
         "country" : "JP",
         "data" : "0\\x84\\x00\\x00\\x0b=\\x02\\x01\\x01d\\x84\\x00\\x00\\x0b4\\x04\\x000\\x84\\x00\\x00\\x0b,0\\x84\\x00\\x00\\x00&\\x04\\x0bcurrentTime1\\x84\\x00\\x00\\x00\\x13\\x04\\x1120170722003128.0Z0\\x84\\x00\\x00\\x00W\\x04\\x11subschemaSubentry1\\x84\\x00\\x00\\x00>\\x04<CN=Aggregate,CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00\\x82\\x04\\x0ddsServiceName1\\x84\\x00\\x00\\x00m\\x04kCN=NTDS Settings,CN=AD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00\\xd4\\x04\\x0enamingContexts1\\x84\\x00\\x00\\x00\\xbe\\x04\\x14DC=ntou,DC=edu,DC=tw\\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw\\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw\\x04&DC=DomainDnsZones,DC=ntou,DC=edu,DC=tw\\x04&DC=ForestDnsZones,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x002\\x04\\x14defaultNamingContext1\\x84\\x00\\x00\\x00\\x16\\x04\\x14DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00L\\x04\\x13schemaNamingContext1\\x84\\x00\\x00\\x001\\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00I\\x04\\x1aconfigurationNamingContext1\\x84\\x00\\x00\\x00'\\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x005\\x04\\x17rootDomainNamingContext1\\x84\\x00\\x00\\x00\\x16\\x04\\x14DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x03\\xa9\\x04\\x10supportedControl1\\x84\\x00\\x00\\x03\\x91\\x04\\x161.2.840.113556.1.4.319\\x04\\x161.2.840.113556.1.4.801\\x04\\x161.2.840.113556.1.4.473\\x04\\x161.2.840.113556.1.4.528\\x04\\x161.2.840.113556.1.4.417\\x04\\x161.2.840.113556.1.4.619\\x04\\x161.2.840.113556.1.4.841\\x04\\x161.2.840.113556.1.4.529\\x04\\x161.2.840.113556.1.4.805\\x04\\x161.2.840.113556.1.4.521\\x04\\x161.2.840.113556.1.4.970\\x04\\x171.2.840.113556.1.4.1338\\x04\\x161.2.840.113556.1.4.474\\x04\\x171.2.840.113556.1.4.1339\\x04\\x171.2.840.113556.1.4.1340\\x04\\x171.2.840.113556.1.4.1413\\x04\\x172.16.840.1.113730.3.4.9\\x04\\x182.16.840.1.113730.3.4.10\\x04\\x171.2.840.113556.1.4.1504\\x04\\x171.2.840.113556.1.4.1852\\x04\\x161.2.840.113556.1.4.802\\x04\\x171.2.840.113556.1.4.1907\\x04\\x171.2.840.113556.1.4.1948\\x04\\x171.2.840.113556.1.4.1974\\x04\\x171.2.840.113556.1.4.1341\\x04\\x171.2.840.113556.1.4.2026\\x04\\x171.2.840.56.1",
         "datamd5" : "0e928d0d861ac9cf86c1014461c1d883",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "192.in-addr.arpa"
         ],
         "host" : [
            "136"
         ],
         "hostname" : [
            "136.162.121.192.in-addr.arpa"
         ],
         "ip" : "192.121.162.136",
         "ipv6" : "false",
         "latitude" : "35.6164",
         "location" : "35.6164,139.7425",
         "longitude" : "139.7425",
         "organization" : "M247 Europe SRL",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "136.162.121.192.in-addr.arpa"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "162.121.192.in-addr.arpa",
            "121.192.in-addr.arpa"
         ],
         "subnet" : "192.121.162.0/24",
         "tld" : [
            "in-addr.arpa"
         ],
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 116.206.91.15:389 (udp/snmp) - last seen on 2024-11-07 at 05:00:32 UTC

