31.31.198.217

Basic Information

Network
AS-REG (RU)
Routing
31.31.198.0/24 via AS11164 , AS3491 , AS20485 , AS20485 , AS39134 , AS197695
Protocols
80/HTTP, 3306/MYSQL, 8080/HTTP, 993/IMAPS, 465/SMTP, 995/POP3S, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 53/DNS, 587/SMTP, 443/HTTPS, 22/SSH, 4190/BANNER, 7081/BANNER, 7082/BANNER, 8443/BANNER, 8880/BANNER
Tags
ftp http dns embedded database pop3s smtp imaps pop3 ssh https mysql imap

80/HTTP


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
Домен не добавлен в панели
GET /
[view page]

8080/HTTP


Details Go

GET /

Server
Apache httpd
Status Line
200 OK
Page Title
Домен не добавлен в панели
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
nginx
Status Line
200 OK
Page Title
Домен не добавлен в панели
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Heartbleed

Heartbleed
Heartbeat Disabled (OK)

Cryptographic Configuration

Export DHE
False
Export RSA
False
DHE Support
False

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

21/FTP


Details

Banner Grab

Banner:
220 ProFTPD Server (ProFTPD) [31.31.198.217]

22/SSH


Details

SSHv2 Handshake

Server
Dropbear SSH 2019.78
Banner
SSH-2.0-dropbear_2019.78

Host Key

Algorithm
ecdsa-sha2-nistp256
Fingerprint
7da17239aa947711dc1f137de3f7823a51a3e154edc3c69681e47309ff5fb49e

Negotiated Algorithm

Key Exchange
[email protected]
Symmetric Cipher
aes128-ctr [] | aes128-ctr []
MAC
hmac-sha2-256 [] | hmac-sha2-256 []

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 spl97.hosting.reg.ru ESMTP Postfix
EHLO
250-spl97.hosting.reg.ru
250-PIPELINING
250-SIZE 52428800
250-ETRN
250-STARTTLS
250-AUTH CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

465/SMTP


Details

Banner Grab

Banner
220 spl97.hosting.reg.ru ESMTP Postfix

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2

587/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 spl97.hosting.reg.ru ESMTP Postfix
EHLO
250-spl97.hosting.reg.ru
250-PIPELINING
250-SIZE 52428800
250-ETRN
250-STARTTLS
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

53/DNS


Details

Open Resolver Query

Open Resolver
False

110/POP3


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
+OK Dovecot ready. <[email protected]>
STARTTLS
+OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

993/IMAPS


Details

Banner Grab

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

995/POP3S


Details

Banner Grab

Banner
+OK Dovecot ready. <[email protected]>

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

923deca03aa9e5e13d7dca428c1ed5122eca9a29b948d765706c1ce2dd83cc44
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
ee793643199474ed60efdc8ccde4d37445921683593aa751bbf8ee491a391e97
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA

3306/MySQL


Details

Banner Grab

Version
5.7.27-30
Protocol Version
10

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Certificate Chain

e30674e727b3b6a541001c77f1d429e535bdfffdd19faebfb45036a4694fffd1
CN=MySQL_Server_5.7.27-30_Auto_Generated_Server_Certificate
CN=MySQL_Server_5.7.27-30_Auto_Generated_CA_Certificate
885006a5cff1d375540b3bc532823ddc94d65a84b3f7e31af7c22e6f2f89f32f
CN=MySQL_Server_5.7.27-30_Auto_Generated_CA_Certificate
CN=MySQL_Server_5.7.27-30_Auto_Generated_CA_Certificate

4190/BANNER View Only


Details

Banner Info

Port
4190
Protocol
TCP
Decoded Banner
"IMPLEMENTATION" "Dovecot Pigeonhole"
"SIEVE" "fileinto reject envelope encoded-character vacation subaddress comparator-i;ascii-numeric relational regex imap4flags copy include variables body enotify environment mailbox date index ihave duplicate mime foreverypart extracttext imapflags notify"
"NOTIFY" "mailto"
"SASL" "PLAIN LOGIN DIGEST-MD5 CRAM-MD5"
"STARTTLS"
"VERSION" "1.0"
OK "Dovecot ready."

7081/BANNER View Only


Details

Banner Info

Port
7081
Protocol
TCP
Decoded Banner
HTTP/1.1 400 Bad Request
Date: Wed, 20 Oct 2021 05:43:20 GMT
Server: Apache
Content-Length: 362
Connection: close
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>400 Bad Request</title>
</head><body>
<h1>Bad Request</h1>
<p>Your browser sent a request that this server could not understand.<br />
Reason: You're speaking plain HTTP to an SSL-enabled server port.<br />
 Instead use the HTTPS scheme to access this URL, please.<br />
</p>
</body></html>

7082/BANNER View Only


Details

Banner Info

Port
7082
Protocol
TCP
Decoded Banner
HTTP/1.1 400 Bad Request
Date: Wed, 20 Oct 2021 05:43:20 GMT
Server: Apache
Last-Modified: Thu, 17 Aug 2017 10:35:37 GMT
ETag: "351-556f092b49040"
Accept-Ranges: bytes
Content-Length: 849
X-Powered-By: PleskLin
Connection: close
Content-Type: text/html

<!DOCTYPE html>
<html lang="en">
<head>
  <meta charset="utf-8">
  <meta http-equiv="x-ua-compatible" content="ie=edge">
  <meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">
  <title>400 Bad Request</title>
  <link rel="stylesheet" href="/error_docs/styles.css">
</head>
<body>
<div class="page">
  <div class="main">
    <h1>Server Error</h1>
    <div class="error-code">400</div>
    <h2>Bad Request</h2>
    <p class="lead">Your browser sent a request that this server could not understand. Client sent malformed Host header.</p>
    <hr/>
    <p>That's what you can do</p>
    <div class="help-actions">
      <a href="javascript:location.reload();">Reload Page</a>
      <a href="javascript:history.back();">Back to Pr

8443/BANNER View Only


Details

Banner Info

Port
8443
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Moved Temporarily
Server: sw-cp-server
Date: Wed, 20 Oct 2021 05:43:20 GMT
Content-Type: text/html
Content-Length: 138
Connection: close
Location: https://31.31.198.217:8443/

<html>
<head><title>302 Found</title></head>
<body>
<center><h1>302 Found</h1></center>
<hr><center>nginx</center>
</body>
</html>

8880/BANNER View Only


Details

Banner Info

Port
8880
Protocol
TCP
Decoded Banner
HTTP/1.1 303 See Other
Server: sw-cp-server
Date: Wed, 20 Oct 2021 05:43:20 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Wed, 20 Oct 2021 05:43:20 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Location: http://31.31.198.217:8880/login.php?success_redirect_url=http%3A%2F%2F31.31.198.217%3A8880%2F

0

Geographic Location

Country
Russia (RU)
Lat/Long
55.7386, 37.6068
Timezone
Europe/Moscow