176.214.76.39

As of: Feb 05, 2023 11:28pm UTC | Latest

Basic Information

Reverse DNS
mail.stack-it.ru
OS
CentOS Linux
Network
YAR-AS (RU)
Routing
176.214.64.0/19  via  AS51819
Protocols
21/FTP , 25/SMTP , 80/HTTP , 83/HTTP , 110/POP3 , 143/IMAP , 443/HTTP , 465/SMTP , 993/IMAP , 995/POP3 , 15000/UNKNOWN , 15151/UNKNOWN , 54321/HTTP

21/FTP TCP
Observed Feb 05, 2023 at 10:55am UTC


View All Data

Software

ProFTPD Project ProFTPD 1.3.5a

Details

Banner
220 NASFTPD Turbo station 1.3.5a Server (ProFTPD) [192.168.1.218]
Auth TLS Response
500 Command not understood.
Auth SSL Response
500 Command not understood.
Status Code
220
Status Meaning
Service ready for new user.

25/SMTP TCP
Observed Feb 05, 2023 at 9:31am UTC


View All Data

Software

Postfix

Details

Banner
220 mail.stack-it.ru ESMTP Postfix
EHLO
250-mail.stack-it.ru
250-PIPELINING
250-SIZE 524288000
250-VRFY
250-ETRN
250-STARTTLS
250-AUTH PLAIN LOGIN
250-AUTH=PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
Start TLS
220 2.0.0 Ready to start TLS

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
CN=*.stack-it.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
Issuer Chain

80/HTTP TCP
Observed Feb 05, 2023 at 5:35pm UTC


View All Data Go

Software

Python 2.7.5
mod_wsgi 3.4
CentOS Linux
OpenSSL 1.0.1e-fips
Apache HTTPD 2.4.6
PHP 5.6.30

Details

http://176.214.76.39
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:6bcfbf7053efcca190571f4d96461c8dec84672a
HTML Title
ООО Компания СТЕК
Response Body
  * ![](indeximg/whale.png)
  * ДОБРО ПОЖАЛОВАТЬ В "СТЕК"   
  
150999, ул. Малая Химическая, 7а Россия, Ярославль  
тел.: 8 (4852) 59-45-00  
  

    * [Сайт компании](http://stack-it.ru/)
    * [Вход в ServiceDesk](http://sd.stack-it.ru/)

Разработка, внедрение, сопровождение  
прикладного программного обеспечения  
  
(C) 1993—2023 ООО Компания «Стек»

83/HTTP TCP
Observed Feb 05, 2023 at 1:53pm UTC


View All Data Go

Software

Apache HTTPD

Details

http://176.214.76.39:83
Request
GET /
Protocol
HTTP/1.1
Status Code
403
Status Reason
Forbidden
Body Hash
sha1:4b9c6cd9c775f33ea9e585705bc8072954460e30
HTML Title
403 Forbidden
Response Body
# Forbidden

You don't have permission to access / on this server.

* * *

Apache Server at 176.214.76.39 Port 83

110/POP3 TCP
Observed Feb 05, 2023 at 6:18pm UTC


View All Data

Software

Carnegie Mellon University Cyrus POP 2.4.17

Details

Banner
+OK example.com Cyrus POP3 v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready <[email protected]>
Start TLS
-ERR Unsupported command!

143/IMAP TCP
Observed Feb 05, 2023 at 8:55am UTC


View All Data

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ ID ENABLE STARTTLS AUTH=PLAIN SASL-IR] example.com Cyrus IMAP v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready
Start TLS
a001 OK Begin TLS negotiation now

TLS

Fingerprint
JA3S
ccd5709d4a9027ec272e98b9924c36f7
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
CN=*.stack-it.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
Issuer Chain

443/HTTP TCP
Observed Feb 05, 2023 at 10:35pm UTC


View All Data Go

Software

Python 2.7.5
mod_wsgi 3.4
CentOS Linux
OpenSSL 1.0.1e-fips
Apache HTTPD 2.4.6
PHP 5.6.40

Details

https://176.214.76.39
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:6bcfbf7053efcca190571f4d96461c8dec84672a
HTML Title
ООО Компания СТЕК
Response Body
  * ![](indeximg/whale.png)
  * ДОБРО ПОЖАЛОВАТЬ В "СТЕК"   
  
150999, ул. Малая Химическая, 7а Россия, Ярославль  
тел.: 8 (4852) 59-45-00  
  

    * [Сайт компании](http://stack-it.ru/)
    * [Вход в ServiceDesk](http://sd.stack-it.ru/)

Разработка, внедрение, сопровождение  
прикладного программного обеспечения  
  
(C) 1993—2023 ООО Компания «Стек»

TLS

Fingerprint
JA3S
ccc514751b175866924439bdbb5bba34
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
6d2b542c41230938be5f86019cd671c4a45da0b0c5165d468d7c9e9d44515810
OU=Domain Control Validated, OU=PositiveSSL, CN=platimvmeste.ru
C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Domain Validation Secure Server CA

465/SMTP TCP
Observed Feb 05, 2023 at 10:33pm UTC


View All Data

Software

Postfix

Details

Banner
220 mail.stack-it.ru ESMTP Postfix
EHLO
250-mail.stack-it.ru
250-PIPELINING
250-SIZE 524288000
250-VRFY
250-ETRN
250-AUTH PLAIN LOGIN
250-AUTH=PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
CN=*.stack-it.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
Issuer Chain

993/IMAP TCP
Observed Feb 05, 2023 at 6:13am UTC


View All Data

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ ID ENABLE AUTH=PLAIN SASL-IR] example.com Cyrus IMAP v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready

TLS

Fingerprint
JA3S
ccd5709d4a9027ec272e98b9924c36f7
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
CN=*.stack-it.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
Issuer Chain

995/POP3 TCP
Observed Feb 05, 2023 at 2:32pm UTC


View All Data

Software

Carnegie Mellon University Cyrus POP 2.4.17

Details

Banner
+OK example.com Cyrus POP3 v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready <[email protected]>

TLS

Fingerprint
JA3S
ccd5709d4a9027ec272e98b9924c36f7
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
CN=*.stack-it.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
Issuer Chain

15000/UNKNOWN TCP
Observed Feb 04, 2023 at 11:15pm UTC


View All Data

Details

Banner (Hex)
  
00000000
5c 73 00 0b 01 00 0b 01 00 00 00 5c 66
\s.........\f

15151/UNKNOWN TCP
Observed Feb 04, 2023 at 11:15pm UTC


View All Data

Details

Not Available

TLS

Fingerprint
JARM
05d02d20d21d20d05c05d02d05d20d74fcf6501ae7a92319e575bfafd2a827
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
97476614e71332c09b6350e1e046ee1e7a61ed2d6c9a924a8e93ae4c657dc1da
C=ru, ST=Yaroslavl, O=stack, OU=stack, CN=Dispatcher
[email protected], C=ru, ST=Yaroslavl, L=Yaroslavl, O=stack, OU=stack, CN=stack, [email protected]

54321/HTTP TCP
Observed Feb 04, 2023 at 11:15pm UTC


View All Data Go

Software

Apache HTTPD

Details

http://176.214.76.39:54321
Request
GET /
Protocol
HTTP/1.1
Status Code
401
Status Reason
Authorization Required
Body Hash
sha1:e8aa02e6125d266ba60000f7735767347e76bafb
HTML Title
401 Authorization Required
Response Body
# Authorization Required

This server could not verify that you are authorized to access the document
requested. Either you supplied the wrong credentials (e.g., bad password), or
your browser doesn't understand how to supply the credentials required.

Geographic Location

City
Yaroslavl
Province
Yaroslavl Oblast
Country
Russia (RU)
Coordinates
57.4977, 39.7458
Timezone
Europe/Moscow