-371650500 | 2024-12-25T01:52:10.297344
21 /
tcp
220 (vsFTPd 3.0.2)
530 Login incorrect.
530 Please login with USER and PASS.
211-Features:
EPRT
EPSV
MDTM
PASV
REST STREAM
SIZE
TVFS
UTF8
211 End
-891180398 | 2024-12-25T03:05:11.221425
22 /
tcp
SSH-2.0-OpenSSH_7.4
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQD6pAU5qpkPcZgJE57vmwmjN575BrVhXhMAUDVje0JWdCKJ
Visli4D0H0tNaUNfAeMIaUntmADi+ep1r1U8FzwidqFqDK4IJixloAORkRvslYloDIe5bPTjxGVd
H4JKgv6e6pzw5A/h6M3f+RWrSBi2GSL1d0zOa4RodCyGVOU2dAALyGmQ4Eeapz/kXLuojjG6rpNY
au3VVdyHzoohz6XGn5OyAeFH3EsxwFhP7iKg0/a9VVjW0x9c4IuWIGQUER11sDHW98JrKJCjy/Z7
ugxZM+WFWFHJx4lvGb6yFdV6r6kkTnyUGXqxVS2wOCPr2y2V4gV6Ea3SsHy5VpPlPhLP
Fingerprint: 47:74:c0:3b:43:63:07:b6:67:4d:bf:5a:e2:3a:54:36
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group-exchange-sha1
diffie-hellman-group14-sha256
diffie-hellman-group14-sha1
diffie-hellman-group1-sha1
Server Host Key Algorithms:
ssh-rsa
rsa-sha2-512
rsa-sha2-256
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
aes128-cbc
aes192-cbc
aes256-cbc
blowfish-cbc
cast128-cbc
3des-cbc
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
zlib@openssh.com
-603658551 | 2025-01-03T11:46:55.178081
80 /
tcp
HTTP/1.1 302 Found
Date: Fri, 03 Jan 2025 11:46:42 GMT
Server: Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.4.16
Location: https://www.tatsuno.co.th/
Content-Length: 210
Content-Type: text/html; charset=iso-8859-1
1397602199 | 2025-01-03T23:39:06.192445
443 /
tcp
HTTP/1.1 301 Moved Permanently
Date: Fri, 03 Jan 2025 23:39:05 GMT
Server: Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.4.16
Location: https://www.128.199.245.185/
Content-Length: 236
Content-Type: text/html; charset=iso-8859-1
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:5f:14:2d:f5:52:93:1a:25:21:01:9a:18:02:bf:d5:b2:b0
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R11
Validity
Not Before: Dec 16 18:42:57 2024 GMT
Not After : Mar 16 18:42:56 2025 GMT
Subject: CN=www.gusarea.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a6:33:a2:9a:18:af:4e:13:aa:e4:3a:2a:6f:13:
86:aa:26:4d:89:02:5d:4e:39:77:cc:65:88:54:00:
b4:8c:39:fb:f1:d7:99:95:3e:b6:d3:53:dd:e0:24:
b6:26:49:a3:a5:c6:6c:3e:98:c7:4c:64:4d:84:a7:
b6:dc:73:52:47:f7:a8:0d:b8:a0:31:e9:59:d4:8a:
35:6e:7e:22:ab:45:50:20:cc:47:85:fe:36:87:4a:
63:d3:00:56:3c:ba:17:33:cb:9d:2a:e1:47:66:41:
6e:83:f1:f8:80:e4:96:fc:ec:fc:9f:f2:f8:bd:87:
3f:47:f9:b5:fd:bf:fe:11:0a:c0:38:30:3f:2a:65:
a0:99:f5:ff:95:8f:67:dc:2c:44:0c:1a:06:e3:ba:
5a:b8:fa:f0:7c:38:c8:34:b3:0e:aa:a3:3e:7e:b7:
9e:2d:17:59:6f:39:51:15:00:46:53:7c:2a:ff:77:
ea:b4:3a:2a:4e:57:82:e6:86:10:e9:58:2f:54:e7:
14:c3:d8:f3:4a:81:cf:a8:a1:cb:bd:af:0c:bf:ae:
5d:cd:a9:39:b3:70:5e:ad:36:a7:45:ea:10:40:8c:
8c:42:e2:63:98:1c:5f:f2:9e:86:3d:f3:6c:c7:5f:
7a:a8:41:c7:69:76:a7:cb:2f:78:63:40:2d:eb:d6:
9a:6d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
5A:AF:3C:B6:90:91:D2:D1:1C:4A:60:BC:53:45:CD:98:27:5A:67:83
X509v3 Authority Key Identifier:
C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
Authority Information Access:
OCSP - URI:http://r11.o.lencr.org
CA Issuers - URI:http://r11.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:www.gusarea.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DE:85:81:D7:50:24:7C:6B:CD:CB:AF:56:37:C5:E7:81:
C6:4C:E4:6E:D6:17:63:9F:8F:34:A7:26:C9:E2:BD:37
Timestamp : Dec 16 19:41:27.085 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:6C:96:F5:EF:97:38:36:0C:6C:F3:61:62:
D9:86:26:E1:7F:AB:68:CC:8F:76:D3:42:18:6B:11:E5:
D8:66:60:39:02:20:1E:D8:E7:70:51:3F:42:6B:EF:71:
85:1F:A5:65:1B:8D:BB:28:39:C3:B3:71:80:9A:34:2D:
D7:A8:52:1B:13:EF
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Dec 16 19:41:27.141 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:31:A3:C1:1C:88:AA:06:0A:67:D1:EA:84:
64:27:4A:6A:4F:93:46:C2:48:13:43:2D:3E:6E:F8:21:
FE:B9:27:A7:02:21:00:B0:01:60:FA:40:A8:F6:FC:01:
76:DE:2E:76:98:E9:F1:5D:26:68:F0:CE:4F:56:E9:3A:
02:83:00:AC:02:2A:99
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
31:7d:ee:69:a5:d8:fe:5e:0e:08:04:f0:3d:2a:a7:ac:15:99:
98:36:92:1d:67:3b:a9:2e:d5:96:c5:fc:77:6c:8d:30:d8:5d:
7e:a5:a4:49:ff:d4:ab:57:e2:65:02:6c:55:3a:26:83:e0:7f:
25:d0:2e:8b:d4:08:c9:59:27:25:ca:b1:ce:2a:10:7f:c0:5a:
6c:ad:98:24:30:9f:a1:21:c7:5d:36:54:e7:7a:15:ce:f5:19:
95:d3:33:40:37:28:07:3b:5d:2e:27:8d:52:18:b6:28:5c:3e:
dd:34:92:db:87:8e:09:b1:10:e8:f6:32:38:84:55:bd:39:0d:
41:41:ec:66:bd:cb:e1:15:27:da:0e:e0:84:2d:6f:66:57:f7:
3c:87:29:f1:84:8c:f3:43:17:e9:e0:d5:2a:f6:52:a7:4e:6d:
0c:f3:17:1c:d1:ba:a2:c8:82:12:05:77:b3:09:52:ca:d3:25:
30:98:a4:03:ca:17:23:08:1f:a8:1e:50:e0:fc:43:00:05:f5:
0e:ee:49:56:62:0e:2f:ac:6a:bb:47:a0:5d:0f:89:f8:79:9a:
5a:82:86:0f:a6:42:f9:14:99:fc:09:18:46:95:fc:0e:10:14:
84:8e:82:a2:15:7b:4f:78:55:a1:8d:66:b5:72:f7:b1:9e:29:
ce:85:ac:63
-1103653434 | 2024-12-21T01:12:15.262845
1194 /
udp
@\xc3\x1d\x8f5u\x86\xc4\x8f\x00\x00\x00\x00\x00
348290089 | 2025-01-03T05:56:54.242967
3128 /
tcp
HTTP/1.1 400 Bad Request
Server: squid/3.5.20
Mime-Version: 1.0
Date: Fri, 03 Jan 2025 05:56:54 GMT
Content-Type: text/html;charset=utf-8
Content-Length: 3522
X-Squid-Error: ERR_INVALID_URL 0
Vary: Accept-Language
Content-Language: en
X-Cache: MISS from gusarea-webserver
X-Cache-Lookup: NONE from gusarea-webserver:3128
Via: 1.1 gusarea-webserver (squid/3.5.20)
Connection: close
2072209720 | 2025-01-03T09:45:40.747010
3306 /
tcp
MariaDB:
Protocol Version: 10
Version: 5.5.68-MariaDB
Capabilities: 63487
Server Language: 8
Server Status: 2
Extended Server Capabilities: 40975
Authentication Plugin: mysql_native_password