21 /
tcp
-978606314 | 2025-03-07T18:28:21.891788
220 ProFTPD Server (ProFTPD) [::ffff:212.20.147.12]\r\n
53 /
tcp
-517919042 | 2025-02-10T18:41:25.005823
none
Resolver name: server.biziarayin.com
53 /
udp
-517919042 | 2025-02-25T16:25:34.847867
none
Resolver name: server.biziarayin.com
110 /
tcp
-1433009661 | 2025-03-07T18:05:09.627788
+OK Dovecot ready. <b6958.1.67cb3555.8U6bvz2JnGHKlfg4oXkkqg==@server.biziarayin.com>\r\n
143 /
tcp
-127552878 | 2025-02-16T07:44:12.316214
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 1736772463 (0x67850b6f)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=CH, L=Schaffhausen, O=Plesk, CN=Plesk/emailAddress=info@plesk.com
Validity
Not Before: Jan 13 12:47:43 2025 GMT
Not After : Jan 13 12:47:43 2026 GMT
Subject: C=CH, L=Schaffhausen, O=Plesk, CN=Plesk/emailAddress=info@plesk.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bd:0e:b5:df:8e:88:45:e1:50:c9:51:9a:39:f1:
b0:78:8b:09:2c:94:90:dc:a9:4b:38:e1:cb:d0:43:
d9:e7:73:1e:3c:f9:10:58:9e:98:6b:0d:82:0e:3a:
09:33:5a:e8:3b:b1:c4:ad:2d:4d:c6:60:56:1c:57:
1c:38:7e:0b:a6:33:b9:ea:a6:29:95:e2:d8:f6:24:
7f:f5:ae:03:e9:ea:41:0a:58:82:fc:10:2a:b6:ab:
32:34:eb:45:52:7a:3b:8a:40:10:1b:dc:f5:44:ce:
81:ee:e2:b2:14:14:86:9b:b3:7d:a7:11:51:e7:b8:
f1:41:15:6f:ca:1e:4f:86:f7:a6:7f:46:b2:82:9a:
99:52:c2:70:01:2d:45:ec:dc:04:ff:8f:f1:34:49:
23:1c:91:53:fd:70:81:85:6d:c8:fb:c6:aa:20:60:
29:3f:7b:54:07:c0:ae:25:57:46:ed:e6:c4:a0:84:
d7:51:e7:85:81:65:47:b7:41:fd:48:45:2f:e5:0a:
b4:4e:c3:c2:03:98:7e:17:b1:7c:ba:d1:01:a6:9c:
6e:b8:98:b7:db:d1:c5:0d:3e:74:8a:22:69:03:dd:
8f:ee:f8:9c:64:0e:ec:32:e4:6a:88:49:74:57:ed:
73:05:7e:89:0d:a7:b1:50:4b:e9:ec:db:c6:20:94:
e3:db
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Subject Key Identifier:
12:02:83:C7:AB:3A:12:38:3C:59:B7:EF:F3:8E:61:CE:C0:C1:72:23
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
9b:9f:6d:ff:df:de:61:47:f1:82:66:57:91:c4:e2:83:a2:c4:
72:a3:8f:89:15:1d:26:96:81:cd:05:82:ff:0c:b9:2d:68:f1:
59:99:80:44:4b:2a:ad:8c:d4:ee:5a:09:80:ee:60:43:ee:9b:
84:15:a4:84:ff:d4:47:39:75:34:6f:03:bb:93:27:50:f8:48:
21:fb:7e:32:c7:9f:f5:fa:bd:39:3e:a8:0d:14:37:70:67:90:
4c:95:42:bb:ab:b0:7c:13:4b:64:55:7e:b5:cb:21:fd:7a:40:
d6:8c:df:1b:08:65:0d:80:20:df:c7:c5:3b:fc:00:0c:4b:16:
c1:8a:4d:de:da:49:65:4b:7c:a9:03:90:19:d4:52:51:69:cf:
26:c7:f6:a0:01:f0:18:4b:43:94:91:6e:fb:b3:68:38:d7:25:
5e:d3:c2:4f:21:96:10:3a:d1:0f:30:bf:bd:27:ab:7c:28:a7:
f7:f9:dd:84:94:8e:22:8a:3c:06:9a:58:71:17:4d:a6:0c:63:
f7:ba:9c:9f:95:9f:2e:68:44:ef:1d:9f:41:00:77:13:82:57:
95:36:65:53:52:66:2d:26:16:22:da:08:94:2f:e3:a9:08:bb:
18:cf:ff:af:ad:68:34:07:ec:20:11:07:ad:e3:4b:94:a8:d8:
b4:90:53:eb
1235149293 | 2025-02-14T06:28:13.295476
HTTP/1.1 400 Bad Request
Server: nginx
Date: Fri, 14 Feb 2025 06:28:12 GMT
Content-Type: text/html
Content-Length: 248
Connection: close
<html>
<head><title>400 The plain HTTP request was sent to HTTPS port</title></head>
<body>
<center><h1>400 Bad Request</h1></center>
<center>The plain HTTP request was sent to HTTPS port</center>
<hr><center>nginx</center>
</body>
</html>
993 /
tcp
-628402902 | 2025-03-07T15:45:05.122057
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:ed:bf:b3:76:f3:6c:7e:ca:cc:cf:3f:88:c5:4c:04:ac:6f
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R11
Validity
Not Before: Jan 13 13:20:17 2025 GMT
Not After : Apr 13 13:20:16 2025 GMT
Subject: CN=server.biziarayin.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e4:79:b3:18:a6:0f:b8:be:34:04:63:0d:74:2e:
78:e9:5e:8f:63:7c:a0:cb:71:59:b3:33:0d:4e:c3:
d0:b6:85:10:b6:95:84:a6:18:28:30:ac:6a:14:4d:
d4:57:0f:22:ec:3e:88:36:70:ac:f0:3b:58:65:2a:
a9:ef:7e:07:54:28:41:b9:89:ad:a8:6c:77:69:32:
f5:86:5d:96:e6:6d:b6:b9:72:28:8b:3f:8d:9a:76:
0b:e1:43:23:ca:22:ef:55:92:ca:b4:18:9a:f3:b8:
6b:42:4b:ce:84:e0:16:3e:2f:6d:15:c2:aa:fb:10:
c4:ab:47:a4:d0:c1:47:fe:f3:b4:cb:cb:9a:83:eb:
d6:6c:a3:37:89:e4:6f:31:1a:a2:f2:0c:ba:f2:18:
97:cd:a5:9f:e5:c1:11:fe:a0:28:70:a3:4f:d0:20:
9a:a2:1e:4d:a4:c2:73:70:93:2d:e0:d2:82:3b:7b:
9a:9e:67:34:42:5a:8d:f4:e4:42:b4:e1:f4:8f:26:
be:47:3d:de:be:9f:af:d2:f5:bc:ef:f3:38:c8:29:
a1:d5:64:e5:72:79:36:13:74:ac:8a:97:3b:a7:32:
c2:44:34:dd:3d:0d:93:11:03:2c:28:d6:fc:97:76:
b4:cb:2b:40:a4:be:c7:d4:43:47:ba:cd:5f:a0:85:
1d:09
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
26:B0:2F:DC:59:32:F1:8D:53:C3:58:1A:4F:28:8A:6D:2C:27:B2:43
X509v3 Authority Key Identifier:
C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
Authority Information Access:
OCSP - URI:http://r11.o.lencr.org
CA Issuers - URI:http://r11.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server.biziarayin.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
Timestamp : Jan 13 14:18:47.812 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:B0:C6:9F:1F:96:AE:15:B6:C9:39:AD:
57:7E:3E:6D:FF:56:9F:28:AE:AE:57:62:94:9A:8E:55:
66:F2:3C:57:AD:02:21:00:DA:3C:A9:52:9D:D8:68:89:
1D:0B:1A:9A:13:F7:04:59:B8:90:44:8A:5B:B3:66:5D:
F3:EF:23:7D:9A:B3:A9:79
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Jan 13 14:18:47.808 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:00:A6:D0:13:3E:A4:81:57:95:A6:61:76:
F8:0C:FE:73:E9:84:AD:32:3D:0F:43:F8:B7:41:93:FF:
82:1D:65:A8:02:21:00:D7:F3:4F:7E:82:59:BE:EE:BC:
09:0F:4F:C8:D0:B6:73:85:A9:53:ED:A8:0E:8D:3F:21:
6E:94:F1:9D:1F:B5:43
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a9:8e:85:22:5a:d0:55:58:80:95:a9:85:d7:ed:8a:58:37:c7:
5a:f2:52:e7:d1:aa:4d:f3:d2:36:7b:de:a6:c2:80:22:a6:c7:
d9:66:b1:e1:9a:65:a4:ae:7b:41:ae:49:f3:82:b4:d6:01:75:
01:07:91:e5:e9:fc:39:c4:6f:e9:f7:a8:01:66:21:71:6e:c4:
e6:1f:99:ed:c5:10:f4:13:d1:5e:16:0e:76:58:b4:60:6a:d0:
42:5f:c7:b4:f3:83:a5:9b:b6:16:86:93:9a:50:1a:77:41:48:
4a:43:3d:7f:33:a9:c3:d7:91:13:60:19:cc:9d:6f:2a:f7:2f:
88:4d:a6:90:62:a3:1c:2e:f2:5e:65:f8:07:24:8f:70:00:f1:
df:48:80:6d:e4:35:12:cc:50:52:15:1a:61:60:25:84:93:5a:
52:68:5f:ed:e0:e7:e0:9d:5d:da:6d:57:52:67:0f:0e:b1:d0:
47:40:a9:13:61:fb:cb:33:d1:3b:48:46:14:97:2d:8d:49:f2:
d7:ce:5b:1a:1c:3e:22:1a:cc:0c:e3:6c:0e:3d:54:66:36:25:
45:60:10:6b:51:d2:79:24:1e:6e:e2:c3:2d:6c:0e:88:0e:a5:
96:99:18:be:fa:69:8d:e5:42:55:2b:ed:c3:5b:b1:24:c7:55:
0d:5b:2d:5e
-1695822079 | 2025-02-28T15:54:00.098021
HTTP/1.1 200 OK
Server: sw-cp-server
Date: Fri, 28 Feb 2025 15:53:59 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: keep-alive
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Fri, 28 Feb 2025 15:53:59 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
X-Content-Type-Options: nosniff
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
04:ed:bf:b3:76:f3:6c:7e:ca:cc:cf:3f:88:c5:4c:04:ac:6f
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R11
Validity
Not Before: Jan 13 13:20:17 2025 GMT
Not After : Apr 13 13:20:16 2025 GMT
Subject: CN=server.biziarayin.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e4:79:b3:18:a6:0f:b8:be:34:04:63:0d:74:2e:
78:e9:5e:8f:63:7c:a0:cb:71:59:b3:33:0d:4e:c3:
d0:b6:85:10:b6:95:84:a6:18:28:30:ac:6a:14:4d:
d4:57:0f:22:ec:3e:88:36:70:ac:f0:3b:58:65:2a:
a9:ef:7e:07:54:28:41:b9:89:ad:a8:6c:77:69:32:
f5:86:5d:96:e6:6d:b6:b9:72:28:8b:3f:8d:9a:76:
0b:e1:43:23:ca:22:ef:55:92:ca:b4:18:9a:f3:b8:
6b:42:4b:ce:84:e0:16:3e:2f:6d:15:c2:aa:fb:10:
c4:ab:47:a4:d0:c1:47:fe:f3:b4:cb:cb:9a:83:eb:
d6:6c:a3:37:89:e4:6f:31:1a:a2:f2:0c:ba:f2:18:
97:cd:a5:9f:e5:c1:11:fe:a0:28:70:a3:4f:d0:20:
9a:a2:1e:4d:a4:c2:73:70:93:2d:e0:d2:82:3b:7b:
9a:9e:67:34:42:5a:8d:f4:e4:42:b4:e1:f4:8f:26:
be:47:3d:de:be:9f:af:d2:f5:bc:ef:f3:38:c8:29:
a1:d5:64:e5:72:79:36:13:74:ac:8a:97:3b:a7:32:
c2:44:34:dd:3d:0d:93:11:03:2c:28:d6:fc:97:76:
b4:cb:2b:40:a4:be:c7:d4:43:47:ba:cd:5f:a0:85:
1d:09
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
26:B0:2F:DC:59:32:F1:8D:53:C3:58:1A:4F:28:8A:6D:2C:27:B2:43
X509v3 Authority Key Identifier:
C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
Authority Information Access:
OCSP - URI:http://r11.o.lencr.org
CA Issuers - URI:http://r11.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server.biziarayin.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
Timestamp : Jan 13 14:18:47.812 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:B0:C6:9F:1F:96:AE:15:B6:C9:39:AD:
57:7E:3E:6D:FF:56:9F:28:AE:AE:57:62:94:9A:8E:55:
66:F2:3C:57:AD:02:21:00:DA:3C:A9:52:9D:D8:68:89:
1D:0B:1A:9A:13:F7:04:59:B8:90:44:8A:5B:B3:66:5D:
F3:EF:23:7D:9A:B3:A9:79
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Jan 13 14:18:47.808 2025 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:00:A6:D0:13:3E:A4:81:57:95:A6:61:76:
F8:0C:FE:73:E9:84:AD:32:3D:0F:43:F8:B7:41:93:FF:
82:1D:65:A8:02:21:00:D7:F3:4F:7E:82:59:BE:EE:BC:
09:0F:4F:C8:D0:B6:73:85:A9:53:ED:A8:0E:8D:3F:21:
6E:94:F1:9D:1F:B5:43
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a9:8e:85:22:5a:d0:55:58:80:95:a9:85:d7:ed:8a:58:37:c7:
5a:f2:52:e7:d1:aa:4d:f3:d2:36:7b:de:a6:c2:80:22:a6:c7:
d9:66:b1:e1:9a:65:a4:ae:7b:41:ae:49:f3:82:b4:d6:01:75:
01:07:91:e5:e9:fc:39:c4:6f:e9:f7:a8:01:66:21:71:6e:c4:
e6:1f:99:ed:c5:10:f4:13:d1:5e:16:0e:76:58:b4:60:6a:d0:
42:5f:c7:b4:f3:83:a5:9b:b6:16:86:93:9a:50:1a:77:41:48:
4a:43:3d:7f:33:a9:c3:d7:91:13:60:19:cc:9d:6f:2a:f7:2f:
88:4d:a6:90:62:a3:1c:2e:f2:5e:65:f8:07:24:8f:70:00:f1:
df:48:80:6d:e4:35:12:cc:50:52:15:1a:61:60:25:84:93:5a:
52:68:5f:ed:e0:e7:e0:9d:5d:da:6d:57:52:67:0f:0e:b1:d0:
47:40:a9:13:61:fb:cb:33:d1:3b:48:46:14:97:2d:8d:49:f2:
d7:ce:5b:1a:1c:3e:22:1a:cc:0c:e3:6c:0e:3d:54:66:36:25:
45:60:10:6b:51:d2:79:24:1e:6e:e2:c3:2d:6c:0e:88:0e:a5:
96:99:18:be:fa:69:8d:e5:42:55:2b:ed:c3:5b:b1:24:c7:55:
0d:5b:2d:5e
42469570 | 2025-02-17T06:39:34.458039
HTTP/1.1 303 See Other
Server: sw-cp-server
Date: Mon, 17 Feb 2025 06:39:34 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Mon, 17 Feb 2025 06:39:34 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Location: http://212.20.147.12/login.php
X-Content-Type-Options: nosniff
0