-2138514981 | 2024-11-15T15:05:44.061073
25 /
tcp
220 mailserver.usa-co.com ESMTP
250-mailserver.usa-co.com
250-SIZE 20480000
250-AUTH LOGIN
250 HELP
-985096807 | 2024-11-10T13:26:40.673099
80 /
tcp
HTTP/1.1 403 Forbidden: Access is denied.
Content-Type: text/html
Server: Microsoft-IIS/10.0
X-Powered-By: ASP.NET
Date: Sun, 10 Nov 2024 13:26:40 GMT
Content-Length: 1233
-1283034168 | 2024-11-15T15:05:41.753736
110 /
tcp
+OK POP3
+OK CAPA list follows
USER
UIDL
TOP
.
396487187 | 2024-11-14T11:38:38.197650
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html;charset=UTF-8
Server: Microsoft-IIS/10.0
Set-Cookie: ASPSESSIONIDQEQTAASD=NEEKNIDCFOIADCKEHGOALHOA; secure; path=/
X-Powered-By: ASP.NET
Access-Control-Allow-Origin: *
Access-Control-Allow-Headers: Content-Type
Access-Control-Allow-Methods: POST,GET,OPTIONS
Date: Thu, 14 Nov 2024 11:38:37 GMT
Content-Length: 159894
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:32:7e:25:49:35:a7:86:1c:8d:9c:fc:b1:23:1b:ac:55:3c
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R10
Validity
Not Before: Oct 7 06:35:57 2024 GMT
Not After : Jan 5 06:35:56 2025 GMT
Subject: CN=canada-co.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (3072 bit)
Modulus:
00:b2:87:d5:31:5f:59:1b:b8:8f:02:a9:7a:d6:3f:
6f:6c:ea:1a:9b:79:1b:32:8f:a6:a5:6d:9b:10:cb:
95:4f:14:98:a7:9f:0d:cf:1e:fa:07:de:89:51:85:
bc:77:37:a7:b8:4a:fe:41:53:ea:0c:be:c1:9d:99:
f6:59:66:71:26:ab:3b:d2:67:22:ae:59:3d:96:7c:
a3:c5:c4:f3:77:3f:c9:5c:24:49:38:8d:84:ec:52:
e2:78:37:54:93:e5:11:f0:03:d7:8f:0e:5a:3f:1a:
2d:38:55:a7:06:dd:4a:4e:e8:38:b9:8f:3b:78:21:
b0:77:ea:5a:9a:7d:12:8b:0a:6b:99:9f:de:4d:bb:
f7:3f:e0:98:e3:01:b7:ce:e6:a7:bf:c6:36:91:c4:
70:0b:b8:a5:23:ac:f4:5c:c5:c8:96:ed:d3:ec:3a:
a4:73:d1:56:52:8d:bf:2e:17:14:b5:f0:22:67:86:
01:a2:60:0a:d6:3e:81:1d:c9:29:86:2f:91:eb:d2:
95:93:79:d2:4a:be:ff:15:a7:00:ed:0f:75:f4:b2:
4f:4b:42:75:cb:a9:4e:70:9d:c2:03:50:ab:d5:1a:
bc:ec:8f:31:ad:e7:14:47:ec:6e:87:b8:8e:3d:da:
31:a9:7b:ac:9c:67:c5:49:7d:bd:84:f1:80:d0:4e:
34:ae:7d:8e:35:28:f6:26:45:34:de:c5:37:9d:1c:
b1:38:7a:40:4e:51:c1:f3:8e:d1:f4:ba:58:47:0d:
30:97:49:9a:34:db:97:25:15:b0:0a:fa:ee:95:fa:
ce:d6:a3:5f:90:91:af:86:b0:0b:ef:63:2a:a8:98:
5a:b0:2f:0b:15:aa:14:d1:6e:b1:fb:33:cb:82:d9:
6b:19:0e:8e:0e:21:e6:69:5d:e1:59:56:87:55:f5:
18:53:dc:28:20:bc:fe:37:e5:a1:16:95:e1:7c:a9:
2e:58:98:93:95:f2:84:f5:39:ce:41:94:17:79:df:
d3:f8:21:b0:d6:1b:69:07:f1:f3
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
A5:58:1B:06:6D:7C:64:2D:D7:44:7D:77:B1:23:2E:EF:32:58:0E:9C
X509v3 Authority Key Identifier:
BB:BC:C3:47:A5:E4:BC:A9:C6:C3:A4:72:0C:10:8D:A2:35:E1:C8:E8
Authority Information Access:
OCSP - URI:http://r10.o.lencr.org
CA Issuers - URI:http://r10.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:canada-co.com, DNS:www.canada-co.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Oct 7 07:34:27.300 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:83:6D:49:CD:4A:1B:8B:4B:06:56:B0:
8C:F1:7C:E2:1E:8A:CB:98:32:12:F1:54:5A:20:33:68:
25:8B:DB:A5:D5:02:20:50:49:22:7C:37:4F:D0:D6:63:
79:E0:8B:E2:4E:77:9E:57:E7:6F:0B:5F:25:0F:AF:73:
90:53:B0:BD:B0:8C:86
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
Timestamp : Oct 7 07:34:27.309 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:F8:99:4B:B3:18:CD:B2:36:00:EF:3D:
49:60:00:45:B4:3C:80:3C:FB:AC:1D:31:F2:41:55:ED:
64:8A:83:E0:3D:02:21:00:FC:2D:F8:05:4A:50:8C:75:
93:1E:B5:0E:06:17:65:13:AD:83:5B:F9:A5:34:8F:F1:
D6:82:DF:AD:70:FF:91:F6
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
33:ca:21:4d:55:e8:4b:81:84:2e:7a:bd:e4:ed:8d:7b:a3:55:
d1:42:0e:2c:c0:44:65:55:32:77:70:95:4e:e2:6a:e3:a1:60:
61:a5:4c:d4:a5:6b:f6:43:2f:65:a4:25:19:71:6f:f1:dc:c3:
a1:40:1f:16:73:b6:e6:1e:9c:c4:32:81:0b:2b:06:27:db:43:
1b:a0:28:59:f9:e2:bb:14:bc:72:6e:83:46:9f:c9:0a:b1:0c:
e2:04:0e:59:44:de:70:d4:38:27:de:3d:dd:d9:aa:d2:31:af:
41:1e:1d:bc:21:90:ca:27:4c:57:a7:76:c5:c5:d5:80:6b:66:
52:31:8f:08:a7:0f:c4:95:3b:0a:44:91:10:b0:44:77:42:eb:
90:c5:88:8a:de:5c:90:34:da:ba:ca:2c:70:1c:14:a7:3c:75:
b6:f9:aa:64:48:03:39:78:00:86:f9:64:da:22:43:57:3c:e9:
60:90:58:13:86:44:bd:1e:aa:41:fb:50:74:3e:24:0c:6e:46:
78:08:ec:53:59:b5:2f:cf:20:eb:76:04:a4:7e:95:ee:12:37:
96:7b:bb:7e:28:54:2c:a1:40:24:48:07:36:8e:c6:31:13:5a:
5f:34:49:99:07:94:e4:20:3a:cd:9f:26:1c:b3:6a:d0:56:f5:
68:a6:a8:65
-96294589 | 2024-10-28T14:13:18.452113
3306 /
tcp
MySQL:
Error Message: Host '224.237.27.242' is not allowed to connect to this MySQL server
Error Code: 1130
1229818044 | 2024-11-15T15:05:50.061586
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1607)/Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: A4BFADE
NetBIOS Domain Name: A4BFADE
NetBIOS Computer Name: A4BFADE
DNS Domain Name: A4BFADE.online-server.cloud
FQDN: A4BFADE.online-server.cloud
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
59:fa:12:19:2b:aa:12:95:44:29:da:a1:17:12:f1:1e
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=A4BFADE.online-server.cloud
Validity
Not Before: Aug 31 16:30:32 2024 GMT
Not After : Mar 2 16:30:32 2025 GMT
Subject: CN=A4BFADE.online-server.cloud
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:dc:0d:88:43:a9:20:04:44:76:39:f1:7e:0a:a1:
fb:81:7c:a6:6a:47:62:ab:23:19:8f:be:ad:f3:31:
47:ba:59:6b:e1:da:62:20:7e:24:bb:f3:bd:b7:ab:
8d:20:a0:9e:3c:98:53:d7:38:6c:90:7f:bd:8e:1b:
1e:ad:c4:5b:d3:6b:33:61:a5:aa:f4:2c:14:a2:db:
e5:54:d1:d9:e1:91:59:7e:a6:fe:81:e2:65:52:06:
f4:c1:2e:22:99:f3:d0:a2:19:8c:6e:ac:60:33:e0:
2f:57:12:a1:ed:46:22:4c:dc:14:fc:c9:a1:e6:d5:
92:fb:0e:1d:18:45:65:d0:47:25:69:35:83:75:21:
6d:1d:42:37:14:e1:ce:72:26:67:79:15:11:f7:b6:
2a:e4:39:c5:05:f3:37:2b:f5:71:67:a5:19:b7:c7:
eb:9f:b4:bd:b0:58:5b:c4:8a:39:33:ba:84:6b:94:
b6:9a:37:63:95:26:62:26:bc:ec:98:89:1a:e4:42:
44:94:67:e7:59:d9:a1:02:dd:98:e5:48:51:7c:71:
11:48:01:9a:10:2b:cd:f8:10:f4:de:56:91:12:40:
0c:97:4f:01:85:ca:40:23:35:fa:b3:fb:c6:da:b1:
37:a2:df:2d:1b:55:0c:f6:bc:5c:ba:90:dc:ab:f6:
94:93
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
57:cf:5c:1a:c4:5f:b6:72:a5:f0:52:3a:c9:45:43:0a:d9:d3:
de:37:ae:79:1d:7f:9f:74:0a:f3:6a:2a:d9:66:68:ec:a5:05:
02:ce:fe:87:e1:57:a6:b8:00:89:05:98:c2:d5:af:ff:98:9d:
bc:97:19:99:3a:db:af:e0:92:92:47:97:e3:8b:cc:d3:f6:bf:
7a:60:ba:c3:c8:8b:98:e3:33:8c:21:79:93:2e:2d:74:a7:b1:
6d:84:a6:6e:e3:d1:2f:24:56:01:ef:fe:9f:a3:ad:46:dc:e2:
17:2b:1b:93:6d:9e:fa:d2:b6:3c:86:fe:fe:ef:ed:70:ef:88:
94:8e:e3:ae:c1:d4:2a:28:39:9f:2e:8a:9e:ec:eb:3a:de:26:
25:bc:44:9b:c8:da:a9:89:45:2f:cd:1b:6a:e3:24:9c:9c:8b:
95:7d:30:c4:73:3d:b0:cc:1a:e2:b9:48:43:a6:6d:d2:80:77:
ba:d5:bb:25:b5:72:cb:c7:90:01:7d:43:dd:47:4b:ec:f2:ba:
03:2e:0f:9c:b3:e5:a3:0d:f2:74:92:74:6c:3c:09:3f:d7:27:
88:1f:ec:15:fe:c8:b6:29:c4:06:28:d2:ae:50:89:74:5c:97:
e4:c7:94:3e:77:9a:eb:8d:08:45:3c:94:23:9f:00:02:b8:1c:
3a:56:89:b4