Nmap scan report for multicert.com (62.48.217.201) Host is up (0.14s latency). Not shown: 998 filtered tcp ports (no-response) PORT STATE SERVICE VERSION 80/tcp open http | fingerprint-strings: | GetRequest: | HTTP/1.1 302 Found | Date: Thu, 11 Sep 2025 03:11:01 GMT | Server: | X-Frame-Options: SAMEORIGIN | X-XSS-Protection: 1; mode=block | X-Content-Type-Options: nosniff | Strict-Transport-Security: max-age=31536000; includeSubDomains; preload | Referrer-Policy: same-origin | X-Permitted-Cross-Domain-Policies: none | Cache-Control: no-cache | Location: https://www.multicert.com/ | Cache-Control: max-age=1 | Expires: Thu, 11 Sep 2025 03:11:02 GMT | Content-Length: 210 | Connection: close | Content-Type: text/html; charset=iso-8859-1 | | | 302 Found | |

Found

|

The document has moved here.

| | HTTPOptions: | HTTP/1.1 403 Forbidden | Date: Thu, 11 Sep 2025 03:11:02 GMT | Server: | X-Frame-Options: SAMEORIGIN | X-XSS-Protection: 1; mode=block | X-Content-Type-Options: nosniff | Strict-Transport-Security: max-age=31536000; includeSubDomains; preload | Referrer-Policy: same-origin | X-Permitted-Cross-Domain-Policies: none | Cache-Control: no-cache | Content-Length: 199 | Connection: close | Content-Type: text/html; charset=iso-8859-1 | | | 403 Forbidden | |

Forbidden

|

You don't have permission to access this resource.

| | RTSPRequest: | HTTP/1.1 400 Bad Request | Date: Thu, 11 Sep 2025 03:11:02 GMT | Server: | X-Frame-Options: SAMEORIGIN | X-XSS-Protection: 1; mode=block | X-Content-Type-Options: nosniff | Strict-Transport-Security: max-age=31536000; includeSubDomains; preload | Referrer-Policy: same-origin | X-Permitted-Cross-Domain-Policies: none | Cache-Control: no-cache | Content-Length: 347 | Connection: close | Content-Type: text/html; charset=iso-8859-1 | | | 400 Bad Request | |

Bad Request

|

Your browser sent a request that this server could not understand.
|

|

Additionally, a 400 Bad Request | error was encountered while trying to use an ErrorDocument to handle the request.

|_ |_http-server-header: 443/tcp open ssl/https |_http-server-header: | tls-alpn: |_ http/1.1 |_ssl-date: TLS randomness does not represent time | ssl-cert: Subject: commonName=*.multicert.com/organizationName=MULTICERT - SERVI\xC3\x87OS DE CERTIFICA\xC3\x87\xC3\x83O ELECTR\xC3\x93NICA S.A./stateOrProvinceName=Porto/countryName=PT | Subject Alternative Name: DNS:*.multicert.com, DNS:multicert.com | Not valid before: 2025-03-31T00:00:00 |_Not valid after: 2026-05-01T23:59:59 | fingerprint-strings: | GetRequest: | HTTP/1.1 400 Bad Request | Date: Thu, 11 Sep 2025 03:11:08 GMT | Server: | X-Frame-Options: SAMEORIGIN | X-XSS-Protection: 1; mode=block | X-Content-Type-Options: nosniff | Strict-Transport-Security: max-age=31536000; includeSubDomains; preload | Referrer-Policy: same-origin | X-Permitted-Cross-Domain-Policies: none | Cache-Control: no-cache | Last-Modified: Thu, 16 Sep 2021 10:29:26 GMT | ETag: "f65-5cc1a49fbad80" | Accept-Ranges: bytes | Content-Length: 3941 | Report-To: {'url': 'https://www.multicert.com/report-uri/csp-violation', 'group': 'default', 'max-age': 10886400} | Content-Security-Policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.multicert.com https://multicert.com https://cloud4.go-contact.com:3001 https://cloud4.go-contact.com:3002 https://cloud4.go-contact.com:50002 https://www.google-analytics.com https://www.googletagmanager.com; script-src 'self' 'unsafe-inline' | HTTPOptions: | HTTP/1.1 400 Bad Request | Date: Thu, 11 Sep 2025 03:11:09 GMT | Server: | X-Frame-Options: SAMEORIGIN | X-XSS-Protection: 1; mode=block | X-Content-Type-Options: nosniff | Strict-Transport-Security: max-age=31536000; includeSubDomains; preload | Referrer-Policy: same-origin | X-Permitted-Cross-Domain-Policies: none | Cache-Control: no-cache | Last-Modified: Thu, 16 Sep 2021 10:29:26 GMT | ETag: "f65-5cc1a49fbad80" | Accept-Ranges: bytes | Content-Length: 3941 | Report-To: {'url': 'https://www.multicert.com/report-uri/csp-violation', 'group': 'default', 'max-age': 10886400} |_ Content-Security-Policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.multicert.com https://multicert.com https://cloud4.go-contact.com:3001 https://cloud4.go-contact.com:3002 https://cloud4.go-contact.com:50002 https://www.google-analytics.com https://www.googletagmanager.com; script-src 'self' 'unsafe-inline' | http-robots.txt: 42 disallowed entries (15 shown) | /cgi-bin/ /images/ /pages/thankyou.html | /images/ph.webp* /media/* /ContentPortlet/* /es/* | /pt/exclusivo-fatura-eletronica/ /pt/associar-entidade/ | /pt/para-representantes-entidade/ /pt/para-web/ /pt/para-dados-entidade/ |_/pt/outros-certificados/ /pt/atributos-entidade/ /pt/para-ssl-nao-ev/ 2 services unrecognized despite returning data. If you know the service/version, please submit the following fingerprints at https://nmap.org/cgi-bin/submit.cgi?new-service : ==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)============== SF-Port80-TCP:V=7.92%I=7%D=9/10%Time=68C23DC5%P=x86_64-redhat-linux-gnu%r( SF:GetRequest,2DD,"HTTP/1\.1\x20302\x20Found\r\nDate:\x20Thu,\x2011\x20Sep SF:\x202025\x2003:11:01\x20GMT\r\nServer:\x20\x20\r\nX-Frame-Options:\x20S SF:AMEORIGIN\r\nX-XSS-Protection:\x201;\x20mode=block\r\nX-Content-Type-Op SF:tions:\x20nosniff\r\nStrict-Transport-Security:\x20max-age=31536000;\x2 SF:0includeSubDomains;\x20preload\r\nReferrer-Policy:\x20same-origin\r\nX- SF:Permitted-Cross-Domain-Policies:\x20none\r\nCache-Control:\x20no-cache\ SF:r\nLocation:\x20https://www\.multicert\.com/\r\nCache-Control:\x20max-a SF:ge=1\r\nExpires:\x20Thu,\x2011\x20Sep\x202025\x2003:11:02\x20GMT\r\nCon SF:tent-Length:\x20210\r\nConnection:\x20close\r\nContent-Type:\x20text/ht SF:ml;\x20charset=iso-8859-1\r\n\r\n\n\n302\x20Found</titl SF:e>\n</head><body>\n<h1>Found</h1>\n<p>The\x20document\x20has\x20moved\x SF:20<a\x20href=\"https://www\.multicert\.com/\">here</a>\.</p>\n</body></ SF:html>\n")%r(HTTPOptions,26E,"HTTP/1\.1\x20403\x20Forbidden\r\nDate:\x20 SF:Thu,\x2011\x20Sep\x202025\x2003:11:02\x20GMT\r\nServer:\x20\x20\r\nX-Fr SF:ame-Options:\x20SAMEORIGIN\r\nX-XSS-Protection:\x201;\x20mode=block\r\n SF:X-Content-Type-Options:\x20nosniff\r\nStrict-Transport-Security:\x20max SF:-age=31536000;\x20includeSubDomains;\x20preload\r\nReferrer-Policy:\x20 SF:same-origin\r\nX-Permitted-Cross-Domain-Policies:\x20none\r\nCache-Cont SF:rol:\x20no-cache\r\nContent-Length:\x20199\r\nConnection:\x20close\r\nC SF:ontent-Type:\x20text/html;\x20charset=iso-8859-1\r\n\r\n<!DOCTYPE\x20HT SF:ML\x20PUBLIC\x20\"-//IETF//DTD\x20HTML\x202\.0//EN\">\n<html><head>\n<t SF:itle>403\x20Forbidden\n\n

Forbidden

\n

Yo SF:u\x20don't\x20have\x20permission\x20to\x20access\x20this\x20resource\.< SF:/p>\n\n")%r(RTSPRequest,304,"HTTP/1\.1\x20400\x20Bad\x20R SF:equest\r\nDate:\x20Thu,\x2011\x20Sep\x202025\x2003:11:02\x20GMT\r\nServ SF:er:\x20\x20\r\nX-Frame-Options:\x20SAMEORIGIN\r\nX-XSS-Protection:\x201 SF:;\x20mode=block\r\nX-Content-Type-Options:\x20nosniff\r\nStrict-Transpo SF:rt-Security:\x20max-age=31536000;\x20includeSubDomains;\x20preload\r\nR SF:eferrer-Policy:\x20same-origin\r\nX-Permitted-Cross-Domain-Policies:\x2 SF:0none\r\nCache-Control:\x20no-cache\r\nContent-Length:\x20347\r\nConnec SF:tion:\x20close\r\nContent-Type:\x20text/html;\x20charset=iso-8859-1\r\n SF:\r\n\n\n400\x20Bad\x20Request\n\n< SF:h1>Bad\x20Request\n

Your\x20browser\x20sent\x20a\x20request\x20t SF:hat\x20this\x20server\x20could\x20not\x20understand\.\n

\n< SF:p>Additionally,\x20a\x20400\x20Bad\x20Request\nerror\x20was\x20encounte SF:red\x20while\x20trying\x20to\x20use\x20an\x20ErrorDocument\x20to\x20han SF:dle\x20the\x20request\.

\n\n"); ==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)============== SF-Port443-TCP:V=7.92%T=SSL%I=7%D=9/10%Time=68C23DCC%P=x86_64-redhat-linux SF:-gnu%r(GetRequest,1ADB,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nDate:\x20 SF:Thu,\x2011\x20Sep\x202025\x2003:11:08\x20GMT\r\nServer:\x20\x20\r\nX-Fr SF:ame-Options:\x20SAMEORIGIN\r\nX-XSS-Protection:\x201;\x20mode=block\r\n SF:X-Content-Type-Options:\x20nosniff\r\nStrict-Transport-Security:\x20max SF:-age=31536000;\x20includeSubDomains;\x20preload\r\nReferrer-Policy:\x20 SF:same-origin\r\nX-Permitted-Cross-Domain-Policies:\x20none\r\nCache-Cont SF:rol:\x20no-cache\r\nLast-Modified:\x20Thu,\x2016\x20Sep\x202021\x2010:2 SF:9:26\x20GMT\r\nETag:\x20\"f65-5cc1a49fbad80\"\r\nAccept-Ranges:\x20byte SF:s\r\nContent-Length:\x203941\r\nReport-To:\x20{'url':\x20'https://www\. SF:multicert\.com/report-uri/csp-violation',\x20'group':\x20'default',\x20 SF:'max-age':\x2010886400}\r\nContent-Security-Policy:\x20default-src\x20' SF:self'\x20'unsafe-inline'\x20'unsafe-eval'\x20https://www\.multicert\.co SF:m\x20https://multicert\.com\x20https://cloud4\.go-contact\.com:3001\x20 SF:https://cloud4\.go-contact\.com:3002\x20https://cloud4\.go-contact\.com SF::50002\x20https://www\.google-analytics\.com\x20https://www\.googletagm SF:anager\.com;\x20\x20\x20script-src\x20'self'\x20'unsafe-inline'")%r(HTT SF:POptions,1ADB,"HTTP/1\.1\x20400\x20Bad\x20Request\r\nDate:\x20Thu,\x201 SF:1\x20Sep\x202025\x2003:11:09\x20GMT\r\nServer:\x20\x20\r\nX-Frame-Optio SF:ns:\x20SAMEORIGIN\r\nX-XSS-Protection:\x201;\x20mode=block\r\nX-Content SF:-Type-Options:\x20nosniff\r\nStrict-Transport-Security:\x20max-age=3153 SF:6000;\x20includeSubDomains;\x20preload\r\nReferrer-Policy:\x20same-orig SF:in\r\nX-Permitted-Cross-Domain-Policies:\x20none\r\nCache-Control:\x20n SF:o-cache\r\nLast-Modified:\x20Thu,\x2016\x20Sep\x202021\x2010:29:26\x20G SF:MT\r\nETag:\x20\"f65-5cc1a49fbad80\"\r\nAccept-Ranges:\x20bytes\r\nCont SF:ent-Length:\x203941\r\nReport-To:\x20{'url':\x20'https://www\.multicert SF:\.com/report-uri/csp-violation',\x20'group':\x20'default',\x20'max-age' SF::\x2010886400}\r\nContent-Security-Policy:\x20default-src\x20'self'\x20 SF:'unsafe-inline'\x20'unsafe-eval'\x20https://www\.multicert\.com\x20http SF:s://multicert\.com\x20https://cloud4\.go-contact\.com:3001\x20https://c SF:loud4\.go-contact\.com:3002\x20https://cloud4\.go-contact\.com:50002\x2 SF:0https://www\.google-analytics\.com\x20https://www\.googletagmanager\.c SF:om;\x20\x20\x20script-src\x20'self'\x20'unsafe-inline'"); Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port OS fingerprint not ideal because: Missing a closed TCP port so results incomplete No OS matches for host Network Distance: 16 hops TRACEROUTE (using port 80/tcp) HOP RTT ADDRESS 1 7.97 ms 208.76.251.177.rdns.ColocationAmerica.com (208.76.251.177) 2 0.58 ms gw.mcom-colocationamerica.com (208.64.231.81) 3 1.06 ms r2b4.n1.p1401.lax.multacom.net (64.69.46.11) 4 ... 5 9.92 ms 213.248.89.210 6 38.05 ms port-channel13.core4.dal1.he.net (184.104.196.170) 7 ... 8 61.25 ms 100ge0-17.core2.orf2.he.net (184.105.64.122) 9 ... 10 148.67 ms 100ge0-34.core1.bio1.he.net (184.104.196.162) 11 148.42 ms hurricane-ic-385930.ip.twelve99-cust.net (62.115.36.90) 12 ... 13 142.26 ms 195.8.21.82 14 ... 15 16 144.22 ms 62.48.217.201 OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ . Nmap done: 1 IP address (1 host up) scanned in 147.84 seconds