31.31.196.242

As of: Nov 28, 2022 4:50am UTC | Latest

Basic Information

Reverse DNS
vip25.hosting.reg.ru
OS
linux
Network
AS-REG (RU)
Routing
31.31.196.0/24  via  AS197695
Protocols
21/FTP , 22/SSH , 25/SMTP , 53/DNS , 80/HTTP , 110/POP3 , 111/PORTMAP , 143/IMAP , 443/HTTP , 465/SMTP , 587/SMTP , 993/IMAP , 995/POP3 , 1500/HTTP , 3306/MYSQL , 9443/HTTP

21/FTP TCP
Observed Nov 26, 2022 at 11:03pm UTC


View All Data

Details

Banner
220 FTP Server ready.
Auth TLS Response
234 AUTH TLS successful
Status Code
220
Status Meaning
Service ready for new user.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2

22/SSH TCP
Observed Nov 27, 2022 at 5:00pm UTC


View All Data

Software

Dropbear SSH Project Dropbear SSH 2022.82

Details

Host Key
Algorithm
ecdsa-sha2-nistp256
Fingerprint
e52702aad3c4363b464c7a64cd8dbc45c9d1bd027c318575c74abc546b4f7de0
Negotiated
Key Exchange
[email protected]
Symmetric Cipher
aes128-ctr [] aes128-ctr []
MAC
hmac-sha2-256 [] hmac-sha2-256 []

25/SMTP TCP
Observed Nov 28, 2022 at 2:45am UTC


View All Data

Software

exim 4.96

Details

Banner
220 vip25.hosting.reg.ru ESMTP Exim 4.96 Mon, 28 Nov 2022 05:45:38 +0300
EHLO
250-vip25.hosting.reg.ru Hello scanner-25.ch1.censys-scanner.com [162.142.125.221]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH LOGIN PLAIN
250-STARTTLS
250 HELP
Start TLS
220 TLS go ahead

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

53/DNS UDP
Observed Nov 26, 2022 at 10:03pm UTC


View All Data

Details

Server Type
AUTHORITATIVE
R Code
REFUSED

80/HTTP TCP
Observed Nov 27, 2022 at 1:46pm UTC


View All Data Go

Software

nginx

Details

http://31.31.196.242
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:9a7cac0c758852abd2bbe5144874626a0208cf87
HTML Title
Домен не добавлен в панели
Response Body

110/POP3 TCP
Observed Nov 27, 2022 at 4:30pm UTC


View All Data

Software

linux
Dovecot

Details

Banner
+OK Dovecot ready.
Start TLS
+OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

111/PORTMAP UDP
Observed Nov 26, 2022 at 1:33pm UTC


View All Data

Details

Banner (Hex)
  
00000000
00000010
00000020
00000030
00000040
00000050
00000060
00000070
00000080
00000090
1a a9 ff e1 00 00 00 01 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 01 00 01 86 a0
00 00 00 04 00 00 00 06 00 00 00 6f 00 00 00 01
00 01 86 a0 00 00 00 03 00 00 00 06 00 00 00 6f
00 00 00 01 00 01 86 a0 00 00 00 02 00 00 00 06
00 00 00 6f 00 00 00 01 00 01 86 a0 00 00 00 04
00 00 00 11 00 00 00 6f 00 00 00 01 00 01 86 a0
00 00 00 03 00 00 00 11 00 00 00 6f 00 00 00 01
00 01 86 a0 00 00 00 02 00 00 00 11 00 00 00 6f
00 00 00 00
................
................
...........o....
...............o
................
...o............
.......o........
...........o....
...............o
....

143/IMAP TCP
Observed Nov 27, 2022 at 4:59pm UTC


View All Data

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN AUTH=LOGIN] Dovecot ready.
Start TLS
a001 OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

443/HTTP TCP
Observed Nov 27, 2022 at 8:59am UTC


View All Data Go

Software

nginx

Details

https://31.31.196.242
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:9a7cac0c758852abd2bbe5144874626a0208cf87
HTML Title
Домен не добавлен в панели
Response Body

TLS

Fingerprint
JARM
29d29d00029d29d00042d42d0000005d86ccb1a0567e012264097a0315d7a7
JA3S
15af977ce25de452b96affa2addb1036
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_AES_256_GCM_SHA384
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

465/SMTP TCP
Observed Nov 27, 2022 at 3:52pm UTC


View All Data

Software

exim 4.96

Details

Banner
220 vip25.hosting.reg.ru ESMTP Exim 4.96 Sun, 27 Nov 2022 18:52:26 +0300
EHLO
250-vip25.hosting.reg.ru Hello scanner-25.ch1.censys-scanner.com [162.142.125.222]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH LOGIN PLAIN
250 HELP

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

587/SMTP TCP
Observed Nov 28, 2022 at 1:19am UTC


View All Data

Software

exim 4.96

Details

Banner
220 vip25.hosting.reg.ru ESMTP Exim 4.96 Mon, 28 Nov 2022 04:19:13 +0300
EHLO
250-vip25.hosting.reg.ru Hello www.censys.io [167.94.146.60]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH LOGIN PLAIN
250-STARTTLS
250 HELP
Start TLS
220 TLS go ahead

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

993/IMAP TCP
Observed Nov 27, 2022 at 5:00pm UTC


View All Data

Software

linux

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN] Dovecot ready.

TLS

Fingerprint
JARM
05d02d20d21d20d05c05d02d05d20da23a7a927f270a23608b3c7a72999cab
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

995/POP3 TCP
Observed Nov 27, 2022 at 11:26pm UTC


View All Data

Software

Dovecot

Details

Banner
+OK Dovecot ready.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

1500/HTTP TCP
Observed Nov 26, 2022 at 1:33pm UTC


View All Data Go

Details

https://31.31.196.242:1500
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:888f39282fa314387bb2e23be568f1e8f40f3f93
HTML Title
Authorization
Response Body
Javascript required for login

Your browser is out of date. ISPmanager may work incorrectly. Please update or
change your browser.

![](/manimg/dragon/default/login-logo-ispmgr.svg)

Log in

Language English

  * Český
  * Deutsch
  * English
  * Español
  * Français
  * Magyar
  * հայերեն
  * Nederlands
  * Polski
  * Русский
  * Українська

  * [Exosoft (C) 2022](https://www.ispsystem.com/software/ispmanager)

TLS

Fingerprint
JARM
20d02d20d29d20d20c20d02d20d20d82810f76c2e865422123f6b34a0b8aa5
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2
Issuer Chain

3306/MYSQL TCP
Observed Nov 28, 2022 at 12:32am UTC


View All Data

Software

Oracle MySQL 5.7.27-30

Details

Protocol Version
10
Character Set
8

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
c20e9b467965d61d4c9aaf2a3d135760a286937f2952c9977b12230b6b6a52b6
CN=MySQL_Server_5.7.23-24_Auto_Generated_Server_Certificate
CN=MySQL_Server_5.7.23-24_Auto_Generated_CA_Certificate
Issuer Chain

9443/HTTP TCP
Observed Nov 26, 2022 at 1:33pm UTC


View All Data Go

Software

nginx 1.9.15

Details

https://31.31.196.242:9443
Request
GET /
Protocol
HTTP/1.1
Status Code
302
Status Reason
Moved Temporarily
Body Hash
sha1:b0d0bea9bca4195a1324bfab7c9054768fa7648f
HTML Title
302 Found
Response Body
# 302 Found

* * *

nginx/1.9.15

TLS

Fingerprint
JARM
05d10d20d21d20d05c05d10d05d20d74fcf6501ae7a92319e575bfafd2a827
JA3S
ccc514751b175866924439bdbb5bba34
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
d7b272092e56d225d84c1d9149f486bfb8a5dca5af51c1b5b998cc08dab27615
CN=*.hosting.reg.ru
C=BE, O=GlobalSign nv-sa, CN=AlphaSSL CA - SHA256 - G2

Geographic Location

Country
Russia (RU)
Coordinates
55.7386, 37.6068
Timezone
Europe/Moscow