122.155.7.48

Basic Information

Network
CAT-CLOUD-AP CAT Telecom Public Company Limited (TH)
Routing
122.155.0.0/20 via AS6939 , AS4651 , AS9931 , AS9335
Protocols
80/HTTP, 3306/MYSQL, 993/IMAPS, 995/POP3S, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 53/DNS, 443/HTTPS, 587/SMTP, 2222/BANNER
Tags
ftp http dns database pop3s smtp imaps pop3 https mysql dhe-export rsa-export imap

80/HTTP


Details Go

GET /

Server
Apache httpd 2
Status Line
200 OK
Page Title
Hosting By DragonVPS & DragonHispeed
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
Apache httpd 2
Status Line
200 OK
Page Title
Hosting By DragonVPS & DragonHispeed
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x0039)

Heartbleed

Heartbleed
Heartbeat Disabled (OK)

Cryptographic Configuration

SSLv3 Support
True This host is vulnerable to the POODLE attack.
Export DHE
True This host is vulnerable to the Logjam attack.
Export RSA
True This host is vulnerable to the FREAK attack.
DHE Support
True

Certificate Chain

7c0a9b2ee140fbd4811140ca3e62b3ef6672aeaadc59083dd8b86f14a6c4ec0e
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

21/FTP


Details

Banner Grab

Server
ProFTPD 1.3.1
Banner:
220 ProFTPD 1.3.1 Server ready.

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Exim
Banner
220 ns1.vninewebsite.com ESMTP Exim 4.67 Sat, 16 Oct 2021 21:23:18 +0700
EHLO
250-ns1.vninewebsite.com Hello worker-11.sfj.censys-scanner.com [192.35.168.176]
250-SIZE 20971520
250-PIPELINING
250-AUTH PLAIN LOGIN
250-STARTTLS
250 HELP
STARTTLS
220 TLS go ahead

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

76d54dcd50ae7bb47b9944b938d5f4497ff7fcbb3fe56807149c4ef748493b67
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

587/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Exim
Banner
220 ns1.vninewebsite.com ESMTP Exim 4.67 Sat, 16 Oct 2021 16:29:47 +0700
EHLO
250-ns1.vninewebsite.com Hello worker-05.sfj.censys-scanner.com [192.35.168.80]
250-SIZE 20971520
250-PIPELINING
250-AUTH PLAIN LOGIN
250-STARTTLS
250 HELP
STARTTLS
220 TLS go ahead

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

76d54dcd50ae7bb47b9944b938d5f4497ff7fcbb3fe56807149c4ef748493b67
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

53/DNS


Details

Open Resolver Query

Open Resolver
True
Correct Answer
False

Authorities

(NS)
D.ROOT-SERVERS.NET
(NS)
E.ROOT-SERVERS.NET
(NS)
F.ROOT-SERVERS.NET
(NS)
G.ROOT-SERVERS.NET
(NS)
H.ROOT-SERVERS.NET
(NS)
I.ROOT-SERVERS.NET
(NS)
J.ROOT-SERVERS.NET
(NS)
K.ROOT-SERVERS.NET
(NS)
L.ROOT-SERVERS.NET
(NS)
M.ROOT-SERVERS.NET
(NS)
A.ROOT-SERVERS.NET
(NS)
B.ROOT-SERVERS.NET
(NS)
C.ROOT-SERVERS.NET

110/POP3


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
+OK Dovecot DA ready.
STARTTLS
+OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

7c0a9b2ee140fbd4811140ca3e62b3ef6672aeaadc59083dd8b86f14a6c4ec0e
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
* OK Dovecot DA ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

7c0a9b2ee140fbd4811140ca3e62b3ef6672aeaadc59083dd8b86f14a6c4ec0e
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

993/IMAPS


Details

Banner Grab

Banner
* OK Dovecot DA ready.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

7c0a9b2ee140fbd4811140ca3e62b3ef6672aeaadc59083dd8b86f14a6c4ec0e
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

995/POP3S


Details

Banner Grab

Banner
+OK Dovecot DA ready.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

7c0a9b2ee140fbd4811140ca3e62b3ef6672aeaadc59083dd8b86f14a6c4ec0e
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

3306/MySQL


Details

Banner Grab

Version
(Unknown)
Protocol Version
0
Error Code
1130
Error
ER_HOST_NOT_PRIVILEGED
Error Message
Host '192.35.168.64' is not allowed to connect to this MySQL server

2222/BANNER View Only


Details

Banner Info

Port
2222
Protocol
TCP
Decoded Banner
HTTP/1.1 404 Not found
Server: DirectAdmin Daemon v1.33.6 Registered to Hostparagon
Content-Type: text/html

<html><body><h2>Error: document not found</h2></body></html>

Geographic Location

City
Udon Thani
Province
Udon Thani
Country
Thailand (TH)
Lat/Long
17.4158, 102.7849
Timezone
Asia/Bangkok