Hostnames |
client-192-129-167-211.hostwindsdns.com ded744.hostwindsdns.com myleadgensecret.com www.myleadgensecret.com |
Domains | hostwindsdns.com myleadgensecret.com |
Country | United States |
City | Dallas |
Organization | Hostwinds LLC. |
ISP | Hostwinds LLC. |
ASN | AS54290 |
Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.
CVE-2020-11023 | 4.3In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing <option> elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0. |
CVE-2020-11022 | 4.3In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0. |
CVE-2019-11358 | 4.3jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the native Object.prototype. |
CVE-2015-9251 | 4.3jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed. |
-1991361329 | 2024-05-01T14:31:29.69925021 / tcp
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 1 of 50 allowed. 220-Local time is now 10:31. Server port: 21. 220-This is a private system - No anonymous login 220-IPv6 connections are also welcome on this server. 220 You will be disconnected after 15 minutes of inactivity. 530 Login authentication failed 214-The following SITE commands are recognized ALIAS CHMOD IDLE UTIME 214 Pure-FTPd - http://pureftpd.org/ 211-Extensions supported: UTF8 EPRT IDLE MDTM SIZE MFMT REST STREAM MLST type*;size*;sizd*;modify*;UNIX.mode*;UNIX.uid*;UNIX.gid*;unique*; MLSD PRET AUTH TLS PBSZ PROT TVFS ESTA PASV EPSV ESTP 211 End.
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
296195322 | 2024-05-06T12:58:02.78798953 / tcp
PowerDNS Authoritative Server 4.7.3 (built Apr 25 2023 12:34:07 by root@bh-centos-7.dev.cpanel.net) Resolver ID: ded744.hostwindsdns.com
296195322 | 2024-04-27T06:48:37.82756553 / udp
PowerDNS Authoritative Server 4.7.3 (built Apr 25 2023 12:34:07 by root@bh-centos-7.dev.cpanel.net) Resolver ID: ded744.hostwindsdns.com
-1795849 | 2024-04-27T05:08:59.71658280 / tcp
HTTP/1.1 302 Found Date: Sat, 27 Apr 2024 05:08:58 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Set-Cookie: PHPSESSID=86ccf5072096296ffddb8367a4e018bc; path=/ Location: https://www.myleadgensecret.com/index.php Vary: User-Agent Content-Length: 0 Content-Type: text/html; charset=UTF-8
1952082069 | 2024-05-06T14:10:19.508479110 / tcp
+OK Dovecot ready. +OK CAPA TOP UIDL RESP-CODES PIPELINING AUTH-RESP-CODE STLS USER SASL PLAIN LOGIN .
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
1559185454 | 2024-04-23T23:30:49.349900143 / tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready. * CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN A001 OK Pre-login capabilities listed, post-login capabilities have more. * ID ("name" "Dovecot") A002 OK ID completed. A003 BAD Error in IMAP command received by server. * BYE Logging out A004 OK Logout completed.
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
357124491 | 2024-04-28T15:43:17.955760443 / tcp
HTTP/1.1 200 OK Date: Sun, 28 Apr 2024 15:43:17 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Set-Cookie: PHPSESSID=494c48f18063b4b907a6335244804b71; path=/ Vary: Accept-Encoding,User-Agent Transfer-Encoding: chunked Content-Type: text/html; charset=UTF-8
Certificate: Data: Version: 3 (0x2) Serial Number: 8e:40:f7:a0:06:ed:63:c6:dc:a6:c8:8a:3b:37:22:c4 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA Validity Not Before: Mar 7 00:00:00 2024 GMT Not After : Apr 7 23:59:59 2025 GMT Subject: CN=www.myleadgensecret.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:bf:bc:fb:a5:d8:b2:b7:a9:d9:35:66:67:96:83: 6c:2d:11:9f:7b:14:6a:fe:84:23:0d:be:63:09:5c: d2:8f:8c:62:86:52:07:a3:66:42:1b:3d:f9:d5:77: 68:6b:2d:70:01:35:48:12:4a:04:6f:1a:de:87:b4: e1:3c:a6:5d:17:f0:ae:3b:4f:53:b4:5b:d7:7a:74: 9a:21:67:a1:08:9a:de:c2:eb:e1:11:e4:50:03:e0: 27:1c:2c:b5:cd:cd:0f:51:05:d8:94:d6:84:cf:3d: ea:2c:11:2b:2d:81:af:1d:b5:78:2f:cd:21:8c:3c: 1b:8b:d4:20:1a:e7:7b:de:37:61:bb:c0:c5:62:04: 05:34:78:af:fd:b3:aa:a2:8b:67:6d:3b:22:da:10: 6c:bf:6d:cc:1f:57:1a:4d:9e:6c:59:34:a7:96:e8: 78:34:3e:8b:9b:31:e2:50:ae:c2:4c:68:9b:c9:18: 71:fc:c2:ee:2b:35:b8:0f:32:0e:93:e6:9e:9b:f7: 7a:51:06:2e:1c:55:31:80:8a:3a:f3:eb:5f:a0:70: 56:64:ae:cf:e7:a6:ab:26:0f:eb:1b:c7:62:22:d9: 17:e0:d8:30:f5:1f:4c:b1:33:c7:5c:f2:30:51:0d: 32:6b:b4:8c:8b:54:0b:e2:e7:c7:a3:7d:a6:5d:ee: 9d:b7 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1 X509v3 Subject Key Identifier: FA:57:21:A1:CB:38:0D:38:7B:1A:02:14:82:86:76:CB:E1:A8:41:BD X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.7 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:www.myleadgensecret.com, DNS:myleadgensecret.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9: 1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08 Timestamp : Mar 7 16:47:44.459 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:8D:8C:B5:CC:88:E3:53:8A:8E:77:9C: D7:E1:7B:DB:4C:A9:5B:D2:79:E5:80:69:D5:77:F9:69: 13:FA:CC:D7:53:02:21:00:88:A9:66:F3:4A:CE:E1:76: C4:8E:E8:2B:7D:52:59:FC:D1:68:E5:39:CA:E5:58:23: 11:1E:6A:BF:7D:94:CC:11 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53: D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7 Timestamp : Mar 7 16:47:44.352 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:96:A7:7A:9E:5A:82:42:FA:A1:D5:5D: 77:5C:13:72:EA:DF:EE:77:22:38:54:93:E0:32:CC:81: 2C:BF:D5:D8:B4:02:21:00:F1:23:68:1E:58:0A:87:F2: 30:6F:A2:93:4A:52:04:71:BC:F4:8A:30:36:64:CA:01: 91:72:8B:1E:5D:43:5C:3F Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB: 1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF Timestamp : Mar 7 16:47:44.350 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:E9:DF:2F:9B:D4:0F:A8:71:C5:08:32: B1:E6:94:C2:FB:15:8D:22:C1:15:24:27:4C:12:28:4C: A6:7C:2A:7F:D3:02:20:00:B2:BA:C1:01:DA:7F:C9:29: 7D:3F:01:3A:4C:A6:99:BF:82:79:1F:F9:B9:BA:50:0E: B2:1D:41:E9:AE:A6:52 Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:f9:36:8c:50:1c:5d:f4:22:e1:38:94:e4:ee:d7:95:d2:f5: 94:de:f3:62:79:36:a0:63:e3:55:30:5d:a5:ec:c1:1b:6e:d8: 86:1c:64:23:bc:31:be:ba:d8:1e:4f:b1:30:3c:d7:8a:a3:5e: 2b:86:b2:90:b6:52:a7:2a:3d:4e:7b:45:82:89:79:1e:43:08: 05:70:ab:72:6d:dd:d3:bc:23:72:8b:b5:01:63:50:3a:56:dd: d8:8c:89:9a:db:0b:da:e3:d9:b4:15:c6:30:b0:65:9c:06:1c: 6d:8f:ba:1c:4d:18:f0:bd:7a:f2:20:9e:cc:55:e6:5f:42:86: 7f:d4:3d:dc:94:ab:73:88:fd:bd:1a:94:5e:a7:06:0e:c9:57: bd:02:ee:cd:7f:67:a3:d9:aa:a4:ee:b3:a0:7e:7b:62:dd:f3: 39:81:8b:d4:f8:fa:f3:93:a1:cb:73:10:f3:9e:6f:29:35:38: 6d:49:72:f0:67:9f:14:fd:20:d3:4d:54:c9:69:4c:38:a6:86: 87:49:c7:7a:b2:1f:c5:be:48:02:55:ab:79:6e:92:be:45:75: ed:fd:fd:a0:c4:23:d4:62:cd:29:44:f4:00:dd:2e:6c:95:15: fb:20:73:75:37:3f:55:39:d0:1d:d9:01:aa:00:7d:5d:28:e4: 98:95:2b:d6
-1434355828 | 2024-04-23T10:30:24.943744465 / tcp
220-ded744.hostwindsdns.com ESMTP Exim 4.96.2 #2 Tue, 23 Apr 2024 06:30:08 -0400 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail. 250-ded744.hostwindsdns.com Hello 224.19.107.132 [224.19.107.132] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPECONNECT 250-AUTH PLAIN LOGIN 250 HELP
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
-2050919128 | 2024-04-19T21:36:08.594449587 / tcp
220-ded744.hostwindsdns.com ESMTP Exim 4.96.2 #2 Fri, 19 Apr 2024 17:35:32 -0400 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail. 250-ded744.hostwindsdns.com Hello lhyb56dwdjty0tt.org [224.62.21.223] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPECONNECT 250-STARTTLS 250 HELP
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
-1132241830 | 2024-04-30T10:51:33.175920993 / tcp
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot ready. * CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN A001 OK Pre-login capabilities listed, post-login capabilities have more. * ID ("name" "Dovecot") A002 OK ID completed. A003 BAD Error in IMAP command received by server. * BYE Logging out A004 OK Logout completed.
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
-1798291171 | 2024-04-19T08:07:09.7860902082 / tcp
HTTP/1.1 301 Moved Content-length: 121 Location: https://ded744.hostwindsdns.com:2083/ Content-type: text/html; charset="utf-8" Cache-Control: no-cache, no-store, must-revalidate, private
179444757 | 2024-04-20T05:50:49.6296792083 / tcp
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset="utf-8" Date: Sat, 20 Apr 2024 05:50:39 GMT Cache-Control: no-cache, no-store, must-revalidate, private Pragma: no-cache Set-Cookie: cprelogin=no; HttpOnly; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2083; secure Set-Cookie: cpsession=%3ao1JW_PnRhYEsVakz%2c3e44183504e0d09769a95d19eb9724de; HttpOnly; path=/; port=2083; secure Set-Cookie: roundcube_sessid=expired; HttpOnly; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2083; secure Set-Cookie: roundcube_sessauth=expired; HttpOnly; domain=192.129.167.211; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2083; secure Set-Cookie: PPA_ID=expired; HttpOnly; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2083; secure Cache-Control: no-cache, no-store, must-revalidate, private X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff Content-Length: 37366
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83
1914145372 | 2024-04-13T05:34:50.9683332086 / tcp
HTTP/1.1 301 Moved Content-length: 121 Location: https://ded744.hostwindsdns.com:2087/ Content-type: text/html; charset="utf-8" Cache-Control: no-cache, no-store, must-revalidate, private
-1292671635 | 2024-04-25T10:02:58.5488572087 / tcp
HTTP/1.1 200 OK Connection: close Content-Type: text/html; charset="utf-8" Date: Thu, 25 Apr 2024 10:02:58 GMT Cache-Control: no-cache, no-store, must-revalidate, private Pragma: no-cache Set-Cookie: whostmgrrelogin=no; HttpOnly; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2087; secure Set-Cookie: whostmgrsession=%3aIHniqCl5H1xBQqaL%2cc97707cfa69346e5fce19036c5cb423c; HttpOnly; path=/; port=2087; secure Set-Cookie: roundcube_sessid=expired; HttpOnly; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2087; secure Set-Cookie: roundcube_sessauth=expired; HttpOnly; domain=192.129.167.211; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2087; secure Set-Cookie: PPA_ID=expired; HttpOnly; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; port=2087; secure Cache-Control: no-cache, no-store, must-revalidate, private X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff Content-Length: 37033
Certificate: Data: Version: 3 (0x2) Serial Number: f0:36:c3:4d:c5:ab:d0:1d:21:04:5c:f7:38:e2:3a:f1 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority Validity Not Before: Mar 29 00:00:00 2024 GMT Not After : Jun 27 23:59:59 2024 GMT Subject: CN=ded744.hostwindsdns.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:a9:ad:ee:a7:ca:07:d5:50:de:bb:57:6b:79:13: 9a:7b:86:df:f0:f2:80:39:46:92:26:2d:a1:72:16: ae:7b:3b:12:fa:4e:fd:a4:98:87:e4:03:4f:34:86: 3e:b8:bd:af:cb:1c:43:d2:e5:8d:da:1b:83:c6:3b: 81:a0:8f:e9:91:87:64:66:21:4a:dd:f5:e2:14:48: c7:ce:a3:6a:b7:e5:38:b9:8f:a6:34:5e:d7:da:fe: 47:4b:ec:ee:5d:72:df:fd:3f:9b:fb:e5:1b:29:69: a4:28:15:59:0c:2d:30:67:27:d3:26:ac:a8:aa:27: 76:52:94:5a:04:41:f5:b3:37:04:c9:8b:1e:fe:34: 12:66:a9:c9:88:be:0f:05:c7:b1:85:5c:68:d5:9d: a6:94:cb:ae:f3:8c:70:bd:24:9a:92:5c:a5:8a:72: 4b:4c:64:1e:c4:66:d5:05:c7:9e:d1:db:70:d0:9f: 97:69:d1:5c:07:9b:37:3c:0d:9c:fb:a3:15:bf:2f: b8:ee:5d:83:8e:41:20:dd:f9:4a:f1:53:9f:3d:f4: 93:66:31:78:b3:65:46:e2:13:cf:f8:dc:7d:5e:93: 6d:34:fe:22:a8:53:fe:21:12:21:36:2e:75:aa:d4: 80:c9:76:41:dd:6d:bd:59:5c:c8:66:d1:4e:51:12: f9:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65 X509v3 Subject Key Identifier: CC:46:39:A2:A8:65:02:78:39:E5:BB:4C:57:FE:7A:40:3E:BF:E7:29 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.2.52 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.2.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl Authority Information Access: CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt OCSP - URI:http://ocsp.comodoca.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Mar 29 11:59:46.879 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:2E:1B:66:E8:78:1B:5A:8A:0C:6D:7E:E0: 48:32:1E:15:0E:5D:B3:6A:F8:27:37:EB:C2:B3:DD:AE: C7:8D:D2:22:02:21:00:F3:13:D4:C1:F1:D9:A1:C5:24: 7C:22:93:69:54:36:8B:B3:F6:1D:AD:BF:11:53:8E:1B: 3C:41:DC:C0:F9:61:F8 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B: 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17 Timestamp : Mar 29 11:59:46.841 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:DA:23:C4:0A:29:29:BD:CF:5E:C5:B2: 83:89:F9:E1:39:50:5C:8D:F0:86:6D:2D:BA:8E:63:32: CB:35:6A:6C:BE:02:21:00:B9:FF:00:94:7F:18:48:BA: 85:6B:84:36:1A:A5:EC:CE:B0:74:62:35:28:C1:2C:96: 3C:70:9E:BF:87:DC:28:C0 X509v3 Subject Alternative Name: DNS:ded744.hostwindsdns.com Signature Algorithm: sha256WithRSAEncryption Signature Value: 78:d6:14:cb:bf:15:27:46:35:83:2b:e7:1e:54:0f:39:69:51: b4:18:a2:e6:39:e9:17:7c:02:d2:91:b5:d4:27:84:b4:2e:5c: 2f:cd:f0:b5:63:2d:74:34:1d:fb:6e:5d:33:c4:7e:80:d2:2b: 26:e4:65:66:09:cd:25:41:7c:dd:38:5a:8b:8b:a8:ee:40:54: 5a:94:fb:5a:34:c0:fd:38:5c:a6:41:e9:f4:10:08:12:bd:ec: 15:fa:ff:63:7c:ae:da:01:a0:9e:43:0f:33:71:f1:41:3e:c3: 78:88:fd:48:8d:7e:99:8f:0a:ec:76:81:a6:1a:d9:59:43:49: a3:ce:d0:f4:6d:05:e1:77:02:b2:b0:32:f4:06:f6:70:a5:52: 2d:cd:41:8b:30:6c:9a:3e:00:06:0e:7c:e5:1d:90:a7:ea:8e: 7e:d6:d5:d7:00:f7:23:5c:3c:72:9c:fc:35:c4:a6:13:4b:30: 91:8e:53:69:13:bd:9e:94:da:dc:e4:d1:ed:1a:e1:2d:e4:a5: 6a:f0:cc:36:2b:0d:48:d0:b0:c0:19:a4:8b:92:65:63:c9:37: db:7c:8e:ab:06:42:15:f5:36:f4:40:39:ae:1b:f1:ba:0e:71: 76:6c:86:62:cb:00:8d:0b:b5:d2:98:78:5e:37:4b:6a:24:ed: 5f:88:86:83