DNS & HTTP Analysis for hp.com

Processing Domain hp.com on 29/03/2019 03:34:03 pm


  • This tool is available free to use at GENSupport
  • Help and Support for your DNS or HTTP issues available on our Forum
  • The version that produced this report is 1.004b

Processing DNS Records

Basic Checks

Here we check the basic functioning and security of your DNS

  • Zone Queries 6 Record Types and 29 Records Found
  • Zone Transfer Failed
  • Zone Dump
    • TXT
      • _dmarc.hp.com. TTL 3600 "v=DMARC1; p=none; rua=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it.; ruf=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it.; sp=none; fo=1; ri=86400"
      • hp.com. TTL 3600 "7155-7871-A6E8-AEB1-5764-4DE3-D4DD-6680"
      • hp.com. TTL 3600 "IQI2xT+r6hj2PuJ171J02xOMMXSUHl4I2VJ5a4CB2OsyfPJkfHXHbmJ5e2Ee6kbNjJQsERvcm3d4IeS2e7xPPQ=="
      • hp.com. TTL 3600 "MS=ms38857149"
      • hp.com. TTL 3600 "adobe-sign-verification=8d7c98c65d9a78aa4fe83e40ac618269"
      • hp.com. TTL 3600 "facebook-domain-verification=1f6jis8ngyl6xhtopb196nk2jzb6wm"
      • hp.com. TTL 3600 "google-site-verification:2kiyv1SjebKUcEmaJ4QtapQe2EcbqPcYmhiJ-XJMZsY"
      • hp.com. TTL 3600 "v=spf1 mx include:_spf.hp.com include:_spf.salesforce.com include:us._netblocks.mimecast.com include:spf.protection.outlook.com include:standardregisterSPF.smtp.com ip4:89.202.218.215 ip4:89.202.218.214 ip4:74.209.251.23 ~all"
    • NS
      • glb1.hp.com. TTL 3600 nsi1g1.hp.com.
      • glb1.hp.com. TTL 3600 nsi2g1.hp.com.
      • glb1.hp.com. TTL 3600 nsi3g1.hp.com.
      • glb1.hp.com. TTL 3600 nsi4g1.hp.com.
      • hp.com. TTL 3600 ns1.hp.com.
      • hp.com. TTL 3600 ns2.hp.com.
      • hp.com. TTL 3600 ns3.hp.com.
      • hp.com. TTL 3600 ns4.hp.com.
      • hp.com. TTL 3600 ns5.hp.com.
      • hp.com. TTL 3600 ns6.hp.com.
    • MX
      • hp.com. TTL 300 10 us-smtp-inbound-1.mimecast.com.
    • A
      • hp.com. TTL 3600 15.72.164.74
      • hp.com. TTL 3600 15.72.228.83
      • hp.com. TTL 3600 15.73.104.147
      • hp.com. TTL 3600 15.73.192.108
      • nsi1g1.hp.com. TTL 3600 15.65.250.120
      • nsi2g1.hp.com. TTL 3600 15.65.242.120
      • nsi3g1.hp.com. TTL 3600 15.65.234.120
      • nsi4g1.hp.com. TTL 3600 15.65.226.120
    • SOA
      • hp.com. TTL 900 txe01hpiibpe.ams.hp.net. hostmaster.hp.com. 443243227 3600 3600 2419200 900
    • CNAME
      • www.hp.com. TTL 3600 www-hpcom.glb1.hp.com.

Nameservers

Here we check the setup of your nameservers. All nameservers on your domain should be listed in the zone and returned in an ANY query along with corresponding A and/or AAAA records resolving their address.

  • ns3.hp.com 15.90.160.180 Found and Match. ( Missing from Zone Address Records )
  • ns2.hp.com 15.65.232.180 Found and Match. ( Missing from Zone Address Records )
  • ns6.hp.com 15.89.164.180 Found and Match. ( Missing from Zone Address Records )
  • ns1.hp.com 15.65.248.180 Found and Match. ( Missing from Zone Address Records )
  • ns4.hp.com 15.90.164.180 Found and Match. ( Missing from Zone Address Records )
  • ns5.hp.com 15.89.160.180 Found and Match. ( Missing from Zone Address Records )

Processing TXT Records

DMARC Record:

The DMARC Record defines how MTA's should response when parsing DKIM and SPF records

  • v=dmarc1 ( The Version of this record)
  • p=none ( The Policy to implement on FAIL)
  • rua=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it. ( Reporting URI of aggregate reports)
  • ruf=mailto:This email address is being protected from spambots. You need JavaScript enabled to view it. ( Reporting URI for forensic reports)
  • sp=none ( The Policy to implement for subdomains on FAIL)
  • fo=1 ( Dictates what type of authentication/alignment vulnerabilities are reported)
  • ri=86400

Unknown Record:

We cannot identify this record. If you know what it is and its no longer needed then remove it

  • 7155-7871-a6e8-aeb1-5764-4de3-d4dd-6680

Unknown Record:

We cannot identify this record. If you know what it is and its no longer needed then remove it

  • iqi2xt+r6hj2puj171j02xommxsuhl4i2vj5a4cb2osyfpjkfhxhbmj5e2ee6kbnjjqservcm3d4ies2e7xppq==

Microsoft Office 365 Verification Record:

This record is used to identify this domain as an Office 365 domain

  • ms=ms38857149

Adobe PDF Signing Verification Record:

Adobe Sign allows cloud based signatures

  • adobe-sign-verification=8d7c98c65d9a78aa4fe83e40ac618269

Facebook Domain Verification Record:

This record is used by Facebook to validate domain ownership when creating company pages

  • facebook-domain-verification=1f6jis8ngyl6xhtopb196nk2jzb6wm

Google Domain Verification Record:

This record is used by Google to validate domain ownership when setting up Google Analytics etc

  • google-site-verification:2kiyv1sjebkucemaj4qtapqe2ecbqpcymhij-xjmzsy

SPF Record:

The SPF Record defines which IP addresses are permitted to send email on this domain's behalf

  • v=spf1 ( The SPF Format Version Number)
  • mx
  • include:_spf.hp.com ( The SPF Record listed here should be used - whilst convenient places additional load on DNS and should be avoided)
  • include:_spf.salesforce.com ( The SPF Record listed here should be used - whilst convenient places additional load on DNS and should be avoided)
  • include:us._netblocks.mimecast.com ( The SPF Record listed here should be used - whilst convenient places additional load on DNS and should be avoided)
  • include:spf.protection.outlook.com ( The SPF Record listed here should be used - whilst convenient places additional load on DNS and should be avoided)
  • include:standardregisterspf.smtp.com ( The SPF Record listed here should be used - whilst convenient places additional load on DNS and should be avoided)
  • ip4:89.202.218.215 ( The IPv4 Address of a permitted sender - make sure this scopes your outgoing mail server)
  • ip4:89.202.218.214 ( The IPv4 Address of a permitted sender - make sure this scopes your outgoing mail server)
  • ip4:74.209.251.23 ( The IPv4 Address of a permitted sender - make sure this scopes your outgoing mail server)
  • ~all ( Permit other hosts but take note)

Processing MX (Mail Exchanger) Records

These Records determine the servers (mail servers) responsible for handling your incomming email. Each service is given a priority and they will be used in that order. If all the priorities are the same then they will be used in a round-robin fashion

  • Priority 10 handled by host us-smtp-inbound-1.mimecast.com. [207.211.30.242] Valid
    • Email Handled By Mimecast
    • Port 25 (smtp) : Open

Processing CNAME (Alias) Records

These records are aliases making one hostname relate to another. These are often used to match hosts back to clusters or internal referencs that may change.

  • www.hp.com. www-hpcom.glb1.hp.com.

Processing A (IPv4 Address) Records

These records define the IP Addresse(s) of the servers responsible for hosting your webiste and other resouces on your domain. The www record is the most common one and will be used to identify your website address

  • Host: hp.com. = IP: [15.72.164.74] Valid Unreachable TX:1 RX:0 LOSS:100%
  • Host: hp.com. = IP: [15.72.228.83] Valid Unreachable TX:1 RX:0 LOSS:100%
  • Host: hp.com. = IP: [15.73.104.147] Valid Unreachable TX:1 RX:0 LOSS:100%
  • Host: hp.com. = IP: [15.73.192.108] Valid Unreachable TX:1 RX:0 LOSS:100%
  • Host: nsi1g1.hp.com. = IP: [15.65.250.120] Valid Reachable (131.765ms)
  • Host: nsi2g1.hp.com. = IP: [15.65.242.120] Valid Reachable (127.165ms)
  • Host: nsi3g1.hp.com. = IP: [15.65.234.120] Valid Reachable (132.526ms)
  • Host: nsi4g1.hp.com. = IP: [15.65.226.120] Valid Reachable (134.33ms)

Processing AAAA (IPv6 Address) Records

These records define the IP Addresse(s) of the servers responsible for hosting your webiste and other resouces on your domain

    Processing Domain Public Records

      Domain Name WHOIS Information - hp.com

      • Domain Name HP.COM
      • Registry Domain ID 5205407_DOMAIN_COM-VRSN
      • Registrar WHOIS Server whois.markmonitor.com
      • Registrar URL: http://www.markmonitor.com
      • Updated Date: 2019-01-31T10:41:29Z
      • Creation Date: 1986-03-03T05:00:00Z
      • Registry Expiry Date: 2020-03-04T05:00:00Z
      • Registrar MarkMonitor Inc.
      • Registrar IANA ID 292
      • Registrar Abuse Contact Email This email address is being protected from spambots. You need JavaScript enabled to view it.
      • Registrar Abuse Contact Phone +1.2083895740
      • Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
      • Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
      • Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
      • Domain Status: serverDeleteProhibited https://icann.org/epp#serverDeleteProhibited
      • Domain Status: serverTransferProhibited https://icann.org/epp#serverTransferProhibited
      • Domain Status: serverUpdateProhibited https://icann.org/epp#serverUpdateProhibited
      • Name Server NS1.HP.COM
      • Name Server NS2.HP.COM
      • Name Server NS3.HP.COM
      • Name Server NS4.HP.COM
      • Name Server NS5.HP.COM
      • Name Server NS6.HP.COM
      • DNSSEC unsigned
      • URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/

      Website Hosting WHOIS Information - 15.72.164.74

      • NetRange 15.0.0.0 - 15.103.255.255
      • CIDR 15.0.0.0/10, 15.96.0.0/13, 15.64.0.0/11
      • NetHandle NET-15-0-0-0-1
      • Parent NET15 (NET-15-0-0-0-0)
      • NetType Direct Assignment
      • OriginAS
      • Organization Hewlett-Packard Company (HP)
      • RegDate 1994-06-30
      • Updated 2017-06-07
      • Ref: https://rdap.arin.net/registry/ip/15.0.0.0
      • OrgName Hewlett-Packard Company
      • OrgId HP
      • Address 3000 Hanover Street
      • City Palo Alto
      • StateProv CA
      • PostalCode 94304
      • Country US
      • RegDate
      • Updated 2014-07-23
      • Ref: https://rdap.arin.net/registry/entity/HP
      • OrgAbuseHandle HH15-ORG-ARIN
      • OrgAbuseName Hewlett-Packard Company
      • OrgAbusePhone +1-800-524-7638
      • OrgAbuseEmail This email address is being protected from spambots. You need JavaScript enabled to view it.
      • OrgAbuseRef: https://rdap.arin.net/registry/entity/HH15-ORG-ARIN
      • OrgTechHandle HH15-ORG-ARIN
      • OrgTechName Hewlett-Packard Company
      • OrgTechPhone +1-800-524-7638
      • OrgTechEmail This email address is being protected from spambots. You need JavaScript enabled to view it.
      • OrgTechRef: https://rdap.arin.net/registry/entity/HH15-ORG-ARIN
      • RAbuseHandle NAR-ARIN
      • RAbuseName Network Abuse Response
      • RAbusePhone +1-916-785-1641
      • RAbuseEmail This email address is being protected from spambots. You need JavaScript enabled to view it.
      • RAbuseRef: https://rdap.arin.net/registry/entity/NAR-ARIN
      • RTechHandle HH15-ORG-ARIN
      • RTechName Hewlett-Packard Company
      • RTechPhone +1-800-524-7638
      • RTechEmail This email address is being protected from spambots. You need JavaScript enabled to view it.
      • RTechRef: https://rdap.arin.net/registry/entity/HH15-ORG-ARIN

    Processing Website

      Website Headers for www.hp.com

      We will obtain the headers from your website and parse them for validity

      • Web Server Header is Missing
      • Request Response
      • SSL is not available
      • There was a redirect to http://www-redirect.ext.hp.com
      • Valid methods for a specified resource (Allow) Missing
      • Control options for the current connection (Connection) Missing
      • Specifies Technology in use (X-Powered-By) Missing
      • Security Related

        • modifies the algorithm used to populate the Referer header (Referrer-Policy) Missing
        • stops pages when they detect XSS (X-XSS-Protection) Missing
        • Allow and Deny the use of browser features (Feature-Policy) Missing
        • Platform for Privacy Preferences (P3P) Missing

        Cross Origin Resource Sharing

        • (Access-Control-Allow-Origin) Missing
        • (Access-Control-Allow-Credentials) Missing
        • (Access-Control-Expose-Headers) Missing
        • (Access-Control-Max-Age) Missing
        • (Access-Control-Allow-Methods) Missing
        • (Access-Control-Allow-Headers) Missing

        Content Headers

        • The natural language or languages of the intended audience (Content-Language) Missing
        • The form of encoding used (Transfer-Encoding) Missing
        • The length of the response body (Content-Length) Missing
        • The Media type of the body of the request (Content-Type) Missing
        • The date and time of generation (Date) Missing
        • An opportunity to raise a File Download dialogue box (Content-Disposition) Missing
        • The type of encoding used on the data (Content-Encoding) Missing
        • An alternate location for the returned data (Content-Location) Missing
        • Where in a full body message this partial message belongs (Content-Range) Missing
        • An identifier for a specific version of a resource (ETag) Missing
        • how to match future request headers (Vary) Missing

        Caching Control

        • Tells caches whether they may cache this object (Cache-Control) Missing
        • Gives the date/time after which the response is considered stale (Expires) Missing
        • The last modified date for the requested object (Last-Modified) Missing
        • Implementation-specific fields for caching (Pragma) Missing
        • From an Intermediate cache (X-Cache-Action) Missing
        • Intermediate Cache Hits count (X-Cache-Hits) Missing
        • Intermediate Cache Age (X-Cache-Age) Missing
        • Informs the client of proxies through which the response was sent (Via) Missing
        • The Age this page has been cached in a proxy (Age) Missing

        Strict Transport Security (HSTS) Policy

        • A HSTS Policy for the client with scope (Strict-Transport-Security) Missing

        Cookies and Fragments

        • Cookie Data (Set-Cookie) Missing

        Robots.txt

        • You do not appear to have a robots.txt file. This is ok

    Processing Website Profile Data

      Website Render for www.hp.com

      Technology Profile hp.com

      We will check for fingerprints of common website technologies

        • Failed to succesfully profile the website, it is likely either custom or plain HTML.

      Meta Profile http://www-redirect.ext.hp.com/

      We will check the entire body for metadata

        Feature Profile http://www-redirect.ext.hp.com/

        We will check for common HTML, Javascript and CSS Features

        • DocType (1)
        • Document Validated No
        • Tawk.to No
        • FontAwesome No
        • Google Web Fonts No
        • T3 Framework No
        • Google Structured Data No
        • Google Analytics No
        • Mamoto Analytics No
        • JQuery No
        • RequireJS No
        • jQuery No

      Processing Completed

        The process is now completed and the results are shown above. Please take a moment to consider each test and its response. DNS, SMTP and HTTP are not simple protocols and it is way beyond the scope of this tool to suggest improvements, but you are welcome to request assistance via our Forum.