-235504625 | 2024-10-31T18:02:55.811210
80 /
tcp
HTTP/1.1 302 Found
Date: Thu, 31 Oct 2024 18:02:53 GMT
Server: Apache/2.4.54 (Win64) OpenSSL/1.1.1s PHP/8.2.0 mod_fcgid/2.3.10-dev
Location: https://claimtracker.net
Content-Length: 332
Content-Type: text/html; charset=iso-8859-1
593953580 | 2024-10-28T05:07:41.067859
443 /
tcp
HTTP/1.1 200 OK
Date: Mon, 28 Oct 2024 05:07:39 GMT
Server: Apache/2.4.54 (Win64) OpenSSL/1.1.1s PHP/8.2.0 mod_fcgid/2.3.10-dev
Last-Modified: Sun, 06 Mar 2022 20:21:40 GMT
ETag: "3ead-5d9927ed69d00"
Accept-Ranges: bytes
Content-Length: 16045
Content-Type: text/html
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:d7:4c:a4:41:39:27:85:dd:64:f5:f8:77:9e:d6:65:2f:46
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Oct 16 13:23:02 2024 GMT
Not After : Jan 14 13:23:01 2025 GMT
Subject: CN=cts.claimtracker.net
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:e9:1b:1e:d5:ba:1b:58:ec:2c:d8:9b:e0:d2:63:
12:a1:35:66:c6:e1:c9:7f:d5:fe:6a:67:be:12:74:
57:2e:6d:39:41:bb:cf:78:4d:8b:f7:d7:bd:05:d7:
57:63:a5:fc:08:f0:4c:a8:63:77:c4:3c:df:57:bd:
f6:99:6f:2c:3c
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
EC:98:82:9F:78:C5:D9:75:F3:95:C0:7F:B1:C0:15:6A:E9:FB:67:C8
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:cts.claimtracker.net
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
Timestamp : Oct 16 14:21:32.862 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:45:A1:5B:D4:D8:B4:07:96:87:5F:0E:0B:
78:4A:0E:73:F2:EE:FF:D3:9D:2D:70:FA:9E:19:5D:CD:
71:24:9D:F9:02:20:57:FF:30:B6:0E:7C:2E:51:0C:B2:
38:E1:81:C5:91:76:07:8A:CF:5B:0E:55:D3:DC:33:29:
06:25:78:0F:63:EC
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E0:92:B3:FC:0C:1D:C8:E7:68:36:1F:DE:61:B9:96:4D:
0A:52:78:19:8A:72:D6:72:C4:B0:4D:A5:6D:6F:54:04
Timestamp : Oct 16 14:21:32.931 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:B7:0B:04:E3:70:1D:28:BF:90:1E:8E:
DA:1D:4A:9B:14:E2:5E:CC:3F:CF:8F:D9:C9:08:29:93:
78:1F:75:EC:1F:02:21:00:8B:94:65:31:2F:45:6C:0A:
47:57:24:FF:BF:4F:6F:15:14:7D:60:12:6C:D5:63:31:
05:6A:00:E6:AE:EC:2B:B2
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:64:02:30:1d:e8:76:a9:43:1c:e1:42:32:b7:5d:41:9e:83:
cb:4e:08:0c:ee:d0:ae:c8:51:3a:31:6c:3c:6b:84:08:d0:b2:
8c:15:89:37:d3:17:cf:b3:05:9c:53:4c:0f:2b:42:33:02:30:
69:8d:42:f1:35:56:38:af:35:20:d9:a8:5b:3c:f1:b5:8a:f4:
be:d9:92:ff:c8:a3:04:dc:0c:03:e1:cb:92:ef:86:52:d6:a4:
57:48:86:b7:30:53:65:df:89:4f:d4:2e
1380607802 | 2024-10-17T18:57:44.532086
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: DavisWeb
NetBIOS Domain Name: DavisWeb
NetBIOS Computer Name: DavisWeb
DNS Domain Name: DavisWeb
FQDN: DavisWeb
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7f:49:84:bf:e1:a0:d3:b7:48:9b:4d:77:78:59:50:c2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=DavisWeb
Validity
Not Before: Sep 15 12:41:23 2024 GMT
Not After : Mar 17 12:41:23 2025 GMT
Subject: CN=DavisWeb
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b8:7b:ff:c0:fc:38:3a:57:23:14:e9:30:7d:18:
50:be:27:4a:42:60:eb:e7:7e:9e:75:5f:97:1e:94:
60:30:f6:88:9d:99:13:23:32:db:ef:30:7b:96:06:
01:7f:3f:c9:50:1d:ef:d3:b4:05:4e:4d:6e:27:cb:
d1:65:2b:63:08:31:f9:3d:73:10:02:c5:96:69:00:
a3:62:86:36:d5:3c:cd:af:5c:df:59:d1:90:a9:82:
c3:ca:1f:ec:dc:b6:67:ec:88:e8:21:1e:7a:1f:ad:
d0:1b:e9:5d:af:62:ee:58:62:93:3e:58:07:15:70:
2f:96:f9:dd:65:26:b2:da:36:e5:d2:c6:60:3d:97:
2c:b8:77:04:85:c9:15:c5:de:b1:7d:bc:e3:b3:a1:
e7:46:c2:b5:0f:f3:b2:cd:1b:6c:ac:ef:0c:ce:80:
f7:00:c8:3c:61:bb:fa:47:bd:80:3b:04:31:8a:30:
52:83:92:8b:36:0f:47:92:20:ae:51:c6:17:f4:d3:
33:82:36:f7:bb:31:7e:d3:ad:31:b3:a6:88:64:cd:
c4:65:ef:ce:c4:7d:b4:01:8d:9a:73:1b:01:e0:38:
02:e0:d6:5c:25:be:f2:04:cc:d9:83:29:c9:1b:22:
1f:b1:7e:16:fa:eb:29:ab:99:50:ca:4c:12:18:d5:
36:85
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
31:9f:e7:cf:0a:bc:26:9a:e9:0b:59:df:d2:b8:d9:4c:6e:6b:
09:35:a0:e3:ae:c5:60:92:af:5d:77:bc:08:95:c4:1c:cb:b8:
cd:12:36:35:a4:5c:99:0b:1c:98:84:bb:45:3b:f1:15:9e:c4:
0a:ac:e5:c8:f1:65:0e:e3:31:d6:b3:d1:c9:d1:5c:3e:3a:80:
27:2a:e7:37:f3:0f:f1:fd:bc:62:b0:bc:ca:ae:b6:f7:dd:ff:
fa:38:83:2e:1d:b3:20:82:95:ea:ab:b4:6f:e1:bf:43:11:5d:
20:7e:4b:c0:78:97:33:f5:a9:aa:5f:c4:8b:1f:99:dc:44:58:
0b:38:ce:1b:2e:f5:95:4e:4e:be:6f:bc:fd:b8:7d:f8:10:be:
95:05:9c:28:3f:c4:e7:36:80:a2:52:fb:af:13:0c:09:b4:fe:
be:ab:f0:63:fa:50:00:27:78:4c:8b:d1:6a:0f:a6:35:30:9a:
46:85:bc:9a:08:b9:2d:90:41:e7:b1:26:38:16:0b:3c:d3:ec:
ef:0b:57:ee:4d:83:bf:3f:87:4b:a8:79:ac:80:89:11:25:ba:
f1:52:20:85:67:df:42:b7:68:a9:96:bf:53:dd:0f:77:dc:c7:
06:a5:92:1b:d5:70:40:f0:49:ed:2e:c0:eb:5c:49:80:cb:fc:
46:0b:ad:b9