Check DNS, Urls + Redirects, Certificates and Content of your Website




X

DNS-problem - authoritative Nameserver refused, not defined or timeout

Checked:
24.01.2023 16:16:00


Older results

No older results found


1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
factuminv.com
A
50.31.174.98
Chicago/Illinois/United States (US) - Server Central Network
Hostname: bh7112.banahosting.com
yes
2
0

AAAA

yes


www.factuminv.com
CNAME
factuminv.com
yes
1
0

A
50.31.174.98
Chicago/Illinois/United States (US) - Server Central Network
Hostname: bh7112.banahosting.com
yes


www.factuminv.com
A
50.31.174.103
Chicago/Illinois/United States (US) - Server Central Network
No Hostname found
no


*.factuminv.com
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes



2. DNSSEC

Zone (*)DNSSEC - Informations

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 951, Flags 256



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 11.02.2023, 00:00:00 +, Signature-Inception: 21.01.2023, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: com
com
1 DS RR in the parent zone found



DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest 4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=



1 RRSIG RR to validate DS RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 06.02.2023, 05:00:00 +, Signature-Inception: 24.01.2023, 04:00:00 +, KeyTag 951, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 951 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 8, KeyTag 36739, Flags 256



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 04.02.2023, 18:24:21 +, Signature-Inception: 20.01.2023, 18:19:21 +, KeyTag 30909, Signer-Name: com



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: factuminv.com
factuminv.com
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "qkkch655stt2upcs6br2u24bs2vranu0" between the hashed NSEC3-owner "qkkc2kdlpcf6astp7g6jsb4mmguj6arc" and the hashed NextOwner "qkkciq912ehko1s2vibjie8omtbqvep3". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner qkkc2kdlpcf6astp7g6jsb4mmguj6arc.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 28.01.2023, 05:28:14 +, Signature-Inception: 21.01.2023, 04:18:14 +, KeyTag 36739, Signer-Name: com



DS-Query in the parent zone sends valid NSEC3 RR with the Hash "ck0pojmg874ljref7efn8430qvit8bsm" as Owner. That's the Hash of "com" with the NextHashedOwnerName "ck0q2d6ni4i7eqh8na30ns61o48ul8g5". So that domain name is the Closest Encloser of "factuminv.com". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner ck0pojmg874ljref7efn8430qvit8bsm.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 30.01.2023, 05:23:04 +, Signature-Inception: 23.01.2023, 04:13:04 +, KeyTag 36739, Signer-Name: com



0 DNSKEY RR found




Zone: www.factuminv.com
www.factuminv.com
0 DS RR in the parent zone found


3. Name Servers

DomainNameserverNS-IP
factuminv.com
U  no-dyn-updates.san.yahoo.com


  ns7112.banahosting.com / bh7112.banahosting.com
50.31.174.99
Chicago/Illinois/United States (US) - Server Central Network


T  ns7113.banahosting.com / bh7112.banahosting.com
50.31.174.100
Chicago/Illinois/United States (US) - Server Central Network


  yns1.yahoo.com
67.195.1.92
Quincy/Washington/United States (US) - Oath Holdings Inc.


  yns2.yahoo.com
98.139.247.192
Lockport/New York/United States (US) - Oath Holdings Inc.

com
  a.gtld-servers.net / nnn1-fra6


  b.gtld-servers.net / nnn1-eltxl1


  c.gtld-servers.net / nnn1-fra6


  d.gtld-servers.net / nnn1-fra6


  e.gtld-servers.net / nnn1-fra6


  f.gtld-servers.net / nnn1-fra5


  g.gtld-servers.net / nnn1-fra5


  h.gtld-servers.net / nnn1-fra5


  i.gtld-servers.net / nnn1-fra5


  j.gtld-servers.net / nnn1-nlams-1c


  k.gtld-servers.net / nnn1-nlams-1c


  l.gtld-servers.net / nnn1-nlams-1e


  m.gtld-servers.net / nnn1-nlams-1e


4. SOA-Entries


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1674573330
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:3


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1674573345
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:10


Domain:factuminv.com
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


Domain:factuminv.com
Zone-Name:factuminv.com
Primary:no-dyn-updates.san.yahoo.com
Mail:postmaster.san.yahoo.com
Serial:2023012303
Refresh:10800
Retry:3600
Expire:7084000
TTL:28800
num Entries:2


Domain:factuminv.com
Zone-Name:factuminv.com
Primary:ns7112.banahosting.com
Mail:support.banahosting.com
Serial:2023012401
Refresh:86400
Retry:7200
Expire:1600000
TTL:86400
num Entries:2


5. Screenshots

Startaddress: https://factuminv.com/, address used: https://factuminv.com/, Screenshot created 2023-01-24 16:52:35 +00:0 url is insecure, certificate invalid

Mobil (412px x 732px)

948 milliseconds

Screenshot mobile - https://factuminv.com/
Mobil + Landscape (732px x 412px)

981 milliseconds

Screenshot mobile landscape - https://factuminv.com/
Screen (1280px x 1680px)

3051 milliseconds

Screenshot Desktop - https://factuminv.com/

Mobile- and other Chrome-Checks

widthheight
visual Viewport396732
content Size3965666

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://www.factuminv.com/
50.31.174.103
301
https://www.factuminv.com/
0.540
A
Connection: close
content-type: text/html; charset=UTF-8
x-redirect-by: WordPress
location: https://www.factuminv.com/
x-litespeed-cache: miss
content-length: 0
date: Tue, 24 Jan 2023 15:16:52 GMT

• http://factuminv.com/
50.31.174.98
200

Html is minified: 100.00 %
0.257
H
small visible content (num chars: 0)
Connection: close
content-type: text/html
last-modified: Wed, 17 Jun 2020 20:01:33 GMT
accept-ranges: bytes
content-length: 163
date: Tue, 24 Jan 2023 15:16:51 GMT

• http://www.factuminv.com/
50.31.174.98
200

Html is minified: 100.00 %
0.247
H
small visible content (num chars: 0)
Connection: close
content-type: text/html
last-modified: Wed, 17 Jun 2020 20:01:33 GMT
accept-ranges: bytes
content-length: 163
date: Tue, 24 Jan 2023 15:16:52 GMT

• https://www.factuminv.com/
50.31.174.103
301
https://factuminv.com/
5.463
B
Connection: close
content-type: text/html; charset=UTF-8
x-redirect-by: WordPress
location: https://factuminv.com/
x-litespeed-cache: miss
content-length: 0
date: Tue, 24 Jan 2023 15:17:06 GMT
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

• https://factuminv.com/
50.31.174.98
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.00 %
5.000
J
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Connection: close
content-type: text/html
last-modified: Wed, 17 Jun 2020 20:01:33 GMT
accept-ranges: bytes
content-length: 163
date: Tue, 24 Jan 2023 15:16:53 GMT
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

• https://www.factuminv.com/
50.31.174.98
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.00 %
4.920
J
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Connection: close
content-type: text/html
last-modified: Wed, 17 Jun 2020 20:01:33 GMT
accept-ranges: bytes
content-length: 163
date: Tue, 24 Jan 2023 15:16:59 GMT
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

• http://factuminv.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
50.31.174.98 GZip used - 4927 / 10088 - 51.16 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 1/7953
404

Html is minified: 682.54 %
0.263
A
Not Found
Visible Content: 404 Not Found Please forward this error screen to factuminv.com's WebMaster . The server cannot find the requested page: factuminv.com/cp_errordocument.shtml (port 80) Copyright © 2016 cPanel, Inc.
Connection: close
content-type: text/html
transfer-encoding: chunked
content-encoding: gzip
vary: Accept-Encoding
date: Tue, 24 Jan 2023 15:17:12 GMT

