Advertisement
Guest User

Untitled

a guest
Feb 12th, 2022
40
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 14.44 KB | None | 0 0
  1. `[
  2. {
  3. "ip": "116.68.79.137",
  4. "firstSeen": "2021-05-23",
  5. "lastSeen": "2021-12-14",
  6. "seen": true,
  7. "tags": null,
  8. "actor": "unknown",
  9. "spoofable": false,
  10. "classification": "unknown",
  11. "cve": null,
  12. "bot": false,
  13. "vpn": false,
  14. "vpnService": "N/A",
  15. "metadata": {
  16. "asn": "AS17465",
  17. "city": "Thiruvananthapuram",
  18. "country": "India",
  19. "countryCode": "IN",
  20. "organization": "Cable ISP in India",
  21. "category": "isp",
  22. "tor": false,
  23. "rdns": "137.79.68.116.asianet.co.in",
  24. "os": "Windows 7/8",
  25. "region": "Kerala"
  26. },
  27. "rawData": {
  28. "scan": [
  29. { "port": 445, "protocol": "TCP" },
  30. { "port": 65533, "protocol": "TCP" }
  31. ],
  32. "web": {},
  33. "ja3": null,
  34. "hassh": null
  35. }
  36. },
  37. {
  38. "ip": "110.235.232.144",
  39. "firstSeen": "2022-01-31",
  40. "lastSeen": "2022-01-31",
  41. "seen": true,
  42. "tags": null,
  43. "actor": "unknown",
  44. "spoofable": true,
  45. "classification": "unknown",
  46. "cve": null,
  47. "bot": false,
  48. "vpn": false,
  49. "vpnService": "N/A",
  50. "metadata": {
  51. "asn": "AS133982",
  52. "city": "New Delhi",
  53. "country": "India",
  54. "countryCode": "IN",
  55. "organization": "Excitel Broadband Private Limited",
  56. "category": "isp",
  57. "tor": false,
  58. "rdns": "",
  59. "os": "unknown",
  60. "region": "Delhi"
  61. },
  62. "rawData": {
  63. "scan": [{ "port": 56325, "protocol": "UDP" }],
  64. "web": {},
  65. "ja3": null,
  66. "hassh": null
  67. }
  68. },
  69. {
  70. "ip": "45.33.76.15",
  71. "firstSeen": "2022-01-15",
  72. "lastSeen": "2022-02-08",
  73. "seen": true,
  74. "tags": ["Nmap"],
  75. "actor": "unknown",
  76. "spoofable": false,
  77. "classification": "unknown",
  78. "cve": null,
  79. "bot": false,
  80. "vpn": false,
  81. "vpnService": "N/A",
  82. "metadata": {
  83. "asn": "AS63949",
  84. "city": "Morris Plains",
  85. "country": "United States",
  86. "countryCode": "US",
  87. "organization": "Linode, LLC",
  88. "category": "hosting",
  89. "tor": false,
  90. "rdns": "cloud-scanner-7d443e83.internet-research-project.net",
  91. "os": "unknown",
  92. "region": "New Jersey"
  93. },
  94. "rawData": {
  95. "scan": [
  96. { "port": 25, "protocol": "TCP" },
  97. { "port": 110, "protocol": "TCP" },
  98. { "port": 143, "protocol": "TCP" },
  99. { "port": 443, "protocol": "TCP" },
  100. { "port": 448, "protocol": "TCP" },
  101. { "port": 465, "protocol": "TCP" },
  102. { "port": 563, "protocol": "TCP" },
  103. { "port": 587, "protocol": "TCP" },
  104. { "port": 636, "protocol": "TCP" },
  105. { "port": 990, "protocol": "TCP" },
  106. { "port": 992, "protocol": "TCP" },
  107. { "port": 993, "protocol": "TCP" },
  108. { "port": 994, "protocol": "TCP" },
  109. { "port": 995, "protocol": "TCP" },
  110. { "port": 2323, "protocol": "TCP" },
  111. { "port": 5060, "protocol": "TCP" },
  112. { "port": 8443, "protocol": "TCP" }
  113. ],
  114. "web": {},
  115. "ja3": [
  116. { "fingerprint": "cc8870c5053e89c025176af1201dd122", "port": 443 },
  117. { "fingerprint": "cc8870c5053e89c025176af1201dd122", "port": 993 },
  118. { "fingerprint": "cc8870c5053e89c025176af1201dd122", "port": 995 },
  119. { "fingerprint": "cc8870c5053e89c025176af1201dd122", "port": 8443 }
  120. ],
  121. "hassh": null
  122. }
  123. },
  124. {
  125. "ip": "103.230.106.53",
  126. "firstSeen": "2019-03-19",
  127. "lastSeen": "2021-12-08",
  128. "seen": true,
