-363253457 | 2024-10-24T23:03:05.761776
22 /
tcp
SSH-2.0-OpenSSH_for_Windows_7.7
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQDJjJXhsJSHJcjbbm4MU7WbWbfmxfNMXYK1Fym8XVMD/Efx
TaWCpLb2IbHkr+7VJa7OpQ1zzhGWwrwMrjoECRyen2JXwqieZVFlQRU/jr1b33MfmyT/Dypxik4/
Im4skr1jEDOAO89gs/aqnJ4lq1Rk8laKXdp6oY4Xj3Hg+Pn4Qma6UFFDTPnW+nrUI3rcgDtCRWhs
A2S7NFXnJX483XjYWPpe/T/CCMnKumzROOJiBu8ihF9O8QyBYsivVt2M7CuwkuQDdjg5DY2Am5Oh
oVVKhywj0dvI89Yys0DHiSMxW4KCO6ezoYL2r4QNrKCyS2oCM4gPPeQjrusbMONTmDPr
Fingerprint: 22:4d:9c:cc:53:88:cc:33:c0:12:e9:ef:39:1c:93:b8
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group14-sha256
diffie-hellman-group14-sha1
Server Host Key Algorithms:
ssh-rsa
rsa-sha2-512
rsa-sha2-256
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
364110930 | 2024-10-30T22:29:32.937352
80 /
tcp
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Sat, 13 Apr 2024 12:09:56 GMT
Accept-Ranges: bytes
ETag: "ac1ae17f9b8dda1:0"
Server: Microsoft-IIS/10.0
Date: Wed, 30 Oct 2024 22:29:32 GMT
Content-Length: 13047
-1121687303 | 2024-10-05T14:06:16.479678
2345 /
tcp
HTTP/1.1 400 Bad Request
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 05 Oct 2024 14:06:16 GMT
Connection: close
Content-Length: 326
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN""http://www.w3.org/TR/html4/strict.dtd">
<HTML><HEAD><TITLE>Bad Request</TITLE>
<META HTTP-EQUIV="Content-Type" Content="text/html; charset=us-ascii"></HEAD>
<BODY><h2>Bad Request - Invalid Verb</h2>
<hr><p>HTTP Error 400. The request verb is invalid.</p>
</BODY></HTML>
923442282 | 2024-10-16T20:51:16.581633
3306 /
tcp
MySQL:
Error Message: Host '224.70.106.173' is not allowed to connect to this MySQL server
Error Code: 1130
-1289744733 | 2024-10-17T11:43:51.293195
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: S140373
NetBIOS Domain Name: S140373
NetBIOS Computer Name: S140373
DNS Domain Name: s140373
FQDN: s140373
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6f:d3:27:c3:5d:e2:68:a5:4b:d5:c4:b3:b5:33:e6:f1
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=s140373
Validity
Not Before: Jun 23 15:19:13 2024 GMT
Not After : Dec 23 15:19:13 2024 GMT
Subject: CN=s140373
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a4:94:d6:ef:bb:45:3a:da:29:38:7d:94:8d:68:
a2:44:59:0b:2c:c7:65:6c:4e:f9:29:fc:e7:5d:69:
0d:72:6d:6a:2e:b3:ad:ca:cf:a4:41:06:4f:96:fe:
fc:6d:47:35:3d:57:07:dd:57:b6:b5:9e:0f:a6:a7:
06:b5:90:fa:b6:fc:69:6e:bb:51:de:9a:ee:c1:c1:
2a:5d:3f:c3:2a:f9:12:e8:80:4c:63:08:f2:0d:68:
a9:24:c7:d8:6f:2f:90:36:31:f2:0b:d6:2d:2c:9d:
29:78:0c:dc:0a:53:24:5b:de:f9:bd:91:66:64:fb:
a6:fc:b3:b0:fe:70:e3:44:a7:dc:c9:2b:1c:af:dc:
5e:55:c3:e2:d1:70:ff:3f:d0:2f:cf:41:3d:b3:ff:
af:4d:bc:d2:da:10:8d:86:dc:0d:7b:aa:67:bc:74:
62:ca:31:d8:65:e9:17:0f:39:c1:ee:97:21:59:f6:
65:a1:65:37:50:a1:49:d7:f6:6b:2d:33:51:52:5c:
ec:8b:74:92:fe:88:94:aa:a5:cc:55:93:4c:82:f4:
ba:af:6f:42:ca:4b:d4:3a:7d:a7:f0:46:05:2b:ef:
ec:28:d6:06:6b:9c:68:9a:15:e7:7f:2e:71:7b:51:
8b:de:00:40:95:55:4d:7d:eb:c3:b0:83:62:02:b8:
77:ed
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
88:cd:b1:9d:dc:97:ec:1b:6e:18:55:72:aa:24:bf:13:3b:03:
5c:5b:30:f1:8a:99:47:44:33:ea:ac:aa:83:fd:67:6c:08:88:
96:9c:13:df:c2:df:d2:90:7f:2a:0f:4d:55:a7:5a:08:17:9e:
85:45:0f:af:b2:d6:1b:c7:62:13:5f:f3:0b:74:19:b0:9e:3a:
cd:6d:9e:ea:e7:10:93:60:67:c5:e1:0d:a6:36:28:d3:87:c2:
9a:dc:16:50:5b:6a:e2:89:8d:c8:4e:5d:28:b2:61:12:64:49:
97:2b:d4:cf:d9:de:f6:5f:15:bc:00:d3:fd:15:16:58:44:eb:
d1:cf:18:30:97:2a:69:e2:cf:08:8f:25:ec:7d:99:b0:3a:94:
ed:9b:11:1f:6b:b0:93:a8:42:08:1c:e1:79:20:02:0b:91:77:
ef:7a:61:d5:a5:2c:b8:c8:28:d9:26:49:3f:10:bb:fd:d6:cf:
21:20:55:80:cb:76:8f:62:a6:3c:ec:37:ce:0d:ff:cc:b1:f3:
7f:05:72:21:c5:f0:de:8c:d1:3e:24:8c:f2:38:e6:8c:13:75:
b8:a6:09:ca:77:1f:6b:47:18:3b:b8:ac:3e:70:98:14:b8:72:
a2:a1:47:5a:f7:4d:0a:6f:ab:f1:39:b1:e2:39:b0:d2:ac:d1:
e1:8e:f3:95
955000266 | 2024-10-29T17:51:43.910251
4444 /
tcp
HTTP/1.1 400 Bad Request
Upgrade: WebSocket
Connection: Upgrade
Sec-WebSocket-Version: 8, 13
864306896 | 2024-10-10T23:10:29.598988
8443 /
tcp
HTTP/1.1 401 Unauthorized
Date: Thu, 10 Oct 2024 23:10:24 GMT
Server: Apache
X-Frame-Options: SAMEORIGIN
WWW-Authenticate: Basic realm="VisualSVN Server"
Content-Length: 381
Content-Type: text/html; charset=iso-8859-1
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
77:b2:19:f7:35:97:26:8e:42:16:60:8d:61:ef:d3:f8
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=s140373
Validity
Not Before: May 31 04:54:20 2022 GMT
Not After : May 28 04:54:20 2032 GMT
Subject: CN=s140373
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c2:7c:50:78:da:83:2d:98:3b:03:08:99:2b:56:
79:22:0a:36:fb:95:ff:18:3c:e3:58:08:1b:60:a0:
9a:59:eb:93:17:30:cd:de:34:fa:68:e9:40:4f:cd:
95:88:c1:d2:66:5c:0d:71:09:96:db:ab:74:6a:11:
87:1f:e9:5e:83:41:05:f0:df:96:7a:ce:a8:5e:81:
10:8e:0f:11:b2:c2:be:38:6d:71:6c:79:b4:a8:74:
c5:76:ed:f4:77:ec:f0:40:7a:6a:a0:46:06:7f:d5:
1e:fd:cd:fc:c1:56:eb:8c:dc:49:f8:06:5d:62:b0:
a3:ce:e7:ae:3a:15:53:d3:5b:86:9c:f2:0b:d4:22:
12:ec:3c:87:52:07:fa:aa:ee:c0:06:f1:ab:d1:2b:
c2:62:04:0b:06:a8:45:14:00:80:7a:57:94:cd:9e:
22:21:e6:c6:b5:9a:b5:48:15:33:45:36:aa:da:57:
b4:b1:c7:e1:3c:a1:95:5d:0a:71:41:f3:6f:cb:e4:
67:2d:7a:b0:3d:4a:ec:42:d9:fe:b8:26:11:b2:b1:
aa:f1:0c:b9:07:8b:11:3a:0e:c8:d2:7b:34:1d:46:
4b:1c:9e:87:c3:25:9b:7f:6c:fa:aa:c3:5c:88:81:
51:25:22:a5:6a:c4:68:23:c6:c6:fa:1b:8c:5b:ac:
49:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage:
Digital Signature, Key Encipherment, Data Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Subject Alternative Name:
DNS:s140373
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
bb:e5:9c:a7:8b:83:96:cf:8e:8c:98:d3:0b:d2:30:a8:b7:60:
5d:6a:c6:e7:22:75:46:fd:cd:22:ba:8b:5d:90:4f:fa:ec:de:
f5:66:97:19:45:ec:a4:0d:98:98:fa:50:81:15:75:68:66:d6:
53:d2:f5:60:5e:dc:34:54:ee:d9:5b:1d:f2:15:b0:f9:fe:6e:
fe:a0:45:2f:70:ef:49:d9:41:50:5b:fb:48:c9:8f:e3:51:e5:
6e:2b:eb:86:a9:b9:81:b1:92:05:1e:d6:d5:06:04:e8:29:ca:
5d:36:b3:99:73:13:c6:d0:fa:55:d7:a1:77:6a:e2:38:00:17:
2d:58:54:ca:9b:22:d1:e0:e1:f7:1b:4d:f8:78:6b:c2:40:14:
66:84:8d:f8:37:cc:a1:33:38:0b:09:b5:f5:7e:3b:0d:79:d6:
e8:a5:17:09:e6:d9:9e:c0:58:b1:50:fc:f8:50:26:9b:46:ce:
cc:2c:a9:97:4b:39:93:74:88:f2:e7:83:01:9d:de:b2:01:fd:
c5:8a:61:dd:da:a1:e2:72:15:34:c4:cc:3f:d5:ee:e3:f6:8f:
2f:b7:79:2b:6c:90:e9:81:26:0f:0d:e1:10:f7:f1:1d:1e:94:
2e:46:87:eb:72:73:55:e9:15:53:d7:b4:11:72:79:46:89:4d:
05:c2:38:60
-795948505 | 2024-11-01T22:05:32.983846
33060 /
tcp
MySQL X Protocol:
tls: False
authentication.mechanisms:
MYSQL41
SHA256_MEMORY
doc.formats: text
client.interactive: False
compression:
algorithm:
deflate_stream
lz4_message
zstd_stream
node_type: mysql
client.pwd_expire_ok: False