85.214.88.48

As of: Jun 09, 2023 12:06am UTC | Latest

Basic Information

Reverse DNS
h2896446.stratoserver.net
OS
linux
Network
STRATO STRATO AG (DE)
Routing
85.214.0.0/15  via  AS6724
Protocols
21/FTP , 22/SSH , 25/SMTP , 80/HTTP , 110/POP3 , 143/IMAP , 443/HTTP , 993/IMAP , 995/POP3 , 4190/PIGEONHOLE , 8443/HTTP , 8880/HTTP
Labels
email , file-sharing , remote-access

21/FTP TCP
Observed Jun 08, 2023 at 8:27pm UTC


View All Data

Labels

File Sharing

Software

ProFTPD Project ProFTPD
linux

Details

Banner
220 ProFTPD Server (ProFTPD) [85.214.88.48]
Auth TLS Response
234 AUTH TLS successful
Status Code
220
Status Meaning
Service ready for new user.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

22/SSH TCP
Observed Jun 08, 2023 at 7:48pm UTC


View All Data

Labels

Remote Access

Software

linux
OpenBSD OpenSSH 7.4

Details

Host Key
Algorithm
ecdsa-sha2-nistp256
Fingerprint
d9f5a80ae1a85d971d6e7aa54c6fba532c4ca9e34a4b78cb47b602ee4dce78e7
Negotiated
Key Exchange
[email protected]
Symmetric Cipher
aes128-ctr [] aes128-ctr []
MAC
hmac-sha2-256 [] hmac-sha2-256 []

25/SMTP TCP
Observed Jun 08, 2023 at 3:16pm UTC


View All Data

Labels

Email

Software

linux
Postfix

Details

Banner
220 h2896446.stratoserver.net ESMTP Postfix
EHLO
250-h2896446.stratoserver.net
250-PIPELINING
250-SIZE 10240000
250-ETRN
250-STARTTLS
250-AUTH DIGEST-MD5 CRAM-MD5 PLAIN LOGIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING
Start TLS
220 2.0.0 Ready to start TLS

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

80/HTTP TCP
Observed Jun 08, 2023 at 4:38pm UTC


View All Data Go

Software

Apache HTTPD

Details

http://85.214.88.48
Request
GET /
Protocol
HTTP/1.1
Status Code
301
Status Reason
Moved Permanently
Body Hash
sha1:11393804c7d3bf78844e55113c80a408b87468fd
HTML Title
301 Moved Permanently
Response Body
      # Moved Permanently

The document has moved [here](https://85.214.88.48/).
    

110/POP3 TCP
Observed Jun 08, 2023 at 4:01am UTC


View All Data

Labels

Email

Software

Dovecot

Details

Banner
+OK Dovecot ready. <[email protected]t>
Start TLS
+OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

143/IMAP TCP
Observed Jun 08, 2023 at 9:54pm UTC


View All Data

Labels

Email

Software

linux
Dovecot

Details

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.
Start TLS
a001 OK Begin TLS negotiation now.

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

443/HTTP TCP
Observed Jun 08, 2023 at 9:59pm UTC


View All Data Go

Software

PleskLin
Apache HTTPD

Details

https://85.214.88.48
Request
GET /
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:702ba67fedd10c23a104eb0ca922bff82bdf3653
Response Body
      To use this web app optimally it is necessary to enable Javascript. [Here you
will find instructions on how to activate JavaScript in your web
browser](http://www.enable-javascript.com/en/).

Bezig met initialiseren...

Initializing...
    

993/IMAP TCP
Observed Jun 08, 2023 at 11:30pm UTC


View All Data

Labels

Email

Software

linux
Dovecot

Details

Banner
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ AUTH=PLAIN AUTH=LOGIN AUTH=DIGEST-MD5 AUTH=CRAM-MD5] Dovecot ready.

TLS

Fingerprint
JARM
29d29d15d29d29d00029d29d29d29dea0f89a2e5fb09e4d8e099befed92cfa
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

995/POP3 TCP
Observed Jun 08, 2023 at 10:38am UTC


View All Data

Labels

Email

Software

linux
Dovecot

Details

Banner
+OK Dovecot ready. <[email protected]et>

TLS

Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

4190/PIGEONHOLE TCP
Observed Jun 09, 2023 at 12:06am UTC


View All Data

Labels

Email

Software

linux

Details

Banner
"IMPLEMENTATION" "Dovecot Pigeonhole"
"SIEVE" "fileinto reject envelope encoded-character vacation subaddress comparator-i;ascii-numeric relational regex imap4

8443/HTTP TCP
Observed Jun 08, 2023 at 9:33am UTC


View All Data Go

Software

Parallels Plesk Panel
Parallels Plesk

Details

https://85.214.88.48:8443
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:39a65ff4ec9a16be659b1bc25726f6d132c71b97
HTML Title
Plesk Obsidian 18.0.52
Response Body
      
    

TLS

Fingerprint
JARM
29d29d15d29d29d00029d29d29d29d84ad708078510ef6d21b20096340671f
JA3S
ccc514751b175866924439bdbb5bba34
Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Leaf Certificate
e11e2da9d08571414131923d03b6fac4e83e2da000963ed394aa7ff6964c9338
CN=h2896446.stratoserver.net
C=US, O=Let's Encrypt, CN=R3
Issuer Chain

8880/HTTP TCP
Observed Jun 08, 2023 at 6:11pm UTC


View All Data Go

Software

Parallels Plesk Panel
Parallels Plesk

Details

http://85.214.88.48:8880
Request
GET /login_up.php
Protocol
HTTP/1.1
Status Code
200
Status Reason
OK
Body Hash
sha1:0f343c46931301223ce4bab8314b230ef19adc13
HTML Title
Plesk Obsidian 18.0.52
Response Body
      
    

Geographic Location

City
Berlin
State
Berlin
Country
Germany (DE)
Coordinates
52.52437, 13.41053
Timezone
Europe/Berlin