Scan report for "legobff.api.intuit.com"

Membership level: Free member
Summary

Ports

2

Duration

32.16sec

Date

2024-09-20

IP

35.83.7.187

Report
Scan OS information and Traceroute (nmap -A legobff.api.intuit.com)
Nmap scan report for legobff.api.intuit.com (35.83.7.187)
Host is up (0.027s latency).
Other addresses for legobff.api.intuit.com (not scanned): 52.12.82.139 54.149.179.226
rDNS record for 35.83.7.187: ec2-35-83-7-187.us-west-2.compute.amazonaws.com
Not shown: 998 filtered tcp ports (no-response)
PORT    STATE SERVICE        VERSION
80/tcp  open  http           awselb/2.0
|_http-server-header: awselb/2.0
|_http-title: Did not follow redirect to https://legobff.api.intuit.com:443/
| fingerprint-strings: 
|   FourOhFourRequest: 
|     HTTP/1.1 301 Moved Permanently
|     Server: awselb/2.0
|     Date: Fri, 20 Sep 2024 12:42:51 GMT
|     Content-Type: text/html
|     Content-Length: 134
|     Connection: close
|     Location: https://k8s-services-usw2prds-1a01a26a19-581550407.us-west-2.elb.amazonaws.com:443/nice%20ports%2C/Tri%6Eity.txt%2ebak
|     <html>
|     <head><title>301 Moved Permanently</title></head>
|     <body>
|     <center><h1>301 Moved Permanently</h1></center>
|     </body>
|     </html>
|   GetRequest, HTTPOptions: 
|     HTTP/1.1 301 Moved Permanently
|     Server: awselb/2.0
|     Date: Fri, 20 Sep 2024 12:42:50 GMT
|     Content-Type: text/html
|     Content-Length: 134
|     Connection: close
|     Location: https://k8s-services-usw2prds-1a01a26a19-581550407.us-west-2.elb.amazonaws.com:443/
|     <html>
|     <head><title>301 Moved Permanently</title></head>
|     <body>
|     <center><h1>301 Moved Permanently</h1></center>
|     </body>
|     </html>
|   RTSPRequest: 
|     <html>
|     <head><title>400 Bad Request</title></head>
|     <body>
|     <center><h1>400 Bad Request</h1></center>
|     </body>
|     </html>
|   X11Probe: 
|     HTTP/1.1 400 Bad Request
|     Server: awselb/2.0
|     Date: Fri, 20 Sep 2024 12:42:50 GMT
|     Content-Type: text/html
|     Content-Length: 122
|     Connection: close
|     <html>
|     <head><title>400 Bad Request</title></head>
|     <body>
|     <center><h1>400 Bad Request</h1></center>
|     </body>
|_    </html>
443/tcp open  ssl/http-proxy (bad gateway)
| tls-nextprotoneg: 
|   h2
|_  http/1.1
|_http-title: Site doesn't have a title (text/plain).
| fingerprint-strings: 
|   FourOhFourRequest: 
|     HTTP/1.1 502 Bad Gateway
|     Date: Fri, 20 Sep 2024 12:42:57 GMT
|     Content-Type: text/plain
|     Content-Length: 0
|     Connection: close
|     x-envoy-upstream-service-time: 0
|     strict-transport-security: max-age=31536000
|     intuit_tid: 1-66ed6dd1-75f4273e39dc19f35b5cfa8d
|     x-request-id: 1-66ed6dd1-75f4273e39dc19f35b5cfa8d
|     server: istio-envoy
|   GetRequest: 
|     HTTP/1.1 502 Bad Gateway
|     Date: Fri, 20 Sep 2024 12:42:56 GMT
|     Content-Type: text/plain
|     Content-Length: 0
|     Connection: close
|     x-envoy-upstream-service-time: 1
|     strict-transport-security: max-age=31536000
|     intuit_tid: 1-66ed6dd0-6401efef013bcd327e9ee67a
|     x-request-id: 1-66ed6dd0-6401efef013bcd327e9ee67a
|     server: istio-envoy
|   HTTPOptions: 
|     HTTP/1.1 502 Bad Gateway
|     Date: Fri, 20 Sep 2024 12:42:56 GMT
|     Content-Type: text/plain
|     Content-Length: 0
|     Connection: close
|     x-envoy-upstream-service-time: 0
|     strict-transport-security: max-age=31536000
|     intuit_tid: 1-66ed6dd0-34c7b58021bfae0959024301
|     x-request-id: 1-66ed6dd0-34c7b58021bfae0959024301
|     server: istio-envoy
|   Help, SSLSessionReq: 
|     HTTP/1.1 400 Bad Request
|     Server: awselb/2.0
|     Date: Fri, 20 Sep 2024 12:43:02 GMT
|     Content-Type: text/html
|     Content-Length: 122
|     Connection: close
|     <html>
|     <head><title>400 Bad Request</title></head>
|     <body>
|     <center><h1>400 Bad Request</h1></center>
|     </body>
|     </html>
|   RTSPRequest: 
|     <html>
|     <head><title>400 Bad Request</title></head>
|     <body>
|     <center><h1>400 Bad Request</h1></center>
|     </body>
|_    </html>
| ssl-cert: Subject: commonName=*.intuit.com/organizationName=INTUIT INC./stateOrProvinceName=California/countryName=US
| Subject Alternative Name: DNS:*.intuit.com, DNS:*.sbfinance.intuit.com, DNS:*.iep.intuit.com, DNS:*.prd.platform.intuit.com, DNS:*.accountants.intuit.com, DNS:*.api.intuit.ae, DNS:*.api.intuit.com.au, DNS:*.prd.api.a.intuit.com, DNS:*.api.intuit.mx, DNS:*.sbfinance.stage.intuit.com, DNS:*.intuit.ca, DNS:*.workforce.intuit.com, DNS:*.appfabric.intuit.com, DNS:*.experimentation.intuit.com, DNS:*.platform.intuit.ca, DNS:*.stgl.intuit.com, DNS:*.finance.intuit.com, DNS:*.app.intuit.com, DNS:*.api.intuit.com, DNS:*.prf.api.a.intuit.com, DNS:*.qbo.intuit.com, DNS:*.api.intuit.fr, DNS:*.qa.api.a.intuit.com, DNS:*.banking.intuit.com, DNS:*.turbotaxonline.intuit.com, DNS:*.api.intuit.sg, DNS:*.turbotax.intuit.com, DNS:*.quickbooks.intuit.com, DNS:*.e2e.api.a.intuit.com, DNS:*.api.intuit.ca, DNS:*.api.intuit.net, DNS:*.accountant.intuit.com, DNS:*.tax.intuit.com, DNS:*.a.intuit.com, DNS:*.hosting.intuit.com, DNS:*.aws.api.intuit.com, DNS:*.api.intuit.co.za, DNS:*.ffffprdstg.intuit.com, DNS:*.api.intuit.ph, DNS:*.api.quickbooks.com.br, DNS:*.statefillableforms.com, DNS:*.business.intuit.com, DNS:*.ffffprd.intuit.com, DNS:*.api.intuit.hk, DNS:*.platform.intuit.com, DNS:*.qb.intuit.com, DNS:*.api.quickbooks.co.uk, DNS:*.mint.com, DNS:*.quickbooks.com
| Not valid before: 2024-07-30T00:00:00
|_Not valid after:  2025-07-29T23:59:59
|_ssl-date: TLS randomness does not represent time
| http-server-header: 
|   awselb/2.0
|_  istio-envoy
| tls-alpn: 
|   h2
|_  http/1.1
2 services unrecognized despite returning data. If you know the service/version, please submit the following fingerprints at https://nmap.org/cgi-bin/submit.cgi?new-service :
==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)==============
SF-Port80-TCP:V=7.92%I=7%D=9/20%Time=66ED6DCA%P=x86_64-redhat-linux-gnu%r(
SF:GetRequest,181,"HTTP/1\.1\x20301\x20Moved\x20Permanently\r\nServer:\x20
SF:awselb/2\.0\r\nDate:\x20Fri,\x2020\x20Sep\x202024\x2012:42:50\x20GMT\r\
SF:nContent-Type:\x20text/html\r\nContent-Length:\x20134\r\nConnection:\x2
SF:0close\r\nLocation:\x20https://k8s-services-usw2prds-1a01a26a19-5815504
SF:07\.us-west-2\.elb\.amazonaws\.com:443/\r\n\r\n<html>\r\n<head><title>3
SF:01\x20Moved\x20Permanently</title></head>\r\n<body>\r\n<center><h1>301\
SF:x20Moved\x20Permanently</h1></center>\r\n</body>\r\n</html>\r\n")%r(HTT
SF:POptions,181,"HTTP/1\.1\x20301\x20Moved\x20Permanently\r\nServer:\x20aw
SF:selb/2\.0\r\nDate:\x20Fri,\x2020\x20Sep\x202024\x2012:42:50\x20GMT\r\nC
SF:ontent-Type:\x20text/html\r\nContent-Length:\x20134\r\nConnection:\x20c
SF:lose\r\nLocation:\x20https://k8s-services-usw2prds-1a01a26a19-581550407
SF:\.us-west-2\.elb\.amazonaws\.com:443/\r\n\r\n<html>\r\n<head><title>301
SF:\x20Moved\x20Permanently</title></head>\r\n<body>\r\n<center><h1>301\x2
SF:0Moved\x20Permanently</h1></center>\r\n</body>\r\n</html>\r\n")%r(RTSPR
SF:equest,7A,"<html>\r\n<head><title>400\x20Bad\x20Request</title></head>\
SF:r\n<body>\r\n<center><h1>400\x20Bad\x20Request</h1></center>\r\n</body>
SF:\r\n</html>\r\n")%r(X11Probe,110,"HTTP/1\.1\x20400\x20Bad\x20Request\r\
SF:nServer:\x20awselb/2\.0\r\nDate:\x20Fri,\x2020\x20Sep\x202024\x2012:42:
SF:50\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length:\x20122\r\nCo
SF:nnection:\x20close\r\n\r\n<html>\r\n<head><title>400\x20Bad\x20Request<
SF:/title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Request</h1></cen
SF:ter>\r\n</body>\r\n</html>\r\n")%r(FourOhFourRequest,1A4,"HTTP/1\.1\x20
SF:301\x20Moved\x20Permanently\r\nServer:\x20awselb/2\.0\r\nDate:\x20Fri,\
SF:x2020\x20Sep\x202024\x2012:42:51\x20GMT\r\nContent-Type:\x20text/html\r
SF:\nContent-Length:\x20134\r\nConnection:\x20close\r\nLocation:\x20https:
SF://k8s-services-usw2prds-1a01a26a19-581550407\.us-west-2\.elb\.amazonaws
SF:\.com:443/nice%20ports%2C/Tri%6Eity\.txt%2ebak\r\n\r\n<html>\r\n<head><
SF:title>301\x20Moved\x20Permanently</title></head>\r\n<body>\r\n<center><
SF:h1>301\x20Moved\x20Permanently</h1></center>\r\n</body>\r\n</html>\r\n"
SF:);
==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)==============
SF-Port443-TCP:V=7.92%T=SSL%I=7%D=9/20%Time=66ED6DD0%P=x86_64-redhat-linux
SF:-gnu%r(GetRequest,149,"HTTP/1\.1\x20502\x20Bad\x20Gateway\r\nDate:\x20F
SF:ri,\x2020\x20Sep\x202024\x2012:42:56\x20GMT\r\nContent-Type:\x20text/pl
SF:ain\r\nContent-Length:\x200\r\nConnection:\x20close\r\nx-envoy-upstream
SF:-service-time:\x201\r\nstrict-transport-security:\x20max-age=31536000\r
SF:\nintuit_tid:\x201-66ed6dd0-6401efef013bcd327e9ee67a\r\nx-request-id:\x
SF:201-66ed6dd0-6401efef013bcd327e9ee67a\r\nserver:\x20istio-envoy\r\n\r\n
SF:")%r(HTTPOptions,149,"HTTP/1\.1\x20502\x20Bad\x20Gateway\r\nDate:\x20Fr
SF:i,\x2020\x20Sep\x202024\x2012:42:56\x20GMT\r\nContent-Type:\x20text/pla
SF:in\r\nContent-Length:\x200\r\nConnection:\x20close\r\nx-envoy-upstream-
SF:service-time:\x200\r\nstrict-transport-security:\x20max-age=31536000\r\
SF:nintuit_tid:\x201-66ed6dd0-34c7b58021bfae0959024301\r\nx-request-id:\x2
SF:01-66ed6dd0-34c7b58021bfae0959024301\r\nserver:\x20istio-envoy\r\n\r\n"
SF:)%r(FourOhFourRequest,149,"HTTP/1\.1\x20502\x20Bad\x20Gateway\r\nDate:\
SF:x20Fri,\x2020\x20Sep\x202024\x2012:42:57\x20GMT\r\nContent-Type:\x20tex
SF:t/plain\r\nContent-Length:\x200\r\nConnection:\x20close\r\nx-envoy-upst
SF:ream-service-time:\x200\r\nstrict-transport-security:\x20max-age=315360
SF:00\r\nintuit_tid:\x201-66ed6dd1-75f4273e39dc19f35b5cfa8d\r\nx-request-i
SF:d:\x201-66ed6dd1-75f4273e39dc19f35b5cfa8d\r\nserver:\x20istio-envoy\r\n
SF:\r\n")%r(RTSPRequest,7A,"<html>\r\n<head><title>400\x20Bad\x20Request</
SF:title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Request</h1></cent
SF:er>\r\n</body>\r\n</html>\r\n")%r(Help,110,"HTTP/1\.1\x20400\x20Bad\x20
SF:Request\r\nServer:\x20awselb/2\.0\r\nDate:\x20Fri,\x2020\x20Sep\x202024
SF:\x2012:43:02\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length:\x2
SF:0122\r\nConnection:\x20close\r\n\r\n<html>\r\n<head><title>400\x20Bad\x
SF:20Request</title></head>\r\n<body>\r\n<center><h1>400\x20Bad\x20Request
SF:</h1></center>\r\n</body>\r\n</html>\r\n")%r(SSLSessionReq,110,"HTTP/1\
SF:.1\x20400\x20Bad\x20Request\r\nServer:\x20awselb/2\.0\r\nDate:\x20Fri,\
SF:x2020\x20Sep\x202024\x2012:43:02\x20GMT\r\nContent-Type:\x20text/html\r
SF:\nContent-Length:\x20122\r\nConnection:\x20close\r\n\r\n<html>\r\n<head
SF:><title>400\x20Bad\x20Request</title></head>\r\n<body>\r\n<center><h1>4
SF:00\x20Bad\x20Request</h1></center>\r\n</body>\r\n</html>\r\n");
Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
Device type: general purpose
Running (JUST GUESSING): Linux 2.6.X|3.X|4.X (90%)
OS CPE: cpe:/o:linux:linux_kernel:2.6.32 cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:4
Aggressive OS guesses: Linux 2.6.32 (90%), Linux 3.2 - 4.9 (90%), Linux 2.6.32 - 3.10 (89%), Linux 2.6.32 - 3.13 (89%), Linux 3.10 - 3.13 (88%)
No exact OS matches for host (test conditions non-ideal).
Network Distance: 12 hops

TRACEROUTE (using port 443/tcp)
HOP RTT      ADDRESS
1   0.20 ms  208.76.251.177.rdns.ColocationAmerica.com (208.76.251.177)
2   0.56 ms  gw.mcom-colocationamerica.com (208.64.231.81)
3   0.70 ms  r2b4.n1.p1401.lax.multacom.net (64.69.46.11)
4   1.10 ms  206.72.211.146.any2ix.coresite.com (206.72.211.146)
5   ... 11
12  28.38 ms ec2-35-83-7-187.us-west-2.compute.amazonaws.com (35.83.7.187)

OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 32.16 seconds
Color Scheme
Online Port scanner - portscanner, nmap, unicornscan | Product Hunt
Detailed report
Target
Target IP
35.83.7.187
Host status
UP
Target Country
Target IP location is United States of America
United States of America
Free scan
Free scan
Scan method
Scan OS information and Traceroute
Scan status
Identified 2 ports
Run command
nmap -A legobff.api.intuit.com
Scan date
20 Sep 2024 08:43
Scan duration
32.16sec
Download report
Remove scan result
$
Total scans
Scan more
Pricing

PROFESSIONAL


  • 10 000 scans/day
  • Daily API Calls - 100 000 request
  • Save log
  • Public scan
  • OSINT scan
  • Unlisted scan
  • Private scan
  • No ads
  • Remove scan result
  • Remove after scan
  • Additional methods for scan
$0.75$7.50/month
Billed Annually @ $9.00$90.00 90% discount
Get Professional

REGISTERED


  • 5 scans/day
  • Daily API Calls - 20 request
  • Save log
  • Public scan
  • OSINT scan
  • Unlisted scan
  • Private scan
  • No ads
  • Remove scan result
  • Remove after scan
  • Additional methods for scan
$0/lifetime
 
Register
Scan host
Some firewalls blocks Port scans. For get true positive results add portscanner.online IP addresses (208.76.253.232-208.76.253.239 or CIDR 208.76.253.232/29 ) to the whitelist
[scan_method]
Visibility:
Scan method: