Returning 10 result(s) out of 44 in 0.113 second(s)

  • 15.237.60.249:1337 (tcp/http/tls) - last seen on 2024-11-07 at 05:40:32 UTC

    • IP
      15.237.60.249
      Network
      15.236.0.0/15
      Domain(s)
      prototype-future-manufacturing.com
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://15.237.60.249:1337/ 200

      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      vpn.prototype-future-manufacturing.com
      Subject Common Name
      vpn.prototype-future-manufacturing.com
      SHA256 Fingerprint
      e9512971890664d4886623cdc8ccf8991f86888019eb727838747071c76e92f5
      Validity Not Before
      2024-11-07T05:12:17Z
      Validity Not After
      2026-11-07T05:12:17Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Thu, 07 Nov 2024 05:40:32 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T05:40:32.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : 1736757148
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Paris",
         "country" : "FR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Thu, 07 Nov 2024 05:40:32 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "prototype-future-manufacturing.com"
         ],
         "fingerprint" : {
            "md5" : "16e9654f07966dafec5f4f925466008d",
            "sha1" : "8d4654e27f337ce3c69e26b451c580493cef2f7a",
            "sha256" : "e9512971890664d4886623cdc8ccf8991f86888019eb727838747071c76e92f5"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "FR",
            "countryname" : "France",
            "domain" : [
               "amazon.com",
               "amazonaws.com"
            ],
            "isineu" : "true",
            "latitude" : "46.227638",
            "location" : "46.227638,2.213749",
            "longitude" : "2.213749",
            "netname" : "AMAZON-CDG",
            "organization" : "Amazon Data Services France",
            "subnet" : "15.236.0.0/15"
         },
         "host" : [
            "vpn"
         ],
         "hostname" : [
            "vpn.prototype-future-manufacturing.com"
         ],
         "ip" : "15.237.60.249",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "vpn.prototype-future-manufacturing.com"
         },
         "latitude" : "48.8323",
         "location" : "48.8323,2.4075",
         "longitude" : "2.4075",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "seen_date" : "2024-11-07",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subject" : {
            "commonname" : "vpn.prototype-future-manufacturing.com"
         },
         "subnet" : "15.236.0.0/15",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-07T05:12:17Z",
            "notbefore" : "2024-11-07T05:12:17Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 54.176.114.130:1337 (tcp/http/tls) - last seen on 2024-11-07 at 04:39:00 UTC

    • IP
      54.176.114.130
      Network
      54.176.0.0/14
      Domain(s)
      amazonaws.com electric-future.ua
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://54.176.114.130:1337/ 200

      Reverse DNS
      ec2-54-176-114-130.us-west-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      prototype.heating.electric-future.ua
      Subject Common Name
      prototype.heating.electric-future.ua
      SHA256 Fingerprint
      c3b8ffcf8db011b3f48f48a0e8c22a335592deae856612a279f5db1f5830f675
      Validity Not Before
      2024-11-07T04:22:29Z
      Validity Not After
      2026-11-07T04:22:29Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Thu, 07 Nov 2024 04:39:00 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T04:39:00.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : -336699960
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "San Jose",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Thu, 07 Nov 2024 04:39:00 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "electric-future.ua"
         ],
         "fingerprint" : {
            "md5" : "8b6599b3f31045a0ac3f929d051dcbf5",
            "sha1" : "78970758758687943f73fbd604b86cc2a7d9d0cd",
            "sha256" : "c3b8ffcf8db011b3f48f48a0e8c22a335592deae856612a279f5db1f5830f675"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AMAZON-SFO",
            "organization" : "Amazon.com, Inc.",
            "subnet" : "54.176.0.0/15"
         },
         "host" : [
            "ec2-54-176-114-130",
            "prototype"
         ],
         "hostname" : [
            "ec2-54-176-114-130.us-west-1.compute.amazonaws.com",
            "prototype.heating.electric-future.ua"
         ],
         "ip" : "54.176.114.130",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "prototype.heating.electric-future.ua"
         },
         "latitude" : "37.1835",
         "location" : "37.1835,-121.7714",
         "longitude" : "-121.7714",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-54-176-114-130.us-west-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "compute.amazonaws.com",
            "heating.electric-future.ua",
            "us-west-1.compute.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "prototype.heating.electric-future.ua"
         },
         "subnet" : "54.176.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com",
            "ua"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-07T04:22:29Z",
            "notbefore" : "2024-11-07T04:22:29Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 18.218.7.250:1337 (tcp/http/tls) - last seen on 2024-11-07 at 03:33:00 UTC

