-688261367 | 2024-10-16T15:03:31.725726
25 /
tcp
220 InforCube ESG
250-mga.scanner.jahwa.com.cn
250-PIPELINING
250-SIZE 102400000
250-ETRN
250-STARTTLS
250-AUTH PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM
250-AUTH=PLAIN LOGIN CRAM-MD5 DIGEST-MD5 NTLM
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
SMTP NTLM Info:
Target Name: MGA.SCANNER.JAHWA.COM.CN
540003377 | 2024-10-21T01:04:58.076072
80 /
tcp
HTTP/1.1 301 Moved Permanently
Server: nginx/1.17.7
Date: Mon, 21 Oct 2024 01:04:57 GMT
Content-Type: text/html
Content-Length: 169
Connection: keep-alive
Location: https://114.141.182.168/
-410369616 | 2024-10-21T06:40:23.351532
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: no-cache, no-store
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Server: Microsoft-IIS/10.0
request-id: 59f8ab96-8528-4d47-89a9-1c73594617d2
X-Frame-Options: SAMEORIGIN
X-AspNet-Version: 4.0.30319
Set-Cookie: owa_session_id_error=; expires=Sat, 13-Jul-2024 06:40:22 GMT; path=/
Set-Cookie: owa_failure_error=; expires=Sat, 13-Jul-2024 06:40:22 GMT; path=/
Set-Cookie: owa_ver_code_error=; expires=Sat, 13-Jul-2024 06:40:22 GMT; path=/
X-Powered-By: ASP.NET
Date: Mon, 21 Oct 2024 06:40:22 GMT
Content-Length: 45544
Microsoft Exchange:
Name: Exchange Server 2019 CU14 (2024H1)
Build Number: 15.2.1544.4
Build Date: February 13, 2024
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
51:29:cb:af:a9:08:a6:9c:fa:a3:3e:f8:8e:36:99:d0
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=CN, O=WoTrus CA Limited, CN=WoTrus OV Server CA [Run by the Issuer]
Validity
Not Before: Nov 10 00:00:00 2023 GMT
Not After : Dec 9 23:59:59 2024 GMT
Subject: C=CN, ST=\xE4\xB8\x8A\xE6\xB5\xB7\xE5\xB8\x82, O=\xE4\xB8\x8A\xE6\xB5\xB7\xE5\xAE\xB6\xE5\x8C\x96\xE8\x81\x94\xE5\x90\x88\xE8\x82\xA1\xE4\xBB\xBD\xE6\x9C\x89\xE9\x99\x90\xE5\x85\xAC\xE5\x8F\xB8, CN=*.jahwa.com.cn
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a6:d0:b2:77:56:58:5c:13:2f:e9:b7:b8:2e:01:
8b:51:30:0f:f3:00:67:f5:4e:38:37:21:ba:29:20:
3c:92:1c:3f:9f:80:21:32:fa:b8:4e:84:58:2c:f0:
34:e8:6b:60:55:89:6b:da:71:55:d7:be:43:51:f7:
10:15:82:89:33:83:45:e3:56:43:29:8b:94:db:90:
be:96:5b:8c:4f:46:4a:d1:2f:0e:d9:c4:1a:5f:0c:
2b:1d:ce:f4:1a:69:6c:e2:e4:2a:25:3b:a2:4f:f2:
25:74:d4:5c:62:93:d9:a9:69:e0:0b:1a:40:c3:95:
3a:07:e3:a7:0c:c0:e1:54:d6:d5:fb:48:84:24:c2:
a0:5d:f3:78:63:a0:8b:36:0b:c9:b3:ff:31:89:bc:
9e:f5:e4:d3:80:18:fc:e1:06:fe:4a:5c:b4:63:50:
8e:7e:3f:bc:f3:e8:7e:6c:ab:3b:c1:ea:ef:e0:d4:
5b:ac:eb:58:c8:05:7c:e3:3c:c6:2b:41:31:10:66:
f2:8a:be:31:93:bc:1f:0b:bc:04:4e:3c:4e:72:11:
ba:89:8f:18:55:bd:04:aa:c0:08:6f:c5:9d:99:f4:
a6:50:7c:5f:1f:4a:45:19:10:ab:4e:67:8d:6a:83:
23:0a:12:5b:ea:32:46:e3:b8:87:0d:bb:f9:5c:bb:
8e:61
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
0D:49:8F:15:33:7B:C0:4F:B6:FB:3A:38:09:FC:34:15:DA:60:DD:14
X509v3 Subject Key Identifier:
22:82:A0:2C:DF:C8:57:8C:39:97:EA:36:73:6E:DD:7B:F9:42:11:88
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.6449.1.2.2.22
CPS: https://sectigo.com/CPS
Policy: 2.23.140.1.2.2
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.crlocsp.cn/WoTrusOVServerCA_2.crl
Authority Information Access:
CA Issuers - URI:http://aia.crlocsp.cn/WoTrusOVServerCA_2.crt
OCSP - URI:http://ocsp.crlocsp.cn
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
Timestamp : Nov 10 05:25:53.252 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:D2:A3:08:A2:AB:09:F1:73:8C:65:57:
99:E5:59:52:6F:0A:7B:94:69:82:B1:D3:60:F1:7F:80:
C9:51:7D:F3:94:02:21:00:C4:E2:A5:AF:1F:B5:07:DF:
6D:15:33:F8:F8:A5:18:5D:E4:7B:99:C2:21:CB:D6:E0:
0A:E4:12:C9:E6:19:A9:62
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Nov 10 05:25:53.550 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:DB:33:FC:18:A6:7E:4E:25:D9:69:5D:
1D:AA:57:69:4D:E4:D5:E8:F9:13:8A:2A:90:68:40:FF:
B3:E5:C7:33:87:02:21:00:AF:AB:37:85:DE:AA:9F:0E:
85:27:B8:46:87:94:0F:DC:2E:9D:CC:DF:0F:D3:22:CC:
14:E3:38:D4:FF:35:2A:11
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
Timestamp : Nov 10 05:25:53.331 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:15:67:B6:07:93:30:82:A7:9A:B4:53:B1:
FF:4F:36:E7:0C:82:D2:BD:36:E7:0B:0B:84:9A:A1:FC:
3E:7E:43:C7:02:20:23:D5:02:14:A5:D0:E9:DD:7C:C9:
61:45:22:00:29:A6:F8:70:FF:1B:13:95:09:B9:CA:67:
12:91:16:77:54:7C
X509v3 Subject Alternative Name:
DNS:*.jahwa.com.cn, DNS:jahwa.com.cn
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
2d:5c:94:90:54:a9:39:c2:ae:0b:cc:94:25:c4:4b:27:d0:0a:
48:56:62:88:ec:c3:e3:51:74:7b:91:45:af:31:7d:73:fa:c9:
23:d8:a3:94:f7:f5:00:02:47:34:cd:f7:85:46:27:45:ab:8b:
b4:70:32:7f:44:54:a6:04:55:36:0f:34:88:5e:9c:96:01:79:
e9:c0:fa:15:43:ff:e6:ee:3d:4c:b8:1b:96:d4:ea:6a:84:f0:
cf:aa:a2:4a:7f:47:c4:6b:18:3a:b9:d0:9f:41:3b:a2:47:7e:
3c:f5:cc:08:48:42:2d:c4:1a:e0:98:ec:0b:a2:7b:3f:2f:60:
ec:61:b3:8e:cc:5e:5f:c9:ee:84:06:a1:eb:fc:37:d5:09:17:
67:32:23:38:5a:83:66:7c:16:b4:e7:49:02:4a:84:05:bb:ce:
f1:fe:a6:a5:27:bd:ae:e3:53:34:42:32:e7:49:60:cf:eb:4b:
00:ce:e5:66:2f:d8:67:62:60:70:17:1e:d1:19:8a:5a:11:09:
98:52:66:d3:29:28:9b:fe:8c:9c:8b:27:63:02:7a:88:15:15:
28:9e:9e:b7:1c:d7:a2:75:27:7c:cf:c7:ea:19:f5:e4:a5:ee:
dc:2c:ea:5e:84:15:f2:9c:c7:3a:5c:ac:11:16:7c:e9:9f:39:
6e:85:2e:5a
222507814 | 2024-10-10T00:59:02.116373
993 /
tcp
* OK The Microsoft Exchange IMAP4 service is ready.
* CAPABILITY IMAP4 IMAP4rev1 AUTH=PLAIN AUTH=NTLM AUTH=GSSAPI SASL-IR UIDPLUS MOVE ID UNSELECT CHILDREN IDLE NAMESPACE LITERAL+
A001 OK CAPABILITY completed.
