521632310 | 2024-10-23T19:06:48.867246
21 /
tcp
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 1 of 50 allowed.
220-Local time is now 15:06. Server port: 21.
220-This is a private system - No anonymous login
220-IPv6 connections are also welcome on this server.
220 You will be disconnected after 15 minutes of inactivity.
530 Login authentication failed
214-The following SITE commands are recognized
CHMOD
IDLE
UTIME
214 Pure-FTPd - http://pureftpd.org/
211-Extensions supported:
UTF8
EPRT
IDLE
MDTM
SIZE
MFMT
REST STREAM
MLST type*;size*;sizd*;modify*;UNIX.mode*;UNIX.uid*;UNIX.gid*;unique*;
MLSD
PRET
AUTH TLS
PBSZ
PROT
TVFS
ESTA
PASV
EPSV
ESTP
211 End.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:a3:c8:0b:6e:97:48:98:1b:53:ee:d0:14:86:24:3f:db:a7
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Aug 26 06:58:59 2024 GMT
Not After : Nov 24 06:58:58 2024 GMT
Subject: CN=server-196-247-57-90.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:54:5a:ef:71:6f:19:b8:3b:a4:3f:83:ac:ca:29:
1a:5b:86:97:ea:2a:9e:f8:83:f7:72:e3:81:5a:f0:
82:79:38:f2:82:00:16:d6:de:91:75:3d:2c:64:f5:
61:8b:65:03:fc:38:01:ce:03:27:8f:83:74:4f:c7:
4d:aa:db:f0:44
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
F0:CC:3C:48:85:37:F3:C3:F7:B6:4E:15:BD:5B:6D:0D:D8:00:DF:26
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-196-247-57-90.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Aug 26 07:57:29.896 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:01:CD:5C:32:87:8C:D8:C6:8E:65:17:2B:
46:82:38:8A:BF:6E:F6:6F:23:DF:5E:0E:9B:EF:86:B2:
DA:CD:92:F8:02:21:00:9B:41:3B:0B:40:0D:34:E9:2A:
46:18:72:55:66:25:4F:D5:B2:33:7A:D4:6D:62:07:3C:
D1:34:56:00:2D:BF:BF
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Aug 26 07:57:29.895 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:87:C3:DF:81:82:2C:D2:D4:53:8A:0C:
1A:22:16:B6:6F:F8:6F:56:FC:9A:FE:A0:19:D0:E6:F8:
54:04:8D:17:B9:02:20:61:4F:21:67:38:2E:F5:AD:54:
7A:17:FF:D9:06:8A:10:DE:77:39:B1:6D:A6:7E:A9:F5:
C4:B1:04:96:24:61:B6
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:66:02:31:00:87:dd:73:5c:8e:fc:bc:b5:50:22:c4:4b:ab:
8a:5c:2a:b5:0b:3c:a4:16:85:fa:08:7d:c0:bc:7e:29:e6:a9:
fd:ce:f4:9e:db:be:f8:38:dd:45:de:a7:50:01:a0:72:c1:02:
31:00:8e:eb:c1:94:98:50:48:59:46:cf:ab:44:9e:2c:f8:cc:
0f:de:43:53:eb:09:64:a3:01:46:6a:5b:fb:a8:fb:46:5e:2f:
48:46:4e:d1:ad:b6:37:ec:c1:dc:ed:8c:83:a0
-788252859 | 2024-11-04T18:15:33.025153
53 /
tcp
9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.13
Resolver name: server-196-247-57-90.da.direct
-788252859 | 2024-10-26T23:03:21.459980
53 /
udp
9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.13
Resolver name: server-196-247-57-90.da.direct
1765360226 | 2024-11-07T01:38:22.295377
80 /
tcp
HTTP/1.1 403 Forbidden
Server: nginx
Date: Thu, 07 Nov 2024 01:38:22 GMT
Content-Type: text/html
Content-Length: 548
Connection: keep-alive
Vary: Accept-Encoding
105017197 | 2024-10-17T08:53:54.718800
143 /
tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN] Dovecot DA ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:a3:c8:0b:6e:97:48:98:1b:53:ee:d0:14:86:24:3f:db:a7
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Aug 26 06:58:59 2024 GMT
Not After : Nov 24 06:58:58 2024 GMT
Subject: CN=server-196-247-57-90.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:54:5a:ef:71:6f:19:b8:3b:a4:3f:83:ac:ca:29:
1a:5b:86:97:ea:2a:9e:f8:83:f7:72:e3:81:5a:f0:
82:79:38:f2:82:00:16:d6:de:91:75:3d:2c:64:f5:
61:8b:65:03:fc:38:01:ce:03:27:8f:83:74:4f:c7:
4d:aa:db:f0:44
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
F0:CC:3C:48:85:37:F3:C3:F7:B6:4E:15:BD:5B:6D:0D:D8:00:DF:26
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-196-247-57-90.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Aug 26 07:57:29.896 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:01:CD:5C:32:87:8C:D8:C6:8E:65:17:2B:
46:82:38:8A:BF:6E:F6:6F:23:DF:5E:0E:9B:EF:86:B2:
DA:CD:92:F8:02:21:00:9B:41:3B:0B:40:0D:34:E9:2A:
46:18:72:55:66:25:4F:D5:B2:33:7A:D4:6D:62:07:3C:
D1:34:56:00:2D:BF:BF
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Aug 26 07:57:29.895 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:87:C3:DF:81:82:2C:D2:D4:53:8A:0C:
1A:22:16:B6:6F:F8:6F:56:FC:9A:FE:A0:19:D0:E6:F8:
54:04:8D:17:B9:02:20:61:4F:21:67:38:2E:F5:AD:54:
7A:17:FF:D9:06:8A:10:DE:77:39:B1:6D:A6:7E:A9:F5:
C4:B1:04:96:24:61:B6
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:66:02:31:00:87:dd:73:5c:8e:fc:bc:b5:50:22:c4:4b:ab:
8a:5c:2a:b5:0b:3c:a4:16:85:fa:08:7d:c0:bc:7e:29:e6:a9:
fd:ce:f4:9e:db:be:f8:38:dd:45:de:a7:50:01:a0:72:c1:02:
31:00:8e:eb:c1:94:98:50:48:59:46:cf:ab:44:9e:2c:f8:cc:
0f:de:43:53:eb:09:64:a3:01:46:6a:5b:fb:a8:fb:46:5e:2f:
48:46:4e:d1:ad:b6:37:ec:c1:dc:ed:8c:83:a0
1765360226 | 2024-11-06T07:03:22.020814
443 /
tcp
HTTP/1.1 403 Forbidden
Server: nginx
Date: Wed, 06 Nov 2024 07:03:21 GMT
Content-Type: text/html
Content-Length: 548
Connection: keep-alive
Vary: Accept-Encoding
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:a3:c8:0b:6e:97:48:98:1b:53:ee:d0:14:86:24:3f:db:a7
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Aug 26 06:58:59 2024 GMT
Not After : Nov 24 06:58:58 2024 GMT
Subject: CN=server-196-247-57-90.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:54:5a:ef:71:6f:19:b8:3b:a4:3f:83:ac:ca:29:
1a:5b:86:97:ea:2a:9e:f8:83:f7:72:e3:81:5a:f0:
82:79:38:f2:82:00:16:d6:de:91:75:3d:2c:64:f5:
61:8b:65:03:fc:38:01:ce:03:27:8f:83:74:4f:c7:
4d:aa:db:f0:44
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
F0:CC:3C:48:85:37:F3:C3:F7:B6:4E:15:BD:5B:6D:0D:D8:00:DF:26
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-196-247-57-90.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Aug 26 07:57:29.896 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:01:CD:5C:32:87:8C:D8:C6:8E:65:17:2B:
46:82:38:8A:BF:6E:F6:6F:23:DF:5E:0E:9B:EF:86:B2:
DA:CD:92:F8:02:21:00:9B:41:3B:0B:40:0D:34:E9:2A:
46:18:72:55:66:25:4F:D5:B2:33:7A:D4:6D:62:07:3C:
D1:34:56:00:2D:BF:BF
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Aug 26 07:57:29.895 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:87:C3:DF:81:82:2C:D2:D4:53:8A:0C:
1A:22:16:B6:6F:F8:6F:56:FC:9A:FE:A0:19:D0:E6:F8:
54:04:8D:17:B9:02:20:61:4F:21:67:38:2E:F5:AD:54:
7A:17:FF:D9:06:8A:10:DE:77:39:B1:6D:A6:7E:A9:F5:
C4:B1:04:96:24:61:B6
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:66:02:31:00:87:dd:73:5c:8e:fc:bc:b5:50:22:c4:4b:ab:
8a:5c:2a:b5:0b:3c:a4:16:85:fa:08:7d:c0:bc:7e:29:e6:a9:
fd:ce:f4:9e:db:be:f8:38:dd:45:de:a7:50:01:a0:72:c1:02:
31:00:8e:eb:c1:94:98:50:48:59:46:cf:ab:44:9e:2c:f8:cc:
0f:de:43:53:eb:09:64:a3:01:46:6a:5b:fb:a8:fb:46:5e:2f:
48:46:4e:d1:ad:b6:37:ec:c1:dc:ed:8c:83:a0
1850658970 | 2024-10-24T12:41:04.395725
465 /
tcp
220 server-196-247-57-90.da.direct ESMTP Exim 4.96-58-g4e9ed49f8 Thu, 24 Oct 2024 08:40:45 -0400
250-server-196-247-57-90.da.direct Hello edpmnup5w7rxb.com [224.27.52.141]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH PLAIN LOGIN
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:a3:c8:0b:6e:97:48:98:1b:53:ee:d0:14:86:24:3f:db:a7
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Aug 26 06:58:59 2024 GMT
Not After : Nov 24 06:58:58 2024 GMT
Subject: CN=server-196-247-57-90.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:54:5a:ef:71:6f:19:b8:3b:a4:3f:83:ac:ca:29:
1a:5b:86:97:ea:2a:9e:f8:83:f7:72:e3:81:5a:f0:
82:79:38:f2:82:00:16:d6:de:91:75:3d:2c:64:f5:
61:8b:65:03:fc:38:01:ce:03:27:8f:83:74:4f:c7:
4d:aa:db:f0:44
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
F0:CC:3C:48:85:37:F3:C3:F7:B6:4E:15:BD:5B:6D:0D:D8:00:DF:26
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-196-247-57-90.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
Timestamp : Aug 26 07:57:29.896 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:01:CD:5C:32:87:8C:D8:C6:8E:65:17:2B:
46:82:38:8A:BF:6E:F6:6F:23:DF:5E:0E:9B:EF:86:B2:
DA:CD:92:F8:02:21:00:9B:41:3B:0B:40:0D:34:E9:2A:
46:18:72:55:66:25:4F:D5:B2:33:7A:D4:6D:62:07:3C:
D1:34:56:00:2D:BF:BF
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Aug 26 07:57:29.895 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:87:C3:DF:81:82:2C:D2:D4:53:8A:0C:
1A:22:16:B6:6F:F8:6F:56:FC:9A:FE:A0:19:D0:E6:F8:
54:04:8D:17:B9:02:20:61:4F:21:67:38:2E:F5:AD:54:
7A:17:FF:D9:06:8A:10:DE:77:39:B1:6D:A6:7E:A9:F5:
C4:B1:04:96:24:61:B6
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:66:02:31:00:87:dd:73:5c:8e:fc:bc:b5:50:22:c4:4b:ab:
8a:5c:2a:b5:0b:3c:a4:16:85:fa:08:7d:c0:bc:7e:29:e6:a9:
fd:ce:f4:9e:db:be:f8:38:dd:45:de:a7:50:01:a0:72:c1:02:
31:00:8e:eb:c1:94:98:50:48:59:46:cf:ab:44:9e:2c:f8:cc:
0f:de:43:53:eb:09:64:a3:01:46:6a:5b:fb:a8:fb:46:5e:2f:
48:46:4e:d1:ad:b6:37:ec:c1:dc:ed:8c:83:a0
669445267 | 2024-10-30T13:33:45.775611
2222 /
tcp
HTTP/1.0 400 Bad Request
x-use-https: yes
Conent-Type: text/html