199.16.128.114

Basic Information

Network
PLANETHOSTER-8 (CA)
Routing
199.16.128.0/24 via AS11164 , AS6461 , AS53589
Protocols
80/HTTP, 465/SMTP, 995/POP3S, 993/IMAPS, 21/FTP, 143/IMAP, 8888/HTTP, 443/HTTPS, 8887/BANNER, 8889/BANNER
Tags
ftp pop3s http imap imaps

80/HTTP


Details Go

GET /

Server
Apache httpd
Status Line
200 OK
GET /
[view page]

8888/HTTP


Details Go

GET /

Server
Apache httpd
Status Line
200 OK
Page Title
PlanetHoster Security / Unauthorized Access
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
Apache httpd
Status Line
200 OK
Page Title
ABC.zd.fr – Knowledgeable you
GET /
[view page]

21/FTP


Details

Banner Grab

Server
Pure-FTPd
Banner:
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 1 of 50 allowed.
220-Local time is now 17:15. Server port: 21.
220-This is a private system - No anonymous login
220-IPv6 connections are also welcome on this server.
220 You will be disconnected after 15 minutes of inactivity.

465/SMTP


Details

Banner Grab

Banner
220-world-214.ca.planethoster.net ESMTP Exim 4.94.2 #2 Mon, 14 Jun 2021 16:59:34 -0400 220-We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

567ae8885663712b16a79762106a9f0ed41054d1c5ebef4fd78c0e2ade1f3719
CN=world-214.ca.planethoster.net
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

567ae8885663712b16a79762106a9f0ed41054d1c5ebef4fd78c0e2ade1f3719
CN=world-214.ca.planethoster.net
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority
821cc55ce7ec5c74febb42f624eb6a36c478215a31ed67e3cf723a67e8c75eba
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
38392f17ce7b682c198d29c6e71d2740964a2074c8d2558e6cff64c27823f129
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services

993/IMAPS


Details

Banner Grab

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE NAMESPACE LITERAL+ AUTH=PLAIN AUTH=LOGIN] Dovecot ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

567ae8885663712b16a79762106a9f0ed41054d1c5ebef4fd78c0e2ade1f3719
CN=world-214.ca.planethoster.net
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority
821cc55ce7ec5c74febb42f624eb6a36c478215a31ed67e3cf723a67e8c75eba
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
38392f17ce7b682c198d29c6e71d2740964a2074c8d2558e6cff64c27823f129
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services

995/POP3S


Details

Banner Grab

Banner
+OK Dovecot ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

567ae8885663712b16a79762106a9f0ed41054d1c5ebef4fd78c0e2ade1f3719
CN=world-214.ca.planethoster.net
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority
821cc55ce7ec5c74febb42f624eb6a36c478215a31ed67e3cf723a67e8c75eba
C=US, ST=TX, L=Houston, O=cPanel, Inc., CN=cPanel, Inc. Certification Authority
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
38392f17ce7b682c198d29c6e71d2740964a2074c8d2558e6cff64c27823f129
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Certification Authority
C=GB, ST=Greater Manchester, L=Salford, O=Comodo CA Limited, CN=AAA Certificate Services

8887/BANNER View Only


Details

Banner Info

Port
8887
Protocol
TCP
Decoded Banner
HTTP/1.1 400 Bad Request
Date: Wed, 16 Jun 2021 00:43:21 GMT
Server: Apache
Upgrade: h2,h2c
Connection: Upgrade, close
Vary: Accept-Encoding
Content-Type: text/html; charset=UTF-8

<!doctype html>
<html lang="Array">
<head>
  <title>PlanetHoster Security / Unauthorized Access</title>
  <meta charset="UTF-8">
  <meta name="description" content="PlanetHoster Security / Unauthorized Access">
  <meta name="viewport" content="width=device-width" />
  <script src='https://www.google.com/recaptcha/api.js'></script>
  <link rel='stylesheet' href='https://maxcdn.bootstrapcdn.com/bootstrap/3.3.7/css/bootstrap.min.css'>
</head>
<body>
  <style>
    body{
      background-color: #f7f7f7;
    }
    .top-bar{
      width: 100%;
      height: 40px;
      background-color: #fff;
      text-align: right;
      padding: 10px 20px;
    }
    .blink-point {
      width: 10px;
      height: 10px!important;
      display: inline-block;
      font-size: 12px;
      background: #84b749;
      margin-right: 5px;
      border-

8889/BANNER View Only


Details

Banner Info

Port
8889
Protocol
TCP
Decoded Banner
Your connection to this server has been blocked in this server's firewall. You need to contact the server owner or hosting provider for further information. Your blocked IP address is: 162.142.125.128 This server's hostname is: world-214.ca.planethoster.net 

Geographic Location

Country
Canada (CA)
Lat/Long
43.6319, -79.3716
Timezone
America/Toronto