1265459773 | 2024-11-19T10:56:58.495046
21 /
tcp
220 Welcome to FairyShip
530 Login incorrect.
530 Please login with USER and PASS.
211-Features:
EPRT
EPSV
MDTM
PASV
REST STREAM
SIZE
TVFS
UTF8
211 End
2043792675 | 2024-11-19T13:40:48.086139
25 /
tcp
220 fairyship.com ESMTP FairyshipServer
250-fairyship.com
250-PIPELINING
250-SIZE 104857600
250-VRFY
250-ETRN
250-AUTH PLAIN LOGIN
250-AUTH=PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
1641700423 | 2024-11-19T12:10:48.298565
26 /
tcp
220 fairyship.com ESMTP FairyshipServer\r\n
90969744 | 2024-11-19T15:17:04.134597
53 /
tcp
DNS
Resolver name: fairyship.com
90969744 | 2024-11-19T09:19:00.562229
53 /
udp
DNS
Resolver name: fairyship.com
-1945877376 | 2024-11-19T14:37:32.723756
80 /
tcp
HTTP/1.1 200 OK
Server: nginx
Date: Tue, 19 Nov 2024 14:37:32 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
X-Powered-By: PHP/5.6.40
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: PHPSESSID=1232aa44c7b81d1ffcc684abe7beaa32; path=/; HttpOnly
-1587958103 | 2024-11-19T06:24:42.662613
81 /
tcp
HTTP/1.1 200 OK
Date: Tue, 19 Nov 2024 06:24:42 GMT
Server: Apache
X-Powered-By: PHP/5.6.40
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: PHPSESSID=530266d88dc19a0bbf2a4f9f39c8a623; path=/; HttpOnly
Connection: close
Transfer-Encoding: chunked
Content-Type: text/html; charset=utf-8
-1689669364 | 2024-11-19T14:39:03.881258
110 /
tcp
+OK Dovecot ready.
+OK
CAPA
TOP
UIDL
RESP-CODES
PIPELINING
USER
SASL PLAIN LOGIN
.
1986660905 | 2024-11-19T04:50:46.939926
123 /
udp
NTP
protocolversion: 3
stratum: 3
leap: 0
precision: -25
rootdelay: 0.0116882324219
rootdisp: 0.0403594970703
refid: 3589271462
reftime: 3940980572.63
poll: 3
-402226912 | 2024-11-19T07:47:08.690340
143 /
tcp
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
* CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN
A001 OK Capability completed.
* ID NIL
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
706329445 | 2024-11-19T09:52:09.699402
443 /
tcp
HTTP/1.1 200 OK
Date: Tue, 19 Nov 2024 09:52:09 GMT
Server: Apache
X-Powered-By: PHP/5.6.40
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Set-Cookie: PHPSESSID=12001f5a804c7eb35083351c3438d902; path=/
Connection: close
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 4235568793182887800 (0x3ac7c3605b655f78)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., OU=http:\/\/certs.godaddy.com\/repository\/, CN=Go Daddy Secure Certificate Authority - G2
Validity
Not Before: Feb 7 13:28:24 2024 GMT
Not After : Mar 10 13:28:24 2025 GMT
Subject: CN=physreal.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:91:4e:a4:a9:c6:f4:7d:3c:50:a6:b2:63:e8:7d:
6a:d7:9a:b8:a4:03:fd:2b:a3:de:8e:25:64:74:ec:
76:ac:de:52:03:f4:f4:6f:2f:5e:e6:5f:88:89:12:
3f:28:02:7d:ef:e7:b9:bd:6c:b2:0c:21:b6:4a:43:
02:9e:9b:24:74:1f:1a:27:50:e5:21:4b:7b:13:e6:
19:ec:14:4d:e7:0f:48:46:3a:b9:6e:b1:d7:58:ca:
c6:24:d9:35:af:5c:d1:1f:c5:31:d4:54:03:9d:35:
8e:1e:74:b6:06:aa:72:cb:57:9b:a1:23:9d:d8:09:
ec:85:62:e3:0a:ad:f2:f9:09:c2:90:aa:60:5b:84:
65:f2:aa:b7:c8:1c:6f:78:c5:29:99:30:f6:0b:1a:
3f:2d:c3:a9:b1:79:9f:89:9f:f3:d5:0e:61:e9:8f:
37:ac:eb:4a:24:d8:11:6c:33:c5:99:cf:0c:29:4c:
8e:51:e1:10:59:0a:71:f6:32:9e:6b:4d:7d:21:70:
9e:58:d1:06:d5:24:e3:d3:e1:02:7a:b1:47:a5:3b:
7e:d4:b4:92:cb:e0:05:66:4a:36:8c:18:7c:52:84:
67:20:6e:98:f9:56:11:47:db:1c:41:34:c9:51:fd:
c2:c1:56:64:f8:4e:43:3e:42:9b:59:3d:9c:15:3a:
20:93
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.godaddy.com/gdig2s1-16781.crl
X509v3 Certificate Policies:
Policy: 2.16.840.1.114413.1.7.23.1
CPS: http://certificates.godaddy.com/repository/
Policy: 2.23.140.1.2.1
Authority Information Access:
OCSP - URI:http://ocsp.godaddy.com/
CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
X509v3 Authority Key Identifier:
40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
X509v3 Subject Alternative Name:
DNS:physreal.com, DNS:www.physreal.com
X509v3 Subject Key Identifier:
5A:F1:8C:6D:C2:DF:FA:6A:8F:83:F5:36:68:E9:DE:F7:4D:4B:5C:41
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
Timestamp : Feb 7 13:28:25.158 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:C6:51:23:84:35:B2:D3:DC:BB:47:66:
88:09:CD:D5:D5:A6:73:92:CD:11:C1:62:B2:12:56:DF:
7A:A0:4A:9D:80:02:20:4C:6E:98:44:73:73:A3:F7:AC:
22:8B:10:95:9D:24:64:C3:E1:96:50:12:53:C1:BD:37:
8D:A0:24:21:DC:A8:F1
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
Timestamp : Feb 7 13:28:25.423 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:20:18:9A:70:C0:C1:D4:CC:B1:FE:42:77:B5:
12:24:06:A6:B1:68:A0:1C:FA:CE:AB:8D:C3:C2:11:B6:
2E:3E:84:41:02:21:00:9A:D6:3D:92:B5:9C:D1:74:E9:
BA:C8:1F:CD:99:80:9E:D4:B5:0C:95:E6:21:8C:6C:C8:
87:69:58:7F:23:6A:47
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
Timestamp : Feb 7 13:28:25.541 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:F4:8C:FE:E2:1F:09:4D:B6:3A:6C:4F:
57:86:16:EC:00:0C:80:95:53:1E:D2:69:E1:B3:A4:AA:
58:B0:F7:4B:19:02:20:7D:9E:41:88:5E:F1:5A:4F:DE:
2A:C3:80:3D:3D:86:04:A1:1F:BD:32:4E:4B:E9:C2:73:
49:0C:BF:CB:0C:F9:1D
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
2e:fd:87:cc:35:87:f6:3a:a7:32:8f:06:80:3b:f6:43:9d:32:
9e:72:c6:0e:6f:b0:68:e8:9f:e2:43:9a:8c:9a:fc:72:c1:2d:
80:f5:70:e0:56:82:3b:53:6c:59:c6:b7:32:65:74:16:e3:be:
9b:94:a0:5f:2b:7e:36:b9:8f:57:ee:94:4f:72:6d:5c:bd:c6:
36:21:bd:2c:59:82:ff:be:ed:98:5b:01:3c:0d:81:9e:85:3f:
35:dc:fe:a3:4a:9f:96:6b:86:2e:cb:c5:05:0f:e9:7a:68:9d:
41:ce:c0:93:f7:3e:f4:24:4b:c6:e5:29:fd:f5:1f:02:19:71:
4f:72:68:68:7b:44:6f:2e:f0:e0:83:b8:ae:09:76:f1:e6:ad:
91:c2:db:23:ae:bd:cb:0a:17:f3:eb:94:62:fd:2d:65:f6:0f:
5d:21:3d:89:a6:b7:5a:df:26:09:85:93:a1:ec:e8:a6:dc:51:
04:59:de:90:bd:be:ff:2e:11:20:e0:64:67:51:af:6d:dc:2f:
6a:c9:f3:67:9f:47:2a:f2:e0:16:f8:1b:87:b1:e7:4a:c5:c6:
3c:05:27:e5:e5:17:b2:5f:b3:1d:22:44:a0:7d:6c:a8:57:11:
7b:ae:9b:ab:97:93:55:66:e7:42:c3:f4:c5:13:0f:9a:5a:8f:
5c:06:48:f5
1641700423 | 2024-11-19T09:20:43.979144
465 /
tcp
220 fairyship.com ESMTP FairyshipServer\r\n
2022369556 | 2024-11-04T23:31:54.945689
902 /
tcp
220 VMware Authentication Daemon Version 1.10: SSL Required, ServerDaemonProtocol:SOAP, MKSDisplayProtocol:VNC , VMXARGS supported, NFCSSL supported/t
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c8:b4:9d:8a:89:5b:52:7e
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, L=Palo Alto, OU=VMware, CN=VMware/emailAddress=none@vmware.com
Validity
Not Before: Mar 19 11:51:17 2021 GMT
Not After : Mar 19 11:51:17 2022 GMT
Subject: C=US, L=Palo Alto, OU=VMware, CN=VMware/emailAddress=none@vmware.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d7:9e:cd:7f:16:65:77:f3:d9:2c:75:01:96:11:
c1:c4:1f:a5:54:15:26:4c:b1:82:5b:7a:59:1b:b7:
a9:24:86:40:96:10:0b:52:45:47:19:f1:3b:57:7f:
b4:cf:f9:84:c6:77:7d:09:61:49:75:93:e9:de:3a:
e4:7c:b4:7a:f8:76:3e:f1:a5:bc:1b:3b:1b:b1:53:
7a:0b:8e:c1:bd:e7:6f:00:a5:56:72:fa:3c:e7:1c:
64:0c:83:c3:4b:ff:f6:0c:b9:d2:47:19:2c:3d:d1:
4a:75:07:81:04:aa:10:4a:3d:5b:27:36:77:c5:84:
85:18:d3:a1:dc:ce:fb:98:b3:28:d9:a3:27:17:52:
bb:a0:7f:05:1c:6c:9e:e2:14:f0:9c:83:1e:9c:75:
09:8f:a4:82:86:6a:e2:6f:b6:8f:06:99:ca:a4:bd:
23:65:22:8e:7f:80:09:8e:de:09:a8:13:e8:a7:b9:
93:94:30:7e:a9:00:54:ee:07:27:d2:db:f7:ea:eb:
0e:5b:0e:ed:f5:ab:d8:c6:6e:40:c0:af:f6:97:26:
05:12:ad:a1:56:99:b4:cf:54:db:bc:49:70:b6:0c:
c7:8e:6f:4e:3a:d5:78:d6:bc:83:92:47:d7:45:09:
08:b4:60:20:67:d4:50:c9:ac:3f:8e:44:a2:3c:66:
aa:35
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A3:16:3D:F6:25:C6:47:79:38:0B:87:CA:CF:CD:0E:5A:96:BF:19:DC
X509v3 Authority Key Identifier:
keyid:A3:16:3D:F6:25:C6:47:79:38:0B:87:CA:CF:CD:0E:5A:96:BF:19:DC
DirName:/C=US/L=Palo Alto/OU=VMware/CN=VMware/emailAddress=none@vmware.com
serial:C8:B4:9D:8A:89:5B:52:7E
X509v3 Basic Constraints:
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
9b:b2:99:87:98:55:14:cd:ac:6c:6d:98:e8:97:1b:9b:08:54:
73:eb:8c:fe:6e:3c:22:85:40:91:51:19:b8:30:da:67:a9:b7:
d1:a5:d8:af:dc:54:e2:a0:6a:6c:2e:15:d3:67:73:43:96:4b:
4f:52:23:67:36:4a:00:de:39:8e:27:2e:cd:70:64:5d:1a:52:
41:82:d9:42:1f:f8:e0:10:7c:aa:ff:97:ee:ca:5e:38:9d:c9:
04:34:3f:1e:d3:d9:8f:22:06:53:16:ee:48:e7:bf:fc:8a:45:
ba:94:1e:9c:5c:bc:27:c6:bd:cc:15:69:60:d2:10:f5:bf:5b:
67:fd:63:70:9d:dd:c5:f9:da:45:5f:9e:b9:5d:23:f9:12:75:
96:70:76:f9:b1:4b:53:cd:40:4d:62:ae:c3:34:73:5a:45:46:
75:89:0e:2b:21:16:44:98:cf:30:be:1e:a3:a9:a5:96:b8:b6:
90:5e:27:73:34:8c:f7:09:d6:22:83:20:e0:9e:e7:7d:15:40:
e7:51:7b:6c:fb:2d:73:7f:b6:ca:be:5a:23:fe:59:ef:01:96:
17:5f:f3:28:0b:56:19:29:7f:9a:50:49:5b:47:f3:a2:54:84:
ed:ad:bf:28:4d:79:70:cb:72:e9:0b:0a:14:47:73:bb:a4:b1:
15:36:09:76
423993957 | 2024-11-19T12:56:30.385414
3306 /
tcp
MySQL:
Protocol Version: 10
Version: 5.6.51-log
Capabilities: 63487
Server Language: 33
Server Status: 2
Extended Server Capabilities: 32895
Authentication Plugin: mysql_native_password