Hostnames |
medway-app-srv-01.southafricanorth.cloudapp.azure.com portal.medway.co.za |
Domains | azure.com medway.co.za |
Cloud Provider | Azure |
Cloud Region | southafricanorth |
Cloud Service | AzureCloud |
Country | South Africa |
City | Johannesburg |
Organization | Microsoft |
ISP | Microsoft Corporation |
ASN | AS8075 |
200602898 | 2024-09-05T05:52:26.68929922 / tcp
SSH-2.0-OpenSSH_7.6p1 Ubuntu-4ubuntu0.5 Key type: ssh-rsa Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQDeGCDqf/A4hXAjd2rFoc2yGheOYxzhbD8J02OK5fF2wEd5 2tz5Z1uMGGvAyCBHNrstL/JPm6YmT7m9kE0bMjsI+ZqdXfmLwSCcTcQgHHXGRjVzUEUInLdXMt+K fzulO+6B/4KceN2y6bqOCVwJQOJ6Pd0yssIuifrJUngsEgrED8QGLE2rzEuzT3jZ72ub58kEv9Cd MlNb+BapkksNZt+k4kml6+b3lSfpU3Co3ocL3IasJXCMS+gQhCES8h2XOCQS/f9Uwv8Lcdyt74vX GFhumcROFiwbqgLYJ/QM9Ex8dxESAnsWI3E1X9Ui/yhtZPG8q4X6OM1jV8IHH1Qu7AYT Fingerprint: 55:9f:d0:e3:ae:01:a8:34:f7:05:39:9a:fb:7a:a3:01 Kex Algorithms: curve25519-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521 diffie-hellman-group-exchange-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group14-sha256 diffie-hellman-group14-sha1 Server Host Key Algorithms: ssh-rsa rsa-sha2-512 rsa-sha2-256 ecdsa-sha2-nistp256 ssh-ed25519 Encryption Algorithms: chacha20-poly1305@openssh.com aes128-ctr aes192-ctr aes256-ctr aes128-gcm@openssh.com aes256-gcm@openssh.com MAC Algorithms: umac-64-etm@openssh.com umac-128-etm@openssh.com hmac-sha2-256-etm@openssh.com hmac-sha2-512-etm@openssh.com hmac-sha1-etm@openssh.com umac-64@openssh.com umac-128@openssh.com hmac-sha2-256 hmac-sha2-512 hmac-sha1 Compression Algorithms: none zlib@openssh.com
1560989878 | 2024-09-16T15:05:43.81818080 / tcp
HTTP/1.1 404 Not Found Server: nginx/1.17.3 Date: Mon, 16 Sep 2024 15:05:43 GMT Content-Type: text/html Content-Length: 555 Connection: keep-alive Vary: Accept-Encoding
642457208 | 2024-09-09T11:37:01.323246443 / tcp
HTTP/1.1 200 OK Server: nginx/1.17.3 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: keep-alive Vary: Accept-Encoding Cache-Control: no-cache, private Date: Mon, 09 Sep 2024 11:37:01 GMT Set-Cookie: XSRF-TOKEN=eyJpdiI6IjkzS0V1OU9LNUlGaUtZTnVCcGpHOGc9PSIsInZhbHVlIjoiZnVqdEUrU1NKR3NQaTU4Zm14NXBCMkNIS3dHXC9BUlFcL3hZa0RFOE1VNXQ3MFBxR05CZ05PRnFoRk15bWh3bkFoIiwibWFjIjoiZjU3OWU4ZWVhZjU1MzY4OTMxYTdmNjljNmU3MjgxNTZkMzA0MTNhNmZmOTNhZjI2NGM4MzExYTgwMDA5NDcyMCJ9; expires=Mon, 09-Sep-2024 13:37:01 GMT; Max-Age=7200; path=/ Set-Cookie: medway_session=eyJpdiI6IkFXellDa0lSYUNmVWpzT1o0ZUxCdUE9PSIsInZhbHVlIjoiWXFiMXd3SkhNVEc3bWkwbGxpTzdlQWRBaXRRUFJzYU5nWWhMN2hYSXJMUHV5SitpSk52ZHErR0JiT2UrZDZSSSIsIm1hYyI6IjY3MzhiNjg0NmI2ZWFjYjJhODIxN2ZkOTQzZGNhOTExYmIzMGFmNDkzZWZiMWY4Zjc5ODQ3ZDg0MjNmZmQwYjYifQ%3D%3D; expires=Mon, 09-Sep-2024 13:37:01 GMT; Max-Age=7200; path=/; httponly X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff
Certificate: Data: Version: 3 (0x2) Serial Number: 03:31:e7:09:c5:3f:30:00:3a:32:82:47:20:78:91:0a:0e:cd Signature Algorithm: ecdsa-with-SHA384 Issuer: C=US, O=Let's Encrypt, CN=E6 Validity Not Before: Jul 9 09:02:27 2024 GMT Not After : Oct 7 09:02:26 2024 GMT Subject: CN=medway-app-srv-01.southafricanorth.cloudapp.azure.com Subject Public Key Info: Public Key Algorithm: id-ecPublicKey Public-Key: (384 bit) pub: 04:b1:21:f5:96:cc:1a:7c:8f:35:72:54:bd:a6:e0: 5a:17:69:80:1e:76:e2:61:f7:6b:23:61:83:d0:72: bf:7f:ac:9b:ec:8a:79:2a:af:51:e2:64:ab:28:2c: 42:5a:51:b5:d7:a0:91:2e:86:4f:b5:69:19:20:09: 0a:40:63:fe:a6:7d:ac:c0:ad:6d:8d:54:85:66:d1: 67:2c:63:72:e0:b2:af:3a:1b:da:44:8f:0c:7b:83: 3a:45:a3:85:69:ac:48 ASN1 OID: secp384r1 NIST CURVE: P-384 X509v3 extensions: X509v3 Key Usage: critical Digital Signature X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: BD:9C:2C:B2:0B:6B:C7:30:00:5B:DA:EB:3A:43:BA:79:DF:02:79:FB X509v3 Authority Key Identifier: 93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2 Authority Information Access: OCSP - URI:http://e6.o.lencr.org CA Issuers - URI:http://e6.i.lencr.org/ X509v3 Subject Alternative Name: DNS:medway-app-srv-01.southafricanorth.cloudapp.azure.com X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12: ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E Timestamp : Jul 9 10:02:27.483 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:A4:5D:16:73:59:C0:A9:7E:0F:49:05: AF:A7:D3:16:31:4A:A9:D3:B9:B0:03:7F:D9:40:BF:9C: 7C:DB:0F:5C:3A:02:20:7C:BE:7F:DF:27:FE:13:E5:CD: 4C:2F:48:FB:C7:90:3E:2B:3E:1C:DC:D4:13:06:3F:F1: BB:0C:EA:C9:F7:71:7E Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32: 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C Timestamp : Jul 9 10:02:27.673 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:11:85:BA:94:31:A0:A1:C7:72:E1:5B:68: 5A:B1:45:09:D8:F2:DD:7D:60:50:DA:93:2C:D3:35:2A: 08:D4:34:27:02:20:55:5F:AF:82:09:B2:7A:9C:FF:B2: 3B:D0:D8:AB:75:A2:43:8B:35:DA:50:62:76:98:A0:FC: B1:45:28:01:10:FB Signature Algorithm: ecdsa-with-SHA384 Signature Value: 30:65:02:31:00:dd:73:77:95:52:68:6d:78:c7:f5:3a:6c:a7: cb:f4:9d:69:64:d6:b4:9d:b5:12:1b:29:05:8d:42:5f:4a:09: bc:08:43:01:3b:fa:0c:3e:25:77:09:4c:7f:2b:9d:2c:96:02: 30:4b:0c:3a:25:7d:3f:31:52:47:e3:3e:49:4b:e3:09:e0:52: f4:2a:66:1d:89:03:ca:65:df:29:34:81:a4:29:18:c4:be:46: ea:0a:2f:ca:5e:47:3d:74:42:7a:7a:f4:c8
1107662018 | 2024-09-12T02:42:45.5777463389 / tcp
Remote Desktop Protocol \x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x01\x08\x00\x01\x00\x00\x00
-416463518 | 2024-09-23T16:45:24.04624410000 / tcp
HTTP/1.0 200 Document follows Date: Mon, 23 Sep 2024 16:45:23 GMT Server: MiniServ/1.990 Connection: close Auth-type: auth-required=1 Set-Cookie: redirect=1; path=/; secure; httpOnly Set-Cookie: testing=1; path=/; secure; httpOnly X-Frame-Options: SAMEORIGIN Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval'; frame-src 'self'; child-src 'self' X-Content-Type-Options: nosniff X-no-links: 1 Content-type: text/html; Charset=UTF-8
Certificate: Data: Version: 3 (0x2) Serial Number: 04:92:4a:50:10:9a:90:eb:f1:09:fc:eb:a7:c0:47:44:36:e9 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Let's Encrypt, CN=R3 Validity Not Before: May 31 05:29:24 2024 GMT Not After : Aug 29 05:29:23 2024 GMT Subject: CN=portal.medway.co.za Subject Public Key Info: Public Key Algorithm: id-ecPublicKey Public-Key: (384 bit) pub: 04:00:ae:7b:9a:f5:86:3d:93:d5:df:04:bf:34:38: 84:ea:82:25:61:b2:83:a1:f7:25:80:9f:88:48:f8: f3:1a:9d:ab:eb:89:56:68:f2:bf:d2:d5:3a:86:89: a6:5e:59:ad:78:af:59:f0:78:fb:d2:94:a4:e1:b7: 31:b1:07:5a:b3:69:0f:23:44:16:f9:16:f8:68:3f: 51:e1:20:12:21:38:c8:a1:60:db:07:63:4c:aa:a7: 34:27:77:55:b0:88:37 ASN1 OID: secp384r1 NIST CURVE: P-384 X509v3 extensions: X509v3 Key Usage: critical Digital Signature X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 54:6E:84:7C:16:33:36:89:76:B9:17:96:6F:1A:F1:C5:57:70:4D:C4 X509v3 Authority Key Identifier: 14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6 Authority Information Access: OCSP - URI:http://r3.o.lencr.org CA Issuers - URI:http://r3.i.lencr.org/ X509v3 Subject Alternative Name: DNS:portal.medway.co.za X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12: ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E Timestamp : May 31 06:29:24.397 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:F1:B2:F5:FB:61:99:8F:77:25:A5:2F: C4:73:F1:DE:A3:F0:02:E3:9A:76:E3:37:55:10:50:65: B0:EA:CE:9A:59:02:20:4E:DD:76:EF:E0:BD:09:EE:0E: 02:A1:B0:97:E9:6F:C5:4A:A3:04:B9:A0:66:50:1F:F7: AE:1E:A1:B8:9D:96:3F Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : May 31 06:29:24.417 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6B:C2:11:ED:BF:90:1F:6B:9D:D5:BE:EA: 19:1C:EE:28:37:46:19:1A:B8:06:33:FA:81:C0:7B:48: E0:61:83:80:02:20:4B:DA:6B:91:09:FF:DF:D0:29:47: 98:7F:FE:E3:7F:8C:6B:74:AF:DA:1D:4A:B0:E2:20:22: 93:6E:AA:8B:BB:36 Signature Algorithm: sha256WithRSAEncryption Signature Value: 72:48:07:35:b3:eb:a2:a1:78:9b:35:ca:15:c5:6f:95:17:e2: cb:db:1c:2e:6f:8b:71:98:08:c9:a2:37:3d:33:5e:c1:e1:41: 74:8b:29:45:e9:a3:52:5c:60:f9:eb:d2:19:29:03:03:1d:7a: 4f:f4:d9:e5:34:fb:22:de:c3:1d:08:39:75:92:a8:08:c5:68: 05:85:cb:4f:f0:db:2a:ad:7c:fc:60:65:9d:3b:73:48:c8:39: b1:1c:58:49:a9:52:29:41:26:bb:ba:9c:de:02:07:55:6b:f3: 82:74:cc:85:a5:c3:9d:e3:e1:52:52:80:ec:18:4e:fc:d3:85: 54:ad:17:4d:14:62:5a:35:7d:31:55:5b:9d:61:84:2d:8f:6b: 66:f3:b5:c1:61:f0:7e:7d:34:1c:e2:8d:17:ee:f5:3a:bf:49: 94:2c:2c:38:c6:1f:51:b2:29:d9:e8:e2:b0:09:b3:78:3e:23: 30:84:a8:cd:f2:09:64:a5:30:11:f5:4b:23:a8:82:46:f1:e5: 3a:2a:c8:b3:22:14:db:2c:c3:0d:5c:ed:02:8c:53:73:33:76: 7f:ca:b7:eb:df:8f:39:17:68:33:ae:7a:2e:fe:3a:ce:40:b9: be:51:38:2e:cc:c7:a4:a7:3b:00:ea:45:43:c6:2c:fc:ed:f9: eb:07:c9:ae