You are on page 1of 4

# Nmap 7.

92 scan initiated Sun Oct 2 22:43:20 2022 as: nmap -A -T4 -p- -Pn -vv -oN
nmap_AT4.txt pip3lee101-juiceshop.herokuapp.com
Warning: Hostname pip3lee101-juiceshop.herokuapp.com resolves to 4 IPs. Using
54.224.34.30.
Nmap scan report for pip3lee101-juiceshop.herokuapp.com (54.224.34.30)
Host is up, received user-set (0.21s latency).
Other addresses for pip3lee101-juiceshop.herokuapp.com (not scanned): 34.201.81.34
54.208.186.182 54.243.129.215
rDNS record for 54.224.34.30: ec2-54-224-34-30.compute-1.amazonaws.com
Scanned at 2022-10-02 22:43:21 UTC for 577s
Not shown: 65533 filtered tcp ports (no-response)
PORT STATE SERVICE REASON VERSION
80/tcp open http syn-ack ttl 42 heroku-router
| http-robots.txt: 1 disallowed entry
|_/ftp
| fingerprint-strings:
| FourOhFourRequest:
| HTTP/1.0 400 Bad Request
| Cache-Control: no-cache, no-store
| Content-Type: text/html; charset=utf-8
| Date: 2022-10-02 22:49:55.778317894 +0000 UTC
| Server: heroku-router
| Content-Length: 0
| GetRequest:
| HTTP/1.0 400 Bad Request
| Cache-Control: no-cache, no-store
| Content-Type: text/html; charset=utf-8
| Date: 2022-10-02 22:49:44.504685736 +0000 UTC
| Server: heroku-router
| Content-Length: 0
| HTTPOptions:
| HTTP/1.0 400 Bad Request
| Cache-Control: no-cache, no-store
| Content-Type: text/html; charset=utf-8
| Date: 2022-10-02 22:49:44.918572371 +0000 UTC
| Server: heroku-router
|_ Content-Length: 0
|_http-title: OWASP Juice Shop
|_http-favicon: Unknown favicon MD5: 60593CEDA42482E579C25193BD7EC6E1
| http-methods:
|_ Supported Methods: GET HEAD POST OPTIONS
|_http-cors: HEAD GET POST PUT DELETE PATCH
| http-server-header:
| Cowboy
|_ heroku-router
443/tcp open ssl/https syn-ack ttl 233 heroku-router
| http-robots.txt: 1 disallowed entry
|_/ftp
|_http-favicon: Unknown favicon MD5: 7FFE7F988D600B4646D1965ED1AE46BA
| fingerprint-strings:
| FourOhFourRequest:
| HTTP/1.0 400 Bad Request
| Cache-Control: no-cache, no-store
| Content-Type: text/html; charset=utf-8
| Date: 2022-10-02 22:49:53.114415515 +0000 UTC
| Server: heroku-router
| Content-Length: 0
| GetRequest:
| HTTP/1.0 400 Bad Request
| Cache-Control: no-cache, no-store
| Content-Type: text/html; charset=utf-8
| Date: 2022-10-02 22:49:51.363307766 +0000 UTC
| Server: heroku-router
| Content-Length: 0
| HTTPOptions:
| HTTP/1.0 400 Bad Request
| Cache-Control: no-cache, no-store
| Content-Type: text/html; charset=utf-8
| Date: 2022-10-02 22:49:52.238029547 +0000 UTC
| Server: heroku-router
|_ Content-Length: 0
|_http-title: OWASP Juice Shop
| http-methods:
|_ Supported Methods: GET HEAD POST OPTIONS
|_http-cors: HEAD GET POST PUT DELETE PATCH
| http-server-header:
| Cowboy
|_ heroku-router
|_ssl-date: TLS randomness does not represent time
| ssl-cert: Subject: commonName=*.herokuapp.com
| Subject Alternative Name: DNS:*.herokuapp.com
| Issuer:
commonName=Amazon/organizationName=Amazon/countryName=US/organizationalUnitName=Ser
ver CA 1B
| Public Key type: rsa
| Public Key bits: 2048
| Signature Algorithm: sha256WithRSAEncryption
| Not valid before: 2022-05-02T00:00:00
| Not valid after: 2023-05-31T23:59:59
| MD5: db4b a263 bff3 c087 7af9 2034 e400 6ae7
| SHA-1: 2aee afbb 002b 5811 729e 1e98 c88c c782 525a 37e6
| -----BEGIN CERTIFICATE-----
| MIIF1zCCBL+gAwIBAgIQCREXZxq8B3y8LqxeIAB8bjANBgkqhkiG9w0BAQsFADBG
| MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRUwEwYDVQQLEwxTZXJ2ZXIg
| Q0EgMUIxDzANBgNVBAMTBkFtYXpvbjAeFw0yMjA1MDIwMDAwMDBaFw0yMzA1MzEy
| MzU5NTlaMBoxGDAWBgNVBAMMDyouaGVyb2t1YXBwLmNvbTCCASIwDQYJKoZIhvcN
| AQEBBQADggEPADCCAQoCggEBALSPuPZxkAtb2FMxVQkk801csnE5tlyOs2Dgt4gJ
| TVJH7gMDVVb4ru1KdCkDEfreOYEa/BChCUt9hZBltCbmXB2HlYDGqGpxCsKBIWvs
| PNm2Dle9ewc94voGgaE3Dno9lA1ig95dXi7GRiDel0DmkzeGrBqaftV/+RXcVm/V
| H1WaJDRGY2CbWG4YV795j7hXxQrgX/CeyNDLw6tnj3nOe8dxzNXQ11p489zN1YmY
| G8inseqZysw9VKC+XpAyiLN2kIY936lotPhMes6vly9VZX/KVkZ5DQk6cz1fmw64
| J6029SpaSpjoOHUrtXW71uBPxMELexFWZgwis/FHlQpFWaUCAwEAAaOCAuswggLn
| MB8GA1UdIwQYMBaAFFmkZgZSoHuVkjyjlAcnlnRb+T3QMB0GA1UdDgQWBBTqnOrR
| N2esgdBcAxurV5bJGRpNyjAaBgNVHREEEzARgg8qLmhlcm9rdWFwcC5jb20wDgYD
| VR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjA9BgNV
| HR8ENjA0MDKgMKAuhixodHRwOi8vY3JsLnNjYTFiLmFtYXpvbnRydXN0LmNvbS9z
| Y2ExYi0xLmNybDATBgNVHSAEDDAKMAgGBmeBDAECATB1BggrBgEFBQcBAQRpMGcw
| LQYIKwYBBQUHMAGGIWh0dHA6Ly9vY3NwLnNjYTFiLmFtYXpvbnRydXN0LmNvbTA2
| BggrBgEFBQcwAoYqaHR0cDovL2NydC5zY2ExYi5hbWF6b250cnVzdC5jb20vc2Nh
| MWIuY3J0MAwGA1UdEwEB/wQCMAAwggF/BgorBgEEAdZ5AgQCBIIBbwSCAWsBaQB2
| AOg+0No+9QY1MudXKLyJa8kD08vREWvs62nhd31tBr1uAAABgIMAFosAAAQDAEcw
| RQIhAOzybSY9QP4H0NCmVVxDQyMq8IXes2JSYwVpCmFuPIUeAiA+w+cl5XmSAir4
| wYaIImROZXWUywkXKnGcKCwpp/KSugB2ADXPGRu/sWxXvw+tTG1Cy7u2JyAmUeo/
| 4SrvqAPDO9ZMAAABgIMAFqsAAAQDAEcwRQIgfC0qyodn+1He3bwYauhLHcxIUVMY
| c04wSzl6uEq+nToCIQDGlSmMH9vHVG/BaWEMbZP9QyJxtg5LiV8d3CJIuZfZuwB3
| ALNzdwfhhFD4Y4bWBancEQlKeS2xZwwLh9zwAw55NqWaAAABgIMAFt4AAAQDAEgw
| RgIhAMyJlUot83rtYMP5/m3PEHpksdzuc7VTWyHG+dMvvCzvAiEAxct8uEH0BG4r
| 6fYOlCkhJL0EHq4KupOLJ2cPD7yUX8AwDQYJKoZIhvcNAQELBQADggEBAKbSRRvx
| c3fy8hc/FLN7gbGRMTPW19xVINlUKyuvweLT0zGoWBFmOJhmjV8PWZUheW3iUJ+o
| JcAs2wQ2ROv91z7JIMzjpyaXRzoNJpKCjhI95a52NW8HXlVgon+EXas5icmzKT85
| wq/SZAA5TdbD/W0yot4JwmnQmOFVMJyho/aYpt8+kBJ2x1HY366hcILvF+ZkKXoW
| UrEo1i0YFTyqEIBuJ+GRVyR5r4ly31XcoUh1XRK19ty9ae93nf572HqaJELmKpqr
| 1FqZyHiiCt0P7eQZ8o22miybqekLXo6H0wDnBT2dqM70g5YNQYQYurctqDqCG0JL
| EGRGzWxUjNZiOas=
|_-----END CERTIFICATE-----
2 services unrecognized despite returning data. If you know the service/version,
please submit the following fingerprints at https://nmap.org/cgi-bin/submit.cgi?
new-service :
==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)==============
SF-Port80-TCP:V=7.92%I=7%D=10/2%Time=633A1584%P=x86_64-pc-linux-gnu%r(GetR
SF:equest,C0,"HTTP/1\.0\x20400\x20Bad\x20Request\r\nCache-Control:\x20no-c
SF:ache,\x20no-store\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nDa
SF:te:\x202022-10-02\x2022:49:44\.504685736\x20\+0000\x20UTC\r\nServer:\x2
SF:0heroku-router\r\nContent-Length:\x200\r\n\r\n")%r(HTTPOptions,C0,"HTTP
SF:/1\.0\x20400\x20Bad\x20Request\r\nCache-Control:\x20no-cache,\x20no-sto
SF:re\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nDate:\x202022-10-
SF:02\x2022:49:44\.918572371\x20\+0000\x20UTC\r\nServer:\x20heroku-router\
SF:r\nContent-Length:\x200\r\n\r\n")%r(FourOhFourRequest,C0,"HTTP/1\.0\x20
SF:400\x20Bad\x20Request\r\nCache-Control:\x20no-cache,\x20no-store\r\nCon
SF:tent-Type:\x20text/html;\x20charset=utf-8\r\nDate:\x202022-10-02\x2022:
SF:49:55\.778317894\x20\+0000\x20UTC\r\nServer:\x20heroku-router\r\nConten
SF:t-Length:\x200\r\n\r\n");
==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)==============
SF-Port443-TCP:V=7.92%T=SSL%I=7%D=10/2%Time=633A158B%P=x86_64-pc-linux-gnu
SF:%r(GetRequest,C0,"HTTP/1\.0\x20400\x20Bad\x20Request\r\nCache-Control:\
SF:x20no-cache,\x20no-store\r\nContent-Type:\x20text/html;\x20charset=utf-
SF:8\r\nDate:\x202022-10-02\x2022:49:51\.363307766\x20\+0000\x20UTC\r\nSer
SF:ver:\x20heroku-router\r\nContent-Length:\x200\r\n\r\n")%r(HTTPOptions,C
SF:0,"HTTP/1\.0\x20400\x20Bad\x20Request\r\nCache-Control:\x20no-cache,\x2
SF:0no-store\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nDate:\x202
SF:022-10-02\x2022:49:52\.238029547\x20\+0000\x20UTC\r\nServer:\x20heroku-
SF:router\r\nContent-Length:\x200\r\n\r\n")%r(FourOhFourRequest,C0,"HTTP/1
SF:\.0\x20400\x20Bad\x20Request\r\nCache-Control:\x20no-cache,\x20no-store
SF:\r\nContent-Type:\x20text/html;\x20charset=utf-8\r\nDate:\x202022-10-02
SF:\x2022:49:53\.114415515\x20\+0000\x20UTC\r\nServer:\x20heroku-router\r\
SF:nContent-Length:\x200\r\n\r\n");
Warning: OSScan results may be unreliable because we could not find at least 1 open
and 1 closed port
OS fingerprint not ideal because: Missing a closed TCP port so results incomplete
No OS matches for host
TCP/IP fingerprint:
SCAN(V=7.92%E=4%D=10/2%OT=80%CT=%CU=%PV=N%G=N%TM=633A164A%P=x86_64-pc-linux-gnu)
SEQ(SP=FE%GCD=1%ISR=10A%TI=Z%TS=16)
OPS(O1=M5A0ST11NW9%O2=M5A0ST11NW9%O3=M5A0NNT11NW9%O4=M5A0ST11NW9%O5=M5A0ST11NW9%O6=
M5A0ST11)
WIN(W1=68DF%W2=68DF%W3=68DF%W4=68DF%W5=68DF%W6=68DF)
ECN(R=Y%DF=Y%TG=40%W=6903%O=M5A0NNSNW9%CC=Y%Q=)
T1(R=Y%DF=Y%TG=40%S=O%A=S+%F=AS%RD=0%Q=)
T2(R=Y%DF=Y%TG=20%W=80%S=A%A=S%F=AR%O=%RD=0%Q=)
T2(R=N)
T3(R=N)
T4(R=Y%DF=Y%TG=20%W=400%S=A%A=S%F=AR%O=%RD=0%Q=)
T6(R=Y%DF=Y%TG=20%W=8000%S=A%A=S%F=AR%O=%RD=0%Q=)
U1(R=N)
IE(R=N)

Uptime guess: 0.002 days (since Sun Oct 2 22:50:21 2022)


TCP Sequence Prediction: Difficulty=258 (Good luck!)
IP ID Sequence Generation: All zeros

TRACEROUTE (using port 443/tcp)


HOP RTT ADDRESS
1 4.91 ms 192.168.0.1
2 6.98 ms 192.168.80.1
3 6.28 ms 172.28.9.1
4 8.74 ms 10.20.30.1
5 5.26 ms 192.168.229.77
6 8.76 ms 58-27-237-128.wateen.net (58.27.237.128)
7 5.59 ms tw31-static54.tw1.com (117.20.31.54)
8 8.70 ms 110.93.252.172
9 6.68 ms tw255-static230.tw1.com (110.93.255.230)
10 130.52 ms be5685.rcr22.fra06.atlas.cogentco.com (149.14.211.241)
11 133.15 ms be2845.ccr41.fra03.atlas.cogentco.com (154.54.56.189)
12 140.53 ms be2813.ccr41.ams03.atlas.cogentco.com (130.117.0.121)
13 146.62 ms be12194.ccr41.lon13.atlas.cogentco.com (154.54.56.93)
14 209.43 ms be2099.ccr31.bos01.atlas.cogentco.com (154.54.82.34)
15 205.05 ms 38.140.158.98
16 ... 30

Read data files from: /usr/bin/../share/nmap


OS and Service detection performed. Please report any incorrect results at
https://nmap.org/submit/ .
# Nmap done at Sun Oct 2 22:52:58 2022 -- 1 IP address (1 host up) scanned in
579.02 seconds

You might also like