209.159.148.125

As of: Oct 05, 2022 4:47am UTC | Latest

Basic Information

OS
Microsoft Windows
Network
IS-AS-1 (US)
Routing
209.159.144.0/20  via  AS19318
Protocols
25/SMTP , 53/DNS , 80/HTTP , 110/POP3 , 143/IMAP , 443/HTTP , 445/SMB , 465/SMTP , 587/SMTP , 990/FTP , 993/IMAP , 995/POP3 , 1433/MSSQL , 3306/MYSQL , 8443/HTTP , 8880/HTTP

25/SMTP TCP
Observed Oct 02, 2022 at 11:49pm UTC


View All Data

Software

MailEnable Mail Server 10.34
Microsoft Windows

Details

Banner
220 plesk5000.is.cc ESMTP MailEnable Service, Version: 10.34-- ready at 10/02/22 19:49:18
EHLO
250-home [167.94.138.60], this server offers 5 extensions
250-AUTH LOGIN
250-SIZE 51200000
250-HELP
250-AUTH=LOGIN
250 STARTTLS
Start TLS
220 Ready to start TLS

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

53/DNS UDP
Observed Oct 04, 2022 at 12:06pm UTC


View All Data

Details

Server Type
AUTHORITATIVE
R Code
REFUSED

80/HTTP TCP
Observed Oct 04, 2022 at 5:35am UTC


View All Data Go

Software

Microsoft IIS 10.0
Microsoft ASP.NET

Details

http://209.159.148.125
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:ccb7341ab0dd5ee9aff7a1f35e9f9cd6b8b891a9
HTML Title
Web Server's Default Page
Response Body
You see this page because there is no Web site at this address.

110/POP3 TCP
Observed Oct 04, 2022 at 12:40am UTC


View All Data

Software

MailEnable
Microsoft Windows

Details

Banner
+OK Welcome to MailEnable POP3 Server
Start TLS
-ERR Unknown command

143/IMAP TCP
Observed Oct 04, 2022 at 4:51pm UTC


View All Data

Software

microsoft windows

Details

Banner
* OK IMAP4rev1 server ready at 10/04/22 12:51:38
Start TLS
a001 OK Ready to start TLS.

TLS

Fingerprint
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

443/HTTP TCP
Observed Oct 05, 2022 at 4:47am UTC


View All Data Go

Software

ARR 3.0
Microsoft IIS 10.0
Microsoft ASP.NET

Details

https://209.159.148.125
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:1e14cc6bcc69fdfb07f8f00e75f6f59d7f8ecb32
HTML Title
Plesk Obsidian 18.0.46
Response Body

TLS

Fingerprint
JARM
2ad2ad16d00000022c2ad2ad2ad2ad46ff59a659b30fd8aeaa6755c67691b4
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

445/SMB TCP
Observed Oct 04, 2022 at 1:32pm UTC


View All Data

Software

microsoft windows

Details

Server
SMBv1 Support
False
Capabilities
Dfs Support
True
Leasing Support
True
Multicredit Support
True
NTLM Support
True
Negotation Log
Security Mode
1
Dialect Revision
528
Server GUID
000000000000000000000000000000000f326e6140262c4d882ddbc6630c6085
Capabilities
7
System Time
1664890335
Server Start Time
1240428288
Auth Types
1.3.6.1.4.1.311.2.2.30
1.3.6.1.4.1.311.2.2.10
Session
Target Name
PLESK5000
Negotiate Flags
2726953477

465/SMTP TCP
Observed Oct 04, 2022 at 1:20am UTC


View All Data

Software

MailEnable Mail Server 10.34
Microsoft Windows

Details

Banner
220 plesk5000.is.cc ESMTP MailEnable Service, Version: 10.34-- ready at 10/03/22 21:20:30
EHLO
250-home [167.94.145.59], this server offers 5 extensions
250-AUTH LOGIN
250-SIZE 51200000
250-HELP
250-AUTH=LOGIN
250 CLIENTID

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

587/SMTP TCP
Observed Oct 03, 2022 at 8:53pm UTC


View All Data

Software

MailEnable Mail Server 10.34
Microsoft Windows

Details

Banner
220 plesk5000.is.cc ESMTP MailEnable Service, Version: 10.34-- ready at 10/03/22 16:53:03
EHLO
250-home [162.142.125.213], this server offers 5 extensions
250-AUTH LOGIN
250-SIZE 51200000
250-HELP
250-AUTH=LOGIN
250 STARTTLS
Start TLS
220 Ready to start TLS

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

990/FTP TCP
Observed Oct 04, 2022 at 1:31am UTC


View All Data

Software

Microsoft IIS
Microsoft Windows

Details

Banner
220 Microsoft FTP Service
Implicit TLS
True
Status Code
220
Status Meaning
Service ready for new user.

TLS

Fingerprint
JARM
2ad2ad16d2ad2ad22c2ad2ad2ad2adfd9c9d14e4f4f67f94f0359f8b28f532
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

993/IMAP TCP
Observed Oct 04, 2022 at 7:03am UTC


View All Data

Software

microsoft windows

Details

Banner
* OK IMAP4rev1 server ready at 10/04/22 03:03:14

TLS

Fingerprint
JARM
2ad2ad16d2ad2ad22c2ad2ad2ad2adfd9c9d14e4f4f67f94f0359f8b28f532
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

995/POP3 TCP
Observed Oct 04, 2022 at 9:39pm UTC


View All Data

Software

MailEnable
Microsoft Windows

Details

Banner
+OK Welcome to MailEnable POP3 Server

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

1433/MSSQL TCP
Observed Oct 02, 2022 at 9:24pm UTC


View All Data

Software

Microsoft SQL Server 15.0.2000
microsoft windows

Details

Version
15.0.2000
Encrypt Mode
ENCRYPT_ON

3306/MYSQL TCP
Observed Oct 04, 2022 at 3:26am UTC


View All Data

Software

microsoft windows
MariaDB 10.5.16

Details

Protocol Version
10
Character Set
8

8443/HTTP TCP
Observed Oct 04, 2022 at 9:56pm UTC


View All Data Go

Software

Microsoft IIS 10.0
microsoft windows
Microsoft ASP.NET

Details

https://209.159.148.125:8443
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:a7777f034a7026654b90c0f5f5f246134d794c5a
HTML Title
Plesk Obsidian 18.0.46
Response Body

TLS

Fingerprint
JARM
2ad2ad16d00000022c2ad2ad2ad2ad46ff59a659b30fd8aeaa6755c67691b4
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
d92909339e407ea9ec7410804a585f944180fe2c916740c59626f868be9b0cab
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

8880/HTTP TCP
Observed Oct 04, 2022 at 12:26pm UTC


View All Data Go

Software

Microsoft IIS 10.0
Microsoft ASP.NET

Details

http://209.159.148.125:8880
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:46b7a25fd83d54b42ee9d793525fd728f50589f2
HTML Title
Plesk Obsidian 18.0.46
Response Body

Geographic Location

Country
United States (US)
Coordinates
37.751, -97.822
Timezone
America/Chicago