  129. "tags": null,
  130. "actor": "unknown",
  131. "spoofable": true,
  132. "classification": "unknown",
  133. "cve": null,
  134. "bot": false,
  135. "vpn": false,
  136. "vpnService": "N/A",
  137. "metadata": {
  138. "asn": "AS45925",
  139. "city": "Dhaka",
  140. "country": "Bangladesh",
  141. "countryCode": "BD",
  142. "organization": "ASN For Teletalk Bangladesh Ltd.",
  143. "category": "isp",
  144. "tor": false,
  145. "rdns": "",
  146. "os": "unknown",
  147. "region": "Dhaka"
  148. },
  149. "rawData": {
  150. "scan": [{ "port": 52023, "protocol": "UDP" }],
  151. "web": {},
  152. "ja3": null,
  153. "hassh": null
  154. }
  155. },
  156. {
  157. "ip": "172.104.152.7",
  158. "firstSeen": "2021-03-13",
  159. "lastSeen": "2022-01-17",
  160. "seen": true,
  161. "tags": ["Httpx", "TLS/SSL Crawler", "Web Crawler"],
  162. "actor": "unknown",
  163. "spoofable": false,
  164. "classification": "unknown",
  165. "cve": null,
  166. "bot": false,
  167. "vpn": false,
  168. "vpnService": "N/A",
  169. "metadata": {
  170. "asn": "AS63949",
  171. "city": "Frankfurt am Main",
  172. "country": "Germany",
  173. "countryCode": "DE",
  174. "organization": "Linode, LLC",
  175. "category": "hosting",
  176. "tor": false,
  177. "rdns": "li1668-7.members.linode.com",
  178. "os": "Linux 2.2-3.x",
  179. "region": "Hesse"
  180. },
  181. "rawData": {
  182. "scan": [
  183. { "port": 80, "protocol": "TCP" },
  184. { "port": 443, "protocol": "TCP" }
  185. ],
  186. "web": {
  187. "paths": ["/"],
  188. "useragents": [
  189. "httpx - Open-source project (github.com/projectdiscovery/httpx)",
  190. "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.0.1 Safari/605.1.15",
  191. "Mozilla/5.0 (Windows NT 6.2; Win64; x64; rv:16.0) Gecko/16.0 Firefox/16.0",
  192. "Mozilla/5.0 (Windows NT 6.3; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.90 Safari/537.36",
  193. "Mozilla/5.0 (Linux; U; Android 1.6; en-us; SonyEricssonX10i Build/R1AA056) AppleWebKit/528.5 (KHTML, like Gecko) Version/3.1.2 Mobile Safari/525.20.1",
  194. "Mozilla/5.0 (X11; U; Linux i686; en-gb) AppleWebKit/534.35 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.35 Puffin/2.0.5603M",
  195. "Mozilla/5.0 (Linux; Android 5.1; C6740N Build/LMY47O) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.111 Mobile Safari/537.36",
  196. "Mozilla/5.0 (compatible; Konqueror/3.5; SunOS) KHTML/3.5.1 (like Gecko)",
  197. "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.19 Safari/537.36",
  198. "Mozilla/5.0 (Linux; Android 9; CLT-AL00 Build/HUAWEICLT-AL00; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/66.0.3359.126 MQQBrowser/6.2 TBS/044807 Mobile Safari/537.36 MMWEBID/9069 MicroMessenger/7.0.6.1460(0x27000634) Process/tools NetType/WIFI Language/zh_CN",
  199. "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.90 Safari/537.36",
  200. "Mozilla/5.0 (compatible; alexa site audit/1.0; +http://www.alexa.com/help/webmasters; )",
  201. "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36",
  202. "Mozilla/5.0 (Linux; Android 9; Redmi Note 7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36",
  203. "Mozilla/5.0 (X11; Ubuntu; Linux; rv:67.0) Gecko/20100101 Firefox/67.0",
  204. "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.88 Safari/537.36 Vivaldi/2.4.1488.36",
  205. "Mozilla/5.0 (Linux; Android 9; CPH1859) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 Mobile Safari/537.36",
  206. "Mozilla/5.0 (OS/2; Warp 4.5; rv:10.0.12) Gecko/20130108 Firefox/10.0.12 SeaMonkey/2.7.2",
  207. "Mozilla/5.0 (Linux; Android 7.1.1; Coolpad 3632A Build/NMF26F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.125 Mobile Safari/537.36",
  208. "Mozilla/5.0 (Linux; U; Android 9; en-US; RMX1851 Build/PKQ1.190101.001) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/57.0.2987.108 UCBrowser/12.12.8.1206 Mobile Safari/537.36",
  209. "Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/533.19.4 (KHTML, like Gecko) Version/5.0.2 Safari/533.18.5"
  210. ]
  211. },
  212. "ja3": [
  213. { "fingerprint": "473cd7cb9faa642487833865d516e578", "port": 80 },
  214. { "fingerprint": "473cd7cb9faa642487833865d516e578", "port": 443 },
  215. { "fingerprint": "df669e7ea913f1ac0c0cce9a201a2ec1", "port": 443 }
  216. ],
  217. "hassh": null
  218. }
  219. },
  220. {
  221. "ip": "172.104.16.121",
  222. "firstSeen": "2022-01-21",
  223. "lastSeen": "2022-01-21",
  224. "seen": true,
  225. "tags": ["Nmap"],
  226. "actor": "unknown",
  227. "spoofable": false,
  228. "classification": "unknown",
  229. "cve": null,
  230. "bot": false,
  231. "vpn": false,
  232. "vpnService": "N/A",
  233. "metadata": {
  234. "asn": "AS63949",
  235. "city": "Morris Plains",
  236. "country": "United States",
  237. "countryCode": "US",
  238. "organization": "Linode, LLC",
  239. "category": "hosting",
  240. "tor": false,
  241. "rdns": "172-104-16-121.ip.linodeusercontent.com",
  242. "os": "unknown",
  243. "region": "New Jersey"
  244. },
  245. "rawData": {
  246. "scan": [
  247. { "port": 25, "protocol": "TCP" },
  248. { "port": 110, "protocol": "TCP" },
  249. { "port": 143, "protocol": "TCP" },
  250. { "port": 443, "protocol": "TCP" },
  251. { "port": 448, "protocol": "TCP" },
  252. { "port": 465, "protocol": "TCP" },
  253. { "port": 563, "protocol": "TCP" },
  254. { "port": 587, "protocol": "TCP" },
  255. { "port": 636, "protocol": "TCP" },
  256. { "port": 990, "protocol": "TCP" },
  257. { "port": 992, "protocol": "TCP" },
  258. { "port": 993, "protocol": "TCP" },
  259. { "port": 994, "protocol": "TCP" },
  260. { "port": 995, "protocol": "TCP" },
  261. { "port": 2323, "protocol": "TCP" },
  262. { "port": 5060, "protocol": "TCP" },
  263. { "port": 8443, "protocol": "TCP" }
  264. ],
  265. "web": {},
  266. "ja3": [
  267. { "fingerprint": "cc8870c5053e89c025176af1201dd122", "port": 443 }
  268. ],
  269. "hassh": null
  270. }
  271. },
  272. {
  273. "ip": "103.96.104.92",
  274. "firstSeen": "2020-01-04",
  275. "lastSeen": "2022-02-10",
  276. "seen": true,
  277. "tags": ["Eternalblue", "SMBv1 Crawler"],
  278. "actor": "unknown",
  279. "spoofable": false,
  280. "classification": "malicious",
  281. "cve": ["CVE-2017-0144"],
  282. "bot": false,
  283. "vpn": false,
  284. "vpnService": "N/A",
  285. "metadata": {
  286. "asn": "AS134153",
  287. "city": "Dhaka",
  288. "country": "Bangladesh",
  289. "countryCode": "BD",
  290. "organization": "MD Manir Hossen trading as Xplore Cyber & Net",
  291. "category": "isp",
  292. "tor": false,
  293. "rdns": "",
  294. "os": "Windows 7/8",
  295. "region": "Dhaka"
  296. },
  297. "rawData": {
  298. "scan": [
  299. { "port": 445, "protocol": "TCP" },
  300. { "port": 1433, "protocol": "TCP" }
  301. ],
  302. "web": {},
  303. "ja3": null,
  304. "hassh": null
  305. }
  306. },
  307. {
  308. "ip": "119.160.65.27",
  309. "firstSeen": "2019-03-30",
  310. "lastSeen": "2021-11-16",
  311. "seen": true,
  312. "tags": null,
  313. "actor": "unknown",
  314. "spoofable": true,
  315. "classification": "unknown",
  316. "cve": null,
  317. "bot": false,
  318. "vpn": false,
  319. "vpnService": "N/A",
  320. "metadata": {
  321. "asn": "AS45669",
  322. "city": "Rawalpindi",
  323. "country": "Pakistan",
  324. "countryCode": "PK",
  325. "organization": "PMCL /LDI IP TRANSIT",
  326. "category": "isp",
  327. "tor": false,
  328. "rdns": "host-27-net-65-160-119.mobilinkinfinity.net.pk",
  329. "os": "unknown",
  330. "region": "Punjab"
  331. },
  332. "rawData": {
  333. "scan": [{ "port": 0, "protocol": "ICMP" }],
  334. "web": {},
  335. "ja3": null,
  336. "hassh": null
  337. }
  338. },
  339. {
  340. "ip": "186.22.54.24",
  341. "firstSeen": "2020-03-15",
  342. "lastSeen": "2021-11-19",
  343. "seen": true,
  344. "tags": null,
  345. "actor": "unknown",
  346. "spoofable": false,
  347. "classification": "unknown",
  348. "cve": null,
  349. "bot": false,
  350. "vpn": false,
  351. "vpnService": "N/A",
  352. "metadata": {
  353. "asn": "AS27747",
  354. "city": "Quilmes",
  355. "country": "Argentina",
  356. "countryCode": "AR",
  357. "organization": "Telecentro S.A.",
  358. "category": "isp",
  359. "tor": false,
  360. "rdns": "cpe-186-22-54-24.telecentro-reversos.com.ar",
  361. "os": "Windows 2000",
  362. "region": "Buenos Aires"
  363. },
  364. "rawData": {
  365. "scan": [{ "port": 6221, "protocol": "TCP" }],
  366. "web": {},
  367. "ja3": null,
  368. "hassh": null
  369. }
  370. },
  371. {
  372. "ip": "103.96.104.95",
  373. "firstSeen": "2020-01-04",
  374. "lastSeen": "2022-02-05",
  375. "seen": true,
  376. "tags": ["Eternalblue", "SMBv1 Crawler"],
  377. "actor": "unknown",
  378. "spoofable": false,
  379. "classification": "malicious",
  380. "cve": ["CVE-2017-0144"],
  381. "bot": false,
  382. "vpn": false,
  383. "vpnService": "N/A",
  384. "metadata": {
  385. "asn": "AS134153",
  386. "city": "Dhaka",
  387. "country": "Bangladesh",
  388. "countryCode": "BD",
  389. "organization": "MD Manir Hossen trading as Xplore Cyber & Net",
  390. "category": "isp",
  391. "tor": false,
  392. "rdns": "",
  393. "os": "Windows 7/8",
  394. "region": "Dhaka"
  395. },
  396. "rawData": {
  397. "scan": [{ "port": 445, "protocol": "TCP" }],
  398. "web": {},
  399. "ja3": null,
  400. "hassh": null
  401. }
  402. },
  403. {
  404. "ip": "103.96.104.94",
  405. "firstSeen": "2020-01-04",
  406. "lastSeen": "2022-02-07",
  407. "seen": true,
  408. "tags": ["Eternalblue", "SMBv1 Crawler"],
  409. "actor": "unknown",
  410. "spoofable": false,
  411. "classification": "malicious",
  412. "cve": ["CVE-2017-0144"],
  413. "bot": false,
  414. "vpn": false,
  415. "vpnService": "N/A",
  416. "metadata": {
  417. "asn": "AS134153",
  418. "city": "Dhaka",
  419. "country": "Bangladesh",
  420. "countryCode": "BD",
  421. "organization": "MD Manir Hossen trading as Xplore Cyber & Net",
  422. "category": "isp",
  423. "tor": false,
  424. "rdns": "",
  425. "os": "Windows 7/8",
  426. "region": "Dhaka"
  427. },
  428. "rawData": {
  429. "scan": [
  430. { "port": 445, "protocol": "TCP" },
  431. { "port": 1433, "protocol": "TCP" }
  432. ],
  433. "web": {},
  434. "ja3": null,
  435. "hassh": null
  436. }
  437. },
  438. {
  439. "ip": "182.48.95.110",
  440. "firstSeen": "2018-01-23",
  441. "lastSeen": "2022-02-08",
  442. "seen": true,
  443. "tags": null,
  444. "actor": "unknown",
  445. "spoofable": true,
  446. "classification": "unknown",
  447. "cve": null,
  448. "bot": false,
  449. "vpn": false,
  450. "vpnService": "N/A",
  451. "metadata": {
  452. "asn": "AS63969",
  453. "city": "Dhaka",
  454. "country": "Bangladesh",
  455. "countryCode": "BD",
  456. "organization": "Race Online Limited",
  457. "category": "isp",
  458. "tor": false,
  459. "rdns": "",
  460. "os": "unknown",
  461. "region": "Dhaka"
  462. },
  463. "rawData": {
  464. "scan": [{ "port": 57503, "protocol": "UDP" }],
  465. "web": {},
  466. "ja3": null,
  467. "hassh": null
  468. }
  469. }
  470. ]
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement