92.255.104.90

As of: Jul 24, 2024 5:50am UTC | Latest

Basic Information

Reverse DNS
web2.maze-host.ru
Forward DNS
forum.wh4119.web2.maze-host.ru, forum.wh3113.web2.maze-host.ru, www.forum.wh2593.web2.maze-host.ru, forum.wh1933.web2.maze-host.ru, www.forum.wh1653.web2.maze-host.ru, ...
Routing
92.255.104.0/24  via TIMEWEB-AS, RU (AS9123)
Services (15)
21/FTP, 22/SSH, 25/SMTP, 53/DNS, 80/HTTP, 110/POP3, 143/IMAP, 443/HTTP, 465/SMTP, 587/SMTP, 993/IMAP, 995/POP3, 1500/HTTP, 3306/MYSQL, 3310/MYSQL
Labels
Database Email File Sharing Remote Access

FTP 21/TCP
07/24/2024 01:36 UTC

File Sharing

Details

Banner
220 FTP Server ready.
Auth TLS Response
234 AUTH TLS successful
Status Code
220
Status Meaning
Service ready for new user.

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
6c8160f68e9c7eb42fe9a984527c24d158a904f4f25f588a1a19c1889016651d
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

SSH 22/TCP
07/23/2024 11:11 UTC

Remote Access

Software

OpenBSD OpenSSH 7.4

Details

Host Key
Algorithm
ecdsa-sha2-nistp256
Fingerprint
824b939f441ed5b917ba7d0c652deac8b7bcec408cb91f787a3f107a26fb927e
Negotiated
Key Exchange
[email protected]
Symmetric Cipher
aes128-ctr [] aes128-ctr []
MAC
hmac-sha2-256 [] hmac-sha2-256 []

SMTP 25/TCP
07/24/2024 02:05 UTC

Email

Software

exim 4.96

Details

Banner
220 web2.maze-host.ru ESMTP Exim 4.96 Wed, 24 Jul 2024 05:05:48 +0300
EHLO
250-web2.maze-host.ru Hello www.censys.io [206.168.32.101]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH PLAIN LOGIN CRAM-MD5
250-CHUNKING
250-STARTTLS
250 HELP
Start TLS
220 TLS go ahead

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

DNS 53/UDP
07/22/2024 22:40 UTC


Software

PowerDNS Authoritative Server 4.1.14

Details

Server Type
AUTHORITATIVE
R Code
REFUSED

HTTP 80/TCP
07/24/2024 03:47 UTC


Software

nginx 1.20.2

Details

http://92.255.104.90/
Status
403  Forbidden
Body Hash
sha1:ea5aee3f78a1377e51b8f66a3eff0b2d6ffff857
HTML Title
403 Forbidden
Response Body
      # 403 Forbidden

* * *

nginx/1.20.2
    

POP3 110/TCP
07/23/2024 18:47 UTC

Email

Software

Dovecot

Details

Banner
+OK Dovecot ready.
Start TLS
+OK Begin TLS negotiation now.

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

IMAP 143/TCP
07/24/2024 02:34 UTC

Email

Software

Dovecot

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot ready.
Start TLS
a001 OK Begin TLS negotiation now.

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

HTTP 443/TCP
07/23/2024 22:31 UTC


Software

nginx 1.20.2

Details

https://92.255.104.90/
Status
404  Not Found
Body Hash
sha1:7eac95d26ba1e92a3b4d6fd47ee057f00274ac13
HTML Title
404 Not Found
Response Body
      # 404 Not Found

* * *

nginx/1.20.2
    

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
1bfc47120fa0db195d48c7307af982024cf275121f02ff473b832bc3fd2f9aa2
Subject
CN=localhost
Issuer
CN=localhost
Fingerprint
JARM
29d29d00029d29d21c29d29d29d29d6a7bd8f51d54bfc07e1cd34e5ca50bb3
JA3S
ccc514751b175866924439bdbb5bba34
JA4S
t120300_c02f_bec8bdbaef8a

SMTP 465/TCP
07/24/2024 01:54 UTC

Email

Software

exim 4.96

Details

Banner
220 web2.maze-host.ru ESMTP Exim 4.96 Wed, 24 Jul 2024 04:54:21 +0300
EHLO
250-web2.maze-host.ru Hello www.censys.io [167.94.138.123]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH PLAIN LOGIN CRAM-MD5
250-CHUNKING
250 HELP

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JARM
05d02d20d21d20d05c05d02d05d20da01e52cd5e3f9306da4ac348a0fe7af8
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

SMTP 587/TCP
07/24/2024 05:50 UTC

Email

Software

exim 4.96

Details

Banner
220 web2.maze-host.ru ESMTP Exim 4.96 Wed, 24 Jul 2024 08:50:45 +0300
EHLO
250-web2.maze-host.ru Hello www.censys.io [206.168.32.103]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-PIPECONNECT
250-AUTH PLAIN LOGIN CRAM-MD5
250-CHUNKING
250-STARTTLS
250 HELP
Start TLS
220 TLS go ahead

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

IMAP 993/TCP
07/24/2024 01:47 UTC

Email

Software

Dovecot

Details

Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE AUTH=PLAIN AUTH=LOGIN AUTH=CRAM-MD5] Dovecot ready.

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JARM
05d02d20d21d20d05c05d02d05d20da23a7a927f270a23608b3c7a72999cab
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

POP3 995/TCP
07/24/2024 04:01 UTC

Email

Software

Dovecot

Details

Banner
+OK Dovecot ready.

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
58c411898f761d6c5ec718020e7ee89b42c7acac628dab5788217f84f4905f1e
Subject
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Issuer
C=XX, ST=XX, L=XX, O=XX, OU=XX, CN=960415-cq95871.tmweb.ru, [email protected]
Names
960415-cq95871.tmweb.ru
Fingerprint
JARM
05d02d20d21d20d05c05d02d05d20da23a7a927f270a23608b3c7a72999cab
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

HTTP 1500/TCP
07/23/2024 17:02 UTC


Details

https://92.255.104.90:1500/
Status
200  OK
Body Hash
sha1:fc8d33d7acbdc0bc316630e8a0ca882ad80d21cf
HTML Title
Authorization
Response Body
      Javascript required for login

Your browser is out of date, so the interface may work incorrectly. Please
update or change the browser
    

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
c681c16f05025f1ad4bf63ed234a66f520099dcb1f2ec5850992f26a557e2d3a
Subject
CN=web2.maze-host.ru
Issuer
C=US, O=Let's Encrypt, CN=R10
Names
web2.maze-host.ru
Fingerprint
JARM
21d02d00021d21d21c21d02d21d21ddec047dae5c8df4f14546ec68b9cee76
JA3S
303951d4c50efb2e991652225a6f02b1
JA4S
t120200_c02f_344b4dce5a52

MYSQL 3306/TCP
07/24/2024 02:27 UTC

Database

Software

MariaDB 5.5.68

Details

Protocol Version
10
Character Set
33

MYSQL 3310/TCP
07/23/2024 21:23 UTC

Database

Software

Oracle MySQL 5.7.41

Details

Protocol Version
10
Character Set
8

TLS

Handshake
Version Selected
TLSv1_2
Cipher Selected
TLS_RSA_WITH_AES_128_GCM_SHA256
Certificate
Fingerprint
8d942a10cfe598fb395966096998f2f68a837468948bd36f4ae19f4714a56051
Subject
CN=MySQL_Server_5.7.41_Auto_Generated_Server_Certificate
Issuer
CN=MySQL_Server_5.7.41_Auto_Generated_CA_Certificate
Fingerprint
JA3S
ccd5709d4a9027ec272e98b9924c36f7
JA4S
t120100_009c_bc98f8e001b5

Geographic Location

City
Saint Petersburg
Province
St.-Petersburg
Country
Russia (RU)
Coordinates
59.93863, 30.31413
Timezone
Europe/Moscow