-1307219467 | 2024-05-03T23:11:44.070099
25 /
tcp
220 posta Kerio Connect 10.0.4 ESMTP ready
250-posta
250-AUTH CRAM-MD5 DIGEST-MD5
250-STARTTLS
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-PIPELINING
250-ETRN
250-DSN
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
-1661897234 | 2024-05-07T08:51:32.066180
80 /
tcp
HTTP/1.1 301
Connection: close
Location: https://31.13.210.42/
-1994868048 | 2024-05-07T10:15:38.833684
110 /
tcp
+OK Kerio Connect 10.0.4 POP3 server ready <3716347.1715076909@posta>
+OK Capability list follows
STLS
SASL CRAM-MD5 DIGEST-MD5
TOP
USER
UIDL
.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
-1252215437 | 2024-05-07T01:39:40.797225
119 /
tcp
200 Kerio Connect 10.0.4 NNTP server ready
1613337734 | 2024-05-05T18:03:19.595395
143 /
tcp
* OK Kerio Connect 10.0.4 IMAP4rev1 server ready
* CAPABILITY IMAP4 IMAP4rev1 IDLE ACL LITERAL+ UIDPLUS QUOTA ID SORT ANNOTATE ANNOTATEMORE STATUS-COUNTERS UNSELECT LISTEXT NAMESPACE XLIST SPECIAL-USE XAPPLEPUSHSERVICE STARTTLS LOGINDISABLED AUTH=CRAM-MD5 AUTH=DIGEST-MD5
A001 OK CAPABILITY completed
* ID ("name" "Kerio Connect" "version" " 10.0.4 ")
A002 OK ID completed
A003 BAD STARTTLS required
* BYE logging out
A004 OK LOGOUT completed
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
195379102 | 2024-05-07T13:46:25.687386
443 /
tcp
HTTP/1.1 200 OK
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Connection: Close
Content-Length: 5485
Content-Security-Policy: default-src 'self' 'unsafe-eval' 'unsafe-inline' *.kerio.com wss: ws: https: http: *.microsoft.com login.microsoftonline.com; img-src 'self' data: *.kerio.com;
Content-Type: text/html; charset=utf-8
Date: Tue, 7 May 2024 13:46:25 GMT
Expires: Wed, 4 Jun 1980 06:02:09 GMT
Pragma: no-cache
Server: Kerio Connect 10.0.4
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-UA-Compatible: IE=edge
X-XSS-Protection: 1; mode=block
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
1502494123 | 2024-04-09T00:15:40.952805
465 /
tcp
220 posta Kerio Connect 10.0.4 ESMTP ready
250-posta
250-AUTH CRAM-MD5 PLAIN LOGIN DIGEST-MD5
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-PIPELINING
250-ETRN
250-DSN
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
-733064304 | 2024-05-02T10:14:58.566641
500 /
udp
VPN (IKE)
Initiator SPI: 36777736336b3462
Responder SPI: 6d336b3271653275
Next Payload: RESERVED
Version: 2.0
Exchange Type: DOI Specific Use
Flags:
Encryption: False
Commit: False
Authentication: False
Message ID: 00000000
Length: 36
-1307219467 | 2024-05-06T06:46:26.437942
587 /
tcp
220 posta Kerio Connect 10.0.4 ESMTP ready
250-posta
250-AUTH CRAM-MD5 DIGEST-MD5
250-STARTTLS
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-PIPELINING
250-ETRN
250-DSN
250 HELP
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
-455162815 | 2024-04-12T09:33:59.065554
636 /
tcp
LDAP:
NamingContexts: fn=ContactRoot
DefaultNamingContext: fn=ContactRoot
SupportedControl:
1.2.840.113556.1.4.319
1.2.840.113556.1.4.473
1.2.840.113556.1.4.474
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
-933339584 | 2024-05-05T19:08:13.774494
993 /
tcp
* OK Kerio Connect 10.0.4 IMAP4rev1 server ready
* CAPABILITY IMAP4 IMAP4rev1 IDLE ACL LITERAL+ UIDPLUS QUOTA ID SORT ANNOTATE ANNOTATEMORE STATUS-COUNTERS UNSELECT LISTEXT NAMESPACE XLIST SPECIAL-USE XAPPLEPUSHSERVICE AUTH=CRAM-MD5 AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5
A001 OK CAPABILITY completed
* ID ("name" "Kerio Connect" "version" " 10.0.4 ")
A002 OK ID completed
A003 BAD Unknown command 'unknowncmd'
* BYE logging out
A004 OK LOGOUT completed
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
-1821759187 | 2024-04-20T01:07:11.660410
995 /
tcp
+OK Kerio Connect 10.0.4 POP3 server ready <2484451.1713575220@posta>
+OK Capability list follows
SASL CRAM-MD5 PLAIN LOGIN DIGEST-MD5
TOP
USER
UIDL
.
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
c5:b4:6a:ea:bc:25:82:43
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=posta, C=US
Validity
Not Before: Apr 27 12:56:56 2021 GMT
Not After : Apr 27 12:56:56 2022 GMT
Subject: CN=posta, C=US
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c9:f9:66:03:7f:d1:c1:e1:f3:48:88:53:72:f7:
ed:89:ca:43:b2:fa:30:b0:b3:dc:28:2e:5f:a7:f7:
6d:1d:84:17:cd:89:bd:4a:ed:0a:24:a3:ae:73:7c:
d5:7c:23:00:80:08:04:a9:48:07:a9:c9:75:da:1b:
1b:9b:dd:a4:40:be:0b:40:bd:43:95:3d:17:3c:ef:
6a:05:6d:d4:31:4d:f9:dc:0d:b1:d1:3e:fe:12:cd:
bf:18:52:66:8b:4c:da:41:ef:3c:19:b2:56:fa:94:
9d:3c:d1:57:c3:38:1b:8a:d9:c1:b1:a4:02:33:8b:
d2:56:b2:a6:e6:a2:90:bc:0e:a3:32:9f:f1:66:2d:
ea:54:70:36:62:c6:6a:f5:91:e8:ba:c2:f4:63:00:
4f:1b:c5:21:74:4b:be:d0:9c:bb:53:0b:13:76:1d:
d0:7d:30:fb:f2:51:9a:ad:9d:38:a4:5f:5b:e6:82:
05:3c:71:49:3f:5f:32:a0:ed:8c:52:54:08:87:a2:
69:2c:6f:1a:b1:22:0c:af:86:79:25:e1:f4:5f:74:
fd:84:59:1d:7d:4a:60:04:98:c9:55:0d:fd:36:9b:
ab:27:82:2a:27:53:79:96:83:9c:47:1f:68:9c:3e:
13:42:38:d5:45:a9:7a:6a:93:42:66:b9:1f:0c:85:
55:51
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Subject Alternative Name:
DNS:posta
X509v3 Authority Key Identifier:
D6:C7:F0:03:F2:C3:05:74:95:AC:74:55:39:94:3F:FD:57:5C:D0:DC
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Digital Signature, Key Encipherment, Certificate Sign, CRL Sign
X509v3 Extended Key Usage:
TLS Web Server Authentication, Code Signing, E-mail Protection, Time Stamping, OCSP Signing
1.3.6.1.4.1.10311.1.2.325:
1.
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
91:a0:d1:ab:8b:31:98:c7:5a:06:3e:a0:7d:28:c1:6a:3f:b2:
df:98:a9:a3:a6:80:0c:06:78:7d:aa:61:e7:2e:98:bd:fa:1f:
21:17:d2:d3:99:14:61:b4:a4:4d:9a:81:f8:6f:f6:82:22:86:
d1:cd:73:95:ef:39:09:14:6d:93:b5:37:d5:59:88:4e:ef:ce:
e2:b4:8e:28:e0:fd:93:85:90:ee:df:95:0f:b8:3c:ae:c2:95:
2e:4e:e3:90:28:05:6f:73:fb:63:e8:42:bc:d3:9f:96:4a:27:
ee:91:fb:7d:c4:1a:58:d9:eb:78:92:63:f8:c6:94:cd:ee:71:
3c:05:0d:d1:37:a3:48:f4:f9:71:38:8e:98:cb:21:b2:bc:2e:
18:66:b7:28:df:0a:21:98:c5:9e:cf:8c:9d:c7:cc:f7:87:86:
81:53:10:08:32:be:ed:b9:a6:d9:f6:5a:e8:31:63:36:d9:23:
34:c8:7b:74:36:ee:fd:6e:84:ff:d2:4c:01:63:60:6a:51:00:
26:d1:a7:50:12:72:2f:43:50:29:b4:39:c6:f9:de:43:9f:8b:
50:90:41:9b:cd:09:67:60:2c:d9:c3:06:eb:14:1f:04:ea:0a:
e5:86:67:43:b3:9a:5f:59:85:dd:39:95:04:f0:92:ad:06:59:
a9:cd:88:10
1266744025 | 2024-05-07T13:46:22.548555
4040 /
tcp
HTTP/1.1 301 Moved permanently
Connection: Close
Content-Length: 312
Content-Type: text/html
Date: Tue, 7 May 2024 13:46:22 GMT
Location: https://31.13.210.42:4040/
Server: Kerio Connect 10.0.4
X-UA-Compatible: IE=edge
-641627706 | 2024-04-29T12:55:39.536671
5222 /
tcp
<?xml version='1.0'?><stream:stream xmlns='jabber:client' xmlns:stream='http://etherx.jabber.org/streams' id='tigase-error-tigase' from='posta' version='1.0' xml:lang='en'><stream:error><host-unknown xmlns='urn:ietf:params:xml:ns:xmpp-streams'/></stream:error></stream:stream>
-1235910801 | 2024-05-06T06:54:42.555276
8089 /
tcp
HTTP/1.1 404 Not Found
Content-Length: 0
-1661897234 | 2024-05-07T03:42:07.455331
8800 /
tcp
HTTP/1.1 301
Connection: close
Location: https://31.13.210.42/