45
Medium Risk
2026-05-21 06:40:14
Security Issues Found
- ⚠️[HIGH] 敏感路径暴露
- ⚠️[MEDIUM] 缺少 HTTP 安全头
Recommendations
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡限制对这些路径的访问或添加认证
🌐Domain Info
Targetamtrak.com
Registeredamtrak.com
TLD.com
🛡️Threat Intelligence (7 platforms)
BlacklistNot Blacklisted
Malware0
Phishing0
Abuse Score0/100
🐛Vulnerabilities Found (2)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-XSS-Protection, X-Content-Type-Options, Referrer-Policy, Permissions-Policy
Fix: 配置 Web 服务器添加这些安全头
HIGH敏感路径暴露
发现可访问的敏感路径: /.env
Fix: 限制对这些路径的访问或添加认证
🔌Open Ports (2)
80
http
443
https
🌐DNS Records
A: 23.77.31.130
AAAA: 2600:1417:8400:288::1860
AAAA: 2600:1417:8400:280::1860
MX: 0 mx1.hc2612-17.iphmx.com.
MX: 0 mx2.hc2612-17.iphmx.com.
NS: a2-66.akam.net.
NS: a10-65.akam.net.
NS: a1-62.akam.net.
NS: a9-65.akam.net.
NS: a3-64.akam.net.
NS: a26-67.akam.net.
TXT: "google-site-verification=RINi4O6tAsn3wxPf1R89M2SQed-Xyoo-Ri7xDYqNnJU"
TXT: "_noyplul4olb0n3bb7dv8ltn93s0bbc9"
TXT: "atlassian-domain-verification=845JZNWKeTEHg62xWmy8YCOkKI1gD/IWg4w4/HGtqjwazzGP7GgHr9a5Vdhlyvc7"
TXT: "google-gws-recovery-domain-verification=49529359"
TXT: "MS=ms13076239"
TXT: "bw=WVk8lecSL1wSvabPx6XsDBRjN6N7PX2RfTnWYlkRwgNT"
TXT: "ms-domain-verification=1fceff79-0683-4610-9553-7d9d829943cb"
TXT: "MS=ms76818831"
TXT: "Dynatrace-site-verification=2b27ef9f-4326-4c67-ac97-db68f75bff42__1h8g3c6tjuii7oqc3v3qvqeq0k"
TXT: "_whz1vpn6qv5yhwcy7ez8vxu4i8iumwx"
TXT: "ms-domain-verification=2d55fd47-2e5b-41b7-a198-7c6ebace5d19"
TXT: "teamviewer-sso-verification=493792d9f4304862bd09db7d4b528bad"
TXT: "MS=301545433FA1E4126BB6C72EFB8D592AFA20B4CA"
TXT: "v=spf1 ip4:70.33.172.36 ip4:174.129.192.189 ip4:174.129.8.146 ip4:12.7.225.18 ip4:12.7.225.39 ip4:12.7.224.10 ip4:85.233.200.160/27 ip4:217.117.153.196/27 ip4:50.31.202.32/27 ip4:204.93.133.96/27 ip4:206.51.247.0/27 ip4:65.196.93.7" " ip4:74.179.243.94/32 ip4:172.214.67.207/32 ip4:23.251.237.159/32 ip4:23.251.237.160/29 ip4:23.251.237.168/30 ip4:4.236.81.254 ip4:48.217.23.130" " exists:%{i}.spf.hc2612-17.iphmx.com include:spf.protection.outlook.com include:spf.mandrillapp.com include:spf.salesforce.com include:spf.au.enablon.com include:cust-spf.exacttarget.com include:_spf-dc4.sapsf.com mx -all"
TXT: "p21DeRGccWrXF4st2xyy1hPLBVpO9+Ya4010c1Kt4P1cHNFqWZD5h5DfohbygQXz2Ma7l9dcHtFqBef6ZYV4Nw=="
TXT: "_nwtmjqwjxbh8szvpqryc1ieu4ie04us"
TXT: "MS=ms65892260"
TXT: "00D3i000000qpWn=1TBWQ0000000KbR"
SOA: a2-66.akam.net. hostmaster.akamai.com. 2013043236 10800 3600 2592000 900
📋HTTP Headers
X-Frame-Options: SAMEORIGIN
Strict-Transport-Security: max-age=31536000; includeSubDomains
Content-Security-Policy: frame-ancestors 'self' https://*.amtrak.com http://*.amtrak.ad.nrpc https://upg.plusgrade.com https://bidup.amtrak.com h
Server: