-1447843101 | 2024-10-31T13:17:30.657986
80 /
tcp
HTTP/1.1 302 Redirect
Content-Type: text/html; charset=UTF-8
Location: https://18.133.35.18/
Server: Microsoft-IIS/10.0
X-Powered-By: ASP.NET
Access-Control-Allow-Origin: *
Date: Thu, 31 Oct 2024 13:17:30 GMT
Content-Length: 144
1146710645 | 2024-10-31T13:17:32.921387
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/10.0
X-AspNetMvc-Version: 5.2
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Access-Control-Allow-Origin: *
Date: Thu, 31 Oct 2024 13:17:32 GMT
Content-Length: 21572
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:b5:97:31:5b:50:c5:fd:c9:d0:b3:0c:f8:a7:33:1c:a0:aa
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R3
Validity
Not Before: Apr 26 12:40:02 2024 GMT
Not After : Jul 25 12:40:01 2024 GMT
Subject: CN=*.feedbackrig.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b0:b1:72:76:78:a5:b1:c1:10:c5:b0:ac:bc:c6:
82:47:e8:8d:70:34:de:d7:74:18:c3:9b:46:d5:06:
db:e1:d3:8c:c8:89:6f:23:48:11:e1:ef:68:90:c0:
4d:f6:b4:bf:c6:c9:01:91:82:1f:82:bb:26:34:73:
92:5e:da:be:93:83:ab:d7:a0:af:d7:2e:66:fe:22:
62:86:8f:a1:58:db:8b:a3:81:e0:c3:df:52:ea:43:
6b:05:79:cd:0f:b6:8a:d4:4d:83:47:94:3a:e1:40:
8b:e7:67:e0:e6:e0:46:ce:19:f9:74:a8:20:85:4e:
87:1f:29:50:7e:a9:f8:5e:32:12:29:18:9b:25:3d:
8e:cb:95:78:9f:8a:ad:81:06:1c:af:d6:54:82:c7:
ae:d1:82:8d:6b:49:be:ff:e6:20:f7:7e:a9:a4:b1:
d3:ed:ce:b5:95:71:0b:f0:32:05:e5:79:eb:4d:0e:
af:89:c5:a8:cb:fe:a3:63:50:83:f2:c1:74:db:0c:
8c:4f:4e:a7:ed:fa:bc:6d:ea:b7:92:75:76:5e:24:
ed:06:76:6d:e4:a7:ef:41:a9:35:c9:f1:d2:c9:be:
3f:75:64:b7:e2:2b:5d:3d:1a:40:0c:00:c5:fe:12:
c3:25:37:6a:b6:cf:6a:41:1f:87:37:6a:bc:e7:b1:
15:79
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
C8:A1:1D:C6:92:50:2F:B9:20:79:C2:4C:CE:F6:F3:52:9F:A0:EB:1C
X509v3 Authority Key Identifier:
14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
Authority Information Access:
OCSP - URI:http://r3.o.lencr.org
CA Issuers - URI:http://r3.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:*.feedbackrig.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Apr 26 13:40:02.949 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:D0:6D:A3:AA:B1:08:81:BB:0B:45:2A:
09:7C:6F:C6:50:D8:5C:43:CB:FF:88:0C:11:4C:3F:25:
01:10:78:F5:C5:02:20:04:5F:D2:4B:3F:1B:44:E6:61:
47:C9:27:09:EB:35:E1:6C:24:2F:85:0C:09:E1:FB:C0:
59:B4:6E:76:E3:93:C3
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Apr 26 13:40:02.940 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:D6:14:AB:DA:CB:25:D3:7F:A5:C2:2A:
83:D8:62:49:35:EB:29:DA:E2:94:42:A7:A2:80:1C:30:
13:FD:88:CB:A2:02:20:42:34:F4:A4:51:50:EF:A8:B8:
5C:F7:EC:0C:F3:59:52:56:A8:9F:24:C7:CC:7C:5E:05:
6A:47:4B:6C:F5:BE:70
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
42:03:bb:42:60:64:a7:3e:0f:4d:27:09:61:66:d5:a0:c6:85:
0c:53:a7:3c:82:d9:94:ad:23:7d:2a:76:eb:59:1e:23:da:e5:
47:ec:cd:1a:78:73:3b:b2:8d:87:f4:ce:b6:d1:39:67:0b:46:
9e:a8:69:84:f9:d8:9d:04:62:c6:fa:f8:81:6a:c2:11:12:ba:
ff:ca:a0:0b:f9:ae:c6:24:1c:16:35:b8:0c:d0:f9:84:b7:db:
b7:aa:b8:c7:61:30:c2:ec:2d:eb:a9:21:80:1a:8d:1c:d6:1e:
dd:16:a9:96:22:6d:c1:e7:af:63:bc:cb:d8:69:6e:20:d2:5b:
be:ff:f0:00:27:85:06:e7:25:16:e9:8b:e1:1f:d0:d5:43:ae:
a8:ce:cd:5e:4e:ac:29:7f:0c:57:d4:7b:4e:b4:ad:13:5c:ec:
ad:97:64:8c:63:fe:bc:e5:0a:6f:20:70:95:3c:4e:17:68:c6:
42:b2:a2:57:dc:73:fc:a7:17:94:ac:7a:fd:89:53:dc:bb:7d:
06:18:c0:63:49:b2:d3:27:35:4f:b9:17:cf:91:c0:39:ec:3a:
a8:f9:0b:55:b2:15:ef:9d:2c:cf:dd:f7:64:21:30:31:34:2a:
07:a8:6a:5d:a2:6b:0a:ba:fe:44:22:00:99:9f:31:8e:c7:54:
e1:f0:0b:d0
612588149 | 2024-10-24T04:41:29.275973
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: EC2AMAZ-OMGHNIV
NetBIOS Domain Name: EC2AMAZ-OMGHNIV
NetBIOS Computer Name: EC2AMAZ-OMGHNIV
DNS Domain Name: EC2AMAZ-OMGHNIV
FQDN: EC2AMAZ-OMGHNIV
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
15:28:3c:85:6a:28:04:b3:47:63:e2:74:91:7a:a1:1e
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=EC2AMAZ-OMGHNIV
Validity
Not Before: Sep 7 12:03:32 2024 GMT
Not After : Mar 9 12:03:32 2025 GMT
Subject: CN=EC2AMAZ-OMGHNIV
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bd:50:59:bf:e3:8d:24:ce:28:7e:09:bf:aa:a6:
e0:24:71:bb:ac:50:47:f1:66:2d:6d:ad:b3:ec:46:
39:78:0d:3e:57:3f:bd:da:a9:ff:3b:dc:84:dd:ab:
cb:de:65:8b:52:19:31:9b:10:0f:bd:73:10:d2:94:
14:eb:85:6b:32:dc:be:1a:d4:01:fa:e2:5e:f4:7d:
c7:ec:bd:1d:cd:65:9e:0d:bf:6d:b6:c9:8a:dc:5c:
eb:e8:9c:27:26:f8:e7:8c:00:36:8a:60:ee:81:78:
c4:75:18:c6:3e:94:bd:e0:a1:d2:4f:2f:27:14:26:
27:c1:d3:9a:e6:af:5d:6c:ae:6e:9b:82:0b:6e:85:
38:6e:5e:ca:90:06:7f:0b:3e:1a:6d:9f:ad:46:50:
b1:d7:d4:81:bc:f3:f6:00:9e:38:1a:a7:9e:6c:fb:
f3:9d:7f:c2:9d:0e:05:ab:ea:ca:16:80:19:c3:c7:
18:8f:99:33:d8:6d:54:91:74:b4:bb:2f:8d:6f:a8:
89:16:df:0c:a4:c5:5e:f0:8c:ab:e2:d1:89:da:81:
ea:67:48:a9:ed:f8:48:56:aa:f5:eb:72:ac:4a:2d:
26:64:38:b7:f8:52:3f:7f:34:b0:3e:72:ec:89:41:
a0:ba:8b:96:b8:7f:61:b2:80:82:de:60:13:ae:3e:
50:fd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
9a:a8:d6:63:1a:f6:9b:13:18:d1:36:b0:42:cf:e1:a6:7c:dd:
0e:d4:d5:81:70:8b:01:a7:66:77:af:b9:bf:ba:04:3a:04:ec:
9d:eb:1b:b8:e4:35:11:b7:06:52:b7:6c:27:66:d8:fc:19:9d:
2f:12:10:0d:98:2b:0e:6f:8f:06:fa:b5:69:84:a8:03:3f:4c:
02:06:b5:87:aa:19:fb:97:fa:4c:6f:32:2a:05:27:76:59:7a:
10:8a:cc:e9:e9:a3:ff:71:73:59:b5:e5:f9:13:2b:13:74:e7:
8a:39:a0:2e:7f:d0:cf:2f:49:3f:e4:8b:34:62:34:bf:9e:2c:
c2:28:d7:68:16:ec:14:03:68:d4:0f:00:40:7e:c9:8b:2e:c0:
9d:19:7f:6e:e1:7d:ea:28:12:4e:18:a7:76:fc:f0:29:3c:f5:
ea:a7:50:be:4b:de:28:1d:ad:c8:5b:7e:fc:fb:b6:fd:ef:e6:
cb:d3:a3:e2:bb:34:33:f9:9b:91:7f:2a:6f:55:94:9f:aa:04:
d2:ff:b2:dd:97:b8:54:2d:00:96:37:5c:a2:e1:8c:78:ed:ee:
6a:07:11:84:c0:28:97:71:fa:45:40:79:46:76:fa:ec:e0:29:
ce:0f:92:93:30:cf:9e:41:1d:af:34:ee:06:83:d0:4d:d0:8c:
b4:ee:6e:fd