1489525118 | 2024-09-16T15:10:07.673776
80 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Mon, 16 Sep 2024 15:10:07 GMT
Connection: close
Content-Length: 315
1383209725 | 2024-09-07T21:11:19.732918
137 /
udp
NetBIOS Response:
Server Name: WIN-VU8EJGQJETE
MAC Address: AC:1F:6B:27:33:60
Names:
WIN-VU8EJGQJETE <0x0>
WORKGROUP <0x0>
WIN-VU8EJGQJETE <0x20>
MAC Addresses
AC:1F:6B:27:33:60
OUI: AC:1F:6B
Organization: Super Micro Computer, Inc.
Assignment: MA-L
Registration Date: 2016-08-23
1489525118 | 2024-09-14T11:49:26.817291
443 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 14 Sep 2024 11:49:26 GMT
Connection: close
Content-Length: 315
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
11:97:2f:5b:a2:4d:b9:ac:48:70:fa:f8:9d:ba:9d:6a
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-VU8EJGQJETE
Validity
Not Before: May 28 19:32:46 2023 GMT
Not After : May 28 00:00:00 2024 GMT
Subject: CN=WIN-VU8EJGQJETE
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bb:ea:34:58:a2:c0:bc:6a:82:96:9c:f4:04:c8:
79:b0:6a:c3:b6:78:f1:d8:2b:9a:c8:45:40:09:58:
69:ca:51:82:41:aa:84:ee:f6:4d:f6:f7:1c:36:77:
da:83:93:34:92:f0:bb:f3:25:4f:c3:88:cc:55:a1:
9b:a9:d0:5c:06:2a:b8:e1:97:f3:4e:c7:c2:43:40:
86:17:21:ea:0c:da:13:31:47:21:b0:3a:89:ac:96:
f5:59:a1:c3:2c:c0:70:64:43:bf:28:92:d3:8c:84:
31:1f:c3:a3:d6:57:62:1d:e7:bf:7b:45:44:fb:84:
a4:a3:6b:f5:36:e8:68:b9:e2:85:ba:a7:72:b4:58:
42:51:dd:8b:dd:61:8a:22:a8:91:f0:53:a7:31:96:
9c:90:22:20:5b:8a:31:03:67:95:8f:69:86:cb:8c:
d3:43:be:2f:ec:21:9d:65:f3:36:ba:e9:12:62:be:
a9:6e:c4:06:aa:86:0a:47:02:d3:1f:f5:d9:12:1b:
08:65:0a:70:7d:0d:79:74:60:7f:db:68:a1:1b:5c:
c1:2e:3f:27:d0:2c:1d:f1:49:a4:31:6f:ee:33:eb:
e2:18:41:a3:5a:7c:aa:65:50:0d:d5:7c:75:75:05:
34:c3:72:a8:74:2f:c1:d8:e1:b0:50:a8:19:1d:b7:
48:19
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage:
Digital Signature, Key Encipherment, Data Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Subject Alternative Name:
DNS:WIN-VU8EJGQJETE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
08:69:cc:6e:f1:1c:20:1d:ba:42:eb:c2:9e:0b:f8:92:df:e8:
c9:83:9f:84:5f:ae:24:61:23:12:5d:48:c3:59:bf:62:51:06:
83:c4:3a:d8:36:61:a8:b5:72:c2:54:98:d1:7d:7e:73:db:8f:
fd:ff:a2:74:1e:e5:c4:5b:ab:9f:56:40:b3:4b:df:ba:04:3d:
16:a5:a2:83:b0:be:8c:69:a2:cc:19:9f:3d:7c:02:47:0b:b9:
73:1f:f3:3e:20:1a:72:94:ab:91:40:da:df:1c:c8:bf:a4:26:
66:0e:57:78:cf:fc:7c:85:75:36:dd:35:c7:cf:19:00:06:cc:
eb:8f:85:ca:e1:1c:92:4c:99:e2:c5:5d:62:bd:c9:6e:ef:cc:
cf:dc:59:c4:04:5d:8a:54:aa:7d:08:e2:08:67:9f:60:9c:5f:
2d:6e:87:0c:9a:27:b2:cb:df:98:87:bc:5d:d4:e9:14:8b:8d:
5f:fc:2b:76:39:76:52:25:e8:e3:23:83:db:8d:c2:a1:b7:12:
d7:f2:19:e2:13:88:6d:34:9e:91:6f:ac:0b:40:1a:00:55:a1:
8f:eb:e1:15:9b:35:d6:b7:68:e9:8c:c8:7c:28:6c:d0:99:a6:
e8:c5:00:f4:df:9e:3e:61:ff:65:b8:3c:5a:20:64:5e:85:99:
56:2c:ee:d3
431232254 | 2024-08-31T02:49:16.269973
3306 /
tcp
MySQL:
Error Message: Host '224.100.122.134' is not allowed to connect to this MySQL server
Error Code: 1130