* ID ("name" "Microsoft.Exchange.Imap4.Imap4Server" "version" "15.2")
A002 OK ID completed
A003 BAD Command Error. 12
* BYE Microsoft Exchange Server 2016 IMAP4 server signing off.
A004 OK LOGOUT completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
13:5d:d1:e2:9f:06:88:89:4a:82:0a:9b:bc:3c:10:83
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=jahwaexch1901
Validity
Not Before: May 20 09:41:20 2024 GMT
Not After : May 20 09:41:20 2029 GMT
Subject: CN=jahwaexch1901
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b3:ae:1e:7b:45:c4:29:f7:8f:e0:8f:fb:bd:df:
52:48:5d:7b:18:7a:73:0a:9e:e6:b4:7a:aa:88:8d:
ff:95:4a:8c:23:35:e2:c4:e0:4c:6c:30:68:19:ed:
8b:62:d8:2f:bd:59:2b:f9:5d:ab:36:a5:bf:10:3d:
57:19:f6:20:25:07:7a:6b:41:c5:e4:63:57:6e:00:
be:d6:8e:81:67:48:b4:e6:48:e4:0d:f2:01:2e:75:
dc:8c:5e:73:97:27:1a:59:00:f2:bc:06:3f:f0:e7:
ef:8e:50:21:e4:78:7d:45:62:16:a8:c3:ca:1c:fc:
87:9a:5a:dc:a2:c8:94:1e:9f:d6:36:28:01:df:60:
c2:48:92:45:32:83:b8:6c:df:d1:48:3c:64:b2:63:
aa:31:1f:b3:88:4d:87:9d:f9:28:4b:87:3c:17:01:
17:27:d6:62:75:c4:74:fe:87:ac:fa:b6:86:2b:38:
76:3e:d4:be:e2:9a:1f:a4:31:f6:0a:a0:ac:1e:45:
c8:ee:47:fe:ea:e5:70:81:b5:3a:ef:57:97:71:c5:
3a:7f:5b:51:21:67:4e:d8:fb:9d:e7:e4:6b:a0:1a:
c4:65:74:9e:cb:fb:05:2d:9f:0c:3c:58:a8:d4:81:
17:7e:da:c8:b1:82:db:d8:bc:79:6e:ee:d9:57:be:
7d:7d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Subject Alternative Name:
DNS:jahwaexch1901, DNS:jahwaexch1901.jahwa.com.cn
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Basic Constraints: critical
CA:FALSE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
74:3f:de:f4:61:03:75:c4:ca:e2:59:da:8b:69:ac:4a:87:95:
e0:d3:cd:5f:e2:d2:60:cb:84:0c:54:0e:28:ca:2f:2c:e2:a0:
00:50:8a:b5:a1:be:a1:f0:f5:a7:e8:3a:8d:34:0d:33:ee:48:
4a:32:6f:d2:96:14:57:47:b4:e5:5f:9a:8d:e5:81:b7:db:d5:
9d:d3:5e:b8:45:28:af:7b:63:f3:35:56:67:0b:9d:a8:71:df:
51:fc:1b:df:50:b6:aa:7d:98:e0:75:c9:8a:21:37:50:46:25:
9d:5b:53:44:0e:5d:63:cb:89:f5:94:f2:b8:2b:9c:3f:ea:f2:
de:f7:06:f8:6e:4c:09:7d:30:39:0d:8a:c9:26:af:d7:e0:33:
b1:75:eb:8f:11:f5:94:19:3b:6c:65:7d:04:8e:19:73:d3:33:
14:0b:ac:05:e1:15:2b:6b:9d:3a:41:b9:d4:73:ac:c6:dd:14:
b9:e6:a0:da:bd:d1:d4:a9:6d:20:df:24:8b:f9:e5:5f:a0:b4:
7f:be:e2:1d:b1:d9:c3:86:f3:db:07:6e:f7:27:f1:ee:29:86:
e6:04:85:28:58:0b:ca:cd:bc:fb:86:58:e6:11:7f:be:b6:25:
94:47:fb:30:01:a4:d8:bf:4b:d1:30:93:72:1b:f4:b7:b2:cf:
3e:0f:9f:a5