1090329081 | 2024-10-17T06:11:54.265732
21 /
tcp
220-FileZilla Server 0.9.60 beta
220-written by Tim Kosse (tim.kosse@filezilla-project.org)
220 Please visit https://filezilla-project.org/
530 Login or password incorrect!
214-The following commands are recognized:
ABOR ADAT ALLO APPE AUTH CDUP CLNT CWD
DELE EPRT EPSV FEAT HASH HELP LIST MDTM
MFMT MKD MLSD MLST MODE NLST NOOP NOP
OPTS PASS PASV PBSZ PORT PROT PWD QUIT
REST RETR RMD RNFR RNTO SITE SIZE STOR
STRU SYST TYPE USER XCUP XCWD XMKD XPWD
XRMD
214 Have a nice day.
211-Features:
MDTM
REST STREAM
SIZE
MLST type*;size*;modify*;
MLSD
UTF8
CLNT
MFMT
EPSV
EPRT
211 End
1489525118 | 2024-11-08T20:52:08.985642
80 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Fri, 08 Nov 2024 20:52:08 GMT
Connection: close
Content-Length: 315
2030345820 | 2024-11-03T06:44:55.010074
135 /
tcp
Microsoft RPC Endpoint Mapper
d95afe70-a6d5-4259-822e-2c84da1ddb0d
version: v1.0
protocol: [MS-RSP]: Remote Shutdown Protocol
provider: wininit.exe
ncacn_ip_tcp: 5.9.65.172:49664
ncalrpc: WindowsShutdown
ncacn_np: \\WIN-6J87JDGINI8\PIPE\InitShutdown
ncalrpc: WMsgKRpc070150
76f226c3-ec14-4325-8a99-6a46348418af
version: v1.0
provider: winlogon.exe
ncalrpc: WindowsShutdown
ncacn_np: \\WIN-6J87JDGINI8\PIPE\InitShutdown
ncalrpc: WMsgKRpc070150
ncalrpc: WMsgKRpc079DA1
ncalrpc: WMsgKRpc09D3332
fc48cd89-98d6-4628-9839-86f7a3e4161a
version: v1.0
ncalrpc: dabrpc
ncalrpc: csebpub
ncalrpc: LRPC-7d479f745821bbce60
ncalrpc: LRPC-30905af18391041135
ncalrpc: LRPC-7d334d1683c44b6dc6
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
d09bdeb5-6171-4a34-bfe2-06fa82652568
version: v1.0
ncalrpc: csebpub
ncalrpc: LRPC-7d479f745821bbce60
ncalrpc: LRPC-30905af18391041135
ncalrpc: LRPC-7d334d1683c44b6dc6
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
ncalrpc: LRPC-30905af18391041135
ncalrpc: LRPC-7d334d1683c44b6dc6
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
ncalrpc: LRPC-7d334d1683c44b6dc6
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
ncalrpc: LRPC-b266cad8f911a48094
ncalrpc: LRPC-1aaf7807933a273969
697dcda9-3ba9-4eb2-9247-e11f1901b0d2
version: v1.0
ncalrpc: LRPC-7d479f745821bbce60
ncalrpc: LRPC-30905af18391041135
ncalrpc: LRPC-7d334d1683c44b6dc6
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
9b008953-f195-4bf9-bde0-4471971e58ed
version: v1.0
ncalrpc: LRPC-30905af18391041135
ncalrpc: LRPC-7d334d1683c44b6dc6
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
dd59071b-3215-4c59-8481-972edadc0f6a
version: v1.0
ncalrpc: umpo
0d47017b-b33b-46ad-9e18-fe96456c5078
version: v1.0
ncalrpc: umpo
95406f0b-b239-4318-91bb-cea3a46ff0dc
version: v1.0
ncalrpc: umpo
4ed8abcc-f1e2-438b-981f-bb0e8abc010c
version: v1.0
ncalrpc: umpo
0ff1f646-13bb-400a-ab50-9a78f2b7a85a
version: v1.0
ncalrpc: umpo
6982a06e-5fe2-46b1-b39c-a2c545bfa069
version: v1.0
ncalrpc: umpo
082a3471-31b6-422a-b931-a54401960c62