-1149833929 | 2024-09-01T00:17:40.208824
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-VU8EJGQJETE
NetBIOS Domain Name: WIN-VU8EJGQJETE
NetBIOS Computer Name: WIN-VU8EJGQJETE
DNS Domain Name: WIN-VU8EJGQJETE
FQDN: WIN-VU8EJGQJETE
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
64:b1:a0:29:fa:28:93:82:43:ba:d9:e7:8e:c3:31:d6
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-VU8EJGQJETE
Validity
Not Before: Aug 22 19:51:23 2024 GMT
Not After : Feb 21 19:51:23 2025 GMT
Subject: CN=WIN-VU8EJGQJETE
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c6:50:6f:35:bc:df:d1:bb:75:f8:bf:d1:2f:be:
9c:58:d4:eb:46:f8:15:96:0a:e0:97:69:0f:4d:1f:
fb:d0:59:9e:2c:c5:42:93:50:fd:dc:b9:8f:bb:fe:
a0:ca:61:af:40:ab:4d:f2:0d:67:f0:c8:87:fc:41:
48:fd:3c:7f:76:a4:16:3e:fe:ba:16:9d:ea:64:d5:
8a:51:f9:1b:a5:66:60:ba:16:eb:71:01:1c:18:67:
79:fb:c5:8b:53:73:4d:fe:25:e1:2c:b9:58:91:d9:
45:b7:0a:4b:53:2e:b3:b5:38:5d:f8:58:57:d2:58:
84:c2:a8:70:38:c2:18:a0:07:29:06:d9:be:97:d1:
2e:79:3d:38:fb:20:4f:0b:72:f6:dc:f5:10:81:4f:
f5:b3:8e:6d:7a:75:3e:90:ed:f2:87:72:88:f1:c4:
69:3c:75:07:cd:0c:dc:16:9e:5e:4f:29:ca:65:04:
fd:eb:1f:51:5d:82:e8:a8:21:c7:7b:d0:83:6b:e6:
f2:56:22:66:4d:74:af:b3:64:1a:23:c5:33:d2:9f:
9e:1d:2d:d0:53:33:f2:3f:e2:71:e0:00:cc:bf:e1:
eb:3b:f2:3c:72:7e:42:00:a1:12:0f:18:0c:36:8a:
6c:a5:ed:16:3e:1e:04:3b:7f:b3:db:69:40:ab:9b:
c8:55
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
12:1b:ba:56:e1:2d:2d:cf:ee:3f:77:bc:a4:3c:ed:4d:35:52:
91:46:e5:fe:83:63:a1:2e:d4:1b:b3:e4:cb:cb:c7:27:f7:ee:
55:c6:72:b6:3b:cd:4d:f9:5e:08:78:d9:36:ee:80:6d:38:80:
fb:18:95:cd:aa:42:40:c5:18:94:22:ab:c9:bf:65:f3:3c:8c:
0e:7d:1f:3b:f1:be:42:a5:ef:e1:08:83:c8:8f:e0:ce:94:3b:
40:e5:22:0c:c4:92:26:da:7e:3c:d7:fc:d9:fc:7e:42:b9:cb:
55:13:33:86:5c:c7:29:3b:9d:83:4f:3c:6a:2b:b0:44:ff:e9:
37:99:92:f2:80:01:e3:e9:d2:37:55:ae:61:d4:9e:f5:4a:2b:
b2:20:40:f6:b1:f5:27:48:35:cd:4f:92:6e:75:84:63:b7:05:
49:3b:2f:cb:4a:ca:35:a9:28:64:6b:db:80:75:c0:84:ab:4e:
9f:dc:ab:29:f3:fe:b0:ee:ef:33:be:d8:37:2f:b6:36:13:9e:
e6:71:8a:f6:69:8e:f3:ad:88:9c:3d:2f:38:57:0e:90:f9:f0:
aa:c2:d1:32:a2:e4:ef:93:45:5e:aa:6b:cc:b9:af:52:79:0c:
94:12:76:93:d6:71:78:7a:e2:ef:8b:3d:bb:c6:44:70:03:04:
bd:86:4d:5e
-1684583448 | 2024-09-17T19:11:36.955787
5357 /
tcp
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Tue, 17 Sep 2024 19:11:36 GMT
Connection: close
Content-Length: 326
1489525118 | 2024-09-14T22:41:39.886280
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 14 Sep 2024 22:41:38 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-VU8EJGQJETE
NetBIOS Domain Name: WIN-VU8EJGQJETE
NetBIOS Computer Name: WIN-VU8EJGQJETE
DNS Domain Name: WIN-VU8EJGQJETE
FQDN: WIN-VU8EJGQJETE
-795948505 | 2024-09-11T23:27:35.102335
33060 /
tcp
MySQL X Protocol:
tls: False
authentication.mechanisms:
MYSQL41
SHA256_MEMORY
doc.formats: text
client.interactive: False
compression:
algorithm:
deflate_stream
lz4_message
zstd_stream
node_type: mysql
client.pwd_expire_ok: False