209.159.148.125

As of: Dec 08, 2022 8:38am UTC | Latest

Basic Information

OS
Microsoft Windows
Network
IS-AS-1 (US)
Routing
209.159.144.0/20  via  AS19318
Protocols
25/SMTP , 53/DNS , 80/HTTP , 110/POP3 , 143/IMAP , 443/HTTP , 445/SMB , 465/SMTP , 587/SMTP , 990/FTP , 993/IMAP , 995/POP3 , 1433/MSSQL , 3306/MYSQL , 8443/HTTP , 8880/HTTP

25/SMTP TCP
Observed Dec 07, 2022 at 9:50pm UTC


View All Data

Software

MailEnable Mail Server 10.34
Microsoft Windows

Details

Banner
220 plesk5000.is.cc ESMTP MailEnable Service, Version: 10.34-- ready at 12/07/22 16:50:33
EHLO
250-home [162.142.125.219], this server offers 5 extensions
250-AUTH LOGIN
250-SIZE 51200000
250-HELP
250-AUTH=LOGIN
250 STARTTLS
Start TLS
220 Ready to start TLS

TLS

Fingerprint
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

53/DNS UDP
Observed Dec 07, 2022 at 7:31pm UTC


View All Data

Details

Server Type
AUTHORITATIVE
R Code
REFUSED

80/HTTP TCP
Observed Dec 06, 2022 at 6:01pm UTC


View All Data Go

Software

Microsoft IIS 10.0
Microsoft ASP.NET

Details

http://209.159.148.125
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:ccb7341ab0dd5ee9aff7a1f35e9f9cd6b8b891a9
HTML Title
Web Server's Default Page
Response Body
You see this page because there is no Web site at this address.

110/POP3 TCP
Observed Dec 06, 2022 at 4:48pm UTC


View All Data

Software

MailEnable
Microsoft Windows

Details

Banner
+OK Welcome to MailEnable POP3 Server
Start TLS
-ERR Unknown command

143/IMAP TCP
Observed Dec 08, 2022 at 3:42am UTC


View All Data

Details

Banner
* OK IMAP4rev1 server ready at 12/07/22 22:42:06
Start TLS
a001 OK Ready to start TLS.

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

443/HTTP TCP
Observed Dec 08, 2022 at 7:39am UTC


View All Data Go

Software

microsoft windows
ARR 3.0
Microsoft ASP.NET
Microsoft IIS 10.0

Details

https://209.159.148.125
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:8faa260164d3bdb48f89e95ba664660f2d2b0d12
HTML Title
Plesk Obsidian 18.0.47
Response Body

TLS

Fingerprint
JARM
2ad2ad16d00000022c2ad2ad2ad2ad46ff59a659b30fd8aeaa6755c67691b4
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

445/SMB TCP
Observed Dec 08, 2022 at 7:35am UTC


View All Data

Software

microsoft windows

Details

Server
SMBv1 Support
False
Capabilities
Dfs Support
True
Leasing Support
True
Multicredit Support
True
NTLM Support
True
Negotation Log
Security Mode
1
Dialect Revision
528
Server GUID
000000000000000000000000000000005c620e0489527d4084c85611efcf8b10
Capabilities
7
System Time
1670484904
Server Start Time
1240428288
Auth Types
1.3.6.1.4.1.311.2.2.30
1.3.6.1.4.1.311.2.2.10
Session
Target Name
PLESK5000
Negotiate Flags
2726953477

465/SMTP TCP
Observed Dec 07, 2022 at 3:30pm UTC


View All Data

Software

MailEnable Mail Server 10.34
Microsoft Windows

Details

Banner
220 plesk5000.is.cc ESMTP MailEnable Service, Version: 10.34-- ready at 12/07/22 10:30:15
EHLO
250-home [167.248.133.45], this server offers 5 extensions
250-AUTH LOGIN
250-SIZE 51200000
250-HELP
250-AUTH=LOGIN
250 CLIENTID

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

587/SMTP TCP
Observed Dec 08, 2022 at 1:52am UTC


View All Data

Software

MailEnable Mail Server 10.34
Microsoft Windows

Details

Banner
220 plesk5000.is.cc ESMTP MailEnable Service, Version: 10.34-- ready at 12/07/22 20:52:34
EHLO
250-home [167.248.133.47], this server offers 5 extensions
250-AUTH LOGIN
250-SIZE 51200000
250-HELP
250-AUTH=LOGIN
250 STARTTLS
Start TLS
220 Ready to start TLS

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

990/FTP TCP
Observed Dec 08, 2022 at 3:58am UTC


View All Data

Software

Microsoft IIS
Microsoft Windows

Details

Banner
220 Microsoft FTP Service
Implicit TLS
True
Status Code
220
Status Meaning
Service ready for new user.

TLS

Fingerprint
JARM
2ad2ad16d2ad2ad22c2ad2ad2ad2adfd9c9d14e4f4f67f94f0359f8b28f532
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

993/IMAP TCP
Observed Dec 08, 2022 at 1:11am UTC


View All Data

Software

microsoft windows

Details

Banner
* OK IMAP4rev1 server ready at 12/07/22 20:11:50

TLS

Fingerprint
JARM
2ad2ad16d2ad2ad22c2ad2ad2ad2adfd9c9d14e4f4f67f94f0359f8b28f532
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

995/POP3 TCP
Observed Dec 06, 2022 at 8:37pm UTC


View All Data

Software

MailEnable
Microsoft Windows

Details

Banner
+OK Welcome to MailEnable POP3 Server

TLS

Fingerprint
JA3S
364ff14b04ef93c3b4cfa429d729c0d9
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

1433/MSSQL TCP
Observed Dec 07, 2022 at 8:06pm UTC


View All Data

Software

Microsoft SQL Server 15.0.2000
microsoft windows

Details

Version
15.0.2000
Encrypt Mode
ENCRYPT_ON

3306/MYSQL TCP
Observed Dec 08, 2022 at 1:48am UTC


View All Data

Software

MariaDB 10.5.17

Details

Protocol Version
10
Character Set
8

8443/HTTP TCP
Observed Dec 08, 2022 at 8:11am UTC


View All Data Go

Software

Microsoft IIS 10.0
Microsoft ASP.NET

Details

https://209.159.148.125:8443
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:ff952c94e5e49da3134c83c8b2fcedfcc33afd68
HTML Title
Plesk Obsidian 18.0.47
Response Body

TLS

Fingerprint
JARM
2ad2ad16d00000022c2ad2ad2ad2ad46ff59a659b30fd8aeaa6755c67691b4
JA3S
1d9c3e8c45ab7a2112263449a3ad9ece
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
5f54e0a764b11a64cf91d7bc7fed8bda7b894129284cc57f239846ef9d973dc6
CN=plesk5000.is.cc
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

8880/HTTP TCP
Observed Dec 08, 2022 at 8:38am UTC


View All Data Go

Software

Microsoft IIS 10.0
Microsoft ASP.NET

Details

http://209.159.148.125:8880
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:96705552a95a6356509333220375f78552afed07
HTML Title
Plesk Obsidian 18.0.47
Response Body

Geographic Location

Country
United States (US)
Coordinates
37.751, -97.822
Timezone
America/Chicago