1166705192 | 2024-11-07T21:29:34.866406
80 /
tcp
HTTP/1.1 301 Moved Permanently
Server: nginx/1.27.2
Date: Thu, 07 Nov 2024 21:29:34 GMT
Content-Type: text/html
Content-Length: 169
Connection: keep-alive
Location: https://www.liushin.com/
-960847986 | 2024-11-07T21:29:39.993503
443 /
tcp
HTTP/1.1 200 OK
Server: nginx/1.27.2
Date: Thu, 07 Nov 2024 21:29:39 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: keep-alive
Set-Cookie: frontend_lang=en_US; Expires=Fri, 07 Nov 2025 21:29:39 GMT; Path=/
Set-Cookie: session_id=274uK7hZOIeU6kKivCQXOySRWMbVhoYKJA2Lkh5DUf7HW1py54q2ZsGTRYarTCnzJEwLrk_yemxrUX9krWdb; Expires=Fri, 07 Nov 2025 21:29:39 GMT; Max-Age=604800; HttpOnly; Path=/
X-Content-Type-Options: nosniff
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:7d:f6:90:14:fb:60:0b:f2:c8:77:e8:ef:3b:79:5e:5c:ef
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Oct 30 02:15:50 2024 GMT
Not After : Jan 28 02:15:49 2025 GMT
Subject: CN=www.liushin.com
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:d9:0c:4b:eb:c2:7b:76:a2:95:ce:5d:e3:e9:48:
7a:db:54:95:29:56:d2:8a:af:f9:08:0c:c8:36:32:
fe:11:e5:a3:0e:3e:53:1e:aa:04:41:c5:c2:ab:1d:
9b:de:c1:46:da:e3:81:5f:f7:ec:72:93:32:af:00:
04:c2:a7:24:3b
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
55:C8:6B:6A:70:D3:93:02:3E:EF:54:D4:77:D6:ED:AE:BF:6D:F1:06
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:liushin.com, DNS:www.liushin.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Oct 30 03:14:20.723 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:F5:9C:48:5B:88:96:DA:29:BC:FD:95:
37:4F:B8:3A:EE:C7:FA:1F:1E:FC:BD:4A:71:CE:91:F7:
35:CA:63:25:00:02:21:00:87:EE:A6:6E:0B:A8:48:07:
0C:78:E9:A2:36:5A:F8:C7:8C:57:EE:39:BA:11:6B:8E:
81:6D:87:48:7E:D3:54:CB
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E0:92:B3:FC:0C:1D:C8:E7:68:36:1F:DE:61:B9:96:4D:
0A:52:78:19:8A:72:D6:72:C4:B0:4D:A5:6D:6F:54:04
Timestamp : Oct 30 03:14:20.680 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:8D:FC:AB:05:6A:6F:A5:6D:50:56:5C:
03:34:F0:E1:E7:68:6E:7C:A8:D4:B5:5B:91:E7:15:47:
23:CF:F0:55:49:02:20:01:BA:CD:83:54:2D:59:B0:D8:
E6:8B:A7:9C:C4:1C:52:F1:25:A9:62:50:08:73:A3:03:
7E:C6:ED:96:B6:AE:F7
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:64:02:30:6f:9b:56:37:07:da:90:3a:b3:a5:6a:51:e2:a5:
0d:cc:3d:69:ea:7e:68:33:6f:22:9a:8f:44:9d:e2:dc:9b:11:
f6:8d:d7:cc:83:75:59:18:ae:46:8b:43:38:77:e6:70:02:30:
31:db:e1:a6:7f:7f:5f:7f:0e:ea:ce:6d:fb:2e:ed:e4:76:86:
9f:0e:44:b8:df:55:b4:c4:c7:5b:26:9b:28:92:b1:c1:e4:e7:
1e:1a:03:2a:d7:65:61:6a:6d:9b:2c:e3
-1166656618 | 2024-10-24T08:56:09.222625
445 /
tcp
SMB Status:
Authentication: enabled
SMB Version: 2
Capabilities: raw-mode
-680201434 | 2024-10-18T23:23:03.046545
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-QGQL8EFDVAN
NetBIOS Domain Name: WIN-QGQL8EFDVAN
NetBIOS Computer Name: WIN-QGQL8EFDVAN
DNS Domain Name: WIN-QGQL8EFDVAN
FQDN: WIN-QGQL8EFDVAN
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
70:88:d7:3d:5e:cb:34:93:47:20:9e:90:27:de:a8:74
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-QGQL8EFDVAN
Validity
Not Before: Sep 20 05:09:04 2024 GMT
Not After : Mar 22 05:09:04 2025 GMT
Subject: CN=WIN-QGQL8EFDVAN
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e9:ed:f0:7b:71:97:3f:60:ef:16:a6:32:5d:1f:
21:4b:5a:68:c2:22:a1:0c:4a:48:b1:53:13:86:86:
80:a9:e4:1f:ba:cf:a1:36:21:1c:18:fb:90:71:cd:
4e:c9:44:dc:1c:7c:7c:09:b4:f0:87:62:f8:c7:96:
4a:11:8e:f8:ad:07:6a:d1:32:8d:a8:c7:74:f6:ff:
40:96:0e:d5:38:e8:22:f6:74:c3:23:f2:d8:5e:9a:
77:4e:5b:c8:a1:1d:af:12:ed:bc:fc:00:64:e7:01:
4a:9f:f2:4c:c2:1c:a6:2f:d6:2f:59:84:09:10:32:
05:76:2a:ee:7f:d4:1f:6d:64:65:b1:7d:75:17:b0:
f7:a0:a1:c8:e5:d6:a0:66:29:a6:81:48:68:cb:74:
ba:82:a2:ca:1a:0e:46:52:78:92:28:f8:40:0e:fa:
17:3a:bc:79:94:89:38:91:ea:61:2d:07:ad:d1:61:
d3:83:5d:9d:e1:15:77:13:fb:da:5b:1f:d0:1c:24:
41:7d:ff:bf:b0:44:c6:63:40:b8:92:6e:27:5c:ed:
98:c9:66:03:aa:ad:42:cc:c6:18:66:e5:27:57:cd:
b9:76:74:8d:d9:22:08:61:74:e8:83:f1:21:0b:32:
20:b8:aa:89:a7:60:e4:7e:4a:d9:49:a2:3d:9f:16:
82:8d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
77:f2:1e:c5:22:06:80:4b:c4:9e:e8:ed:7f:30:a2:7b:b7:e9:
36:e5:38:ff:aa:88:b5:60:25:e5:c2:51:d1:0a:72:4b:8e:6c:
d8:14:dc:fe:6a:46:91:73:3d:d5:8a:9c:dc:b3:ab:82:61:d5:
0c:f0:32:55:3f:e7:e8:bb:98:1e:12:45:cd:eb:28:7f:14:04:
51:1c:95:0a:5e:ca:ab:b2:ba:80:1e:2e:b1:ec:32:de:b4:6b:
42:dd:b5:36:f8:19:65:18:86:51:bd:c2:3f:8f:b3:a0:eb:f6:
fb:00:32:b3:cd:af:2f:fd:c8:93:b5:ce:e2:51:39:86:d3:48:
b0:85:db:44:b2:c4:5a:de:21:97:99:9b:61:fa:7e:46:ec:a8:
26:36:11:d6:89:51:0f:08:f8:d0:b7:92:08:bb:8f:46:d6:46:
88:89:eb:b3:9a:8c:d1:1f:4a:82:d4:05:dd:c2:b0:aa:a0:61:
26:c6:74:cc:ce:4b:fe:0d:c5:ef:12:d7:e1:dd:f9:3a:1c:e5:
3f:16:fb:f3:da:a0:04:08:98:97:2c:e7:5c:5b:34:2c:e9:3e:
ff:11:06:0b:3d:0b:9a:f7:54:ad:a7:55:da:e5:b6:d3:21:a0:
26:28:00:1b:9c:26:a0:97:af:8c:c0:82:03:95:42:27:f6:e1:
c1:ff:9b:db
-1684583448 | 2024-10-23T00:15:37.310828
5357 /
tcp
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Wed, 23 Oct 2024 00:15:37 GMT
Connection: close
Content-Length: 326
1489525118 | 2024-10-14T17:52:41.020420
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Mon, 14 Oct 2024 17:52:41 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-QGQL8EFDVAN
NetBIOS Domain Name: WIN-QGQL8EFDVAN
NetBIOS Computer Name: WIN-QGQL8EFDVAN
DNS Domain Name: WIN-QGQL8EFDVAN
FQDN: WIN-QGQL8EFDVAN