3389 /
tcp
-1611152472 | 2025-01-14T02:39:43.876243
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-E05969B3OS0
NetBIOS Domain Name: WIN-E05969B3OS0
NetBIOS Computer Name: WIN-E05969B3OS0
DNS Domain Name: WIN-E05969B3OS0
FQDN: WIN-E05969B3OS0
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
67:d0:f4:16:c8:19:e2:ae:43:b4:aa:fc:38:0a:75:4b
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-E05969B3OS0
Validity
Not Before: Jan 9 12:33:23 2025 GMT
Not After : Jul 11 12:33:23 2025 GMT
Subject: CN=WIN-E05969B3OS0
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c5:9c:3f:a6:51:f6:7c:a1:49:f6:6b:b4:37:5f:
92:a9:a2:3e:bf:f4:1d:c6:8d:0f:d9:00:a5:00:0e:
3a:d1:a1:c6:bb:21:71:b6:d8:7c:c2:9d:c2:e7:3f:
da:df:28:5b:b1:6b:f0:4b:89:df:43:04:63:10:51:
d8:39:18:36:12:50:99:2c:9c:35:42:a1:e7:b1:c3:
c1:03:ff:ce:35:02:28:b3:26:a2:3b:4f:74:9c:0a:
3e:a3:80:15:36:5d:59:b9:75:e6:c3:fe:17:06:49:
1f:7a:19:f6:32:7f:8e:6f:cd:6f:bc:79:86:7e:89:
44:ab:f9:68:8e:26:23:67:95:e2:de:e0:4b:79:46:
32:05:c6:7b:a6:3a:f4:38:35:cf:d5:80:be:84:fe:
3f:18:70:cb:ac:70:83:64:70:56:75:71:05:a5:4c:
31:35:5b:06:65:28:2f:35:c9:71:85:1f:b4:b1:0d:
f6:c1:5a:5a:1f:99:31:20:f2:3a:71:68:e6:77:df:
08:96:8a:5c:bc:c0:01:a4:3d:37:92:c5:47:d1:b9:
04:36:f1:ad:ed:10:2c:7e:ba:66:7c:c4:c4:8c:c8:
36:3e:7d:43:f8:54:bd:62:7b:2a:c2:1d:26:04:0e:
22:90:49:73:b7:3f:52:b6:18:c5:0b:f9:02:e0:18:
b8:8d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
b6:56:ff:ff:10:7b:f7:77:f6:b2:8a:99:83:a3:9e:7a:4e:a5:
9a:f9:5f:fe:5f:2b:50:42:d7:e4:2a:7a:a0:31:bc:4c:55:2d:
17:fc:ee:e8:c7:c3:19:ab:4a:92:48:b7:ef:50:4a:9e:5d:ba:
38:20:e8:28:0e:f2:0f:82:91:d1:eb:35:f3:43:2b:14:10:ef:
3a:f9:02:2a:11:91:fe:21:64:11:09:5b:6d:e6:10:e1:98:9f:
fb:90:ce:e9:b8:9e:11:49:40:4d:8d:46:f5:7a:64:fb:3b:49:
76:7b:bf:1c:c8:24:a6:99:36:11:5c:4d:b8:a4:cf:32:59:ae:
bb:c8:fd:60:b8:66:62:06:3f:ba:48:8c:c6:8e:29:0d:9a:31:
58:d3:74:cd:b1:77:a4:a1:1f:a9:23:ff:b5:7f:4e:3a:fc:29:
fe:ce:b6:07:27:9f:63:10:2d:c5:96:ab:c5:9f:1d:c7:12:65:
8c:b6:c3:41:7c:1f:2a:71:f7:a7:e1:57:21:94:21:9d:15:8a:
76:eb:29:80:99:60:93:11:e1:c3:1c:d8:21:3f:b1:0a:29:e7:
89:fd:06:73:81:58:2b:b1:99:98:77:8a:35:51:60:2d:c6:e8:
f8:82:02:36:04:f4:44:08:5a:d5:ed:6a:9b:bb:bf:9c:a9:ba:
c1:3a:52:17
-1684583448 | 2025-01-11T02:03:01.415461
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 11 Jan 2025 02:03:01 GMT
Connection: close
Content-Length: 326
1489525118 | 2025-01-10T19:04:04.535326
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Fri, 10 Jan 2025 19:04:04 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-E05969B3OS0
NetBIOS Domain Name: WIN-E05969B3OS0
NetBIOS Computer Name: WIN-E05969B3OS0
DNS Domain Name: WIN-E05969B3OS0
FQDN: WIN-E05969B3OS0
281461470 | 2024-12-29T12:45:52.516553
HTTP/1.1 200 OK
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
content-type: text/html; charset=UTF-8
content-length: 136
date: Sun, 29 Dec 2024 12:45:52 GMT
edit: Set-Cookie ^(.*)$ $1;HttpOnly;Secure
strict-transport-security: max-age=31536000; includeSubDomains; preload
281461470 | 2025-01-02T07:24:09.252915
HTTP/1.1 200 OK
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
content-type: text/html; charset=UTF-8
content-length: 136
date: Thu, 02 Jan 2025 07:24:09 GMT
edit: Set-Cookie ^(.*)$ $1;HttpOnly;Secure
strict-transport-security: max-age=31536000; includeSubDomains; preload
alt-svc: h3=":8889"; ma=2592000, h3-29=":8889"; ma=2592000, h3-Q050=":8889"; ma=2592000, h3-Q046=":8889"; ma=2592000, h3-Q043=":8889"; ma=2592000, quic=":8889"; ma=2592000; v="43,46"
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:d0:8e:0f:8c:15:97:10:19:13:ad:06:6e:71:29:12:7a:76
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R11
Validity
Not Before: Dec 21 07:32:43 2024 GMT
Not After : Mar 21 07:32:42 2025 GMT
Subject: CN=*.ultra14loads.happydoghosting.net
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d4:13:59:99:80:be:68:12:83:ea:04:6f:24:4f:
ca:d5:61:07:af:6f:4c:d8:2a:d6:cf:c0:7d:b0:4b:
97:4f:e1:d0:b2:4d:d7:03:2e:4e:da:67:99:8e:9a:
78:31:e0:20:b2:18:f2:f2:4e:be:d5:c2:03:01:49:
72:94:9f:b9:ce:53:fc:17:d2:ae:2f:9e:30:13:56:
67:9f:95:3d:b5:f3:bf:25:b6:fa:9c:c9:bf:ae:cf:
bb:86:18:b4:bd:44:22:9f:45:15:ad:3d:f5:44:3c:
72:38:19:d9:df:8a:69:15:21:0b:45:00:ea:da:ee:
cf:5e:3d:35:60:5b:e1:7a:2e:4f:3c:ac:26:c9:37:
a1:14:f0:70:c8:d4:4a:2a:00:b7:e5:62:36:14:4a:
3d:5c:55:1d:ca:e4:a6:0f:1d:97:b7:3b:66:ea:f7:
13:38:4e:cd:61:73:da:84:72:d9:c2:aa:ae:59:63:
76:bd:e9:45:82:d3:f4:53:e1:97:47:0f:4e:67:69:
b3:f4:d4:eb:9a:08:97:0e:e4:c2:2e:5f:b9:79:70:
64:da:85:68:e2:e8:c0:36:61:55:98:89:b3:6a:ff:
50:7b:8a:67:38:29:41:df:c0:b7:9b:96:43:46:77:
a8:89:bd:d8:a5:cc:7b:ba:ea:ae:bb:ad:76:85:e1:
bc:91
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
33:30:BF:EE:B8:7A:42:55:0B:8D:14:A5:A5:FB:21:F6:49:E7:FC:72
X509v3 Authority Key Identifier:
C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
Authority Information Access:
OCSP - URI:http://r11.o.lencr.org
CA Issuers - URI:http://r11.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:*.ultra14loads.happydoghosting.net, DNS:ultra14loads.happydoghosting.net
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Dec 21 08:31:14.095 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:95:BA:2C:BC:18:FA:AA:23:DA:DD:72:
1E:99:3E:82:BA:A6:C3:C2:D8:7C:1C:9A:0A:F8:E1:FA:
5A:41:7C:B7:7B:02:21:00:DD:C7:F1:C7:6D:8E:5A:5F:
DD:90:4F:D4:E3:22:D4:80:A9:4F:D9:2D:A0:BE:B6:6A:
76:A7:1B:AE:1D:E8:3F:E0
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
Timestamp : Dec 21 08:31:14.093 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:19:7A:BE:42:8A:2A:BF:11:A9:EC:07:2F:
88:2C:3E:E3:70:EC:5C:5F:6B:D0:72:F6:14:1A:ED:75:
AA:17:9C:A4:02:21:00:AC:B7:99:D4:71:AB:B3:4C:6D:
8B:4D:B4:51:F1:12:48:22:39:BB:04:8C:79:9A:DE:DD:
EE:7E:61:A8:EE:27:42
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
2a:33:04:c6:66:86:c1:91:c8:b0:0f:56:60:42:18:db:c1:95:
07:2e:97:27:f7:80:01:98:29:db:2c:43:b1:81:aa:1d:d6:19:
17:a7:c0:47:83:95:53:6a:31:b9:c5:47:65:5e:f2:c1:fd:b7:
12:de:24:bf:b3:c2:3f:c6:12:02:d8:47:84:cd:86:b2:f0:6a:
f3:35:6d:4e:a5:2a:0e:f8:5e:c9:f0:ca:0c:c1:3a:fa:a0:15:
25:1e:65:bc:8f:fb:4d:a1:d0:e0:95:32:b3:0e:85:68:6e:c2:
91:7b:86:9d:89:5e:f0:6b:ec:22:79:1c:41:e5:e4:04:8b:db:
a5:9e:ff:a2:03:0c:ca:bf:d7:3a:2e:73:fa:9d:44:82:21:eb:
61:4e:63:fd:fa:5e:4f:d3:f1:f9:52:09:f3:0d:99:29:9f:b1:
86:6f:31:ef:6a:fb:27:8b:4a:b8:26:96:ab:01:95:36:c6:49:
cd:58:a2:ef:16:b5:c6:21:1a:7a:3b:c6:2b:44:ca:1e:bc:c7:
d8:0b:78:0c:ef:47:2d:97:82:f4:67:7b:91:0c:27:8d:9c:1c:
e6:c4:30:6f:c9:b8:2e:88:e5:0d:ad:e3:69:85:f1:a8:8e:ac:
35:f8:db:fa:ec:88:8f:62:6e:e4:79:e8:d8:71:57:45:d2:4b:
a3:98:ff:5a