• http://www.factuminv.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
50.31.174.98 GZip used - 4931 / 10100 - 51.18 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 1/7953
404

Html is minified: 677.85 %
0.254
A
Not Found
Visible Content: 404 Not Found Please forward this error screen to www.factuminv.com's WebMaster . The server cannot find the requested page: www.factuminv.com/cp_errordocument.shtml (port 80) Copyright © 2016 cPanel, Inc.
Connection: close
content-type: text/html
transfer-encoding: chunked
content-encoding: gzip
vary: Accept-Encoding
date: Tue, 24 Jan 2023 15:17:12 GMT

• http://www.factuminv.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
50.31.174.103
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 102.31 %
0.300
A
Not Found
Visible Content: 404 Not Found The resource requested could not be found on this server!
Connection: close
cache-control: private, no-cache, no-store, must-revalidate, max-age=0
pragma: no-cache
content-type: text/html
content-length: 708
date: Tue, 24 Jan 2023 15:17:13 GMT

• https://50.31.174.98/
50.31.174.98
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.00 %
4.914
J
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Connection: close
content-type: text/html
last-modified: Wed, 17 Jun 2020 20:01:33 GMT
accept-ranges: bytes
content-length: 163
date: Tue, 24 Jan 2023 15:17:13 GMT
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

• https://50.31.174.103/
50.31.174.103
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.00 %
3.873
J
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
small visible content (num chars: 0)
Connection: close
content-type: text/html
last-modified: Wed, 17 Jun 2020 20:01:33 GMT
accept-ranges: bytes
content-length: 163
date: Tue, 24 Jan 2023 15:17:19 GMT
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

7. Comments


1. General Results, most used to calculate the result

Aname "factuminv.com" is domain, public suffix is ".com", top-level-domain is ".com", top-level-domain-type is "generic", tld-manager is "VeriSign Global Registry Services", num .com-domains preloaded: 83852 (complete: 216710)
AGood: All ip addresses are public addresses
Warning: Only one ip address found: factuminv.com has only one ip address.
Warning: Only one ip address found: www.factuminv.com has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: factuminv.com has no ipv6 address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: www.factuminv.com has no ipv6 address.
AGood: No cookie sent via http.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):0 complete Content-Type - header (9 urls)
http://factuminv.com/ 50.31.174.98


Url with incomplete Content-Type - header - missing charset
http://www.factuminv.com/ 50.31.174.98


Url with incomplete Content-Type - header - missing charset
https://factuminv.com/ 50.31.174.98


Url with incomplete Content-Type - header - missing charset
https://www.factuminv.com/ 50.31.174.98


Url with incomplete Content-Type - header - missing charset
http://factuminv.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 50.31.174.98


Url with incomplete Content-Type - header - missing charset
http://www.factuminv.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 50.31.174.98


Url with incomplete Content-Type - header - missing charset
http://www.factuminv.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 50.31.174.103


Url with incomplete Content-Type - header - missing charset
https://50.31.174.98/ 50.31.174.98


Url with incomplete Content-Type - header - missing charset
https://50.31.174.103/ 50.31.174.103


Url with incomplete Content-Type - header - missing charset
Ahttp://www.factuminv.com/ 50.31.174.103
301
https://www.factuminv.com/
Correct redirect http - https with the same domain name
Bhttps://factuminv.com/ 50.31.174.98
200

Missing HSTS-Header
Bhttps://www.factuminv.com/ 50.31.174.103
301

Missing HSTS-Header
Bhttps://www.factuminv.com/ 50.31.174.98
200

Missing HSTS-Header
CError - no preferred version www or non-www. Select one version as preferred version, then add a redirect https + not-preferred version to https + preferred version. Perhaps in your port 443 vHost something like "RewriteEngine on" + "RewriteCond %{SERVER_NAME} = example.com" + "ReWriteRule ^ https://www.example.com%{REQUEST_URI} [END,QSA,R=permanent]" (three rows, without the "). That should create a redirect https + example.com ⇒ https + www.example.com. Or switch both values to use the non-www version as your preferred version.
CError - more then one version with Http-Status 200. After all redirects, all users (and search engines) should see the same https url: Non-www or www, but not both with http status 200.
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop.
Jhttps://factuminv.com/ 50.31.174.98
200

Fatal: Control Panel error message. Ask your hoster. There is a cPanel-Redirect to the SORRY-page /cgi-sys/defaultwebpage.cgi with additional instructions.
Jhttps://www.factuminv.com/ 50.31.174.98
200

Fatal: Control Panel error message. Ask your hoster. There is a cPanel-Redirect to the SORRY-page /cgi-sys/defaultwebpage.cgi with additional instructions.
Jhttps://50.31.174.98/ 50.31.174.98
200

Fatal: Control Panel error message. Ask your hoster. There is a cPanel-Redirect to the SORRY-page /cgi-sys/defaultwebpage.cgi with additional instructions.
Jhttps://50.31.174.103/ 50.31.174.103
200

Fatal: Control Panel error message. Ask your hoster. There is a cPanel-Redirect to the SORRY-page /cgi-sys/defaultwebpage.cgi with additional instructions.
Khttp://www.factuminv.com/ 50.31.174.98, Status 200

http://www.factuminv.com/ 50.31.174.103, Status 301
Configuration problem - different ip addresses with different status
Khttps://www.factuminv.com/ 50.31.174.98, Status 200

https://www.factuminv.com/ 50.31.174.103, Status 301
Configuration problem - different ip addresses with different status
Nhttps://factuminv.com/ 50.31.174.98
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://www.factuminv.com/ 50.31.174.98
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://50.31.174.98/ 50.31.174.98
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://50.31.174.103/ 50.31.174.103
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Ofactuminv.com / 50.31.174.98 / 993


Old connection: Ssl3 is insecure and must be disabled.
Ofactuminv.com / 50.31.174.98 / 995


Old connection: Ssl3 is insecure and must be disabled.
Owww.factuminv.com / 50.31.174.98 / 995


Old connection: Ssl3 is insecure and must be disabled.
Owww.factuminv.com / 50.31.174.98 / 993


Old connection: Ssl3 is insecure and must be disabled.
Ofactuminv.com / 50.31.174.98 / 465

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 465

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 587

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 587

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 993

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 995

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 993

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 995

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 465

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 587

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 993

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 995

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 995

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 995

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 587

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 587

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 993

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 465

RC4-MD5
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 465

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 993

RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 587

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 995

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 465

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Owww.factuminv.com / 50.31.174.98 / 993

ECDHE-RSA-RC4-SHA
Old connection: Insecure Cipher Suite found. Such active Cipher Suites allow downgrades. Remove all insecure Cipher Suites
Ofactuminv.com / 50.31.174.98 / 995

AECDH-AES256-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 993

AECDH-AES256-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 993

AECDH-DES-CBC3-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 995

AECDH-DES-CBC3-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 993

AECDH-AES128-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 993

AECDH-RC4-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 995

AECDH-AES128-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 995

AECDH-RC4-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 995

AECDH-RC4-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 995

AECDH-DES-CBC3-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 993

AECDH-AES256-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 993

AECDH-AES128-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 995

AECDH-AES128-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 995

AECDH-AES256-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 993

AECDH-RC4-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Owww.factuminv.com / 50.31.174.98 / 993

AECDH-DES-CBC3-SHA
Old connection: Insecure Cipher Suite without Authentication found (_anon_ = Anonymous in the IANA-Name). Remove these Cipher Suites.
Ofactuminv.com / 50.31.174.98 / 465


