-1801899390 | 2024-04-17T10:58:26.559935
22 /
tcp
SSH-2.0-dropbear
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQDMnxpfG2YuX7shkx5rGE14VOn/mPugMHb2QqN5aaAkGL+T
Mj77IubVe+Ul6uIzkKA4mM0+QJznPuJf8ZDSTDtPzgI5AN59SkRGK20jrk5Mj8obHVxQXG2Ykera
T2xoqCfamxGfjuh6spop5Ngxxs0N3/VdsWuJ9Fs3k3+4qM0pbsdFgg0chtDfqTLyeSiz2WZya0LB
Z5tzOdRFVsX/NpEb75DxGSLLo/YeyNivqDjdY3HqP8iXRiG5J7xrmY4M7VnZWs1Dmgf2d1maGuKX
EOVAXZqMoEr7eNQYC+4VmuLlDqC9JRgXUMDMJIGd2Ma2nqX6qtx8ic2rLQAJqPgbRwgt
Fingerprint: 8e:56:5b:45:91:4a:1f:bd:af:95:d2:78:58:35:fd:82
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
diffie-hellman-group14-sha256
diffie-hellman-group14-sha1
kexguess2@matt.ucc.asn.au
Server Host Key Algorithms:
ssh-ed25519
rsa-sha2-256
ssh-rsa
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes256-ctr
MAC Algorithms:
hmac-sha1
hmac-sha2-256
Compression Algorithms:
none
1580862619 | 2024-04-25T20:23:55.356742
135 /
tcp
Microsoft RPC Endpoint Mapper
d95afe70-a6d5-4259-822e-2c84da1ddb0d
version: v1.0
protocol: [MS-RSP]: Remote Shutdown Protocol
provider: wininit.exe
ncacn_ip_tcp: 114.231.14.143:49152
ncalrpc: WindowsShutdown
ncacn_np: \\MS-20180227BJAY\PIPE\InitShutdown
ncalrpc: WMsgKRpc04D190
76f226c3-ec14-4325-8a99-6a46348418af
version: v1.0
provider: winlogon.exe
ncalrpc: WindowsShutdown
ncacn_np: \\MS-20180227BJAY\PIPE\InitShutdown
ncalrpc: WMsgKRpc04D190
ncalrpc: WMsgKRpc04D491
c9ac6db5-82b7-4e55-ae8a-e464ed7b4277
version: v1.0
annotation: Impl friendly name
provider: sysntfy.dll
ncalrpc: LRPC-5c1a54eba3582d64eb
ncalrpc: LRPC-9fd3dd7ce36eedebe0
ncalrpc: IUserProfile2
12e65dd8-887f-41ef-91bf-8d816c42c2e7
version: v1.0
annotation: Secure Desktop LRPC interface
provider: winlogon.exe
ncalrpc: WMsgKRpc04D491
3c4728c5-f0ab-448b-bda1-6ce01eb0a6d6
version: v1.0
annotation: DHCPv6 Client LRPC Endpoint
provider: dhcpcsvc6.dll
ncalrpc: dhcpcsvc6
ncalrpc: dhcpcsvc
ncacn_ip_tcp: 114.231.14.143:49153
ncacn_np: \\MS-20180227BJAY\pipe\eventlog
ncalrpc: eventlog
3c4728c5-f0ab-448b-bda1-6ce01eb0a6d5
version: v1.0
annotation: DHCP Client LRPC Endpoint
provider: dhcpcsvc.dll
ncalrpc: dhcpcsvc
ncacn_ip_tcp: 114.231.14.143:49153
ncacn_np: \\MS-20180227BJAY\pipe\eventlog
ncalrpc: eventlog
f6beaff7-1e19-4fbb-9f8f-b89e2018337c
version: v1.0
annotation: Event log TCPIP
protocol: [MS-EVEN6]: EventLog Remoting Protocol
provider: wevtsvc.dll
ncacn_ip_tcp: 114.231.14.143:49153
ncacn_np: \\MS-20180227BJAY\pipe\eventlog
ncalrpc: eventlog
2eb08e3e-639f-4fba-97b1-14f878961076
version: v1.0
provider: gpsvc.dll
ncalrpc: LRPC-9fd3dd7ce36eedebe0
86d35949-83c9-4044-b424-db363231fd0c
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: schedsvc.dll
ncacn_ip_tcp: 114.231.14.143:49154
ncacn_np: \\MS-20180227BJAY\PIPE\atsvc
ncalrpc: OLEAAA718C6A87D4D2897D63FBC6F3A
ncalrpc: IUserProfile2
378e52b0-c0a9-11cf-822d-00aa0051e40f
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: taskcomp.dll
ncacn_np: \\MS-20180227BJAY\PIPE\atsvc
ncalrpc: OLEAAA718C6A87D4D2897D63FBC6F3A
ncalrpc: IUserProfile2
1ff70682-0a51-30e8-076d-740be8cee98b
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: taskcomp.dll
ncacn_np: \\MS-20180227BJAY\PIPE\atsvc
ncalrpc: OLEAAA718C6A87D4D2897D63FBC6F3A
ncalrpc: IUserProfile2
0a74ef1c-41a4-4e06-83ae-dc74fb1cdd53
version: v1.0
provider: schedsvc.dll
ncalrpc: OLEAAA718C6A87D4D2897D63FBC6F3A
ncalrpc: IUserProfile2
7ea70bcf-48af-4f6a-8968-6a440754d5fa
version: v1.0
annotation: NSI server endpoint
provider: nsisvc.dll
ncalrpc: LRPC-6a5e17dc6c4897cc71
367abb81-9844-35f1-ad32-98f038001003
version: v2.0
protocol: [MS-SCMR]: Service Control Manager Remote Protocol
provider: services.exe
ncacn_ip_tcp: 114.231.14.143:49155
12345778-1234-abcd-ef00-0123456789ac
version: v1.0
protocol: [MS-SAMR]: Security Account Manager (SAM) Remote Protocol
provider: samsrv.dll
ncacn_ip_tcp: 114.231.14.143:49156
ncalrpc: samss lpc
ncacn_np: \\MS-20180227BJAY\PIPE\protected_storage
ncalrpc: protected_storage
ncalrpc: lsasspirpc
ncalrpc: lsapolicylookup
ncalrpc: LSARPC_ENDPOINT
ncalrpc: securityevent
ncalrpc: audit
ncalrpc: LRPC-807e332650f61a7510
ncacn_np: \\MS-20180227BJAY\pipe\lsass
2f5f6521-cb55-1059-b446-00df0bce31db
version: v1.0
annotation: Unimodem LRPC Endpoint
ncalrpc: unimdmsvc
ncalrpc: tapsrvlpc
ncacn_np: \\MS-20180227BJAY\pipe\tapsrv
ncalrpc: DNSResolver
-2129060956 | 2024-04-15T13:26:03.926187
1701 /
udp
\xc8\x02\x00\x0c\x00\x00\x00\x00\x00\x00\x00\x01
909167071 | 2024-04-23T20:17:31.830468
7777 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html
Connection: close
Content-Length: 134
Server: SDK 4.3.0.0 UPnP/1.0 MiniUPnPd/1.6
UPnP Device:
Device Type: urn:schemas-upnp-org:device:InternetGatewayDevice:1
Friendly Name: youhua router
Model Name: youhua router
Model Number: 1
Model Description: youhua router
Model URL: http://www.youhuatech.com/
Manufacturer: youhua
Manufacturer URL: http://www.youhuatech.com/
Serial Number: 12345678
UDN: uuid:68555350-3352-3883-2883-335030522880
Presentation URL: http://192.168.4.1/
Sub Device #1:
Device Type: urn:schemas-upnp-org:device:WANDevice:1
Friendly Name: WANDevice
Model Name: WAN Device
Model Number: 20141126
Model Description: WAN Device
Model URL: http://miniupnp.free.fr/
Manufacturer: MiniUPnP
Manufacturer URL: http://miniupnp.free.fr/
Serial Number: 12345678
UDN: uuid:68555350-3352-3883-2883-335030522880
UPC: MINIUPNPD
Sub Device #1:
Device Type: urn:schemas-upnp-org:device:WANConnectionDevice:1
Friendly Name: WANConnectionDevice
Model Name: MiniUPnPd
Model Number: 20141126
Model Description: MiniUPnP daemon
Model URL: http://miniupnp.free.fr/
Manufacturer: MiniUPnP
Manufacturer URL: http://miniupnp.free.fr/
Serial Number: 12345678
UDN: uuid:68555350-3352-3883-2883-335030522880
UPC: MINIUPNPD
Service #1:
Service Type: urn:schemas-upnp-org:service:WANIPConnection:1
Service ID: urn:upnp-org:serviceId:WANIPConn1
SCPD URL: /WANIPCn.xml
Control URL: /ctl/IPConn
Event Sub URL: /evt/IPConn
Service #1:
Service Type: urn:schemas-upnp-org:service:WANCommonInterfaceConfig:1
Service ID: urn:upnp-org:serviceId:WANCommonIFC1
SCPD URL: /WANCfg.xml
Control URL: /ctl/CmnIfCfg
Event Sub URL: /evt/CmnIfCfg
Service #1:
Service Type: urn:schemas-upnp-org:service:Layer3Forwarding:1
Service ID: urn:upnp-org:serviceId:Layer3Forwarding1
SCPD URL: /L3F.xml
Control URL: /ctl/L3F
Event Sub URL: /evt/L3F
527419093 | 2024-04-28T13:41:11.333875
8200 /
tcp
HTTP/1.1 200 OK
Content-Type: text/html
Connection: close
Content-Length: 885
Server: 378.xx DLNADOC/1.50 UPnP/1.0 MiniDLNA/1.2.0
Date: Sun, 28 Apr 2024 13:41:10 GMT
EXT: