```
┌──(root㉿kali)-[~]
└─# nmap -Pn -sS -A 172.16.43.0/24 --oG nmap_result_17216430
Starting Nmap 7.93 ( https://nmap.org ) at 2023-09-13 02:55 EDT
Nmap scan report for 172.16.43.0
Host is up.
All 1000 scanned ports on 172.16.43.0 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.1
Host is up.
All 1000 scanned ports on 172.16.43.1 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.2
Host is up.
All 1000 scanned ports on 172.16.43.2 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.3
Host is up.
All 1000 scanned ports on 172.16.43.3 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.4
Host is up.
All 1000 scanned ports on 172.16.43.4 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.5
Host is up.
All 1000 scanned ports on 172.16.43.5 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.6
Host is up.
All 1000 scanned ports on 172.16.43.6 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.7
Host is up.
All 1000 scanned ports on 172.16.43.7 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.8
Host is up.
All 1000 scanned ports on 172.16.43.8 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.9
Host is up.
All 1000 scanned ports on 172.16.43.9 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.10
Host is up.
All 1000 scanned ports on 172.16.43.10 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
1 ... 30
Nmap scan report for 172.16.43.11
Host is up (0.025s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.38 ((Debian))
|_http-server-header: Apache/2.4.38 (Debian)
|_http-title: GLPI - Authentification
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=37527%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=106%GCD=1%ISR=10E%TI=Z%TS=A)SEQ(SP=106%GC
OS:D=1%ISR=10E%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
1 26.26 ms 10.6.66.1
2 21.68 ms 172.16.43.11
Nmap scan report for 172.16.43.12
Host is up (0.026s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
3306/tcp open mysql?
| mysql-info:
| Protocol: 10
| Version: 11.1.2-MariaDB-1:11.1.2+maria~ubu2204
| Thread ID: 2654
| Capabilities flags: 63486
| Some Capabilities: SupportsLoadDataLocal, Speaks41ProtocolOld, ODBCClient, ConnectWithDatabase, IgnoreSigpipes, SupportsCompression, FoundRows, SupportsTransactions, IgnoreSpaceBeforeParenthesis, Support41Auth, DontAllowDatabaseTableColumn, InteractiveClient, LongColumnFlag, Speaks41ProtocolNew, SupportsAuthPlugins, SupportsMultipleStatments, SupportsMultipleResults
| Status: Autocommit
| Salt: ydh]{pC;?gkd5z(VX6C/
|_ Auth Plugin Name: mysql_native_password
| fingerprint-strings:
| GenericLines:
| 11.1.2-MariaDB-1:11.1.2+maria~ubu2204
| 2FIzLLv0
| (xI@E{Z3//?1
| mysql_native_password
| #HY000Proxy header is not accepted from 10.6.66.8
| LDAPBindReq:
| 11.1.2-MariaDB-1:11.1.2+maria~ubu2204
| pKc3sk>5
| .$igJxB{gp~I
| mysql_native_password
| NULL:
| 11.1.2-MariaDB-1:11.1.2+maria~ubu2204
| 2FIzLLv0
| (xI@E{Z3//?1
| mysql_native_password
| afp:
| 11.1.2-MariaDB-1:11.1.2+maria~ubu2204
| P@.d-T>w
| _Th/Nz?ffL,6
|_ mysql_native_password
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port3306-TCP:V=7.93%I=7%D=9/13%Time=65015D5B%P=x86_64-pc-linux-gnu%r(NU
SF:LL,6D,"i\0\0\0\n11\.1\.2-MariaDB-1:11\.1\.2\+maria~ubu2204\0\x07\n\0\x0
SF:02FIzLLv0\0\xfe\xf7-\x02\0\xff\x81\x15\0\0\0\0\0\0\x1d\0\0\0\(xI@E{Z3//
SF:\?1\0mysql_native_password\0")%r(GenericLines,A5,"i\0\0\0\n11\.1\.2-Mar
SF:iaDB-1:11\.1\.2\+maria~ubu2204\0\x07\n\0\x002FIzLLv0\0\xfe\xf7-\x02\0\x
SF:ff\x81\x15\0\0\0\0\0\0\x1d\0\0\0\(xI@E{Z3//\?1\0mysql_native_password\x
SF:004\0\0\x01\xffj\x04#HY000Proxy\x20header\x20is\x20not\x20accepted\x20f
SF:rom\x2010\.6\.66\.8")%r(LDAPBindReq,6D,"i\0\0\0\n11\.1\.2-MariaDB-1:11\
SF:.1\.2\+maria~ubu2204\0\x19\n\0\0pKc3sk>5\0\xfe\xf7-\x02\0\xff\x81\x15\0
SF:\0\0\0\0\0\x1d\0\0\0\.\$igJxB{gp~I\0mysql_native_password\0")%r(afp,6D,
SF:"i\0\0\0\n11\.1\.2-MariaDB-1:11\.1\.2\+maria~ubu2204\0#\n\0\0P@\.d-T>w\
SF:0\xfe\xf7-\x02\0\xff\x81\x15\0\0\0\0\0\0\x1d\0\0\0_Th/Nz\?ffL,6\0mysql_
SF:native_password\0");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=3306%CT=1%CU=37936%PV=Y%DS=2%DC=T%G=Y%TM=65016
OS:020%P=x86_64-pc-linux-gnu)SEQ(SP=107%GCD=1%ISR=105%TI=Z%TS=A)SEQ(SP=106%
OS:GCD=1%ISR=105%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NN
OS:T11NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=
OS:FE88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%
OS:Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF
OS:=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=
OS:164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 587/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.82 ms 172.16.43.12
Nmap scan report for 172.16.43.13
Host is up (0.024s latency).
Not shown: 988 filtered tcp ports (no-response)
PORT STATE SERVICE VERSION
53/tcp open domain Simple DNS Plus
88/tcp open kerberos-sec Microsoft Windows Kerberos (server time: 2023-09-13 06:57:33Z)
135/tcp open msrpc Microsoft Windows RPC
139/tcp open netbios-ssn Microsoft Windows netbios-ssn
389/tcp open ldap Microsoft Windows Active Directory LDAP (Domain: e-corp-houston2.lan0., Site: Default-First-Site-Name)
445/tcp open microsoft-ds?
464/tcp open kpasswd5?
593/tcp open ncacn_http Microsoft Windows RPC over HTTP 1.0
636/tcp open tcpwrapped
3268/tcp open ldap Microsoft Windows Active Directory LDAP (Domain: e-corp-houston2.lan0., Site: Default-First-Site-Name)
3269/tcp open tcpwrapped
3389/tcp open ms-wbt-server Microsoft Terminal Services
| rdp-ntlm-info:
| Target_Name: E-CORP-HOUSTON2
| NetBIOS_Domain_Name: E-CORP-HOUSTON2
| NetBIOS_Computer_Name: EH2-AD01
| DNS_Domain_Name: e-corp-houston2.lan
| DNS_Computer_Name: EH2-AD01.e-corp-houston2.lan
| DNS_Tree_Name: e-corp-houston2.lan
| Product_Version: 10.0.17763
|_ System_Time: 2023-09-13T07:08:18+00:00
|_ssl-date: 2023-09-13T07:09:04+00:00; +3s from scanner time.
| ssl-cert: Subject: commonName=EH2-AD01.e-corp-houston2.lan
| Not valid before: 2023-09-03T07:19:04
|_Not valid after: 2024-03-04T07:19:04
Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
OS fingerprint not ideal because: Missing a closed TCP port so results incomplete
No OS matches for host
Network Distance: 2 hops
Service Info: Host: EH2-AD01; OS: Windows; CPE: cpe:/o:microsoft:windows
Host script results:
| smb2-security-mode:
| 311:
|_ Message signing enabled and required
|_clock-skew: mean: 3s, deviation: 0s, median: 3s
| smb2-time:
| date: 2023-09-13T07:07:47
|_ start_date: N/A
TRACEROUTE (using port 135/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 23.14 ms 172.16.43.13
Nmap scan report for 172.16.43.14
Host is up (0.026s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.10 ((Debian))
|_http-server-header: Apache/2.4.10 (Debian)
|_http-title: Annuaire T\xC3\xA9l\xC3\xA9phonique E-Corp
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=30671%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=100%GCD=1%ISR=10D%TI=Z%TS=A)SEQ(SP=100%GC
OS:D=1%ISR=10D%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.85 ms 172.16.43.14
Nmap scan report for 172.16.43.15
Host is up.
All 1000 scanned ports on 172.16.43.15 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.16
Host is up (0.026s latency).
Not shown: 997 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 6.6.1p1 Ubuntu 2ubuntu2.8 (Ubuntu Linux; protocol 2.0)
| ssh-hostkey:
| 1024 509c5f34486f64bcb73cb376b3856d9d (DSA)
| 2048 a7057c8603a68b3db7d157fa74776043 (RSA)
| 256 acd68e877b0f18824ffbeae61cfbb421 (ECDSA)
|_ 256 2016cdc4bbc89db8d739025abc452d7a (ED25519)
80/tcp open http nginx
| http-robots.txt: 52 disallowed entries (15 shown)
| / /autocomplete/users /search /api /admin /profile
| /dashboard /projects/new /groups/new /groups/*/edit /users /s/
|_/snippets/new /snippets/*/edit /snippets/*/raw
|_http-trane-info: Problem with XML parsing of /evox/about
| http-title: Sign in \xC2\xB7 GitLab
|_Requested resource was http://172.16.43.16/users/sign_in
8181/tcp open intermapper?
| fingerprint-strings:
| GenericLines, SSLSessionReq:
| HTTP/1.1 400 Bad Request
| GetRequest:
| HTTP/1.0 302 Found
| Cache-Control: no-cache
| Content-Type: text/html; charset=utf-8
| Date: Wed, 13 Sep 2023 06:57:35 GMT
| Location: http://127.0.0.1:8080/users/sign_in
| Set-Cookie: _gitlab_session=892ef35f7d5ad99372b495a6f26ffe41; path=/; HttpOnly
| X-Content-Type-Options: nosniff
| X-Frame-Options: SAMEORIGIN
| X-Request-Id: 2cfc5644-2642-4d85-ac86-e4d22af7eb29
| X-Runtime: 0.069858
| X-Xss-Protection: 1; mode=block
| Content-Length: 101
| <html><body>You are being <a href="http://127.0.0.1:8080/users/sign_in">redirected</a>.</body></html>
| HTTPOptions:
| HTTP/1.0 404 Not Found
| Cache-Control: no-cache, no-store, max-age=0, must-revalidate
| Content-Length: 2440
| Content-Type: text/html; charset=utf-8
| Date: Wed, 13 Sep 2023 06:57:36 GMT
| Expires: Fri, 01 Jan 1990 00:00:00 GMT
| Pragma: no-cache
| X-Request-Id: 8ee6d1bb-a2db-4a76-9d99-079be4d5c226
| X-Runtime: 0.027605
| <!DOCTYPE html>
| <html>
| <head>
| <meta content="width=device-width, initial-scale=1, maximum-scale=1" name="viewport">
| <title>The page you're looking for could not be found (404)</title>
| <style>
| body {
| color: #666;
| text-align: center;
| font-family: "Helvetica Neue", Helvetica, Arial, sans-serif;
| margin: auto;
| font-size: 14px;
| font-size: 56px;
| line-height: 100px;
| font-weight: normal;
| color: #456;
| font-size: 24px;
| color: #666;
|_ line-height: 1.5em;
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port8181-TCP:V=7.93%I=7%D=9/13%Time=65015D5B%P=x86_64-pc-linux-gnu%r(Ge
SF:tRequest,21D,"HTTP/1\.0\x20302\x20Found\r\nCache-Control:\x20no-cache\r
SF:\nContent-Type:\x20text/html;\x20charset=utf-8\r\nDate:\x20Wed,\x2013\x
SF:20Sep\x202023\x2006:57:35\x20GMT\r\nLocation:\x20http://127\.0\.0\.1:80
SF:80/users/sign_in\r\nSet-Cookie:\x20_gitlab_session=892ef35f7d5ad99372b4
SF:95a6f26ffe41;\x20path=/;\x20HttpOnly\r\nX-Content-Type-Options:\x20nosn
SF:iff\r\nX-Frame-Options:\x20SAMEORIGIN\r\nX-Request-Id:\x202cfc5644-2642
SF:-4d85-ac86-e4d22af7eb29\r\nX-Runtime:\x200\.069858\r\nX-Xss-Protection:
SF:\x201;\x20mode=block\r\nContent-Length:\x20101\r\n\r\n<html><body>You\x
SF:20are\x20being\x20<a\x20href=\"http://127\.0\.0\.1:8080/users/sign_in\"
SF:>redirected</a>\.</body></html>")%r(SSLSessionReq,1C,"HTTP/1\.1\x20400\
SF:x20Bad\x20Request\r\n\r\n")%r(GenericLines,1C,"HTTP/1\.1\x20400\x20Bad\
SF:x20Request\r\n\r\n")%r(HTTPOptions,AC7,"HTTP/1\.0\x20404\x20Not\x20Foun
SF:d\r\nCache-Control:\x20no-cache,\x20no-store,\x20max-age=0,\x20must-rev
SF:alidate\r\nContent-Length:\x202440\r\nContent-Type:\x20text/html;\x20ch
SF:arset=utf-8\r\nDate:\x20Wed,\x2013\x20Sep\x202023\x2006:57:36\x20GMT\r\
SF:nExpires:\x20Fri,\x2001\x20Jan\x201990\x2000:00:00\x20GMT\r\nPragma:\x2
SF:0no-cache\r\nX-Request-Id:\x208ee6d1bb-a2db-4a76-9d99-079be4d5c226\r\nX
SF:-Runtime:\x200\.027605\r\n\r\n<!DOCTYPE\x20html>\n<html>\n<head>\n\x20\
SF:x20<meta\x20content=\"width=device-width,\x20initial-scale=1,\x20maximu
SF:m-scale=1\"\x20name=\"viewport\">\n\x20\x20<title>The\x20page\x20you're
SF:\x20looking\x20for\x20could\x20not\x20be\x20found\x20\(404\)</title>\n\
SF:x20\x20<style>\n\x20\x20\x20\x20body\x20{\n\x20\x20\x20\x20\x20\x20colo
SF:r:\x20#666;\n\x20\x20\x20\x20\x20\x20text-align:\x20center;\n\x20\x20\x
SF:20\x20\x20\x20font-family:\x20\"Helvetica\x20Neue\",\x20Helvetica,\x20A
SF:rial,\x20sans-serif;\n\x20\x20\x20\x20\x20\x20margin:\x20auto;\n\x20\x2
SF:0\x20\x20\x20\x20font-size:\x2014px;\n\x20\x20\x20\x20}\n\n\x20\x20\x20
SF:\x20h1\x20{\n\x20\x20\x20\x20\x20\x20font-size:\x2056px;\n\x20\x20\x20\
SF:x20\x20\x20line-height:\x20100px;\n\x20\x20\x20\x20\x20\x20font-weight:
SF:\x20normal;\n\x20\x20\x20\x20\x20\x20color:\x20#456;\n\x20\x20\x20\x20}
SF:\n\n\x20\x20\x20\x20h2\x20{\n\x20\x20\x20\x20\x20\x20font-size:\x2024px
SF:;\n\x20\x20\x20\x20\x20\x20color:\x20#666;\n\x20\x20\x20\x20\x20\x20lin
SF:e-height:\x201\.5em;\n\x20\x20\x20\x20}\n\n\x20\x20\x20\x20h3\x20{\n\x2
SF:0\x20\x20\x20\x20\x20");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=32329%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=1%ISR=109%TI=Z%TS=A)SEQ(SP=FF%GCD=
OS:1%ISR=109%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11N
OS:W7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88
OS:%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T
OS:1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T
OS:=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164%
OS:UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.76 ms 172.16.43.16
Nmap scan report for 172.16.43.17
Host is up (0.026s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
5432/tcp open postgresql PostgreSQL DB 11.6 - 11.7 (Docker alpine image)
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=5432%CT=1%CU=33655%PV=Y%DS=2%DC=T%G=Y%TM=65016
OS:020%P=x86_64-pc-linux-gnu)SEQ(SP=106%GCD=1%ISR=10B%TI=Z%TS=A)SEQ(SP=106%
OS:GCD=1%ISR=10B%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NN
OS:T11NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=
OS:FE88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%
OS:Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF
OS:=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=
OS:164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.79 ms 172.16.43.17
Nmap scan report for 172.16.43.18
Host is up (0.024s latency).
All 1000 scanned ports on 172.16.43.18 are in ignored states.
Not shown: 1000 closed tcp ports (reset)
Too many fingerprints match this host to give specific OS details
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.83 ms 172.16.43.18
Nmap scan report for 172.16.43.19
Host is up (0.028s latency).
Not shown: 998 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 8.9p1 Ubuntu 3ubuntu0.3 (Ubuntu Linux; protocol 2.0)
| ssh-hostkey:
| 256 cd1743a5a10df637ad30dd7857fb9a49 (ECDSA)
|_ 256 1cfb6f268ccfcc97d0a04e0fedfb36c5 (ED25519)
80/tcp open http Apache httpd 2.4.52
|_http-server-header: Apache/2.4.52 (Ubuntu)
|_http-title: 403 Forbidden
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=44619%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=2%ISR=10E%TI=Z%TS=A)SEQ(SP=100%GCD
OS:=1%ISR=10D%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11
OS:NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE8
OS:8%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)
OS:T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%
OS:T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164
OS:%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
Service Info: Host: 172.16.43.19; OS: Linux; CPE: cpe:/o:linux:linux_kernel
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.87 ms 172.16.43.19
Nmap scan report for 172.16.43.20
Host is up.
All 1000 scanned ports on 172.16.43.20 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.21
Host is up (0.028s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.52 ((Debian))
|_http-server-header: Apache/2.4.52 (Debian)
|_http-title: Site doesn't have a title (text/html).
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=35509%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=107%TI=Z%TS=A)SEQ(SP=102%GC
OS:D=1%ISR=107%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 22.19 ms 172.16.43.21
Nmap scan report for 172.16.43.22
Host is up.
All 1000 scanned ports on 172.16.43.22 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.23
Host is up.
All 1000 scanned ports on 172.16.43.23 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.24
Host is up.
All 1000 scanned ports on 172.16.43.24 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.25
Host is up (0.028s latency).
Not shown: 997 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.52 ((Ubuntu))
|_http-server-header: Apache/2.4.52 (Ubuntu)
|_http-title: D\xC3\xA9p\xC3\xB4t NDF
139/tcp open netbios-ssn Samba smbd 4.6.2
445/tcp open netbios-ssn Samba smbd 4.6.2
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=43799%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=104%GCD=1%ISR=10B%TI=Z%TS=A)SEQ(SP=104%GC
OS:D=1%ISR=10B%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
Host script results:
|_clock-skew: 4s
| smb2-time:
| date: 2023-09-13T07:08:05
|_ start_date: N/A
| smb2-security-mode:
| 311:
|_ Message signing enabled but not required
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.92 ms 172.16.43.25
Nmap scan report for 172.16.43.26
Host is up (0.028s latency).
Not shown: 998 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.38 ((Ubuntu))
443/tcp open tcpwrapped
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=32281%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=10A%TI=Z%TS=A)SEQ(SP=102%GC
OS:D=1%ISR=10A%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 21.98 ms 172.16.43.26
Nmap scan report for 172.16.43.27
Host is up (0.029s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.38 ((Debian))
|_http-server-header: Apache/2.4.38 (Debian)
|_http-title: 404 Not Found
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=38479%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=100%GCD=1%ISR=10D%TI=Z%TS=A)SEQ(SP=100%GC
OS:D=1%ISR=10C%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 22.03 ms 172.16.43.27
Nmap scan report for 172.16.43.28
Host is up (0.029s latency).
Not shown: 998 closed tcp ports (reset)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.38 ((Ubuntu))
|_http-server-header: Apache/2.4.38 (Ubuntu)
|_http-title: 404 Not Found
443/tcp open tcpwrapped
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=80%CT=1%CU=39103%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=10C%TI=Z%TS=A)SEQ(SP=102%GC
OS:D=1%ISR=10C%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 24.29 ms 172.16.43.28
Nmap scan report for 172.16.43.29
Host is up.
All 1000 scanned ports on 172.16.43.29 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.30
Host is up (0.029s latency).
Not shown: 998 closed tcp ports (reset)
PORT STATE SERVICE VERSION
25/tcp open smtp?
|_smtp-commands: e-corp-houston2.lan
| fingerprint-strings:
| DNSStatusRequestTCP, DNSVersionBindReqTCP, NULL, RPCCheck, SMBProgNeg, X11Probe:
| 220 e-corp-houston2.lan Postfix
| FourOhFourRequest, GenericLines, GetRequest, HTTPOptions, RTSPRequest:
| 220 e-corp-houston2.lan Postfix
| 5.5.1 Error: unknown command
| 5.5.1 Error: unknown command
| Hello:
| 220 e-corp-houston2.lan Postfix
| Syntax: EHLO hostname
| Help:
| 220 e-corp-houston2.lan Postfix
| 214-Commands supported:
| 214- HELO MAIL RCPT DATA
| 214- RSET NOOP QUIT EXPN
| 214- HELP VRFY EHLO AUTH
| 214- ETRN STARTTLS
| more info use "HELP <topic>".
| Kerberos, SSLSessionReq, TLSSessionReq, TerminalServerCookie:
| 220 e-corp-houston2.lan Postfix
|_ 5.5.1 Error: unknown command
465/tcp open tcpwrapped
|_smtp-commands: Couldn't establish connection on port 465
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port25-TCP:V=7.93%I=7%D=9/13%Time=65015D61%P=x86_64-pc-linux-gnu%r(NULL
SF:,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(Hello,3C,"220\x20e-
SF:corp-houston2\.lan\x20Postfix\r\n501\x20Syntax:\x20EHLO\x20hostname\r\n
SF:")%r(Help,CF,"220\x20e-corp-houston2\.lan\x20Postfix\r\n214-Commands\x2
SF:0supported:\r\n214-\x20\x20\x20\x20HELO\x20MAIL\x20RCPT\x20DATA\r\n214-
SF:\x20\x20\x20\x20RSET\x20NOOP\x20QUIT\x20EXPN\r\n214-\x20\x20\x20\x20HEL
SF:P\x20VRFY\x20EHLO\x20AUTH\r\n214-\x20\x20\x20\x20ETRN\x20STARTTLS\r\n21
SF:4\x20For\x20more\x20info\x20use\x20\"HELP\x20<topic>\"\.\r\n")%r(Generi
SF:cLines,65,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20
SF:Error:\x20unknown\x20command\r\n500\x205\.5\.1\x20Error:\x20unknown\x20
SF:command\r\n")%r(GetRequest,65,"220\x20e-corp-houston2\.lan\x20Postfix\r
SF:\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n500\x205\.5\.1\x20E
SF:rror:\x20unknown\x20command\r\n")%r(HTTPOptions,65,"220\x20e-corp-houst
SF:on2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r
SF:\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n")%r(RTSPRequest,65
SF:,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Error:\x2
SF:0unknown\x20command\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r
SF:\n")%r(RPCCheck,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(DNSV
SF:ersionBindReqTCP,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(DNS
SF:StatusRequestTCP,21,"220\x20e-corp-houston2\.lan\x20Postfix\r\n")%r(SSL
SF:SessionReq,43,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1
SF:\x20Error:\x20unknown\x20command\r\n")%r(TerminalServerCookie,43,"220\x
SF:20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Error:\x20unknow
SF:n\x20command\r\n")%r(TLSSessionReq,43,"220\x20e-corp-houston2\.lan\x20P
SF:ostfix\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n")%r(Kerber
SF:os,43,"220\x20e-corp-houston2\.lan\x20Postfix\r\n500\x205\.5\.1\x20Erro
SF:r:\x20unknown\x20command\r\n")%r(SMBProgNeg,21,"220\x20e-corp-houston2\
SF:.lan\x20Postfix\r\n")%r(X11Probe,21,"220\x20e-corp-houston2\.lan\x20Pos
SF:tfix\r\n")%r(FourOhFourRequest,65,"220\x20e-corp-houston2\.lan\x20Postf
SF:ix\r\n500\x205\.5\.1\x20Error:\x20unknown\x20command\r\n500\x205\.5\.1\
SF:x20Error:\x20unknown\x20command\r\n");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=25%CT=1%CU=43107%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=10A%GCD=1%ISR=107%TI=Z%TS=A)SEQ(SP=109%GC
OS:D=1%ISR=107%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 23.72 ms 172.16.43.30
Nmap scan report for 172.16.43.31
Host is up (0.031s latency).
Not shown: 998 closed tcp ports (reset)
PORT STATE SERVICE VERSION
21/tcp open ftp ProFTPD 1.3.8
|_ftp-bounce: bounce working!
| ftp-anon: Anonymous FTP login allowed (FTP code 230)
|_Can't get directory listing: PASV failed: 500 Unknown command.
| ftp-syst:
| STAT:
| FTP server status:
| Connected to 172.16.43.31
| Logged in as anonymous
| TYPE: ASCII
| Session timeout in seconds is 120
| Control connection is plain text
| Data connections will be plain text
| Maximum file size is 2000000 bytes
| ProFTPD 1.3.8 Server
|_End of status
80/tcp open http Apache httpd 2.4.26 ((Debian))
|_http-server-header: Apache/2.4.26 (Debian)
|_http-title: 404 Not Found
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=21%CT=1%CU=36661%PV=Y%DS=2%DC=T%G=Y%TM=6501602
OS:0%P=x86_64-pc-linux-gnu)SEQ(SP=100%GCD=1%ISR=108%TI=Z%TS=A)SEQ(SP=FF%GCD
OS:=1%ISR=108%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11
OS:NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE8
OS:8%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)
OS:T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%
OS:T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164
OS:%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
Service Info: OS: Unix
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 24.55 ms 172.16.43.31
Nmap scan report for 172.16.43.32
Host is up.
All 1000 scanned ports on 172.16.43.32 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.33
Host is up.
All 1000 scanned ports on 172.16.43.33 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.34
Host is up.
All 1000 scanned ports on 172.16.43.34 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.35
Host is up (0.028s latency).
All 1000 scanned ports on 172.16.43.35 are in ignored states.
Not shown: 1000 closed tcp ports (reset)
Too many fingerprints match this host to give specific OS details
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 27.41 ms 172.16.43.35
Nmap scan report for 172.16.43.36
Host is up.
All 1000 scanned ports on 172.16.43.36 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.37
Host is up.
All 1000 scanned ports on 172.16.43.37 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.38
Host is up.
All 1000 scanned ports on 172.16.43.38 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.39
Host is up.
All 1000 scanned ports on 172.16.43.39 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.40
Host is up.
All 1000 scanned ports on 172.16.43.40 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.41
Host is up.
All 1000 scanned ports on 172.16.43.41 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.42
Host is up.
All 1000 scanned ports on 172.16.43.42 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.43
Host is up.
All 1000 scanned ports on 172.16.43.43 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.44
Host is up.
All 1000 scanned ports on 172.16.43.44 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.45
Host is up.
All 1000 scanned ports on 172.16.43.45 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.46
Host is up.
All 1000 scanned ports on 172.16.43.46 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.47
Host is up.
All 1000 scanned ports on 172.16.43.47 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.48
Host is up.
All 1000 scanned ports on 172.16.43.48 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.49
Host is up.
All 1000 scanned ports on 172.16.43.49 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.50
Host is up.
All 1000 scanned ports on 172.16.43.50 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.51
Host is up.
All 1000 scanned ports on 172.16.43.51 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.52
Host is up.
All 1000 scanned ports on 172.16.43.52 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.53
Host is up.
All 1000 scanned ports on 172.16.43.53 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.54
Host is up.
All 1000 scanned ports on 172.16.43.54 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.55
Host is up.
All 1000 scanned ports on 172.16.43.55 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.56
Host is up.
All 1000 scanned ports on 172.16.43.56 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.57
Host is up.
All 1000 scanned ports on 172.16.43.57 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.58
Host is up.
All 1000 scanned ports on 172.16.43.58 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.59
Host is up.
All 1000 scanned ports on 172.16.43.59 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.60
Host is up.
All 1000 scanned ports on 172.16.43.60 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.61
Host is up.
All 1000 scanned ports on 172.16.43.61 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.62
Host is up.
All 1000 scanned ports on 172.16.43.62 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Nmap scan report for 172.16.43.63
Host is up.
All 1000 scanned ports on 172.16.43.63 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.11
2 ... 30
Stats: 0:17:31 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 35.38% done; ETC: 03:17 (0:04:08 remaining)
Stats: 0:17:32 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 36.39% done; ETC: 03:17 (0:03:59 remaining)
Stats: 0:17:33 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 36.39% done; ETC: 03:17 (0:04:01 remaining)
Stats: 0:23:05 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:43 remaining)
Stats: 0:23:06 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:44 remaining)
Stats: 0:23:06 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:44 remaining)
Stats: 0:23:07 elapsed; 64 hosts completed (128 up), 64 undergoing Traceroute
Traceroute Timing: About 91.53% done; ETC: 03:19 (0:00:44 remaining)
Nmap scan report for 172.16.43.64
Host is up.
All 1000 scanned ports on 172.16.43.64 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.65
Host is up.
All 1000 scanned ports on 172.16.43.65 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.66
Host is up.
All 1000 scanned ports on 172.16.43.66 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.67
Host is up.
All 1000 scanned ports on 172.16.43.67 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.68
Host is up.
All 1000 scanned ports on 172.16.43.68 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.69
Host is up.
All 1000 scanned ports on 172.16.43.69 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.70
Host is up.
All 1000 scanned ports on 172.16.43.70 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.71
Host is up.
All 1000 scanned ports on 172.16.43.71 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.72
Host is up.
All 1000 scanned ports on 172.16.43.72 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.73
Host is up.
All 1000 scanned ports on 172.16.43.73 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.74
Host is up.
All 1000 scanned ports on 172.16.43.74 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.75
Host is up.
All 1000 scanned ports on 172.16.43.75 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.76
Host is up.
All 1000 scanned ports on 172.16.43.76 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.77
Host is up.
All 1000 scanned ports on 172.16.43.77 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.78
Host is up.
All 1000 scanned ports on 172.16.43.78 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.79
Host is up.
All 1000 scanned ports on 172.16.43.79 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.80
Host is up.
All 1000 scanned ports on 172.16.43.80 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.81
Host is up.
All 1000 scanned ports on 172.16.43.81 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.82
Host is up.
All 1000 scanned ports on 172.16.43.82 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.83
Host is up.
All 1000 scanned ports on 172.16.43.83 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.84
Host is up.
All 1000 scanned ports on 172.16.43.84 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.85
Host is up.
All 1000 scanned ports on 172.16.43.85 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.86
Host is up.
All 1000 scanned ports on 172.16.43.86 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.87
Host is up.
All 1000 scanned ports on 172.16.43.87 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.88
Host is up.
All 1000 scanned ports on 172.16.43.88 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.89
Host is up.
All 1000 scanned ports on 172.16.43.89 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.90
Host is up.
All 1000 scanned ports on 172.16.43.90 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.91
Host is up.
All 1000 scanned ports on 172.16.43.91 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.92
Host is up.
All 1000 scanned ports on 172.16.43.92 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.93
Host is up.
All 1000 scanned ports on 172.16.43.93 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.94
Host is up.
All 1000 scanned ports on 172.16.43.94 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.95
Host is up.
All 1000 scanned ports on 172.16.43.95 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.96
Host is up.
All 1000 scanned ports on 172.16.43.96 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.97
Host is up.
All 1000 scanned ports on 172.16.43.97 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.98
Host is up.
All 1000 scanned ports on 172.16.43.98 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.99
Host is up.
All 1000 scanned ports on 172.16.43.99 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.100
Host is up.
All 1000 scanned ports on 172.16.43.100 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.101
Host is up (0.025s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x1d\x9f_O\xcdhK\xa2\
SF:xb0\x11Ii\xd2O\xb4\xeb\0\0\x006diffie-hellman-group1-sha1,diffie-hellma
SF:n-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,
SF:aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\
SF:0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cas
SF:t128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-
SF:sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\0\0
SF:\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xfc\xa9\xf5x");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=44358%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=FF%GCD=1%ISR=10E%TI=Z%TS=A)SEQ(SP=FF%GCD=
OS:1%ISR=10E%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11N
OS:W7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88
OS:%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T
OS:1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T
OS:=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164%
OS:UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
1 27.91 ms 10.6.66.1
2 24.40 ms 172.16.43.101
Nmap scan report for 172.16.43.102
Host is up (0.025s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\xc3\x88\xf9\x12\x8c\
SF:\\[\xc2\xadl\xe5\x020\xe0u\xfa\0\0\x006diffie-hellman-group1-sha1,diffi
SF:e-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes
SF:192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-
SF:cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128
SF:-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-2
SF:56,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac
SF:-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xee\xf
SF:5\]\xca");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=34213%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=103%GCD=1%ISR=108%TI=Z%II=I%TS=A)OPS(O1=M
OS:551ST11NW7%O2=M551ST11NW7%O3=M551NNT11NW7%O4=M551ST11NW7%O5=M551ST11NW7%
OS:O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%
OS:DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=
OS:0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)
OS:T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%
OS:RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 24.51 ms 172.16.43.102
Nmap scan report for 172.16.43.103
Host is up (0.026s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\xf9\x16\x9a\xb0\x1a\
SF:x12\xe5\xc4\xaa\xce\xae\xc19\xfc\xa1Q\0\0\x006diffie-hellman-group1-sha
SF:1,diffie-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-
SF:cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cb
SF:c,3des-cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr
SF:,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac
SF:-sha2-256,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sh
SF:a1,hmac-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0
SF:\x1f\xa2\xb9\xca");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=42271%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=104%GCD=1%ISR=109%TI=Z%TS=A)SEQ(SP=104%GC
OS:D=2%ISR=109%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 24.58 ms 172.16.43.103
Nmap scan report for 172.16.43.104
Host is up (0.026s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x1dT\x9d\xf0\x85V\x0
SF:e\x98\xf5\x17\xa2\xe0\x9e\xb1\xe0\x95\0\0\x006diffie-hellman-group1-sha
SF:1,diffie-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-
SF:cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cb
SF:c,3des-cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr
SF:,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac
SF:-sha2-256,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sh
SF:a1,hmac-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0
SF:\x9eC\x9ao");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=34247%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=107%GCD=1%ISR=10D%TI=Z%TS=A)SEQ(SP=107%GC
OS:D=2%ISR=10D%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 22.17 ms 172.16.43.104
Nmap scan report for 172.16.43.105
Host is up (0.026s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x08/Y\x0br\xe3\x14\x
SF:dcIk\xd3\xbdv\xae\xc0\xa4\0\0\x006diffie-hellman-group1-sha1,diffie-hel
SF:lman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-c
SF:tr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0
SF:\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,
SF:cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hm
SF:ac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\
SF:0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xc3Y\xa6\xa
SF:a");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=43887%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=F6%GCD=1%ISR=111%TI=Z%TS=A)SEQ(SP=F6%GCD=
OS:1%ISR=110%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT11N
OS:W7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE88
OS:%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=)T
OS:1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y%T
OS:=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=164%
OS:UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 22.17 ms 172.16.43.105
Nmap scan report for 172.16.43.106
Host is up (0.027s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| pelv
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\xbc\xc2\xc8\xacpelv\
SF:xf1o\xa3\xcc\x94U\x97\xda\0\0\x006diffie-hellman-group1-sha1,diffie-hel
SF:lman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-c
SF:tr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0
SF:\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,
SF:cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hm
SF:ac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\
SF:0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0T\n\xdd\x84"
SF:);
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=40258%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=10A%TI=Z%II=I%TS=A)SEQ(SP=1
OS:03%GCD=1%ISR=10A%TI=Z%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 22.20 ms 172.16.43.106
Nmap scan report for 172.16.43.107
Host is up (0.027s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14\x08t\xcd\x85\^\xab\x
SF:1c\n\x01j\xb3\n\xbf\xc5\xf1\xf2\0\0\x006diffie-hellman-group1-sha1,diff
SF:ie-hellman-group14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,ae
SF:s192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des
SF:-cbc\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes12
SF:8-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-
SF:256,hmac-sha1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hma
SF:c-md5\0\0\0\tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\x0e6\
SF:x05\\");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=43603%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=102%GCD=1%ISR=108%TI=Z%II=I%TS=A)SEQ(SP=1
OS:02%GCD=1%ISR=108%TI=Z%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 21.85 ms 172.16.43.107
Nmap scan report for 172.16.43.108
Host is up (0.028s latency).
Not shown: 999 closed tcp ports (reset)
PORT STATE SERVICE VERSION
22/tcp open ssh (protocol 2.0)
| fingerprint-strings:
| NULL:
| SSH-2.0-Cisco-1.25
| 6diffie-hellman-group1-sha1,diffie-hellman-group14-sha1
| ssh-rsa
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| caes256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| .hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5
| none,zlib
|_ none,zlib
1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service :
SF-Port22-TCP:V=7.93%I=7%D=9/13%Time=6501606E%P=x86_64-pc-linux-gnu%r(NULL
SF:,1CC,"SSH-2\.0-Cisco-1\.25\r\n\0\0\x01\xb4\x04\x14v\xcf\xa65\x20c\n\+\x
SF:19I\[v\x06i\xe5\x0b\0\0\x006diffie-hellman-group1-sha1,diffie-hellman-g
SF:roup14-sha1\0\0\0\x07ssh-rsa\0\0\0caes256-ctr,aes256-cbc,aes192-ctr,aes
SF:192-cbc,aes128-ctr,aes128-cbc,cast128-cbc,blowfish-cbc,3des-cbc\0\0\0ca
SF:es256-ctr,aes256-cbc,aes192-ctr,aes192-cbc,aes128-ctr,aes128-cbc,cast12
SF:8-cbc,blowfish-cbc,3des-cbc\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha
SF:1,hmac-md5\0\0\0\.hmac-sha2-512,hmac-sha2-256,hmac-sha1,hmac-md5\0\0\0\
SF:tnone,zlib\0\0\0\tnone,zlib\0\0\0\0\0\0\0\0\0\0\0\0\0\xde\$\x1ex");
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).
TCP/IP fingerprint:
OS:SCAN(V=7.93%E=4%D=9/13%OT=22%CT=1%CU=38365%PV=Y%DS=2%DC=T%G=Y%TM=6501629
OS:C%P=x86_64-pc-linux-gnu)SEQ(SP=105%GCD=1%ISR=10C%TI=Z%TS=A)SEQ(SP=105%GC
OS:D=1%ISR=10C%TI=Z%II=I%TS=A)OPS(O1=M551ST11NW7%O2=M551ST11NW7%O3=M551NNT1
OS:1NW7%O4=M551ST11NW7%O5=M551ST11NW7%O6=M551ST11)WIN(W1=FE88%W2=FE88%W3=FE
OS:88%W4=FE88%W5=FE88%W6=FE88)ECN(R=Y%DF=Y%T=40%W=FAF0%O=M551NNSNW7%CC=Y%Q=
OS:)T1(R=Y%DF=Y%T=40%S=O%A=S+%F=AS%RD=0%Q=)T2(R=N)T3(R=N)T4(R=N)T5(R=Y%DF=Y
OS:%T=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)T6(R=N)T7(R=N)U1(R=Y%DF=N%T=40%IPL=16
OS:4%UN=0%RIPL=G%RID=G%RIPCK=G%RUCK=G%RUD=G)IE(R=Y%DFI=N%T=40%CD=S)
Network Distance: 2 hops
TRACEROUTE (using port 3306/tcp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 21.90 ms 172.16.43.108
Nmap scan report for 172.16.43.109
Host is up.
All 1000 scanned ports on 172.16.43.109 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.110
Host is up.
All 1000 scanned ports on 172.16.43.110 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.111
Host is up.
All 1000 scanned ports on 172.16.43.111 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.112
Host is up.
All 1000 scanned ports on 172.16.43.112 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.113
Host is up.
All 1000 scanned ports on 172.16.43.113 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.114
Host is up.
All 1000 scanned ports on 172.16.43.114 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.115
Host is up.
All 1000 scanned ports on 172.16.43.115 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.116
Host is up.
All 1000 scanned ports on 172.16.43.116 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.117
Host is up.
All 1000 scanned ports on 172.16.43.117 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.118
Host is up.
All 1000 scanned ports on 172.16.43.118 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.119
Host is up.
All 1000 scanned ports on 172.16.43.119 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.120
Host is up.
All 1000 scanned ports on 172.16.43.120 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.121
Host is up.
All 1000 scanned ports on 172.16.43.121 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.122
Host is up.
All 1000 scanned ports on 172.16.43.122 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.123
Host is up.
All 1000 scanned ports on 172.16.43.123 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.124
Host is up.
All 1000 scanned ports on 172.16.43.124 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.125
Host is up.
All 1000 scanned ports on 172.16.43.125 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.126
Host is up.
All 1000 scanned ports on 172.16.43.126 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
Nmap scan report for 172.16.43.127
Host is up.
All 1000 scanned ports on 172.16.43.127 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
Too many fingerprints match this host to give specific OS details
TRACEROUTE (using proto 1/icmp)
HOP RTT ADDRESS
- Hop 1 is the same as for 172.16.43.101
2 ... 30
```