Advertisement
Guest User

5elafabook.com info

a guest
Jul 9th, 2015
361
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.54 KB | None | 0 0
  1. Compiled Info on 5elafabook.com (some info redacted for my privacy)
  2.  
  3. TCP Connect scan (Aggressive)
  4. Starting Nmap 6.47 ( http://nmap.org ) at 2015-07-09 14:37 MST
  5. NSE: Loaded 118 scripts for scanning.
  6. NSE: Script Pre-scanning.
  7. Initiating Parallel DNS resolution of 1 host. at 14:37
  8. Completed Parallel DNS resolution of 1 host. at 14:37, 0.08s elapsed
  9. Initiating Connect Scan at 14:37
  10. Scanning ip-50-63-202-89.ip.secureserver.net (50.63.202.89) [65535 ports]
  11. Discovered open port 42865/tcp on 50.63.202.89
  12. Discovered open port 39141/tcp on 50.63.202.89
  13. Increasing send delay for 50.63.202.89 from 0 to 5 due to 11 out of 11 dropped probes since last
  14.  
  15. increase.
  16. Increasing send delay for 50.63.202.89 from 5 to 10 due to 11 out of 11 dropped probes since last
  17.  
  18. increase.
  19. Discovered open port 23789/tcp on 50.63.202.89
  20. Discovered open port 8126/tcp on 50.63.202.89
  21. Discovered open port 65222/tcp on 50.63.202.89
  22. Discovered open port 4118/tcp on 50.63.202.89
  23. Discovered open port 38692/tcp on 50.63.202.89
  24. Discovered open port 8083/tcp on 50.63.202.89
  25. Discovered open port 1248/tcp on 50.63.202.89
  26. Completed Connect Scan at 15:03, 1528.88s elapsed (65535 total ports)
  27. Initiating Service scan at 15:03
  28. Scanning 9 services on ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  29. Completed Service scan at 15:05, 132.36s elapsed (9 services on 1 host)
  30. Initiating OS detection (try #1) against ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  31. Retrying OS detection (try #2) against ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  32. Initiating Traceroute at 15:05
  33. Completed Traceroute at 15:05, 6.10s elapsed
  34. Initiating Parallel DNS resolution of 9 hosts. at 15:05
  35. Completed Parallel DNS resolution of 9 hosts. at 15:05, 0.04s elapsed
  36. NSE: Script scanning 50.63.202.89.
  37. Initiating NSE at 15:05
  38. Completed NSE at 15:08, 180.12s elapsed
  39. Nmap scan report for ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  40. Host is up (0.035s latency).
  41. Not shown: 64962 closed ports, 564 filtered ports
  42. PORT STATE SERVICE VERSION
  43. 1248/tcp open hermes?
  44. 4118/tcp open ssl/netscript?
  45. 8083/tcp open us-srv?
  46. 8126/tcp open msdtc Microsoft Distributed Transaction Coordinator (error)
  47. 23789/tcp open unknown
  48. 38692/tcp open unknown
  49. 39141/tcp open unknown
  50. 42865/tcp open unknown
  51. 65222/tcp open ssh OpenSSH 5.3 (protocol 2.0)
  52. |_ssh-hostkey:
  53. 1 service unrecognized despite returning data. If you know the service/version, please submit the
  54.  
