# Nmap 7.98 scan initiated Sun Apr  5 08:05:15 2026 as: /usr/lib/nmap/nmap -vv --reason -Pn -T4 -sV -p 443 "--script=banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN /root/results/kuma.lan.ddnsgeek.com/scans/tcp443/tcp_443_https_nmap.txt -oX /root/results/kuma.lan.ddnsgeek.com/scans/tcp443/xml/tcp_443_https_nmap.xml kuma.lan.ddnsgeek.com
Nmap scan report for kuma.lan.ddnsgeek.com (101.180.16.105)
Host is up, received user-set (0.035s latency).
rDNS record for 101.180.16.105: cpe-101-180-16-105.nb10.nsw.asp.telstra.net
Scanned at 2026-04-05 08:05:54 UTC for 467s

PORT    STATE SERVICE  REASON         VERSION
443/tcp open  ssl/http syn-ack ttl 53 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)
|_http-dombased-xss: Couldn't find any DOM based XSS.
| http-useragent-tester: 
|   Status for browser useragent: 200
|   Redirected To: /dashboard
|   Allowed User Agents: 
|     libwww
|     lwp-trivial
|     libcurl-agent/1.0
|     Python-urllib/2.5
|     GT::WWW
|     Snoopy
|     MFC_Tear_Sample
|     HTTP::Lite
|     URI::Fetch
|     Zend_Http_Client
|     http client
|     PECL::HTTP
|     Wget/1.13.4 (linux-gnu)
|     WWW-Mechanize/1.34
|   Change in Status Code: 
|     PHP/: 404
|     PHPCrawl: 404
|_    Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html): 404
|_http-csrf: Couldn't find any CSRF vulnerabilities.
|_ssl-date: TLS randomness does not represent time
|_http-favicon: Unknown favicon MD5: 5EA4B467D984433398E1037469F13214
| http-drupal-enum: 
|   Modules: 
|     views
|     token
|     ctools
|     pathauto
|     libraries
|     entity
|     admin_menu
|     date
|     imce
|     jquery_update
|     ckeditor
|     wysiwyg
|     link
|     webform
|     backup_migrate
|     rules
|     module_filter
|     google_analytics
|     views_slideshow
|     features
|     xmlsitemap
|     metatag
|     captcha
|     colorbox
|     media
|     entityreference
|     panels
|     field_group
|     devel
|     views_bulk_operations
|     menu_block
|     transliteration
|     l10n_update
|     imce_wysiwyg
|     globalredirect
|     variable
|     i18n
|     context
|     imageapi
|     advanced_help
|     filefield
|     email
|     page_title
|     lightbox2
|     ds
|     strongarm
|     superfish
|     imagefield
|     calendar
|     imagecache
|     references
|     field_collection
|     block_class
|     job_scheduler
|     menu_attributes
|     redirect
|     addressfield
|     mailsystem
|     nice_menus
|     diff
|     flexslider
|     taxonomy_menu
|     file_entity
|     feeds
|     media_youtube
|     node_clone
|     admin_views
|     smtp
|     special_menu_items
|     auto_nodetitle
|     jquery_ui
|     insert
|     cck
|     quicktabs
|     mimemail
|     views_php
|     content_access
|     jcarousel
|     print
|     plupload
|     votingapi
|     poormanscron
|     simplenews
|     filefield_sources
|     extlink
|     honeypot
|     facetapi
|     logintoboggan
|     search_api
|     uuid
|     commerce
|     custom_breadcrumbs
|     views_data_export
|     oauth
|     better_formats
|     site_verify
|     location
|     fontyourface
|     masquerade
|_    imce_mkdir
| http-sitemap-generator: 
|   Directory structure:
|     /
|       Other: 1; json: 1; png: 1; svg: 1
|     /assets/
|       css: 1; js: 2
|   Longest directory structure:
|     Depth: 1
|     Dir: /assets/
|   Total files found (by extension):
|_    Other: 1; css: 1; js: 2; json: 1; png: 1; svg: 1
|_http-majordomo2-dir-traversal: ERROR: Script execution failed (use -d to debug)
|_http-mobileversion-checker: No mobile version detected.
|_http-referer-checker: Couldn't find any cross-domain scripts.
|_http-errors: ERROR: Script execution failed (use -d to debug)
|_http-comments-displayer: Couldn't find any comments.
| http-methods: 
|_  Supported Methods: GET HEAD POST
|_http-trane-info: Problem with XML parsing of /evox/about
|_http-php-version: Credits query returned unknown hash 3b299781d582f5b522a0a6f14dfd9268
|_http-devframework: Couldn't determine the underlying framework or CMS. Try increasing 'httpspider.maxpagecount' value to spider more pages.
|_http-date: Sun, 05 Apr 2026 08:06:30 GMT; -1s from local time.
|_http-wordpress-users: [Error] Wordpress installation was not found. We couldn't find wp-login.php
|_http-litespeed-sourcecode-download: Request with null byte did not work. This web server might not be vulnerable
| http-vhosts: 
|_128 names had status 404
|_http-malware-host: Host appears to be clean
| ssl-enum-ciphers: 
|   TLSv1.2: 
|     ciphers: 
|       TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (secp256r1) - A
|       TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (secp256r1) - A
|     compressors: 
|       NULL
|     cipher preference: server
|     warnings: 
|       Key exchange (secp256r1) of lower strength than certificate key
|   TLSv1.3: 
|     ciphers: 
|       TLS_AKE_WITH_CHACHA20_POLY1305_SHA256 (X25519MLKEM768) - A
|       TLS_AKE_WITH_AES_128_GCM_SHA256 (X25519MLKEM768) - A
|       TLS_AKE_WITH_AES_256_GCM_SHA384 (X25519MLKEM768) - A
|     cipher preference: server
|_  least strength: A
|_http-fetch: Please enter the complete path of the directory to save data in.
|_http-feed: Couldn't find any feeds.
| http-security-headers: 
|   Strict_Transport_Security: 
|     Header: Strict-Transport-Security: max-age=15552000; includeSubDomains; preload
|   X_Frame_Options: 
|     Header: X-Frame-Options: SAMEORIGIN
|     Description: The browser must not display this content in any frame from a page of different origin than the content itself.
|   X_XSS_Protection: 
|     Header: X-XSS-Protection: 1; mode=block
|     Description: The browser will prevent the rendering of the page when XSS is detected.
|   X_Content_Type_Options: 
|     Header: X-Content-Type-Options: nosniff
|_    Description: Will prevent the browser from MIME-sniffing a response away from the declared content-type. 
|_http-jsonp-detection: Couldn't find any JSONP endpoints.
| http-headers: 
|   Content-Length: 2444
|   Content-Type: text/html; charset=utf-8
|   Date: Sun, 05 Apr 2026 08:07:06 GMT
|   Etag: W/"98c-RxUaxZHFr+/FSabMqXO58T7mz+U"
|   Strict-Transport-Security: max-age=15552000; includeSubDomains; preload
|   X-Content-Type-Options: nosniff
|   X-Frame-Options: SAMEORIGIN
|   X-Xss-Protection: 1; mode=block
|   Connection: close
|   
|_  (Request type: HEAD)
|_http-chrono: Request times for /; avg: 33701.34ms; min: 1061.83ms; max: 134159.26ms
| http-robots.txt: 1 disallowed entry 
|_/
| http-title: Uptime Kuma
|_Requested resource was /dashboard
| ssl-cert: Subject: commonName=kuma.lan.ddnsgeek.com
| Subject Alternative Name: DNS:kuma.lan.ddnsgeek.com
| Issuer: commonName=R13/organizationName=Let's Encrypt/countryName=US
| Public Key type: rsa
| Public Key bits: 4096
| Signature Algorithm: sha256WithRSAEncryption
| Not valid before: 2026-04-01T19:44:43
| Not valid after:  2026-06-30T19:44:42
| MD5:     4503 8f10 fe7f f545 fff2 813b 5a8f 7631
| SHA-1:   a08d 7799 f3ef cb17 9052 958c 43c5 eeb5 d6b5 59c1
| SHA-256: 0c92 3f5e b861 8c91 b8a8 f4bf 1cb8 7d80 f07a ddc8 3c4b 8ed9 5478 90cf b482 512b
| -----BEGIN CERTIFICATE-----
| MIIGATCCBOmgAwIBAgISBYYKHnpmPDpUPJjaOPK93fSHMA0GCSqGSIb3DQEBCwUA
| MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD
| EwNSMTMwHhcNMjYwNDAxMTk0NDQzWhcNMjYwNjMwMTk0NDQyWjAgMR4wHAYDVQQD
| ExVrdW1hLmxhbi5kZG5zZ2Vlay5jb20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAw
| ggIKAoICAQC2bNy5QjaE52KGlHDyiggwMm0YUU1SlAUrH1Awn3efLnnU2CKuF/NT
| pLP2ahkt7Js/bURSHJgISI7D8tQ3uT1+D7ZZjljYkaXQhdrLRdCSNCNDi3cmBEcR
| WUD8cnS2jXZgwV6C9sU2nXgxiDNEnFy3AOJppuUo6TU2eipfYMHwsz+FIz/ghD3Z
| lTf+T8HO70cGQLBRQP/4cu1Kc5sL+xDOk88SB/91j6FapUmXrsLaIaLeX7EQm7Yy
| 2pBkaXe/6UxzNuCAAPqxtkuMPi9Tcmm7X9fqo3ErMcc8BtZqeGcp2Zwm1sg3pYjF
| MjTLTsGAcxfMBWvQi8nhQ92Ah+Vm7O0SddUEFNRvoOioG9dR32C+v6w0E004Upt+
| BY0UWt9EgUrC4I8awGBrL4/E5qgnl6Hi5ho2Q6Px28ybIuoSQ7aeJtS8g5nBjCzp
| 5n81UcTtD98lhZKWRRJObFPh9YP/lxYz41GSIrRgBg6PtxU/1nJ0rZZvfwiuigxr
| NdoMo561ghayd607GVZ0JPKvY7sbxEkJ6XQ45E2MP5KF8EaPdvc+V2rP9Djy80+D
| XUq5FsmhM+YK1FfCw6S9cN7JRD9F1wZYmdHtHdS7Nmpag2/8w42UJQgN93WsflEx
| JKdNOuS9JWj95j84WmLkgWugWjZcrgk11PL6WkN6cecDt8+jbmWjvQIDAQABo4IC
| IDCCAhwwDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMAwGA1Ud
| EwEB/wQCMAAwHQYDVR0OBBYEFFXeRi9gTjL3dXj8UCJJQeJ90UeeMB8GA1UdIwQY
| MBaAFOernw8sM6BT015PeMiyhA471pIzMDMGCCsGAQUFBwEBBCcwJTAjBggrBgEF
| BQcwAoYXaHR0cDovL3IxMy5pLmxlbmNyLm9yZy8wIAYDVR0RBBkwF4IVa3VtYS5s
| YW4uZGRuc2dlZWsuY29tMBMGA1UdIAQMMAowCAYGZ4EMAQIBMC0GA1UdHwQmMCQw
| IqAgoB6GHGh0dHA6Ly9yMTMuYy5sZW5jci5vcmcvOC5jcmwwggEKBgorBgEEAdZ5
| AgQCBIH7BIH4APYAdQAWgy2r8KklDw/wOqVF/8i/yCPQh0v2BCkn+OcfMxP1+gAA
| AZ1KyTc0AAAEAwBGMEQCIFgwfeRhONb6T5LOG5a3CEnv5uU9GgHReu3FgCbNWvaO
| AiB4qoUik6olE6a7XgyMymRtow3pT+b51p8jdt+BaxswPAB9AKgmy+MKxjUSRlM/
| 4GXxTxnZbhkIE8Qd2W15ALMSPFUnAAABnUrJOMEACAAABQAFK3PIBAMARjBEAiAh
| 2KriLcSsAzvAqrucXzHSrZgfFf5tgwdSAYBbsUQxgAIgMhTKcEpKu31cvaY5rjEI
| 3CRiSD0zRDpz0muR3ED0Vi0wDQYJKoZIhvcNAQELBQADggEBADbjfbibh5H8hw6L
| 2KKxOcEGi787TIgm058gYlsm/2skqK1VqvS3Qmoj5IA05Yr5QpMFQFf6Z1kAy78P
| DH8qfadIgAU2Nbe1cK9o5f4LhTU9wM58C9Ti7e5aiNHA1UCsrwnvJnH523uxEVcG
| HCrne4Bewvtpfyb6M1RoRp3W4lHS4d7thHm6LXLEEJgBCFA5Yz6ez6mtainST5sU
| 6j4s+Jt5BQ2zTka2y2ao18OTfkeLtGqUDfB3oZWMNqK/m6m90FKTKYSTyoBtdESc
| nq9c8G6psGHa8K0O0t+cPwXHZQlZi2nAVN2UhV3GrwfAakzw3Bu31z8nS8OoFxRv
| ssZpBGM=
|_-----END CERTIFICATE-----
| http-waf-detect: IDS/IPS/WAF detected:
|_kuma.lan.ddnsgeek.com:443/?p4yl04d3=<script>alert(document.cookie)</script>
|_http-stored-xss: Couldn't find any stored XSS vulnerabilities.

Read data files from: /usr/share/nmap
Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
# Nmap done at Sun Apr  5 08:13:42 2026 -- 1 IP address (1 host up) scanned in 509.39 seconds
