201.47.232.106

Basic Information

OS
Debian
Network
TELEF´┐ŻNICA BRASIL S.A (BR)
Routing
201.47.192.0/18 via AS7018 , AS12956 , AS10429
Protocols
443/HTTPS, 80/HTTP, 3389/RDP, 25/SMTP, 995/POP3S, 444/BANNER

80/HTTP


Details Go

GET /

Server
Apache httpd 2.2.9
Status Line
200 OK
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
Apache httpd 2.2.9
Status Line
200 OK
Page Title
Webmail AM Informatica :: Bem Vindo ao Webmail AM Informatica
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (0x0039)

Heartbleed

Heartbleed
Heartbeat Disabled (OK)

Cryptographic Configuration

SSLv3 Support
True This host is vulnerable to the POODLE attack.
Export DHE
False
Export RSA
False
DHE Support
True

Certificate Chain

0864b76131fb9a43bd04d1cf07fd8f4ae5ab354a988dd46467e4784803165b7c
CN=kurumin.aminformaticars.com.br
CN=kurumin.aminformaticars.com.br

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Postfix
Banner
220 kurumin.aminformaticars.com.br ESMTP Postfix (Debian/GNU)
EHLO
250-kurumin.aminformaticars.com.br
250-PIPELINING
250-SIZE 150000000
250-ETRN
250-STARTTLS
250-AUTH LOGIN PLAIN
250-AUTH=LOGIN PLAIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250 DSN
STARTTLS
220 2.0.0 Ready to start TLS

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

0864b76131fb9a43bd04d1cf07fd8f4ae5ab354a988dd46467e4784803165b7c
CN=kurumin.aminformaticars.com.br
CN=kurumin.aminformaticars.com.br

995/POP3S


Details

Banner Grab

Banner
+OK Hello there.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_AES_128_CBC_SHA (0x002F)

Certificate Chain

f0adc923f43cfd4faa5386b4ae9a7159b6a4ec14c4c42f4cc7010b4a8d1563d8
C=US, ST=NY, L=New York, O=Courier Mail Server, OU=Automatically-generated POP3 SSL key, CN=localhost, emailAddress=postmaster@example.com
C=US, ST=NY, L=New York, O=Courier Mail Server, OU=Automatically-generated POP3 SSL key, CN=localhost, emailAddress=postmaster@example.com

3389/RDP


Details

Banner Grab

Server
Remote Desktop 5.0
Major/Minor Version
5 / 0
Security Protocol
TLS (1)

Support

dynvc_graphics_pipeline
(Unknown)
neg_resp_reserved
(Unknown)
restricted_admin_mode
(Unknown)
extended_client_data_supported
(Unknown)

444/BANNER View Only


Details

Banner Info

Port
444
Protocol
TCP
Decoded Banner
HTTP/1.1 200 OK
Expires: Sat, 29 Feb 2020 09:17:49 GMT
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: max-age=180000
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Last-Modified: Thu, 27 Feb 2020 07:17:49 GMT
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=a7fe2326930d1ce75ef69a1c84c091d3; path=/; secure; HttpOnly
Set-Cookie: cookie_test=1582791469
Pragma: no-cache
Content-type: text/html
Transfer-Encoding: chunked
Date: Thu, 27 Feb 2020 07:17:49 GMT
Server: lighttpd/1.4.35

Geographic Location

City
Caxias do Sul
Province
Rio Grande do Sul
Country
Brazil (BR)
Lat/Long
-29.1721, -51.1784
Timezone
America/Sao Paulo