Scan OS information and Traceroute (nmap -A digiboy.ir)
Nmap scan report for digiboy.ir (5.160.200.204)
Host is up (0.21s latency).
rDNS record for 5.160.200.204: irda2.irdatacenter.net
Not shown: 975 closed ports
PORT STATE SERVICE VERSION
21/tcp open ftp ProFTPD
| ssl-cert: Subject: commonName=irda2.irdatacenter.net
| Subject Alternative Name: DNS:irda2.irdatacenter.net
| Not valid before: 2023-09-21T19:49:44
|_Not valid after: 2023-12-20T19:49:43
22/tcp filtered ssh
23/tcp filtered telnet
25/tcp open smtp Exim smtpd 4.96.1-7-g79877b70e
|_smtp-commands: SMTP: EHLO 550 Bad HELO - Host impersonating domain name [digiboy.ir]\x0D
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
53/tcp open domain ISC BIND 9.11.4-P2 (RedHat Enterprise Linux 7)
| dns-nsid:
|_ bind.version: 9.11.4-P2-RedHat-9.11.4-9.P2.el7
80/tcp open http nginx
|_http-server-header: nginx
|_http-title: Did not follow redirect to https://digiboy.ir/
110/tcp open pop3 Dovecot DirectAdmin pop3d
|_pop3-capabilities: TOP RESP-CODES AUTH-RESP-CODE PIPELINING UIDL SASL(PLAIN) USER STLS CAPA
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
111/tcp open rpcbind 2-4 (RPC #100000)
| rpcinfo:
| program version port/proto service
| 100000 2,3,4 111/tcp rpcbind
|_ 100000 2,3,4 111/udp rpcbind
143/tcp open imap Dovecot imapd
|_imap-capabilities: IDLE STARTTLS more ENABLE IMAP4rev1 have post-login ID capabilities listed OK Pre-login AUTH=PLAINA0001 SASL-IR LITERAL+ LOGIN-REFERRALS
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
443/tcp open ssl/http nginx
|_http-server-header: nginx
|_http-title: Did not follow redirect to https://www.digiboy.ir/
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
465/tcp open ssl/smtp Exim smtpd 4.96.1-7-g79877b70e
|_smtp-commands: SMTP: EHLO 550 Bad HELO - Host impersonating domain name [digiboy.ir]\x0D
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
587/tcp open smtp Exim smtpd 4.96.1-7-g79877b70e
|_smtp-commands: SMTP: EHLO 550 Bad HELO - Host impersonating domain name [digiboy.ir]\x0D
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
993/tcp open imaps?
|_imap-capabilities: AUTH=PLAINA0001 more ENABLE IMAP4rev1 have post-login ID capabilities listed OK Pre-login IDLE SASL-IR LITERAL+ LOGIN-REFERRALS
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
995/tcp open pop3s?
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
1900/tcp filtered upnp
2000/tcp open tcpwrapped
2222/tcp open ssl/EtherNetIP-1?
| fingerprint-strings:
| FourOhFourRequest:
| HTTP/1.0 301 Moved Permanently
| Content-Type: text/html; charset=utf-8
| Location: https://irda2.irdatacenter.net:/nice%20ports%2C/Tri%6Eity.txt%2ebak
| Vary: Origin
| Vary: Accept-Encoding
| Date: Tue, 21 Nov 2023 00:55:25 GMT
| Content-Length: 102
| href="https://irda2.irdatacenter.net:/nice%20ports%2C/Tri%6Eity.txt%2ebak">Moved Permanently</a>.
| GenericLines, Help, Kerberos, RTSPRequest, SSLSessionReq, TLSSessionReq:
| HTTP/1.1 400 Bad Request
| Content-Type: text/plain; charset=utf-8
| Connection: close
| Request
| GetRequest:
| HTTP/1.0 301 Moved Permanently
| Content-Type: text/html; charset=utf-8
| Location: https://irda2.irdatacenter.net:/
| Vary: Origin
| Vary: Accept-Encoding
| Date: Tue, 21 Nov 2023 00:54:50 GMT
| Content-Length: 67
| href="https://irda2.irdatacenter.net:/">Moved Permanently</a>.
| HTTPOptions:
| HTTP/1.0 301 Moved Permanently
| Location: https://irda2.irdatacenter.net:/
| Vary: Origin
| Vary: Accept-Encoding
| Date: Tue, 21 Nov 2023 00:54:51 GMT
|_ Content-Length: 0
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
3006/tcp open ssh OpenSSH 7.4 (protocol 2.0)
| ssh-hostkey:
| 2048 3a:92:67:97:f7:74:94:b5:cc:92:be:47:39:bc:e0:73 (RSA)
| 256 d2:25:e0:b8:ef:75:59:49:0f:da:4b:a8:ec:89:85:d1 (ECDSA)
|_ 256 82:28:b1:a1:00:9b:4e:29:6a:8f:8e:6c:c7:16:d4:74 (ED25519)
3389/tcp filtered ms-wbt-server
5000/tcp filtered upnp
5060/tcp open tcpwrapped
8080/tcp open ssl/http-proxy Apache/2
|_http-open-proxy: Proxy might be redirecting requests
|_http-server-header: Apache/2
|_http-title: Did not follow redirect to https://digiboy.ir:8080/
8081/tcp open ssl/ssl Apache httpd (SSL-only mode)
| ssl-cert: Subject: commonName=digiboy.ir
| Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir
| Not valid before: 2023-10-18T19:48:59
|_Not valid after: 2024-01-16T19:48:58
8291/tcp filtered unknown
10001/tcp filtered scp-config
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port2222-TCP:V=7.70%T=SSL%I=7%D=11/20%Time=655BFFD9%P=x86_64-redhat-lin
SF:ux-gnu%r(GenericLines,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nContent
SF:-Type:\x20text/plain;\x20charset=utf-8\r\nConnection:\x20close\r\n\r\n4
SF:00\x20Bad\x20Request")%r(GetRequest,117,"HTTP/1\.0\x20301\x20Moved\x20P
SF:ermanently\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nLocation:
SF:\x20https://irda2\.irdatacenter\.net:/\r\nVary:\x20Origin\r\nVary:\x20A
SF:ccept-Encoding\r\nDate:\x20Tue,\x2021\x20Nov\x202023\x2000:54:50\x20GMT
SF:\r\nContent-Length:\x2067\r\n\r\n<a\x20href=\"https://irda2\.irdatacent
SF:er\.net:/\">Moved\x20Permanently</a>\.\n\n")%r(HTTPOptions,AB,"HTTP/1\.
SF:0\x20301\x20Moved\x20Permanently\r\nLocation:\x20https://irda2\.irdatac
SF:enter\.net:/\r\nVary:\x20Origin\r\nVary:\x20Accept-Encoding\r\nDate:\x2
SF:0Tue,\x2021\x20Nov\x202023\x2000:54:51\x20GMT\r\nContent-Length:\x200\r
SF:\n\r\n")%r(RTSPRequest,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nConten
SF:t-Type:\x20text/plain;\x20charset=utf-8\r\nConnection:\x20close\r\n\r\n
SF:400\x20Bad\x20Request")%r(Help,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r
SF:\nContent-Type:\x20text/plain;\x20charset=utf-8\r\nConnection:\x20close
SF:\r\n\r\n400\x20Bad\x20Request")%r(SSLSessionReq,67,"HTTP/1\.1\x20400\x2
SF:0Bad\x20Request\r\nContent-Type:\x20text/plain;\x20charset=utf-8\r\nCon
SF:nection:\x20close\r\n\r\n400\x20Bad\x20Request")%r(TLSSessionReq,67,"HT
SF:TP/1\.1\x20400\x20Bad\x20Request\r\nContent-Type:\x20text/plain;\x20cha
SF:rset=utf-8\r\nConnection:\x20close\r\n\r\n400\x20Bad\x20Request")%r(Ker
SF:beros,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nContent-Type:\x20text/p
SF:lain;\x20charset=utf-8\r\nConnection:\x20close\r\n\r\n400\x20Bad\x20Req
SF:uest")%r(FourOhFourRequest,15E,"HTTP/1\.0\x20301\x20Moved\x20Permanentl
SF:y\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nLocation:\x20https
SF:://irda2\.irdatacenter\.net:/nice%20ports%2C/Tri%6Eity\.txt%2ebak\r\nVa
SF:ry:\x20Origin\r\nVary:\x20Accept-Encoding\r\nDate:\x20Tue,\x2021\x20Nov
SF:\x202023\x2000:55:25\x20GMT\r\nContent-Length:\x20102\r\n\r\n<a\x20href
SF:=\"https://irda2\.irdatacenter\.net:/nice%20ports%2C/Tri%6Eity\.txt%2eb
SF:ak\">Moved\x20Permanently</a>\.\n\n");
Device type: general purpose
Running (JUST GUESSING): Linux 4.X|3.X|2.6.X (94%), Microsoft Windows 2016 (85%)
OS CPE: cpe:/o:linux:linux_kernel:4.0 cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:2.6.32 cpe:/o:microsoft:windows_server_2016
Aggressive OS guesses: Linux 4.0 (94%), Linux 4.4 (93%), Linux 3.11 - 4.1 (89%), Linux 3.10 (89%), Linux 2.6.32 (89%), Linux 2.6.32 or 3.10 (89%), Linux 3.10 - 3.12 (89%), Linux 3.10 - 3.16 (88%), Linux 2.6.32 - 2.6.35 (87%), Linux 4.9 (87%)
No exact OS matches for host (test conditions non-ideal).
Network Distance: 23 hops
Service Info: OSs: Unix, Linux; CPE: cpe:/o:redhat:enterprise_linux:7
TRACEROUTE (using port 1720/tcp)
HOP RTT ADDRESS
1 0.20 ms 208.76.251.177
2 0.59 ms gw.mcom-colocationamerica.com (208.64.231.81)
3 0.65 ms 1.162.45.96-dedicated.multacom.com (96.45.162.1)
4 1.39 ms be5361.ccr42.lax01.atlas.cogentco.com (38.99.219.57)
5 0.90 ms be3359.ccr41.lax05.atlas.cogentco.com (154.54.3.70)
6 14.78 ms tata.lax05.atlas.cogentco.com (154.54.11.194)
7 152.26 ms if-ae-6-20.tcore2.lvw-losangeles.as6453.net (64.86.252.65)
8 ... 10
11 152.68 ms if-ae-14-2.tcore2.av2-amsterdam.as6453.net (80.231.131.161)
12 ...
13 155.56 ms if-ae-2-2.tcore2.n0v-newyork.as6453.net (216.6.90.22)
14 145.77 ms if-ae-2-2.tcore1.av2-amsterdam.as6453.net (195.219.194.5)
15 219.73 ms 195.219.87.199
16 ... 19
20 226.03 ms 10.201.177.185
21 ... 22
23 224.77 ms irda2.irdatacenter.net (5.160.200.204)
OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 756.80 seconds
Color Scheme
-
Target
-
Target IP
5.160.200.204
-
Target Country
-
Scan method
Scan OS information and Traceroute
-
Run command
nmap -A digiboy.ir
-
Scan date
20 Nov 2023 19:58
-
Copy scan report
-
Download report
-
Remove scan result
-
Total scans