4.156.2.225:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:31:29 UTC
-
- IP
- 4.156.2.225
- Network
- 4.144.0.0/12
- Domain(s)
- cloudapp.net
- Device
-
<enterprise field>: device.class
- Operating System
- Microsoft Windows
- HTTP Title
- Bad Request
- ASN
- AS8075
- Organization
- MICROSOFT-CORP-MSN-AS-BLOCK
- Protocol
- http Cert not expired http
- Source
- datascan
-
- Operating System
- Microsoft Windows
- Product
- Microsoft HTTPAPI 2.0
- CPE(s)
-
<enterprise field>: cpe
-
- Issuer Common Name
- AME Infra CA 05
- Subject Common Name
- 91850077-551c-42e2-a4fc-2bc3fb64aa6a.gwt.cloudapp.net
- Subject Alt Name
- azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9.gwt.cloudapp.net
- SHA256 Fingerprint
- ee4ae08cdbae2d1abf4de6f1f856b27443491f1d5ef78d120d81f93d34f2d839
- Validity Not Before
- 2024-10-29T15:50:13Z
- Validity Not After
- 2025-10-24T15:50:13Z
This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.
-
- Data MD5
- ab7ec59c257a6ef4d994483c583b818c
- HTTP Header MD5
- 5f8987fc4ee9770a3292cd04557b2dbf
- HTTP Body MD5
- 779df2c90c98bc5e3cb4127ecf04909e
-
HTTP/1.1 400 Bad Request Content-Type: text/html; charset=us-ascii Server: Microsoft-HTTPAPI/2.0 Date: Thu, 21 Nov 2024 10:31:28 GMT Connection: close Content-Length: 326 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd"> <HTML><HEAD><TITLE>Bad Request</TITLE> <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD> <BODY><h2>Bad Request - Invalid Verb</h2> <hr><p>HTTP Error 400. The request verb is invalid.</p> </BODY></HTML>
-
{ "@category" : "datascan", "@timestamp" : "2024-11-21T10:31:29.000Z", "app" : { "extract" : { "domain" : [ "w3.org" ], "hostname" : [ "www.w3.org" ], "url" : [ "http://www.w3.org/TR/html4/strict.dtd" ] }, "http" : { "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e", "bodymmh3" : -640633908, "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf", "headermmh3" : -1857035922, "title" : "Bad Request" }, "length" : 505 }, "asn" : "AS8075", "ca" : "false", "city" : "Washington", "country" : "US", "cpe" : "<enterprise field>: cpe", "cpecount" : "<enterprise field>: cpecount", "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:31:28 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n", "datamd5" : "ab7ec59c257a6ef4d994483c583b818c", "datammh3" : 1596030123, "device" : { "class" : "<enterprise field>: device.class" }, "domain" : [ "cloudapp.net" ], "extkeyusage" : [ "serverAuth", "clientAuth" ], "fingerprint" : { "md5" : "4739eb1941caa3e345ba7536aaf0e9bf", "sha1" : "1b28d5e478c54a7cb544fe6f811333d761a8eb8b", "sha256" : "ee4ae08cdbae2d1abf4de6f1f856b27443491f1d5ef78d120d81f93d34f2d839" }, "geolocus" : { "asn" : "AS8075", "continent" : "NA", "continentname" : "North America", "country" : "US", "countryname" : "United States", "domain" : [ "microsoft.com" ], "isineu" : "false", "latitude" : "37.09024", "location" : "37.09024,-95.712891", "longitude" : "-95.712891", "netname" : "MSFT", "organization" : "Microsoft Corporation", "subnet" : "4.156.0.0/15" }, "host" : [ "91850077-551c-42e2-a4fc-2bc3fb64aa6a", "azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9" ], "hostname" : [ "91850077-551c-42e2-a4fc-2bc3fb64aa6a.gwt.cloudapp.net", "azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9.gwt.cloudapp.net" ], "ip" : "4.156.2.225", "ipv6" : "false", "issuer" : { "commonname" : "AME Infra CA 05" }, "keyusage" : [ "digitalSignature", "keyEncipherment" ], "latitude" : "38.7095", "location" : "38.7095,-78.1539", "longitude" : "-78.1539", "node" : { "country" : "<enterprise field>: node.country", "groupid" : "<enterprise field>: node.groupid", "id" : "<enterprise field>: node.id", "physicalcountry" : "<enterprise field>: node.physicalcountry" }, "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK", "os" : "Windows", "osvendor" : "Microsoft", "port" : 20000, "product" : "HTTPAPI", "productvendor" : "Microsoft", "productversion" : "2.0", "protocol" : "http", "protocolversion" : "1.1", "publickey" : { "algorithm" : "rsaEncryption", "length" : 2048 }, "reason" : "Bad Request", "seen_date" : "2024-11-21", "serial" : "7c:05:d2:aa:3e:4e:5a:fc:8a:b4:28:94:2b:00:00:05:d2:aa:3e", "signature" : { "algorithm" : "sha256WithRSAEncryption" }, "source" : "datascan", "status" : 400, "subdomains" : [ "gwt.cloudapp.net" ], "subject" : { "altname" : [ "azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9.gwt.cloudapp.net" ], "commonname" : "91850077-551c-42e2-a4fc-2bc3fb64aa6a.gwt.cloudapp.net" }, "subnet" : "4.144.0.0/12", "tag" : "<enterprise field>: tag", "tld" : [ "net" ], "tls" : "true", "transport" : "tcp", "validity" : { "notafter" : "2025-10-24T15:50:13Z", "notbefore" : "2024-10-29T15:50:13Z" }, "version" : "v3", "wildcard" : "false" }