2030905358 | 2024-10-09T01:46:41.807764
21 /
tcp
220 ProFTPD Server ready.
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
EPRT EPSV ALLO RNFR RNTO DELE MDTM RMD
XRMD MKD XMKD PWD XPWD SIZE SYST HELP
NOOP FEAT OPTS HOST CLNT AUTH CCC* CONF*
ENC* MIC* PBSZ PROT TYPE STRU MODE RETR
STOR STOU APPE REST ABOR RANG USER PASS
ACCT* REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@185.204.219.239
211-Features:
AUTH TLS
CCC
CLNT
CSID
EPRT
EPSV
HOST
LANG ko-KR;bg-BG;fr-FR;en-US;it-IT;ja-JP;zh-CN;zh-TW;es-ES;ru-RU
MDTM
MFF modify;UNIX.group;UNIX.mode;
MFMT
MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
PBSZ
PROT
RANG STREAM
REST STREAM
SIZE
SSCN
TVFS
UTF8
211 End
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
5a:b7:f5:7b:46:b7:b2:97:97:e4:6e:44:df:38:75:28
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=PL, O=Unizeto Technologies S.A., OU=Certum Certification Authority, CN=Certum Domain Validation CA SHA2
Validity
Not Before: Jun 14 09:43:10 2024 GMT
Not After : Jun 14 09:43:09 2025 GMT
Subject: CN=*.cyber-folks.pl
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (4096 bit)
Modulus:
00:97:fc:38:a9:9b:3e:af:42:80:97:bb:7b:0c:64:
08:87:e1:24:14:a9:30:0a:b7:23:52:99:b6:74:c9:
72:cd:30:0c:84:c6:c6:49:2e:70:e5:d2:ff:b6:3c:
81:72:fe:a2:35:6f:f6:6f:78:c1:d3:2a:15:db:5b:
f8:e8:90:c4:98:d3:a5:94:f2:10:fe:5b:a1:cd:88:
91:cd:8f:88:f5:3e:19:47:af:be:0d:e8:c2:fd:b8:
c4:72:df:c0:be:26:87:f8:fe:8a:92:09:8c:0a:f2:
fe:68:c1:bd:eb:3a:b7:e1:3e:c1:81:34:97:8f:47:
07:15:50:ae:33:77:eb:7f:a9:ba:8a:4a:67:e6:5a:
49:81:f7:90:82:00:66:8c:9b:f7:f6:5b:c2:62:9c:
5e:6e:c6:1a:11:37:a1:1f:3c:3f:a7:a5:94:c1:0d:
cf:58:8f:2c:26:11:b5:04:47:8b:ca:8f:8a:0a:bb:
48:4f:11:8b:4f:d8:c8:fb:86:3f:df:2d:77:5f:67:
b3:e3:b2:44:d3:23:cf:44:82:a9:f4:db:75:9e:f1:
b4:05:af:83:86:bf:bc:66:31:ae:b9:1c:8f:42:a5:
1c:bb:a5:e8:fd:c4:6a:2b:05:7d:31:d9:6a:ad:99:
77:3f:02:0e:c3:d4:f5:f5:e4:8e:0c:27:b3:1d:3d:
e5:b1:a3:a7:2a:2b:85:89:fc:66:3a:82:79:eb:3f:
b1:65:a0:b1:9e:de:dd:e9:8f:ba:c2:04:e0:ff:18:
b9:63:50:bf:28:d0:83:30:07:6c:86:7b:34:37:f4:
c4:d5:84:bc:19:d1:08:8f:13:80:b4:85:cf:06:62:
28:68:49:f0:3d:09:fb:13:58:55:64:45:a9:38:97:
85:f5:6d:e2:e2:0e:fe:c4:12:79:28:3e:88:2c:6b:
df:c0:65:09:ed:b1:fb:24:60:57:c7:55:e7:16:02:
30:67:2a:1b:d6:63:cb:91:12:ce:6f:54:97:ac:50:
54:e9:92:87:a1:be:83:01:dc:90:b9:cf:89:d3:54:
fc:6b:5b:0e:2d:13:db:02:2b:cb:8d:34:58:7e:da:
89:d6:09:50:bf:f2:fe:b2:ee:9b:23:69:b8:a7:27:
81:be:fd:49:41:9a:17:9e:8b:6c:cf:71:99:88:14:
50:f0:4b:4b:37:66:55:be:1b:0f:0b:8c:48:58:e3:
24:6a:84:7a:d6:8a:71:ff:a2:4b:9b:58:c0:23:9c:
dd:b1:85:af:73:bb:ac:85:40:18:19:14:d8:a0:fb:
ae:82:9f:5d:f6:33:1c:01:ae:4c:7c:86:f8:3a:62:
96:f4:7a:7d:61:b8:4a:d1:f3:6a:5c:f5:24:21:53:
7c:17:ed
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.certum.pl/dvcasha2.crl
Authority Information Access:
OCSP - URI:http://dvcasha2.ocsp-certum.com
CA Issuers - URI:http://repository.certum.pl/dvcasha2.cer
X509v3 Authority Key Identifier:
E5:31:AD:BF:3A:11:96:F4:83:BC:50:3C:D4:B7:90:9B:90:EE:DE:25
X509v3 Subject Key Identifier:
DF:E5:A6:B7:AA:7B:4C:3C:E7:45:22:25:85:A5:29:51:9A:2C:FD:7C
X509v3 Issuer Alternative Name:
email:dvcasha2@certum.pl
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
Policy: 1.2.616.1.113527.2.5.1.3
CPS: https://www.certum.pl/CPS
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Subject Alternative Name:
DNS:*.cyber-folks.pl, DNS:cyber-folks.pl
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
Timestamp : Jun 14 09:43:11.244 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:C7:AE:27:4E:89:DC:0C:92:75:B6:47:
39:60:D8:CD:D0:C6:41:F5:6D:A1:FA:1A:06:D3:0D:FC:
58:15:65:90:9E:02:20:53:B0:7A:98:2F:06:C7:4F:3C:
64:E5:DF:2E:09:6F:93:DA:C8:DC:F3:5D:87:BA:1B:01:
B7:11:A8:FA:58:2F:DE
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Jun 14 09:43:11.249 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:1F:51:B2:9A:1B:06:7C:ED:27:02:AC:5D:09:
5A:DF:55:08:BE:7B:EA:40:64:04:A5:FD:EF:94:C9:B4:
E6:00:41:02:21:00:F5:5B:C3:3A:C1:1C:B4:86:77:FC:
13:10:74:00:AB:1B:50:55:21:5B:DC:66:68:C1:ED:6F:
B7:37:0C:4D:BB:CB
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
Timestamp : Jun 14 09:43:11.273 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:1D:C2:FB:D7:CA:3A:07:9D:33:BB:4C:9E:
1E:CD:C2:86:17:43:AB:51:9D:42:EF:20:8C:35:89:D5:
6C:42:D6:4F:02:20:50:F6:6F:AF:14:06:CB:78:71:F2:
41:33:A7:90:D1:D4:2F:E0:9A:54:D9:19:27:81:48:64:
AD:C2:8E:B0:3C:4D
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
8e:ca:96:6f:38:e5:2b:e2:a1:6d:15:e6:a9:ad:0a:cc:8b:c6:
c0:a5:89:af:83:c8:ae:3a:e0:fd:f5:21:4d:91:10:15:3a:dc:
88:f2:15:73:2d:94:39:d3:ae:2e:a2:11:c7:86:10:9a:50:25:
91:b4:47:db:9a:1c:1c:61:dc:bf:21:1a:7f:df:3e:50:b5:56:
e2:ea:29:51:28:8f:2f:7f:2a:3d:55:f1:f4:de:5c:af:56:e6:
54:a7:dc:01:09:b5:40:46:53:8b:43:a8:7e:ce:10:d3:b2:6e:
a4:c0:3c:94:f6:45:95:8d:67:89:84:24:46:dd:0f:bf:fb:71:
31:af:ee:8f:bd:1f:9c:ac:98:6d:64:1b:fc:cd:bc:3b:78:9d:
c5:a0:e6:8c:16:e7:f8:e1:65:bb:0b:93:de:bb:54:9e:e0:5c:
6d:db:bb:66:c2:c2:5c:4d:e3:dd:19:df:22:b4:8f:67:71:14:
dc:0f:b0:03:8b:f1:d1:7b:22:46:25:14:d8:95:eb:e5:5c:a8:
76:f1:12:c3:d3:22:55:d0:c6:ee:60:f4:4a:c9:71:cf:dc:0b:
bb:b8:e1:34:20:0f:31:f2:47:50:3a:c2:25:1b:0c:b2:5f:83:
f3:3d:d5:a9:b5:80:7a:ac:f1:a8:b1:2b:d2:17:24:46:c6:e6:
ac:1c:52:30
-497197449 | 2024-10-08T04:56:48.462149
80 /
tcp
HTTP/1.1 301 Moved Permanently
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
set-cookie: qtrans_front_language=pl; expires=Wed, 08-Oct-2025 04:56:47 GMT; Max-Age=31536000; path=/
content-type: text/html; charset=UTF-8
expires: Tue, 08 Oct 2024 05:56:47 GMT
cache-control: max-age=3600
x-redirect-by: WordPress
location: https://exit19.pl/
content-length: 0
date: Tue, 08 Oct 2024 04:56:47 GMT
server: LiteSpeed
vary: User-Agent
226679275 | 2024-10-25T09:19:10.087529
222 /
tcp
SSH-2.0-OpenSSH_8.0
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABgQDr+REGMRcrxpBYqWygZI+u55NhWVj4BozNQkF+ajgMKmRG
SpO4ogPSACe+q/R3xySZ3CyngEP17TMAgJv/Bot2puuMbdAUJ9Tm/KWg+ixXk/afgryd1OMYL/yg
TOTFjWXsi/bf+JAO5HmVGjparjOiOfRnVprBHCe0czkobUexC3iiA7V0fqPzGfcT65jwoX4JqK2k
qlvhYGc2QjQiLH0sGs/idKfOctF+lhPPZz7EV6y5J0Qd04WTW0uBRrQY1j0KkTQafWPdaUw5G9wF
X3ABLjkcpGn6bFcfczZWETt2qydEOT4rgdDfvOq5dqTVCKpCg8GYvrxmBpeJLz9iqxIVs1Lo5VhB
+yRjfQPAQNFNa9LYzaCy7qsenWPklSaFIHipsqiRceR/yWGKnqJLjJI14FAtUIhZXJMsoaPJrUD/
n1OB9Sn9zUac0MxiE0DPsJUEmwHsFeEx5WkwRN+sbvR2nku3lpkPAGongNi7Md78hMcGm9oLEe+5
hK4pjsK+cKE=
Fingerprint: 01:36:de:2c:fc:d1:7d:f0:f4:1d:1d:74:97:00:92:2e
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group14-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group-exchange-sha1
diffie-hellman-group14-sha1
kex-strict-s-v00@openssh.com
Server Host Key Algorithms:
rsa-sha2-512
rsa-sha2-256
ssh-rsa
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
aes256-gcm@openssh.com
chacha20-poly1305@openssh.com
aes256-ctr
aes256-cbc
aes128-gcm@openssh.com
aes128-ctr
aes128-cbc
MAC Algorithms:
hmac-sha2-256-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha2-256
hmac-sha1
umac-128@openssh.com
hmac-sha2-512
Compression Algorithms:
none
zlib@openssh.com
-1122906172 | 2024-10-08T05:14:32.571025
443 /
tcp
HTTP/1.1 200 OK
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
set-cookie: qtrans_front_language=pl; expires=Wed, 08-Oct-2025 05:14:31 GMT; Max-Age=31536000; path=/; secure
content-type: text/html; charset=UTF-8
link: <https://exit19.pl/wp-json/>; rel="https://api.w.org/"
link: <https://exit19.pl/wp-json/wp/v2/pages/24>; rel="alternate"; title="JSON"; type="application/json"
link: <https://exit19.pl/>; rel=shortlink
transfer-encoding: chunked
date: Tue, 08 Oct 2024 05:14:31 GMT
server: LiteSpeed
vary: User-Agent
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:06:5d:e9:d8:fa:61:ed:cb:1a:e1:cb:38:27:38:e4:2c:fd
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Sep 30 06:25:11 2024 GMT
Not After : Dec 29 06:25:10 2024 GMT
Subject: CN=exit19.pl
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:0e:3c:38:55:4c:c5:c2:94:f0:05:9f:d4:53:03:
db:13:f9:2c:e8:86:bb:28:6a:f9:e6:8e:a1:bb:93:
9c:41:8b:69:2d:e9:7e:a3:b9:9c:18:1a:a4:3f:c7:
dc:81:b8:65:48:d3:da:c4:45:e0:b2:c3:b2:5e:f3:
a8:15:78:75:6e:49:2a:d6:3a:f3:0a:a5:e0:f2:43:
1b:2e:81:51:b7:26:aa:a9:33:1a:fc:c9:00:c4:e7:
a9:e2:a9:98:4e:4f:ac
ASN1 OID: secp384r1
NIST CURVE: P-384
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
03:10:E3:68:AF:AA:46:92:6D:04:ED:69:CD:44:B6:96:6A:5E:15:13
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:exit19.pl, DNS:www.exit19.pl
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Sep 30 07:23:42.537 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:C6:D6:60:8B:6A:1A:59:77:E8:DA:79:
1E:57:FB:9B:FB:79:CC:81:C2:D7:7E:86:3C:51:67:80:
35:96:CA:F1:DC:02:20:68:FD:40:17:C5:55:63:6F:76:
2F:5F:A4:07:37:D9:84:4B:3E:4C:6A:7D:D5:47:69:77:
6A:EF:6F:03:41:80:CC
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Sep 30 07:23:42.543 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:46:02:69:53:05:60:73:3C:6B:9B:67:14:
7E:27:AD:F8:41:12:17:7F:50:A9:34:38:E1:17:6E:DB:
98:D5:D4:FC:02:21:00:BD:13:AD:B6:53:9F:BA:86:97:
7E:2B:1E:F2:5E:42:A3:3D:2C:03:BC:C1:00:9B:A1:B0:
7F:28:CC:28:A4:78:BD
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:31:00:99:8d:9f:63:d3:76:9c:a5:e7:ab:95:d0:81:
33:4b:a7:69:01:3f:01:60:a9:75:f9:8a:d7:e9:00:91:a6:2b:
57:24:46:ad:0e:6f:fb:e9:71:cb:20:df:db:10:f1:21:34:02:
30:4a:b0:b7:d8:13:1d:72:1d:1a:e4:13:5c:18:bc:19:2c:65:
9f:1e:b9:3e:41:10:01:6a:1f:fc:dc:4e:17:a0:0f:10:a4:4e:
6d:90:22:35:3d:8c:c4:5e:70:03:d1:01:ac
-1330353048 | 2024-10-27T15:17:23.928725
2222 /
tcp
HTTP/1.1 200 OK
Cache-Control: no-cache
Content-Type: text/html
Pragma: no-cache
Server: DirectAdmin Daemon
Set-Cookie: session=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT; SameSite=Lax; HttpOnly
Vary: Origin
Vary: Accept-Encoding
X-Directadmin: Unauthorized
X-Frame-Options: sameorigin
X-Valid: yes
Date: Sun, 27 Oct 2024 15:17:23 GMT
Transfer-Encoding: chunked
1394407556 | 2024-10-25T15:00:45.617008
4190 /
tcp
"IMPLEMENTATION" "Dovecot Pigeonhole"\r\n"SIEVE" "fileinto reject envelope encoded-character vacation subaddress comparator-i;ascii-numeric relational regex imap4flags copy include variables body enotify environment mailbox date index ihave duplicate mime foreverypart extracttext imapsieve vnd.dovecot.imapsieve"\r\n"NOTIFY" "mailto"\r\n"SASL" "PLAIN"\r\n"STARTTLS"\r\n"VERSION" "1.0"\r\nOK "Dovecot DA ready."\r\n