    • IP
      116.206.91.15
      Network
      116.206.88.0/22
      Device

      <enterprise field>: device.class <enterprise field>: device.productvendor

      Operating System
      Mikrotik RouterOS
      ASN
      AS133866
      Organization
      U-Turn Technologies
      Protocol
      snmp
      Source
      udpscan
    • Operating System
      Mikrotik RouterOS
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      689af7b6647cb4e077b5a71930cd1086
    • 0@\x02\x01\x00\x04\x06public\xa23\x02\x04f\xb1j^\x02\x01\x00\x02\x01\x000%0#\x06\x08+\x06\x01\x02\x01\x01\x01\x00\x04\x17RouterOS CCR1072-1G-8S+
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T05:00:32.000Z",
         "app" : {
            "length" : "66"
         },
         "asn" : "AS133866",
         "city" : "Dhaka",
         "country" : "BD",
         "data" : "0@\\x02\\x01\\x00\\x04\\x06public\\xa23\\x02\\x04f\\xb1j^\\x02\\x01\\x00\\x02\\x01\\x000%0#\\x06\\x08+\\x06\\x01\\x02\\x01\\x01\\x01\\x00\\x04\\x17RouterOS CCR1072-1G-8S+",
         "datamd5" : "689af7b6647cb4e077b5a71930cd1086",
         "device" : {
            "class" : "<enterprise field>: device.class",
            "productvendor" : "<enterprise field>: device.productvendor"
         },
         "geolocus" : {
            "asn" : "AS133866",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "BD",
            "countryname" : "Bangladesh",
            "isineu" : "false",
            "latitude" : "23.684994",
            "location" : "23.684994,90.356331",
            "longitude" : "90.356331",
            "netname" : "UTURN-BD",
            "organization" : "MD MONIR UZ ZAMAN UL MULK",
            "subnet" : "116.206.88.0/22"
         },
         "ip" : "116.206.91.15",
         "ipv6" : "false",
         "latitude" : "23.7731",
         "location" : "23.7731,90.3657",
         "longitude" : "90.3657",
         "organization" : "U-Turn Technologies",
         "os" : "RouterOS",
         "osvendor" : "Mikrotik",
         "port" : "389",
         "protocol" : "snmp",
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subnet" : "116.206.88.0/22",
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 3.101.91.254:389 (udp/unknown) - last seen on 2024-11-07 at 04:52:29 UTC

    • IP
      3.101.91.254
      Network
      3.101.0.0/16
      Domain(s)
      amazonaws.com
      Device

      <enterprise field>: device.class

      Reverse DNS
      ec2-3-101-91-254.us-west-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      45984fd9437e4844594f858cfdd79ebd
    • Access Forbidden\x0d
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:52:29.000Z",
         "app" : {
            "length" : "18"
         },
         "asn" : "AS16509",
         "city" : "San Jose",
         "country" : "US",
         "data" : "Access Forbidden\\x0d\n",
         "datamd5" : "45984fd9437e4844594f858cfdd79ebd",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com"
         ],
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AMAZON-SFO",
            "organization" : "Amazon.com, Inc.",
            "subnet" : "3.101.0.0/16"
         },
         "host" : [
            "ec2-3-101-91-254"
         ],
         "hostname" : [
            "ec2-3-101-91-254.us-west-1.compute.amazonaws.com"
         ],
         "ip" : "3.101.91.254",
         "ipv6" : "false",
         "latitude" : "37.1835",
         "location" : "37.1835,-121.7714",
         "longitude" : "-121.7714",
         "organization" : "AMAZON-02",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "ec2-3-101-91-254.us-west-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "us-west-1.compute.amazonaws.com",
            "compute.amazonaws.com"
         ],
         "subnet" : "3.101.0.0/16",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 114.29.236.92:389 (udp/unknown) - last seen on 2024-11-07 at 04:52:01 UTC

