Hostnames |
ec2-52-6-167-190.compute-1.amazonaws.com gtbmadmin.brickftp.com gtbmadmin.exavault.com gtbmadmin.files.com files.gtbm.com |
Domains | amazonaws.com brickftp.com exavault.com files.com gtbm.com |
Cloud Provider | Amazon |
Cloud Region | us-east-1 |
Cloud Service | EC2 |
Country | United States |
City | Ashburn |
Organization | Amazon Technologies Inc. |
ISP | Amazon.com, Inc. |
ASN | AS14618 |
2058184845 | 2024-10-30T18:31:19.18692221 / tcp
220 Service ready for new user. 530 Authentication failed. 530 Access denied.
Certificate: Data: Version: 3 (0x2) Serial Number: 03:1f:76:06:08:31:4a:66:96:5d:a2:34:26:bb:db:d4:6e:61 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Let's Encrypt, CN=R11 Validity Not Before: Oct 29 23:04:54 2024 GMT Not After : Jan 27 23:04:53 2025 GMT Subject: CN=files.gtbm.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (4096 bit) Modulus: 00:e6:ee:97:ed:a0:38:8c:6f:81:69:86:a2:9e:f9: 65:2c:e2:bb:e2:56:a2:5e:38:d7:35:a4:44:7b:ec: 3c:7b:11:50:e4:4b:75:66:91:92:0d:e7:30:fd:cf: f8:3b:e6:97:eb:cb:4c:67:ef:7f:5b:0c:a7:f2:c2: 1a:df:14:0f:c4:15:11:35:9d:26:bb:b2:14:06:09: fa:55:e8:d2:d9:d0:4e:81:31:68:41:09:28:0c:0a: cf:50:59:9d:06:ed:2a:f0:66:20:52:8b:5a:bf:23: ae:83:d1:5a:c4:40:ef:e4:2b:d2:46:f2:ad:bb:8f: ef:d4:e6:9b:b6:b4:c0:31:90:19:7d:f5:f6:2b:38: 15:61:b4:94:2a:8b:bb:51:09:25:1c:13:50:85:36: 18:b4:02:3d:92:37:5a:02:c0:33:a1:37:76:00:b1: 6e:dd:f9:32:42:fb:49:88:95:b1:5f:35:d7:a3:e0: e8:66:33:be:fe:f9:a8:0d:f2:e4:d3:a8:7a:6d:cd: 6d:08:ab:d6:d0:54:4d:8f:00:f6:85:df:b7:d1:50: 11:ca:30:73:72:87:0f:4b:c5:a1:57:0c:f0:02:22: 77:da:81:43:c2:c5:be:ae:2f:ef:3e:17:72:f6:82: fa:d4:02:b9:26:9d:9b:81:c1:b5:9d:2d:8f:a7:b4: 14:0b:8d:77:c0:7f:bc:a3:60:0c:3b:57:96:f6:19: 5f:b8:d3:0a:5e:aa:64:fd:a9:0d:dd:1f:05:ad:7f: f3:7a:82:a8:36:54:27:d4:82:ac:73:95:6a:bf:d0: b8:13:d4:ef:ff:fa:c3:48:2e:90:85:4c:7b:64:68: 98:58:34:db:45:5a:52:54:d6:3e:ca:3d:d1:44:04: 61:64:42:a0:8a:e1:b7:9b:49:75:f3:2f:58:51:41: 1f:8b:6c:56:09:32:a8:b0:83:61:25:23:e2:48:49: f6:80:bc:88:ea:9d:95:27:b6:a9:9f:a0:f0:04:2d: e7:3f:9a:e0:2f:35:9f:46:51:60:58:ea:22:a7:0a: 55:64:09:fc:00:e9:61:70:3b:b4:b8:9e:8a:a7:6a: 28:4a:e7:ab:42:0e:04:d3:ad:a6:6f:c4:cf:ec:26: 19:3b:10:e2:80:a9:14:25:a0:9b:5f:d1:d7:fa:84: 9d:7c:73:2f:6f:f9:f9:d1:73:d9:9c:4e:ba:e0:b0: 72:9a:4e:26:27:4d:05:84:17:8c:49:df:7c:ad:f4: 83:61:75:93:a6:0f:7a:82:e4:06:29:7e:13:80:d4: 9e:76:2b:f5:ab:95:7b:7f:a3:ae:06:93:d4:c4:e8: 30:ec:1a:ad:d0:47:ba:5b:32:9b:c5:f5:ae:0e:e3: 7d:fb:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 77:C9:6A:DC:64:A1:CF:2C:3C:9A:74:98:85:C9:6F:A1:48:F3:C2:80 X509v3 Authority Key Identifier: C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9 Authority Information Access: OCSP - URI:http://r11.o.lencr.org CA Issuers - URI:http://r11.i.lencr.org/ X509v3 Subject Alternative Name: DNS:files.gtbm.com, DNS:gtbmadmin.brickftp.com, DNS:gtbmadmin.exavault.com, DNS:gtbmadmin.files.com X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53: D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7 Timestamp : Oct 30 00:03:24.265 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:96:72:1C:90:75:27:57:05:EB:00:36: FE:1B:DE:2D:57:D2:53:C4:82:A5:3E:F6:53:B6:BB:7B: 12:5A:91:93:F1:02:20:63:9C:93:FC:45:A1:3E:8E:87: E0:82:F2:CE:A2:A2:3C:29:74:C5:6E:A9:98:12:5C:7E: 81:4F:20:ED:8A:25:C3 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9: 1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08 Timestamp : Oct 30 00:03:24.329 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:8D:6E:21:50:14:91:DC:09:BF:C2:5C: A6:CE:ED:FE:F8:B6:10:C8:89:D9:48:73:99:8F:51:4B: B7:40:B2:27:8F:02:21:00:E5:B8:0B:64:86:09:81:FA: 6C:91:19:61:52:7D:6F:60:41:85:AB:5F:91:E4:62:2E: B8:97:1B:A9:5F:29:FB:80 Signature Algorithm: sha256WithRSAEncryption Signature Value: ad:e5:2a:ef:d3:de:79:e6:43:20:e7:2e:3a:b2:62:8d:25:98: 1b:fd:be:41:4c:6b:f9:41:a4:0a:af:82:ad:e9:0f:f0:3e:0c: 53:0a:c0:c0:98:8c:66:5d:e7:69:aa:73:2e:62:8a:e9:f0:e6: 87:6c:ab:c9:24:ac:d7:b4:3f:78:93:c6:6a:e6:53:87:a8:30: 17:4e:89:fa:53:42:ba:05:d1:04:dc:06:32:c4:48:b7:8b:ec: aa:ee:7b:80:73:a6:5f:40:ab:aa:da:de:a9:35:71:37:2d:a8: 45:8d:31:35:c0:95:f6:fb:5d:65:64:20:4c:ee:4c:2f:4e:41: cb:16:68:dc:5a:9c:ab:f5:2b:4c:bf:8d:97:8c:5b:f5:81:ce: 22:cd:74:6f:be:24:3d:fd:f0:90:6e:a5:a7:78:b6:36:fb:fa: bb:ad:89:d2:dc:8a:6a:89:a5:33:c6:31:c2:bd:6a:53:88:6f: 51:a2:46:f2:63:e6:6b:b0:f7:92:66:0e:bb:49:3e:e1:aa:11: f8:c4:24:5b:72:25:74:db:33:c8:3f:c6:45:1a:5d:c1:15:0d: 03:5d:03:d5:08:c1:b9:79:a8:c1:46:2f:3c:a7:44:e0:2c:8c: d6:5f:cf:65:49:92:19:8d:e0:ba:89:97:a7:c0:52:99:4f:99: a0:34:c5:4f
-1355278202 | 2024-10-25T07:02:55.53210280 / tcp
HTTP/1.1 301 Moved Permanently Server: files.com Date: Fri, 25 Oct 2024 07:02:55 GMT Content-Type: text/html Content-Length: 166 Connection: keep-alive Location: https://52.6.167.190/ Cache-Control: no-cache X-Request-ID: 983cbfcfa4fdf4b79fb6e559d14af38f
753423489 | 2024-11-02T08:43:26.076303443 / tcp
HTTP/1.1 200 OK Server: files.com Date: Sat, 02 Nov 2024 08:43:25 GMT Content-Type: text/html Transfer-Encoding: chunked Connection: keep-alive Strict-Transport-Security: max-age=631139040; includeSubdomains; preload; Cache-Control: no-store X-Files-Frontend-App: true x-content-type-options: nosniff x-xss-protection: 1; mode=block x-download-options: noopen x-frame-options: SAMEORIGIN x-permitted-cross-domain-policies: none referrer-policy: same-origin Expect-CT: enforce, max-age=60, report-uri="https://actionverb.report-uri.com/r/d/ct/enforce" Permissions-Policy: geolocation=(), midi=(), sync-xhr=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(self), payment=() X-Request-ID: 3889d11b24ce0889557ddadcc8a31062 Content-Security-Policy: base-uri 'self'; block-all-mixed-content ; child-src brickftp.com go.oncehub.com 'self'; connect-src 'self' *.files.com *.s3.amazonaws.com s3.amazonaws.com s3-af-south-1.amazonaws.com s3-ap-northeast-1.amazonaws.com s3-ap-northeast-2.amazonaws.com s3-ap-northeast-3.amazonaws.com s3-ap-south-1.amazonaws.com s3-ap-southeast-1.amazonaws.com s3-ap-southeast-2.amazonaws.com s3-ca-central-1.amazonaws.com s3-eu-central-1.amazonaws.com s3-eu-north-1.amazonaws.com s3-eu-south-1.amazonaws.com s3-eu-west-1.amazonaws.com s3-eu-west-2.amazonaws.com s3-eu-west-3.amazonaws.com s3-me-south-1.amazonaws.com s3-sa-east-1.amazonaws.com s3-us-east-1.amazonaws.com s3-us-east-2.amazonaws.com s3-us-gov-east-1.amazonaws.com s3-us-gov-west-1.amazonaws.com s3-us-west-1.amazonaws.com s3-us-west-2.amazonaws.com staging-wopi.files.com wopi.files.com; font-src 'self' data:; form-action 'self'; frame-src 'self' go.oncehub.com staging-wopi.files.com wopi.files.com jssdk.files.com; img-src 'self' data: blob: https:; media-src 'self' *.amazonaws.com *.wasabisys.com *.files.com; object-src 'self'; script-src 'self' 'nonce-pe0ZKuEz1vSZhFUthE6fFagXpv3sd35Z'; script-src-elem 'self'; style-src 'self' 'unsafe-inline'; upgrade-insecure-requests ; worker-src 'self'; report-uri https://actionverb.report-uri.io/r/default/csp/enforce
Certificate: Data: Version: 3 (0x2) Serial Number: 03:1f:76:06:08:31:4a:66:96:5d:a2:34:26:bb:db:d4:6e:61 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Let's Encrypt, CN=R11 Validity Not Before: Oct 29 23:04:54 2024 GMT Not After : Jan 27 23:04:53 2025 GMT Subject: CN=files.gtbm.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (4096 bit) Modulus: 00:e6:ee:97:ed:a0:38:8c:6f:81:69:86:a2:9e:f9: 65:2c:e2:bb:e2:56:a2:5e:38:d7:35:a4:44:7b:ec: 3c:7b:11:50:e4:4b:75:66:91:92:0d:e7:30:fd:cf: f8:3b:e6:97:eb:cb:4c:67:ef:7f:5b:0c:a7:f2:c2: 1a:df:14:0f:c4:15:11:35:9d:26:bb:b2:14:06:09: fa:55:e8:d2:d9:d0:4e:81:31:68:41:09:28:0c:0a: cf:50:59:9d:06:ed:2a:f0:66:20:52:8b:5a:bf:23: ae:83:d1:5a:c4:40:ef:e4:2b:d2:46:f2:ad:bb:8f: ef:d4:e6:9b:b6:b4:c0:31:90:19:7d:f5:f6:2b:38: 15:61:b4:94:2a:8b:bb:51:09:25:1c:13:50:85:36: 18:b4:02:3d:92:37:5a:02:c0:33:a1:37:76:00:b1: 6e:dd:f9:32:42:fb:49:88:95:b1:5f:35:d7:a3:e0: e8:66:33:be:fe:f9:a8:0d:f2:e4:d3:a8:7a:6d:cd: 6d:08:ab:d6:d0:54:4d:8f:00:f6:85:df:b7:d1:50: 11:ca:30:73:72:87:0f:4b:c5:a1:57:0c:f0:02:22: 77:da:81:43:c2:c5:be:ae:2f:ef:3e:17:72:f6:82: fa:d4:02:b9:26:9d:9b:81:c1:b5:9d:2d:8f:a7:b4: 14:0b:8d:77:c0:7f:bc:a3:60:0c:3b:57:96:f6:19: 5f:b8:d3:0a:5e:aa:64:fd:a9:0d:dd:1f:05:ad:7f: f3:7a:82:a8:36:54:27:d4:82:ac:73:95:6a:bf:d0: b8:13:d4:ef:ff:fa:c3:48:2e:90:85:4c:7b:64:68: 98:58:34:db:45:5a:52:54:d6:3e:ca:3d:d1:44:04: 61:64:42:a0:8a:e1:b7:9b:49:75:f3:2f:58:51:41: 1f:8b:6c:56:09:32:a8:b0:83:61:25:23:e2:48:49: f6:80:bc:88:ea:9d:95:27:b6:a9:9f:a0:f0:04:2d: e7:3f:9a:e0:2f:35:9f:46:51:60:58:ea:22:a7:0a: 55:64:09:fc:00:e9:61:70:3b:b4:b8:9e:8a:a7:6a: 28:4a:e7:ab:42:0e:04:d3:ad:a6:6f:c4:cf:ec:26: 19:3b:10:e2:80:a9:14:25:a0:9b:5f:d1:d7:fa:84: 9d:7c:73:2f:6f:f9:f9:d1:73:d9:9c:4e:ba:e0:b0: 72:9a:4e:26:27:4d:05:84:17:8c:49:df:7c:ad:f4: 83:61:75:93:a6:0f:7a:82:e4:06:29:7e:13:80:d4: 9e:76:2b:f5:ab:95:7b:7f:a3:ae:06:93:d4:c4:e8: 30:ec:1a:ad:d0:47:ba:5b:32:9b:c5:f5:ae:0e:e3: 7d:fb:13 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 77:C9:6A:DC:64:A1:CF:2C:3C:9A:74:98:85:C9:6F:A1:48:F3:C2:80 X509v3 Authority Key Identifier: C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9 Authority Information Access: OCSP - URI:http://r11.o.lencr.org CA Issuers - URI:http://r11.i.lencr.org/ X509v3 Subject Alternative Name: DNS:files.gtbm.com, DNS:gtbmadmin.brickftp.com, DNS:gtbmadmin.exavault.com, DNS:gtbmadmin.files.com X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53: D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7 Timestamp : Oct 30 00:03:24.265 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:96:72:1C:90:75:27:57:05:EB:00:36: FE:1B:DE:2D:57:D2:53:C4:82:A5:3E:F6:53:B6:BB:7B: 12:5A:91:93:F1:02:20:63:9C:93:FC:45:A1:3E:8E:87: E0:82:F2:CE:A2:A2:3C:29:74:C5:6E:A9:98:12:5C:7E: 81:4F:20:ED:8A:25:C3 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9: 1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08 Timestamp : Oct 30 00:03:24.329 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:8D:6E:21:50:14:91:DC:09:BF:C2:5C: A6:CE:ED:FE:F8:B6:10:C8:89:D9:48:73:99:8F:51:4B: B7:40:B2:27:8F:02:21:00:E5:B8:0B:64:86:09:81:FA: 6C:91:19:61:52:7D:6F:60:41:85:AB:5F:91:E4:62:2E: B8:97:1B:A9:5F:29:FB:80 Signature Algorithm: sha256WithRSAEncryption Signature Value: ad:e5:2a:ef:d3:de:79:e6:43:20:e7:2e:3a:b2:62:8d:25:98: 1b:fd:be:41:4c:6b:f9:41:a4:0a:af:82:ad:e9:0f:f0:3e:0c: 53:0a:c0:c0:98:8c:66:5d:e7:69:aa:73:2e:62:8a:e9:f0:e6: 87:6c:ab:c9:24:ac:d7:b4:3f:78:93:c6:6a:e6:53:87:a8:30: 17:4e:89:fa:53:42:ba:05:d1:04:dc:06:32:c4:48:b7:8b:ec: aa:ee:7b:80:73:a6:5f:40:ab:aa:da:de:a9:35:71:37:2d:a8: 45:8d:31:35:c0:95:f6:fb:5d:65:64:20:4c:ee:4c:2f:4e:41: cb:16:68:dc:5a:9c:ab:f5:2b:4c:bf:8d:97:8c:5b:f5:81:ce: 22:cd:74:6f:be:24:3d:fd:f0:90:6e:a5:a7:78:b6:36:fb:fa: bb:ad:89:d2:dc:8a:6a:89:a5:33:c6:31:c2:bd:6a:53:88:6f: 51:a2:46:f2:63:e6:6b:b0:f7:92:66:0e:bb:49:3e:e1:aa:11: f8:c4:24:5b:72:25:74:db:33:c8:3f:c6:45:1a:5d:c1:15:0d: 03:5d:03:d5:08:c1:b9:79:a8:c1:46:2f:3c:a7:44:e0:2c:8c: d6:5f:cf:65:49:92:19:8d:e0:ba:89:97:a7:c0:52:99:4f:99: a0:34:c5:4f