Returning 10 result(s) out of 144,927 in 0.119 second(s)

  • 4.156.2.225:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:31:29 UTC

    • IP
      4.156.2.225
      Network
      4.144.0.0/12
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      91850077-551c-42e2-a4fc-2bc3fb64aa6a.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9.gwt.cloudapp.net
      SHA256 Fingerprint
      ee4ae08cdbae2d1abf4de6f1f856b27443491f1d5ef78d120d81f93d34f2d839
      Validity Not Before
      2024-10-29T15:50:13Z
      Validity Not After
      2025-10-24T15:50:13Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:31:28 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:31:29.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -1857035922,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Washington",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:31:28 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "4739eb1941caa3e345ba7536aaf0e9bf",
            "sha1" : "1b28d5e478c54a7cb544fe6f811333d761a8eb8b",
            "sha256" : "ee4ae08cdbae2d1abf4de6f1f856b27443491f1d5ef78d120d81f93d34f2d839"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "4.156.0.0/15"
         },
         "host" : [
            "91850077-551c-42e2-a4fc-2bc3fb64aa6a",
            "azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9"
         ],
         "hostname" : [
            "91850077-551c-42e2-a4fc-2bc3fb64aa6a.gwt.cloudapp.net",
            "azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9.gwt.cloudapp.net"
         ],
         "ip" : "4.156.2.225",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "38.7095",
         "location" : "38.7095,-78.1539",
         "longitude" : "-78.1539",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:d2:aa:3e:4e:5a:fc:8a:b4:28:94:2b:00:00:05:d2:aa:3e",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-91850077-551c-42e2-a4fc-2bc3fb64aa6a-7f9ea004e5b9.gwt.cloudapp.net"
            ],
            "commonname" : "91850077-551c-42e2-a4fc-2bc3fb64aa6a.gwt.cloudapp.net"
         },
         "subnet" : "4.144.0.0/12",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-10-24T15:50:13Z",
            "notbefore" : "2024-10-29T15:50:13Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 20.79.140.123:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:31:24 UTC

    • IP
      20.79.140.123
      Network
      20.64.0.0/10
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      5e110060-7976-4331-af2d-9a4086fd31b7.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-5e110060-7976-4331-af2d-9a4086fd31b7-c72f405eec36.gwt.cloudapp.net
      SHA256 Fingerprint
      8a176f66a41eddae0537d79cf0b4a3b7bfdfb948b621a917bb34515b618b5572
      Validity Not Before
      2024-07-16T19:56:56Z
      Validity Not After
      2025-07-11T19:56:56Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:31:23 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:31:24.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : 1098034032,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Frankfurt am Main",
         "country" : "DE",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:31:23 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "d5ea6c2aa6ca991b611bc11147056cb1",
            "sha1" : "46ccc68d671968959e3c9ceb4f74182f8eb58477",
            "sha256" : "8a176f66a41eddae0537d79cf0b4a3b7bfdfb948b621a917bb34515b618b5572"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "20.79.0.0/16"
         },
         "host" : [
            "5e110060-7976-4331-af2d-9a4086fd31b7",
            "azuregateway-5e110060-7976-4331-af2d-9a4086fd31b7-c72f405eec36"
         ],
         "hostname" : [
            "5e110060-7976-4331-af2d-9a4086fd31b7.gwt.cloudapp.net",
            "azuregateway-5e110060-7976-4331-af2d-9a4086fd31b7-c72f405eec36.gwt.cloudapp.net"
         ],
         "ip" : "20.79.140.123",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "50.1187",
         "location" : "50.1187,8.6842",
         "longitude" : "8.6842",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:29:18:95:ce:42:b2:6d:9e:00:5d:ed:00:00:05:29:18:95",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-5e110060-7976-4331-af2d-9a4086fd31b7-c72f405eec36.gwt.cloudapp.net"
            ],
            "commonname" : "5e110060-7976-4331-af2d-9a4086fd31b7.gwt.cloudapp.net"
         },
         "subnet" : "20.64.0.0/10",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-07-11T19:56:56Z",
            "notbefore" : "2024-07-16T19:56:56Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 13.93.30.62:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:31:01 UTC

    • IP
      13.93.30.62
      Network
      13.64.0.0/11
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      30430069-c4dc-49c8-8c21-ca02c236c5ba.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-30430069-c4dc-49c8-8c21-ca02c236c5ba-94a72467f346.gwt.cloudapp.net
      SHA256 Fingerprint
      5a3899258658bedcf34603defe14c3ccf4ff3e0a0ed68cf75db27ff612dc1991
      Validity Not Before
      2024-11-14T15:47:06Z
      Validity Not After
      2025-05-13T15:47:06Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:31:00 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:31:01.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -1363596746,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Amsterdam",
         "country" : "NL",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:31:00 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "e535a9669a698544b02d519af086536e",
            "sha1" : "507186c684dffb0e7765f25f0f7dc5f53149da51",
            "sha256" : "5a3899258658bedcf34603defe14c3ccf4ff3e0a0ed68cf75db27ff612dc1991"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "13.93.0.0/17"
         },
         "host" : [
            "30430069-c4dc-49c8-8c21-ca02c236c5ba",
            "azuregateway-30430069-c4dc-49c8-8c21-ca02c236c5ba-94a72467f346"
         ],
         "hostname" : [
            "30430069-c4dc-49c8-8c21-ca02c236c5ba.gwt.cloudapp.net",
            "azuregateway-30430069-c4dc-49c8-8c21-ca02c236c5ba-94a72467f346.gwt.cloudapp.net"
         ],
         "ip" : "13.93.30.62",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "52.3759",
         "location" : "52.3759,4.8975",
         "longitude" : "4.8975",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:f4:14:a9:69:de:1b:3d:48:69:b1:76:00:00:05:f4:14:a9",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-30430069-c4dc-49c8-8c21-ca02c236c5ba-94a72467f346.gwt.cloudapp.net"
            ],
            "commonname" : "30430069-c4dc-49c8-8c21-ca02c236c5ba.gwt.cloudapp.net"
         },
         "subnet" : "13.64.0.0/11",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-05-13T15:47:06Z",
            "notbefore" : "2024-11-14T15:47:06Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 4.152.182.141:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:31:00 UTC

    • IP
      4.152.182.141
      Network
      4.144.0.0/12
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      a5c20078-8992-4a48-bc5e-669140f75fb1.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-a5c20078-8992-4a48-bc5e-669140f75fb1-3dfa5098a9f5.gwt.cloudapp.net
      SHA256 Fingerprint
      d744b9affb7afe0605c840dc2e2980dc8bfacb7eaddc73e3add24f22a62735c7
      Validity Not Before
      2024-08-06T09:03:24Z
      Validity Not After
      2025-08-01T09:03:24Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:31:00 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:31:00.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -1363596746,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Boydton",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:31:00 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "f5a23a16aa124ea8069e9b751e2d24e9",
            "sha1" : "12eeda27df1f778325891256697c7a4c894cdcdc",
            "sha256" : "d744b9affb7afe0605c840dc2e2980dc8bfacb7eaddc73e3add24f22a62735c7"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "4.152.0.0/14"
         },
         "host" : [
            "a5c20078-8992-4a48-bc5e-669140f75fb1",
            "azuregateway-a5c20078-8992-4a48-bc5e-669140f75fb1-3dfa5098a9f5"
         ],
         "hostname" : [
            "a5c20078-8992-4a48-bc5e-669140f75fb1.gwt.cloudapp.net",
            "azuregateway-a5c20078-8992-4a48-bc5e-669140f75fb1-3dfa5098a9f5.gwt.cloudapp.net"
         ],
         "ip" : "4.152.182.141",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "36.6676",
         "location" : "36.6676,-78.3875",
         "longitude" : "-78.3875",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:40:fa:30:3f:58:0d:dc:a9:d0:a9:c8:00:00:05:40:fa:30",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-a5c20078-8992-4a48-bc5e-669140f75fb1-3dfa5098a9f5.gwt.cloudapp.net"
            ],
            "commonname" : "a5c20078-8992-4a48-bc5e-669140f75fb1.gwt.cloudapp.net"
         },
         "subnet" : "4.144.0.0/12",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-08-01T09:03:24Z",
            "notbefore" : "2024-08-06T09:03:24Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 137.117.156.101:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:30:57 UTC

    • IP
      137.117.156.101
      Network
      137.116.0.0/15
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      9624f170-ba15-453c-b400-228e9666e74c.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-9624f170-ba15-453c-b400-228e9666e74c-091d3de327fa.gwt.cloudapp.net
      SHA256 Fingerprint
      048ac50bf959345f9db8be2801d67a2fc8634016b3d28222e402d4d354f35afb
      Validity Not Before
      2024-09-06T20:06:55Z
      Validity Not After
      2025-09-01T20:06:55Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:30:57 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:30:57.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -1933949866,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Amsterdam",
         "country" : "NL",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:30:57 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "80cb93e0c769115c62a8674fff6c6171",
            "sha1" : "9f412d182308b0b5683321909a7ea22298324eae",
            "sha256" : "048ac50bf959345f9db8be2801d67a2fc8634016b3d28222e402d4d354f35afb"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MICROSOFT",
            "organization" : "Microsoft Corp",
            "subnet" : "137.117.128.0/17"
         },
         "host" : [
            "9624f170-ba15-453c-b400-228e9666e74c",
            "azuregateway-9624f170-ba15-453c-b400-228e9666e74c-091d3de327fa"
         ],
         "hostname" : [
            "9624f170-ba15-453c-b400-228e9666e74c.gwt.cloudapp.net",
            "azuregateway-9624f170-ba15-453c-b400-228e9666e74c-091d3de327fa.gwt.cloudapp.net"
         ],
         "ip" : "137.117.156.101",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "52.3759",
         "location" : "52.3759,4.8975",
         "longitude" : "4.8975",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:6f:ec:29:1b:1a:ec:0a:28:a7:20:e2:00:00:05:6f:ec:29",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-9624f170-ba15-453c-b400-228e9666e74c-091d3de327fa.gwt.cloudapp.net"
            ],
            "commonname" : "9624f170-ba15-453c-b400-228e9666e74c.gwt.cloudapp.net"
         },
         "subnet" : "137.116.0.0/15",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-09-01T20:06:55Z",
            "notbefore" : "2024-09-06T20:06:55Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 52.143.179.109:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:30:32 UTC

    • IP
      52.143.179.109
      Network
      52.136.0.0/13
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      92b10034-bf48-4bd8-a2fe-82b5283e6dcc.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-92b10034-bf48-4bd8-a2fe-82b5283e6dcc-38c987c39977.gwt.cloudapp.net
      SHA256 Fingerprint
      0934ad3ab2b6f8d624e434090d57557cbc540a6d356ea5443d2252b00eff670e
      Validity Not Before
      2024-09-30T22:55:39Z
      Validity Not After
      2025-09-25T22:55:39Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:30:32 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:30:32.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : 462527980,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Paris",
         "country" : "FR",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:30:32 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "c04e8bf8a96b5f8eaf99d7abfe8010e3",
            "sha1" : "3133beb1c0aeb8c3c0823e515428a1d6863dd0d6",
            "sha256" : "0934ad3ab2b6f8d624e434090d57557cbc540a6d356ea5443d2252b00eff670e"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "52.143.128.0/18"
         },
         "host" : [
            "92b10034-bf48-4bd8-a2fe-82b5283e6dcc",
            "azuregateway-92b10034-bf48-4bd8-a2fe-82b5283e6dcc-38c987c39977"
         ],
         "hostname" : [
            "92b10034-bf48-4bd8-a2fe-82b5283e6dcc.gwt.cloudapp.net",
            "azuregateway-92b10034-bf48-4bd8-a2fe-82b5283e6dcc-38c987c39977.gwt.cloudapp.net"
         ],
         "ip" : "52.143.179.109",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "48.8323",
         "location" : "48.8323,2.4075",
         "longitude" : "2.4075",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:95:79:f5:22:8d:91:82:c1:aa:50:90:00:00:05:95:79:f5",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-92b10034-bf48-4bd8-a2fe-82b5283e6dcc-38c987c39977.gwt.cloudapp.net"
            ],
            "commonname" : "92b10034-bf48-4bd8-a2fe-82b5283e6dcc.gwt.cloudapp.net"
         },
         "subnet" : "52.136.0.0/13",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-09-25T22:55:39Z",
            "notbefore" : "2024-09-30T22:55:39Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 51.124.153.85:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:30:31 UTC

    • IP
      51.124.153.85
      Network
      51.124.0.0/16
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      68420069-958e-4aa5-af83-2aae2ba3f432.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-68420069-958e-4aa5-af83-2aae2ba3f432-615ca76c6db3.gwt.cloudapp.net
      SHA256 Fingerprint
      22530393c32ebecb803263a7761cf1c845b00c349e3cc0f3f4bc40764a02d27e
      Validity Not Before
      2024-09-04T13:51:43Z
      Validity Not After
      2025-08-30T13:51:43Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:30:30 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:30:31.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -1529501768,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Amsterdam",
         "country" : "NL",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:30:30 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "85f1d8359e242e673bdf55878b8f33f1",
            "sha1" : "1b0aa645801b314cc46b85c7cef7cfabf9716616",
            "sha256" : "22530393c32ebecb803263a7761cf1c845b00c349e3cc0f3f4bc40764a02d27e"
         },
         "host" : [
            "68420069-958e-4aa5-af83-2aae2ba3f432",
            "azuregateway-68420069-958e-4aa5-af83-2aae2ba3f432-615ca76c6db3"
         ],
         "hostname" : [
            "68420069-958e-4aa5-af83-2aae2ba3f432.gwt.cloudapp.net",
            "azuregateway-68420069-958e-4aa5-af83-2aae2ba3f432-615ca76c6db3.gwt.cloudapp.net"
         ],
         "ip" : "51.124.153.85",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "52.3759",
         "location" : "52.3759,4.8975",
         "longitude" : "4.8975",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:6b:c8:de:51:dd:7c:46:22:2c:13:ec:00:00:05:6b:c8:de",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-68420069-958e-4aa5-af83-2aae2ba3f432-615ca76c6db3.gwt.cloudapp.net"
            ],
            "commonname" : "68420069-958e-4aa5-af83-2aae2ba3f432.gwt.cloudapp.net"
         },
         "subnet" : "51.124.0.0/16",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-08-30T13:51:43Z",
            "notbefore" : "2024-09-04T13:51:43Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 52.230.144.181:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:30:30 UTC

    • IP
      52.230.144.181
      Network
      52.224.0.0/11
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      81a70075-0ea7-4b03-b851-d973138b7c86.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-81a70075-0ea7-4b03-b851-d973138b7c86-0f108e1734c2.gwt.cloudapp.net
      SHA256 Fingerprint
      58ca1dfb68f45d997c4646daac614dcfa2175e0485f455cb838018ca55fff719
      Validity Not Before
      2024-07-17T02:24:26Z
      Validity Not After
      2025-07-12T02:24:26Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:30:30 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:30:30.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -1529501768,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Des Moines",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:30:30 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "a8a73f8e3e283251fff3c85d8fd629a2",
            "sha1" : "2fc080bdfbb1ce2d11757fd502958b758593a790",
            "sha256" : "58ca1dfb68f45d997c4646daac614dcfa2175e0485f455cb838018ca55fff719"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "52.230.128.0/17"
         },
         "host" : [
            "81a70075-0ea7-4b03-b851-d973138b7c86",
            "azuregateway-81a70075-0ea7-4b03-b851-d973138b7c86-0f108e1734c2"
         ],
         "hostname" : [
            "81a70075-0ea7-4b03-b851-d973138b7c86.gwt.cloudapp.net",
            "azuregateway-81a70075-0ea7-4b03-b851-d973138b7c86-0f108e1734c2.gwt.cloudapp.net"
         ],
         "ip" : "52.230.144.181",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "41.6021",
         "location" : "41.6021,-93.6124",
         "longitude" : "-93.6124",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:29:6c:fa:f2:f0:b4:d1:2d:e4:a0:43:00:00:05:29:6c:fa",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-81a70075-0ea7-4b03-b851-d973138b7c86-0f108e1734c2.gwt.cloudapp.net"
            ],
            "commonname" : "81a70075-0ea7-4b03-b851-d973138b7c86.gwt.cloudapp.net"
         },
         "subnet" : "52.224.0.0/11",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-07-12T02:24:26Z",
            "notbefore" : "2024-07-17T02:24:26Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 20.114.131.1:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:30:19 UTC

    • IP
      20.114.131.1
      Network
      20.64.0.0/10
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      a5a90078-bced-40fd-b267-4f8f735c9e43.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-a5a90078-bced-40fd-b267-4f8f735c9e43-10e118fdabf0.gwt.cloudapp.net
      SHA256 Fingerprint
      23ab5f30becb4ff3eb9b32a9b19c6d9cd409d8700325388084ddc8d131fa16bb
      Validity Not Before
      2024-07-11T00:22:01Z
      Validity Not After
      2025-07-06T00:22:01Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:30:18 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:30:19.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : -536738551,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Boydton",
         "country" : "US",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:30:18 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "bd26518b58221cad6e7875ef011914aa",
            "sha1" : "bde8a7c3acb20cf4f796f3077e655d4b18418f35",
            "sha256" : "23ab5f30becb4ff3eb9b32a9b19c6d9cd409d8700325388084ddc8d131fa16bb"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "20.114.0.0/15"
         },
         "host" : [
            "a5a90078-bced-40fd-b267-4f8f735c9e43",
            "azuregateway-a5a90078-bced-40fd-b267-4f8f735c9e43-10e118fdabf0"
         ],
         "hostname" : [
            "a5a90078-bced-40fd-b267-4f8f735c9e43.gwt.cloudapp.net",
            "azuregateway-a5a90078-bced-40fd-b267-4f8f735c9e43-10e118fdabf0.gwt.cloudapp.net"
         ],
         "ip" : "20.114.131.1",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "36.6676",
         "location" : "36.6676,-78.3875",
         "longitude" : "-78.3875",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:22:08:c8:8e:b8:9b:e7:8d:e6:14:76:00:00:05:22:08:c8",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-a5a90078-bced-40fd-b267-4f8f735c9e43-10e118fdabf0.gwt.cloudapp.net"
            ],
            "commonname" : "a5a90078-bced-40fd-b267-4f8f735c9e43.gwt.cloudapp.net"
         },
         "subnet" : "20.64.0.0/10",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-07-06T00:22:01Z",
            "notbefore" : "2024-07-11T00:22:01Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }
      
  • 40.113.121.39:20000 (tcp/http/tls) - last seen on 2024-11-21 at 10:30:06 UTC

    • IP
      40.113.121.39
      Network
      40.112.0.0/13
      Domain(s)
      cloudapp.net
      Device

      <enterprise field>: device.class

      Operating System
      Microsoft Windows
      HTTP Title
      Bad Request
      ASN
      AS8075
      Organization
      MICROSOFT-CORP-MSN-AS-BLOCK
      Protocol
      http Cert not expired http
      Source
      datascan
    • Operating System
      Microsoft Windows
      Product
      Microsoft HTTPAPI 2.0
      CPE(s)

      <enterprise field>: cpe

    • Issuer Common Name
      AME Infra CA 05
      Subject Common Name
      f7ecd4ed-1671-4ed0-989b-ec0096d5fb38.gwt.cloudapp.net
      Subject Alt Name
      azuregateway-f7ecd4ed-1671-4ed0-989b-ec0096d5fb38-b647eb84abc0.gwt.cloudapp.net
      SHA256 Fingerprint
      4b977155f6219f40da4a1abe4a89ec35daa6ecfd2973c8829b95e5f07d360cf0
      Validity Not Before
      2024-09-11T16:28:46Z
      Validity Not After
      2025-09-06T16:28:46Z
    • This feature requires at least a "Lion View" to unlock. Go to our Pricing page for more.

    • Data MD5
      ab7ec59c257a6ef4d994483c583b818c
      HTTP Header MD5
      5f8987fc4ee9770a3292cd04557b2dbf
      HTTP Body MD5
      779df2c90c98bc5e3cb4127ecf04909e
    • HTTP/1.1 400 Bad Request
      Content-Type: text/html; charset=us-ascii
      Server: Microsoft-HTTPAPI/2.0
      Date: Thu, 21 Nov 2024 10:30:06 GMT
      Connection: close
      Content-Length: 326
      
      <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
      <HTML><HEAD><TITLE>Bad Request</TITLE>
      <META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
      <BODY><h2>Bad Request - Invalid Verb</h2>
      <hr><p>HTTP Error 400. The request verb is invalid.</p>
      </BODY></HTML>
      
    • {
         "@category" : "datascan",
         "@timestamp" : "2024-11-21T10:30:06.000Z",
         "app" : {
            "extract" : {
               "domain" : [
                  "w3.org"
               ],
               "hostname" : [
                  "www.w3.org"
               ],
               "url" : [
                  "http://www.w3.org/TR/html4/strict.dtd"
               ]
            },
            "http" : {
               "bodymd5" : "779df2c90c98bc5e3cb4127ecf04909e",
               "bodymmh3" : -640633908,
               "headermd5" : "5f8987fc4ee9770a3292cd04557b2dbf",
               "headermmh3" : 1600428673,
               "title" : "Bad Request"
            },
            "length" : 505
         },
         "asn" : "AS8075",
         "ca" : "false",
         "city" : "Amsterdam",
         "country" : "NL",
         "cpe" : "<enterprise field>: cpe",
         "cpecount" : "<enterprise field>: cpecount",
         "data" : "HTTP/1.1 400 Bad Request\r\nContent-Type: text/html; charset=us-ascii\r\nServer: Microsoft-HTTPAPI/2.0\r\nDate: Thu, 21 Nov 2024 10:30:06 GMT\r\nConnection: close\r\nContent-Length: 326\r\n\r\n<!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\">\r\n<HTML><HEAD><TITLE>Bad Request</TITLE>\r\n<META HTTP-EQUIV=\"Content-Type\" Content=\"text/html; charset=us-ascii\"></HEAD>\r\n<BODY><h2>Bad Request - Invalid Verb</h2>\r\n<hr><p>HTTP Error 400. The request verb is invalid.</p>\r\n</BODY></HTML>\r\n",
         "datamd5" : "ab7ec59c257a6ef4d994483c583b818c",
         "datammh3" : 1596030123,
         "device" : {
            "class" : "<enterprise field>: device.class"
         },
         "domain" : [
            "cloudapp.net"
         ],
         "extkeyusage" : [
            "serverAuth",
            "clientAuth"
         ],
         "fingerprint" : {
            "md5" : "179d9c5311e97164e11ec24a176cb70f",
            "sha1" : "79ff65029b1b7b4b99cf265f7d640deb91348a68",
            "sha256" : "4b977155f6219f40da4a1abe4a89ec35daa6ecfd2973c8829b95e5f07d360cf0"
         },
         "geolocus" : {
            "asn" : "AS8075",
            "continent" : "NA",
            "continentname" : "North America",
            "country" : "US",
            "countryname" : "United States",
            "domain" : [
               "microsoft.com"
            ],
            "isineu" : "false",
            "latitude" : "37.09024",
            "location" : "37.09024,-95.712891",
            "longitude" : "-95.712891",
            "netname" : "MSFT",
            "organization" : "Microsoft Corporation",
            "subnet" : "40.113.96.0/19"
         },
         "host" : [
            "azuregateway-f7ecd4ed-1671-4ed0-989b-ec0096d5fb38-b647eb84abc0",
            "f7ecd4ed-1671-4ed0-989b-ec0096d5fb38"
         ],
         "hostname" : [
            "azuregateway-f7ecd4ed-1671-4ed0-989b-ec0096d5fb38-b647eb84abc0.gwt.cloudapp.net",
            "f7ecd4ed-1671-4ed0-989b-ec0096d5fb38.gwt.cloudapp.net"
         ],
         "ip" : "40.113.121.39",
         "ipv6" : "false",
         "issuer" : {
            "commonname" : "AME Infra CA 05"
         },
         "keyusage" : [
            "digitalSignature",
            "keyEncipherment"
         ],
         "latitude" : "52.3759",
         "location" : "52.3759,4.8975",
         "longitude" : "4.8975",
         "node" : {
            "country" : "<enterprise field>: node.country",
            "groupid" : "<enterprise field>: node.groupid",
            "id" : "<enterprise field>: node.id",
            "physicalcountry" : "<enterprise field>: node.physicalcountry"
         },
         "organization" : "MICROSOFT-CORP-MSN-AS-BLOCK",
         "os" : "Windows",
         "osvendor" : "Microsoft",
         "port" : 20000,
         "product" : "HTTPAPI",
         "productvendor" : "Microsoft",
         "productversion" : "2.0",
         "protocol" : "http",
         "protocolversion" : "1.1",
         "publickey" : {
            "algorithm" : "rsaEncryption",
            "length" : 2048
         },
         "reason" : "Bad Request",
         "seen_date" : "2024-11-21",
         "serial" : "7c:05:76:e3:e2:a5:f1:52:c0:89:e7:26:8c:00:00:05:76:e3:e2",
         "signature" : {
            "algorithm" : "sha256WithRSAEncryption"
         },
         "source" : "datascan",
         "status" : 400,
         "subdomains" : [
            "gwt.cloudapp.net"
         ],
         "subject" : {
            "altname" : [
               "azuregateway-f7ecd4ed-1671-4ed0-989b-ec0096d5fb38-b647eb84abc0.gwt.cloudapp.net"
            ],
            "commonname" : "f7ecd4ed-1671-4ed0-989b-ec0096d5fb38.gwt.cloudapp.net"
         },
         "subnet" : "40.112.0.0/13",
         "tag" : "<enterprise field>: tag",
         "tld" : [
            "net"
         ],
         "tls" : "true",
         "transport" : "tcp",
         "validity" : {
            "notafter" : "2025-09-06T16:28:46Z",
            "notbefore" : "2024-09-11T16:28:46Z"
         },
         "version" : "v3",
         "wildcard" : "false"
      }