Hostnames |
autodiscover.mdlz.com email.mdlz.com email365.mdlz.com autodiscover.mondelez.mail.onmicrosoft.com autodiscover.mondelez.onmicrosoft.com namp157-provisioning.internal.outlook.com pod51222.outlook.com pod51222-pri.outlook.com pod51222ip.outlook.com pod51222psh.outlook.com |
Domains | mdlz.com onmicrosoft.com outlook.com |
Country | United States |
City | San Antonio |
Organization | Microsoft Corporation |
ISP | Microsoft Corporation |
ASN | AS8075 |
Operating System | Windows |
-976101545 | 2024-11-04T17:11:43.50074925 / tcp
220 SA0P157CA0017.outlook.office365.com Microsoft ESMTP MAIL Service ready at Mon, 4 Nov 2024 17:11:38 +0000 [08DCFCA4DDD2FD0E] 250-SA0P157CA0017.outlook.office365.com Hello [224.10.112.4] 250-SIZE 157286400 250-PIPELINING 250-DSN 250-ENHANCEDSTATUSCODES 250-STARTTLS 250-8BITMIME 250-BINARYMIME 250-CHUNKING 250 SMTPUTF8
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc
1633052542 | 2024-11-05T19:21:43.85832780 / tcp
HTTP/1.1 301 Moved Permanently Cache-Control: no-cache Pragma: no-cache Location: https://52.96.233.198/owa/ Server: Microsoft-IIS/10.0 request-id: d1226555-cdb1-3f35-c660-6caef96d6730 X-FEServer: SA0P157CA0017 X-RequestId: f75ad667-6e8a-481c-9b15-db34e051b61a X-FEProxyInfo: SA0P157CA0017.NAMP157.PROD.OUTLOOK.COM X-FEEFZInfo: SAT MS-CV: VWUi0bHNNT/GYGyu+W1nMA.0 X-Powered-By: ASP.NET X-FEServer: SA0P157CA0017 Date: Tue, 05 Nov 2024 19:21:43 GMT Connection: close Content-Length: 0
111047096 | 2024-11-04T03:06:00.473173110 / tcp
+OK The Microsoft Exchange POP3 service is ready. [UwBBADAAUAAxADUANwBDAEEAMAAwADEAOAAuAE4AQQBNAFAAMQA1ADcALgBQAFIATwBEAC4ATwBVAFQATABPAE8ASwAuAEMATwBNAA==] +OK TOP UIDL STLS .
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc
695148525 | 2024-11-05T18:44:19.187866143 / tcp
* OK The Microsoft Exchange IMAP4 service is ready. [UwBBADAAUAAxADUANwBDAEEAMAAwADEAOAAuAE4AQQBNAFAAMQA1ADcALgBQAFIATwBEAC4ATwBVAFQATABPAE8ASwAuAEMATwBNAA==] * CAPABILITY IMAP4 IMAP4rev1 LOGINDISABLED STARTTLS SASL-IR UIDPLUS ID UNSELECT CHILDREN IDLE NAMESPACE LITERAL+ A001 OK CAPABILITY completed. * ID ("name" "Microsoft.Exchange.Imap4.Imap4Server" "version" "15.20") A002 OK ID completed A003 BAD Command Error. 12 * BYE Microsoft Exchange Server IMAP4 server signing off. A004 OK LOGOUT completed.
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc
167618877 | 2024-11-05T19:21:47.190391443 / tcp
HTTP/1.1 302 Content-Length: 778 Content-Type: text/html; charset=utf-8 Location: https://login.microsoftonline.com/common/oauth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&redirect_uri=https%3a%2f%2f52.96.233.198%2fowa%2f&resource=00000002-0000-0ff1-ce00-000000000000&response_mode=form_post&response_type=code+id_token&scope=openid&msafed=0&msaredir=0&client-request-id=bceb4fc5-3a7d-a4ca-dc53-4b2c1108c351&protectedtoken=true&claims=%7b%22id_token%22%3a%7b%22xms_cc%22%3a%7b%22values%22%3a%5b%22CP1%22%5d%7d%7d%7d&nonce=638664313070890255.8c078957-bd98-4871-aa3f-438cedaed20b&state=DctLFoAgCEBRrNNySBQVXA5-mjZs-zG4b_YCAJzucIE8II21tcKJSUg75VpvnSTaq-BYXbGoJDTjBwvr3Mv2yjSCv1d8P4s_ Server: Microsoft-IIS/10.0 request-id: bceb4fc5-3a7d-a4ca-dc53-4b2c1108c351 Strict-Transport-Security: max-age=31536000; includeSubDomains; preload X-CalculatedBETarget: SJ0P157MB0237.NAMP157.PROD.OUTLOOK.COM X-BackEndHttpStatus: 302 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" Set-Cookie: ClientId=A8D8498FAC1141BBA4B051EFF73373E8; expires=Wed, 05-Nov-2025 19:21:47 GMT; path=/;SameSite=None; secure Set-Cookie: ClientId=A8D8498FAC1141BBA4B051EFF73373E8; expires=Wed, 05-Nov-2025 19:21:47 GMT; path=/;SameSite=None; secure Set-Cookie: OIDC=1; expires=Mon, 05-May-2025 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: RoutingKeyCookie=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.token.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.token.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.id_token.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.code.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_nonce.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_correlation_id=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.tokenPostPath=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.id_token.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.code.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_nonce.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_correlation_id=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.tokenPostPath=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.nonce.v3.DG9d5bWbaNJgVX6uaUi_BV-pCN8Q39i375QsMASIJ04=638664313070890255.8c078957-bd98-4871-aa3f-438cedaed20b; expires=Tue, 05-Nov-2024 20:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: HostSwitchPrg=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OptInPrg=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: SuiteServiceProxyKey=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: ClientId=A8D8498FAC1141BBA4B051EFF73373E8; expires=Wed, 05-Nov-2025 19:21:47 GMT; path=/;SameSite=None; secure Set-Cookie: OIDC=1; expires=Mon, 05-May-2025 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: RoutingKeyCookie=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.token.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.token.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.id_token.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.code.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_nonce.v1=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_correlation_id=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.tokenPostPath=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.id_token.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.code.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_nonce.v1=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.idp_correlation_id=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.tokenPostPath=; domain=52.96.233.198; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OpenIdConnect.nonce.v3.DG9d5bWbaNJgVX6uaUi_BV-pCN8Q39i375QsMASIJ04=638664313070890255.8c078957-bd98-4871-aa3f-438cedaed20b; expires=Tue, 05-Nov-2024 20:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: HostSwitchPrg=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: OptInPrg=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: SuiteServiceProxyKey=; expires=Sat, 05-Nov-1994 19:21:47 GMT; path=/;SameSite=None; secure; HttpOnly Set-Cookie: X-OWA-RedirectHistory=ArLym14BDy1PF8_93Ag; expires=Wed, 06-Nov-2024 01:23:47 GMT; path=/;SameSite=None; secure; HttpOnly X-RUM-Validated: 1 X-RUM-NotUpdateQueriedPath: 1 X-RUM-NotUpdateQueriedDbCopy: 1 X-Content-Type-Options: nosniff X-BeSku: WCS6 X-OWA-DiagnosticsInfo: 4;0;0; X-BackEnd-Begin: 2024-11-05T19:21:47.089 X-BackEnd-End: 2024-11-05T19:21:47.089 X-DiagInfo: SJ0P157MB0237 X-BEServer: SJ0P157MB0237 X-UA-Compatible: IE=EmulateIE7 X-ResponseOrigin: OwaAppPool X-Proxy-RoutingCorrectness: 1 Report-To: {"group":"NelOfficeUpload1","max_age":7200,"endpoints":[{"url":"https://exo.nel.measure.office.net/api/report?TenantId=&FrontEnd=Cafe&DestinationEndpoint=SAT&RemoteIP=207.90.244.0&Environment=MT"}],"include_subdomains":true} NEL: {"report_to":"NelOfficeUpload1","max_age":7200,"include_subdomains":true,"failure_fraction":1.0,"success_fraction":0.01} Alt-Svc: h3=":443";ma=2592000,h3-29=":443";ma=2592000 X-Proxy-BackendServerStatus: 302 X-FirstHopCafeEFZ: SAT X-FEProxyInfo: SA0P157CA0014.NAMP157.PROD.OUTLOOK.COM X-FEEFZInfo: SAT X-FEServer: SA0P157CA0014 Date: Tue, 05 Nov 2024 19:21:46 GMT
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc
483740317 | 2024-11-05T16:37:34.051605587 / tcp
220 SA0P157CA0014.outlook.office365.com Microsoft ESMTP MAIL Service ready at Tue, 5 Nov 2024 16:37:28 +0000 [08DCFD861EB26D7E] 250-SA0P157CA0014.outlook.office365.com Hello [224.10.112.4] 250-SIZE 157286400 250-PIPELINING 250-DSN 250-ENHANCEDSTATUSCODES 250-STARTTLS 250-8BITMIME 250-BINARYMIME 250-CHUNKING 250 SMTPUTF8
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc
493423809 | 2024-10-27T18:05:46.284897993 / tcp
* OK The Microsoft Exchange IMAP4 service is ready. [UwBBADAAUAAxADUANwBDAEEAMAAwADEANwAuAE4AQQBNAFAAMQA1ADcALgBQAFIATwBEAC4ATwBVAFQATABPAE8ASwAuAEMATwBNAA==] * CAPABILITY IMAP4 IMAP4rev1 AUTH=PLAIN AUTH=XOAUTH2 SASL-IR UIDPLUS ID UNSELECT CHILDREN IDLE NAMESPACE LITERAL+ A001 OK CAPABILITY completed. * ID ("name" "Microsoft.Exchange.Imap4.Imap4Server" "version" "15.20") A002 OK ID completed A003 BAD Command Error. 12 * BYE Microsoft Exchange Server IMAP4 server signing off. A004 OK LOGOUT completed.
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc
1769593300 | 2024-10-30T20:52:02.914810995 / tcp
+OK The Microsoft Exchange POP3 service is ready. [UwBBADAAUAAxADUANwBDAEEAMAAwADEANAAuAE4AQQBNAFAAMQA1ADcALgBQAFIATwBEAC4ATwBVAFQATABPAE8ASwAuAEMATwBNAA==] +OK TOP UIDL SASL PLAIN XOAUTH2 USER .
Certificate: Data: Version: 3 (0x2) Serial Number: 65:44:3b:52:10:43:14:d9:ee:a7:03:f7:ef:70:42:d3 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=Entrust, Inc., OU=See www.entrust.net\/legal-terms, OU=(c) 2012 Entrust, Inc. - for authorized use only, CN=Entrust Certification Authority - L1K Validity Not Before: Sep 4 17:52:56 2024 GMT Not After : Sep 4 17:52:55 2025 GMT Subject: C=US, ST=New Jersey, L=East Hanover, O=Mondelez International, Inc, CN=email.mdlz.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:c1:ac:70:b0:14:8c:bf:aa:b0:1e:22:e5:47:96: 59:9b:bc:0b:ec:3b:cc:cb:a2:19:3a:1c:4a:92:c5: 03:5f:6b:bc:ff:41:a7:f8:10:af:eb:3a:44:ee:3b: f3:4b:3f:89:07:ad:c2:ac:c8:ec:50:b4:61:cc:fd: 2f:03:e9:b3:86:f8:8d:93:d2:56:96:5c:ce:25:af: 40:a0:70:e2:c3:2e:f4:91:ce:e1:2c:df:ba:7c:5d: a2:12:58:6b:2c:bf:57:52:c1:69:a4:af:0e:63:76: 7a:24:f1:39:92:df:89:25:99:c4:5d:87:8c:6c:31: fc:68:af:b9:e9:33:6c:28:83:9b:5e:54:59:2a:c2: c6:6e:25:2b:c0:1b:01:57:c2:3d:b6:96:72:e1:fc: 10:ad:65:39:e6:95:ce:ca:5d:8e:54:5d:a3:d8:7e: 50:96:f2:41:99:33:ae:36:9f:8a:cb:a4:b4:6b:c3: f1:53:4a:9b:31:02:2c:82:5a:9b:37:b0:72:90:2a: 94:2a:20:72:1c:88:3e:bb:13:9a:c5:f6:5c:7a:bd: 02:d0:87:2a:78:e6:6c:b5:2b:68:0b:41:ab:94:89: a8:4b:57:c7:97:94:00:47:80:e0:9d:ff:c8:e1:d1: 4e:22:0c:0d:a4:40:a8:9f:da:d2:ef:dc:41:ac:68: 3a:19 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:FALSE X509v3 Subject Key Identifier: 04:67:B7:65:FB:9F:46:E9:3A:B8:74:43:75:BF:0B:0E:7F:AA:B9:1A X509v3 Authority Key Identifier: 82:A2:70:74:DD:BC:53:3F:CF:7B:D4:F7:CD:7F:A7:60:C6:0A:4C:BF Authority Information Access: OCSP - URI:http://ocsp.entrust.net CA Issuers - URI:http://aia.entrust.net/l1k-chain256.cer X509v3 CRL Distribution Points: Full Name: URI:http://crl.entrust.net/level1k.crl X509v3 Subject Alternative Name: DNS:email.mdlz.com, DNS:*.pod51222.outlook.com, DNS:autodiscover.mdlz.com, DNS:autodiscover.mondelez.mail.onmicrosoft.com, DNS:autodiscover.mondelez.onmicrosoft.com, DNS:email365.mdlz.com, DNS:namp157-provisioning.internal.outlook.com, DNS:pod51222.outlook.com, DNS:pod51222ip.outlook.com, DNS:pod51222-pri.outlook.com, DNS:pod51222psh.outlook.com X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 2.23.140.1.2.2 CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 4 17:52:56.777 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:05:81:C5:30:2A:95:B6:17:9D:3A:D7:E4: 3E:E1:AC:0E:DB:77:DB:44:4D:80:AB:59:F1:3C:F7:AF: 86:3A:E2:02:02:20:5F:22:46:D2:0E:90:75:6E:F3:52: E9:B4:6D:04:75:BE:79:EA:FA:B2:FF:72:F7:48:67:32: 60:E1:5A:53:62:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC: 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34 Timestamp : Sep 4 17:52:56.774 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:6A:1B:FE:AE:B6:F7:AF:05:C7:AE:46:C4: D6:8C:4B:E2:25:00:03:7E:9F:BA:2F:2A:96:F8:93:F5: 84:0D:F0:ED:02:20:42:72:6F:30:DF:93:31:50:E8:17: 3D:2D:0B:0E:42:6C:79:3B:36:BA:D7:60:91:7F:51:C5: 00:D4:E3:BC:AF:E6 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 4 17:52:56.791 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:27:1C:04:08:F0:3B:96:E6:DC:A8:8F:A0: 9E:3B:D2:96:0F:0D:E9:8C:F6:D0:9E:03:6C:D8:1C:CF: FA:19:0E:48:02:20:4D:1B:39:9E:47:BD:C9:6F:3D:47: A1:12:3E:26:73:9C:B1:73:D1:85:7F:0A:4A:4E:4F:F2: 15:E4:08:17:C1:9C Signature Algorithm: sha256WithRSAEncryption Signature Value: d2:95:5f:ae:0c:c3:69:60:11:c4:f9:c0:bf:5d:a6:2f:6c:6e: 75:29:9d:13:5c:29:86:ee:a1:20:7e:e5:c6:04:3b:51:97:88: 5c:68:59:bf:cc:04:4e:ad:de:f8:61:27:f6:de:4c:c2:a9:01: 3f:18:5c:96:63:94:50:d2:56:6d:59:4e:75:d1:a9:4a:cd:34: 29:fc:45:02:ad:f7:68:7d:02:85:80:c5:e0:b7:2f:17:b3:8f: f4:da:36:e2:2e:60:29:93:60:e5:2c:02:62:e4:3c:4a:87:7d: 5b:9e:46:89:d7:04:09:1c:6e:d7:e2:a9:aa:d8:f2:63:0a:b0: 28:8c:23:d0:dd:ba:95:52:1e:3a:4c:c9:c8:93:67:a7:0f:60: 2b:44:f4:c4:59:28:fd:56:44:d4:1f:22:58:bf:94:be:9e:9d: 43:42:6c:72:bc:66:f8:80:11:d5:38:eb:3d:ec:90:fc:af:36: da:f7:3f:7c:0e:de:2f:e4:2c:60:81:08:2b:e1:97:0f:a6:8f: 97:52:bf:c7:bd:04:82:66:af:db:76:75:37:41:0e:40:29:95: fe:e2:49:87:89:a5:68:34:cc:33:ad:fd:e1:a4:6c:26:42:b2: dd:11:8e:8c:8b:e8:70:94:1e:24:e3:2f:21:1f:39:5d:c3:d0: c0:ff:ee:fc