1927140995 | 2024-12-20T21:31:49.251363
80 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Fri, 20 Dec 2024 21:31:49 GMT
Content-Type: text/html
Content-Length: 494
Last-Modified: Sun, 08 Sep 2024 07:56:09 GMT
Connection: keep-alive
Keep-Alive: timeout=20
ETag: "66dd5899-1ee"
Cache-Control: no-cache
Accept-Ranges: bytes
1927140995 | 2024-12-31T17:22:46.787125
443 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Tue, 31 Dec 2024 17:22:46 GMT
Content-Type: text/html
Content-Length: 494
Last-Modified: Sun, 08 Sep 2024 07:56:09 GMT
Connection: keep-alive
Keep-Alive: timeout=20
ETag: "66dd5899-1ee"
Cache-Control: no-cache
Accept-Ranges: bytes
-177587677 | 2024-12-23T18:25:43.534567
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-SGPCAA37TPA
NetBIOS Domain Name: WIN-SGPCAA37TPA
NetBIOS Computer Name: WIN-SGPCAA37TPA
DNS Domain Name: WIN-SGPCAA37TPA
FQDN: WIN-SGPCAA37TPA
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
54:e6:f2:4b:81:b3:3a:86:49:65:73:95:94:1a:93:41
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-SGPCAA37TPA
Validity
Not Before: Sep 26 19:53:10 2024 GMT
Not After : Mar 28 19:53:10 2025 GMT
Subject: CN=WIN-SGPCAA37TPA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c2:9c:e7:ba:a7:3e:a2:f3:b0:39:b6:ae:37:b8:
2c:7b:37:62:51:d0:8d:74:42:27:76:43:cc:f5:ac:
2b:9f:dc:fd:25:4f:84:aa:87:9f:be:3c:3d:35:d3:
af:de:b8:f9:25:3a:d1:b9:39:e3:85:3a:7a:0d:4d:
c3:83:b4:69:82:47:4c:6d:4c:7e:55:7c:86:48:60:
39:4f:ee:bd:d8:c9:c8:d0:c3:fd:32:26:1b:bf:f0:
11:52:25:e0:b0:99:21:79:f0:74:7c:6d:18:f4:e1:
9d:9a:53:e4:cd:36:7f:3e:1b:1d:a3:96:bd:32:d7:
90:be:bc:d1:53:c8:c4:c2:8d:fe:10:af:cb:d8:08:
11:8d:36:84:7e:a4:b7:f2:68:a3:f3:a5:2a:51:90:
60:7a:86:dc:34:85:a7:ad:04:d5:b7:34:a0:07:c3:
d9:f7:00:d0:87:8c:9b:cb:23:49:7f:da:7d:2a:a8:
2e:3d:45:dc:89:9b:c0:86:b8:79:52:88:78:69:32:
d9:58:c2:25:1f:1b:31:6e:29:33:5f:ef:ee:39:1f:
80:d6:05:66:14:05:03:c9:bd:e0:09:dd:08:61:c8:
c6:20:bb:33:02:1f:30:53:b2:50:d0:54:17:69:68:
6e:4b:0d:da:35:34:bb:1e:16:5c:e6:f6:b2:3d:c7:
d4:75
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a3:3a:89:dd:5b:4e:7c:46:a7:e8:63:3b:c3:c0:7c:f8:db:d5:
45:f9:91:0c:b0:de:a0:4d:ee:3e:74:42:96:73:3d:77:52:2c:
fe:42:34:75:a7:53:a6:fe:bf:19:61:23:a7:19:5f:34:c2:eb:
e2:3b:66:f5:98:9b:c2:ba:c2:a1:ad:a9:ba:6b:34:e1:79:30:
fc:be:81:d9:c3:93:2b:6a:ef:e5:73:73:a2:60:6a:93:60:3b:
7a:29:a8:b5:1a:b3:70:c1:69:4b:a7:e6:a6:82:95:2e:be:43:
38:09:54:09:c1:1a:af:5c:2a:02:9f:80:44:38:99:39:25:35:
9a:04:89:0e:db:f2:c6:36:aa:c9:97:f5:43:df:00:8a:3d:09:
80:07:e8:1a:d4:35:5a:2f:ab:11:eb:6f:1e:57:c1:ea:59:a2:
92:8d:36:98:59:16:73:83:09:38:1f:00:05:5c:e7:17:20:ed:
b2:9b:29:e2:cc:21:71:24:c1:a0:dc:d0:db:16:d4:b0:6a:19:
98:5a:fb:8e:17:e8:bb:7f:26:a8:8f:88:99:5f:1a:f5:76:97:
b4:38:78:27:2f:42:b3:05:71:7c:02:97:07:bd:a1:06:56:5e:
df:b7:9a:61:12:a6:43:e8:ef:04:c9:d4:6e:8a:5b:d5:e2:6b:
13:99:bf:9b
1245101523 | 2024-12-25T08:15:17.719122
3702 /
udp
<?xml version="1.0" encoding="UTF-8"?>
<soap:Envelope xmlns:soap="http://www.w3.org/2003/05/soap-envelope" xmlns:pub="http://schemas.microsoft.com/windows/pub/2005/07" xmlns:wsa="http://schemas.xmlsoap.org/ws/2004/08/addressing" xmlns:wsd="http://schemas.xmlsoap.org/ws/2005/04/discovery" xmlns:wsdp="http://schemas.xmlsoap.org/ws/2006/02/devprof" xmlns:wsx="http://schemas.xmlsoap.org/ws/2004/09/mex" xmlns:un0="http://schemas.microsoft.com/windows/pnpx/2005/10"><soap:Header><wsa:To>http://schemas.xmlsoap.org/ws/2004/08/addressing/role/anonymous</wsa:To><wsa:Action>http://schemas.xmlsoap.org/ws/2005/04/discovery/ProbeMatches</wsa:Action><wsa:MessageID>urn:uuid:c19fdbb0-2bcf-4808-8778-7fee46ca5ada</wsa:MessageID><wsa:RelatesTo>18930069-880c-41b3-886c-4ae76fac6b47</wsa:RelatesTo><wsd:AppSequence InstanceId="1725782169" SequenceId="urn:uuid:eb998d07-2136-4446-8cad-bae701a0f2b6" MessageNumber="7123"/></soap:Header><soap:Body><wsd:ProbeMatches><wsd:ProbeMatch><wsa:EndpointReference><wsa:Address>urn:uuid:1b61780f-f897-4ea0-8466-6abec5db87d8</wsa:Address></wsa:EndpointReference><wsd:Types>wsdp:Device pub:Computer</wsd:Types><wsd:XAddrs>http://Eternalst:5357/1b61780f-f897-4ea0-8466-6abec5db87d8</wsd:XAddrs><wsd:MetadataVersion>2</wsd:MetadataVersion></wsd:ProbeMatch></wsd:ProbeMatches></soap:Body></soap:Envelope>
1758763250 | 2024-12-31T07:03:40.968208
5000 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Tue, 31 Dec 2024 07:03:40 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Keep-Alive: timeout=20
Cache-control: no-store
1750102492 | 2024-12-26T07:15:05.532480
5001 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Thu, 26 Dec 2024 07:15:05 GMT
Content-Type: text/html; charset="UTF-8"
Transfer-Encoding: chunked
Connection: keep-alive
Keep-Alive: timeout=20
Vary: Accept-Encoding
Cache-control: no-store
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT"
Content-Security-Policy: base-uri 'self'; connect-src data: ws: wss: http: https:; default-src 'self' 'unsafe-eval' data: blob: https://*.synology.com https://www.synology.cn/ https://help.synology.cn/; font-src 'self' data: https://*.googleapis.com https://*.gstatic.com; form-action 'self'; frame-ancestors 'self'; frame-src 'self' data: blob: https://*.synology.com https://*.synology.cn; img-src 'self' data: blob: https://*.google.com https://*.googleapis.com http://*.googlecode.com https://*.gstatic.com https://global.download.synology.com; media-src 'self' data: about: https://*.synology.com https://help.synology.cn; script-src 'self' 'unsafe-eval' data: blob: https://maps.google.com https://maps.googleapis.com https://ajax.googleapis.com https://help.synology.com https://help.synology.cn; style-src 'self' 'unsafe-inline' https://*.googleapis.com;
Synology DiskStation Manager (DSM):
Version: 7.2.1-69057
Hostname: Eternalst
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:36:98:ce:f8:93:a4:55:41:4b:16:ce:28:c7:cf:59:c6:91
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Nov 21 10:01:50 2024 GMT
Not After : Feb 19 10:01:49 2025 GMT
Subject: CN=eternalst.com
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:ed:a8:67:5c:1d:87:e0:b1:d3:2e:14:17:c4:9b:
79:e8:52:94:37:06:16:f9:0d:2f:b5:51:4f:4c:d4:
b3:14:cd:b3:67:07:0d:33:44:1e:a4:13:fe:e6:a9:
22:b3:5d:8e:9c:36:7d:c9:0b:f1:fe:0e:a8:8d:2f:
c2:e0:fe:92:a1
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
3D:FE:47:6B:70:C1:59:4C:1E:F3:43:96:CB:63:F4:28:70:12:26:DC
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:cloud.eternalst.com, DNS:eternalst.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Nov 21 11:00:21.124 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:96:54:A6:49:73:95:B5:C6:69:9C:BB:
D0:E3:92:D0:03:36:79:BA:B1:A0:AA:FC:87:8E:4F:97:
5C:D4:EA:6A:1D:02:20:5C:C9:A7:8A:CB:69:31:40:C7:
C7:5D:7F:4E:14:9B:F9:CF:94:DE:91:1B:11:57:9E:79:
F2:FC:5A:D8:D4:32:30
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 13:4A:DF:1A:B5:98:42:09:78:0C:6F:EF:4C:7A:91:A4:
16:B7:23:49:CE:58:57:6A:DF:AE:DA:A7:C2:AB:E0:22
Timestamp : Nov 21 11:00:21.369 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:9F:66:14:AE:3F:69:DA:32:95:E2:87:
29:45:7E:84:B7:67:6D:3A:8F:46:D4:07:93:31:6C:33:
6A:4B:18:32:19:02:21:00:FD:81:39:40:BA:D9:DC:BE:
C0:33:89:B9:7D:03:1D:E9:66:43:7A:CF:6A:34:68:CF:
81:F5:44:1C:8A:D5:6B:59
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:31:00:eb:77:04:58:11:23:63:74:fa:49:71:b6:e9:
cb:0a:18:26:a4:ea:4c:65:d9:b6:8a:55:71:75:82:70:45:03:
99:d6:ae:f7:72:c7:5d:95:db:ef:c4:65:48:6f:da:eb:23:02:
30:5c:33:3b:35:e3:5c:bb:25:f7:48:3a:de:29:f6:a1:28:6d:
e0:50:63:6f:5b:b2:58:f6:d8:58:c2:e1:e0:bd:07:47:98:cf:
d9:63:f6:48:b2:3d:11:06:1c:c1:c7:c3:bd
-171534721 | 2024-12-28T04:24:12.737293
5357 /
tcp
HTTP/1.1 502 Bad Gateway
Server: nginx
Date: Sat, 28 Dec 2024 04:24:12 GMT
Content-Type: text/html
Content-Length: 552
Connection: keep-alive
Keep-Alive: timeout=20