21 /
tcp
1054316420 | 2025-01-14T17:04:19.095360
220 ProFTPD Server (Debian) [::ffff:94.103.86.91]
530 Login incorrect.
214-The following commands are recognized (* =>'s unimplemented):
214-CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV
214-EPRT EPSV ALLO* RNFR RNTO DELE MDTM RMD
214-XRMD MKD XMKD PWD XPWD SIZE SYST HELP
214-NOOP FEAT OPTS HOST CLNT AUTH* CCC* CONF*
214-ENC* MIC* PBSZ* PROT* TYPE STRU MODE RETR
214-STOR STOU APPE REST ABOR USER PASS ACCT*
214-REIN* LIST NLST STAT SITE MLSD MLST
214 Direct comments to root@0.0.0.0
211-Features:
211-CLNT
211-EPRT
211-EPSV
211-HOST
211-LANG ru-RU.UTF-8;ru-RU;en-US
211-MDTM
211-MFF modify;UNIX.group;UNIX.mode;
211-MFMT
211-MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*;
211-REST STREAM
211-SITE COPY
211-SITE MKDIR
211-SITE RMDIR
211-SITE SYMLINK
211-SITE UTIME
211-SIZE
211-TVFS
211-UTF8
211 End
22 /
tcp
1607105156 | 2025-01-24T09:08:48.274245
SSH-2.0-OpenSSH_8.2p1 Ubuntu-4ubuntu0.11
Key type: ssh-rsa
Key: AAAAB3NzaC1yc2EAAAADAQABAAABgQDAPbP26Ie6frzwJJT8r7HZliti2h8cb3ihvSsrvRPBmDdP
7puvcRx4pz9+ab/LtFlYYJWJCSvW0+8/I46g9Zf+72ldWQVWDD+31McmlUyOX0zUtdAdCOGdNuOM
t32VABXzi3y6osiDSqAGlmzVJXKTwasNu3fpGvK5NFSPWN/+Wmn+MMm6w1k8HkQNVHpEVmuVEb5T
lv5sp3AVQHQCjDY589erfrEWRrso9MSSIzinvXmO7kAboDhLn8DVH63OBY8yMW6qsW95mR0ak6Sb
J9/YXaQ+CDgFxm6i7YZauMGlo3qcFktgbhlX6LBuqF8Lg1fG5iJSck5yjzgyrjJwtTJO8wrjjSVd
4qPwKEu2jLx8IJ4wL1K50vQ0xkTwkbBxxesQgZBdndbqZaeQuR/yTMlIsEAh03iRVkCz3cCMH4uY
7msgHDMDi2vEcNN7V8R+By+Nqps7YT6wD8TGg7OBmRg9/6CccHF/6WtU2LCt6osHt0xgsJOpjd8g
2aBXfJhFBb0=
Fingerprint: 95:4d:40:bc:94:33:0f:6b:42:0d:cb:dd:9a:73:1e:66
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group14-sha256
kex-strict-s-v00@openssh.com
Server Host Key Algorithms:
rsa-sha2-512
rsa-sha2-256
ssh-rsa
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
zlib@openssh.com
25 /
tcp
97266466 | 2025-01-01T03:58:04.606964
220 bestsweet.icu ESMTP Exim 4.93 Ubuntu Wed, 01 Jan 2025 06:57:51 +0300
250-bestsweet.icu Hello vecf06b55okg93.org [224.97.44.78]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH LOGIN PLAIN
250-CHUNKING
250-STARTTLS
250-SMTPUTF8
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
1f:f9:9f:e3:d5:8b:b4:ee:7d:2f:99:00:6a:e8:38:d7:01:46:f8:0e
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=RU, ST=Moscow, L=Moscow, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com
Validity
Not Before: Nov 2 10:19:10 2024 GMT
Not After : Mar 17 10:19:10 2026 GMT
Subject: C=RU, ST=Moscow, L=Moscow, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:da:54:31:01:e1:bb:ae:e8:8d:2d:27:cd:1e:94:
4b:6f:d5:a2:be:64:4f:9e:fa:1a:48:b1:12:fb:7f:
18:6a:ae:40:3c:50:d2:03:e2:55:f3:57:39:0a:9f:
a5:33:61:71:e6:79:15:fb:09:42:15:50:2d:b2:97:
33:82:5d:42:01:4f:29:90:cb:87:bf:22:59:5d:60:
b7:32:f9:f0:4f:06:76:74:0d:c1:f2:fa:b9:f2:76:
19:5a:ec:b1:f1:47:56:ea:ac:53:02:bc:22:6b:94:
37:69:97:62:78:23:dd:d0:ad:40:c3:2f:84:9a:8e:
a5:05:b5:25:59:de:60:47:1f:bd:af:9c:5c:b6:e4:
df:bd:08:90:76:61:48:4d:fb:14:9e:b0:ee:0d:94:
a2:b0:f9:96:50:ec:51:71:bb:37:2f:10:bb:df:79:
7c:c2:c5:50:bb:c1:bf:73:c3:53:09:e9:46:4d:b1:
59:65:6d:44:eb:4a:86:ed:48:d1:1b:7c:fe:be:be:
4c:f4:62:2e:4a:66:22:ed:8d:b1:67:68:84:6b:47:
e3:b9:fd:67:e9:fc:c6:39:16:12:22:cb:17:21:48:
ab:77:66:c9:53:2f:fc:eb:31:69:66:7a:d1:e4:c9:
11:46:4a:3b:cf:df:66:8b:87:a8:fb:ff:99:38:65:
97:73
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
F6:26:A1:87:A8:00:CE:BE:92:66:BA:FD:A2:C8:05:45:C4:87:F8:28
X509v3 Authority Key Identifier:
F6:26:A1:87:A8:00:CE:BE:92:66:BA:FD:A2:C8:05:45:C4:87:F8:28
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
9c:a1:84:b6:dd:5c:d3:d4:46:e0:3b:1d:93:50:2c:83:07:ba:
c8:b7:9e:fc:fb:cb:26:81:0b:cc:af:d9:b9:37:98:e5:d3:f6:
07:b3:92:9b:b1:aa:94:16:70:9d:f2:73:04:2c:ac:be:47:3e:
a4:3d:66:00:54:13:00:ef:49:1c:ff:f9:b9:12:4e:f0:3c:50:
d6:e3:e2:7a:48:84:f9:fb:05:7e:4f:ef:db:f2:74:26:70:87:
a8:0f:5f:c2:19:eb:a1:e2:10:a6:1d:6b:f2:a1:29:8d:82:de:
8e:57:d3:51:04:52:c7:1d:c4:82:7f:f5:b1:1b:f3:c6:35:9f:
87:a3:dd:a4:9d:b0:09:2f:62:e1:08:ce:91:73:5b:e4:94:9b:
a9:c8:ae:ac:d9:f6:a7:73:3b:2f:52:04:fd:c6:05:18:a9:8e:
77:ba:c7:69:ed:3c:10:aa:19:5b:1d:ed:27:85:39:58:9c:d9:
7b:2a:69:1d:4e:f1:0e:78:65:bd:00:3b:52:6c:32:2b:f5:ba:
ea:4d:9c:aa:5f:0e:06:80:89:8c:ed:c8:6e:22:2f:83:02:ba:
64:9b:e1:74:71:b7:14:0d:09:12:e6:76:70:de:3e:7a:da:ad:
6f:94:52:7f:f7:3d:95:76:1c:0f:16:1f:e2:40:dd:e9:dd:f7:
5c:c3:cb:6d
53 /
tcp
1366610057 | 2025-01-01T06:15:09.408236
FASTPANEL2 DNS server
Resolver name: bestsweet.icu
-1921206201 | 2025-01-22T00:09:29.935147
HTTP/1.1 200 OK
Server: nginx/1.24.0
Date: Wed, 22 Jan 2025 00:09:29 GMT
Content-Type: text/html
Content-Length: 11694
Last-Modified: Thu, 31 Oct 2024 09:40:50 GMT
Connection: keep-alive
ETag: "672350a2-2dae"
Accept-Ranges: bytes
143 /
tcp
-1712467009 | 2025-01-17T22:50:23.899979
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot (Ubuntu) ready.
* CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN
A001 OK Pre-login capabilities listed, post-login capabilities have more.
* ID ("name" "Dovecot")
A002 OK ID completed.
A003 BAD Error in IMAP command received by server.
* BYE Logging out
A004 OK Logout completed.
-1921206201 | 2025-01-14T15:20:08.934752
HTTP/1.1 200 OK
Server: nginx/1.24.0
Date: Tue, 14 Jan 2025 15:20:08 GMT
Content-Type: text/html
Content-Length: 11694
Last-Modified: Thu, 31 Oct 2024 09:40:50 GMT
Connection: keep-alive
ETag: "672350a2-2dae"
Accept-Ranges: bytes
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
23:bf:50:b2:b0:5c:6a:e1:f7:d5:73:1e:1c:04:28:a9:43:be:07:fd
Signature Algorithm: sha256WithRSAEncryption
Issuer: O=FASTPANEL, CN=parking
Validity
Not Before: Nov 2 10:19:09 2024 GMT
Not After : Oct 31 10:19:09 2034 GMT
Subject: O=FASTPANEL, CN=parking
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:95:48:ef:44:00:0d:41:1f:7c:de:8c:e7:fd:2d:
b1:b6:f9:85:80:b9:36:d4:ed:2c:73:16:35:b1:e6:
68:aa:09:3c:64:24:7f:f8:6e:fa:27:b8:bb:49:7b:
d8:71:52:5f:a7:b3:60:46:55:fc:fe:ad:1d:0c:87:
6c:e5:8a:33:03:ca:6d:c9:eb:87:4e:87:f1:e3:fb:
dd:07:ae:0c:22:7c:62:ce:d7:9f:0b:35:b3:4f:36:
fa:0c:ae:f3:d2:04:69:4b:80:2f:f2:b9:cb:52:59:
d7:68:8a:72:d0:2e:dd:71:23:15:1a:ae:e4:6c:2f:
c2:88:d5:dc:a4:83:cf:78:10:db:1a:d4:92:c9:f7:
40:eb:66:7a:7a:39:31:b6:5e:56:3b:2c:d9:63:a8:
59:15:0e:54:76:07:a2:e3:b3:78:be:fc:a6:e5:e3:
40:7c:ae:ba:35:33:62:8c:0b:bb:a9:9b:43:e0:ef:
5e:76:82:79:21:a2:c8:a3:35:4f:5f:bd:44:c7:78:
fc:f4:85:76:53:6f:d5:e5:9e:a6:30:fb:7a:ef:55:
aa:e3:71:cc:82:2b:e2:d3:fb:fe:e6:a8:9b:d7:4f:
f0:11:09:69:8e:1e:fb:9e:89:6d:d7:be:62:c0:69:
ce:c4:1f:8e:86:1f:eb:ee:7e:5f:8b:ec:e0:56:a2:
90:23
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
B4:C5:C6:E0:16:3E:CE:C8:AF:96:F4:3F:7C:B2:FC:8B:E8:D1:E5:45
X509v3 Authority Key Identifier:
B4:C5:C6:E0:16:3E:CE:C8:AF:96:F4:3F:7C:B2:FC:8B:E8:D1:E5:45
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
36:b5:0e:9c:77:ea:3c:be:b3:e6:ab:a7:a3:4a:af:99:9c:96:
8b:e4:1d:ea:0b:29:fb:09:a0:74:d6:0a:0c:e7:fe:2f:65:52:
c0:45:4e:84:ae:cf:26:58:a9:8d:9f:38:bd:14:f8:77:e0:1b:
57:ec:17:32:85:ae:10:ec:e3:3c:7b:dc:a4:7f:16:2f:2b:dd:
92:23:3e:cf:32:ab:91:2e:6e:4a:c9:70:ee:c4:c0:43:38:04:
53:46:46:e7:28:9b:69:db:ef:d3:79:d9:bb:6f:43:3f:87:e8:
05:2f:f6:7b:e2:d7:ca:95:08:db:79:59:45:85:73:ef:c5:4a:
4e:e9:08:cf:d7:7b:34:6d:2f:78:94:e7:bb:22:d9:c7:7f:c1:
8a:f1:42:b0:1f:f0:9a:23:3f:b0:98:d7:ef:d4:c3:00:1c:9b:
b3:50:b1:5a:70:85:8a:e0:c0:c6:34:29:9c:e8:68:ba:a1:39:
5d:61:66:05:5e:0d:0c:75:f0:19:75:07:e7:fa:01:38:78:ca:
e4:42:8f:f6:45:fa:83:cd:a5:28:04:09:12:79:a1:a1:63:44:
4b:e1:44:42:75:02:e4:5a:f6:04:83:97:7d:01:4f:1b:ce:0b:
e8:c2:a0:d3:93:ac:36:9e:33:03:4e:31:e8:e2:67:0a:82:b9:
97:a6:a1:95
587 /
tcp
-2094790826 | 2025-01-11T02:50:04.982126
220 bestsweet.icu ESMTP Exim 4.93 Ubuntu Sat, 11 Jan 2025 05:49:40 +0300
250-bestsweet.icu Hello 224.44.151.98 [224.44.151.98]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH LOGIN PLAIN
250-CHUNKING
250-STARTTLS
250-SMTPUTF8
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
1f:f9:9f:e3:d5:8b:b4:ee:7d:2f:99:00:6a:e8:38:d7:01:46:f8:0e
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=RU, ST=Moscow, L=Moscow, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com
Validity
Not Before: Nov 2 10:19:10 2024 GMT
Not After : Mar 17 10:19:10 2026 GMT
Subject: C=RU, ST=Moscow, L=Moscow, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:da:54:31:01:e1:bb:ae:e8:8d:2d:27:cd:1e:94:
4b:6f:d5:a2:be:64:4f:9e:fa:1a:48:b1:12:fb:7f:
18:6a:ae:40:3c:50:d2:03:e2:55:f3:57:39:0a:9f:
a5:33:61:71:e6:79:15:fb:09:42:15:50:2d:b2:97:
33:82:5d:42:01:4f:29:90:cb:87:bf:22:59:5d:60:
b7:32:f9:f0:4f:06:76:74:0d:c1:f2:fa:b9:f2:76:
19:5a:ec:b1:f1:47:56:ea:ac:53:02:bc:22:6b:94:
37:69:97:62:78:23:dd:d0:ad:40:c3:2f:84:9a:8e:
a5:05:b5:25:59:de:60:47:1f:bd:af:9c:5c:b6:e4:
df:bd:08:90:76:61:48:4d:fb:14:9e:b0:ee:0d:94:
a2:b0:f9:96:50:ec:51:71:bb:37:2f:10:bb:df:79:
7c:c2:c5:50:bb:c1:bf:73:c3:53:09:e9:46:4d:b1:
59:65:6d:44:eb:4a:86:ed:48:d1:1b:7c:fe:be:be:
4c:f4:62:2e:4a:66:22:ed:8d:b1:67:68:84:6b:47:
e3:b9:fd:67:e9:fc:c6:39:16:12:22:cb:17:21:48:
ab:77:66:c9:53:2f:fc:eb:31:69:66:7a:d1:e4:c9:
11:46:4a:3b:cf:df:66:8b:87:a8:fb:ff:99:38:65:
97:73
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
F6:26:A1:87:A8:00:CE:BE:92:66:BA:FD:A2:C8:05:45:C4:87:F8:28
X509v3 Authority Key Identifier:
F6:26:A1:87:A8:00:CE:BE:92:66:BA:FD:A2:C8:05:45:C4:87:F8:28
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
9c:a1:84:b6:dd:5c:d3:d4:46:e0:3b:1d:93:50:2c:83:07:ba:
c8:b7:9e:fc:fb:cb:26:81:0b:cc:af:d9:b9:37:98:e5:d3:f6:
07:b3:92:9b:b1:aa:94:16:70:9d:f2:73:04:2c:ac:be:47:3e:
a4:3d:66:00:54:13:00:ef:49:1c:ff:f9:b9:12:4e:f0:3c:50:
d6:e3:e2:7a:48:84:f9:fb:05:7e:4f:ef:db:f2:74:26:70:87:
a8:0f:5f:c2:19:eb:a1:e2:10:a6:1d:6b:f2:a1:29:8d:82:de:
8e:57:d3:51:04:52:c7:1d:c4:82:7f:f5:b1:1b:f3:c6:35:9f:
87:a3:dd:a4:9d:b0:09:2f:62:e1:08:ce:91:73:5b:e4:94:9b:
a9:c8:ae:ac:d9:f6:a7:73:3b:2f:52:04:fd:c6:05:18:a9:8e:
77:ba:c7:69:ed:3c:10:aa:19:5b:1d:ed:27:85:39:58:9c:d9:
7b:2a:69:1d:4e:f1:0e:78:65:bd:00:3b:52:6c:32:2b:f5:ba:
ea:4d:9c:aa:5f:0e:06:80:89:8c:ed:c8:6e:22:2f:83:02:ba:
64:9b:e1:74:71:b7:14:0d:09:12:e6:76:70:de:3e:7a:da:ad:
6f:94:52:7f:f7:3d:95:76:1c:0f:16:1f:e2:40:dd:e9:dd:f7:
5c:c3:cb:6d
3306 /
tcp
1735715532 | 2025-01-05T22:52:52.010290
MySQL:
Error Message: Host '224.240.83.35' is not allowed to connect to this MySQL server
Error Code: 1130
-23674247 | 2025-01-14T15:03:35.454258
HTTP/1.1 302 Moved Temporarily
Server: nginx
Date: Tue, 14 Jan 2025 15:03:35 GMT
Content-Type: text/html
Content-Length: 138
Connection: close
Location: https://94.103.86.91:8888/