Returning 3 result(s) out of 3 in 0.071 second(s)

  • 95.153.31.186:500 (tcp/http) - last seen on 2024-11-07 at 03:10:48 UTC

    • IP
      95.153.31.186
      Network
      95.153.0.0/18
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      http://95.153.31.186:500/ 302

      ASN
      AS1257
      Organization
      Tele2 SWIPnet
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      HTTP Component(s)
      Atlassian Confluence Oracle Java
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1625694c587cd601197fb35f20511ece
      HTTP Header MD5
      2dc1e159d50343e36aa92b49adbad2ef
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 302 Found
      Server: nginx
      Date: Thu, 07 Nov 2024 03:10:48 UTC
      Cache-Control: no-store
      Expires: Thu, 01 Jan 1970 00:00:00 GMT
      X-Confluence-Request-Time: 1697032431875
      X-XSS-Protection: 1; mode=block
      X-Content-Type-Options: nosniff
      X-Frame-Options: SAMEORIGIN
      Content-Security-Policy: frame-ancestors 'self'
      Location: /login.action?os_destination=%2Findex.action&permissionViolation=true
      Content-Type: text/html;charset=UTF-8
      Content-Length: 0
      Set-Cookie: JSESSIONID=FD2CA9E2B09E9FEE2EC126FA48BF694B; Path=/; Secure; HttpOnly
      Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-07T03:10:48.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1636538602,
               "component" : [
                  {
                     "productvendor" : "Oracle",
                     "product" : "Java"
                  },
                  {
                     "productvendor" : "Atlassian",
                     "product" : "Confluence"
                  }
               ],
               "headermd5" : "2dc1e159d50343e36aa92b49adbad2ef",
               "headermmh3" : 1377937494
            },
            "length" : 620
         },
         "asn" : "AS1257",
         "city" : "Tallinn",
         "country" : "EE",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 302 Found\r\nServer: nginx\r\nDate: Thu, 07 Nov 2024 03:10:48 UTC\r\nCache-Control: no-store\r\nExpires: Thu, 01 Jan 1970 00:00:00 GMT\r\nX-Confluence-Request-Time: 1697032431875\r\nX-XSS-Protection: 1; mode=block\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: SAMEORIGIN\r\nContent-Security-Policy: frame-ancestors 'self'\r\nLocation: /login.action?os_destination=%2Findex.action&permissionViolation=true\r\nContent-Type: text/html;charset=UTF-8\r\nContent-Length: 0\r\nSet-Cookie: JSESSIONID=FD2CA9E2B09E9FEE2EC126FA48BF694B; Path=/; Secure; HttpOnly\r\nStrict-Transport-Security: max-age=31536000; includeSubDomains; preload\r\n\r\n",
         "datamd5" : "1625694c587cd601197fb35f20511ece",
         "datammh3" : 1837928346,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS1257",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "EE",
            "countryname" : "Estonia",
            "domain" : [
               "tele2.com",
               "tele2.ee"
            ],
            "isineu" : "true",
            "latitude" : "58.595272",
            "location" : "58.595272,25.013607",
            "longitude" : "25.013607",
            "netname" : "EE-TELE2-CDMA",
            "organization" : "TELE2/SWIPNET",
            "subnet" : "95.153.0.0/18"
         },
         "ip" : "95.153.31.186",
         "ipv6" : "false",
         "latitude" : "59.4381",
         "location" : "59.4381,24.7369",
         "longitude" : "24.7369",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Tele2 SWIPnet",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 500,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Found",
         "seen_date" : "2024-11-07",
         "source" : "datascan",
         "status" : 302,
         "subnet" : "95.153.0.0/18",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 95.153.24.4:500 (tcp/http) - last seen on 2024-10-24 at 02:10:47 UTC

    • IP
      95.153.24.4
      Network
      95.153.0.0/18
      Domain(s)
      telestar.ee
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Debian
      URL

      http://95.153.24.4:500/

      HTTP Title
      302 Found
      Reverse DNS
      telestar.ee
      ASN
      AS1257
      Organization
      Tele2 SWIPnet
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Debian
      HTTP Component(s)
      Apache HTTP Server 2.2.22
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      d68a1627913542f3406763f5ce483031
      HTTP Header MD5
      d68a1627913542f3406763f5ce483031
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
      <html><head>
      <title>302 Found</title>
      </head><body>
      <h1>Found</h1>
      <p>The document has moved <a href="https:///error/400.html">here</a>.</p>
      <hr>
      <address>Apache/2.2.22 (Debian) Server at baltoscandal.ee Port 443</address>
      </body></html>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-24T02:10:47.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1,
               "component" : [
                  {
                     "productversion" : "2.2.22",
                     "productvendor" : "Apache",
                     "product" : "HTTP Server"
                  }
               ],
               "headermd5" : "d68a1627913542f3406763f5ce483031",
               "headermmh3" : 1009805350,
               "title" : "302 Found"
            },
            "length" : 289
         },
         "asn" : "AS1257",
         "city" : "Tallinn",
         "country" : "EE",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "<!DOCTYPE HTML PUBLIC \"-//IETF//DTD HTML 2.0//EN\">\n<html><head>\n<title>302 Found</title>\n</head><body>\n<h1>Found</h1>\n<p>The document has moved <a href=\"https:///error/400.html\">here</a>.</p>\n<hr>\n<address>Apache/2.2.22 (Debian) Server at baltoscandal.ee Port 443</address>\n</body></html>\n",
         "datamd5" : "d68a1627913542f3406763f5ce483031",
         "datammh3" : 1009805350,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "telestar.ee"
         ],
         "geolocus" : {
            "asn" : "AS1257",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "EE",
            "countryname" : "Estonia",
            "domain" : [
               "tele2.com",
               "tele2.ee"
            ],
            "isineu" : "true",
            "latitude" : "58.595272",
            "location" : "58.595272,25.013607",
            "longitude" : "25.013607",
            "netname" : "EE-TELE2-CDMA",
            "organization" : "TELE2/SWIPNET",
            "subnet" : "95.153.0.0/18"
         },
         "hostname" : [
            "telestar.ee"
         ],
         "ip" : "95.153.24.4",
         "ipv6" : "false",
         "latitude" : "59.4381",
         "location" : "59.4381,24.7369",
         "longitude" : "24.7369",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Tele2 SWIPnet",
         "os" : "Linux",
         "osdistribution" : "Debian",
         "osvendor" : "Linux",
         "port" : 500,
         "protocol" : "http",
         "reverse" : [
            "telestar.ee"
         ],
         "seen_date" : "2024-10-24",
         "source" : "datascan",
         "subnet" : "95.153.0.0/18",
         "tld" : [
            "ee"
         ],
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }
      
  • 95.153.31.186:500 (tcp/http) - last seen on 2024-10-09 at 06:36:28 UTC

    • IP
      95.153.31.186
      Network
      95.153.0.0/18
      Device

      <enterprise field>: device.class

      Operating System
      Linux Linux Kernel
      URL

      http://95.153.31.186:500/ 302

      ASN
      AS1257
      Organization
      Tele2 SWIPnet
      Protocol
      http
      Source
      datascan
    • Operating System
      Linux Linux Kernel
      Product
      F5 Nginx
      HTTP Component(s)
      Atlassian Confluence Oracle Java
      CPE(s)

      <enterprise field>: cpe

    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      1625694c587cd601197fb35f20511ece
      HTTP Header MD5
      2dc1e159d50343e36aa92b49adbad2ef
      HTTP Body MD5
      d41d8cd98f00b204e9800998ecf8427e
    • HTTP/1.1 302 Found
      Server: nginx
      Date: Wed, 09 Oct 2024 06:36:28 UTC
      Cache-Control: no-store
      Expires: Thu, 01 Jan 1970 00:00:00 GMT
      X-Confluence-Request-Time: 1697032431875
      X-XSS-Protection: 1; mode=block
      X-Content-Type-Options: nosniff
      X-Frame-Options: SAMEORIGIN
      Content-Security-Policy: frame-ancestors 'self'
      Location: /login.action?os_destination=%2Findex.action&permissionViolation=true
      Content-Type: text/html;charset=UTF-8
      Content-Length: 0
      Set-Cookie: JSESSIONID=FD2CA9E2B09E9FEE2EC126FA48BF694B; Path=/; Secure; HttpOnly
      Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
      
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-10-09T06:36:28.000Z",
         "app" : {
            "http" : {
               "bodymd5" : "d41d8cd98f00b204e9800998ecf8427e",
               "bodymmh3" : -1636538602,
               "component" : [
                  {
                     "productvendor" : "Oracle",
                     "product" : "Java"
                  },
                  {
                     "product" : "Confluence",
                     "productvendor" : "Atlassian"
                  }
               ],
               "headermd5" : "2dc1e159d50343e36aa92b49adbad2ef",
               "headermmh3" : -1426544220
            },
            "length" : 620
         },
         "asn" : "AS1257",
         "city" : "Tallinn",
         "country" : "EE",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 302 Found\r\nServer: nginx\r\nDate: Wed, 09 Oct 2024 06:36:28 UTC\r\nCache-Control: no-store\r\nExpires: Thu, 01 Jan 1970 00:00:00 GMT\r\nX-Confluence-Request-Time: 1697032431875\r\nX-XSS-Protection: 1; mode=block\r\nX-Content-Type-Options: nosniff\r\nX-Frame-Options: SAMEORIGIN\r\nContent-Security-Policy: frame-ancestors 'self'\r\nLocation: /login.action?os_destination=%2Findex.action&permissionViolation=true\r\nContent-Type: text/html;charset=UTF-8\r\nContent-Length: 0\r\nSet-Cookie: JSESSIONID=FD2CA9E2B09E9FEE2EC126FA48BF694B; Path=/; Secure; HttpOnly\r\nStrict-Transport-Security: max-age=31536000; includeSubDomains; preload\r\n\r\n",
         "datamd5" : "1625694c587cd601197fb35f20511ece",
         "datammh3" : 1837928346,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "geolocus" : {
            "asn" : "AS1257",
            "continent" : "EU",
            "continentname" : "Europe",
            "country" : "EE",
            "countryname" : "Estonia",
            "domain" : [
               "tele2.com",
               "tele2.ee"
            ],
            "isineu" : "true",
            "latitude" : "58.595272",
            "location" : "58.595272,25.013607",
            "longitude" : "25.013607",
            "netname" : "EE-TELE2-CDMA",
            "organization" : "TELE2/SWIPNET",
            "subnet" : "95.153.0.0/18"
         },
         "ip" : "95.153.31.186",
         "ipv6" : "false",
         "latitude" : "59.4381",
         "location" : "59.4381,24.7369",
         "longitude" : "24.7369",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "Tele2 SWIPnet",
         "os" : "Linux Kernel",
         "osvendor" : "Linux",
         "port" : 500,
         "product" : "Nginx",
         "productvendor" : "F5",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "reason" : "Found",
         "seen_date" : "2024-10-09",
         "source" : "datascan",
         "status" : 302,
         "subnet" : "95.153.0.0/18",
         "tls" : "false",
         "transport" : "tcp",
         "url" : "/"
      }