138.201.139.154

Basic Information

Network
HETZNER-AS (DE)
Routing
138.201.0.0/16 via AS7018 , AS1299 , AS24940 AS24940
Protocols
80/HTTP, 3306/MYSQL, 993/IMAPS, 465/SMTP, 995/POP3S, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 53/DNS, 443/HTTPS, 587/SMTP, 106/BANNER, 4190/BANNER, 7080/BANNER, 7081/BANNER, 8443/BANNER, 8880/BANNER
Tags
ftp http https database pop3s smtp imaps pop3 dns mysql imap

80/HTTP


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
Occhio GmbH
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
Occhio GmbH
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)
Browser Trusted
True

Heartbleed

Heartbleed
Heartbeat Enabled. Immune to Heartbleed.

Cryptographic Configuration

Export DHE
False
Export RSA
False
DHE Support
False

Certificate Chain

c412db00d18d6228a23a891151e26c649a3cc5f2b635f2323146a1314112cc8f
C=DE, ST=Bayern, L=M√ľnchen, O=Occhio GmbH, CN=*.occhio.de
C=US, O=DigiCert Inc, OU=www.digicert.com, CN=Thawte TLS RSA CA G1
4bcc5e234fe81ede4eaf883aa19c31335b0b26e85e066b9945e4cb6153eb20c2
C=US, O=DigiCert Inc, OU=www.digicert.com, CN=Thawte TLS RSA CA G1
C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root G2

21/FTP


Details

Banner Grab

Banner:
220 ProFTPD Server (ProFTPD) [138.201.139.154]

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 server4.occhio.net ESMTP Postfix (Debian/GNU)
EHLO
250-server4.occhio.net
250-PIPELINING
250-SIZE 10240000
250-ETRN
250-STARTTLS
250-AUTH DIGEST-MD5 CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

465/SMTP


Details

Banner Grab

Banner
220 server4.occhio.net ESMTP Postfix (Debian/GNU)

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

587/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 server4.occhio.net ESMTP Postfix (Debian/GNU)
EHLO
250-server4.occhio.net
250-PIPELINING
250-SIZE 10240000
250-ETRN
250-STARTTLS
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

53/DNS


Details

Open Resolver Query

Open Resolver
False

110/POP3


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
+OK Dovecot ready. <[email protected]>
STARTTLS
+OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

993/IMAPS


Details

Banner Grab

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

995/POP3S


Details

Banner Grab

Banner
+OK Dovecot ready. <[email protected]>

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

619e4d9edf6413d6135199bab76a6427822c87f50d62daa5861ffdd8c533baac
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]
C=US, ST=Washington, L=Seattle, O=Odin, OU=Plesk, CN=Plesk, [email protected]

3306/MySQL


Details

Banner Grab

Version
5.5.5-10.0.38-MariaDB-0+deb8u1
Protocol Version
10

106/BANNER View Only


Details

Banner Info

Port
106
Protocol
TCP
Decoded Banner
200 poppassd hello, who are you?

4190/BANNER View Only


Details

Banner Info

Port
4190
Protocol
TCP
Decoded Banner
"IMPLEMENTATION" "Dovecot Pigeonhole"
"SIEVE" "fileinto reject envelope encoded-character vacation subaddress comparator-i;ascii-numeric relational regex imap4flags copy include variables body enotify environment mailbox date index ihave duplicate mime foreverypart extracttext imapflags notify"
"NOTIFY" "mailto"
"SASL" "PLAIN LOGIN DIGEST-MD5 CRAM-MD5"
"STARTTLS"
"VERSION" "1.0"
OK "Dovecot ready."

7080/BANNER View Only


Details

Banner Info

Port
7080
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Date: Sat, 31 Oct 2020 01:46:56 GMT
Server: Apache
Last-Modified: Wed, 31 Jan 2018 05:25:56 GMT
ETag: "2c7-5640bb6b36a00"
Accept-Ranges: bytes
Content-Length: 711
Vary: Accept-Encoding
Content-Type: text/html

<head>
<title>Occhio GmbH</title>
<META NAME="Title" CONTENT="Axelmeiselicht" >
<META NAME="revisit-after" CONTENT="7 days">
<META NAME="content-language" CONTENT="de">
<META NAME="Keywords" CONTENT="Axelmeiselicht">
<META NAME="Description" CONTENT="Axelmeiselicht">
<META NAME="audience" CONTENT=" Alle ">
<META NAME="robots" CONTENT="index, follow">
<META NAME="author" CONTENT="Axelmeiselicht">
<META NAME="copyright" CONTENT="Axelmeiselicht">
<META NAME="publisher" CONTENT="Axelmeiselicht">
<META http-equiv="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<meta http-equiv="refresh" content="0;URL=https://www.occhio.de/store/luxembourg/de?pid=0">
</head>
<body bgcolor="#FFFFFF" text="#000000">

7081/BANNER View Only


Details

Banner Info

Port
7081
Protocol
TCP
Decoded Banner
HTTP/1.1 400 Bad Request
Date: Sat, 31 Oct 2020 01:46:56 GMT
Server: Apache
Content-Length: 436
Connection: close
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>400 Bad Request</title>
</head><body>
<h1>Bad Request</h1>
<p>Your browser sent a request that this server could not understand.<br />
Reason: You're speaking plain HTTP to an SSL-enabled server port.<br />
 Instead use the HTTPS scheme to access this URL, please.<br />
</p>
<hr>
<address>Apache Server at default-138_201_139_154 Port 443</address>
</body></html>

8443/BANNER View Only


Details

Banner Info

Port
8443
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Moved Temporarily
Server: sw-cp-server
Date: Sat, 31 Oct 2020 01:46:56 GMT
Content-Type: text/html
Content-Length: 138
Connection: close
Location: https://138.201.139.154:8443/

<html>
<head><title>302 Found</title></head>
<body>
<center><h1>302 Found</h1></center>
<hr><center>nginx</center>
</body>
</html>

8880/BANNER View Only


Details

Banner Info

Port
8880
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Server: sw-cp-server
Date: Sat, 31 Oct 2020 01:46:56 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Sat, 31 Oct 2020 01:46:56 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"

5b9

        <html><head>
        <meta charset="utf-8">
        <meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1">
        <meta name="plesk-build" content="1708180301.19">
        <title>Plesk Onyx 17.8.11</title>
        <script language="javascript" type="text/javascript" src="/javascript/common.js?1519907516"/></script>
        <script language="javascript" type="text/javascript" src="/javascript/externals/prototype.js?1519907516"/></script>
        
        </head><body onLoad=";top.location='/login.php?success_redirect_url=http%3A%2F%2F138.201.139.154%3A8880%2F';"></body><nosc

Geographic Location

Country
Germany (DE)
Lat/Long
51.2993, 9.491
Timezone
Europe/Berlin