Advertisement
Guest User

JTSEC full recon Anonymous #opnazi #2

a guest
Sep 28th, 2017
1,691
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 61.60 KB | None | 0 0
  1. #######################################################################################################################################
  2. Hostname npiamerica.org ISP Squarespace, Inc. (AS53831)
  3. Continent North America Flag
  4. US
  5. Country United States Country Code US (USA)
  6. Region Unknown Local time 28 Sep 2017 03:22 CDT
  7. Metropolis Unknown Postal Code Unknown
  8. City Unknown Latitude 37.751
  9. IP Address 65.39.205.61 Longitude -97.822
  10. #######################################################################################################################################
  11. [i] Scanning Site: http://npiamerica.org JTSEC full recon Anonymous #opnazi #2
  12.  
  13.  
  14.  
  15. B A S I C I N F O
  16. ====================
  17.  
  18.  
  19. [+] Site Title:
  20. [+] IP address: 65.39.205.61
  21. [+] Web Server: Could Not Detect
  22. [+] CMS: Could Not Detect
  23. [+] Cloudflare: Not Detected
  24. [+] Robots File: Could NOT Find robots.txt!
  25.  
  26.  
  27.  
  28.  
  29. W H O I S L O O K U P
  30. ========================
  31.  
  32. Domain Name: NPIAMERICA.ORG
  33. Registry Domain ID: D162850178-LROR
  34. Registrar WHOIS Server:
  35. Registrar URL: http://www.tucows.com
  36. Updated Date: 2017-03-13T04:58:21Z
  37. Creation Date: 2011-07-22T18:34:06Z
  38. Registry Expiry Date: 2019-07-22T18:34:06Z
  39. Registrar Registration Expiration Date:
  40. Registrar: Tucows Inc.
  41. Registrar IANA ID: 69
  42. Registrar Abuse Contact Email:
  43. Registrar Abuse Contact Phone:
  44. Reseller:
  45. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  46. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  47. Registry Registrant ID: C140762647-LROR
  48. Registrant Name: Contact Privacy Inc. Customer 0135276165
  49. Registrant Organization: Contact Privacy Inc. Customer 0135276165
  50. Registrant Street: 96 Mowat Ave
  51. Registrant City: Toronto
  52. Registrant State/Province: ON
  53. Registrant Postal Code: M6K3M1
  54. Registrant Country: CA
  55. Registrant Phone: +1.4165385457
  56. Registrant Phone Ext:
  57. Registrant Fax:
  58. Registrant Fax Ext:
  59. Registrant Email: npiamerica.org@contactprivacy.com
  60. Registry Admin ID: C140762647-LROR
  61. Admin Name: Contact Privacy Inc. Customer 0135276165
  62. Admin Organization: Contact Privacy Inc. Customer 0135276165
  63. Admin Street: 96 Mowat Ave
  64. Admin City: Toronto
  65. Admin State/Province: ON
  66. Admin Postal Code: M6K3M1
  67. Admin Country: CA
  68. Admin Phone: +1.4165385457
  69. Admin Phone Ext:
  70. Admin Fax:
  71. Admin Fax Ext:
  72. Admin Email: npiamerica.org@contactprivacy.com
  73. Registry Tech ID: C140762647-LROR
  74. Tech Name: Contact Privacy Inc. Customer 0135276165
  75. Tech Organization: Contact Privacy Inc. Customer 0135276165
  76. Tech Street: 96 Mowat Ave
  77. Tech City: Toronto
  78. Tech State/Province: ON
  79. Tech Postal Code: M6K3M1
  80. Tech Country: CA
  81. Tech Phone: +1.4165385457
  82. Tech Phone Ext:
  83. Tech Fax:
  84. Tech Fax Ext:
  85. Tech Email: npiamerica.org@contactprivacy.com
  86. Name Server: NS1.HOVER.COM
  87. Name Server: NS2.HOVER.COM
  88. DNSSEC: unsigned
  89. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  90. >>> Last update of WHOIS database: 2017-09-28T06:33:58Z <<<
  91.  
  92. For more information on Whois status codes, please visit https://icann.org/epp
  93.  
  94. Access to Public Interest Registry WHOIS information is provided to assist persons in determining the contents of a domain name registration record in the Public Interest Registry registry database. The data in this record is provided by Public Interest Registry for informational purposes only, and Public Interest Registry does not guarantee its accuracy. This service is intended only for query-based access. You agree that you will use this data only for lawful purposes and that, under no circumstances will you use this data to: (a) allow, enable, or otherwise support the transmission by e-mail, telephone, or facsimile of mass unsolicited, commercial advertising or solicitations to entities other than the data recipient's own existing customers; or (b) enable high volume, automated, electronic processes that send queries or data to the systems of Registry Operator, a Registrar, or Afilias except as reasonably necessary to register domain names or modify existing registrations. All rights reserved. Public Interest Registry reserves the right to modify these terms at any time. By submitting this query, you agree to abide by this policy.
  95.  
  96.  
  97.  
  98.  
  99. G E O I P L O O K U P
  100. =========================
  101.  
  102. [i] IP Address: 65.39.205.61
  103. [i] Country: US
  104. [i] State: N/A
  105. [i] City: N/A
  106. [i] Latitude: 37.750999
  107. [i] Longitude: -97.821999
  108.  
  109.  
  110.  
  111.  
  112. H T T P H E A D E R S
  113. =======================
  114.  
  115.  
  116. [i] HTTP/1.0 400 Bad Request
  117. [i] content-length: 378
  118. [i] x-synthetic: true
  119. [i] expires: Thu, 01 Jan 1970 00:00:00 UTC
  120. [i] pragma: no-cache
  121. [i] cache-control: no-cache, must-revalidate
  122. [i] content-type: text/html; charset=UTF-8
  123. [i] connection: close
  124. [i] date: Thu, 28 Sep 2017 06:34:59 UTC
  125. [i] x-contextid: l3AEKv9Z/LL9Tpunq
  126. [i] x-via: 1.0 echo017
  127.  
  128.  
  129.  
  130.  
  131. D N S L O O K U P
  132. ===================
  133.  
  134. npiamerica.org. 896 IN A 65.39.205.61
  135. npiamerica.org. 900 IN NS ns2.hover.com.
  136. npiamerica.org. 900 IN NS ns1.hover.com.
  137. npiamerica.org. 900 IN SOA ns1.hover.com. dnsmaster.hover.com. 1375732716 10800 3600 604800 900
  138. npiamerica.org. 900 IN MX 10 mx.hover.com.cust.hostedemail.com.
  139.  
  140.  
  141.  
  142.  
  143. S U B N E T C A L C U L A T I O N
  144. ====================================
  145.  
  146. Address = 65.39.205.61
  147. Network = 65.39.205.61 / 32
  148. Netmask = 255.255.255.255
  149. Broadcast = not needed on Point-to-Point links
  150. Wildcard Mask = 0.0.0.0
  151. Hosts Bits = 0
  152. Max. Hosts = 1 (2^0 - 0)
  153. Host Range = { 65.39.205.61 - 65.39.205.61 }
  154.  
  155.  
  156.  
  157. N M A P P O R T S C A N
  158. ============================
  159.  
  160.  
  161. Starting Nmap 7.01 ( https://nmap.org ) at 2017-09-28 06:35 UTC
  162. Nmap scan report for npiamerica.org (65.39.205.61)
  163. Host is up (0.038s latency).
  164. PORT STATE SERVICE VERSION
  165. 21/tcp filtered ftp
  166. 22/tcp filtered ssh
  167. 23/tcp filtered telnet
  168. 25/tcp filtered smtp
  169. 80/tcp open rtsp
  170. 110/tcp filtered pop3
  171. 143/tcp filtered imap
  172. 443/tcp open ssl/https?
  173. 445/tcp filtered microsoft-ds
  174. 3389/tcp filtered ms-wbt-server
  175. 1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at
  176.  
  177. Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  178. Nmap done: 1 IP address (1 host up) scanned in 24.98 seconds
  179.  
  180.  
  181.  
  182. S U B - D O M A I N F I N D E R
  183. ==================================
  184.  
  185.  
  186. [i] Total Subdomains Found : 2
  187.  
  188. [+] Subdomain: npiamerica.org
  189. [-] IP: 65.39.205.61
  190.  
  191. [+] Subdomain: www.npiamerica.org
  192. [-] IP: 65.39.205.61
  193.  
  194.  
  195. NetRange: 65.39.205.0 - 65.39.205.255
  196. CIDR: 65.39.205.0/24
  197. NetName: SQUAR-30
  198. NetHandle: NET-65-39-205-0-1
  199. Parent: NET65 (NET-65-0-0-0-0)
  200. NetType: Direct Assignment
  201. OriginAS:
  202. Organization: Squarespace, Inc. (SQUAR-30)
  203. RegDate: 2017-04-10
  204. Updated: 2017-04-10
  205. Ref: https://whois.arin.net/rest/net/NET-65-39-205-0-1
  206.  
  207.  
  208. OrgName: Squarespace, Inc.
  209. OrgId: SQUAR-30
  210. Address: 225 Varick St
  211. City: New York
  212. StateProv: NY
  213. PostalCode: 10014
  214. Country: US
  215. RegDate: 2012-04-26
  216. Updated: 2017-01-04
  217. Comment: https://squarespace.com
  218. Ref: https://whois.arin.net/rest/org/SQUAR-30
  219.  
  220.  