version: v1.0
ncalrpc: umpo
fae436b0-b864-4a87-9eda-298547cd82f2
version: v1.0
ncalrpc: umpo
e53d94ca-7464-4839-b044-09a2fb8b3ae5
version: v1.0
ncalrpc: umpo
178d84be-9291-4994-82c6-3f909aca5a03
version: v1.0
ncalrpc: umpo
4dace966-a243-4450-ae3f-9b7bcb5315b8
version: v2.0
ncalrpc: umpo
1832bcf6-cab8-41d4-85d2-c9410764f75a
version: v1.0
ncalrpc: umpo
c521facf-09a9-42c5-b155-72388595cbf0
version: v0.0
ncalrpc: umpo
2c7fd9ce-e706-4b40-b412-953107ef9bb0
version: v0.0
ncalrpc: umpo
88abcbc3-34ea-76ae-8215-767520655a23
version: v0.0
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
76c217bc-c8b4-4201-a745-373ad9032b1a
version: v1.0
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
55e6b932-1979-45d6-90c5-7f6270724112
version: v1.0
ncalrpc: LRPC-2fc35c0dbfe07609be
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
857fb1be-084f-4fb5-b59c-4b2c4be5f0cf
version: v1.0
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
b8cadbaf-e84b-46b9-84f2-6f71c03f9e55
version: v1.0
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
20c40295-8dba-48e6-aebf-3e78ef3bb144
version: v1.0
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
2513bcbe-6cd4-4348-855e-7efb3c336dd3
version: v1.0
ncalrpc: LRPC-80582fb475222a7a2c
ncalrpc: OLEBA6FD5DEC5E95309CE60F4976390
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
0d3e2735-cea0-4ecc-a9e2-41a2d81aed4e
version: v1.0
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
c605f9fb-f0a3-4e2a-a073-73560f8d9e3e
version: v1.0
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
1b37ca91-76b1-4f5e-a3c7-2abfc61f2bb0
version: v1.0
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
8bfc3be1-6def-4e2d-af74-7c47cd0ade4a
version: v1.0
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
2d98a740-581d-41b9-aa0d-a88b9d5ce938
version: v1.0
ncalrpc: LRPC-89b9be8af0842e4a04
ncalrpc: actkernel
ncalrpc: umpo
0361ae94-0316-4c6c-8ad8-c594375800e2
version: v1.0
ncalrpc: umpo
5824833b-3c1a-4ad2-bdfd-c31d19e23ed2
version: v1.0
ncalrpc: umpo
bdaa0970-413b-4a3e-9e5d-f6dc9d7e0760
version: v1.0
ncalrpc: umpo
3b338d89-6cfa-44b8-847e-531531bc9992
version: v1.0
ncalrpc: umpo
8782d3b9-ebbd-4644-a3d8-e8725381919b
version: v1.0
ncalrpc: umpo
085b0334-e454-4d91-9b8c-4134f9e793f3
version: v1.0
ncalrpc: umpo
4bec6bb8-b5c2-4b6f-b2c1-5da5cf92d0d9
version: v1.0
ncalrpc: umpo
c9ac6db5-82b7-4e55-ae8a-e464ed7b4277
version: v1.0
annotation: Impl friendly name
provider: sysntfy.dll
ncalrpc: LRPC-f31fe558c67dc3b82f
ncalrpc: LRPC-a44a354f4962210609
ncalrpc: IUserProfile2
ncalrpc: LRPC-a510c6954f43ab4c60
ncalrpc: senssvc
ncalrpc: LRPC-356d4ea6904921af6a
e40f7b57-7a25-4cd3-a135-7f7d3df9d16b
version: v1.0
annotation: Network Connection Broker server endpoint
ncalrpc: LRPC-8869d17e62a5c4c2c3
ncalrpc: OLE343AA23FF5DF312F8332A8709D08
ncalrpc: LRPC-ae64423a25bbc8f349
ncalrpc: LRPC-b266cad8f911a48094
880fd55e-43b9-11e0-b1a8-cf4edfd72085
version: v1.0
annotation: KAPI Service endpoint
ncalrpc: LRPC-8869d17e62a5c4c2c3
ncalrpc: OLE343AA23FF5DF312F8332A8709D08
ncalrpc: LRPC-ae64423a25bbc8f349
ncalrpc: LRPC-b266cad8f911a48094
5222821f-d5e2-4885-84f1-5f6185a0ec41
version: v1.0
annotation: Network Connection Broker server endpoint for NCB Reset module
ncalrpc: LRPC-ae64423a25bbc8f349
ncalrpc: LRPC-b266cad8f911a48094
a500d4c6-0dd1-4543-bc0c-d5f93486eaf8
version: v1.0
ncalrpc: LRPC-661654eaf2ed9ee255
ncalrpc: LRPC-1aaf7807933a273969
f6beaff7-1e19-4fbb-9f8f-b89e2018337c
version: v1.0
annotation: Event log TCPIP
protocol: [MS-EVEN6]: EventLog Remoting Protocol
provider: wevtsvc.dll
ncacn_ip_tcp: 5.9.65.172:49665
ncacn_np: \\WIN-6J87JDGINI8\pipe\eventlog
ncalrpc: eventlog
7ea70bcf-48af-4f6a-8968-6a440754d5fa
version: v1.0
annotation: NSI server endpoint
provider: nsisvc.dll
ncalrpc: LRPC-9841037674974a9b67
2eb08e3e-639f-4fba-97b1-14f878961076
version: v1.0
annotation: Group Policy RPC Interface
provider: gpsvc.dll
ncalrpc: LRPC-636af519223323d2f5
3c4728c5-f0ab-448b-bda1-6ce01eb0a6d5
version: v1.0
annotation: DHCP Client LRPC Endpoint
provider: dhcpcsvc.dll
ncalrpc: dhcpcsvc
ncalrpc: dhcpcsvc6
3c4728c5-f0ab-448b-bda1-6ce01eb0a6d6
version: v1.0
annotation: DHCPv6 Client LRPC Endpoint
provider: dhcpcsvc6.dll
ncalrpc: dhcpcsvc6
3a9ef155-691d-4449-8d05-09ad57031823
version: v1.0
ncacn_ip_tcp: 5.9.65.172:49666
ncalrpc: LRPC-7abc5f892709067adc
ncalrpc: ubpmtaskhostchannel
ncacn_np: \\WIN-6J87JDGINI8\PIPE\atsvc
ncalrpc: LRPC-388a0445980bfbf024
86d35949-83c9-4044-b424-db363231fd0c
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: schedsvc.dll
ncacn_ip_tcp: 5.9.65.172:49666
ncalrpc: LRPC-7abc5f892709067adc
ncalrpc: ubpmtaskhostchannel
ncacn_np: \\WIN-6J87JDGINI8\PIPE\atsvc
ncalrpc: LRPC-388a0445980bfbf024
33d84484-3626-47ee-8c6f-e7e98b113be1
version: v2.0
ncalrpc: LRPC-7abc5f892709067adc
ncalrpc: ubpmtaskhostchannel
ncacn_np: \\WIN-6J87JDGINI8\PIPE\atsvc
ncalrpc: LRPC-388a0445980bfbf024
378e52b0-c0a9-11cf-822d-00aa0051e40f
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: taskcomp.dll
ncacn_np: \\WIN-6J87JDGINI8\PIPE\atsvc
ncalrpc: LRPC-388a0445980bfbf024
1ff70682-0a51-30e8-076d-740be8cee98b
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: taskcomp.dll
ncacn_np: \\WIN-6J87JDGINI8\PIPE\atsvc
ncalrpc: LRPC-388a0445980bfbf024
0a74ef1c-41a4-4e06-83ae-dc74fb1cdd53
version: v1.0
provider: schedsvc.dll
ncalrpc: LRPC-388a0445980bfbf024
30b044a5-a225-43f0-b3a4-e060df91f9c1
version: v1.0
provider: certprop.dll
ncalrpc: LRPC-8c45860ea4f0a8c11a
c2d1b5dd-fa81-4460-9dd6-e7658b85454b
version: v1.0
ncalrpc: LRPC-9d1d4a2822846c62be
ncalrpc: OLEA5A85559E4E91D4F563350EFE523
f44e62af-dab1-44c2-8013-049a9de417d6
version: v1.0
ncalrpc: LRPC-9d1d4a2822846c62be
ncalrpc: OLEA5A85559E4E91D4F563350EFE523
7aeb6705-3ae6-471a-882d-f39c109edc12
version: v1.0
ncalrpc: LRPC-9d1d4a2822846c62be
ncalrpc: OLEA5A85559E4E91D4F563350EFE523
e7f76134-9ef5-4949-a2d6-3368cc0988f3
version: v1.0
ncalrpc: LRPC-9d1d4a2822846c62be
ncalrpc: OLEA5A85559E4E91D4F563350EFE523
b37f900a-eae4-4304-a2ab-12bb668c0188
version: v1.0
ncalrpc: LRPC-9d1d4a2822846c62be
ncalrpc: OLEA5A85559E4E91D4F563350EFE523
abfb6ca3-0c5e-4734-9285-0aee72fe8d1c
version: v1.0
ncalrpc: LRPC-9d1d4a2822846c62be
ncalrpc: OLEA5A85559E4E91D4F563350EFE523
7f1343fe-50a9-4927-a778-0c5859517bac
version: v1.0
annotation: DfsDs service
ncacn_np: \\WIN-6J87JDGINI8\PIPE\wkssvc
ncalrpc: LRPC-2b3c50993b909eb7b9
eb081a0d-10ee-478a-a1dd-50995283e7a8
version: v3.0
annotation: Witness Client Test Interface
ncalrpc: LRPC-2b3c50993b909eb7b9
f2c9b409-c1c9-4100-8639-d8ab1486694a
version: v1.0
annotation: Witness Client Upcall Server
ncalrpc: LRPC-2b3c50993b909eb7b9
29770a8f-829b-4158-90a2-78cd488501f7
version: v1.0
ncacn_ip_tcp: 5.9.65.172:49667
ncacn_np: \\WIN-6J87JDGINI8\pipe\SessEnvPublicRpc
ncalrpc: SessEnvPrivateRpc
ncalrpc: LRPC-356d4ea6904921af6a
0d3c7f20-1c8d-4654-a1b3-51563b298bda
version: v1.0
annotation: UserMgrCli
ncalrpc: LRPC-25488261ab1a830a42
ncalrpc: OLEDFC9C8610F5C07FDCE60D6BC4B18
b18fbab6-56f8-4702-84e0-41053293a869
version: v1.0
annotation: UserMgrCli
ncalrpc: LRPC-25488261ab1a830a42
ncalrpc: OLEDFC9C8610F5C07FDCE60D6BC4B18
2fb92682-6599-42dc-ae13-bd2ca89bd11c
version: v1.0
annotation: Fw APIs
provider: MPSSVC.dll
ncalrpc: LRPC-816e03f3007e0e9606
ncalrpc: LRPC-5881ba73b636908153
ncalrpc: LRPC-c0d9480fa75deb983f
ncalrpc: LRPC-a4b5f5ccc8fed83a0f
f47433c3-3e9d-4157-aad4-83aa1f5c2d4c
version: v1.0
annotation: Fw APIs
ncalrpc: LRPC-5881ba73b636908153
ncalrpc: LRPC-c0d9480fa75deb983f
ncalrpc: LRPC-a4b5f5ccc8fed83a0f
7f9d11bf-7fb9-436b-a812-b2d50c5d4c03
version: v1.0
annotation: Fw APIs
provider: MPSSVC.dll
ncalrpc: LRPC-c0d9480fa75deb983f
ncalrpc: LRPC-a4b5f5ccc8fed83a0f
dd490425-5325-4565-b774-7e27d6c09c24
version: v1.0
annotation: Base Firewall Engine API
provider: BFE.DLL
ncalrpc: LRPC-a4b5f5ccc8fed83a0f
76f03f96-cdfd-44fc-a22c-64950a001209
version: v1.0
protocol: [MS-PAR]: Print System Asynchronous Remote Protocol
provider: spoolsv.exe
ncacn_ip_tcp: 5.9.65.172:49668
ncalrpc: LRPC-de76d08cff163aee1e
4a452661-8290-4b36-8fbe-7f4093a94978
version: v1.0
provider: spoolsv.exe
ncacn_ip_tcp: 5.9.65.172:49668
ncalrpc: LRPC-de76d08cff163aee1e
ae33069b-a2a8-46ee-a235-ddfd339be281
version: v1.0
protocol: [MS-PAN]: Print System Asynchronous Notification Protocol
provider: spoolsv.exe
ncacn_ip_tcp: 5.9.65.172:49668
ncalrpc: LRPC-de76d08cff163aee1e
0b6edbfa-4a24-4fc6-8a23-942b1eca65d1
version: v1.0
protocol: [MS-PAN]: Print System Asynchronous Notification Protocol
provider: spoolsv.exe
ncacn_ip_tcp: 5.9.65.172:49668
ncalrpc: LRPC-de76d08cff163aee1e
12345678-1234-abcd-ef00-0123456789ab
version: v1.0
protocol: [MS-RPRN]: Print System Remote Protocol
provider: spoolsv.exe
ncacn_ip_tcp: 5.9.65.172:49668
ncalrpc: LRPC-de76d08cff163aee1e
df4df73a-c52d-4e3a-8003-8437fdf8302a
version: v0.0
annotation: WM_WindowManagerRPC\Server
ncalrpc: LRPC-d588aad6e173910c39
b58aa02e-2884-4e97-8176-4ee06d794184
version: v1.0
provider: sysmain.dll
ncalrpc: LRPC-802713518e2d089994
c49a5a70-8a7f-4e70-ba16-1e8f1f193ef1
version: v1.0
annotation: Adh APIs
ncalrpc: TeredoControl
ncalrpc: TeredoDiagnostics
ncalrpc: LRPC-55bd22158ba0904a10
c36be077-e14b-4fe9-8abc-e856ef4f048b
version: v1.0
annotation: Proxy Manager client server endpoint
ncalrpc: TeredoControl
ncalrpc: TeredoDiagnostics
ncalrpc: LRPC-55bd22158ba0904a10
2e6035b2-e8f1-41a7-a044-656b439c4c34
version: v1.0
annotation: Proxy Manager provider server endpoint
ncalrpc: TeredoControl
ncalrpc: TeredoDiagnostics
ncalrpc: LRPC-55bd22158ba0904a10
552d076a-cb29-4e44-8b6a-d15e59e2c0af
version: v1.0
annotation: IP Transition Configuration endpoint
provider: iphlpsvc.dll
ncalrpc: LRPC-55bd22158ba0904a10
1a0d010f-1c33-432c-b0f5-8cf4e8053099
version: v1.0
annotation: IdSegSrv service
ncalrpc: LRPC-5dfc849cc85b60c1f5
98716d03-89ac-44c7-bb8c-285824e51c4a
version: v1.0
annotation: XactSrv service
provider: srvsvc.dll
ncalrpc: LRPC-5dfc849cc85b60c1f5
30adc50c-5cbc-46ce-9a0e-91914789e23c
version: v1.0
annotation: NRP server endpoint
provider: nrpsrv.dll
ncalrpc: LRPC-b8914c5ac57fdbb61a
650a7e26-eab8-5533-ce43-9c1dfce11511
version: v1.0
annotation: Vpn APIs
ncalrpc: LRPC-5e9d1753071558be67
ncalrpc: VpnikeRpc
ncalrpc: RasmanLrpc
ncacn_np: \\WIN-6J87JDGINI8\PIPE\ROUTER
98cd761e-e77d-41c8-a3c0-0fb756d90ec2
version: v1.0
ncalrpc: LRPC-13e9ecfb1d52b14aae
d22895ef-aff4-42c5-a5b2-b14466d34ab4
version: v1.0
ncalrpc: LRPC-13e9ecfb1d52b14aae
e38f5360-8572-473e-b696-1b46873beeab
version: v1.0
ncalrpc: LRPC-13e9ecfb1d52b14aae
95095ec8-32ea-4eb0-a3e2-041f97b36168
version: v1.0
ncalrpc: LRPC-13e9ecfb1d52b14aae
fd8be72b-a9cd-4b2c-a9ca-4ded242fbe4d
version: v1.0
ncalrpc: LRPC-13e9ecfb1d52b14aae
4c9dbf19-d39e-4bb9-90ee-8f7179b20283
version: v1.0
ncalrpc: LRPC-13e9ecfb1d52b14aae
f3f09ffd-fbcf-4291-944d-70ad6e0e73bb
version: v1.0
ncalrpc: LRPC-f59d3bb07a369f0bec
367abb81-9844-35f1-ad32-98f038001003
version: v2.0
protocol: [MS-SCMR]: Service Control Manager Remote Protocol
provider: services.exe
ncacn_ip_tcp: 5.9.65.172:49670
51a227ae-825b-41f2-b4a9-1ac9557a1018
version: v1.0
annotation: Ngc Pop Key Service
ncacn_ip_tcp: 5.9.65.172:49686
ncalrpc: samss lpc
ncalrpc: SidKey Local End Point
ncalrpc: protected_storage
ncalrpc: lsasspirpc
ncalrpc: lsapolicylookup
ncalrpc: LSA_EAS_ENDPOINT
ncalrpc: LSA_IDPEXT_ENDPOINT
ncalrpc: lsacap
ncalrpc: LSARPC_ENDPOINT
ncalrpc: securityevent
ncalrpc: audit
ncacn_np: \\WIN-6J87JDGINI8\pipe\lsass
8fb74744-b2ff-4c00-be0d-9ef9a191fe1b
version: v1.0
annotation: Ngc Pop Key Service
ncacn_ip_tcp: 5.9.65.172:49686
ncalrpc: samss lpc
ncalrpc: SidKey Local End Point
ncalrpc: protected_storage
ncalrpc: lsasspirpc
ncalrpc: lsapolicylookup
ncalrpc: LSA_EAS_ENDPOINT
ncalrpc: LSA_IDPEXT_ENDPOINT
ncalrpc: lsacap
ncalrpc: LSARPC_ENDPOINT
ncalrpc: securityevent
ncalrpc: audit
ncacn_np: \\WIN-6J87JDGINI8\pipe\lsass
b25a52bf-e5dd-4f4a-aea6-8ca7272a0e86
version: v2.0
annotation: KeyIso
ncacn_ip_tcp: 5.9.65.172:49686
ncalrpc: samss lpc
ncalrpc: SidKey Local End Point
ncalrpc: protected_storage
ncalrpc: lsasspirpc
ncalrpc: lsapolicylookup
ncalrpc: LSA_EAS_ENDPOINT
ncalrpc: LSA_IDPEXT_ENDPOINT
ncalrpc: lsacap
ncalrpc: LSARPC_ENDPOINT
ncalrpc: securityevent
ncalrpc: audit
ncacn_np: \\WIN-6J87JDGINI8\pipe\lsass
12345778-1234-abcd-ef00-0123456789ac
version: v1.0
protocol: [MS-SAMR]: Security Account Manager (SAM) Remote Protocol
provider: samsrv.dll
ncacn_ip_tcp: 5.9.65.172:49686
ncalrpc: samss lpc
ncalrpc: SidKey Local End Point
ncalrpc: protected_storage
ncalrpc: lsasspirpc
ncalrpc: lsapolicylookup
ncalrpc: LSA_EAS_ENDPOINT
ncalrpc: LSA_IDPEXT_ENDPOINT
ncalrpc: lsacap
ncalrpc: LSARPC_ENDPOINT
ncalrpc: securityevent
ncalrpc: audit
ncacn_np: \\WIN-6J87JDGINI8\pipe\lsass
76209fe5-9049-4336-ba84-632d907cb154
version: v1.0
annotation: Interprocess Logon Service
ncalrpc: ReportingServices$MSRS12.MSSQLSERVER
ncalrpc: OLE437A8080675D9E8E0418E6D24893
12e65dd8-887f-41ef-91bf-8d816c42c2e7
version: v1.0
annotation: Secure Desktop LRPC interface
provider: winlogon.exe
ncalrpc: WMsgKRpc09D3332
b1ef227e-dfa5-421e-82bb-67a6a129c496
version: v0.0
ncalrpc: LRPC-8bdf22fb35584faa29
ncalrpc: OLE98A7A8283940010A2C547A7266ED
0fc77b1a-95d8-4a2e-a0c0-cff54237462b
version: v0.0
ncalrpc: LRPC-8bdf22fb35584faa29
ncalrpc: OLE98A7A8283940010A2C547A7266ED
8ec21e98-b5ce-4916-a3d6-449fa428a007
version: v0.0
ncalrpc: LRPC-8bdf22fb35584faa29
ncalrpc: OLE98A7A8283940010A2C547A7266ED
58e604e8-9adb-4d2e-a464-3b0683fb1480
version: v1.0
annotation: AppInfo
provider: appinfo.dll
ncalrpc: LRPC-6c78dfd4065f95a38f
fd7a0523-dc70-43dd-9b2e-9c5ed48225b1
version: v1.0
annotation: AppInfo
provider: appinfo.dll
ncalrpc: LRPC-6c78dfd4065f95a38f
5f54ce7d-5b79-4175-8584-cb65313a0e98
version: v1.0
annotation: AppInfo
provider: appinfo.dll
ncalrpc: LRPC-6c78dfd4065f95a38f
201ef99a-7fa0-444c-9399-19ba84f12a1a
version: v1.0
annotation: AppInfo
provider: appinfo.dll
ncalrpc: LRPC-6c78dfd4065f95a38f
0497b57d-2e66-424f-a0c6-157cd5d41700
version: v1.0
annotation: AppInfo
ncalrpc: LRPC-6c78dfd4065f95a38f
0767a036-0d22-48aa-ba69-b619480f38cb
version: v1.0
annotation: PcaSvc
provider: pcasvc.dll
ncalrpc: LRPC-dd738e7f6452abc25d
906b0ce0-c70b-1067-b317-00dd010662da
version: v1.0
protocol: [MS-CMPO]: MSDTC Connection Manager:
provider: msdtcprx.dll
ncalrpc: LRPC-c52a6b3625b742c980
ncalrpc: LRPC-c52a6b3625b742c980
ncalrpc: LRPC-c52a6b3625b742c980
54b4c689-969a-476f-8dc2-990885e9f562
version: v0.0
ncalrpc: LRPC-eb7eeee66263384555
be7f785e-0e3a-4ab7-91de-7e46e443be29
version: v0.0
ncalrpc: LRPC-eb7eeee66263384555
a4b8d482-80ce-40d6-934d-b22a01a44fe7
version: v1.0
annotation: LicenseManager
ncalrpc: LicenseServiceEndpoint
bf4dc912-e52f-4904-8ebe-9317c1bdd497
version: v1.0
ncalrpc: LRPC-5a92cce1bf5c444eda
ncalrpc: OLECBD19397AE2214B0A16F7D9FAB04
3473dd4d-2e88-4006-9cba-22570909dd10
version: v5.256
annotation: WinHttp Auto-Proxy Service
ncalrpc: e1cd4ee1-20bb-4aea-addb-9a7f6d26bc5f
ncalrpc: LRPC-357d9036e8081a070b
853930912 | 2024-11-06T22:58:00.296827
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/10.0
X-AspNetMvc-Version: 5.2
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Date: Wed, 06 Nov 2024 22:57:58 GMT
Content-Length: 558780
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
2b:97:5d:35:6b:4f:31:89:4b:ce:45:b2:bb:1d:42:4b
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WMSvc-SHA2-WIN-6J87JDGINI8
Validity
Not Before: Jun 25 17:43:17 2020 GMT
Not After : Jun 23 17:43:17 2030 GMT
Subject: CN=WMSvc-SHA2-WIN-6J87JDGINI8
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a6:1c:04:66:37:5c:6a:2c:75:46:ae:f8:84:3a:
ec:20:0a:c1:76:47:4c:83:d1:a4:ca:eb:27:fa:fd:
67:99:7c:4e:af:b3:5f:f2:d4:f6:86:90:46:16:13:
23:2a:29:87:11:c2:83:fd:6f:ef:17:6d:c3:0a:a8:
c8:94:6b:8b:10:8e:e2:b2:0e:c3:22:b2:6e:96:f6:
fb:56:7a:85:5b:83:af:5c:c2:91:51:35:cb:9f:d1:
da:7d:e2:0c:a9:af:c6:92:1b:90:79:80:b4:3a:cc:
b2:0b:ad:3e:55:26:f6:2b:b5:ca:57:1d:02:0f:f3:
f9:07:79:ca:dc:29:6d:85:f9:6d:56:8f:70:d2:e0:
77:1f:4d:8f:d8:42:63:e7:89:76:b2:c9:c1:4e:d2:
ee:0f:1a:ca:6c:5e:da:12:11:74:c3:c4:c3:f8:23:
de:a1:6d:9b:11:be:a9:fd:0c:8b:55:ce:8a:af:f8:
fe:8d:90:c4:85:ba:1b:1e:d0:1f:45:45:7d:30:10:
5e:8f:8e:11:25:be:ec:67:73:14:58:a3:9c:7d:2c:
12:d0:d0:d7:df:b2:de:19:78:d4:23:13:5b:6e:2c:
96:94:e3:a2:7d:47:4a:5c:07:61:05:cc:7b:c6:e8:
78:12:91:e9:1f:bb:c4:4b:a7:03:99:eb:a4:7e:2b:
d1:3d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Digital Signature, Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
00:5e:93:a2:2a:b6:a8:70:91:7f:bf:29:72:68:38:0e:fe:ab:
7a:e3:b9:29:26:33:36:1f:1c:0b:c7:cd:db:98:e0:a4:ec:9f:
03:83:82:e9:eb:af:ef:b4:fc:a4:52:62:1b:dc:31:80:15:c9:
9c:df:a3:7f:78:43:98:06:1f:b8:3c:cd:e7:6a:84:d5:e0:cc:
c9:a0:69:8a:8f:83:7e:9f:df:0e:20:60:56:6f:e0:60:2c:59:
e9:65:aa:1c:00:65:2f:0c:65:9b:b3:9b:26:fb:bf:82:8e:64:
1f:7d:6a:34:99:1e:3b:c0:8e:da:8a:40:96:43:70:2e:e4:02:
47:81:53:b8:c2:7e:52:c0:4b:6c:b0:c0:cc:16:62:c5:73:f5:
2c:11:cb:2e:13:37:f7:31:57:ce:54:9c:1e:b7:1c:f3:ad:41:
06:41:2d:5a:e6:b7:d6:06:fa:48:80:4e:4f:79:b8:c1:1c:8e:
90:2e:1b:80:ca:8b:f1:d1:2b:5f:e6:8c:07:b9:17:1d:35:8b:
e8:cb:50:e2:46:f2:54:31:5d:3c:ea:51:15:82:94:6f:39:6f:
4f:71:6e:26:6b:88:a5:7b:0d:af:29:5e:8d:0b:22:8d:50:83:
fc:e1:16:ed:e5:d6:d1:b8:b3:e6:08:d9:28:50:07:79:72:e8:
f9:e4:b6:bc
-2068359559 | 2024-10-28T01:38:53.420497
3306 /
tcp
MySQL:
