Hostnames |
baydangcap.com.vn haiantrip.com lanthibooking.com testade.metatrip.vn minhquanairlines.vn ngoinhaphuongnam.com ngophuongdong.vn phongvebaotam.vn phongvethienthe.com sv1.saigondata.net book.travelagent.vn vemaybaygiabinhdan.vn vemaybayhongan.com vere247.vn vetuoidao.com vemaybay.visahuyenle.com webay.vn |
Domains | baydangcap.com.vn haiantrip.com lanthibooking.com metatrip.vn minhquanairlines.vn ngoinhaphuongnam.com ngophuongdong.vn phongvebaotam.vn phongvethienthe.com saigondata.net travelagent.vn vemaybaygiabinhdan.vn vemaybayhongan.com vere247.vn vetuoidao.com visahuyenle.com webay.vn |
Country | Viet Nam |
City | Ho Chi Minh City |
Organization | MINH HIEN SOLUTIONS COMPANY LIMITED |
ISP | Webico Company Limited |
ASN | AS135951 |
1489525118 | 2024-12-27T13:02:35.32952880 / tcp
HTTP/1.1 404 Not Found Content-Type: text/html; charset=us-ascii Server: Microsoft-HTTPAPI/2.0 Date: Fri, 27 Dec 2024 13:02:32 GMT Connection: close Content-Length: 315
2101559833 | 2024-12-24T20:29:18.513179135 / tcp
Microsoft RPC Endpoint Mapper d95afe70-a6d5-4259-822e-2c84da1ddb0d version: v1.0 protocol: [MS-RSP]: Remote Shutdown Protocol provider: wininit.exe ncacn_ip_tcp: 103.161.172.171:49152 ncalrpc: WindowsShutdown ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\InitShutdown ncalrpc: WMsgKRpc061820 76f226c3-ec14-4325-8a99-6a46348418af version: v1.0 provider: winlogon.exe ncalrpc: WindowsShutdown ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\InitShutdown ncalrpc: WMsgKRpc061820 ncalrpc: WMsgKRpc062C81 ncalrpc: WMsgKRpc02040BED2 9b008953-f195-4bf9-bde0-4471971e58ed version: v1.0 ncalrpc: dabrpc ncalrpc: LRPC-93b2d87e08a1651362 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\LSM_API_service ncalrpc: LSMApi ncalrpc: LRPC-7058380b8159918053 ncalrpc: actkernel ncalrpc: umpo 697dcda9-3ba9-4eb2-9247-e11f1901b0d2 version: v1.0 ncalrpc: LRPC-93b2d87e08a1651362 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\LSM_API_service ncalrpc: LSMApi ncalrpc: LRPC-7058380b8159918053 ncalrpc: actkernel ncalrpc: umpo c9ac6db5-82b7-4e55-ae8a-e464ed7b4277 version: v1.0 annotation: Impl friendly name provider: sysntfy.dll ncalrpc: LRPC-7058380b8159918053 ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-b9b016b4734b81e7b9 ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\srvsvc ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 ncalrpc: IUserProfile2 ncalrpc: IUserProfile2 0d3e2735-cea0-4ecc-a9e2-41a2d81aed4e version: v1.0 ncalrpc: actkernel ncalrpc: umpo c605f9fb-f0a3-4e2a-a073-73560f8d9e3e version: v1.0 ncalrpc: actkernel ncalrpc: umpo 1b37ca91-76b1-4f5e-a3c7-2abfc61f2bb0 version: v1.0 ncalrpc: actkernel ncalrpc: umpo 8bfc3be1-6def-4e2d-af74-7c47cd0ade4a version: v1.0 ncalrpc: actkernel ncalrpc: umpo 2d98a740-581d-41b9-aa0d-a88b9d5ce938 version: v1.0 ncalrpc: actkernel ncalrpc: umpo bdaa0970-413b-4a3e-9e5d-f6dc9d7e0760 version: v1.0 ncalrpc: actkernel ncalrpc: umpo 3b338d89-6cfa-44b8-847e-531531bc9992 version: v1.0 ncalrpc: actkernel ncalrpc: umpo 8782d3b9-ebbd-4644-a3d8-e8725381919b version: v1.0 ncalrpc: actkernel ncalrpc: umpo 085b0334-e454-4d91-9b8c-4134f9e793f3 version: v1.0 ncalrpc: actkernel ncalrpc: umpo 4bec6bb8-b5c2-4b6f-b2c1-5da5cf92d0d9 version: v1.0 ncalrpc: actkernel ncalrpc: umpo abfb6ca3-0c5e-4734-9285-0aee72fe8d1c version: v1.0 annotation: Wcm Service ncalrpc: dhcpcsvc6 ncalrpc: LRPC-5e88188ddfc83276a0 ncacn_ip_tcp: 103.161.172.171:49153 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\eventlog ncalrpc: eventlog 3c4728c5-f0ab-448b-bda1-6ce01eb0a6d5 version: v1.0 annotation: DHCP Client LRPC Endpoint provider: dhcpcsvc.dll ncalrpc: dhcpcsvc ncalrpc: dhcpcsvc6 ncalrpc: LRPC-5e88188ddfc83276a0 ncacn_ip_tcp: 103.161.172.171:49153 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\eventlog ncalrpc: eventlog 3c4728c5-f0ab-448b-bda1-6ce01eb0a6d6 version: v1.0 annotation: DHCPv6 Client LRPC Endpoint provider: dhcpcsvc6.dll ncalrpc: dhcpcsvc6 ncalrpc: LRPC-5e88188ddfc83276a0 ncacn_ip_tcp: 103.161.172.171:49153 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\eventlog ncalrpc: eventlog 30adc50c-5cbc-46ce-9a0e-91914789e23c version: v1.0 annotation: NRP server endpoint provider: nrpsrv.dll ncalrpc: LRPC-5e88188ddfc83276a0 ncacn_ip_tcp: 103.161.172.171:49153 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\eventlog ncalrpc: eventlog f6beaff7-1e19-4fbb-9f8f-b89e2018337c version: v1.0 annotation: Event log TCPIP protocol: [MS-EVEN6]: EventLog Remoting Protocol provider: wevtsvc.dll ncacn_ip_tcp: 103.161.172.171:49153 ncacn_np: \\WIN-C9DK6RVD2HV\pipe\eventlog ncalrpc: eventlog 30b044a5-a225-43f0-b3a4-e060df91f9c1 version: v1.0 provider: certprop.dll ncalrpc: LRPC-b9b016b4734b81e7b9 ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\srvsvc ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 1a0d010f-1c33-432c-b0f5-8cf4e8053099 version: v1.0 annotation: IdSegSrv service ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 98716d03-89ac-44c7-bb8c-285824e51c4a version: v1.0 annotation: XactSrv service provider: srvsvc.dll ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 c49a5a70-8a7f-4e70-ba16-1e8f1f193ef1 version: v1.0 annotation: Adh APIs ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 c36be077-e14b-4fe9-8abc-e856ef4f048b version: v1.0 annotation: Proxy Manager client server endpoint ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 2e6035b2-e8f1-41a7-a044-656b439c4c34 version: v1.0 annotation: Proxy Manager provider server endpoint ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 552d076a-cb29-4e44-8b6a-d15e59e2c0af version: v1.0 annotation: IP Transition Configuration endpoint provider: iphlpsvc.dll ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 a398e520-d59a-4bdd-aa7a-3c1e0303a511 version: v1.0 annotation: IKE/Authip API provider: IKEEXT.DLL ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 3a9ef155-691d-4449-8d05-09ad57031823 version: v1.0 ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 86d35949-83c9-4044-b424-db363231fd0c version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: schedsvc.dll ncacn_ip_tcp: 103.161.172.171:49154 ncalrpc: ubpmtaskhostchannel ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 378e52b0-c0a9-11cf-822d-00aa0051e40f version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: taskcomp.dll ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 1ff70682-0a51-30e8-076d-740be8cee98b version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: taskcomp.dll ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\atsvc ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 0a74ef1c-41a4-4e06-83ae-dc74fb1cdd53 version: v1.0 provider: schedsvc.dll ncalrpc: senssvc ncalrpc: OLE7EC658056E12C7ECA4CB31DBCD0C ncalrpc: IUserProfile2 2eb08e3e-639f-4fba-97b1-14f878961076 version: v1.0 annotation: Group Policy RPC Interface provider: gpsvc.dll ncalrpc: LRPC-833aa96ac692bfa00e 3473dd4d-2e88-4006-9cba-22570909dd10 version: v5.256 annotation: WinHttp Auto-Proxy Service ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\W32TIME_ALT ncalrpc: W32TIME_ALT ncalrpc: LRPC-f4fa1a1364bbee3680 ncalrpc: OLED5434DBD53CAE6E4C0D20053968A 7ea70bcf-48af-4f6a-8968-6a440754d5fa version: v1.0 annotation: NSI server endpoint provider: nsisvc.dll ncalrpc: LRPC-f4fa1a1364bbee3680 ncalrpc: OLED5434DBD53CAE6E4C0D20053968A b2507c30-b126-494a-92ac-ee32b6eeb039 version: v1.0 ncalrpc: LRPC-977db90ecc5161446d 2fb92682-6599-42dc-ae13-bd2ca89bd11c version: v1.0 annotation: Fw APIs provider: MPSSVC.dll ncalrpc: LRPC-4283ceb96b1b72c662 ncalrpc: LRPC-701534d4e37cc400ff f47433c3-3e9d-4157-aad4-83aa1f5c2d4c version: v1.0 annotation: Fw APIs ncalrpc: LRPC-4283ceb96b1b72c662 ncalrpc: LRPC-701534d4e37cc400ff 7f9d11bf-7fb9-436b-a812-b2d50c5d4c03 version: v1.0 annotation: Fw APIs provider: MPSSVC.dll ncalrpc: LRPC-4283ceb96b1b72c662 ncalrpc: LRPC-701534d4e37cc400ff dd490425-5325-4565-b774-7e27d6c09c24 version: v1.0 annotation: Base Firewall Engine API provider: BFE.DLL ncalrpc: LRPC-701534d4e37cc400ff 7f1343fe-50a9-4927-a778-0c5859517bac version: v1.0 annotation: DfsDs service ncacn_np: \\WIN-C9DK6RVD2HV\PIPE\wkssvc ncalrpc: LRPC-d28b75afa07ad99b09 ncalrpc: DNSResolver eb081a0d-10ee-478a-a1dd-50995283e7a8 version: v3.0 annotation: Witness Client Test Interface ncalrpc: LRPC-d28b75afa07ad99b09 ncalrpc: DNSResolver f2c9b409-c1c9-4100-8639-d8ab1486694a version: v1.0 annotation: Witness Client Upcall Server ncalrpc: LRPC-d28b75afa07ad99b09 ncalrpc: DNSResolver 76f03f96-cdfd-44fc-a22c-64950a001209 version: v1.0 protocol: [MS-PAR]: Print System Asynchronous Remote Protocol provider: spoolsv.exe ncacn_ip_tcp: 103.161.172.171:49155 ncalrpc: LRPC-064252dff4f86d0f5e 4a452661-8290-4b36-8fbe-7f4093a94978 version: v1.0 provider: spoolsv.exe ncacn_ip_tcp: 103.161.172.171:49155 ncalrpc: LRPC-064252dff4f86d0f5e ae33069b-a2a8-46ee-a235-ddfd339be281 version: v1.0 protocol: [MS-PAN]: Print System Asynchronous Notification Protocol provider: spoolsv.exe ncacn_ip_tcp: 103.161.172.171:49155 ncalrpc: LRPC-064252dff4f86d0f5e 0b6edbfa-4a24-4fc6-8a23-942b1eca65d1 version: v1.0 protocol: [MS-PAN]: Print System Asynchronous Notification Protocol provider: spoolsv.exe ncacn_ip_tcp: 103.161.172.171:49155 ncalrpc: LRPC-064252dff4f86d0f5e 12345678-1234-abcd-ef00-0123456789ab version: v1.0 protocol: [MS-RPRN]: Print System Remote Protocol provider: spoolsv.exe ncacn_ip_tcp: 103.161.172.171:49155 ncalrpc: LRPC-064252dff4f86d0f5e 367abb81-9844-35f1-ad32-98f038001003 version: v2.0 protocol: [MS-SCMR]: Service Control Manager Remote Protocol provider: services.exe ncacn_ip_tcp: 103.161.172.171:49172 6b5bdd1e-528c-422c-af8c-a4079be4fe48 version: v1.0 annotation: Remote Fw APIs protocol: [MS-FASP]: Firewall and Advanced Security Protocol provider: FwRemoteSvr.dll ncacn_ip_tcp: 103.161.172.171:49173 12345778-1234-abcd-ef00-0123456789ac version: v1.0 protocol: [MS-SAMR]: Security Account Manager (SAM) Remote Protocol provider: samsrv.dll ncacn_ip_tcp: 103.161.172.171:49189 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WIN-C9DK6RVD2HV\pipe\lsass 76209fe5-9049-4336-ba84-632d907cb154 version: v1.0 annotation: Interprocess Logon Service ncalrpc: ReportingServices$MSRS11.MSSQLSERVER ncalrpc: OLE404DEE6279ED8DCAE8B3CD30323C 906b0ce0-c70b-1067-b317-00dd010662da version: v1.0 protocol: [MS-CMPO]: MSDTC Connection Manager: provider: msdtcprx.dll ncalrpc: LRPC-719a9c65a911ca2df5 ncalrpc: LRPC-719a9c65a911ca2df5 ncalrpc: LRPC-719a9c65a911ca2df5 ncalrpc: LRPC-caa401b8b33c191a17 ncalrpc: OLE2628E4E2A98C905CBD4D995B1DDE 12e65dd8-887f-41ef-91bf-8d816c42c2e7 version: v1.0 annotation: Secure Desktop LRPC interface provider: winlogon.exe ncalrpc: WMsgKRpc02040BED2 a500d4c6-0dd1-4543-bc0c-d5f93486eaf8 version: v1.0 ncalrpc: LRPC-b7c2984068ab94a6a9 e40f7b57-7a25-4cd3-a135-7f7d3df9d16b version: v1.0 annotation: Network Connection Broker server endpoint ncalrpc: OLE3B095A3677B923914490957FF33A ncalrpc: TSUMRPD_PRINT_DRV_LPC_API ncalrpc: trkwks ncacn_np: \\WIN-C9DK6RVD2HV\pipe\trkwks 880fd55e-43b9-11e0-b1a8-cf4edfd72085 version: v1.0 annotation: KAPI Service endpoint ncalrpc: OLE3B095A3677B923914490957FF33A ncalrpc: TSUMRPD_PRINT_DRV_LPC_API ncalrpc: trkwks ncacn_np: \\WIN-C9DK6RVD2HV\pipe\trkwks 5222821f-d5e2-4885-84f1-5f6185a0ec41 version: v1.0 annotation: Network Connection Broker server endpoint for NCB Reset module ncalrpc: OLE3B095A3677B923914490957FF33A ncalrpc: TSUMRPD_PRINT_DRV_LPC_API ncalrpc: trkwks ncacn_np: \\WIN-C9DK6RVD2HV\pipe\trkwks 9435cc56-1d9c-4924-ac7d-b60a2c3520e1 version: v1.0 annotation: SPPSVC Default RPC Interface provider: sppsvc.exe ncalrpc: SPPCTransportEndpoint-00001
-1845627377 | 2024-12-23T21:25:15.600040137 / udp
NetBIOS Response: MAC Address: 6E:EE:69:E0:ED:B7
6E:EE:69:E0:ED:B7 Unknown
714072503 | 2024-12-23T05:24:59.880103443 / tcp
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/8.5 X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET Date: Mon, 23 Dec 2024 05:24:57 GMT Content-Length: 42501
Certificate: Data: Version: 3 (0x2) Serial Number: 04:95:1f:ea:35:9f:bb:05:99:96:2c:a9:8e:aa:fd:8d:34:53 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Let's Encrypt, CN=R10 Validity Not Before: Dec 13 04:15:26 2024 GMT Not After : Mar 13 04:15:25 2025 GMT Subject: CN=lanthibooking.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:9a:65:e1:6d:90:2e:a5:9b:56:72:bb:7e:f0:9d: c1:5a:25:15:05:d9:12:dc:28:f3:54:77:5b:68:ac: 4d:83:ad:7f:23:b6:e7:c9:2a:cb:6a:f9:19:9d:44: 17:48:50:8e:f5:fb:a4:50:10:cd:9e:5a:0c:54:20: 47:e1:22:67:d6:77:b4:3f:a7:1a:ca:f4:78:4c:55: 6b:41:44:ba:54:80:1d:c0:48:8d:8e:1a:9d:02:55: 09:98:bf:f5:aa:14:46:ae:71:1d:26:8e:e0:58:83: d3:de:03:4e:f7:9b:f4:62:be:be:7d:7a:c1:7a:74: e6:33:ca:d0:b7:1a:cc:34:8d:35:a3:b0:8f:cd:0c: 5b:34:66:ca:8d:ff:16:b3:91:e0:23:d0:8e:68:98: 40:68:b0:c1:ff:76:38:f6:2b:1a:f5:b0:57:5c:25: 3e:99:6f:0d:39:c0:a4:b9:d8:46:c8:b1:64:59:9f: cd:ab:8c:4f:98:89:5f:32:23:cf:b7:95:cc:8b:99: 78:8b:f4:24:ef:c0:43:ae:8c:fd:d1:7d:83:74:a8: d5:4a:9f:47:12:2c:88:c5:11:b5:49:aa:53:fa:61: 27:72:7d:1c:73:30:6e:01:c4:32:1d:4a:38:3f:e5: 2a:0e:51:e1:15:f1:0d:ca:3f:5a:14:2e:4a:78:8d: 24:e1 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: CA:C5:7C:B2:02:A9:5A:23:72:6D:57:E8:B4:AD:E9:D3:9A:D3:FD:3E X509v3 Authority Key Identifier: BB:BC:C3:47:A5:E4:BC:A9:C6:C3:A4:72:0C:10:8D:A2:35:E1:C8:E8 Authority Information Access: OCSP - URI:http://r10.o.lencr.org CA Issuers - URI:http://r10.i.lencr.org/ X509v3 Subject Alternative Name: DNS:baydangcap.com.vn, DNS:book.travelagent.vn, DNS:haiantrip.com, DNS:lanthibooking.com, DNS:minhquanairlines.vn, DNS:ngoinhaphuongnam.com, DNS:ngophuongdong.vn, DNS:phongvebaotam.vn, DNS:phongvethienthe.com, DNS:testade.metatrip.vn, DNS:vemaybay.visahuyenle.com, DNS:vemaybaygiabinhdan.vn, DNS:vemaybayhongan.com, DNS:vere247.vn, DNS:vetuoidao.com, DNS:webay.vn X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53: D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7 Timestamp : Dec 13 05:13:57.048 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:D3:2D:F6:4A:6F:F3:A8:78:F0:AB:2D: A0:5D:61:B3:32:8A:FA:A1:BD:4F:E1:19:CE:C9:CF:14: 63:52:A9:F9:83:02:20:73:F6:C0:AA:1A:33:C0:07:48: 1E:3A:A5:71:FA:65:69:DA:B8:B4:DD:55:B9:F8:FD:20: 39:10:07:E7:F8:6D:6F Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB: 1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF Timestamp : Dec 13 05:13:57.136 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:71:22:63:9C:FC:CA:E9:BE:78:F9:4A:83: 39:AF:75:52:2D:99:A3:69:26:D2:FE:3D:CF:74:71:72: 99:DC:F4:63:02:21:00:D9:6C:76:C2:A0:F6:71:A2:E4: 8B:F5:E9:B1:7E:32:11:6B:61:70:24:19:EE:25:D8:2D: 98:11:C4:5E:4E:A3:7B Signature Algorithm: sha256WithRSAEncryption Signature Value: 68:35:b0:4d:ef:23:cd:e0:49:fc:95:f8:ce:b2:ef:b4:33:7d: c9:a9:9f:03:88:33:a4:fa:a6:dd:7a:fb:80:17:6a:bd:47:eb: 55:11:1a:2b:47:38:f9:81:ac:ea:56:76:91:48:fa:f0:6b:9a: 5e:d6:75:c3:4b:6b:9a:ee:77:35:26:43:79:ef:52:8d:08:10: da:e4:87:c4:42:b3:47:bf:40:6f:ec:fc:d3:12:08:fd:4b:57: 42:7d:1e:d9:84:a6:39:4c:df:5e:62:3d:4c:ae:93:20:25:7f: e0:47:bc:ec:6e:c1:53:aa:30:c5:9a:1d:3e:1c:2d:56:63:10: 7a:48:cd:8d:80:3f:76:30:90:24:57:dc:01:77:ed:38:f8:7b: 0d:d9:7a:e2:76:6b:43:3c:3d:ee:c9:40:12:61:d8:a9:77:fd: 69:62:db:2b:ed:b4:07:e3:48:8a:90:48:8e:5e:a1:eb:4e:5e: 54:9e:6f:65:32:5e:c9:12:3b:a0:c7:8e:54:25:27:53:6f:e2: aa:79:29:66:59:cf:94:28:e9:99:ba:f6:bc:88:95:33:59:d9: 11:4a:c2:fb:da:35:b3:51:20:da:82:b4:0e:35:92:77:cf:d0: bb:0c:7a:4f:77:55:8a:2a:06:e8:87:44:5a:1f:55:81:80:d3: 40:a4:09:b3
-1242801143 | 2024-12-23T10:52:59.067088445 / tcp
SMB Status: Authentication: enabled SMB Version: 1 OS: Windows Server 2012 R2 Datacenter 9600 Software: Windows Server 2012 R2 Datacenter 6.3 Capabilities: extended-security, infolevel-passthru, large-files, large-readx, large-writex, level2-oplocks, lock-and-read, lwio, nt-find, nt-smb, nt-status, rpc-remote-api, unicode
1650999408 | 2024-12-19T01:08:39.9369011433 / tcp
MS-SQL NTLM Info: OS: Windows 8.1/Windows Server 2012 R2 OS Build: 6.3.9600 Target Name: WIN-C9DK6RVD2HV NetBIOS Domain Name: WIN-C9DK6RVD2HV NetBIOS Computer Name: WIN-C9DK6RVD2HV DNS Domain Name: WIN-C9DK6RVD2HV FQDN: WIN-C9DK6RVD2HV
368454099 | 2025-01-02T08:52:20.3583263306 / tcp
MySQL: Error Message: Host '224.144.103.156' is not allowed to connect to this MySQL server Error Code: 1130
523300 | 2024-12-27T13:06:40.7714263389 / tcp
Remote Desktop Protocol NTLM Info: OS: Windows 8.1/Windows Server 2012 R2 OS Build: 6.3.9600 Target Name: WIN-C9DK6RVD2HV NetBIOS Domain Name: WIN-C9DK6RVD2HV NetBIOS Computer Name: WIN-C9DK6RVD2HV DNS Domain Name: WIN-C9DK6RVD2HV FQDN: WIN-C9DK6RVD2HV
Certificate: Data: Version: 3 (0x2) Serial Number: 75:5f:c1:a0:c5:3b:c7:a5:44:2e:6d:47:6e:f8:99:ab Signature Algorithm: sha1WithRSAEncryption Issuer: CN=WIN-C9DK6RVD2HV Validity Not Before: Aug 5 20:47:17 2024 GMT Not After : Feb 4 20:47:17 2025 GMT Subject: CN=WIN-C9DK6RVD2HV Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d7:3d:ee:10:8c:d5:d5:fd:48:0c:9c:b0:fc:95: dc:db:de:ad:25:ec:29:e9:ce:fb:be:96:83:7a:d0: 16:cd:0c:6a:80:8d:89:b8:97:fa:37:99:00:1f:00: 96:7c:c8:e5:35:5a:69:52:a7:e4:d8:ce:81:6b:53: 1b:05:9a:93:49:c3:43:90:a1:50:1a:03:e1:5b:b8: c4:90:f1:ff:fb:0a:0c:2f:4f:fd:19:19:df:f0:15: ab:f0:38:c9:e6:43:1e:9f:4c:2a:fd:d7:e4:90:4e: 3b:4d:6a:cd:f5:41:62:9a:af:cb:f7:7c:4d:1d:26: 91:7d:f0:39:ab:ff:cd:58:55:64:2a:c9:1e:5a:ad: 67:0b:5f:05:07:aa:82:f6:e8:c3:bd:af:2f:0d:0c: b3:51:34:4c:30:2c:83:73:1b:74:55:e9:bb:08:55: 53:96:73:e9:1c:4a:2a:6d:ce:c5:49:90:04:f1:05: 11:ab:ab:3e:b2:47:9f:93:dc:24:70:f8:50:67:72: aa:84:28:40:e0:a3:ba:94:51:bd:db:6d:72:e9:b0: 62:67:89:0d:6c:a3:87:7b:17:c4:bf:e9:e4:12:37: cd:86:a8:16:e0:fb:85:92:f3:7e:61:07:d3:c1:a0: 95:37:c5:72:e0:a7:d5:01:22:45:29:b8:1b:ab:77: 83:77 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Key Usage: Key Encipherment, Data Encipherment Signature Algorithm: sha1WithRSAEncryption Signature Value: 9d:51:1f:e3:a3:d4:54:6f:72:8f:c5:f9:2f:53:95:2d:b1:51: 0d:ea:4d:ec:3c:74:f5:bd:71:ad:0f:3a:42:b0:a7:e1:24:29: 96:28:fb:1f:22:2f:91:21:32:76:03:5c:c5:61:c0:7c:2f:59: 43:e0:aa:4b:d8:0b:9e:19:6a:d4:94:19:53:da:9a:5f:e0:02: b3:15:96:bb:1b:f8:7b:a1:14:ba:00:a9:e5:65:1a:94:2f:b3: 74:80:00:c9:b6:3f:4c:35:37:8f:da:0e:ac:48:21:fc:ce:90: ae:31:30:48:45:17:26:ad:c0:a3:00:62:fb:0b:7c:70:8a:30: 0b:01:ea:39:fa:d7:09:6a:8f:20:ae:63:e3:24:3c:e9:95:23: b5:bf:3c:4d:39:03:a5:19:59:cf:cb:4d:50:27:58:04:de:56: 9d:38:45:e8:43:c4:e0:98:1e:2e:db:60:27:ef:98:04:69:85: 9c:4b:42:f0:ae:e8:62:3b:1b:53:a6:b6:0d:a3:4a:03:69:8b: d4:41:46:9f:98:fc:b9:9b:56:c4:4c:ec:26:b3:85:52:8b:5f: 09:aa:8b:48:13:3d:a1:32:d3:2e:88:e1:42:c3:54:c1:51:40: de:a7:4a:f4:37:c2:06:b3:89:4d:e6:b1:11:c0:85:4e:0c:af: de:b9:9f:95
1489525118 | 2024-12-23T18:06:13.3830395985 / tcp
HTTP/1.1 404 Not Found Content-Type: text/html; charset=us-ascii Server: Microsoft-HTTPAPI/2.0 Date: Mon, 23 Dec 2024 18:06:10 GMT Connection: close Content-Length: 315 WinRM NTLM Info: OS: Windows Server 2012 R2 OS Build: 6.3.9600 Target Name: WIN-C9DK6RVD2HV NetBIOS Domain Name: WIN-C9DK6RVD2HV NetBIOS Computer Name: WIN-C9DK6RVD2HV DNS Domain Name: WIN-C9DK6RVD2HV FQDN: WIN-C9DK6RVD2HV
224210074 | 2024-12-24T02:00:32.2877559001 / tcp
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, pre-check=0, post-check=0, max-age=0 Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: Tue, 24 Dec 2024 02:00:30 +0000 Last-Modified: Tue, 24 Dec 2024 02:00:30 +0000 Vary: Accept-Encoding Server: Microsoft-IIS/8.5 X-Powered-By: PHP/8.2.12 Set-Cookie: pma_lang=en; expires=Thu, 23 Jan 2025 02:00:30 GMT; Max-Age=2592000; path=/; HttpOnly; SameSite=Strict Set-Cookie: phpMyAdmin=rkmbefijcekaimhhocpbadlbt0; path=/; HttpOnly; SameSite=Strict X-ob_mode: 1 X-Frame-Options: DENY Referrer-Policy: no-referrer Content-Security-Policy: default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval' ;style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org;object-src 'none'; X-Content-Security-Policy: default-src 'self' ;options inline-script eval-script;referrer no-referrer;img-src 'self' data: *.tile.openstreetmap.org;object-src 'none'; X-WebKit-CSP: default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';referrer no-referrer;style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org;object-src 'none'; X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff X-Permitted-Cross-Domain-Policies: none X-Robots-Tag: noindex, nofollow X-Powered-By: ASP.NET Date: Tue, 24 Dec 2024 02:00:30 GMT Content-Length: 18404 <!doctype html> <html lang="en" dir="ltr"> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width, initial-scale=1"> <meta name="referrer" content="no-referrer"> <meta name="robots" content="noindex,nofollow,notranslate"> <meta name="google" content="notranslate"> <style id="cfs-style">html{display: none;}</style> <link rel="icon" href="favicon.ico" type="image/x-icon"> <link rel="shortcut icon" href="favicon.ico" type="image/x-icon"> <link rel="stylesheet" type="text/css" href="./themes/pmahomme/jquery/jquery-ui.css"> <link rel="stylesheet" type="text/css" href="js/vendor/codemirror/lib/codemirror.css?v=5.2.1"> <link rel="stylesheet" type="text/css" href="js/vendor/codemirror/addon/hint/show-hint.css?v=5.2.1"> <link rel="stylesheet" type="text/css" href="js/vendor/codemirror/addon/lint/lint.css?v=5.2.1"> <link rel="stylesheet" type="text/css" href="./themes/pmahomme/css/theme.css?v=5.2.1"> <title>phpMyAdmin</title> <script data-cfasync="false" type="text/javascript" src="js/vendor/jquery/jquery.min.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/jquery/jquery-migrate.min.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/sprintf.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/ajax.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/keyhandler.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/jquery/jquery-ui.min.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/name-conflict-fixes.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/bootstrap/bootstrap.bundle.min.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/js.cookie.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/jquery/jquery.validate.min.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/jquery/jquery-ui-timepicker-addon.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/jquery/jquery.debounce-1.0.6.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/menu_resizer.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/cross_framing_protection.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/messages.php?l=en&v=5.2.1&lang=en"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/config.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/doclinks.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/functions.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/navigation.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/indexes.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/common.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/dist/page_settings.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/codemirror/lib/codemirror.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/codemirror/mode/sql/sql.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javascript" src="js/vendor/codemirror/addon/runmode/runmode.js?v=5.2.1"></script> <script data-cfasync="false" type="text/javas