624015744 | 2024-12-31T13:22:33.577617
23 /
tcp
22450833 | 2025-01-07T21:37:26.089519
80 /
tcp
HTTP/1.0 200 OK
Cache-Control: no-cache, no-store, must-revalidate
Pragma: no-cache
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Content-type: text/html
Expires: 0
X-Frame-Options: SAMEORIGIN
Content-length: 12370
Connection: close
-389752585 | 2024-12-28T11:36:41.977311
443 /
tcp
HTTP/1.0 200 OK
Cache-Control: no-cache, no-store, must-revalidate
Pragma: no-cache
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Content-type: text/html
Expires: 0
X-Frame-Options: SAMEORIGIN
Content-length: 12370
Connection: close
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
f1:e4:41:95:8b:b0:2e:c0
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=TW, ST=HsinChu, L=HuKou, O=DrayTek Corp., OU=DrayTek Support, CN=Vigor Router
Validity
Not Before: Jan 9 10:14:18 2024 GMT
Not After : Feb 7 10:14:18 2025 GMT
Subject: C=TW, ST=HsinChu, L=HuKou, O=DrayTek Corp., OU=DrayTek Support, CN=Vigor Router
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c3:31:ac:0c:9e:64:ee:5c:f3:fe:f8:61:fe:a0:
42:25:c3:17:55:cc:db:68:ee:dd:28:4b:ce:2a:ca:
b4:57:ce:8d:9a:55:e9:46:ac:f3:3a:5b:ff:58:a7:
10:1a:c5:32:48:e7:f9:1e:a7:68:ae:a6:85:54:0d:
65:1d:2f:f9:0f:95:ac:69:23:c9:7e:6b:cf:31:6f:
00:ee:f7:03:f2:9e:9d:ca:78:ea:e7:32:7a:4a:fb:
c5:5a:8a:8f:38:2a:6b:19:af:db:56:9b:6f:c0:b1:
ac:c1:76:7a:60:ab:85:2b:87:7c:66:87:60:a8:8e:
48:b2:03:1d:0a:26:0d:b0:31:05:34:78:44:82:64:
8b:68:25:f9:0d:e1:e3:ed:e8:b5:00:93:76:89:1e:
9a:88:93:75:e2:c9:b3:19:84:88:a9:1d:e0:7a:5e:
2b:4e:09:78:b0:2c:40:3d:46:05:1b:e4:9e:d2:44:
72:fa:0a:f5:10:8e:2a:a1:39:52:00:64:40:84:20:
ee:9b:a7:57:9e:17:82:d8:46:f2:2b:da:30:6a:8f:
17:b9:55:36:30:27:94:7d:14:df:24:e0:45:9e:f5:
32:a3:4b:04:0f:57:52:90:36:50:19:e1:87:09:d9:
48:a4:0e:a2:9e:57:a0:8e:01:08:42:63:8d:9c:8b:
37:ff
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Subject Alternative Name:
DNS:www.draytek.com
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
47:b8:64:18:2f:cf:0f:ca:dd:bb:43:7b:4e:df:b8:a6:6e:3e:
08:a0:10:d7:43:65:9c:50:86:88:42:8f:59:56:a7:13:22:2f:
5b:74:a2:2c:5b:d7:8e:f7:52:e5:ff:cf:69:d3:10:27:5d:37:
15:b7:0d:d7:b2:dc:1d:51:76:db:a5:95:e5:b2:34:c8:96:62:
72:ee:4f:af:e1:ad:d3:3e:61:ac:57:15:8a:b8:f3:10:75:ab:
ef:bc:54:1e:79:48:c1:16:2f:bb:0a:14:73:25:91:e3:c5:32:
67:6e:ba:dd:3a:f0:f9:30:8f:b2:d9:e6:02:d1:6f:d0:4b:bf:
ff:1c:14:e6:fb:38:8f:2c:a5:aa:2d:17:18:41:dc:9f:1e:8a:
42:42:04:bf:0a:8d:5f:0d:60:89:47:a1:f0:ac:47:a7:9d:8e:
b1:b1:83:97:ba:82:16:9d:b8:7b:89:3a:9d:d5:1e:ce:1b:bf:
52:90:25:99:15:db:5e:7d:fd:44:2a:26:ef:65:b3:fa:1f:02:
b9:45:ef:35:8b:7d:cb:cc:ea:9d:a6:9d:bb:6b:16:c2:c1:a6:
dd:d0:8b:67:07:5c:3d:10:2b:c6:04:ab:24:82:15:11:ef:b9:
f1:8d:48:80:22:78:6d:4e:38:d6:7b:25:63:96:b9:b1:b2:8c:
ba:fa:0a:5c
1732327417 | 2025-01-09T07:47:22.605686
1723 /
tcp
PPTP:
Firmware: 1
Hostname: Vigor
Vendor: DrayTek
1626441682 | 2025-01-10T11:08:19.166746
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 2004)/Windows Server (version 2004)
OS Build: 10.0.19041
Target Name: GMOFFICE
NetBIOS Domain Name: GMOFFICE
NetBIOS Computer Name: GMOFFICE
DNS Domain Name: GMOFFICE
FQDN: GMOFFICE
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
1e:72:b8:9e:b4:68:95:a4:40:78:86:e1:3e:94:e6:b5
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=GMOFFICE
Validity
Not Before: Oct 19 11:36:23 2024 GMT
Not After : Apr 20 11:36:23 2025 GMT
Subject: CN=GMOFFICE
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:92:f7:61:bc:0c:61:fe:4b:9f:15:0a:fb:7d:b0:
6e:7a:83:16:6e:f7:27:bf:5d:79:fe:26:ba:6a:d6:
bc:d8:89:47:75:07:ea:68:0f:1d:64:4b:b4:2b:6c:
f6:1c:1b:4c:0d:a4:cd:c1:e9:3e:1c:56:49:a7:42:
3f:c1:20:6a:1f:1f:ff:86:f4:a3:b1:b5:ac:01:55:
6b:08:4d:13:0a:bf:17:5f:f2:8c:7c:2a:a7:52:42:
b0:0c:d7:ba:cf:a2:1a:40:fa:a4:20:20:22:ce:04:
d7:95:f3:8c:5d:de:a6:04:4d:ce:3d:e5:a9:3e:e0:
8e:07:3b:39:e2:8a:d3:62:9f:e7:c0:c6:92:14:9b:
77:ce:08:f1:76:97:36:c8:a0:ca:a1:37:64:58:fe:
37:74:3e:57:a5:60:8e:59:2e:de:d4:5a:17:5c:7d:
f0:80:37:80:09:de:1e:e1:8f:a5:a3:38:ec:02:24:
7f:01:60:97:f5:93:cc:9c:1e:79:d2:43:e1:2f:97:
6b:75:d1:d4:b1:2e:80:24:c3:1a:4d:45:53:1c:79:
33:93:44:28:1e:6c:dd:8d:17:0e:34:52:1f:e2:5b:
da:ed:11:8d:39:29:59:14:89:27:cc:41:b1:77:e7:
3c:cc:6f:ea:a4:4d:c5:b4:33:fa:90:03:9b:ca:6e:
84:89
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
66:9f:cd:66:cc:12:4d:fe:5c:ed:6e:49:27:90:1f:9f:35:90:
a1:92:b5:58:a9:ec:76:fa:dd:91:49:66:db:c5:84:7d:e7:8c:
38:2a:a2:6d:6d:e4:43:67:a7:83:df:08:2f:20:8f:4a:3c:df:
a1:e7:b9:f1:90:85:cb:c6:d5:b9:04:4e:73:8e:90:b5:6b:a8:
f0:a8:b9:61:8b:a8:9a:07:15:d6:0b:d3:dc:e4:07:42:8e:44:
a2:4e:75:e8:ca:6a:55:ea:71:7f:2b:3d:cb:60:fb:c7:7d:e7:
eb:3d:d5:fd:b9:76:1e:19:ae:47:67:c9:11:fb:cc:79:b4:9a:
09:79:dd:ab:1e:fe:01:f5:9e:6e:3c:a6:22:53:af:6c:06:67:
39:3d:74:52:2c:65:9a:33:91:d4:69:28:6d:8f:7b:5b:58:92:
81:35:86:b3:3e:b0:3b:69:19:69:a5:04:9e:8f:f3:31:d3:62:
d3:b1:13:b8:1c:0e:9c:f7:f8:51:72:47:8c:01:7c:21:53:a5:
d9:9a:8a:e6:4a:4e:20:d0:eb:28:08:54:76:93:61:e6:d4:13:
32:b7:db:3a:40:0e:49:05:01:50:d3:3f:ee:03:05:c8:0e:56:
0c:7f:1c:10:4c:da:5a:4a:0d:26:c5:83:7a:6b:f1:76:2b:4b:
c4:69:a0:ce
-1344393306 | 2024-12-22T19:07:37.944351
4430 /
tcp
HTTP/1.1 400 Bad Request
Date: Sun, 22 Dec 2024 19:07:36 GMT
Server:
Strict-Transport-Security: max-age=0
X-Frame-Options: SAMEORIGIN
Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' ; object-src 'self' ; worker-src 'self' blob:
Content-Length: 362
Connection: close
Content-Type: text/html; charset=iso-8859-1
-558771039 | 2024-12-26T17:43:13.247853
8080 /
tcp
HTTP/1.1 200 OK
Date: Thu, 26 Dec 2024 17:43:15 GMT
Server:
X-Frame-Options: SAMEORIGIN
Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' ; object-src 'self' ; worker-src 'self' blob:
Content-type: text/html; charset=UTF-8
Last-modified: Wed, 13 Nov 2024 20:09:28 GMT
Accept-Ranges: bytes
Content-length: 580
Vary: Accept-Encoding
X-XSS-Protection: 1; mode=block
X-Content-Type-Options: nosniff
QNAP:
Hostname: server01