-1294936700 | 2024-09-09T09:55:08.889546
21 /
tcp
220 ProFTPD Server (Debian) [::ffff:10.0.0.52]
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
EPRT EPSV ALLO RNFR RNTO DELE MDTM RMD
XRMD MKD XMKD PWD XPWD SIZE SYST HELP
NOOP FEAT OPTS HOST CLNT AUTH* CCC* CONF*
ENC* MIC* PBSZ* PROT* TYPE STRU MODE RETR
STOR STOU APPE REST ABOR RANG USER PASS
ACCT* REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@guevara.fiduciariadelnorte.com.ar
211-Features:
CLNT
CSID
EPRT
EPSV
HOST
LANG en-US*
MDTM
MFF modify;UNIX.group;UNIX.mode;
MFMT
MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
RANG STREAM
REST STREAM
SITE COPY
SITE MKDIR
SITE RMDIR
SITE SYMLINK
SITE UTIME
SIZE
TVFS
UTF8
211 End
1923813153 | 2024-09-18T07:25:52.849608
22 /
tcp
SSH-2.0-OpenSSH_9.2p1 Debian-2+deb12u3
Key type: ecdsa-sha2-nistp256
Key: AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBMmFALMdbw3YwMVa/spYotaw
snPaZ3+fqJnK17U/6irFEQKk0NbwRPuiM+hoEXNkoW0iXRxpyBPLEuUSqHPp7X4=
Fingerprint: c2:5d:73:4a:06:f5:d7:62:50:47:76:5e:ed:78:ce:ff
Kex Algorithms:
sntrup761x25519-sha512@openssh.com
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group14-sha256
kex-strict-s-v00@openssh.com
Server Host Key Algorithms:
rsa-sha2-512
rsa-sha2-256
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
zlib@openssh.com
482360261 | 2024-09-06T15:13:22.402343
80 /
tcp
HTTP/1.1 301 Moved Permanently
Date: Fri, 06 Sep 2024 15:13:21 GMT
Server: Apache/2.4.62
X-Redirect-By: WordPress
Location: https://fiduciariadelnorte.com.ar/
X-Content-Type-Options: nosniff
X-Frame-Options: sameorigin
Content-Length: 0
Content-Type: text/html; charset=UTF-8
-993869234 | 2024-09-18T08:10:39.483682
111 /
udp
Portmap
Program Version Protocol Port
portmapper 4 tcp 111
portmapper 3 tcp 111
portmapper 2 tcp 111
portmapper 4 udp 111
portmapper 3 udp 111
portmapper 2 udp 111
mountd 1 udp 52264
mountd 1 tcp 60739
mountd 2 udp 56990
mountd 2 tcp 54937
mountd 3 udp 41755
mountd 3 tcp 41361
status 1 udp 38555
status 1 tcp 55025
nfs 3 tcp 2049
nfs 4 tcp 2049
100227 3 tcp 2049
nlockmgr 1 udp 49521
nlockmgr 3 udp 49521
nlockmgr 4 udp 49521
nlockmgr 1 tcp 44645
nlockmgr 3 tcp 44645
nlockmgr 4 tcp 44645
-1970775531 | 2024-09-17T12:38:03.139817
137 /
udp
NetBIOS Response:
Server Name: GUEVARA
MAC Address: 00:00:00:00:00:00
Names:
GUEVARA <0x0>
GUEVARA <0x3>
GUEVARA <0x20>
<0x0>
<0x1e>
Additional Interfaces:
32.0.0.52
2032998427 | 2024-09-16T01:02:33.215112
443 /
tcp
HTTP/1.1 200 OK
Date: Mon, 16 Sep 2024 01:02:32 GMT
Server: Apache/2.4.62
Link: <https://fiduciariadelnorte.com.ar/wp-json/>; rel="https://api.w.org/", <https://fiduciariadelnorte.com.ar/wp-json/wp/v2/pages/2>; rel="alternate"; title="JSON"; type="application/json", <https://fiduciariadelnorte.com.ar/>; rel=shortlink
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Frame-Options: sameorigin
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:3c:fe:ca:ea:46:2c:ab:f0:28:0d:a6:72:99:d7:d3:08:30
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Sep 5 17:02:27 2024 GMT
Not After : Dec 4 17:02:26 2024 GMT
Subject: CN=fiduciariadelnorte.com.ar
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:a1:c2:bf:32:8c:03:10:8b:75:70:f8:d4:39:0b:
b3:3e:52:a4:9d:2a:41:ad:85:c9:eb:cc:bb:f9:75:
2d:bb:ff:65:cf:1f:b1:8c:b2:3a:7d:78:11:87:94:
5b:85:a3:91:1c:b9:43:cd:ae:46:11:87:bc:8b:ba:
f1:b2:15:d5:71
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
92:4F:89:CB:D7:3A:63:08:B9:7F:A9:3E:38:F9:28:15:ED:A5:60:FF
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:fiduciariadelnorte.com.ar
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Sep 5 18:00:57.772 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:BE:DE:74:17:97:69:B5:7A:CA:22:89:
9B:DF:ED:C0:86:A8:79:E1:84:4B:65:F1:5F:76:59:57:
E2:6D:99:68:D5:02:21:00:D6:B7:FF:59:53:E0:2B:13:
7B:5C:70:71:C6:D0:11:B4:98:38:24:3E:8C:08:81:95:
E2:CB:12:35:34:FD:FE:60
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
Timestamp : Sep 5 18:00:59.705 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:FC:FC:28:F7:76:8E:2B:69:95:1A:7E:
FC:BE:F5:FD:0B:7B:FA:7E:1D:0A:B9:2F:42:AF:47:CA:
55:13:A8:7E:6D:02:20:4B:61:64:38:5B:17:D4:DF:1B:
E6:25:1B:81:2D:F4:00:4C:46:1C:E3:9F:00:4F:92:CB:
F5:DE:46:20:76:12:1A
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:66:02:31:00:ed:e1:35:e6:db:fc:17:92:90:ee:de:a1:6e:
56:97:93:92:0d:6a:be:dc:8f:3a:0f:e3:b1:39:28:e3:0d:99:
63:b8:e8:1e:e6:60:5b:8e:1e:1c:80:6f:c7:a5:c1:04:34:02:
31:00:88:c2:e1:7e:7b:18:37:55:11:9f:43:de:d0:f0:aa:d8:
14:86:6a:9c:33:0b:5b:13:dc:f5:77:86:8c:dd:14:46:81:5b:
02:3c:6a:e5:9b:98:dc:1f:c6:80:5c:c4:d3:52
-162974411 | 2024-09-19T17:40:40.810513
445 /
tcp
SMB Status:
Authentication: disabled
SMB Version: 2
Capabilities: raw-mode
Shares
Name Type Comments
------------------------------------------------------------------------
public Disk Public Folder
private Disk Private Folder
IPC$ IPC IPC Service (Samba 4.17.12-Debian)
-1806676894 | 2024-09-05T02:38:20.808204
3306 /
tcp
MariaDB:
Protocol Version: 10
Version: 10.11.6-MariaDB-0+deb12u1-log
Capabilities: 63486
Server Language: 45
Server Status: 2
Extended Server Capabilities: 33279
Authentication Plugin: mysql_native_password
18225867 | 2024-09-13T13:08:54.596602
9000 /
tcp
HTTP/1.1 200 OK
Accept-Ranges: bytes
Cache-Control: max-age=31536000
Content-Length: 18201
Content-Type: text/html; charset=utf-8
Last-Modified: Mon, 21 Nov 2022 00:37:50 GMT
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Xss-Protection: 1; mode=block
Date: Fri, 13 Sep 2024 13:08:54 GMT
<!doctype html><html lang="en" ng-app="portainer" ng-strict-di data-edition="CE"><head><meta charset="utf-8"/><title>Portainer</title><meta name="description" content=""/><meta name="author" content="Portainer.io"/><meta http-equiv="cache-control" content="no-cache"/><meta http-equiv="expires" content="0"/><meta http-equiv="pragma" content="no-cache"/><base id="base"/><script>if (window.origin == 'file://') {
// we are loading the app from a local file as in docker extension
document.getElementById('base').href = 'http://localhost:49000/';
window.ddExtension = true;
} else {
var path = window.location.pathname.replace(/^\/+|\/+$/g, '');
var basePath = path ? '/' + path + '/' : '/';
document.getElementById('base').href = basePath;
}</script><!--[if lt IE 9]>
<script src="//html5shim.googlecode.com/svn/trunk/html5.js"></script>
<![endif]--><link rel="apple-touch-icon" sizes="180x180" href="63a301f0574f1a696ce6.png"/><link rel="icon" type="image/png" sizes="32x32" href="2dcfc527d067d4ae3424.png"/><link rel="icon" type="image/png" sizes="16x16" href="112a479c093f4729251d.png"/><link rel="mask-icon" href="data:image/svg+xml;base64,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