Advertisement
JuanDeLemos

oPIcarus_Saint

May 8th, 2016
24,486
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. Results so far:
  2.  
  3. Thanks to Hackursec
  4.  
  5. https://www.google.com.cy/?gfe_rd=cr&ei=aIgrV-aMLrGs8wer_YyYAg#q=filetype%3Adoc+OR+filetype%3Adocx+site%3Ahttp://www.centralbank.gov.cy
  6. https://www.google.com.cy/?gfe_rd=cr&ei=aogrV_LEOLGs8wer_YyYAg#q=filetype%3Apdf+site%3Ahttp://www.centralbank.gov.cy
  7. https://www.google.com.cy/?gfe_rd=cr&ei=ZogrV8y9KrGs8wer_YyYAg#q=filetype%3Appt+OR+filetype%3Apptx+site%3Ahttp://www.centralbank.gov.cy
  8. https://www.google.com.cy/?gfe_rd=cr&ei=ZIgrV9rOLLGs8wer_YyYAg#q=filetype%3Axls+OR+filetype%3Axlsx+site%3Ahttp://www.centralbank.gov.cy
  9. And FULL recon and vulns
  10.  
  11. _
  12. / \ _ __ ___ _ __ _ _ _ __ ___ ___ _ _ ___
  13. / _ \ | '_ \ / _ \| '_ \| | | | '_ ` _ \ / _ \| | | / __|
  14. / ___ \| | | | (_) | | | | |_| | | | | | | (_) | |_| \__ \
  15. /_/ \_\_| |_|\___/|_| |_|\__, |_| |_| |_|\___/ \__,_|___/
  16. |___/
  17.  
  18. ______ ___ ______ ______ _____ _ _ ______ _____
  19. | \ | |____ | | | \ / |_____ |____/
  20. |_____/ _|_ _____| |_____ |_____| \/ |_____ | \_
  21.  
  22. By Lee Baird
  23.  
  24.  
  25. Uses ARIN, dnsrecon, goofile, goog-mail, goohost, theHarvester, Metasploit, URLCrazy,
  26. Whois, multiple websites, and recon-ng.
  27.  
  28. [*] Acquire API keys for Bing, Builtwith, Fullcontact, GitHub, Google, Hashes, and
  29. Shodan for maximum results with recon-ng.
  30.  
  31. =====================================================================================
  32.  
  33. Usage
  34.  
  35. Company: Target
  36. Domain: target.com
  37.  
  38. =====================================================================================
  39.  
  40. Company: CBOC
  41. Domain: http://www.centralbank.gov.cy D
  42. cp: cannot create directory ‘/root/data/http://www.centralbank.gov.cy’: No such file or directory
  43. sed: -e expression #1, char 23: unknown option to `s'
  44. mv: cannot move ‘tmp’ to ‘/root/data/http://www.centralbank.gov.cy/index.htm’: No such file or directory
  45.  
  46. =====================================================================================
  47.  
  48. ARIN
  49. Email (1/36)
  50. Names (2/36)
  51. Networks (3/36)
  52.  
  53. dnsrecon (4/36)
  54. ^CTraceback (most recent call last):
  55. File "./dnsrecon.py", line 1681, in <module>
  56. main()
  57. File "./dnsrecon.py", line 1576, in main
  58. goo_enum_records = goo_result_process(res, scrape_google(domain))
  59. File "./dnsrecon.py", line 534, in scrape_google
  60. data += sock.read()
  61. File "/usr/lib/python2.7/socket.py", line 351, in read
  62. data = self._sock.recv(rbufsize)
  63. KeyboardInterrupt
  64. Terminating...
  65. All data will be saved in /root/data/cancelled-20:23:41
  66. Saving complete
  67. root@anonymous:~/discover# proxychains ./discover.sh
  68. ProxyChains-3.1 (http://proxychains.sf.net)
  69. ERROR: ld.so: object 'libproxychains.so.3' from LD_PRELOAD cannot be preloaded (cannot open shared object file): ignored.
  70. 
  71.  
  72.  
  73. ______ ___ ______ ______ _____ _ _ ______ _____
  74. | \ | |____ | | | \ / |_____ |____/
  75. |_____/ _|_ _____| |_____ |_____| \/ |_____ | \_
  76.  
  77. By Lee Baird
  78.  
  79.  
  80. RECON
  81. 1. Domain
  82. 2. Person
  83. 3. Parse salesforce
  84.  
  85. SCANNING
  86. 4. Generate target list
  87. 5. CIDR
  88. 6. List
  89. 7. IP, Range or URL
  90.  
  91. WEB
  92. 8. Open multiple tabs in Firefox
  93. 9. Nikto
  94. 10. SSL
  95.  
  96. MISC
  97. 11. Crack WiFi
  98. 12. Parse XML
  99. 13. Generate a malicious payload
  100. 14. Start a Metasploit listener
  101. 15. Update
  102. 16. Exit
  103.  
  104. Choice: 1
  105. 
  106.  
  107.  
  108. ______ ___ ______ ______ _____ _ _ ______ _____
  109. | \ | |____ | | | \ / |_____ |____/
  110. |_____/ _|_ _____| |_____ |_____| \/ |_____ | \_
  111.  
  112. By Lee Baird
  113.  
  114.  
  115. RECON
  116.  
  117. 1. Passive
  118. 2. Active
  119. 3. Previous menu
  120.  
  121. Choice: 1
  122. 
  123.  
  124.  
  125. ______ ___ ______ ______ _____ _ _ ______ _____
  126. | \ | |____ | | | \ / |_____ |____/
  127. |_____/ _|_ _____| |_____ |_____| \/ |_____ | \_
  128.  
  129. By Lee Baird
  130.  
  131.  
  132. Uses ARIN, dnsrecon, goofile, goog-mail, goohost, theHarvester, Metasploit, URLCrazy,
  133. Whois, multiple websites, and recon-ng.
  134.  
  135. [*] Acquire API keys for Bing, Builtwith, Fullcontact, GitHub, Google, Hashes, and
  136. Shodan for maximum results with recon-ng.
  137.  
  138. =====================================================================================
  139.  
  140. Usage
  141.  
  142. Company: Target
  143. Domain: target.com
  144.  
  145. =====================================================================================
  146.  
  147. Company: CBOC
  148. Domain: http://www.centralbank.gov.cy
  149. cp: cannot create directory ‘/root/data/http://www.centralbank.gov.cy’: No such file or directory
  150. sed: -e expression #1, char 23: unknown option to `s'
  151. mv: cannot move ‘tmp’ to ‘/root/data/http://www.centralbank.gov.cy/index.htm’: No such file or directory
  152.  
  153. =====================================================================================
  154.  
  155. ARIN
  156. Email (1/36)
  157. Names (2/36)
  158. Networks (3/36)
  159.  
  160. dnsrecon (4/36)
  161.  
  162. goofile (5/36)
  163.  
  164. goog-mail (6/36)
  165.  
  166. goohost
  167. IP (7/36)
  168. Email (8/36)
  169. /root/discover/mods/goohost.sh: line 525: report-23915-http://www.centralbank.gov.cy.txt: No such file or directory
  170. wc: report-23915-http://www.centralbank.gov.cy.txt: No such file or directory
  171. cat: report-*: No such file or directory
  172. rm: cannot remove ‘*-http://www.centralbank.gov.cy.txt’: No such file or directory
  173.  
  174. theHarvester
  175. Baidu (9/36)
  176. Bing (10/36)
  177. Dogpilesearch (11/36)
  178. Google (12/36)
  179. Google CSE (13/36)
  180. Google+ (14/36)
  181. Google Profiles (15/36)
  182. Jigsaw (16/36)
  183. LinkedIn (17/36)
  184. People123 (18/36)
  185. PGP (19/36)
  186. Yahoo (20/36)
  187. All (21/36)
  188.  
  189. Metasploit (22/36)
  190.  
  191. URLCrazy (23/36)
  192.  
  193. Whois
  194. Domain (24/36)
  195. IP (25/36)
  196.  
  197.  
  198. dnsdumpster.com (26/36)
  199. /root/data/http://www.centralbank.gov.cy/images/dnsdumpster.png: No such file or directory
  200. wget: missing URL
  201. Usage: wget [OPTION]... [URL]...
  202.  
  203. Try `wget --help' for more options.
  204. cat: tmp.csv: No such file or directory
  205. dnssy.com (27/36)
  206. ./discover.sh: line 496: /root/data/http://www.centralbank.gov.cy/data/config.htm: No such file or directory
  207. dnswatch.info (28/36)
  208. ./discover.sh: line 529: /root/data/http://www.centralbank.gov.cy/data/records.htm: No such file or directory
  209. ./discover.sh: line 530: /root/data/http://www.centralbank.gov.cy/data/records.htm: No such file or directory
  210. ./discover.sh: line 531: /root/data/http://www.centralbank.gov.cy/data/records.htm: No such file or directory
  211. ./discover.sh: line 532: /root/data/http://www.centralbank.gov.cy/data/records.htm: No such file or directory
  212. ./discover.sh: line 533: /root/data/http://www.centralbank.gov.cy/data/records.htm: No such file or directory
  213. email-format.com (29/36)
  214. ewhois.com (30/36)
  215. intodns.com (31/36)
  216. ./discover.sh: line 545: /root/data/http://www.centralbank.gov.cy/pages/config.htm: No such file or directory
  217. myipneighbors.net (32/36)
  218. netcraft.com (33/36)
  219. ./discover.sh: line 563: /root/data/http://www.centralbank.gov.cy/pages/netcraft.htm: No such file or directory
  220. ./discover.sh: line 564: /root/data/http://www.centralbank.gov.cy/pages/netcraft.htm: No such file or directory
  221. ./discover.sh: line 565: /root/data/http://www.centralbank.gov.cy/pages/netcraft.htm: No such file or directory
  222. ./discover.sh: line 566: /root/data/http://www.centralbank.gov.cy/pages/netcraft.htm: No such file or directory
  223. ./discover.sh: line 567: /root/data/http://www.centralbank.gov.cy/pages/netcraft.htm: No such file or directory
  224. ./discover.sh: line 568: /root/data/http://www.centralbank.gov.cy/pages/netcraft.htm: No such file or directory
  225. ultratools.com (34/36)
  226. ./discover.sh: line 594: /root/data/http://www.centralbank.gov.cy/data/zonetransfer.htm: No such file or directory
  227. ./discover.sh: line 597: /root/data/http://www.centralbank.gov.cy/data/zonetransfer.htm: No such file or directory
  228. ./discover.sh: line 598: /root/data/http://www.centralbank.gov.cy/data/zonetransfer.htm: No such file or directory
  229. ./discover.sh: line 599: /root/data/http://www.centralbank.gov.cy/data/zonetransfer.htm: No such file or directory
  230. urlvoid.com (35/36)
  231. ./discover.sh: line 603: /root/data/http://www.centralbank.gov.cy/data/black-listed.htm: No such file or directory
  232.  
  233. recon-ng (36/36)
  234. sed: -e expression #1, char 13: unknown option to `s'
  235.  
  236. _/_/_/ _/_/_/_/ _/_/_/ _/_/_/ _/ _/ _/ _/ _/_/_/
  237. _/ _/ _/ _/ _/ _/ _/_/ _/ _/_/ _/ _/
  238. _/_/_/ _/_/_/ _/ _/ _/ _/ _/ _/ _/_/_/_/ _/ _/ _/ _/ _/_/_/
  239. _/ _/ _/ _/ _/ _/ _/ _/_/ _/ _/_/ _/ _/
  240. _/ _/ _/_/_/_/ _/_/_/ _/_/_/ _/ _/ _/ _/ _/_/_/
  241.  
  242. +---------------------------------------------------------------------------+
  243. | _ ___ _ __ |
  244. | |_)| _ _|_ |_|.|| _ | _ |_ _ _ _ _ _|_o _ _ (_ _ _ _o_|_ |
  245. | |_)|(_|(_|\ | ||||_\ _|_| || (_)| |||(_| | |(_)| | __)(/_(_|_|| | | \/ |
  246. | / |
  247. | Consulting | Research | Development | Training |
  248. | http://www.blackhillsinfosec.com |
  249. +---------------------------------------------------------------------------+
  250.  
  251. [recon-ng v4.6.3, Tim Tomes (@LaNMaSteR53)]
  252.  
  253. [71] Recon modules
  254. [7] Reporting modules
  255. [2] Import modules
  256. [2] Exploitation modules
  257. [2] Discovery modules
  258.  
  259. [recon-ng][default] > workspaces add yyy
  260. [recon-ng][yyy] > add companies
  261. company (TEXT): CBOC
  262. description (TEXT): none
  263. [recon-ng][yyy] > add domains
  264. domain (TEXT): yyy
  265. [recon-ng][yyy] >
  266. [recon-ng][yyy] > use recon/domains-contacts/pgp_search
  267. [recon-ng][yyy][pgp_search] > run
  268.  
  269. ---
  270. YYY
  271. ---
  272. [*] xxx yyy (tschweiz@googlemail.com)
  273. [*] xxx yyy (uzytkownik_11@tlen.pl)
  274. [*] klaus.remmel@t-online.de (klaus.remmel@t-online.de)
  275. [*] Mathias_Claudia_Bautz (familie.bautz@xxx.yyy)
  276. [*] identity_1 (xxx@yyy.sk)
  277. [*] haruru (haruru@lily.yyy.or.jp)
  278. [*] yyy (yyy@abv.bg)
  279. [*] bonzo (xxx@yyy.com)
  280. [*] xxx (yyy@zzz)
  281. [*] move (move@rose.yyy.or.jp)
  282. [*] Junichi NISHIDA (junnishi@yyy.or.jp)
  283. [*] Alan Connor (zzzzzz@xxx.yyy)
  284. [*] Shichiro kato (nana@cheryy.yyy.or.jp)
  285. [*] Sample Key (sample@sample-key.yyy)
  286. [*] yyy (edit@ma9.seikyou.ne.jp)
  287. [*] yyy (shkyy@hotmail.com)
  288. [*] xxx (yyy)
  289. [*] tomas_s (xxx@yyy.zzz)
  290. [*] ttt (yyy)
  291. [*] taguti (tag@rose.yyy.or.jp)
  292. [*] xxx yyy (maciej.bosek@x.pl)
  293. [*] okkanufo (phoenix@cherry.yyy.or.jp)
  294. [*] xxxxxx (yyy@zzz)
  295. [*] doenertier_cc (wrong@yyy)
  296. [*] yyy (hsyoo@palgong.kyungpook.ac.kr)
  297. [*] xxx yyy (hotcph@nightmail.com)
  298. [*] ryuta (ryutaml@yyy.rosu.or.jp)
  299. [*] Edre Moreira (edre@xxx.yyy.zz)
  300. [*] xxx yyy (matejekova.tana@seznam.cz)
  301. [*] coldrain (move@rose.yyy.or.jp)
  302. [*] XXX YYY (xxx@yyy.zzz)
  303. [*] Sergey Afanasev (punisher573@sibnet.ru)
  304. [*] which (xxx@yyy.com)
  305. [*] KENPEI (kenpei@maple.yyy.or.jp)
  306. [*] Jaroslaw Konrad Lipowski (yyy@yyy.com)
  307. [*] Yasushi Kurokawa (y2@rose.yyy.or.jp)
  308. [*] yyy (cw12gr05sr15_2@wp.pl)
  309. [*] marcin m (mucha_pl@o2.pl)
  310. [*] identity_1 (xxx@yyy.zz)
  311. [*] Ilan Golstein 26&#x2F;1&#x2F;2000 (ilan@yyy.to)
  312. [*] xxx yyy (bch2574thorn@yahoo.com)
  313. [*] kannrininn (yyy@yaba.club.ne.jp)
  314. [*] yyy (ooooo@ccc.hhh)
  315. [*] yyy (ysm1234@dreamx.net)
  316. [*] xxx (xxx@yyy.com)
  317. [*] yyy (kofzhanganguo@126.com)
  318. [*] yyyy (yyy@yyy.com)
  319. [*] yyy (babzxx@gmail.com)
  320. [*] test yy (yyy@yyy.com)
  321. [*] a (xxx@yyy.fr)
  322. [*] yoshihisa ishii (yoshiisi@maple.yyy.or.jp)
  323. [*] ernipaszkoprzelew (yyy@lol.pl)
  324. [*] prova1 (prova1@xxx.yyy)
  325. [*] assel P (nobody@yyy)
  326. [*] xxx xxx (xxx@yyy.de)
  327. [*] xxx yyy (xyz12tfdszg@web.de)
  328. [*] mm (prope@maple.yyy.or.jp)
  329. [*] y (move@rose.yyy.or.jp)
  330. [*] yyy ppp (jdiwjhdzoxqpjsev@gmail.com)
  331. [*] Setsuyuki Minami (pkd@yyy.or.jp)
  332.  
  333. -------
  334. SUMMARY
  335. -------
  336. [*] 8 total (8 new) contacts found.
  337. [recon-ng][yyy][pgp_search] > use recon/domains-contacts/whois_pocs
  338. [recon-ng][yyy] > load recon/domains-contacts/whois_pocs
  339. [recon-ng][yyy][whois_pocs] > run
  340.  
  341. ---
  342. YYY
  343. ---
  344. [*] URL: http://whois.arin.net/rest/pocs;domain=yyy
  345. [*] No contacts found.
  346. [recon-ng][yyy][whois_pocs] > use recon/domains-hosts/bing_domain_api
  347. [recon-ng][yyy] > load recon/domains-hosts/bing_domain_api
  348. [recon-ng][yyy][bing_domain_api] > run
  349.  
  350. ---
  351. YYY
  352. ---
  353. [*] Searching Bing API for: domain:yyy
  354. [!] </html>.
  355. [recon-ng][yyy][bing_domain_api] > use recon/domains-hosts/bing_domain_web
  356. [recon-ng][yyy] > load recon/domains-hosts/bing_domain_web
  357. [recon-ng][yyy][bing_domain_web] > run
  358.  
  359. ---
  360. YYY
  361. ---
  362. [*] URL: https://www.bing.com/search?first=0&q=domain%3Ayyy
  363. [recon-ng][yyy][bing_domain_web] > use recon/domains-hosts/builtwith
  364. [recon-ng][yyy] > load recon/domains-hosts/builtwith
  365. [recon-ng][yyy][builtwith] > run
  366. [!] FrameworkException: API key 'builtwith_api' not found. Add API keys with the 'keys add' command.
  367. [recon-ng][yyy][builtwith] > use recon/domains-hosts/google_site_api
  368. [recon-ng][yyy] > load recon/domains-hosts/google_site_api
  369. [recon-ng][yyy][google_site_api] > run
  370.  
  371. ---
  372. YYY
  373. ---
  374. [!] FrameworkException: API key 'google_cse' not found. Add API keys with the 'keys add' command.
  375. [recon-ng][yyy][google_site_api] > use recon/domains-hosts/netcraft
  376. [recon-ng][yyy] > load recon/domains-hosts/netcraft
  377. [recon-ng][yyy][netcraft] > run
  378.  
  379. ---
  380. YYY
  381. ---
  382. [*] URL: http://searchdns.netcraft.com/?{'restriction': 'site+ends+with', 'host': 'yyy'}
  383. [*] No results found.
  384. [recon-ng][yyy][netcraft] > use recon/domains-hosts/shodan_hostname
  385. [recon-ng][yyy] > load recon/domains-hosts/shodan_hostname
  386. [recon-ng][yyy][shodan_hostname] > run
  387.  
  388. ---
  389. YYY
  390. ---
  391. [*] Searching Shodan API for: hostname:yyy
  392. [!] SSLError: ('The read operation timed out',).
  393. [recon-ng][yyy][shodan_hostname] > use recon/domains-hosts/ssl_san
  394. [recon-ng][yyy] > load recon/domains-hosts/ssl_san
  395. [recon-ng][yyy][ssl_san] > run
  396.  
  397. ---
  398. YYY
  399. ---
  400. [*] No Subject Alternative Names found for 'yyy'
  401. [recon-ng][yyy][ssl_san] > use recon/domains-hosts/vpnhunter
  402. [recon-ng][yyy] > load recon/domains-hosts/vpnhunter
  403. [recon-ng][yyy][vpnhunter] > run
  404.  
  405. ---
  406. YYY
  407. ---
  408. [*] Checking for SSL VPN on yyy...
  409. [!] An error occured while requesting info from VPNHunter (error).
  410. [recon-ng][yyy][vpnhunter] >
  411. [recon-ng][yyy][vpnhunter] > use recon/companies-contacts/indeed
  412. [!] Invalid module name.
  413. [recon-ng][yyy][vpnhunter] > run
  414.  
  415. ---
  416. YYY
  417. ---
  418. [*] Checking for SSL VPN on yyy...
  419. [!] An error occured while requesting info from VPNHunter (error).
  420. [recon-ng][yyy][vpnhunter] > use recon/companies-multi/github_miner
  421. [!] Invalid module name.
  422. [recon-ng][yyy][vpnhunter] > run
  423.  
  424. ---
  425. YYY
  426. ---
  427. [*] Checking for SSL VPN on yyy...
  428. [!] An error occured while requesting info from VPNHunter (error).
  429. [recon-ng][yyy][vpnhunter] > use recon/companies-multi/whois_miner
  430. [recon-ng][yyy] > load recon/companies-multi/whois_miner
  431. [recon-ng][yyy][whois_miner] > run
  432. [*] URL: http://whois.arin.net/rest/orgs;name=CBOC
  433. [*] No ORGS found.
  434. [*] URL: http://whois.arin.net/rest/customers;name=CBOC
  435. [*] No CUSTOMERS found.
  436. [recon-ng][yyy][whois_miner] >
  437. [recon-ng][yyy][whois_miner] > use recon/contacts-credentials/hibp_breach
  438. [recon-ng][yyy] > load recon/contacts-credentials/hibp_breach
  439. [recon-ng][yyy][hibp_breach] > run
  440. [*] familie.bautz@xxx.yyy => Not Found.
  441. [*] nobody@yyy => Not Found.
  442. [*] prova1@xxx.yyy => Not Found.
  443. [*] sample@sample-key.yyy => Not Found.
  444. [*] wrong@yyy => Not Found.
  445. [*] yyy => Breach found! Seen in the Gawker breach that occurred on 2010-12-11.
  446. [*] yyy => Breach found! Seen in the Insanelyi breach that occurred on 2014-07-22.
  447. [*] yyy => Breach found! Seen in the Win7Vista Forum breach that occurred on 2013-09-03.
  448. [*] zzzzzz@xxx.yyy => Not Found.
  449.  
  450. -------
  451. SUMMARY
  452. -------
  453. [*] 1 total (1 new) credentials found.
  454. [recon-ng][yyy][hibp_breach] > use recon/contacts-credentials/hibp_paste
  455. [recon-ng][yyy] > load recon/contacts-credentials/hibp_paste
  456. [recon-ng][yyy][hibp_paste] > run
  457. [*] familie.bautz@xxx.yyy => Not Found.
  458. [*] nobody@yyy => Not Found.
  459. [*] prova1@xxx.yyy => Not Found.
  460. [*] sample@sample-key.yyy => Not Found.
  461. [*] wrong@yyy => Not Found.
  462. [!] Yyy => Bad Request.
  463. [*] zzzzzz@xxx.yyy => Not Found.
  464. [recon-ng][yyy][hibp_paste] > use recon/contacts-profiles/fullcontact
  465. [recon-ng][yyy] > load recon/contacts-profiles/fullcontact
  466. [recon-ng][yyy][fullcontact] > run
  467. [!] FrameworkException: API key 'fullcontact_api' not found. Add API keys with the 'keys add' command.
  468. [recon-ng][yyy][fullcontact] >
  469. [recon-ng][yyy][fullcontact] > use recon/profiles-profiles/twitter
  470. [recon-ng][yyy] > load recon/profiles-profiles/twitter
  471. [recon-ng][yyy][twitter] > run
  472. [!] FrameworkException: Source contains no input.
  473. [recon-ng][yyy][twitter] > use recon/profiles-repositories/github_repos
  474. [!] Invalid module name.
  475. [recon-ng][yyy][twitter] > run
  476. [!] FrameworkException: Source contains no input.
  477. [recon-ng][yyy][twitter] >
  478. [recon-ng][yyy][twitter] > use recon/netblocks-companies/whois_orgs
  479. [recon-ng][yyy] > load recon/netblocks-companies/whois_orgs
  480. [recon-ng][yyy][whois_orgs] > run
  481. [!] FrameworkException: Source contains no input.
  482. [recon-ng][yyy][whois_orgs] > use recon/netblocks-hosts/shodan_net
  483. [recon-ng][yyy] > load recon/netblocks-hosts/shodan_net
  484. [recon-ng][yyy][shodan_net] > run
  485. [!] FrameworkException: Source contains no input.
  486. [recon-ng][yyy][shodan_net] > use recon/netblocks-ports/census_2012
  487. [recon-ng][yyy] > load recon/netblocks-ports/census_2012
  488. [recon-ng][yyy][census_2012] > run
  489. [!] FrameworkException: Source contains no input.
  490. [recon-ng][yyy][census_2012] > use recon/netblocks-ports/censysio
  491. [!] Invalid module name.
  492. [recon-ng][yyy][census_2012] > run
  493. [!] FrameworkException: Source contains no input.
  494. [recon-ng][yyy][census_2012] >
  495. [recon-ng][yyy][census_2012] > use recon/ports-hosts/migrate_ports
  496. [recon-ng][yyy] > load recon/ports-hosts/migrate_ports
  497. [recon-ng][yyy][migrate_ports] > run
  498. [recon-ng][yyy][migrate_ports] >
  499. [recon-ng][yyy][migrate_ports] > use recon/hosts-hosts/bing_ip
  500. [recon-ng][yyy] > load recon/hosts-hosts/bing_ip
  501. [recon-ng][yyy][bing_ip] > run
  502. [!] FrameworkException: Source contains no input.
  503. [recon-ng][yyy][bing_ip] > use recon/hosts-hosts/freegeoip
  504. [recon-ng][yyy] > load recon/hosts-hosts/freegeoip
  505. [recon-ng][yyy][freegeoip] > run
  506. [!] FrameworkException: Source contains no input.
  507. [recon-ng][yyy][freegeoip] > use recon/hosts-hosts/ipinfodb
  508. [recon-ng][yyy] > load recon/hosts-hosts/ipinfodb
  509. [recon-ng][yyy][ipinfodb] > run
  510. [!] FrameworkException: Source contains no input.
  511. [recon-ng][yyy][ipinfodb] > use recon/hosts-hosts/ssltools
  512. [!] Invalid module name.
  513. [recon-ng][yyy][ipinfodb] > run
  514. [!] FrameworkException: Source contains no input.
  515. [recon-ng][yyy][ipinfodb] > use recon/hosts-ports/shodan_ip
  516. [!] Invalid module name.
  517. [recon-ng][yyy][ipinfodb] > run
  518. [!] FrameworkException: Source contains no input.
  519. [recon-ng][yyy][ipinfodb] >
  520. [recon-ng][yyy][ipinfodb] > back
  521. [recon-ng][yyy] >
  522. [recon-ng][yyy] > spool start /tmp/emails
  523. [*] Spooling output to '/tmp/emails'.
  524. [recon-ng][yyy] > query SELECT DISTINCT email FROM contacts WHERE email LIKE "%@yyy" ORDER BY email
  525.  
  526. +------------+
  527. | email |
  528. +------------+
  529. | nobody@yyy |
  530. | wrong@yyy |
  531. +------------+
  532.  
  533. [*] 2 rows returned
  534. [recon-ng][yyy] > spool stop
  535. [*] Spooling stopped. Output saved to '/tmp/emails'.
  536. [recon-ng][yyy] >
  537. [recon-ng][yyy] > spool start /tmp/names
  538. [*] Spooling output to '/tmp/names'.
  539. [recon-ng][yyy] > query SELECT DISTINCT last_name,first_name FROM contacts WHERE first_name IS NOT NULL ORDER BY last_name
  540.  
  541. +-----------------------------------+
  542. | last_name | first_name |
  543. +-----------------------------------+
  544. | | Mathias_Claudia_Bautz |
  545. | | xxx |
  546. | | ttt |
  547. | | doenertier_cc |
  548. | | prova1 |
  549. | Connor | Alan |
  550. | Key | Sample |
  551. | P | assel |
  552. +-----------------------------------+
  553.  
  554. [*] 8 rows returned
  555. [recon-ng][yyy] > spool stop
  556. [*] Spooling stopped. Output saved to '/tmp/names'.
  557. [recon-ng][yyy] >
  558. [recon-ng][yyy] > spool start /tmp/networks
  559. [*] Spooling output to '/tmp/networks'.
  560. [recon-ng][yyy] > query SELECT netblock FROM netblocks ORDER BY netblock
  561. [*] No data returned.
  562. [recon-ng][yyy] > spool stop
  563. [*] Spooling stopped. Output saved to '/tmp/networks'.
  564. [recon-ng][yyy] >
  565. [recon-ng][yyy] > spool start /tmp/profiles
  566. [*] Spooling output to '/tmp/profiles'.
  567. [recon-ng][yyy] > query SELECT DISTINCT username FROM profiles WHERE username IS NOT NULL ORDER BY username
  568. [*] No data returned.
  569. [recon-ng][yyy] > spool stop
  570. [*] Spooling stopped. Output saved to '/tmp/profiles'.
  571. [recon-ng][yyy] >
  572. [recon-ng][yyy] > spool start /tmp/subdomains
  573. [*] Spooling output to '/tmp/subdomains'.
  574. [recon-ng][yyy] > query SELECT host,ip_address FROM hosts ORDER BY host
  575. [*] No data returned.
  576. [recon-ng][yyy] > spool stop
  577. [*] Spooling stopped. Output saved to '/tmp/subdomains'.
  578. [recon-ng][yyy] >
  579. [recon-ng][yyy] > exit
  580. cat: names-tmp: No such file or directory
  581. cat: networks-tmp: No such file or directory
  582. ./discover.sh: line 656: /root/data/http://www.centralbank.gov.cy/data/hosts.htm: No such file or directory
  583. ./discover.sh: line 656: /root/data/http://www.centralbank.gov.cy/data/hosts.htm: No such file or directory
  584. ./discover.sh: line 675: /root/data/http://www.centralbank.gov.cy/data/emails.htm: No such file or directory
  585. ./discover.sh: line 685: /root/data/http://www.centralbank.gov.cy/data/names.htm: No such file or directory
  586. ./discover.sh: line 713: /root/data/http://www.centralbank.gov.cy/data/squatting.htm: No such file or directory
  587. ./discover.sh: line 723: /root/data/http://www.centralbank.gov.cy/data/subdomains.htm: No such file or directory
  588. ./discover.sh: line 782: /root/data/http://www.centralbank.gov.cy/data/whois-domain.htm: No such file or directory
  589. ./discover.sh: line 782: /root/data/http://www.centralbank.gov.cy/data/whois-domain.htm: No such file or directory
  590. ./discover.sh: line 789: /root/data/http://www.centralbank.gov.cy/data/whois-ip.htm: No such file or directory
  591. ./discover.sh: line 789: /root/data/http://www.centralbank.gov.cy/data/whois-ip.htm: No such file or directory
  592. ./discover.sh: line 792: /root/data/http://www.centralbank.gov.cy/data/emails.htm: No such file or directory
  593. ./discover.sh: line 793: /root/data/http://www.centralbank.gov.cy/data/names.htm: No such file or directory
  594. ./discover.sh: line 794: /root/data/http://www.centralbank.gov.cy/data/squatting.htm: No such file or directory
  595. ./discover.sh: line 795: /root/data/http://www.centralbank.gov.cy/data/subdomains.htm: No such file or directory
  596. ./discover.sh: line 797: /root/data/http://www.centralbank.gov.cy/data/passive-recon.htm: No such file or directory
  597. ./discover.sh: line 797: /root/data/http://www.centralbank.gov.cy/data/passive-recon.htm: No such file or directory
  598. /root/data/http://www.centralbank.gov.cy/images/robtex.png: No such file or directory
  599.  
  600. =====================================================================================
  601.  
  602. ***Scan complete.***
  603.  
  604.  
  605. The supporting data folder is located at /root/data/http://www.centralbank.gov.cy/
  606.  
  607. Press <return> to continue.
  608.  
  609. (process:10003): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  610.  
  611. (process:10010): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  612.  
  613. (process:10016): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  614.  
  615. (process:10021): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  616.  
  617. (process:10033): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  618.  
  619. (process:10038): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  620.  
  621. (process:10045): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  622.  
  623. (process:10052): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  624.  
  625. (process:10931): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  626.  
  627. (process:10939): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  628.  
  629. (process:10944): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  630.  
  631. (process:10954): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  632.  
  633. (process:10959): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  634.  
  635.  
  636. root@anonymous:~/discover#
  637. (process:10965): GLib-CRITICAL **: g_slice_set_config: assertion 'sys_page_size == 0' failed
  638. ^C
  639. root@anonymous:~/discover#
  640.  
  641.  
  642.  
  643. Greetings world,
  644. We are anonymous..
  645.  
  646. Humanity is at a periodic climax of industrial revolution technologically advancing in all ways imaginable yet we still cannot get past our natural instinct to make another suffer to make us more successful, we see children starve, we see world wars fomented we see the shadow government, the ones behind the scenes of daily life controlling Hollywood, controlling the media and controlling what we eat and drink.
  647.  
  648. Citizens from around the world are waking up more and more each day to our evil and corrupt Elite and governments who have been lying to us and misleading us for centuries.
  649.  
  650. Here is our message to the monolithic conspiracy running the world as we know it, our message is clear... We will not let the banks win, we will be attacking the banks with one of the most massive attacks ever seen in the history of anonymous.
  651.  
  652. We will be giving many tools to each and every anon all over the world known and we will be holding down PayPal, MasterCard, Visa, NASDAQ, Bank for International Settlements, All central banks, IMF, London Stock Exchange, and every major banking system will be targeted by Anonymous.
  653.  
  654. It is time to free humanity from the slavery of the Elite bankers system and control of everything we do.
  655.  
  656. We will not sit and watch another third war happen, we want to stop them in their tracks we want peace and fairness for all mankind.
  657.  
  658. Bankers and investors BEWARE, your wealth will soon be affected, your greed will come to an end and those of you who cause the suffering of others for your greedy desires will soon see what it is like to suffer.
  659.  
  660. Why this action by Anonymous - Because our greedy banking system that legally steals off our worlds citizens have caused so much pain and suffering to so many.
  661.  
  662. High and pathetic banking fees, high interest rates on home loans, foreclosures, legally stealing homes of people who have paid hundreds of thousands in payments, support from governments, bailouts.
  663.  
  664. Banks have been getting away with legally stealing and ripping of citizens for far too long and now Anonymous will intervene and attack the very evil system that has been the cause of so many problems in this world...
  665.  
  666. The Banking System!!
  667.  
  668. We are Anonymous, we are Ghost Squad Hackers and others and we are coming... Expect Us.
  669.  
  670. We are Anonymous - https://www.facebook.com/anonymousforjustice
  671. Ghost Squad Hackers - https://www.facebook.com/GhostSquadHackers
  672. OpIcarus Shut Down The Banks Events Page - https://www.facebook.com/events/964150270338381
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement