Scan OS information and Traceroute (nmap -A api.soc.us-east-1.trellix.com)
Nmap scan report for api.soc.us-east-1.trellix.com (3.208.84.2)
Host is up (0.068s latency).
Other addresses for api.soc.us-east-1.trellix.com (not scanned): 3.212.22.18 174.129.109.196 34.197.38.108 54.84.127.74 54.156.165.115
rDNS record for 3.208.84.2: ec2-3-208-84-2.compute-1.amazonaws.com
Not shown: 999 filtered ports
PORT STATE SERVICE VERSION
443/tcp open ssl/https kong/3.1.1
| fingerprint-strings:
| FourOhFourRequest:
| HTTP/1.1 401 Unauthorized
| Date: Tue, 21 Nov 2023 02:52:34 GMT
| Content-Type: application/json; charset=utf-8
| Content-Length: 119
| Connection: close
| X-Kong-Response-Latency: 0
| Server: kong/3.1.1
| {"error":{"code":401,"requestId":"null","message":"Cloud Link token not found in Authorization header or querystring"}}
| GetRequest:
| HTTP/1.1 401 Unauthorized
| Date: Tue, 21 Nov 2023 02:52:33 GMT
| Content-Type: application/json; charset=utf-8
| Content-Length: 119
| Connection: close
| X-Kong-Response-Latency: 0
| Server: kong/3.1.1
| {"error":{"code":401,"requestId":"null","message":"Cloud Link token not found in Authorization header or querystring"}}
| HTTPOptions:
| HTTP/1.1 401 Unauthorized
| Date: Tue, 21 Nov 2023 02:52:33 GMT
| Content-Type: application/json; charset=utf-8
| Content-Length: 119
| Connection: close
| X-Kong-Response-Latency: 0
| Server: kong/3.1.1
| {"error":{"message":"Cloud Link token not found in Authorization header or querystring","code":401,"requestId":"null"}}
| RPCCheck:
| HTTP/1.1 400 Bad Request
| Server: awselb/2.0
| Date: Tue, 21 Nov 2023 02:52:40 GMT
| Content-Type: text/html
| Content-Length: 122
| Connection: close
| <html>
| <head><title>400 Bad Request</title></head>
| <body>
| <center><h1>400 Bad Request</h1></center>
| </body>
| </html>
| RTSPRequest:
| <html>
| <head><title>400 Bad Request</title></head>
| <body>
| <center><h1>400 Bad Request</h1></center>
| </body>
| </html>
| tor-versions:
| HTTP/1.1 400 Bad Request
| Server: awselb/2.0
| Date: Tue, 21 Nov 2023 02:52:34 GMT
| Content-Type: text/html
| Content-Length: 122
| Connection: close
| <html>
| <head><title>400 Bad Request</title></head>
| <body>
| <center><h1>400 Bad Request</h1></center>
| </body>
|_ </html>
| http-auth:
| HTTP/1.1 401 Unauthorized\x0D
|_ Server returned status 401 but no WWW-Authenticate header.
|_http-server-header: kong/3.1.1
|_http-title: Site doesn't have a title (application/json; charset=utf-8).
| ssl-cert: Subject: commonName=ui.soc.us-east-1.trellix.com/organizationName=Musarubra US LLC/stateOrProvinceName=California/countryName=US
| Subject Alternative Name: DNS:ui.soc.us-east-1.trellix.com, DNS:api.soc.us-east-1.trellix.com
| Not valid before: 2023-10-31T00:00:00
|_Not valid after: 2024-10-30T23:59:59
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port443-TCP:V=7.70%T=SSL%I=7%D=11/20%Time=655C1B70%P=x86_64-redhat-linu
SF:x-gnu%r(GetRequest,140,"HTTP/1\.1\x20401\x20Unauthorized\r\nDate:\x20Tu
SF:e,\x2021\x20Nov\x202023\x2002:52:33\x20GMT\r\nContent-Type:\x20applicat
SF:ion/json;\x20charset=utf-8\r\nContent-Length:\x20119\r\nConnection:\x20
SF:close\r\nX-Kong-Response-Latency:\x200\r\nServer:\x20kong/3\.1\.1\r\n\r
SF:\n{\"error\":{\"code\":401,\"requestId\":\"null\",\"message\":\"Cloud\x
