Returning 10 result(s) out of 75 in 0.033 second(s)

  • 194.9.172.74:3397 (tcp/http) - last seen on 2024-11-21 at 08:28:28 UTC

    • IP
      194.9.172.74
      Network
      194.9.172.0/23
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      ASN
      AS207992
      Organization
      FEELB SARL
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T08:28:28.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS207992",
         "city" : "Lyon",
         "country" : "FR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "ip" : "194.9.172.74",
         "ipv6" : "false",
         "latitude" : "45.7480",
         "location" : "45.7480,4.8500",
         "longitude" : "4.8500",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "FEELB SARL",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "194.9.172.0/23",
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 45.145.165.6:3397 (tcp/http) - last seen on 2024-11-21 at 05:35:34 UTC

    • IP
      45.145.165.6
      Network
      45.145.164.0/22
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      ASN
      AS207992
      Organization
      FEELB SARL
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T05:35:34.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS207992",
         "country" : "FR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS207992",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "FR",
            "countryname" : "France",
            "domain" : [
               "feelb.fr"
            ],
            "isineu" : "true",
            "latitude" : "46.227638",
            "location" : "46.227638,2.213749",
            "longitude" : "2.213749",
            "netname" : "FEELB_SARL",
            "organization" : "FEELB_SARL",
            "subnet" : "45.145.165.0/24"
         },
         "ip" : "45.145.165.6",
         "ipv6" : "false",
         "latitude" : "48.8582",
         "location" : "48.8582,2.3387",
         "longitude" : "2.3387",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "FEELB SARL",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "45.145.164.0/22",
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 121.164.226.164:3397 (tcp/http) - last seen on 2024-11-21 at 01:41:34 UTC

    • IP
      121.164.226.164
      Network
      121.164.128.0/17
      Device

      <enterprise field>: device.class

      Operating System
      FreeBSD FreeBSD
      ASN
      AS4766
      Organization
      Korea Telecom
      Protocol
      http
      Source
      datascan
    • Operating System
      FreeBSD FreeBSD
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T01:41:34.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS4766",
         "city" : "Pocheon-si",
         "country" : "KR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4766",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "KR",
            "countryname" : "South Korea",
            "domain" : [
               "kt.com",
               "nic.or.kr"
            ],
            "isineu" : "false",
            "latitude" : "35.907757",
            "location" : "35.907757,127.766922",
            "longitude" : "127.766922",
            "netname" : "KORNET",
            "organization" : "Korea Telecom",
            "subnet" : "121.164.128.0/17"
         },
         "ip" : "121.164.226.164",
         "ipv6" : "false",
         "latitude" : "37.8927",
         "location" : "37.8927,127.2009",
         "longitude" : "127.2009",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Korea Telecom",
         "os" : "FreeBSD",
         "osvendor" : "FreeBSD",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "121.164.128.0/17",
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 207.180.214.167:3397 (tcp/http) - last seen on 2024-11-20 at 21:35:05 UTC

    • IP
      207.180.214.167
      Network
      207.180.192.0/18
      Domain(s)
      contaboserver.net
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      Reverse DNS
      vmi617403.contaboserver.net
      ASN
      AS51167
      Organization
      Contabo GmbH
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T21:35:05.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS51167",
         "city" : "Nuremberg",
         "country" : "DE",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "contaboserver.net"
         ],
         "geolocus" : {
            "asn" : "AS51167",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "DE",
            "countryname" : "Germany",
            "domain" : [
               "contabo.de",
               "contabo.net"
            ],
            "isineu" : "true",
            "latitude" : "51.165691",
            "location" : "51.165691,10.451526",
            "longitude" : "10.451526",
            "netname" : "CONTABO",
            "organization" : "Contabo GmbH",
            "subnet" : "207.180.192.0/19"
         },
         "host" : [
            "vmi617403"
         ],
         "hostname" : [
            "vmi617403.contaboserver.net"
         ],
         "ip" : "207.180.214.167",
         "ipv6" : "false",
         "latitude" : "49.4050",
         "location" : "49.4050,11.1617",
         "longitude" : "11.1617",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Contabo GmbH",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "vmi617403.contaboserver.net"
         ],
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "207.180.192.0/18",
         "tld" : [
            "net"
         ],
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 181.1.227.33:3397 (tcp/http) - last seen on 2024-11-20 at 20:42:06 UTC

    • IP
      181.1.227.33
      Network
      181.1.192.0/18
      Domain(s)
      telecom.net.ar
      Device

      <enterprise field>: device.class

      Operating System
      FreeBSD FreeBSD
      Reverse DNS
      host33.181-1-227.telecom.net.ar
      ASN
      AS7303
      Organization
      Telecom Argentina S.A.
      Protocol
      http
      Source
      datascan
    • Operating System
      FreeBSD FreeBSD
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T20:42:06.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS7303",
         "city" : "Buenos Aires",
         "country" : "AR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "telecom.net.ar"
         ],
         "geolocus" : {
            "asn" : "AS7303",
            "continent" : "SA",
            "continentname" : "South America",
            "country" : "AR",
            "countryname" : "Argentina",
            "domain" : [
               "teco.com.ar",
               "telecom.net.ar"
            ],
            "isineu" : "false",
            "latitude" : "-38.416097",
            "location" : "-38.416097,-63.616672",
            "longitude" : "-63.616672",
            "netname" : "AR-TAST-LACNIC",
            "organization" : "Telecom Argentina S.A.",
            "subnet" : "181.1.192.0/18"
         },
         "host" : [
            "host33"
         ],
         "hostname" : [
            "host33.181-1-227.telecom.net.ar"
         ],
         "ip" : "181.1.227.33",
         "ipv6" : "false",
         "latitude" : "-36.0000",
         "location" : "-36.0000,-59.9964",
         "longitude" : "-59.9964",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Telecom Argentina S.A.",
         "os" : "FreeBSD",
         "osvendor" : "FreeBSD",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "host33.181-1-227.telecom.net.ar"
         ],
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "181-1-227.telecom.net.ar"
         ],
         "subnet" : "181.1.192.0/18",
         "tld" : [
            "net.ar"
         ],
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 84.46.242.15:3397 (tcp/http) - last seen on 2024-11-20 at 20:16:09 UTC

    • IP
      84.46.242.15
      Network
      84.46.240.0/20
      Domain(s)
      contaboserver.net
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      Reverse DNS
      vmi1097076.contaboserver.net
      ASN
      AS51167
      Organization
      Contabo GmbH
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T20:16:09.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS51167",
         "city" : "D\u00fcsseldorf",
         "country" : "DE",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "contaboserver.net"
         ],
         "geolocus" : {
            "asn" : "AS51167",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "LT",
            "countryname" : "Lithuania",
            "domain" : [
               "contabo.de",
               "contabo.net",
               "ipxo.com"
            ],
            "isineu" : "true",
            "latitude" : "55.169438",
            "location" : "55.169438,23.881275",
            "longitude" : "23.881275",
            "netname" : "LRTC_INETNUM_RENT",
            "organization" : "SC \"Lithuanian Radio and TV Center",
            "subnet" : "84.46.240.0/20"
         },
         "host" : [
            "vmi1097076"
         ],
         "hostname" : [
            "vmi1097076.contaboserver.net"
         ],
         "ip" : "84.46.242.15",
         "ipv6" : "false",
         "latitude" : "51.1878",
         "location" : "51.1878,6.8607",
         "longitude" : "6.8607",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Contabo GmbH",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "vmi1097076.contaboserver.net"
         ],
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "84.46.240.0/20",
         "tld" : [
            "net"
         ],
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 103.56.112.190:3397 (tcp/http) - last seen on 2024-11-20 at 19:19:06 UTC

    • IP
      103.56.112.190
      Network
      103.56.112.0/22
      Device

      <enterprise field>: device.class

      ASN
      AS55933
      Organization
      Cloudie Limited
      Protocol
      http
      Source
      datascan
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T19:19:06.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS55933",
         "country" : "HK",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS55933",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "HK",
            "countryname" : "Hong Kong",
            "domain" : [
               "gmail.com"
            ],
            "isineu" : "false",
            "latitude" : "22.396428",
            "location" : "22.396428,114.109497",
            "longitude" : "114.109497",
            "netname" : "DBSCL-HK",
            "organization" : "Digital Based System Company Limited",
            "subnet" : "103.56.112.0/22"
         },
         "ip" : "103.56.112.190",
         "ipv6" : "false",
         "latitude" : "22.2578",
         "location" : "22.2578,114.1657",
         "longitude" : "114.1657",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Cloudie Limited",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "103.56.112.0/22",
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 162.215.10.74:3397 (tcp/http) - last seen on 2024-11-20 at 12:55:33 UTC

    • IP
      162.215.10.74
      Network
      162.215.0.0/17
      Domain(s)
      unifiedlayer.com
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      Reverse DNS
      162-215-10-74.unifiedlayer.com
      ASN
      AS46606
      Organization
      UNIFIEDLAYER-AS-1
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T12:55:33.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS46606",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "unifiedlayer.com"
         ],
         "geolocus" : {
            "asn" : "AS46606",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "bluehost.com",
               "endurance.com",
               "unifiedlayer.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "UNIFIEDLAYER-NETWORK-15",
            "organization" : "Unified Layer",
            "subnet" : "162.215.0.0/17"
         },
         "host" : [
            "162-215-10-74"
         ],
         "hostname" : [
            "162-215-10-74.unifiedlayer.com"
         ],
         "ip" : "162.215.10.74",
         "ipv6" : "false",
         "latitude" : "37.7510",
         "location" : "37.7510,-97.8220",
         "longitude" : "-97.8220",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "UNIFIEDLAYER-AS-1",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "162-215-10-74.unifiedlayer.com"
         ],
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "162.215.0.0/17",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "com"
         ],
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 189.34.197.29:3397 (tcp/http) - last seen on 2024-11-20 at 09:56:54 UTC

    • IP
      189.34.197.29
      Network
      189.34.128.0/17
      Domain(s)
      virtua.com.br
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      Reverse DNS
      bd22c51d.virtua.com.br
      ASN
      AS28573
      Organization
      Claro NXT Telecomunicacoes Ltda
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T09:56:54.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS28573",
         "city" : "Caraguatatuba",
         "country" : "BR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "virtua.com.br"
         ],
         "geolocus" : {
            "asn" : "AS28573",
            "continent" : "SA",
            "continentname" : "South America",
            "country" : "BR",
            "countryname" : "Brazil",
            "domain" : [
               "cert.br",
               "virtua.com.br"
            ],
            "isineu" : "false",
            "latitude" : "-14.235004",
            "location" : "-14.235004,-51.92528",
            "longitude" : "-51.92528",
            "netname" : "66.970.229/0001-67",
            "organization" : "Claro NXT Telecomunicacoes Ltda",
            "subnet" : "189.34.128.0/17"
         },
         "host" : [
            "bd22c51d"
         ],
         "hostname" : [
            "bd22c51d.virtua.com.br"
         ],
         "ip" : "189.34.197.29",
         "ipv6" : "false",
         "latitude" : "-23.6181",
         "location" : "-23.6181,-45.4106",
         "longitude" : "-45.4106",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Claro NXT Telecomunicacoes Ltda",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "bd22c51d.virtua.com.br"
         ],
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "189.34.128.0/17",
         "tld" : [
            "com.br"
         ],
         "tls" : "false",
         "transport" : "tcp"
      }
      
  • 93.91.172.189:3397 (tcp/http) - last seen on 2024-11-20 at 09:29:07 UTC

    • IP
      93.91.172.189
      Network
      93.91.172.0/23
      Domain(s)
      avantel.ru
      Device

      <enterprise field>: device.class

      Operating System
      FreeBSD FreeBSD
      Reverse DNS
      host-93-91-172-189.avantel.ru
      ASN
      AS8711
      Organization
      JSC Avantel
      Protocol
      http
      Source
      datascan
    • Operating System
      FreeBSD FreeBSD
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1dafc1f061d065ae901038473ae33902
      HTTP Header MD5
      571b5ea6a2d05102b1dfe0a212263b89
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-20T09:29:07.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "571b5ea6a2d05102b1dfe0a212263b89",
               "headermmh3" : -521918475
            },
            "length" : 47
         },
         "asn" : "AS8711",
         "country" : "RU",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nConnection: close\r\n\r\n",
         "datamd5" : "1dafc1f061d065ae901038473ae33902",
         "datammh3" : -1150732002,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "avantel.ru"
         ],
         "geolocus" : {
            "asn" : "AS8711",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "RU",
            "countryname" : "Russia",
            "domain" : [
               "avantel.ru"
            ],
            "isineu" : "false",
            "latitude" : "61.52401",
            "location" : "61.52401,105.318756",
            "longitude" : "105.318756",
            "netname" : "AVANTEL-BARNAUL-NETWORK",
            "organization" : "Avantel. Barnaul metropolitan network",
            "subnet" : "93.91.172.0/23"
         },
         "host" : [
            "host-93-91-172-189"
         ],
         "hostname" : [
            "host-93-91-172-189.avantel.ru"
         ],
         "ip" : "93.91.172.189",
         "ipv6" : "false",
         "latitude" : "55.7386",
         "location" : "55.7386,37.6068",
         "longitude" : "37.6068",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "JSC Avantel",
         "os" : "FreeBSD",
         "osvendor" : "FreeBSD",
         "port" : 3397,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "host-93-91-172-189.avantel.ru"
         ],
         "seen_date" : "2024-11-20",
         "source" : "datascan",
         "status" : 400,
         "subnet" : "93.91.172.0/23",
         "tld" : [
            "ru"
         ],
         "tls" : "false",
         "transport" : "tcp"
      }