66.97.37.52

Basic Information

Network
Dattatec.com (AR)
Routing
66.97.37.0/24 via AS7018 , AS3356 , AS3549 , AS27823
Protocols
80/HTTP, 993/IMAPS, 465/SMTP, 995/POP3S, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 443/HTTPS, 587/SMTP, 2082/BANNER, 2083/BANNER, 2087/BANNER, 2095/BANNER
Tags
pop3 ftp http https pop3s smtp imap imaps

80/HTTP


Details Go

GET /

Server
Apache httpd
Status Line
200 OK
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
Apache httpd
Status Line
200 OK
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Heartbleed

Heartbleed
Heartbeat Enabled. Immune to Heartbleed.

Cryptographic Configuration

Export DHE
False
Export RSA
False
DHE Support
True

Certificate Chain

de27a56d32704b6dca2dd2bace8d894daac4a6435daf25394b9727239c56d6e8
C=--, ST=SantaFe, L=Rosario, O=Dattatec.com, OU=IT, CN=centos6.dattaweb.com, [email protected]
C=--, ST=SantaFe, L=Rosario, O=Dattatec.com, OU=IT, CN=centos6.dattaweb.com, [email protected]
8bc1b9d7defcca1ccd09bacda88f27762092f1ed4a34ae5e4602bb9cc915c506
C=US, O=GeoTrust Inc., OU=Domain Validated SSL, CN=GeoTrust DV SSL CA - G4
C=US, O=GeoTrust Inc., CN=GeoTrust Global CA
3fdf788a5a65e6a29d8c1550d8244906a3b8a7b7d3da9bdedd748e4183a763c9
C=US, O=GeoTrust Inc., OU=Domain Validated SSL, CN=GeoTrust DV SSL SHA256 CA - G2
C=US, O=GeoTrust Inc., OU=(c) 2008 GeoTrust Inc. - For authorized use only, CN=GeoTrust Primary Certification Authority - G3
bc3f03a436240edba5f83714f6f677e34b37f9b1f0c08c1e558d981e279e8209
C=US, O=GeoTrust Inc., CN=RapidSSL SHA256 CA - G3
C=US, O=GeoTrust Inc., CN=GeoTrust Global CA
e6683e88315cd1cb403c0cea490f7c4b4c82c91cd485037489aadbaa90839f61
C=US, O=GeoTrust Inc., CN=RapidSSL SHA256 CA
C=US, O=GeoTrust Inc., CN=GeoTrust Global CA
9f2511a23e70d95fb62798508a676cc38964100936a6e6d3cae77154c0290f02
C=US, O=thawte, Inc., OU=Domain Validated SSL, CN=thawte DV SSL CA - G2
C=US, O=thawte, Inc., OU=Certification Services Division, OU=(c) 2006 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA

21/FTP


Details

Banner Grab

Banner:
220 ProFTPD Server (ProFTPD Server) [::ffff:66.97.37.52]

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Exim
Banner
220-vps-1672220-x.dattaweb.com ESMTP Exim 4.92.2 #9 Sat, 16 Oct 2021 01:27:14 -0300
220- We do not authorize the use of this system to transport unsolicited,
220 and/or bulk e-mail.
EHLO
250-vps-1672220-x.dattaweb.com Hello eecs.umich.edu [192.35.168.176]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH LOGIN
250-CHUNKING
250-STARTTLS
250 HELP
STARTTLS
220 TLS go ahead

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3
67add1166b020ae61b8f5fc96813c04c2aa589960796865572a3c7e737613dfd
C=US, O=Let's Encrypt, CN=R3
C=US, O=Internet Security Research Group, CN=ISRG Root X1
6d99fb265eb1c5b3744765fcbc648f3cd8e1bffafdc4c2f99b9d47cf7ff1c24f
C=US, O=Internet Security Research Group, CN=ISRG Root X1
O=Digital Signature Trust Co., CN=DST Root CA X3

465/SMTP


Details

Banner Grab

Banner
220-vps-1672220-x.dattaweb.com ESMTP Exim 4.92.2 #9 Mon, 18 Oct 2021 23:20:33 -0300 220- We do not authorize the use of this system to transport unsolicited, 220 and/or bulk e-mail.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3

587/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Exim
Banner
220-vps-1672220-x.dattaweb.com ESMTP Exim 4.92.2 #9 Sat, 16 Oct 2021 01:51:54 -0300
220- We do not authorize the use of this system to transport unsolicited,
220 and/or bulk e-mail.
EHLO
250-vps-1672220-x.dattaweb.com Hello eecs.umich.edu [192.35.168.80]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH LOGIN
250-CHUNKING
250-STARTTLS
250 HELP
STARTTLS
220 TLS go ahead

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3
67add1166b020ae61b8f5fc96813c04c2aa589960796865572a3c7e737613dfd
C=US, O=Let's Encrypt, CN=R3
C=US, O=Internet Security Research Group, CN=ISRG Root X1
6d99fb265eb1c5b3744765fcbc648f3cd8e1bffafdc4c2f99b9d47cf7ff1c24f
C=US, O=Internet Security Research Group, CN=ISRG Root X1
O=Digital Signature Trust Co., CN=DST Root CA X3

110/POP3


Details

Banner Grab and StartTLS Initiation

Banner
+OK Hello there.
STARTTLS
+OK Begin SSL/TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3
67add1166b020ae61b8f5fc96813c04c2aa589960796865572a3c7e737613dfd
C=US, O=Let's Encrypt, CN=R3
C=US, O=Internet Security Research Group, CN=ISRG Root X1
6d99fb265eb1c5b3744765fcbc648f3cd8e1bffafdc4c2f99b9d47cf7ff1c24f
C=US, O=Internet Security Research Group, CN=ISRG Root X1
O=Digital Signature Trust Co., CN=DST Root CA X3