Protocol Version: 10
Version: 5.7.31
Capabilities: 63487
Server Language: 8
Server Status: 2
Extended Server Capabilities: 33279
Authentication Plugin: mysql_native_password
-1594160094 | 2024-10-29T12:10:50.698759
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: WIN-6J87JDGINI8
NetBIOS Domain Name: WIN-6J87JDGINI8
NetBIOS Computer Name: WIN-6J87JDGINI8
DNS Domain Name: WIN-6J87JDGINI8
FQDN: WIN-6J87JDGINI8
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
16:6d:63:00:da:57:bc:bf:4a:a2:62:f6:10:aa:52:b6
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-6J87JDGINI8
Validity
Not Before: Jun 15 21:53:37 2024 GMT
Not After : Dec 15 21:53:37 2024 GMT
Subject: CN=WIN-6J87JDGINI8
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d2:e6:97:50:73:4a:b7:73:62:4b:06:0b:8e:98:
a3:3c:76:40:a5:18:87:7b:4c:b3:ad:ad:38:37:a8:
9c:9f:b7:d2:50:8c:d9:83:e5:96:9c:a4:de:d0:f6:
11:87:8e:eb:a5:31:11:08:ff:c9:a6:e0:f9:c8:b4:
85:5b:d6:65:9c:f5:d8:b9:86:1a:ca:dd:5f:bd:73:
b6:61:64:12:66:93:11:26:c7:61:04:89:8d:cd:82:
cf:fc:20:fd:b3:4d:9a:26:b8:56:9b:69:d3:d6:b7:
9f:fc:2f:c9:53:fb:86:ed:da:00:94:38:a3:c9:b0:
d0:3e:9c:43:ef:17:57:b7:ea:f1:6c:66:43:17:75:
f5:2b:7c:2c:0e:a2:18:31:22:5b:9f:52:ba:7b:c7:
3f:cf:d9:b6:6d:2e:59:7d:f4:36:4d:65:8f:d5:e2:
4f:bc:59:1a:5f:52:d0:bd:8a:18:32:03:02:87:bc:
85:dc:18:d9:3c:6f:19:f3:8c:be:9d:f5:b2:67:10:
5d:49:43:24:86:0d:6f:20:41:c0:c1:c5:5b:0c:74:
6a:bd:9c:45:9e:76:a7:5f:b0:be:8f:c0:e0:a3:4a:
47:3c:e2:7a:05:86:2d:3d:02:81:aa:d0:cc:14:0c:
88:8f:ce:d9:1f:86:6d:36:1a:90:dd:ab:83:de:f5:
24:e9
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
c5:ed:dc:8d:27:aa:a7:69:54:87:fa:98:f3:da:3b:03:83:55:
2e:ce:e4:cf:3f:13:31:80:b5:6c:d8:0b:b7:d1:f7:1f:76:3f:
22:23:d9:72:92:a5:a8:b9:b3:0e:af:bc:97:7f:a8:cb:ef:e4:
f7:3b:a3:ae:c4:dc:bb:bf:37:56:93:c0:63:c7:42:bb:e5:5e:
18:a4:f7:85:75:3f:54:fb:ad:f4:03:07:37:9c:51:68:3e:53:
e2:1d:d3:87:b9:9c:23:fb:ad:70:d3:84:0a:e0:04:23:9c:87:
60:ed:03:bb:39:eb:a9:f5:b6:c5:63:b4:8e:6f:ee:bf:d5:ac:
d0:e0:b4:ec:8a:e7:3d:6a:84:80:33:92:f6:89:67:a0:a9:c0:
ba:f0:63:a8:90:f5:57:76:21:f7:c8:e0:ae:f2:e9:8e:50:41:
92:3f:89:e0:b7:c5:fd:b8:72:3d:9e:d8:bb:34:61:78:e0:e1:
6e:d3:21:72:87:4e:8f:19:ab:5d:e4:b4:26:b7:2b:71:ac:84:
25:97:66:a4:e4:fa:8f:68:52:f3:d6:93:e3:ba:d0:ef:21:c5:
28:4e:60:31:44:9d:8d:03:d7:a7:53:df:71:d0:fb:30:1e:27:
d6:7f:d3:14:c9:44:cd:55:70:05:9e:3c:68:a1:e1:c6:c8:34:
c6:b5:db:4e
-1684583448 | 2024-10-21T09:58:54.143959
5357 /
tcp
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Mon, 21 Oct 2024 09:58:53 GMT
Connection: close
Content-Length: 326
1489525118 | 2024-10-31T02:54:00.638885
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Thu, 31 Oct 2024 02:54:00 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: WIN-6J87JDGINI8
NetBIOS Domain Name: WIN-6J87JDGINI8
NetBIOS Computer Name: WIN-6J87JDGINI8
DNS Domain Name: WIN-6J87JDGINI8
FQDN: WIN-6J87JDGINI8