299453820 | 2024-07-26T01:07:31.541717
21 /
tcp
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 2 of 50 allowed.
220-Local time is now 21:08. Server port: 21.
220-IPv6 connections are also welcome on this server.
220 You will be disconnected after 15 minutes of inactivity.
230 Anonymous user logged in
214-The following SITE commands are recognized
ALIAS
CHMOD
IDLE
UTIME
214 Pure-FTPd - http://pureftpd.org/
211-Extensions supported:
UTF8
EPRT
IDLE
MDTM
SIZE
MFMT
REST STREAM
MLST type*;size*;sizd*;modify*;UNIX.mode*;UNIX.uid*;UNIX.gid*;unique*;
MLSD
PRET
AUTH TLS
PBSZ
PROT
TVFS
ESTA
PASV
EPSV
ESTP
211 End.
106608729 | 2024-07-02T20:35:15.857475
80 /
tcp
HTTP/1.1 200 OK
Date: Tue, 02 Jul 2024 20:36:05 GMT
Content-Length: 1514
Connection: keep-alive
Content-Type: text/html
Cache-Control: no-cache, no-store, must-revalidate, max-age=0
Cache-Control: no-store, max-age=0
Server: imunify360-webshield/1.21
328577032 | 2024-07-21T17:11:18.944983
443 /
tcp
HTTP/1.1 200 OK
Date: Sun, 21 Jul 2024 17:11:57 GMT
Content-Length: 1531
Connection: keep-alive
Content-Type: text/html
Cache-Control: no-cache, no-store, must-revalidate, max-age=0
Cache-Control: no-store, max-age=0
Server: imunify360-webshield/1.21
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:50:9c:b5:bc:16:e1:e2:2e:90:30:69:75:22:d9:95:df:11
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, O=Let's Encrypt, CN=R3
Validity
Not Before: Nov 29 02:45:26 2023 GMT
Not After : Feb 27 02:45:25 2024 GMT
Subject: CN=*.truemovement.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:cc:8a:fd:b7:1e:13:55:6f:2c:fd:00:f3:98:6e:
d7:e2:2b:f1:45:19:49:59:47:34:41:c9:7e:ab:69:
96:17:a7:cd:75:49:65:49:1b:5b:7b:d5:73:b4:fc:
71:ec:98:10:5c:27:af:7d:70:a6:32:38:83:f7:74:
87:ee:7a:87:61:d4:e0:dc:a5:ef:47:42:01:dd:98:
25:a4:78:d4:2a:66:bd:38:b9:25:0e:f8:b2:0a:31:
a9:ce:3d:de:3f:72:e4:96:f3:64:a0:6b:7f:cd:c4:
b1:5b:35:15:aa:88:68:e8:ff:de:29:92:3e:98:70:
3c:3e:fb:3b:60:ae:c1:2d:03:58:08:1c:71:93:f7:
03:5c:27:e4:f2:3f:77:2d:13:0c:4e:4a:95:77:47:
0b:42:20:41:c8:6c:d7:58:cf:54:f4:44:d2:3d:24:
6b:6c:12:c0:7f:4a:e6:95:43:8b:a5:ac:15:3f:3c:
42:9d:ac:5a:08:a6:de:a4:58:47:18:df:57:1f:6a:
f1:af:f9:93:b8:62:87:1c:9d:7a:61:76:98:a5:f5:
17:b3:95:a9:fa:01:f8:73:aa:0c:f6:73:53:66:b0:
6e:53:8b:30:0a:2d:39:8b:9b:3b:b3:b5:de:6b:e0:
ad:4a:3a:53:ec:91:28:27:b1:b2:a4:db:05:9d:b5:
70:5d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
EB:A9:08:D2:57:34:35:39:FC:D7:0C:32:BC:1D:10:AE:09:D6:12:62
X509v3 Authority Key Identifier:
14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
Authority Information Access:
OCSP - URI:http://r3.o.lencr.org
CA Issuers - URI:http://r3.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:*.truemovement.com, DNS:truemovement.com
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B:
67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17
Timestamp : Nov 29 03:45:27.057 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:D9:9E:41:F5:EA:A2:96:91:CF:CC:1B:
4C:DD:20:99:55:48:E2:B6:D1:4C:51:1F:AB:1D:25:CC:
FA:AB:D9:D2:34:02:20:3D:63:E8:89:85:D0:DC:98:DE:
16:A2:7A:DA:7C:E6:50:F4:B1:36:DE:8E:53:60:93:24:
3F:DE:56:46:54:C9:B2
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
Timestamp : Nov 29 03:45:27.112 2023 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:CF:CC:BB:DB:E9:6E:4B:99:CB:F0:E5:
00:5B:1A:93:E5:C6:9C:2B:31:A4:22:2C:D7:91:18:F3:
33:5F:31:D8:D6:02:21:00:F8:0B:64:9C:D8:58:2A:D0:
46:B0:62:DF:E9:F6:44:C0:C4:8E:C3:EE:53:25:54:BE:
49:AE:3F:E4:78:6C:33:70
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
92:0e:e7:4f:08:be:51:0e:a5:81:ee:bd:63:c6:8c:67:ad:76:
0a:df:f3:1c:2d:0c:fa:4e:15:3e:c0:08:56:08:67:b3:41:ce:
8b:1d:01:98:6b:d0:59:b5:26:8f:c1:16:e4:16:dd:6c:68:23:
e9:aa:ae:53:2f:05:88:07:22:7c:60:17:db:54:ce:b8:13:80:
8e:e0:38:46:e5:87:98:2c:32:19:af:47:fa:6f:56:d9:09:86:
fe:2a:e7:c4:0b:fd:59:9c:e2:f0:19:12:d2:f4:25:70:c2:14:
d9:d4:59:37:2a:c3:ed:c5:83:97:8a:3a:a8:7d:2e:40:f4:b3:
b5:3e:92:88:67:79:b8:37:18:d7:cd:4e:fe:92:12:18:96:cc:
83:aa:4e:32:5f:ed:04:7c:70:e1:9e:0d:16:44:9a:38:a0:e1:
ac:60:d3:59:bb:7a:af:77:6d:56:50:cc:a0:f3:db:bd:e8:d8:
7e:cd:ed:6c:15:d7:fc:55:ca:0c:09:9f:34:37:57:b7:2f:01:
26:15:77:ea:65:0b:0b:ca:e9:96:c4:6a:4f:c8:d8:9b:88:b1:
bb:16:f0:25:86:c2:1d:6c:4a:f8:93:bd:fb:d5:9d:89:d4:e9:
b2:47:4c:7c:02:5d:96:7e:e8:bf:63:47:c5:cf:a4:e1:fd:51:
50:58:34:06
-1603140630 | 2024-07-18T14:38:48.690741
2077 /
tcp
HTTP/1.1 302 Moved
Date: Thu, 18 Jul 2024 14:39:51 GMT
Server: cPanel
Persistent-Auth: false
Host: 198.91.94.175:2077
Cache-Control: no-cache, no-store, must-revalidate, private
Connection: close
Location: https://s17.infinitysrv.com:2078/
Vary: Accept-Encoding
Expires: Fri, 01 Jan 1990 00:00:00 GMT
X-Redirect-Reason: requiressl
-1725271142 | 2024-07-02T11:51:53.009877
2086 /
tcp
HTTP/1.1 200 OK
Date: Tue, 02 Jul 2024 11:52:37 GMT
Content-Length: 1460
Connection: keep-alive
Content-Type: text/html
Cache-Control: no-cache, no-store, must-revalidate, max-age=0
Cache-Control: no-store, max-age=0
Server: imunify360-webshield/1.21