    • IP
      18.218.7.250
      Network
      18.216.0.0/13
      Domain(s)
      amazonaws.com oil-main.ua
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://18.218.7.250:1337/ 200

      Reverse DNS
      ec2-18-218-7-250.us-east-2.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      preprod.zoho.oil-main.ua
      Subject Common Name
      preprod.zoho.oil-main.ua
      SHA256 Fingerprint
      422b2f3482af4d457b13be2631acefe3598d7057361d50402da1377c4b2d53ac
      Validity Not Before
      2024-11-07T03:32:59Z
      Validity Not After
      2026-11-07T03:32:59Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
      Favicon MD5
      2b86aa50c3a66bb77ff07c42cc051dcc
      Favicon MMH3
      -1216248324
    • HTTP/1.1 200 OK
      Connection: close
      Date: Thu, 07 Nov 2024 02:54:30 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T03:33:00.000Z",
         "app" : {
            "favicon" : {
               "image" : "AAABAAIAEBAQAAAAAAAoAQAAJgAAACAgEAAAAAAA6AIAAE4BAAAoAAAAEAAAACAAAAABAAQAAAAAAIAAAAAAAAAAAAAAABAAAAAQAAAAAAAAAAAAgAAAgAAAAICAAIAAAACAAIAAgIAAAICAgADAwMAAAAD/AAD/AAAA//8A/wAAAP8A/wD//wAA////AAAAAAAAAAAAAABERERERAAABEREREREAABERAAAAAAAAERAAAAAAAAEREAAAAAAAAREREREREQABERERERERAAEREAAAAAAAAREQAAAAAAAAEREAAAAAAAARERAAAAAAAAEREREREQAAAAERERERAAAAAAAAAAAAAAAAAAAAAAA//8AAPADAADgAwAAw/8AAMf/AACH/wAAgAMAAIADAACH/wAAh/8AAMP/AADB/wAA4AMAAPgDAAD//wAA//8AACgAAAAgAAAAQAAAAAEABAAAAAAAAAIAAAAAAAAAAAAAEAAAABAAAAAAAAAAAACAAACAAAAAgIAAgAAAAIAAgACAgAAAgICAAMDAwAAAAP8AAP8AAAD//wD/AAAA/wD/AP//AAD///8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEREREREREREQAAAAAAAAEREREREREREREAAAAAAAERERERERERERERAAAAAAAREREREREREREREQAAAAABEREREREREREREREAAAAAAREREREAAAAAAAAAAAAAABEREREQAAAAAAAAAAAAAAARERERAAAAAAAAAAAAAAAAEREREAAAAAAAAAAAAAAAARERERAAAAAAAAAAAAAAAAEREREQAAAAAAAAAAAAAAABERERERERERERERERAAAAAREREREREREREREREQAAAAEREREREREREREREREAAAABERERERERERERERERAAAAAREREREREREREREREQAAAAEREREQAAAAAAAAAAAAAAAAEREREAAAAAAAAAAAAAAAABEREREAAAAAAAAAAAAAAAAREREREAAAAAAAAAAAAAAAAREREREAAAAAAAAAAAAAAAAREREREREREREREQAAAAAAEREREREREREREREAAAAAAAERERERERERERERAAAAAAAAAREREREREREREQAAAAAAAAABEREREREREREAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAD/////////////////4AAP/4AAD/4AAA/8AAAP+AAAD/gD///wB///8A////Af///gH///4B///+AAAA/gAAAP4AAAD+AAAA/gAAAP4B////Af///wD///8Af///gD///8AAAP/AAAD/4AAA//gAAP/+AAD////////////////w==",
               "imagemd5" : "2b86aa50c3a66bb77ff07c42cc051dcc",
               "imagemmh3" : -1216248324,
               "length" : 1078,
               "url" : "/favicon.ico"
            },
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : -61038565
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Columbus",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Thu, 07 Nov 2024 02:54:30 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "oil-main.ua"
         ],
         "fingerprint" : {
            "md5" : "7d28e3e45c78697af7ec691d9f26a700",
            "sha1" : "6b1b480d6b3b144302589970237c9fbc971428d5",
            "sha256" : "422b2f3482af4d457b13be2631acefe3598d7057361d50402da1377c4b2d53ac"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "amazon.com",
               "amazonaws.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AT-88-Z",
            "organization" : "Amazon Technologies Inc.",
            "subnet" : "18.216.0.0/13"
         },
         "host" : [
            "ec2-18-218-7-250",
            "preprod"
         ],
         "hostname" : [
            "ec2-18-218-7-250.us-east-2.compute.amazonaws.com",
            "preprod.zoho.oil-main.ua"
         ],
         "ip" : "18.218.7.250",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "preprod.zoho.oil-main.ua"
         },
         "latitude" : "39.9625",
         "location" : "39.9625,-83.0061",
         "longitude" : "-83.0061",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-18-218-7-250.us-east-2.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "compute.amazonaws.com",
            "us-east-2.compute.amazonaws.com",
            "zoho.oil-main.ua"
         ],
         "subject" : {
            "commonname" : "preprod.zoho.oil-main.ua"
         },
         "subnet" : "18.216.0.0/13",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com",
            "ua"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-07T03:32:59Z",
            "notbefore" : "2024-11-07T03:32:59Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 13.231.228.63:1337 (tcp/http/tls) - last seen on 2024-11-07 at 00:54:21 UTC

    • IP
      13.231.228.63
      Network
      13.228.0.0/14
      Domain(s)
      amazonaws.com next-medicine.ca
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://13.231.228.63:1337/ 200

      Reverse DNS
      ec2-13-231-228-63.ap-northeast-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      okta.next-medicine.ca
      Subject Common Name
      okta.next-medicine.ca
      SHA256 Fingerprint
      724bc7e6f5cc29d0e7326842c14dac8c017d774f123de8ca9d85c1d51de039eb
      Validity Not Before
      2024-11-07T00:21:54Z
      Validity Not After
      2026-11-07T00:21:54Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Thu, 07 Nov 2024 00:54:20 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T00:54:21.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : -1562335761
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Tokyo",
         "country" : "JP",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Thu, 07 Nov 2024 00:54:20 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "next-medicine.ca"
         ],
         "fingerprint" : {
            "md5" : "a19afdf88ae06e8fa704420435c0c562",
            "sha1" : "7004d9c31e13b0bef6e08b407e6dc65fcb6b42af",
            "sha256" : "724bc7e6f5cc29d0e7326842c14dac8c017d774f123de8ca9d85c1d51de039eb"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "JP",
            "countryname" : "Japan",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "36.204824",
            "location" : "36.204824,138.252924",
            "longitude" : "138.252924",
            "netname" : "AMAZON-NRT",
            "organization" : "Amazon Data Services Japan",
            "subnet" : "13.230.0.0/15"
         },
         "host" : [
            "ec2-13-231-228-63",
            "okta"
         ],
         "hostname" : [
            "ec2-13-231-228-63.ap-northeast-1.compute.amazonaws.com",
            "okta.next-medicine.ca"
         ],
         "ip" : "13.231.228.63",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "okta.next-medicine.ca"
         },
         "latitude" : "35.6893",
         "location" : "35.6893,139.6899",
         "longitude" : "139.6899",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-13-231-228-63.ap-northeast-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-07",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "ap-northeast-1.compute.amazonaws.com",
            "compute.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "okta.next-medicine.ca"
         },
         "subnet" : "13.228.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "ca",
            "com"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-07T00:21:54Z",
            "notbefore" : "2024-11-07T00:21:54Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 18.142.162.224:1337 (tcp/http/tls) - last seen on 2024-11-06 at 23:33:36 UTC

    • IP
      18.142.162.224
      Network
      18.140.0.0/14
      Domain(s)
      amazonaws.com medicine-main.co.il
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://18.142.162.224:1337/ 200

      Reverse DNS
      ec2-18-142-162-224.ap-southeast-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      secret.mail.medicine-main.co.il
      Subject Common Name
      secret.mail.medicine-main.co.il
      SHA256 Fingerprint
      debbaa1aefbca74db8ae59cbfd492223dc08f5e4a446a369e2bc05cd6ca9b02a
      Validity Not Before
      2024-11-06T23:04:15Z
      Validity Not After
      2026-11-06T23:04:15Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Wed, 06 Nov 2024 23:33:36 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-06T23:33:36.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : 333633860
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Singapore",
         "country" : "SG",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Wed, 06 Nov 2024 23:33:36 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "medicine-main.co.il"
         ],
         "fingerprint" : {
            "md5" : "c2dccc8cf4d5689978d258489cec3cd1",
            "sha1" : "b17cad04a918bcdd2ca926bfae80b41ad550153d",
            "sha256" : "debbaa1aefbca74db8ae59cbfd492223dc08f5e4a446a369e2bc05cd6ca9b02a"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "SG",
            "countryname" : "Singapore",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "1.352083",
            "location" : "1.352083,103.819836",
            "longitude" : "103.819836",
            "netname" : "AMAZON-SIN",
            "organization" : "Amazon Data Services Singapore",
            "subnet" : "18.142.0.0/15"
         },
         "host" : [
            "ec2-18-142-162-224",
            "secret"
         ],
         "hostname" : [
            "ec2-18-142-162-224.ap-southeast-1.compute.amazonaws.com",
            "secret.mail.medicine-main.co.il"
         ],
         "ip" : "18.142.162.224",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "secret.mail.medicine-main.co.il"
         },
         "latitude" : "1.2868",
         "location" : "1.2868,103.8503",
         "longitude" : "103.8503",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-18-142-162-224.ap-southeast-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-06",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "ap-southeast-1.compute.amazonaws.com",
            "compute.amazonaws.com",
            "mail.medicine-main.co.il"
         ],
         "subject" : {
            "commonname" : "secret.mail.medicine-main.co.il"
         },
         "subnet" : "18.140.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "co.il",
            "com"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-06T23:04:15Z",
            "notbefore" : "2024-11-06T23:04:15Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 34.219.71.203:1337 (tcp/http/tls) - last seen on 2024-11-06 at 14:35:57 UTC

    • IP
      34.219.71.203
      Network
      34.208.0.0/12
      Domain(s)
      amazonaws.com brightregulation-alpha.gc.ca
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://34.219.71.203:1337/ 200

