9746531 | 2024-05-13T05:19:08.689866
80 /
tcp
HTTP/1.1 301 Moved Permanently
Content-Type: text/html; charset=utf-8
Location: https://52.117.237.44/
X-Powered-By: ASP.NET
Date: Mon, 13 May 2024 05:19:08 GMT
Content-Length: 539
-1151585929 | 2024-05-14T09:48:03.802794
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Vary: Content-Encoding
X-AspNetMvc-Version: 4.0
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Date: Tue, 14 May 2024 09:48:01 GMT
Content-Length: 101971
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:6e:5a:a0:45:84:7f:99:62:32:73:a5:1d:3a:5f:a8:27:25
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R3
Validity
Not Before: Mar 21 16:27:31 2024 GMT
Not After : Jun 19 16:27:30 2024 GMT
Subject: CN=*.lawtononline.us
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:99:48:5b:16:6d:cc:4b:57:50:af:79:84:d0:80:
ff:03:b0:2e:00:f7:4f:d2:73:f5:73:33:46:dd:e8:
9b:0c:58:03:7b:2e:4d:36:d8:d3:c2:94:08:69:fd:
0a:af:b3:05:6c:bd:60:aa:7e:82:53:08:ba:51:4b:
31:86:a6:01:30:46:6c:00:15:28:ac:92:b2:fd:24:
c7:d6:2e:c1:5c:22:3c:f1:97:9d:a3:f9:e6:6b:e8:
02:f8:c1:5e:34:05:97:d5:6b:c3:f7:b7:8e:be:81:
70:c6:88:af:09:b4:78:c5:51:1a:45:a4:12:9f:a6:
ae:92:36:2c:3d:a8:b8:b8:86:ac:86:8e:de:65:6d:
89:e0:8a:f9:1f:8f:6f:10:93:11:1a:09:3f:c4:3a:
b9:a4:99:65:66:14:04:0c:4c:fa:63:95:be:c5:a9:
fe:0a:37:de:57:68:1a:5e:fa:33:b0:36:00:c6:fd:
5d:af:05:6b:9e:03:22:c0:3e:2d:0d:9c:72:85:ef:
01:ab:56:83:ff:8f:56:dc:9d:14:5e:82:f2:51:e3:
f4:9b:e8:5a:8e:46:92:33:f9:3c:b6:ef:a9:da:85:
b1:46:67:52:df:ba:dd:19:be:33:61:09:d6:f6:b6:
30:16:92:ec:2a:19:a9:42:da:21:8d:b9:05:5d:33:
f5:63
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
92:7C:F1:BA:2E:9E:AF:B6:99:B3:52:89:80:24:E1:71:54:71:1A:12
X509v3 Authority Key Identifier:
14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
Authority Information Access:
OCSP - URI:http://r3.o.lencr.org
CA Issuers - URI:http://r3.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:*.lawtononline.us, DNS:lawtononline.us
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E2:BF:D6:1E:DE:2F:2F:07:A0:D6:4E:6D:37:A7:DC:
65:43:B0:C6:B5:2E:A2:DA:B7:8A:F8:9A:6D:F5:17:D8
Timestamp : Mar 21 17:27:31.406 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:80:06:00:2A:06:6F:8D:28:A5:5A:03:
97:23:AA:84:58:06:11:CB:CA:8A:57:EC:91:ED:DC:7A:
99:B3:FC:39:7D:02:21:00:E7:B7:79:E8:58:87:9C:C7:
37:E6:0D:A4:E3:92:1B:CB:1F:31:A4:14:8C:4A:CC:A4:
7A:17:93:64:50:22:E8:1C
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Mar 21 17:27:31.390 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:2E:E6:A3:57:1F:28:F0:9C:8A:BE:DE:B6:
D2:A2:28:69:74:65:F7:48:37:A9:21:F0:A2:ED:DB:44:
BA:49:1F:C7:02:20:41:0F:A8:FB:15:7C:E9:E0:42:58:
9D:A9:80:90:D6:7B:E0:FC:21:BF:4C:6D:A3:3C:4B:9B:
73:17:34:1B:69:45
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
84:81:cf:de:8c:8b:8f:2b:e9:1d:84:d7:4c:14:84:1c:ff:8f:
b5:eb:06:6d:f1:2d:4b:2b:c4:2a:57:59:25:ae:31:9c:a2:ee:
