Ports
Duration
Date
IP
Nmap scan report for digiboy.ir (5.160.200.204) Host is up (0.21s latency). rDNS record for 5.160.200.204: irda2.irdatacenter.net Not shown: 975 closed ports PORT STATE SERVICE VERSION 21/tcp open ftp ProFTPD | ssl-cert: Subject: commonName=irda2.irdatacenter.net | Subject Alternative Name: DNS:irda2.irdatacenter.net | Not valid before: 2023-09-21T19:49:44 |_Not valid after: 2023-12-20T19:49:43 22/tcp filtered ssh 23/tcp filtered telnet 25/tcp open smtp Exim smtpd 4.96.1-7-g79877b70e |_smtp-commands: SMTP: EHLO 550 Bad HELO - Host impersonating domain name [digiboy.ir]\x0D | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 53/tcp open domain ISC BIND 9.11.4-P2 (RedHat Enterprise Linux 7) | dns-nsid: |_ bind.version: 9.11.4-P2-RedHat-9.11.4-9.P2.el7 80/tcp open http nginx |_http-server-header: nginx |_http-title: Did not follow redirect to https://digiboy.ir/ 110/tcp open pop3 Dovecot DirectAdmin pop3d |_pop3-capabilities: TOP RESP-CODES AUTH-RESP-CODE PIPELINING UIDL SASL(PLAIN) USER STLS CAPA | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 111/tcp open rpcbind 2-4 (RPC #100000) | rpcinfo: | program version port/proto service | 100000 2,3,4 111/tcp rpcbind |_ 100000 2,3,4 111/udp rpcbind 143/tcp open imap Dovecot imapd |_imap-capabilities: IDLE STARTTLS more ENABLE IMAP4rev1 have post-login ID capabilities listed OK Pre-login AUTH=PLAINA0001 SASL-IR LITERAL+ LOGIN-REFERRALS | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 443/tcp open ssl/http nginx |_http-server-header: nginx |_http-title: Did not follow redirect to https://www.digiboy.ir/ | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 465/tcp open ssl/smtp Exim smtpd 4.96.1-7-g79877b70e |_smtp-commands: SMTP: EHLO 550 Bad HELO - Host impersonating domain name [digiboy.ir]\x0D | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 587/tcp open smtp Exim smtpd 4.96.1-7-g79877b70e |_smtp-commands: SMTP: EHLO 550 Bad HELO - Host impersonating domain name [digiboy.ir]\x0D | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 993/tcp open imaps? |_imap-capabilities: AUTH=PLAINA0001 more ENABLE IMAP4rev1 have post-login ID capabilities listed OK Pre-login IDLE SASL-IR LITERAL+ LOGIN-REFERRALS | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 995/tcp open pop3s? | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 1900/tcp filtered upnp 2000/tcp open tcpwrapped 2222/tcp open ssl/EtherNetIP-1? | fingerprint-strings: | FourOhFourRequest: | HTTP/1.0 301 Moved Permanently | Content-Type: text/html; charset=utf-8 | Location: https://irda2.irdatacenter.net:/nice%20ports%2C/Tri%6Eity.txt%2ebak | Vary: Origin | Vary: Accept-Encoding | Date: Tue, 21 Nov 2023 00:55:25 GMT | Content-Length: 102 | href="https://irda2.irdatacenter.net:/nice%20ports%2C/Tri%6Eity.txt%2ebak">Moved Permanently</a>. | GenericLines, Help, Kerberos, RTSPRequest, SSLSessionReq, TLSSessionReq: | HTTP/1.1 400 Bad Request | Content-Type: text/plain; charset=utf-8 | Connection: close | Request | GetRequest: | HTTP/1.0 301 Moved Permanently | Content-Type: text/html; charset=utf-8 | Location: https://irda2.irdatacenter.net:/ | Vary: Origin | Vary: Accept-Encoding | Date: Tue, 21 Nov 2023 00:54:50 GMT | Content-Length: 67 | href="https://irda2.irdatacenter.net:/">Moved Permanently</a>. | HTTPOptions: | HTTP/1.0 301 Moved Permanently | Location: https://irda2.irdatacenter.net:/ | Vary: Origin | Vary: Accept-Encoding | Date: Tue, 21 Nov 2023 00:54:51 GMT |_ Content-Length: 0 | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 3006/tcp open ssh OpenSSH 7.4 (protocol 2.0) | ssh-hostkey: | 2048 3a:92:67:97:f7:74:94:b5:cc:92:be:47:39:bc:e0:73 (RSA) | 256 d2:25:e0:b8:ef:75:59:49:0f:da:4b:a8:ec:89:85:d1 (ECDSA) |_ 256 82:28:b1:a1:00:9b:4e:29:6a:8f:8e:6c:c7:16:d4:74 (ED25519) 3389/tcp filtered ms-wbt-server 5000/tcp filtered upnp 5060/tcp open tcpwrapped 8080/tcp open ssl/http-proxy Apache/2 |_http-open-proxy: Proxy might be redirecting requests |_http-server-header: Apache/2 |_http-title: Did not follow redirect to https://digiboy.ir:8080/ 8081/tcp open ssl/ssl Apache httpd (SSL-only mode) | ssl-cert: Subject: commonName=digiboy.ir | Subject Alternative Name: DNS:digiboy.ir, DNS:www.digiboy.ir | Not valid before: 2023-10-18T19:48:59 |_Not valid after: 2024-01-16T19:48:58 8291/tcp filtered unknown 10001/tcp filtered scp-config 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port2222-TCP:V=7.70%T=SSL%I=7%D=11/20%Time=655BFFD9%P=x86_64-redhat-lin SF:ux-gnu%r(GenericLines,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nContent SF:-Type:\x20text/plain;\x20charset=utf-8\r\nConnection:\x20close\r\n\r\n4 SF:00\x20Bad\x20Request")%r(GetRequest,117,"HTTP/1\.0\x20301\x20Moved\x20P SF:ermanently\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nLocation: SF:\x20https://irda2\.irdatacenter\.net:/\r\nVary:\x20Origin\r\nVary:\x20A SF:ccept-Encoding\r\nDate:\x20Tue,\x2021\x20Nov\x202023\x2000:54:50\x20GMT SF:\r\nContent-Length:\x2067\r\n\r\n<a\x20href=\"https://irda2\.irdatacent SF:er\.net:/\">Moved\x20Permanently</a>\.\n\n")%r(HTTPOptions,AB,"HTTP/1\. SF:0\x20301\x20Moved\x20Permanently\r\nLocation:\x20https://irda2\.irdatac SF:enter\.net:/\r\nVary:\x20Origin\r\nVary:\x20Accept-Encoding\r\nDate:\x2 SF:0Tue,\x2021\x20Nov\x202023\x2000:54:51\x20GMT\r\nContent-Length:\x200\r SF:\n\r\n")%r(RTSPRequest,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nConten SF:t-Type:\x20text/plain;\x20charset=utf-8\r\nConnection:\x20close\r\n\r\n SF:400\x20Bad\x20Request")%r(Help,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r SF:\nContent-Type:\x20text/plain;\x20charset=utf-8\r\nConnection:\x20close SF:\r\n\r\n400\x20Bad\x20Request")%r(SSLSessionReq,67,"HTTP/1\.1\x20400\x2 SF:0Bad\x20Request\r\nContent-Type:\x20text/plain;\x20charset=utf-8\r\nCon SF:nection:\x20close\r\n\r\n400\x20Bad\x20Request")%r(TLSSessionReq,67,"HT SF:TP/1\.1\x20400\x20Bad\x20Request\r\nContent-Type:\x20text/plain;\x20cha SF:rset=utf-8\r\nConnection:\x20close\r\n\r\n400\x20Bad\x20Request")%r(Ker SF:beros,67,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nContent-Type:\x20text/p SF:lain;\x20charset=utf-8\r\nConnection:\x20close\r\n\r\n400\x20Bad\x20Req SF:uest")%r(FourOhFourRequest,15E,"HTTP/1\.0\x20301\x20Moved\x20Permanentl SF:y\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nLocation:\x20https SF:://irda2\.irdatacenter\.net:/nice%20ports%2C/Tri%6Eity\.txt%2ebak\r\nVa SF:ry:\x20Origin\r\nVary:\x20Accept-Encoding\r\nDate:\x20Tue,\x2021\x20Nov SF:\x202023\x2000:55:25\x20GMT\r\nContent-Length:\x20102\r\n\r\n<a\x20href SF:=\"https://irda2\.irdatacenter\.net:/nice%20ports%2C/Tri%6Eity\.txt%2eb SF:ak\">Moved\x20Permanently</a>\.\n\n"); Device type: general purpose Running (JUST GUESSING): Linux 4.X|3.X|2.6.X (94%), Microsoft Windows 2016 (85%) OS CPE: cpe:/o:linux:linux_kernel:4.0 cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:2.6.32 cpe:/o:microsoft:windows_server_2016 Aggressive OS guesses: Linux 4.0 (94%), Linux 4.4 (93%), Linux 3.11 - 4.1 (89%), Linux 3.10 (89%), Linux 2.6.32 (89%), Linux 2.6.32 or 3.10 (89%), Linux 3.10 - 3.12 (89%), Linux 3.10 - 3.16 (88%), Linux 2.6.32 - 2.6.35 (87%), Linux 4.9 (87%) No exact OS matches for host (test conditions non-ideal). Network Distance: 23 hops Service Info: OSs: Unix, Linux; CPE: cpe:/o:redhat:enterprise_linux:7 TRACEROUTE (using port 1720/tcp) HOP RTT ADDRESS 1 0.20 ms 208.76.251.177 2 0.59 ms gw.mcom-colocationamerica.com (208.64.231.81) 3 0.65 ms 1.162.45.96-dedicated.multacom.com (96.45.162.1) 4 1.39 ms be5361.ccr42.lax01.atlas.cogentco.com (38.99.219.57) 5 0.90 ms be3359.ccr41.lax05.atlas.cogentco.com (154.54.3.70) 6 14.78 ms tata.lax05.atlas.cogentco.com (154.54.11.194) 7 152.26 ms if-ae-6-20.tcore2.lvw-losangeles.as6453.net (64.86.252.65) 8 ... 10 11 152.68 ms if-ae-14-2.tcore2.av2-amsterdam.as6453.net (80.231.131.161) 12 ... 13 155.56 ms if-ae-2-2.tcore2.n0v-newyork.as6453.net (216.6.90.22) 14 145.77 ms if-ae-2-2.tcore1.av2-amsterdam.as6453.net (195.219.194.5) 15 219.73 ms 195.219.87.199 16 ... 19 20 226.03 ms 10.201.177.185 21 ... 22 23 224.77 ms irda2.irdatacenter.net (5.160.200.204) OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ . Nmap done: 1 IP address (1 host up) scanned in 756.80 seconds