80.74.154.241

Basic Information

Network
ASN-METANET Routing/peering issues: [email protected] (CH)
Routing
80.74.144.0/20 via AS7018 , AS3257 , AS21069
Protocols
80/HTTP, 3306/MYSQL, 465/SMTP, 25/SMTP, 21/FTP, 53/DNS, 443/HTTPS, 106/BANNER, 587/BANNER, 8443/BANNER, 8880/BANNER
Tags
ftp http dns https database mysql smtp

80/HTTP


Details Go

GET /

Server
nginx
Status Line
200 OK
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
nginx
Status Line
200 OK
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)
Browser Trusted
True

Heartbleed

Heartbleed
Heartbeat Disabled (OK)

Cryptographic Configuration

Export DHE
False
Export RSA
False
DHE Support
True

Certificate Chain

4de5449ce669346c6b61d36b6c56f1cb60f4a8e304b89fd1e41fa380e0204500
CN=balancer.sitebarad.com
C=US, O=Let's Encrypt, CN=Let's Encrypt Authority X3
25847d668eb4f04fdd40b12b6b0740c567da7d024308eb6c2c96fe41d9de218d
C=US, O=Let's Encrypt, CN=Let's Encrypt Authority X3
O=Digital Signature Trust Co., CN=DST Root CA X3

21/FTP


Details

Banner Grab

Banner:
220 ProFTPD Server (ProFTPD) [80.74.154.241]

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 m10c2311.sui-inter.net ESMTP Postfix
EHLO
250-m10c2311.sui-inter.net
250-PIPELINING
250-SIZE 52428800
250-ETRN
250-STARTTLS
250-AUTH CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xC013)
Browser Trusted
True

Certificate Chain

f588222d061a7887dafb92c193490bd87df0d1d09cc5446f0e3e8bb7441f0e7f
C=CH, L=Zuerich, O=METANET AG, CN=*.sui-inter.net
C=US, O=DigiCert Inc, CN=DigiCert SHA2 Secure Server CA
154c433c491929c5ef686e838e323664a00e6a0d822ccc958fb4dab03e49a08f
C=US, O=DigiCert Inc, CN=DigiCert SHA2 Secure Server CA
C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert Global Root CA

465/SMTP


Details

Banner Grab

Banner
220 m10c2311.sui-inter.net ESMTP Postfix

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (0xC013)
Browser Trusted
True

Certificate Chain

f588222d061a7887dafb92c193490bd87df0d1d09cc5446f0e3e8bb7441f0e7f
C=CH, L=Zuerich, O=METANET AG, CN=*.sui-inter.net
C=US, O=DigiCert Inc, CN=DigiCert SHA2 Secure Server CA

53/DNS


Details

Open Resolver Query

Open Resolver
False

3306/MySQL


Details

Banner Grab

Version
5.5.64-MariaDB
Protocol Version
10

106/BANNER View Only


Details

Banner Info

Port
106
Protocol
TCP
Decoded Banner
200 poppassd hello, who are you?
500 Username required.

587/BANNER View Only


Details

Banner Info

Port
587
Protocol
TCP
Decoded Banner
220 m10c2311.sui-inter.net ESMTP Postfix

8443/BANNER View Only


Details

Banner Info

Port
8443
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Moved Temporarily
Server: sw-cp-server
Date: Tue, 02 Jun 2020 18:06:02 GMT
Content-Type: text/html
Content-Length: 138
Connection: close
Location: https://80.74.154.241:8443/

<html>
<head><title>302 Found</title></head>
<body>
<center><h1>302 Found</h1></center>
<hr><center>nginx</center>
</body>
</html>

8880/BANNER View Only


Details

Banner Info

Port
8880
Protocol
TCP
Decoded Banner
HTTP/1.1 303 See Other
Server: sw-cp-server
Date: Tue, 02 Jun 2020 18:06:02 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Expires: Fri, 28 May 1999 00:00:00 GMT
Last-Modified: Tue, 02 Jun 2020 18:06:02 GMT
Cache-Control: no-store, no-cache, must-revalidate
Cache-Control: post-check=0, pre-check=0
Pragma: no-cache
P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA"
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Location: http://80.74.154.241:8880/login.php?success_redirect_url=http%3A%2F%2F80.74.154.241%3A8880%2F

0

Geographic Location

City
Neunkirch
Province
Schaffhausen
Country
Switzerland (CH)
Lat/Long
47.6901, 8.4998
Timezone
Europe/Zurich