-1694972451 | 2024-10-17T22:30:27.336084
80 /
tcp
<empty title>
HTTP/1.1 200 OK
Server: nginx/1.17.8.1 Unicorn
Date: Thu, 17 Oct 2024 22:31:17 GMT
Content-Type: text/html
Content-Length: 3010
Last-Modified: Sun, 21 Jan 2024 03:25:25 GMT
Connection: keep-alive
ETag: "65ac8ea5-bc2"
Accept-Ranges: bytes
-256571685 | 2024-10-17T08:52:01.620243
443 /
tcp
<empty title>
HTTP/1.1 200
Server: nginx/1.17.8.1 Unicorn
Date: Thu, 17 Oct 2024 08:52:51 GMT
Content-Type: application/json;charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
Pragma: no-cache
Expires: 0
X-Frame-Options: DENY
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
45:5e:7e:81:0c:31:45:da:b9:a4:3a:13:f8:40:86:59
Signature Algorithm: sha384WithRSAEncryption
Issuer: C=CN, O=TrustAsia Technologies, Inc., CN=TrustAsia RSA DV TLS CA G2
Validity
Not Before: Jan 30 00:00:00 2024 GMT
Not After : Jan 29 23:59:59 2025 GMT
Subject: CN=helper.szwangtuo.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b5:fa:95:8b:3f:68:54:bd:52:d4:4c:87:f9:0a:
87:c5:8e:b0:d5:50:2c:62:12:78:89:cc:8b:87:f8:
24:8f:64:42:b2:64:e9:15:57:8e:cf:d5:cd:ae:fb:
5a:6c:ea:b3:a4:6b:2b:49:f6:5c:62:d6:c6:50:d2:
b0:51:8b:95:c7:49:a7:e8:d6:7d:70:45:4d:88:99:
2e:01:bd:76:7d:ce:b7:01:48:d6:20:39:97:ad:11:
7c:8a:41:66:ef:cd:51:97:96:9a:29:ad:d2:4e:19:
57:63:3c:9a:c1:6e:e4:9a:40:58:e0:d6:02:69:57:
6b:08:bd:8c:c4:ee:46:d4:4e:0c:73:66:5b:b0:91:
01:8d:b5:d9:28:6e:01:ca:d3:af:93:db:97:3f:6a:
55:34:8f:ff:59:c4:5c:21:58:31:be:c7:fd:2b:0e:
54:fd:92:6a:b9:49:73:02:cb:a3:17:6d:57:fb:09:
40:80:05:ad:76:1b:68:96:34:db:07:74:09:6b:0e:
e5:ec:15:5a:c0:32:e2:9b:e0:ca:ff:27:1d:fe:d6:
cc:cb:c7:55:8b:b0:17:c7:ac:d5:99:77:88:66:f9:
91:87:6c:fb:d1:b9:73:6b:6c:45:0b:f7:71:2a:30:
eb:ac:19:44:9a:d5:6d:60:31:22:45:65:03:07:6f:
50:e5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
5F:3A:7C:11:10:7E:0C:67:71:61:DC:8B:A3:B5:00:03:67:F5:57:1C
X509v3 Subject Key Identifier:
20:04:12:0B:B3:66:98:FC:E6:DA:DC:FA:F5:7D:7C:B3:07:14:5B:6C
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.6449.1.2.2.49
CPS: https://sectigo.com/CPS
Policy: 2.23.140.1.2.1
Authority Information Access:
CA Issuers - URI:http://crt.trust-provider.cn/TrustAsiaRSADVTLSCAG2.crt
OCSP - URI:http://ocsp.trust-provider.cn
X509v3 Subject Alternative Name:
DNS:helper.szwangtuo.com
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Jan 30 00:50:08.821 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:BC:67:1A:2E:56:C9:3E:B6:2D:46:DE:
1E:67:45:B4:B9:A7:0B:B2:61:95:07:1E:D9:E9:2C:1C:
61:BF:0B:5D:F4:02:20:41:97:50:A5:87:28:94:CB:19:
22:47:43:2C:7C:40:AE:BC:B9:7D:13:36:72:C7:0E:18:
D7:E3:C1:F4:9F:C5:9C
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Jan 30 00:50:08.769 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:86:FB:67:25:1C:95:2C:71:74:FF:6D:
4F:1B:99:23:15:7C:82:D3:7E:CE:01:53:A0:4A:F5:90:
A6:B5:45:F0:5B:02:20:2B:2A:33:AC:03:83:85:00:53:
BB:2E:47:22:FC:5E:4C:A6:B2:32:BA:9A:E0:33:8B:26:
F0:ED:C0:81:CE:F2:41
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
Timestamp : Jan 30 00:50:08.786 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:C4:B7:38:8A:2B:BB:DE:52:25:FE:17:
82:40:8E:24:9D:27:DD:C3:A9:43:11:8D:B8:C7:70:F5:
3A:28:1D:87:FC:02:20:51:2F:9E:DA:F5:1A:7D:6C:9C:
8C:D8:2E:67:B3:04:B4:64:4B:40:27:1A:48:C6:17:D2:
C7:3C:8A:6A:51:A6:5A
Signature Algorithm: sha384WithRSAEncryption
Signature Value:
90:20:e2:0d:3b:23:11:16:42:da:8a:01:6a:11:e0:9c:33:2f:
b5:b7:5e:ff:66:a9:32:7e:fe:09:a3:9f:6a:20:75:1f:74:f5:
cb:33:32:93:bc:c1:5b:cf:55:15:25:81:f2:08:f1:e4:f0:55:
4f:b9:4e:cc:60:ba:30:ef:e1:d8:fd:e9:76:74:9c:af:b3:02:
71:48:7d:04:87:61:ea:5b:6d:0c:2f:cb:b4:a8:3d:59:fe:cb:
c6:14:53:be:12:29:7a:85:ec:5d:7d:b6:15:98:b0:f0:b2:03:
6e:bd:5d:54:6c:a0:c0:b4:4f:23:bd:46:03:17:72:e2:d5:8e:
ab:aa:05:3a:4b:29:80:80:3f:95:89:78:1e:03:fd:9c:61:ce:
78:ad:89:6a:e3:b7:e5:b4:e0:c1:ba:77:c9:5d:6c:44:3e:84:
a0:49:57:a0:3c:6e:a1:3f:03:3c:1a:fc:17:b3:a2:24:91:66:
ea:fd:d4:92:64:31:48:16:41:12:ad:b4:ed:c0:e3:4d:ed:2e:
55:23:1f:c4:04:63:41:21:89:0f:96:c2:ad:4a:6c:a6:06:e7:
1b:7e:e7:25:f5:7b:89:1e:3c:52:ab:a8:f0:71:8b:20:81:57:
34:0b:41:f1:4c:c3:e0:a0:25:4e:c3:23:27:1f:f1:a4:3b:ff:
d7:36:a1:61:77:84:02:9f:15:63:0e:bb:a9:70:90:a3:bf:f0:
43:aa:38:f8:49:c7:a9:e7:0e:d1:0e:8b:24:45:67:37:3e:18:
ee:1a:fd:dd:8d:a5:dd:43:47:27:b2:73:84:05:cc:cf:a4:95:
d2:65:49:be:a3:64:d3:2a:81:d8:34:7d:97:df:49:24:ab:e2:
1e:35:a7:95:c1:c4:f4:03:45:12:d3:79:84:2a:0a:72:bd:51:
5e:d4:c8:f1:71:31:ed:12:b0:8c:6d:1d:11:e0:7c:43:9c:a4:
3a:68:2b:e2:20:8d:ad:3b:c2:a0:89:08:bf:c1:f7:68:43:e9:
f3:54:a2:9d:7f:7e
1464134974 | 2024-10-12T00:04:15.299631
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1607)/Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: 172_30_0_5
NetBIOS Domain Name: 172_30_0_5
NetBIOS Computer Name: 172_30_0_5
DNS Domain Name: 172_30_0_5
FQDN: 172_30_0_5
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
4b:0a:10:27:aa:4e:5f:ba:44:62:2a:93:87:18:f1:a8
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=\x001\x007\x002\x00_\x003\x000\x00_\x000\x00_\x005
Validity
Not Before: Jun 8 01:28:03 2024 GMT
Not After : Dec 8 01:28:03 2024 GMT
Subject: CN=\x001\x007\x002\x00_\x003\x000\x00_\x000\x00_\x005
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:88:f0:15:cb:de:f9:73:f6:12:83:dc:da:8c:9d:
b2:2c:b3:5d:5c:5d:ab:6a:b8:a8:62:2b:45:10:c4:
1f:e4:f9:b5:01:d7:52:9e:f6:fb:44:34:e6:c2:1c:
bc:2c:17:87:06:e6:2b:1c:2d:d6:fb:5e:b4:b3:36:
8e:54:53:8a:ee:44:4a:f9:86:4c:7e:d3:5b:b3:89:
3a:49:7b:e8:81:1d:3d:3f:61:0f:c0:67:ec:3d:40:
07:61:48:b1:fa:24:01:1f:b9:8b:f0:f5:4a:84:98:
11:c5:e4:53:d3:f3:6a:fd:59:44:af:3d:c8:59:5d:
ff:5b:96:c8:0b:33:c5:b5:b0:20:ae:f6:5b:1e:e7:
ac:cb:f5:cf:b5:73:5d:34:89:52:dd:df:2e:d6:ee:
35:81:c8:a1:ff:39:1b:92:f8:7d:3e:2b:d6:e7:b5:
d3:9c:97:3c:57:b0:c3:63:c6:a4:7f:11:f3:73:db:
c2:bd:cc:42:9b:4a:c3:9c:24:b2:a5:4c:d5:8c:b7:
59:89:07:dd:85:bf:25:11:2d:90:5c:31:ca:3a:c3:
1c:f8:67:e1:2a:4b:5f:ad:74:12:8b:60:19:25:67:
53:79:e5:c0:50:f0:93:d7:c2:65:8b:e1:76:b0:04:
27:bf:cf:f0:61:a8:30:ed:d7:5b:11:43:dd:62:b0:
12:4b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
7d:eb:30:08:17:c8:3b:da:fd:a4:48:ca:bb:ed:a1:15:12:28:
73:e5:ae:77:c6:42:75:54:17:ee:22:8b:7a:ea:e8:5d:fb:f9:
bb:d0:6d:2a:e0:aa:d2:09:4d:a6:42:52:a3:01:12:32:92:35:
c2:2c:b2:e2:57:e0:54:9f:a4:c5:88:25:46:39:78:24:bc:ab:
12:dd:96:57:0b:da:92:c4:c3:9f:fb:67:5e:f7:c4:7a:75:ba:
a6:96:9d:79:15:92:09:0f:cb:a1:2e:0d:b4:e9:27:78:78:60:
6b:af:cc:95:9a:5d:5b:0c:25:f0:10:c2:5e:8f:32:2f:c0:11:
d4:7a:8d:40:26:72:54:48:ac:28:71:58:76:f3:9f:6f:14:e0:
32:7d:91:73:67:94:eb:ea:3a:1e:cf:a4:0c:76:a7:af:1f:26:
ac:3b:c0:54:37:8a:ed:c6:c3:e1:f5:f4:52:a5:18:4a:5e:c8:
52:79:3d:6c:c7:49:5a:db:54:66:52:25:65:3c:53:83:54:fc:
d6:1d:25:55:a3:fb:62:4b:1d:53:3a:94:25:7e:b6:67:81:8e:
61:f0:a5:b1:bc:31:fe:34:57:09:60:ea:04:8e:6a:00:bd:11:
3d:9f:ec:b0:56:e8:38:10:b2:7f:98:1e:74:96:b5:c5:f9:97:
59:8e:28:86
1489525118 | 2024-10-01T17:13:17.235563
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Tue, 01 Oct 2024 17:14:14 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: 172_30_0_5
NetBIOS Domain Name: 172_30_0_5
NetBIOS Computer Name: 172_30_0_5
DNS Domain Name: 172_30_0_5
FQDN: 172_30_0_5
513378515 | 2024-10-14T15:15:49.376846
8090 /
tcp
HTTP/1.1 200 OK
Server: nginx/1.17.8.1 Unicorn
Date: Mon, 14 Oct 2024 15:16:40 GMT
Content-Type: text/html
Content-Length: 637
Last-Modified: Wed, 20 Dec 2023 08:26:45 GMT
Connection: keep-alive
ETag: "6582a545-27d"
Accept-Ranges: bytes
-1312088901 | 2024-10-09T13:45:05.514612
8099 /
tcp
HTTP/1.1 200 OK
Server: nginx/1.17.8.1 Unicorn
Date: Wed, 09 Oct 2024 13:45:59 GMT
Content-Type: text/html
Content-Length: 598
Last-Modified: Wed, 15 Apr 2020 17:13:10 GMT
Connection: keep-alive
ETag: "5e9740a6-256"
Accept-Ranges: bytes
-1093342716 | 2024-10-19T01:36:09.512451
8188 /
tcp
<empty title>
HTTP/1.1 200
Content-Type: application/json;charset=UTF-8
Transfer-Encoding: chunked
Date: Sat, 19 Oct 2024 01:36:58 GMT