    • IP
      114.29.236.92
      Network
      114.29.236.0/22
      Device

      <enterprise field>: device.class

      ASN
      AS64022
      Organization
      Kamatera, Inc.
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      0e928d0d861ac9cf86c1014461c1d883
    • 0\x84\x00\x00\x0b=\x02\x01\x01d\x84\x00\x00\x0b4\x04\x000\x84\x00\x00\x0b,0\x84\x00\x00\x00&\x04\x0bcurrentTime1\x84\x00\x00\x00\x13\x04\x1120170722003128.0Z0\x84\x00\x00\x00W\x04\x11subschemaSubentry1\x84\x00\x00\x00>\x04<CN=Aggregate,CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00\x82\x04\x0ddsServiceName1\x84\x00\x00\x00m\x04kCN=NTDS Settings,CN=AD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00\xd4\x04\x0enamingContexts1\x84\x00\x00\x00\xbe\x04\x14DC=ntou,DC=edu,DC=tw\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw\x04&DC=DomainDnsZones,DC=ntou,DC=edu,DC=tw\x04&DC=ForestDnsZones,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x002\x04\x14defaultNamingContext1\x84\x00\x00\x00\x16\x04\x14DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00L\x04\x13schemaNamingContext1\x84\x00\x00\x001\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00I\x04\x1aconfigurationNamingContext1\x84\x00\x00\x00'\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x005\x04\x17rootDomainNamingContext1\x84\x00\x00\x00\x16\x04\x14DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x03\xa9\x04\x10supportedControl1\x84\x00\x00\x03\x91\x04\x161.2.840.113556.1.4.319\x04\x161.2.840.113556.1.4.801\x04\x161.2.840.113556.1.4.473\x04\x161.2.840.113556.1.4.528\x04\x161.2.840.113556.1.4.417\x04\x161.2.840.113556.1.4.619\x04\x161.2.840.113556.1.4.841\x04\x161.2.840.113556.1.4.529\x04\x161.2.840.113556.1.4.805\x04\x161.2.840.113556.1.4.521\x04\x161.2.840.113556.1.4.970\x04\x171.2.840.113556.1.4.1338\x04\x161.2.840.113556.1.4.474\x04\x171.2.840.113556.1.4.1339\x04\x171.2.840.113556.1.4.1340\x04\x171.2.840.113556.1.4.1413\x04\x172.16.840.1.113730.3.4.9\x04\x182.16.840.1.113730.3.4.10\x04\x171.2.840.113556.1.4.1504\x04\x171.2.840.113556.1.4.1852\x04\x161.2.840.113556.1.4.802\x04\x171.2.840.113556.1.4.1907\x04\x171.2.840.113556.1.4.1948\x04\x171.2.840.113556.1.4.1974\x04\x171.2.840.113556.1.4.1341\x04\x171.2.840.113556.1.4.2026\x04\x171.2.840.56.1
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:52:01.000Z",
         "app" : {
            "length" : "1472"
         },
         "asn" : "AS64022",
         "city" : "Hong Kong",
         "country" : "HK",
         "data" : "0\\x84\\x00\\x00\\x0b=\\x02\\x01\\x01d\\x84\\x00\\x00\\x0b4\\x04\\x000\\x84\\x00\\x00\\x0b,0\\x84\\x00\\x00\\x00&\\x04\\x0bcurrentTime1\\x84\\x00\\x00\\x00\\x13\\x04\\x1120170722003128.0Z0\\x84\\x00\\x00\\x00W\\x04\\x11subschemaSubentry1\\x84\\x00\\x00\\x00>\\x04<CN=Aggregate,CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00\\x82\\x04\\x0ddsServiceName1\\x84\\x00\\x00\\x00m\\x04kCN=NTDS Settings,CN=AD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00\\xd4\\x04\\x0enamingContexts1\\x84\\x00\\x00\\x00\\xbe\\x04\\x14DC=ntou,DC=edu,DC=tw\\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw\\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw\\x04&DC=DomainDnsZones,DC=ntou,DC=edu,DC=tw\\x04&DC=ForestDnsZones,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x002\\x04\\x14defaultNamingContext1\\x84\\x00\\x00\\x00\\x16\\x04\\x14DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00L\\x04\\x13schemaNamingContext1\\x84\\x00\\x00\\x001\\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00I\\x04\\x1aconfigurationNamingContext1\\x84\\x00\\x00\\x00'\\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x005\\x04\\x17rootDomainNamingContext1\\x84\\x00\\x00\\x00\\x16\\x04\\x14DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x03\\xa9\\x04\\x10supportedControl1\\x84\\x00\\x00\\x03\\x91\\x04\\x161.2.840.113556.1.4.319\\x04\\x161.2.840.113556.1.4.801\\x04\\x161.2.840.113556.1.4.473\\x04\\x161.2.840.113556.1.4.528\\x04\\x161.2.840.113556.1.4.417\\x04\\x161.2.840.113556.1.4.619\\x04\\x161.2.840.113556.1.4.841\\x04\\x161.2.840.113556.1.4.529\\x04\\x161.2.840.113556.1.4.805\\x04\\x161.2.840.113556.1.4.521\\x04\\x161.2.840.113556.1.4.970\\x04\\x171.2.840.113556.1.4.1338\\x04\\x161.2.840.113556.1.4.474\\x04\\x171.2.840.113556.1.4.1339\\x04\\x171.2.840.113556.1.4.1340\\x04\\x171.2.840.113556.1.4.1413\\x04\\x172.16.840.1.113730.3.4.9\\x04\\x182.16.840.1.113730.3.4.10\\x04\\x171.2.840.113556.1.4.1504\\x04\\x171.2.840.113556.1.4.1852\\x04\\x161.2.840.113556.1.4.802\\x04\\x171.2.840.113556.1.4.1907\\x04\\x171.2.840.113556.1.4.1948\\x04\\x171.2.840.113556.1.4.1974\\x04\\x171.2.840.113556.1.4.1341\\x04\\x171.2.840.113556.1.4.2026\\x04\\x171.2.840.56.1",
         "datamd5" : "0e928d0d861ac9cf86c1014461c1d883",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS64022",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "HK",
            "countryname" : "Hong Kong",
            "isineu" : "false",
            "latitude" : "22.396428",
            "location" : "22.396428,114.109497",
            "longitude" : "114.109497",
            "netname" : "CloudWebManage_HK",
            "organization" : "CLOUDWEBMANAGE-HK",
            "subnet" : "114.29.236.0/24"
         },
         "ip" : "114.29.236.92",
         "ipv6" : "false",
         "latitude" : "22.2842",
         "location" : "22.2842,114.1759",
         "longitude" : "114.1759",
         "organization" : "Kamatera, Inc.",
         "port" : "389",
         "protocol" : "unknown",
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subnet" : "114.29.236.0/22",
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 43.204.142.37:389 (udp/unknown) - last seen on 2024-11-07 at 04:50:25 UTC

    • IP
      43.204.142.37
      Network
      43.200.0.0/13
      Domain(s)
      amazonaws.com
      Device

      <enterprise field>: device.class

      Reverse DNS
      ec2-43-204-142-37.ap-south-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      45984fd9437e4844594f858cfdd79ebd
    • Access Forbidden\x0d
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:50:25.000Z",
         "app" : {
            "length" : "18"
         },
         "asn" : "AS16509",
         "city" : "Mumbai",
         "country" : "IN",
         "data" : "Access Forbidden\\x0d\n",
         "datamd5" : "45984fd9437e4844594f858cfdd79ebd",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com"
         ],
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AMAZON-AS-AP",
            "organization" : "Amazon.com, Inc.",
            "subnet" : "43.204.0.0/15"
         },
         "host" : [
            "ec2-43-204-142-37"
         ],
         "hostname" : [
            "ec2-43-204-142-37.ap-south-1.compute.amazonaws.com"
         ],
         "ip" : "43.204.142.37",
         "ipv6" : "false",
         "latitude" : "19.0748",
         "location" : "19.0748,72.8856",
         "longitude" : "72.8856",
         "organization" : "AMAZON-02",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "ec2-43-204-142-37.ap-south-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "ap-south-1.compute.amazonaws.com",
            "compute.amazonaws.com"
         ],
         "subnet" : "43.200.0.0/13",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 172.232.42.19:389 (udp/unknown) - last seen on 2024-11-07 at 04:30:54 UTC

    • IP
      172.232.42.19
      Network
      172.232.0.0/18
      Domain(s)
      linodeusercontent.com
      Device

      <enterprise field>: device.class

      Reverse DNS
      172-232-42-19.ip.linodeusercontent.com
      ASN
      AS63949
      Organization
      Akamai Connected Cloud
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      0e928d0d861ac9cf86c1014461c1d883
    • 0\x84\x00\x00\x0b=\x02\x01\x01d\x84\x00\x00\x0b4\x04\x000\x84\x00\x00\x0b,0\x84\x00\x00\x00&\x04\x0bcurrentTime1\x84\x00\x00\x00\x13\x04\x1120170722003128.0Z0\x84\x00\x00\x00W\x04\x11subschemaSubentry1\x84\x00\x00\x00>\x04<CN=Aggregate,CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00\x82\x04\x0ddsServiceName1\x84\x00\x00\x00m\x04kCN=NTDS Settings,CN=AD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00\xd4\x04\x0enamingContexts1\x84\x00\x00\x00\xbe\x04\x14DC=ntou,DC=edu,DC=tw\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw\x04&DC=DomainDnsZones,DC=ntou,DC=edu,DC=tw\x04&DC=ForestDnsZones,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x002\x04\x14defaultNamingContext1\x84\x00\x00\x00\x16\x04\x14DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00L\x04\x13schemaNamingContext1\x84\x00\x00\x001\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x00I\x04\x1aconfigurationNamingContext1\x84\x00\x00\x00'\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x005\x04\x17rootDomainNamingContext1\x84\x00\x00\x00\x16\x04\x14DC=ntou,DC=edu,DC=tw0\x84\x00\x00\x03\xa9\x04\x10supportedControl1\x84\x00\x00\x03\x91\x04\x161.2.840.113556.1.4.319\x04\x161.2.840.113556.1.4.801\x04\x161.2.840.113556.1.4.473\x04\x161.2.840.113556.1.4.528\x04\x161.2.840.113556.1.4.417\x04\x161.2.840.113556.1.4.619\x04\x161.2.840.113556.1.4.841\x04\x161.2.840.113556.1.4.529\x04\x161.2.840.113556.1.4.805\x04\x161.2.840.113556.1.4.521\x04\x161.2.840.113556.1.4.970\x04\x171.2.840.113556.1.4.1338\x04\x161.2.840.113556.1.4.474\x04\x171.2.840.113556.1.4.1339\x04\x171.2.840.113556.1.4.1340\x04\x171.2.840.113556.1.4.1413\x04\x172.16.840.1.113730.3.4.9\x04\x182.16.840.1.113730.3.4.10\x04\x171.2.840.113556.1.4.1504\x04\x171.2.840.113556.1.4.1852\x04\x161.2.840.113556.1.4.802\x04\x171.2.840.113556.1.4.1907\x04\x171.2.840.113556.1.4.1948\x04\x171.2.840.113556.1.4.1974\x04\x171.2.840.113556.1.4.1341\x04\x171.2.840.113556.1.4.2026\x04\x171.2.840.56.1
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:30:54.000Z",
         "app" : {
            "length" : "1472"
         },
         "asn" : "AS63949",
         "city" : "Paris",
         "country" : "FR",
         "data" : "0\\x84\\x00\\x00\\x0b=\\x02\\x01\\x01d\\x84\\x00\\x00\\x0b4\\x04\\x000\\x84\\x00\\x00\\x0b,0\\x84\\x00\\x00\\x00&\\x04\\x0bcurrentTime1\\x84\\x00\\x00\\x00\\x13\\x04\\x1120170722003128.0Z0\\x84\\x00\\x00\\x00W\\x04\\x11subschemaSubentry1\\x84\\x00\\x00\\x00>\\x04<CN=Aggregate,CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00\\x82\\x04\\x0ddsServiceName1\\x84\\x00\\x00\\x00m\\x04kCN=NTDS Settings,CN=AD,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00\\xd4\\x04\\x0enamingContexts1\\x84\\x00\\x00\\x00\\xbe\\x04\\x14DC=ntou,DC=edu,DC=tw\\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw\\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw\\x04&DC=DomainDnsZones,DC=ntou,DC=edu,DC=tw\\x04&DC=ForestDnsZones,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x002\\x04\\x14defaultNamingContext1\\x84\\x00\\x00\\x00\\x16\\x04\\x14DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00L\\x04\\x13schemaNamingContext1\\x84\\x00\\x00\\x001\\x04/CN=Schema,CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x00I\\x04\\x1aconfigurationNamingContext1\\x84\\x00\\x00\\x00'\\x04%CN=Configuration,DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x005\\x04\\x17rootDomainNamingContext1\\x84\\x00\\x00\\x00\\x16\\x04\\x14DC=ntou,DC=edu,DC=tw0\\x84\\x00\\x00\\x03\\xa9\\x04\\x10supportedControl1\\x84\\x00\\x00\\x03\\x91\\x04\\x161.2.840.113556.1.4.319\\x04\\x161.2.840.113556.1.4.801\\x04\\x161.2.840.113556.1.4.473\\x04\\x161.2.840.113556.1.4.528\\x04\\x161.2.840.113556.1.4.417\\x04\\x161.2.840.113556.1.4.619\\x04\\x161.2.840.113556.1.4.841\\x04\\x161.2.840.113556.1.4.529\\x04\\x161.2.840.113556.1.4.805\\x04\\x161.2.840.113556.1.4.521\\x04\\x161.2.840.113556.1.4.970\\x04\\x171.2.840.113556.1.4.1338\\x04\\x161.2.840.113556.1.4.474\\x04\\x171.2.840.113556.1.4.1339\\x04\\x171.2.840.113556.1.4.1340\\x04\\x171.2.840.113556.1.4.1413\\x04\\x172.16.840.1.113730.3.4.9\\x04\\x182.16.840.1.113730.3.4.10\\x04\\x171.2.840.113556.1.4.1504\\x04\\x171.2.840.113556.1.4.1852\\x04\\x161.2.840.113556.1.4.802\\x04\\x171.2.840.113556.1.4.1907\\x04\\x171.2.840.113556.1.4.1948\\x04\\x171.2.840.113556.1.4.1974\\x04\\x171.2.840.113556.1.4.1341\\x04\\x171.2.840.113556.1.4.2026\\x04\\x171.2.840.56.1",
         "datamd5" : "0e928d0d861ac9cf86c1014461c1d883",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "linodeusercontent.com"
         ],
         "geolocus" : {
            "asn" : "AS63949",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "LINODE",
            "organization" : "Linode",
            "subnet" : "172.232.32.0/19"
         },
         "host" : [
            "172-232-42-19"
         ],
         "hostname" : [
            "172-232-42-19.ip.linodeusercontent.com"
         ],
         "ip" : "172.232.42.19",
         "ipv6" : "false",
         "latitude" : "48.8323",
         "location" : "48.8323,2.4075",
         "longitude" : "2.4075",
         "organization" : "Akamai Connected Cloud",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "172-232-42-19.ip.linodeusercontent.com"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "ip.linodeusercontent.com"
         ],
         "subnet" : "172.232.0.0/18",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 34.243.216.161:389 (udp/unknown) - last seen on 2024-11-07 at 04:29:44 UTC