  221. OrgNOCHandle: SYSTE409-ARIN
  222. OrgNOCName: Systems
  223. OrgNOCPhone: +1-347-758-4644
  224. OrgNOCEmail: systems-net@squarespace.com
  225. OrgNOCRef: https://whois.arin.net/rest/poc/SYSTE409-ARIN
  226.  
  227. OrgTechHandle: SYSTE409-ARIN
  228. OrgTechName: Systems
  229. OrgTechPhone: +1-347-758-4644
  230. OrgTechEmail: systems-net@squarespace.com
  231. OrgTechRef: https://whois.arin.net/rest/poc/SYSTE409-ARIN
  232.  
  233. OrgAbuseHandle: ABUSE5803-ARIN
  234. OrgAbuseName: Abuse
  235. OrgAbusePhone: +1-347-758-4644
  236. OrgAbuseEmail: abuse-network@squarespace.com
  237. OrgAbuseRef: https://whois.arin.net/rest/poc/ABUSE5803-ARIN
  238.  
  239.  
  240. [*] Performing TLD Brute force Enumeration against npiamerica.org
  241. [*] The operation could take up to: 00:01:07
  242. [*] A npiamerica.biz.af 5.45.75.45
  243. [*] CNAME npiamerica.biz.at free.biz.at
  244. [*] A free.biz.at 216.92.134.29
  245. [*] A npiamerica.co.asia 91.195.240.135
  246. [*] A npiamerica.org.aw 142.4.20.12
  247. [*] A npiamerica.co.ba 176.9.45.78
  248. [*] A npiamerica.com.ba 195.222.33.180
  249. [*] A npiamerica.com.be 95.173.170.166
  250. [*] A npiamerica.biz.by 71.18.52.2
  251. [*] A npiamerica.biz.bz 199.59.242.150
  252. [*] A npiamerica.net.cc 54.252.89.206
  253. [*] A npiamerica.com.cc 54.252.107.64
  254. [*] A npiamerica.co.cc 175.126.123.219
  255. [*] A npiamerica.org.ch 72.52.4.122
  256. [*] A npiamerica.biz.cl 185.53.178.8
  257. [*] A npiamerica.com 50.63.202.22
  258. [*] A npiamerica.com.com 52.33.196.199
  259. [*] CNAME npiamerica.biz.cm i.cns.cm
  260. [*] A i.cns.cm 118.184.56.30
  261. [*] A npiamerica.net.com 199.59.242.150
  262. [*] A npiamerica.co.com 173.192.115.17
  263. [*] A npiamerica.org.com 23.23.86.44
  264. [*] A npiamerica.co.cm 85.25.140.105
  265. [*] A npiamerica.net.cm 85.25.140.105
  266. [*] A npiamerica.biz.cr 72.52.4.122
  267. [*] A npiamerica.biz.cx 72.52.4.122
  268. [*] A npiamerica.com.cz 62.109.128.30
  269. [*] A npiamerica.biz.cz 185.53.179.7
  270. [*] A npiamerica.net.cz 80.250.24.177
  271. [*] CNAME npiamerica.co.de co.de
  272. [*] A co.de 144.76.162.245
  273. [*] CNAME npiamerica.org.de www.org.de
  274. [*] A www.org.de 78.47.128.8
  275. [*] A npiamerica.com.de 50.56.68.37
  276. [*] A npiamerica.net.eu 78.46.90.98
  277. [*] A npiamerica.org.eu 78.46.90.98
  278. [*] A npiamerica.biz.fi 185.55.85.123
  279. [*] A npiamerica.fm 173.230.131.38
  280. [*] CNAME npiamerica.com.fi dnspod-vip3.mydnspod.net
  281. [*] A dnspod-vip3.mydnspod.net 119.28.48.218
  282. [*] A dnspod-vip3.mydnspod.net 119.28.48.237
  283. [*] A npiamerica.biz.fm 173.230.131.38
  284. [*] A npiamerica.org.fr 149.202.133.35
  285. [*] A npiamerica.biz.gl 72.52.4.122
  286. [*] CNAME npiamerica.co.gp co.gp
  287. [*] A co.gp 144.76.162.245
  288. [*] A npiamerica.co.hn 208.100.40.203
  289. [*] CNAME npiamerica.biz.hn parkmydomain.vhostgo.com
  290. [*] CNAME parkmydomain.vhostgo.com westuser.dopa.com
  291. [*] A westuser.dopa.com 107.186.245.119
  292. [*] CNAME npiamerica.net.hr net.hr
  293. [*] A net.hr 192.0.78.24
  294. [*] A net.hr 192.0.78.25
  295. [*] A npiamerica.co.ht 72.52.4.122
  296. [*] A npiamerica.co.jobs 50.17.193.222
  297. [*] A npiamerica.com.jobs 50.19.241.165
  298. [*] A npiamerica.net.jobs 50.19.241.165
  299. [*] A npiamerica.biz.jobs 50.19.241.165
  300. [*] A npiamerica.org.jobs 50.19.241.165
  301. [*] A npiamerica.biz.ky 199.184.144.27
  302. [*] A npiamerica.la 173.230.141.80
  303. [*] CNAME npiamerica.biz.li 712936.parkingcrew.net
  304. [*] A 712936.parkingcrew.net 185.53.179.29
  305. [*] A npiamerica.biz.lu 195.26.5.2
  306. [*] A npiamerica.biz.ly 64.136.20.39
  307. [*] A npiamerica.biz.md 72.52.4.122
  308. [*] A npiamerica.co.mk 87.76.31.211
  309. [*] A npiamerica.co.mobi 54.225.105.179
  310. [*] A npiamerica.biz.my 202.190.174.44
  311. [*] A npiamerica.net 104.154.30.61
  312. [*] A npiamerica.co.net 188.166.216.219
  313. [*] A npiamerica.net.net 52.50.81.210
  314. [*] A npiamerica.org.net 23.23.86.44
  315. [*] A npiamerica.com.nl 83.98.157.102
  316. [*] A npiamerica.co.nl 37.97.184.204
  317. [*] A npiamerica.net.nl 83.98.157.102
  318. [*] A npiamerica.co.nr 208.100.40.202
  319. [*] CNAME npiamerica.co.nu co.nu
  320. [*] A co.nu 144.76.162.245
  321. [*] A npiamerica.org.nu 80.92.84.139
  322. [*] CNAME npiamerica.com.nu com.nu
  323. [*] A com.nu 144.76.162.245
  324. [*] A npiamerica.net.nu 199.102.76.78
  325. [*] A npiamerica.org 65.39.205.61
  326. [*] A npiamerica.com.org 23.23.86.44
  327. [*] CNAME npiamerica.net.org pewtrusts.org
  328. [*] A pewtrusts.org 204.74.99.100
  329. [*] A npiamerica.ph 45.79.222.138
  330. [*] A npiamerica.co.ph 45.79.222.138
  331. [*] A npiamerica.com.ph 45.79.222.138
  332. [*] A npiamerica.net.ph 45.79.222.138
  333. [*] A npiamerica.org.ph 45.79.222.138
  334. [*] A npiamerica.co.pl 212.91.6.55
  335. [*] A npiamerica.org.pm 208.73.211.165
  336. [*] A npiamerica.org.pm 208.73.211.177
  337. [*] A npiamerica.org.pm 208.73.210.217
  338. [*] A npiamerica.org.pm 208.73.210.202
  339. [*] A npiamerica.co.ps 66.96.132.56
  340. [*] CNAME npiamerica.biz.ps biz.ps
  341. [*] A biz.ps 144.76.162.245
  342. [*] A npiamerica.co.pt 194.107.127.52
  343. [*] A npiamerica.pw 141.8.226.58
  344. [*] A npiamerica.co.pw 141.8.226.59
  345. [*] A npiamerica.net.pw 141.8.226.59
  346. [*] A npiamerica.biz.pw 141.8.226.59
  347. [*] A npiamerica.org.pw 141.8.226.59
  348. [*] A npiamerica.net.ro 69.64.52.127
  349. [*] A npiamerica.org.re 217.70.184.38
  350. [*] CNAME npiamerica.co.ro now.co.ro
  351. [*] A now.co.ro 185.27.255.9
  352. [*] A npiamerica.com.ru 178.210.89.119
  353. [*] A npiamerica.biz.se 185.53.179.6
  354. [*] CNAME npiamerica.net.se 773147.parkingcrew.net
  355. [*] A 773147.parkingcrew.net 185.53.179.29
  356. [*] A npiamerica.co.sl 91.195.240.135
  357. [*] A npiamerica.com.sr 143.95.106.249
  358. [*] A npiamerica.co.su 72.52.4.122
  359. [*] A npiamerica.biz.st 91.121.28.115
  360. [*] A npiamerica.biz.tc 64.136.20.39
  361. [*] A npiamerica.biz.tf 85.236.153.18
  362. [*] A npiamerica.net.tf 188.40.70.29
  363. [*] A npiamerica.net.tf 188.40.70.27
  364. [*] A npiamerica.net.tf 188.40.117.12
  365. [*] A npiamerica.co.tl 208.100.40.202
  366. [*] A npiamerica.co.to 175.118.124.44
  367. [*] A npiamerica.co.tv 31.186.25.163
  368. [*] A npiamerica.biz.tv 72.52.4.122
  369. [*] A npiamerica.org.tv 72.52.4.122
  370. [*] CNAME npiamerica.biz.uz biz.uz
  371. [*] A biz.uz 144.76.162.245
  372. [*] A npiamerica.vg 88.198.29.97
  373. [*] A npiamerica.co.vg 88.198.29.97
  374. [*] A npiamerica.com.vg 88.198.29.97
  375. [*] A npiamerica.net.vg 68.178.254.180
  376. [*] A npiamerica.biz.vg 89.31.143.20
  377. [*] A npiamerica.ws 64.70.19.203
  378. [*] A npiamerica.biz.ws 184.168.221.104
  379. [*] A npiamerica.com.ws 202.4.48.211
  380. [*] A npiamerica.net.ws 202.4.48.211
  381. [*] A npiamerica.org.ws 202.4.48.211
  382. + -- ----------------------------=[Running Nslookup]=------------------------ -- +
  383. Server: 192.168.1.254
  384. Address: 192.168.1.254#53
  385.  
