-2000918198 | 2024-11-03T05:06:19.166826
80 /
tcp
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/10.0
X-AspNetMvc-Version: 5.2
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Access-Control-Allow-Origin: *
Access-Control-Allow-Headers: Content-Type
Access-Control-Allow-Methods: GET, POST, PUT, DELETE, OPTIONS
Date: Sun, 03 Nov 2024 05:06:18 GMT
Content-Length: 3495
1489525118 | 2024-10-29T10:19:11.697850
443 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Tue, 29 Oct 2024 10:19:11 GMT
Connection: close
Content-Length: 315
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 891426896995319346 (0xc5efc0a32a27e32)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., OU=http:\/\/certs.godaddy.com\/repository\/, CN=Go Daddy Secure Certificate Authority - G2
Validity
Not Before: Dec 21 05:43:15 2023 GMT
Not After : Dec 21 05:43:15 2024 GMT
Subject: CN=2faotp.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:cb:a8:be:84:36:bb:32:68:b3:d0:25:5c:bb:65:
ce:9f:6f:d8:c4:64:5d:d8:13:53:36:2c:c4:9f:f3:
c8:9e:35:a0:12:48:e1:b2:56:6d:6f:3f:00:ab:91:
8e:fa:ed:96:cb:00:12:9d:cf:b6:f2:c5:ea:1f:c7:
99:47:8c:41:e0:0b:65:62:cf:54:a7:e2:b5:70:12:
e6:5f:ec:a2:55:31:08:88:b6:cd:f7:a8:21:d7:6c:
1d:12:2f:9e:f9:ed:a4:c1:eb:77:ce:ca:9e:da:56:
98:1f:97:a4:08:0c:81:7a:e7:5c:f8:2f:10:f0:a5:
e5:57:e1:bc:19:da:99:3b:08:16:0e:6e:3f:6b:d7:
8c:4f:28:35:22:9d:30:69:71:ea:88:59:4a:4f:54:
c4:a8:52:d3:12:16:00:7d:cc:74:66:05:1a:68:35:
fb:4f:3b:11:40:f9:42:99:0f:59:dd:91:37:1a:65:
c0:85:9d:0a:8d:08:a9:ab:b0:43:5b:28:01:05:dd:
8d:a5:8b:54:0e:8b:1b:89:25:04:7a:45:a4:41:43:
8d:9c:92:6c:08:c0:14:53:b1:06:1a:84:db:c9:ab:
37:45:43:85:01:84:15:ee:25:8b:75:a4:ec:a4:d5:
68:87:0c:03:4f:3a:17:31:db:bf:43:81:f4:69:d9:
d8:b9
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.godaddy.com/gdig2s1-13946.crl
X509v3 Certificate Policies:
Policy: 2.16.840.1.114413.1.7.23.1
CPS: http://certificates.godaddy.com/repository/
Policy: 2.23.140.1.2.1
Authority Information Access:
OCSP - URI:http://ocsp.godaddy.com/
CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
X509v3 Authority Key Identifier:
40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
X509v3 Subject Alternative Name:
DNS:2faotp.com, DNS:www.2faotp.com
X509v3 Subject Key Identifier:
1E:FF:25:F5:38:A5:0C:CE:DB:1E:3E:5B:94:94:FA:75:EA:05:C9:B6
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
Timestamp : Dec 21 05:43:16.065 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:C5:A3:89:BD:A5:D9:FA:AF:FE:37:28:
3C:0D:0A:99:4F:28:77:D2:58:00:63:F9:E2:00:7A:46:
E3:E0:E3:76:85:02:21:00:A1:CA:BE:EE:8E:91:44:89:
77:C8:E4:1E:66:5F:7E:D3:D7:B2:73:AB:8A:33:79:DC:
6D:CE:B2:1C:2A:24:ED:57
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Dec 21 05:43:16.305 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:51:DC:41:6C:27:41:A6:71:03:08:9E:02:
90:F0:54:9B:8D:2D:AC:79:A7:58:55:70:52:A0:23:F7:
70:0C:2E:D4:02:20:68:8E:2B:11:F0:51:B0:88:24:BF:
96:B3:D9:CB:62:ED:9D:AB:76:60:41:02:AB:F4:C6:ED:
41:7E:E2:6B:95:45
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70:
91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB
Timestamp : Dec 21 05:43:16.412 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:28:D0:C7:0F:4C:11:4C:26:85:24:9E:46:
5C:7C:3D:E7:23:45:68:54:85:3C:03:BC:1F:7B:3F:80:
83:87:26:31:02:21:00:D5:48:96:5E:46:16:40:ED:0C:
70:47:3E:8F:4A:22:E7:8E:06:22:82:ED:7B:1B:A4:A0:
8D:54:47:78:A2:18:19
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
07:8d:07:5b:e7:50:83:df:89:48:d4:69:44:fe:f0:38:00:c4:
ca:35:4e:0d:c9:7c:74:c0:68:d1:e6:ad:31:66:53:6f:9a:81:
52:02:fd:fa:36:b2:32:07:f1:b4:2d:96:34:ea:dd:a6:84:77:
22:39:4d:aa:a3:3e:f4:de:ca:a7:7f:1e:31:f4:a3:5a:b8:e1:
c8:e7:ce:fc:3e:6c:b1:19:ee:ed:aa:e2:65:a3:1d:5a:85:d9:
d9:79:10:c2:5a:97:15:8b:f5:46:7d:c7:53:70:f5:db:c8:e2:
5b:41:5e:46:56:fe:4d:c7:28:a2:8f:f3:fe:a6:e5:03:cd:49:
ac:35:1e:52:f7:87:31:7f:7f:49:f1:ff:3f:70:16:77:69:6c:
08:f7:46:51:0f:74:c9:09:bb:f0:b7:18:77:ab:8a:99:47:b6:
f9:60:eb:55:24:56:5d:e5:80:ba:65:63:b6:44:6c:ad:ee:97:
ee:44:88:ba:bf:fb:8d:76:6d:35:32:da:03:1e:d6:b8:69:7c:
1b:2a:fa:fe:92:91:be:60:c2:20:70:ba:c0:d1:89:36:4f:c2:
4f:f5:dc:35:e5:8a:0b:ec:ee:f4:67:4b:e2:9e:dc:41:f1:93:
f4:fc:61:07:ad:1c:4d:81:99:2e:e2:a5:1b:38:d1:68:0c:39:
2d:ef:c3:bc
1609893310 | 2024-11-10T17:43:05.735872
1433 /
tcp
MS-SQL NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: 4-161-178-68
NetBIOS Domain Name: 4-161-178-68
NetBIOS Computer Name: 4-161-178-68
DNS Domain Name: 4-161-178-68.host.secureserver.net
FQDN: 4-161-178-68.host.secureserver.net
-1633292485 | 2024-11-09T13:14:58.838755
1801 /
tcp
\x10Z\x0b\x00LIOR<\x02\x00\x00\xff\xff\xff\xff\x00\x00\x12\x00\x06U=Q6\xdf\xc7@\x96C\x17\\<\xe7l\xaa\xfa\xd3\x05\xe7\xbf\xdb.E\xa3\xe8\xba2\x90\x1cz\x83\x00\x00\x00\x00\x10\x02\x00\x00ZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZ
1453395587 | 2024-11-10T05:08:31.672863
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: 4-161-178-68
NetBIOS Domain Name: 4-161-178-68
NetBIOS Computer Name: 4-161-178-68
DNS Domain Name: 4-161-178-68.host.secureserver.net
FQDN: 4-161-178-68.host.secureserver.net
-rannlabadmin
SES
rannlabadmin
nydus
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
1c:7c:c6:a0:ca:5d:d4:b3:49:ca:e4:77:2a:3e:98:19
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=4-161-178-68.host.secureserver.net
Validity
Not Before: Jul 18 22:28:01 2024 GMT
Not After : Jan 17 22:28:01 2025 GMT
Subject: CN=4-161-178-68.host.secureserver.net
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d0:46:3d:ee:03:07:74:71:7b:dd:42:55:cf:1e:
c8:4a:79:55:18:9a:85:57:85:ca:ef:c1:e8:82:75:
d8:fe:74:aa:db:8b:3c:4b:92:2e:70:c6:d7:ce:18:
cf:3e:a5:0d:64:d1:96:a4:bf:17:e1:3e:db:81:af:
35:bc:b9:93:3e:2b:0f:d7:06:f6:3d:03:64:99:cc:
12:1c:ef:ce:a1:d8:bc:a1:bc:16:a3:55:8a:c5:2b:
48:39:72:58:b8:05:0a:b4:3b:88:7d:59:b6:8e:06:
02:fd:31:48:de:06:7d:a8:a5:74:a1:fd:77:76:a4:
36:b5:e4:b2:48:6f:51:b2:4d:ea:70:c1:ca:a5:82:
5d:73:98:cc:92:45:1d:78:65:c5:24:73:20:40:b5:
b9:e0:94:da:cb:38:de:d5:f6:eb:e6:54:54:c2:a1:
91:fd:d4:bc:67:c1:82:fa:5b:42:c7:96:32:74:8d:
f0:a1:49:e7:a3:0f:81:40:4c:53:04:aa:a8:cf:25:
75:a9:1b:57:ab:03:30:91:5e:55:20:ee:31:f9:a5:
ca:e2:13:cc:2b:a8:0a:a5:a8:08:08:ad:ce:9c:41:
dc:2b:48:5d:a1:0f:8e:a5:65:ac:c5:e1:5d:2f:fa:
9d:33:4e:e7:02:26:cf:4e:11:3d:4c:2a:1f:90:a3:
71:fd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
68:ca:fa:d7:f2:40:c3:c3:71:32:fd:24:f8:37:34:a5:df:86:
9e:76:3c:72:0c:07:ee:3d:69:36:2d:2b:ef:06:54:c7:f2:41:
b4:17:93:da:e7:20:36:65:13:0c:6d:be:8f:1f:0f:7e:d0:11:
94:cd:f4:4e:d6:8b:0a:2b:c6:79:63:bc:04:7a:ea:67:2c:55:
6c:cb:f9:7d:80:57:9e:e9:06:e6:6f:11:86:6c:49:35:f0:b9:
c1:1a:df:d4:ec:82:e5:3c:c1:b7:5f:2b:04:4d:98:0f:87:87:
30:6e:5d:7d:1a:66:7b:7d:17:ea:7f:9e:76:67:04:f9:75:7e:
f2:e4:b2:6d:ea:e8:a2:fd:f0:b1:42:6d:c1:f9:9a:da:50:2b:
be:27:75:17:07:44:34:46:cb:7b:f3:db:2c:99:69:9f:bd:dc:
4f:47:d8:a8:ab:01:ef:b9:3a:03:74:0d:e0:44:db:25:3d:24:
d2:5d:a3:fe:33:72:57:5e:cd:81:6b:da:13:60:65:1f:70:c5:
e8:19:58:f4:50:8e:68:45:18:8f:a7:ad:c9:dd:91:16:5d:8a:
f6:79:91:60:e8:08:7f:7a:a8:0a:d2:6b:49:2c:33:29:e6:f3:
4d:cc:7d:f4:2f:64:b8:31:20:6b:11:28:7c:70:05:96:e8:e1:
02:f8:9f:9b
-1684583448 | 2024-11-02T21:33:26.515717
5357 /
tcp
HTTP/1.1 503 Service Unavailable
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 02 Nov 2024 21:33:26 GMT
Connection: close
Content-Length: 326
1489525118 | 2024-10-25T15:16:45.020263
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Fri, 25 Oct 2024 15:16:44 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: 4-161-178-68
NetBIOS Domain Name: 4-161-178-68
NetBIOS Computer Name: 4-161-178-68
DNS Domain Name: 4-161-178-68.host.secureserver.net
FQDN: 4-161-178-68.host.secureserver.net