-370734890 | 2024-12-28T06:11:51.886773
21 /
tcp
220 Microsoft FTP Service
530 User cannot log in.
214-The following commands are recognized (* ==>'s unimplemented).
ABOR
ACCT
ADAT *
ALLO
APPE
AUTH
CCC
CDUP
CWD
DELE
ENC *
EPRT
EPSV
FEAT
HELP
HOST
LANG
LIST
MDTM
MIC *
MKD
MODE
NLST
NOOP
OPTS
PASS
PASV
PBSZ
PORT
PROT
PWD
QUIT
REIN
REST
RETR
RMD
RNFR
RNTO
SITE
SIZE
SMNT
STAT
STOR
STOU
STRU
SYST
TYPE
USER
XCUP
XCWD
XMKD
XPWD
XRMD
214 HELP command successful.
211-Extended features supported:
LANG EN*
UTF8
AUTH TLS;TLS-C;SSL;TLS-P;
PBSZ
PROT C;P;
CCC
HOST
SIZE
MDTM
REST STREAM
211 END
-930215746 | 2025-01-04T15:45:21.885758
80 /
tcp
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Wed, 28 Aug 2024 16:32:55 GMT
Accept-Ranges: bytes
ETag: "c35466ef67f9da1:0"
Server: Microsoft-IIS/10.0
X-Powered-By: ASP.NET
Date: Sat, 04 Jan 2025 15:45:20 GMT
Content-Length: 35045
-930215746 | 2025-01-19T20:54:45.741224
443 /
tcp
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Wed, 28 Aug 2024 16:32:55 GMT
Accept-Ranges: bytes
ETag: "c35466ef67f9da1:0"
Server: Microsoft-IIS/10.0
X-Powered-By: ASP.NET
Date: Sun, 19 Jan 2025 20:49:42 GMT
Content-Length: 35045
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
67:dd:e0:f1:19:15:f4:66:31:9f:5f:a1:71:73:cb:e0
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Validity
Not Before: Nov 22 00:00:00 2024 GMT
Not After : Dec 23 23:59:59 2025 GMT
Subject: CN=enlightenedsoftware.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d4:5b:63:8a:09:5e:4e:b3:f2:e3:3c:d9:b6:83:
f7:e6:84:a8:ac:c9:68:ed:98:0c:69:08:4d:91:7b:
5c:d1:0d:66:d3:66:fd:6b:bc:02:00:5c:a0:e0:0b:
93:c3:72:86:67:a4:fa:c5:c8:de:01:37:24:6a:b4:
f7:76:07:43:29:38:17:62:af:9d:98:80:d9:da:6b:
2b:47:e8:ef:ea:f6:9c:c2:a4:2d:3c:7c:cb:ff:48:
67:77:0d:77:33:7f:c5:5a:74:20:72:3f:4e:5d:fe:
a7:e2:f6:9e:50:f8:6c:2d:d9:0d:c5:10:ad:b3:4d:
6f:02:72:0d:ee:41:6e:c9:18:3d:61:41:2c:3e:ef:
cc:57:23:d8:4e:a1:63:77:8d:38:28:f8:90:48:19:
99:af:e9:7a:9e:14:fa:6c:d2:9e:db:31:12:1f:3f:
a9:7d:a2:2a:d9:06:62:37:c1:45:38:8f:d4:22:22:
8c:a4:5b:6d:07:d9:ce:71:a5:33:e6:59:b7:ea:88:
c6:ad:2e:0d:e8:76:ce:7d:0a:8b:a5:dc:0f:2f:2f:
00:c9:eb:6c:b1:54:0b:c2:6f:d8:82:c2:91:a8:e5:
1a:19:46:8a:88:dd:b1:e8:78:64:7a:0c:f4:16:41:
39:ca:00:c7:bc:76:5c:cc:94:e1:69:7e:6b:77:1f:
2c:45
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1
X509v3 Subject Key Identifier:
09:57:17:07:80:2C:EC:53:DC:C2:2E:85:A5:74:FA:3A:72:19:28:00
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.6449.1.2.2.7
CPS: https://sectigo.com/CPS
Policy: 2.23.140.1.2.1
Authority Information Access:
CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
OCSP - URI:http://ocsp.sectigo.com
X509v3 Subject Alternative Name:
DNS:enlightenedsoftware.com, DNS:www.enlightenedsoftware.com
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8:
3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A
Timestamp : Nov 22 14:28:49.350 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:F1:FE:22:1A:DE:AC:0D:89:89:03:44:
56:54:AC:6D:28:4B:1E:FF:5A:C9:F9:98:95:B0:EF:A0:
BA:AD:0B:C5:B5:02:21:00:F6:33:60:C8:2E:5D:E7:F3:
67:9B:7B:BA:C2:01:84:A4:24:E3:14:1C:F5:60:19:3D:
6D:21:FF:7E:37:E8:D1:C7
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
Timestamp : Nov 22 14:28:49.359 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:51:A6:F2:EC:19:A0:DF:6E:FC:91:54:3F:
61:A0:7B:E3:66:52:9E:B6:CA:BA:0A:96:F5:BE:98:85:
C7:D7:98:C3:02:20:0C:97:3B:2E:AB:C0:86:54:CF:49:
F2:E8:E8:1B:51:1A:DD:1D:D3:0C:5B:07:96:DF:66:A2:
BF:D8:12:FE:4D:12
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13:
F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A
Timestamp : Nov 22 14:28:49.312 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:5B:F3:68:33:02:39:C8:90:9E:CF:4B:5F:
3F:A5:75:88:48:A9:DB:E0:7F:4F:47:AB:83:47:2E:71:
09:CB:0A:5C:02:20:25:EC:3B:4A:9F:EF:9F:34:AE:A8:
F1:58:03:31:75:72:23:82:49:E9:1B:86:D1:CB:D1:F2:
FB:37:26:8E:2D:1D
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
48:0d:03:4a:56:68:59:ae:45:67:f2:ce:10:ae:46:37:6d:e4:
92:4f:d8:52:5f:1b:fc:26:fe:04:98:b5:28:fe:15:b4:48:34:
55:e6:6d:9f:18:12:ff:ca:c5:ed:01:26:2e:11:0b:37:ef:1e:
0f:28:d1:69:cb:0f:c6:46:e4:a4:4b:9c:2d:27:e8:2a:73:5d:
80:d9:b4:26:58:11:6c:9d:ab:1e:34:a7:22:50:d8:66:6d:f2:
05:81:92:d8:85:e1:8e:88:f3:d3:04:e1:77:c1:47:26:13:1d:
81:c4:9c:03:b2:9f:47:af:10:5e:5d:77:ea:9d:3a:fe:fd:67:
92:b3:cd:80:7f:77:8c:9c:5f:3d:6b:28:1a:d6:f7:56:c7:9b:
d0:f7:48:1a:e7:4c:2c:8b:41:0d:db:0b:02:d2:d8:5a:56:98:
0b:04:f7:2f:e3:da:67:b9:85:cb:92:ee:d9:18:a1:28:0a:6d:
64:39:12:cb:1f:40:22:27:c8:8d:5d:09:20:e2:b9:2a:f3:01:
f5:0e:25:82:78:a0:0a:84:ad:c2:78:55:fe:2c:26:2f:e1:ab:
9a:71:f3:f3:4f:e8:14:d7:b3:e2:5e:1b:81:34:5d:58:d4:66:
9e:7b:ba:a0:ea:6f:c9:f9:56:f4:ee:c3:3a:2b:e3:17:77:d7:
42:a2:f4:b7
-1089916661 | 2025-01-18T19:00:15.582642
3306 /
tcp
MySQL:
Protocol Version: 10
Version: 8.0.35
Capabilities: 65535
Server Language: 255
Server Status: 2
Extended Server Capabilities: 57343
Authentication Plugin: caching_sha2_password
1804997930 | 2025-01-14T07:08:08.701412
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: 32-79-148-132
NetBIOS Domain Name: 32-79-148-132
NetBIOS Computer Name: 32-79-148-132
DNS Domain Name: 32-79-148-132.host.secureserver.net
FQDN: 32-79-148-132.host.secureserver.net
: enlightened
jo enlightened
R nydus
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5e:0f:3b:7d:54:34:30:b1:4e:96:de:64:d5:a6:96:f8
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=32-79-148-132.host.secureserver.net
Validity
Not Before: Sep 1 12:22:41 2024 GMT
Not After : Mar 3 12:22:41 2025 GMT
Subject: CN=32-79-148-132.host.secureserver.net
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:db:22:68:fd:34:a5:8e:9d:37:f0:f5:1e:cb:05:
82:f0:de:66:b3:1c:19:02:e5:42:d0:c1:99:1a:14:
17:8b:bd:ec:71:14:9c:9b:5a:e2:7e:58:e9:3f:cc:
27:48:53:44:1c:ac:b0:61:da:b8:d0:53:62:5a:20:
cb:80:3a:9f:0a:66:d3:47:21:5b:4f:a5:2b:a5:a1:
a1:d5:1d:51:13:7f:43:41:26:78:cc:5f:51:4e:a3:
fa:a8:f5:97:70:37:c3:f1:ed:eb:e4:cb:f0:98:2d:
55:68:40:c9:a1:e3:59:69:db:da:23:fa:b0:57:4a:
c4:13:a4:fa:78:7e:65:50:fa:bd:ba:21:20:cb:9d:
db:00:a7:11:bb:a4:5a:d8:17:24:21:ef:77:b1:97:
fd:3d:1a:2c:29:cd:ac:af:26:34:83:3f:7b:03:30:
84:ec:ce:53:92:a4:98:8d:f0:e3:6d:71:ef:2e:1b:
08:8c:be:ff:0a:15:d9:cd:0e:b3:8c:95:0d:91:60:
ea:fc:8e:02:ae:41:de:d6:72:63:da:98:51:c0:55:
e2:63:00:d7:31:d4:c2:17:7d:a8:15:1b:b5:8f:cd:
b6:19:5d:d2:41:d8:e2:da:e3:00:4c:f4:f5:41:37:
12:63:59:ad:dc:73:98:cd:bd:d2:51:e9:4c:5e:ba:
3f:59
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
5a:cf:8c:48:93:bd:34:ef:28:1d:9b:56:d1:4c:47:ea:05:ae:
de:ef:45:34:2b:f9:7d:b0:94:cf:28:83:25:b1:8e:ae:fd:7c:
c7:b9:69:de:76:2f:85:f6:34:19:1e:97:e9:8a:b3:62:b0:10:
08:e1:ef:fa:40:b2:3a:a7:f7:63:55:89:0e:47:96:60:e3:31:
e8:59:43:8a:c3:2b:70:db:cd:df:99:a2:6d:b3:b9:c2:f1:c6:
11:f6:27:6d:90:b9:37:03:66:47:aa:76:f9:eb:53:f4:f0:ee:
09:85:5f:91:f7:7f:f6:c2:70:22:5e:f6:b5:a3:0c:3a:96:71:
fa:16:3a:b8:32:e4:00:ea:03:0d:91:20:ef:7b:19:3d:1a:c3:
f1:58:05:01:16:df:b4:2d:e7:16:57:c2:27:6d:dc:15:32:14:
33:c4:e1:9f:da:d7:02:f3:af:a3:49:98:5a:4c:3b:3b:7a:7d:
42:b7:f1:75:e2:9e:01:f5:12:2c:8f:93:8d:a1:dc:bf:c8:df:
30:5d:f9:5b:ba:a4:b5:95:0e:a9:3a:8d:91:3d:9a:28:c9:25:
09:20:67:ed:86:6d:e7:4b:47:e6:de:62:7d:58:29:15:53:af:
b0:b8:a9:21:93:8f:78:4e:c6:b1:0c:68:2c:ff:48:7e:2d:f4:
59:2e:64:2d
-795948505 | 2025-01-11T06:17:11.750845
33060 /
tcp
MySQL X Protocol:
tls: False
authentication.mechanisms:
MYSQL41
SHA256_MEMORY
doc.formats: text
client.interactive: False
compression:
algorithm:
deflate_stream
lz4_message
zstd_stream
node_type: mysql
client.pwd_expire_ok: False