Hostnames |
arx90-90.araxinfo.com new.primasoft.md |
Domains | araxinfo.com primasoft.md |
Country | Moldova, Republic of |
City | Chisinau |
Organization | ARAX-IMPEX SRL |
ISP | Arax-Impex s.r.l. |
ASN | AS15836 |
Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.
CVE-2023-51766 | 5.3Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Exim supports <LF>.<CR><LF> but some other popular e-mail servers do not. |
CVE-2022-37452 | 9.8Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set. |
CVE-2022-37451 | 7.5Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc. |
CVE-2021-38371 | 7.5The STARTTLS feature in Exim through 4.94.2 allows response injection (buffering) during MTA SMTP sending. |
-1462049937 | 2024-04-12T06:17:16.07491621 / tcp
220 ProFTPD Server (Debian) [::ffff:192.168.88.170] 530 Некорректные данные аутентификации. 214-Следующие команды были распознаны (* => не реализовано): 214-CWD XCWD CDUP XCUP SMNT* QUIT PORT PASV 214-EPRT EPSV ALLO RNFR RNTO DELE MDTM RMD 214-XRMD MKD XMKD PWD XPWD SIZE SYST HELP 214-NOOP FEAT OPTS HOST CLNT AUTH* CCC* CONF* 214-ENC* MIC* PBSZ* PROT* TYPE STRU MODE RETR 214-STOR STOU APPE REST ABOR RANG USER PASS 214-ACCT* REIN* LIST NLST STAT SITE MLSD MLST 214 Прямой комментарий для root@0.0.0.0 211-Features: 211-CLNT 211-EPRT 211-EPSV 211-HOST 211-LANG ru-RU.UTF-8*;ru-RU 211-MDTM 211-MFF modify;UNIX.group;UNIX.mode; 211-MFMT 211-MLST modify*;perm*;size*;type*;unique*;UNIX.group*;UNIX.groupname*;UNIX.mode*;UNIX.owner*;UNIX.ownername*; 211-RANG STREAM 211-REST STREAM 211-SITE COPY 211-SITE MKDIR 211-SITE RMDIR 211-SITE SYMLINK 211-SITE UTIME 211-SIZE 211-TVFS 211-UTF8 211 Конец
-434872689 | 2024-04-09T23:00:01.67243722 / tcp
SSH-2.0-OpenSSH_8.4p1 Debian-5+deb11u3 Key type: ssh-rsa Key: AAAAB3NzaC1yc2EAAAADAQABAAABgQDlskksJF1Rsevybg+mNmjm+VtAOTOzQLPKnhMnwbH5td/w l+9lwoQhdJ3omtbjR0DrFyaku9O4nbP4BRiBM33a4okfpKbQXn5rx3ihLOgMRKpN5CTUD2hB2QAG 1ayou8q4aLptlB8yeTf267KNa1eUyL4CC2hoESwyhVIv+l/61oPqCAI0JJteq+yPScWIH44oh1Hm /KcR4i2v8t6Eg0u8vRiq3Nb40kxqtZezuyTYFxBiG4cnlKEfW0zWAHYq3p6MBc6OpWP8txnRyPSx fPdNVZbWzRHtwsK+j5tTPSrqp7xv/uXOd1ux6Ur6rZrWUxCOOxXGmLU7o73rX8aKM4yXaFpC/ouw Ot26s/IhSOaMLgk4ZadE6CJ9chKvbr1qQbkq5VhfIvXD73jwM3I9O2OjpPeyPujT8aBUW6k6E7DK T/38Z3Ebr6BmKlJSj8LVUR6k5XjjAOzT/NOmnVFaFPwNeIdJ7dh03S8ReWyxeqSVdSokzqB8I62G 3n4Ib9Rh5xc= Fingerprint: 10:9a:9c:02:04:be:f3:0f:ab:3a:fe:20:2a:4b:0c:7f Kex Algorithms: curve25519-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521 diffie-hellman-group-exchange-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group14-sha256 kex-strict-s-v00@openssh.com Server Host Key Algorithms: rsa-sha2-512 rsa-sha2-256 ssh-rsa ecdsa-sha2-nistp256 ssh-ed25519 Encryption Algorithms: chacha20-poly1305@openssh.com aes128-ctr aes192-ctr aes256-ctr aes128-gcm@openssh.com aes256-gcm@openssh.com MAC Algorithms: umac-64-etm@openssh.com umac-128-etm@openssh.com hmac-sha2-256-etm@openssh.com hmac-sha2-512-etm@openssh.com hmac-sha1-etm@openssh.com umac-64@openssh.com umac-128@openssh.com hmac-sha2-256 hmac-sha2-512 hmac-sha1 Compression Algorithms: none zlib@openssh.com
-796688742 | 2024-04-15T15:41:22.88859425 / tcp
220 primasoft.md ESMTP Exim 4.94.2 Mon, 15 Apr 2024 18:41:03 +0300 250-primasoft.md Hello p9omz9a82tms4.com [224.126.104.42] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPE_CONNECT 250-AUTH LOGIN PLAIN 250-CHUNKING 250-STARTTLS 250-SMTPUTF8 250 HELP
Certificate: Data: Version: 3 (0x2) Serial Number: 39:d7:51:8c:18:36:d4:a7:01:c8:f9:d3:5d:e4:06:ca:c1:81:a3:a0 Signature Algorithm: sha256WithRSAEncryption Issuer: C=EN, ST=Tallin, L=Tallin, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com Validity Not Before: May 12 17:03:19 2022 GMT Not After : May 12 17:03:19 2023 GMT Subject: C=EN, ST=Tallin, L=Tallin, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a8:6f:f8:50:dd:e6:4f:b0:90:ab:20:e7:0f:8e: 12:63:90:8a:a1:e5:2a:95:e0:ac:8e:8d:c4:b8:21: 02:0a:45:75:67:89:fa:60:8e:9d:10:db:01:08:80: eb:b8:ff:d2:e0:2a:21:d4:a2:96:34:d0:64:81:ee: 98:f8:2b:39:33:3b:58:c5:44:7c:c8:5e:14:0c:0b: a2:78:ec:46:04:f5:db:86:d8:1a:df:74:de:a1:c5: c4:cf:1d:38:6d:f3:68:dd:c5:b8:07:55:84:19:52: a3:61:ae:08:81:ca:79:fa:39:f9:2c:15:2c:1c:d7: af:e7:a4:c3:3d:50:ef:45:26:19:da:92:b7:75:52: 1f:f9:cf:51:d6:90:d3:8a:1e:28:2a:50:e9:80:cf: de:2e:4a:be:b4:17:5b:7b:78:35:2c:06:11:b5:47: 9d:d9:52:51:f5:f7:d9:62:32:53:f2:9b:a6:22:06: dc:5e:87:17:6c:08:be:15:97:5f:31:d8:d3:57:5d: 65:bb:47:b5:71:39:9c:73:77:86:fa:95:9e:2c:d8: 11:00:7f:d3:0a:78:48:6f:b6:13:1e:af:ab:b8:21: 2e:45:91:e0:05:7b:b3:61:eb:71:8b:03:cd:08:9a: 2f:7a:47:6e:96:29:40:40:67:53:17:a0:fe:ac:83: c3:cd Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: 44:37:4F:4B:A6:3A:C2:D8:F6:92:C8:D8:73:98:68:34:46:54:F7:7F X509v3 Authority Key Identifier: 44:37:4F:4B:A6:3A:C2:D8:F6:92:C8:D8:73:98:68:34:46:54:F7:7F X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha256WithRSAEncryption Signature Value: 90:0d:28:5a:9e:eb:8f:5c:c9:9f:de:ae:f7:27:e5:53:2e:d8: 91:0f:2d:1e:38:b9:ef:16:c5:5b:54:9d:b2:bc:d0:54:ab:15: 05:ba:26:b3:04:8e:68:9d:26:5a:98:bd:39:72:52:3a:ae:8f: f0:05:e7:c2:de:64:c8:5b:37:38:2c:a4:1e:7b:f1:7d:62:59: c7:ef:89:c5:5a:8f:4e:75:41:08:1f:b1:1e:47:32:09:1d:49: 9b:46:65:9c:13:e2:ed:c6:4b:9c:61:04:41:8a:44:3d:e7:0b: 5c:23:70:e8:63:ca:fb:eb:12:ec:f3:57:c8:b6:0e:21:85:d1: 9c:c5:ed:1d:41:1c:23:3e:09:de:d5:d0:02:ff:38:fd:5a:19: 6a:91:34:60:45:7d:cf:6e:b0:fd:ac:05:9b:cb:72:6c:05:71: 0c:54:3c:9c:e5:e0:f5:50:e9:7d:27:97:be:a4:59:eb:3c:3d: 30:ae:e8:c6:00:a2:f5:43:62:38:39:1b:5b:e6:02:72:c9:88: f3:54:e7:2a:0e:4b:49:da:ab:c5:83:a1:54:5a:b9:b3:df:7c: d7:54:04:5b:51:da:55:a4:e9:e0:55:05:c0:2c:3d:cd:89:82: e9:fd:4f:82:a4:87:ae:d0:03:87:0f:bc:53:1c:10:94:96:b1: 04:7f:61:fd
-2057647075 | 2024-04-04T15:06:52.85078053 / tcp
FASTPANEL2 DNS server Resolver name: primasoft.md
-2057647075 | 2024-04-14T11:40:36.94512353 / udp
FASTPANEL2 DNS server Resolver name: primasoft.md
234041667 | 2024-04-17T07:29:51.82434180 / tcp
HTTP/1.1 200 OK Server: nginx/1.24.0 Date: Wed, 17 Apr 2024 07:29:51 GMT Content-Type: text/html Content-Length: 15793 Last-Modified: Thu, 12 May 2022 08:31:59 GMT Connection: keep-alive ETag: "627cc5ff-3db1" Accept-Ranges: bytes
1475482970 | 2024-04-16T10:04:35.871232110 / tcp
+OK Dovecot (Debian) ready. +OK CAPA TOP UIDL RESP-CODES PIPELINING AUTH-RESP-CODE STLS USER SASL PLAIN LOGIN .
Certificate: Data: Version: 3 (0x2) Serial Number: 58:4a:f0:0e:37:f3:71:51:25:de:51:a8:40:54:6a:b6:d2:78:3c:c4 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=new.primasoft.md Validity Not Before: May 12 17:01:35 2022 GMT Not After : May 9 17:01:35 2032 GMT Subject: CN=new.primasoft.md Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d2:37:7f:44:96:85:ca:69:d3:24:e1:a3:d1:ec: 19:23:08:dd:89:d2:5d:42:ff:1a:23:d6:de:f5:33: 09:72:49:6e:9d:a4:c0:61:55:8d:9d:e9:ad:a7:99: c4:95:a7:60:b9:ab:b2:bf:cc:1f:e3:47:9b:a5:70: 72:d7:56:2f:c0:1e:c8:60:c2:84:47:4d:cb:d8:60: 7a:b4:1b:4a:08:f3:7d:18:66:60:a8:69:90:bf:1d: 6b:e7:03:e0:bf:7e:7c:43:44:c9:38:8c:17:10:db: 58:b5:19:19:10:14:5d:d3:6d:9b:f3:7c:89:e9:3b: b0:6a:1c:a7:a7:2e:12:d6:4a:b7:1c:60:5b:fc:bb: ef:34:60:0b:5b:69:ad:ce:02:57:c1:28:73:38:e2: ec:4f:cf:27:3b:64:57:fa:d0:26:e2:36:29:4c:59: e4:cf:c4:27:7e:7b:57:65:78:4b:8e:4a:8d:55:2e: ed:24:96:51:f0:da:25:ed:50:31:01:6c:9d:d7:06: cd:ee:ec:fc:2b:83:6b:85:7a:a2:21:56:43:c0:f3: e7:f0:fb:23:79:70:3b:49:a9:9d:00:1f:f3:3d:3c: 83:29:d0:5f:06:7d:8c:80:24:7e:fe:a6:60:99:42: 4a:b9:37:ed:32:99:78:71:5e:36:ae:8f:28:7c:59: 97:67 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: CA:FALSE X509v3 Subject Alternative Name: DNS:new.primasoft.md Signature Algorithm: sha256WithRSAEncryption Signature Value: 19:fb:93:9a:d3:aa:73:91:69:52:7d:20:e8:18:d9:5f:18:9e: 4e:3d:0d:52:38:52:68:1e:87:56:97:54:ac:f4:a0:c0:ab:e6: 30:68:2c:02:57:87:18:8d:56:4b:ac:30:a8:5a:00:d0:cb:39: b0:cc:d5:f9:1b:eb:00:27:6c:1b:12:aa:be:15:11:6d:24:02: 85:c1:dc:2b:8c:60:09:16:1a:68:f0:61:6d:93:45:3a:6a:e6: 6c:ec:c1:bd:7c:34:e9:57:db:42:0e:0a:f0:ad:b3:d3:2d:06: 2c:f0:de:42:48:62:c6:04:d8:22:88:66:fd:e1:af:c7:fe:cc: b8:c4:2d:44:7a:4c:0c:fb:19:c4:e1:76:59:7f:76:96:93:02: 83:5f:d0:f7:d7:23:3c:d9:14:a5:cf:59:d6:de:29:e8:52:42: 78:ea:f1:a5:2f:25:a9:62:16:28:e3:3d:ec:fd:11:06:2e:a8: 2e:99:a9:af:b6:c0:f0:e7:56:ab:4c:41:24:3e:9a:6d:33:fc: 67:8c:da:a5:e9:de:c3:88:57:fc:e8:bd:1e:15:ec:85:f1:50: 0b:72:cd:a9:0e:30:fa:ee:fc:d0:b1:b6:a3:38:6f:d1:51:ce: 12:3d:3d:8b:0b:b6:ce:09:c5:2f:35:27:e5:52:25:63:e1:bc: 37:18:ad:b7
1133575510 | 2024-04-01T13:59:09.805220143 / tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot (Debian) ready. * CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN A001 OK Pre-login capabilities listed, post-login capabilities have more. * ID ("name" "Dovecot") A002 OK ID completed. A003 BAD Error in IMAP command received by server. * BYE Logging out A004 OK Logout completed.
Certificate: Data: Version: 3 (0x2) Serial Number: 58:4a:f0:0e:37:f3:71:51:25:de:51:a8:40:54:6a:b6:d2:78:3c:c4 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=new.primasoft.md Validity Not Before: May 12 17:01:35 2022 GMT Not After : May 9 17:01:35 2032 GMT Subject: CN=new.primasoft.md Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d2:37:7f:44:96:85:ca:69:d3:24:e1:a3:d1:ec: 19:23:08:dd:89:d2:5d:42:ff:1a:23:d6:de:f5:33: 09:72:49:6e:9d:a4:c0:61:55:8d:9d:e9:ad:a7:99: c4:95:a7:60:b9:ab:b2:bf:cc:1f:e3:47:9b:a5:70: 72:d7:56:2f:c0:1e:c8:60:c2:84:47:4d:cb:d8:60: 7a:b4:1b:4a:08:f3:7d:18:66:60:a8:69:90:bf:1d: 6b:e7:03:e0:bf:7e:7c:43:44:c9:38:8c:17:10:db: 58:b5:19:19:10:14:5d:d3:6d:9b:f3:7c:89:e9:3b: b0:6a:1c:a7:a7:2e:12:d6:4a:b7:1c:60:5b:fc:bb: ef:34:60:0b:5b:69:ad:ce:02:57:c1:28:73:38:e2: ec:4f:cf:27:3b:64:57:fa:d0:26:e2:36:29:4c:59: e4:cf:c4:27:7e:7b:57:65:78:4b:8e:4a:8d:55:2e: ed:24:96:51:f0:da:25:ed:50:31:01:6c:9d:d7:06: cd:ee:ec:fc:2b:83:6b:85:7a:a2:21:56:43:c0:f3: e7:f0:fb:23:79:70:3b:49:a9:9d:00:1f:f3:3d:3c: 83:29:d0:5f:06:7d:8c:80:24:7e:fe:a6:60:99:42: 4a:b9:37:ed:32:99:78:71:5e:36:ae:8f:28:7c:59: 97:67 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: CA:FALSE X509v3 Subject Alternative Name: DNS:new.primasoft.md Signature Algorithm: sha256WithRSAEncryption Signature Value: 19:fb:93:9a:d3:aa:73:91:69:52:7d:20:e8:18:d9:5f:18:9e: 4e:3d:0d:52:38:52:68:1e:87:56:97:54:ac:f4:a0:c0:ab:e6: 30:68:2c:02:57:87:18:8d:56:4b:ac:30:a8:5a:00:d0:cb:39: b0:cc:d5:f9:1b:eb:00:27:6c:1b:12:aa:be:15:11:6d:24:02: 85:c1:dc:2b:8c:60:09:16:1a:68:f0:61:6d:93:45:3a:6a:e6: 6c:ec:c1:bd:7c:34:e9:57:db:42:0e:0a:f0:ad:b3:d3:2d:06: 2c:f0:de:42:48:62:c6:04:d8:22:88:66:fd:e1:af:c7:fe:cc: b8:c4:2d:44:7a:4c:0c:fb:19:c4:e1:76:59:7f:76:96:93:02: 83:5f:d0:f7:d7:23:3c:d9:14:a5:cf:59:d6:de:29:e8:52:42: 78:ea:f1:a5:2f:25:a9:62:16:28:e3:3d:ec:fd:11:06:2e:a8: 2e:99:a9:af:b6:c0:f0:e7:56:ab:4c:41:24:3e:9a:6d:33:fc: 67:8c:da:a5:e9:de:c3:88:57:fc:e8:bd:1e:15:ec:85:f1:50: 0b:72:cd:a9:0e:30:fa:ee:fc:d0:b1:b6:a3:38:6f:d1:51:ce: 12:3d:3d:8b:0b:b6:ce:09:c5:2f:35:27:e5:52:25:63:e1:bc: 37:18:ad:b7
234041667 | 2024-04-16T23:56:41.187063443 / tcp
HTTP/1.1 200 OK Server: nginx/1.24.0 Date: Tue, 16 Apr 2024 23:56:40 GMT Content-Type: text/html Content-Length: 15793 Last-Modified: Thu, 12 May 2022 08:31:59 GMT Connection: keep-alive ETag: "627cc5ff-3db1" Accept-Ranges: bytes
Certificate: Data: Version: 3 (0x2) Serial Number: 2b:ca:34:85:d3:20:e2:11:75:5d:69:36:52:2e:7b:08:a1:02:7c:6d Signature Algorithm: sha256WithRSAEncryption Issuer: O=FASTPANEL, CN=parking Validity Not Before: May 12 17:02:10 2022 GMT Not After : May 12 17:02:10 2023 GMT Subject: O=FASTPANEL, CN=parking Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c7:76:59:c3:8e:8e:17:5e:27:07:29:a9:66:64: cb:c1:12:d8:19:36:4c:ab:40:5c:d4:9b:43:c9:c9: 8b:05:96:21:57:18:69:1e:9d:8d:ac:cf:2d:84:eb: ef:81:35:99:95:91:17:dd:f9:87:3e:48:f7:9c:db: 84:72:6f:dc:c2:66:e7:cd:ff:0a:5a:55:c4:cc:7f: c7:1f:c0:d3:82:ff:62:1b:96:f6:d7:87:f6:32:4c: c6:c2:a1:aa:d2:73:f8:32:9b:14:5e:3c:9f:32:ed: a4:3a:55:76:84:28:fa:d6:e9:7a:56:2a:b2:e0:bc: c3:b5:e8:ec:25:53:12:16:30:8d:32:0c:67:f4:55: 67:5f:20:f5:68:46:eb:29:60:04:55:84:cf:fb:d6: 08:22:19:76:d6:ef:f3:f6:ea:31:50:05:5d:18:c2: f7:bb:00:5a:3e:84:ae:15:69:44:20:77:e8:82:b1: f5:41:44:16:68:d4:46:db:a6:5d:cd:68:c6:f4:fa: b2:02:83:d2:78:c5:4b:ca:4c:f3:97:d2:ca:0f:7e: 13:e8:de:14:a7:1c:d3:ea:72:69:90:e1:f6:6d:22: 34:22:c2:67:a0:f3:92:bc:41:9d:2c:7d:36:98:79: 1a:cc:c9:23:7b:52:2a:da:94:04:54:a7:2a:82:db: de:5d Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: E8:DC:4C:C2:94:AD:68:CC:49:FE:41:29:B1:8E:FF:98:C2:56:57:1E X509v3 Authority Key Identifier: E8:DC:4C:C2:94:AD:68:CC:49:FE:41:29:B1:8E:FF:98:C2:56:57:1E X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha256WithRSAEncryption Signature Value: 39:ae:96:2e:8f:b8:93:c9:b6:18:26:4b:5e:b6:b8:f5:65:8e: f5:1d:3b:c7:02:cd:83:fc:68:83:c4:47:a5:6b:b0:14:e5:af: e6:51:4e:dc:f2:92:44:7b:3d:39:61:60:c9:8f:89:b7:6f:4f: da:d0:c8:c4:49:26:02:3e:e3:3d:1a:72:98:e7:8d:8a:0d:e2: 46:38:71:bb:30:f9:13:bf:d6:cb:05:78:40:c3:a2:8d:86:0b: 6f:84:84:06:d1:87:c2:cc:58:a6:4c:01:73:9b:e8:4e:ae:97: 88:ee:cd:5e:54:57:f0:e0:49:b2:fc:45:70:89:8d:73:de:32: 40:e3:c7:7e:92:33:51:c1:54:65:8e:4c:29:e0:dc:fb:fb:41: 59:e9:84:a9:7d:9e:a4:9f:15:c4:87:4c:c0:4f:71:36:04:84: 4d:f4:4b:dd:81:41:ee:f9:9b:2d:bf:a9:5a:68:49:11:ae:c6: c3:86:44:1d:20:aa:1c:01:51:04:70:16:08:85:d2:21:15:fb: 34:c9:78:9b:da:20:83:c0:e2:2b:53:ea:cd:fc:8c:05:20:4e: 2e:65:b5:4d:e7:30:56:2c:35:5b:9e:fe:db:0b:ba:af:6e:79: c9:90:8e:3a:05:0c:b0:bd:d6:6a:9d:55:67:66:57:6e:b7:d1: d1:37:1a:05
1896128722 | 2024-04-13T05:39:26.986526587 / tcp
220 primasoft.md ESMTP Exim 4.94.2 Sat, 13 Apr 2024 08:39:07 +0300 250-primasoft.md Hello 224.31.36.168 [224.31.36.168] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPE_CONNECT 250-AUTH LOGIN PLAIN 250-CHUNKING 250-STARTTLS 250-SMTPUTF8 250 HELP
Certificate: Data: Version: 3 (0x2) Serial Number: 39:d7:51:8c:18:36:d4:a7:01:c8:f9:d3:5d:e4:06:ca:c1:81:a3:a0 Signature Algorithm: sha256WithRSAEncryption Issuer: C=EN, ST=Tallin, L=Tallin, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com Validity Not Before: May 12 17:03:19 2022 GMT Not After : May 12 17:03:19 2023 GMT Subject: C=EN, ST=Tallin, L=Tallin, O=Companyname, OU=User, CN=etc/emailAddress=support@site.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a8:6f:f8:50:dd:e6:4f:b0:90:ab:20:e7:0f:8e: 12:63:90:8a:a1:e5:2a:95:e0:ac:8e:8d:c4:b8:21: 02:0a:45:75:67:89:fa:60:8e:9d:10:db:01:08:80: eb:b8:ff:d2:e0:2a:21:d4:a2:96:34:d0:64:81:ee: 98:f8:2b:39:33:3b:58:c5:44:7c:c8:5e:14:0c:0b: a2:78:ec:46:04:f5:db:86:d8:1a:df:74:de:a1:c5: c4:cf:1d:38:6d:f3:68:dd:c5:b8:07:55:84:19:52: a3:61:ae:08:81:ca:79:fa:39:f9:2c:15:2c:1c:d7: af:e7:a4:c3:3d:50:ef:45:26:19:da:92:b7:75:52: 1f:f9:cf:51:d6:90:d3:8a:1e:28:2a:50:e9:80:cf: de:2e:4a:be:b4:17:5b:7b:78:35:2c:06:11:b5:47: 9d:d9:52:51:f5:f7:d9:62:32:53:f2:9b:a6:22:06: dc:5e:87:17:6c:08:be:15:97:5f:31:d8:d3:57:5d: 65:bb:47:b5:71:39:9c:73:77:86:fa:95:9e:2c:d8: 11:00:7f:d3:0a:78:48:6f:b6:13:1e:af:ab:b8:21: 2e:45:91:e0:05:7b:b3:61:eb:71:8b:03:cd:08:9a: 2f:7a:47:6e:96:29:40:40:67:53:17:a0:fe:ac:83: c3:cd Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Subject Key Identifier: 44:37:4F:4B:A6:3A:C2:D8:F6:92:C8:D8:73:98:68:34:46:54:F7:7F X509v3 Authority Key Identifier: 44:37:4F:4B:A6:3A:C2:D8:F6:92:C8:D8:73:98:68:34:46:54:F7:7F X509v3 Basic Constraints: critical CA:TRUE Signature Algorithm: sha256WithRSAEncryption Signature Value: 90:0d:28:5a:9e:eb:8f:5c:c9:9f:de:ae:f7:27:e5:53:2e:d8: 91:0f:2d:1e:38:b9:ef:16:c5:5b:54:9d:b2:bc:d0:54:ab:15: 05:ba:26:b3:04:8e:68:9d:26:5a:98:bd:39:72:52:3a:ae:8f: f0:05:e7:c2:de:64:c8:5b:37:38:2c:a4:1e:7b:f1:7d:62:59: c7:ef:89:c5:5a:8f:4e:75:41:08:1f:b1:1e:47:32:09:1d:49: 9b:46:65:9c:13:e2:ed:c6:4b:9c:61:04:41:8a:44:3d:e7:0b: 5c:23:70:e8:63:ca:fb:eb:12:ec:f3:57:c8:b6:0e:21:85:d1: 9c:c5:ed:1d:41:1c:23:3e:09:de:d5:d0:02:ff:38:fd:5a:19: 6a:91:34:60:45:7d:cf:6e:b0:fd:ac:05:9b:cb:72:6c:05:71: 0c:54:3c:9c:e5:e0:f5:50:e9:7d:27:97:be:a4:59:eb:3c:3d: 30:ae:e8:c6:00:a2:f5:43:62:38:39:1b:5b:e6:02:72:c9:88: f3:54:e7:2a:0e:4b:49:da:ab:c5:83:a1:54:5a:b9:b3:df:7c: d7:54:04:5b:51:da:55:a4:e9:e0:55:05:c0:2c:3d:cd:89:82: e9:fd:4f:82:a4:87:ae:d0:03:87:0f:bc:53:1c:10:94:96:b1: 04:7f:61:fd
1664207957 | 2024-04-19T00:17:01.890548993 / tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot (Debian) ready. * CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN A001 OK Pre-login capabilities listed, post-login capabilities have more. * ID ("name" "Dovecot") A002 OK ID completed. A003 BAD Error in IMAP command received by server. * BYE Logging out A004 OK Logout completed.
Certificate: Data: Version: 3 (0x2) Serial Number: 58:4a:f0:0e:37:f3:71:51:25:de:51:a8:40:54:6a:b6:d2:78:3c:c4 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=new.primasoft.md Validity Not Before: May 12 17:01:35 2022 GMT Not After : May 9 17:01:35 2032 GMT Subject: CN=new.primasoft.md Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d2:37:7f:44:96:85:ca:69:d3:24:e1:a3:d1:ec: 19:23:08:dd:89:d2:5d:42:ff:1a:23:d6:de:f5:33: 09:72:49:6e:9d:a4:c0:61:55:8d:9d:e9:ad:a7:99: c4:95:a7:60:b9:ab:b2:bf:cc:1f:e3:47:9b:a5:70: 72:d7:56:2f:c0:1e:c8:60:c2:84:47:4d:cb:d8:60: 7a:b4:1b:4a:08:f3:7d:18:66:60:a8:69:90:bf:1d: 6b:e7:03:e0:bf:7e:7c:43:44:c9:38:8c:17:10:db: 58:b5:19:19:10:14:5d:d3:6d:9b:f3:7c:89:e9:3b: b0:6a:1c:a7:a7:2e:12:d6:4a:b7:1c:60:5b:fc:bb: ef:34:60:0b:5b:69:ad:ce:02:57:c1:28:73:38:e2: ec:4f:cf:27:3b:64:57:fa:d0:26:e2:36:29:4c:59: e4:cf:c4:27:7e:7b:57:65:78:4b:8e:4a:8d:55:2e: ed:24:96:51:f0:da:25:ed:50:31:01:6c:9d:d7:06: cd:ee:ec:fc:2b:83:6b:85:7a:a2:21:56:43:c0:f3: e7:f0:fb:23:79:70:3b:49:a9:9d:00:1f:f3:3d:3c: 83:29:d0:5f:06:7d:8c:80:24:7e:fe:a6:60:99:42: 4a:b9:37:ed:32:99:78:71:5e:36:ae:8f:28:7c:59: 97:67 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: CA:FALSE X509v3 Subject Alternative Name: DNS:new.primasoft.md Signature Algorithm: sha256WithRSAEncryption Signature Value: 19:fb:93:9a:d3:aa:73:91:69:52:7d:20:e8:18:d9:5f:18:9e: 4e:3d:0d:52:38:52:68:1e:87:56:97:54:ac:f4:a0:c0:ab:e6: 30:68:2c:02:57:87:18:8d:56:4b:ac:30:a8:5a:00:d0:cb:39: b0:cc:d5:f9:1b:eb:00:27:6c:1b:12:aa:be:15:11:6d:24:02: 85:c1:dc:2b:8c:60:09:16:1a:68:f0:61:6d:93:45:3a:6a:e6: 6c:ec:c1:bd:7c:34:e9:57:db:42:0e:0a:f0:ad:b3:d3:2d:06: 2c:f0:de:42:48:62:c6:04:d8:22:88:66:fd:e1:af:c7:fe:cc: b8:c4:2d:44:7a:4c:0c:fb:19:c4:e1:76:59:7f:76:96:93:02: 83:5f:d0:f7:d7:23:3c:d9:14:a5:cf:59:d6:de:29:e8:52:42: 78:ea:f1:a5:2f:25:a9:62:16:28:e3:3d:ec:fd:11:06:2e:a8: 2e:99:a9:af:b6:c0:f0:e7:56:ab:4c:41:24:3e:9a:6d:33:fc: 67:8c:da:a5:e9:de:c3:88:57:fc:e8:bd:1e:15:ec:85:f1:50: 0b:72:cd:a9:0e:30:fa:ee:fc:d0:b1:b6:a3:38:6f:d1:51:ce: 12:3d:3d:8b:0b:b6:ce:09:c5:2f:35:27:e5:52:25:63:e1:bc: 37:18:ad:b7
127848054 | 2024-04-18T13:23:04.483210995 / tcp
+OK Dovecot (Debian) ready. +OK CAPA TOP UIDL RESP-CODES PIPELINING AUTH-RESP-CODE USER SASL PLAIN LOGIN .
Certificate: Data: Version: 3 (0x2) Serial Number: 58:4a:f0:0e:37:f3:71:51:25:de:51:a8:40:54:6a:b6:d2:78:3c:c4 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=new.primasoft.md Validity Not Before: May 12 17:01:35 2022 GMT Not After : May 9 17:01:35 2032 GMT Subject: CN=new.primasoft.md Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:d2:37:7f:44:96:85:ca:69:d3:24:e1:a3:d1:ec: 19:23:08:dd:89:d2:5d:42:ff:1a:23:d6:de:f5:33: 09:72:49:6e:9d:a4:c0:61:55:8d:9d:e9:ad:a7:99: c4:95:a7:60:b9:ab:b2:bf:cc:1f:e3:47:9b:a5:70: 72:d7:56:2f:c0:1e:c8:60:c2:84:47:4d:cb:d8:60: 7a:b4:1b:4a:08:f3:7d:18:66:60:a8:69:90:bf:1d: 6b:e7:03:e0:bf:7e:7c:43:44:c9:38:8c:17:10:db: 58:b5:19:19:10:14:5d:d3:6d:9b:f3:7c:89:e9:3b: b0:6a:1c:a7:a7:2e:12:d6:4a:b7:1c:60:5b:fc:bb: ef:34:60:0b:5b:69:ad:ce:02:57:c1:28:73:38:e2: ec:4f:cf:27:3b:64:57:fa:d0:26:e2:36:29:4c:59: e4:cf:c4:27:7e:7b:57:65:78:4b:8e:4a:8d:55:2e: ed:24:96:51:f0:da:25:ed:50:31:01:6c:9d:d7:06: cd:ee:ec:fc:2b:83:6b:85:7a:a2:21:56:43:c0:f3: e7:f0:fb:23:79:70:3b:49:a9:9d:00:1f:f3:3d:3c: 83:29:d0:5f:06:7d:8c:80:24:7e:fe:a6:60:99:42: 4a:b9:37:ed:32:99:78:71:5e:36:ae:8f:28:7c:59: 97:67 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: CA:FALSE X509v3 Subject Alternative Name: DNS:new.primasoft.md Signature Algorithm: sha256WithRSAEncryption Signature Value: 19:fb:93:9a:d3:aa:73:91:69:52:7d:20:e8:18:d9:5f:18:9e: 4e:3d:0d:52:38:52:68:1e:87:56:97:54:ac:f4:a0:c0:ab:e6: 30:68:2c:02:57:87:18:8d:56:4b:ac:30:a8:5a:00:d0:cb:39: b0:cc:d5:f9:1b:eb:00:27:6c:1b:12:aa:be:15:11:6d:24:02: 85:c1:dc:2b:8c:60:09:16:1a:68:f0:61:6d:93:45:3a:6a:e6: 6c:ec:c1:bd:7c:34:e9:57:db:42:0e:0a:f0:ad:b3:d3:2d:06: 2c:f0:de:42:48:62:c6:04:d8:22:88:66:fd:e1:af:c7:fe:cc: b8:c4:2d:44:7a:4c:0c:fb:19:c4:e1:76:59:7f:76:96:93:02: 83:5f:d0:f7:d7:23:3c:d9:14:a5:cf:59:d6:de:29:e8:52:42: 78:ea:f1:a5:2f:25:a9:62:16:28:e3:3d:ec:fd:11:06:2e:a8: 2e:99:a9:af:b6:c0:f0:e7:56:ab:4c:41:24:3e:9a:6d:33:fc: 67:8c:da:a5:e9:de:c3:88:57:fc:e8:bd:1e:15:ec:85:f1:50: 0b:72:cd:a9:0e:30:fa:ee:fc:d0:b1:b6:a3:38:6f:d1:51:ce: 12:3d:3d:8b:0b:b6:ce:09:c5:2f:35:27:e5:52:25:63:e1:bc: 37:18:ad:b7
631492679 | 2024-04-17T16:04:36.9180202222 / tcp
SSH-2.0-mod_sftp Key type: ssh-rsa Key: AAAAB3NzaC1yc2EAAAADAQABAAABgQD5dp7XzkL5xGIfUc1ew6DXAm1YDNE5Fu4x4iZQXvGHMzSC a7T0wV8Yimv9hqGmnpso9Po259AdYM+eQ5yCkPvYpSXPPQYSsTXJOsUkvYRHgPLAD7WJqaJhrBtj yeQPRtnZD2fF+Y1N45a6vUIz7PBrfgKGUPPQztGGyZDCyCpMTQ/KRzPxwVZovedY3srGr+zpYYOx qd7Q4Bw8mK0nsc/bfbjgcHN5QzGljP9SNvMike2voruPhjK9Q9zYSGA7Gkr98yg0+4N/5Yi2Tbtx q3zUbpkRHJwjGZtV14fvNiWOB3xTPXEHI9b6jshZXK+mCh1b2QeAPiRmvsRM3X3GcsD6LrG57fdR e/JyxgpQaqR9f+vwMFefZOdAiqnSUTn98Vx2ViSLZAR3vjpf+g0xP9H7vjkJjVPUGwZ6zS/q+JZ8 yHRcKcAj/3w8yrSvV+Y5V0I2K/tUWSn81Pbt3/HgE7rlYbsYRr9AvVSlztYxs6yQKWcgA07MNm44 Go7Xl2ZZl3U= Fingerprint: 18:62:7b:26:59:8b:63:12:95:77:8f:03:5d:4d:56:66 Kex Algorithms: curve25519-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp521 ecdh-sha2-nistp384 ecdh-sha2-nistp256 diffie-hellman-group18-sha512 diffie-hellman-group16-sha512 diffie-hellman-group14-sha256 diffie-hellman-group-exchange-sha256 diffie-hellman-group-exchange-sha1 diffie-hellman-group14-sha1 rsa1024-sha1 ext-info-s Server Host Key Algorithms: rsa-sha2-512 rsa-sha2-256 ssh-rsa ssh-dss Encryption Algorithms: aes256-ctr aes192-ctr aes128-ctr aes256-cbc aes192-cbc aes128-cbc cast128-cbc 3des-ctr 3des-cbc MAC Algorithms: hmac-sha2-256 hmac-sha2-512 hmac-sha1 hmac-sha1-96 umac-64@openssh.com umac-128@openssh.com Compression Algorithms: zlib@openssh.com zlib none
1086874567 | 2024-03-29T15:53:00.3775438000 / tcp
HTTP/1.1 401 Unauthorized Content-Type: text/plain; charset=utf-8 Www-Authenticate: Basic realm="Restricted" X-Content-Type-Options: nosniff Date: Fri, 29 Mar 2024 15:53:00 GMT Content-Length: 13
-23674247 | 2024-04-16T23:56:36.2601818888 / tcp
HTTP/1.1 302 Moved Temporarily Server: nginx Date: Tue, 16 Apr 2024 23:56:36 GMT Content-Type: text/html Content-Length: 138 Connection: close Location: https://87.255.90.90:8888/