35
Medium Risk
2026-05-21 06:09:06
Security Issues Found
- ⚠️[LOW] 服务器信息泄露
- ⚠️被列入 1 个黑名单: AlienVault OTX
- ⚠️[MEDIUM] 缺少 HTTP 安全头
- ⚠️AlienVault OTX 发现 1 个恶意样本
Recommendations
- 💡检查 AlienVault OTX 社区报告
- 💡移除或修改 Server/X-Powered-By 响应头
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡申请从黑名单中移除,并修复安全问题
🌐Domain Info
Targetallstate.com
Registeredallstate.com
TLD.com
🛡️Threat Intelligence (7 platforms)
BlacklistAlienVault OTX
Malware32
Phishing0
Abuse Score0/100
🐛Vulnerabilities Found (2)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-Frame-Options, X-XSS-Protection, X-Content-Type-Options, Strict-Transport-Security, Content-Security-Policy, Referrer-Policy, Permissions-Policy
Fix: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: AkamaiNetStorage
Fix: 移除或修改 Server/X-Powered-By 响应头
🔌Open Ports (2)
80
http
443
https
🌐DNS Records
A: 167.127.109.24
MX: 0 allstate-com.mail.protection.outlook.com.
NS: ns1.allstate.com.
NS: ns2.allstate.com.
TXT: "docker-verification=4d4b70c7-e70c-4fdb-b94d-92388d6548b3"
TXT: "atlassian-domain-verification=vZroqPv0WFkRfKCpSa6e0eUabGUlSco8KkmoGm5HFS7zoL1cEg3adp2pDjeX4a/0"
TXT: "flexera-domain-verification-amvkgmevsvlrqpux"
TXT: "google-site-verification=PEzygCIO5MSygyVsh2ClLBPdBZEfewHJ5wUqmQFtGjA"
TXT: "onetrust-domain-verification=0b304c7054c2449f98fa574b6fba91ba"
TXT: "onetrust-domain-verification=542294bf11454e8ead138104ac4834fb"
TXT: "smartsheet-site-validation=u-0VA4_JvsBnXI3LH0RvoQ7kzquyhJBZ"
TXT: "vmware-cloud-verification-b0cc0a7a-9cf3-4ddc-bb3c-2dcb8d5010db"
TXT: "ec0f40ae70ac1017348cf3d7bffcc85ccd63d5ab25499b0bd3e7acc4024d8286"
TXT: "v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~all"
TXT: "415f0f96-4e9b-4398-b75e-49cfe45c3fdc"
TXT: "wrike-verification=Mzg3MDU5NDowOGQ5N2VmMGM4YWQzZjVkYTkwNWY0ZmYwYWY3ZWNiODNlYTIwNzlkZjJjYzgwZjdiYWUyZjE5NjA3MjgzMWZm"
TXT: "MS=ms52838893"
TXT: "flexera-domain-verification-fanbnesaoyoxhlim"
TXT: "apple-domain-verification=BbmkhR1qssWPjLvQ"
TXT: "google-site-verification=fhrfwg2DSHYiGkBezRwHYYN-3p4_DlHdsT98ptIH4Qo"
TXT: "amazonses:u+vuFCfyA2qi9kCkVnmzx7f/D61uF2x82MMBiebOoiE="
TXT: "zywave-domain-verification=D3xPKziM8l3OPdVHZdEHTIPd6aCzAzsCYgmkuVCquYo="
TXT: "mongodb-site-verification=1v0udRgmh2YDtYdAeVDMDp8FgcZuP4lv"
TXT: "smartsheet-site-validation=3NVPVRVK_jeJXA6nITz2mTlWZzS7iiOs"
TXT: "jamf-site-verification=tFT7i_tHo0vFXs996t3i8A"
TXT: "cisco-ci-domain-verification=4211f5a04381ca1a9441bb889d3f8eab95b47a81d15a6f0c639f69d3e821b31b"
TXT: "censys-domain-verification=NrZJmSaOnT55BMqGY-FMGhNVrSs9qC6OAFwZMJabXgXE"
TXT: "00DHo000001MFWf=1TBUq00000007nt"
TXT: "meltwater_sso_20250128"
TXT: "v8CTReTvzrKGoRUhZAmANJoyFz2hyBsVssACacRZzFrjOiSsi3oiootOXslGfocrHImfEDmFJS61C/QL0dzAJw=="
TXT: "atlassian-domain-verification=q1QlT5f/zNby1Xzt3DN88x55dSpwsZ7bOGo0w3/of0xTaHPRLsLIkpm3k7clKBj0"
TXT: "cursor-domain-verification-mktzfx=1gHw6EbEfxjkn0pz9lMwmXmmF"
TXT: "astro-domain-verification=cmhxr0oag0gwv01kai9x582gu"
TXT: "adobe-idp-site-verification=353f714f92cdee84f5d2be74a39a4234ff700b18f66f320625850929b0771e30"
TXT: "censys-domain-verification=fZkjosUHKYF82duY-PXUsyo1xksn3d0H9nbmp4Q0D11f"
TXT: "apple-domain-verification=J2sNhr0LPEfijv8mxx0dAMmwfUHBs4WoN0nSGaC9ilA"
TXT: "postman-domain-verification=b2471bea7d358023e60d6e91213ad425fcb0014f89d9ec37be51cddb4109f1010c54ff24f40ad2244e568042b112c29c2ed13ce8244ba68efd354d47c716dabf"
TXT: "DirectFedPassiveSignInUri=https://agtacc-st.allstate.com/FIM/sps/Verint1E-NP/saml20/login"
TXT: "onetrust-domain-verification=f146e1f1426c4bc3a47875bc4fe2f9a7"
TXT: "Bugcrowd=-SKqgQ73h8GGlWn2dYoz2A"
TXT: "webexdomainverification.=6c9bef87-fa47-4a29-9e72-f5ee6174f5f7"
TXT: "neat-pulse-domain-verification-QgMLxBM=9076c3e3-b225-436a-bf45-aa5b2f24617a"
SOA: ns2.allstate.com. dnsadmin.allstate.com. 2026051920 300 120 604800 3600
📋HTTP Headers
Server: AkamaiNetStorage