21 /
tcp
966132179 | 2025-01-11T08:23:58.186357
220 ProFTPD Server (Debian) [::ffff:85.193.85.119]
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
214-CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
214-EPRT EPSV ALLO* RNFR RNTO DELE MDTM RMD
214-XRMD MKD XMKD PWD XPWD SIZE SYST HELP
214-NOOP FEAT OPTS HOST CLNT AUTH* CCC* CONF*
214-ENC* MIC* PBSZ* PROT* TYPE STRU MODE RETR
214-STOR STOU APPE REST ABOR USER PASS ACCT*
214-REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@0.0.0.0
211-Features:
211-CLNT
211-EPRT
211-EPSV
211-HOST
211-LANG en-US.UTF-8*;en-US
211-MDTM
211-MFF modify;UNIX.group;UNIX.mode;
211-MFMT
211-MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
211-REST STREAM
211-SITE COPY
211-SITE MKDIR
211-SITE RMDIR
211-SITE SYMLINK
211-SITE UTIME
211-SIZE
211-TVFS
211-UTF8
211 End
22 /
tcp
906941389 | 2025-01-23T18:11:04.972788
SSH-2.0-OpenSSH_8.2p1 Ubuntu-4ubuntu0.11
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABgQCgOrQWQ0PDGDRKpMwLseRmiiKut24XgAs55uCYTiSdZETi
UKxZcz4XMCF9aMMetB2/FkqxT/gpoguscMT0ukQl0lymfjj9eUslx04SWwtio4lzA1iK9/3u1ukV
0q6CJvgQX1ePJwKGlisxUSD8eUtLThlOL1hsBBIMwePFGs/e2RBUDh+lQ8aYenVwirNxgVQWpw9z
XKPTjto6i7FeoGXJdTqFf9mXbPJcuHtPhIPqNmg7Kqe/J7gmqyl9eNgcOZgiKI1sBgom+4pSXGgo
PjrfyQucYMgvviMEc8SdJeseJuaAYpi3WI3HK7ShQNtxh97JK9kfPeDi2CbXdwJ06zVqEXAezu1V
q5ahr0OeEmSopPWkSwCP4yXv9R6J08lg36/Q6QSz1bI1Oqe6L97/DeB1ZTEOt3acRjfdkJWpkeHu
Dn4nJl2QJ+VTslQ2LVLh9q1fWWrYYusGQfbfBiPhN/kzQp8ItFyN2O41rIgn3nnFBcbTKyaN6xld
bxtIqKc+fp8=
Fingerprint: e8:13:00:91:ae:f7:b1:fc:dc:4c:73:ae:15:a4:54:5a
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group14-sha256
kex-strict-s-v00@openssh.com
Server Host Key Algorithms:
rsa-sha2-512
rsa-sha2-256
ssh-rsa
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
zlib@openssh.com
25 /
tcp
707428979 | 2025-01-01T11:00:13.539558
220 967169-gensmeta.tmweb.ru ESMTP Exim 4.93 Ubuntu Wed, 01 Jan 2025 13:59:39 +0300
250-967169-gensmeta.tmweb.ru Hello 224.142.19.19 [224.142.19.19]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH LOGIN PLAIN
250-CHUNKING
250-STARTTLS
250-SMTPUTF8
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
39:69:15:8c:89:b1:c0:bf:6b:e9:42:37:56:ab:8a:9e:ab:85:51
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=EN, ST=Tallin, L=Tallin, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com
Validity
Not Before: Jul 26 09:44:54 2022 GMT
Not After : Jul 26 09:44:54 2023 GMT
Subject: C=EN, ST=Tallin, L=Tallin, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d9:96:83:c0:60:66:a4:d2:3d:c5:31:4c:5e:ec:
42:d9:39:04:64:b4:f6:8c:8e:37:ab:cd:97:58:e9:
8a:ef:69:65:da:b5:84:6c:2c:e9:f7:ba:3b:62:fd:
cb:61:e3:b1:02:53:6e:c1:67:9b:fd:35:14:df:57:
3d:2b:5c:4e:90:d6:36:31:bb:69:fe:0f:66:1f:7f:
fd:c8:fb:9e:c4:6e:7e:cf:26:3a:09:be:a2:de:3c:
1b:88:85:e8:84:0e:c7:0c:06:d1:ce:06:c4:a5:90:
db:58:3b:e0:5e:95:45:77:f4:cf:1d:bb:87:03:3c:
93:35:6d:91:e8:77:c8:7d:24:53:5c:52:5f:f3:b6:
de:da:7f:8e:fc:c6:4c:cc:89:75:7b:d8:20:24:e0:
26:07:55:0e:90:07:69:f1:79:8e:3c:6f:1a:3d:2d:
88:ed:74:7e:4d:d1:91:d4:5b:15:e1:e4:aa:ea:e1:
20:0f:7e:0f:a5:07:3e:04:57:b1:ac:42:e7:20:2e:
4a:aa:1d:af:0b:1a:0f:d7:68:19:22:20:ad:fe:94:
73:e7:e0:85:4b:3a:34:f5:53:bd:dd:a5:dd:26:53:
15:ad:c8:36:dd:ca:c8:df:8e:16:4e:6f:84:bd:8b:
e1:a0:f8:82:42:b9:cc:64:c1:23:75:ee:98:4b:0d:
51:c7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
A1:39:2B:6C:50:45:6A:CA:D8:58:6D:79:70:D3:48:29:2E:35:D0:FB
X509v3 Authority Key Identifier:
A1:39:2B:6C:50:45:6A:CA:D8:58:6D:79:70:D3:48:29:2E:35:D0:FB
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
4f:4c:4d:ce:54:ac:6c:46:68:34:dd:4d:ff:a0:bf:99:b5:2d:
f6:4d:19:11:d1:6a:5f:26:d3:10:95:43:87:8e:78:23:0c:4c:
8b:88:0a:a6:37:af:05:aa:62:54:03:f1:05:6a:da:56:6f:19:
c4:05:35:c0:d5:3e:eb:e3:07:12:51:fc:14:2b:ed:03:62:7d:
d8:0c:92:95:6c:a1:95:6d:67:c3:30:a3:fc:8d:15:2e:c9:f7:
2a:c1:b5:0a:f5:56:9a:fb:71:00:be:43:8b:87:6a:92:50:05:
2f:ef:ee:f4:90:42:b7:03:f9:b2:9f:2d:ec:5a:99:20:c1:1e:
b0:f2:fc:27:d6:5f:ab:09:f8:63:5f:0e:57:3a:d3:e8:f9:c7:
c1:7a:47:d6:32:7b:2e:db:c6:a1:db:3e:6f:a6:cb:47:3e:62:
be:7d:e6:36:ad:d9:8b:fa:df:bf:c8:32:cc:6e:16:62:bb:4d:
20:02:4b:fb:32:dd:b2:e7:de:a4:b2:48:e7:a3:2f:e5:de:05:
68:a9:73:d5:ec:fd:7e:dd:5d:a0:ff:70:a2:60:62:ec:4e:b3:
33:2c:80:c8:43:a3:0b:61:ab:21:c2:68:16:44:fe:38:0e:c4:
0f:30:2e:92:09:e9:2a:7f:ed:9f:70:0d:9d:ff:9f:80:a9:c3:
35:cc:8c:8c
-1921206201 | 2025-01-17T07:18:58.343951
HTTP/1.1 200 OK
Server: nginx/1.22.0
Date: Fri, 17 Jan 2025 07:18:57 GMT
Content-Type: text/html
Content-Length: 11694
Last-Modified: Fri, 06 Sep 2024 12:05:04 GMT
Connection: keep-alive
ETag: "66daeff0-2dae"
Accept-Ranges: bytes
110 /
tcp
1924648187 | 2024-12-29T15:20:54.228437
+OK Dovecot (Ubuntu) ready.
+OK
CAPA
TOP
UIDL
RESP-CODES
PIPELINING
AUTH-RESP-CODE
STLS
USER
SASL PLAIN LOGIN
.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
43:61:4e:fc:91:63:99:fa:ae:51:5d:ac:9f:dd:82:6d:fc:fa:9b:5d
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=967169-gensmeta.tmweb.ru
Validity
Not Before: Jul 26 09:43:36 2022 GMT
Not After : Jul 23 09:43:36 2032 GMT
Subject: CN=967169-gensmeta.tmweb.ru
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b5:d0:04:a7:95:b1:38:7f:f2:e1:39:bb:ae:96:
10:d4:9b:b7:ee:5a:62:36:30:37:5f:f1:b0:91:7e:
50:9b:da:06:74:df:bd:c3:a9:3d:b6:f9:4f:f8:3c:
1c:60:5c:ca:6f:4e:0f:a0:be:f4:7c:29:d4:7f:d0:
be:71:3f:60:dd:52:bc:76:21:09:f1:5c:f4:2c:36:
73:fb:c3:33:f3:33:60:21:e5:44:21:0b:07:ee:2e:
37:9f:b7:42:73:68:ef:60:de:cc:d6:61:98:bc:01:
be:84:e4:ea:ca:b2:b3:62:c6:e7:c1:6e:3d:50:e3:
86:58:4c:ab:55:e6:a2:dc:24:31:da:95:c2:07:d5:
03:48:62:9b:5c:75:2c:d9:91:55:8b:52:b0:69:3c:
fb:e0:18:6a:f0:b9:b4:f6:e2:49:d0:dd:7d:34:06:
79:e3:d4:8d:1f:24:09:cb:1d:97:96:22:2a:db:5d:
6c:a8:d0:e0:f6:34:aa:77:b3:bb:c4:95:05:d3:02:
29:29:59:25:59:ee:fd:94:86:09:4e:bd:21:b8:bb:
2e:cc:6d:4d:17:2f:98:14:27:2f:20:17:da:d4:21:
ea:7e:97:a9:24:c1:85:cb:c2:e3:76:5d:4e:d2:53:
28:a7:ef:de:d8:fa:b8:e0:ac:2a:f2:16:c1:e7:c8:
3b:fd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
X509v3 Subject Alternative Name:
DNS:967169-gensmeta.tmweb.ru
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
27:75:25:b8:92:17:92:79:fc:2e:f9:6b:b3:63:f0:86:3f:37:
0b:d7:cf:77:cc:24:3c:d6:e6:72:d1:66:f2:07:f2:57:48:83:
13:42:09:be:cc:0d:8f:ae:87:76:15:ea:69:e3:4f:28:29:1b:
b2:2d:0d:cc:34:c8:54:63:2c:0f:ec:47:bc:ea:1a:02:c7:8f:
85:8f:49:31:cd:ee:e7:4f:53:16:75:e4:e2:03:cf:7c:d3:41:
c8:25:65:7a:88:0c:15:f3:fb:48:fe:d8:2e:10:ba:ff:6a:08:
4c:41:a6:4b:b8:ac:49:cc:d6:ec:d4:36:b8:fd:ca:97:b2:34:
7b:a1:88:37:0e:c5:83:46:48:0f:cc:6c:2f:f2:64:f7:56:9a:
53:ed:71:1a:af:78:85:b9:2a:41:77:7e:78:cc:a7:b9:e4:09:
ba:ac:90:36:a8:b0:78:49:0e:40:4f:f3:76:8b:0a:c9:17:53:
3e:d3:fc:65:bd:e6:1e:a8:3d:bb:6b:c6:07:da:1b:2a:56:c4:
6b:e2:5b:67:be:5b:14:42:b5:83:3f:51:0b:6f:4f:26:cf:d0:
14:94:b4:05:14:03:1b:18:f5:47:61:29:95:92:f8:e9:c4:51:
76:85:16:be:27:a9:bd:0c:62:61:97:4d:58:f4:95:fb:3d:63:
01:3f:97:d0
143 /
tcp
-1712467009 | 2025-01-22T10:54:18.946956
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot (Ubuntu) ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
43:61:4e:fc:91:63:99:fa:ae:51:5d:ac:9f:dd:82:6d:fc:fa:9b:5d
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=967169-gensmeta.tmweb.ru
Validity
Not Before: Jul 26 09:43:36 2022 GMT
Not After : Jul 23 09:43:36 2032 GMT
Subject: CN=967169-gensmeta.tmweb.ru
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b5:d0:04:a7:95:b1:38:7f:f2:e1:39:bb:ae:96:
10:d4:9b:b7:ee:5a:62:36:30:37:5f:f1:b0:91:7e:
50:9b:da:06:74:df:bd:c3:a9:3d:b6:f9:4f:f8:3c:
1c:60:5c:ca:6f:4e:0f:a0:be:f4:7c:29:d4:7f:d0:
be:71:3f:60:dd:52:bc:76:21:09:f1:5c:f4:2c:36:
73:fb:c3:33:f3:33:60:21:e5:44:21:0b:07:ee:2e:
37:9f:b7:42:73:68:ef:60:de:cc:d6:61:98:bc:01:
be:84:e4:ea:ca:b2:b3:62:c6:e7:c1:6e:3d:50:e3:
86:58:4c:ab:55:e6:a2:dc:24:31:da:95:c2:07:d5:
03:48:62:9b:5c:75:2c:d9:91:55:8b:52:b0:69:3c:
fb:e0:18:6a:f0:b9:b4:f6:e2:49:d0:dd:7d:34:06:
79:e3:d4:8d:1f:24:09:cb:1d:97:96:22:2a:db:5d:
6c:a8:d0:e0:f6:34:aa:77:b3:bb:c4:95:05:d3:02:
29:29:59:25:59:ee:fd:94:86:09:4e:bd:21:b8:bb:
2e:cc:6d:4d:17:2f:98:14:27:2f:20:17:da:d4:21:
ea:7e:97:a9:24:c1:85:cb:c2:e3:76:5d:4e:d2:53:
28:a7:ef:de:d8:fa:b8:e0:ac:2a:f2:16:c1:e7:c8:
3b:fd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
X509v3 Subject Alternative Name:
DNS:967169-gensmeta.tmweb.ru
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
27:75:25:b8:92:17:92:79:fc:2e:f9:6b:b3:63:f0:86:3f:37:
0b:d7:cf:77:cc:24:3c:d6:e6:72:d1:66:f2:07:f2:57:48:83:
13:42:09:be:cc:0d:8f:ae:87:76:15:ea:69:e3:4f:28:29:1b:
b2:2d:0d:cc:34:c8:54:63:2c:0f:ec:47:bc:ea:1a:02:c7:8f:
85:8f:49:31:cd:ee:e7:4f:53:16:75:e4:e2:03:cf:7c:d3:41:
c8:25:65:7a:88:0c:15:f3:fb:48:fe:d8:2e:10:ba:ff:6a:08:
4c:41:a6:4b:b8:ac:49:cc:d6:ec:d4:36:b8:fd:ca:97:b2:34:
7b:a1:88:37:0e:c5:83:46:48:0f:cc:6c:2f:f2:64:f7:56:9a:
53:ed:71:1a:af:78:85:b9:2a:41:77:7e:78:cc:a7:b9:e4:09:
ba:ac:90:36:a8:b0:78:49:0e:40:4f:f3:76:8b:0a:c9:17:53:
3e:d3:fc:65:bd:e6:1e:a8:3d:bb:6b:c6:07:da:1b:2a:56:c4:
6b:e2:5b:67:be:5b:14:42:b5:83:3f:51:0b:6f:4f:26:cf:d0:
14:94:b4:05:14:03:1b:18:f5:47:61:29:95:92:f8:e9:c4:51:
76:85:16:be:27:a9:bd:0c:62:61:97:4d:58:f4:95:fb:3d:63:
01:3f:97:d0
-1570135907 | 2025-01-23T09:08:50.128823
HTTP/1.1 400 Bad Request
Server: nginx/1.22.0
Date: Thu, 23 Jan 2025 09:08:50 GMT
Content-Type: text/html
Content-Length: 255
Connection: close
<html>
<head><title>400 The plain HTTP request was sent to HTTPS port</title></head>
<body>
<center><h1>400 Bad Request</h1></center>
<center>The plain HTTP request was sent to HTTPS port</center>
<hr><center>nginx/1.22.0</center>
</body>
</html>
995 /
tcp
-784819759 | 2025-01-11T17:47:51.673337
+OK Dovecot (Ubuntu) ready.
+OK
CAPA
TOP
UIDL
RESP-CODES
PIPELINING
AUTH-RESP-CODE
USER
SASL PLAIN LOGIN
.
3306 /
tcp
-1969743411 | 2025-01-24T10:55:40.386845
MySQL:
Error Message: Host '224.240.124.202' is not allowed to connect to this MySQL server
Error Code: 1130
1651973090 | 2025-01-19T03:05:39.121110
HTTP/1.1 200 OK
Server: nginx
Date: Sun, 19 Jan 2025 03:05:39 GMT
Content-Type: text/html
Content-Length: 612
Last-Modified: Mon, 24 Jun 2024 08:42:21 GMT
Connection: keep-alive
ETag: "6679316d-264"
Accept-Ranges: bytes
-23674247 | 2025-01-22T11:51:49.568420
HTTP/1.1 302 Moved Temporarily
Server: nginx
Date: Wed, 22 Jan 2025 11:51:49 GMT
Content-Type: text/html
Content-Length: 138
Connection: close
Location: https://85.193.85.119:8888/