-1427803479 | 2024-09-13T11:13:54.237531
80 /
tcp
HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Fri, 13 Sep 2024 11:13:53 GMT
Content-Type: text/html
Content-Length: 178
Connection: keep-alive
Location: https://217.146.74.211:443/
-1528282667 | 2024-09-13T08:09:20.616799
443 /
tcp
<empty title>
HTTP/1.1 200
Server: nginx
Date: Fri, 13 Sep 2024 08:09:20 GMT
Content-Type: text/html;charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Pragma: no-cache
Expires: 0
X-Frame-Options: SAMEORIGIN
Content-Language: en-US
Vary: Accept-Encoding
Strict-Transport-Security: max-age=31536000; includeSubDomains
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
12:e2:e2:cf:fd:e6:31:eb:8d:67:74:1d:c3:52:ba:67:2c:73:eb:04
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=cn, ST=sc, L=cd, O=my, OU=as, CN=hy.com
Validity
Not Before: May 17 04:58:29 2022 GMT
Not After : May 14 04:58:29 2032 GMT
Subject: C=cn, ST=sc, L=cd, O=my, OU=as, CN=hy.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ac:ee:6b:10:36:8e:a5:50:6d:98:48:ea:f5:72:
99:91:a5:4b:60:20:14:8a:c0:2f:b8:39:9f:ea:e3:
60:66:3f:7a:e6:ca:17:c9:18:39:13:89:98:64:e4:
d5:7a:90:54:1c:b0:a9:e3:ea:c3:7b:cb:64:5a:a4:
75:03:31:8f:0d:dd:6d:c0:c4:ad:af:f7:41:77:f6:
b4:54:7c:a1:81:be:01:34:00:8b:bd:c5:93:4a:44:
25:ee:8c:17:45:66:6e:6a:a7:eb:5f:a3:eb:5d:da:
88:7f:18:1a:5e:56:90:be:e1:74:55:61:0d:87:5f:
8f:ba:d6:04:97:7d:b4:54:75:da:ae:bc:84:4d:06:
57:14:1a:81:a1:e3:f1:30:80:d5:5e:39:8a:b9:21:
56:68:5b:d3:07:2c:b3:b8:e5:b4:fc:2f:92:be:4e:
17:bf:83:bc:65:76:19:b8:d9:1f:30:9b:38:ea:4f:
49:95:e8:76:c3:e3:91:77:b0:86:d8:f7:a8:8c:15:
23:6b:89:52:78:0c:de:0e:97:c5:82:5c:35:21:ec:
7e:96:a7:a8:92:b5:b4:18:3a:12:02:4d:0d:c5:e1:
88:ff:f4:3e:18:d1:e0:34:7c:45:b7:54:91:4c:ec:
57:e1:56:a5:23:3b:f7:e5:4a:a3:f6:a8:e8:36:96:
35:4b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Alternative Name:
IP Address:217.146.74.211, DNS:4.4.4.4
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
21:77:c4:05:8f:96:b8:13:55:0a:d0:04:90:59:07:b2:2b:a1:
35:1d:37:cc:3c:47:3b:3e:7e:cc:2e:19:90:e8:48:7d:ca:90:
14:89:74:17:e8:7c:a8:19:d0:57:90:2d:bd:a4:35:12:e5:11:
dc:f6:08:92:e5:9e:8f:7b:b8:54:6c:16:fe:d6:ba:41:90:88:
b0:8f:73:ad:85:9a:64:30:77:9c:07:58:32:bf:17:3e:55:b6:
66:35:5d:ac:de:aa:4e:dd:80:d0:de:87:16:89:ff:c3:4c:67:
15:8c:14:58:9c:27:44:83:2c:c2:fa:a7:55:6c:b0:c7:44:a6:
57:5f:41:2c:ca:74:fb:22:78:ad:ff:fa:9d:4f:83:d4:20:6d:
34:8e:61:2c:d9:32:95:85:82:60:51:a0:71:1f:e4:fe:28:36:
d8:8a:3f:42:27:68:8d:7f:cc:d4:d3:84:c7:6d:c2:44:15:a9:
4b:21:38:98:70:f2:54:43:17:6d:4c:48:c7:d9:34:34:9f:25:
a7:97:d0:e5:7e:04:f0:81:5e:6a:9c:62:04:68:72:79:c4:5a:
01:f9:0d:14:e9:55:96:b2:9e:58:3c:b3:90:9c:3a:d3:40:45:
c0:f8:2e:92:38:5c:96:5f:22:66:8d:80:aa:2d:4a:3c:c4:a6:
b8:28:ba:44
-1583180230 | 2024-09-13T05:19:42.075903
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: WIN-IBBIQ731LGA
NetBIOS Domain Name: WIN-IBBIQ731LGA
NetBIOS Computer Name: WIN-IBBIQ731LGA
DNS Domain Name: WIN-IBBIQ731LGA
FQDN: WIN-IBBIQ731LGA
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7b:b6:6f:b4:aa:90:f5:b7:47:3c:0f:79:24:9c:85:aa
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-IBBIQ731LGA
Validity
Not Before: May 27 03:03:52 2024 GMT
Not After : Nov 26 03:03:52 2024 GMT
Subject: CN=WIN-IBBIQ731LGA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d6:93:93:7a:98:0c:b8:69:24:88:42:c8:6f:31:
b5:95:25:4f:83:bc:30:d8:81:5b:72:e1:39:99:51:
ef:d0:6d:48:d1:9b:81:79:53:17:81:ed:53:0e:09:
7a:a7:c4:43:a8:9b:aa:9a:00:0b:f1:fb:1e:06:84:
a1:09:99:ed:2a:29:cf:f3:65:c5:a9:b4:e0:c0:1e:
e7:e4:5d:cb:34:9b:20:07:ae:cc:b6:4c:5a:27:aa:
c8:a3:cf:f8:f1:d0:8b:61:aa:a6:fb:91:d9:b2:84:
38:61:90:a3:69:02:31:7b:7c:73:64:fd:71:15:ce:
6c:16:83:aa:be:bb:7e:59:31:78:54:e1:ab:7a:71:
f8:65:aa:3b:00:50:7b:f7:d4:b0:45:b7:01:1d:78:
da:18:2e:4a:75:a2:d2:ca:f1:ff:f0:8c:0d:76:b8:
1b:97:d8:8f:83:41:7e:50:8b:f9:14:af:34:da:39:
95:eb:0f:37:c9:fb:30:06:93:f0:bc:74:a6:bb:dc:
55:f0:a2:be:3e:f9:1c:53:32:3c:89:9d:ee:10:33:
30:a2:d7:5a:76:a1:61:4a:06:b6:c1:75:39:93:de:
99:2b:63:b5:25:9a:dd:84:32:2b:f7:8e:2d:ba:dd:
21:a3:90:b1:b9:b4:67:aa:99:c2:72:0f:8f:e6:28:
dd:31
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a0:94:1e:9a:5b:49:82:de:e8:06:03:55:5a:50:e4:93:2e:42:
fe:82:95:de:b2:8e:ef:e4:2d:5f:3e:44:67:75:5e:3f:82:ef:
82:56:01:fd:b0:82:f0:91:a0:bf:96:eb:1f:78:15:d6:6b:f0:
c6:63:b5:c3:1c:71:1b:bc:84:8e:f0:a8:90:2c:33:ea:c2:e7:
ce:37:d4:64:94:21:f9:5e:c4:d7:cf:33:49:5a:df:31:5f:a8:
59:ef:a7:a2:48:b7:99:d1:e4:15:cf:3c:f4:cd:9a:7e:95:96:
48:70:54:30:e9:63:e0:cd:ff:2e:79:91:4c:00:c1:11:87:a9:
49:88:75:d6:77:71:ae:a9:6d:c8:7c:56:54:aa:44:fe:b7:23:
30:2d:72:05:e4:35:43:01:75:9b:7c:e7:e0:ed:ba:96:1e:dc:
e3:d6:0a:85:df:05:d3:aa:dc:1f:19:37:0b:df:0f:df:f3:a6:
5c:07:9f:cc:f0:70:2b:64:f0:31:26:4e:54:a5:74:99:47:9c:
fb:68:31:11:41:24:10:4d:66:0a:17:17:c3:9f:1b:37:01:e8:
56:95:ef:9e:eb:e2:dc:d8:36:cf:8d:22:2a:d6:4f:6a:77:8b:
be:2c:10:3c:04:0d:2b:da:74:07:0b:19:75:da:3b:1c:ad:e0:
1a:b1:3e:a1
1674595846 | 2024-09-12T22:38:49.597081
8090 /
tcp
HTTP/1.1 200 OK
Server: Apache-Coyote/1.1
Content-Type: text/html;charset=UTF-8
Transfer-Encoding: chunked
Date: Thu, 12 Sep 2024 22:38:49 GMT
1259657745 | 2024-09-13T00:35:13.318107
8099 /
tcp
HTTP/1.1 426 Upgrade Required
Server: WebSocket++/0.7.0
-1528282667 | 2024-09-13T06:38:02.657971
9800 /
tcp
<empty title>
HTTP/1.1 200
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Pragma: no-cache
Expires: 0
X-Frame-Options: SAMEORIGIN
Content-Type: text/html;charset=UTF-8
Content-Language: en-US
Transfer-Encoding: chunked
Vary: Accept-Encoding
Date: Fri, 13 Sep 2024 06:38:02 GMT