-1487715210 | 2024-11-04T23:14:50.444658
22 /
tcp
SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.10
Key type: ecdsa-sha2-nistp256
Key: AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBCvmamI75bYPWX7q7MaQhCjb
lFHGvFlTeSp9qkW8Q1rkkrEYu6yzss/BYYvYdooin0HPe7i45D3H+obAm/UkyNQ=
Fingerprint: 77:12:27:a3:77:a7:96:35:fc:f4:61:06:99:fd:4f:eb
Kex Algorithms:
curve25519-sha256
curve25519-sha256@libssh.org
ecdh-sha2-nistp256
ecdh-sha2-nistp384
ecdh-sha2-nistp521
sntrup761x25519-sha512@openssh.com
diffie-hellman-group-exchange-sha256
diffie-hellman-group16-sha512
diffie-hellman-group18-sha512
diffie-hellman-group14-sha256
kex-strict-s-v00@openssh.com
Server Host Key Algorithms:
rsa-sha2-512
rsa-sha2-256
ecdsa-sha2-nistp256
ssh-ed25519
Encryption Algorithms:
chacha20-poly1305@openssh.com
aes128-ctr
aes192-ctr
aes256-ctr
aes128-gcm@openssh.com
aes256-gcm@openssh.com
MAC Algorithms:
umac-64-etm@openssh.com
umac-128-etm@openssh.com
hmac-sha2-256-etm@openssh.com
hmac-sha2-512-etm@openssh.com
hmac-sha1-etm@openssh.com
umac-64@openssh.com
umac-128@openssh.com
hmac-sha2-256
hmac-sha2-512
hmac-sha1
Compression Algorithms:
none
zlib@openssh.com
-2005143048 | 2024-11-16T13:25:43.893099
80 /
tcp
HTTP/1.1 301 Moved Permanently
Server: GlobaLeaks
Date: Sat, 16 Nov 2024 13:25:43 GMT
Content-Security-Policy: base-uri 'none';default-src 'none';form-action 'none';frame-ancestors 'none';sandbox;
Cross-Origin-Embedder-Policy: require-corp
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Permissions-Policy: camera=(),document-domain=(),fullscreen=(),geolocation=(),microphone=(),serial=(),usb=(),web-share=()
X-Frame-Options: deny
X-Content-Type-Options: nosniff
Cache-Control: no-store
Referrer-Policy: no-referrer
X-Robots-Tag: noindex
X-Check-Tor: False
Location: https://elettronicafm.normaprivacy.it/
Content-Length: 0
936506438 | 2024-11-22T13:15:34.396923
443 /
tcp
<empty title>
HTTP/1.1 200 OK
Transfer-Encoding: chunked
Server: GlobaLeaks
Date: Fri, 22 Nov 2024 13:15:34 GMT
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Onion-Location: http://h7bff726b47nwjajebq3vhlo3xdb4zkzbtdxpmpt6hymql5qptzohhyd.onion/
Content-Security-Policy: base-uri 'none';connect-src 'self';default-src 'none';font-src 'self';form-action 'none';frame-ancestors 'none';frame-src 'self';img-src 'self';media-src 'self';script-src 'self' 'sha256-l4srTx31TC+tE2K4jVVCnC9XfHivkiSs/v+DPWccDDM=';style-src 'self' 'sha256-pru43GdcNLwb4MwzOriCI9/9cKBzE5xeoLWHlKai1As=';
Cross-Origin-Embedder-Policy: require-corp
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Permissions-Policy: camera=(),document-domain=(),fullscreen=(),geolocation=(),microphone=(self),serial=(),usb=(),web-share=()
X-Frame-Options: deny
X-Content-Type-Options: nosniff
Cache-Control: no-store
Referrer-Policy: no-referrer
X-Robots-Tag: noarchive
X-Check-Tor: False
Content-Type: text/html
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:f7:c9:0f:57:3d:7b:9a:60:27:9a:81:1a:a6:37:3b:5e:12
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Oct 11 02:42:13 2024 GMT
Not After : Jan 9 02:42:12 2025 GMT
Subject: CN=elettronicafm.normaprivacy.it
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:33:4a:71:9e:17:7c:5e:be:c9:65:de:b0:fb:59:
0d:c0:19:63:e6:77:65:6e:ef:3a:0c:42:fa:fb:4c:
6f:a4:41:1d:bf:80:55:58:80:48:39:9f:65:8b:4f:
07:42:2e:14:97:cb:11:0f:85:e2:82:8f:1e:12:b9:
ca:d0:2c:5a:25:a1:12:d5:67:f7:fc:29:18:0b:9c:
8b:8b:a4:57:73:2f:d3:e2:a2:d2:00:1c:b8:1a:62:
39:ed:09:bc:64:89:5f
ASN1 OID: secp384r1
NIST CURVE: P-384
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
3C:CC:79:0D:E9:D9:6A:17:DA:AA:45:E4:03:36:C9:2F:B0:46:3A:90
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:elettronicafm.normaprivacy.it
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Oct 11 03:40:43.370 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:F2:1E:EC:98:D9:64:68:5C:B4:34:63:
BA:61:F3:A4:98:8F:68:36:B0:CA:F9:D2:46:56:35:1B:
8D:4B:F3:F3:C9:02:20:52:22:2D:AA:1F:2A:A7:6F:72:
7E:05:5B:9B:0F:CB:BF:76:B1:AB:A9:67:A3:A1:8C:5C:
80:18:E1:DD:EE:C9:6A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Oct 11 03:40:43.424 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:EC:67:F9:F8:4E:E2:0C:13:62:BA:FA:
80:B7:97:34:CB:5A:E1:53:B2:37:CD:E5:C0:B1:B6:64:
94:4C:B0:C2:02:02:21:00:AD:D6:75:D2:A4:0E:38:EA:
60:EF:BD:13:CD:C8:60:88:AE:97:B8:9A:71:FA:94:1F:
C1:E7:93:69:6A:35:B8:B0
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:30:2c:18:9e:b2:de:09:87:35:eb:4a:f4:2b:45:f3:
4b:66:b3:5f:bb:a2:03:ec:57:e8:99:bf:1f:90:8f:f9:9e:07:
cf:ab:e8:35:db:98:d0:1a:c7:ae:5a:10:9f:63:2a:62:02:31:
00:8e:8d:d2:22:3f:37:13:30:bd:f0:a7:cd:b3:f2:0d:c4:a1:
a3:1e:f4:a3:e0:5e:b4:dd:40:b3:12:da:06:f7:43:3e:6f:82:
5e:bc:73:43:95:9c:b0:3c:06:ac:6e:d8:48
2060568571 | 2024-11-22T13:15:30.838879
8080 /
tcp
HTTP/1.1 301 Moved Permanently
Server: GlobaLeaks
Date: Fri, 22 Nov 2024 13:15:30 GMT
Content-Security-Policy: base-uri 'none';default-src 'none';form-action 'none';frame-ancestors 'none';sandbox;
Cross-Origin-Embedder-Policy: require-corp
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Permissions-Policy: camera=(),document-domain=(),fullscreen=(),geolocation=(),microphone=(),serial=(),usb=(),web-share=()
X-Frame-Options: deny
X-Content-Type-Options: nosniff
Cache-Control: no-store
Referrer-Policy: no-referrer
X-Robots-Tag: noindex
X-Check-Tor: False
Location: https://elettronicafm.normaprivacy.it/
Content-Length: 0
936506438 | 2024-11-25T16:03:23.073034
8443 /
tcp
<empty title>
HTTP/1.1 200 OK
Transfer-Encoding: chunked
Server: GlobaLeaks
Date: Mon, 25 Nov 2024 16:03:23 GMT
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Onion-Location: http://h7bff726b47nwjajebq3vhlo3xdb4zkzbtdxpmpt6hymql5qptzohhyd.onion/
Content-Security-Policy: base-uri 'none';connect-src 'self';default-src 'none';font-src 'self';form-action 'none';frame-ancestors 'none';frame-src 'self';img-src 'self';media-src 'self';script-src 'self' 'sha256-l4srTx31TC+tE2K4jVVCnC9XfHivkiSs/v+DPWccDDM=';style-src 'self' 'sha256-pru43GdcNLwb4MwzOriCI9/9cKBzE5xeoLWHlKai1As=';
Cross-Origin-Embedder-Policy: require-corp
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Resource-Policy: same-origin
Permissions-Policy: camera=(),document-domain=(),fullscreen=(),geolocation=(),microphone=(self),serial=(),usb=(),web-share=()
X-Frame-Options: deny
X-Content-Type-Options: nosniff
Cache-Control: no-store
Referrer-Policy: no-referrer
X-Robots-Tag: noarchive
X-Check-Tor: False
Content-Type: text/html
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
03:f7:c9:0f:57:3d:7b:9a:60:27:9a:81:1a:a6:37:3b:5e:12
Signature Algorithm: ecdsa-with-SHA384
Issuer: C=US, O=Let's Encrypt, CN=E5
Validity
Not Before: Oct 11 02:42:13 2024 GMT
Not After : Jan 9 02:42:12 2025 GMT
Subject: CN=elettronicafm.normaprivacy.it
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:33:4a:71:9e:17:7c:5e:be:c9:65:de:b0:fb:59:
0d:c0:19:63:e6:77:65:6e:ef:3a:0c:42:fa:fb:4c:
6f:a4:41:1d:bf:80:55:58:80:48:39:9f:65:8b:4f:
07:42:2e:14:97:cb:11:0f:85:e2:82:8f:1e:12:b9:
ca:d0:2c:5a:25:a1:12:d5:67:f7:fc:29:18:0b:9c:
8b:8b:a4:57:73:2f:d3:e2:a2:d2:00:1c:b8:1a:62:
39:ed:09:bc:64:89:5f
ASN1 OID: secp384r1
NIST CURVE: P-384
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Subject Key Identifier:
3C:CC:79:0D:E9:D9:6A:17:DA:AA:45:E4:03:36:C9:2F:B0:46:3A:90
X509v3 Authority Key Identifier:
9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
Authority Information Access:
OCSP - URI:http://e5.o.lencr.org
CA Issuers - URI:http://e5.i.lencr.org/
X509v3 Subject Alternative Name:
DNS:elettronicafm.normaprivacy.it
X509v3 Certificate Policies:
Policy: 2.23.140.1.2.1
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
Timestamp : Oct 11 03:40:43.370 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:45:02:21:00:F2:1E:EC:98:D9:64:68:5C:B4:34:63:
BA:61:F3:A4:98:8F:68:36:B0:CA:F9:D2:46:56:35:1B:
8D:4B:F3:F3:C9:02:20:52:22:2D:AA:1F:2A:A7:6F:72:
7E:05:5B:9B:0F:CB:BF:76:B1:AB:A9:67:A3:A1:8C:5C:
80:18:E1:DD:EE:C9:6A
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
Timestamp : Oct 11 03:40:43.424 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:EC:67:F9:F8:4E:E2:0C:13:62:BA:FA:
80:B7:97:34:CB:5A:E1:53:B2:37:CD:E5:C0:B1:B6:64:
94:4C:B0:C2:02:02:21:00:AD:D6:75:D2:A4:0E:38:EA:
60:EF:BD:13:CD:C8:60:88:AE:97:B8:9A:71:FA:94:1F:
C1:E7:93:69:6A:35:B8:B0
Signature Algorithm: ecdsa-with-SHA384
Signature Value:
30:65:02:30:2c:18:9e:b2:de:09:87:35:eb:4a:f4:2b:45:f3:
4b:66:b3:5f:bb:a2:03:ec:57:e8:99:bf:1f:90:8f:f9:9e:07:
cf:ab:e8:35:db:98:d0:1a:c7:ae:5a:10:9f:63:2a:62:02:31:
00:8e:8d:d2:22:3f:37:13:30:bd:f0:a7:cd:b3:f2:0d:c4:a1:
a3:1e:f4:a3:e0:5e:b4:dd:40:b3:12:da:06:f7:43:3e:6f:82:
5e:bc:73:43:95:9c:b0:3c:06:ac:6e:d8:48