5168082 | 2024-03-07T19:19:32.261379
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1607)/Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: SRVTRB8TQ3J68
NetBIOS Domain Name: SRVTRB8TQ3J68
NetBIOS Computer Name: SRVTRB8TQ3J68
DNS Domain Name: SRVTRB8TQ3J68
FQDN: SRVTRB8TQ3J68
: CloudAdmin
flees.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
3e:b3:8a:70:cb:9e:f1:99:48:17:2c:93:db:0c:17:fe
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=SRVTRB8TQ3J68
Validity
Not Before: Feb 20 12:38:05 2024 GMT
Not After : Aug 21 12:38:05 2024 GMT
Subject: CN=SRVTRB8TQ3J68
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d4:ae:ae:94:e1:fd:df:e8:1a:6e:1a:68:b6:ef:
72:24:35:e3:5d:f1:b1:b6:84:e2:b8:49:f6:04:49:
cc:c4:b1:2f:95:8f:c5:7c:cf:61:32:16:01:1f:f4:
4f:a1:9f:b1:4f:67:77:1f:ba:62:1c:47:8a:0a:6e:
8d:70:dc:26:d3:30:59:fe:7a:3b:a0:a0:7d:7c:78:
e9:3e:ad:ef:7a:5b:55:e9:f3:8d:55:37:7e:3a:f0:
09:19:72:30:10:8c:b6:1c:9c:96:53:d8:bc:a3:cd:
7d:3a:5f:5a:c3:3c:c8:f4:78:58:28:11:9e:71:7c:
f3:6c:b2:fa:7c:01:1c:ec:c9:72:68:36:51:27:d6:
f3:8e:76:19:c0:ed:7e:01:b2:42:9d:dd:3c:07:26:
56:1a:cd:55:29:7e:b1:c9:c8:e0:66:50:51:f5:4b:
9b:4a:9a:99:03:38:6c:a0:a3:aa:07:ba:01:9d:ed:
dc:16:e4:af:c0:4d:07:b1:1b:ac:bc:ff:e8:54:58:
1c:fa:04:23:81:c4:9a:34:94:a4:93:75:c3:8f:b2:
bf:89:96:58:15:51:c5:0d:c1:3f:89:9a:30:9c:a2:
20:0d:0e:18:80:6a:b9:a4:1f:47:19:8a:29:73:17:
a2:7f:1f:88:8e:1f:3a:b8:87:93:25:87:52:98:f8:
d0:d5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a6:a5:40:e3:6b:36:b4:57:18:f9:9a:1f:ae:f4:67:4d:01:f5:
39:67:d1:d0:ed:2d:b3:01:22:1d:7a:d3:44:0c:ae:e4:86:b6:
e3:78:f2:1b:45:c7:7c:f1:f9:8e:cd:aa:ff:1a:42:e8:ad:4b:
4a:61:12:15:70:39:70:7a:5a:cf:4b:ab:0e:35:3c:75:bc:4f:
47:52:c3:e5:a0:be:90:47:18:0e:54:68:24:19:3a:fb:55:bf:
84:f9:03:5e:b0:6f:2a:24:74:f1:21:5b:3d:5b:ae:94:43:3d:
56:d8:61:a3:7d:4e:c0:3d:1c:de:17:25:d9:04:f9:4b:e3:8d:
40:a7:22:95:b0:69:03:9c:7d:97:f3:79:01:ff:23:16:be:f1:
b3:bc:c8:88:15:b0:44:19:bb:af:65:6f:15:c4:bf:5f:d8:eb:
98:8a:e9:e0:b6:3e:98:c9:24:e3:c2:0a:27:9b:63:ae:99:9b:
93:7d:ec:ff:0c:8e:87:0f:98:a6:ed:d4:e0:ae:99:23:85:ae:
df:5f:5f:18:70:b4:7b:37:66:5c:70:d7:24:b4:c5:ff:02:aa:
