Hostnames |
hostserv.co.za winsvrweb16.hostserv.co.za |
Domains | hostserv.co.za |
Country | South Africa |
City | Cape Town |
Organization | 1 GRID (PTY) LTD |
ISP | 1 GRID (PTY) LTD |
ASN | AS36943 |
Operating System | Windows |
-370734890 | 2024-09-22T05:52:12.79640321 / tcp
220 Microsoft FTP Service 530 User cannot log in. 214-The following commands are recognized (* ==>'s unimplemented). ABOR ACCT ADAT * ALLO APPE AUTH CCC CDUP CWD DELE ENC * EPRT EPSV FEAT HELP HOST LANG LIST MDTM MIC * MKD MODE NLST NOOP OPTS PASS PASV PBSZ PORT PROT PWD QUIT REIN REST RETR RMD RNFR RNTO SITE SIZE SMNT STAT STOR STOU STRU SYST TYPE USER XCUP XCWD XMKD XPWD XRMD 214 HELP command successful. 211-Extended features supported: LANG EN* UTF8 AUTH TLS;TLS-C;SSL;TLS-P; PBSZ PROT C;P; CCC HOST SIZE MDTM REST STREAM 211 END
Certificate: Data: Version: 3 (0x2) Serial Number: 2234203 (0x22175b) Signature Algorithm: sha256WithRSAEncryption Issuer: C=CH, L=Schaffhausen, O=Plesk, CN=Plesk/emailAddress=info@plesk.com Validity Not Before: Dec 3 08:06:44 2019 GMT Not After : Dec 2 08:06:44 2020 GMT Subject: C=CH, L=Schaffhausen, O=Plesk, CN=Plesk/emailAddress=info@plesk.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d7:b5:62:05:68:88:e9:d9:33:72:9b:b2:28:82: 15:0b:c9:5a:2e:db:39:a6:9c:91:37:25:80:d6:57: 61:d0:80:dd:1f:af:25:00:d7:be:e6:58:38:41:65: 66:13:dd:d8:48:ec:48:bd:38:30:b8:51:76:b7:88: 0e:4b:d2:7f:01:ef:e3:55:91:83:6e:ce:88:7e:9c: 15:9e:12:a5:cc:d3:4a:44:13:e2:09:b3:d1:7a:4f: a9:72:d4:f4:0a:9e:65:54:85:fc:8b:37:d0:21:3c: f7:ba:7a:ae:9d:f2:5c:bd:ed:d7:a0:e7:88:61:86: 80:12:ca:a8:13:36:79:76:15:a9:59:90:58:1b:30: b5:8a:88:37:1c:67:3b:e4:04:2e:38:ef:99:a6:99: a2:2c:d0:4a:c7:7c:1b:5e:41:91:91:a3:50:1c:85: d7:41:30:a5:be:26:2d:6d:6f:36:8f:a9:7d:fa:f0: b5:b0:1e:9c:29:9c:78:0c:56:8b:1b:54:fa:16:e0: 72:5a:19:88:c1:c1:70:4e:0e:8f:2f:b3:7d:17:c6: a6:3d:d3:2e:e6:33:6d:b6:ba:15:18:d5:f5:9f:79: 73:23:00:ee:a9:08:e9:af:33:fd:cc:4a:32:6a:75: 4e:bf:c5:13:e7:48:6c:b7:d8:f0:7e:b4:d8:be:5a: ce:3d Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Subject Key Identifier: 79:BB:82:A6:A3:D1:BC:4D:2E:84:5C:1F:ED:A2:DB:CD:D3:F2:33:01 X509v3 Authority Key Identifier: keyid:79:BB:82:A6:A3:D1:BC:4D:2E:84:5C:1F:ED:A2:DB:CD:D3:F2:33:01 DirName:/C=CH/L=Schaffhausen/O=Plesk/CN=Plesk/emailAddress=info@plesk.com serial:22:17:5B Signature Algorithm: sha256WithRSAEncryption Signature Value: b4:a9:d7:ac:5e:a3:90:7a:34:fb:f2:d6:4f:9f:19:cb:45:7b: 3e:9f:3d:04:f0:82:ef:d4:af:7a:e3:ca:f0:6f:72:78:47:dc: 32:23:64:06:74:f7:7f:86:dd:86:7c:66:fd:37:eb:fb:e0:d7: a2:f4:6c:b6:e3:81:e0:19:66:bc:c2:4e:f2:e5:b3:cd:20:89: 5b:d3:ea:9a:7a:a0:47:58:66:f3:39:29:d5:64:d8:fb:6b:f6: 6f:85:41:47:f8:de:ed:bc:8a:77:7f:3c:ff:57:6d:73:ec:e2: 65:a5:cc:f1:26:d6:5f:89:e7:67:0d:f0:4e:4d:df:f3:36:20: 8b:75:c1:fe:10:8e:22:af:87:62:b0:74:bd:82:3e:53:32:23: 2d:0d:90:81:ae:e3:2a:dc:6e:60:25:9e:51:4f:00:27:c2:d6: 2e:f3:dd:b5:54:ab:c3:0b:2e:b1:fa:21:de:6e:8a:65:86:ba: 18:a0:6f:30:e3:96:48:20:56:50:c3:f2:50:8c:50:31:63:72: b9:ab:2a:da:37:57:f7:f7:1f:b3:8e:fe:a2:8d:74:00:76:e9: c9:dd:54:ff:ae:6d:d0:45:7b:fa:15:c3:d8:e7:16:4a:32:c6: 7f:22:8f:83:a1:89:70:43:cf:33:89:8c:d7:4d:90:42:d7:d9: 0d:37:d1:92
