176.114.0.120

As of: May 27, 2023 11:02pm UTC | Latest

Basic Information

Reverse DNS
s12.thehost.com.ua
OS
Ubuntu Linux
Network
THEHOST-AS (UA)
Routing
176.114.0.0/22  via  AS56485
Protocols
21/FTP , 22/SSH , 25/SMTP , 80/HTTP , 110/POP3 , 143/IMAP , 443/HTTP , 587/SMTP , 993/IMAP , 3306/MYSQL , 5432/POSTGRES , 8080/HTTP , 8082/HTTP
Labels
database , email , file-sharing , remote-access

21/FTP TCP
Observed May 27, 2023 at 4:29am UTC


View All Data

Labels

File Sharing

Software

linux

Details

Banner
220-     TheHost.com.ua
220-Shared Hosting Server S12
220 This is a private system - No anonymous login
Auth TLS Response
234 AUTH TLS OK.
Status Code
220
Status Meaning
Service ready for new user.

TLS

Fingerprint
JA3S
15af977ce25de452b96affa2addb1036
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_AES_256_GCM_SHA384
Leaf Certificate
6fce12dab6198b6bda770ca86a99b6aa86f72dd47454fd01a8948beb037aca00
[email protected], C=UA, ST=Kyiv, L=Boyarka, O=TheHost, OU=Administrative, CN=s12.thehost.com.ua, [email protected]
[email protected], C=UA, ST=Kyiv, L=Boyarka, O=TheHost, OU=Administrative, CN=s12.thehost.com.ua, [email protected]

22/SSH TCP
Observed May 27, 2023 at 5:31pm UTC


View All Data

Labels

Remote Access

Software

Ubuntu Linux
OpenBSD OpenSSH 5.9p1

Details

Host Key
Algorithm
ecdsa-sha2-nistp256
Fingerprint
6e0abd16df03edfb99dc3c6190edb1cfdc1e2b4d4597ed37a5901749a41a48c7
Negotiated
Key Exchange
ecdh-sha2-nistp256
Symmetric Cipher
aes128-ctr [] aes128-ctr []
MAC
hmac-sha2-256 [] hmac-sha2-256 []

25/SMTP TCP
Observed May 27, 2023 at 6:36am UTC


View All Data

Labels

Email

Software

Ubuntu Linux
exim 4.90_1

Details

Banner
220 s12.thehost.com.ua ESMTP Exim 4.90_1 Ubuntu Sat, 27 May 2023 09:36:35 +0300
EHLO
250-s12.thehost.com.ua Hello scanner-27.ch1.censys-scanner.com [167.94.138.124]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH CRAM-MD5 PLAIN LOGIN
250-CHUNKING
250-STARTTLS
250 HELP
Start TLS
220 TLS go ahead

TLS

Fingerprint
JA3S
d25619cb77d3219fc9fc14cb6b35eacc
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256
Leaf Certificate
0be18b00f5f684504a14f3f3c196706a195f43a0f5368cbd900a1703db5dfe67
CN=*.thehost.com.ua
C=LV, L=Riga, O=GoGetSSL, CN=GoGetSSL RSA DV CA
Issuer Chain

80/HTTP TCP
Observed May 27, 2023 at 9:03pm UTC


View All Data Go

Software

nginx

Details

http://176.114.0.120
Request
GET /
Protocol
HTTP/1.1
Status Code
403
Status Reason
Forbidden
Body Hash
sha1:3f009ac70c08b4403406cdd038bb1a6ed94b083f
HTML Title
403 Forbidden
Response Body
      # Forbidden

You don't have permission to access / on this server.
    

110/POP3 TCP
Observed May 27, 2023 at 9:53pm UTC


View All Data

Labels

Email

Software

linux

Details

Banner
+OK Dovecot (Ubuntu) ready. <47dd.3839c8.64727beb.gw29i2z/[email protected]>
Start TLS
+OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
475c9302dc42b2751db9edcac3b74891
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_CHACHA20_POLY1305_SHA256
Leaf Certificate
0be18b00f5f684504a14f3f3c196706a195f43a0f5368cbd900a1703db5dfe67
CN=*.thehost.com.ua
C=LV, L=Riga, O=GoGetSSL, CN=GoGetSSL RSA DV CA
Issuer Chain

143/IMAP TCP
Observed May 27, 2023 at 3:33am UTC


View All Data

Labels

Email

Software

linux
Dovecot
Ubuntu Linux

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot (Ubuntu) ready.
Start TLS
a001 OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
475c9302dc42b2751db9edcac3b74891
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_CHACHA20_POLY1305_SHA256
Leaf Certificate
0be18b00f5f684504a14f3f3c196706a195f43a0f5368cbd900a1703db5dfe67
CN=*.thehost.com.ua
C=LV, L=Riga, O=GoGetSSL, CN=GoGetSSL RSA DV CA
Issuer Chain

443/HTTP TCP
Observed May 27, 2023 at 8:33pm UTC


View All Data Go

Software

nginx

Details

https://176.114.0.120
Request
GET /
Protocol
HTTP/1.1
Status Code
302
Status Reason
Moved Temporarily
Body Hash
sha1:f03e18461817f7a6546c8bf8fa8d686d7e30aca0
HTML Title
302 Found
Response Body
      # 302 Found

* * *

nginx
    

TLS

Fingerprint
JARM
2ad2ad16d2ad2ad22c42d42d000000d740f47fc623495ea334f7291b19b353
JA3S
15af977ce25de452b96affa2addb1036
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_AES_256_GCM_SHA384
Leaf Certificate
0be18b00f5f684504a14f3f3c196706a195f43a0f5368cbd900a1703db5dfe67
CN=*.thehost.com.ua
C=LV, L=Riga, O=GoGetSSL, CN=GoGetSSL RSA DV CA
Issuer Chain

587/SMTP TCP
Observed May 27, 2023 at 5:31pm UTC


View All Data

Labels

Email

Software

linux
Ubuntu Linux
exim 4.90_1

Details

Banner
220 s12.thehost.com.ua ESMTP Exim 4.90_1 Ubuntu Sat, 27 May 2023 20:31:29 +0300
EHLO
250-s12.thehost.com.ua Hello scanner-27.ch1.censys-scanner.com [167.94.138.127]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH CRAM-MD5 PLAIN LOGIN
250-CHUNKING
250-STARTTLS
250 HELP
Start TLS
220 TLS go ahead

TLS

Fingerprint
JA3S
d25619cb77d3219fc9fc14cb6b35eacc
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256
Leaf Certificate
0be18b00f5f684504a14f3f3c196706a195f43a0f5368cbd900a1703db5dfe67
CN=*.thehost.com.ua
C=LV, L=Riga, O=GoGetSSL, CN=GoGetSSL RSA DV CA
Issuer Chain

993/IMAP TCP
Observed May 27, 2023 at 2:40am UTC


View All Data

Labels

Email

Software

linux
Dovecot
Ubuntu Linux

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot (Ubuntu) ready.

TLS

Fingerprint
JA3S
475c9302dc42b2751db9edcac3b74891
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_CHACHA20_POLY1305_SHA256
Leaf Certificate
0be18b00f5f684504a14f3f3c196706a195f43a0f5368cbd900a1703db5dfe67
CN=*.thehost.com.ua
C=LV, L=Riga, O=GoGetSSL, CN=GoGetSSL RSA DV CA
Issuer Chain

3306/MYSQL TCP
Observed May 27, 2023 at 4:40pm UTC


View All Data

Labels

Database

Software

Oracle MySQL 5.7.34
linux

Details

Protocol Version
10
Character Set
33

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d615bf189d2462c48d522e6381e76c21e408539d2984c47a8301017c60451d7a
CN=MySQL_Server_5.7.34_Auto_Generated_Server_Certificate
CN=MySQL_Server_5.7.34_Auto_Generated_CA_Certificate
Issuer Chain

5432/POSTGRES TCP
Observed May 27, 2023 at 5:35am UTC


View All Data

Labels

Database

Software

Postgresql

Details

Supported Versions
FATAL: unsupported frontend protocol 0.0: server supports 1.0 to 3.0

TLS

Fingerprint
JA3S
ccd5709d4a9027ec272e98b9924c36f7
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
b000c76f64f2b8ce1f338d65876d3a60e4be8668f92a0d4b02a988abd694ed8d
CN=s12.thehost.com.ua
CN=s12.thehost.com.ua

8080/HTTP TCP
Observed May 27, 2023 at 7:09pm UTC


View All Data Go

Details

http://176.114.0.120:8080
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:62d103a63f5a04f9329a05e94a2b0b3ba5765498
Response Body
      
    

8082/HTTP TCP
Observed May 27, 2023 at 11:41am UTC


View All Data Go

Software

nginx

Details

http://176.114.0.120:8082
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:fd0e0d0545f22cca581f475bdd70c8486e881d94
Response Body
      
    

Geographic Location

City
Kyiv
Province
Kyiv City
Country
Ukraine (UA)
Coordinates
50.45466, 30.5238
Timezone
Europe/Kyiv