21 /
tcp
-623348248 | 2025-01-21T10:55:15.431451
220 ProFTPD Server ready.
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
EPRT EPSV ALLO RNFR RNTO DELE MDTM RMD
XRMD MKD XMKD PWD XPWD SIZE SYST HELP
NOOP FEAT OPTS HOST CLNT AUTH CCC* CONF*
ENC* MIC* PBSZ PROT TYPE STRU MODE RETR
STOR STOU APPE REST ABOR RANG USER PASS
ACCT* REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@103.68.251.125
211-Features:
AUTH TLS
CCC
CLNT
EPRT
EPSV
HOST
LANG zh-CN;zh-TW;bg-BG;en-US;es-ES;fr-FR;it-IT;ja-JP;ko-KR;ru-RU
MDTM
MFF modify;UNIX.group;UNIX.mode;
MFMT
MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
PBSZ
PROT
RANG STREAM
REST STREAM
SIZE
SSCN
TVFS
UTF8
211 End
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:4e:79:5a:5f:06:69:31:e8:fe:a5:ff:f5:ef:7d:18:e7:2d
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Jan 9 15:01:33 2025 GMT
Not After : Apr 9 15:01:32 2025 GMT
Subject: CN=server-103-68-251-125.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:33:07:2e:ec:55:ad:35:92:42:1e:37:ec:8d:66:
b2:c9:a6:99:be:f5:a3:42:6b:e9:d9:2c:3c:f6:14:
51:15:45:35:25:26:f2:b5:7d:05:2f:cc:15:ba:09:
fe:f4:2a:9b:50:90:a7:5a:17:08:45:a2:4b:1c:c3:
aa:37:41:89:0a
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
87:F8:4A:39:F2:EF:87:DB:08:64:42:7A:02:19:B7:77:1B:5A:CA:89
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-103-68-251-125.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 73:20:22:0F:08:16:8A:F9:F3:C4:A6:8B:0A:B2:6A:9A:
4A:00:EE:F5:77:85:8A:08:4D:05:00:D4:A5:42:44:59
Timestamp : Jan 9 16:00:03.545 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:D1:82:EB:2D:1B:76:A8:19:3C:95:94:
7A:98:9C:AF:31:98:6B:16:F6:20:53:65:61:ED:19:A3:
82:86:7B:82:8C:02:21:00:97:83:79:A9:EE:EE:AF:8C:
A6:C8:A5:25:B7:36:6F:88:04:1D:85:C6:C3:FD:03:34:
C8:CF:A1:1C:FB:07:24:94
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Jan 9 16:00:03.543 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:B8:27:83:D2:81:B2:22:DF:14:DD:88:
2A:5B:F4:BB:8A:54:30:20:C3:1A:DA:32:75:A3:9E:D2:
2C:DD:27:9A:EC:02:20:74:28:C4:55:4D:75:FE:00:1D:
CD:68:02:C2:4A:49:FE:A1:F7:D2:F3:D5:08:21:DC:62:
AA:30:2C:77:EA:67:C2
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:30:0e:82:3b:c6:d7:7e:4d:68:e5:0b:d6:af:68:dc:
f6:44:73:8c:4b:dc:a6:61:53:f8:8b:7e:d5:2e:61:20:65:dc:
aa:0f:25:40:64:d4:71:bb:90:49:67:3a:ff:6e:a1:21:02:31:
00:d3:2c:ce:fe:18:48:15:d0:3c:c0:9b:e8:b5:f2:d3:fe:8d:
0e:20:45:69:3a:f0:b8:b2:e8:33:22:90:8e:76:68:65:88:74:
e4:29:08:ee:ad:f5:6e:b1:22:65:f0:f9:cd
53 /
tcp
-1310066294 | 2025-01-21T09:59:44.383472
9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.15
Resolver name: server-103-68-251-125
53 /
udp
-1310066294 | 2025-01-21T20:02:24.124258
9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.15
Resolver name: server-103-68-251-125
1173271501 | 2025-01-21T12:48:51.923249
HTTP/1.1 200 OK
Server: nginx
Date: Tue, 21 Jan 2025 12:48:49 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=0i23butqdmgduh26j7n455atkh; path=/; HttpOnly
Set-Cookie: language=vi-vn; expires=Thu, 20-Feb-2025 12:48:48 GMT; Max-Age=2592000; path=/; domain=www.lapkhoacuavantay.com
Set-Cookie: currency=VND; expires=Thu, 20-Feb-2025 12:48:48 GMT; Max-Age=2592000; path=/; domain=www.lapkhoacuavantay.com
Vary: Accept-Encoding,User-Agent
Cache-Control: private, no-cache, no-store, proxy-revalidate, no-transform
Pragma: no-cache
1211538569 | 2025-01-19T20:07:42.673888
HTTP/1.1 200 OK
Server: nginx
Date: Sun, 19 Jan 2025 20:02:42 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
Vary: Accept-Encoding,User-Agent
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:4e:79:5a:5f:06:69:31:e8:fe:a5:ff:f5:ef:7d:18:e7:2d
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Jan 9 15:01:33 2025 GMT
Not After : Apr 9 15:01:32 2025 GMT
Subject: CN=server-103-68-251-125.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:33:07:2e:ec:55:ad:35:92:42:1e:37:ec:8d:66:
b2:c9:a6:99:be:f5:a3:42:6b:e9:d9:2c:3c:f6:14:
51:15:45:35:25:26:f2:b5:7d:05:2f:cc:15:ba:09:
fe:f4:2a:9b:50:90:a7:5a:17:08:45:a2:4b:1c:c3:
aa:37:41:89:0a
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
87:F8:4A:39:F2:EF:87:DB:08:64:42:7A:02:19:B7:77:1B:5A:CA:89
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-103-68-251-125.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 73:20:22:0F:08:16:8A:F9:F3:C4:A6:8B:0A:B2:6A:9A:
4A:00:EE:F5:77:85:8A:08:4D:05:00:D4:A5:42:44:59
Timestamp : Jan 9 16:00:03.545 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:D1:82:EB:2D:1B:76:A8:19:3C:95:94:
7A:98:9C:AF:31:98:6B:16:F6:20:53:65:61:ED:19:A3:
82:86:7B:82:8C:02:21:00:97:83:79:A9:EE:EE:AF:8C:
A6:C8:A5:25:B7:36:6F:88:04:1D:85:C6:C3:FD:03:34:
C8:CF:A1:1C:FB:07:24:94
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Jan 9 16:00:03.543 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:B8:27:83:D2:81:B2:22:DF:14:DD:88:
2A:5B:F4:BB:8A:54:30:20:C3:1A:DA:32:75:A3:9E:D2:
2C:DD:27:9A:EC:02:20:74:28:C4:55:4D:75:FE:00:1D:
CD:68:02:C2:4A:49:FE:A1:F7:D2:F3:D5:08:21:DC:62:
AA:30:2C:77:EA:67:C2
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:30:0e:82:3b:c6:d7:7e:4d:68:e5:0b:d6:af:68:dc:
f6:44:73:8c:4b:dc:a6:61:53:f8:8b:7e:d5:2e:61:20:65:dc:
aa:0f:25:40:64:d4:71:bb:90:49:67:3a:ff:6e:a1:21:02:31:
00:d3:2c:ce:fe:18:48:15:d0:3c:c0:9b:e8:b5:f2:d3:fe:8d:
0e:20:45:69:3a:f0:b8:b2:e8:33:22:90:8e:76:68:65:88:74:
e4:29:08:ee:ad:f5:6e:b1:22:65:f0:f9:cd
669445267 | 2025-01-20T17:55:00.057031
HTTP/1.0 400 Bad Request
x-use-https: yes
Conent-Type: text/html