148.251.188.92

Basic Information

OS
Ubuntu
Network
HETZNER-AS (DE)
Routing
148.251.0.0/16 via AS7018 , AS1299 , AS24940 AS24940
Protocols
80/HTTP, 993/IMAPS, 995/POP3S, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 53/DNS, 443/HTTPS, 22/SSH, 3307/BANNER, 465/BANNER, 8443/BANNER, 8880/BANNER
Tags
pop3 ftp dns http ssh https pop3s smtp imap imaps

80/HTTP


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
Web Server's Default Page
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
Web Server's Default Page
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (0xCCA8)

Heartbleed

Heartbleed
Heartbeat Disabled (OK)

Cryptographic Configuration

Export DHE
False
Export RSA
False
DHE Support
False

Certificate Chain

284e0bff6ba331e362382d1716b0cfba43b488ae417a167a6fcbfcbd68a017c0
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]

21/FTP


Details

Banner Grab

Banner:
220 ProFTPD Server (ProFTPD) [148.251.188.92]

22/SSH


Details

SSHv2 Handshake

Server
OpenSSH 7.6p1
Banner
SSH-2.0-OpenSSH_7.6p1 Ubuntu-4ubuntu0.3

Host Key

Algorithm
ecdsa-sha2-nistp256
Fingerprint
2cb07e247dcd639e28270ed7e463793cd59416269d91ec22de9afb890067a5be

Negotiated Algorithm

Key Exchange
[email protected]
Symmetric Cipher
aes128-ctr [] | aes128-ctr []
MAC
hmac-sha2-256 [] | hmac-sha2-256 []

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 app.conversionrocket.de ESMTP Postfix (Ubuntu)
EHLO
250-app.conversionrocket.de
250-PIPELINING
250-SIZE 10240000
250-ETRN
250-STARTTLS
250-AUTH DIGEST-MD5 CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250-SMTPUTF8
250 CHUNKING
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

30f33612c9e8c24c2d56c0917ca80c03a492786c87f1170f7a906b5f811824db
CN=cr-server.de.yourdomain.localdomain
CN=cr-server.de.yourdomain.localdomain

53/DNS


Details

Open Resolver Query

Open Resolver
False

110/POP3


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
+OK Dovecot ready. <[email protected]>
STARTTLS
+OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

284e0bff6ba331e362382d1716b0cfba43b488ae417a167a6fcbfcbd68a017c0
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

284e0bff6ba331e362382d1716b0cfba43b488ae417a167a6fcbfcbd68a017c0
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]

993/IMAPS


Details

Banner Grab

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

284e0bff6ba331e362382d1716b0cfba43b488ae417a167a6fcbfcbd68a017c0
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]

995/POP3S


Details

Banner Grab

Banner
+OK Dovecot ready. <[email protected]>

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

284e0bff6ba331e362382d1716b0cfba43b488ae417a167a6fcbfcbd68a017c0
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]
C=CH, L=Schaffhausen, O=Plesk, CN=Plesk, [email protected]

3307/BANNER View Only


Details

Banner Info

Port
3307
Protocol
TCP
Decoded Banner
700000000a352e352e352d31302e332e31332d4d6172696144422d313a31302e332e31332b6d617269617e62696f6e6963002cd16c00364c5b666c6d5e7000fef7080200bf81150000000000000700000039677b58254c2f485b6f3e25006d7973716c5f6e61746976655f70617373776f726400

465/BANNER View Only


Details

Banner Info

Port
465
Protocol
TCP
Decoded Banner
220 app.conversionrocket.de ESMTP Postfix (Ubuntu)

8443/BANNER View Only


Details

Banner Info

Port
8443
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Moved Temporarily
Server: sw-cp-server
Date: Sat, 12 Sep 2020 02:11:38 GMT
Content-Type: text/html
Content-Length: 138
Connection: close
Location: https://148.251.188.92:8443/

<html>
<head><title>302 Found</title></head>
<body>
<center><h1>302 Found</h1></center>
<hr><center>nginx</center>
</body>
</html>

8880/BANNER View Only


Details

Banner Info

Port
8880
Protocol
TCP
Decoded Banner
HTTP/1.1 303 See Other
Server: sw-cp-server
Date: Thu, 10 Sep 2020 03:19:22 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Thu, 10 Sep 2020 03:19:22 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Location: http://148.251.188.92:8880/login.php?success_redirect_url=http%3A%2F%2F148.251.188.92%3A8880%2F

0

Geographic Location

Country
Germany (DE)
Lat/Long
51.2993, 9.491
Timezone
Europe/Berlin