122.155.171.183

Basic Information

OS
Windows
Network
CAT-CLOUD-AP CAT Telecom Public Company Limited (TH)
Routing
122.155.160.0/19 via AS6939 , AS4651 , AS9931 , AS9335
Protocols
80/HTTP, 445/SMB, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 53/DNS, 587/SMTP, 3389/RDP, 9001/BANNER, 9004/BANNER, 9005/BANNER, 9006/BANNER, 9009/BANNER
Tags
pop3 ftp http rdp dns remote_display smtp imap smb

80/HTTP


Details Go

GET /

Server
Microsoft IIS 7.5
Status Line
200 OK
Page Title
WorldClient
GET /
[view page]

21/FTP


Details

Banner Grab

Server
FileZilla 0.9.41
Banner:
220 FileZilla Server version 0.9.41 beta Welcome to Yes-Hosting FTP

445/SMB


Details

SMB Server

Version
SMB 2.1
SMBv1
False

Capability Flags

Distributed File System
True
Leasing
True
Multi-credit Operations
True
Multi-channel Sessions
false
Persistent Handles
false
Directory Leasing
false
Encryption
false

Negotiation Log

Security Mode
1
Authentication Types
1.3.6.1.4.1.311.2.2.30
1.3.6.1.4.1.311.2.2.10

Session

Target Name
WWM171-183

25/SMTP


Details

Banner Grab and StartTLS Initiation

Banner
220 wwm171-183.yes-hosting.com ESMTP Sun, 10 Oct 2021 00:41:57 +0700
EHLO
250-wwm171-183.yes-hosting.com Hello worker-11.sfj.censys-scanner.com [192.35.168.176], pleased to meet you
250-ETRN
250-AUTH LOGIN CRAM-MD5 PLAIN
250-8BITMIME
250-ENHANCEDSTATUSCODES
250-STARTTLS
250 SIZE 20480000
STARTTLS
220 2.7.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

e70431ab81e536b65c1b63bbcb0a9005a87a5bb3ea41d27979534dff9da3daa1
C=US, O=., CN=wwm171-183.yes-hosting.com
C=US, O=., CN=wwm171-183.yes-hosting.com

587/SMTP


Details

Banner Grab and StartTLS Initiation

Banner
220 wwm171-183.yes-hosting.com ESMTP MSA Sat, 16 Oct 2021 15:52:47 +0700
EHLO
250-wwm171-183.yes-hosting.com Hello worker-05.sfj.censys-scanner.com [192.35.168.80], pleased to meet you
250-AUTH LOGIN CRAM-MD5 PLAIN
250-8BITMIME
250-ENHANCEDSTATUSCODES
250-STARTTLS
250 SIZE 20480000
STARTTLS
220 2.7.0 Ready to start TLS

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

e70431ab81e536b65c1b63bbcb0a9005a87a5bb3ea41d27979534dff9da3daa1
C=US, O=., CN=wwm171-183.yes-hosting.com
C=US, O=., CN=wwm171-183.yes-hosting.com

53/DNS


Details

Open Resolver Query

Open Resolver
False

110/POP3


Details

Banner Grab and StartTLS Initiation

Banner
+OK wwm171-183.yes-hosting.com POP3 ready <[email protected]>
STARTTLS
+OK Begin TLS negotiation

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

e70431ab81e536b65c1b63bbcb0a9005a87a5bb3ea41d27979534dff9da3daa1
C=US, O=., CN=wwm171-183.yes-hosting.com
C=US, O=., CN=wwm171-183.yes-hosting.com

143/IMAP


Details

Banner Grab and StartTLS Initiation

Banner
* OK wwm171-183.yes-hosting.com IMAP4rev1 ready
STARTTLS
a001 OK Begin TLS negotiation

TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)

Certificate Chain

e70431ab81e536b65c1b63bbcb0a9005a87a5bb3ea41d27979534dff9da3daa1
C=US, O=., CN=wwm171-183.yes-hosting.com
C=US, O=., CN=wwm171-183.yes-hosting.com

3389/RDP


Details

Banner Grab

Server
Remote Desktop 5.0
Major/Minor Version
5 / 0
Security Protocol
TLS (1)

Support

dynvc_graphics_pipeline
(Unknown)
neg_resp_reserved
(Unknown)
restricted_admin_mode
True
extended_client_data_supported
True

9001/BANNER View Only


Details

Banner Info

Port
9001
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Found
Cache-Control: private
Content-Type: text/html; charset=utf-8
Location: /Default.aspx?pid=Login&ReturnUrl=%2f
Server: Microsoft-IIS/7.5
X-AspNet-Version: 4.0.30319
X-Powered-By: ASP.NET
Date: Mon, 27 Sep 2021 16:35:38 GMT
Content-Length: 158

<html><head><title>Object moved</title></head><body>
<h2>Object moved to <a href="/Default.aspx?pid=Login&amp;ReturnUrl=%2f">here</a>.</h2>
</body></html>

9004/BANNER View Only


Details

Banner Info

Port
9004
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.5
X-AspNet-Version: 2.0.50727
X-Powered-By: ASP.NET
Date: Fri, 01 Oct 2021 10:18:01 GMT
Content-Length: 3329



<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">

<html xmlns="http://www.w3.org/1999/xhtml" >
<head><title>
	Advanced Statistics
</title>
    <style type="text/css">
	    <!--
	    body { margin: 0; }
	    .aws_border { border: 2px solid #CCCCDD; margin-top: 100px; }
	    .aws_title  { font: 13px verdana, arial, helvetica, sans-serif; font-weight: bold; background-color: #CCCCDD; text-align: center; padding: 3px; color: #000000; }
	    .aws_data { background-color: #FFFFFF; }
	    .aws_button {
		    font-family: arial,verdana,helvetica, sans-serif;
		    font-size: 12px;
		    border: 1px solid #ccd7e0;
		    background-image : url(icon/other/button.gif);
	    }
	    .aws_pad { padding: 3px; }
	 

9005/BANNER View Only


Details

Banner Info

Port
9005
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Cache-Control: private, max-age=10800
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified: Sun, 21 Oct 2012 11:37:47 GMT
Server: Microsoft-IIS/7.5
X-Powered-By: PHP/7.1.14
Set-Cookie: pma_lang=en; expires=Wed, 27-Oct-2021 16:35:38 GMT; Max-Age=2592000; path=/; HttpOnly
Set-Cookie: pma_mcrypt_iv=o5SC6i9VHLc%3D; expires=Wed, 27-Oct-2021 16:35:38 GMT; Max-Age=2592000; path=/; HttpOnly
Set-Cookie: phpMyAdmin=e5c7um3orhsu8h56hhvg99f431; path=/; HttpOnly
X-Powered-By: ASP.NET
Date: Mon, 27 Sep 2021 16:35:38 GMT
Content-Length: 6849

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
    "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr">
<head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
    <link rel="icon" href="./favicon.ico" type="image/x-icon" />
    <link rel="shortcut icon" href="./favicon.ico" type="image/x-icon" 

9006/BANNER View Only


Details

Banner Info

Port
9006
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/7.5
X-AspNet-Version: 2.0.50727
Set-Cookie: ASP.NET_SessionId=s2bika55sxy4qp3vpifvx4n2; path=/; HttpOnly
X-Powered-By: ASP.NET
Date: Mon, 27 Sep 2021 16:35:38 GMT
Content-Length: 11130


<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" >
<html>
<head>
    <title>Yes! Hosting MS SQL Web-based Management - Login</title>
    <link rel="shortcut icon" href="favicon.ico">
    <link rel="stylesheet" type="text/css" href="admin.css">
</head>

<script language="javascript" src="Global.js"></script>

<body bottommargin="0" leftmargin="0" topmargin="0" rightmargin="0">
    <form name="WebForm1" method="post" action="default.aspx" id="WebForm1">
<input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="/wEPDwUKLTcwMTcwNjAwMw9kFgICAQ9kFgYCAQ9kFgQCAQ8PFgIeC05hdmlnYXRlVXJsBRIuLi9IZWxwL2xvZ2luLmFzcHhkZAIDDw8WAh8ABQ4uLi9Mb2dvdXQuYXNweGRkAgUPDxYCHgdWaXNpYmxlZ2RkAhUPEGRkFgECAWRkJ1+nB2m/q

9009/BANNER View Only


Details

Banner Info

Port
9009
Protocol
TCP
Decoded Banner
HTTP/1.0 400 Bad Request
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1
Server: WDaemon/4.0
Date: Mon, 27 Sep 2021 16:35:36 GMT
Content-Type: text/html
Content-Length: 97
Connection: close

<HTML>
<HEAD><TITLE>400 Bad Request</TITLE></HEAD>
<BODY><H1>Bad Request</H1></BODY>
</HTML>

Geographic Location

Country
Thailand (TH)
Lat/Long
13.7442, 100.4608
Timezone
Asia/Bangkok