Hostnames |
akhbar-tv3.ir.opfgo-d-lkvlkm.online mx.tradeshares.saudi-investment.club |
Domains | opfgo-d-lkvlkm.online saudi-investment.club |
Country | United States |
City | New York City |
Organization | FranTech Solutions |
ISP | FranTech Solutions |
ASN | AS53667 |
417596447 | 2024-10-03T17:13:47.85889222 / tcp
SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.4 Key type: ecdsa-sha2-nistp256 Key: AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBF52bkkrPj3XtPnfjTvcMrs5 wOMybf5/bRNURt/6t6cVno3WzRxSpYsKpMtNojmVXYqjAEdl1Kb/enjEyDyShoo= Fingerprint: 9d:eb:04:55:17:61:9a:18:70:78:91:39:92:d6:bb:ec Kex Algorithms: curve25519-sha256 curve25519-sha256@libssh.org ecdh-sha2-nistp256 ecdh-sha2-nistp384 ecdh-sha2-nistp521 sntrup761x25519-sha512@openssh.com diffie-hellman-group-exchange-sha256 diffie-hellman-group16-sha512 diffie-hellman-group18-sha512 diffie-hellman-group14-sha256 Server Host Key Algorithms: rsa-sha2-512 rsa-sha2-256 ecdsa-sha2-nistp256 ssh-ed25519 Encryption Algorithms: chacha20-poly1305@openssh.com aes128-ctr aes192-ctr aes256-ctr aes128-gcm@openssh.com aes256-gcm@openssh.com MAC Algorithms: umac-64-etm@openssh.com umac-128-etm@openssh.com hmac-sha2-256-etm@openssh.com hmac-sha2-512-etm@openssh.com hmac-sha1-etm@openssh.com umac-64@openssh.com umac-128@openssh.com hmac-sha2-256 hmac-sha2-512 hmac-sha1 Compression Algorithms: none zlib@openssh.com
-756139511 | 2024-10-03T13:11:13.021293443 / tcp
HTTP/1.1 200 OK Server: nginx/1.18.0 (Ubuntu) Date: Thu, 03 Oct 2024 13:11:12 GMT Content-Type: text/html; charset=utf-8 Content-Length: 45543 Connection: keep-alive Cache-Control: no-store, no-cache Pragma: no-cache Set-Cookie: _C_ETH=1; domain=.msn.com; path=/; secure; httponly Set-Cookie: _C_Auth= Set-Cookie: sptmarket=en-us||us|en-us|en-us|en||cf=9|RefA=D8B4C7BAE2644D869F0D18BB2093AFC0.RefC=2024-10-03T13:11:12Z; expires=Sat, 03 Oct 2026 13:11:12 GMT; path=/ Set-Cookie: USRLOC=; expires=Sat, 03 Oct 2026 13:11:12 GMT; domain=.msn.com; path=/; secure; samesite=none; httponly Set-Cookie: MUID=1C59B6FD4D65602B2453A3F04C956190; expires=Tue, 28 Oct 2025 13:11:12 GMT; domain=.msn.com; path=/; secure; samesite=none Set-Cookie: MUIDB=1C59B6FD4D65602B2453A3F04C956190; expires=Tue, 28 Oct 2025 13:11:12 GMT; path=/; httponly Set-Cookie: _EDGE_S=F=1&SID=3797BFC83EA468CB01BAAAC53F60697E; domain=.msn.com; path=/; httponly Set-Cookie: _EDGE_V=1; expires=Tue, 28 Oct 2025 13:11:12 GMT; domain=.msn.com; path=/; httponly Access-Control-Allow-Methods: HEAD,GET,OPTIONS X-Ceto-Origin-ForwardOnError: https://staticview.msn.com Content-Security-Policy: block-all-mixed-content;connect-src 'self' data: 'unsafe-inline' 'unsafe-eval' https: blob: wss:;default-src 'self' data: 'unsafe-inline' 'unsafe-eval' https: blob: wss: 'report-sample';font-src 'self' data: https: blob: wss: assets.msn.com assets2.msn.com assets.msn.cn assets2.msn.cn;frame-ancestors 'self' int1.msn.com ntp.msn.cn ntp.msn.com windows-int1.msn.com windows.msn.cn windows.msn.com www.bing.com www.msn.com mathsolver.microsoft.com mathsolver-dev.microsoft.com chrome-extension://lklfbkdigihjaaeamncibechhgalldgl;media-src 'self' https: blob:;report-to csp-endpoint;worker-src 'self' https: blob: 'report-sample'; X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1 X-UA-Compatible: IE=Edge;chrome=1 x-fabric-cluster: pmeprodeus nel: {"report_to":"network-errors","max_age":604800,"success_fraction":0.001,"failure_fraction":0.5} report-to: {"group":"network-errors","max_age":604800,"endpoints":[{"url":"https://deff.nelreports.net/api/report?cat=msn"}]},{"group":"csp-endpoint","max_age":86400,"endpoints":[{"url":"https://deff.nelreports.net/api/report"}]} Strict-Transport-Security: max-age=1209600; includeSubDomains; preload X-Ceto-ref: 66fe97f092ce4081ad03e22f79543a6b|AFD:D8B4C7BAE2644D869F0D18BB2093AFC0|2024-10-03T13:11:12.442Z X-Cache: CONFIG_NOCACHE Accept-CH: Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version X-MSEdge-Ref: Ref A: D8B4C7BAE2644D869F0D18BB2093AFC0 Ref B: TEB31EDGE0409 Ref C: 2024-10-03T13:11:12Z
Certificate: Data: Version: 3 (0x2) Serial Number: 03:fd:8c:b7:39:35:ca:45:14:58:07:df:9d:9e:02:35:ac:8e Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Let's Encrypt, CN=R3 Validity Not Before: Mar 17 10:27:37 2024 GMT Not After : Jun 15 10:27:36 2024 GMT Subject: CN=akhbar-tv3.ir.opfgo-d-lkvlkm.online Subject Public Key Info: Public Key Algorithm: id-ecPublicKey Public-Key: (256 bit) pub: 04:c2:95:be:37:1a:68:8a:14:65:e0:d1:f6:a0:cf: ce:2d:9f:ea:05:2b:df:15:e6:8e:4a:c4:40:5f:22: 68:fd:dc:96:aa:13:2e:2b:2d:21:a8:0d:e8:60:67: da:ca:f2:f3:e2:62:06:9f:c4:c5:14:44:07:51:c5: 0b:3a:6a:e5:07 ASN1 OID: prime256v1 NIST CURVE: P-256 X509v3 extensions: X509v3 Key Usage: critical Digital Signature X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 1E:7C:CD:3C:4C:B1:06:2F:05:AF:FB:49:06:FF:88:65:3E:88:9B:9A X509v3 Authority Key Identifier: 14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6 Authority Information Access: OCSP - URI:http://r3.o.lencr.org CA Issuers - URI:http://r3.i.lencr.org/ X509v3 Subject Alternative Name: DNS:akhbar-tv3.ir.opfgo-d-lkvlkm.online X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB: 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73 Timestamp : Mar 17 11:27:37.561 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:83:89:48:DC:14:53:74:D3:76:1A:9E: 28:6B:A9:B3:7A:49:7D:C5:AD:87:F1:A2:19:2D:C6:C2: 15:03:11:D8:6F:02:20:0F:CA:07:9D:D0:FF:6C:AB:9A: D5:11:83:7B:2C:D4:8B:02:C4:A6:01:59:9E:D4:50:F3: D6:DE:72:58:E7:9D:1E Signed Certificate Timestamp: Version : v1 (0x0) Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2: 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B Timestamp : Mar 17 11:27:37.577 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:6F:DE:02:D3:73:45:CD:9A:BA:63:97:12: C2:9D:BB:31:23:A4:55:4A:BE:34:A0:F6:04:3B:A9:26: 3E:33:00:BF:02:21:00:E5:93:F7:CB:7C:4E:14:B1:6C: CC:D9:34:D1:3C:E5:01:0C:EA:F1:BA:82:11:E9:69:F5: 08:3E:D7:CB:AE:09:F5 Signature Algorithm: sha256WithRSAEncryption Signature Value: 5b:60:0c:b2:0f:3f:4c:86:a2:39:7f:90:1b:6b:3e:96:ad:a3: 9b:64:6b:51:19:38:1b:c4:6a:6c:f6:1d:b0:50:38:19:b9:2c: b9:1e:11:26:22:71:3f:db:87:c0:5f:cb:d1:cb:cb:d2:b7:d3: 64:90:74:58:74:02:77:6c:cf:4c:0b:dd:60:14:42:42:4e:df: ce:b5:2d:a8:a5:2b:17:b6:46:af:4c:03:e2:97:d1:77:dd:e1: 19:5a:3d:7b:44:bc:e1:d4:76:c5:77:d1:1e:22:61:a3:c2:f3: c9:99:08:27:c6:8f:e9:d1:af:ae:dd:8b:30:12:02:62:c1:b8: c2:ea:67:b0:0c:25:3c:dd:c1:9a:88:d3:4d:5a:76:99:c9:de: 1d:dc:88:70:00:6e:96:0a:27:a2:2b:7f:4e:d7:7e:be:3e:b2: a2:f0:b6:f1:87:78:4e:1e:c4:18:f9:ad:4c:33:ee:28:5c:75: fd:e0:3d:7e:b6:ee:94:32:dd:ad:f5:31:68:56:00:46:8e:ea: 65:c2:64:43:d9:d0:5e:b9:2f:e1:44:5a:d5:1e:35:40:1d:df: b0:06:a3:aa:ca:a4:8f:03:33:56:c0:68:9e:c8:f5:ee:ef:89: 9e:ef:76:12:f0:e2:c0:0c:9c:2d:d9:8e:8b:c8:4b:2d:67:8f: 54:a1:d8:26
-460484978 | 2024-10-04T14:28:27.5368408880 / tcp
HTTP/1.1 200 OK Server: Werkzeug/2.2.2 Python/3.10.12 Date: Fri, 04 Oct 2024 14:28:27 GMT Content-Type: application/json Content-Length: 30 Connection: close {"error":"Incorrect request"}