services.banner |
HTTP/1.1 400 Bad Request\r\nServer: nginx\r\nDate: Sat, 28 Jan 2023 16:32:03 GMT\r\nContent-Type: text/html\r\nContent-Length: 248\r\nConnection: close\r\n\r\n<html>\r\n<head><title>400 The plain HTTP request was sent to HTTPS port</title></head>\r\n<body>\r\n<center><h1>400 Bad Request</h1></center>\r\n<center>The plain HTTP request was sent to HTTPS port</center>\r\n<hr><center>nginx</center>\r\n</body>\r\n</html>\r\n |
|
services.banner_grab.banner |
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 |
|
services.banner_grab.transport |
TCP |
|
services.banner_hashes |
sha256:aab14ea52a64a3e51250ded352ee561df11c0dec6f979adaf3294733155c2826 |
|
services.banner_hex |
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 |
|
services.certificate |
0b32eb0a191ae6683656973ed17a237872e08453bfabb6c45584ea5209cb8a8f |
|
services.extended_service_name |
UNKNOWN |
|
services.jarm.fingerprint |
2ad2ad20d2ad2ad22c2ad2ad2ad2ad71eca4d2b736881571e98123f01ed268 |
|
services.jarm.cipher_and_version_fingerprint |
2ad2ad20d2ad2ad22c2ad2ad2ad2ad |
|
services.jarm.tls_extensions_sha256 |
71eca4d2b736881571e98123f01ed268 |
|
services.jarm.observed_at |
2023-01-26T18:26:15.332376167Z |
|
services.observed_at |
2023-01-28T16:54:18.781018715Z |
|
services.perspective_id |
PERSPECTIVE_HE |
|
services.port |
443 |
|
services.service_name |
UNKNOWN |
|
services.source_ip |
2620:96:e000:b0cc:e:2:2:3 |
|
services.tls.version_selected |
TLSv1_2 |
|
services.tls.cipher_selected |
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 |
|
services.tls.certificates.leaf_fp_sha_256 |
0b32eb0a191ae6683656973ed17a237872e08453bfabb6c45584ea5209cb8a8f |
|
services.tls.certificates.chain_fps_sha_256 |
7fa4ff68ec04a99d7528d5085f94907f4d1dd1c5381bacdc832ed5c960214676 |
|
services.tls.certificates.chain_fps_sha_256 |
68b9c761219a5b1f0131784474665db61bbdb109e00f05ca9f74244ee5f5f52b |
|
services.tls.certificates.chain_fps_sha_256 |
d7a7a0fb5d7e2731d771e9484ebcdef71d5f0c3e0a2948782bc83ee0ea699ef4 |
|
services.tls.certificates.leaf_data.names |
www.xehay.vn |
|
services.tls.certificates.leaf_data.names |
xehay.vn |
|
services.tls.certificates.leaf_data.subject_dn |
CN=www.xehay.vn |
|
services.tls.certificates.leaf_data.issuer_dn |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA |
|
services.tls.certificates.leaf_data.pubkey_bit_size |
2048 |
|
services.tls.certificates.leaf_data.pubkey_algorithm |
RSA |
|
services.tls.certificates.leaf_data.tbs_fingerprint |
9695aead4628cdd03eda9794353ad6e878d48a9e23f558ad31dc32e84b27ae8f |
|
services.tls.certificates.leaf_data.fingerprint |
0b32eb0a191ae6683656973ed17a237872e08453bfabb6c45584ea5209cb8a8f |
|
services.tls.certificates.leaf_data.issuer.common_name |
Sectigo RSA Domain Validation Secure Server CA |
|
services.tls.certificates.leaf_data.issuer.locality |
Salford |
|
services.tls.certificates.leaf_data.issuer.organization |
Sectigo Limited |
|
services.tls.certificates.leaf_data.issuer.province |
Greater Manchester |
|
services.tls.certificates.leaf_data.issuer.country |
GB |
|
services.tls.certificates.leaf_data.subject.common_name |
www.xehay.vn |
|
services.tls.certificates.leaf_data.public_key.key_algorithm |
RSA |
|
services.tls.certificates.leaf_data.public_key.rsa.modulus |
8Lls+rV85Y3a+hOcRwxP0odOPYqsIxSzgs+ZO6ly3RSpFPPZuQ5b0XmTX8NPMA6jcKK4q8i3FtfBwEuaPh1lKkGHXo00Ixh2UT6UQRWiBsBbWJa4whKatdonIF+2p/kUdfjVQe5MAnyvZW3vtsTT9fCuk43gNkYjbIcnE2QRMJQ+hGJoka7R97dVVVQYi9KqUsgdKGynblZBHWfQhTDJA+ldqCpRRGF49wes36TYCUV+UT3sasO6lz2QoO9i98DcELC94SFhM6T6OUCc3RAbAkhBZWXti47w2lD0mw7RxSMY1zwt0ouD4+BWO8iY6ederOvQnuYnr5UYDrqlIDhXHQ== |
|
services.tls.certificates.leaf_data.public_key.rsa.exponent |
AAEAAQ== |
|
services.tls.certificates.leaf_data.public_key.rsa.length |
256 |
|
services.tls.certificates.leaf_data.public_key.fingerprint |
649ffc16fad866c1272f0a1eff774d562e49d8e83fea5658c75ad340c572e5d9 |
|
services.tls.certificates.leaf_data.signature.signature_algorithm |
SHA256-RSA |
|
services.tls.certificates.leaf_data.signature.self_signed |
false |
|
services.tls.certificates.chain.fingerprint |
7fa4ff68ec04a99d7528d5085f94907f4d1dd1c5381bacdc832ed5c960214676 |
|
services.tls.certificates.chain.subject_dn |
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA |
|
services.tls.certificates.chain.issuer_dn |
C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority |
|
|
services.tls.certificates.chain.fingerprint |
68b9c761219a5b1f0131784474665db61bbdb109e00f05ca9f74244ee5f5f52b |
|
services.tls.certificates.chain.subject_dn |
C=US, ST=New Jersey, L=Jersey City, O=The USERTRUST Network, CN=USERTrust RSA Certification Authority |
|
services.tls.certificates.chain.issuer_dn |
C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services |
|
|
services.tls.certificates.chain.fingerprint |
d7a7a0fb5d7e2731d771e9484ebcdef71d5f0c3e0a2948782bc83ee0ea699ef4 |
|
services.tls.certificates.chain.subject_dn |
C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services |
|
services.tls.certificates.chain.issuer_dn |
C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services |
|
|
services.tls.server_key_exchange.ec_params.named_curve |
23 |
|
services.tls.ja3s |
269a96c9d615229909f4c0c1056681dc |
|
services.transport_protocol |
TCP |
|
services.truncated |
false |
|