Hostnames |
ec2-54-206-227-229.ap-southeast-2.compute.amazonaws.com treasurebox.co.nz |
Domains | amazonaws.com treasurebox.co.nz |
Cloud Provider | Amazon |
Cloud Region | ap-southeast-2 |
Cloud Service | EC2 |
Country | Australia |
City | Sydney |
Organization | Amazon.com, Inc. |
ISP | Amazon.com, Inc. |
ASN | AS16509 |
HTTP/1.1 301 Moved Permanently Server: awselb/2.0 Date: Wed, 08 Jan 2025 04:03:50 GMT Content-Type: text/html Content-Length: 134 Connection: keep-alive Location: https://54.206.227.229:443/
HTTP/1.1 302 Found Date: Thu, 16 Jan 2025 12:46:56 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: keep-alive Server: nginx Set-Cookie: PHPSESSID=f9vmniqh1f1pb727chfl493gaf; expires=Thu, 16 Jan 2025 14:46:56 GMT; Max-Age=7200; path=/; domain=54.206.227.229; secure; HttpOnly; SameSite=Lax Set-Cookie: amga4_customer=%7B%22customerGroup%22%3A%22NOT%20LOGGED%20IN%22%2C%22customerId%22%3Anull%7D; expires=Fri, 16 Jan 2026 12:46:56 GMT; Max-Age=31536000; path=/; domain=54.206.227.229; secure; SameSite=Lax Location: https://www.treasurebox.co.nz/ Pragma: no-cache Cache-Control: max-age=0, must-revalidate, no-cache, no-store Expires: Tue, 16 Jan 2024 12:46:56 GMT X-Magento-Cache-Control: max-age=0, must-revalidate, no-cache, no-store X-Magento-Cache-Debug: MISS Content-Security-Policy: font-src *.squarecdn.com https://www.googletagmanager.com *.googleapis.com *.gstatic.com *.cloudflare.com *.twitter.com *.typekit.net *.twimg.com *.trustedshops.com *.treasurebox.co.nz 'self' https://assets.brevo.com https://*.klaviyo.com *.fontawesome.com maxcdn.bootstrapcdn.com www.searchanise.com *.searchserverapi.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.twitter.com 'self' *.treasurebox.co.nz www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.searchanise.com *.searchserverapi.com *.paymentexpress.com *.windcave.com 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com https://www.google.com/recaptcha/ widgets.sandbox.afterpay.com *.cash.app www.google.com *.twitter.com *.pinterest.com *.doubleclick.net 'self' *.afterpay.com *.google.co.nz *.treasurebox.co.nz *.freshdesk.com *.googletagmanager.com https://*.sibforms.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.searchanise.com *.searchserverapi.com *.trustpilot.com *.paymentexpress.com *.windcave.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com 'self' data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com *.ftcdn.net *.behance.net data: t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com validator.swagger.io *.afterpay.com/ *.cash.app *.gstatic.com *.googleapis.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.cloudflare.com *.klarna.com *.googleadservices.com *.google-analytics.com *.paypal.com *.twitter.com *.twimg.com *.ytimg.com *.lightemporium.com *.usercentrics.eu *.au-freshbots.ai *.freshbots.ai *.google.co.nz *.google.com.sg *.treasurebox.co.nz *.tbsandbox.co.nz 'self' *.cloudfront.net *.latitudefinancial.com *.clarity.ms *.bing.com *.afterpay.com *.s3.ap-southeast-2.amazonaws.com https://assets.brevo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.google.ru www.searchanise.com *.searchserverapi.com s3.amazonaws.com *.paymentexpress.com *.windcave.com data: 'self' 'unsafe-inline'; script-src *.adobedtm.com *.adobe.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ https://portal.sandbox.afterpay.com https://portal.afterpay.com *.jsdelivr.net *.squarecdn.com https://hbiq.net *.cash.app tagmanager.google.com https://www.googletagmanager.com *.googleapis.com *.gstatic.com www.google.com/recaptcha/ www.gstatic.com/recaptcha/ https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.cloudflare.com *.twitter.com *.google-analytics.com *.twimg.com *.trustedshops.com *.usercentrics.eu *.fontawesome.com *.trackedlink.net *.au-freshbots.ai s.pinimg.com *.pinterest.com/ *.clarity.ms *.treasurebox.co.nz *.tbsandbox.co.nz *.googletagmanager.com 'self' *.latitudefinancial.com *.freshdesk.com https://cdn.au-freshbots.ai *.amazonaws.com *.searchserverapi.com *.searchanise.com *.freshworksapi.com *.afterpay.com *.tiktok.com https://sibforms.com https://analytics.ahrefs.com *.avada.io www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com searchanise-ef84.kxcdn.com s3.amazonaws.com ajax.aspnetcdn.com www.searchanise.com searchserverapi.com api.amplitude.com *.trustpilot.com *.paymentexpress.com *.windcave.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com static.afterpay.com/ *.squarecdn.com *.cash.app https://www.googletagmanager.com tagmanager.google.com *.googleapis.com fonts.googleapis.com https://static.klaviyo.com *.cloudflare.com *.twitter.com *.twimg.com *.gstatic.com *.typekit.net *.trustedshops.com *.usercentrics.eu *.fontawesome.com *.au-freshbots.ai *.treasurebox.co.nz *.tbsandbox.co.nz 'self' *.amazonaws.com *.searchserverapi.com *.afterpay.com https://sibforms.com https://*.klaviyo.com maxcdn.bootstrapcdn.com www.searchanise.com searchanise-ef84.kxcdn.com s3.amazonaws.com ton.twimg.com *.trustpilot.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com *.cloudflare.com *.googleapis.com *.twitter.com *.twimg.com *.gstatic.com *.typekit.net *.trustedshops.com *.usercentrics.eu *.fontawesome.com *.au-freshbots.ai *.treasurebox.co.nz *.tbsandbox.co.nz 'self' *.amazonaws.com *.searchserverapi.com *.afterpay.com https://sibforms.com https://*.klaviyo.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net vimeo.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.afterpay.com *.squarecdn.com https://hbiq.net https://iq.afterpay-beta.com https://iq.afterpay.com https://portal.afterpay.com *.cash.app api.lab.amplitude.com https://www.google-analytics.com *.googleapis.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.cloudflare.com *.twitter.com *.paypal.com *.twimg.com *.googleadservices.com *.google-analytics.com *.sandbox.paypal.com *.paypalobjects.com *.trackedlink.net *.ampproject.org *.au-freshbots.ai *.pinterest.com *.clarity.ms *.treasurebox.co.nz *.doubleclick.net *.tbsandbox.co.nz 'self' *.trustpilot.com *.google.co.nz *.freshworksapi.com *.google.com *.jsdelivr.net *.tiktok.com wss://rts-aus.freshworksapi.com https://*.sibforms.com www.facebook.com ws://localhost:12387 https://analytics.ahrefs.com connect.facebook.net graph.facebook.com business.facebook.com api.amplitude.com stats.g.doubleclick.net 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; Strict-Transport-Security: max-age=31536000 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN
Certificate: Data: Version: 3 (0x2) Serial Number: 0e:89:a4:0b:a1:36:d8:63:4f:e4:79:37:f9:75:ae:dd Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=GeoTrust TLS RSA CA G1 Validity Not Before: Sep 1 00:00:00 2024 GMT Not After : Oct 2 23:59:59 2025 GMT Subject: CN=*.treasurebox.co.nz Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:da:bf:1c:e2:2e:a3:db:d1:62:62:2c:ef:85:99: bb:fa:af:5a:cb:70:81:64:10:26:bb:6e:33:5b:9f: ce:6a:64:53:8e:b4:0b:64:16:3a:ac:c5:3f:f5:7f: 0c:3d:aa:80:31:c0:1f:df:e4:e4:bd:97:7c:ae:22: d1:1f:8f:f3:13:6f:d6:b2:cf:15:64:cd:1c:ac:f2: 23:40:33:75:c3:70:2d:65:a7:ca:94:f5:e0:8a:ce: 16:86:51:20:b8:af:11:91:1d:f2:8a:2a:38:90:08: a7:c1:09:30:35:ea:e2:60:85:34:2d:0a:0f:39:69: d7:71:f7:67:29:c6:05:96:4b:a3:7f:7f:d0:62:66: 9b:68:79:48:44:45:a6:4a:71:7a:bd:77:ac:ca:cc: 29:08:4a:5f:b3:f2:98:da:22:8a:85:2f:a0:fc:8f: ee:56:ca:98:61:bf:69:e9:74:a8:2c:f7:de:fe:b7: a5:cf:e7:4f:2c:bc:a9:bd:11:cd:fc:5d:7c:0d:94: 45:50:81:98:c5:37:71:aa:26:85:da:b7:33:e6:f1: af:a2:d4:3c:c4:b4:5c:1c:30:80:fd:d1:b0:c8:14: a4:f4:8a:19:08:3f:f5:e1:16:17:f7:be:8f:e4:57: 8d:09:9f:df:b4:ad:5a:66:31:2a:92:29:33:c1:a5: e0:2f Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 94:4F:D4:5D:8B:E4:A4:E2:A6:80:FE:FD:D8:F9:00:EF:A3:BE:02:57 X509v3 Subject Key Identifier: 4F:88:87:3D:38:59:43:79:8B:2C:C0:46:9D:48:4C:2E:63:8C:AE:01 X509v3 Subject Alternative Name: DNS:*.treasurebox.co.nz, DNS:treasurebox.co.nz X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CPS: http://www.digicert.com/CPS X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 CRL Distribution Points: Full Name: URI:http://cdp.geotrust.com/GeoTrustTLSRSACAG1.crl Authority Information Access: OCSP - URI:http://status.geotrust.com CA Issuers - URI:http://cacerts.geotrust.com/GeoTrustTLSRSACAG1.crt X509v3 Basic Constraints: critical CA:FALSE CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13: F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A Timestamp : Sep 1 23:09:41.236 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:21:00:81:47:19:D5:75:A2:BC:CB:4C:0F:24: 08:42:D3:2B:0D:4E:39:C9:9D:CD:D4:3A:41:56:24:AC: 6A:D7:80:C9:A3:02:20:4F:CF:6C:B2:B1:A0:04:E1:5C: AF:9F:E3:0C:13:A1:17:52:2F:35:6A:5C:11:E9:81:7E: 5E:1D:D8:6F:34:8A:EB Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0: 87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8 Timestamp : Sep 1 23:09:41.100 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:C7:CD:66:78:D8:69:E5:B3:3A:FB:46: C8:3F:67:62:58:BB:9A:0D:A4:2B:B9:41:E6:A9:C8:A0: 63:60:6C:CB:4E:02:21:00:85:51:F8:66:80:F6:D6:A2: 01:98:2D:1C:5A:E4:F7:D3:18:42:76:B4:51:F7:B7:2A: 30:2E:AF:E0:6F:D3:68:1C Signed Certificate Timestamp: Version : v1 (0x0) Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1: D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50 Timestamp : Sep 1 23:09:41.132 2024 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:D4:CE:FC:35:E0:1E:ED:49:A1:35:87: D3:73:CC:52:E6:F0:77:B4:2B:30:9D:20:A4:C1:8A:32: DA:B8:D8:2A:C5:02:21:00:EE:1F:14:A4:B8:C9:11:2A: B7:6A:AE:47:96:22:5C:0E:66:10:38:D7:82:2F:6D:A3: D1:3E:32:69:B9:17:16:B4 Signature Algorithm: sha256WithRSAEncryption Signature Value: 4a:15:da:24:ab:7e:57:d9:da:96:1f:1f:a7:b2:1f:bd:1d:33: 73:1f:b9:c3:aa:16:38:cf:10:7c:8b:dc:0e:a6:3a:e6:16:34: 0c:74:f4:a1:b1:ed:a5:39:b4:9e:e6:da:36:7c:0f:84:b4:09: 05:e2:20:5d:1d:0b:a2:c4:6b:85:96:4d:99:95:ad:10:04:40: 68:1c:f6:c4:01:5e:6d:a7:35:8b:eb:84:8f:0c:32:5d:f5:89: ab:b3:d5:bb:17:c2:3a:00:ab:f5:c2:7d:bd:2f:2d:91:a9:e6: cc:b5:cd:a9:21:43:a5:1f:17:d5:89:9f:b7:0c:96:62:9b:b8: b2:8a:c9:b3:ba:55:fd:a7:f0:3c:5c:27:01:7f:32:f0:da:97: ab:d2:43:a7:f6:d9:d2:20:58:9e:03:53:9c:da:71:e8:bd:32: 0f:1b:23:da:76:c0:04:dd:a4:6d:ba:58:c6:11:40:f9:a9:f4: d4:7d:53:63:88:50:d5:fb:e7:a7:29:3d:54:37:c0:2a:f7:c9: 99:d1:5b:4f:31:1d:c4:01:f7:17:03:7e:4f:6d:b3:76:23:44: e2:00:62:39:38:e0:88:88:d1:bd:f6:c9:c8:a4:d9:34:7f:73: 46:73:92:92:bd:4a:9d:39:54:c2:1a:9e:b3:d0:9f:6d:20:29: 08:87:cb:3e