1745446506 | 2025-01-05T08:50:05.602797
80 /
tcp
HTTP/1.1 200 OK
Connection: close
Cache-Control: max-age=259200
Content-Type: text/html; charset=utf-8
Content-Length: 420
331450571 | 2025-01-11T23:26:26.396983
443 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Sat, 11 Jan 2025 23:26:25 GMT
Content-Type: text/html;Charset=utf-8;charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
Set-Cookie: PHPSESSID=2pe2air86tipphaa4707d256l4; path=/
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Strict-Transport-Security: max-age=31536000
Alt-Svc: quic=":443"; h3=":443"; h3-29=":443"; h3-27=":443";h3-25=":443"; h3-T050=":443"; h3-Q050=":443";h3-Q049=":443";h3-Q048=":443"; h3-Q046=":443"; h3-Q043=":443"
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:26:76:45:06:f1:0e:3d:58:0c:62:62:ad:e6:53:c9:9b:52
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R11
Validity
Not Before: Jan 9 15:10:22 2025 GMT
Not After : Apr 9 15:10:21 2025 GMT
Subject: CN=*.320porn.net
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bc:e0:4d:e9:4c:1d:5a:74:03:de:aa:6f:d5:a8:
57:4c:fb:2a:04:85:93:5b:08:e5:90:c4:26:bb:a7:
46:d7:00:cc:3d:0d:ac:15:56:0e:32:e6:55:92:f3:
07:92:6e:75:cb:2e:51:f1:15:0e:12:de:ad:9f:90:
a5:cb:70:68:22:3c:16:c0:21:03:45:12:77:24:f5:
2f:e5:92:4b:c5:f0:ce:9e:42:74:69:4d:2d:d8:db:
7b:bb:73:01:3b:75:dd:0a:6d:69:13:2d:e7:1f:ac:
5b:b2:92:77:51:0b:4d:69:4a:ee:c8:cf:73:0d:0c:
b0:40:17:3d:b8:b7:b2:4c:2e:33:6d:ce:10:d2:ea:
d7:0e:17:db:b4:4a:2c:3f:22:ae:6e:54:af:3b:63:
2b:ea:f6:a6:33:0d:57:d8:98:bd:f6:10:16:e6:ea:
e5:7b:10:10:2f:d5:85:c8:ce:ca:7e:2c:03:86:0c:
8e:25:4f:01:b7:93:42:57:c9:8a:e7:9d:97:74:3e:
9c:7b:48:fc:68:fe:1a:28:84:ae:ac:43:94:c0:18:
63:24:a0:bf:6e:92:fb:47:16:7f:da:1c:1a:1f:6d:
31:8d:0f:b8:c9:22:86:25:ee:04:7e:1e:fe:1c:d1:
e4:48:27:a6:26:79:78:43:5c:01:96:06:f5:d3:d7:
de:ed
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
4C:F6:B4:DF:F2:45:5F:1A:66:67:1D:24:7D:10:E8:39:01:43:43:B1
X509v3 Authority Key Identifier:
C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
Authority Information Access:
OCSP - URI:http://r11.o.lencr.org
CA Issuers - URI:http://r11.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:*.320ios.com, DNS:*.320porn.net, DNS:*.320yi.tv, DNS:*.33yy.org, DNS:*.920app.xyz, DNS:*.doucao.net
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
Timestamp : Jan 9 16:08:52.957 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:1E:EF:BF:22:4C:6C:A5:D7:A3:23:73:82:
5C:F2:E3:24:80:54:12:DF:F8:98:AE:AE:B8:61:41:77:
71:49:AE:39:02:21:00:E4:21:12:5F:3E:51:73:BE:8C:
48:B3:DA:F4:F0:24:DF:BE:75:7A:D9:05:80:D3:A0:B7:
05:63:A4:97:1C:96:D3
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 13:4A:DF:1A:B5:98:42:09:78:0C:6F:EF:4C:7A:91:A4:
16:B7:23:49:CE:58:57:6A:DF:AE:DA:A7:C2:AB:E0:22
Timestamp : Jan 9 16:08:53.271 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:76:D4:0B:FE:07:DB:17:9D:26:18:0D:58:
29:F3:7F:3A:69:E3:F2:16:9E:5A:F6:0E:1C:61:27:B5:
EA:58:F8:24:02:21:00:D3:D7:42:FA:46:85:17:17:2B:
56:06:2E:07:89:AB:4F:7E:FF:CF:F4:89:8B:CC:A4:79:
D8:77:08:DB:B5:AC:FA
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
2a:ed:2d:fc:c9:ce:ae:c5:a3:81:93:fa:2c:bd:82:e6:34:18:
0d:fe:90:63:90:6c:ba:00:01:d6:0e:87:7a:2a:d1:c8:b8:82:
08:f6:d9:f8:9a:e9:c1:06:f9:df:b9:95:c8:ff:7d:6d:32:02:
fd:6c:1e:65:c0:2c:ee:bf:fe:35:cf:c0:b1:8d:e9:2d:ef:92:
4b:8c:42:8d:92:a0:8f:03:e9:3a:18:1a:4a:a7:6f:3a:8a:7b:
a0:b7:4b:d1:cf:3a:5a:ff:3b:49:af:83:1d:6d:5a:1c:8d:a2:
13:ad:82:20:f8:77:93:66:b5:f9:8e:7f:44:ce:24:d7:59:56:
f9:25:24:c5:e1:40:7b:8e:74:45:27:d7:bc:ae:4c:00:e7:a2:
03:a8:64:60:e6:4d:87:bf:72:38:8b:f2:d4:c2:6f:a6:1c:46:
e4:b6:84:1c:6f:7e:c1:63:42:6a:aa:3c:ec:73:13:2c:6f:c2:
2c:7f:0d:69:d3:e8:71:f5:7e:01:19:c2:38:b0:31:3f:66:61:
14:dc:04:ea:52:81:7d:91:fd:00:9c:de:ee:8b:53:37:ab:2d:
db:00:ef:b4:48:4d:bb:60:87:f4:00:f8:62:11:d6:26:48:f7:
dc:a6:b4:f5:51:12:e1:56:03:cd:ef:83:a8:a1:9e:77:88:5f:
bd:18:c3:fd
940603052 | 2025-01-11T08:54:15.870479
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x0f\x08\x00\x02\x00\x00\x00
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2e:ce:c9:f5:b6:dd:0b:b4:40:d1:00:09:81:ed:ca:62
Signature Algorithm: sha1WithRSAEncryption
Issuer: CN=WIN-NH5J9V9UFDI
Validity
Not Before: Aug 18 08:06:14 2024 GMT
Not After : Feb 17 08:06:14 2025 GMT
Subject: CN=WIN-NH5J9V9UFDI
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b8:ba:8e:32:66:d0:bb:c4:39:88:f3:f2:8f:03:
15:8c:db:29:00:00:e4:f2:24:89:a9:91:31:95:d0:
dd:78:97:30:d8:6f:1a:58:27:35:1f:d6:d5:2a:5a:
c1:0d:36:90:27:4d:57:1f:ca:db:87:65:c9:ba:56:
ae:bd:2d:35:d1:01:ac:9a:0f:ca:a2:58:e0:00:06:
fa:00:42:a6:30:fa:77:65:22:60:0b:0c:53:4a:75:
fb:c8:c1:f7:e8:a4:fc:5d:69:9a:73:b7:72:31:56:
49:e1:b1:d8:57:d7:c6:9b:92:a1:9e:bc:3e:58:27:
6f:5c:58:75:a0:b9:fe:dc:d2:9a:ce:95:46:6d:34:
0f:ee:cb:86:6b:ee:21:c0:04:fe:a4:a6:45:5a:08:
c4:8e:59:3f:0e:3f:86:fe:cf:97:10:fd:e1:6b:a3:
cc:ed:75:64:36:d7:bc:d3:b7:f0:94:42:c8:b9:32:
10:55:ff:c3:15:66:d7:d0:b6:92:3b:7d:cc:76:ad:
71:4b:df:6c:03:8a:bb:9d:85:c4:01:e5:03:91:6c:
57:12:9a:68:12:79:2e:e9:af:f6:18:13:b9:2f:a7:
41:9a:31:1e:d5:51:b9:3e:fd:e5:d3:bf:cd:58:f2:
3d:13:db:00:f3:1c:f7:34:4a:03:72:d9:6b:01:59:
d5:77
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
2d:28:53:03:80:12:a6:ad:29:a3:47:16:09:f1:22:a6:70:d2:
dd:01:b3:d8:c3:7c:3a:e3:36:4b:0f:e2:2b:1c:50:23:3f:3e:
f3:b0:fc:ba:7a:6a:c5:47:55:d7:00:ac:81:80:c9:22:06:0d:
d3:5a:7f:22:6e:bd:1b:d3:01:a1:90:35:ae:6d:b8:55:de:0d:
8e:3b:5f:e7:44:d9:3b:c1:a9:48:ee:28:5e:6d:56:16:b6:d9:
4f:e5:d4:7b:f9:5c:0c:c1:68:93:c2:db:c7:17:89:19:3d:bf:
87:1e:c6:47:0f:e2:b8:fe:f7:e7:68:4c:44:8f:95:7d:4d:2e:
73:32:47:5a:33:49:be:f8:44:9d:80:ed:11:f2:f2:bd:4d:da:
77:cc:4d:95:67:b1:5f:bd:85:d6:4d:66:08:72:49:aa:b9:97:
42:e1:07:80:24:53:71:e2:22:de:37:16:89:bc:c3:f2:17:fa:
5f:b9:e8:14:51:1a:07:fe:5f:ae:bb:4a:d6:38:5d:47:0f:c7:
85:1f:93:a6:ab:70:c9:8e:e1:65:cc:c8:46:2c:79:26:83:b2:
b3:8c:ec:a0:0a:95:4f:60:4e:b4:d0:87:af:65:8c:71:8a:6b:
d3:5e:4f:19:f0:7f:f9:67:5e:50:70:8e:f7:1e:57:6b:62:65:
80:9e:ea:f2
1489525118 | 2025-01-01T15:23:05.763038
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Wed, 01 Jan 2025 15:01:43 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: WIN-NH5J9V9UFDI
NetBIOS Domain Name: WIN-NH5J9V9UFDI
NetBIOS Computer Name: WIN-NH5J9V9UFDI
DNS Domain Name: WIN-NH5J9V9UFDI
FQDN: WIN-NH5J9V9UFDI