Advertisement
Guest User

Untitled

a guest
May 4th, 2015
1,133
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 26.12 KB | None | 0 0
  1. root@kali:~# ping bitcoinfield.net
  2. PING bitcoinfield.net (190.115.24.246) 56(84) bytes of data.
  3. 64 bytes from noddos.org (190.115.24.246): icmp_req=1 ttl=49 time=51.0 ms
  4. 64 bytes from noddos.org (190.115.24.246): icmp_req=2 ttl=49 time=50.9 ms
  5. 64 bytes from noddos.org (190.115.24.246): icmp_req=3 ttl=49 time=52.0 ms
  6.  
  7.  
  8. root@kali:~# nmap -sS -sV 190.115.24.246 -O --version-intensity 9 -vv
  9.  
  10. Starting Nmap 6.47 ( http://nmap.org ) at 2015-05-03 21:55 EDT
  11. NSE: Loaded 29 scripts for scanning.
  12. Initiating Ping Scan at 21:55
  13. Scanning 190.115.24.246 [4 ports]
  14. Completed Ping Scan at 21:55, 0.10s elapsed (1 total hosts)
  15. Initiating Parallel DNS resolution of 1 host. at 21:55
  16. Completed Parallel DNS resolution of 1 host. at 21:55, 0.01s elapsed
  17. Initiating SYN Stealth Scan at 21:55
  18. Scanning noddos.org (190.115.24.246) [1000 ports]
  19. Discovered open port 3306/tcp on 190.115.24.246
  20. Discovered open port 53/tcp on 190.115.24.246
  21. Discovered open port 21/tcp on 190.115.24.246
  22. Discovered open port 143/tcp on 190.115.24.246
  23. Discovered open port 80/tcp on 190.115.24.246
  24. Discovered open port 443/tcp on 190.115.24.246
  25. Discovered open port 995/tcp on 190.115.24.246
  26. Discovered open port 993/tcp on 190.115.24.246
  27. Discovered open port 110/tcp on 190.115.24.246
  28. Discovered open port 22/tcp on 190.115.24.246
  29. Discovered open port 465/tcp on 190.115.24.246
  30. Completed SYN Stealth Scan at 21:55, 13.01s elapsed (1000 total ports)
  31. Initiating Service scan at 21:55
  32. Scanning 11 services on noddos.org (190.115.24.246)
  33. Completed Service scan at 21:56, 27.31s elapsed (11 services on 1 host)
  34. Initiating OS detection (try #1) against noddos.org (190.115.24.246)
  35. Retrying OS detection (try #2) against noddos.org (190.115.24.246)
  36. NSE: Script scanning 190.115.24.246.
  37. NSE: Starting runlevel 1 (of 1) scan.
  38. Initiating NSE at 21:56
  39. Completed NSE at 21:56, 2.10s elapsed
  40. Nmap scan report for noddos.org (190.115.24.246)
  41. Host is up (0.056s latency).
  42. Scanned at 2015-05-03 21:55:19 EDT for 48s
  43. Not shown: 987 filtered ports
  44. PORT STATE SERVICE VERSION
  45. 21/tcp open ftp Pure-FTPd
  46. 22/tcp open ssh OpenSSH 5.3 (protocol 2.0)
  47. 26/tcp closed rsftp
  48. 53/tcp open tcpwrapped
  49. 80/tcp open http nginx
  50. 110/tcp open pop3 Dovecot pop3d
  51. 143/tcp open imap Dovecot imapd
  52. 443/tcp open http nginx
  53. 465/tcp open ssl/smtp Exim smtpd 4.85
  54. 993/tcp open ssl/imap Dovecot imapd
  55. 995/tcp open ssl/pop3 Dovecot pop3d
  56. 3306/tcp open mysql MySQL (unauthorized)
  57. 8080/tcp closed http-proxy
  58. OS fingerprint not ideal because: Didn't receive UDP response. Please try again with -sSU
  59. Aggressive OS guesses: Cisco Unified Communications Manager VoIP adapter (96%), Linux 2.6.26 (PCLinuxOS) (96%), 2.6.32 (93%), Linux 3.4 (93%), Linux 3.5 (93%), Linux 2.6.18 (93%), Linux 2.6.32 (93%), Linux 2.6.9 - 2.6.18 (92%), Linux 3.1 - 3.2 (92%), Linux 2.6.39 (92%)
  60. No exact OS matches for host (test conditions non-ideal).
  61. TCP/IP fingerprint:
  62. SCAN(V=6.47%E=4%D=5/3%OT=21%CT=26%CU=%PV=N%G=N%TM=5546D1B7%P=i686-pc-linux-gnu)
  63. SEQ(SP=108%GCD=2%ISR=10A%TI=Z%II=I%TS=A)
  64. SEQ(II=I)
  65. ECN(R=N)
  66. T1(R=Y%DF=Y%TG=40%S=O%A=S+%F=AS%RD=0%Q=)
  67. T1(R=N)
  68. T2(R=N)
  69. T3(R=N)
  70. T4(R=N)
  71. T5(R=Y%DF=Y%TG=40%W=0%S=Z%A=S+%F=AR%O=%RD=0%Q=)
  72. T6(R=N)
  73. T7(R=N)
  74. U1(R=N)
  75. IE(R=Y%DFI=N%TG=40%CD=S)
  76.  
  77. Service Info: Host: dedicated.ddos-guard.net
  78.  
  79. Read data files from: /usr/bin/../share/nmap
  80. OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/ .
  81. Nmap done: 1 IP address (1 host up) scanned in 48.89 seconds
  82. Raw packets sent: 3063 (138.808KB) | Rcvd: 94 (7.836KB)
  83.  
  84. root@kali:~# fierce -dns 190.115.24.246
  85.  
  86. Trying zone transfer first...
  87.  
  88. Unsuccessful in zone transfer (it was worth a shot)
  89. Okay, trying the good old fashioned way... brute force
  90.  
  91. Checking for wildcard DNS...
  92. Nope. Good.
  93. Now performing 2280 test(s)...
  94. 24-115-190-190.cab.prima.net.ar. 190.190.115.24.246
  95. 18.73.be.static.xlhost.com. 209.190.115.24.246
  96. n003-000-000-000.static.ge.com. 3.190.115.24.246
  97. dialup-4.190.115.24.Dial1.Chicago1.Level3.net. 4.190.115.24.246
  98. 59-190-115-24f1.osk2.eonet.ne.jp. 59.190.115.24.246
  99.  
  100. Subnets found (may want to probe here using nmap or unicornscan):
  101. 18.73.be.0-255 : 1 hostnames found.
  102. 24-115-190-190.cab.prima.0-255 : 1 hostnames found.
  103. 59-190-115-24f1.osk2.eonet.0-255 : 1 hostnames found.
  104. dialup-4.190.115.0-255 : 1 hostnames found.
  105. n003-000-000-000.static.ge.0-255 : 1 hostnames found.
  106.  
  107. Done with Fierce scan: http://ha.ckers.org/fierce/
  108. Found 5 entries.
  109.  
  110. Have a nice day.
  111.  
  112. root@kali:~# unicornscan 190.115.24.246
  113. TCP open ssh[ 22] from 190.115.24.246 ttl 49
  114. TCP open smtp[ 25] from 190.115.24.246 ttl 49
  115. TCP open domain[ 53] from 190.115.24.246 ttl 50
  116. TCP open http[ 80] from 190.115.24.246 ttl 50
  117. TCP open pop3[ 110] from 190.115.24.246 ttl 49
  118. TCP open imap[ 143] from 190.115.24.246 ttl 49
  119. TCP open https[ 443] from 190.115.24.246 ttl 50
  120. TCP open imaps[ 993] from 190.115.24.246 ttl 49
  121. TCP open pop3s[ 995] from 190.115.24.246 ttl 49
  122. TCP open mysql[ 3306] from 190.115.24.246 ttl 49
  123. root@kali:~# urlcrazy -p -i noddos.org
  124. URLCrazy Domain Report
  125. Domain : noddos.org
  126. Keyboard : qwerty
  127. At : 2015-05-03 22:36:12 -0400
  128.  
  129. # Please wait. 140 hostnames to process
  130.  
  131. Typo Type Typo Valid Pop DNS-A CC-A DNS-MX Extn
  132. ----------------------------------------------------------------------------------------------------------------------------
  133. Character Omission nddos.org true ? org
  134. Character Omission noddo.org true 65.99.225.75 US,UNITED STATES spmx1.neubox.net org
  135. Character Omission noddos.og false ?
  136. Character Omission noddos.or false ?
  137. Character Omission noddos.rg false ?
  138. Character Omission noddosorg false ?
  139. Character Omission nodds.org true ? org
  140. Character Omission nodos.org true 46.16.56.53 ES,SPAIN ASPMX4.GOOGLEMAIL.COM org
  141. Character Repeat nnoddos.org true ? org
  142. Character Repeat nodddos.org true ? org
  143. Character Repeat noddoos.org true ? org
  144. Character Repeat noddos..org false ? org
  145. Character Repeat noddos.oorg false ?
  146. Character Repeat noddos.orgg false ?
  147. Character Repeat noddos.orrg false ?
  148. Character Repeat noddoss.org true ? org
  149. Character Repeat nooddos.org true ? org
  150. Character Swap ndodos.org true ? org
  151. Character Swap noddo.sorg false ?
  152. Character Swap noddos.ogr false ?
  153. Character Swap noddos.rog false ?
  154. Character Swap noddoso.rg false ?
  155. Character Swap noddso.org true ? org
  156. Character Swap nodods.org true ? org
  157. Character Swap onddos.org true ? org
  158. Character Replacement boddos.org true ? org
  159. Character Replacement moddos.org true ? org
  160. Character Replacement niddos.org true ? org
  161. Character Replacement noddis.org true ? org
  162. Character Replacement noddoa.org true ? org
  163. Character Replacement noddod.org true ? org
  164. Character Replacement noddos.irg false ?
  165. Character Replacement noddos.oeg false ?
  166. Character Replacement noddos.orf false ?
  167. Character Replacement noddos.orh false ?
  168. Character Replacement noddos.otg false ?
  169. Character Replacement noddos.prg false ?
  170. Character Replacement noddps.org true ? org
  171. Character Replacement nodfos.org true ? org
  172. Character Replacement nodsos.org true ? org
  173. Character Replacement nofdos.org true ? org
  174. Character Replacement nosdos.org true ? org
  175. Character Replacement npddos.org true ? org
  176. Double Character Replacement noffos.org true ? org
  177. Double Character Replacement nossos.org true ? org
  178. Character Insertion nboddos.org true ? org
  179. Character Insertion nmoddos.org true ? org
  180. Character Insertion noddfos.org true ? org
  181. Character Insertion noddois.org true ? org
  182. Character Insertion noddops.org true ? org
  183. Character Insertion noddos.oirg false ?
  184. Character Insertion noddos.oprg false ?
  185. Character Insertion noddos.oreg false ?
  186. Character Insertion noddos.orgf false ?
  187. Character Insertion noddos.orgh false ?
  188. Character Insertion noddos.ortg false ?
  189. Character Insertion noddosa.org true ? org
  190. Character Insertion noddosd.org true ? org
  191. Character Insertion noddsos.org true ? org
  192. Character Insertion nodfdos.org true ? org
  193. Character Insertion nodsdos.org true ? org
  194. Character Insertion noiddos.org true ? org
  195. Character Insertion nopddos.org true ? org
  196. Missing Dot noddosorg.com true ? com
  197. Missing Dot wwwnoddos.org true ? org
  198. Vowel Swap naddas.arg false ?
  199. Vowel Swap neddes.erg false ?
  200. Vowel Swap niddis.irg false ?
  201. Vowel Swap nuddus.urg false ?
  202. Homophones knowddos.org true ? org
  203. Homophones naahedos.org true ? org
  204. Homophones noddews.org true ? org
  205. Homophones noddos.oarg false ?
  206. Homophones noddues.org true ? org
  207. Bit Flipping .oddos.org true 213.186.33.19 FR,FRANCE mx1.ovh.net org
  208. Bit Flipping foddos.org true ? org
  209. Bit Flipping joddos.org true ? org
  210. Bit Flipping loddos.org true ? org
  211. Bit Flipping ngddos.org true ? org
  212. Bit Flipping nkddos.org true ? org
  213. Bit Flipping nmddos.org true ? org
  214. Bit Flipping nnddos.org true ? org
  215. Bit Flipping noddgs.org true ? org
  216. Bit Flipping noddks.org true ? org
  217. Bit Flipping noddms.org true ? org
  218. Bit Flipping noddns.org true ? org
  219. Bit Flipping noddo3.org true ? org
  220. Bit Flipping noddoc.org true ? org
  221. Bit Flipping noddoq.org true ? org
  222. Bit Flipping noddor.org true ? org
  223. Bit Flipping noddos.grg false ?
  224. Bit Flipping noddos.krg false ?
  225. Bit Flipping noddos.mrg false ?
  226. Bit Flipping noddos.nrg false ?
  227. Bit Flipping noddos.o2g false ?
  228. Bit Flipping noddos.obg false ?
  229. Bit Flipping noddos.opg false ?
  230. Bit Flipping noddos.orc false ?
  231. Bit Flipping noddos.ore false ?
  232. Bit Flipping noddos.oro false ?
  233. Bit Flipping noddos.orw false ?
  234. Bit Flipping noddos.osg false ?
  235. Bit Flipping noddos.ovg false ?
  236. Bit Flipping noddos.ozg false ?
  237. Bit Flipping noddosnorg false ?
  238. Bit Flipping noddow.org true ? org
  239. Bit Flipping nodeos.org true ? org
  240. Bit Flipping nodlos.org true ? org
  241. Bit Flipping nodtos.org true ? org
  242. Bit Flipping noedos.org true ? org
  243. Bit Flipping noldos.org true ? org
  244. Bit Flipping notdos.org true ? org
  245. Bit Flipping ooddos.org true ? org
  246. Homoglyphs n0dd0s.0rg false ?
  247. Homoglyphs n0dd0s.org true ? org
  248. Homoglyphs n0ddos.0rg false ?
  249. Homoglyphs n0ddos.org true ? org
  250. Homoglyphs noclclos.org true ? org
  251. Homoglyphs nocldos.org true ? org
  252. Homoglyphs nodclos.org true ? org
  253. Homoglyphs nodd0s.0rg false ?
  254. Homoglyphs nodd0s.org true ? org
  255. Homoglyphs noddos.0rg false ?
  256. Wrong TLD noddos.au false ?
  257. Wrong TLD noddos.ca true ? ca
  258. Wrong TLD noddos.ch true ? ch
  259. Wrong TLD noddos.com true 173.230.146.58 US,UNITED STATES mail2.gatelinker.com com
  260. Wrong TLD noddos.de true ? de
  261. Wrong TLD noddos.edu true ? edu
  262. Wrong TLD noddos.es true ? es
  263. Wrong TLD noddos.fr true ? fr
  264. Wrong TLD noddos.it true ? it
  265. Wrong TLD noddos.jp true ? jp
  266. Wrong TLD noddos.net true 58.180.47.10 KR,KOREA REPUBLIC OF mx04.register.com net
  267. Wrong TLD noddos.nl true ? nl
  268. Wrong TLD noddos.no true ? no
  269. Wrong TLD noddos.ru true 195.128.50.45 պ, mailx.hoster.ru ru
  270. Wrong TLD noddos.se true ? se
  271. Wrong TLD noddos.uk false ?
  272. Wrong TLD noddos.us true ? us
  273.  
  274.  
  275. root@kali:~# dmitry -winsepfb -t 9 190.115.24.246
  276. Deepmagic Information Gathering Tool
  277. "There be some deep magic going on"
  278.  
  279. HostIP:190.115.24.246
  280. HostName:noddos.org
  281.  
  282. Gathered Inet-whois information for 190.115.24.246
  283. ---------------------------------
  284.  
  285. inetnum: 190.115.24.246/32
  286. status: reallocated
  287. owner: noddos.org
  288. ownerid: RU-NODD-LACNIC
  289. responsible: Alexey Ivanov
  290. address: prospekt pobedy, 70, s
  291. address: 119027 - Moscow -
  292. country: RU
  293. phone: +7 964 5984104 []
  294. owner-c: ALI18
  295. tech-c: ALI18
  296. abuse-c: ALI18
  297. created: 20141209
  298. changed: 20141209
  299. inetnum-up: 190.115.16/20
  300.  
  301. nic-hdl: ALI18
  302. person: aleksey ivanov
  303. e-mail: alekc96@MAIL.RU
  304. address: Москва, 11902,
  305. address: - Москва -
  306. country: RU
  307. phone: +7 79645984104 []
  308. created: 20141208
  309. changed: 20141208
  310.  
  311. % whois.lacnic.net accepts only direct match queries.
  312. % Types of queries are: POCs, ownerid, CIDR blocks, IP
  313. % and AS numbers.
  314.  
  315.  
  316. Gathered Inic-whois information for noddos.org
  317. ---------------------------------
  318. Domain Name:NODDOS.ORG
  319. Domain ID: D173673926-LROR
  320. Creation Date: 2014-08-20T18:12:29Z
  321. Updated Date: 2014-12-06T22:23:16Z
  322. Registry Expiry Date: 2015-08-20T18:12:29Z
  323. Sponsoring Registrar:PDR Ltd. d/b/a PublicDomainRegistry.com (R27-LROR)
  324. Sponsoring Registrar IANA ID: 303
  325. WHOIS Server:
  326. Referral URL:
  327. Domain Status: clientTransferProhibited -- http://www.icann.org/epp#clientTransferProhibited
  328. Registrant ID:PP-SP-001
  329. Registrant Name:Domain Admin
  330. d/b�N/a APrib�e�ҿvacyProivacy �ecti Service INC
  331. �tec���t.org
  332. ���
  333. Registrant Street: C/O ID#10760, PO Box 16
  334. Registrant Street: Note - Visit PrivacyProtect.org
  335. Registrant Street: to contact the domain owner/operator
  336. Registrant City:Nobby Beach
  337. Registrant State/Province:Queensland
  338. Registrant Postal Code:QLD 4218
  339. Registrant Country:AU
  340. Registrant Phone:+45.36946676
  341. Registrant Phone Ext:
  342. Registrant Fax:
  343. Registrant Fax Ext:
  344. Registrant Email:contact@privacyprotect.org
  345. Admin ID:PP-SP-001
  346. Admin Name:Domain Admin
  347. Admin Organization:Privacy Protection Service INC d/b/a PrivacyProtect.org
  348. Admin Street: C/O ID#10760, PO Box 16
  349. Admin Street: Note - Visit PrivacyProtect.org
  350. Admin Street: to contact the domain owner/operator
  351. Admin City:Nobby Beach
  352. Admin State/Province:Queensland
  353. Admin Postal Code:QLD 4218
  354. Admin Country:AU
  355. Admin Phone:+45.36946676
  356. Admin Phone Ext:
  357. Admin Fax:
  358. Admin Fax Ext:
  359. Admin Email:contact@privacyprotect.org
  360. Tech ID:PP-SP-001
  361. Tech Name:Domain Admin
  362. Tech Organization:Privacy Protection Service INC d/b/a PrivacyProtect.org
  363. Tech Street: C/O ID#10760, PO Box 16
  364. Tech Street: Note - Visit PrivacyProtect.org
  365. Tech Street: to contact the domain owner/operator
  366. Tech City:Nobby Beach
  367. Tech State/Province:Queensland
  368. Tech Postal Code:QLD 4218
  369. Tech Country:AU
  370. Tech Phone:+45.36946676
  371. Tech Phone Ext:
  372. Tech Fax:
  373. Tech Fax Ext:
  374. Tech Email:contact@privacyprotect.org
  375. Name Server:NS1.NODDOS.ORG
  376. Name Server:NS2.NODDOS.ORG
  377. Name Server:
  378. Name Server:
  379. Name Server:
  380. Name Server:
  381. Name Server:
  382. Name Server:
  383. Name Server:
  384. Name Server:
  385. Name Server:
  386. Name Server:
  387. Name Server:
  388. DNSSEC:Unsigned
  389. exit
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement