176.214.76.39

As of: Mar 22, 2023 3:23am UTC | Latest

Host

Attribute Value
ip 176.214.76.39
location.continent Europe
location.country Russia
location.country_code RU
location.city Yaroslavl
location.postal_code 150522
location.timezone Europe/Moscow
location.province Yaroslavl Oblast
location.coordinates.latitude 57.4977
location.coordinates.longitude 39.7458
location.registered_country Russia
location.registered_country_code RU
location_updated_at 2023-03-17T15:53:18.135436Z
autonomous_system.asn 51819
autonomous_system.description YAR-AS
autonomous_system.bgp_prefix 176.214.64.0/19
autonomous_system.name YAR-AS
autonomous_system.country_code RU
autonomous_system_updated_at 2023-03-10T03:37:53.230981Z
operating_system.uniform_resource_identifier cpe:2.3:o:centos:centos:*:*:*:*:*:*:*:*
operating_system.part o
operating_system.vendor CentOS
operating_system.product Linux
operating_system.other.family Linux
dns.names sd.stack-it.ru
dns.names lkul.stack-it.ru
dns.names lk-exchange.stack-it.ru
dns.names lkul-api.stack-it.ru
dns.names mail.stack-it.ru
dns.names www.sd.stack-it.ru
dns.records.lkul-api.stack-it.ru.record_type A
dns.records.lkul-api.stack-it.ru.resolved_at 2023-03-19T02:55:14.262810044Z
dns.records.mail.stack-it.ru.record_type A
dns.records.mail.stack-it.ru.resolved_at 2023-03-14T03:45:56.328401842Z
dns.records.sd.stack-it.ru.record_type A
dns.records.sd.stack-it.ru.resolved_at 2023-03-02T19:28:40.227167153Z
dns.records.lk-exchange.stack-it.ru.record_type A
dns.records.lk-exchange.stack-it.ru.resolved_at 2023-02-24T19:16:34.685269873Z
dns.records.lkul.stack-it.ru.record_type A
dns.records.lkul.stack-it.ru.resolved_at 2023-02-24T19:16:34.856858794Z
dns.records.www.sd.stack-it.ru.record_type A
dns.records.www.sd.stack-it.ru.resolved_at 2023-02-27T19:05:16.930743160Z
dns.reverse_dns.names mail.stack-it.ru
dns.reverse_dns.resolved_at 2023-03-10T04:33:20.908182408Z
last_updated_at 2023-03-22T03:23:54.805Z
labels email
labels file-sharing

21/FTP TCP View Definition

Attribute Value
services.banner 220 NASFTPD Turbo station 1.3.5a Server (ProFTPD) [192.168.1.218]\r\n
services.banner_hashes sha256:59f8e0f356b626e34d6f5d47a3f68161c0d511af2f97502e72781b14500ee9c8
services.banner_hex 323230204e41534654504420547572626f2073746174696f6e20312e332e356120536572766572202850726f4654504429205b3139322e3136382e312e3231385d0d0a
services.extended_service_name FTP
services.ftp.banner 220 NASFTPD Turbo station 1.3.5a Server (ProFTPD) [192.168.1.218]\r\n
services.ftp.auth_tls_response 500 Command not understood.\r\n
services.ftp.auth_ssl_response 500 Command not understood.\r\n
services.ftp.status_code 220
services.ftp.status_meaning Service ready for new user.
services.ftp.implicit_tls false
services.labels file-sharing
services.observed_at 2023-03-20T21:14:10.058710417Z
services.perspective_id PERSPECTIVE_NTT
services.port 21
services.service_name FTP
services.software.uniform_resource_identifier cpe:2.3:a:proftpd:proftpd:1.3.5a:*:*:*:*:*:*:*
services.software.part a
services.software.vendor ProFTPD Project
services.software.product ProFTPD
services.software.version 1.3.5a
services.software.other.family ProFTPD
services.software.source OSI_APPLICATION_LAYER
services.software.part h
services.software.vendor QNAP
services.software.other.family Turbo Station
services.software.other.device NAS
services.software.source OSI_APPLICATION_LAYER
services.software.other.ip 192.168.1.218
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.248.133.124
services.transport_protocol TCP
services.truncated false

25/SMTP TCP View Definition

Attribute Value
services.banner 220 mail.stack-it.ru ESMTP Postfix\r\n
services.banner_hashes sha256:4b88f2f39a2441c311cac0170d1217c616d34cba82f6e2608847eb1807eb4d83
services.banner_hex 323230206d61696c2e737461636b2d69742e72752045534d545020506f73746669780d0a
services.certificate 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.extended_service_name SMTP-STARTTLS
services.labels email
services.observed_at 2023-03-22T02:16:59.940804822Z
services.perspective_id PERSPECTIVE_TATA
services.port 25
services.service_name SMTP
services.smtp.banner 220 mail.stack-it.ru ESMTP Postfix\r\n
services.smtp.ehlo 250-mail.stack-it.ru\r\n250-PIPELINING\r\n250-SIZE 524288000\r\n250-VRFY\r\n250-ETRN\r\n250-STARTTLS\r\n250-AUTH PLAIN LOGIN\r\n250-AUTH=PLAIN LOGIN\r\n250-ENHANCEDSTATUSCODES\r\n250-8BITMIME\r\n250 DSN\r\n
services.smtp.start_tls 220 2.0.0 Ready to start TLS\r\n
services.software.uniform_resource_identifier cpe:2.3:a:postfix:postfix:*:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Postfix
services.software.product Postfix
services.software.other.family Postfix
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.94.138.127
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.chain_fps_sha_256 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain_fps_sha_256 ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.leaf_data.names *.stack-it.ru
services.tls.certificates.leaf_data.names stack-it.ru
services.tls.certificates.leaf_data.subject_dn CN=*.stack-it.ru
services.tls.certificates.leaf_data.issuer_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.pubkey_bit_size 4096
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint a4c0876053a589ad9f9192c598188d5f4affa7d67be0f6eeb664497638a922c9
services.tls.certificates.leaf_data.fingerprint 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.leaf_data.issuer.common_name AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.issuer.organization GlobalSign nv-sa
services.tls.certificates.leaf_data.issuer.country BE
services.tls.certificates.leaf_data.subject.common_name *.stack-it.ru
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus 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
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 512
services.tls.certificates.leaf_data.public_key.fingerprint 237b049b78d270ec56150beb3c5abae001dea8744fdef4bafd618e44aceb8f90
services.tls.certificates.leaf_data.signature.signature_algorithm SHA256-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.certificates.chain.fingerprint 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.fingerprint ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.server_key_exchange.ec_params.named_curve 23
services.tls.ja3s 303951d4c50efb2e991652225a6f02b1
services.transport_fingerprint.raw 14480,64,false,MSTNW,1440,false,false
services.transport_protocol TCP
services.truncated false

80/HTTP TCP View Definition

Attribute Value
services.banner HTTP/1.1 200 OK\r\nDate: <REDACTED>\r\nServer: Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips PHP/5.6.40 mod_wsgi/3.4 Python/2.7.5\r\nX-Powered-By: PHP/5.6.30\r\nTransfer-Encoding: chunked\r\nContent-Type: text/html; charset=UTF-8\r\n
services.banner_hashes sha256:c2755cb118866acec97a45ddc9a18db68f4316935c2ac379f913ff5657026b81
services.banner_hex 485454502f312e3120323030204f4b0d0a446174653a20203c52454441435445443e0d0a5365727665723a204170616368652f322e342e36202843656e744f5329204f70656e53534c2f312e302e31652d66697073205048502f352e362e3430206d6f645f777367692f332e3420507974686f6e2f322e372e350d0a582d506f77657265642d42793a205048502f352e362e33300d0a5472616e736665722d456e636f64696e673a206368756e6b65640d0a436f6e74656e742d547970653a20746578742f68746d6c3b20636861727365743d5554462d380d0a
services.extended_service_name HTTP
services.http.request.method GET
services.http.request.uri http://176.214.76.39/
services.http.request.headers.User_Agent Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
services.http.request.headers.Accept */*
services.http.response.protocol HTTP/1.1
services.http.response.status_code 200
services.http.response.status_reason OK
services.http.response.headers.X_Powered_By PHP/5.6.30
services.http.response.headers.Date <REDACTED>
services.http.response.headers.Content_Type text/html; charset=UTF-8
services.http.response.headers.Server Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips PHP/5.6.40 mod_wsgi/3.4 Python/2.7.5
services.http.response.html_tags <title>ООО Компания СТЕК</title>
services.http.response.html_tags <meta name="viewport" content="width=device-width">
services.http.response.html_tags <meta charset="UTF-8">
services.http.response.body_size 3262
services.http.response.body <html>\r\n<head>\r\n <link rel="shortcut icon" href="indeximg/favicon.ico" type="image/x-icon">\r\n <meta name="viewport" content="width=device-width">\r\n <meta charset="UTF-8">\r\n <title>ООО Компания СТЕК</title>\r\n\r\n <style type="text/css">\r\n body {\r\n font-family: Tahoma;\r\n background: url("indeximg/background.jpg") no-repeat;\r\n -moz-background-size: 100%;\r\n -webkit-background-size: 100%;\r\n -o-background-size: 100%;\r\n /* background-size: 100%; */\r\n }\r\n ul {\r\n width: 100%;\r\n font-size: 32px;\r\n color: #7d7d7d;\r\n text-align:center;\r\n margin-left: -40px;\r\n margin-top: 27px;\r\n }\r\n li {\r\n display:inline-block;\r\n *display:inline; /*IE7*/\r\n *zoom:1; /*IE7*/\r\n }\r\n p {\r\n font-size: 24px;\r\n color: #7d7d7d;\r\n text-align: center;\r\n }\r\n .button {\r\n background: #91C46C;\r\n border-top: 1px solid #ffffff;\r\n border-left: 1px solid #ffffff;\r\n padding: 8px 60px;\r\n cursor: pointer;\r\n }\r\n .button a {\r\n color: #F8FBF6;\r\n text-decoration: none;\r\n font-size: 19px;\r\n font-weight: 100;\r\n }\r\n .footer {\r\n margin-top: 50px;\r\n font-size: 12px;\r\n color: #7d7d7d;\r\n text-align: center;\r\n }\r\n </style>\r\n\r\n</head>\r\n<body>\r\n<ul>\r\n <li style="max-width: 400px; margin-bottom: 30px">\r\n <img style="max-width:400px; width: 100%" src="indeximg/whale.png">\r\n </li>\r\n <li style="max-width: 600px">\r\n ДОБРО ПОЖАЛОВАТЬ В "СТЕК" <br><br>\r\n 150999, ул. Малая Химическая, 7а Россия, Ярославль <br> тел.: 8 (4852) 59-45-00 <br><br>\r\n\r\n <ul style="margin-top: 0">\r\n <li class="button" style="margin-bottom: 10px"><a href="http://stack-it.ru/" target="_blank">Сайт компании</a></li>\r\n <li class="button"><a href="http://sd.stack-it.ru/" target="_blank">Вход в ServiceDesk</a></li>\r\n </ul>\r\n </li>\r\n <!--<tr>-->\r\n <!--<td height="300px" valign="bottom" colspan="2">-->\r\n <!--<p>-->\r\n <!--Внимание! Уважаемые клиенты!<br>-->\r\n <!--В связи с обновлением ПО Личный кабинет перенесен на новую площадку <b>ServiceDesk</b>,<br>-->\r\n <!--расположенную по адресу <a href="http://sd.stack-it.ru/" target="_blank" style="color: #7d7d7d">http://sd.stack-it.ru/</a><br><br>-->\r\n <!--Для доступа в новую систему необходимо получить логин и пароль у наших менеджеров.-->\r\n <!--</p>-->\r\n <!--</td>-->\r\n <!--</tr>-->\r\n</ul>\r\n\r\n<div class="footer">\r\n Разработка, внедрение, сопровождение<br>\r\n прикладного программного обеспечения<br><br>\r\n &copy; 1993—2023 ООО Компания &laquo;Стек&raquo;\r\n</div>\r\n</body>\r\n</html>
services.http.response.favicons.size 4286
services.http.response.favicons.name http://176.214.76.39/indeximg/favicon.ico
services.http.response.favicons.md5_hash fbb575b4317d3ea24b0f419e52032275
services.http.response.body_hashes sha256:065b0af4a0803a5d7dc5a963def989c90774fd7f75a089c3f6b2404176aaf430
services.http.response.body_hashes sha1:6bcfbf7053efcca190571f4d96461c8dec84672a
services.http.response.body_hash sha1:6bcfbf7053efcca190571f4d96461c8dec84672a
services.http.response.html_title ООО Компания СТЕК
services.http.supports_http2 false
services.observed_at 2023-03-21T17:38:56.782740961Z
services.perspective_id PERSPECTIVE_TATA
services.port 80
services.service_name HTTP
services.software.product apache
services.software.other.info (CentOS) OpenSSL/1.0.1e-fips PHP/5.6.40 mod_wsgi/3.4 Python/2.7.5
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:*:python:2.7.5:*:*:*:*:*:*:*
services.software.part a
services.software.product Python
services.software.version 2.7.5
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:modwsgi:mod_wsgi:3.4:*:*:*:*:*:*:*
services.software.part a
services.software.vendor mod_wsgi
services.software.product mod_wsgi
services.software.version 3.4
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:o:centos:centos:*:*:*:*:*:*:*:*
services.software.part o
services.software.vendor CentOS
services.software.product Linux
services.software.other.family Linux
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:*:openssl:1.0.1e\-fips:*:*:*:*:*:*:*
services.software.part a
services.software.product OpenSSL
services.software.version 1.0.1e-fips
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:apache:http_server:2.4.6:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Apache
services.software.product HTTPD
services.software.version 2.4.6
services.software.component_uniform_resource_identifiers cpe:2.3:a:*:openssl:1.0.1e\-fips:*:*:*:*:*:*:*
services.software.component_uniform_resource_identifiers cpe:2.3:a:*:php:5.6.40:*:*:*:*:*:*:*
services.software.component_uniform_resource_identifiers cpe:2.3:a:modwsgi:mod_wsgi:3.4:*:*:*:*:*:*:*
services.software.component_uniform_resource_identifiers cpe:2.3:a:*:python:2.7.5:*:*:*:*:*:*:*
services.software.other.family Apache
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:*:php:5.6.30:*:*:*:*:*:*:*
services.software.part a
services.software.product PHP
services.software.version 5.6.30
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.94.138.125
services.transport_protocol TCP
services.truncated false

83/HTTP TCP View Definition

Attribute Value
services.banner HTTP/1.1 403 Forbidden\r\nDate: <REDACTED>\r\nServer: Apache\r\nVary: Accept-Encoding\r\nContent-Encoding: gzip\r\nContent-Length: 222\r\nContent-Type: text/html; charset=iso-8859-1\r\n
services.banner_hashes sha256:e9628c9cbee5865265e019fd56baa5d18f33c3cdbf6ebd4ce60b6f98d0fd7e6e
services.banner_hex 485454502f312e312034303320466f7262696464656e0d0a446174653a20203c52454441435445443e0d0a5365727665723a204170616368650d0a566172793a204163636570742d456e636f64696e670d0a436f6e74656e742d456e636f64696e673a20677a69700d0a436f6e74656e742d4c656e6774683a203232320d0a436f6e74656e742d547970653a20746578742f68746d6c3b20636861727365743d69736f2d383835392d310d0a
services.extended_service_name HTTP
services.http.request.method GET
services.http.request.uri http://176.214.76.39:83/
services.http.request.headers.Accept */*
services.http.request.headers.User_Agent Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
services.http.response.protocol HTTP/1.1
services.http.response.status_code 403
services.http.response.status_reason Forbidden
services.http.response.headers.Server Apache
services.http.response.headers.Date <REDACTED>
services.http.response.headers.Content_Type text/html; charset=iso-8859-1
services.http.response.headers.Vary Accept-Encoding
services.http.response.html_tags <title>403 Forbidden</title>
services.http.response.body_size 265
services.http.response.body <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">\n<html><head>\n<title>403 Forbidden</title>\n</head><body>\n<h1>Forbidden</h1>\n<p>You don't have permission to access /\non this server.</p>\n<hr>\n<address>Apache Server at 176.214.76.39 Port 83</address>\n</body></html>\n
services.http.response.body_hashes sha256:2a5d8b496f13b629653bde0bdb03f6a4b7e1170890241bf187f6f5ff675d72f3
services.http.response.body_hashes sha1:4b9c6cd9c775f33ea9e585705bc8072954460e30
services.http.response.body_hash sha1:4b9c6cd9c775f33ea9e585705bc8072954460e30
services.http.response.html_title 403 Forbidden
services.http.supports_http2 false
services.observed_at 2023-03-21T15:18:31.704177867Z
services.perspective_id PERSPECTIVE_TELIA
services.port 83
services.service_name HTTP
services.software.uniform_resource_identifier cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Apache
services.software.product HTTPD
services.software.other.family Apache
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.94.146.60
services.transport_protocol TCP
services.truncated false

110/POP3 TCP View Definition

Attribute Value
services.banner +OK example.com Cyrus POP3 v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready <[email protected]>\r\n
services.banner_hashes sha256:fcd80e8dbe8ca46d00eaf8c25f1b72338ac28a7eaed6159c8c941ca378dbebd9
services.banner_hex 2b4f4b206578616d706c652e636f6d20437972757320504f50332076322e342e31372d4665646f72612d52504d2d322e342e31372d372e656c3720736572766572207265616479203c31313433373235363934343139373338363931312e31363739343030363232406578616d706c652e636f6d3e0d0a
services.extended_service_name POP3
services.labels email
services.observed_at 2023-03-21T12:10:21.737386249Z
services.perspective_id PERSPECTIVE_TATA
services.pop3.banner +OK example.com Cyrus POP3 v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready <[email protected]>\r\n
services.pop3.start_tls -ERR Unsupported command!\r\n
services.port 110
services.service_name POP3
services.software.uniform_resource_identifier cpe:2.3:a:carnegie_mellon_university:cyrus_pop:2.4.17:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Carnegie Mellon University
services.software.product Cyrus POP
services.software.version 2.4.17
services.software.other.family Cyrus MTA
services.software.source OSI_APPLICATION_LAYER
services.software.other.domain example.com
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.94.138.35
services.transport_fingerprint.raw 32768,255,false,MSNN,1440,false,false
services.transport_protocol TCP
services.truncated false

143/IMAP TCP View Definition

Attribute Value
services.banner * OK [CAPABILITY IMAP4rev1 LITERAL+ ID ENABLE STARTTLS AUTH=PLAIN SASL-IR] example.com Cyrus IMAP v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready\r\n
services.banner_hashes sha256:1946500503efad20d42056dd3fb98fc0b7455428bb3bc7562d15482e95f2d202
services.banner_hex 2a204f4b205b4341504142494c49545920494d41503472657631204c49544552414c2b20494420454e41424c45205354415254544c5320415554483d504c41494e205341534c2d49525d206578616d706c652e636f6d20437972757320494d41502076322e342e31372d4665646f72612d52504d2d322e342e31372d372e656c37207365727665722072656164790d0a
services.certificate 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.extended_service_name IMAPS
services.imap.banner * OK [CAPABILITY IMAP4rev1 LITERAL+ ID ENABLE STARTTLS AUTH=PLAIN SASL-IR] example.com Cyrus IMAP v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready\r\n
services.imap.start_tls a001 OK Begin TLS negotiation now\r\n
services.labels email
services.observed_at 2023-03-22T00:17:24.101258104Z
services.perspective_id PERSPECTIVE_NTT
services.port 143
services.service_name IMAP
services.source_ip 167.248.133.52
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.chain_fps_sha_256 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain_fps_sha_256 ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.leaf_data.names *.stack-it.ru
services.tls.certificates.leaf_data.names stack-it.ru
services.tls.certificates.leaf_data.subject_dn CN=*.stack-it.ru
services.tls.certificates.leaf_data.issuer_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.pubkey_bit_size 4096
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint a4c0876053a589ad9f9192c598188d5f4affa7d67be0f6eeb664497638a922c9
services.tls.certificates.leaf_data.fingerprint 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.leaf_data.issuer.common_name AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.issuer.organization GlobalSign nv-sa
services.tls.certificates.leaf_data.issuer.country BE
services.tls.certificates.leaf_data.subject.common_name *.stack-it.ru
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus +gtFkdsplt5FN+JagKUr1bCzdiicMNoXTqvjaLsDL0lvYTcO6sSzQyopXyXaL6ECbEFPo9cvgcKR2pYsmimAariLVa6S0V1kUK/oZQvIMA1ZFTblGVB1OsZHeYAtYyDl9G0TpX2nK9oe1VloqAEjeLcCLZ794eIpLg52DFC/e/arjXTFJIgQkryPnk38OQFev86GBZEcoLkz9q8Uw4Ldk25k+zD6USxnD3LO3xl3tZOZsbhC3cmnP6Wye/rnwkTjCzuxbRoNWSxKrdk78THW6q/n6+7SYVCjUGCIKGxbAPSA6K0B+pPhgzCVdBhaJtEqrWlAKx2YLitNVZqnSvOLGMCvX0jSM37cYJIq2gZ2Y+e/xY0jypLcA/Fpkb7xDmSg89bXPdsi5aV2WB7ElcgTMpiqfCmWfM3Q/chk8c45jOY5ittTMQgiwYjP7xHx5P5Caa6w46oszEEfNoTr2xuTOuPUcekvmsZ/iSy81Bt/9b1nXGV1QQJOv4SRptSrhyOtfze4uTJzFUGRJJ9pd+miRW2n+XoSOKPMbUN1tKmy/KbNuHzqtwrx5Wo23wTqaQYen61ox+UydN+iO8EdJaenblKAw4Xz0NrssQsEJz3pi2d28PFrUZ5tIgFSsDAgFCWjQqoPRe4XY3Z+a40flWf46CKAh7bggBhcohEAT6KHwUk=
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 512
services.tls.certificates.leaf_data.public_key.fingerprint 237b049b78d270ec56150beb3c5abae001dea8744fdef4bafd618e44aceb8f90
services.tls.certificates.leaf_data.signature.signature_algorithm SHA256-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.certificates.chain.fingerprint 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.fingerprint ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.ja3s ccd5709d4a9027ec272e98b9924c36f7
services.transport_fingerprint.raw 14480,64,false,MSTNW,1440,false,false
services.transport_protocol TCP
services.truncated false

443/HTTP TCP View Definition

Attribute Value
services.banner HTTP/1.1 200 OK\r\nDate: <REDACTED>\r\nServer: Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips PHP/5.6.40 mod_wsgi/3.4 Python/2.7.5\r\nX-Powered-By: PHP/5.6.40\r\nContent-Length: 3262\r\nContent-Type: text/html; charset=UTF-8\r\n
services.banner_hashes sha256:7d2d71a849514efb5395530df0d6b2b104177a6d94c187e50960f8148036cdc0
services.banner_hex 485454502f312e3120323030204f4b0d0a446174653a20203c52454441435445443e0d0a5365727665723a204170616368652f322e342e36202843656e744f5329204f70656e53534c2f312e302e31652d66697073205048502f352e362e3430206d6f645f777367692f332e3420507974686f6e2f322e372e350d0a582d506f77657265642d42793a205048502f352e362e34300d0a436f6e74656e742d4c656e6774683a20333236320d0a436f6e74656e742d547970653a20746578742f68746d6c3b20636861727365743d5554462d380d0a
services.certificate 6d2b542c41230938be5f86019cd671c4a45da0b0c5165d468d7c9e9d44515810
services.extended_service_name HTTPS
services.http.request.method GET
services.http.request.uri https://176.214.76.39/
services.http.request.headers.User_Agent Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
services.http.request.headers.Accept */*
services.http.response.protocol HTTP/1.1
services.http.response.status_code 200
services.http.response.status_reason OK
services.http.response.headers.Server Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips PHP/5.6.40 mod_wsgi/3.4 Python/2.7.5
services.http.response.headers.Content_Length 3262
services.http.response.headers.Date <REDACTED>
services.http.response.headers.Content_Type text/html; charset=UTF-8
services.http.response.headers.X_Powered_By PHP/5.6.40
services.http.response.html_tags <title>ООО Компания СТЕК</title>
services.http.response.html_tags <meta name="viewport" content="width=device-width">
services.http.response.html_tags <meta charset="UTF-8">
services.http.response.body_size 3262
services.http.response.body <html>\r\n<head>\r\n <link rel="shortcut icon" href="indeximg/favicon.ico" type="image/x-icon">\r\n <meta name="viewport" content="width=device-width">\r\n <meta charset="UTF-8">\r\n <title>ООО Компания СТЕК</title>\r\n\r\n <style type="text/css">\r\n body {\r\n font-family: Tahoma;\r\n background: url("indeximg/background.jpg") no-repeat;\r\n -moz-background-size: 100%;\r\n -webkit-background-size: 100%;\r\n -o-background-size: 100%;\r\n /* background-size: 100%; */\r\n }\r\n ul {\r\n width: 100%;\r\n font-size: 32px;\r\n color: #7d7d7d;\r\n text-align:center;\r\n margin-left: -40px;\r\n margin-top: 27px;\r\n }\r\n li {\r\n display:inline-block;\r\n *display:inline; /*IE7*/\r\n *zoom:1; /*IE7*/\r\n }\r\n p {\r\n font-size: 24px;\r\n color: #7d7d7d;\r\n text-align: center;\r\n }\r\n .button {\r\n background: #91C46C;\r\n border-top: 1px solid #ffffff;\r\n border-left: 1px solid #ffffff;\r\n padding: 8px 60px;\r\n cursor: pointer;\r\n }\r\n .button a {\r\n color: #F8FBF6;\r\n text-decoration: none;\r\n font-size: 19px;\r\n font-weight: 100;\r\n }\r\n .footer {\r\n margin-top: 50px;\r\n font-size: 12px;\r\n color: #7d7d7d;\r\n text-align: center;\r\n }\r\n </style>\r\n\r\n</head>\r\n<body>\r\n<ul>\r\n <li style="max-width: 400px; margin-bottom: 30px">\r\n <img style="max-width:400px; width: 100%" src="indeximg/whale.png">\r\n </li>\r\n <li style="max-width: 600px">\r\n ДОБРО ПОЖАЛОВАТЬ В "СТЕК" <br><br>\r\n 150999, ул. Малая Химическая, 7а Россия, Ярославль <br> тел.: 8 (4852) 59-45-00 <br><br>\r\n\r\n <ul style="margin-top: 0">\r\n <li class="button" style="margin-bottom: 10px"><a href="http://stack-it.ru/" target="_blank">Сайт компании</a></li>\r\n <li class="button"><a href="http://sd.stack-it.ru/" target="_blank">Вход в ServiceDesk</a></li>\r\n </ul>\r\n </li>\r\n <!--<tr>-->\r\n <!--<td height="300px" valign="bottom" colspan="2">-->\r\n <!--<p>-->\r\n <!--Внимание! Уважаемые клиенты!<br>-->\r\n <!--В связи с обновлением ПО Личный кабинет перенесен на новую площадку <b>ServiceDesk</b>,<br>-->\r\n <!--расположенную по адресу <a href="http://sd.stack-it.ru/" target="_blank" style="color: #7d7d7d">http://sd.stack-it.ru/</a><br><br>-->\r\n <!--Для доступа в новую систему необходимо получить логин и пароль у наших менеджеров.-->\r\n <!--</p>-->\r\n <!--</td>-->\r\n <!--</tr>-->\r\n</ul>\r\n\r\n<div class="footer">\r\n Разработка, внедрение, сопровождение<br>\r\n прикладного программного обеспечения<br><br>\r\n &copy; 1993—2023 ООО Компания &laquo;Стек&raquo;\r\n</div>\r\n</body>\r\n</html>
services.http.response.favicons.size 4286
services.http.response.favicons.name https://176.214.76.39/indeximg/favicon.ico
services.http.response.favicons.md5_hash fbb575b4317d3ea24b0f419e52032275
services.http.response.body_hashes sha256:065b0af4a0803a5d7dc5a963def989c90774fd7f75a089c3f6b2404176aaf430
services.http.response.body_hashes sha1:6bcfbf7053efcca190571f4d96461c8dec84672a
services.http.response.body_hash sha1:6bcfbf7053efcca190571f4d96461c8dec84672a
services.http.response.html_title ООО Компания СТЕК
services.http.supports_http2 false
services.observed_at 2023-03-21T23:26:23.154297686Z
services.perspective_id PERSPECTIVE_TATA
services.port 443
services.service_name HTTP
services.software.product apache
services.software.other.info (CentOS) OpenSSL/1.0.1e-fips PHP/5.6.40 mod_wsgi/3.4 Python/2.7.5
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:*:python:2.7.5:*:*:*:*:*:*:*
services.software.part a
services.software.product Python
services.software.version 2.7.5
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:modwsgi:mod_wsgi:3.4:*:*:*:*:*:*:*
services.software.part a
services.software.vendor mod_wsgi
services.software.product mod_wsgi
services.software.version 3.4
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:o:centos:centos:*:*:*:*:*:*:*:*
services.software.part o
services.software.vendor CentOS
services.software.product Linux
services.software.other.family Linux
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:*:openssl:1.0.1e\-fips:*:*:*:*:*:*:*
services.software.part a
services.software.product OpenSSL
services.software.version 1.0.1e-fips
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:apache:http_server:2.4.6:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Apache
services.software.product HTTPD
services.software.version 2.4.6
services.software.component_uniform_resource_identifiers cpe:2.3:a:*:openssl:1.0.1e\-fips:*:*:*:*:*:*:*
services.software.component_uniform_resource_identifiers cpe:2.3:a:*:php:5.6.40:*:*:*:*:*:*:*
services.software.component_uniform_resource_identifiers cpe:2.3:a:modwsgi:mod_wsgi:3.4:*:*:*:*:*:*:*
services.software.component_uniform_resource_identifiers cpe:2.3:a:*:python:2.7.5:*:*:*:*:*:*:*
services.software.other.family Apache
services.software.source OSI_APPLICATION_LAYER
services.software.uniform_resource_identifier cpe:2.3:a:*:php:5.6.40:*:*:*:*:*:*:*
services.software.part a
services.software.product PHP
services.software.version 5.6.40
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.94.138.125
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 6d2b542c41230938be5f86019cd671c4a45da0b0c5165d468d7c9e9d44515810
services.tls.certificates.leaf_data.names platimvmeste.ru
services.tls.certificates.leaf_data.names www.platimvmeste.ru
services.tls.certificates.leaf_data.subject_dn OU=Domain Control Validated, OU=PositiveSSL, CN=platimvmeste.ru
services.tls.certificates.leaf_data.issuer_dn C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Domain Validation Secure Server CA
services.tls.certificates.leaf_data.pubkey_bit_size 2048
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint ac9bc641dc4c2f34dae08f2510574c8b2dda8b9acfa53554e03035d651d1c010
services.tls.certificates.leaf_data.fingerprint 6d2b542c41230938be5f86019cd671c4a45da0b0c5165d468d7c9e9d44515810
services.tls.certificates.leaf_data.issuer.common_name COMODO RSA Domain Validation Secure Server CA
services.tls.certificates.leaf_data.issuer.locality Salford
services.tls.certificates.leaf_data.issuer.organization COMODO CA Limited
services.tls.certificates.leaf_data.issuer.province Greater Manchester
services.tls.certificates.leaf_data.issuer.country GB
services.tls.certificates.leaf_data.subject.common_name platimvmeste.ru
services.tls.certificates.leaf_data.subject.organizational_unit Domain Control Validated
services.tls.certificates.leaf_data.subject.organizational_unit PositiveSSL
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus 50XmS/1EeDjG497G0BNJ/PN4ne3+LOXBBdkytGFWa7Any965HaE076uhp95jjbgDXERn3kslJGpiahBW0AvApEprNkZDWuC2aAZ1kixypEkhM2NWwxPOKMibwXGfW6kBdSJe6/8VZSkS+Cn0MBci3Pjhh+O3NZyza8kWEsMNpTier5y3aQhWS9EcabBEtrJP+qqa+KpUNAqNdRCQyt2F9LwroyNll3L+txcFHvLA7Gbk3wTgGTo3yQg07Mo7NudlL2QofgpEkxhsKIEOEHAa5hQKq4AP6GWYN1mkTCt/Kfk7jUNXWDEpG9kg87ldAnzj8AQ9Ohy2pvO53pN6z6Gdow==
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 256
services.tls.certificates.leaf_data.public_key.fingerprint cb1c6c4f5868842652ef77f4e1f4e824be904aef3237bf18b7efe219373be9c2
services.tls.certificates.leaf_data.signature.signature_algorithm SHA256-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.server_key_exchange.ec_params.named_curve 23
services.tls.session_ticket.length 192
services.tls.session_ticket.lifetime_hint 300
services.tls.ja3s ccc514751b175866924439bdbb5bba34
services.transport_protocol TCP
services.truncated false

465/SMTP TCP View Definition

Attribute Value
services.banner 220 mail.stack-it.ru ESMTP Postfix\r\n
services.banner_hashes sha256:4b88f2f39a2441c311cac0170d1217c616d34cba82f6e2608847eb1807eb4d83
services.banner_hex 323230206d61696c2e737461636b2d69742e72752045534d545020506f73746669780d0a
services.certificate 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.extended_service_name SMTPS
services.labels email
services.observed_at 2023-03-21T14:57:56.840147647Z
services.perspective_id PERSPECTIVE_HE
services.port 465
services.service_name SMTP
services.smtp.banner 220 mail.stack-it.ru ESMTP Postfix\r\n
services.smtp.ehlo 250-mail.stack-it.ru\r\n250-PIPELINING\r\n250-SIZE 524288000\r\n250-VRFY\r\n250-ETRN\r\n250-AUTH PLAIN LOGIN\r\n250-AUTH=PLAIN LOGIN\r\n250-ENHANCEDSTATUSCODES\r\n250-8BITMIME\r\n250 DSN\r\n
services.software.uniform_resource_identifier cpe:2.3:a:postfix:postfix:*:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Postfix
services.software.product Postfix
services.software.other.family Postfix
services.software.source OSI_APPLICATION_LAYER
services.source_ip 162.142.125.214
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.chain_fps_sha_256 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain_fps_sha_256 ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.leaf_data.names *.stack-it.ru
services.tls.certificates.leaf_data.names stack-it.ru
services.tls.certificates.leaf_data.subject_dn CN=*.stack-it.ru
services.tls.certificates.leaf_data.issuer_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.pubkey_bit_size 4096
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint a4c0876053a589ad9f9192c598188d5f4affa7d67be0f6eeb664497638a922c9
services.tls.certificates.leaf_data.fingerprint 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.leaf_data.issuer.common_name AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.issuer.organization GlobalSign nv-sa
services.tls.certificates.leaf_data.issuer.country BE
services.tls.certificates.leaf_data.subject.common_name *.stack-it.ru
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus 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
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 512
services.tls.certificates.leaf_data.public_key.fingerprint 237b049b78d270ec56150beb3c5abae001dea8744fdef4bafd618e44aceb8f90
services.tls.certificates.leaf_data.signature.signature_algorithm SHA256-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.certificates.chain.fingerprint 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.fingerprint ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.server_key_exchange.ec_params.named_curve 23
services.tls.ja3s 303951d4c50efb2e991652225a6f02b1
services.transport_fingerprint.raw 1480,255,false,,0,false,false
services.transport_protocol TCP
services.truncated false

993/IMAP TCP View Definition

Attribute Value
services.banner * OK [CAPABILITY IMAP4rev1 LITERAL+ ID ENABLE AUTH=PLAIN SASL-IR] example.com Cyrus IMAP v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready\r\n
services.banner_hashes sha256:1e84dbe3d57cc3346aa06d6a58399264a253b177ca05f8361de2813f5968172d
services.banner_hex 2a204f4b205b4341504142494c49545920494d41503472657631204c49544552414c2b20494420454e41424c4520415554483d504c41494e205341534c2d49525d206578616d706c652e636f6d20437972757320494d41502076322e342e31372d4665646f72612d52504d2d322e342e31372d372e656c37207365727665722072656164790d0a
services.certificate 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.extended_service_name IMAPS
services.imap.banner * OK [CAPABILITY IMAP4rev1 LITERAL+ ID ENABLE AUTH=PLAIN SASL-IR] example.com Cyrus IMAP v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready\r\n
services.jarm.fingerprint 05d02d12d04d04d05c05d02d05d04da441f40918707087561e2af18cf76f0e
services.jarm.cipher_and_version_fingerprint 05d02d12d04d04d05c05d02d05d04d
services.jarm.tls_extensions_sha256 a441f40918707087561e2af18cf76f0e
services.jarm.observed_at 2023-03-14T14:25:12.832544335Z
services.labels email
services.observed_at 2023-03-21T05:43:34.074260305Z
services.perspective_id PERSPECTIVE_TELIA
services.port 993
services.service_name IMAP
services.source_ip 167.94.146.59
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.chain_fps_sha_256 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain_fps_sha_256 ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.leaf_data.names *.stack-it.ru
services.tls.certificates.leaf_data.names stack-it.ru
services.tls.certificates.leaf_data.subject_dn CN=*.stack-it.ru
services.tls.certificates.leaf_data.issuer_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.pubkey_bit_size 4096
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint a4c0876053a589ad9f9192c598188d5f4affa7d67be0f6eeb664497638a922c9
services.tls.certificates.leaf_data.fingerprint 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.leaf_data.issuer.common_name AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.issuer.organization GlobalSign nv-sa
services.tls.certificates.leaf_data.issuer.country BE
services.tls.certificates.leaf_data.subject.common_name *.stack-it.ru
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus +gtFkdsplt5FN+JagKUr1bCzdiicMNoXTqvjaLsDL0lvYTcO6sSzQyopXyXaL6ECbEFPo9cvgcKR2pYsmimAariLVa6S0V1kUK/oZQvIMA1ZFTblGVB1OsZHeYAtYyDl9G0TpX2nK9oe1VloqAEjeLcCLZ794eIpLg52DFC/e/arjXTFJIgQkryPnk38OQFev86GBZEcoLkz9q8Uw4Ldk25k+zD6USxnD3LO3xl3tZOZsbhC3cmnP6Wye/rnwkTjCzuxbRoNWSxKrdk78THW6q/n6+7SYVCjUGCIKGxbAPSA6K0B+pPhgzCVdBhaJtEqrWlAKx2YLitNVZqnSvOLGMCvX0jSM37cYJIq2gZ2Y+e/xY0jypLcA/Fpkb7xDmSg89bXPdsi5aV2WB7ElcgTMpiqfCmWfM3Q/chk8c45jOY5ittTMQgiwYjP7xHx5P5Caa6w46oszEEfNoTr2xuTOuPUcekvmsZ/iSy81Bt/9b1nXGV1QQJOv4SRptSrhyOtfze4uTJzFUGRJJ9pd+miRW2n+XoSOKPMbUN1tKmy/KbNuHzqtwrx5Wo23wTqaQYen61ox+UydN+iO8EdJaenblKAw4Xz0NrssQsEJz3pi2d28PFrUZ5tIgFSsDAgFCWjQqoPRe4XY3Z+a40flWf46CKAh7bggBhcohEAT6KHwUk=
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 512
services.tls.certificates.leaf_data.public_key.fingerprint 237b049b78d270ec56150beb3c5abae001dea8744fdef4bafd618e44aceb8f90
services.tls.certificates.leaf_data.signature.signature_algorithm SHA256-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.certificates.chain.fingerprint 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.fingerprint ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.ja3s ccd5709d4a9027ec272e98b9924c36f7
services.transport_fingerprint.raw 14480,64,false,MSTNW,1440,false,false
services.transport_protocol TCP
services.truncated false

995/POP3 TCP View Definition

Attribute Value
services.banner +OK example.com Cyrus POP3 v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready <[email protected]>\r\n
services.banner_hashes sha256:b0e6a7481377ee115ea8abd3be3a53c77803c9f20200aac9f3eb4edb95c9288a
services.banner_hex 2b4f4b206578616d706c652e636f6d20437972757320504f50332076322e342e31372d4665646f72612d52504d2d322e342e31372d372e656c3720736572766572207265616479203c343132323735303537353032333938353831362e31363739343136323137406578616d706c652e636f6d3e0d0a
services.certificate 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.extended_service_name POP3S
services.labels email
services.observed_at 2023-03-21T16:30:16.579632347Z
services.perspective_id PERSPECTIVE_NTT
services.pop3.banner +OK example.com Cyrus POP3 v2.4.17-Fedora-RPM-2.4.17-7.el7 server ready <[email protected]>\r\n
services.port 995
services.service_name POP3
services.software.uniform_resource_identifier cpe:2.3:a:carnegie_mellon_university:cyrus_pop:2.4.17:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Carnegie Mellon University
services.software.product Cyrus POP
services.software.version 2.4.17
services.software.other.family Cyrus MTA
services.software.source OSI_APPLICATION_LAYER
services.software.other.domain example.com
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.248.133.33
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.chain_fps_sha_256 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain_fps_sha_256 ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.leaf_data.names *.stack-it.ru
services.tls.certificates.leaf_data.names stack-it.ru
services.tls.certificates.leaf_data.subject_dn CN=*.stack-it.ru
services.tls.certificates.leaf_data.issuer_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.pubkey_bit_size 4096
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint a4c0876053a589ad9f9192c598188d5f4affa7d67be0f6eeb664497638a922c9
services.tls.certificates.leaf_data.fingerprint 419681facd0c2ce64bcf9cf846fdbbcdee1e02fedff5b5fc1e2d73ecf07cdf71
services.tls.certificates.leaf_data.issuer.common_name AlphaSSL CA - SHA256 - G4
services.tls.certificates.leaf_data.issuer.organization GlobalSign nv-sa
services.tls.certificates.leaf_data.issuer.country BE
services.tls.certificates.leaf_data.subject.common_name *.stack-it.ru
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus 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
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 512
services.tls.certificates.leaf_data.public_key.fingerprint 237b049b78d270ec56150beb3c5abae001dea8744fdef4bafd618e44aceb8f90
services.tls.certificates.leaf_data.signature.signature_algorithm SHA256-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.certificates.chain.fingerprint 7c4e90207b2b7caec080426cc469908cb27b925ee3b1c999c22b8568812fda8c
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G4
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.fingerprint ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
services.tls.certificates.chain.subject_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.certificates.chain.issuer_dn C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA
services.tls.ja3s ccd5709d4a9027ec272e98b9924c36f7
services.transport_fingerprint.raw 14480,64,false,MSTNW,1440,false,false
services.transport_protocol TCP
services.truncated false

15000/UNKNOWN TCP View Definition

Attribute Value
services.banner \s\v\v\f
services.banner_grab.banner XHMACwEACwEAAABcZg==
services.banner_grab.transport TCP
services.banner_hashes sha256:ecfe4935aa7e8fc86cc5ee5496cabaa20b5af34d95d4931643c2fc0c74d35ace
services.banner_hex 5c73000b01000b010000005c66
services.extended_service_name UNKNOWN
services.observed_at 2023-03-20T20:15:51.208409565Z
services.perspective_id PERSPECTIVE_TATA
services.port 15000
services.service_name UNKNOWN
services.source_ip 167.94.138.50
services.transport_fingerprint.raw 1480,255,false,,0,false,false
services.transport_protocol TCP
services.truncated false

15151/UNKNOWN TCP View Definition

Attribute Value
services.banner
services.banner_grab.transport TCP
services.banner_hashes sha256:e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
services.certificate 97476614e71332c09b6350e1e046ee1e7a61ed2d6c9a924a8e93ae4c657dc1da
services.extended_service_name UNKNOWN
services.jarm.fingerprint 05d02d20d21d20d05c05d02d05d20d74fcf6501ae7a92319e575bfafd2a827
services.jarm.cipher_and_version_fingerprint 05d02d20d21d20d05c05d02d05d20d
services.jarm.tls_extensions_sha256 74fcf6501ae7a92319e575bfafd2a827
services.jarm.observed_at 2023-03-08T17:28:07.716713615Z
services.observed_at 2023-03-20T20:15:45.195889135Z
services.perspective_id PERSPECTIVE_HE
services.port 15151
services.service_name UNKNOWN
services.source_ip 162.142.125.13
services.tls.version_selected TLSv1_2
services.tls.cipher_selected TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
services.tls.certificates.leaf_fp_sha_256 97476614e71332c09b6350e1e046ee1e7a61ed2d6c9a924a8e93ae4c657dc1da
services.tls.certificates.leaf_data.subject_dn C=ru, ST=Yaroslavl, O=stack, OU=stack, CN=Dispatcher
services.tls.certificates.leaf_data.issuer_dn [email protected], C=ru, ST=Yaroslavl, L=Yaroslavl, O=stack, OU=stack, CN=stack, [email protected]
services.tls.certificates.leaf_data.pubkey_bit_size 4096
services.tls.certificates.leaf_data.pubkey_algorithm RSA
services.tls.certificates.leaf_data.tbs_fingerprint 415f30978f6e3a1eb2b7d70fd75bf507f24f36af58b53ff36b520a9bcdbe89a3
services.tls.certificates.leaf_data.fingerprint 97476614e71332c09b6350e1e046ee1e7a61ed2d6c9a924a8e93ae4c657dc1da
services.tls.certificates.leaf_data.issuer.common_name stack
services.tls.certificates.leaf_data.issuer.locality Yaroslavl
services.tls.certificates.leaf_data.issuer.organization stack
services.tls.certificates.leaf_data.issuer.organizational_unit stack
services.tls.certificates.leaf_data.issuer.province Yaroslavl
services.tls.certificates.leaf_data.issuer.country ru
services.tls.certificates.leaf_data.issuer.email_address [email protected]
services.tls.certificates.leaf_data.subject.common_name Dispatcher
services.tls.certificates.leaf_data.subject.organization stack
services.tls.certificates.leaf_data.subject.organizational_unit stack
services.tls.certificates.leaf_data.subject.province Yaroslavl
services.tls.certificates.leaf_data.subject.country ru
services.tls.certificates.leaf_data.public_key.key_algorithm RSA
services.tls.certificates.leaf_data.public_key.rsa.modulus 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
services.tls.certificates.leaf_data.public_key.rsa.exponent AAEAAQ==
services.tls.certificates.leaf_data.public_key.rsa.length 512
services.tls.certificates.leaf_data.public_key.fingerprint bf599990d9622c133ecfa823a6f53b538b076e63d0ba9bddb81ed0e445c93d55
services.tls.certificates.leaf_data.signature.signature_algorithm SHA1-RSA
services.tls.certificates.leaf_data.signature.self_signed false
services.tls.server_key_exchange.ec_params.named_curve 23
services.tls.ja3s 303951d4c50efb2e991652225a6f02b1
services.transport_fingerprint.raw 1480,255,false,,0,false,false
services.transport_protocol TCP
services.truncated false

54321/HTTP TCP View Definition

Attribute Value
services.banner HTTP/1.1 401 Authorization Required\r\nDate: <REDACTED>\r\nServer: Apache\r\nX-Frame-Options: SAMEORIGIN\r\nWWW-Authenticate: Basic realm="VisualSVN Server"\r\nContent-Length: 401\r\nContent-Type: text/html; charset=iso-8859-1\r\n
services.banner_hashes sha256:560ac5df69f9d5bf0e905ef1b5f8b3a2f70dbc3619c6b7e8086adc449e28dcc4
services.banner_hex 485454502f312e312034303120417574686f72697a6174696f6e2052657175697265640d0a446174653a20203c52454441435445443e0d0a5365727665723a204170616368650d0a582d4672616d652d4f7074696f6e733a2053414d454f524947494e0d0a5757572d41757468656e7469636174653a204261736963207265616c6d3d2256697375616c53564e20536572766572220d0a436f6e74656e742d4c656e6774683a203430310d0a436f6e74656e742d547970653a20746578742f68746d6c3b20636861727365743d69736f2d383835392d310d0a
services.extended_service_name HTTP
services.http.request.method GET
services.http.request.uri http://176.214.76.39:54321/
services.http.request.headers.User_Agent Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
services.http.request.headers.Accept */*
services.http.response.protocol HTTP/1.1
services.http.response.status_code 401
services.http.response.status_reason Authorization Required
services.http.response.headers.Server Apache
services.http.response.headers.Www_Authenticate Basic realm="VisualSVN Server"
services.http.response.headers.X_Frame_Options SAMEORIGIN
services.http.response.headers.Date <REDACTED>
services.http.response.headers.Content_Length 401
services.http.response.headers.Content_Type text/html; charset=iso-8859-1
services.http.response.html_tags <title>401 Authorization Required</title>
services.http.response.body_size 401
services.http.response.body <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">\n<html><head>\n<title>401 Authorization Required</title>\n</head><body>\n<h1>Authorization Required</h1>\n<p>This server could not verify that you\nare authorized to access the document\nrequested. Either you supplied the wrong\ncredentials (e.g., bad password), or your\nbrowser doesn't understand how to supply\nthe credentials required.</p>\n</body></html>\n
services.http.response.body_hashes sha256:a0f4bdb216ccd677e0e7260a3fad50a7dc056db1fee3837fab920237306e802c
services.http.response.body_hashes sha1:e8aa02e6125d266ba60000f7735767347e76bafb
services.http.response.body_hash sha1:e8aa02e6125d266ba60000f7735767347e76bafb
services.http.response.html_title 401 Authorization Required
services.http.supports_http2 false
services.observed_at 2023-03-21T17:38:55.126287024Z
services.perspective_id PERSPECTIVE_NTT
services.port 54321
services.service_name HTTP
services.software.uniform_resource_identifier cpe:2.3:a:apache:http_server:*:*:*:*:*:*:*:*
services.software.part a
services.software.vendor Apache
services.software.product HTTPD
services.software.other.family Apache
services.software.source OSI_APPLICATION_LAYER
services.source_ip 167.248.133.187
services.transport_protocol TCP
services.truncated false