Hostnames |
eleane.com mail.viallet-consulting.com |
Domains | eleane.com viallet-consulting.com |
Country | France |
City | Roubaix |
Organization | OVH SAS |
ISP | OVH SAS |
ASN | AS16276 |
-553166942 | 2025-01-10T11:23:35.25477553 / tcp
Recursion: enabled
-553166942 | 2024-12-31T05:13:36.09891553 / udp
Recursion: enabled
797970545 | 2025-01-10T01:26:47.796981110 / tcp
+OK Kerio Connect 10.0.1 POP3 server ready <7436.1736472406@eleane.com> +OK Capability list follows STLS SASL CRAM-MD5 DIGEST-MD5 NTLM TOP USER UIDL .
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
-702970214 | 2024-12-28T14:26:54.917871119 / tcp
200 Kerio Connect 10.0.1 NNTP server ready
1901055647 | 2025-01-07T20:37:56.254802135 / tcp
Microsoft RPC Endpoint Mapper 51a227ae-825b-41f2-b4a9-1ac9557a1018 version: v1.0 annotation: Ngc Pop Key Service ncacn_ip_tcp: 188.165.179.69:49664 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\ELEANE\pipe\lsass 8fb74744-b2ff-4c00-be0d-9ef9a191fe1b version: v1.0 annotation: Ngc Pop Key Service ncacn_ip_tcp: 188.165.179.69:49664 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\ELEANE\pipe\lsass b25a52bf-e5dd-4f4a-aea6-8ca7272a0e86 version: v2.0 annotation: KeyIso ncacn_ip_tcp: 188.165.179.69:49664 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\ELEANE\pipe\lsass 12345778-1234-abcd-ef00-0123456789ac version: v1.0 protocol: [MS-SAMR]: Security Account Manager (SAM) Remote Protocol provider: samsrv.dll ncacn_ip_tcp: 188.165.179.69:49664 ncalrpc: samss lpc ncalrpc: SidKey Local End Point ncalrpc: protected_storage ncalrpc: lsasspirpc ncalrpc: lsapolicylookup ncalrpc: LSA_EAS_ENDPOINT ncalrpc: LSA_IDPEXT_ENDPOINT ncalrpc: lsacap ncalrpc: LSARPC_ENDPOINT ncalrpc: securityevent ncalrpc: audit ncacn_np: \\ELEANE\pipe\lsass d95afe70-a6d5-4259-822e-2c84da1ddb0d version: v1.0 protocol: [MS-RSP]: Remote Shutdown Protocol provider: wininit.exe ncacn_ip_tcp: 188.165.179.69:49665 ncalrpc: WindowsShutdown ncacn_np: \\ELEANE\PIPE\InitShutdown ncalrpc: WMsgKRpc04BC50 76f226c3-ec14-4325-8a99-6a46348418af version: v1.0 provider: winlogon.exe ncalrpc: WindowsShutdown ncacn_np: \\ELEANE\PIPE\InitShutdown ncalrpc: WMsgKRpc04BC50 ncalrpc: WMsgKRpc04C3A1 fc48cd89-98d6-4628-9839-86f7a3e4161a version: v1.0 ncalrpc: dabrpc ncalrpc: csebpub ncalrpc: LRPC-95f0d8c955d5096971 ncalrpc: LRPC-4956faa49c6a2c79ca ncalrpc: LRPC-b9d5576cf18b5a57fa ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo d09bdeb5-6171-4a34-bfe2-06fa82652568 version: v1.0 ncalrpc: csebpub ncalrpc: LRPC-95f0d8c955d5096971 ncalrpc: LRPC-4956faa49c6a2c79ca ncalrpc: LRPC-b9d5576cf18b5a57fa ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-4956faa49c6a2c79ca ncalrpc: LRPC-b9d5576cf18b5a57fa ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-b9d5576cf18b5a57fa ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo ncalrpc: LRPC-5a67ce29737298d023 ncalrpc: LRPC-41b446705cb3c52b1c 697dcda9-3ba9-4eb2-9247-e11f1901b0d2 version: v1.0 ncalrpc: LRPC-95f0d8c955d5096971 ncalrpc: LRPC-4956faa49c6a2c79ca ncalrpc: LRPC-b9d5576cf18b5a57fa ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 9b008953-f195-4bf9-bde0-4471971e58ed version: v1.0 ncalrpc: LRPC-4956faa49c6a2c79ca ncalrpc: LRPC-b9d5576cf18b5a57fa ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 0d47017b-b33b-46ad-9e18-fe96456c5078 version: v1.0 ncalrpc: umpo 95406f0b-b239-4318-91bb-cea3a46ff0dc version: v1.0 ncalrpc: umpo 4ed8abcc-f1e2-438b-981f-bb0e8abc010c version: v1.0 ncalrpc: umpo 0ff1f646-13bb-400a-ab50-9a78f2b7a85a version: v1.0 ncalrpc: umpo 6982a06e-5fe2-46b1-b39c-a2c545bfa069 version: v1.0 ncalrpc: umpo 082a3471-31b6-422a-b931-a54401960c62 version: v1.0 ncalrpc: umpo fae436b0-b864-4a87-9eda-298547cd82f2 version: v1.0 ncalrpc: umpo e53d94ca-7464-4839-b044-09a2fb8b3ae5 version: v1.0 ncalrpc: umpo 178d84be-9291-4994-82c6-3f909aca5a03 version: v1.0 ncalrpc: umpo 4dace966-a243-4450-ae3f-9b7bcb5315b8 version: v2.0 ncalrpc: umpo 1832bcf6-cab8-41d4-85d2-c9410764f75a version: v1.0 ncalrpc: umpo c521facf-09a9-42c5-b155-72388595cbf0 version: v0.0 ncalrpc: umpo 2c7fd9ce-e706-4b40-b412-953107ef9bb0 version: v0.0 ncalrpc: umpo 88abcbc3-34ea-76ae-8215-767520655a23 version: v0.0 ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 76c217bc-c8b4-4201-a745-373ad9032b1a version: v1.0 ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 55e6b932-1979-45d6-90c5-7f6270724112 version: v1.0 ncalrpc: LRPC-37e325fce22b4ebedc ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 857fb1be-084f-4fb5-b59c-4b2c4be5f0cf version: v1.0 ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 20c40295-8dba-48e6-aebf-3e78ef3bb144 version: v2.0 ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 2513bcbe-6cd4-4348-855e-7efb3c336dd3 version: v2.0 ncalrpc: OLE49FE65ED15204190187DC9970E67 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 0d3e2735-cea0-4ecc-a9e2-41a2d81aed4e version: v1.0 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo c605f9fb-f0a3-4e2a-a073-73560f8d9e3e version: v1.0 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 1b37ca91-76b1-4f5e-a3c7-2abfc61f2bb0 version: v1.0 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 8bfc3be1-6def-4e2d-af74-7c47cd0ade4a version: v1.0 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo 2d98a740-581d-41b9-aa0d-a88b9d5ce938 version: v1.0 ncalrpc: LRPC-95114e01a4ea6b2f85 ncalrpc: actkernel ncalrpc: umpo dd59071b-3215-4c59-8481-972edadc0f6a version: v1.0 ncalrpc: actkernel ncalrpc: umpo 0361ae94-0316-4c6c-8ad8-c594375800e2 version: v1.0 ncalrpc: umpo 5824833b-3c1a-4ad2-bdfd-c31d19e23ed2 version: v1.0 ncalrpc: umpo bdaa0970-413b-4a3e-9e5d-f6dc9d7e0760 version: v1.0 ncalrpc: umpo 3b338d89-6cfa-44b8-847e-531531bc9992 version: v1.0 ncalrpc: umpo 8782d3b9-ebbd-4644-a3d8-e8725381919b version: v1.0 ncalrpc: umpo 085b0334-e454-4d91-9b8c-4134f9e793f3 version: v1.0 ncalrpc: umpo 4bec6bb8-b5c2-4b6f-b2c1-5da5cf92d0d9 version: v1.0 ncalrpc: umpo c9ac6db5-82b7-4e55-ae8a-e464ed7b4277 version: v1.0 annotation: Impl friendly name provider: sysntfy.dll ncalrpc: LRPC-9859afd7fa9d7dbe5f ncalrpc: LRPC-56ea222cb98da73f06 ncalrpc: LRPC-ae5d7a378f4d4711f7 ncalrpc: senssvc ncalrpc: IUserProfile2 ncalrpc: LRPC-9dc9ba858fb1260a5f e40f7b57-7a25-4cd3-a135-7f7d3df9d16b version: v1.0 ncalrpc: LRPC-18ae9fb4c8e888f88f 880fd55e-43b9-11e0-b1a8-cf4edfd72085 version: v1.0 annotation: KAPI Service endpoint ncalrpc: LRPC-efa5b3b4b039a98496 ncalrpc: OLE4C39A775E676D5AA4E81E32B98B1 ncalrpc: LRPC-5a67ce29737298d023 5222821f-d5e2-4885-84f1-5f6185a0ec41 version: v1.0 ncalrpc: LRPC-3298e0584dae23689b a500d4c6-0dd1-4543-bc0c-d5f93486eaf8 version: v1.0 ncalrpc: LRPC-8e4ad0f20dff71c436 ncalrpc: LRPC-41b446705cb3c52b1c 12e65dd8-887f-41ef-91bf-8d816c42c2e7 version: v1.0 annotation: Secure Desktop LRPC interface provider: winlogon.exe ncalrpc: WMsgKRpc04C3A1 f6beaff7-1e19-4fbb-9f8f-b89e2018337c version: v1.0 annotation: Event log TCPIP protocol: [MS-EVEN6]: EventLog Remoting Protocol provider: wevtsvc.dll ncacn_ip_tcp: 188.165.179.69:49666 ncacn_np: \\ELEANE\pipe\eventlog ncalrpc: eventlog 7ea70bcf-48af-4f6a-8968-6a440754d5fa version: v1.0 annotation: NSI server endpoint provider: nsisvc.dll ncalrpc: LRPC-4ea8d550c0d4203675 2eb08e3e-639f-4fba-97b1-14f878961076 version: v1.0 annotation: Group Policy RPC Interface provider: gpsvc.dll ncalrpc: LRPC-eab2df23df303f3fad 3c4728c5-f0ab-448b-bda1-6ce01eb0a6d5 version: v1.0 annotation: DHCP Client LRPC Endpoint provider: dhcpcsvc.dll ncalrpc: dhcpcsvc ncalrpc: dhcpcsvc6 3c4728c5-f0ab-448b-bda1-6ce01eb0a6d6 version: v1.0 annotation: DHCPv6 Client LRPC Endpoint provider: dhcpcsvc6.dll ncalrpc: dhcpcsvc6 3a9ef155-691d-4449-8d05-09ad57031823 version: v1.0 ncacn_ip_tcp: 188.165.179.69:49667 ncalrpc: LRPC-96ce8cfa4c2ad6d513 ncalrpc: ubpmtaskhostchannel ncacn_np: \\ELEANE\PIPE\atsvc ncalrpc: LRPC-101aad107cfad37c87 86d35949-83c9-4044-b424-db363231fd0c version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: schedsvc.dll ncacn_ip_tcp: 188.165.179.69:49667 ncalrpc: LRPC-96ce8cfa4c2ad6d513 ncalrpc: ubpmtaskhostchannel ncacn_np: \\ELEANE\PIPE\atsvc ncalrpc: LRPC-101aad107cfad37c87 33d84484-3626-47ee-8c6f-e7e98b113be1 version: v2.0 ncalrpc: LRPC-96ce8cfa4c2ad6d513 ncalrpc: ubpmtaskhostchannel ncacn_np: \\ELEANE\PIPE\atsvc ncalrpc: LRPC-101aad107cfad37c87 378e52b0-c0a9-11cf-822d-00aa0051e40f version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: taskcomp.dll ncacn_np: \\ELEANE\PIPE\atsvc ncalrpc: LRPC-101aad107cfad37c87 1ff70682-0a51-30e8-076d-740be8cee98b version: v1.0 protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol provider: taskcomp.dll ncacn_np: \\ELEANE\PIPE\atsvc ncalrpc: LRPC-101aad107cfad37c87 0a74ef1c-41a4-4e06-83ae-dc74fb1cdd53 version: v1.0 provider: schedsvc.dll ncalrpc: LRPC-101aad107cfad37c87 30adc50c-5cbc-46ce-9a0e-91914789e23c version: v1.0 annotation: NRP server endpoint provider: nrpsrv.dll ncalrpc: LRPC-45e06d9297927a77b8 ncalrpc: DNSResolver 7f1343fe-50a9-4927-a778-0c5859517bac version: v1.0 annotation: DfsDs service ncacn_np: \\ELEANE\PIPE\wkssvc ncalrpc: LRPC-6db26b78a21a261b7f eb081a0d-10ee-478a-a1dd-50995283e7a8 version: v3.0 annotation: Witness Client Test Interface ncalrpc: LRPC-6db26b78a21a261b7f f2c9b409-c1c9-4100-8639-d8ab1486694a version: v1.0 annotation: Witness Client Upcall Server ncalrpc: LRPC-6db26b78a21a261b7f 2fb92682-6599-42dc-ae13-bd2ca89bd11c version: v1.0 annotation: Fw APIs provider: MPSSVC.dll ncalrpc: LRPC-f91942b10f877c3415 ncalrpc: LRPC-302d6984f9acd20c73 ncalrpc: LRPC-dbce0a6684a04a2b32 ncalrpc: LRPC-9538200f77a66d0400 f47433c3-3e9d-4157-aad4-83aa1f5c2d4c version: v1.0 annotation: Fw APIs ncalrpc: LRPC-302d6984f9acd20c73 ncalrpc: LRPC-dbce0a6684a04a2b32 ncalrpc: LRPC-9538200f77a66d0400 7f9d11bf-7fb9-436b-a812-b2d50c5d4c03 version: v1.0 annotation: Fw APIs provider: MPSSVC.dll ncalrpc: LRPC-dbce0a6684a04a2b32 ncalrpc: LRPC-9538200f77a66d0400 dd490425-5325-4565-b774-7e27d6c09c24 version: v1.0 annotation: Base Firewall Engine API provider: BFE.DLL ncalrpc: LRPC-9538200f77a66d0400 3473dd4d-2e88-4006-9cba-22570909dd10 version: v5.256 annotation: WinHttp Auto-Proxy Service ncalrpc: 465a6946-7e47-4a38-bd71-b62daba3937a ncalrpc: LRPC-e59e5d75a87eb6bf80 13560fa9-8c09-4b56-a1fd-04d083b9b2a1 version: v1.0 ncalrpc: LRPC-19bf1a30afcd59510a c2d1b5dd-fa81-4460-9dd6-e7658b85454b version: v1.0 ncalrpc: LRPC-19bf1a30afcd59510a f44e62af-dab1-44c2-8013-049a9de417d6 version: v1.0 ncalrpc: LRPC-19bf1a30afcd59510a b37f900a-eae4-4304-a2ab-12bb668c0188 version: v1.0 ncalrpc: LRPC-19bf1a30afcd59510a abfb6ca3-0c5e-4734-9285-0aee72fe8d1c version: v1.0 ncalrpc: LRPC-19bf1a30afcd59510a 3f787932-3452-4363-8651-6ea97bb373bb version: v1.0 annotation: NSP Rpc Interface ncalrpc: LRPC-86ee391750bc7d1a6d ncalrpc: OLEDD96DD57C517EC2382E5A4A6EA80 29770a8f-829b-4158-90a2-78cd488501f7 version: v1.0 ncacn_ip_tcp: 188.165.179.69:49669 ncacn_np: \\ELEANE\pipe\SessEnvPublicRpc ncalrpc: SessEnvPrivateRpc ncalrpc: LRPC-9dc9ba858fb1260a5f 30b044a5-a225-43f0-b3a4-e060df91f9c1 version: v1.0 provider: certprop.dll ncalrpc: LRPC-edad73c3a2b342b53c 76f03f96-cdfd-44fc-a22c-64950a001209 version: v1.0 protocol: [MS-PAR]: Print System Asynchronous Remote Protocol provider: spoolsv.exe ncacn_ip_tcp: 188.165.179.69:49668 ncalrpc: LRPC-4b4389c86610b11afb 4a452661-8290-4b36-8fbe-7f4093a94978 version: v1.0 provider: spoolsv.exe ncacn_ip_tcp: 188.165.179.69:49668 ncalrpc: LRPC-4b4389c86610b11afb ae33069b-a2a8-46ee-a235-ddfd339be281 version: v1.0 protocol: [MS-PAN]: Print System Asynchronous Notification Protocol provider: spoolsv.exe ncacn_ip_tcp: 188.165.179.69:49668 ncalrpc: LRPC-4b4389c86610b11afb 0b6edbfa-4a24-4fc6-8a23-942b1eca65d1 version: v1.0 protocol: [MS-PAN]: Print System Asynchronous Notification Protocol provider: spoolsv.exe ncacn_ip_tcp: 188.165.179.69:49668 ncalrpc: LRPC-4b4389c86610b11afb 12345678-1234-abcd-ef00-0123456789ab version: v1.0 protocol: [MS-RPRN]: Print System Remote Protocol provider: spoolsv.exe ncacn_ip_tcp: 188.165.179.69:49668 ncalrpc: LRPC-4b4389c86610b11afb c36be077-e14b-4fe9-8abc-e856ef4f048b version: v1.0 annotation: Proxy Manager client server endpoint ncalrpc: OLE817836FC0ACF7799CF7E555B6342 ncalrpc: TeredoControl ncalrpc: TeredoDiagnostics ncalrpc: LRPC-2dadb952afee92b3af 2e6035b2-e8f1-41a7-a044-656b439c4c34 version: v1.0 annotation: Proxy Manager provider server endpoint ncalrpc: OLE817836FC0ACF7799CF7E555B6342 ncalrpc: TeredoControl ncalrpc: TeredoDiagnostics ncalrpc: LRPC-2dadb952afee92b3af c49a5a70-8a7f-4e70-ba16-1e8f1f193ef1 version: v1.0 annotation: Adh APIs ncalrpc: TeredoControl ncalrpc: TeredoDiagnostics ncalrpc: LRPC-2dadb952afee92b3af 552d076a-cb29-4e44-8b6a-d15e59e2c0af version: v1.0 annotation: IP Transition Configuration endpoint provider: iphlpsvc.dll ncalrpc: LRPC-2dadb952afee92b3af a398e520-d59a-4bdd-aa7a-3c1e0303a511 version: v1.0 annotation: IKE/Authip API provider: IKEEXT.DLL ncalrpc: LRPC-234401717a69e208f2 b58aa02e-2884-4e97-8176-4ee06d794184 version: v1.0 provider: sysmain.dll ncalrpc: LRPC-251cf3227f6926d1a9 0d3c7f20-1c8d-4654-a1b3-51563b298bda version: v1.0 annotation: UserMgrCli ncalrpc: LRPC-e49ed657b32772c18e ncalrpc: OLE8E4D864AB1E23B7C9353F24A3D1E b18fbab6-56f8-4702-84e0-41053293a869 version: v1.0 annotation: UserMgrCli ncalrpc: LRPC-e49ed657b32772c18e ncalrpc: OLE8E4D864AB1E23B7C9353F24A3D1E 1a0d010f-1c33-432c-b0f5-8cf4e8053099 version: v1.0 annotation: IdSegSrv service ncalrpc: LRPC-9e17680ebe521c2ef7 98716d03-89ac-44c7-bb8c-285824e51c4a version: v1.0 annotation: XactSrv service provider: srvsvc.dll ncalrpc: LRPC-9e17680ebe521c2ef7 50abc2a4-574d-40b3-9d66-ee4fd5fba076 version: v5.0 protocol: [MS-DNSP]: Domain Name Service (DNS) Server Management provider: dns.exe ncacn_ip_tcp: 188.165.179.69:49672 650a7e26-eab8-5533-ce43-9c1dfce11511 version: v1.0 annotation: Vpn APIs ncalrpc: LRPC-9ed440aa6bc38b2e3b ncalrpc: VpnikeRpc ncalrpc: RasmanLrpc ncacn_np: \\ELEANE\PIPE\ROUTER 1d45e083-478f-437c-9618-3594ced8c235 version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 98cd761e-e77d-41c8-a3c0-0fb756d90ec2 version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 d22895ef-aff4-42c5-a5b2-b14466d34ab4 version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 e38f5360-8572-473e-b696-1b46873beeab version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 95095ec8-32ea-4eb0-a3e2-041f97b36168 version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 fd8be72b-a9cd-4b2c-a9ca-4ded242fbe4d version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 4c9dbf19-d39e-4bb9-90ee-8f7179b20283 version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 d4051bde-9cdd-4910-b393-4aa85ec3c482 version: v1.0 ncalrpc: LRPC-ffdcfcb966b21617b6 ncalrpc: OLE13DCB50A7C812F9014C6CEB42856 7df1ceae-de4e-4e6f-ab14-49636e7c2052 version: v1.0 ncalrpc: LRPC-11e5d7c67e7ff056e0 367abb81-9844-35f1-ad32-98f038001003 version: v2.0 protocol: [MS-SCMR]: Service Control Manager Remote Protocol provider: services.exe ncacn_ip_tcp: 188.165.179.69:49717 509bc7ae-77be-4ee8-b07c-0d096bb44345 version: v1.0 ncalrpc: LRPC-9e0006056826da2ba2 ncalrpc: OLE76399430EEA16A0920E615904099 c503f532-443a-4c69-8300-ccd1fbdb3839 version: v2.0 ncalrpc: LRPC-8cb8dbaabb411f7020 ncalrpc: OLE042D324E5A0A981D4EE6BF1C0A6F 906b0ce0-c70b-1067-b317-00dd010662da version: v1.0 protocol: [MS-CMPO]: MSDTC Connection Manager: provider: msdtcprx.dll ncalrpc: LRPC-c3267e3c97d3d93839 ncalrpc: LRPC-c3267e3c97d3d93839 ncalrpc: LRPC-c3267e3c97d3d93839 0767a036-0d22-48aa-ba69-b619480f38cb version: v1.0 annotation: PcaSvc provider: pcasvc.dll ncalrpc: LRPC-53c2f97bf96b7eb39b d249bd56-4cc0-4fd3-8ce6-6fe050d590cb version: v0.0 ncalrpc: LRPC-d3b075b608a3a3b2c2 d8140e00-5c46-4ae6-80ac-2f9a76df224c version: v0.0 ncalrpc: LRPC-d3b075b608a3a3b2c2 b1ef227e-dfa5-421e-82bb-67a6a129c496 version: v0.0 ncalrpc: LRPC-51cbd60b5697f05ccf ncalrpc: OLE4B1A78F4A012C9202F8133FBD57D 0fc77b1a-95d8-4a2e-a0c0-cff54237462b version: v0.0 ncalrpc: LRPC-51cbd60b5697f05ccf ncalrpc: OLE4B1A78F4A012C9202F8133FBD57D 8ec21e98-b5ce-4916-a3d6-449fa428a007 version: v0.0 ncalrpc: LRPC-51cbd60b5697f05ccf ncalrpc: OLE4B1A78F4A012C9202F8133FBD57D 58e604e8-9adb-4d2e-a464-3b0683fb1480 version: v1.0 annotation: AppInfo provider: appinfo.dll ncalrpc: LRPC-cbe63ee93988f3c3d4 fd7a0523-dc70-43dd-9b2e-9c5ed48225b1 version: v1.0 annotation: AppInfo provider: appinfo.dll ncalrpc: LRPC-cbe63ee93988f3c3d4 5f54ce7d-5b79-4175-8584-cb65313a0e98 version: v1.0 annotation: AppInfo provider: appinfo.dll ncalrpc: LRPC-cbe63ee93988f3c3d4 201ef99a-7fa0-444c-9399-19ba84f12a1a version: v1.0 annotation: AppInfo provider: appinfo.dll ncalrpc: LRPC-cbe63ee93988f3c3d4 0497b57d-2e66-424f-a0c6-157cd5d41700 version: v1.0 annotation: AppInfo ncalrpc: LRPC-cbe63ee93988f3c3d4 a4b8d482-80ce-40d6-934d-b22a01a44fe7 version: v1.0 annotation: LicenseManager ncalrpc: LicenseServiceEndpoint bf4dc912-e52f-4904-8ebe-9317c1bdd497 version: v1.0 ncalrpc: LRPC-65bd3155492b3a3a13 ncalrpc: OLE3E01D2C226F5E35E13356B443887
796446818 | 2024-12-25T06:17:32.360430143 / tcp
* OK Kerio Connect 10.0.1 IMAP4rev1 server ready * CAPABILITY IMAP4 IMAP4rev1 IDLE ACL LITERAL+ UIDPLUS QUOTA ID SORT ANNOTATE ANNOTATEMORE STATUS-COUNTERS UNSELECT LISTEXT NAMESPACE XLIST SPECIAL-USE XAPPLEPUSHSERVICE STARTTLS LOGINDISABLED AUTH=CRAM-MD5 AUTH=DIGEST-MD5 AUTH=NTLM A001 OK CAPABILITY completed * ID ("name" "Kerio Connect" "version" " 10.0.1 ") A002 OK ID completed A003 BAD Unknown command 'unknowncmd' * BYE logging out A004 OK LOGOUT completed
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
-455162815 | 2024-12-23T06:10:57.686207389 / tcp
LDAP: NamingContexts: fn=ContactRoot DefaultNamingContext: fn=ContactRoot SupportedControl: 1.2.840.113556.1.4.319 1.2.840.113556.1.4.473 1.2.840.113556.1.4.474
-776596352 | 2025-01-09T14:17:09.922580443 / tcp
HTTP/1.1 200 OK Date: Thu, 09 Jan 2025 14:17:09 GMT Server: Apache/2.4.54 (Win64) OpenSSL/1.1.1s PHP/8.2.0 mod_fcgid/2.3.10-dev Content-Length: 346 Content-Type: text/html;charset=UTF-8
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
-494265567 | 2025-01-07T12:19:10.003501587 / tcp
220 eleane.com Kerio Connect 10.0.1 ESMTP ready 250-eleane.com 250-AUTH CRAM-MD5 DIGEST-MD5 NTLM 250-STARTTLS 250-ENHANCEDSTATUSCODES 250-8BITMIME 250-PIPELINING 250-ETRN 250-DSN 250 HELP SMTP NTLM Info: OS: Windows Server 2022 OS Build: 10.0.20348 Target Name: ELEANE NetBIOS Domain Name: ELEANE NetBIOS Computer Name: ELEANE DNS Domain Name: ELEANE FQDN: ELEANE
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
-455162815 | 2025-01-04T11:23:42.911597636 / tcp
LDAP: NamingContexts: fn=ContactRoot DefaultNamingContext: fn=ContactRoot SupportedControl: 1.2.840.113556.1.4.319 1.2.840.113556.1.4.473 1.2.840.113556.1.4.474
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
1195246716 | 2025-01-01T09:41:55.065966993 / tcp
* OK Kerio Connect 10.0.1 IMAP4rev1 server ready * CAPABILITY IMAP4 IMAP4rev1 IDLE ACL LITERAL+ UIDPLUS QUOTA ID SORT ANNOTATE ANNOTATEMORE STATUS-COUNTERS UNSELECT LISTEXT NAMESPACE XLIST SPECIAL-USE XAPPLEPUSHSERVICE AUTH=CRAM-MD5 AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=NTLM A001 OK CAPABILITY completed * ID ("name" "Kerio Connect" "version" " 10.0.1 ") A002 OK ID completed A003 BAD Unknown command 'unknowncmd' * BYE logging out A004 OK LOGOUT completed
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
-2085916659 | 2025-01-09T05:40:47.868836995 / tcp
+OK Kerio Connect 10.0.1 POP3 server ready <9132.1736401237@eleane.com> +OK Capability list follows SASL CRAM-MD5 PLAIN LOGIN DIGEST-MD5 NTLM TOP USER UIDL .
Certificate: Data: Version: 3 (0x2) Serial Number: 7e:31:62:89:76:bd:c1:71:e8:20:71:ba:f9:78:a2:f6 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Jul 5 00:00:00 2024 GMT Not After : Aug 4 23:59:59 2025 GMT Subject: CN=*.eleane.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:f5:9d:85:14:2b:ae:9d:51:2a:fe:34:64:a6:99: 3e:44:07:00:d3:cb:5c:35:0a:91:ec:a0:57:1b:3b: 68:6a:79:1b:65:1a:18:f0:91:e6:ca:d2:b2:09:5f: 41:4b:61:b0:c8:4a:08:2d:1c:21:ef:f7:28:5c:08: 7e:d4:7d:bd:e6:4c:a2:14:e1:3c:1a:21:89:c5:c3: 1c:9e:52:fc:a3:3a:ff:20:ae:02:7c:6c:1f:9f:41: 89:22:4f:77:3c:42:8a:93:b9:3b:06:ec:00:50:7e: 4d:89:d3:6f:0d:80:ee:f7:24:3b:ec:3f:38:a1:f7: 23:69:f8:4e:5e:b2:ff:2c:29:82:a9:bd:9c:0e:bf: ff:c5:d6:18:01:55:1b:87:c2:4b:8f:bb:82:95:df: 36:85:20:1a:47:65:1c:f4:3d:ea:8c:a0:24:28:5a: f5:79:43:d7:2b:f5:d2:dd:22:10:cf:8a:71:26:39: ba:4f:90:fa:e8:ce:c9:8e:12:62:33:55:1a:fa:09: e5:67:d4:9c:ae:ac:f1:85:9d:13:36:fb:69:c8:67: ea:b8:62:d2:c0:40:4d:f7:92:44:27:c3:16:61:d0: 1b:5a:33:82:b2:9b:52:28:6a:9e:f0:b6:0d:ca:8a: 0c:70:3b:e3:fd:5a:8b:6f:40:37:47:55:6d:a3:57: 47:df Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: B3:1E:94:28:E9:9A:90:5C:21:F5:BB:7D:76:EC:EB:E1:3D:23:1D:41 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:*.eleane.com, DNS:eleane.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8: 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A Timestamp : Jul 5 05:37:37.738 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:7C:44:BA:61:8C:53:E0:01:D0:AD:A8:AF: CB:94:7D:EC:66:85:CB:04:EF:33:2D:A8:8B:E8:68:17: 94:D7:4B:0F:02:20:56:22:88:DB:44:18:41:E8:EB:85: E9:C5:4D:94:99:C1:0C:6D:87:2C:96:05:E8:65:DE:59: B2:BC:93:E1:DE:74 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Jul 5 05:37:37.703 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:66:4B:E0:73:68:11:D9:A6:B2:0F:E1:C1: A2:06:93:20:62:80:22:88:38:7E:24:44:B9:57:32:04: 15:52:A2:BA:02:20:06:C9:22:95:42:07:C3:14:81:51: AC:96:65:03:3E:38:17:30:40:21:3C:99:AB:AD:67:4E: 9B:D1:3A:BA:E0:43 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Jul 5 05:37:37.702 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:99:12:39:BF:02:89:C7:25:F5:0F:AC: 4C:48:13:C7:B8:78:96:81:43:97:C6:5D:52:F1:E1:01: 78:86:7A:9B:94:02:21:00:AC:DF:50:DD:86:84:B4:1B: 7B:CC:43:C1:A9:EC:11:24:1C:7E:49:31:F7:E0:C9:19: ED:A3:AB:B4:AC:41:E5:FA Signature Algorithm: sha256WithRSAEncryption Signature Value: 75:93:98:b3:d9:00:6c:83:b0:c9:b4:bc:48:31:84:0a:20:1b: fc:99:db:4d:0c:cf:36:cb:78:1b:26:4d:19:e3:7d:9f:a0:da: 5a:26:9c:43:bd:61:fe:34:0a:1e:f0:30:4b:c7:bb:97:34:25: 66:57:66:b1:30:9e:b0:90:87:74:9b:98:0f:8b:6f:e3:b8:b0: 53:73:e0:13:42:b1:a2:f5:65:44:fd:8c:98:c6:ca:84:09:8a: 22:08:e2:f8:b3:23:51:b6:31:b8:5a:60:c1:35:c2:f6:6a:5c: 65:75:c3:ae:ab:0c:02:bc:24:d0:2f:65:e9:15:a3:11:ae:ea: a2:d8:01:cb:46:ee:25:44:6c:57:8f:2c:20:2f:75:1e:e1:4e: f4:e4:cf:66:b9:7f:f9:63:9a:2a:84:77:e7:59:c7:02:7e:50: c4:69:b1:e2:bf:dc:cd:a6:c1:dd:3d:49:c4:64:8b:a3:ab:46: 24:f6:9a:41:c5:ab:5c:73:cd:43:75:58:43:98:e8:3b:19:0f: 98:c0:41:c4:62:cb:07:14:91:2f:15:c6:ef:16:e0:88:16:56: 79:ec:11:66:d3:d0:12:b2:7c:ec:b1:fa:19:b2:fc:0b:c7:c1: a5:4f:82:bd:4e:f6:d0:d1:6a:60:52:db:2a:7d:68:78:a1:1d: 8b:f6:b3:f2
-1168517562 | 2024-12-31T17:56:20.2777173306 / tcp
MySQL: Protocol Version: 10 Version: 5.7.26 Capabilities: 63487 Server Language: 8 Server Status: 2 Extended Server Capabilities: 33279 Authentication Plugin: mysql_native_password
113261523 | 2024-12-30T10:37:31.3694563389 / tcp
Remote Desktop Protocol \x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00 Remote Desktop Protocol NTLM Info: OS: Windows Server 2022 OS Build: 10.0.20348 Target Name: ELEANE NetBIOS Domain Name: ELEANE NetBIOS Computer Name: ELEANE DNS Domain Name: ELEANE FQDN: ELEANE
Certificate: Data: Version: 3 (0x2) Serial Number: 58:4d:56:c4:3f:20:de:88:4a:07:c3:57:2d:eb:c0:c4 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=ELEANE Validity Not Before: Aug 27 13:34:22 2024 GMT Not After : Feb 26 13:34:22 2025 GMT Subject: CN=ELEANE Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d7:5f:cf:5a:46:ee:b8:8f:59:49:3a:62:9d:37: 5b:fb:69:ee:c2:56:ca:5d:94:d0:cb:aa:29:bc:15: 23:5f:e0:db:99:a0:66:e0:c1:ed:7e:be:03:bf:46: 35:5f:d1:4c:06:1c:3c:b1:88:90:b6:d5:f4:0f:9b: fc:d0:41:e0:b7:94:c7:65:f9:50:fb:87:72:59:92: cd:71:3d:1e:05:ac:87:12:9c:ea:bc:4c:6b:69:96: 20:93:c0:c8:28:30:84:19:e7:8e:e8:14:bf:9b:aa: ee:7d:04:e6:ec:e4:98:4e:ff:34:dc:45:4a:8b:a6: e7:e2:3f:4a:79:da:29:1c:1f:ba:7f:0b:a8:56:c8: fd:70:7f:89:c8:84:99:5f:7b:ff:70:06:87:db:13: 60:c9:97:c4:a9:b6:59:7e:59:c9:21:48:c9:90:b6: e9:b6:51:ea:b4:17:de:a9:3d:86:16:64:a3:fd:2f: 25:cd:a2:63:47:ed:4e:e4:cc:00:d5:33:6f:05:e6: da:64:8e:f6:b2:f9:87:be:9d:1a:45:b9:bf:6a:fa: f1:b8:70:a4:b8:0e:df:63:ae:eb:78:b5:77:38:61: 97:5a:9d:51:1d:40:6f:c5:03:a4:a9:25:4d:24:f3: bc:f7:55:9e:d3:f2:0f:57:73:32:70:27:88:d8:a4: f4:c5 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Key Usage: Key Encipherment, Data Encipherment Signature Algorithm: sha256WithRSAEncryption Signature Value: 0d:ac:64:2d:c6:ae:c3:03:6e:cc:b6:74:a6:96:3b:70:d8:79: a1:bc:b7:0b:7c:e1:50:8d:96:2a:55:dc:70:f3:e9:a7:fe:43: ca:22:c9:e2:0b:cb:bc:a7:20:78:7c:d6:db:12:db:9c:d3:ad: 29:af:d4:b8:44:26:9e:32:fb:66:fc:0f:f7:e8:42:ee:d1:32: da:6d:1c:21:7b:1a:ce:f7:e5:59:1d:9d:75:86:a5:e3:f6:39: d7:6e:ca:6a:1e:18:ff:f9:69:3e:bc:b4:09:31:28:e7:ef:a5: 1e:c3:1c:5f:a3:bd:50:e7:7c:ba:1b:e1:e4:86:b6:e6:ae:1d: a6:60:c1:b8:4b:3b:81:b5:da:08:aa:c6:47:d8:94:f7:36:b5: 16:73:38:3f:ad:10:ba:b3:aa:f8:5a:78:a0:fe:a9:94:d7:76: 8b:20:cf:85:35:3d:fc:8c:85:37:93:f0:35:63:94:5a:ce:95: de:98:ee:17:02:ab:57:3e:7a:93:8c:dd:bf:f5:91:b8:9c:9a: 02:47:37:f1:b3:65:8b:27:b8:84:8c:4b:13:e5:1b:89:7e:02: a5:a6:c4:b6:18:37:d5:e7:11:ca:5b:7b:8a:ad:11:3e:8b:27: 6b:64:2f:23:1a:6a:63:77:b0:b5:02:72:fc:db:14:8a:a2:90: 95:1a:ae:8b
1070348256 | 2025-01-05T06:49:38.2784554040 / tcp
HTTP/1.1 301 Moved permanently Connection: Close Content-Length: 314 Content-Type: text/html Date: Sun, 5 Jan 2025 06:49:36 GMT Location: https://188.165.179.69:4040/ Server: Kerio Connect 10.0.1 X-UA-Compatible: IE=edge
-2140430768 | 2025-01-07T20:05:58.9045845222 / tcp
<?xml version='1.0'?><stream:stream xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' id='tigase-error-tigase' from='eleane' version='1.0' xml:lang='en'><stream:error><host-unknown xmlns='urn:ietf:params:xml:ns:xmpp-streams'/></stream:error></stream:stream>