80.74.128.17

As of: Nov 28, 2022 9:40am UTC | Latest

Basic Information

Reverse DNS
gaius.sui-inter.net
OS
linux
Network
ASN-METANET Routingpeering issues: [email protected] (CH)
Routing
80.74.128.0/20  via  AS21069
Protocols
21/FTP , 25/SMTP , 53/DNS , 80/HTTP , 110/POP3 , 143/IMAP , 443/HTTP , 465/SMTP , 587/SMTP , 993/IMAP , 995/POP3 , 2121/SSH , 3306/MYSQL , 8443/HTTP , 8880/HTTP

21/FTP TCP
Observed Nov 26, 2022 at 10:48pm UTC


View All Data

Software

ProFTPD Project ProFTPD

Details

Banner
220 ProFTPD Server (ProFTPD) [80.74.128.17]
Auth TLS Response
234 AUTH TLS successful
Status Code
220
Status Meaning
Service ready for new user.

TLS

Fingerprint
JA3S
0debd3853f330c574b05e0b6d882dc27
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

25/SMTP TCP
Observed Nov 28, 2022 at 7:39am UTC


View All Data

Software

Postfix

Details

Banner
220 gaius.sui-inter.net ESMTP Postfix
EHLO
250-gaius.sui-inter.net
250-PIPELINING
250-SIZE 52428800
250-ETRN
250-STARTTLS
250-AUTH CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING
Start TLS
220 2.0.0 Ready to start TLS

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

53/DNS UDP
Observed Nov 26, 2022 at 11:53pm UTC


View All Data

Details

Server Type
AUTHORITATIVE
R Code
REFUSED

80/HTTP TCP
Observed Nov 28, 2022 at 2:29am UTC


View All Data Go

Software

nginx

Details

http://80.74.128.17
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:7f1b288fb1b7a625f39c8b6b73b89dc85abb693d
HTML Title
[]
Response Body


### Site Temporarily Closed

For further information please contact the webmaster.  
  
---

110/POP3 TCP
Observed Nov 27, 2022 at 11:56am UTC


View All Data

Software

linux
Dovecot

Details

Banner
+OK Dovecot ready. <1684.2.6383505b.+gnfhhm5GJMBbUe19x/[email protected]>
Start TLS
+OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
0debd3853f330c574b05e0b6d882dc27
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

143/IMAP TCP
Observed Nov 27, 2022 at 5:31pm UTC


View All Data

Details

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
Start TLS
a001 OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
0debd3853f330c574b05e0b6d882dc27
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

443/HTTP TCP
Observed Nov 27, 2022 at 11:46am UTC


View All Data Go

Software

nginx

Details

https://80.74.128.17
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:7f1b288fb1b7a625f39c8b6b73b89dc85abb693d
HTML Title
[]
Response Body


### Site Temporarily Closed

For further information please contact the webmaster.  
  
---

TLS

Fingerprint
JARM
15d3fd16d29d29d00042d43d0000009e5d3a316e7cccd6bbfaf756c222effa
JA3S
475c9302dc42b2751db9edcac3b74891
Handshake
Version Selected
TLSv1_3
Cipher Selected
TLS_CHACHA20_POLY1305_SHA256
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

465/SMTP TCP
Observed Nov 28, 2022 at 9:40am UTC


View All Data

Software

linux
Postfix

Details

Banner
220 gaius.sui-inter.net ESMTP Postfix
EHLO
250-gaius.sui-inter.net
250-PIPELINING
250-SIZE 52428800
250-ETRN
250-AUTH CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

587/SMTP TCP
Observed Nov 28, 2022 at 5:01am UTC


View All Data

Software

linux
Postfix

Details

Banner
220 gaius.sui-inter.net ESMTP Postfix
EHLO
250-gaius.sui-inter.net
250-PIPELINING
250-SIZE 52428800
250-ETRN
250-STARTTLS
250-AUTH CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING
Start TLS
220 2.0.0 Ready to start TLS

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

993/IMAP TCP
Observed Nov 27, 2022 at 1:13am UTC


View All Data

Software

linux

Details

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

TLS

Fingerprint
JARM
2ad2ad16d2ad2ad22c2ad2ad2ad2ad579b2ec9bfaf00aff9d6fe780b7932ae
JA3S
0debd3853f330c574b05e0b6d882dc27
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

995/POP3 TCP
Observed Nov 27, 2022 at 9:03am UTC


View All Data

Software

Dovecot

Details

Banner
+OK Dovecot ready. <1684.2.638327f2.kkcudQG/[email protected]>

TLS

Fingerprint
JA3S
0debd3853f330c574b05e0b6d882dc27
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

2121/SSH TCP
Observed Nov 28, 2022 at 9:20am UTC


View All Data

Software

linux
OpenBSD OpenSSH 7.4

Details

Host Key
Algorithm
ecdsa-sha2-nistp256
Fingerprint
7a1d2b24b60822f1220e7546f5e01ad4b6d99bf6ab02abc6b9534622830a927b
Negotiated
Key Exchange
[email protected]
Symmetric Cipher
aes128-ctr [] aes128-ctr []
MAC
hmac-sha2-256 [] hmac-sha2-256 []

3306/MYSQL TCP
Observed Nov 28, 2022 at 7:35am UTC


View All Data

Software

linux
MariaDB 10.3.35

Details

Protocol Version
10
Character Set
8

8443/HTTP TCP
Observed Nov 27, 2022 at 7:08am UTC


View All Data Go

Software

Parallels Plesk Panel
Parallels Plesk

Details

https://80.74.128.17:8443
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:e821ea4b007afe0391f57862b6fa01316bf197a4
HTML Title
Plesk Obsidian 18.0.47
Response Body

TLS

Fingerprint
JARM
2ad2ad0002ad2ad22c2ad2ad2ad2ad6a7bd8f51d54bfc07e1cd34e5ca50bb3
JA3S
e35df3e00ca4ef31d42b34bebaa2f86e
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Leaf Certificate
2500cec99b6b74e96273e678c5bfc74d06d25a6e25e819940077f921f43dddcc
CN=*.sui-inter.net
C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Issuer Chain

8880/HTTP TCP
Observed Nov 27, 2022 at 4:21pm UTC


View All Data Go

Software

Parallels Plesk Panel
Parallels Plesk

Details

http://80.74.128.17:8880
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:ef2fb74e9c9aad44b2ba67f323906faa5d760c9b
HTML Title
Plesk Obsidian 18.0.47
Response Body

Geographic Location

Country
Switzerland (CH)
Coordinates
47.1449, 8.1551
Timezone
Europe/Zurich