22 /
tcp
1659373402 | 2025-03-22T13:52:15.831640
SSH-2.0-OpenSSH_7.4
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQDJ1Qh7lonfVhZo9gey1jQuBjv6RdCbLkBsHOjg/Vxtbodq
6frblIRyAZqxgUG+akKsaSlne5r/zbtkBn3TC+6LI862BEJ+JjADRbZ7xDiQjuxt4Ea7Hwsihg6g
bnQDK+Sga5FtPcVcUjbgm8263gJXO/MPLiHWQvllvlMNurC+ZHpKEilr4cJDVeRq/Z+fPUFFIEuU
kaEn8+G9C7YRnrX/V9Q248fsG9njcHcCM34dMisRU+MhCiTCrO2H01dUfGQ7owed4v2yydSgBJsX
8IuVn0x7iNNWntkbxQHdIs8WRdNP4MgOu02KIzsoj7TqkUGuHylmKYG8ZvmuC+Gd/8ix
Fingerprint: e4:b6:df:e4:e1:07:f9:fb:ab:92:64:cb:6a:27:2e:49
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group-exchange-sha1
diffie-hellman-group14-sha256
diffie-hellman-group14-sha1
diffie-hellman-group1-sha1
Server Host Key Algorithms:
ssh-rsa
rsa-sha2-512
rsa-sha2-256
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
aes128-cbc
aes192-cbc
aes256-cbc
blowfish-cbc
cast128-cbc
3des-cbc
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
zlib@openssh.com
Vulnerabilities
25 /
tcp
-1965108951 | 2025-03-21T09:54:41.974437
220 server.domain.com ESMTP Exim 4.97.1 Fri, 21 Mar 2025 12:53:58 +0300
250-server.domain.com Hello tptzge6n52k8rty.net [224.116.91.98]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH PLAIN LOGIN CRAM-MD5
250-CHUNKING
250-STARTTLS
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
e2:77:95:39:6b:d0:e0:30
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Validity
Not Before: Jul 10 18:28:26 2020 GMT
Not After : Jul 8 18:28:26 2030 GMT
Subject: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (1024 bit)
Modulus:
00:f4:fb:cc:8f:d7:65:2b:4f:e6:c1:d5:52:b0:5a:
ad:88:cf:cd:ac:4b:7d:49:83:d0:1a:1b:c3:0d:9e:
2a:94:9e:77:ab:b2:32:22:8f:20:bd:c5:e1:08:b2:
04:ed:1a:ce:fd:2e:3a:ab:a5:a8:07:32:43:4c:93:
3a:e3:1c:f5:b2:e9:bd:43:6c:01:2e:47:79:dc:45:
49:2a:68:4b:bc:8d:df:33:22:dc:df:67:7b:8c:34:
47:5a:e0:f2:4f:1e:68:d3:d1:b9:fb:1d:b0:49:62:
92:dd:65:17:e1:03:8e:12:a7:38:1d:f5:68:5e:74:
51:69:2c:33:40:91:a7:1a:1d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Authority Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
17:ea:86:37:82:35:a1:58:1b:a4:ec:75:10:42:a0:85:c0:d6:
8f:ef:c2:4f:8a:bf:4c:92:2b:64:6b:c6:94:9e:08:4c:84:91:
87:74:c7:fa:1c:a0:5b:96:bf:2e:97:7d:aa:f9:ef:60:56:03:
81:20:d4:c7:a5:5a:14:70:fe:8b:a0:70:ef:cc:1e:ef:62:cc:
8a:59:3f:80:17:a3:4c:a6:49:1d:01:c4:b6:f4:07:31:cd:79:
66:03:14:01:ac:8f:31:1c:3f:f2:12:37:62:8d:c4:41:15:50:
33:a0:90:2e:29:e2:51:74:6b:35:c2:2e:7c:e7:68:30:b4:69:
b5:49
53 /
tcp
-2127871448 | 2025-03-09T06:54:29.045366
Resolver name: server.domain.com
53 /
udp
1999194264 | 2025-03-17T21:49:17.734793
9.11.4-P2-RedHat-9.11.4-26.P2.el7_9.16
Resolver name: server.domain.com
897585984 | 2025-03-13T11:47:51.995630
HTTP/1.1 301 Moved Permanently
Server: nginx/1.20.2
Date: Thu, 13 Mar 2025 11:47:51 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: keep-alive
Location: https://37.1.206.33:443/
Vulnerabilities
143 /
tcp
312936668 | 2025-03-21T12:01:38.526554
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot ready.
* CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
e2:77:95:39:6b:d0:e0:30
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Validity
Not Before: Jul 10 18:28:26 2020 GMT
Not After : Jul 8 18:28:26 2030 GMT
Subject: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (1024 bit)
Modulus:
00:f4:fb:cc:8f:d7:65:2b:4f:e6:c1:d5:52:b0:5a:
ad:88:cf:cd:ac:4b:7d:49:83:d0:1a:1b:c3:0d:9e:
2a:94:9e:77:ab:b2:32:22:8f:20:bd:c5:e1:08:b2:
04:ed:1a:ce:fd:2e:3a:ab:a5:a8:07:32:43:4c:93:
3a:e3:1c:f5:b2:e9:bd:43:6c:01:2e:47:79:dc:45:
49:2a:68:4b:bc:8d:df:33:22:dc:df:67:7b:8c:34:
47:5a:e0:f2:4f:1e:68:d3:d1:b9:fb:1d:b0:49:62:
92:dd:65:17:e1:03:8e:12:a7:38:1d:f5:68:5e:74:
51:69:2c:33:40:91:a7:1a:1d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Authority Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
17:ea:86:37:82:35:a1:58:1b:a4:ec:75:10:42:a0:85:c0:d6:
8f:ef:c2:4f:8a:bf:4c:92:2b:64:6b:c6:94:9e:08:4c:84:91:
87:74:c7:fa:1c:a0:5b:96:bf:2e:97:7d:aa:f9:ef:60:56:03:
81:20:d4:c7:a5:5a:14:70:fe:8b:a0:70:ef:cc:1e:ef:62:cc:
8a:59:3f:80:17:a3:4c:a6:49:1d:01:c4:b6:f4:07:31:cd:79:
66:03:14:01:ac:8f:31:1c:3f:f2:12:37:62:8d:c4:41:15:50:
33:a0:90:2e:29:e2:51:74:6b:35:c2:2e:7c:e7:68:30:b4:69:
b5:49
383770581 | 2025-03-13T13:27:44.039834
HTTP/1.1 400 Bad Request
Server: nginx/1.20.2
Date: Thu, 13 Mar 2025 13:27:44 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Vulnerabilities
465 /
tcp
-2030023605 | 2025-03-22T23:38:55.751907
220 server.domain.com ESMTP Exim 4.97.1 Sun, 23 Mar 2025 02:38:41 +0300
250-server.domain.com Hello c1gnyuavudc.com [224.18.112.173]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH PLAIN LOGIN CRAM-MD5
250-CHUNKING
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
e2:77:95:39:6b:d0:e0:30
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Validity
Not Before: Jul 10 18:28:26 2020 GMT
Not After : Jul 8 18:28:26 2030 GMT
Subject: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (1024 bit)
Modulus:
00:f4:fb:cc:8f:d7:65:2b:4f:e6:c1:d5:52:b0:5a:
ad:88:cf:cd:ac:4b:7d:49:83:d0:1a:1b:c3:0d:9e:
2a:94:9e:77:ab:b2:32:22:8f:20:bd:c5:e1:08:b2:
04:ed:1a:ce:fd:2e:3a:ab:a5:a8:07:32:43:4c:93:
3a:e3:1c:f5:b2:e9:bd:43:6c:01:2e:47:79:dc:45:
49:2a:68:4b:bc:8d:df:33:22:dc:df:67:7b:8c:34:
47:5a:e0:f2:4f:1e:68:d3:d1:b9:fb:1d:b0:49:62:
92:dd:65:17:e1:03:8e:12:a7:38:1d:f5:68:5e:74:
51:69:2c:33:40:91:a7:1a:1d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Authority Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
17:ea:86:37:82:35:a1:58:1b:a4:ec:75:10:42:a0:85:c0:d6:
8f:ef:c2:4f:8a:bf:4c:92:2b:64:6b:c6:94:9e:08:4c:84:91:
87:74:c7:fa:1c:a0:5b:96:bf:2e:97:7d:aa:f9:ef:60:56:03:
81:20:d4:c7:a5:5a:14:70:fe:8b:a0:70:ef:cc:1e:ef:62:cc:
8a:59:3f:80:17:a3:4c:a6:49:1d:01:c4:b6:f4:07:31:cd:79:
66:03:14:01:ac:8f:31:1c:3f:f2:12:37:62:8d:c4:41:15:50:
33:a0:90:2e:29:e2:51:74:6b:35:c2:2e:7c:e7:68:30:b4:69:
b5:49
993 /
tcp
-1708341480 | 2025-03-10T03:22:49.325094
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot ready.
* CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
e2:77:95:39:6b:d0:e0:30
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Validity
Not Before: Jul 10 18:28:26 2020 GMT
Not After : Jul 8 18:28:26 2030 GMT
Subject: C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=server.domain.com/emailAddress=root@server.domain.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (1024 bit)
Modulus:
00:f4:fb:cc:8f:d7:65:2b:4f:e6:c1:d5:52:b0:5a:
ad:88:cf:cd:ac:4b:7d:49:83:d0:1a:1b:c3:0d:9e:
2a:94:9e:77:ab:b2:32:22:8f:20:bd:c5:e1:08:b2:
04:ed:1a:ce:fd:2e:3a:ab:a5:a8:07:32:43:4c:93:
3a:e3:1c:f5:b2:e9:bd:43:6c:01:2e:47:79:dc:45:
49:2a:68:4b:bc:8d:df:33:22:dc:df:67:7b:8c:34:
47:5a:e0:f2:4f:1e:68:d3:d1:b9:fb:1d:b0:49:62:
92:dd:65:17:e1:03:8e:12:a7:38:1d:f5:68:5e:74:
51:69:2c:33:40:91:a7:1a:1d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Authority Key Identifier:
EC:C8:22:3B:D9:43:6C:00:EB:E7:E9:8C:76:25:6F:D8:41:E8:8B:43
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
17:ea:86:37:82:35:a1:58:1b:a4:ec:75:10:42:a0:85:c0:d6:
8f:ef:c2:4f:8a:bf:4c:92:2b:64:6b:c6:94:9e:08:4c:84:91:
87:74:c7:fa:1c:a0:5b:96:bf:2e:97:7d:aa:f9:ef:60:56:03:
81:20:d4:c7:a5:5a:14:70:fe:8b:a0:70:ef:cc:1e:ef:62:cc:
8a:59:3f:80:17:a3:4c:a6:49:1d:01:c4:b6:f4:07:31:cd:79:
66:03:14:01:ac:8f:31:1c:3f:f2:12:37:62:8d:c4:41:15:50:
33:a0:90:2e:29:e2:51:74:6b:35:c2:2e:7c:e7:68:30:b4:69:
b5:49
0 | 2025-02-28T05:46:26.160165
HTTP/1.1 301 Moved Permanently
Content-Length: 0
Connection: close
Location: https://37.1.206.33/
Date: Fri, 28 Feb 2025 05:46:26 GMT