21 /
tcp
-101513104 | 2025-02-04T11:59:35.611286
220 ProFTPD Server (Debian) [::ffff:23.227.193.69]
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
EPRT EPSV ALLO RNFR RNTO DELE MDTM RMD
XRMD MKD XMKD PWD XPWD SIZE SYST HELP
NOOP FEAT OPTS HOST CLNT AUTH* CCC* CONF*
ENC* MIC* PBSZ* PROT* TYPE STRU MODE RETR
STOR STOU APPE REST ABOR RANG USER PASS
ACCT* REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@v331716320.local
211-Features:
CLNT
EPRT
EPSV
HOST
LANG en-US.UTF-8*;en-US
MDTM
MFF modify;UNIX.group;UNIX.mode;
MFMT
MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
RANG STREAM
REST STREAM
SITE COPY
SITE MKDIR
SITE RMDIR
SITE SYMLINK
SITE UTIME
SIZE
TVFS
UTF8
211 End
53 /
tcp
-2145233114 | 2025-02-10T02:05:26.525247
9.18.30-0ubuntu0.22.04.2-Ubuntu
Resolver name: v331716320.local
589765266 | 2025-02-09T09:56:35.413439
HTTP/1.1 301 Moved Permanently
Server: nginx/1.18.0 (Ubuntu)
Date: Sun, 09 Feb 2025 09:56:35 GMT
Content-Type: text/html
Content-Length: 178
Connection: keep-alive
Location: https://23.227.193.69:443/
110 /
tcp
-542153081 | 2025-02-11T01:48:27.772979
+OK Dovecot (Ubuntu) ready.
+OK
CAPA
TOP
UIDL
RESP-CODES
PIPELINING
AUTH-RESP-CODE
STLS
USER
SASL PLAIN LOGIN CRAM-MD5
.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
71:44:cc:a6:f1:03:31:6c:55:38:24:01:7e:5b:e3:23:c8:b4:20:da
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=server, O=LTD, C=RU
Validity
Not Before: Jan 29 23:39:10 2025 GMT
Not After : Jun 15 23:39:10 2052 GMT
Subject: CN=server, O=LTD, C=RU
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a9:8d:24:f7:65:45:13:7a:1b:7f:d4:a8:23:13:
ae:a0:ec:c8:c2:ac:8f:d5:75:dc:9b:6d:da:49:de:
ba:af:b5:cc:a3:b2:9f:53:7c:57:12:68:0a:0f:0d:
70:39:d3:73:4e:d1:b6:03:05:82:fb:60:55:23:39:
e1:60:dd:25:ee:60:38:ef:4b:07:e1:f8:64:5a:28:
34:74:8c:de:85:bb:aa:6b:8e:1b:f4:76:3d:e6:03:
8b:d3:58:ea:cf:c3:6f:2b:19:16:a0:1c:9c:2d:3e:
b9:b0:19:3d:a2:3e:3b:9e:44:98:0c:df:66:75:e3:
51:18:52:3b:9b:44:0c:26:30:cd:a9:5a:b7:07:81:
ef:89:17:0c:6c:6f:f0:67:68:26:3f:0e:77:ba:ef:
16:56:b9:e8:17:37:9f:6a:86:51:6d:f4:f6:92:29:
d4:32:6f:6e:de:86:2a:3a:2b:79:86:20:a4:22:01:
74:75:b2:e7:ab:46:aa:55:e5:70:15:ec:17:9c:e8:
a7:45:38:6b:ca:e4:03:0f:73:a9:dd:a0:e9:83:a6:
d5:4e:30:b6:9c:66:b6:2d:dc:eb:48:21:95:7f:39:
6a:cb:2a:4e:2b:38:65:fe:9d:a5:7a:f8:18:a6:55:
15:70:53:15:2a:17:91:3a:16:b4:12:a2:8b:bb:fa:
80:4b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
6A:8C:71:8A:F7:1B:81:3D:EF:87:73:80:CC:11:78:63:DB:C4:4B:CB
X509v3 Authority Key Identifier:
6A:8C:71:8A:F7:1B:81:3D:EF:87:73:80:CC:11:78:63:DB:C4:4B:CB
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
42:15:1c:be:d0:58:e7:4c:0e:5c:3d:82:c4:4c:ad:68:31:4a:
36:8f:93:96:0a:4f:dd:47:91:fb:6c:f9:6f:34:f9:64:1f:6c:
bb:51:e6:b3:8a:13:9d:fc:54:36:68:50:03:1a:4b:23:64:8d:
d5:c2:a9:c3:0f:81:64:fb:8c:53:83:08:99:fc:51:b1:b7:79:
21:99:1b:58:9b:72:0d:e7:b5:5f:8f:72:a2:16:f3:4a:01:6c:
6b:d9:3f:33:a3:d6:8e:2b:d5:e2:29:66:99:dd:b1:6e:83:30:
b3:e9:e5:3d:c6:ee:11:3d:dc:45:67:0a:eb:71:5c:74:69:40:
22:db:2a:7c:ce:a4:36:87:74:f6:7c:76:78:61:c0:86:ac:b6:
6e:3c:c7:83:d9:07:f2:e9:46:30:cd:94:cc:6a:b2:72:a5:23:
31:35:ea:99:22:8a:fa:2d:62:99:db:9b:8e:72:72:44:80:17:
e2:b3:05:a1:47:e6:04:68:5d:f5:23:32:ac:18:fc:49:42:1f:
5a:3a:8b:39:ea:d4:84:41:f6:1d:10:c6:60:8e:72:b4:25:f3:
32:fb:a3:1f:d0:4c:95:18:38:91:ae:e8:50:42:15:3e:b5:a2:
b8:9d:03:f2:ec:95:de:07:21:f2:97:e5:7c:91:1c:a6:88:62:
7d:f2:7f:89
123 /
udp
412424695 | 2025-02-11T03:46:58.112422
NTP
protocolversion: 3
stratum: 3
leap: 0
precision: -24
rootdelay: 0.0360412597656
rootdisp: 0.0300750732422
refid: 395716987
reftime: 3948233927.24
poll: 3
490791328 | 2025-02-11T11:48:32.917153
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Tue, 11 Feb 2025 11:48:32 GMT
Content-Type: text/html
Content-Length: 12109
Last-Modified: Wed, 29 Jan 2025 23:39:39 GMT
Connection: keep-alive
ETag: "679abc3b-2f4d"
Accept-Ranges: bytes
SSL Certificate
Certificate:
Data:
Version: 1 (0x0)
Serial Number:
e9:05:24:8e:24:cc:10:c5
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=XX, CN=site.default, L=XX, O=XX, OU=XX, ST=XX/emailAddress=webmaster@site.default/subjectAltName=www.site.default
Validity
Not Before: Jan 29 23:39:40 2025 GMT
Not After : Jan 28 23:39:40 2026 GMT
Subject: C=XX, CN=site.default, L=XX, O=XX, OU=XX, ST=XX/emailAddress=webmaster@site.default/subjectAltName=www.site.default
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a9:b1:5e:86:67:79:96:2c:62:19:e5:c4:46:f4:
ea:05:c3:66:76:03:e4:5b:7b:ce:17:e5:9e:be:69:
0d:e3:4e:2c:0d:0d:56:0a:14:c0:74:90:68:ea:7b:
be:82:6e:19:09:d7:bb:de:77:0a:c0:0f:f4:b3:ef:
e5:b8:56:c8:0f:32:8c:5c:ef:17:82:ab:21:c1:5d:
13:5e:b3:d0:6d:7f:ba:79:87:7c:60:f4:44:41:cd:
99:45:b9:9a:2d:4a:3c:d6:7e:ec:50:66:dc:2a:6d:
c9:0b:04:5c:d8:89:22:3d:7d:44:df:38:53:3e:aa:
51:35:b7:d3:24:3f:c9:ff:66:14:0c:a8:17:0d:ff:
3a:f3:b4:34:87:e0:14:90:ed:7d:7b:b5:46:3a:c9:
1b:2d:4a:ae:37:ad:4a:f3:4b:ae:e6:a1:89:5f:b9:
44:6a:0f:22:95:90:e0:e6:89:a9:4c:20:3c:5b:9d:
5b:85:2c:6c:6f:6a:01:f6:29:35:4f:b7:ea:c7:6e:
89:7e:cb:c0:39:17:06:06:3b:30:eb:91:a5:78:0e:
6f:9f:99:f0:e3:30:f2:94:fb:ad:11:1b:8f:46:89:
c4:1e:73:f6:07:93:15:f0:38:e5:ac:f4:40:5e:db:
11:a1:8a:cd:6a:ff:72:51:99:f5:04:1f:8b:bc:9b:
d6:59
Exponent: 65537 (0x10001)
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
59:4a:3d:71:0d:46:69:e5:db:b4:f1:b7:47:cb:36:84:2c:86:
79:7a:7d:09:31:19:e9:2b:9e:bb:35:c3:29:f2:3c:de:1c:1a:
e4:ff:aa:a6:cc:51:6f:14:f6:80:f2:ed:d7:9d:7a:11:fa:7d:
a9:77:d9:42:3d:51:a1:b6:98:b2:ea:73:62:ef:49:08:03:48:
f6:75:62:e2:ef:90:f5:7e:be:19:e0:ea:07:9f:00:59:95:6e:
f6:c8:04:20:50:d4:62:89:48:42:0f:3b:0d:7f:e3:e2:52:08:
f5:d7:48:e3:8d:ee:d9:86:ee:6b:ba:57:e3:f6:ac:85:93:7a:
da:9e:7e:25:9d:9d:70:26:7b:01:87:77:bc:cc:e0:04:4d:89:
00:cb:e5:2e:27:17:6f:38:bf:ca:68:cd:fb:30:25:4b:fa:76:
79:17:21:fe:22:a4:c0:0f:af:e6:e0:5d:12:bd:b6:64:96:b2:
f9:4e:ba:bb:6a:ce:a8:8f:1b:4e:84:99:4d:ec:ea:ff:3f:e7:
b9:af:93:00:e4:ab:57:ee:9e:e5:a6:80:b6:2b:b1:dc:57:79:
2d:79:43:f8:12:b8:8b:f7:c7:22:0b:35:ec:a1:19:1d:01:7e:
20:5f:11:2a:95:55:2d:64:e5:a3:b3:07:da:cf:f1:71:12:31:
37:70:35:84
993 /
tcp
1240221827 | 2025-02-03T21:02:02.064227
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot (Ubuntu) ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
71:44:cc:a6:f1:03:31:6c:55:38:24:01:7e:5b:e3:23:c8:b4:20:da
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=server, O=LTD, C=RU
Validity
Not Before: Jan 29 23:39:10 2025 GMT
Not After : Jun 15 23:39:10 2052 GMT
Subject: CN=server, O=LTD, C=RU
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a9:8d:24:f7:65:45:13:7a:1b:7f:d4:a8:23:13:
ae:a0:ec:c8:c2:ac:8f:d5:75:dc:9b:6d:da:49:de:
ba:af:b5:cc:a3:b2:9f:53:7c:57:12:68:0a:0f:0d:
70:39:d3:73:4e:d1:b6:03:05:82:fb:60:55:23:39:
e1:60:dd:25:ee:60:38:ef:4b:07:e1:f8:64:5a:28:
34:74:8c:de:85:bb:aa:6b:8e:1b:f4:76:3d:e6:03:
8b:d3:58:ea:cf:c3:6f:2b:19:16:a0:1c:9c:2d:3e:
b9:b0:19:3d:a2:3e:3b:9e:44:98:0c:df:66:75:e3:
51:18:52:3b:9b:44:0c:26:30:cd:a9:5a:b7:07:81:
ef:89:17:0c:6c:6f:f0:67:68:26:3f:0e:77:ba:ef:
16:56:b9:e8:17:37:9f:6a:86:51:6d:f4:f6:92:29:
d4:32:6f:6e:de:86:2a:3a:2b:79:86:20:a4:22:01:
74:75:b2:e7:ab:46:aa:55:e5:70:15:ec:17:9c:e8:
a7:45:38:6b:ca:e4:03:0f:73:a9:dd:a0:e9:83:a6:
d5:4e:30:b6:9c:66:b6:2d:dc:eb:48:21:95:7f:39:
6a:cb:2a:4e:2b:38:65:fe:9d:a5:7a:f8:18:a6:55:
15:70:53:15:2a:17:91:3a:16:b4:12:a2:8b:bb:fa:
80:4b
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
6A:8C:71:8A:F7:1B:81:3D:EF:87:73:80:CC:11:78:63:DB:C4:4B:CB
X509v3 Authority Key Identifier:
6A:8C:71:8A:F7:1B:81:3D:EF:87:73:80:CC:11:78:63:DB:C4:4B:CB
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
42:15:1c:be:d0:58:e7:4c:0e:5c:3d:82:c4:4c:ad:68:31:4a:
36:8f:93:96:0a:4f:dd:47:91:fb:6c:f9:6f:34:f9:64:1f:6c:
bb:51:e6:b3:8a:13:9d:fc:54:36:68:50:03:1a:4b:23:64:8d:
d5:c2:a9:c3:0f:81:64:fb:8c:53:83:08:99:fc:51:b1:b7:79:
21:99:1b:58:9b:72:0d:e7:b5:5f:8f:72:a2:16:f3:4a:01:6c:
6b:d9:3f:33:a3:d6:8e:2b:d5:e2:29:66:99:dd:b1:6e:83:30:
b3:e9:e5:3d:c6:ee:11:3d:dc:45:67:0a:eb:71:5c:74:69:40:
22:db:2a:7c:ce:a4:36:87:74:f6:7c:76:78:61:c0:86:ac:b6:
6e:3c:c7:83:d9:07:f2:e9:46:30:cd:94:cc:6a:b2:72:a5:23:
31:35:ea:99:22:8a:fa:2d:62:99:db:9b:8e:72:72:44:80:17:
e2:b3:05:a1:47:e6:04:68:5d:f5:23:32:ac:18:fc:49:42:1f:
5a:3a:8b:39:ea:d4:84:41:f6:1d:10:c6:60:8e:72:b4:25:f3:
32:fb:a3:1f:d0:4c:95:18:38:91:ae:e8:50:42:15:3e:b5:a2:
b8:9d:03:f2:ec:95:de:07:21:f2:97:e5:7c:91:1c:a6:88:62:
7d:f2:7f:89
3306 /
tcp
2024344435 | 2025-02-09T07:31:05.539334
MySQL:
Error Message: Host '224.164.138.229' is not allowed to connect to this MySQL server
Error Code: 1130
33060 /
tcp
-795948505 | 2025-02-09T22:28:16.532213
MySQL X Protocol:
tls: False
authentication.mechanisms:
MYSQL41
SHA256_MEMORY
doc.formats: text
client.interactive: False
compression:
algorithm:
deflate_stream
lz4_message
zstd_stream
node_type: mysql
client.pwd_expire_ok: False