      Reverse DNS
      ec2-34-219-71-203.us-west-2.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      Microsoft Azure RSA TLS Issuing CA 08
      Issuer Organization
      Microsoft Corporation
      Subject Common Name
      *.brightregulation-alpha.gc.ca
      SHA256 Fingerprint
      1ddee042160401f150738107c512785bc26e8009c0cd77fac9f326eb8fc8fde5
      Validity Not Before
      2023-11-07T14:22:40Z
      Validity Not After
      2025-11-06T14:22:40Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Wed, 06 Nov 2024 14:35:57 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-06T14:35:57.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : 1115077334
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Boardman",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Wed, 06 Nov 2024 14:35:57 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "brightregulation-alpha.gc.ca"
         ],
         "fingerprint" : {
            "md5" : "c8ec8071e83e93679d2d2d4da5d7d9f4",
            "sha1" : "c4fbad0d598421c5edf2ba9f93419c1dfff89bf7",
            "sha256" : "1ddee042160401f150738107c512785bc26e8009c0cd77fac9f326eb8fc8fde5"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AT-88-Z",
            "organization" : "Amazon Technologies Inc.",
            "subnet" : "34.208.0.0/12"
         },
         "host" : [
            "ec2-34-219-71-203"
         ],
         "hostname" : [
            "ec2-34-219-71-203.us-west-2.compute.amazonaws.com"
         ],
         "ip" : "34.219.71.203",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "Microsoft Azure RSA TLS Issuing CA 08",
            "country" : "US",
            "organization" : "Microsoft Corporation"
         },
         "latitude" : "45.8491",
         "location" : "45.8491,-119.7143",
         "longitude" : "-119.7143",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-34-219-71-203.us-west-2.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-06",
         "serial" : "08:7a:90:89:36:b0:42:e7:c4:d0:e6:a1:02:cf:80:87:4f:70:64:f0",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "compute.amazonaws.com",
            "us-west-2.compute.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "*.brightregulation-alpha.gc.ca"
         },
         "subnet" : "34.208.0.0/12",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com",
            "gc.ca"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2025-11-06T14:22:40Z",
            "notbefore" : "2023-11-07T14:22:40Z"
         },
         "version" : "v3",
         "wildcard" : "true"
      }
      
  • 54.175.241.32:1337 (tcp/http/tls) - last seen on 2024-11-06 at 09:27:06 UTC

    • IP
      54.175.241.32
      Network
      54.172.0.0/14
      Domain(s)
      amazonaws.com test-southelectric.ua
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://54.175.241.32:1337/ 200

      Reverse DNS
      ec2-54-175-241-32.compute-1.amazonaws.com
      ASN
      AS14618
      Organization
      AMAZON-AES
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      citrix.test-southelectric.ua
      Subject Common Name
      citrix.test-southelectric.ua
      SHA256 Fingerprint
      728a49a69355c56e6c18cfe1b6927ecb7f93beab01c94211e5004ba4f26d3f1d
      Validity Not Before
      2024-11-06T09:27:05Z
      Validity Not After
      2026-11-06T09:27:05Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Wed, 06 Nov 2024 09:27:06 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-06T09:27:06.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : -843089069
            },
            "length" : 204
         },
         "asn" : "AS14618",
         "city" : "Ashburn",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Wed, 06 Nov 2024 09:27:06 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "test-southelectric.ua"
         ],
         "fingerprint" : {
            "md5" : "50793397f5927548644c713375948542",
            "sha1" : "44b14b40ec1321bc848f01eee05385d96c7522e6",
            "sha256" : "728a49a69355c56e6c18cfe1b6927ecb7f93beab01c94211e5004ba4f26d3f1d"
         },
         "geolocus" : {
            "asn" : "AS14618",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "AMAZON",
            "organization" : "Amazon Technologies Inc.",
            "subnet" : "54.172.0.0/14"
         },
         "host" : [
            "citrix",
            "ec2-54-175-241-32"
         ],
         "hostname" : [
            "citrix.test-southelectric.ua",
            "ec2-54-175-241-32.compute-1.amazonaws.com"
         ],
         "ip" : "54.175.241.32",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "citrix.test-southelectric.ua"
         },
         "latitude" : "39.0469",
         "location" : "39.0469,-77.4903",
         "longitude" : "-77.4903",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-AES",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-54-175-241-32.compute-1.amazonaws.com"
         ],
         "seen_date" : "2024-11-06",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "compute-1.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "citrix.test-southelectric.ua"
         },
         "subnet" : "54.172.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com",
            "ua"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-06T09:27:05Z",
            "notbefore" : "2024-11-06T09:27:05Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 3.96.208.170:1337 (tcp/http/tls) - last seen on 2024-11-06 at 04:43:47 UTC

    • IP
      3.96.208.170
      Network
      3.96.0.0/14
      Domain(s)
      amazonaws.com security-next.ca
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://3.96.208.170:1337/ 200

      Reverse DNS
      ec2-3-96-208-170.ca-central-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      internal.cisco.security-next.ca
      Subject Common Name
      internal.cisco.security-next.ca
      SHA256 Fingerprint
      9bc2a141617df09abc1e8eb83a0826b5f312c33c8250b1018407db2a1672f157
      Validity Not Before
      2024-11-06T03:54:17Z
      Validity Not After
      2026-11-06T03:54:17Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
      Favicon MD5
      2b86aa50c3a66bb77ff07c42cc051dcc
      Favicon MMH3
      -1216248324
    • HTTP/1.1 200 OK
      Connection: close
      Date: Wed, 06 Nov 2024 03:54:17 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-06T04:43:47.000Z",
         "app" : {
            "favicon" : {
               "image" : "AAABAAIAEBAQAAAAAAAoAQAAJgAAACAgEAAAAAAA6AIAAE4BAAAoAAAAEAAAACAAAAABAAQAAAAAAIAAAAAAAAAAAAAAABAAAAAQAAAAAAAAAAAAgAAAgAAAAICAAIAAAACAAIAAgIAAAICAgADAwMAAAAD/AAD/AAAA//8A/wAAAP8A/wD//wAA////AAAAAAAAAAAAAABERERERAAABEREREREAABERAAAAAAAAERAAAAAAAAEREAAAAAAAAREREREREQABERERERERAAEREAAAAAAAAREQAAAAAAAAEREAAAAAAAARERAAAAAAAAEREREREQAAAAERERERAAAAAAAAAAAAAAAAAAAAAAA//8AAPADAADgAwAAw/8AAMf/AACH/wAAgAMAAIADAACH/wAAh/8AAMP/AADB/wAA4AMAAPgDAAD//wAA//8AACgAAAAgAAAAQAAAAAEABAAAAAAAAAIAAAAAAAAAAAAAEAAAABAAAAAAAAAAAACAAACAAAAAgIAAgAAAAIAAgACAgAAAgICAAMDAwAAAAP8AAP8AAAD//wD/AAAA/wD/AP//AAD///8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEREREREREREQAAAAAAAAEREREREREREREAAAAAAAERERERERERERERAAAAAAAREREREREREREREQAAAAABEREREREREREREREAAAAAAREREREAAAAAAAAAAAAAABEREREQAAAAAAAAAAAAAAARERERAAAAAAAAAAAAAAAAEREREAAAAAAAAAAAAAAAARERERAAAAAAAAAAAAAAAAEREREQAAAAAAAAAAAAAAABERERERERERERERERAAAAAREREREREREREREREQAAAAEREREREREREREREREAAAABERERERERERERERERAAAAAREREREREREREREREQAAAAEREREQAAAAAAAAAAAAAAAAEREREAAAAAAAAAAAAAAAABEREREAAAAAAAAAAAAAAAAREREREAAAAAAAAAAAAAAAAREREREAAAAAAAAAAAAAAAAREREREREREREREQAAAAAAEREREREREREREREAAAAAAAERERERERERERERAAAAAAAAAREREREREREREQAAAAAAAAABEREREREREREAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAD/////////////////4AAP/4AAD/4AAA/8AAAP+AAAD/gD///wB///8A////Af///gH///4B///+AAAA/gAAAP4AAAD+AAAA/gAAAP4B////Af///wD///8Af///gD///8AAAP/AAAD/4AAA//gAAP/+AAD////////////////w==",
               "imagemd5" : "2b86aa50c3a66bb77ff07c42cc051dcc",
               "imagemmh3" : -1216248324,
               "length" : 1078,
               "url" : "/favicon.ico"
            },
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : 1356060946
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Montreal",
         "country" : "CA",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Wed, 06 Nov 2024 03:54:17 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "security-next.ca"
         ],
         "fingerprint" : {
            "md5" : "ab47c0359bd965b46855f821f44082f1",
            "sha1" : "31f6cc566136bfd0baba4e4d31738a5cce92eb35",
            "sha256" : "9bc2a141617df09abc1e8eb83a0826b5f312c33c8250b1018407db2a1672f157"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "CA",
            "countryname" : "Canada",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "56.130366",
            "location" : "56.130366,-106.346771",
            "longitude" : "-106.346771",
            "netname" : "AMAZON-YUL",
            "organization" : "Amazon Data Services Canada",
            "subnet" : "3.96.0.0/14"
         },
         "host" : [
            "ec2-3-96-208-170",
            "internal"
         ],
         "hostname" : [
            "ec2-3-96-208-170.ca-central-1.compute.amazonaws.com",
            "internal.cisco.security-next.ca"
         ],
         "ip" : "3.96.208.170",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "internal.cisco.security-next.ca"
         },
         "latitude" : "45.5075",
         "location" : "45.5075,-73.5887",
         "longitude" : "-73.5887",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-3-96-208-170.ca-central-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-06",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "ca-central-1.compute.amazonaws.com",
            "cisco.security-next.ca",
            "compute.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "internal.cisco.security-next.ca"
         },
         "subnet" : "3.96.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "ca",
            "com"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-06T03:54:17Z",
            "notbefore" : "2024-11-06T03:54:17Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 18.230.153.6:1337 (tcp/http/tls) - last seen on 2024-11-05 at 21:50:36 UTC

    • IP
      18.230.153.6
      Network
      18.224.0.0/13
      Domain(s)
      amazonaws.com first-energy.mil
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://18.230.153.6:1337/ 200

      Reverse DNS
      ec2-18-230-153-6.sa-east-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      devo-conveyor.first-energy.mil
      Subject Common Name
      devo-conveyor.first-energy.mil
      SHA256 Fingerprint
      1247d88aee1b3d3a0b1e8a70e96ae8277ab84c1c7fe35e6cfd4fd0bae8984bc1
      Validity Not Before
      2024-11-05T21:48:29Z
      Validity Not After
      2026-11-05T21:48:29Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Tue, 05 Nov 2024 21:50:35 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-05T21:50:36.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : 198779695
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "S\u00e3o Paulo",
         "country" : "BR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Tue, 05 Nov 2024 21:50:35 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "first-energy.mil"
         ],
         "fingerprint" : {
            "md5" : "c670769a242f092d17484b0450f10394",
            "sha1" : "efd246f70e5237d4f3937821ed847c5094ba2189",
            "sha256" : "1247d88aee1b3d3a0b1e8a70e96ae8277ab84c1c7fe35e6cfd4fd0bae8984bc1"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "SA",
            "continentname" : "South America",
            "country" : "BR",
            "countryname" : "Brazil",
            "domain" : [
               "amazon.com",
               "amazonaws.com"
            ],
            "isineu" : "false",
            "latitude" : "-14.235004",
            "location" : "-14.235004,-51.92528",
            "longitude" : "-51.92528",
            "netname" : "AMAZON-GRU",
            "organization" : "Amazon Data Services Brazil",
            "subnet" : "18.230.0.0/16"
         },
         "host" : [
            "devo-conveyor",
            "ec2-18-230-153-6"
         ],
         "hostname" : [
            "devo-conveyor.first-energy.mil",
            "ec2-18-230-153-6.sa-east-1.compute.amazonaws.com"
         ],
         "ip" : "18.230.153.6",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "devo-conveyor.first-energy.mil"
         },
         "latitude" : "-23.5335",
         "location" : "-23.5335,-46.6359",
         "longitude" : "-46.6359",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-18-230-153-6.sa-east-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-05",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "compute.amazonaws.com",
            "sa-east-1.compute.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "devo-conveyor.first-energy.mil"
         },
         "subnet" : "18.224.0.0/13",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com",
            "mil"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-05T21:48:29Z",
            "notbefore" : "2024-11-05T21:48:29Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }
      
  • 18.143.189.76:1337 (tcp/http/tls) - last seen on 2024-11-05 at 20:19:36 UTC

    • IP
      18.143.189.76
      Network
      18.140.0.0/14
      Domain(s)
      amazonaws.com futureoil.org
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      https://18.143.189.76:1337/ 200