  386. Non-authoritative answer:
  387. Name: npiamerica.org
  388. Address: 65.39.205.61
  389.  
  390. npiamerica.org has address 65.39.205.61
  391. npiamerica.org mail is handled by 10 mx.hover.com.cust.hostedemail.com.
  392. + -- ----------------------------=[Checking OS Fingerprint]=----------------- -- +
  393. [-] fingerprint:snmp: need UDP port 161 open
  394.  
  395. Xprobe2 v.0.3 Copyright (c) 2002-2005 fyodor@o0o.nu, ofir@sys-security.com, meder@o0o.nu
  396.  
  397. [+] Target is npiamerica.org
  398. [+] Loading modules.
  399. [+] Following modules are loaded:
  400. [x] [1] ping:icmp_ping - ICMP echo discovery module
  401. [x] [2] ping:tcp_ping - TCP-based ping discovery module
  402. [x] [3] ping:udp_ping - UDP-based ping discovery module
  403. [x] [4] infogather:ttl_calc - TCP and UDP based TTL distance calculation
  404. [x] [5] infogather:portscan - TCP and UDP PortScanner
  405. [x] [6] fingerprint:icmp_echo - ICMP Echo request fingerprinting module
  406. [x] [7] fingerprint:icmp_tstamp - ICMP Timestamp request fingerprinting module
  407. [x] [8] fingerprint:icmp_amask - ICMP Address mask request fingerprinting module
  408. [x] [9] fingerprint:icmp_port_unreach - ICMP port unreachable fingerprinting module
  409. [x] [10] fingerprint:tcp_hshake - TCP Handshake fingerprinting module
  410. [x] [11] fingerprint:tcp_rst - TCP RST fingerprinting module
  411. [x] [12] fingerprint:smb - SMB fingerprinting module
  412. [x] [13] fingerprint:snmp - SNMPv2c fingerprinting module
  413. [+] 13 modules registered
  414. [+] Initializing scan engine
  415. [+] Running scan engine
  416. [-] ping:tcp_ping module: no closed/open TCP ports known on 65.39.205.61. Module test failed
  417. [-] ping:udp_ping module: no closed/open UDP ports known on 65.39.205.61. Module test failed
  418. [-] No distance calculation. 65.39.205.61 appears to be dead or no ports known
  419. [+] Host: 65.39.205.61 is up (Guess probability: 50%)
  420. [+] Target: 65.39.205.61 is alive. Round-Trip Time: 0.49960 sec
  421. [+] Selected safe Round-Trip Time value is: 0.99919 sec
  422. [-] fingerprint:tcp_hshake Module execution aborted (no open TCP ports known)
  423. [-] fingerprint:smb need either TCP port 139 or 445 to run
  424. [+] Primary guess:
  425. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  426. [+] Other guesses:
  427. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  428. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  429. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  430. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  431. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  432. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  433. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  434. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  435. [+] Host 65.39.205.61 Running OS: (Guess probability: 100%)
  436. [+] Cleaning up scan engine
  437. [+] Modules deinitialized
  438. [+] Execution completed.
  439. + -- ----------------------------=[Gathering Whois Info]=-------------------- -- +
  440. Domain Name: NPIAMERICA.ORG
  441. Registry Domain ID: D162850178-LROR
  442. Registrar WHOIS Server:
  443. Registrar URL: http://www.tucows.com
  444. Updated Date: 2017-03-13T04:58:21Z
  445. Creation Date: 2011-07-22T18:34:06Z
  446. Registry Expiry Date: 2019-07-22T18:34:06Z
  447. Registrar Registration Expiration Date:
  448. Registrar: Tucows Inc.
  449. Registrar IANA ID: 69
  450. Registrar Abuse Contact Email:
  451. Registrar Abuse Contact Phone:
  452. Reseller:
  453. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  454. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  455. Registry Registrant ID: C140762647-LROR
  456. Registrant Name: Contact Privacy Inc. Customer 0135276165
  457. Registrant Organization: Contact Privacy Inc. Customer 0135276165
  458. Registrant Street: 96 Mowat Ave
  459. Registrant City: Toronto
  460. Registrant State/Province: ON
  461. Registrant Postal Code: M6K3M1
  462. Registrant Country: CA
  463. Registrant Phone: +1.4165385457
  464. Registrant Phone Ext:
  465. Registrant Fax:
  466. Registrant Fax Ext:
  467. Registrant Email: npiamerica.org@contactprivacy.com
  468. Registry Admin ID: C140762647-LROR
  469. Admin Name: Contact Privacy Inc. Customer 0135276165
  470. Admin Organization: Contact Privacy Inc. Customer 0135276165
  471. Admin Street: 96 Mowat Ave
  472. Admin City: Toronto
  473. Admin State/Province: ON
  474. Admin Postal Code: M6K3M1
  475. Admin Country: CA
  476. Admin Phone: +1.4165385457
  477. Admin Phone Ext:
  478. Admin Fax:
  479. Admin Fax Ext:
  480. Admin Email: npiamerica.org@contactprivacy.com
  481. Registry Tech ID: C140762647-LROR
  482. Tech Name: Contact Privacy Inc. Customer 0135276165
  483. Tech Organization: Contact Privacy Inc. Customer 0135276165
  484. Tech Street: 96 Mowat Ave
  485. Tech City: Toronto
  486. Tech State/Province: ON
  487. Tech Postal Code: M6K3M1
  488. Tech Country: CA
  489. Tech Phone: +1.4165385457
  490. Tech Phone Ext:
  491. Tech Fax:
  492. Tech Fax Ext:
  493. Tech Email: npiamerica.org@contactprivacy.com
  494. Name Server: NS1.HOVER.COM
  495. Name Server: NS2.HOVER.COM
  496. DNSSEC: unsigned
  497. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  498. >>> Last update of WHOIS database: 2017-09-28T06:32:46Z <<<
  499.  
  500. For more information on Whois status codes, please visit https://icann.org/epp
  501.  
  502. Access to Public Interest Registry WHOIS information is provided to assist persons in determining the contents of a domain name registration record in the Public Interest Registry registry database. The data in this record is provided by Public Interest Registry for informational purposes only, and Public Interest Registry does not guarantee its accuracy. This service is intended only for query-based access. You agree that you will use this data only for lawful purposes and that, under no circumstances will you use this data to: (a) allow, enable, or otherwise support the transmission by e-mail, telephone, or facsimile of mass unsolicited, commercial advertising or solicitations to entities other than the data recipient's own existing customers; or (b) enable high volume, automated, electronic processes that send queries or data to the systems of Registry Operator, a Registrar, or Afilias except as reasonably necessary to register domain names or modify existing registrations. All rights reserved. Public Interest Registry reserves the right to modify these terms at any time. By submitting this query, you agree to abide by this policy.
  503. + -- ----------------------------=[Gathering OSINT Info]=-------------------- -- +
  504.  
  505. *******************************************************************
  506. * *
  507. * | |_| |__ ___ /\ /\__ _ _ ____ _____ ___| |_ ___ _ __ *
  508. * | __| '_ \ / _ \ / /_/ / _` | '__\ \ / / _ \/ __| __/ _ \ '__| *
  509. * | |_| | | | __/ / __ / (_| | | \ V / __/\__ \ || __/ | *
  510. * \__|_| |_|\___| \/ /_/ \__,_|_| \_/ \___||___/\__\___|_| *
  511. * *
  512. * TheHarvester Ver. 2.7 *
  513. * Coded by Christian Martorella *
  514. * Edge-Security Research *
  515. * cmartorella@edge-security.com *
  516. *******************************************************************
  517.  
  518.  
  519. [-] Searching in Bing:
  520. Searching 50 results...
  521. Searching 100 results...
  522.  
  523.  
  524. [+] Emails found:
  525. ------------------
  526. No emails found
  527.  
  528. [+] Hosts found in search engines:
  529. ------------------------------------
  530. [-] Resolving hostnames IPs...
  531. + -- ----------------------------=[Gathering DNS Info]=---------------------- -- +
  532.  
  533. ; <<>> DiG 9.10.3-P4-Debian <<>> -x npiamerica.org
  534. ;; global options: +cmd
  535. ;; Got answer:
  536. ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 59658
  537. ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1
  538.  
  539. ;; OPT PSEUDOSECTION:
  540. ; EDNS: version: 0, flags:; udp: 4096
  541. ;; QUESTION SECTION:
  542. ;org.npiamerica.in-addr.arpa. IN PTR
  543.  
  544. ;; AUTHORITY SECTION:
  545. in-addr.arpa. 3600 IN SOA b.in-addr-servers.arpa. nstld.iana.org. 2017043195 1800 900 604800 3600
  546.  
  547. ;; Query time: 202 msec
  548. ;; SERVER: 192.168.1.254#53(192.168.1.254)
  549. ;; WHEN: Thu Sep 28 02:34:04 EDT 2017
  550. ;; MSG SIZE rcvd: 124
  551.  
  552. Smartmatch is experimental at /usr/bin/dnsenum line 698.
  553. Smartmatch is experimental at /usr/bin/dnsenum line 698.
  554. AXFR record query failed: REFUSED
  555. AXFR record query failed: REFUSED
  556. dnsenum VERSION:1.2.4
  557.  
  558. ----- npiamerica.org -----
  559.  
  560.  
  561. Host's addresses:
  562. __________________
  563.  
  564. npiamerica.org. 877 IN A 65.39.205.61
  565.  
  566.  
  567. Name Servers:
  568. ______________
  569.  
  570. ns2.hover.com. 900 IN A 64.98.148.13
  571. ns1.hover.com. 575 IN A 216.40.47.26
  572.  
  573.  
  574. Mail (MX) Servers:
  575. ___________________
  576.  
  577. mx.hover.com.cust.hostedemail.com. 3600 IN A 216.40.42.4
  578.  
  579.  
  580. Trying Zone Transfers and getting Bind Versions:
  581. _________________________________________________
  582.  
  583.  
  584. Trying Zone Transfer for npiamerica.org on ns2.hover.com ...
  585.  
  586. Trying Zone Transfer for npiamerica.org on ns1.hover.com ...
  587.  
  588. brute force file not specified, bay.
  589. + -- ----------------------------=[Gathering DNS Subdomains]=---------------- -- +
  590.  
  591. ____ _ _ _ _ _____
  592. / ___| _ _| |__ | (_)___| |_|___ / _ __
  593. \___ \| | | | '_ \| | / __| __| |_ \| '__|
  594. ___) | |_| | |_) | | \__ \ |_ ___) | |
  595. |____/ \__,_|_.__/|_|_|___/\__|____/|_|
  596.  
  597. # Coded By Ahmed Aboul-Ela - @aboul3la
  598.  
  599. [-] Enumerating subdomains now for npiamerica.org
  600. [-] verbosity is enabled, will show the subdomains results in realtime
  601. [-] Searching now in Baidu..
  602. [-] Searching now in Yahoo..
  603. [-] Searching now in Google..
  604. [-] Searching now in Bing..
  605. [-] Searching now in Ask..
  606. [-] Searching now in Netcraft..
  607. [-] Searching now in DNSdumpster..
  608. [-] Searching now in Virustotal..
  609. [-] Searching now in ThreatCrowd..
  610. [-] Searching now in SSL Certificates..
  611. [-] Searching now in PassiveDNS..
  612. ThreatCrowd: www.npiamerica.org
  613. SSL Certificates: www.npiamerica.org
  614. Yahoo: www.npiamerica.org
  615. Virustotal: www.npiamerica.org
  616. Netcraft: www.npiamerica.org
  617.  
  618.  
  619. + -- ----------------------------=[Pinging host]=---------------------------- -- +
  620. PING npiamerica.org (65.39.205.61) 56(84) bytes of data.
  621. 64 bytes from 65.39.205.61 (65.39.205.61): icmp_seq=1 ttl=244 time=221 ms
  622.  
  623. --- npiamerica.org ping statistics ---
  624. 1 packets transmitted, 1 received, 0% packet loss, time 0ms
  625. rtt min/avg/max/mdev = 221.375/221.375/221.375/0.000 ms
  626.  
  627. + -- ----------------------------=[Running TCP port scan]=------------------- -- +
  628.  
  629. Starting Nmap 7.60 ( https://nmap.org ) at 2017-09-28 02:34 EDT
  630. Nmap scan report for npiamerica.org (65.39.205.61)
  631. Host is up (0.24s latency).
  632. Not shown: 471 filtered ports
  633. Some closed ports may be reported as filtered due to --defeat-rst-ratelimit
  634. PORT STATE SERVICE
  635. 80/tcp open http
  636. 443/tcp open https
  637.  
  638. Nmap done: 1 IP address (1 host up) scanned in 16.45 seconds
  639.  
  640. + -- ----------------------------=[Running Intrusive Scans]=----------------- -- +
  641. + -- --=[Port 21 closed... skipping.
  642. + -- --=[Port 22 closed... skipping.
  643. + -- --=[Port 23 closed... skipping.
  644. + -- --=[Port 25 closed... skipping.
  645. + -- --=[Port 53 closed... skipping.
  646. + -- --=[Port 79 closed... skipping.
  647. + -- --=[Port 80 opened... running tests...
  648. + -- ----------------------------=[Checking for WAF]=------------------------ -- +
  649.  
  650. ^ ^
  651. _ __ _ ____ _ __ _ _ ____
  652. ///7/ /.' \ / __////7/ /,' \ ,' \ / __/
  653. | V V // o // _/ | V V // 0 // 0 // _/
  654. |_n_,'/_n_//_/ |_n_,' \_,' \_,'/_/
  655. <
  656. ...'
  657.  
  658. WAFW00F - Web Application Firewall Detection Tool
  659.  
  660. By Sandro Gauci && Wendel G. Henrique
  661.  
  662. Checking http://npiamerica.org
  663. Generic Detection results:
  664. No WAF detected by the generic detection
  665. Number of requests: 13
  666.  
  667. + -- ----------------------------=[Gathering HTTP Info]=--------------------- -- +
  668. http://npiamerica.org [200 OK] Cookies[JSESSIONID,ss_sd], Country[UNITED STATES][US], Frame, HTTPServer[SSWS], HttpOnly[JSESSIONID], IP[65.39.205.61], Script[text/javascript], Title[Squarespace - Claim This Domain][Title element contains newline(s)!], UncommonHeaders[x-contextid,x-servedby,x-via]
  669.  
  670. __ ______ _____
  671. \ \/ / ___|_ _|
  672. \ /\___ \ | |
  673. / \ ___) || |
  674. /_/\_|____/ |_|
  675.  
  676. + -- --=[Cross-Site Tracer v1.3 by 1N3 @ CrowdShield
  677. + -- --=[Target: npiamerica.org:80
  678. + -- --=[Site not vulnerable to Cross-Site Tracing!
  679. + -- --=[Site not vulnerable to Host Header Injection!
  680. + -- --=[Site vulnerable to Cross-Frame Scripting!
  681. + -- --=[Site vulnerable to Clickjacking!
  682.  
  683. HTTP/1.1 501 Not Implemented
  684. content-length: 386
  685. x-synthetic: true
  686. expires: Thu, 01 Jan 1970 00:00:00 UTC
  687. pragma: no-cache
  688. cache-control: no-cache, must-revalidate
  689. content-type: text/html; charset=UTF-8
  690. connection: close
  691. date: Thu, 28 Sep 2017 06:35:09 UTC
  692. x-contextid: SMyawdJh/qAJO5HGN
  693. x-via: 1.1 echo028
  694.  
  695. <html>
  696. <head>
  697. <title>501 Not Implemented</title>
  698. <style> body { background-color: #F2F2F2; color: #3E3E3E; font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px; } pre { word-wrap: break-word; } </style>
  699. </head>
  700. <body>
  701. <h1>501 Not Implemented</h1>
  702. <p><pre>SMyawdJh/qAJO5HGN @ Thu, 28 Sep 2017 06:35:09 GMT</pre>
  703. <p><pre>SEC-45</pre>
  704. <p><pre></pre>
  705. </body>
  706. </html>
  707. HTTP/1.1 400 Bad Request
  708. content-length: 378
  709. x-synthetic: true
  710. expires: Thu, 01 Jan 1970 00:00:00 UTC
  711. pragma: no-cache
  712. cache-control: no-cache, must-revalidate
  713. content-type: text/html; charset=UTF-8
  714. connection: close
  715. date: Thu, 28 Sep 2017 06:35:10 UTC
  716. x-contextid: D8r3fCSW/IBIz0suh
  717. x-via: 1.1 echo019
  718.  
  719. <html>
  720. <head>
  721. <title>400 Bad Request</title>
  722. <style> body { background-color: #F2F2F2; color: #3E3E3E; font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px; } pre { word-wrap: break-word; } </style>
  723. </head>
  724. <body>
  725. <h1>400 Bad Request</h1>
  726. <p><pre>D8r3fCSW/IBIz0suh @ Thu, 28 Sep 2017 06:35:10 GMT</pre>
  727. <p><pre>SEC-43</pre>
  728. <p><pre></pre>
  729. </body>
  730. </html>
  731.  
  732.  
  733.  
  734. + -- ----------------------------=[Checking HTTP Headers]=------------------- -- +
  735. + -- --=[Checking if X-Content options are enabled on npiamerica.org...
  736.  
  737. + -- --=[Checking if X-Frame options are enabled on npiamerica.org...
  738.  
  739. + -- --=[Checking if X-XSS-Protection header is enabled on npiamerica.org...
  740.  
  741. + -- --=[Checking HTTP methods on npiamerica.org...
  742. Access-Control-Allow-Credentials: true
  743. Access-Control-Allow-Method: POST, OPTIONS
  744. Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type
  745.  
  746. + -- --=[Checking if TRACE method is enabled on npiamerica.org...
  747.  
  748. + -- --=[Checking for META tags on npiamerica.org...
  749. <meta name="keywords" content="home page, web host, webhost, home, homepage, webpage, square space, squarespace, website, site maker, site builder, website maker, website builder, publishing, personal publishing, personal website, weblog, blog, web log" />
  750. <meta name="description" content="Squarespace. A new way of thinking about website publishing." />
  751. <meta name="copyright" content="(c) 2003-2004 Squarespace, Inc." />
  752. <meta name="MSSmartTagsPreventParsing" content="true" />
  753. <meta name="robots" content="noindex,nofollow,noarchive" />
  754.  
  755. + -- --=[Checking for open proxy on npiamerica.org...
  756. <div id="footer">
  757. Copyright &copy; 2003-2017, Squarespace Inc. unless otherwise noted. All rights reserved.<br />
  758. <a href="http://www.squarespace.com">Squarespace</a> | <a href="http://www.squarespace.com/terms">Terms of Service</a> | <a href="http://www.squarespace.com/privacy">Privacy Policy</a>
  759. </div>
  760. </div>
  761. </div>
  762. </div>
  763. </div>
  764. </body>
  765. </html>
  766.  
  767. + -- --=[Enumerating software on npiamerica.org...
  768. Server: SSWS
  769.  
  770. + -- --=[Checking if Strict-Transport-Security is enabled on npiamerica.org...
  771.  
  772. + -- --=[Checking for Flash cross-domain policy on npiamerica.org...
  773. <div id="footer">
  774. Copyright &copy; 2003-2017, Squarespace Inc. unless otherwise noted. All rights reserved.<br />
  775. <a href="http://www.squarespace.com">Squarespace</a> | <a href="http://www.squarespace.com/terms">Terms of Service</a> | <a href="http://www.squarespace.com/privacy">Privacy Policy</a>
  776. </div>
  777. </div>
  778. </div>
  779. </div>
  780. </div>
  781. </body>
  782. </html>
  783.  
  784. + -- --=[Checking for Silverlight cross-domain policy on npiamerica.org...
  785. <div id="footer">
  786. Copyright &copy; 2003-2017, Squarespace Inc. unless otherwise noted. All rights reserved.<br />
  787. <a href="http://www.squarespace.com">Squarespace</a> | <a href="http://www.squarespace.com/terms">Terms of Service</a> | <a href="http://www.squarespace.com/privacy">Privacy Policy</a>
  788. </div>
  789. </div>
  790. </div>
  791. </div>
  792. </div>
  793. </body>
  794. </html>
  795.  
  796. + -- --=[Checking for HTML5 cross-origin resource sharing on npiamerica.org...
  797.  
  798. + -- --=[Retrieving robots.txt on npiamerica.org...
  799. <div id="footer">
  800. Copyright &copy; 2003-2017, Squarespace Inc. unless otherwise noted. All rights reserved.<br />
  801. <a href="http://www.squarespace.com">Squarespace</a> | <a href="http://www.squarespace.com/terms">Terms of Service</a> | <a href="http://www.squarespace.com/privacy">Privacy Policy</a>
  802. </div>
  803. </div>
  804. </div>
  805. </div>
  806. </div>
  807. </body>
  808. </html>
  809.  
  810. + -- --=[Retrieving sitemap.xml on npiamerica.org...
  811. <div id="footer">
  812. Copyright &copy; 2003-2017, Squarespace Inc. unless otherwise noted. All rights reserved.<br />
  813. <a href="http://www.squarespace.com">Squarespace</a> | <a href="http://www.squarespace.com/terms">Terms of Service</a> | <a href="http://www.squarespace.com/privacy">Privacy Policy</a>
  814. </div>
  815. </div>
  816. </div>
  817. </div>
  818. </div>
  819. </body>
  820. </html>
  821.  
  822. + -- --=[Checking cookie attributes on npiamerica.org...
  823. Set-Cookie: JSESSIONID=D7E041DE6A982244EBC87D9FB5B809D7.v5-web020; Path=/; HttpOnly
  824. set-cookie: ss_sd=eyJpZCI6IjZlMWVmOTA5ZTU1YmJjNWI2YTNjZWEyOTQ3OGIwMzBjNjNlNTBjNjUiLCJ0cyI6MTUwNjU4MDUyMDM3N32gX3ahUPhD2cDvGNclg3yYJkMKLA; Path=/
  825.  
  826. + -- --=[Checking for ASP.NET Detailed Errors on npiamerica.org...
  827. <link rel="stylesheet" type="text/css" href="/universal/styles/service-error-pages.css?CE=75" title="default" />
  828. <div id="error-page">
  829. <a href="http://www.squarespace.com"><img src="/universal/images/error-pages/logo-emboss.png" style="border: none;" alt="SQUARESPACE" /></a>
  830. <link rel="stylesheet" type="text/css" href="/universal/styles/service-error-pages.css?CE=75" title="default" />
  831. <div id="error-page">
  832. <a href="http://www.squarespace.com"><img src="/universal/images/error-pages/logo-emboss.png" style="border: none;" alt="SQUARESPACE" /></a>
  833.  
  834.  
  835. + -- ----------------------------=[Running Web Vulnerability Scan]=---------- -- +
  836. - Nikto v2.1.6
  837. ---------------------------------------------------------------------------
  838. + Target IP: 65.39.205.61
  839. + Target Hostname: npiamerica.org
  840. + Target Port: 80
  841. + Start Time: 2017-09-28 02:35:22 (GMT-4)
  842. ---------------------------------------------------------------------------
  843. + Server: SSWS
  844. + Cookie ss_sd created without the httponly flag
  845. + The anti-clickjacking X-Frame-Options header is not present.
  846. + The X-XSS-Protection header is not defined. This header can hint to the user agent to protect against some forms of XSS
  847. + Uncommon header 'x-via' found, with contents: 1.1 echo007
  848. + Uncommon header 'x-servedby' found, with contents: v5-web008
  849. + Uncommon header 'x-contextid' found, with contents: wYDcDXHj/GERivrKa
  850. + The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type
  851. + Uncommon header 'x-synthetic' found, with contents: true
  852. + No CGI Directories found (use '-C all' to force check all possible dirs)
  853. + Server leaks inodes via ETags, header found with file /universal/favicon.ico, fields: 0xW/1150 0x1505845310000
  854. + Uncommon header 'access-control-allow-method' found, with contents: POST, OPTIONS
  855. + OSVDB-3092: /css: This might be interesting...
  856. + OSVDB-3092: /service/: This might be interesting...
  857. + /configuration/: Admin login page/section found.
  858. + 7464 requests: 13 error(s) and 13 item(s) reported on remote host
  859. + End Time: 2017-09-28 03:40:06 (GMT-4) (3884 seconds)
  860. ---------------------------------------------------------------------------
  861. + 1 host(s) tested
  862. + -- ----------------------------=[Saving Web Screenshots]=------------------ -- +
  863. [+] Screenshot saved to /usr/share/sniper/loot/screenshots/npiamerica.org-port80.jpg
  864. + -- ----------------------------=[Running Google Hacking Queries]=--------------------- -- +
  865. + -- ----------------------------=[Running InUrlBR OSINT Queries]=---------- -- +
  866.  
  867. _____ .701F. .iBR. .7CL. .70BR. .7BR. .7BR'''Cq. .70BR. .1BR'''Yp, .8BR'''Cq.
  868. (_____) 01 01N. C 01 C 01 .01. 01 01 Yb 01 .01.
  869. (() ()) 01 C YCb C 01 C 01 ,C9 01 01 dP 01 ,C9
  870. \ / 01 C .CN. C 01 C 0101dC9 01 01'''bg. 0101dC9
  871. \ / 01 C .01.C 01 C 01 YC. 01 , 01 .Y 01 YC.
  872. /=\ 01 C Y01 YC. ,C 01 .Cb. 01 ,C 01 ,9 01 .Cb.
  873. [___] .J01L. .JCL. YC .b0101d'. .J01L. .J01. .J01010101C .J0101Cd9 .J01L. .J01./ 2.1
  874.  
  875. __[ ! ] Neither war between hackers, nor peace for the system.
  876. __[ ! ] http://blog.inurl.com.br
  877. __[ ! ] http://fb.com/InurlBrasil
  878. __[ ! ] http://twitter.com/@googleinurl
  879. __[ ! ] http://github.com/googleinurl
  880. __[ ! ] Current PHP version::[ 7.0.22-3 ]
  881. __[ ! ] Current script owner::[ root ]
  882. __[ ! ] Current uname::[ Linux Kali 4.12.0-kali2-amd64 #1 SMP Debian 4.12.12-2kali1 (2017-09-13) x86_64 ]
  883. __[ ! ] Current pwd::[ /usr/share/sniper ]
  884. __[ ! ] Help: php inurlbr.php --help
  885. ------------------------------------------------------------------------------------------------------------------------
  886.  
  887. [ ! ] Starting SCANNER INURLBR 2.1 at [28-09-2017 03:41:29]
  888. [ ! ] legal disclaimer: Usage of INURLBR for attacking targets without prior mutual consent is illegal.
  889. It is the end user's responsibility to obey all applicable local, state and federal laws.
  890. Developers assume no liability and are not responsible for any misuse or damage caused by this program
  891.  
  892. [ INFO ][ OUTPUT FILE ]:: [ /usr/share/sniper/output/inurlbr-npiamerica.org.txt ]
  893. [ INFO ][ DORK ]::[ site:npiamerica.org ]
  894. [ INFO ][ SEARCHING ]:: {
  895. [ INFO ][ ENGINE ]::[ GOOGLE - www.google.jo ]
  896.  
  897. [ INFO ][ SEARCHING ]::
  898. -[:::]
  899. [ INFO ][ ENGINE ]::[ GOOGLE API ]
  900.  
  901. [ INFO ][ SEARCHING ]::
  902. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  903. [ INFO ][ ENGINE ]::[ GOOGLE_GENERIC_RANDOM - www.google.ie ID: 013269018370076798483:wdba3dlnxqm ]
  904.  
  905. [ INFO ][ SEARCHING ]::
  906. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  907.  
  908. [ INFO ][ TOTAL FOUND VALUES ]:: [ 6 ]
  909.  
  910.  
  911. _[ - ]::--------------------------------------------------------------------------------------------------------------
  912. |_[ + ] [ 0 / 6 ]-[03:41:39] [ - ]
  913. |_[ + ] Target:: [ https://www.npiamerica.org/s/TheFoundersonRaceTaylor-fxjn.pdf ]
  914. |_[ + ] Exploit::
  915. |_[ + ] Information Server:: , , IP::0
  916. |_[ + ] More details::
  917. |_[ + ] Found:: UNIDENTIFIED
  918. |_[ + ] ERROR CONECTION:: Could not resolve host: www.npiamerica.org
  919.  
  920. _[ - ]::--------------------------------------------------------------------------------------------------------------
  921. |_[ + ] [ 1 / 6 ]-[03:41:39] [ - ]
  922. |_[ + ] Target:: [ http://www.npiamerica.org/the-national-policy-institute/blog/mcworld-and-the-mujahedin ]
  923. |_[ + ] Exploit::
  924. |_[ + ] Information Server:: , , IP::0
  925. |_[ + ] More details::
  926. |_[ + ] Found:: UNIDENTIFIED
  927. |_[ + ] ERROR CONECTION:: Could not resolve host: www.npiamerica.org
  928.  
  929. _[ - ]::--------------------------------------------------------------------------------------------------------------
  930. |_[ + ] [ 2 / 6 ]-[03:41:39] [ - ]
  931. |_[ + ] Target:: [ https://www.npiamerica.org/podcast/category/2013-conference-preview ]
  932. |_[ + ] Exploit::
  933. |_[ + ] Information Server:: , , IP::0
  934. |_[ + ] More details::
  935. |_[ + ] Found:: UNIDENTIFIED
  936. |_[ + ] ERROR CONECTION:: Could not resolve host: www.npiamerica.org
  937.  
  938. _[ - ]::--------------------------------------------------------------------------------------------------------------
  939. |_[ + ] [ 3 / 6 ]-[03:41:39] [ - ]
  940. |_[ + ] Target:: [ https://www.npiamerica.org/the-national-policy-institute/blog/the-martin-zimmerman-case-the-facts ]
  941. |_[ + ] Exploit::
  942. |_[ + ] Information Server:: , , IP::0
  943. |_[ + ] More details::
  944. |_[ + ] Found:: UNIDENTIFIED
  945. |_[ + ] ERROR CONECTION:: Could not resolve host: www.npiamerica.org
  946.  
  947. _[ - ]::--------------------------------------------------------------------------------------------------------------
  948. |_[ + ] [ 4 / 6 ]-[03:41:39] [ - ]
  949. |_[ + ] Target:: [ http://www.npiamerica.org/the-national-policy-institute/blog/apocalypse-now ]
  950. |_[ + ] Exploit::
  951. |_[ + ] Information Server:: , , IP::0
  952. |_[ + ] More details::
  953. |_[ + ] Found:: UNIDENTIFIED
  954. |_[ + ] ERROR CONECTION:: Could not resolve host: www.npiamerica.org
  955.  
  956. _[ - ]::--------------------------------------------------------------------------------------------------------------
  957. |_[ + ] [ 5 / 6 ]-[03:41:39] [ - ]
  958. |_[ + ] Target:: [ http://www.npiamerica.org/the-national-policy-institute/blog/the-civil-rights-myth ]
  959. |_[ + ] Exploit::
  960. |_[ + ] Information Server:: , , IP::0
  961. |_[ + ] More details::
  962. |_[ + ] Found:: UNIDENTIFIED
  963. |_[ + ] ERROR CONECTION:: Could not resolve host: www.npiamerica.org
  964.  
  965. [ INFO ] [ Shutting down ]
  966. [ INFO ] [ End of process INURLBR at [28-09-2017 03:41:39]
  967. [ INFO ] [ TOTAL FILTERED VALUES ]:: [ 0 ]
  968. [ INFO ] [ OUTPUT FILE ]:: [ /usr/share/sniper/output/inurlbr-npiamerica.org.txt ]
  969. |_________________________________________________________________________________________
  970.  
  971. \_________________________________________________________________________________________/
  972.  
  973. + -- --=[Port 110 closed... skipping.
  974. + -- --=[Port 111 closed... skipping.
  975. + -- --=[Port 135 closed... skipping.
  976. + -- --=[Port 139 closed... skipping.
  977. + -- --=[Port 161 closed... skipping.
  978. + -- --=[Port 162 closed... skipping.
  979. + -- --=[Port 389 closed... skipping.
  980. + -- --=[Port 443 opened... running tests...
  981. + -- ----------------------------=[Checking for WAF]=------------------------ -- +
  982. Traceback (most recent call last):
  983. File "/usr/bin/wafw00f", line 8, in <module>
  984.  
  985. ^ ^
  986. _ __ _ ____ _ __ _ _ ____
  987. ///7/ /.' \ / __////7/ /,' \ ,' \ / __/
  988. | V V // o // _/ | V V // 0 // 0 // _/
  989. |_n_,'/_n_//_/ |_n_,' \_,' \_,'/_/
  990. <
  991. ...'
  992.  
  993. WAFW00F - Web Application Firewall Detection Tool
  994.  
  995. By Sandro Gauci && Wendel G. Henrique
  996.  
  997. Checking https://npiamerica.org
  998. main()
  999. File "/usr/lib/python2.7/dist-packages/wafw00f/__init__.py", line 808, in main
  1000. if attacker.normalrequest() is None:
  1001. File "/usr/lib/python2.7/dist-packages/wafw00f/__init__.py", line 96, in normalrequest
  1002. return self.request(usecache=usecache, cacheresponse=cacheresponse, headers=headers)
  1003. File "/usr/lib/python2.7/dist-packages/wafw00f/lib/evillib.py", line 323, in request
  1004. h.request(method, path, headers=headers)
  1005. File "/usr/lib/python2.7/httplib.py", line 1042, in request
  1006. self._send_request(method, url, body, headers)
  1007. File "/usr/lib/python2.7/httplib.py", line 1082, in _send_request
  1008. self.endheaders(body)
  1009. File "/usr/lib/python2.7/httplib.py", line 1038, in endheaders
  1010. self._send_output(message_body)
  1011. File "/usr/lib/python2.7/httplib.py", line 882, in _send_output
  1012. self.send(msg)
  1013. File "/usr/lib/python2.7/httplib.py", line 844, in send
  1014. self.connect()
  1015. File "/usr/lib/python2.7/httplib.py", line 1263, in connect
  1016. server_hostname=server_hostname)
  1017. File "/usr/lib/python2.7/ssl.py", line 363, in wrap_socket
  1018. _context=self)
  1019. File "/usr/lib/python2.7/ssl.py", line 611, in __init__
  1020. self.do_handshake()
  1021. File "/usr/lib/python2.7/ssl.py", line 848, in do_handshake
  1022. match_hostname(self.getpeercert(), self.server_hostname)
  1023. File "/usr/lib/python2.7/ssl.py", line 282, in match_hostname
  1024. % (hostname, ', '.join(map(repr, dnsnames))))
  1025. ssl.CertificateError: hostname 'npiamerica.org' doesn't match either of '*.squarespace.com', 'squarespace.com'
  1026.  
  1027. + -- ----------------------------=[Checking Cloudflare]=--------------------- -- +
  1028. ____ _ _ _____ _ _
  1029. / ___| | ___ _ _ __| | ___|_ _(_) |
  1030. | | | |/ _ \| | | |/ _` | |_ / _` | | |
  1031. | |___| | (_) | |_| | (_| | _| (_| | | |
  1032. \____|_|\___/ \__,_|\__,_|_| \__,_|_|_|
  1033. v1.0.1 by m0rtem
  1034.  
  1035.  
  1036. [03:41:50] Initializing CloudFail - the date is: 28/09/2017
  1037. [03:41:50] Fetching initial information from: npiamerica.org...
  1038. [03:41:50] Server IP: 65.39.205.61
  1039. [03:41:50] Testing if npiamerica.org is on the Cloudflare network...
  1040. [03:41:50] npiamerica.org is not part of the Cloudflare network, quitting...
  1041. + -- ----------------------------=[Gathering HTTP Info]=--------------------- -- +
  1042. https://npiamerica.org [200 OK] Cookies[JSESSIONID,ss_sd], Country[UNITED STATES][US], Frame, HTTPServer[SSWS], HttpOnly[JSESSIONID], IP[65.39.205.61], Script[text/javascript], Title[Squarespace - Claim This Domain][Title element contains newline(s)!], UncommonHeaders[x-contextid,x-servedby,x-via]
  1043.  
  1044. + -- ----------------------------=[Gathering SSL/TLS Info]=------------------ -- +
  1045.  
  1046.  
  1047.  
  1048. AVAILABLE PLUGINS
  1049. -----------------
  1050.  
  1051. PluginSessionResumption
  1052. PluginOpenSSLCipherSuites
  1053. PluginCertInfo
  1054. PluginHSTS
  1055. PluginHeartbleed
  1056. PluginCompression
  1057. PluginChromeSha1Deprecation
  1058. PluginSessionRenegotiation
  1059.  
  1060.  
  1061.  
  1062. CHECKING HOST(S) AVAILABILITY
  1063. -----------------------------
  1064.  
