857461615 | 2025-01-15T12:56:54.412723
22 /
tcp
SSH-2.0-OpenSSH_5.8
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABAQDmFgfDHJIV9rtxKAYpT2ZV8VoE8U9ruuO0tXQoXMFF/7ye
xG4EwmpnFubVmX4Kqa9dkaaK83sfreQGfVAKxzcsGnaI+QhMkGt28Q1Ax05qv3dsJ5ZToenKsQ4p
vDYnWVJ+rM9Qf9USrOLOHPA3fgx6t9gJkNMiqTtZNLB5xUkdXeWsDTOAHRY0VmCQ6lHaexkwFqTD
6Z/NnGs17tVQyasa/yxBPV3RVoEpY0dVGfo7Wj4U1UBguk2tCLL0YnLVshkm+z77lz5jiDhSZ3H1
EmNK+P8girmS77VcZxKmWY3k3DTwuIlRNhWxyhrfbvww1V1/op0OXxCn/VMMLZ5Qesl9
Fingerprint: 42:fc:81:16:1c:4d:b2:38:63:77:79:69:50:7c:60:02
Kex Algorithms:
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group-exchange-sha1
diffie-hellman-group14-sha1
diffie-hellman-group1-sha1
Server Host Key Algorithms:
ssh-rsa
ssh-dss
ecdsa-sha2-nistp256
Encryption Algorithms:
aes128-ctr
aes192-ctr
aes256-ctr
arcfour256
arcfour128
aes128-cbc
3des-cbc
blowfish-cbc
cast128-cbc
aes192-cbc
aes256-cbc
arcfour
rijndael-cbc@lysator.liu.se
MAC Algorithms:
hmac-md5
hmac-sha1
umac-64@openssh.com
hmac-ripemd160
hmac-ripemd160@openssh.com
hmac-sha1-96
hmac-md5-96
Compression Algorithms:
none
zlib@openssh.com
-888013476 | 2025-01-01T20:14:05.423224
25 /
tcp
220 SERVER01.esolbox.com ESMTP MailEnable Service, Version: 10.47-10.47- ready at 01/01/25 20:14:07
250-esolbox.com [224.111.191.246], this server offers 4 extensions
250-AUTH LOGIN
250-SIZE 20480000
250-HELP
250 AUTH=LOGIN
-1161972681 | 2025-01-13T01:47:05.837621
53 /
udp
1401933621 | 2025-01-15T20:32:23.734298
80 /
tcp
HTTP/1.1 200 OK
Content-Type: text/html
Last-Modified: Thu, 04 Jun 2020 17:08:29 GMT
Accept-Ranges: bytes
ETag: "ef38ffc4923ad61:0"
Server: Microsoft-IIS/8.5
X-Powered-By: ASP.NET
Date: Wed, 15 Jan 2025 20:32:26 GMT
Content-Length: 86824
1298793639 | 2025-01-18T19:50:58.336822
88 /
tcp
HTTP/1.1 400 Bad Request
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Sat, 18 Jan 2025 19:51:06 GMT
Connection: close
Content-Length: 334
-471102630 | 2025-01-20T05:08:44.453733
110 /
tcp
+OK Welcome to MailEnable POP3 Server
+OK Capability list follows
TOP
USER
UIDL
.
2035319991 | 2025-01-20T07:15:21.702800
143 /
tcp
* OK IMAP4rev1 server ready at 01/20/25 07:15:21
* CAPABILITY IMAP4rev1 IMAP4 AUTH=LOGIN AUTH=CRAM-MD5 IDLE CHILDREN UIDPLUS
A001 OK CAPABILITY completed
A002 BAD UNKNOWN Command
A003 BAD UNKNOWN Command
* BYE IMAP4rev1 server terminating connection
A004 OK LOGOUT Initiated
949837175 | 2025-01-16T06:33:04.941111
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/8.5
X-AspNet-Version: 4.0.30319
X-AspNetMvc-Version: 2.0
Set-Cookie: ASP.NET_SessionId=tott20xiaw33gazz11quxvpl; path=/; HttpOnly; SameSite=Lax
X-Powered-By: ASP.NET
Date: Thu, 16 Jan 2025 06:33:09 GMT
Content-Length: 28905
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6f:72:15:56:55:ee:c1:ae:39:e9:4c:0e:dd:ba:85:64
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA
Validity
Not Before: Apr 5 00:00:00 2024 GMT
Not After : May 1 23:59:59 2025 GMT
Subject: serialNumber=SN.DKR.2015.B.16151/jurisdictionC=SN/businessCategory=Private Organization, C=SN, ST=Dakar, O=GLOBAL SOLUTIONS, CN=erp.esolbox.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d5:30:00:83:7c:8d:86:fe:e5:39:3b:30:e8:f1:
af:e4:d0:39:2d:fa:9b:06:27:4d:41:aa:92:c1:b8:
ad:f7:d8:c3:82:6c:18:bd:5f:d5:d9:1e:e5:13:bd:
5b:83:e8:d9:25:89:bc:2b:cd:06:a8:40:b5:08:2a:
cd:b1:df:18:92:0f:4c:48:5d:c6:ae:b7:8a:9c:5b:
bb:f7:6e:25:63:58:9b:00:57:f9:02:d2:63:42:46:
f6:d3:51:b2:89:37:e6:4d:31:5a:dc:82:29:79:77:
8d:40:0e:1a:98:51:d6:80:6f:f5:8f:05:76:ca:3d:
51:a1:b2:e5:9f:16:fc:0b:81:0f:c9:98:ad:0f:95:
3a:e7:0e:5d:a0:85:77:6a:88:3c:8a:71:94:93:b2:
c8:82:6f:41:24:d9:b0:d4:a9:5e:76:9b:10:d6:68:
ba:4b:74:a7:0e:db:fa:33:35:c9:13:e6:d5:32:d0:
7e:86:ff:0b:e3:98:c1:4a:ae:b7:8e:0e:0b:4e:d8:
20:10:56:e8:e0:95:70:e4:70:c1:9c:15:a2:ee:65:
83:27:f7:c1:c9:cb:62:4c:83:ed:cc:52:bc:82:da:
01:90:1d:96:32:30:16:08:3e:8e:99:61:db:fc:7a:
5b:54:a6:6e:21:ae:d6:51:d1:97:f8:6c:27:70:c2:
ca:bd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
2C:69:FF:80:C9:87:90:AE:34:E1:B4:E7:4C:93:85:99:40:E9:A7:B2
X509v3 Subject Key Identifier:
D8:F2:B7:96:40:6C:7F:C0:B3:61:C2:B1:7B:B0:72:89:84:D8:C9:B3
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.6449.1.2.1.5.1
CPS: https://sectigo.com/CPS
Policy: 2.23.140.1.1
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crl
Authority Information Access:
CA Issuers - URI:http://crt.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crt
OCSP - URI:http://ocsp.sectigo.com
X509v3 Subject Alternative Name:
DNS:erp.esolbox.com, DNS:www.erp.esolbox.com
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Apr 5 17:55:13.322 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:58:65:41:3C:9E:E5:F0:F0:39:AD:68:02:
E5:9C:33:3D:4A:B3:06:92:06:89:72:1F:C7:52:74:71:
AC:BF:AE:4F:02:21:00:A0:78:B8:CD:BE:5D:66:02:05:
51:F2:30:E0:18:27:39:52:4D:D0:19:2F:A8:FF:EC:C2:
1B:DD:52:4A:BF:CD:D8
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Apr 5 17:55:13.246 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:15:79:4D:44:70:BB:51:AC:64:12:A6:16:
AA:A5:2B:44:56:1F:0D:B3:29:99:9A:3F:B3:02:6F:3C:
89:DF:1B:A9:02:20:0F:0E:4B:8E:AE:2D:95:0E:2A:19:
6A:54:64:F5:36:4C:6C:EB:1B:57:9A:4C:59:0E:9E:A3:
3D:CF:C1:60:8E:DC
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
Timestamp : Apr 5 17:55:13.241 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:32:C1:18:B5:E4:24:90:41:FB:99:90:0F:
40:95:5B:D2:08:8E:73:3E:0B:D5:0F:D0:6D:04:5A:B0:
8F:BF:41:3E:02:20:3E:5E:22:CB:D2:91:3B:D5:F2:AB:
59:5F:D4:6F:5E:6B:8D:58:D4:37:6B:19:22:18:7D:D5:
40:74:80:3A:AF:70
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
92:11:b8:85:1d:51:df:22:3b:99:8c:ab:64:34:f3:c6:15:91:
9d:ec:f0:ea:66:10:04:80:13:16:90:bd:a3:bc:7b:ce:69:87:
a5:5f:5d:52:e2:66:e2:3d:4f:1c:9a:98:a6:ab:33:20:da:d3:
11:2c:6c:bf:b5:63:03:13:a6:b2:ca:f5:d6:2c:50:77:44:c4:
13:f4:35:cc:95:03:7f:89:89:c0:28:4d:a8:6a:43:29:e4:9f:
b1:c1:20:8a:06:d2:73:1c:54:d1:e1:77:1f:79:9e:d3:6d:c5:
ed:57:a7:01:cc:c5:20:a3:d7:82:9b:6e:b6:cd:d6:cf:26:74:
10:28:ba:a4:b1:b8:14:c9:3c:8a:5e:08:74:90:b7:be:95:86:
58:9d:4e:61:70:c8:82:30:d0:3c:52:ad:f1:59:bb:49:88:fb:
15:04:57:67:bd:c6:dc:ca:ee:54:59:86:1a:5c:c0:e4:dc:ef:
a1:b0:82:b5:13:e0:08:e1:f5:84:39:53:0f:e4:2b:78:56:b0:
ee:35:23:bf:5e:38:26:84:6c:53:a8:a3:e1:2c:cc:12:49:08:
78:dd:5c:e2:c2:4b:c6:37:0e:e0:42:9f:03:41:fd:65:f4:95:
a0:96:a2:bc:95:37:65:f5:0b:ee:10:d3:87:0c:84:14:dd:3c:
84:51:48:05
1121074672 | 2024-12-30T19:20:40.072456
1080 /
tcp
-1818294028 | 2025-01-10T14:59:52.840249
3306 /
tcp
MySQL:
Error Message: Host '224.2.78.223' is not allowed to connect to this MySQL server
Error Code: 1130
-1591510803 | 2025-01-19T14:58:45.726896
3389 /
tcp
Remote Desktop Protocol
\x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x0f\x08\x00\x02\x00\x00\x00
Remote Desktop Protocol NTLM Info:
OS: Windows 8.1/Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: SERVER01
NetBIOS Domain Name: SERVER01
NetBIOS Computer Name: SERVER01
DNS Domain Name: server01
FQDN: server01
esolbox Plesk Administrator SvcCOPSSH
am Windows Server 2012R2
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
25:06:73:38:6f:b3:6b:b9:42:a2:9e:05:7b:65:a7:65
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=server01
Validity
Not Before: Aug 22 02:47:51 2024 GMT
Not After : Feb 21 02:47:51 2025 GMT
Subject: CN=server01
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b5:39:ed:0b:d9:39:58:b6:ef:03:19:d7:7f:cb:
5e:24:54:60:83:7e:cd:ce:d6:15:39:7e:7d:13:74:
36:87:c9:aa:71:65:11:bb:a9:5a:d6:33:17:4f:70:
6e:58:85:41:1f:0e:ce:1f:1b:d7:4f:1b:ff:87:51:
06:f2:75:ff:0d:39:30:c0:96:69:ce:56:72:23:6a:
37:dc:1e:53:c1:72:54:e3:21:59:d3:a8:8a:a1:5a:
51:75:1c:54:57:f5:40:b5:32:e2:33:b3:bb:79:04:
64:5a:f1:cd:22:79:0e:19:e4:98:e5:2d:95:5c:45:
3d:e9:e9:a3:9c:06:4c:55:5a:af:63:ca:f2:32:3b:
ed:bc:1b:3a:58:47:22:43:dc:db:61:ac:b5:40:27:
2c:7b:39:61:53:45:a7:e0:9e:64:d2:4d:10:dc:9d:
50:b9:d8:ad:2f:13:90:5d:37:c7:e1:11:c1:fe:26:
5c:7d:88:cf:0d:4b:6f:5e:21:c0:17:8b:1c:5d:ea:
d8:d9:2b:90:e4:03:1f:de:a9:b3:e6:f1:e7:6b:10:
06:61:06:11:bf:4d:1a:15:58:2a:97:ae:7d:a1:07:
43:ff:b7:8d:1a:96:f3:c6:68:a2:a4:49:52:c8:89:
f5:46:b8:f5:03:83:2f:41:64:03:cf:f1:b5:4d:87:
ad:e1
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Key Usage:
Key Encipherment, Data Encipherment
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
b0:0c:46:46:e2:47:a0:88:f8:1b:f7:c9:a9:17:5e:4e:56:25:
e1:25:54:69:d1:02:eb:80:b1:e5:1d:02:c9:ac:64:18:3e:47:
a8:46:dd:5c:3d:e6:32:97:4d:c2:77:07:1d:82:12:7e:09:1a:
84:a2:b1:c0:fc:4c:db:99:9a:92:fd:c7:06:8b:a8:a5:f3:f0:
eb:81:e1:8c:25:57:3d:75:a4:7d:80:02:4f:22:f1:bc:98:57:
89:f3:9d:ef:8e:f3:80:f3:77:1b:ab:e3:f0:d6:7d:48:af:fd:
ae:b3:f5:da:3d:c2:25:46:17:3b:37:fd:1b:9a:73:a8:46:9a:
de:86:a8:8b:11:29:38:96:f9:77:8e:a0:a2:a2:cc:13:17:0e:
f7:95:2d:14:c4:f9:69:91:b1:45:4a:09:f1:bb:a7:d1:1b:fe:
37:e8:25:c1:df:f6:14:6d:09:b5:1e:f0:0d:4a:f8:91:58:d8:
23:56:7a:35:4a:47:e6:c8:c2:3a:e0:ff:c5:95:4e:5f:a2:8e:
27:74:0f:db:2d:b4:52:2c:00:73:30:0d:23:09:d9:ec:db:20:
dc:0f:ad:2d:ea:41:81:ac:b1:00:73:4d:c2:98:ff:e5:cc:9a:
f3:2b:c2:4b:90:8f:02:cf:b5:51:dd:16:d8:42:3b:60:d7:35:
0f:17:59:87
-868514306 | 2025-01-20T15:03:56.076162
5222 /
tcp
<?xml version="1.0"?><stream:stream from='esolbox.com' id='_0' xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' version='1.0'><stream:features><mechanisms xmlns='urn:ietf:params:xml:ns:xmpp-sasl'><mechanism>DIGEST-MD5</mechanism><mechanism>PLAIN</mechanism></mechanisms><bind xmlns='urn:ietf:params:xml:ns:xmpp-bind'/><session xmlns='urn:ietf:params:xml:ns:xmpp-session'/><ver xmlns='urn:xmpp:features:rosterver'/><c xmlns='http://jabber.org/protocol/caps' hash='sha-1' node='http://www.mailenable.com/en/mexmpp/' ver='FNiMBvbG6wlLlF/0n7FE5CuvsvY='/><sm xmlns='urn:xmpp:sm:3'/></stream:features>
1489525118 | 2025-01-17T01:21:53.931333
5985 /
tcp
HTTP/1.1 404 Not Found
Content-Type: text/html; charset=us-ascii
Server: Microsoft-HTTPAPI/2.0
Date: Fri, 17 Jan 2025 01:21:59 GMT
Connection: close
Content-Length: 315
WinRM NTLM Info:
OS: Windows Server 2012 R2
OS Build: 6.3.9600
Target Name: SERVER01
NetBIOS Domain Name: SERVER01
NetBIOS Computer Name: SERVER01
DNS Domain Name: server01
FQDN: server01
-144873053 | 2025-01-08T19:44:42.598715
8880 /
tcp
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate,post-check=0, pre-check=0
Pragma: no-cache
Transfer-Encoding: chunked
Content-Type: text/html
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Wed, 08 Jan 2025 19:44:45 GMT
Server: Microsoft-IIS/8.5
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"
X-Powered-By: ASP.NET
Date: Wed, 08 Jan 2025 19:44:46 GMT
55a
<html><head>
<meta charset="utf-8">
<meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1">
<meta name="plesk-build" content="20150128.13">
<title>Plesk 12.0.18 for Microsoft Windows</title>
<script language="javascript" type="text/javascript" src="/javascript/common.js?1422447578"/></script>
<script language="javascript" type="text/javascript" src="/javascript/prototype.js?1422447578"/></script>
<script>
var opt_no_frames = false;
var opt_integrated_mode = false;
</script>
</head><body onLoad=";top.location='/login.php3';"></body><noscript>Vous serez redirigé vers la nouvelle adresse dans 15 secondes... Si vous n'être pas automatiquement redirigé vers le nouvel emplacement, veuillez activer Javascript ou cliquer sur l'hyperlien <a href="/login.php3" target="top">/login.php3</a>.</noscript></html><!--______________________________________________________________________________________________________________________________________________________________________________________________________________________________________________IE error page size limitation______________________________________________________________________________________________________________________________________________________________________________________________________________________________________________-->
0