120244454 | 2024-12-30T11:23:07.320331
22 /
tcp
SSH-2.0-1.82_sshlib Globalscape
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAABEQAAAQEAk016YTUdxPKe0hptNjI0cCZhJf6W12BylqEb9aHF2uvqEAMz
YTp5yvQ2M//nay3nM0YgPOhwab64eXkYi364dWAl/fUzioweTSVTvFwb+KcR8BoljoC6fVf5+tcS
78rdAIqHC3nEnIHTWTYW7UpeIqOuokX9UQAECOWlXBo6+AVkGOKjnFrVqGSxl8LU2K9kES2SYbf2
aBjU86Di0fpU7xs6DSjHdcbRQbYblFMIkfk/emwkJ+RWU9/qnxIbKT6zxLFyd2O50A+QD6bYYvnY
joZhkXQdjQwPO3h6dT6kiiJDKwPZzEN/SGLvCPjwHT+aSUcF5Ur1MBglUNi6owjQaw==
Fingerprint: e9:74:df:44:c1:cc:f8:d4:41:b6:98:c5:96:60:72:3b
Kex Algorithms:
diffie-hellman-group14-sha1
diffie-hellman-group-exchange-sha1
diffie-hellman-group1-sha1
Server Host Key Algorithms:
ssh-rsa
Encryption Algorithms:
twofish256-cbc
twofish-cbc
twofish128-cbc
blowfish-cbc
3des-cbc
arcfour
cast128-cbc
aes256-cbc
aes128-cbc
aes256-ctr
aes128-ctr
MAC Algorithms:
hmac-sha1
hmac-md5
hmac-sha1-96
hmac-md5-96
Compression Algorithms:
zlib
none
-2053120918 | 2024-12-27T15:41:55.348277
80 /
tcp
HTTP/1.1 200 OK
Cache-Control: no-cache, no-store
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Server: Microsoft-IIS/10.0
X-AspNet-Version: 4.0.30319
Set-Cookie: ASP.NET_SessionId=h0vo3nfdlymu21odqdp5s2it; path=/; HttpOnly; SameSite=Lax
Set-Cookie: wideScreen=1; expires=Mon, 27-Dec-2027 15:41:55 GMT; path=/
Set-Cookie: defaultLanguage=1; expires=Mon, 27-Dec-2027 15:41:55 GMT; path=/
X-Powered-By: ASP.NET
Date: Fri, 27 Dec 2024 15:41:55 GMT
Content-Length: 13546
-2053120918 | 2024-12-23T11:06:22.081731
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: no-cache, no-store
Pragma: no-cache
Content-Type: text/html; charset=utf-8
Expires: -1
Server: Microsoft-IIS/10.0
X-AspNet-Version: 4.0.30319
Set-Cookie: ASP.NET_SessionId=t13yyrqrsdk3l31u4sz0gczr; path=/; HttpOnly; SameSite=Lax
Set-Cookie: wideScreen=1; expires=Thu, 23-Dec-2027 11:06:22 GMT; path=/
Set-Cookie: defaultLanguage=1; expires=Thu, 23-Dec-2027 11:06:22 GMT; path=/
X-Powered-By: ASP.NET
Date: Mon, 23 Dec 2024 11:06:22 GMT
Content-Length: 13546
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
71:84:b7:2a:1c:63:c7:91:32:9c:5b:58:52:ba:b2:ac
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
Validity
Not Before: May 17 00:00:00 2024 GMT
Not After : May 17 23:59:59 2025 GMT
Subject: C=FR, ST=\xC3\x8Ele-de-France, O=AIR LIQUIDE SA POUR ETUDE EXPLOIT DES PROCEDES GEORGES CLAUDE, CN=orchestra.airliquide.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:da:4a:ee:95:55:e2:85:14:be:7a:2e:45:bd:5e:
e4:06:43:e6:0b:3e:07:d6:5c:99:7e:37:50:76:78:
af:2e:6a:e7:86:c3:7b:6b:63:86:0b:29:4a:42:32:
de:04:e3:a0:13:d4:22:b9:5c:36:d4:bf:e7:51:a9:
52:3d:ca:2d:82:47:42:34:b4:6f:09:ee:62:fb:e9:
33:58:10:df:a0:61:c2:61:fe:d6:ef:ca:be:8d:9d:
e7:17:2d:b8:4f:a2:93:34:3c:94:4c:76:7a:85:9c:
2c:08:39:89:2e:f9:45:28:62:fb:7f:83:3c:4a:15:
d2:f1:27:84:32:fe:97:e7:ab:57:f1:e0:0c:23:4e:
fb:b6:d4:44:13:ab:9d:e0:b0:2f:0f:6c:4b:d4:a1:
c3:dd:e0:de:77:1e:d3:15:9c:c8:cb:a8:15:d8:00:
a3:c0:3d:27:3c:42:e0:f6:7b:7a:81:97:a4:f0:bf:
27:00:a6:29:15:bc:fc:cb:d8:87:51:bd:7c:62:93:
bf:e8:84:6d:c3:aa:25:9c:3e:0a:0f:db:56:a3:f0:
5a:c2:95:51:a0:29:fa:34:46:be:32:30:87:d4:c8:
4d:e5:3d:95:7b:29:ba:91:0e:1f:de:d1:de:df:7f:
08:60:a2:68:46:4f:a3:65:3e:b5:7a:2c:a6:25:a6:
06:31
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
17:D9:D6:25:27:67:F9:31:C2:49:43:D9:30:36:44:8C:6C:A9:4F:EB
X509v3 Subject Key Identifier:
2D:F0:70:7D:FF:AE:7F:08:44:E8:E7:D0:4F:DE:3C:40:B2:4B:AE:B1
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.6449.1.2.1.3.4
CPS: https://sectigo.com/CPS
Policy: 2.23.140.1.2.2
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.sectigo.com/SectigoRSAOrganizationValidationSecureServerCA.crl
Authority Information Access:
CA Issuers - URI:http://crt.sectigo.com/SectigoRSAOrganizationValidationSecureServerCA.crt
OCSP - URI:http://ocsp.sectigo.com
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : May 17 14:12:03.452 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:BC:10:8B:4D:DA:8B:DE:11:FE:56:05:
59:27:8A:C1:05:40:CB:40:BA:F2:B7:2F:E8:0C:A1:C2:
98:91:A5:CB:E0:02:20:37:F3:33:21:DA:D4:74:A4:07:
2B:65:7E:C7:1D:46:50:6E:29:52:A1:AD:C0:11:10:EF:
19:8B:20:78:32:F9:C0
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : May 17 14:12:03.373 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:BF:01:F9:4D:B3:16:6E:CE:B2:FF:4B:
DE:69:C9:E7:98:83:E5:65:2E:8E:AA:A3:54:FF:22:DE:
07:40:78:17:8A:02:21:00:B7:47:F7:B4:33:11:33:0A:
EE:D2:8B:E9:B9:8B:1C:B2:2F:18:E2:B8:0B:53:E2:B3:
17:52:E4:39:7D:2C:82:1A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
Timestamp : May 17 14:12:03.366 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:21:F0:C3:ED:F1:4A:78:6C:45:39:4D:A4:
80:F4:E7:7A:D5:87:6D:68:26:A2:CC:8A:43:3C:6A:31:
4E:A1:D6:55:02:21:00:A9:E1:B6:7C:E5:29:63:C5:A8:
DA:9E:E5:B3:8D:5E:82:0F:41:BA:A0:E8:49:52:D1:18:
4C:D0:D8:EB:3A:4C:DC
X509v3 Subject Alternative Name:
DNS:orchestra.airliquide.com
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
67:d5:68:78:6e:3e:fd:a7:a6:af:dc:54:25:cc:17:94:78:89:
79:d9:4f:50:84:c9:cf:bd:23:12:82:39:10:e6:5d:29:93:af:
fc:2d:5b:e8:46:84:47:a8:56:ed:1d:cf:60:c4:e9:2d:7e:89:
c0:9f:a5:20:e5:03:15:bb:56:d1:1d:c6:f0:af:4d:01:8d:4c:
65:a4:62:5a:60:00:67:b1:d4:64:67:60:4d:29:13:96:3b:7a:
a9:24:df:e7:ea:48:a9:3d:40:fb:2b:f6:1e:a1:d6:22:34:76:
91:e3:c4:fb:1e:f9:b9:a1:bf:c8:a0:e2:f8:a5:0c:f6:4e:eb:
e3:fd:f0:23:a0:fa:f1:87:94:9b:e5:22:e2:dc:6e:b7:31:ad:
9c:4f:a5:3e:80:9e:06:39:75:d6:42:a1:15:88:ab:a4:3d:75:
eb:08:66:dc:00:ff:de:15:5f:5b:8e:8f:38:24:8d:68:09:55:
65:48:a9:a8:09:65:b8:46:57:80:3c:21:09:8a:ca:74:95:13:
61:cd:19:ce:a3:4e:db:cb:06:c3:40:e5:42:eb:c0:04:4a:3c:
f4:de:f9:c8:44:e5:8c:68:c0:dc:ac:1f:82:ff:aa:d2:57:94:
ff:6f:5e:aa:4c:0d:fb:0f:53:7a:2a:02:08:b2:76:40:fc:86:
22:2c:a1:7b
1645047850 | 2024-12-28T19:48:11.234199
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: AL-SVR-01
NetBIOS Domain Name: AL-SVR-01
NetBIOS Computer Name: AL-SVR-01
DNS Domain Name: AL-SVR-01
FQDN: AL-SVR-01
; Administrator
SES
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7a:08:db:0d:8a:d4:c1:b3:46:85:cc:8e:1d:53:ec:f2
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=AL-SVR-01
Validity
Not Before: Sep 1 01:39:00 2024 GMT
Not After : Mar 3 01:39:00 2025 GMT
Subject: CN=AL-SVR-01
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ba:88:e7:cb:c1:bf:6d:2f:9c:79:bb:46:f5:8e:
e8:32:4b:7f:66:9b:3f:d9:e7:81:9e:1d:f4:bb:db:
05:e7:94:f4:9e:53:72:bb:44:9d:ac:ac:40:00:31:
dc:2d:46:a2:40:ee:64:f9:8b:e5:0d:64:99:43:ee:
6d:5f:b2:2f:49:f8:e6:92:ee:0c:1d:f7:f9:be:4a:
d5:bc:4c:28:9f:4f:da:eb:c5:d6:84:e4:1a:72:16:
24:24:64:42:5d:11:92:88:be:5a:64:4f:a8:af:6d:
9c:98:cd:c5:e7:ff:36:33:18:04:0c:94:78:8a:2f:
07:1e:3a:4e:b2:34:90:1f:ea:33:4f:54:71:09:cd:
3f:92:7b:f7:ae:cd:00:24:d1:80:65:10:72:b0:12:
3c:e5:4b:8d:52:ea:d7:4f:38:d9:22:d2:d1:f1:9c:
94:fb:ea:e6:2a:e4:56:d1:eb:d0:1f:3b:20:12:c9:
02:b4:20:f9:f9:7d:50:31:81:3b:87:28:0f:c7:d3:
a0:ab:bb:b2:04:07:d7:95:5d:cd:d9:4f:13:34:80:
19:90:ae:b1:98:69:ef:17:cd:06:f5:86:19:54:60:
b7:9e:fa:80:6d:63:e6:dc:fa:44:2b:7e:17:c8:ed:
b2:e1:c8:b0:b5:da:91:5a:bf:7c:a7:5e:fb:8e:96:
c7:19
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
9b:01:8b:1b:c6:f1:bd:13:25:58:6f:8f:ec:f2:2c:21:b6:3a:
ea:cd:e9:65:0d:58:e5:ac:d6:28:26:42:65:ba:32:fc:39:39:
87:58:df:88:e8:47:ae:13:e4:11:c0:3c:9e:34:08:67:ca:fc:
2d:3f:47:c7:83:b4:80:f5:66:68:1f:82:13:9f:ad:cf:be:3b:
c7:10:87:fd:6b:58:7d:c3:ee:46:f1:94:b2:a7:5e:9a:9f:ab:
89:3a:94:56:8b:ec:0c:9f:31:fe:0d:ff:2b:e3:99:bd:01:66:
b5:63:39:ce:19:9f:b2:65:79:26:32:a5:ec:5e:ef:59:7a:7e:
c7:ae:62:a2:22:48:3f:39:08:94:b2:b8:73:7c:5e:2d:e1:ec:
b9:de:6c:d7:5d:14:b8:0c:e4:71:d4:1d:06:22:6c:cc:5d:56:
ba:0c:fc:76:39:10:32:90:98:13:87:0b:f7:c0:8f:66:e2:c5:
c4:fb:36:d8:7d:a8:cc:aa:b8:34:aa:75:44:11:43:a5:d4:f0:
c3:58:5b:d7:07:8b:76:0f:17:cb:8e:92:4e:36:38:96:b2:61:
a8:93:45:5c:ed:dd:1b:41:49:77:f3:40:ef:8f:e2:17:9f:e4:
2b:9f:0c:b7:c8:2d:1a:32:9b:0d:30:fc:b4:3f:b0:12:0f:51:
71:74:11:cd