Scan report for "www.icanhazchat.com"

Membership level: Free member
Summary

Found

8

Duration

1min 2sec

Date

2025-03-19

IP

209.95.56.68

Report
Nikto SSL scan (max 60 sec) (nikto -host www.icanhazchat.com -ssl -maxtime 60)
- Nikto 
---------------------------------------------------------------------------
+ Target IP:          209.95.56.68
+ Target Hostname:    www.icanhazchat.com
+ Target Port:        443
---------------------------------------------------------------------------
+ SSL Info:        Subject:  /CN=icanhazchat.com
                   Altnames: icanhazchat.com, www.icanhazchat.com
                   Ciphers:  ECDHE-ECDSA-AES128-GCM-SHA256
                   Issuer:   /C=GB/ST=Greater Manchester/L=Salford/O=Sectigo Limited/CN=Sectigo ECC Domain Validation Secure Server CA
+ Start Time:         2025-03-19 11:57:46 (GMT-7)
---------------------------------------------------------------------------
+ Server: No banner retrieved
+ /: The site uses TLS and the Strict-Transport-Security HTTP header is not defined. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Strict-Transport-Security
+ /: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/
+ /: Cookie ASP.NET_SessionId created without the secure flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ Server may be vulnerable to https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/MS10-070 (based on numeric calculation) and thus may allow a cryptographic padding oracle. This vulnerability must be manually validated. See: http://blog.gdssecurity.com/labs/2010/9/14/automated-padding-oracle-attacks-with-padbuster.html
+ : Server banner changed from 'Microsoft-HTTPAPI/2.0' to 'Microsoft-IIS/8.5'.
+ No CGI Directories found (use '-C all' to force check all possible dirs)
+ /robots.txt: Entry '/CamHelp/' is returned a non-forbidden or redirect HTTP code (200). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ /robots.txt: Entry '/Help/' is returned a non-forbidden or redirect HTTP code (200). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ /robots.txt: contains 12 entries which should be manually viewed. See: https://developer.mozilla.org/en-US/docs/Glossary/Robots.txt
+ Scan terminated: 0 error(s) and 8 item(s) reported on remote host
+ End Time:           2025-03-19 11:58:48 (GMT-7) (62 seconds)
---------------------------------------------------------------------------
+ 1 host(s) tested
Detailed report
Target
www.icanhazchat.com
Target IP
209.95.56.68
Scan method
Nikto SSL scan (max 60 sec)
Run command
nikto -host www.icanhazchat.com -ssl -maxtime 60
Duration
Quick report
Scan date
19 Mar 2025 14:58
Copy scan report
Download report
Remove scan result
$
Total scans
Check ports
API - Scan ID