-1568953756 | 2024-05-22T07:19:00.496803
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: WIN-R8G412MO3PL
NetBIOS Domain Name: WIN-R8G412MO3PL
NetBIOS Computer Name: WIN-R8G412MO3PL
DNS Domain Name: WIN-R8G412MO3PL
FQDN: WIN-R8G412MO3PL
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
42:07:69:1a:af:9f:0d:9c:4a:94:18:e5:88:f3:94:ef
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=WIN-R8G412MO3PL
Validity
Not Before: May 14 11:52:59 2024 GMT
Not After : Nov 13 11:52:59 2024 GMT
Subject: CN=WIN-R8G412MO3PL
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c5:2d:7b:17:64:ce:93:9c:39:12:52:38:b4:e6:
cc:be:c8:3e:1a:46:3d:8d:7f:7c:75:b2:b2:ab:72:
8c:df:a3:e7:83:82:9b:70:3b:2b:b2:4d:3e:c6:7b:
42:e1:24:52:fb:88:d3:57:1c:ac:08:0f:ab:d7:05:
31:b8:7c:a3:bc:1d:e7:d9:da:41:d8:6c:73:55:cf:
58:6f:03:5b:9b:b5:63:7b:1c:ec:67:c0:1a:ac:61:
a1:24:d7:02:41:4c:d6:74:50:3f:ee:cc:6b:26:4f:
fe:c3:ec:a1:2a:6f:97:01:1e:00:33:bc:31:fe:5f:
72:d5:f1:a1:16:1b:df:7f:ce:39:48:ae:5a:9c:07:
4e:af:5a:46:fe:3d:b4:e2:90:ae:55:29:4c:69:b9:
48:5e:d3:c3:41:d7:11:26:72:08:11:ec:06:07:b2:
74:d9:fe:1d:a1:93:df:28:4c:3a:7e:fe:df:44:4a:
62:08:6e:17:72:d6:e2:b4:dc:9b:2c:18:b7:16:2e:
32:ef:68:ce:b5:8c:51:58:6c:0d:45:64:fd:e9:6e:
a7:1e:6c:6a:39:52:de:a0:0c:a1:11:d3:6e:7f:4f:
a0:8a:31:a0:db:70:62:b8:be:36:aa:a9:d1:08:70:
c8:6d:ab:2d:22:7d:59:72:f7:19:c8:0e:3a:a3:06:
ad:ed
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
22:65:18:d4:1c:24:64:93:5c:b4:8c:e1:3b:e1:f7:ee:28:d4:
27:96:96:de:54:90:8a:2d:78:62:08:da:65:54:68:fb:2a:0a:
2b:2a:cb:1a:fc:79:05:7d:58:cf:23:16:20:87:09:34:c3:a8:
d2:68:8e:7d:ee:7b:34:f6:34:4e:fc:00:51:b9:f7:89:a3:ae:
7c:ca:08:e4:7f:58:2f:5b:f5:6f:be:05:a5:6e:4d:65:58:31:
6e:53:aa:f3:ef:be:98:d2:48:57:d0:de:59:bc:1e:67:50:2e:
c5:3e:36:10:bf:7c:71:32:3e:73:4f:4b:76:de:c8:a3:b0:87:
be:c1:b8:a7:24:09:60:91:35:e2:68:95:18:8e:9e:28:59:b9:
e2:34:d2:d4:fe:fb:b4:90:c2:40:89:9d:b7:c1:b2:a1:45:58:
e3:c8:23:c4:38:e3:c5:c1:c1:e2:17:18:b2:ec:22:25:7c:8a:
34:47:5f:21:2b:30:a8:29:38:b9:1f:07:87:42:7e:99:42:eb:
91:bd:05:2a:98:51:59:13:04:71:8c:c3:c9:3c:a7:d8:9b:c0:
3e:40:7f:9f:ca:70:fd:f8:28:15:4c:6a:e2:cd:ea:73:f5:05:
32:86:1f:37:5e:f2:c6:06:e0:0d:b8:f8:5a:34:66:f5:1d:c7:
d9:59:4a:62
1489525118 | 2024-05-12T06:41:52.495942
5986 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sun, 12 May 2024 06:41:52 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2022
OS Build: 10.0.20348
Target Name: VMI1834787
NetBIOS Domain Name: VMI1834787
NetBIOS Computer Name: VMI1834787
DNS Domain Name: vmi1834787
FQDN: vmi1834787
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
19:b0:dc:53:a0:a6:40:8d:4e:d8:06:5c:86:79:71:94
Signature Algorithm: sha1WithRSAEncryption
Issuer: CN=Cloudbase-Init WinRM
Validity
Not Before: May 10 01:13:58 2024 GMT
Not After : May 9 01:13:58 2034 GMT
Subject: CN=Cloudbase-Init WinRM
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b8:6f:70:97:27:fe:64:06:34:d2:bb:2c:7a:9f:
8f:b0:49:52:93:5b:ce:7d:70:4e:01:ca:c7:3e:52:
16:90:bd:6c:01:4e:86:4e:c5:15:23:f8:5b:f3:df:
7b:2b:c5:1b:01:c4:02:e2:fa:6f:a6:5e:89:53:78:
97:91:1c:c7:7f:d2:dc:95:03:c1:d5:bc:4d:4a:d1:
98:c2:a1:77:45:e5:2f:3d:4a:3e:84:fd:d8:b9:0b:
e2:83:dd:66:14:84:43:93:8f:f3:b6:02:fa:28:8c:
f1:b0:7b:06:d1:4b:5a:4b:27:e2:2b:5f:23:84:37:
2b:13:39:fa:65:e0:09:79:7d:d1:27:c3:42:14:65:
fe:93:e4:e8:fc:56:42:2b:ad:a0:af:11:86:6c:9f:
30:68:54:d0:11:62:94:eb:23:2d:7d:f0:13:8f:89:
18:ca:a6:12:83:d2:d8:91:e3:6f:59:6a:d0:3a:69:
94:1f:7d:3f:a8:ec:09:f5:1c:33:2a:c6:a2:01:74:
d3:3a:8f:ac:a6:11:1e:cf:74:27:85:eb:68:e2:ee:
a5:c9:7a:c5:a8:97:02:c5:f0:35:41:a5:61:82:c0:
57:6a:a4:3f:72:e5:79:ac:c8:25:a7:ff:59:94:b9:
4d:fe:94:27:88:a2:7a:e6:4a:3d:46:9a:2a:5f:4d:
f5:51
Exponent: 65537 (0x10001)
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
39:99:27:67:3d:d0:47:4d:78:8a:dd:a9:1e:d6:ea:27:7c:f4:
e6:d2:a1:a9:bc:75:9d:c0:5c:1f:a4:f2:3d:5d:76:bb:78:58:
8c:9a:da:31:fd:fc:66:87:86:ea:8f:ac:fa:8a:2e:70:8e:77:
49:f5:fa:d3:f1:59:4f:aa:59:c2:f2:3b:53:59:0a:f6:4b:43:
22:6c:a5:a2:9a:ec:16:75:dc:bb:04:3f:30:7f:57:0c:f5:50:
2e:a5:b6:3f:0d:f8:14:18:70:d0:4e:ad:f7:b6:16:5b:38:00:
4c:1d:b9:e8:65:6f:56:c5:ac:b6:43:91:f2:d1:d5:42:3c:fd:
44:89:5c:1b:a5:88:14:47:e1:0e:83:18:52:c8:b3:d2:87:a9:
73:1a:43:96:00:62:e4:53:c2:0f:ee:df:5f:a7:e6:b2:1d:df:
af:2c:5a:95:a4:13:fd:a7:23:d8:94:f0:cd:62:08:09:ad:aa:
4a:e5:b2:a5:06:fe:3e:ff:35:4d:bd:82:03:4b:5a:75:da:13:
6c:d8:7d:2e:df:68:f9:31:00:18:b4:19:30:8a:5d:34:fd:a1:
09:f6:13:99:08:90:c4:fd:f1:aa:59:85:7d:55:17:ad:c4:1e:
6f:bb:28:94:a5:bb:03:6b:1d:8b:02:a7:f2:9e:7b:3a:fc:9d:
75:0b:ae:5e