Ports
Duration
Date
IP
Nmap scan report for phhmortgage.com (3.223.171.135) Host is up (0.057s latency). Other addresses for phhmortgage.com (not scanned): 44.208.10.189 rDNS record for 3.223.171.135: ec2-3-223-171-135.compute-1.amazonaws.com Not shown: 998 filtered tcp ports (no-response) PORT STATE SERVICE VERSION 80/tcp open http awselb/2.0 |_http-title: Did not follow redirect to https://www.phhmortgage.com:443/ |_http-server-header: awselb/2.0 | fingerprint-strings: | FourOhFourRequest: | HTTP/1.1 403 Forbidden | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:52 GMT | Content-Type: text/html | Content-Length: 118 | Connection: close | <html> | <head><title>403 Forbidden</title></head> | <body> | <center><h1>403 Forbidden</h1></center> | </body> | </html> | GetRequest, HTTPOptions: | HTTP/1.1 301 Moved Permanently | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:52 GMT | Content-Type: text/html | Content-Length: 134 | Connection: close | Location: https://ext-alb-fw-1-724419778.us-east-1.elb.amazonaws.com:443/ | <html> | <head><title>301 Moved Permanently</title></head> | <body> | <center><h1>301 Moved Permanently</h1></center> | </body> | </html> | RPCCheck: | HTTP/1.1 400 Bad Request | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:57 GMT | Content-Type: text/html | Content-Length: 122 | Connection: close | <html> | <head><title>400 Bad Request</title></head> | <body> | <center><h1>400 Bad Request</h1></center> | </body> | </html> | RTSPRequest: | <html> | <head><title>400 Bad Request</title></head> | <body> | <center><h1>400 Bad Request</h1></center> | </body> | </html> | X11Probe: | HTTP/1.1 400 Bad Request | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:52 GMT | Content-Type: text/html | Content-Length: 122 | Connection: close | <html> | <head><title>400 Bad Request</title></head> | <body> | <center><h1>400 Bad Request</h1></center> | </body> |_ </html> 443/tcp open ssl/https awselb/2.0 |_http-title: Did not follow redirect to https://www.phhmortgage.com:443/ | fingerprint-strings: | DNSVersionBindReqTCP, RPCCheck: | HTTP/1.1 400 Bad Request | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:09:04 GMT | Content-Type: text/html | Content-Length: 122 | Connection: close | <html> | <head><title>400 Bad Request</title></head> | <body> | <center><h1>400 Bad Request</h1></center> | </body> | </html> | FourOhFourRequest: | HTTP/1.1 403 Forbidden | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:58 GMT | Content-Type: text/html | Content-Length: 118 | Connection: close | <html> | <head><title>403 Forbidden</title></head> | <body> | <center><h1>403 Forbidden</h1></center> | </body> | </html> | GetRequest, HTTPOptions: | HTTP/1.1 404 Not Found | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:58 GMT | Content-Type: text/plain; charset=utf-8 | Content-Length: 0 | Connection: close | RTSPRequest: | <html> | <head><title>400 Bad Request</title></head> | <body> | <center><h1>400 Bad Request</h1></center> | </body> | </html> | tor-versions: | HTTP/1.1 400 Bad Request | Server: awselb/2.0 | Date: Mon, 07 Jul 2025 01:08:58 GMT | Content-Type: text/html | Content-Length: 122 | Connection: close | <html> | <head><title>400 Bad Request</title></head> | <body> | <center><h1>400 Bad Request</h1></center> | </body> |_ </html> |_ssl-date: TLS randomness does not represent time |_http-server-header: awselb/2.0 | ssl-cert: Subject: commonName=www.phhmortgage.com/organizationName=PHH MORTGAGE CORPORATION/stateOrProvinceName=New Jersey/countryName=US | Subject Alternative Name: DNS:www.phhmortgage.com, DNS:phhmortgage.com, DNS:business.phhmortgage.com | Not valid before: 2025-04-29T00:00:00 |_Not valid after: 2026-04-28T23:59:59 2 services unrecognized despite returning data. If you know the service/version, please submit the following fingerprints at https://nmap.org/cgi-bin/submit.cgi?new-service : ==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)============== SF-Port80-TCP:V=7.92%I=7%D=7/6%Time=686B1E24%P=x86_64-redhat-linux-gnu%r(G SF:etRequest,16D,"HTTP/1\.1\x20301\x20Moved\x20Permanently\r\nServer:\x20a SF:wselb/2\.0\r\nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:08:52\x20GMT\r\n SF:Content-Type:\x20text/html\r\nContent-Length:\x20134\r\nConnection:\x20 SF:close\r\nLocation:\x20https://ext-alb-fw-1-724419778\.us-east-1\.elb\.a SF:mazonaws\.com:443/\r\n\r\n<html>\r\n<head><title>301\x20Moved\x20Perman SF:ently</title></head>\r\n<body>\r\n<center><h1>301\x20Moved\x20Permanent SF:ly</h1></center>\r\n</body>\r\n</html>\r\n")%r(HTTPOptions,16D,"HTTP/1\ SF:.1\x20301\x20Moved\x20Permanently\r\nServer:\x20awselb/2\.0\r\nDate:\x2 SF:0Mon,\x2007\x20Jul\x202025\x2001:08:52\x20GMT\r\nContent-Type:\x20text/ SF:html\r\nContent-Length:\x20134\r\nConnection:\x20close\r\nLocation:\x20 SF:https://ext-alb-fw-1-724419778\.us-east-1\.elb\.amazonaws\.com:443/\r\n SF:\r\n<html>\r\n<head><title>301\x20Moved\x20Permanently</title></head>\r SF:\n<body>\r\n<center><h1>301\x20Moved\x20Permanently</h1></center>\r\n</ SF:body>\r\n</html>\r\n")%r(RTSPRequest,7A,"<html>\r\n<head><title>400\x20 SF:Bad\x20Request</title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Re SF:quest</h1></center>\r\n</body>\r\n</html>\r\n")%r(X11Probe,110,"HTTP/1\ SF:.1\x20400\x20Bad\x20Request\r\nServer:\x20awselb/2\.0\r\nDate:\x20Mon,\ SF:x2007\x20Jul\x202025\x2001:08:52\x20GMT\r\nContent-Type:\x20text/html\r SF:\nContent-Length:\x20122\r\nConnection:\x20close\r\n\r\n<html>\r\n<head SF:><title>400\x20Bad\x20Request</title></head>\r\n<body>\r\n<center><h1>4 SF:00\x20Bad\x20Request</h1></center>\r\n</body>\r\n</html>\r\n")%r(FourOh SF:FourRequest,10A,"HTTP/1\.1\x20403\x20Forbidden\r\nServer:\x20awselb/2\. SF:0\r\nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:08:52\x20GMT\r\nContent-T SF:ype:\x20text/html\r\nContent-Length:\x20118\r\nConnection:\x20close\r\n SF:\r\n<html>\r\n<head><title>403\x20Forbidden</title></head>\r\n<body>\r\ SF:n<center><h1>403\x20Forbidden</h1></center>\r\n</body>\r\n</html>\r\n") SF:%r(RPCCheck,110,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nServer:\x20awsel SF:b/2\.0\r\nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:08:57\x20GMT\r\nCont SF:ent-Type:\x20text/html\r\nContent-Length:\x20122\r\nConnection:\x20clos SF:e\r\n\r\n<html>\r\n<head><title>400\x20Bad\x20Request</title></head>\r\ SF:n<body>\r\n<center><h1>400\x20Bad\x20Request</h1></center>\r\n</body>\r SF:\n</html>\r\n"); ==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)============== SF-Port443-TCP:V=7.92%T=SSL%I=7%D=7/6%Time=686B1E2A%P=x86_64-redhat-linux- SF:gnu%r(GetRequest,A2,"HTTP/1\.1\x20404\x20Not\x20Found\r\nServer:\x20aws SF:elb/2\.0\r\nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:08:58\x20GMT\r\nCo SF:ntent-Type:\x20text/plain;\x20charset=utf-8\r\nContent-Length:\x200\r\n SF:Connection:\x20close\r\n\r\n")%r(HTTPOptions,A2,"HTTP/1\.1\x20404\x20No SF:t\x20Found\r\nServer:\x20awselb/2\.0\r\nDate:\x20Mon,\x2007\x20Jul\x202 SF:025\x2001:08:58\x20GMT\r\nContent-Type:\x20text/plain;\x20charset=utf-8 SF:\r\nContent-Length:\x200\r\nConnection:\x20close\r\n\r\n")%r(FourOhFour SF:Request,10A,"HTTP/1\.1\x20403\x20Forbidden\r\nServer:\x20awselb/2\.0\r\ SF:nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:08:58\x20GMT\r\nContent-Type: SF:\x20text/html\r\nContent-Length:\x20118\r\nConnection:\x20close\r\n\r\n SF:<html>\r\n<head><title>403\x20Forbidden</title></head>\r\n<body>\r\n<ce SF:nter><h1>403\x20Forbidden</h1></center>\r\n</body>\r\n</html>\r\n")%r(t SF:or-versions,110,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nServer:\x20awsel SF:b/2\.0\r\nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:08:58\x20GMT\r\nCont SF:ent-Type:\x20text/html\r\nContent-Length:\x20122\r\nConnection:\x20clos SF:e\r\n\r\n<html>\r\n<head><title>400\x20Bad\x20Request</title></head>\r\ SF:n<body>\r\n<center><h1>400\x20Bad\x20Request</h1></center>\r\n</body>\r SF:\n</html>\r\n")%r(RTSPRequest,7A,"<html>\r\n<head><title>400\x20Bad\x20 SF:Request</title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Request</ SF:h1></center>\r\n</body>\r\n</html>\r\n")%r(RPCCheck,110,"HTTP/1\.1\x204 SF:00\x20Bad\x20Request\r\nServer:\x20awselb/2\.0\r\nDate:\x20Mon,\x2007\x SF:20Jul\x202025\x2001:09:04\x20GMT\r\nContent-Type:\x20text/html\r\nConte SF:nt-Length:\x20122\r\nConnection:\x20close\r\n\r\n<html>\r\n<head><title SF:>400\x20Bad\x20Request</title></head>\r\n<body>\r\n<center><h1>400\x20B SF:ad\x20Request</h1></center>\r\n</body>\r\n</html>\r\n")%r(DNSVersionBin SF:dReqTCP,110,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nServer:\x20awselb/2\ SF:.0\r\nDate:\x20Mon,\x2007\x20Jul\x202025\x2001:09:04\x20GMT\r\nContent- SF:Type:\x20text/html\r\nContent-Length:\x20122\r\nConnection:\x20close\r\ SF:n\r\n<html>\r\n<head><title>400\x20Bad\x20Request</title></head>\r\n<bo SF:dy>\r\n<center><h1>400\x20Bad\x20Request</h1></center>\r\n</body>\r\n</ SF:html>\r\n"); Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port Device type: general purpose|specialized Running (JUST GUESSING): Linux 2.6.X|3.X|4.X (90%), Crestron 2-Series (86%) OS CPE: cpe:/o:linux:linux_kernel:2.6.32 cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:4 cpe:/o:crestron:2_series Aggressive OS guesses: Linux 2.6.32 (90%), Linux 3.2 - 4.9 (90%), Linux 2.6.32 - 3.10 (90%), Linux 2.6.32 - 3.13 (90%), Linux 3.10 - 3.13 (88%), Crestron XPanel control system (86%), Linux 2.6.32 - 2.6.35 (85%), Linux 2.6.32 - 3.5 (85%) No exact OS matches for host (test conditions non-ideal). Network Distance: 14 hops TRACEROUTE (using port 80/tcp) HOP RTT ADDRESS 1 0.22 ms 208.76.251.177.rdns.ColocationAmerica.com (208.76.251.177) 2 6.93 ms gw.mcom-colocationamerica.com (208.64.231.81) 3 1.53 ms r2b4.n1.p1401.lax.multacom.net (64.69.46.11) 4 ... 5 10.96 ms be2931.ccr31.phx01.atlas.cogentco.com (154.54.44.85) 6 19.79 ms be5471.ccr21.elp02.atlas.cogentco.com (154.54.166.57) 7 31.02 ms be3821.ccr31.dfw01.atlas.cogentco.com (154.54.165.25) 8 31.63 ms be2763.ccr41.dfw03.atlas.cogentco.com (154.54.28.74) 9 ... 13 14 56.54 ms ec2-3-223-171-135.compute-1.amazonaws.com (3.223.171.135) OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ . Nmap done: 1 IP address (1 host up) scanned in 43.15 seconds
Features
5 scans/day
Daily API Calls - 20 request
Save log
Public scan
OSINT scan
Unlisted scan
Private scan
No Ads
Remove after scan
Remove scan result
Additional methods for scan
This option is suitable for beginners who want to check if their host has any open ports accessible from the outside.
Lifetime
Features
10 000 scans/day
Daily API Calls - 100 000 request
Save log
Public scan
OSINT scan
Unlisted scan
Private scan
No Ads
Remove after scan
Remove scan result
Additional methods for scan
This option is best for professionals who need to test their host's open ports from an external source.
Billed Annually @ $45.00 - 50% discount