  1065. npiamerica.org:443 => 65.39.205.61:443
  1066.  
  1067.  
  1068.  
  1069. SCAN RESULTS FOR NPIAMERICA.ORG:443 - 65.39.205.61:443
  1070. ------------------------------------------------------
  1071.  
  1072. * Deflate Compression:
  1073. OK - Compression disabled
  1074.  
  1075. * Session Renegotiation:
  1076. Client-initiated Renegotiations: OK - Rejected
  1077. Secure Renegotiation: OK - Supported
  1078.  
  1079. * Certificate - Content:
  1080. SHA1 Fingerprint: c430dffb8ef5eef744fe69ca01870a3b2bfed83f
  1081. Common Name: *.squarespace.com
  1082. Issuer: DigiCert SHA2 High Assurance Server CA
  1083. Serial Number: 054A4A7D8CECA20E03B849428D213BB5
  1084. Not Before: May 31 00:00:00 2017 GMT
  1085. Not After: Jul 3 12:00:00 2019 GMT
  1086. Signature Algorithm: sha256WithRSAEncryption
  1087. Public Key Algorithm: rsaEncryption
  1088. Key Size: 2048 bit
  1089. Exponent: 65537 (0x10001)
  1090. X509v3 Subject Alternative Name: {'DNS': ['*.squarespace.com', 'squarespace.com']}
  1091.  
  1092. * Certificate - Trust:
  1093. Hostname Validation: FAILED - Certificate does NOT match npiamerica.org
  1094. Google CA Store (09/2015): OK - Certificate is trusted
  1095. Java 6 CA Store (Update 65): OK - Certificate is trusted
  1096. Microsoft CA Store (09/2015): OK - Certificate is trusted
  1097. Mozilla NSS CA Store (09/2015): OK - Certificate is trusted
  1098. Apple CA Store (OS X 10.10.5): OK - Certificate is trusted
  1099. Certificate Chain Received: ['*.squarespace.com', 'DigiCert SHA2 High Assurance Server CA']
  1100.  
  1101. * Certificate - OCSP Stapling:
  1102. OCSP Response Status: successful
  1103. Validation w/ Mozilla's CA Store: OK - Response is trusted
  1104. Responder Id: 5168FF90AF0207753CCCD9656462A212B859723B
  1105. Cert Status: good
  1106. Cert Serial Number: 054A4A7D8CECA20E03B849428D213BB5
  1107. This Update: Sep 28 02:02:34 2017 GMT
  1108. Next Update: Oct 5 01:17:34 2017 GMT
  1109.  
  1110. * SSLV2 Cipher Suites:
  1111. Server rejected all cipher suites.
  1112.  
  1113. * SSLV3 Cipher Suites:
  1114. Server rejected all cipher suites.
  1115.  
  1116. * Session Resumption:
  1117. With Session IDs: NOT SUPPORTED (0 successful, 5 failed, 0 errors, 5 total attempts).
  1118. With TLS Session Tickets: NOT SUPPORTED - TLS ticket not assigned.
  1119.  
  1120.  
  1121.  
  1122. SCAN COMPLETED IN 9.77 S
  1123. ------------------------
  1124. Version: 1.11.10-static
  1125. OpenSSL 1.0.2-chacha (1.0.2g-dev)
  1126.  
  1127. Testing SSL server npiamerica.org on port 443 using SNI name npiamerica.org
  1128.  
  1129. TLS Fallback SCSV:
  1130. Server supports TLS Fallback SCSV
  1131.  
  1132. TLS renegotiation:
  1133. Secure session renegotiation supported
  1134.  
  1135. TLS Compression:
  1136. Compression disabled
  1137.  
  1138. Heartbleed:
  1139. TLS 1.2 not vulnerable to heartbleed
  1140. TLS 1.1 not vulnerable to heartbleed
  1141. TLS 1.0 not vulnerable to heartbleed
  1142.  
  1143. Supported Server Cipher(s):
  1144. Preferred TLSv1.2 128 bits ECDHE-RSA-AES128-GCM-SHA256 Curve P-256 DHE 256
  1145. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-GCM-SHA384 Curve P-256 DHE 256
  1146. Accepted TLSv1.2 128 bits DHE-RSA-AES128-GCM-SHA256 DHE 2048 bits
  1147. Accepted TLSv1.2 256 bits DHE-RSA-AES256-GCM-SHA384 DHE 2048 bits
  1148. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-SHA256 Curve P-256 DHE 256
  1149. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-SHA384 Curve P-256 DHE 256
  1150. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  1151. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  1152. Accepted TLSv1.2 128 bits DHE-RSA-AES128-SHA256 DHE 2048 bits
  1153. Accepted TLSv1.2 128 bits DHE-RSA-AES128-SHA DHE 2048 bits
  1154. Accepted TLSv1.2 256 bits DHE-RSA-AES256-SHA256 DHE 2048 bits
  1155. Accepted TLSv1.2 256 bits DHE-RSA-AES256-SHA DHE 2048 bits
  1156. Accepted TLSv1.2 128 bits AES128-GCM-SHA256
  1157. Accepted TLSv1.2 256 bits AES256-GCM-SHA384
  1158. Accepted TLSv1.2 128 bits AES128-SHA256
  1159. Accepted TLSv1.2 256 bits AES256-SHA256
  1160. Accepted TLSv1.2 128 bits AES128-SHA
  1161. Accepted TLSv1.2 256 bits AES256-SHA
  1162. Preferred TLSv1.1 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  1163. Accepted TLSv1.1 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  1164. Accepted TLSv1.1 128 bits DHE-RSA-AES128-SHA DHE 2048 bits
  1165. Accepted TLSv1.1 256 bits DHE-RSA-AES256-SHA DHE 2048 bits
  1166. Accepted TLSv1.1 128 bits AES128-SHA
  1167. Accepted TLSv1.1 256 bits AES256-SHA
  1168. Preferred TLSv1.0 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  1169. Accepted TLSv1.0 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  1170. Accepted TLSv1.0 128 bits DHE-RSA-AES128-SHA DHE 2048 bits
  1171. Accepted TLSv1.0 256 bits DHE-RSA-AES256-SHA DHE 2048 bits
  1172. Accepted TLSv1.0 128 bits AES128-SHA
  1173. Accepted TLSv1.0 256 bits AES256-SHA
  1174.  
  1175. SSL Certificate:
  1176. Signature Algorithm: sha256WithRSAEncryption
  1177. RSA Key Strength: 2048
  1178.  
  1179. Subject: *.squarespace.com
  1180. Altnames: DNS:*.squarespace.com, DNS:squarespace.com
  1181. Issuer: DigiCert SHA2 High Assurance Server CA
  1182.  
  1183. Not valid before: May 31 00:00:00 2017 GMT
  1184. Not valid after: Jul 3 12:00:00 2019 GMT
  1185.  
  1186. ######################################################################################################################################
  1187. testssl 2.9dev from https://testssl.sh/dev/
  1188.  
  1189. This program is free software. Distribution and
  1190. modification under GPLv2 permitted.
  1191. USAGE w/o ANY WARRANTY. USE IT AT YOUR OWN RISK!
  1192.  
  1193. Please file bugs @ https://testssl.sh/bugs/
  1194.  
  1195. ######################################################################################################################################
  1196.  
  1197. Using "OpenSSL 1.0.2-chacha (1.0.2i-dev)" [~183 ciphers]
  1198. on Kali:/usr/share/sniper/plugins/testssl.sh/bin/openssl.Linux.x86_64
  1199. (built: "Jun 22 19:32:29 2016", platform: "linux-x86_64")
  1200.  
  1201.  
  1202. Start 2017-09-28 03:42:52 -->> 65.39.205.61:443 (npiamerica.org) <<--
  1203.  
  1204. rDNS (65.39.205.61): --
  1205. Service detected: HTTP
  1206.  
  1207.  
  1208. Testing protocols via sockets except SPDY+HTTP2
  1209.  
  1210. SSLv2 not offered (OK)
  1211. SSLv3 not offered (OK)
  1212. TLS 1 offered
  1213. TLS 1.1 offered
  1214. TLS 1.2 offered (OK)
  1215. SPDY/NPN not offered
  1216. HTTP2/ALPN h2, http/1.1 (offered)
  1217.  
  1218. Testing ~standard cipher categories
  1219.  
  1220. NULL ciphers (no encryption) not offered (OK)
  1221. Anonymous NULL Ciphers (no authentication) not offered (OK)
  1222. Export ciphers (w/o ADH+NULL) not offered (OK)
  1223. LOW: 64 Bit + DES encryption (w/o export) not offered (OK)
  1224. Weak 128 Bit ciphers (SEED, IDEA, RC[2,4]) not offered (OK)
  1225. Triple DES Ciphers (Medium) not offered (OK)
  1226. High encryption (AES+Camellia, no AEAD) offered (OK)
  1227. Strong encryption (AEAD ciphers) offered (OK)
  1228.  
  1229.  
  1230. Testing robust (perfect) forward secrecy, (P)FS -- omitting Null Authentication/Encryption, 3DES, RC4
  1231.  
  1232. PFS is offered (OK) ECDHE-RSA-AES256-GCM-SHA384
  1233. ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA
  1234. DHE-RSA-AES256-GCM-SHA384 DHE-RSA-AES256-SHA256
  1235. DHE-RSA-AES256-SHA ECDHE-RSA-AES128-GCM-SHA256
  1236. ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA
  1237. DHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES128-SHA256
  1238. DHE-RSA-AES128-SHA
  1239. Elliptic curves offered: prime256v1
  1240.  
  1241.  
  1242. Testing server preferences
  1243.  
  1244. Has server cipher order? yes (OK)
  1245. Negotiated protocol TLSv1.2
  1246. Negotiated cipher ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1247. Cipher order
  1248. TLSv1: ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA
  1249. DHE-RSA-AES256-SHA AES128-SHA AES256-SHA
  1250. TLSv1.1: ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA
  1251. DHE-RSA-AES256-SHA AES128-SHA AES256-SHA
  1252. TLSv1.2: ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384
  1253. DHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES256-GCM-SHA384
  1254. ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES256-SHA384
  1255. ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA256
  1256. DHE-RSA-AES128-SHA DHE-RSA-AES256-SHA256 DHE-RSA-AES256-SHA
  1257. AES128-GCM-SHA256 AES256-GCM-SHA384 AES128-SHA256 AES256-SHA256
  1258. AES128-SHA AES256-SHA
  1259.  
  1260.  
  1261. Testing server defaults (Server Hello)
  1262.  
  1263. TLS extensions (standard) "server name/#0" "renegotiation info/#65281"
  1264. "EC point formats/#11" "status request/#5"
  1265. "application layer protocol negotiation/#16"
  1266. Session Ticket RFC 5077 hint (no lifetime advertised)
  1267. SSL Session ID support yes
  1268. Session Resumption Tickets no, ID: no
  1269. TLS clock skew Random values, no fingerprinting possible
  1270. Signature Algorithm SHA256 with RSA
  1271. Server key size RSA 2048 bits
  1272. Fingerprint / Serial SHA1 C430DFFB8EF5EEF744FE69CA01870A3B2BFED83F / 054A4A7D8CECA20E03B849428D213BB5
  1273. SHA256 5C6BA46ACEC6D420F7F79E379BDCDCF811A8D26535167B83DA4C8F20B9FC6C51
  1274. Common Name (CN) *.squarespace.com
  1275. subjectAltName (SAN) *.squarespace.com squarespace.com
  1276. Issuer DigiCert SHA2 High Assurance Server CA (DigiCert Inc from US)
  1277. Trust (hostname) certificate does not match supplied URI (same w/o SNI)
  1278. Chain of trust Ok
  1279. EV cert (experimental) no
  1280. Certificate Expiration 643 >= 60 days (2017-05-30 20:00 --> 2019-07-03 08:00 -0400)
  1281. # of certificates provided 2
  1282. Certificate Revocation List http://crl3.digicert.com/sha2-ha-server-g5.crl
  1283. http://crl4.digicert.com/sha2-ha-server-g5.crl
  1284. OCSP URI http://ocsp.digicert.com
  1285. OCSP stapling offered
  1286. OCSP must staple no
  1287. DNS CAA RR (experimental) --
  1288. Certificate Transparency no
  1289.  
  1290.  
  1291. Testing HTTP header response @ "/"
  1292.  
  1293. HTTP Status Code 200 OK
  1294. HTTP clock skew -1 sec from localtime
  1295. Strict Transport Security --
  1296. Public Key Pinning --
  1297. Server banner SSWS
  1298. Application banner --
  1299. Cookie(s) 2 issued: NONE secure, 1/2 HttpOnly
  1300. Security headers --
  1301. Reverse Proxy banner --
  1302.  
  1303.  
  1304. Testing vulnerabilities
  1305.  
  1306. Heartbleed (CVE-2014-0160) not vulnerable (OK), no heartbeat extension
  1307. CCS (CVE-2014-0224) not vulnerable (OK)
  1308. Ticketbleed (CVE-2016-9244), experiment. not vulnerable (OK), no session ticket extension
  1309. Secure Renegotiation (CVE-2009-3555) not vulnerable (OK)
  1310. Secure Client-Initiated Renegotiation not vulnerable (OK)
  1311. CRIME, TLS (CVE-2012-4929) not vulnerable (OK)
  1312. BREACH (CVE-2013-3587) no HTTP compression (OK) - only supplied "/" tested
  1313. POODLE, SSL (CVE-2014-3566) not vulnerable (OK)
  1314. TLS_FALLBACK_SCSV (RFC 7507) Downgrade attack prevention supported (OK)
  1315. SWEET32 (CVE-2016-2183, CVE-2016-6329) not vulnerable (OK)
  1316. FREAK (CVE-2015-0204) not vulnerable (OK)
  1317. DROWN (CVE-2016-0800, CVE-2016-0703) not vulnerable on this host and port (OK)
  1318. make sure you don't use this certificate elsewhere with SSLv2 enabled services
  1319. https://censys.io/ipv4?q=5C6BA46ACEC6D420F7F79E379BDCDCF811A8D26535167B83DA4C8F20B9FC6C51 could help you to find out
  1320. LOGJAM (CVE-2015-4000), experimental not vulnerable (OK): no DH EXPORT ciphers, no common primes detected
  1321. BEAST (CVE-2011-3389) TLS1: ECDHE-RSA-AES128-SHA
  1322. ECDHE-RSA-AES256-SHA
  1323. DHE-RSA-AES128-SHA
  1324. DHE-RSA-AES256-SHA AES128-SHA
  1325. AES256-SHA
  1326. VULNERABLE -- but also supports higher protocols (possible mitigation): TLSv1.1 TLSv1.2
  1327. LUCKY13 (CVE-2013-0169), experimental potentially VULNERABLE, uses cipher block chaining (CBC) ciphers with TLS
  1328. RC4 (CVE-2013-2566, CVE-2015-2808) no RC4 ciphers detected (OK)
  1329.  
  1330.  
  1331. Testing 359 ciphers via OpenSSL plus sockets against the server, ordered by encryption strength
  1332.  
  1333. Hexcode Cipher Suite Name (OpenSSL) KeyExch. Encryption Bits Cipher Suite Name (RFC)
  1334. -----------------------------------------------------------------------------------------------------------------------------
  1335. xc030 ECDHE-RSA-AES256-GCM-SHA384 ECDH 256 AESGCM 256 TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
  1336. xc028 ECDHE-RSA-AES256-SHA384 ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
  1337. xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
  1338. x9f DHE-RSA-AES256-GCM-SHA384 DH 2048 AESGCM 256 TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
  1339. x6b DHE-RSA-AES256-SHA256 DH 2048 AES 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
  1340. x39 DHE-RSA-AES256-SHA DH 2048 AES 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA
  1341. x9d AES256-GCM-SHA384 RSA AESGCM 256 TLS_RSA_WITH_AES_256_GCM_SHA384
  1342. x3d AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
  1343. x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
  1344. xc02f ECDHE-RSA-AES128-GCM-SHA256 ECDH 256 AESGCM 128 TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
  1345. xc027 ECDHE-RSA-AES128-SHA256 ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
  1346. xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
  1347. x9e DHE-RSA-AES128-GCM-SHA256 DH 2048 AESGCM 128 TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
  1348. x67 DHE-RSA-AES128-SHA256 DH 2048 AES 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
  1349. x33 DHE-RSA-AES128-SHA DH 2048 AES 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA
  1350. x9c AES128-GCM-SHA256 RSA AESGCM 128 TLS_RSA_WITH_AES_128_GCM_SHA256
  1351. x3c AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
  1352. x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
  1353.  
  1354.  
  1355. Running client simulations via sockets
  1356.  
  1357. Android 2.3.7 TLSv1.0 DHE-RSA-AES128-SHA, 2048 bit DH
  1358. Android 4.1.1 TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1359. Android 4.3 TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1360. Android 4.4.2 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1361. Android 5.0.0 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1362. Android 6.0 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1363. Android 7.0 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1364. Chrome 51 Win 7 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1365. Chrome 57 Win 7 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1366. Firefox 49 Win 7 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1367. Firefox 53 Win 7 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1368. IE 6 XP No connection
  1369. IE 7 Vista TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1370. IE 8 XP No connection
  1371. IE 8 Win 7 TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1372. IE 11 Win 7 TLSv1.2 DHE-RSA-AES128-GCM-SHA256, 2048 bit DH
  1373. IE 11 Win 8.1 TLSv1.2 DHE-RSA-AES128-GCM-SHA256, 2048 bit DH
  1374. IE 11 Win Phone 8.1 Update TLSv1.2 DHE-RSA-AES128-GCM-SHA256, 2048 bit DH
  1375. IE 11 Win 10 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1376. Edge 13 Win 10 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1377. Edge 13 Win Phone 10 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1378. Opera 17 Win 7 TLSv1.2 ECDHE-RSA-AES128-SHA256, 256 bit ECDH (P-256)
  1379. Safari 5.1.9 OS X 10.6.8 TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1380. Safari 7 iOS 7.1 TLSv1.2 ECDHE-RSA-AES128-SHA256, 256 bit ECDH (P-256)
  1381. Safari 9 OS X 10.11 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1382. Safari 10 OS X 10.12 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1383. Apple ATS 9 iOS 9 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1384. Tor 17.0.9 Win 7 TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1385. Java 6u45 No connection
  1386. Java 7u25 TLSv1.0 ECDHE-RSA-AES128-SHA, 256 bit ECDH (P-256)
  1387. Java 8u31 TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1388. OpenSSL 1.0.1l TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1389. OpenSSL 1.0.2e TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)
  1390.  
  1391. Done 2017-09-28 03:47:06 [ 256s] -->> 65.39.205.61:443 (npiamerica.org) <<--
  1392. ##############################################################################################################################################################################################################################################################################
  1393. JTSEC full recon Anonymous #opnazi #2
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement