61.19.250.35

Basic Information

Network
CAT-CLOUD-AP CAT Telecom Public Company Limited (TH)
Routing
61.19.240.0/20 via AS11164 , AS6939 , AS4651 , AS9931 , AS9335
Protocols
80/HTTP, 25/SMTP, 110/POP3, 21/FTP, 143/IMAP, 53/DNS, 443/HTTPS, 587/SMTP, 2222/BANNER, 8443/BANNER
Tags
pop3 ftp http dns https smtp imap

80/HTTP


Details Go

GET /

Server
nginx 1.12.0
Status Line
200 OK
GET /
[view page]

443/HTTPS


Details Go

GET /

Server
nginx 1.12.0
Status Line
200 OK
GET /
[view page]

Chrome TLS Handshake

Version
TLSv1.2
Cipher Suite
TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (0xC02F)

Heartbleed

Heartbleed
Heartbeat Enabled. Immune to Heartbleed.

Cryptographic Configuration

Export DHE
False
Export RSA
False
DHE Support
False

Certificate Chain

7ba6340a48de62de0c79195eb8e0eeb29fa6bc9ea38703cbcf0a3008ea86661b
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

21/FTP


Details

Banner Grab

Server
ProFTPD 1.3.4 b
Banner:
220 ProFTPD 1.3.4b Server ready.

25/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Exim
Banner
220 cat25035.thaihostserver.com ESMTP Exim 4.80 Sun, 24 Oct 2021 00:52:58 +0700
EHLO
250-cat25035.thaihostserver.com Hello worker-07.sfj.censys-scanner.com [192.35.168.112]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH PLAIN LOGIN
250-STARTTLS
250 HELP
STARTTLS
220 TLS go ahead

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

05e0dc6f3c0dfb04c0fab9f0072efa6be6897cfad2a7464e6688d7940bde5339
C=GB, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=GB, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

587/SMTP


Details

Banner Grab and StartTLS Initiation

Server
Exim
Banner
220 cat25035.thaihostserver.com ESMTP Exim 4.80 Sat, 23 Oct 2021 16:08:12 +0700
EHLO
250-cat25035.thaihostserver.com Hello worker-08.sfj.censys-scanner.com [192.35.168.128]
250-SIZE 52428800
250-8BITMIME
250-PIPELINING
250-AUTH PLAIN LOGIN
250-STARTTLS
250 HELP
STARTTLS
220 TLS go ahead

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

05e0dc6f3c0dfb04c0fab9f0072efa6be6897cfad2a7464e6688d7940bde5339
C=GB, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=GB, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

53/DNS


Details

Open Resolver Query

Open Resolver
False

110/POP3


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
+OK Dovecot DA ready.
STARTTLS
+OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

7ba6340a48de62de0c79195eb8e0eeb29fa6bc9ea38703cbcf0a3008ea86661b
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

143/IMAP


Details

Banner Grab and StartTLS Initiation

Server
Dovecot
Banner
* OK [CAPABILITY IMAP4rev1 LITERAL+ SASL-IR LOGIN-REFERRALS ID ENABLE IDLE STARTTLS AUTH=PLAIN] Dovecot DA ready.
STARTTLS
a001 OK Begin TLS negotiation now.

TLS Handshake

Version
TLSv1.0
Cipher Suite
TLS_RSA_WITH_RC4_128_SHA (0x0005)

Certificate Chain

7ba6340a48de62de0c79195eb8e0eeb29fa6bc9ea38703cbcf0a3008ea86661b
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]
C=US, ST=Someprovince, L=Sometown, O=none, OU=none, CN=localhost, [email protected]

2222/BANNER View Only


Details

Banner Info

Port
2222
Protocol
TCP
Decoded Banner
HTTP/1.1 302 Found
Server: DirectAdmin Daemon v1.60.3
Location: https://61.19.250.35:2222
x-use-https: yes
Content-type: text/html

use https

8443/BANNER View Only


Details

Banner Info

Port
8443
Protocol
TCP
Decoded Banner
SSH-2.0-OpenSSH_4.3
Protocol mismatch.

Geographic Location

Country
Thailand (TH)
Lat/Long
13.7442, 100.4608
Timezone
Asia/Bangkok