Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ================================================================================
- [+] javanese uptime is [+]
- Linux
- [+] Today :[+]
- Sab Sep 13 00:40:03 WIB 2014
- ================================================================================
- _
- | | _
- | |_ ___ __ ___ ______ _| |_
- _ | \ \ / / '_ \/ __| |______|_ _|
- _ _ _ | |__| |\ V /| | | \__ \ |_|
- (_|_|_) \____/ \_/ |_| |_|___/
- _________________<☠ ܓܛܟܓܛܟܓܛܟܓܛܟܓܛܟܓܛܟ ܓܛܟܓ ☠>_________________
- root@javanese:~# uniscan -u http://pim.sch.id/ --qweds
- Unknown option: -
- ####################################
- # Uniscan project #
- # http://uniscan.sourceforge.net/ #
- ####################################
- V. 6.2
- Scan date: 13-9-2014 0:40:24
- ===================================================================================================
- | Domain: http://pim.sch.id/
- | Server: Apache
- | IP: 49.50.8.193
- ===================================================================================================
- |
- | Directory check:
- | [+] CODE: 200 URL: http://pim.sch.id/admin/
- | [+] CODE: 200 URL: http://pim.sch.id/br/
- | [+] CODE: 200 URL: http://pim.sch.id/feed/
- | [+] CODE: 200 URL: http://pim.sch.id/galeri/
- | [+] CODE: 200 URL: http://pim.sch.id/ko/
- | [+] CODE: 200 URL: http://pim.sch.id/kurikulum/
- | [+] CODE: 200 URL: http://pim.sch.id/lem/
- | [+] CODE: 200 URL: http://pim.sch.id/login/
- | [+] CODE: 200 URL: http://pim.sch.id/lpba/
- | [+] CODE: 200 URL: http://pim.sch.id/org/
- | [+] CODE: 200 URL: http://pim.sch.id/page/
- | [+] CODE: 200 URL: http://pim.sch.id/pe/
- | [+] CODE: 200 URL: http://pim.sch.id/pele/
- | [+] CODE: 200 URL: http://pim.sch.id/profil/
- | [+] CODE: 200 URL: http://pim.sch.id/pro/
- | [+] CODE: 200 URL: http://pim.sch.id/rss/
- | [+] CODE: 200 URL: http://pim.sch.id/sarana/
- | [+] CODE: 200 URL: http://pim.sch.id/sejarah/
- | [+] CODE: 200 URL: http://pim.sch.id/webapps/
- | [+] CODE: 200 URL: http://pim.sch.id/wp-admin/
- ===================================================================================================
- |
- | File check:
- | [+] CODE: 200 URL: http://pim.sch.id/admin/index.php
- | [+] CODE: 200 URL: http://pim.sch.id/favicon.ico
- | [+] CODE: 200 URL: http://pim.sch.id/index.php
- | [+] CODE: 200 URL: http://pim.sch.id/license.txt
- | [+] CODE: 200 URL: http://pim.sch.id/readme.html
- | [+] CODE: 200 URL: http://pim.sch.id/robots.txt
- | [+] CODE: 200 URL: http://pim.sch.id/search/sqlqhit.asp
- | [+] CODE: 200 URL: http://pim.sch.id/search/SQLQHit.asp
- | [+] CODE: 200 URL: http://pim.sch.id/search/htx/sqlqhit.asp
- | [+] CODE: 200 URL: http://pim.sch.id/search/htx/SQLQHit.asp
- | [+] CODE: 200 URL: http://pim.sch.id/wp-content/plugins/akismet/readme.txt
- | [+] CODE: 200 URL: http://pim.sch.id/wp-content/plugins/hello.php
- | [+] CODE: 200 URL: http://pim.sch.id/xmlrpc.php
- ===================================================================================================
- |
- | Check robots.txt:
- |
- | Check sitemap.xml:
- ===================================================================================================
- |
- | Crawler Started:
- | Plugin name: E-mail Detection v.1.1 Loaded.
- | Plugin name: Code Disclosure v.1.1 Loaded.
- | Plugin name: Web Backdoor Disclosure v.1.1 Loaded.
- | Plugin name: Upload Form Detect v.1.1 Loaded.
- | Plugin name: FCKeditor upload test v.1 Loaded.
- | Plugin name: Timthumb <= 1.32 vulnerability v.1 Loaded.
- | Plugin name: phpinfo() Disclosure v.1 Loaded.
- | Plugin name: External Host Detect v.1.2 Loaded.
- | [+] Crawling finished, 211 URL's found!
- |
- | E-mails:
- | [+] E-mail Found: m@tidakada.com
- | [+] E-mail Found: mathaliulfalah@yahoo.com
- | [+] E-mail Found: redaksiwebpim@gmail.com
- |
- | Source Code Disclosure:
- |
- | Web Backdoors:
- |
- | File Upload Forms:
- |
- | FCKeditor File Upload:
- |
- | Timthumb:
- |
- | PHPinfo() Disclosure:
- |
- | External hosts:
- | [+] External Host Found: http://spanel-42423-ssl.masterweb.com
- | [+] External Host Found: http://www.kmf.or.id
- | [+] External Host Found: http://codex.wordpress.org
- | [+] External Host Found: http://www.mysql.com
- | [+] External Host Found: https://maps.google.com
- | [+] External Host Found: http://html5shiv.googlecode.com
- | [+] External Host Found: https://wordpress.org
- | [+] External Host Found: http://php.net
- | [+] External Host Found: http://www.staimafa.ac.id
- | [+] External Host Found: http://planet.wordpress.org
- | [+] External Host Found: http://httpd.apache.org
- |
- | Ignored Files:
- | http://pim.sch.id/wp-admin/css/install.min.css?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/ml-slider/assets/sliders/nivoslider/nivo-slider.css?ver=2.8.1
- | http://pim.sch.id/wp-includes/css/buttons.min.css?ver=3.9.2
- | http://pim.sch.id/wp-content/themes/PIM/script.responsive.js?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/photo-gallery/js/bwg_frontend.js?ver=1.1.15
- | http://pim.sch.id/wp-content/plugins/ml-slider/assets/sliders/nivoslider/jquery.nivo.slider.pack.js?ver=2.8.1
- | http://pim.sch.id/wp-content/plugins/really-simple-facebook-twitter-share-buttons/style.css?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/photo-gallery/js/jquery.fullscreen-0.4.1.js?ver=0.4.1
- | http://pim.sch.id/wp-content/plugins/ml-slider/assets/metaslider/public.css?ver=2.8.1
- | http://pim.sch.id/wp-admin/css/login.min.css?ver=3.9.2
- | http://pim.sch.id/wp-admin/css/ie.min.css?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/photo-gallery/js/jquery.mCustomScrollbar.concat.min.js?ver=1.1.15
- | http://pim.sch.id/wp-content/plugins/contact-form-plugin/css/style.css?ver=3.9.2
- | http://pim.sch.id/wp-includes/wlwmanifest.xml
- | http://pim.sch.id/wp-admin/css/install.css?ver=20100228
- | http://pim.sch.id/wp-includes/css/dashicons.min.css?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/photo-gallery/js/bwg_gallery_box.js?ver=1.1.15
- | http://pim.sch.id/wp-content/plugins/photo-gallery/css/jquery-ui-1.10.3.custom.css?ver=1.1.15
- | http://pim.sch.id/wp-content/plugins/photo-gallery/css/jquery.mCustomScrollbar.css?ver=1.1.15
- | http://pim.sch.id/wp-content/plugins/ml-slider/assets/sliders/nivoslider/themes/default/default.css?ver=2.8.1
- | http://pim.sch.id/wp-content/themes/PIM/jquery.js?ver=3.9.2
- | http://pim.sch.id/wp-content/themes/PIM/style.responsive.css?ver=3.9.2
- | http://pim.sch.id/wp-content/themes/PIM/script.js?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/photo-gallery/css/font-awesome-4.0.1/font-awesome.css?ver=4.0.1
- | http://pim.sch.id/wp-content/plugins/google-calendar-events/css/gce-style.css?ver=3.9.2
- | http://pim.sch.id/wp-content/plugins/photo-gallery/css/bwg_frontend.css?ver=1.1.15
- | http://pim.sch.id/wp-content/plugins/photo-gallery/js/jquery.mobile.js?ver=1.1.15
- | http://pim.sch.id/wp-content/themes/PIM/style.ie7.css?ver=3.9.2
- ===================================================================================================
- | Dynamic tests:
- | Plugin name: Learning New Directories v.1.2 Loaded.
- | Plugin name: FCKedior tests v.1.1 Loaded.
- | Plugin name: Timthumb <= 1.32 vulnerability v.1 Loaded.
- | Plugin name: Find Backup Files v.1.2 Loaded.
- | Plugin name: Blind SQL-injection tests v.1.3 Loaded.
- | Plugin name: Local File Include tests v.1.1 Loaded.
- | Plugin name: PHP CGI Argument Injection v.1.1 Loaded.
- | Plugin name: Remote Command Execution tests v.1.1 Loaded.
- | Plugin name: Remote File Include tests v.1.2 Loaded.
- | Plugin name: SQL-injection tests v.1.2 Loaded.
- | Plugin name: Cross-Site Scripting tests v.1.2 Loaded.
- | Plugin name: Web Shell Finder v.1.3 Loaded.
- | [+] 3 New directories added
- |
- |
- | FCKeditor tests:
- |
- |
- | Timthumb < 1.33 vulnerability:
- |
- |
- | Backup Files:
- | [+] CODE: 302 URL: http://pim.sch.id/kurikulum~
- | [+] CODE: 302 URL: http://pim.sch.id/visi-misi~
- | [+] CODE: 302 URL: http://pim.sch.id/category/kontak-kami~
- | [+] CODE: 302 URL: http://pim.sch.id/category/visi-misi~
- | [+] CODE: 302 URL: http://pim.sch.id/category/berita~
- | [+] CODE: 302 URL: http://pim.sch.id/category/pengumuman~
- | [+] CODE: 302 URL: http://pim.sch.id/category/galeri~
- | [+] CODE: 302 URL: http://pim.sch.id/sumber-daya-manusia-unggul~
- | [+] CODE: 302 URL: http://pim.sch.id/category/kurikulum~
- | [+] CODE: 302 URL: http://pim.sch.id/category/profil~
- | [+] CODE: 302 URL: http://pim.sch.id//www.facebook.com.bkp
- | [+] CODE: 302 URL: http://pim.sch.id/category/sarana~
- | [+] CODE: 302 URL: http://pim.sch.id//www.facebook.com~
- | [+] CODE: 302 URL: http://pim.sch.id/category/artikel~
- | [+] CODE: 302 URL: http://pim.sch.id/category/kalender-pendidikan~
- | [+] CODE: 302 URL: http://pim.sch.id/category/hsm~
- | [+] CODE: 302 URL: http://pim.sch.id//www.facebook.com/plugins.bkp
- | [+] CODE: 302 URL: http://pim.sch.id/tafawut-wib-dan-istiwa~
- | [+] CODE: 302 URL: http://pim.sch.id/category/hismawati~
- | [+] CODE: 302 URL: http://pim.sch.id//www.facebook.com/plugins~
- | [+] CODE: 302 URL: http://pim.sch.id/taaruf-siswa-baru-perguruan-islam-mathaliul-falah~
- | [+] CODE: 302 URL: http://pim.sch.id/category/lpba~
- | [+] CODE: 302 URL: http://pim.sch.id/pembukaan-kegiatan-extra-kurikuler-2014-2015~
- | [+] CODE: 302 URL: http://pim.sch.id/page-baru~
- | [+] CODE: 302 URL: http://pim.sch.id/kalender-akademik-2014~
- | [+] CODE: 302 URL: http://pim.sch.id/lpba~
- | [+] CODE: 302 URL: http://pim.sch.id/brosur-penerimaan-murid-baru-2014-2015~
- | [+] CODE: 302 URL: http://pim.sch.id//docs.google.com.bkp
- | [+] CODE: 302 URL: http://pim.sch.id/kontak-kami~
- | [+] CODE: 302 URL: http://pim.sch.id/organisasi-siswa-intra-sekolah~
- | [+] CODE: 302 URL: http://pim.sch.id/mathaliul-falah-terbitkan-buku-belajar-dari-kiai-sahal~
- | [+] CODE: 302 URL: http://pim.sch.id/pembukaan-dauroh-al-arobiyah~
- | [+] CODE: 302 URL: http://pim.sch.id/category/sejarah~
- | [+] CODE: 302 URL: http://pim.sch.id/sarana~
- | [+] CODE: 302 URL: http://pim.sch.id/pelepasan-alumni-pim-ke-timur-tengah~
- | [+] CODE: 302 URL: http://pim.sch.id/maulid-dan-manajemen-bisnis-rasulullah~
- | [+] CODE: 302 URL: http://pim.sch.id/profil~
- | [+] CODE: 302 URL: http://pim.sch.id/galeri-pim~
- | [+] CODE: 302 URL: http://pim.sch.id/kegiatan-ekstrakurikuler~
- | [+] CODE: 302 URL: http://pim.sch.id/lembaga-lembaga-dan-tim-pengembangan~
- | [+] CODE: 302 URL: http://pim.sch.id/kalender-pendidikan-2014-2015~
- | [+] CODE: 302 URL: http://pim.sch.id/sistem-pengajaran~
- | [+] CODE: 302 URL: http://pim.sch.id/keluarga-mathaliul-falah-semarang-adakan-silaturahim~
- | [+] CODE: 302 URL: http://pim.sch.id/sejarah-perguruan-islam-mathaliul-falah~
- | [+] CODE: 302 URL: http://pim.sch.id/kaldik-pim-2013-2014~
- | [+] CODE: 302 URL: http://pim.sch.id/ujian-baca-kitab-tsanawiyah-d-wustho~
- | [+] CODE: 302 URL: http://pim.sch.id/fikih-sosial-kiai-santun~
- | [+] CODE: 302 URL: http://pim.sch.id/pengumuman-hasil-test-masuk-2014-2015~
- | [+] CODE: 302 URL: http://pim.sch.id/kegiatan-ekstra-kurikuler~
- | [+] CODE: 302 URL: http://pim.sch.id/kalender-pendidikan-2014~
- | [+] CODE: 302 URL: http://pim.sch.id/upacara-peringatan-hut-ri-ke-69-di-mathaliul-falah~
- | [+] CODE: 302 URL: http://pim.sch.id/author/abiraad~
- | [+] CODE: 302 URL: http://pim.sch.id/keluarga-mathaliul-falah-kmf~
- | [+] CODE: 302 URL: http://pim.sch.id/author/admin~
- |
- |
- | Blind SQL Injection:
- |
- |
- | Local File Include:
- |
- |
- | PHP CGI Argument Injection:
- |
- |
- | Remote Command Execution:
- |
- |
- | Remote File Include:
- |
- |
- | SQL Injection:
- |
- |
- | Cross-Site Scripting (XSS):
- |
- |
- | Web Shell Finder:
- ===================================================================================================
- | Static tests:
- | Plugin name: Local File Include tests v.1.1 Loaded.
- | Plugin name: Remote Command Execution tests v.1.1 Loaded.
- | Plugin name: Remote File Include tests v.1.1 Loaded.
- |
- |
- | Local File Include:
- |
- |
- | Remote Command Execution:
- |
- |
- | Remote File Include:
- ===================================================================================================
- Scan end date: 13-9-2014 1:9:20
- HTML report saved in: report/pim.sch.id.html
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement