186.202.136.144

Basic Information

OS
Windows
Network
Locaweb Servicos de Internet SA (BR)
Routing
186.202.136.0/24 via AS11164 , AS32787 , AS27715
Protocols
443/HTTPS, 1521/ORACLE, 3389/RDP, 80/HTTP, 445/SMB, 88/BANNER
Tags
http rdp https remote_display oracle database smb

80/HTTP


Details Go

GET /

Server
Microsoft IIS 8.5
Status Line
200 OK
GET /
[view page]

443/HTTPS


Details Go

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (0xC014)
Browser Trusted
True

Heartbleed

Heartbleed
Heartbeat Disabled (OK)

Cryptographic Configuration

SSLv3 Support
True This host is vulnerable to the POODLE attack.
Export DHE
False
Export RSA
False
DHE Support
True

Certificate Chain

ae84932f90c10587573537847b5aafa18884c2f9db9e2204ef824bd7f566e802
CN=xxxdnn4150.locaweb.com.br
C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., OU=http://certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
973a41276ffd01e027a2aad49e34c37846d3e976ff6a620b6712e33832041aa6
C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., OU=http://certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., CN=Go Daddy Root Certificate Authority - G2
3a2fbe92891e57fe05d57087f48e730f17e5a5f53ef403d618e5b74d7a7e6ecb
C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., CN=Go Daddy Root Certificate Authority - G2
C=US, O=The Go Daddy Group, Inc., OU=Go Daddy Class 2 Certification Authority

445/SMB


Details

SMB Server

Version
SMB 2.1
SMBv1
False

Capability Flags

Distributed File System
True
Leasing
True
Multi-credit Operations
True
Multi-channel Sessions
false
Persistent Handles
false
Directory Leasing
false
Encryption
false

Negotiation Log

Security Mode
1
Authentication Types
1.3.6.1.4.1.311.2.2.30
1.3.6.1.4.1.311.2.2.10

Session

Target Name
XXXDNN4150

1521/Oracle


Details

Banner Grab

Version
11.2.0.1.0
(connection refused)

3389/RDP


Details

Banner Grab

Server
Remote Desktop
Major/Minor Version
(Unknown) / (Unknown)
Security Protocol
RDSTLS (4)

Support

dynvc_graphics_pipeline
True
neg_resp_reserved
True
restricted_admin_mode
True
extended_client_data_supported
True

88/BANNER View Only


Details

Banner Info

Port
88
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Microsoft-IIS/8.5
X-AspNetMvc-Version: 5.2
X-Frame-Options: SAMEORIGIN
X-AspNet-Version: 4.0.30319
Set-Cookie: __RequestVerificationToken=C8NN0lKVqzxm2vXqLj-SuVUy_xCLICy-55uK8hHeo2A432Ubnv4yiy7Uwt3z8RwanBVLg2yvIFYWugpVqGJI2o3G1acKwtBZBx35BxtRZFE1; path=/; HttpOnly
X-Powered-By: ASP.NET
Date: Sun, 17 Oct 2021 16:05:58 GMT
Content-Length: 4947

<!DOCTYPE html>
<html lang="pt">
<head>
    <meta charset="utf-8">
    <title>Osmag Rio</title>
    <meta name="viewport" content="width=device-width, initial-scale=1.0">
    <meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1">

    <link rel="stylesheet" type="text/css" href="/Content/css/geral.css">
    <script src="/bundles/modernizr?v=w9fZKPSiHtN4N4FRqV7jn-3kGoQY5hHpkwFv5TfMrus1"></script>

    <script src="/bundles/jquery?v=2u0aRenDpYxArEyILB59ETSCA2cfQkSMlxb6jbMBqf81"></script>

    <script src="/bundles/blockUI?v=Ot_Lid1dx_SRYEoaRIHU71fnAi36QvHr

Geographic Location

Country
Brazil (BR)
Lat/Long
-22.8305, -43.2192
Timezone
America/Sao Paulo