-944696113 | 2024-12-28T17:00:11.096783
80 /
tcp
HTTP/1.1 401 Unauthorized
Content-Type: text/html
Server: Microsoft-IIS/10.0
WWW-Authenticate: Negotiate
WWW-Authenticate: NTLM
WWW-Authenticate: Basic realm="95.170.233.170"
Date: Sat, 28 Dec 2024 17:00:11 GMT
Content-Length: 1335
HTTP NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: BAUTOPSERVER
NetBIOS Domain Name: BAUTOPSERVER
NetBIOS Computer Name: BAUTOPSERVER
DNS Domain Name: BAUTOPSERVER
FQDN: BAUTOPSERVER
-319991952 | 2024-12-22T04:42:00.800482
443 /
tcp
HTTP/1.1 202 OK
Connection: Keep-Alive
Content-Length: 1999
Content-Type: text/html
Keep-Alive: timeout=15; max=19
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 0 (0x0)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=vpn370848647.softether.net, O=vpn370848647.softether.net, OU=vpn370848647.softether.net, C=US
Validity
Not Before: Feb 16 21:55:08 2021 GMT
Not After : Dec 31 21:55:08 2037 GMT
Subject: CN=vpn370848647.softether.net, O=vpn370848647.softether.net, OU=vpn370848647.softether.net, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a1:e8:7a:d5:2c:24:8d:d4:ae:fc:4e:c7:cc:6e:
58:5f:28:37:d6:7a:cd:db:05:84:50:e8:47:7b:46:
83:d4:76:04:5e:64:e8:da:79:f8:40:d8:c7:2d:b1:
06:5c:a7:37:e1:2c:c8:f8:e8:f5:a3:fc:8a:29:55:
ee:7b:bc:2b:bc:26:db:46:f2:23:c3:eb:00:4e:4d:
d2:6b:10:7a:6c:76:5a:b2:f3:5b:9b:6d:00:fc:90:
ba:48:8f:f0:b1:88:e1:2a:e8:bd:27:e5:41:6f:79:
a8:c6:ac:7c:a2:e3:5e:4a:31:3f:28:08:f0:b6:5d:
85:98:6a:4e:f5:aa:7b:63:6f:a9:a6:e1:08:63:57:
47:83:9f:b1:f5:a0:28:4a:05:a9:73:ec:59:e4:48:
17:5c:59:63:30:30:d1:93:ab:4a:45:70:85:eb:1f:
29:d6:54:e8:20:68:ce:3f:a1:a7:2c:de:f2:b7:d5:
d7:a5:d7:a6:9d:dc:97:fa:ab:82:4a:a7:ec:93:5e:
e0:62:32:4b:76:53:e3:8d:3f:4f:e6:e9:d2:a0:a1:
f6:2b:4a:b8:70:ee:89:8d:e1:5e:9c:9a:23:04:a3:
09:d7:f4:79:f5:35:03:af:3a:0b:39:ea:b2:57:36:
1e:57:1c:ad:6f:ec:46:62:3c:a6:c8:12:36:3f:8f:
4f:9f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage:
Digital Signature, Non Repudiation, Key Encipherment, Data Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication, Code Signing, E-mail Protection, IPSec End System, IPSec Tunnel, IPSec User, Time Stamping, OCSP Signing
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
6a:80:4e:5d:98:b7:a3:f6:1b:fa:77:88:45:a6:3c:8c:58:88:
f6:50:cf:20:e1:d0:14:73:0d:9f:1c:16:59:4d:3c:2f:59:1b:
f6:91:16:ee:32:5f:e2:20:23:26:26:ff:ef:48:3d:0a:c7:ad:
0a:c2:42:6c:d3:f4:72:e5:01:ce:82:86:17:7b:3c:e0:04:8a:
d4:43:18:94:6f:e1:d0:bd:96:c4:a9:09:f3:ec:02:9f:ee:d8:
99:6e:71:18:20:75:86:fa:89:8e:96:c8:67:0e:fd:c6:98:4b:
ab:4e:98:c7:f1:1d:fb:4d:b3:10:b2:4c:08:71:8e:ff:0d:e9:
36:05:c0:06:9f:81:c8:d5:97:c1:48:c2:48:ff:b7:c4:6a:e3:
55:e9:a3:79:e7:de:32:17:c2:ba:26:9b:6c:42:43:8d:ee:dd:
b4:e3:6f:2c:b3:c8:74:57:01:e3:31:c6:58:41:38:a7:e7:b7:
fe:67:df:d6:b1:ac:ce:0c:c4:ce:61:bc:f3:af:8d:92:c1:87:
2e:74:da:c9:0a:cf:e7:ba:01:6e:0e:c6:8e:68:b4:cb:08:b6:
37:2f:58:55:d3:fd:0d:02:f6:0d:91:22:4b:70:8d:b5:43:ea:
3c:25:e5:a7:e0:c7:85:2c:5c:9c:06:ab:d4:32:5a:b8:3b:f0:
5e:ff:ac:36
-697431164 | 2024-12-26T10:08:01.851489
1194 /
udp
@\xd7&z\x9c}\x16_\x9d\x01\x00\x00\x00\x00\xd9\xce:\xbe\xf6\x98\xa5m\x00\x00\x00\x00
-1641789004 | 2024-12-23T13:03:58.146215
1434 /
udp
SQL Server Browser Service:
Instance #1:
Server Name: BAUTOPSERVER
Instance Name: POHODASQL
Is Clustered: False
Version: 15.0.2000.5
TCP Port: 49728
Named Pipe: \\BAUTOPSERVER\pipe\MSSQL$POHODASQL\sql\query
Version Name: MS-SQL Server 2019 RTM
1451786735 | 2024-12-26T20:21:04.219754
5001 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Thu, 26 Dec 2024 20:21:04 GMT
Content-Type: text/html; charset="UTF-8"
Transfer-Encoding: chunked
Connection: keep-alive
Keep-Alive: timeout=20
Cache-control: no-store
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT"
Content-Security-Policy: base-uri 'self'; connect-src data: ws: wss: http: https:; default-src 'self' 'unsafe-eval' data: blob: https://*.synology.com https://www.synology.cn/ https://help.synology.cn/; font-src 'self' data: https://*.googleapis.com https://*.gstatic.com; form-action 'self'; frame-ancestors 'self'; frame-src 'self' data: blob: https://*.synology.com https://*.synology.cn; img-src 'self' data: blob: https://*.google.com https://*.googleapis.com http://*.googlecode.com https://*.gstatic.com https://global.download.synology.com; media-src 'self' data: about: https://*.synology.com https://help.synology.cn; script-src 'self' 'unsafe-eval' data: blob: https://maps.google.com https://ajax.googleapis.com https://help.synology.com https://help.synology.cn; style-src 'self' 'unsafe-inline' https://*.googleapis.com;
Synology DiskStation Manager (DSM):
Version: 7.1.1-42962
Hostname: DS918
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:13:e6:b7:41:b3:ec:16:cf:bf:fd:4c:b9:7b:1b:f7:cb:df
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Nov 27 14:29:07 2024 GMT
Not After : Feb 25 14:29:06 2025 GMT
Subject: CN=dh19531211.synology.me
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:56:a2:9d:85:98:33:13:d1:a5:4b:d7:c2:a5:95:
3a:95:50:a5:e5:af:a0:a4:31:de:39:af:08:3b:b4:
1a:91:25:3c:ad:04:1e:e5:00:87:f1:0b:39:05:2e:
05:a1:70:4f:03:99:60:d5:d9:90:ae:f7:83:9e:01:
50:31:8a:29:26
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
1F:70:65:0A:5E:9D:24:C0:34:87:56:BA:1E:ED:0D:3F:55:C3:6F:AE
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:*.dh19531211.synology.me, DNS:dh19531211.synology.me
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Nov 27 15:27:37.524 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:E6:C8:55:45:CD:F5:72:1F:2F:E7:22:
FD:39:77:B4:2C:B1:A6:2A:E9:43:67:FB:E9:93:EC:E7:
B7:19:E7:E8:2B:02:21:00:AB:25:AF:16:1D:C9:80:10:
BD:13:3A:70:5E:12:7C:50:B9:40:F7:17:48:8E:53:41:
29:1E:DE:02:E7:18:A2:A1
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 13:4A:DF:1A:B5:98:42:09:78:0C:6F:EF:4C:7A:91:A4:
16:B7:23:49:CE:58:57:6A:DF:AE:DA:A7:C2:AB:E0:22
Timestamp : Nov 27 15:27:37.761 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:64:9A:97:E7:24:1C:AC:4B:39:D1:64:9F:
FD:FF:7C:8C:2B:E1:00:73:18:12:3B:8D:B1:DC:2B:7F:
1D:FE:AE:8B:02:21:00:C9:5D:59:4C:A4:2D:C6:EA:20:
68:B5:BD:FA:F7:97:58:79:8A:14:25:68:2D:F6:FD:31:
A7:6C:E4:CE:8A:ED:04
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:30:12:dd:32:53:d0:09:22:22:b7:da:d6:c4:b1:d6:
f7:85:1f:30:98:bf:2a:eb:28:22:48:33:dc:58:03:5f:57:ca:
50:94:f6:92:4b:fc:7f:ac:30:50:5f:fa:37:21:e7:ea:02:31:
00:bf:5d:1a:55:21:1a:59:b4:73:6b:97:36:1b:53:f7:c7:4a:
94:37:d7:bc:96:92:4b:2c:26:56:a0:6e:32:df:b4:36:ff:08:
1d:ce:35:f6:a8:37:88:ca:23:a2:36:8a:90
-1085216742 | 2024-12-23T13:04:01.928795
49728 /
tcp
MS-SQL NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: BAUTOPSERVER
NetBIOS Domain Name: BAUTOPSERVER
NetBIOS Computer Name: BAUTOPSERVER
DNS Domain Name: BAUTOPSERVER
FQDN: BAUTOPSERVER