-521209777 | 2024-09-24T03:48:21.51538380 / tcp
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Tue, 05 Jul 2022 08:46:19 GMT Accept-Ranges: bytes ETag: "35b49b24b90d81:0" Server: Microsoft-IIS/10.0 Date: Tue, 24 Sep 2024 03:48:21 GMT Content-Length: 81
-2111328178 | 2024-09-17T21:35:14.972341135 / tcp
Microsoft RPC Endpoint Mapper d95afe70-a6d5-4259-822e-2c84da1ddb0d version: v1.0 protocol: [MS-RSP]: Remote Shutdown Protocol provider: wininit.exe ncacn_ip_tcp: 41.185.110.61:49667 ncalrpc: WindowsShutdown ncacn_np: \\WINSVRWEB16\PIPE\InitShutdown ncalrpc: WMsgKRpc085680 76f226c3-ec14-4325-8a99-6a46348418af version: v1.0 provider: winlogon.exe ncalrpc: WindowsShutdown ncacn_np: \\WINSVRWEB16\PIPE\InitShutdown ncalrpc: WMsgKRpc085680 ncalrpc: WMsgKRpc086EC1 d09bdeb5-6171-4a34-bfe2-06fa82652568 version: v1.0 ncalrpc: csebpub ncalrpc: LRPC-46b991ab24d69c24ae ncalrpc: LRPC-33cac2295d200b0286 ncalrpc: LRPC-4f35d732b6cf5259f8 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-33cac2295d200b0286 ncalrpc: LRPC-4f35d732b6cf5259f8 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-4f35d732b6cf5259f8 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-f1788985ce88a027f3 ncalrpc: LRPC-d63dec1a3c9828f359 697dcda9-3ba9-4eb2-9247-e11f1901b0d2 version: v1.0 ncalrpc: LRPC-46b991ab24d69c24ae ncalrpc: LRPC-33cac2295d200b0286 ncalrpc: LRPC-4f35d732b6cf5259f8 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 9b008953-f195-4bf9-bde0-4471971e58ed version: v1.0 ncalrpc: LRPC-33cac2295d200b0286 ncalrpc: LRPC-4f35d732b6cf5259f8 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo dd59071b-3215-4c59-8481-972edadc0f6a version: v1.0 ncalrpc: umpo 0d47017b-b33b-46ad-9e18-fe96456c5078 version: v1.0 ncalrpc: umpo 95406f0b-b239-4318-91bb-cea3a46ff0dc version: v1.0 ncalrpc: umpo 4ed8abcc-f1e2-438b-981f-bb0e8abc010c version: v1.0 ncalrpc: umpo 0ff1f646-13bb-400a-ab50-9a78f2b7a85a version: v1.0 ncalrpc: umpo 6982a06e-5fe2-46b1-b39c-a2c545bfa069 version: v1.0 ncalrpc: umpo 082a3471-31b6-422a-b931-a54401960c62 version: v1.0 ncalrpc: umpo fae436b0-b864-4a87-9eda-298547cd82f2 version: v1.0 ncalrpc: umpo e53d94ca-7464-4839-b044-09a2fb8b3ae5 version: v1.0 ncalrpc: umpo 178d84be-9291-4994-82c6-3f909aca5a03 version: v1.0 ncalrpc: umpo 4dace966-a243-4450-ae3f-9b7bcb5315b8 version: v2.0 ncalrpc: umpo 1832bcf6-cab8-41d4-85d2-c9410764f75a version: v1.0 ncalrpc: umpo c521facf-09a9-42c5-b155-72388595cbf0 version: v0.0 ncalrpc: umpo 2c7fd9ce-e706-4b40-b412-953107ef9bb0 version: v0.0 ncalrpc: umpo 88abcbc3-34ea-76ae-8215-767520655a23 version: v0.0 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 76c217bc-c8b4-4201-a745-373ad9032b1a version: v1.0 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 55e6b932-1979-45d6-90c5-7f6270724112 version: v1.0 ncalrpc: LRPC-0b1d8456f3d6bca63e ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 857fb1be-084f-4fb5-b59c-4b2c4be5f0cf version: v1.0 ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo b8cadbaf-e84b-46b9-84f2-6f71c03f9e55 version: v1.0 ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 20c40295-8dba-48e6-aebf-3e78ef3bb144 version: v1.0 ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 2513bcbe-6cd4-4348-855e-7efb3c336dd3 version: v1.0 ncalrpc: LRPC-4899af4e687a26a52f ncalrpc: OLE1EFFF5D096CAB7F6CC3C9CB91759 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 0d3e2735-cea0-4ecc-a9e2-41a2d81aed4e version: v1.0 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo c605f9fb-f0a3-4e2a-a073-73560f8d9e3e version: v1.0 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 1b37ca91-76b1-4f5e-a3c7-2abfc61f2bb0 version: v1.0 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 8bfc3be1-6def-4e2d-af74-7c47cd0ade4a version: v1.0 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 2d98a740-581d-41b9-aa0d-a88b9d5ce938 version: v1.0 ncalrpc: LRPC-c8c057f577b435bf5b ncalrpc: actkernel ncalrpc: umpo 0361ae94-0316-4c6c-8ad8-c594375800e2 version: v1.0 ncalrpc: umpo 5824833b-3c1a-4ad2-bdfd-c31d19e23ed2 version: v1.0 ncalrpc: umpo bdaa0970-413b-4a3e-9e5d-f6dc9d7e0760 version: v1.0 ncalrpc: umpo 3b338d89-6cfa-44b8-847e-531531bc9992 version: v1.0 ncalrpc: umpo 8782d3b9-ebbd-4644-a3d8-e8725381919b version: v1.0 ncalrpc: umpo 085b0334-e454-4d91-9b8c-4134f9e793f3 version: v1.0 ncalrpc: umpo 4bec6bb8-b5c2-4b6f-b2c1-5da5cf92d0d9 version: v1.0 ncalrpc: umpo c9ac6db5-82b7-4e55-ae8a-e464ed7b4277 version: v1.0 annotation: Impl friendly name provider: sysntfy.dll ncalrpc: LRPC-a23618a86895405378 ncalrpc: LRPC-716e72dc8ab61b4818 ncalrpc: LRPC-ea8126f8699d7aa97d ncalrpc: senssvc ncalrpc: IUserProfile2 ncalrpc: LRPC-fdd15824ff3766ed23 51a227ae-825b-41f2-b4a9-1ac9557a1018 version: v1.0 annotation: Ngc Pop Key Service ncacn_ip_tcp: 41.185.110.61:49674 ncalrpc: NETLOGON_LRPC ncacn_ip_tcp: 41.185.110.61:49668 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WINSVRWEB16\pipe\lsass 8fb74744-b2ff-4c00-be0d-9ef9a191fe1b version: v1.0 annotation: Ngc Pop Key Service ncacn_ip_tcp: 41.185.110.61:49674 ncalrpc: NETLOGON_LRPC ncacn_ip_tcp: 41.185.110.61:49668 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WINSVRWEB16\pipe\lsass b25a52bf-e5dd-4f4a-aea6-8ca7272a0e86 version: v2.0 annotation: KeyIso ncacn_ip_tcp: 41.185.110.61:49674 ncalrpc: NETLOGON_LRPC ncacn_ip_tcp: 41.185.110.61:49668 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WINSVRWEB16\pipe\lsass 0b1c2170-5732-4e0e-8cd3-d9b16f3b84d7 version: v0.0 annotation: RemoteAccessCheck protocol: [MS-RAA]: Remote Authorization API Protocol ncacn_ip_tcp: 41.185.110.61:49674 ncalrpc: NETLOGON_LRPC ncacn_ip_tcp: 41.185.110.61:49668 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WINSVRWEB16\pipe\lsass ncacn_ip_tcp: 41.185.110.61:49674 ncalrpc: NETLOGON_LRPC ncacn_ip_tcp: 41.185.110.61:49668 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WINSVRWEB16\pipe\lsass 12345778-1234-abcd-ef00-0123456789ac version: v1.0 protocol: [MS-SAMR]: Security Account Manager (SAM) Remote Protocol provider: samsrv.dll ncacn_ip_tcp: 41.185.110.61:49668 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\WINSVRWEB16\pipe\lsass f3f09ffd-fbcf-4291-944d-70ad6e0e73bb version: v1.0 ncalrpc: LRPC-46ccf058283b8de74a 7ea70bcf-48af-4f6a-8968-6a440754d5fa version: v1.0 annotation: NSI server endpoint provider: nsisvc.dll ncalrpc: LRPC-8e59343f9ad8e066e3 30adc50c-5cbc-46ce-9a0e-91914789e23c version: v1.0 annotation: NRP server endpoint provider: nrpsrv.dll ncalrpc: LRPC-5685e27e7cbe914023 a500d4c6-0dd1-4543-bc0c-d5f93486eaf8 version: v1.0 ncalrpc: LRPC-b053ff508ba31f0b94 ncalrpc: LRPC-f1788985ce88a027f3 e40f7b57-7a25-4cd3-a135-7f7d3df9d16b version: v1.0 annotation: Network Connection Broker server endpoint ncalrpc: LRPC-6a660c32d11e450d58 ncalrpc: OLEBA3486F77A29497A8D3124C88532 ncalrpc: LRPC-2bc4e2ee59c2441739 ncalrpc: LRPC-d63dec1a3c9828f359 880fd55e-43b9-11e0-b1a8-cf4edfd72085 version: v1.0 annotation: KAPI Service endpoint ncalrpc: LRPC-6a660c32d11e450d58 ncalrpc: OLEBA3486F77A29497A8D3124C88532 ncalrpc: LRPC-2bc4e2ee59c2441739 ncalrpc: LRPC-d63dec1a3c9828f359 5222821f-d5e2-4885-84f1-5f6185a0ec41 version: v1.0 annotation: Network Connection Broker server endpoint for NCB Reset module ncalrpc: LRPC-2bc4e2ee59c2441739 ncalrpc: LRPC-d63dec1a3c9828f359 3c4728c5-f0ab-448b-bda1-6ce01eb0a6d5 version: v1.0 annotation: DHCP Client LRPC Endpoint provider: dhcpcsvc.dll ncalrpc: dhcpcsvc ncalrpc: dhcpcsvc6 3c4728c5-f0ab-448b-bda1-6ce01eb0a6d6 version: v1.0 annotation: DHCPv6 Client LRPC Endpoint provider: dhcpcsvc6.dll ncalrpc: dhcpcsvc6 df4df73a-c52d-4e3a-8003-8437fdf8302a version: v0.0 annotation: WM_WindowManagerRPC\Server ncalrpc: LRPC-968cad360c039b8195 f6beaff7-1e19-4fbb-9f8f-b89e2018337c version: v1.0 annotation: Event log TCPIP protocol: [MS-EVEN6]: EventLog Remoting Protocol provider: wevtsvc.dll ncacn_ip_tcp: 41.185.110.61:49669 ncacn_np: \\WINSVRWEB16\pipe\eventlog ncalrpc: eventlog f763c91c-2ab1-47fa-868f-7de7efd42194 version: v1.0 annotation: VM Allow-List Provider RPC ncalrpc: RdvVmAllowListRpc 2eb08e3e-639f-4fba-97b1-14f878961076 version: v1.0 annotation: Group Policy RPC Interface provider: gpsvc.dll ncalrpc: LRPC-304c0b84c76acb737b 3a9ef155-691d-4449-8d05-09ad57031823 version: v1.0 ncacn_ip_tcp: 41.185.110.61:49672 ncalrpc: LRPC-1780e412a94e40899e ncalrpc: ubpmtaskhostchannel ncacn_np: \\WINSVRWEB16\PIPE\atsvc ncalrpc: LRPC-cf1ceadb8f278e7234 86d35949-83c9-4044-b424-db363231fd0c version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: schedsvc.dll ncacn_ip_tcp: 41.185.110.61:49672 ncalrpc: LRPC-1780e412a94e40899e ncalrpc: ubpmtaskhostchannel ncacn_np: \\WINSVRWEB16\PIPE\atsvc ncalrpc: LRPC-cf1ceadb8f278e7234 33d84484-3626-47ee-8c6f-e7e98b113be1 version: v2.0 ncalrpc: LRPC-1780e412a94e40899e ncalrpc: ubpmtaskhostchannel ncacn_np: \\WINSVRWEB16\PIPE\atsvc ncalrpc: LRPC-cf1ceadb8f278e7234 378e52b0-c0a9-11cf-822d-00aa0051e40f version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: taskcomp.dll ncacn_np: \\WINSVRWEB16\PIPE\atsvc ncalrpc: LRPC-cf1ceadb8f278e7234 1ff70682-0a51-30e8-076d-740be8cee98b version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: taskcomp.dll ncacn_np: \\WINSVRWEB16\PIPE\atsvc ncalrpc: LRPC-cf1ceadb8f278e7234 0a74ef1c-41a4-4e06-83ae-dc74fb1cdd53 version: v1.0 provider: schedsvc.dll ncalrpc: LRPC-cf1ceadb8f278e7234 3473dd4d-2e88-4006-9cba-22570909dd10 version: v5.256 annotation: WinHttp Auto-Proxy Service ncalrpc: dc11fda7-7ba4-483a-88cb-0387b385692a ncalrpc: LRPC-59de0cff33e28decc4 30b044a5-a225-43f0-b3a4-e060df91f9c1 version: v1.0 provider: certprop.dll ncalrpc: LRPC-5a29392b4e4653b1a0 2fb92682-6599-42dc-ae13-bd2ca89bd11c version: v1.0 annotation: Fw APIs provider: MPSSVC.dll ncalrpc: LRPC-f123e55751a2d58169 ncalrpc: LRPC-44d94b7113260337ed ncalrpc: LRPC-f4d0cbd3f891912c16 ncalrpc: LRPC-a3e33d984224cfde88 f47433c3-3e9d-4157-aad4-83aa1f5c2d4c version: v1.0 annotation: Fw APIs ncalrpc: LRPC-44d94b7113260337ed ncalrpc: LRPC-f4d0cbd3f891912c16 ncalrpc: LRPC-a3e33d984224cfde88 7f9d11bf-7fb9-436b-a812-b2d50c5d4c03 version: v1.0 annotation: Fw APIs provider: MPSSVC.dll ncalrpc: LRPC-f4d0cbd3f891912c16 ncalrpc: LRPC-a3e33d984224cfde88 dd490425-5325-4565-b774-7e27d6c09c24 version: v1.0 annotation: Base Firewall Engine API provider: BFE.DLL ncalrpc: LRPC-a3e33d984224cfde88 7f1343fe-50a9-4927-a778-0c5859517bac version: v1.0 annotation: DfsDs service ncacn_np: \\WINSVRWEB16\PIPE\wkssvc ncalrpc: LRPC-fb6812181b467e1aac eb081a0d-10ee-478a-a1dd-50995283e7a8 version: v3.0 annotation: Witness Client Test Interface ncalrpc: LRPC-fb6812181b467e1aac f2c9b409-c1c9-4100-8639-d8ab1486694a version: v1.0 annotation: Witness Client Upcall Server ncalrpc: LRPC-fb6812181b467e1aac 29770a8f-829b-4158-90a2-78cd488501f7 version: v1.0 ncacn_ip_tcp: 41.185.110.61:49673 ncacn_np: \\WINSVRWEB16\pipe\SessEnvPublicRpc ncalrpc: SessEnvPrivateRpc ncalrpc: LRPC-fdd15824ff3766ed23 0d3c7f20-1c8d-4654-a1b3-51563b298bda version: v1.0 annotation: UserMgrCli ncalrpc: LRPC-1277a09dbd16c5fd56 ncalrpc: OLEAD0043ADB44060EAE0DDF75FDFCB b18fbab6-56f8-4702-84e0-41053293a869 version: v1.0 annotation: UserMgrCli ncalrpc: LRPC-1277a09dbd16c5fd56 ncalrpc: OLEAD0043ADB44060EAE0DDF75FDFCB c49a5a70-8a7f-4e70-ba16-1e8f1f193ef1 version: v1.0 annotation: Adh APIs ncalrpc: OLE6B4EA7915C5A05BB88FA2363C14E ncalrpc: TeredoControl ncalrpc: TeredoDiagnostics ncalrpc: LRPC-9375f96859179f700d c36be077-e14b-4fe9-8abc-e856ef4f048b version: v1.0 annotation: Proxy Manager client server endpoint ncalrpc: TeredoControl ncalrpc: TeredoDiagnostics ncalrpc: LRPC-9375f96859179f700d 2e6035b2-e8f1-41a7-a044-656b439c4c34 version: v1.0 annotation: Proxy Manager provider server endpoint ncalrpc: TeredoControl ncalrpc: TeredoDiagnostics ncalrpc: LRPC-9375f96859179f700d 552d076a-cb29-4e44-8b6a-d15e59e2c0af version: v1.0 annotation: IP Transition Configuration endpoint provider: iphlpsvc.dll ncalrpc: LRPC-9375f96859179f700d c2d1b5dd-fa81-4460-9dd6-e7658b85454b version: v1.0 ncalrpc: LRPC-7bbf76ef35e5158fe6 ncalrpc: OLEFC1F32C4D76061613BEF144B62F3 f44e62af-dab1-44c2-8013-049a9de417d6 version: v1.0 ncalrpc: LRPC-7bbf76ef35e5158fe6 ncalrpc: OLEFC1F32C4D76061613BEF144B62F3 7aeb6705-3ae6-471a-882d-f39c109edc12 version: v1.0 ncalrpc: LRPC-7bbf76ef35e5158fe6 ncalrpc: OLEFC1F32C4D76061613BEF144B62F3 e7f76134-9ef5-4949-a2d6-3368cc0988f3 version: v1.0 ncalrpc: LRPC-7bbf76ef35e5158fe6 ncalrpc: OLEFC1F32C4D76061613BEF144B62F3 b37f900a-eae4-4304-a2ab-12bb668c0188 version: v1.0 ncalrpc: LRPC-7bbf76ef35e5158fe6 ncalrpc: OLEFC1F32C4D76061613BEF144B62F3 abfb6ca3-0c5e-4734-9285-0aee72fe8d1c version: v1.0 ncalrpc: LRPC-7bbf76ef35e5158fe6 ncalrpc: OLEFC1F32C4D76061613BEF144B62F3 1a0d010f-1c33-432c-b0f5-8cf4e8053099 version: v1.0 annotation: IdSegSrv service ncalrpc: LRPC-d8d8344b1ddf491360 98716d03-89ac-44c7-bb8c-285824e51c4a version: v1.0 annotation: XactSrv service provider: srvsvc.dll ncalrpc: LRPC-d8d8344b1ddf491360 a398e520-d59a-4bdd-aa7a-3c1e0303a511 version: v1.0 annotation: IKE/Authip API provider: IKEEXT.DLL ncalrpc: LRPC-1e8e425816f9cf7ad0 b58aa02e-2884-4e97-8176-4ee06d794184 version: v1.0 provider: sysmain.dll ncalrpc: LRPC-6ea2362c1b85aeffb2 650a7e26-eab8-5533-ce43-9c1dfce11511 version: v1.0 annotation: Vpn APIs ncalrpc: LRPC-a409b73c917f46022e ncalrpc: VpnikeRpc ncalrpc: RasmanLrpc ncacn_np: \\WINSVRWEB16\PIPE\ROUTER 98cd761e-e77d-41c8-a3c0-0fb756d90ec2 version: v1.0 ncalrpc: LRPC-8478ce707311b1b3d8 d22895ef-aff4-42c5-a5b2-b14466d34ab4 version: v1.0 ncalrpc: LRPC-8478ce707311b1b3d8 e38f5360-8572-473e-b696-1b46873beeab version: v1.0 ncalrpc: LRPC-8478ce707311b1b3d8 95095ec8-32ea-4eb0-a3e2-041f97b36168 version: v1.0 ncalrpc: LRPC-8478ce707311b1b3d8 fd8be72b-a9cd-4b2c-a9ca-4ded242fbe4d version: v1.0 ncalrpc: LRPC-8478ce707311b1b3d8 4c9dbf19-d39e-4bb9-90ee-8f7179b20283 version: v1.0 ncalrpc: LRPC-8478ce707311b1b3d8 367abb81-9844-35f1-ad32-98f038001003 version: v2.0 protocol: [MS-SCMR]: Service Control Manager Remote Protocol provider: services.exe ncacn_ip_tcp: 41.185.110.61:49765 0767a036-0d22-48aa-ba69-b619480f38cb version: v1.0 annotation: PcaSvc provider: pcasvc.dll ncalrpc: LRPC-d048e447fa5c83de5e 906b0ce0-c70b-1067-b317-00dd010662da version: v1.0 protocol: [MS-CMPO]: MSDTC Connection Manager: provider: msdtcprx.dll ncalrpc: LRPC-531c273ad645192f91 ncalrpc: LRPC-531c273ad645192f91 ncalrpc: LRPC-531c273ad645192f91 54b4c689-969a-476f-8dc2-990885e9f562 version: v0.0 ncalrpc: LRPC-a95cfd454af16af8aa be7f785e-0e3a-4ab7-91de-7e46e443be29 version: v0.0 ncalrpc: LRPC-a95cfd454af16af8aa bf4dc912-e52f-4904-8ebe-9317c1bdd497 version: v1.0 ncalrpc: LRPC-25a2012be93384ed4b ncalrpc: OLEE502FFF6B1C3DEF42D94E194B340 c503f532-443a-4c69-8300-ccd1fbdb3839 version: v2.0 ncalrpc: LRPC-7a1e7f6ffcc3ec2df9 ncalrpc: OLEDFF61D611F64DB781DB00E977FBA a111f1c5-5923-47c0-9a68-d0bafb577901 version: v1.0 annotation: NetSetup API ncalrpc: LRPC-4c00c8e398debe4d4f
2118947983 | 2024-09-13T03:06:22.752106443 / tcp
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/10.0 X-AspNet-Version: 4.0.30319 X-Powered-By-Plesk: PleskWin X-XSS-Protection: 1; mode=block Date: Fri, 13 Sep 2024 03:06:22 GMT Content-Length: 3443
Certificate: Data: Version: 3 (0x2) Serial Number: 2234203 (0x22175b) Signature Algorithm: sha256WithRSAEncryption Issuer: C=CH, L=Schaffhausen, O=Plesk, CN=Plesk/emailAddress=info@plesk.com Validity Not Before: Dec 3 08:06:44 2019 GMT Not After : Dec 2 08:06:44 2020 GMT Subject: C=CH, L=Schaffhausen, O=Plesk, CN=Plesk/emailAddress=info@plesk.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d7:b5:62:05:68:88:e9:d9:33:72:9b:b2:28:82: 15:0b:c9:5a:2e:db:39:a6:9c:91:37:25:80:d6:57: 61:d0:80:dd:1f:af:25:00:d7:be:e6:58:38:41:65: 66:13:dd:d8:48:ec:48:bd:38:30:b8:51:76:b7:88: 0e:4b:d2:7f:01:ef:e3:55:91:83:6e:ce:88:7e:9c: 15:9e:12:a5:cc:d3:4a:44:13:e2:09:b3:d1:7a:4f: a9:72:d4:f4:0a:9e:65:54:85:fc:8b:37:d0:21:3c: f7:ba:7a:ae:9d:f2:5c:bd:ed:d7:a0:e7:88:61:86: 80:12:ca:a8:13:36:79:76:15:a9:59:90:58:1b:30: b5:8a:88:37:1c:67:3b:e4:04:2e:38:ef:99:a6:99: a2:2c:d0:4a:c7:7c:1b:5e:41:91:91:a3:50:1c:85: d7:41:30:a5:be:26:2d:6d:6f:36:8f:a9:7d:fa:f0: b5:b0:1e:9c:29:9c:78:0c:56:8b:1b:54:fa:16:e0: 72:5a:19:88:c1:c1:70:4e:0e:8f:2f:b3:7d:17:c6: a6:3d:d3:2e:e6:33:6d:b6:ba:15:18:d5:f5:9f:79: 73:23:00:ee:a9:08:e9:af:33:fd:cc:4a:32:6a:75: 4e:bf:c5:13:e7:48:6c:b7:d8:f0:7e:b4:d8:be:5a: ce:3d Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Subject Key Identifier: 79:BB:82:A6:A3:D1:BC:4D:2E:84:5C:1F:ED:A2:DB:CD:D3:F2:33:01 X509v3 Authority Key Identifier: keyid:79:BB:82:A6:A3:D1:BC:4D:2E:84:5C:1F:ED:A2:DB:CD:D3:F2:33:01 DirName:/C=CH/L=Schaffhausen/O=Plesk/CN=Plesk/emailAddress=info@plesk.com serial:22:17:5B Signature Algorithm: sha256WithRSAEncryption Signature Value: b4:a9:d7:ac:5e:a3:90:7a:34:fb:f2:d6:4f:9f:19:cb:45:7b: 3e:9f:3d:04:f0:82:ef:d4:af:7a:e3:ca:f0:6f:72:78:47:dc: 32:23:64:06:74:f7:7f:86:dd:86:7c:66:fd:37:eb:fb:e0:d7: a2:f4:6c:b6:e3:81:e0:19:66:bc:c2:4e:f2:e5:b3:cd:20:89: 5b:d3:ea:9a:7a:a0:47:58:66:f3:39:29:d5:64:d8:fb:6b:f6: 6f:85:41:47:f8:de:ed:bc:8a:77:7f:3c:ff:57:6d:73:ec:e2: 65:a5:cc:f1:26:d6:5f:89:e7:67:0d:f0:4e:4d:df:f3:36:20: 8b:75:c1:fe:10:8e:22:af:87:62:b0:74:bd:82:3e:53:32:23: 2d:0d:90:81:ae:e3:2a:dc:6e:60:25:9e:51:4f:00:27:c2:d6: 2e:f3:dd:b5:54:ab:c3:0b:2e:b1:fa:21:de:6e:8a:65:86:ba: 18:a0:6f:30:e3:96:48:20:56:50:c3:f2:50:8c:50:31:63:72: b9:ab:2a:da:37:57:f7:f7:1f:b3:8e:fe:a2:8d:74:00:76:e9: c9:dd:54:ff:ae:6d:d0:45:7b:fa:15:c3:d8:e7:16:4a:32:c6: 7f:22:8f:83:a1:89:70:43:cf:33:89:8c:d7:4d:90:42:d7:d9: 0d:37:d1:92
-1166656618 | 2024-09-19T17:57:01.525406445 / tcp
SMB Status: Authentication: enabled SMB Version: 2 Capabilities: raw-mode
1711348341 | 2024-09-21T06:15:43.0861868443 / tcp
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate,post-check=0, pre-check=0 Pragma: no-cache Transfer-Encoding: chunked Content-Type: text/html; charset=utf-8 Expires: Fri, 28 May 1999 00:00:00 GMT Last-Modified: Sat, 21 Sep 2024 06:15:42 GMT Server: Microsoft-IIS/10.0 P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA" X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff Date: Sat, 21 Sep 2024 06:15:42 GMT
Certificate: Data: Version: 3 (0x2) Serial Number: fb:e5:61:96:15:2a:eb:c5:82:84:e1:d0:ea:af:21:24 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Nov 3 00:00:00 2023 GMT Not After : Dec 3 23:59:59 2024 GMT Subject: CN=*.hostserv.co.za Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d4:6d:ec:d7:80:4e:da:fa:ad:31:f7:95:14:63: 4e:1b:75:20:bd:e8:e8:86:c3:e5:d4:09:50:95:34: 88:38:78:1b:b8:0f:5e:77:02:b0:81:1f:2a:3c:a8: 9d:55:44:47:a4:7e:1f:43:4c:ee:fb:9d:c1:d2:1a: 40:b1:00:94:98:7d:f8:2d:5b:76:00:28:28:a6:29: f6:ce:23:a8:78:50:85:32:9e:b1:af:45:cf:06:b4: 1e:4f:84:b1:06:1b:01:ea:6c:98:67:f2:c1:28:8a: 4b:c9:2c:59:33:d5:32:68:5d:b8:e1:0a:54:b0:8d: b6:56:df:83:b5:d2:b2:2b:96:0b:60:b3:e7:9c:2f: b7:e7:74:af:c4:4e:c2:a1:b1:1a:a0:9d:ac:05:35: 03:30:be:3e:35:f8:57:c9:f6:69:2a:10:f4:aa:c3: aa:1b:92:f4:cf:53:d6:f7:7c:45:8d:51:f9:19:9b: de:89:31:d6:78:2c:01:71:9e:43:4e:fb:2f:c3:07: a5:35:56:3f:e1:a8:25:54:3e:51:dc:02:11:3d:60: 5f:de:a0:c0:21:cf:91:3f:21:03:d9:db:73:83:16: df:d6:e6:10:20:15:b8:6c:c4:4d:c3:9a:91:ea:1e: c3:71:33:15:c2:ee:59:51:70:d9:00:18:86:b6:a4: 99:a1 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: 82:BC:BB:18:08:1E:24:21:3B:72:96:38:97:31:A3:FE:2F:B4:7B:00 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.hostserv.co.za, DNS:hostserv.co.za CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Nov 3 10:18:12.402 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:49:56:A0:66:02:2A:A5:9F:7E:B9:18:3E: EC:BA:13:52:A8:EC:78:69:3B:C5:57:C6:64:9C:B5:E8: 19:B0:F3:74:02:21:00:8C:F1:F5:10:A6:07:07:4F:76: F0:A3:C2:33:D4:FB:9F:29:99:AB:83:99:23:3B:93:40: EA:15:AF:34:55:74:E4 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12: ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E Timestamp : Nov 3 10:18:12.502 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:94:D2:30:13:73:59:23:3D:BB:18:18: 8B:4D:12:0A:D1:ED:94:63:90:BF:D7:02:2F:EB:1C:1B: B7:DB:10:EC:6C:02:20:75:5D:87:15:39:7A:3F:2C:06: DD:48:60:DA:3E:D3:D4:F9:A3:A3:EB:A3:99:07:6A:45: BA:BF:B0:5D:09:8B:E5 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2: 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B Timestamp : Nov 3 10:18:12.441 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:C9:47:D4:F6:3F:2A:72:F8:F6:C2:17: BE:8A:AF:08:13:43:7C:F1:8F:81:0F:3C:F1:AB:C6:9C: 11:87:A8:A0:8A:02:20:23:B1:D5:B5:04:66:E3:3C:FC: 8E:02:D0:D0:5F:51:B6:2E:54:A1:D0:EE:8B:07:C1:63: A0:3A:FD:C8:47:A9:E8 Signature Algorithm: sha256WithRSAEncryption Signature Value: 51:58:6e:f2:4f:bb:70:4f:ba:57:fd:4f:84:5a:d4:b5:9e:91: 23:26:80:44:1b:da:48:50:8c:70:3c:88:62:ce:5b:ca:d6:7e: 3d:a4:6f:98:22:54:77:5b:9c:9e:a0:7b:55:c9:23:69:12:88: ee:2d:93:2d:ec:22:8c:5e:d4:98:2b:ce:36:f2:72:a5:22:89: 4e:4b:23:e6:fa:e5:9d:69:6e:64:10:dd:5f:d1:21:3f:7f:36: 48:26:04:6d:2e:2b:4d:52:9c:68:d4:75:b7:f6:56:d7:c4:b8: 12:48:1a:be:16:0b:df:ed:7f:b4:c6:18:20:48:7c:81:6b:53: 84:45:07:f0:8b:2a:48:ca:7a:de:7d:62:fe:af:16:09:89:b6: 31:33:5f:16:d6:67:7e:c0:2a:01:45:66:9c:c0:c4:9c:27:31: cf:3c:6b:50:82:5e:d8:e0:81:3b:23:85:7e:52:f4:13:69:ab: 11:be:15:bf:01:9b:c9:26:b3:41:3e:b3:9f:6d:49:77:5c:03: f4:0a:27:36:81:2b:19:45:f6:bd:bd:d7:e6:f2:a2:3a:b9:85: 96:f2:47:e9:2f:4c:e9:5a:f6:8c:f6:91:9a:37:cd:8f:d2:e5: dd:3e:84:3c:12:5a:45:87:5d:dc:8e:7b:19:b3:87:29:65:d3: 6b:73:51:09