SF:20Link\x20token\x20not\x20found\x20in\x20Authorization\x20header\x20or\
SF:x20querystring\"}}")%r(HTTPOptions,140,"HTTP/1\.1\x20401\x20Unauthorize
SF:d\r\nDate:\x20Tue,\x2021\x20Nov\x202023\x2002:52:33\x20GMT\r\nContent-T
SF:ype:\x20application/json;\x20charset=utf-8\r\nContent-Length:\x20119\r\
SF:nConnection:\x20close\r\nX-Kong-Response-Latency:\x200\r\nServer:\x20ko
SF:ng/3\.1\.1\r\n\r\n{\"error\":{\"message\":\"Cloud\x20Link\x20token\x20n
SF:ot\x20found\x20in\x20Authorization\x20header\x20or\x20querystring\",\"c
SF:ode\":401,\"requestId\":\"null\"}}")%r(FourOhFourRequest,140,"HTTP/1\.1
SF:\x20401\x20Unauthorized\r\nDate:\x20Tue,\x2021\x20Nov\x202023\x2002:52:
SF:34\x20GMT\r\nContent-Type:\x20application/json;\x20charset=utf-8\r\nCon
SF:tent-Length:\x20119\r\nConnection:\x20close\r\nX-Kong-Response-Latency:
SF:\x200\r\nServer:\x20kong/3\.1\.1\r\n\r\n{\"error\":{\"code\":401,\"requ
SF:estId\":\"null\",\"message\":\"Cloud\x20Link\x20token\x20not\x20found\x
SF:20in\x20Authorization\x20header\x20or\x20querystring\"}}")%r(tor-versio
SF:ns,110,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nServer:\x20awselb/2\.0\r\
SF:nDate:\x20Tue,\x2021\x20Nov\x202023\x2002:52:34\x20GMT\r\nContent-Type:
SF:\x20text/html\r\nContent-Length:\x20122\r\nConnection:\x20close\r\n\r\n
SF:<html>\r\n<head><title>400\x20Bad\x20Request</title></head>\r\n<body>\r
SF:\n<center><h1>400\x20Bad\x20Request</h1></center>\r\n</body>\r\n</html>
SF:\r\n")%r(RTSPRequest,7A,"<html>\r\n<head><title>400\x20Bad\x20Request</
SF:title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Request</h1></cent
SF:er>\r\n</body>\r\n</html>\r\n")%r(RPCCheck,110,"HTTP/1\.1\x20400\x20Bad
SF:\x20Request\r\nServer:\x20awselb/2\.0\r\nDate:\x20Tue,\x2021\x20Nov\x20
SF:2023\x2002:52:40\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length
SF::\x20122\r\nConnection:\x20close\r\n\r\n<html>\r\n<head><title>400\x20B
SF:ad\x20Request</title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Req
SF:uest</h1></center>\r\n</body>\r\n</html>\r\n");
Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
Device type: general purpose|PBX
Running (JUST GUESSING): Linux 2.6.X|3.X|4.X (90%), Vodavi embedded (87%)
OS CPE: cpe:/o:linux:linux_kernel:2.6.32 cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:4 cpe:/h:vodavi:xts-ip
Aggressive OS guesses: Linux 2.6.32 (90%), Linux 3.2 - 4.9 (90%), Linux 2.6.32 - 3.10 (89%), Linux 2.6.32 - 3.13 (89%), Linux 3.10 - 3.13 (88%), Vodavi XTS-IP PBX (87%)
No exact OS matches for host (test conditions non-ideal).
Network Distance: 20 hops
TRACEROUTE (using port 443/tcp)
HOP RTT ADDRESS
1 0.19 ms 208.76.251.177
2 0.56 ms gw.mcom-colocationamerica.com (208.64.231.81)
3 0.73 ms 1.162.45.96-dedicated.multacom.com (96.45.162.1)
4 1.09 ms be5361.ccr42.lax01.atlas.cogentco.com (38.99.219.57)
5 52.48 ms be2932.ccr32.phx01.atlas.cogentco.com (154.54.45.161)
6 20.97 ms be3872.ccr22.elp02.atlas.cogentco.com (154.54.26.54)
7 36.93 ms be3851.ccr42.iah01.atlas.cogentco.com (154.54.2.5)
8 38.26 ms be2418.rcr51.b023723-0.iah01.atlas.cogentco.com (154.54.6.78)
9 39.34 ms 38.104.61.42
10 40.28 ms 52.93.254.211
11 39.82 ms 52.93.64.125
12 ... 19
20 68.23 ms ec2-3-208-84-2.compute-1.amazonaws.com (3.208.84.2)
OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 66.12 seconds