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 13 Cipher Suites without Forward Secrecy found
Ofactuminv.com / 50.31.174.98 / 587


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 13 Cipher Suites without Forward Secrecy found
Ofactuminv.com / 50.31.174.98 / 993


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 17 Cipher Suites without Forward Secrecy found
Ofactuminv.com / 50.31.174.98 / 995


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 17 Cipher Suites without Forward Secrecy found
Owww.factuminv.com / 50.31.174.98 / 465


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 13 Cipher Suites without Forward Secrecy found
Owww.factuminv.com / 50.31.174.98 / 587


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 13 Cipher Suites without Forward Secrecy found
Owww.factuminv.com / 50.31.174.98 / 993


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 17 Cipher Suites without Forward Secrecy found
Owww.factuminv.com / 50.31.174.98 / 995


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 17 Cipher Suites without Forward Secrecy found
XFatal error: Nameserver isn't defined or has timeout
XFatal error: Nameserver doesn't support TCP connection: no-dyn-updates.san.yahoo.com: Timeout
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are the same. So that domain doesn't require Server Name Indication (SNI), it's the primary certificate of that set of ip addresses.: Domain factuminv.com, 1 ip addresses, 1 different http results.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are the same. So that domain doesn't require Server Name Indication (SNI), it's the primary certificate of that set of ip addresses.: Domain www.factuminv.com, 1 ip addresses, 1 different http results.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.factuminv.com

2. Header-Checks (alpha, started 2022-10-23, may be buggy / incomplete)

Ffactuminv.com 50.31.174.98
Content-Security-Policy
Critical: Missing Header:
Ffactuminv.com 50.31.174.98
X-Content-Type-Options
Critical: Missing Header:
Ffactuminv.com 50.31.174.98
Referrer-Policy
Critical: Missing Header:
Ffactuminv.com 50.31.174.98
Permissions-Policy
Critical: Missing Header:
Fwww.factuminv.com 50.31.174.98
Content-Security-Policy
Critical: Missing Header:
Fwww.factuminv.com 50.31.174.98
X-Content-Type-Options
Critical: Missing Header:
Fwww.factuminv.com 50.31.174.98
Referrer-Policy
Critical: Missing Header:
Fwww.factuminv.com 50.31.174.98
Permissions-Policy
Critical: Missing Header:

3. DNS- and NameServer - Checks

AInfo:: 13 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 4 Name Servers.
AInfo:: 13 Queries complete, 13 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
Ok (4 - 8):: An average of 3.3 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 5 different Name Servers found: no-dyn-updates.san.yahoo.com, ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, 4 Name Servers included in Delegation: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, 4 Name Servers included in 3 Zone definitions: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, 2 Name Servers listed in SOA.Primary: no-dyn-updates.san.yahoo.com, ns7112.banahosting.com.
Error: Different SOA.Primary Name Servers found, different SOA Definitions.: no-dyn-updates.san.yahoo.com,ns7112.banahosting.com.
Error: SOA.Primary Name Server not included in the delegation set.: no-dyn-updates.san.yahoo.com,ns7112.banahosting.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns7112.banahosting.com (50.31.174.99): Delegation: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, Zone: ns7112.banahosting.com, ns7113.banahosting.com. Name Servers defined in Delegation, missing in Zone: yns1.yahoo.com, yns2.yahoo.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns7113.banahosting.com (50.31.174.100): Delegation: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, Zone: ns7112.banahosting.com, ns7113.banahosting.com. Name Servers defined in Delegation, missing in Zone: yns1.yahoo.com, yns2.yahoo.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: yns1.yahoo.com (67.195.1.92): Delegation: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, Zone: yns1.yahoo.com, yns2.yahoo.com. Name Servers defined in Delegation, missing in Zone: ns7112.banahosting.com, ns7113.banahosting.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: yns2.yahoo.com (98.139.247.192): Delegation: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com, Zone: yns1.yahoo.com, yns2.yahoo.com. Name Servers defined in Delegation, missing in Zone: ns7112.banahosting.com, ns7113.banahosting.com.
AGood: All Name Server Domain Names have a Public Suffix.
Error: Name Server Domain Names with Public Suffix and without ip address found.: 1 Name Servers without ipv4 and ipv6: 1

AGood: Minimal 2 different name servers (public suffix and public ip address) found: 4 different Name Servers found
Warning: No Name Server IPv6 address found. IPv6 is the future, so your name servers should be visible via IPv6.: 4 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 4 Name Servers, 1 Top Level Domain: com
AGood: Name Servers with different domain names found.: 2 different Domains found
Warning: All Name Servers from the same Country / IP location.: 4 Name Servers, 1 Countries: US
AInfo: Ipv4-Subnet-list: 4 Name Servers, 3 different subnets (first Byte): 50., 67., 98., 3 different subnets (first two Bytes): 50.31., 67.195., 98.139., 3 different subnets (first three Bytes): 50.31.174., 67.195.1., 98.139.247.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: Nameserver mit different domain names found. May be a problem with DNS-Updates
XNameserver Timeout checking EDNS512: ns7113.banahosting.com / 50.31.174.100
Nameserver doesn't pass all EDNS-Checks: no-dyn-updates.san.yahoo.com: OP100: fatal timeout. FLAGS: fatal timeout. V1: fatal timeout. V1OP100: fatal timeout. V1FLAGS: fatal timeout. DNSSEC: fatal timeout. V1DNSSEC: fatal timeout. NSID: fatal timeout. COOKIE: fatal timeout. CLIENTSUBNET: fatal timeout.
XFatal error: Nameservers with different SOA Serial Numbers
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: No https + http status 200 with inline CSS / JavaScript found
AGood: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 4 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 0 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 4 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: Some img-elements have a valid alt-attribute.: 4 img-elements found, 2 img-elements with correct alt-attributes (defined, not an empty value).
Wrong: img-elements without alt-attribute or empty alt-attribute found. The alt-attribute ("alternative") is required and should describe the img. So Screenreader and search engines are able to use these informations.: 2 img-elements without alt-attribute, 0 img-elements with empty alt-attribute found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
ADuration: 2208274 milliseconds, 2208.274 seconds


8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
factuminv.com
50.31.174.98
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
factuminv.com
50.31.174.98
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=*.banahosting.com

2CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV

3CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, C=US, ST=New Jersey


www.factuminv.com
50.31.174.98
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

www.factuminv.com
50.31.174.98
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=*.banahosting.com

2CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV

3CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, C=US, ST=New Jersey


www.factuminv.com
50.31.174.103
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

www.factuminv.com
50.31.174.103
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


50.31.174.98
50.31.174.98
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

50.31.174.98
50.31.174.98
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=*.banahosting.com

2CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV

3CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, C=US, ST=New Jersey


50.31.174.103
50.31.174.103
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

50.31.174.103
50.31.174.103
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Self signed certificate
1CN=50-31-174-98.cprapid.com, emailAddress=ssl@50-31-174-98.cprapid.com


factuminv.com
50.31.174.98
465
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

factuminv.com
50.31.174.98
465
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


factuminv.com
50.31.174.98
587
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

factuminv.com
50.31.174.98
587
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


factuminv.com
50.31.174.98
993
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

factuminv.com
50.31.174.98
993
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


factuminv.com
50.31.174.98
995
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

factuminv.com
50.31.174.98
995
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


factuminv.com
50.31.174.98
2083
ok
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok

factuminv.com
50.31.174.98
2083
ok
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


factuminv.com
50.31.174.98
2087
ok
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok

factuminv.com
50.31.174.98
2087
ok
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


factuminv.com
50.31.174.98
2096
ok
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok

factuminv.com
50.31.174.98
2096
ok
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
465
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

www.factuminv.com
50.31.174.98
465
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
587
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

www.factuminv.com
50.31.174.98
587
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
993
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

www.factuminv.com
50.31.174.98
993
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
995
ok
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok

www.factuminv.com
50.31.174.98
995
ok
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
Ssl3 - Insecure
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
2083
ok
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok

www.factuminv.com
50.31.174.98
2083
ok
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
2087
ok
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok

www.factuminv.com
50.31.174.98
2087
ok
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


www.factuminv.com
50.31.174.98
2096
ok
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok

www.factuminv.com
50.31.174.98
2096
ok
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)
1CN=factuminv.com

2CN=R3, O=Let's Encrypt, C=US


9. Certificates

1.
1.
CN=*.banahosting.com
24.10.2022
25.10.2023
expires in 267 days
*.banahosting.com, banahosting.com - 2 entries
1.
1.
CN=*.banahosting.com
24.10.2022

25.10.2023
expires in 267 days
*.banahosting.com, banahosting.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00DA81F655890B18AE51D17203FF658915
Thumbprint:A7C9F20D0B060CFC3F911BE38CB2C21C8FAFBE1E
SHA256 / Certificate:n0w0ZNxkq5V1zNi/knaDLZMc9FyNzimrxf1OCa+sSTc=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f9154617fe4c29c3e0e2803a0baa9bc4f4136173e76e383d00345086610cc726
SHA256 hex / Subject Public Key Information (SPKI):f9154617fe4c29c3e0e2803a0baa9bc4f4136173e76e383d00345086610cc726 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


2.
CN=*.banahosting.com
24.10.2022
25.10.2023
expires in 267 days
*.banahosting.com, banahosting.com - 2 entries

2.
CN=*.banahosting.com
24.10.2022

25.10.2023
expires in 267 days
*.banahosting.com, banahosting.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00DA81F655890B18AE51D17203FF658915
Thumbprint:A7C9F20D0B060CFC3F911BE38CB2C21C8FAFBE1E
SHA256 / Certificate:n0w0ZNxkq5V1zNi/knaDLZMc9FyNzimrxf1OCa+sSTc=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):f9154617fe4c29c3e0e2803a0baa9bc4f4136173e76e383d00345086610cc726
SHA256 hex / Subject Public Key Information (SPKI):f9154617fe4c29c3e0e2803a0baa9bc4f4136173e76e383d00345086610cc726 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


3.
CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV
06.09.2018
06.09.2028
expires in 2045 days


3.
CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV
06.09.2018

06.09.2028
expires in 2045 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:00938BB08E62987B4F75F98CB6A5045C96
Thumbprint:070A726C6E4418DCF0213874F0C16D93B041E935
SHA256 / Certificate:Q8rDHvjouhtLFrggbkwKJsW62y/DqgnpAXDkG2bC/WQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):4feeaec93e42e964f8f34b76c2a5f6389dd9acdb768fcbf9d9b58b8fe5c8bf3f
SHA256 hex / Subject Public Key Information (SPKI):4feeaec93e42e964f8f34b76c2a5f6389dd9acdb768fcbf9d9b58b8fe5c8bf3f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Server Authentication (1.3.6.1.5.5.7.3.1), Client Authentication (1.3.6.1.5.5.7.3.2)


4.
CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV
06.09.2018
06.09.2028
expires in 2045 days


4.
CN=GoGetSSL RSA DV CA, O=GoGetSSL, L=Riga, C=LV
06.09.2018

06.09.2028
expires in 2045 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:00938BB08E62987B4F75F98CB6A5045C96
Thumbprint:070A726C6E4418DCF0213874F0C16D93B041E935
SHA256 / Certificate:Q8rDHvjouhtLFrggbkwKJsW62y/DqgnpAXDkG2bC/WQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):4feeaec93e42e964f8f34b76c2a5f6389dd9acdb768fcbf9d9b58b8fe5c8bf3f
SHA256 hex / Subject Public Key Information (SPKI):4feeaec93e42e964f8f34b76c2a5f6389dd9acdb768fcbf9d9b58b8fe5c8bf3f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010
19.01.2038
expires in 5467 days


5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010

19.01.2038
expires in 5467 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:01FD6D30FCA3CA51A81BBC640E35032D
Thumbprint:2B8F1B57330DBBA2D07A6C51F70EE90DDAB9AD8E
SHA256 / Certificate:55PJsC/YqhPiHDEiisywgRlkO3SciYlksXRtRsPUy9I=
SHA256 hex / Cert (DANE * 0 1):e793c9b02fd8aa13e21c31228accb08119643b749c898964b1746d46c3d4cbd2
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:



6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019
01.01.2029
expires in 2162 days


6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019

01.01.2029
expires in 2162 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:3972443AF922B751D7D36C10DD313595
Thumbprint:D89E3BD43D5D909B47A18977AA9D5CE36CEE184C
SHA256 / Certificate:aLnHYSGaWx8BMXhEdGZdthu9sQngDwXKn3QkTuX19Ss=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.comodoca.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:


7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004
01.01.2029
expires in 2162 days


7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004

01.01.2029
expires in 2162 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:01
Thumbprint:D1EB23A46D17D68FD92564C2F1F1601764D8E349
SHA256 / Certificate:16eg+11+JzHXcelITrze9x1fDD4KKUh4K8g+4OppnvQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SHA256 hex / Subject Public Key Information (SPKI):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:


2.
1.
CN=factuminv.com
23.01.2023
23.04.2023
expires in 82 days
factuminv.com, www.factuminv.com - 2 entries
2.
1.
CN=factuminv.com
23.01.2023

23.04.2023
expires in 82 days
factuminv.com, www.factuminv.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:03E4B17C9D482C07382DF71658F847E94EAA
Thumbprint:3C3980C8EBE16B111812F4DF50B2317638B5D655
SHA256 / Certificate:CeAnbrKhGG0BVFR/HtLFSu/hKcR28owcUAnJCZFNUJI=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):acb1961b36548518842190eb749c311de1614f0c72a0c73db0dabea1446f603f
SHA256 hex / Subject Public Key Information (SPKI):acb1961b36548518842190eb749c311de1614f0c72a0c73db0dabea1446f603f (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://r3.o.lencr.org
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020
15.09.2025
expires in 958 days


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020

15.09.2025
expires in 958 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00912B084ACF0C18A753F6D62E25A75F5A
Thumbprint:A053375BFE84E8B748782C7CEE15827A6AF5A405
SHA256 / Certificate:Z63RFmsCCuYbj1/JaBPATCqliZYHloZVcqPH5zdhPf0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SHA256 hex / Subject Public Key Information (SPKI):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 4507 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 4507 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:


3.
1.
CN=50-31-174-98.cprapid.com, E=ssl@50-31-174-98.cprapid.com
18.07.2021
18.07.2022
197 days expired
50-31-174-98.cprapid.com - 1 entry
3.
1.
CN=50-31-174-98.cprapid.com, E=ssl@50-31-174-98.cprapid.com
18.07.2021

18.07.2022
197 days expired
50-31-174-98.cprapid.com - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0246BB261B
Thumbprint:D9808E5605B4342E9EFBA0B26447EC5F3DE3B789
SHA256 / Certificate:tM4lg8/I0Kcf48Yj2XdNvIgLXwP32pJSbIus4whbeQs=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):4a0ec1d2ea5e67c69f2a63c2b591a7ba933d66a37d6e802e0a267baed78762bc
SHA256 hex / Subject Public Key Information (SPKI):4a0ec1d2ea5e67c69f2a63c2b591a7ba933d66a37d6e802e0a267baed78762bc (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)

UntrustedRoot: A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.
NotTimeValid: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.


10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX
0
2
2
CN=R3, O=Let's Encrypt, C=US
0
2
2
//certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
0
1
1

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
4722260129
leaf cert
CN=R3, O=Let's Encrypt, C=US
2023-01-23 19:36:18
2023-04-23 19:36:17
factuminv.com, www.factuminv.com - 2 entries


4722153419
leaf cert
CN=R3, O=Let's Encrypt, C=US
2023-01-23 19:04:57
2023-04-23 19:04:56
factuminv.com - 1 entries


4670732132
precert
//certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
2023-01-11 23:10:41
2024-01-11 23:10:41
factuminv.com, www.factuminv.com - 2 entries


4558422663
leaf cert
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX
2022-12-16 00:00:00
2023-03-16 23:59:59
autodiscover.factuminv.com, cpanel.factuminv.com, factuminv.com, mail.factuminv.com, webdisk.factuminv.com, webmail.factuminv.com, www.factuminv.com - 7 entries


4380213438
leaf cert
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX
2022-11-04 00:00:00
2023-02-02 23:59:59
cpanel.factuminv.com, factuminv.com, mail.factuminv.com, webdisk.factuminv.com, www.factuminv.com - 5 entries



2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

Issuerlast 7 daysactivenum Certs
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX
0
2
2
CN=R3, O=Let's Encrypt, C=US
0 /0 new
1
1
//certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
0
1
1

CRT-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
8480432115
precert
CN=R3, O=Let's Encrypt, C=US
2023-01-23 18:04:57
2023-04-23 17:04:56
factuminv.com
1 entries


8388482013
precert
//certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
2023-01-11 22:10:41
2024-01-11 22:10:41
factuminv.com, www.factuminv.com
2 entries


8216363553
leaf cert
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX
2022-12-15 23:00:00
2023-03-16 22:59:59
autodiscover.factuminv.com, cpanel.factuminv.com, factuminv.com, mail.factuminv.com, webdisk.factuminv.com, webmail.factuminv.com, www.factuminv.com
7 entries


7903104890
precert
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX
2022-11-03 23:00:00
2023-02-02 22:59:59
cpanel.factuminv.com, factuminv.com, mail.factuminv.com, webdisk.factuminv.com, www.factuminv.com
5 entries



11. Html-Content - Entries

Summary

Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://factuminv.com/
50.31.174.98
meta
other
2

0


0
0
0

https://www.factuminv.com/
50.31.174.98
meta
other
2

0


0
0
0

https://50.31.174.98/
50.31.174.98
meta
other
2

0


0
0
0

https://50.31.174.103/
50.31.174.103
meta
other
2

0


0
0
0

Details

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://factuminv.com/
50.31.174.98
meta
Cache-control
no-cache


1
ok








meta
refresh
0;URL=/cgi-sys/defaultwebpage.cgi


1
ok







https://www.factuminv.com/
50.31.174.98
meta
Cache-control
no-cache


1
ok








meta
refresh
0;URL=/cgi-sys/defaultwebpage.cgi


1
ok







https://50.31.174.98/
50.31.174.98
meta
Cache-control
no-cache


1
ok








meta
refresh
0;URL=/cgi-sys/defaultwebpage.cgi


1
ok







https://50.31.174.103/
50.31.174.103
meta
Cache-control
no-cache


1
ok








meta
refresh
0;URL=/cgi-sys/defaultwebpage.cgi


1
ok








12. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns7112.banahosting.com, ns7113.banahosting.com, yns1.yahoo.com, yns2.yahoo.com

QNr.DomainTypeNS used
1
com
NS
k.root-servers.net (2001:7fd::1)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
ns7112.banahosting.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ben.ns.cloudflare.com, jean.ns.cloudflare.com

Answer: ben.ns.cloudflare.com
108.162.193.103, 172.64.33.103, 173.245.59.103, 2606:4700:58::adf5:3b67, 2803:f800:50::6ca2:c167, 2a06:98c1:50::ac40:2167

Answer: jean.ns.cloudflare.com
108.162.192.121, 172.64.32.121, 173.245.58.121, 2606:4700:50::adf5:3a79, 2803:f800:50::6ca2:c079, 2a06:98c1:50::ac40:2079
3
ns7113.banahosting.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ben.ns.cloudflare.com, jean.ns.cloudflare.com

Answer: ben.ns.cloudflare.com
108.162.193.103, 172.64.33.103, 173.245.59.103, 2606:4700:58::adf5:3b67, 2803:f800:50::6ca2:c167, 2a06:98c1:50::ac40:2167

Answer: jean.ns.cloudflare.com
108.162.192.121, 172.64.32.121, 173.245.58.121, 2606:4700:50::adf5:3a79, 2803:f800:50::6ca2:c079, 2a06:98c1:50::ac40:2079
4
yns1.yahoo.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.yahoo.com, ns2.yahoo.com, ns3.yahoo.com, ns4.yahoo.com, ns5.yahoo.com

Answer: ns1.yahoo.com
2001:4998:1b0::7961:686f:6f21, 68.180.131.16

Answer: ns2.yahoo.com
2001:4998:1c0::7961:686f:6f21, 68.142.255.16

Answer: ns3.yahoo.com
2406:8600:f03f:1f8::1003, 27.123.42.42

Answer: ns4.yahoo.com
98.138.11.157

Answer: ns5.yahoo.com
202.165.97.53, 2406:2000:1d0::7961:686f:6f21
5
yns2.yahoo.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.yahoo.com, ns2.yahoo.com, ns3.yahoo.com, ns4.yahoo.com, ns5.yahoo.com

Answer: ns1.yahoo.com
2001:4998:1b0::7961:686f:6f21, 68.180.131.16

Answer: ns2.yahoo.com
2001:4998:1c0::7961:686f:6f21, 68.142.255.16

Answer: ns3.yahoo.com
2406:8600:f03f:1f8::1003, 27.123.42.42

Answer: ns4.yahoo.com
98.138.11.157

Answer: ns5.yahoo.com
202.165.97.53, 2406:2000:1d0::7961:686f:6f21
6
ns7112.banahosting.com: 50.31.174.99
A
ben.ns.cloudflare.com (2606:4700:58::adf5:3b67)
7
ns7112.banahosting.com: No AAAA record found
AAAA
ben.ns.cloudflare.com (2606:4700:58::adf5:3b67)
8
ns7113.banahosting.com: 50.31.174.100
A
ben.ns.cloudflare.com (2606:4700:58::adf5:3b67)
9
ns7113.banahosting.com: No AAAA record found
AAAA
ben.ns.cloudflare.com (2606:4700:58::adf5:3b67)
10
yns1.yahoo.com: 67.195.1.92
A
ns1.yahoo.com (2001:4998:1b0::7961:686f:6f21)
11
yns1.yahoo.com: No AAAA record found
AAAA
ns1.yahoo.com (2001:4998:1b0::7961:686f:6f21)
12
yns2.yahoo.com: 98.139.247.192
A
ns1.yahoo.com (2001:4998:1b0::7961:686f:6f21)
13
yns2.yahoo.com: No AAAA record found
AAAA
ns1.yahoo.com (2001:4998:1b0::7961:686f:6f21)


13. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.factuminv.com



1
0
factuminv.com
0

no CAA entry found
1
0
com
0

no CAA entry found
1
0


14. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
factuminv.com
i=183&m=domains-mx2-p9
ok
1
0
www.factuminv.com
i=183&m=domains-mx2-p9
ok
1
0
_acme-challenge.factuminv.com


1
0
_acme-challenge.www.factuminv.com


1
0
_acme-challenge.factuminv.com.factuminv.com


1
0
_acme-challenge.www.factuminv.com.factuminv.com


1
0
_acme-challenge.www.factuminv.com.www.factuminv.com


1
0


15. DomainService - Entries (SSHFP Check is new - 2022-09-24, may be incomplete, alpha, some results are required)

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

factuminv.com
20
mx-biz.mail.am0.yahoodns.net
0
2
ok


A


67.195.228.75
0
2
ok


A


67.195.204.83
0
2
ok


CNAME



0
0
ok

MX

factuminv.com
30
mx-biz.mail.am0.yahoodns.net
0
2
ok


A


67.195.204.83
0
2
ok


A


67.195.228.75
0
2
ok


CNAME



0
0
ok



16. Cipher Suites

DomainIPPortCipher (OpenSsl / IANA)
factuminv.com
50.31.174.98
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
3 Ciphers, 69.58 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256
ECDH
RSA
CHACHA20/POLY1305(256)
AEAD



ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD


465
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
29 Ciphers, 148.13 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5


587
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
29 Ciphers, 223.82 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5


993
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
33 Ciphers, 157.56 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5



AECDH-AES256-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x19
No FS

TLS_ECDH_anon_WITH_AES_256_CBC_SHA
ECDH
None
AES(256)
SHA1



AECDH-DES-CBC3-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x17
No FS

TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA
ECDH
None
3DES(168)
SHA1



AECDH-AES128-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x18
No FS

TLS_ECDH_anon_WITH_AES_128_CBC_SHA
ECDH
None
AES(128)
SHA1



AECDH-RC4-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x16
No FS

TLS_ECDH_anon_WITH_RC4_128_SHA
ECDH
None
RC4(128)
SHA1


995
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
33 Ciphers, 157.07 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5



AECDH-AES256-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x19
No FS

TLS_ECDH_anon_WITH_AES_256_CBC_SHA
ECDH
None
AES(256)
SHA1



AECDH-DES-CBC3-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x17
No FS

TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA
ECDH
None
3DES(168)
SHA1



AECDH-AES128-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x18
No FS

TLS_ECDH_anon_WITH_AES_128_CBC_SHA
ECDH
None
AES(128)
SHA1



AECDH-RC4-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x16
No FS

TLS_ECDH_anon_WITH_RC4_128_SHA
ECDH
None
RC4(128)
SHA1


2083
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
4 Ciphers, 74.05 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD


2087
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
4 Ciphers, 73.44 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD


2096
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
4 Ciphers, 74.08 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD
www.factuminv.com
50.31.174.98
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
3 Ciphers, 70.26 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256
ECDH
RSA
CHACHA20/POLY1305(256)
AEAD



ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD


465
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
29 Ciphers, 146.84 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5


587
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
29 Ciphers, 219.68 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5


993
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
33 Ciphers, 158.81 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5



AECDH-AES256-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x19
No FS

TLS_ECDH_anon_WITH_AES_256_CBC_SHA
ECDH
None
AES(256)
SHA1



AECDH-DES-CBC3-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x17
No FS

TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA
ECDH
None
3DES(168)
SHA1



AECDH-AES128-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x18
No FS

TLS_ECDH_anon_WITH_AES_128_CBC_SHA
ECDH
None
AES(128)
SHA1



AECDH-RC4-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x16
No FS

TLS_ECDH_anon_WITH_RC4_128_SHA
ECDH
None
RC4(128)
SHA1


995
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
33 Ciphers, 157.56 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD



ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
ECDH
RSA
AES(256)
SHA384



DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
DH
RSA
AES(256)
SHA256



AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384
RSA
RSA
AESGCM(256)
AEAD



AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256
RSA
RSA
AES(256)
SHA256



ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
ECDH
RSA
AES(128)
SHA256



DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
DH
RSA
AES(128)
SHA256



AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256
RSA
RSA
AESGCM(128)
AEAD



AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256
RSA
RSA
AES(128)
SHA256



ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
ECDH
RSA
AES(256)
SHA1



ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
ECDH
RSA
AES(128)
SHA1



DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
DH
RSA
Camellia(256)
SHA1



DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA
DH
RSA
AES(256)
SHA1



CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
RSA
RSA
Camellia(256)
SHA1



AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA
RSA
RSA
AES(256)
SHA1



ECDHE-RSA-DES-CBC3-SHA
(Weak)
SSLv3
0xC0,0x12
FS

TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
ECDH
RSA
3DES(168)
SHA1



DES-CBC3-SHA
(Weak)
SSLv3
0x00,0x0A
No FS

TLS_RSA_WITH_3DES_EDE_CBC_SHA
RSA
RSA
3DES(168)
SHA1



DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
DH
RSA
Camellia(128)
SHA1



DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA
DH
RSA
AES(128)
SHA1



DHE-RSA-SEED-SHA
(Weak)
SSLv3
0x00,0x9A
FS

TLS_DHE_RSA_WITH_SEED_CBC_SHA
DH
RSA
SEED(128)
SHA1



CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
RSA
RSA
Camellia(128)
SHA1



AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA
RSA
RSA
AES(128)
SHA1



SEED-SHA
(Weak)
SSLv3
0x00,0x96
No FS

TLS_RSA_WITH_SEED_CBC_SHA
RSA
RSA
SEED(128)
SHA1



ECDHE-RSA-RC4-SHA
(Insecure)
SSLv3
0xC0,0x11
No FS

TLS_ECDHE_RSA_WITH_RC4_128_SHA
ECDH
RSA
RC4(128)
SHA1



RC4-SHA
(Insecure)
SSLv3
0x00,0x05
No FS

TLS_RSA_WITH_RC4_128_SHA
RSA
RSA
RC4(128)
SHA1



RC4-MD5
(Insecure)
SSLv3
0x00,0x04
No FS

TLS_RSA_WITH_RC4_128_MD5
RSA
RSA
RC4(128)
MD5



AECDH-AES256-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x19
No FS

TLS_ECDH_anon_WITH_AES_256_CBC_SHA
ECDH
None
AES(256)
SHA1



AECDH-DES-CBC3-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x17
No FS

TLS_ECDH_anon_WITH_3DES_EDE_CBC_SHA
ECDH
None
3DES(168)
SHA1



AECDH-AES128-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x18
No FS

TLS_ECDH_anon_WITH_AES_128_CBC_SHA
ECDH
None
AES(128)
SHA1



AECDH-RC4-SHA
(Fatal Insecure - no authentication)
SSLv3
0xC0,0x16
No FS

TLS_ECDH_anon_WITH_RC4_128_SHA
ECDH
None
RC4(128)
SHA1


2083
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
4 Ciphers, 71.50 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD


2087
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
4 Ciphers, 72.46 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD


2096
ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS
4 Ciphers, 74.17 sec
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
ECDH
RSA
AESGCM(256)
AEAD



DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
DH
RSA
AESGCM(256)
AEAD



ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
ECDH
RSA
AESGCM(128)
AEAD



DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
DH
RSA
AESGCM(128)
AEAD


17. Portchecks

DomainIPPortDescriptionResultAnswer
factuminv.com
50.31.174.98
21
FTP
open
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 5 of 500 allowed. 220-Local time is now 10:17. Server port: 21. 220-This is a private system - No anonymous login 220-IPv6 connections are also welcome on this server. 220 You will be disconnected after 15 minutes of inactivity.

factuminv.com
50.31.174.98
21
FTP
open
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 5 of 500 allowed. 220-Local time is now 10:17. Server port: 21. 220-This is a private system - No anonymous login 220-IPv6 connections are also welcome on this server. 220 You will be disconnected after 15 minutes of inactivity.

factuminv.com
50.31.174.98
22
SSH



factuminv.com
50.31.174.98
22
SSH



factuminv.com
50.31.174.98
25
SMTP
open


factuminv.com
50.31.174.98
25
SMTP
open


factuminv.com
50.31.174.98
53
DNS
open


factuminv.com
50.31.174.98
53
DNS
open


factuminv.com
50.31.174.98
110
POP3
open
+OK Dovecot ready.

factuminv.com
50.31.174.98
110
POP3
open
+OK Dovecot ready.
This port ist unencrypted and deprecated. Don't use it.
factuminv.com
50.31.174.98
143
IMAP
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready.

factuminv.com
50.31.174.98
143
IMAP
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
This port ist unencrypted and deprecated. Don't use it.
factuminv.com
50.31.174.98
465
SMTP (encrypted)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:17:37 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.
Mail certificate is valid
factuminv.com
50.31.174.98
465
SMTP (encrypted)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:17:37 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.
Mail certificate is valid
factuminv.com
50.31.174.98
587
SMTP (encrypted, submission)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:17:29 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.

Answer EHLO: 250-bh7112.banahosting.com Hello intern.server-daten.de [85.215.2.227] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPE_CONNECT 250-AUTH PLAIN LOGIN 250-STARTTLS 250 HELP

Answer AUTH LOGIN: 334 VXNlcm5hbWU6

Mail certificate is valid
factuminv.com
50.31.174.98
587
SMTP (encrypted, submission)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:17:29 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.
Mail certificate is valid
Answer EHLO: 250-bh7112.banahosting.com Hello intern.server-daten.de [85.215.2.227] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPE_CONNECT 250-AUTH PLAIN LOGIN 250-STARTTLS 250 HELP Good: STARTTLS found
Answer AUTH LOGIN: 334 VXNlcm5hbWU6 Bad: Unencrypted Login allowed
Mail From: openrelay-test@check-your-website.server-daten.de
RCPT TO: openrelay-result@check-your-website.server-daten.de
Excellent: Server want's Renegotiating after sending the RCPT TO - Command, no open relay after STARTTLS
factuminv.com
50.31.174.98
993
IMAP (encrypted)
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
Mail certificate is valid
factuminv.com
50.31.174.98
993
IMAP (encrypted)
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
Mail certificate is valid
factuminv.com
50.31.174.98
995
POP3 (encrypted)
open
+OK Dovecot ready.
Mail certificate is valid
factuminv.com
50.31.174.98
995
POP3 (encrypted)
open
+OK Dovecot ready.
Mail certificate is valid
factuminv.com
50.31.174.98
1433
MS SQL



factuminv.com
50.31.174.98
1433
MS SQL



factuminv.com
50.31.174.98
2082
cPanel (http)
open
http://50.31.174.98:2082/
Http-Status: 301
Redirect: https://factuminv.com:2083/
factuminv.com
50.31.174.98
2082
cPanel (http)
open
http://50.31.174.98:2082/
Http-Status: 301
Redirect: https://factuminv.com:2083/
factuminv.com
50.31.174.98
2083
cPanel (https)
open
https://50.31.174.98:2083/
Http-Status: 200
Certificate is valid
factuminv.com
50.31.174.98
2083
cPanel (https)
open
https://50.31.174.98:2083/
Http-Status: 200
Certificate is valid
factuminv.com
50.31.174.98
2086
WHM (http)
open
http://50.31.174.98:2086/
Http-Status: 301
Redirect: https://factuminv.com:2087/
factuminv.com
50.31.174.98
2086
WHM (http)
open
http://50.31.174.98:2086/
Http-Status: 301
Redirect: https://factuminv.com:2087/
factuminv.com
50.31.174.98
2087
WHM (https)
open
https://50.31.174.98:2087/
Http-Status: 200
Certificate is valid
factuminv.com
50.31.174.98
2087
WHM (https)
open
https://50.31.174.98:2087/
Http-Status: 200
Certificate is valid
factuminv.com
50.31.174.98
2089
cPanel Licensing



factuminv.com
50.31.174.98
2089
cPanel Licensing



factuminv.com
50.31.174.98
2095
cPanel Webmail (http)
open
http://50.31.174.98:2095/
Http-Status: 301
Redirect: https://factuminv.com:2096/
factuminv.com
50.31.174.98
2095
cPanel Webmail (http)
open
http://50.31.174.98:2095/
Http-Status: 301
Redirect: https://factuminv.com:2096/
factuminv.com
50.31.174.98
2096
cPanel Webmail (https)
open
https://50.31.174.98:2096/
Http-Status: 200
Certificate is valid
factuminv.com
50.31.174.98
2096
cPanel Webmail (https)
open
https://50.31.174.98:2096/
Http-Status: 200
Certificate is valid
factuminv.com
50.31.174.98
2222
DirectAdmin (http)



factuminv.com
50.31.174.98
2222
DirectAdmin (http)



factuminv.com
50.31.174.98
2222
DirectAdmin (https)



factuminv.com
50.31.174.98
2222
DirectAdmin (https)



factuminv.com
50.31.174.98
3306
mySql
open


factuminv.com
50.31.174.98
3306
mySql
open


factuminv.com
50.31.174.98
5224
Plesk Licensing



factuminv.com
50.31.174.98
5224
Plesk Licensing



factuminv.com
50.31.174.98
5432
PostgreSQL



factuminv.com
50.31.174.98
5432
PostgreSQL



factuminv.com
50.31.174.98
8080
Ookla Speedtest (http)



factuminv.com
50.31.174.98
8080
Ookla Speedtest (http)



factuminv.com
50.31.174.98
8080
Ookla Speedtest (https)



factuminv.com
50.31.174.98
8080
Ookla Speedtest (https)



factuminv.com
50.31.174.98
8083
VestaCP http



factuminv.com
50.31.174.98
8083
VestaCP http



factuminv.com
50.31.174.98
8083
VestaCP https



factuminv.com
50.31.174.98
8083
VestaCP https



factuminv.com
50.31.174.98
8443
Plesk Administration (https)



factuminv.com
50.31.174.98
8443
Plesk Administration (https)



factuminv.com
50.31.174.98
8447
Plesk Installer + Updates



factuminv.com
50.31.174.98
8447
Plesk Installer + Updates



factuminv.com
50.31.174.98
8880
Plesk Administration (http)



factuminv.com
50.31.174.98
8880
Plesk Administration (http)



factuminv.com
50.31.174.98
10000
Webmin (http)



factuminv.com
50.31.174.98
10000
Webmin (http)



factuminv.com
50.31.174.98
10000
Webmin (https)



factuminv.com
50.31.174.98
10000
Webmin (https)



www.factuminv.com
50.31.174.98
21
FTP
open
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 5 of 500 allowed. 220-Local time is now 10:17. Server port: 21. 220-This is a private system - No anonymous login 220-IPv6 connections are also welcome on this server. 220 You will be disconnected after 15 minutes of inactivity.

www.factuminv.com
50.31.174.98
21
FTP
open
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 5 of 500 allowed. 220-Local time is now 10:17. Server port: 21. 220-This is a private system - No anonymous login 220-IPv6 connections are also welcome on this server. 220 You will be disconnected after 15 minutes of inactivity.

www.factuminv.com
50.31.174.98
22
SSH



www.factuminv.com
50.31.174.98
22
SSH



www.factuminv.com
50.31.174.98
25
SMTP
open


www.factuminv.com
50.31.174.98
25
SMTP
open


www.factuminv.com
50.31.174.98
53
DNS
open


www.factuminv.com
50.31.174.98
53
DNS
open


www.factuminv.com
50.31.174.98
110
POP3
open
+OK Dovecot ready.

www.factuminv.com
50.31.174.98
110
POP3
open
+OK Dovecot ready.
This port ist unencrypted and deprecated. Don't use it.
www.factuminv.com
50.31.174.98
143
IMAP
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready.

www.factuminv.com
50.31.174.98
143
IMAP
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
This port ist unencrypted and deprecated. Don't use it.
www.factuminv.com
50.31.174.98
465
SMTP (encrypted)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:18:22 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.
Mail certificate is valid
www.factuminv.com
50.31.174.98
465
SMTP (encrypted)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:18:22 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.
Mail certificate is valid
www.factuminv.com
50.31.174.98
587
SMTP (encrypted, submission)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:18:14 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.

Answer EHLO: 250-bh7112.banahosting.com Hello intern.server-daten.de [85.215.2.227] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPE_CONNECT 250-AUTH PLAIN LOGIN 250-STARTTLS 250 HELP

Answer AUTH LOGIN: 334 VXNlcm5hbWU6

Mail certificate is valid
www.factuminv.com
50.31.174.98
587
SMTP (encrypted, submission)
open
220-bh7112.banahosting.com ESMTP Exim 4.95 #2 Tue, 24 Jan 2023 10:18:14 -0500 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.
Mail certificate is valid
Answer EHLO: 250-bh7112.banahosting.com Hello intern.server-daten.de [85.215.2.227] 250-SIZE 52428800 250-8BITMIME 250-PIPELINING 250-PIPE_CONNECT 250-AUTH PLAIN LOGIN 250-STARTTLS 250 HELP Good: STARTTLS found
Answer AUTH LOGIN: 334 VXNlcm5hbWU6 Bad: Unencrypted Login allowed
Mail From: openrelay-test@check-your-website.server-daten.de
RCPT TO: openrelay-result@check-your-website.server-daten.de
Excellent: Server want's Renegotiating after sending the RCPT TO - Command, no open relay after STARTTLS
www.factuminv.com
50.31.174.98
993
IMAP (encrypted)
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
Mail certificate is valid
www.factuminv.com
50.31.174.98
993
IMAP (encrypted)
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
Mail certificate is valid
www.factuminv.com
50.31.174.98
995
POP3 (encrypted)
open
+OK Dovecot ready.
Mail certificate is valid
www.factuminv.com
50.31.174.98
995
POP3 (encrypted)
open
+OK Dovecot ready.
Mail certificate is valid
www.factuminv.com
50.31.174.98
1433
MS SQL



www.factuminv.com
50.31.174.98
1433
MS SQL



www.factuminv.com
50.31.174.98
2082
cPanel (http)
open
http://50.31.174.98:2082/
Http-Status: 301
Redirect: https://www.factuminv.com:2083/
www.factuminv.com
50.31.174.98
2082
cPanel (http)
open
http://50.31.174.98:2082/
Http-Status: 301
Redirect: https://www.factuminv.com:2083/
www.factuminv.com
50.31.174.98
2083
cPanel (https)
open
https://50.31.174.98:2083/
Http-Status: 200
Certificate is valid
www.factuminv.com
50.31.174.98
2083
cPanel (https)
open
https://50.31.174.98:2083/
Http-Status: 200
Certificate is valid
www.factuminv.com
50.31.174.98
2086
WHM (http)
open
http://50.31.174.98:2086/
Http-Status: 301
Redirect: https://www.factuminv.com:2087/
www.factuminv.com
50.31.174.98
2086
WHM (http)
open
http://50.31.174.98:2086/
Http-Status: 301
Redirect: https://www.factuminv.com:2087/
www.factuminv.com
50.31.174.98
2087
WHM (https)
open
https://50.31.174.98:2087/
Http-Status: 200
Certificate is valid
www.factuminv.com
50.31.174.98
2087
WHM (https)
open
https://50.31.174.98:2087/
Http-Status: 200
Certificate is valid
www.factuminv.com
50.31.174.98
2089
cPanel Licensing



www.factuminv.com
50.31.174.98
2089
cPanel Licensing



www.factuminv.com
50.31.174.98
2095
cPanel Webmail (http)
open
http://50.31.174.98:2095/
Http-Status: 301
Redirect: https://www.factuminv.com:2096/
www.factuminv.com
50.31.174.98
2095
cPanel Webmail (http)
open
http://50.31.174.98:2095/
Http-Status: 301
Redirect: https://www.factuminv.com:2096/
www.factuminv.com
50.31.174.98
2096
cPanel Webmail (https)
open
https://50.31.174.98:2096/
Http-Status: 200
Certificate is valid
www.factuminv.com
50.31.174.98
2096
cPanel Webmail (https)
open
https://50.31.174.98:2096/
Http-Status: 200
Certificate is valid
www.factuminv.com
50.31.174.98
2222
DirectAdmin (http)



www.factuminv.com
50.31.174.98
2222
DirectAdmin (http)



www.factuminv.com
50.31.174.98
2222
DirectAdmin (https)



www.factuminv.com
50.31.174.98
2222
DirectAdmin (https)



www.factuminv.com
50.31.174.98
3306
mySql
open


www.factuminv.com
50.31.174.98
3306
mySql
open


www.factuminv.com
50.31.174.98
5224
Plesk Licensing



www.factuminv.com
50.31.174.98
5224
Plesk Licensing



www.factuminv.com
50.31.174.98
5432
PostgreSQL



www.factuminv.com
50.31.174.98
5432
PostgreSQL



www.factuminv.com
50.31.174.98
8080
Ookla Speedtest (http)



www.factuminv.com
50.31.174.98
8080
Ookla Speedtest (http)



www.factuminv.com
50.31.174.98
8080
Ookla Speedtest (https)



www.factuminv.com
50.31.174.98
8080
Ookla Speedtest (https)



www.factuminv.com
50.31.174.98
8083
VestaCP http



www.factuminv.com
50.31.174.98
8083
VestaCP http



www.factuminv.com
50.31.174.98
8083
VestaCP https



www.factuminv.com
50.31.174.98
8083
VestaCP https



www.factuminv.com
50.31.174.98
8443
Plesk Administration (https)



www.factuminv.com
50.31.174.98
8443
Plesk Administration (https)



www.factuminv.com
50.31.174.98
8447
Plesk Installer + Updates



www.factuminv.com
50.31.174.98
8447
Plesk Installer + Updates



www.factuminv.com
50.31.174.98
8880
Plesk Administration (http)



www.factuminv.com
50.31.174.98
8880
Plesk Administration (http)



www.factuminv.com
50.31.174.98
10000
Webmin (http)



www.factuminv.com
50.31.174.98
10000
Webmin (http)



www.factuminv.com
50.31.174.98
10000
Webmin (https)



www.factuminv.com
50.31.174.98
10000
Webmin (https)





Permalink: https://check-your-website.server-daten.de/?i=fb89c6dd-e431-4034-b53a-f5367432d79e


Last Result: https://check-your-website.server-daten.de/?q=factuminv.com - 2023-01-24 16:16:00


Do you like this page? Support this tool, add a link on your page:

<a href="https://check-your-website.server-daten.de/?q=factuminv.com" target="_blank">Check this Site: factuminv.com</a>

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro