Returning 10 result(s) out of 20 in 0.124 second(s)

  • 121.14.38.14:4899 (tcp/http) - last seen on 2024-11-07 at 02:51:20 UTC

    • IP
      121.14.38.14
      Network
      121.8.0.0/13
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      http://121.14.38.14:4899/ 404

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      Apache Coyote HTTP Connector 1.1
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      41836d5667f6bd0e464b0eed8bfa4387
      HTTP Header MD5
      aa28cbdae1e9219775faf08e05c40b68
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 404 Not Found
      Server: Apache-Coyote/1.1
      Content-Length: 0
      Date: Thu, 07 Nov 2024 02:51:20 GMT
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T02:51:20.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "aa28cbdae1e9219775faf08e05c40b68",
               "headermmh3" : -298278541
            },
            "length" : 128
         },
         "asn" : "AS4134",
         "city" : "Guangzhou",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 404 Not Found\r\nServer: Apache-Coyote/1.1\r\nContent-Length: 0\r\nDate: Thu, 07 Nov 2024 02:51:20 GMT\r\nConnection: close\r\n\r\n",
         "datamd5" : "41836d5667f6bd0e464b0eed8bfa4387",
         "datammh3" : 1004596483,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "163.com",
               "chinatelecom.cn",
               "gddc.com.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "beijingshijihuliankuandaishujuz",
            "organization" : "China Telecom",
            "subnet" : "121.14.36.0/22"
         },
         "ip" : "121.14.38.14",
         "ipv6" : "false",
         "latitude" : "23.1181",
         "location" : "23.1181,113.2539",
         "longitude" : "113.2539",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 4899,
         "product" : "Coyote HTTP Connector",
         "productvendor" : "Apache",
         "productversion" : "1.1",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Not Found",
         "seen_date" : "2024-11-07",
         "source" : "datascan",
         "status" : 404,
         "subnet" : "121.8.0.0/13",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 221.235.24.91:4899 (tcp/http) - last seen on 2024-11-06 at 15:55:51 UTC

    • IP
      221.235.24.91
      Network
      221.235.0.0/17
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://221.235.24.91:4899/ 426

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      5262bbf5e4f4e496ce2eeaafe2df7135
      HTTP Header MD5
      58e7d8cbac9775cc24d802abe061f38b
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 426 Upgrade Required
      Server: WebSocket++/0.8.1
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-06T15:55:51.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "58e7d8cbac9775cc24d802abe061f38b",
               "headermmh3" : 1622209863
            },
            "length" : 60
         },
         "asn" : "AS4134",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 426 Upgrade Required\r\nServer: WebSocket++/0.8.1\r\n\r\n",
         "datamd5" : "5262bbf5e4f4e496ce2eeaafe2df7135",
         "datammh3" : -606687552,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "189.cn",
               "apnic.net",
               "chinatelecom.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-HB",
            "organization" : "CHINANET Hubei province network",
            "subnet" : "221.235.0.0/17"
         },
         "ip" : "221.235.24.91",
         "ipv6" : "false",
         "latitude" : "34.7732",
         "location" : "34.7732,113.7220",
         "longitude" : "113.7220",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Upgrade Required",
         "seen_date" : "2024-11-06",
         "source" : "datascan",
         "status" : 426,
         "subnet" : "221.235.0.0/17",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 60.190.59.249:4899 (tcp/http) - last seen on 2024-11-04 at 15:06:16 UTC

    • IP
      60.190.59.249
      Network
      60.190.56.0/22
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://60.190.59.249:4899/ 302

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1a4d543318e00277b9508d2e0d05ec4b
      HTTP Header MD5
      b6b2f1511c1f2b33709d6161e0a6e40c
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 302 Temporary Moved
      Location: https://<ip>/
      Connection: Close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-04T15:06:16.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "b6b2f1511c1f2b33709d6161e0a6e40c",
               "headermmh3" : 1103093728
            },
            "length" : 76
         },
         "asn" : "AS4134",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 302 Temporary Moved\r\nLocation: https://<ip>/\r\nConnection: Close\r\n\r\n",
         "datamd5" : "1a4d543318e00277b9508d2e0d05ec4b",
         "datammh3" : 645781154,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "163.com",
               "hz.zj.cn",
               "nb.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "NINGBO-PEOPLE-GOV",
            "organization" : "Ningbo Municipal People's Government",
            "subnet" : "60.190.56.0/22"
         },
         "ip" : "60.190.59.249",
         "ipv6" : "false",
         "latitude" : "34.7732",
         "location" : "34.7732,113.7220",
         "longitude" : "113.7220",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Temporary Moved",
         "seen_date" : "2024-11-04",
         "source" : "datascan",
         "status" : 302,
         "subnet" : "60.190.56.0/22",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 222.90.207.74:4899 (tcp/http) - last seen on 2024-11-04 at 14:50:32 UTC

    • IP
      222.90.207.74
      Network
      222.88.0.0/14
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://222.90.207.74:4899/ 404

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Kestrel Kestrel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1ebb49979650a24463fbd5f630ba8c5b
      HTTP Header MD5
      4ee817f5f1f7993f9752f76121c1a572
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 404 Not Found
      Content-Length: 0
      Connection: close
      Date: Mon, 04 Nov 2024 14:50:32 GMT
      Server: Kestrel
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-04T14:50:32.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "4ee817f5f1f7993f9752f76121c1a572",
               "headermmh3" : -1493350478
            },
            "length" : 118
         },
         "asn" : "AS4134",
         "city" : "Xi'an",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 404 Not Found\r\nContent-Length: 0\r\nConnection: close\r\nDate: Mon, 04 Nov 2024 14:50:32 GMT\r\nServer: Kestrel\r\n\r\n",
         "datamd5" : "1ebb49979650a24463fbd5f630ba8c5b",
         "datammh3" : 1323477414,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "apnic.net",
               "chinatelecom.cn",
               "xa.sn.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-SN",
            "organization" : "CHINANET shanxi(SN) province network",
            "subnet" : "222.90.0.0/15"
         },
         "ip" : "222.90.207.74",
         "ipv6" : "false",
         "latitude" : "34.3287",
         "location" : "34.3287,109.0337",
         "longitude" : "109.0337",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "product" : "Kestrel",
         "productvendor" : "Kestrel",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Not Found",
         "seen_date" : "2024-11-04",
         "source" : "datascan",
         "status" : 404,
         "subnet" : "222.88.0.0/14",
         "tag" : "<enterprise field>: tag",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 221.235.24.91:4899 (tcp/http) - last seen on 2024-10-28 at 05:49:39 UTC

    • IP
      221.235.24.91
      Network
      221.235.0.0/17
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://221.235.24.91:4899/ 426

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      5262bbf5e4f4e496ce2eeaafe2df7135
      HTTP Header MD5
      58e7d8cbac9775cc24d802abe061f38b
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 426 Upgrade Required
      Server: WebSocket++/0.8.1
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-28T05:49:39.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "58e7d8cbac9775cc24d802abe061f38b",
               "headermmh3" : 1622209863
            },
            "length" : 60
         },
         "asn" : "AS4134",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 426 Upgrade Required\r\nServer: WebSocket++/0.8.1\r\n\r\n",
         "datamd5" : "5262bbf5e4f4e496ce2eeaafe2df7135",
         "datammh3" : -606687552,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "189.cn",
               "apnic.net",
               "chinatelecom.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-HB",
            "organization" : "CHINANET Hubei province network",
            "subnet" : "221.235.0.0/17"
         },
         "ip" : "221.235.24.91",
         "ipv6" : "false",
         "latitude" : "34.7732",
         "location" : "34.7732,113.7220",
         "longitude" : "113.7220",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Upgrade Required",
         "seen_date" : "2024-10-28",
         "source" : "datascan",
         "status" : 426,
         "subnet" : "221.235.0.0/17",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 59.63.32.219:4899 (tcp/http) - last seen on 2024-10-27 at 13:00:54 UTC

    • IP
      59.63.32.219
      Network
      59.63.0.0/17
      Domain(s)
      163data.com.cn
      Device

