164.138.220.84

Basic Information

Network
SUPERHOSTING_AS (BG)
Routing
164.138.220.0/23 via AS201200
Protocols
80/HTTP, 993/IMAPS, 995/POP3S, 25/SMTP, 110/POP3, 143/IMAP, 53/DNS, 443/HTTPS, 22/SSH, 10000/BANNER, 26/BANNER, 8000/BANNER
Tags
pop3 dns http ssh https pop3s smtp imap imaps

80/HTTP


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
PopBounty - Highest Paying PopUnder Ad Network
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
PopBounty - Highest Paying PopUnder Ad Network
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Heartbleed

Heartbleed
Heartbeat Enabled. Immune to Heartbleed.

Cryptographic Configuration

SSLv3 Support
True This host is vulnerable to the POODLE attack.
Export DHE
False
Export RSA
False
DHE Support
True

Certificate Chain

67ab9e36904a011a20cba19996c97e202cfaad51b676a5638917d8a4ebf09c16
CN=www.popbounty.com
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA

22/SSH


Details

SSHv2 Handshake

Server
OpenSSH 5.3
Banner
SSH-2.0-OpenSSH_5.3

Host Key

Algorithm
ssh-rsa
Fingerprint
cda6a9d602907e874a7aad448257db6a1b4a832e7844f9adc917e97db80f6406

Negotiated Algorithm

Key Exchange
diffie-hellman-group14-sha1
Symmetric Cipher
aes128-ctr [] | aes128-ctr []
MAC
hmac-sha2-256 [] | hmac-sha2-256 []

25/SMTP


Details

Banner Grab and StartTLS Initiation

Banner
220 vpsqqx4a.superdnsserver.net ESMTP
EHLO
250-vpsqqx4a.superdnsserver.net
250-STARTTLS
250-PIPELINING
250-8BITMIME
250-SIZE 0
250 AUTH LOGIN PLAIN
STARTTLS
220 ready for tls

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

24de22b1976f4a322922cfc5b6ee7d05935867310d4cc197d700d45380786c46
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com

53/DNS


Details

Open Resolver Query

Open Resolver
False

110/POP3


Details

Banner Grab and StartTLS Initiation

Banner
+OK ready.
STARTTLS
+OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

24de22b1976f4a322922cfc5b6ee7d05935867310d4cc197d700d45380786c46
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com

143/IMAP


Details

Banner Grab and StartTLS Initiation

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN] ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

24de22b1976f4a322922cfc5b6ee7d05935867310d4cc197d700d45380786c46
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com

993/IMAPS


Details

Banner Grab

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN] ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

24de22b1976f4a322922cfc5b6ee7d05935867310d4cc197d700d45380786c46
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com

995/POP3S


Details

Banner Grab

Banner
+OK ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

24de22b1976f4a322922cfc5b6ee7d05935867310d4cc197d700d45380786c46
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com
C=BG, ST=Sofia, L=Sofia, O=SH, OU=SH, CN=mail.domain.com

10000/BANNER View Only


Details

Banner Info

Port
10000
Protocol
TCP
Decoded Banner
HTTP/1.0 200 Document follows
Server: MiniServ/1.890
Date: Thu, 6 Aug 2020 20:46:04 GMT
Content-type: text/html; Charset=iso-8859-1
Connection: close

<h1>Error - Document follows</h1>
<p>This web server is running in SSL mode. Try the URL <a href='https://host-164-138-220-84.superhosting.bg:10000/'>https://host-164-138-220-84.superhosting.bg:10000/</a> instead.<br></p>

26/BANNER View Only


Details

Banner Info

Port
26
Protocol
TCP
Decoded Banner
220 vpsqqx4a.superdnsserver.net ESMTP

8000/BANNER View Only


Details Go

Banner Info

Port
8000
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Date: Tue, 04 Aug 2020 05:39:38 GMT
Server: Apache
Content-Length: 0
Connection: close
Content-Type: text/html

Geographic Location

Country
Bulgaria (BG)
Lat/Long
42.696, 23.332
Timezone
Europe/Sofia