50
高风险
2026-05-21 04:40:58
发现的安全问题
- ⚠️[LOW] 服务器信息泄露
- ⚠️[HIGH] 敏感路径暴露
- ⚠️[MEDIUM] 缺少 HTTP 安全头
修复建议
- 💡添加 DMARC 记录增强邮件安全
- 💡配置 Web 服务器添加这些安全头
- 💡移除或修改 Server/X-Powered-By 响应头
- 💡限制对这些路径的访问或添加认证
🌐域名信息
目标域名101domain.com
注册域名101domain.com
顶级域名.com
🛡️威胁情报 (7 platforms)
Blacklist未列入黑名单
Malware0
Phishing0
Abuse Score0/100
🐛发现的漏洞 (3)
MEDIUM缺少 HTTP 安全头
缺少以下安全头: X-XSS-Protection, X-Content-Type-Options, Referrer-Policy, Permissions-Policy
修复建议: 配置 Web 服务器添加这些安全头
LOW服务器信息泄露
响应头泄露服务器信息: Server: cloudflare
修复建议: 移除或修改 Server/X-Powered-By 响应头
HIGH敏感路径暴露
发现可访问的敏感路径: /.env, /.git/config
修复建议: 限制对这些路径的访问或添加认证
🔌开放端口 (4)
80
http
443
https
8080
unknown
8443
unknown
🌐DNS 记录
A: 104.20.13.253
A: 104.20.14.253
AAAA: 2606:4700:10::6814:efd
AAAA: 2606:4700:10::6814:dfd
MX: 1 aspmx.l.google.com.
MX: 5 alt1.aspmx.l.google.com.
MX: 5 alt2.aspmx.l.google.com.
MX: 10 alt3.aspmx.l.google.com.
MX: 10 alt4.aspmx.l.google.com.
NS: cody.ns.cloudflare.com.
NS: nina.ns.cloudflare.com.
TXT: "_ie60rgrk9v87e5pmgsivrguuk9vzu7k"
TXT: "kjn233x00hksx3ytxvdj7w3px0fqcb8l"
TXT: "_hu673ukmloqlykejljwn3na4lg0midl"
TXT: "glfbyz9310yzb7n7rjj3w13z3zrflxcw"
TXT: "_qh6juj5vmc383ryskh4pl8zqgn650zy"
TXT: "527825518-1591174"
TXT: "citrix-verification-code=513379f2-7e28-4ab6-88c2-b004ed3cb0c2"
TXT: "d9w9gmv76blj8qdbz0qxvp90wrntcvck"
TXT: "MS=6E958AD07A99127C895C088C692BAD1B78EF11C9"
TXT: "_z5xhd995d8fzqyzr8t93zvbrpl1tyef"
TXT: "5nb0jqcjjwcl0j8x1sb4nbz584yk69d9"
TXT: "anthropic-domain-verification-4hs86q=8ATpuFJ2rpukcBfvzyNFHPgwg"
TXT: "google-site-verification=kWQ5Th4s9X2A4aRRxBKH5MJL7brKHiHm8_ZvPrAmjtE"
TXT: "google-site-verification=7pv2qqyvnDn1wUcLuNPQRDsdaz4RAmhIlZ3LSf8atW4"
TXT: "nqks8z4wk6n07rgp5pj55wx300rrmmmx"
TXT: "77fapf0428c9p93ueaa6g6m4vd"
TXT: "v=spf1 include:_u.101domain.com._spf.smart.ondmarc.com -all"
TXT: "atlassian-sending-domain-verification=ba5643e6-a3d4-4976-bfa3-a4b121923ca0"
TXT: "google-site-verification=pk5LZJsYNR4r5HaIVVo2p1b4ar4BKJlVflqkV70X5u8"
TXT: "v=DKIM1;t=s;n=core;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu6R9wCBblHLXPjZyuTqqjHsaVJYQtncLdHrBaebW0e+RQHWsukrtgREY4alLoax2fTDEK8Q25JRGanVaeht9cnT8//iUppeMHpka/7xuRwd8gmnFOfINh8pELidkWq1UcIIhSbXhhEax8sxsCZ1YA7FCIWhzBlNK17PW4HF8baNU/A5qBIGSDx0cYtroZf" "PMagyAHDEGOMC5ZsXOaDtiioRZZYKvkh9vTX7BtpSaBHCUaQpWsJ3b3a2eYkZowi4DXd1uas5seAQf+tf/A2+9hBXagjRkWgypUB4KVKjYXToIyA7fMOvklzJaPLJzz7yoD2mztrQfFs94Uagt34Pl2QIDAQAB"
TXT: "atlassian-domain-verification=kawtX3RxT/0K8ama0CpTkbmUPoJfjvt8BCeTa5SaPMLpdVW6Z1Eo6qrSbqvC5F6l"
TXT: "google-site-verification=o1mQyd9WNVMMHPysVOFCsyRR686pw8mrTS3yrsx8ZFA"
SOA: cody.ns.cloudflare.com. dns.cloudflare.com. 2404699318 10000 2400 604800 1800
📋HTTP 响应头
X-Frame-Options: SAMEORIGIN, SAMEORIGIN
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Content-Security-Policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' https://images.101datacenter.net https://*.101domain.com https://chat.l
Server: cloudflare