-1195647190 | 2025-01-02T08:34:46.240852
22 /
tcp
SSH-2.0-OpenSSH_for_Windows_7.7
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQCwpV9QMiF5oQq17A/dWYb0dhfSVzOxn1IhFodef1EKs+hK
KD2mqmqKs5lh0GDIMyU646YDLAt4EStU7g5WiMTlIQ1Y+UNP8/TPqyE+6JtRm/ftg3Kt94+HYvnh
dYDp08ND8XEUvC2HQ3+bw6yuIUQMkgHhNzhbe/KMXBU5bVSacOkSZm3xsR91BkC/SO1uwpWwn5mC
b9FQdUhYJRQst9TqWjHQZNrtIK1OlNgHICFlwqirMFwdIw5jT15X2xubGziepQxk72YL1q8TbtPA
Mx4hrQWaa80oQEx9BSxBMAiuPwbe6wiKuJRlXjS7bQuj6BnOMMzfn2prj7eb9CxRFlyn
Fingerprint: 00:d4:e7:e9:de:ec:9a:3c:b6:f4:a3:49:5c:40:18:3b
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group14-sha256
diffie-hellman-group14-sha1
Server Host Key Algorithms:
ssh-rsa
rsa-sha2-512
rsa-sha2-256
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
1882785403 | 2025-01-05T12:12:36.219709
80 /
tcp
HTTP/1.1 301 Moved Permanently
Server: nginx/1.19.10
Date: Sun, 05 Jan 2025 12:12:36 GMT
Content-Type: text/html
Content-Length: 170
Connection: keep-alive
Location: https://20.11.21.249/
-797652961 | 2025-01-05T12:12:39.618895
443 /
tcp
HTTP/1.1 200 OK
Server: nginx/1.19.10
Date: Sun, 05 Jan 2025 12:12:39 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 2233
Connection: keep-alive
Vary: Accept-Encoding
Vary: Accept-Encoding
Set-Cookie: cookieName=; Domain=st66e6477fd2f683b0.architag.com.au; Path=/; HttpOnly; Secure
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:6b:28:fa:83:74:ee:51:a3:4f:41:88:a2:0b:56:f6:a3:06
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Nov 11 06:13:15 2024 GMT
Not After : Feb 9 06:13:14 2025 GMT
Subject: CN=st66e6477fd2f683b0.architag.com.au
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:dc:21:19:4f:73:79:89:7a:36:c6:78:38:33:fb:
4c:b9:ce:06:cf:53:d8:1b:24:ec:5f:01:1a:9d:d0:
da:31:87:b0:e5:82:84:24:af:64:c7:d3:6f:d1:10:
21:93:19:1a:52:04:bf:f8:aa:c9:45:9e:30:9c:2c:
34:f0:65:7b:f0
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
70:E2:00:C6:04:38:E1:62:2C:4C:37:8C:90:72:03:7B:40:9D:95:0C
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:st66e6477fd2f683b0.architag.com.au
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Nov 11 07:11:45.641 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:18:FD:02:F6:0D:93:FA:0B:B7:9D:DD:BA:
8D:C6:DB:D8:D8:78:4D:37:20:62:E7:80:45:51:78:35:
85:C6:5D:A6:02:20:71:8E:08:41:38:BC:EF:98:F4:63:
06:E3:90:05:CC:63:50:E6:4F:B4:1D:B0:14:9A:09:5B:
66:3E:2E:9B:B9:B7
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
Timestamp : Nov 11 07:11:45.646 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:4F:47:52:4E:52:8D:7E:FF:25:D3:40:FE:
A9:C4:42:7C:20:85:73:64:96:19:C0:77:83:30:11:38:
CC:7D:C2:0A:02:21:00:9E:95:C3:4E:D8:F4:FF:B4:14:
E8:B2:4F:2B:1E:06:DD:19:C5:8A:B3:BB:A8:4E:8C:C6:
E3:20:B4:F1:93:A9:C7
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:31:00:a7:4a:65:25:c3:d2:f4:fc:39:45:e3:3a:fa:
64:fd:83:a1:aa:3b:d3:cf:24:a5:43:3c:0e:ce:e4:de:fe:64:
d0:57:62:d7:ac:d7:2e:65:00:e1:6b:f1:5b:73:3a:86:2c:02:
30:6a:7f:0c:77:ad:97:28:eb:79:35:a6:95:0f:d3:62:9c:c6:
38:18:0a:22:9d:22:69:8a:45:8d:11:29:40:0e:e9:45:fa:82:
57:dd:86:49:10:9f:e3:7f:ff:20:63:62:5b
MAC Addresses
66:E6:47:7F:D2:F6
Unknown
257743018 | 2024-12-31T15:35:35.449841
3306 /
tcp
MySQL:
Protocol Version: 10
Version: 8.0.39
Capabilities: 65535
Server Language: 255
Server Status: 2
Extended Server Capabilities: 57343
Authentication Plugin: caching_sha2_password
1349911699 | 2025-01-04T20:10:26.139133
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: architagstaging
NetBIOS Domain Name: architagstaging
NetBIOS Computer Name: architagstaging
DNS Domain Name: architagstaging
FQDN: architagstaging
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
1e:3e:c3:06:d9:26:d1:9b:43:53:58:33:7a:99:f4:22
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=architagstaging
Validity
Not Before: Aug 11 06:35:29 2024 GMT
Not After : Feb 10 06:35:29 2025 GMT
Subject: CN=architagstaging
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c0:25:fc:bc:4c:fb:75:df:73:31:8e:0b:5c:0f:
7b:62:62:77:b3:26:e2:34:bb:80:26:4a:45:64:0d:
1c:09:b9:31:02:49:a6:5a:b6:ec:5a:fb:08:1f:bc:
4a:a5:03:61:fd:b8:af:79:bc:04:a0:16:2c:b0:d9:
87:9b:41:b9:df:65:bc:50:e8:3f:85:a9:84:b1:fc:
a4:19:79:f2:77:a4:09:3a:8e:8e:55:52:1f:8c:37:
c1:b4:0b:17:f8:c1:36:1d:1c:57:41:9d:2c:b8:1f:
e0:c5:b3:b2:cb:7a:66:98:15:8c:41:cb:e9:8e:3f:
2c:dd:c3:5c:64:2c:cc:26:3f:3e:7e:93:fa:9a:05:
1d:7c:88:16:0e:a1:ce:b6:eb:6a:5f:48:68:d7:3c:
6b:d2:51:26:8c:1e:84:63:7d:0f:5c:19:b7:8f:96:
cf:98:fa:dd:ad:00:70:17:24:39:99:97:df:d9:db:
18:b4:36:86:9e:9d:e4:74:55:fb:e5:61:17:ab:fa:
04:57:bb:3d:d8:e5:b8:28:10:0b:ba:4b:51:12:fa:
6d:0f:a3:7f:37:1b:23:2b:6f:c8:12:78:34:bd:c4:
f5:d8:19:9a:3a:8a:71:9e:c9:26:4e:a7:61:b7:09:
1a:49:02:c5:48:c8:b5:d0:e3:5c:1c:fc:d5:d7:f0:
1c:b9
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a4:cf:fe:fe:5f:c3:03:50:fb:f0:ae:aa:b9:cc:3b:6c:dc:26:
fd:57:98:bf:2e:72:88:73:a3:34:f4:ed:37:65:91:a0:3b:49:
84:9e:d7:0b:fd:62:64:8b:cf:2c:87:41:67:a9:a6:54:da:ee:
74:96:2d:0f:a9:01:a1:39:4d:3a:6b:01:c9:ee:8c:9e:b0:78:
47:f4:8c:58:80:3f:cf:73:09:29:4c:1c:b5:09:e1:5a:c2:f1:
75:ff:e6:eb:9f:e4:b0:5e:fc:bb:92:a1:3c:30:0f:08:dd:20:
ab:11:9c:2c:5a:14:3f:5c:ff:f6:27:c0:52:7c:dc:ce:18:f5:
70:9f:de:6e:2d:80:3a:0c:3e:d7:f4:27:e8:c5:c4:a6:3b:d0:
d7:c2:32:7a:c2:55:0e:15:87:a8:89:b5:f0:23:a5:cb:ca:fc:
c3:ac:4a:dc:0c:a2:3e:59:d8:ce:8e:96:d0:fd:7f:12:4e:11:
cc:4a:08:fc:05:fa:da:53:8c:61:60:49:35:21:2f:be:e9:20:
f4:72:f0:fb:a3:ee:29:2f:8a:21:a3:e0:62:a6:c9:a8:47:bc:
f8:83:77:94:cc:d1:22:aa:69:90:81:d8:69:43:76:c3:6a:1d:
f0:0d:ca:70:fb:6e:8a:90:55:79:fe:3f:c8:75:0b:4b:ee:19:
35:16:ab:cb