``` ┌──(root㉿kali)-[~] └─# nmap -Pn -sS -A 172.16.43.0/24 --oG nmap_result_17216430 Starting Nmap 7.93 ( https://nmap.org ) at 2023-09-13 02:55 EDT Nmap scan report for 172.16.43.0 Host is up. All 1000 scanned ports on 172.16.43.0 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.1 Host is up. All 1000 scanned ports on 172.16.43.1 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.2 Host is up. All 1000 scanned ports on 172.16.43.2 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.3 Host is up. All 1000 scanned ports on 172.16.43.3 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.4 Host is up. All 1000 scanned ports on 172.16.43.4 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.5 Host is up. All 1000 scanned ports on 172.16.43.5 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.6 Host is up. All 1000 scanned ports on 172.16.43.6 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.7 Host is up. All 1000 scanned ports on 172.16.43.7 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.8 Host is up. All 1000 scanned ports on 172.16.43.8 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.9 Host is up. All 1000 scanned ports on 172.16.43.9 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.10 Host is up. All 1000 scanned ports on 172.16.43.10 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS 1 ... 30 Nmap scan report for 172.16.43.11 Host is up (0.025s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.38 ((Debian)) |_http-server-header: Apache/2.4.38 (Debian) |_http-title: GLPI - Authentification No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=37527%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=106%GCD=1%ISR=10E%TI=Z%TS=A)SEQ(SP=106%GC OS:D=1%ISR=10E%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS 1 26.26 ms 10.6.66.1 2 21.68 ms 172.16.43.11 Nmap scan report for 172.16.43.12 Host is up (0.026s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 3306/tcp open mysql? | mysql-info: | Protocol: 10 | Version: 11.1.2-MariaDB-1:11.1.2+maria~ubu2204 | Thread ID: 2654 | Capabilities flags: 63486 | Some Capabilities: SupportsLoadDataLocal, Speaks41ProtocolOld, ODBCClient, ConnectWithDatabase, IgnoreSigpipes, SupportsCompression, FoundRows, SupportsTransactions, IgnoreSpaceBeforeParenthesis, Support41Auth, DontAllowDatabaseTableColumn, InteractiveClient, LongColumnFlag, Speaks41ProtocolNew, SupportsAuthPlugins, SupportsMultipleStatments, SupportsMultipleResults | Status: Autocommit | Salt: ydh]{pC;?gkd5z(VX6C/ |_ Auth Plugin Name: mysql_native_password | fingerprint-strings: | GenericLines: | 11.1.2-MariaDB-1:11.1.2+maria~ubu2204 | 2FIzLLv0 | (xI@E{Z3//?1 | mysql_native_password | #HY000Proxy header is not accepted from 10.6.66.8 | LDAPBindReq: | 11.1.2-MariaDB-1:11.1.2+maria~ubu2204 | pKc3sk>5 | .$igJxB{gp~I | mysql_native_password | NULL: | 11.1.2-MariaDB-1:11.1.2+maria~ubu2204 | 2FIzLLv0 | (xI@E{Z3//?1 | mysql_native_password | afp: | 11.1.2-MariaDB-1:11.1.2+maria~ubu2204 | P@.d-T>w | _Th/Nz?ffL,6 |_ mysql_native_password 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port3306-TCP:V=7.93%I=7%D=9/13%Time=65015D5B%P=x86_64-pc-linux-gnu%r(NU SF:LL,6D,"i\0\0\0\n11\.1\.2-MariaDB-1:11\.1\.2\+maria~ubu2204\0\x07\n\0\x0 SF:02FIzLLv0\0\xfe\xf7-\x02\0\xff\x81\x15\0\0\0\0\0\0\x1d\0\0\0\(xI@E{Z3// SF:\?1\0mysql_native_password\0")%r(GenericLines,A5,"i\0\0\0\n11\.1\.2-Mar SF:iaDB-1:11\.1\.2\+maria~ubu2204\0\x07\n\0\x002FIzLLv0\0\xfe\xf7-\x02\0\x SF:ff\x81\x15\0\0\0\0\0\0\x1d\0\0\0\(xI@E{Z3//\?1\0mysql_native_password\x SF:004\0\0\x01\xffj\x04#HY000Proxy\x20header\x20is\x20not\x20accepted\x20f SF:rom\x2010\.6\.66\.8")%r(LDAPBindReq,6D,"i\0\0\0\n11\.1\.2-MariaDB-1:11\ SF:.1\.2\+maria~ubu2204\0\x19\n\0\0pKc3sk>5\0\xfe\xf7-\x02\0\xff\x81\x15\0 SF:\0\0\0\0\0\x1d\0\0\0\.\$igJxB{gp~I\0mysql_native_password\0")%r(afp,6D, SF:"i\0\0\0\n11\.1\.2-MariaDB-1:11\.1\.2\+maria~ubu2204\0#\n\0\0P@\.d-T>w\ SF:0\xfe\xf7-\x02\0\xff\x81\x15\0\0\0\0\0\0\x1d\0\0\0_Th/Nz\?ffL,6\0mysql_ SF:native_password\0"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=3306%CT=1%CU=37936%PV=Y%DS=2%DC=T%G=Y%TM=65016 OS:020%P=x86_64-pc-linux-gnu)SEQ(SP=107%GCD=1%ISR=105%TI=Z%TS=A)SEQ(SP=106% OS:GCD=1%ISR=105%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NN OS:T11NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3= OS:FE88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y% OS:Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF OS:=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL= OS:164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 587/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.82 ms 172.16.43.12 Nmap scan report for 172.16.43.13 Host is up (0.024s latency). Not shown: 988 filtered tcp ports (no-response) PORT STATE SERVICE VERSION 53/tcp open domain Simple DNS Plus 88/tcp open kerberos-sec Microsoft Windows Kerberos (server time: 2023-09-13 06:57:33Z) 135/tcp open msrpc Microsoft Windows RPC 139/tcp open netbios-ssn Microsoft Windows netbios-ssn 389/tcp open ldap Microsoft Windows Active Directory LDAP (Domain: e-corp-houston2.lan0., Site: Default-First-Site-Name) 445/tcp open microsoft-ds? 464/tcp open kpasswd5? 593/tcp open ncacn_http Microsoft Windows RPC over HTTP 1.0 636/tcp open tcpwrapped 3268/tcp open ldap Microsoft Windows Active Directory LDAP (Domain: e-corp-houston2.lan0., Site: Default-First-Site-Name) 3269/tcp open tcpwrapped 3389/tcp open ms-wbt-server Microsoft Terminal Services | rdp-ntlm-info: | Target_Name: E-CORP-HOUSTON2 | NetBIOS_Domain_Name: E-CORP-HOUSTON2 | NetBIOS_Computer_Name: EH2-AD01 | DNS_Domain_Name: e-corp-houston2.lan | DNS_Computer_Name: EH2-AD01.e-corp-houston2.lan | DNS_Tree_Name: e-corp-houston2.lan | Product_Version: 10.0.17763 |_ System_Time: 2023-09-13T07:08:18+00:00 |_ssl-date: 2023-09-13T07:09:04+00:00; +3s from scanner time. | ssl-cert: Subject: commonName=EH2-AD01.e-corp-houston2.lan | Not valid before: 2023-09-03T07:19:04 |_Not valid after: 2024-03-04T07:19:04 Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port OS fingerprint not ideal because: Missing a closed TCP port so results incomplete No OS matches for host Network Distance: 2 hops Service Info: Host: EH2-AD01; OS: Windows; CPE: cpe:/o:microsoft:windows Host script results: | smb2-security-mode: | 311: |_ Message signing enabled and required |_clock-skew: mean: 3s, deviation: 0s, median: 3s | smb2-time: | date: 2023-09-13T07:07:47 |_ start_date: N/A TRACEROUTE (using port 135/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 23.14 ms 172.16.43.13 Nmap scan report for 172.16.43.14 Host is up (0.026s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.10 ((Debian)) |_http-server-header: Apache/2.4.10 (Debian) |_http-title: Annuaire T\xC3\xA9l\xC3\xA9phonique E-Corp No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=30671%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=100%GCD=1%ISR=10D%TI=Z%TS=A)SEQ(SP=100%GC OS:D=1%ISR=10D%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.85 ms 172.16.43.14 Nmap scan report for 172.16.43.15 Host is up. All 1000 scanned ports on 172.16.43.15 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.16 Host is up (0.026s latency). Not shown: 997 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh OpenSSH 6.6.1p1 Ubuntu 2ubuntu2.8 (Ubuntu Linux; protocol 2.0) | ssh-hostkey: | 1024 509c5f34486f64bcb73cb376b3856d9d (DSA) | 2048 a7057c8603a68b3db7d157fa74776043 (RSA) | 256 acd68e877b0f18824ffbeae61cfbb421 (ECDSA) |_ 256 2016cdc4bbc89db8d739025abc452d7a (ED25519) 80/tcp open http nginx | http-robots.txt: 52 disallowed entries (15 shown) | / /autocomplete/users /search /api /admin /profile | /dashboard /projects/new /groups/new /groups/*/edit /users /s/ |_/snippets/new /snippets/*/edit /snippets/*/raw |_http-trane-info: Problem with XML parsing of /evox/about | http-title: Sign in \xC2\xB7 GitLab |_Requested resource was http://172.16.43.16/users/sign_in 8181/tcp open intermapper? | fingerprint-strings: | GenericLines, SSLSessionReq: | HTTP/1.1 400 Bad Request | GetRequest: | HTTP/1.0 302 Found | Cache-Control: no-cache | Content-Type: text/html; charset=utf-8 | Date: Wed, 13 Sep 2023 06:57:35 GMT | Location: http://127.0.0.1:8080/users/sign_in | Set-Cookie: _gitlab_session=892ef35f7d5ad99372b495a6f26ffe41; path=/; HttpOnly | X-Content-Type-Options: nosniff | X-Frame-Options: SAMEORIGIN | X-Request-Id: 2cfc5644-2642-4d85-ac86-e4d22af7eb29 | X-Runtime: 0.069858 | X-Xss-Protection: 1; mode=block | Content-Length: 101 | <html><body>You are being <a href="http://127.0.0.1:8080/users/sign_in">redirected</a>.</body></html> | HTTPOptions: | HTTP/1.0 404 Not Found | Cache-Control: no-cache, no-store, max-age=0, must-revalidate | Content-Length: 2440 | Content-Type: text/html; charset=utf-8 | Date: Wed, 13 Sep 2023 06:57:36 GMT | Expires: Fri, 01 Jan 1990 00:00:00 GMT | Pragma: no-cache | X-Request-Id: 8ee6d1bb-a2db-4a76-9d99-079be4d5c226 | X-Runtime: 0.027605 | <!DOCTYPE html> | <html> | <head> | <meta content="width=device-width, initial-scale=1, maximum-scale=1" name="viewport"> | <title>The page you're looking for could not be found (404)</title> | <style> | body { | color: #666; | text-align: center; | font-family: "Helvetica Neue", Helvetica, Arial, sans-serif; | margin: auto; | font-size: 14px; | font-size: 56px; | line-height: 100px; | font-weight: normal; | color: #456; | font-size: 24px; | color: #666; |_ line-height: 1.5em; 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port8181-TCP:V=7.93%I=7%D=9/13%Time=65015D5B%P=x86_64-pc-linux-gnu%r(Ge SF:tRequest,21D,"HTTP/1\.0\x20302\x20Found\r\nCache-Control:\x20no-cache\r SF:\nContent-Type:\x20text/html;\x20charset=utf-8\r\nDate:\x20Wed,\x2013\x SF:20Sep\x202023\x2006:57:35\x20GMT\r\nLocation:\x20http://127\.0\.0\.1:80 SF:80/users/sign_in\r\nSet-Cookie:\x20_gitlab_session=892ef35f7d5ad99372b4 SF:95a6f26ffe41;\x20path=/;\x20HttpOnly\r\nX-Content-Type-Options:\x20nosn SF:iff\r\nX-Frame-Options:\x20SAMEORIGIN\r\nX-Request-Id:\x202cfc5644-2642 SF:-4d85-ac86-e4d22af7eb29\r\nX-Runtime:\x200\.069858\r\nX-Xss-Protection: SF:\x201;\x20mode=block\r\nContent-Length:\x20101\r\n\r\n<html><body>You\x SF:20are\x20being\x20<a\x20href=\"http://127\.0\.0\.1:8080/users/sign_in\" SF:>redirected</a>\.</body></html>")%r(SSLSessionReq,1C,"HTTP/1\.1\x20400\ SF:x20Bad\x20Request\r\n\r\n")%r(GenericLines,1C,"HTTP/1\.1\x20400\x20Bad\ SF:x20Request\r\n\r\n")%r(HTTPOptions,AC7,"HTTP/1\.0\x20404\x20Not\x20Foun SF:d\r\nCache-Control:\x20no-cache,\x20no-store,\x20max-age=0,\x20must-rev SF:alidate\r\nContent-Length:\x202440\r\nContent-Type:\x20text/html;\x20ch SF:arset=utf-8\r\nDate:\x20Wed,\x2013\x20Sep\x202023\x2006:57:36\x20GMT\r\ SF:nExpires:\x20Fri,\x2001\x20Jan\x201990\x2000:00:00\x20GMT\r\nPragma:\x2 SF:0no-cache\r\nX-Request-Id:\x208ee6d1bb-a2db-4a76-9d99-079be4d5c226\r\nX SF:-Runtime:\x200\.027605\r\n\r\n<!DOCTYPE\x20html>\n<html>\n<head>\n\x20\ SF:x20<meta\x20content=\"width=device-width,\x20initial-scale=1,\x20maximu SF:m-scale=1\"\x20name=\"viewport\">\n\x20\x20<title>The\x20page\x20you're SF:\x20looking\x20for\x20could\x20not\x20be\x20found\x20\(404\)</title>\n\ SF:x20\x20<style>\n\x20\x20\x20\x20body\x20{\n\x20\x20\x20\x20\x20\x20colo SF:r:\x20#666;\n\x20\x20\x20\x20\x20\x20text-align:\x20center;\n\x20\x20\x SF:20\x20\x20\x20font-family:\x20\"Helvetica\x20Neue\",\x20Helvetica,\x20A SF:rial,\x20sans-serif;\n\x20\x20\x20\x20\x20\x20margin:\x20auto;\n\x20\x2 SF:0\x20\x20\x20\x20font-size:\x2014px;\n\x20\x20\x20\x20}\n\n\x20\x20\x20 SF:\x20h1\x20{\n\x20\x20\x20\x20\x20\x20font-size:\x2056px;\n\x20\x20\x20\ SF:x20\x20\x20line-height:\x20100px;\n\x20\x20\x20\x20\x20\x20font-weight: SF:\x20normal;\n\x20\x20\x20\x20\x20\x20color:\x20#456;\n\x20\x20\x20\x20} SF:\n\n\x20\x20\x20\x20h2\x20{\n\x20\x20\x20\x20\x20\x20font-size:\x2024px SF:;\n\x20\x20\x20\x20\x20\x20color:\x20#666;\n\x20\x20\x20\x20\x20\x20lin SF:e-height:\x201\.5em;\n\x20\x20\x20\x20}\n\n\x20\x20\x20\x20h3\x20{\n\x2 SF:0\x20\x20\x20\x20\x20"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=32329%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=1%ISR=109%TI=Z%TS=A)SEQ(SP=FF%GCD= OS:1%ISR=109%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11N OS:W7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88 OS:%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T OS:1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T OS:=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164% OS:UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.76 ms 172.16.43.16 Nmap scan report for 172.16.43.17 Host is up (0.026s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 5432/tcp open postgresql PostgreSQL DB 11.6 - 11.7 (Docker alpine image) No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=5432%CT=1%CU=33655%PV=Y%DS=2%DC=T%G=Y%TM=65016 OS:020%P=x86_64-pc-linux-gnu)SEQ(SP=106%GCD=1%ISR=10B%TI=Z%TS=A)SEQ(SP=106% OS:GCD=1%ISR=10B%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NN OS:T11NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3= OS:FE88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y% OS:Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF OS:=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL= OS:164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.79 ms 172.16.43.17 Nmap scan report for 172.16.43.18 Host is up (0.024s latency). All 1000 scanned ports on 172.16.43.18 are in ignored states. Not shown: 1000 closed tcp ports (reset) Too many fingerprints match this host to give specific OS details Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.83 ms 172.16.43.18 Nmap scan report for 172.16.43.19 Host is up (0.028s latency). Not shown: 998 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh OpenSSH 8.9p1 Ubuntu 3ubuntu0.3 (Ubuntu Linux; protocol 2.0) | ssh-hostkey: | 256 cd1743a5a10df637ad30dd7857fb9a49 (ECDSA) |_ 256 1cfb6f268ccfcc97d0a04e0fedfb36c5 (ED25519) 80/tcp open http Apache httpd 2.4.52 |_http-server-header: Apache/2.4.52 (Ubuntu) |_http-title: 403 Forbidden No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=44619%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=2%ISR=10E%TI=Z%TS=A)SEQ(SP=100%GCD OS:=1%ISR=10D%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11 OS:NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE8 OS:8%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=) OS:T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y% OS:T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164 OS:%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops Service Info: Host: 172.16.43.19; OS: Linux; CPE: cpe:/o:linux:linux_kernel TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.87 ms 172.16.43.19 Nmap scan report for 172.16.43.20 Host is up. All 1000 scanned ports on 172.16.43.20 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.21 Host is up (0.028s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.52 ((Debian)) |_http-server-header: Apache/2.4.52 (Debian) |_http-title: Site doesn't have a title (text/html). No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=35509%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=107%TI=Z%TS=A)SEQ(SP=102%GC OS:D=1%ISR=107%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 22.19 ms 172.16.43.21 Nmap scan report for 172.16.43.22 Host is up. All 1000 scanned ports on 172.16.43.22 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.23 Host is up. All 1000 scanned ports on 172.16.43.23 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.24 Host is up. All 1000 scanned ports on 172.16.43.24 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.25 Host is up (0.028s latency). Not shown: 997 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.52 ((Ubuntu)) |_http-server-header: Apache/2.4.52 (Ubuntu) |_http-title: D\xC3\xA9p\xC3\xB4t NDF 139/tcp open netbios-ssn Samba smbd 4.6.2 445/tcp open netbios-ssn Samba smbd 4.6.2 No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=43799%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=104%GCD=1%ISR=10B%TI=Z%TS=A)SEQ(SP=104%GC OS:D=1%ISR=10B%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops Host script results: |_clock-skew: 4s | smb2-time: | date: 2023-09-13T07:08:05 |_ start_date: N/A | smb2-security-mode: | 311: |_ Message signing enabled but not required TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.92 ms 172.16.43.25 Nmap scan report for 172.16.43.26 Host is up (0.028s latency). Not shown: 998 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.38 ((Ubuntu)) 443/tcp open tcpwrapped No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=32281%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=10A%TI=Z%TS=A)SEQ(SP=102%GC OS:D=1%ISR=10A%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 21.98 ms 172.16.43.26 Nmap scan report for 172.16.43.27 Host is up (0.029s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.38 ((Debian)) |_http-server-header: Apache/2.4.38 (Debian) |_http-title: 404 Not Found No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=38479%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=100%GCD=1%ISR=10D%TI=Z%TS=A)SEQ(SP=100%GC OS:D=1%ISR=10C%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 22.03 ms 172.16.43.27 Nmap scan report for 172.16.43.28 Host is up (0.029s latency). Not shown: 998 closed tcp ports (reset) PORT STATE SERVICE VERSION 80/tcp open http Apache httpd 2.4.38 ((Ubuntu)) |_http-server-header: Apache/2.4.38 (Ubuntu) |_http-title: 404 Not Found 443/tcp open tcpwrapped No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=39103%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=10C%TI=Z%TS=A)SEQ(SP=102%GC OS:D=1%ISR=10C%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 24.29 ms 172.16.43.28 Nmap scan report for 172.16.43.29 Host is up. All 1000 scanned ports on 172.16.43.29 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.30 Host is up (0.029s latency). Not shown: 998 closed tcp ports (reset) PORT STATE SERVICE VERSION 25/tcp open smtp? |_smtp-commands: e-corp-houston2.lan | fingerprint-strings: | DNSStatusRequestTCP, DNSVersionBindReqTCP, NULL, RPCCheck, SMBProgNeg, X11Probe: | 220 e-corp-houston2.lan Postfix | FourOhFourRequest, GenericLines, GetRequest, HTTPOptions, RTSPRequest: | 220 e-corp-houston2.lan Postfix | 5.5.1 Error: unknown command | 5.5.1 Error: unknown command | Hello: | 220 e-corp-houston2.lan Postfix | Syntax: EHLO hostname | Help: | 220 e-corp-houston2.lan Postfix | 214-Commands supported: | 214- HELO MAIL RCPT DATA | 214- RSET NOOP QUIT EXPN | 214- HELP VRFY EHLO AUTH | 214- ETRN STARTTLS | more info use "HELP <topic>". | Kerberos, SSLSessionReq, TLSSessionReq, TerminalServerCookie: | 220 e-corp-houston2.lan Postfix |_ 5.5.1 Error: unknown command 465/tcp open tcpwrapped |_smtp-commands: Couldn't establish connection on port 465 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port25-TCP:V=7.93%I=7%D=9/13%Time=65015D61%P=x86_64-pc-linux-gnu%r(NULL SF:,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(Hello,3C,"220\x20e- SF:corp-houston2\.lan\x20Postfix\r\n501\x20Syntax:\x20EHLO\x20hostname\r\n SF:")%r(Help,CF,"220\x20e-corp-houston2\.lan\x20Postfix\r\n214-Commands\x2 SF:0supported:\r\n214-\x20\x20\x20\x20HELO\x20MAIL\x20RCPT\x20DATA\r\n214- SF:\x20\x20\x20\x20RSET\x20NOOP\x20QUIT\x20EXPN\r\n214-\x20\x20\x20\x20HEL SF:P\x20VRFY\x20EHLO\x20AUTH\r\n214-\x20\x20\x20\x20ETRN\x20STARTTLS\r\n21 SF:4\x20For\x20more\x20info\x20use\x20\"HELP\x20<topic>\"\.\r\n")%r(Generi SF:cLines,65,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20 SF:Error:\x20unknown\x20command\r\n500\x205\.5\.1\x20Error:\x20unknown\x20 SF:command\r\n")%r(GetRequest,65,"220\x20e-corp-houston2\.lan\x20Postfix\r SF:\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n500\x205\.5\.1\x20E SF:rror:\x20unknown\x20command\r\n")%r(HTTPOptions,65,"220\x20e-corp-houst SF:on2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r SF:\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n")%r(RTSPRequest,65 SF:,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Error:\x2 SF:0unknown\x20command\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r SF:\n")%r(RPCCheck,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(DNSV SF:ersionBindReqTCP,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(DNS SF:StatusRequestTCP,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(SSL SF:SessionReq,43,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1 SF:\x20Error:\x20unknown\x20command\r\n")%r(TerminalServerCookie,43,"220\x SF:20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Error:\x20unknow SF:n\x20command\r\n")%r(TLSSessionReq,43,"220\x20e-corp-houston2\.lan\x20P SF:ostfix\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n")%r(Kerber SF:os,43,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Erro SF:r:\x20unknown\x20command\r\n")%r(SMBProgNeg,21,"220\x20e-corp-houston2\ SF:.lan\x20Postfix\r\n")%r(X11Probe,21,"220\x20e-corp-houston2\.lan\x20Pos SF:tfix\r\n")%r(FourOhFourRequest,65,"220\x20e-corp-houston2\.lan\x20Postf SF:ix\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n500\x205\.5\.1\ SF:x20Error:\x20unknown\x20command\r\n"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=25%CT=1%CU=43107%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=10A%GCD=1%ISR=107%TI=Z%TS=A)SEQ(SP=109%GC OS:D=1%ISR=107%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 23.72 ms 172.16.43.30 Nmap scan report for 172.16.43.31 Host is up (0.031s latency). Not shown: 998 closed tcp ports (reset) PORT STATE SERVICE VERSION 21/tcp open ftp ProFTPD 1.3.8 |_ftp-bounce: bounce working! | ftp-anon: Anonymous FTP login allowed (FTP code 230) |_Can't get directory listing: PASV failed: 500 Unknown command. | ftp-syst: | STAT: | FTP server status: | Connected to 172.16.43.31 | Logged in as anonymous | TYPE: ASCII | Session timeout in seconds is 120 | Control connection is plain text | Data connections will be plain text | Maximum file size is 2000000 bytes | ProFTPD 1.3.8 Server |_End of status 80/tcp open http Apache httpd 2.4.26 ((Debian)) |_http-server-header: Apache/2.4.26 (Debian) |_http-title: 404 Not Found No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=21%CT=1%CU=36661%PV=Y%DS=2%DC=T%G=Y%TM=6501602 OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=100%GCD=1%ISR=108%TI=Z%TS=A)SEQ(SP=FF%GCD OS:=1%ISR=108%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11 OS:NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE8 OS:8%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=) OS:T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y% OS:T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164 OS:%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops Service Info: OS: Unix TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 24.55 ms 172.16.43.31 Nmap scan report for 172.16.43.32 Host is up. All 1000 scanned ports on 172.16.43.32 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.33 Host is up. All 1000 scanned ports on 172.16.43.33 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.34 Host is up. All 1000 scanned ports on 172.16.43.34 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.35 Host is up (0.028s latency). All 1000 scanned ports on 172.16.43.35 are in ignored states. Not shown: 1000 closed tcp ports (reset) Too many fingerprints match this host to give specific OS details Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 27.41 ms 172.16.43.35 Nmap scan report for 172.16.43.36 Host is up. All 1000 scanned ports on 172.16.43.36 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.37 Host is up. All 1000 scanned ports on 172.16.43.37 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.38 Host is up. All 1000 scanned ports on 172.16.43.38 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.39 Host is up. All 1000 scanned ports on 172.16.43.39 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.40 Host is up. All 1000 scanned ports on 172.16.43.40 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.41 Host is up. All 1000 scanned ports on 172.16.43.41 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.42 Host is up. All 1000 scanned ports on 172.16.43.42 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.43 Host is up. All 1000 scanned ports on 172.16.43.43 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.44 Host is up. All 1000 scanned ports on 172.16.43.44 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.45 Host is up. All 1000 scanned ports on 172.16.43.45 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.46 Host is up. All 1000 scanned ports on 172.16.43.46 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.47 Host is up. All 1000 scanned ports on 172.16.43.47 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.48 Host is up. All 1000 scanned ports on 172.16.43.48 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.49 Host is up. All 1000 scanned ports on 172.16.43.49 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.50 Host is up. All 1000 scanned ports on 172.16.43.50 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.51 Host is up. All 1000 scanned ports on 172.16.43.51 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.52 Host is up. All 1000 scanned ports on 172.16.43.52 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.53 Host is up. All 1000 scanned ports on 172.16.43.53 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.54 Host is up. All 1000 scanned ports on 172.16.43.54 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.55 Host is up. All 1000 scanned ports on 172.16.43.55 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.56 Host is up. All 1000 scanned ports on 172.16.43.56 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.57 Host is up. All 1000 scanned ports on 172.16.43.57 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.58 Host is up. All 1000 scanned ports on 172.16.43.58 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.59 Host is up. All 1000 scanned ports on 172.16.43.59 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.60 Host is up. All 1000 scanned ports on 172.16.43.60 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.61 Host is up. All 1000 scanned ports on 172.16.43.61 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.62 Host is up. All 1000 scanned ports on 172.16.43.62 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Nmap scan report for 172.16.43.63 Host is up. All 1000 scanned ports on 172.16.43.63 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.11 2 ... 30 Stats: 0:17:31 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 35.38% done; ETC: 03:17 (0:04:08 remaining) Stats: 0:17:32 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 36.39% done; ETC: 03:17 (0:03:59 remaining) Stats: 0:17:33 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 36.39% done; ETC: 03:17 (0:04:01 remaining) Stats: 0:23:05 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:43 remaining) Stats: 0:23:06 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:44 remaining) Stats: 0:23:06 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:44 remaining) Stats: 0:23:07 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:44 remaining) Nmap scan report for 172.16.43.64 Host is up. All 1000 scanned ports on 172.16.43.64 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.65 Host is up. All 1000 scanned ports on 172.16.43.65 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.66 Host is up. All 1000 scanned ports on 172.16.43.66 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.67 Host is up. All 1000 scanned ports on 172.16.43.67 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.68 Host is up. All 1000 scanned ports on 172.16.43.68 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.69 Host is up. All 1000 scanned ports on 172.16.43.69 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.70 Host is up. All 1000 scanned ports on 172.16.43.70 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.71 Host is up. All 1000 scanned ports on 172.16.43.71 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.72 Host is up. All 1000 scanned ports on 172.16.43.72 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.73 Host is up. All 1000 scanned ports on 172.16.43.73 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.74 Host is up. All 1000 scanned ports on 172.16.43.74 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.75 Host is up. All 1000 scanned ports on 172.16.43.75 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.76 Host is up. All 1000 scanned ports on 172.16.43.76 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.77 Host is up. All 1000 scanned ports on 172.16.43.77 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.78 Host is up. All 1000 scanned ports on 172.16.43.78 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.79 Host is up. All 1000 scanned ports on 172.16.43.79 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.80 Host is up. All 1000 scanned ports on 172.16.43.80 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.81 Host is up. All 1000 scanned ports on 172.16.43.81 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.82 Host is up. All 1000 scanned ports on 172.16.43.82 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.83 Host is up. All 1000 scanned ports on 172.16.43.83 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.84 Host is up. All 1000 scanned ports on 172.16.43.84 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.85 Host is up. All 1000 scanned ports on 172.16.43.85 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.86 Host is up. All 1000 scanned ports on 172.16.43.86 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.87 Host is up. All 1000 scanned ports on 172.16.43.87 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.88 Host is up. All 1000 scanned ports on 172.16.43.88 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.89 Host is up. All 1000 scanned ports on 172.16.43.89 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.90 Host is up. All 1000 scanned ports on 172.16.43.90 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.91 Host is up. All 1000 scanned ports on 172.16.43.91 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.92 Host is up. All 1000 scanned ports on 172.16.43.92 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.93 Host is up. All 1000 scanned ports on 172.16.43.93 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.94 Host is up. All 1000 scanned ports on 172.16.43.94 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.95 Host is up. All 1000 scanned ports on 172.16.43.95 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.96 Host is up. All 1000 scanned ports on 172.16.43.96 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.97 Host is up. All 1000 scanned ports on 172.16.43.97 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.98 Host is up. All 1000 scanned ports on 172.16.43.98 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.99 Host is up. All 1000 scanned ports on 172.16.43.99 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.100 Host is up. All 1000 scanned ports on 172.16.43.100 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.101 Host is up (0.025s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x1d\x9f_O\xcdhK\xa2\ SF:xb0\x11Ii\xd2O\xb4\xeb\0\0\x006diffie-hellman-group1-sha1,diffie-hellma SF:n-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-ctr, SF:aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\ SF:0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cas SF:t128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac- SF:sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\0\0 SF:\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xfc\xa9\xf5x"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=44358%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=1%ISR=10E%TI=Z%TS=A)SEQ(SP=FF%GCD= OS:1%ISR=10E%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11N OS:W7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88 OS:%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T OS:1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T OS:=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164% OS:UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS 1 27.91 ms 10.6.66.1 2 24.40 ms 172.16.43.101 Nmap scan report for 172.16.43.102 Host is up (0.025s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\xc3\x88\xf9\x12\x8c\ SF:\\[\xc2\xadl\xe5\x020\xe0u\xfa\0\0\x006diffie-hellman-group1-sha1,diffi SF:e-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes SF:192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des- SF:cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128 SF:-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-2 SF:56,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac SF:-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xee\xf SF:5\]\xca"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=34213%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=103%GCD=1%ISR=108%TI=Z%II=I%TS=A)OPS(O1=M OS:551ST11NW7%O2=M551ST11NW7%O3=M551NNT11NW7%O4=M551ST11NW7%O5=M551ST11NW7% OS:O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y% OS:DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD= OS:0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=) OS:T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G% OS:RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 24.51 ms 172.16.43.102 Nmap scan report for 172.16.43.103 Host is up (0.026s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\xf9\x16\x9a\xb0\x1a\ SF:x12\xe5\xc4\xaa\xce\xae\xc19\xfc\xa1Q\0\0\x006diffie-hellman-group1-sha SF:1,diffie-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256- SF:cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cb SF:c,3des-cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr SF:,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac SF:-sha2-256,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sh SF:a1,hmac-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0 SF:\x1f\xa2\xb9\xca"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=42271%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=104%GCD=1%ISR=109%TI=Z%TS=A)SEQ(SP=104%GC OS:D=2%ISR=109%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 24.58 ms 172.16.43.103 Nmap scan report for 172.16.43.104 Host is up (0.026s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x1dT\x9d\xf0\x85V\x0 SF:e\x98\xf5\x17\xa2\xe0\x9e\xb1\xe0\x95\0\0\x006diffie-hellman-group1-sha SF:1,diffie-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256- SF:cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cb SF:c,3des-cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr SF:,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac SF:-sha2-256,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sh SF:a1,hmac-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0 SF:\x9eC\x9ao"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=34247%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=107%GCD=1%ISR=10D%TI=Z%TS=A)SEQ(SP=107%GC OS:D=2%ISR=10D%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 22.17 ms 172.16.43.104 Nmap scan report for 172.16.43.105 Host is up (0.026s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x08/Y\x0br\xe3\x14\x SF:dcIk\xd3\xbdv\xae\xc0\xa4\0\0\x006diffie-hellman-group1-sha1,diffie-hel SF:lman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-c SF:tr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0 SF:\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc, SF:cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hm SF:ac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\ SF:0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xc3Y\xa6\xa SF:a"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=43887%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=F6%GCD=1%ISR=111%TI=Z%TS=A)SEQ(SP=F6%GCD= OS:1%ISR=110%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11N OS:W7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88 OS:%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T OS:1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T OS:=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164% OS:UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 22.17 ms 172.16.43.105 Nmap scan report for 172.16.43.106 Host is up (0.027s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | pelv | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\xbc\xc2\xc8\xacpelv\ SF:xf1o\xa3\xcc\x94U\x97\xda\0\0\x006diffie-hellman-group1-sha1,diffie-hel SF:lman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-c SF:tr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0 SF:\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc, SF:cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hm SF:ac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\ SF:0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0T\n\xdd\x84" SF:); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=40258%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=10A%TI=Z%II=I%TS=A)SEQ(SP=1 OS:03%GCD=1%ISR=10A%TI=Z%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 22.20 ms 172.16.43.106 Nmap scan report for 172.16.43.107 Host is up (0.027s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x08t\xcd\x85\^\xab\x SF:1c\n\x01j\xb3\n\xbf\xc5\xf1\xf2\0\0\x006diffie-hellman-group1-sha1,diff SF:ie-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,ae SF:s192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des SF:-cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes12 SF:8-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2- SF:256,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hma SF:c-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\x0e6\ SF:x05\\"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=43603%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=108%TI=Z%II=I%TS=A)SEQ(SP=1 OS:02%GCD=1%ISR=108%TI=Z%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 21.85 ms 172.16.43.107 Nmap scan report for 172.16.43.108 Host is up (0.028s latency). Not shown: 999 closed tcp ports (reset) PORT STATE SERVICE VERSION 22/tcp open ssh (protocol 2.0) | fingerprint-strings: | NULL: | SSH-2.0-Cisco-1.25 | 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1 | ssh-rsa | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5 | none,zlib |_ none,zlib 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service : SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14v\xcf\xa65\x20c\n\+\x SF:19I\[v\x06i\xe5\x0b\0\0\x006diffie-hellman-group1-sha1,diffie-hellman-g SF:roup14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes SF:192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0ca SF:es256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast12 SF:8-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha SF:1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\0\0\0\ SF:tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xde\$\x1ex"); No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ). TCP/IP fingerprint: OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=38365%PV=Y%DS=2%DC=T%G=Y%TM=6501629 OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=105%GCD=1%ISR=10C%TI=Z%TS=A)SEQ(SP=105%GC OS:D=1%ISR=10C%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1 OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q= OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16 OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S) Network Distance: 2 hops TRACEROUTE (using port 3306/tcp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 21.90 ms 172.16.43.108 Nmap scan report for 172.16.43.109 Host is up. All 1000 scanned ports on 172.16.43.109 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.110 Host is up. All 1000 scanned ports on 172.16.43.110 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.111 Host is up. All 1000 scanned ports on 172.16.43.111 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.112 Host is up. All 1000 scanned ports on 172.16.43.112 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.113 Host is up. All 1000 scanned ports on 172.16.43.113 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.114 Host is up. All 1000 scanned ports on 172.16.43.114 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.115 Host is up. All 1000 scanned ports on 172.16.43.115 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.116 Host is up. All 1000 scanned ports on 172.16.43.116 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.117 Host is up. All 1000 scanned ports on 172.16.43.117 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.118 Host is up. All 1000 scanned ports on 172.16.43.118 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.119 Host is up. All 1000 scanned ports on 172.16.43.119 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.120 Host is up. All 1000 scanned ports on 172.16.43.120 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.121 Host is up. All 1000 scanned ports on 172.16.43.121 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.122 Host is up. All 1000 scanned ports on 172.16.43.122 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.123 Host is up. All 1000 scanned ports on 172.16.43.123 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.124 Host is up. All 1000 scanned ports on 172.16.43.124 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.125 Host is up. All 1000 scanned ports on 172.16.43.125 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.126 Host is up. All 1000 scanned ports on 172.16.43.126 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 Nmap scan report for 172.16.43.127 Host is up. All 1000 scanned ports on 172.16.43.127 are in ignored states. Not shown: 1000 filtered tcp ports (no-response) Too many fingerprints match this host to give specific OS details TRACEROUTE (using proto 1/icmp) HOP RTT ADDRESS - Hop 1 is the same as for 172.16.43.101 2 ... 30 ```