      Reverse DNS
      ec2-18-143-189-76.ap-southeast-1.compute.amazonaws.com
      ASN
      AS16509
      Organization
      AMAZON-02
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      mfa.futureoil.org
      Subject Common Name
      mfa.futureoil.org
      SHA256 Fingerprint
      9d3d4dd5801a1e68755be7bc856c8ec5baa22097d73dc244b74867674e4a92b1
      Validity Not Before
      2024-11-05T19:58:50Z
      Validity Not After
      2026-11-05T19:58:50Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      f192c778ba9971cccb2fcec90e21e379
      HTTP Header MD5
      9f060a9cb1b31c417a3a68e629ae97e3
      HTTP Body MD5
      852141068209c03fdeb5dacc5a9c52e3
    • HTTP/1.1 200 OK
      Connection: close
      Date: Tue, 05 Nov 2024 20:19:36 GMT
      Server: nginx
      Content-Length: 69
      Content-Type: text/html
      
      <html><body><script>top.location='/p/login/';</script></body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-05T20:19:36.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "852141068209c03fdeb5dacc5a9c52e3",
               "bodymmh3" : -1124668290,
               "headermd5" : "9f060a9cb1b31c417a3a68e629ae97e3",
               "headermmh3" : -957886628
            },
            "length" : 204
         },
         "asn" : "AS16509",
         "city" : "Singapore",
         "country" : "SG",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 200 OK\r\nConnection: close\r\nDate: Tue, 05 Nov 2024 20:19:36 GMT\r\nServer: nginx\r\nContent-Length: 69\r\nContent-Type: text/html\r\n\r\n<html><body><script>top.location='/p/login/';</script></body></html>\n",
         "datamd5" : "f192c778ba9971cccb2fcec90e21e379",
         "datammh3" : -1092385355,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "amazonaws.com",
            "futureoil.org"
         ],
         "fingerprint" : {
            "md5" : "0685f9e5ea646b7f5368149c9a5e6c55",
            "sha1" : "bb53a43c7ec4a1cdbb5fa4c20f645f8764ac6b0a",
            "sha256" : "9d3d4dd5801a1e68755be7bc856c8ec5baa22097d73dc244b74867674e4a92b1"
         },
         "geolocus" : {
            "asn" : "AS16509",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "SG",
            "countryname" : "Singapore",
            "domain" : [
               "amazon.com",
               "amazonaws.com",
               "aws.com"
            ],
            "isineu" : "false",
            "latitude" : "1.352083",
            "location" : "1.352083,103.819836",
            "longitude" : "103.819836",
            "netname" : "AMAZON-SIN",
            "organization" : "Amazon Data Services Singapore",
            "subnet" : "18.142.0.0/15"
         },
         "host" : [
            "ec2-18-143-189-76",
            "mfa"
         ],
         "hostname" : [
            "ec2-18-143-189-76.ap-southeast-1.compute.amazonaws.com",
            "mfa.futureoil.org"
         ],
         "ip" : "18.143.189.76",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "mfa.futureoil.org"
         },
         "latitude" : "1.2868",
         "location" : "1.2868,103.8503",
         "longitude" : "103.8503",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "AMAZON-02",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 1337,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "OK",
         "reverse" : [
            "ec2-18-143-189-76.ap-southeast-1.compute.amazonaws.com"
         ],
         "seen_date" : "2024-11-05",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 200,
         "subdomains" : [
            "ap-southeast-1.compute.amazonaws.com",
            "compute.amazonaws.com"
         ],
         "subject" : {
            "commonname" : "mfa.futureoil.org"
         },
         "subnet" : "18.140.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com",
            "org"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "url" : "/",
         "validity" : {
            "notafter" : "2026-11-05T19:58:50Z",
            "notbefore" : "2024-11-05T19:58:50Z"
         },
         "version" : "v1",
         "wildcard" : "false"
      }