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Courier
Banner
* OK [CAPABILITY IMAP4rev1 UIDPLUS CHILDREN NAMESPACE THREAD=ORDEREDSUBJECT THREAD=REFERENCES SORT QUOTA IDLE ACL ACL2=UNION STARTTLS] Courier-IMAP ready. Copyright 1998-2011 Double Precision, Inc. See COPYING for distribution information.
STARTTLS
a001 OK Begin SSL/TLS negotiation now.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3
67add1166b020ae61b8f5fc96813c04c2aa589960796865572a3c7e737613dfd
C=US, O=Let's Encrypt, CN=R3
C=US, O=Internet Security Research Group, CN=ISRG Root X1
6d99fb265eb1c5b3744765fcbc648f3cd8e1bffafdc4c2f99b9d47cf7ff1c24f
C=US, O=Internet Security Research Group, CN=ISRG Root X1
O=Digital Signature Trust Co., CN=DST Root CA X3

993/IMAPS


Details

Banner Grab

Banner
* OK [CAPABILITY IMAP4rev1 UIDPLUS CHILDREN NAMESPACE THREAD=ORDEREDSUBJECT THREAD=REFERENCES SORT QUOTA IDLE AUTH=PLAIN ACL ACL2=UNION] Courier-IMAP ready. Copyright 1998-2011 Double Precision, Inc. See COPYING for distribution information.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3
67add1166b020ae61b8f5fc96813c04c2aa589960796865572a3c7e737613dfd
C=US, O=Let's Encrypt, CN=R3
C=US, O=Internet Security Research Group, CN=ISRG Root X1
6d99fb265eb1c5b3744765fcbc648f3cd8e1bffafdc4c2f99b9d47cf7ff1c24f
C=US, O=Internet Security Research Group, CN=ISRG Root X1
O=Digital Signature Trust Co., CN=DST Root CA X3

995/POP3S


Details

Banner Grab

Banner
+OK Hello there.

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Certificate Chain

10599ee8e9c55a2cce9bc35d52d59efd33f924450e520779506fbf681e7c66ca
CN=vps-1672220-x.dattaweb.com
C=US, O=Let's Encrypt, CN=R3
67add1166b020ae61b8f5fc96813c04c2aa589960796865572a3c7e737613dfd
C=US, O=Let's Encrypt, CN=R3
C=US, O=Internet Security Research Group, CN=ISRG Root X1
6d99fb265eb1c5b3744765fcbc648f3cd8e1bffafdc4c2f99b9d47cf7ff1c24f
C=US, O=Internet Security Research Group, CN=ISRG Root X1
O=Digital Signature Trust Co., CN=DST Root CA X3

2082/BANNER View Only


Details

Banner Info

Port
2082
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Found
Date: Mon, 18 Oct 2021 16:51:49 GMT
Server: Apache
X-Powered-By: PHP/5.6.40
Cache-Control: no-cache
X-Request-Id: fd2ead2001
Set-Cookie: PHPSESSID=65df97970a582f6d6a9641e00c278086; path=/; HttpOnly
Location: http://66.97.37.52:2082/login
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8

195
<!DOCTYPE html>
<html>
    <head>
        <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
        <meta http-equiv="refresh" content="1;url=http://66.97.37.52:2082/login" />

        <title>Redirecting to http://66.97.37.52:2082/login</title>
    </head>
    <body>
        Redirecting to <a href="http://66.97.37.52:2082/login">http://66.97.37.52:2082/login</a>.
    </body>
</html>
0

2083/BANNER View Only


Details

Banner Info

Port
2083
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Found
Date: Mon, 18 Oct 2021 16:51:49 GMT
Server: Apache
X-Powered-By: PHP/5.6.40
Cache-Control: no-cache
X-Request-Id: 2c37f0193f
Set-Cookie: PHPSESSID=51a75d34d832d45783b8c64afb9f9ad5; path=/; HttpOnly
Location: http://66.97.37.52:2083/login
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8

195
<!DOCTYPE html>
<html>
    <head>
        <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
        <meta http-equiv="refresh" content="1;url=http://66.97.37.52:2083/login" />

        <title>Redirecting to http://66.97.37.52:2083/login</title>
    </head>
    <body>
        Redirecting to <a href="http://66.97.37.52:2083/login">http://66.97.37.52:2083/login</a>.
    </body>
</html>
0

2087/BANNER View Only


Details

Banner Info

Port
2087
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Moved Temporarily
Date: Mon, 18 Oct 2021 16:51:49 GMT
Server: Apache
X-Powered-By: PHP/5.6.40
Location: http://66.97.37.52:2087/index.php
Content-Length: 0
Content-Type: text/html; charset=UTF-8

2095/BANNER View Only


Details

Banner Info

Port
2095
Protocol
TCP
Decoded Banner
HTTP/1.1 400 Bad Request
Date: Mon, 18 Oct 2021 16:51:49 GMT
Server: Apache
Content-Length: 440
Connection: close
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>400 Bad Request</title>
</head><body>
<h1>Bad Request</h1>
<p>Your browser sent a request that this server could not understand.<br />
Reason: You're speaking plain HTTP to an SSL-enabled server port.<br />
 Instead use the HTTPS scheme to access this URL, please.<br />
</p>
<hr>
<address>Apache Server at vps-1672220-x.dattaweb.com Port 2095</address>
</body></html>

Geographic Location

City
Rosario
Province
Santa Fe
Country
Argentina (AR)
Lat/Long
-32.954, -60.6634
Timezone
America/Argentina/Cordoba