Reading the observatory store…
Reading the observatory store…
First seen 22 Sep 2026, last seen 22 Sep 2026 23:58 UTC (5h ago). 32 observations on record. Location is an estimate derived from registration data — the source and confidence are stated below.
| Port | Service | Product | Technologies | TLS | State | Banner | Last seen |
|---|---|---|---|---|---|---|---|
| 110 tcp / tcp | pop3 | Let's Encrypt |
| TLSv1.3certificate
| open | +OK POP3 ready | 22 Sep 2026 5h ago |
| 143 tcp / tcp | imap | Let's Encrypt |
| TLSv1.3certificate
| open | * OK IMAP4rev1 proxy server ready | 22 Sep 2026 5h ago |
| 443 tcp / tcp | https | nginx |
| TLSv1.3certificate
| open | no banner captured | 22 Sep 2026 5h ago |
| 587 tcp / tcp | smtp-submission | Postfix |
| TLSv1.3certificate
| open | 220 mailproxy.supremecourt.gov.np ESMTP Postfix | 22 Sep 2026 5h ago |
| 993 tcp / tcp | imaps | Let's Encrypt |
| TLSv1.3certificate
| open | * OK IMAP4rev1 proxy server ready | 22 Sep 2026 5h ago |
| 995 tcp / tcp | pop3s | Let's Encrypt |
| TLSv1.3certificate
| open | +OK POP3 ready | 22 Sep 2026 5h ago |
| 8080 tcp / tcp | http-alt | Apache HTTP Server 2.4.9 |
| not negotiated | open | no banner captured | 22 Sep 2026 5h ago |
| Observed at | Source | Collector | Confidence | Changed | State | Content hash |
|---|---|---|---|---|---|---|
| 22 Sep 2026 23:57 UTC | fingerprint | fingerprint-1 | high | unchanged | {"services":{"110/tcp":{"state":"open","product":"Let's Encrypt","version":"","cert_sha256":"260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",… | ed2c09c1c1263ab1c0db127af7caa01e332dbf5… |
| 22 Sep 2026 19:07 UTC | fingerprint | fingerprint-1 | high | changed | {"services":{"110/tcp":{"state":"open","product":"Let's Encrypt","version":"","cert_sha256":"260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",… | 70163971f92929c3c10fbbc3cf7b16aa6f4034a… |
| 22 Sep 2026 17:34 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | 81e570065e80a89fa8e0234c2941c66e7abbdc5… |
| 22 Sep 2026 12:59 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | f0f22ef8d37fc95507257fae1fdb91bad8f48b6… |
| 22 Sep 2026 12:02 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | a45e8ecc981afc206bf02e428272370f44fb978… |
| 22 Sep 2026 11:37 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | e1692e8f6e12abfd08a3fc9f3b8056651e1f76c… |
| 22 Sep 2026 07:33 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | 663602a5a160206d3d7678e77d8e72374a1bddc… |
| 22 Sep 2026 06:50 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | b0a3c70d07567ac9c98a1180b6ccc747fc34508… |
| 22 Sep 2026 05:48 UTC | fingerprint | fingerprint-1 | high | unchanged | {"reverse_dns":"mail.supremecourt.gov.np"} | 6531e049353f54317c2406aced40424c0561a2b… |
| 22 Sep 2026 05:14 UTC | fingerprint | fingerprint-1 | high | changed | {"reverse_dns":"mail.supremecourt.gov.np"} | 597f5ac8f659e4a5907ba38d621160f8389aec1… |
| Detected at | Type | Field | Previous | Current | Significance | Confidence |
|---|---|---|---|---|---|---|
| 22 Sep 2026 19:07 UTC | TECHNOLOGY CHANGED | — | — | apache-http-server, lets-encrypt, nginx, php, postfix | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:995/tcp | — | Let's Encrypt / TLSv1.3 | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:993/tcp | — | Let's Encrypt / TLSv1.3 | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:8080/tcp | — | Apache HTTP Server 2.4.9 | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:587/tcp | — | Postfix / TLSv1.3 | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:443/tcp | — | nginx / TLSv1.3 | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:143/tcp | — | Let's Encrypt / TLSv1.3 | low | unknown |
| 22 Sep 2026 19:07 UTC | NEW SERVICE | service:110/tcp | — | Let's Encrypt / TLSv1.3 | low | unknown |
| 22 Sep 2026 05:14 UTC | NEW ASSET | — | — | asset with no observed open endpoints | low | unknown |
5 matches on this asset, each one unverified. Treat these as leads for manual review, never as findings.
| Identifier | Severity | CVSS | Product / version | Status | Match confidence | Evidence | Detected |
|---|---|---|---|---|---|---|---|
CVE-2021-39191 mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. I… | medium | 4.7 | Apache HTTP Server 2.4.9 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.9\"","note":"version-string match only; not a confirmed expo… | 22 Sep 2026 |
CVE-2021-32792 mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. I… | low | 3.1 | Apache HTTP Server 2.4.9 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.9\"","note":"version-string match only; not a confirmed expo… | 22 Sep 2026 |
CVE-2021-32791 mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. I… | medium | 5.9 | Apache HTTP Server 2.4.9 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.9\"","note":"version-string match only; not a confirmed expo… | 22 Sep 2026 |
CVE-2021-32786 mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. I… | medium | 4.7 | Apache HTTP Server 2.4.9 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.9\"","note":"version-string match only; not a confirmed expo… | 22 Sep 2026 |
CVE-2021-32785 mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. W… | medium | 5.3 | Apache HTTP Server 2.4.9 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.9\"","note":"version-string match only; not a confirmed expo… | 22 Sep 2026 |
| Field | Previous | Current | Reading |
|---|---|---|---|
| reverse_dns | mail.supremecourt.gov.np | mail.supremecourt.gov.np | unchanged |
| services.110/tcp.cert_sha256 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | unchanged |
| services.110/tcp.product | Let's Encrypt | Let's Encrypt | unchanged |
| services.110/tcp.service_type | pop3 | pop3 | unchanged |
| services.110/tcp.state | open | open | unchanged |
| services.110/tcp.tls_version | TLSv1.3 | TLSv1.3 | unchanged |
| services.110/tcp.version | — | — | unchanged |
| services.143/tcp.cert_sha256 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | unchanged |
| services.143/tcp.product | Let's Encrypt | Let's Encrypt | unchanged |
| services.143/tcp.service_type | imap | imap | unchanged |
| services.143/tcp.state | open | open | unchanged |
| services.143/tcp.tls_version | TLSv1.3 | TLSv1.3 | unchanged |
| services.143/tcp.version | — | — | unchanged |
| services.443/tcp.cert_sha256 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | unchanged |
| services.443/tcp.product | nginx | nginx | unchanged |
| services.443/tcp.service_type | https | https | unchanged |
| services.443/tcp.state | open | open | unchanged |
| services.443/tcp.tls_version | TLSv1.3 | TLSv1.3 | unchanged |
| services.443/tcp.version | — | — | unchanged |
| services.587/tcp.cert_sha256 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | unchanged |
| services.587/tcp.product | Postfix | Postfix | unchanged |
| services.587/tcp.service_type | smtp-submission | smtp-submission | unchanged |
| services.587/tcp.state | open | open | unchanged |
| services.587/tcp.tls_version | TLSv1.3 | TLSv1.3 | unchanged |
| services.587/tcp.version | — | — | unchanged |
| services.8080/tcp.cert_sha256 | — | — | unchanged |
| services.8080/tcp.product | Apache HTTP Server | Apache HTTP Server | unchanged |
| services.8080/tcp.service_type | http-alt | http-alt | unchanged |
| services.8080/tcp.state | open | open | unchanged |
| services.8080/tcp.tls_version | — | — | unchanged |
| services.8080/tcp.version | 2.4.9 | 2.4.9 | unchanged |
| services.993/tcp.cert_sha256 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | unchanged |
| services.993/tcp.product | Let's Encrypt | Let's Encrypt | unchanged |
| services.993/tcp.service_type | imaps | imaps | unchanged |
| services.993/tcp.state | open | open | unchanged |
| services.993/tcp.tls_version | TLSv1.3 | TLSv1.3 | unchanged |
| services.993/tcp.version | — | — | unchanged |
| services.995/tcp.cert_sha256 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | 260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606 | unchanged |
| services.995/tcp.product | Let's Encrypt | Let's Encrypt | unchanged |
| services.995/tcp.service_type | pop3s | pop3s | unchanged |
| services.995/tcp.state | open | open | unchanged |
| services.995/tcp.tls_version | TLSv1.3 | TLSv1.3 | unchanged |
| services.995/tcp.version | — | — | unchanged |
| technologies | ["apache-http-server","lets-encrypt","nginx","php","postfix"] | ["apache-http-server","lets-encrypt","nginx","php","postfix"] | unchanged |
{
"id": "ca8bafee61f294c5046160e9e3d7ead68",
"type": "ipv4",
"value": "202.166.198.141",
"hostname": "mail.acourt.gov.np",
"reverseDns": "mail.supremecourt.gov.np",
"asn": {
"number": 17501,
"name": "WLINK-NEPAL-AS-AP - WorldLink Communications Pvt Ltd"
},
"organization": {
"id": "c4f150547622eacc586af3e263e09205e",
"name": "WLINK-NEPAL-AS-AP - WorldLink Communications Pvt Ltd"
},
"location": {
"country": "NP",
"city": "Kathmandu",
"province": "Bagmati Province",
"district": "",
"confidence": "low",
"source": "ip-api.com"
},
"scopeStatus": "in_scope",
"priority": "HIGH",
"firstSeen": "2026-09-22T05:10:25.639Z",
"lastSeen": "2026-09-22T23:58:19.703Z",
"observationCount": 32,
"openServices": 7,
"serviceCount": 7,
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
],
"vulnerabilityMatches": [
{
"id": "ca8e24ae355feac4652bbf7cb55108360",
"cve": "CVE-2021-39191",
"severity": "medium",
"cvssScore": 4.7,
"summary": "mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In versions prior to 2.4.9.4, the 3rd-party init SSO functionality of mod_auth_openidc was reported to be vulnerable to an open redirect attack by supplying a crafted URL in the `target_link_uri` parameter. A patch in version 2.4.9.4 made it so that the `OIDCRedirectURLsAllowed` setting must be applied to the `target_link_uri` parameter. There are no known workarounds aside from upgrading to a patched version.",
"product": "Apache HTTP Server",
"version": "2.4.9",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.9\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.9\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-22T19:34:10.030Z",
"assetValue": "202.166.198.141",
"serviceId": "c2a78802b8608eb3efcc6b3e5c5f215d6",
"port": 8080,
"technologySlug": "php"
},
{
"id": "c60da0d6a88dff2bbc0aed24be9f7d95d",
"cve": "CVE-2021-32792",
"severity": "low",
"cvssScore": 3.1,
"summary": "mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In mod_auth_openidc before version 2.4.9, there is an XSS vulnerability in when using `OIDCPreservePost On`.",
"product": "Apache HTTP Server",
"version": "2.4.9",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.9\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.9\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-22T19:34:10.027Z",
"assetValue": "202.166.198.141",
"serviceId": "c2a78802b8608eb3efcc6b3e5c5f215d6",
"port": 8080,
"technologySlug": "php"
},
{
"id": "cc89d63c73da687a5397f2cf86b9613f1",
"cve": "CVE-2021-32791",
"severity": "medium",
"cvssScore": 5.9,
"summary": "mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In mod_auth_openidc before version 2.4.9, the AES GCM encryption in mod_auth_openidc uses a static IV and AAD. It is important to fix because this creates a static nonce and since aes-gcm is a stream cipher, this can lead to known cryptographic issues, since the same key is being reused. From 2.4.9 onwards this has been patched to use dynamic values through usage of cjose AES encryption routines.",
"product": "Apache HTTP Server",
"version": "2.4.9",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.9\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.9\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-22T19:34:10.025Z",
"assetValue": "202.166.198.141",
"serviceId": "c2a78802b8608eb3efcc6b3e5c5f215d6",
"port": 8080,
"technologySlug": "php"
},
{
"id": "cc487db6da70d1ba48b9e790ab881dc2b",
"cve": "CVE-2021-32786",
"severity": "medium",
"cvssScore": 4.7,
"summary": "mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In versions prior to 2.4.9, `oidc_validate_redirect_url()` does not parse URLs the same way as most browsers do. As a result, this function can be bypassed and leads to an Open Redirect vulnerability in the logout functionality. This bug has been fixed in version 2.4.9 by replacing any backslash of the URL to redirect with slashes to address a particular breaking change between the different specifications (RFC2396 / RFC3986 and WHATWG). As a workaround, this vulnerability can be mitigated by configuring `mod_auth_openidc` to only allow redirection whose destination matches a given regular expression.",
"product": "Apache HTTP Server",
"version": "2.4.9",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.9\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.9\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-22T19:34:10.023Z",
"assetValue": "202.166.198.141",
"serviceId": "c2a78802b8608eb3efcc6b3e5c5f215d6",
"port": 8080,
"technologySlug": "php"
},
{
"id": "cd4f497a37e96a72b26105ef4c7db3795",
"cve": "CVE-2021-32785",
"severity": "medium",
"cvssScore": 5.3,
"summary": "mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. When mod_auth_openidc versions prior to 2.4.9 are configured to use an unencrypted Redis cache (`OIDCCacheEncrypt off`, `OIDCSessionType server-cache`, `OIDCCacheType redis`), `mod_auth_openidc` wrongly performed argument interpolation before passing Redis requests to `hiredis`, which would perform it again and lead to an uncontrolled format string bug. Initial assessment shows that this bug does not appear to allow gaining arbitrary code execution, but can reliably provoke a denial of service by repeatedly crashing the Apache workers. This bug has been corrected in version 2.4.9 by performing argument interpolation only once, using the `hiredis` API. As a workaround, this vulnerability can be mitigated by setting `OIDCCacheEncrypt` to `on`, as cache keys are cryptographically hashed before use when this option is enabled.",
"product": "Apache HTTP Server",
"version": "2.4.9",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.9\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.9\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-22T19:34:10.020Z",
"assetValue": "202.166.198.141",
"serviceId": "c2a78802b8608eb3efcc6b3e5c5f215d6",
"port": 8080,
"technologySlug": "php"
}
],
"network": {
"id": "cba075cc70a55c38eb220535fa1fce5a3",
"prefix": "202.166.198.0/24",
"ipVersion": 4
},
"services": [
{
"id": "ca8021b29aa3cc9f3becf124116bf7aaa",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 110,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "pop3",
"product": "Let's Encrypt",
"productVersion": null,
"tlsVersion": "TLSv1.3",
"banner": "+OK POP3 ready",
"state": "open",
"firstSeen": "2026-09-22T19:07:58.109Z",
"lastSeen": "2026-09-22T23:58:19.652Z",
"observationCount": 0,
"technologies": [
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"detectedAt": "2026-09-22T19:07:58.112Z"
}
],
"certificate": {
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
},
{
"id": "cd6b4d2ba26017b831c2047a13d104199",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 143,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "imap",
"product": "Let's Encrypt",
"productVersion": null,
"tlsVersion": "TLSv1.3",
"banner": "* OK IMAP4rev1 proxy server ready",
"state": "open",
"firstSeen": "2026-09-22T19:07:58.115Z",
"lastSeen": "2026-09-22T23:58:19.659Z",
"observationCount": 0,
"technologies": [
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"detectedAt": "2026-09-22T19:07:58.118Z"
}
],
"certificate": {
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
},
{
"id": "c0020166a59f61b64a5d0bdff2d957c27",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 443,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "https",
"product": "nginx",
"productVersion": null,
"tlsVersion": "TLSv1.3",
"banner": null,
"state": "open",
"firstSeen": "2026-09-22T19:07:58.121Z",
"lastSeen": "2026-09-22T23:58:19.665Z",
"observationCount": 0,
"technologies": [
{
"slug": "nginx",
"name": "nginx",
"category": "web-server",
"vendor": "NGINX, Inc.",
"version": null,
"confidence": "high",
"evidence": "server: nginx",
"detectedAt": "2026-09-22T19:07:58.124Z"
},
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"detectedAt": "2026-09-22T19:07:58.126Z"
}
],
"certificate": {
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
},
{
"id": "cd823043d9f82d46545d74e4d813bc9b8",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 587,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "smtp-submission",
"product": "Postfix",
"productVersion": null,
"tlsVersion": "TLSv1.3",
"banner": "220 mailproxy.supremecourt.gov.np ESMTP Postfix",
"state": "open",
"firstSeen": "2026-09-22T19:07:58.131Z",
"lastSeen": "2026-09-22T23:58:19.674Z",
"observationCount": 0,
"technologies": [
{
"slug": "postfix",
"name": "Postfix",
"category": "mail-server",
"vendor": "Wietse Venema",
"version": null,
"confidence": "high",
"evidence": "SMTP banner: 220 mailproxy.supremecourt.gov.np ESMTP Postfix",
"detectedAt": "2026-09-22T19:07:58.133Z"
},
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"detectedAt": "2026-09-22T19:07:58.136Z"
}
],
"certificate": {
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
},
{
"id": "ca75d1a7b1a8a03b33cb39ef4376c13eb",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 993,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "imaps",
"product": "Let's Encrypt",
"productVersion": null,
"tlsVersion": "TLSv1.3",
"banner": "* OK IMAP4rev1 proxy server ready",
"state": "open",
"firstSeen": "2026-09-22T19:07:58.140Z",
"lastSeen": "2026-09-22T23:58:19.682Z",
"observationCount": 0,
"technologies": [
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"detectedAt": "2026-09-22T19:07:58.142Z"
}
],
"certificate": {
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
},
{
"id": "cb168ded1536c37d0bb4bd0fe40811c00",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 995,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "pop3s",
"product": "Let's Encrypt",
"productVersion": null,
"tlsVersion": "TLSv1.3",
"banner": "+OK POP3 ready",
"state": "open",
"firstSeen": "2026-09-22T19:07:58.146Z",
"lastSeen": "2026-09-22T23:58:19.688Z",
"observationCount": 0,
"technologies": [
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"detectedAt": "2026-09-22T19:07:58.149Z"
}
],
"certificate": {
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
},
{
"id": "c2a78802b8608eb3efcc6b3e5c5f215d6",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"port": 8080,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "http-alt",
"product": "Apache HTTP Server",
"productVersion": "2.4.9",
"tlsVersion": null,
"banner": null,
"state": "open",
"firstSeen": "2026-09-22T19:07:58.151Z",
"lastSeen": "2026-09-22T23:58:19.693Z",
"observationCount": 0,
"technologies": [
{
"slug": "apache-http-server",
"name": "Apache HTTP Server",
"category": "web-server",
"vendor": "Apache Software Foundation",
"version": "2.4.9",
"confidence": "high",
"evidence": "server: Apache/2.4.9 (Win32) PHP/5.5.12",
"detectedAt": "2026-09-22T23:58:19.695Z"
},
{
"slug": "php",
"name": "PHP",
"category": "language",
"vendor": "PHP Group",
"version": "5.5.12",
"confidence": "high",
"evidence": "X-Powered-By: PHP/5.5.12",
"detectedAt": "2026-09-22T23:58:19.699Z"
}
],
"certificate": null
}
],
"certificates": [
{
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
},
{
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
},
{
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
},
{
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
},
{
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
},
{
"id": "c71d3e597f432474501d88faf65de626a",
"sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"subject": "CN=mail.supremecourt.gov.np",
"issuer": "CN=Sectigo Public Server Authentication CA DV R36,O=Sectigo Limited,C=GB",
"commonName": "mail.supremecourt.gov.np",
"notBefore": "2026-06-05T00:00:00.000Z",
"notAfter": "2026-12-20T23:59:59.000Z",
"sans": [
"mail.supremecourt.gov.np",
"www.mail.supremecourt.gov.np"
],
"keyAlgo": "RSA",
"sigAlgo": "SHA256-RSA"
}
],
"recentObservations": [
{
"id": "cc9591b9eb55fc6c395de5ba433d9d6ad",
"observedAt": "2026-09-22T23:57:49.593Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"services": {
"110/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3"
},
"143/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imap"
},
"443/tcp": {
"state": "open",
"product": "nginx",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "https"
},
"587/tcp": {
"state": "open",
"product": "Postfix",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "smtp-submission"
},
"993/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imaps"
},
"995/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3s"
},
"8080/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.9",
"cert_sha256": "",
"tls_version": "",
"service_type": "http-alt"
}
},
"reverse_dns": "mail.supremecourt.gov.np",
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
]
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
465,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 7,
"reachable": true,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 26,
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
],
"open_services": 7,
"probe_duration": 29005
},
"contentHash": "ed2c09c1c1263ab1c0db127af7caa01e332dbf5af2e579cb729e76dfe0addfdd",
"changed": false
},
{
"id": "c2bae224a6a441cedc6206cd351f30836",
"observedAt": "2026-09-22T19:07:58.163Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"services": {
"110/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3"
},
"143/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imap"
},
"443/tcp": {
"state": "open",
"product": "nginx",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "https"
},
"587/tcp": {
"state": "open",
"product": "Postfix",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "smtp-submission"
},
"993/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imaps"
},
"995/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3s"
},
"8080/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.9",
"cert_sha256": "",
"tls_version": "",
"service_type": "http-alt"
}
},
"reverse_dns": "mail.supremecourt.gov.np",
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
]
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
465,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 7,
"reachable": true,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 26,
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
],
"open_services": 7,
"probe_duration": 54008
},
"contentHash": "70163971f92929c3c10fbbc3cf7b16aa6f4034afe5b218a700dda888923db94d",
"changed": true
},
{
"id": "cc0c988779712015ad19f894606d127f2",
"observedAt": "2026-09-22T17:34:54.070Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
465,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 26,
"technologies": null,
"open_services": 0,
"probe_duration": 1
},
"contentHash": "81e570065e80a89fa8e0234c2941c66e7abbdc5342982af20609dcc0edb49d39",
"changed": false
},
{
"id": "c17731c7768bd4cec742dc11a3823c722",
"observedAt": "2026-09-22T12:59:02.523Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 0
},
"contentHash": "f0f22ef8d37fc95507257fae1fdb91bad8f48b6025f26b52982f974baa80cdf0",
"changed": false
},
{
"id": "c001719c61a8b1b50bb0600356f4a0a40",
"observedAt": "2026-09-22T12:02:33.427Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 1
},
"contentHash": "a45e8ecc981afc206bf02e428272370f44fb978a62497ad50502fa76a229e2c8",
"changed": false
},
{
"id": "ce2aa669c6145cc5e3df02bcdab251776",
"observedAt": "2026-09-22T11:37:13.955Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 1
},
"contentHash": "e1692e8f6e12abfd08a3fc9f3b8056651e1f76c4cffd1a63efcbabd46fd1b5ca",
"changed": false
},
{
"id": "c19c929bbaf8b46140f6b3ffdcda22411",
"observedAt": "2026-09-22T07:33:12.683Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 2
},
"contentHash": "663602a5a160206d3d7678e77d8e72374a1bddc473c81398969ee4950369923a",
"changed": false
},
{
"id": "c35d429a85d1777fe6a3a7621af50ea31",
"observedAt": "2026-09-22T06:50:34.346Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 37
},
"contentHash": "b0a3c70d07567ac9c98a1180b6ccc747fc345081fbfa4588b64029be48ebc504",
"changed": false
},
{
"id": "cdff7723b7ec1314d6314b5fa46bfbcf1",
"observedAt": "2026-09-22T05:48:54.990Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 1
},
"contentHash": "6531e049353f54317c2406aced40424c0561a2b2b5e587c14a10f1a7cd808ea8",
"changed": false
},
{
"id": "ce8becbcfceb882d97ae3d4a503332286",
"observedAt": "2026-09-22T05:14:52.060Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"reverse_dns": "mail.supremecourt.gov.np"
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 0,
"reachable": false,
"reverse_dns": "mail.supremecourt.gov.np",
"ports_probed": 25,
"technologies": null,
"open_services": 0,
"probe_duration": 34
},
"contentHash": "597f5ac8f659e4a5907ba38d621160f8389aec1ed93ad9fd2bdbcacd2e9318a9",
"changed": true
}
],
"recentChanges": [
{
"id": "c0197f5a492a8b7a8de2d1867a62ee126",
"changeType": "TECHNOLOGY_CHANGED",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": null,
"previousValue": null,
"currentValue": "apache-http-server, lets-encrypt, nginx, php, postfix",
"detectedAt": "2026-09-22T19:07:58.180Z",
"significance": "low",
"severity": "info",
"confidence": null,
"detail": "technology detected: apache-http-server, lets-encrypt, nginx, php, postfix",
"serviceId": null
},
{
"id": "cc31a5f88251ece9c7a938066423816e5",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:995/tcp",
"previousValue": null,
"currentValue": "Let's Encrypt / TLSv1.3",
"detectedAt": "2026-09-22T19:07:58.178Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "c2ab6081592c02a645a5e4a212c1f13f5",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:993/tcp",
"previousValue": null,
"currentValue": "Let's Encrypt / TLSv1.3",
"detectedAt": "2026-09-22T19:07:58.176Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "cf88a229ca0a26bab5634f2cc60a27b5d",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:8080/tcp",
"previousValue": null,
"currentValue": "Apache HTTP Server 2.4.9",
"detectedAt": "2026-09-22T19:07:58.174Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "cd097b173c7090614cca20d27810afbeb",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:587/tcp",
"previousValue": null,
"currentValue": "Postfix / TLSv1.3",
"detectedAt": "2026-09-22T19:07:58.172Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "cc0d8ff6c3ed0bf57a6a2e2dcda67357d",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:443/tcp",
"previousValue": null,
"currentValue": "nginx / TLSv1.3",
"detectedAt": "2026-09-22T19:07:58.170Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "c5bdc0261fb6bb8462ae3f02cf543d717",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:143/tcp",
"previousValue": null,
"currentValue": "Let's Encrypt / TLSv1.3",
"detectedAt": "2026-09-22T19:07:58.168Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "c5aa2f980efe3fe2bb94ac3b7dfea9b3e",
"changeType": "NEW_SERVICE",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": "service:110/tcp",
"previousValue": null,
"currentValue": "Let's Encrypt / TLSv1.3",
"detectedAt": "2026-09-22T19:07:58.166Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "newly observed open endpoint",
"serviceId": null
},
{
"id": "c39c162b85e3caed024c9ee7052d5bd6e",
"changeType": "NEW_ASSET",
"assetId": "ca8bafee61f294c5046160e9e3d7ead68",
"assetValue": null,
"field": null,
"previousValue": null,
"currentValue": "asset with no observed open endpoints",
"detectedAt": "2026-09-22T05:14:52.061Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "asset observed for the first time",
"serviceId": null
}
],
"dnsRecords": [],
"state": {
"current": {
"services": {
"110/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3"
},
"143/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imap"
},
"443/tcp": {
"state": "open",
"product": "nginx",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "https"
},
"587/tcp": {
"state": "open",
"product": "Postfix",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "smtp-submission"
},
"993/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imaps"
},
"995/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3s"
},
"8080/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.9",
"cert_sha256": "",
"tls_version": "",
"service_type": "http-alt"
}
},
"reverse_dns": "mail.supremecourt.gov.np",
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
]
},
"previous": {
"services": {
"110/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3"
},
"143/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imap"
},
"443/tcp": {
"state": "open",
"product": "nginx",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "https"
},
"587/tcp": {
"state": "open",
"product": "Postfix",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "smtp-submission"
},
"993/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "imaps"
},
"995/tcp": {
"state": "open",
"product": "Let's Encrypt",
"version": "",
"cert_sha256": "260260f71125f605eb78f84154235bc37655913c7b8df025ffab68d49cf31606",
"tls_version": "TLSv1.3",
"service_type": "pop3s"
},
"8080/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.9",
"cert_sha256": "",
"tls_version": "",
"service_type": "http-alt"
}
},
"reverse_dns": "mail.supremecourt.gov.np",
"technologies": [
"apache-http-server",
"lets-encrypt",
"nginx",
"php",
"postfix"
]
},
"comparable": true
}
}