      <enterprise field>: device.class

      URL

      http://59.63.32.219:4899/ 400

      Reverse DNS
      219.32.63.59.broad.jdz.jx.dynamic.163data.com.cn
      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Product
      Apache Coyote HTTP Connector 1.1
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      de2932209846996db3ba10deb9cf8f20
      HTTP Header MD5
      b574746ca451846551735203fda817e6
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 400 Bad Request
      Server: Apache-Coyote/1.1
      Content-Type: text/html;charset=utf-8
      Content-Length: 0
      Date: Sun, 27 Oct 2024 13:00:54 GMT
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-27T13:00:54.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1636538602,
               "headermd5" : "b574746ca451846551735203fda817e6",
               "headermmh3" : -156508950
            },
            "length" : 169
         },
         "asn" : "AS4134",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nServer: Apache-Coyote/1.1\r\nContent-Type: text/html;charset=utf-8\r\nContent-Length: 0\r\nDate: Sun, 27 Oct 2024 13:00:54 GMT\r\nConnection: close\r\n\r\n",
         "datamd5" : "de2932209846996db3ba10deb9cf8f20",
         "datammh3" : 1098387802,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "163data.com.cn"
         ],
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "163data.com.cn",
               "chinatelecom.cn",
               "qq.com"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-JX",
            "organization" : "CHINANET Jiangxi province network",
            "subnet" : "59.63.0.0/17"
         },
         "host" : [
            219
         ],
         "hostname" : [
            "219.32.63.59.broad.jdz.jx.dynamic.163data.com.cn"
         ],
         "ip" : "59.63.32.219",
         "ipv6" : "false",
         "latitude" : "34.7732",
         "location" : "34.7732,113.7220",
         "longitude" : "113.7220",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "port" : 4899,
         "product" : "Coyote HTTP Connector",
         "productvendor" : "Apache",
         "productversion" : "1.1",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Bad Request",
         "reverse" : [
            "219.32.63.59.broad.jdz.jx.dynamic.163data.com.cn"
         ],
         "seen_date" : "2024-10-27",
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "jx.dynamic.163data.com.cn",
            "broad.jdz.jx.dynamic.163data.com.cn",
            "59.broad.jdz.jx.dynamic.163data.com.cn",
            "63.59.broad.jdz.jx.dynamic.163data.com.cn",
            "dynamic.163data.com.cn",
            "32.63.59.broad.jdz.jx.dynamic.163data.com.cn",
            "jdz.jx.dynamic.163data.com.cn"
         ],
         "subnet" : "59.63.0.0/17",
         "tld" : [
            "com.cn"
         ],
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 14.215.130.163:4899 (tcp/http) - last seen on 2024-10-27 at 12:50:47 UTC

    • IP
      14.215.130.163
      Network
      14.215.128.0/17
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://14.215.130.163:4899/ 302

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Apache HTTP Server
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      0fac629627e0a869e80abc33bf8b8b29
      HTTP Header MD5
      66ba590b56fafd7e19aaf393f0762afe
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 302 Found
      Date: Sun, 27 Oct 2024 12:50:47 GMT
      Server: Apache
      X-Frame-Options: SAMEORIGIN
      Location: swcenter/
      Content-Length: 0
      Connection: close
      Content-Type: text/html; charset=UTF-8
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-27T12:50:47.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1636538602,
               "headermd5" : "66ba590b56fafd7e19aaf393f0762afe",
               "headermmh3" : -727514948
            },
            "length" : 203
         },
         "asn" : "AS4134",
         "city" : "Guangzhou",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 302 Found\r\nDate: Sun, 27 Oct 2024 12:50:47 GMT\r\nServer: Apache\r\nX-Frame-Options: SAMEORIGIN\r\nLocation: swcenter/\r\nContent-Length: 0\r\nConnection: close\r\nContent-Type: text/html; charset=UTF-8\r\n\r\n",
         "datamd5" : "0fac629627e0a869e80abc33bf8b8b29",
         "datammh3" : 1777723801,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "163.com",
               "189.cn",
               "chinatelecom.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-GD",
            "organization" : "CHINANET Guangdong province network",
            "subnet" : "14.215.128.0/17"
         },
         "ip" : "14.215.130.163",
         "ipv6" : "false",
         "latitude" : "23.1181",
         "location" : "23.1181,113.2539",
         "longitude" : "113.2539",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "product" : "HTTP Server",
         "productvendor" : "Apache",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Found",
         "seen_date" : "2024-10-27",
         "source" : "datascan",
         "status" : 302,
         "subnet" : "14.215.128.0/17",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 61.166.225.54:4899 (tcp/http) - last seen on 2024-10-23 at 12:51:18 UTC

    • IP
      61.166.225.54
      Network
      61.166.192.0/18
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://61.166.225.54:4899/ 301

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      125e71454282275403a61c5b5822ba2c
      HTTP Header MD5
      ef660d671d0bf33bf48e9e83f2891db4
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 301 Moved Permanently
      Content-Length: 0
      Location: http://<ip>:4899//swagger
      Server: Microsoft-HTTPAPI/2.0
      Date: Wed, 23 Oct 2024 12:51:18 GMT
      Connection: close
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-23T12:51:18.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "ef660d671d0bf33bf48e9e83f2891db4",
               "headermmh3" : 2048024776
            },
            "length" : 177
         },
         "asn" : "AS4134",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 301 Moved Permanently\r\nContent-Length: 0\r\nLocation: http://<ip>:4899//swagger\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Wed, 23 Oct 2024 12:51:18 GMT\r\nConnection: close\r\n\r\n",
         "datamd5" : "125e71454282275403a61c5b5822ba2c",
         "datammh3" : 1707142602,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "163.com",
               "163data.com.cn",
               "chinatelecom.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-YN",
            "organization" : "CHINANET Yunnan province network",
            "subnet" : "61.166.192.0/18"
         },
         "ip" : "61.166.225.54",
         "ipv6" : "false",
         "latitude" : "34.7732",
         "location" : "34.7732,113.7220",
         "longitude" : "113.7220",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Moved Permanently",
         "seen_date" : "2024-10-23",
         "source" : "datascan",
         "status" : 301,
         "subnet" : "61.166.192.0/18",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 114.222.246.137:4899 (tcp/http) - last seen on 2024-10-21 at 16:28:01 UTC

    • IP
      114.222.246.137
      Network
      114.222.224.0/19
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://114.222.246.137:4899/ 302

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Kestrel Kestrel
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      cec7399a5491d072838aac7786825a92
      HTTP Header MD5
      823ba024f991f3805f4cc1044db4c28c
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 302 Found
      Content-Length: 0
      Connection: close
      Date: Mon, 21 Oct 2024 16:28:00 GMT
      Server: Kestrel
      Location: /web/index.html
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-21T16:28:01.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "823ba024f991f3805f4cc1044db4c28c",
               "headermmh3" : -1908234376
            },
            "length" : 141
         },
         "asn" : "AS4134",
         "city" : "Nanjing",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 302 Found\r\nContent-Length: 0\r\nConnection: close\r\nDate: Mon, 21 Oct 2024 16:28:00 GMT\r\nServer: Kestrel\r\nLocation: /web/index.html\r\n\r\n",
         "datamd5" : "cec7399a5491d072838aac7786825a92",
         "datammh3" : -2098515377,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "163.com",
               "chinatelecom.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-JS",
            "organization" : "Chinanet Jiangsu Province Network",
            "subnet" : "114.222.224.0/19"
         },
         "ip" : "114.222.246.137",
         "ipv6" : "false",
         "latitude" : "32.0589",
         "location" : "32.0589,118.7738",
         "longitude" : "118.7738",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "product" : "Kestrel",
         "productvendor" : "Kestrel",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Found",
         "seen_date" : "2024-10-21",
         "source" : "datascan",
         "status" : 302,
         "subnet" : "114.222.224.0/19",
         "tag" : "<enterprise field>: tag",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 121.205.96.253:4899 (tcp/http) - last seen on 2024-10-20 at 16:14:11 UTC

    • IP
      121.205.96.253
      Network
      121.205.96.0/19
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      URL

      http://121.205.96.253:4899/ 401

      ASN
      AS4134
      Organization
      Chinanet
      Protocol
      http
      Source
      datascan
    • Operating System
      Microsoft Windows
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      58397e1f32e657111390ab4769344187
      HTTP Header MD5
      e321553fb0770711c20eb6260c6253de
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 401 Unauthorized
      WWW-Authenticate: Digest qop="auth", realm="vms.vivotek.com", nonce="1729440716"
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-20T16:14:11.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "headermd5" : "e321553fb0770711c20eb6260c6253de",
               "headermmh3" : 1988718296,
               "realm" : "vms.vivotek.com"
            },
            "length" : 111
         },
         "asn" : "AS4134",
         "city" : "Quanzhou",
         "country" : "CN",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 401 Unauthorized\r\nWWW-Authenticate: Digest qop=\"auth\", realm=\"vms.vivotek.com\", nonce=\"1729440716\"\r\n\r\n",
         "datamd5" : "58397e1f32e657111390ab4769344187",
         "datammh3" : 346639895,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS4134",
            "continent" : "AS",
            "continentname" : "Asia",
            "country" : "CN",
            "countryname" : "China",
            "domain" : [
               "chinatelecom.cn",
               "fz.fj.cn"
            ],
            "isineu" : "false",
            "latitude" : "35.86166",
            "location" : "35.86166,104.195397",
            "longitude" : "104.195397",
            "netname" : "CHINANET-FJ",
            "organization" : "CHINANET Fujian province network",
            "subnet" : "121.205.96.0/19"
         },
         "ip" : "121.205.96.253",
         "ipv6" : "false",
         "latitude" : "24.9051",
         "location" : "24.9051,118.5707",
         "longitude" : "118.5707",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Chinanet",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 4899,
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Unauthorized",
         "seen_date" : "2024-10-20",
         "source" : "datascan",
         "status" : 401,
         "subnet" : "121.205.96.0/19",
         "tag" : "<enterprise field>: tag",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }