21377630 | 2024-10-13T06:53:21.989324
21 /
tcp
220 ProFTPD Server ready.
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
EPRT EPSV ALLO RNFR RNTO DELE MDTM RMD
XRMD MKD XMKD PWD XPWD SIZE SYST HELP
NOOP FEAT OPTS HOST CLNT AUTH CCC* CONF*
ENC* MIC* PBSZ PROT TYPE STRU MODE RETR
STOR STOU APPE REST ABOR RANG USER PASS
ACCT* REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@137.175.124.148
211-Features:
AUTH TLS
CCC
CLNT
CSID
EPRT
EPSV
HOST
LANG zh-CN;zh-TW;bg-BG;en-US;es-ES;fr-FR;it-IT;ja-JP;ko-KR;ru-RU
MDTM
MFF modify;UNIX.group;UNIX.mode;
MFMT
MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
PBSZ
PROT
RANG STREAM
REST STREAM
SIZE
SSCN
TVFS
UTF8
211 End
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:3d:f7:b3:08:8a:8d:9c:4d:f1:76:25:b0:10:8b:95:d1:da
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Sep 8 04:17:34 2024 GMT
Not After : Dec 7 04:17:33 2024 GMT
Subject: CN=server-38-174-163-161.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:7c:84:2a:22:35:8b:92:15:dc:e1:f1:22:aa:cf:
06:e9:6e:15:d6:36:1f:19:73:95:e2:d0:16:3d:d6:
cf:aa:8c:4e:62:20:eb:06:2e:a7:bb:ee:c5:7a:37:
f5:da:84:b4:16:cc:fb:29:3f:f7:2c:f9:22:41:e4:
63:69:b0:ae:7f
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
5D:D6:43:8F:62:21:D2:10:13:44:3E:3A:35:56:07:0A:96:C5:5F:10
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-38-174-163-161.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Sep 8 05:16:05.064 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:15:80:C9:EA:90:14:12:9C:1C:24:FB:A6:
81:3F:9D:59:C3:9E:8C:D2:79:61:BB:B1:FD:C5:B9:1B:
26:87:E6:6B:02:21:00:F5:7E:B2:B0:A1:3F:00:83:C7:
AF:AA:F5:2C:DF:F4:F8:3F:3A:B9:13:CA:B0:48:9C:9E:
C5:4A:FD:2F:62:CF:0A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
Timestamp : Sep 8 05:16:05.212 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:FC:9A:58:BF:AA:7C:35:6D:E5:D9:00:
B5:8B:32:78:88:79:54:EB:A4:B9:95:F6:30:95:95:7F:
5E:4B:04:ED:6C:02:20:77:87:4A:AD:66:90:73:B7:F3:
91:9A:AF:53:3E:C6:36:39:3A:44:57:58:D3:41:8F:A8:
F1:CF:38:41:21:65:7A
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:64:02:30:11:e7:69:fe:b7:b1:58:6c:5a:27:4e:69:2c:93:
3e:75:35:23:89:d4:43:2e:cb:4d:3c:e8:94:64:85:ea:2c:29:
2f:2d:44:30:90:45:84:fb:75:c0:0f:34:10:a9:9b:6e:02:30:
05:7b:34:0e:7a:41:33:f1:6c:15:01:85:ab:7d:26:c8:2f:9a:
95:26:f5:e0:59:f9:56:2f:b3:3d:75:1f:0f:a0:6a:68:b6:90:
dc:0c:4a:18:a6:95:4d:59:a6:d0:2b:8e
1864052197 | 2024-10-13T00:30:50.908759
53 /
tcp
9.11.4-P2-RedHat-9.11.4-26.P2.el7
2044899658 | 2024-10-06T19:16:55.198116
53 /
udp
9.11.4-P2-RedHat-9.11.4-26.P2.el7
Resolver name: server-38-174-163-161
396138133 | 2024-10-16T12:35:59.788356
80 /
tcp
HTTP/1.1 403 Forbidden
Date: Wed, 16 Oct 2024 12:35:59 GMT
Server: Apache/2
Content-Length: 199
Content-Type: text/html; charset=iso-8859-1
105017197 | 2024-10-20T16:51:55.236369
143 /
tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN] Dovecot DA ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:3d:f7:b3:08:8a:8d:9c:4d:f1:76:25:b0:10:8b:95:d1:da
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Sep 8 04:17:34 2024 GMT
Not After : Dec 7 04:17:33 2024 GMT
Subject: CN=server-38-174-163-161.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:7c:84:2a:22:35:8b:92:15:dc:e1:f1:22:aa:cf:
06:e9:6e:15:d6:36:1f:19:73:95:e2:d0:16:3d:d6:
cf:aa:8c:4e:62:20:eb:06:2e:a7:bb:ee:c5:7a:37:
f5:da:84:b4:16:cc:fb:29:3f:f7:2c:f9:22:41:e4:
63:69:b0:ae:7f
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
5D:D6:43:8F:62:21:D2:10:13:44:3E:3A:35:56:07:0A:96:C5:5F:10
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-38-174-163-161.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Sep 8 05:16:05.064 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:15:80:C9:EA:90:14:12:9C:1C:24:FB:A6:
81:3F:9D:59:C3:9E:8C:D2:79:61:BB:B1:FD:C5:B9:1B:
26:87:E6:6B:02:21:00:F5:7E:B2:B0:A1:3F:00:83:C7:
AF:AA:F5:2C:DF:F4:F8:3F:3A:B9:13:CA:B0:48:9C:9E:
C5:4A:FD:2F:62:CF:0A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
Timestamp : Sep 8 05:16:05.212 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:FC:9A:58:BF:AA:7C:35:6D:E5:D9:00:
B5:8B:32:78:88:79:54:EB:A4:B9:95:F6:30:95:95:7F:
5E:4B:04:ED:6C:02:20:77:87:4A:AD:66:90:73:B7:F3:
91:9A:AF:53:3E:C6:36:39:3A:44:57:58:D3:41:8F:A8:
F1:CF:38:41:21:65:7A
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:64:02:30:11:e7:69:fe:b7:b1:58:6c:5a:27:4e:69:2c:93:
3e:75:35:23:89:d4:43:2e:cb:4d:3c:e8:94:64:85:ea:2c:29:
2f:2d:44:30:90:45:84:fb:75:c0:0f:34:10:a9:9b:6e:02:30:
05:7b:34:0e:7a:41:33:f1:6c:15:01:85:ab:7d:26:c8:2f:9a:
95:26:f5:e0:59:f9:56:2f:b3:3d:75:1f:0f:a0:6a:68:b6:90:
dc:0c:4a:18:a6:95:4d:59:a6:d0:2b:8e
396138133 | 2024-10-13T14:35:18.660191
443 /
tcp
HTTP/1.1 403 Forbidden
Date: Sun, 13 Oct 2024 14:35:18 GMT
Server: Apache/2
Content-Length: 199
Content-Type: text/html; charset=iso-8859-1
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:3d:f7:b3:08:8a:8d:9c:4d:f1:76:25:b0:10:8b:95:d1:da
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Sep 8 04:17:34 2024 GMT
Not After : Dec 7 04:17:33 2024 GMT
Subject: CN=server-38-174-163-161.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:7c:84:2a:22:35:8b:92:15:dc:e1:f1:22:aa:cf:
06:e9:6e:15:d6:36:1f:19:73:95:e2:d0:16:3d:d6:
cf:aa:8c:4e:62:20:eb:06:2e:a7:bb:ee:c5:7a:37:
f5:da:84:b4:16:cc:fb:29:3f:f7:2c:f9:22:41:e4:
63:69:b0:ae:7f
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
5D:D6:43:8F:62:21:D2:10:13:44:3E:3A:35:56:07:0A:96:C5:5F:10
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-38-174-163-161.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Sep 8 05:16:05.064 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:15:80:C9:EA:90:14:12:9C:1C:24:FB:A6:
81:3F:9D:59:C3:9E:8C:D2:79:61:BB:B1:FD:C5:B9:1B:
26:87:E6:6B:02:21:00:F5:7E:B2:B0:A1:3F:00:83:C7:
AF:AA:F5:2C:DF:F4:F8:3F:3A:B9:13:CA:B0:48:9C:9E:
C5:4A:FD:2F:62:CF:0A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
Timestamp : Sep 8 05:16:05.212 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:FC:9A:58:BF:AA:7C:35:6D:E5:D9:00:
B5:8B:32:78:88:79:54:EB:A4:B9:95:F6:30:95:95:7F:
5E:4B:04:ED:6C:02:20:77:87:4A:AD:66:90:73:B7:F3:
91:9A:AF:53:3E:C6:36:39:3A:44:57:58:D3:41:8F:A8:
F1:CF:38:41:21:65:7A
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:64:02:30:11:e7:69:fe:b7:b1:58:6c:5a:27:4e:69:2c:93:
3e:75:35:23:89:d4:43:2e:cb:4d:3c:e8:94:64:85:ea:2c:29:
2f:2d:44:30:90:45:84:fb:75:c0:0f:34:10:a9:9b:6e:02:30:
05:7b:34:0e:7a:41:33:f1:6c:15:01:85:ab:7d:26:c8:2f:9a:
95:26:f5:e0:59:f9:56:2f:b3:3d:75:1f:0f:a0:6a:68:b6:90:
dc:0c:4a:18:a6:95:4d:59:a6:d0:2b:8e
587770568 | 2024-10-14T08:50:39.424015
993 /
tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN] Dovecot DA ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:3d:f7:b3:08:8a:8d:9c:4d:f1:76:25:b0:10:8b:95:d1:da
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E6
Validity
Not Before: Sep 8 04:17:34 2024 GMT
Not After : Dec 7 04:17:33 2024 GMT
Subject: CN=server-38-174-163-161.da.direct
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (256 bit)
pub:
04:7c:84:2a:22:35:8b:92:15:dc:e1:f1:22:aa:cf:
06:e9:6e:15:d6:36:1f:19:73:95:e2:d0:16:3d:d6:
cf:aa:8c:4e:62:20:eb:06:2e:a7:bb:ee:c5:7a:37:
f5:da:84:b4:16:cc:fb:29:3f:f7:2c:f9:22:41:e4:
63:69:b0:ae:7f
ASN1 OID: prime256v1
NIST CURVE: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
5D:D6:43:8F:62:21:D2:10:13:44:3E:3A:35:56:07:0A:96:C5:5F:10
X509v3 Authority Key Identifier:
93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
Authority Information Access:
OCSP - URI:http://e6.o.lencr.org
CA Issuers - URI:http://e6.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:server-38-174-163-161.da.direct
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
Timestamp : Sep 8 05:16:05.064 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:15:80:C9:EA:90:14:12:9C:1C:24:FB:A6:
81:3F:9D:59:C3:9E:8C:D2:79:61:BB:B1:FD:C5:B9:1B:
26:87:E6:6B:02:21:00:F5:7E:B2:B0:A1:3F:00:83:C7:
AF:AA:F5:2C:DF:F4:F8:3F:3A:B9:13:CA:B0:48:9C:9E:
C5:4A:FD:2F:62:CF:0A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
Timestamp : Sep 8 05:16:05.212 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:FC:9A:58:BF:AA:7C:35:6D:E5:D9:00:
B5:8B:32:78:88:79:54:EB:A4:B9:95:F6:30:95:95:7F:
5E:4B:04:ED:6C:02:20:77:87:4A:AD:66:90:73:B7:F3:
91:9A:AF:53:3E:C6:36:39:3A:44:57:58:D3:41:8F:A8:
F1:CF:38:41:21:65:7A
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:64:02:30:11:e7:69:fe:b7:b1:58:6c:5a:27:4e:69:2c:93:
3e:75:35:23:89:d4:43:2e:cb:4d:3c:e8:94:64:85:ea:2c:29:
2f:2d:44:30:90:45:84:fb:75:c0:0f:34:10:a9:9b:6e:02:30:
05:7b:34:0e:7a:41:33:f1:6c:15:01:85:ab:7d:26:c8:2f:9a:
95:26:f5:e0:59:f9:56:2f:b3:3d:75:1f:0f:a0:6a:68:b6:90:
dc:0c:4a:18:a6:95:4d:59:a6:d0:2b:8e