7b:d7:da:39:0f:89:7d:aa:2b:69:84:0b:8c:13:34:5e:5e:5c:
6b:6d:ed:8e:02:98:67:30:60:93:11:e3:e7:4c:95:a5:4d:6a:
b4:d6:5a:c2
1489525118 | 2024-03-24T03:57:31.098501
5986 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sun, 24 Mar 2024 03:57:30 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2016 (version 1607)
OS Build: 10.0.14393
Target Name: SRVTRB8TQ3J68
NetBIOS Domain Name: SRVTRB8TQ3J68
NetBIOS Computer Name: SRVTRB8TQ3J68
DNS Domain Name: SRVTRB8TQ3J68
FQDN: SRVTRB8TQ3J68
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
72:9e:f7:1f:63:41:1b:99:48:d3:a5:28:39:7d:9d:a8
Signature Algorithm: sha1WithRSAEncryption
Issuer: CN=WINSERV2016
Validity
Not Before: Nov 16 19:52:33 2017 GMT
Not After : Nov 15 19:52:33 2020 GMT
Subject: CN=WINSERV2016
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (4096 bit)
Modulus:
00:c5:13:59:da:c2:1e:33:97:e0:7e:a4:42:9e:61:
85:5e:5b:e5:f5:18:d1:79:0c:9a:8d:96:36:47:b7:
9f:86:e3:7b:71:ae:8a:21:50:f8:5d:de:dd:3d:63:
3d:37:05:68:11:0f:69:ff:c6:be:f5:b7:46:da:55:
de:a7:61:1f:f4:08:4f:3c:1d:95:c7:be:b2:4d:91:
81:e1:af:1c:65:21:de:fb:4d:3f:50:21:65:c8:d4:
da:43:fc:bd:36:62:c0:c7:70:07:13:dc:f6:5f:a9:
04:3f:1a:c4:b2:6f:70:e9:0f:68:40:05:ca:6e:90:
3f:ad:6a:49:d0:78:67:e5:6a:2c:14:9a:e8:61:a8:
c8:f5:7b:40:94:ff:d6:2d:f9:9e:2a:55:9c:86:ae:
21:26:fa:70:34:78:b6:bd:2b:35:38:47:03:9a:b0:
11:d9:e7:73:74:a6:27:9f:35:46:1e:1f:46:82:01:
30:5b:34:7b:6a:3e:f2:5e:e0:86:01:ad:ed:23:41:
e7:d5:ef:c0:f4:11:d0:2b:91:1e:52:ac:cb:17:3c:
5e:f7:38:bc:52:64:ae:03:8e:d2:0a:1d:10:fc:4f:
b6:47:7e:0e:01:e3:ee:10:a7:4f:2e:77:24:ec:b8:
90:e4:62:eb:b0:c7:2c:a7:3c:2d:4d:5f:c4:f8:6d:
56:e0:38:ee:26:1a:0a:fe:aa:dd:c5:b1:45:2f:70:
b5:8a:37:f7:95:38:d7:ef:b8:89:c4:82:55:71:0f:
d7:c9:f4:b8:56:b9:63:dd:e4:b7:cf:20:45:6d:87:
aa:8e:0c:86:fb:a3:81:40:c9:53:b2:fa:de:01:c7:
fe:22:7e:d0:64:9a:9d:bc:72:56:30:b9:2a:54:aa:
cc:18:e9:7f:ee:a0:27:0f:c1:75:cd:22:b5:1d:9a:
31:b3:a3:53:9f:58:fb:a6:2d:6c:ff:be:d2:21:34:
c7:5d:54:1b:f6:a6:4b:47:32:f7:89:98:17:77:22:
6f:ef:6b:61:bb:ac:9f:b7:8d:fb:a1:08:90:6c:da:
0d:96:12:84:fe:50:03:a4:6c:ef:75:29:82:03:38:
ea:81:fd:42:0b:9f:2a:d7:24:19:73:c6:e9:0a:9c:
48:3c:bc:2d:cc:74:26:5d:27:da:77:57:a2:a2:f8:
06:a0:82:c2:4b:46:db:1a:0a:df:60:8a:9d:27:fd:
b9:9d:37:62:c5:dd:bb:8d:d1:b2:02:50:77:0c:d1:
ca:e3:36:f3:61:76:a6:e8:f4:a5:c1:47:4b:bc:ae:
eb:c7:8a:59:9d:1a:c0:f7:66:d6:38:48:db:42:c6:
21:2f:48:9e:62:7d:b2:62:1b:84:f9:aa:93:ba:0f:
c3:a1:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Subject Key Identifier:
D3:3A:05:DC:58:66:9C:CE:4B:AB:8B:2D:F4:F6:C5:D8:61:80:B7:B7
X509v3 Key Usage: critical
Key Encipherment
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
46:e5:c4:a3:b8:4f:4a:95:71:c3:2a:c5:36:9a:e9:f2:da:dc:
02:ae:da:b0:c9:14:4a:0f:ae:cc:10:83:ea:89:ce:64:b0:dd:
37:ea:65:d8:d4:18:cb:5d:22:0d:82:96:e8:ff:bb:24:54:20:
d2:45:bb:2a:ef:d9:ba:00:1a:63:3c:13:1b:73:ce:9b:64:28:
06:ef:aa:03:9f:54:ae:6f:84:09:fe:a9:a7:4f:d6:b0:5a:1d:
7c:e2:ee:bf:b8:e6:c2:93:54:a5:49:66:cc:3a:e7:49:05:1e:
73:4a:f1:d3:9a:4c:aa:03:c1:06:37:2b:41:10:56:d3:eb:8c:
6b:4d:62:14:d5:4b:19:02:ef:fd:b0:5b:1e:34:dc:52:d3:dc:
8b:66:92:5f:99:51:76:cf:40:50:c3:07:05:bc:70:65:2a:f4:
a0:45:9c:75:c7:29:ef:dc:ce:59:ec:2c:e1:77:5f:ab:d6:54:
58:21:64:aa:d7:67:ac:da:b1:d5:6b:49:47:da:8c:38:fe:bf:
59:d5:0c:d1:77:ff:86:9b:59:21:15:3c:f5:1f:40:33:e7:12:
f1:55:9a:7e:ac:60:8b:47:85:a5:87:77:e7:0c:2d:13:85:cf:
e8:82:70:05:80:db:3b:f2:f7:da:62:1e:99:7f:6a:46:76:a7:
0a:89:c9:0f:97:90:36:d9:cf:ed:9b:88:a0:81:fe:7c:e9:6b:
40:b2:81:b9:4b:7b:4a:0b:ae:d8:41:29:3a:a9:26:66:fb:18:
1d:5e:37:ab:9e:4c:a4:2d:c1:fe:96:77:15:ee:3c:2c:bb:96:
67:15:31:bf:11:ac:bd:d5:02:b3:8c:98:5b:c9:02:90:f2:02:
7b:5d:1a:c7:29:2b:51:61:a8:29:a5:24:2f:e5:cd:c8:88:19:
1a:6c:f0:f8:bd:12:ca:b0:f4:3c:4a:8d:66:29:f4:53:0f:54:
9f:44:ca:8a:05:c9:b9:76:6f:48:02:ae:6d:ea:a9:11:cd:8e:
3e:f2:45:56:ca:fa:e7:04:82:96:e6:1a:1f:8c:1c:89:e4:08:
71:78:d5:5d:6b:a6:9a:45:d9:5d:da:36:fc:3f:71:b8:ea:eb:
33:f1:67:b4:22:1a:43:cf:44:63:81:b2:22:eb:e5:78:b5:79:
dc:d3:6e:60:70:2e:ca:43:78:be:c1:0f:74:9b:97:ad:80:bc:
04:97:39:03:6c:4a:6e:89:db:46:19:77:41:19:f9:fd:86:c4:
33:d1:18:ed:31:4c:8d:33:15:ef:39:21:48:a2:21:2d:df:43:
8f:31:fd:52:03:b9:ca:ff:af:68:84:13:6c:13:26:c9:f5:04:
5f:7a:32:05:31:be:6d:f7