    • IP
      34.243.216.161
      Network
      34.240.0.0/12
      Domain(s)
      amazonaws.com
      Device

      <enterprise field>: device.class

      Reverse DNS
      ec2-34-243-216-161.eu-west-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      45984fd9437e4844594f858cfdd79ebd
    • Access Forbidden\x0d
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:29:44.000Z",
         "app" : {
            "length" : "18"
         },
         "asn" : "AS16509",
         "city" : "Dublin",
         "country" : "IE",
         "data" : "Access Forbidden\\x0d\n",
         "datamd5" : "45984fd9437e4844594f858cfdd79ebd",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com"
         ],
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "IE",
            "countryname" : "Ireland",
            "isineu" : "true",
            "latitude" : "53.41291",
            "location" : "53.41291,-8.24389",
            "longitude" : "-8.24389",
            "netname" : "AMAZON-DUB",
            "organization" : "Amazon Data Services Ireland Limited",
            "subnet" : "34.240.0.0/13"
         },
         "host" : [
            "ec2-34-243-216-161"
         ],
         "hostname" : [
            "ec2-34-243-216-161.eu-west-1.compute.amazonaws.com"
         ],
         "ip" : "34.243.216.161",
         "ipv6" : "false",
         "latitude" : "53.3379",
         "location" : "53.3379,-6.2591",
         "longitude" : "-6.2591",
         "organization" : "AMAZON-02",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "ec2-34-243-216-161.eu-west-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "compute.amazonaws.com",
            "eu-west-1.compute.amazonaws.com"
         ],
         "subnet" : "34.240.0.0/12",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 54.153.95.77:389 (udp/unknown) - last seen on 2024-11-07 at 04:28:18 UTC

    • IP
      54.153.95.77
      Network
      54.153.0.0/16
      Domain(s)
      amazonaws.com
      Device

      <enterprise field>: device.class

      Reverse DNS
      ec2-54-153-95-77.us-west-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      45984fd9437e4844594f858cfdd79ebd
    • Access Forbidden\x0d
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:28:18.000Z",
         "app" : {
            "length" : "18"
         },
         "asn" : "AS16509",
         "city" : "San Jose",
         "country" : "US",
         "data" : "Access Forbidden\\x0d\n",
         "datamd5" : "45984fd9437e4844594f858cfdd79ebd",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com"
         ],
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AMAZON",
            "organization" : "Amazon Technologies Inc.",
            "subnet" : "54.153.0.0/17"
         },
         "host" : [
            "ec2-54-153-95-77"
         ],
         "hostname" : [
            "ec2-54-153-95-77.us-west-1.compute.amazonaws.com"
         ],
         "ip" : "54.153.95.77",
         "ipv6" : "false",
         "latitude" : "37.1835",
         "location" : "37.1835,-121.7714",
         "longitude" : "-121.7714",
         "organization" : "AMAZON-02",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "ec2-54-153-95-77.us-west-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "compute.amazonaws.com",
            "us-west-1.compute.amazonaws.com"
         ],
         "subnet" : "54.153.0.0/16",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "udp"
      }
      
  • 3.26.39.208:389 (udp/unknown) - last seen on 2024-11-07 at 03:49:15 UTC

    • IP
      3.26.39.208
      Network
      3.16.0.0/12
      Domain(s)
      amazonaws.com
      Device

      <enterprise field>: device.class

      Reverse DNS
      ec2-3-26-39-208.ap-southeast-2.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      unknown
      Source
      udpscan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      45984fd9437e4844594f858cfdd79ebd
    • Access Forbidden\x0d
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T03:49:15.000Z",
         "app" : {
            "length" : "18"
         },
         "asn" : "AS16509",
         "city" : "Sydney",
         "country" : "AU",
         "data" : "Access Forbidden\\x0d\n",
         "datamd5" : "45984fd9437e4844594f858cfdd79ebd",
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com"
         ],
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "OC",
            "continentname" : "Oceania",
            "country" : "AU",
            "countryname" : "Australia",
            "isineu" : "false",
            "latitude" : "-25.274398",
            "location" : "-25.274398,133.775136",
            "longitude" : "133.775136",
            "netname" : "AMAZO-SYD",
            "organization" : "Amazon Corporate Services Pty Ltd",
            "subnet" : "3.24.0.0/14"
         },
         "host" : [
            "ec2-3-26-39-208"
         ],
         "hostname" : [
            "ec2-3-26-39-208.ap-southeast-2.compute.amazonaws.com"
         ],
         "ip" : "3.26.39.208",
         "ipv6" : "false",
         "latitude" : "-33.8715",
         "location" : "-33.8715,151.2006",
         "longitude" : "151.2006",
         "organization" : "AMAZON-02",
         "port" : "389",
         "protocol" : "unknown",
         "reverse" : [
            "ec2-3-26-39-208.ap-southeast-2.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "source" : "udpscan",
         "subdomains" : [
            "compute.amazonaws.com",
            "ap-southeast-2.compute.amazonaws.com"
         ],
         "subnet" : "3.16.0.0/12",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "udp"
      }