fe:ae:62:7a:9f:26:c4:9c:dd:f5:5a:ed:d9:57:19:ff:1f:10:
14:f7:30:f8:c3:aa:28:35:93:5a:c5:54:3a:35:64:07:73:62:
82:eb:68:47:52:65:8b:76:02:f6:0a:e8:ff:65:0d:5c:2e:65:
88:d1:b2:2a:79:56:8c:a8:84:5f:e8:03:35:68:73:ae:ce:02:
1b:c3:54:e0:67:c9:f1:e5:03:f3:95:ee:d3:7f:c1:5d:e0:17:
1a:55:48:ed:3e:02:92:db:93:28:70:51:25:e2:b8:2b:f2:9e:
b2:bb:0e:29:77:f7:3c:50:c9:e9:fd:8a:4f:9a:de:97:95:13:
cf:84:f5:37:cd:5f:63:2b:0d:6c:c2:50:17:61:64:88:74:98:
13:13:23:3e:28:0f:c5:99:98:17:96:2a:bb:a7:b2:11:d2:d2:
fc:b6:94:e0:7e:e8:bf:4c:b2:dd:20:25:16:0b:59:a8:6c:2e:
2b:48:7c:7d:9c:9b:54:61:d3:89:f5:3a:b4:10:ab:08:ce:5c:
b5:16:45:b2:3c:f5:5c:8f:bc:c0:53:c6:44:ba:40:a4:3e:4a:
2d:39:ef:a4
-761500778 | 2024-05-13T01:35:19.033539
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 10 (version 1809)/Windows Server 2019 (version 1809)
OS Build: 10.0.17763
Target Name: SERVER1
NetBIOS Domain Name: SERVER1
NetBIOS Computer Name: SERVER1
DNS Domain Name: server1.usaonline.us
FQDN: server1.usaonline.us
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
24:b0:a6:ff:8a:75:73:a8:4e:8e:14:09:3d:09:92:9a
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=server1.usaonline.us
Validity
Not Before: Mar 12 08:04:11 2024 GMT
Not After : Sep 11 08:04:11 2024 GMT
Subject: CN=server1.usaonline.us
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:cb:43:5f:d2:2a:59:8b:09:a3:ae:0e:58:50:5f:
10:18:8f:c6:8c:92:b9:93:46:e8:14:99:b0:ef:06:
ca:7e:c5:f6:16:e8:5e:19:34:af:21:b5:07:9d:d4:
57:82:8c:7e:02:0c:ae:3c:c0:8b:9b:99:e8:69:2f:
8a:5c:cd:3e:a6:26:1d:d8:65:31:c4:4a:9f:51:07:
a0:71:68:ca:aa:6c:39:61:a7:e3:d6:29:4e:b2:0d:
27:7a:20:87:36:05:8e:42:c4:c0:5b:3c:0c:36:c9:
5d:ba:93:92:4c:ca:c7:e9:7d:d7:14:b4:50:19:ec:
89:81:82:19:e4:c0:e2:6a:80:e5:f7:55:f3:ff:24:
2c:18:ed:25:57:de:7d:83:25:eb:49:7c:0d:59:88:
b3:d4:21:64:97:26:67:72:47:8e:d1:46:01:aa:8f:
ee:e1:11:6c:42:36:41:ec:90:f6:ce:81:50:e6:ff:
f9:c8:91:95:36:2c:ce:5a:d5:35:fc:11:d6:11:cd:
af:18:cc:f8:3c:df:31:80:4c:11:a4:61:64:01:0c:
f0:88:77:01:36:cc:5d:b8:10:d9:f8:6b:0a:36:3a:
49:7b:87:fc:fd:c6:62:6b:fe:a6:22:3b:d9:b6:2d:
3b:49:19:c8:5d:9c:ba:1b:cb:bd:84:13:54:af:80:
8b:c5
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
35:06:7b:f5:cc:91:3d:50:10:09:8f:2a:53:c8:38:48:d9:5c:
32:2c:f7:12:29:b1:fd:4c:24:87:46:1c:24:9a:97:75:4c:56:
e6:07:ef:4a:15:73:b6:76:f9:58:e6:18:5f:66:11:a4:e6:b5:
fc:49:00:eb:8c:6a:09:6e:e7:98:b9:d1:b6:41:b9:bb:f5:67:
91:3f:e4:a6:c5:bb:83:4c:a1:55:1c:0d:39:48:51:6d:5b:6d:
ed:ba:71:91:e2:ac:2b:f1:59:28:67:c9:8f:a5:0b:02:a4:52:
17:34:90:46:9b:13:51:64:b8:95:43:39:93:08:b3:c6:92:f1:
be:cb:f1:65:6e:b3:d9:4e:0b:5f:df:64:aa:72:9b:23:f0:cb:
5a:68:01:b4:fd:2f:80:fb:7d:c7:8b:27:73:47:07:81:23:dd:
a9:cb:6f:b5:44:0e:02:64:ce:a2:c3:f9:50:28:54:ea:6c:9d:
d5:08:b3:9b:41:1c:f8:8e:5b:ac:b1:73:db:9c:49:d6:fb:0a:
a5:82:11:47:61:cc:c1:80:f4:1f:f9:b5:51:fb:3a:1a:63:68:
b5:62:85:6b:01:ea:bb:72:73:d8:4f:f7:9e:5a:26:72:eb:e7:
d8:93:92:d2:14:61:df:ce:8e:5a:a8:18:21:1a:cf:aa:75:91:
5a:fb:ad:5e