  55. following fingerprint at http://www.insecure.org/cgi-bin/servicefp-submit.cgi :
  56. SF-Port8083-TCP:V=6.47%I=7%D=7/9%Time=559EEFB5%P=x86_64-unknown-linux-gnu%
  57. SF:r(GetRequest,146,"HTTP/1\.0\x20404\x20Not\x20Found\r\nServer:\x20Traffi
  58. SF:c\x20Manager\x203\.2\.4\r\nDate:\x20Thu,\x2009\x20Jul\x202015\x2022:03:
  59. SF:07\x20GMT\r\nCache-Control:\x20no-store\r\nPragma:\x20no-cache\r\nConte
  60. SF:nt-type:\x20application/x-ns-proxy-autoconfig\r\nContent-length:\x20119
  61. SF:\r\n\r\n<HTML>\n<Head>\n<TITLE>404\x20Not\x20Found\r\n</TITLE>\n</HEAD>
  62. SF:\n<BODY\x20bgcolor=\"#FFFFFF\"><h1>\n404\x20Not\x20Found\r\n</h1>\n</BO
  63. SF:DY>\n</HTML>\n")%r(FourOhFourRequest,12E,"HTTP/1\.0\x20404\x20Not\x20Fo
  64. SF:und\r\nServer:\x20Traffic\x20Manager\x203\.2\.4\r\nDate:\x20Thu,\x2009\
  65. SF:x20Jul\x202015\x2022:03:07\x20GMT\r\nCache-Control:\x20no-store\r\nPrag
  66. SF:ma:\x20no-cache\r\nContent-type:\x20text/html\r\nContent-length:\x20119
  67. SF:\r\n\r\n<HTML>\n<Head>\n<TITLE>404\x20Not\x20Found\r\n</TITLE>\n</HEAD>
  68. SF:\n<BODY\x20bgcolor=\"#FFFFFF\"><h1>\n404\x20Not\x20Found\r\n</h1>\n</BO
  69. SF:DY>\n</HTML>\n")%r(GenericLines,134,"HTTP/1\.0\x20400\x20Bad\x20Request
  70. SF:\r\nServer:\x20Traffic\x20Manager\x203\.2\.4\r\nDate:\x20Thu,\x2009\x20
  71. SF:Jul\x202015\x2022:03:07\x20GMT\r\nCache-Control:\x20no-store\r\nPragma:
  72. SF:\x20no-cache\r\nContent-type:\x20text/html\r\nContent-length:\x20123\r\
  73. SF:n\r\n<HTML>\n<Head>\n<TITLE>400\x20Bad\x20Request\r\n</TITLE>\n</HEAD>\
  74. SF:n<BODY\x20bgcolor=\"#FFFFFF\"><h1>\n400\x20Bad\x20Request\r\n</h1>\n</B
  75. SF:ODY>\n</HTML>\n")%r(HTTPOptions,140,"HTTP/1\.0\x20501\x20Not\x20Impleme
  76. SF:nted\r\nServer:\x20Traffic\x20Manager\x203\.2\.4\r\nDate:\x20Thu,\x2009
  77. SF:\x20Jul\x202015\x2022:03:07\x20GMT\r\nCache-Control:\x20no-store\r\nPra
  78. SF:gma:\x20no-cache\r\nContent-type:\x20text/html\r\nContent-length:\x2013
  79. SF:1\r\n\r\n<HTML>\n<Head>\n<TITLE>501\x20Not\x20Implemented\r\n</TITLE>\n
  80. SF:</HEAD>\n<BODY\x20bgcolor=\"#FFFFFF\"><h1>\n501\x20Not\x20Implemented\r
  81. SF:\n</h1>\n</BODY>\n</HTML>\n")%r(RTSPRequest,140,"HTTP/1\.0\x20501\x20No
  82. SF:t\x20Implemented\r\nServer:\x20Traffic\x20Manager\x203\.2\.4\r\nDate:\x
  83. SF:20Thu,\x2009\x20Jul\x202015\x2022:03:08\x20GMT\r\nCache-Control:\x20no-
  84. SF:store\r\nPragma:\x20no-cache\r\nContent-type:\x20text/html\r\nContent-l
  85. SF:ength:\x20131\r\n\r\n<HTML>\n<Head>\n<TITLE>501\x20Not\x20Implemented\r
  86. SF:\n</TITLE>\n</HEAD>\n<BODY\x20bgcolor=\"#FFFFFF\"><h1>\n501\x20Not\x20I
  87. SF:mplemented\r\n</h1>\n</BODY>\n</HTML>\n");
  88. Device type: WAP
  89. Running (JUST GUESSING): Linux 2.4.X (88%)
  90. OS CPE: cpe:/o:linux:linux_kernel:2.4
  91. Aggressive OS guesses: DD-WRT v24-sp2 (Linux 2.4.36) (88%)
  92. No exact OS matches for host (test conditions non-ideal).
  93. Service Info: OS: Windows; CPE: cpe:/o:microsoft:windows
  94.  
  95. TRACEROUTE (using proto 1/icmp)
  96. HOP RTT ADDRESS
  97. 1 xxxxxxxxxxxxxxxxxxxxxxx
  98. 2 xxxxxxxxxxxxxxxxxxxxxxx
  99. 3 xxxxxxxxxxxxxxxxxxxxxxx
  100. 4 xxxxxxxxxxxxxxxxxxxxxxx
  101. 5 xxxxxxxxxxxxxxxxxxxxxxx
  102. 6 xxxxxxxxxxxxxxxxxxxxxxx
  103. 7 59.28 ms ae-4-90.edge1.LosAngeles6.Level3.net (4.69.144.208)
  104. 8 58.83 ms ae-4-90.edge1.LosAngeles6.Level3.net (4.69.144.208)
  105. 9 25.36 ms be3036.ccr21.lax04.atlas.cogentco.com (154.54.14.129)
  106. 10 27.43 ms be2017.ccr22.lax01.atlas.cogentco.com (154.54.0.238)
  107. 11 25.02 ms be2179.ccr23.lax05.atlas.cogentco.com (154.54.41.82)
  108. 12 25.58 ms 38.104.84.94
  109. 13 ... 30
  110.  
  111. NSE: Script Post-scanning.
  112. Read data files from: /usr/bin/../share/nmap
  113. OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/
  114.  
  115. .
  116. Nmap done: 1 IP address (1 host up) scanned in 1854.28 seconds
  117. Raw packets sent: 202 (12.348KB) | Rcvd: 17 (1.612KB)
  118.  
  119. Aggressive UDP Scan
  120.  
  121. Starting Nmap 6.47 ( http://nmap.org ) at 2015-07-09 13:30 MST
  122. NSE: Loaded 118 scripts for scanning.
  123. NSE: Script Pre-scanning.
  124. Initiating Parallel DNS resolution of 1 host. at 13:30
  125. Completed Parallel DNS resolution of 1 host. at 13:30, 0.08s elapsed
  126. Initiating UDP Scan at 13:30
  127. Scanning ip-50-63-202-89.ip.secureserver.net (50.63.202.89) [1000 ports]
  128. UDP Scan Timing: About 29.55% done; ETC: 13:32 (0:01:14 remaining)
  129. UDP Scan Timing: About 59.55% done; ETC: 13:32 (0:00:41 remaining)
  130. Completed UDP Scan at 13:32, 101.17s elapsed (1000 total ports)
  131. Initiating Service scan at 13:32
  132. Scanning 1000 services on ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  133. Completed Service scan at 14:18, 2810.24s elapsed (1000 services on 1 host)
  134. Initiating OS detection (try #1) against ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  135. Retrying OS detection (try #2) against ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  136. Initiating Traceroute at 14:18
  137. Completed Traceroute at 14:19, 6.08s elapsed
  138. Initiating Parallel DNS resolution of 9 hosts. at 14:19
  139. Completed Parallel DNS resolution of 9 hosts. at 14:19, 0.05s elapsed
  140. NSE: Script scanning 50.63.202.89.
  141. Initiating NSE at 14:19
  142.  
  143. Completed NSE at 14:43, 1479.38s elapsed
  144. Nmap scan report for ip-50-63-202-89.ip.secureserver.net (50.63.202.89)
  145. Host is up.
  146. All 1000 scanned ports on ip-50-63-202-89.ip.secureserver.net (50.63.202.89) are open|filtered
  147. Too many fingerprints match this host to give specific OS details
  148.  
  149. TRACEROUTE (using proto 1/icmp)
  150. HOP RTT ADDRESS
  151. 1 xxxxxxxxxxxxxxxxxxxxxxx
  152. 2 xxxxxxxxxxxxxxxxxxxxxxx
  153. 3 xxxxxxxxxxxxxxxxxxxxxxx
  154. 4 xxxxxxxxxxxxxxxxxxxxxxx
  155. 5 xxxxxxxxxxxxxxxxxxxxxxx
  156. 6 xxxxxxxxxxxxxxxxxxxxxxx
  157. 7 28.16 ms ae-4-90.edge1.LosAngeles6.Level3.net (4.69.144.208)
  158. 8 30.71 ms ae-4-90.edge1.LosAngeles6.Level3.net (4.69.144.208)
  159. 9 24.36 ms be3036.ccr21.lax04.atlas.cogentco.com (154.54.14.129)
  160. 10 27.07 ms be2017.ccr22.lax01.atlas.cogentco.com (154.54.0.238)
  161. 11 23.88 ms be2179.ccr23.lax05.atlas.cogentco.com (154.54.41.82)
  162. 12 28.66 ms 38.104.84.94
  163. 13 ... 30
  164.  
  165. NSE: Script Post-scanning.
  166. Read data files from: /usr/bin/../share/nmap
  167. OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/
  168.  
  169. .
  170. Nmap done: 1 IP address (1 host up) scanned in 4414.19 seconds
  171. Raw packets sent: 2117 (66.138KB) | Rcvd: 11 (856B)
  172.  
  173. WHOIS Results...
  174.  
  175. Domain Name: 5ELAFABOOK.COM
  176. Registry Domain ID: 1906966818_DOMAIN_COM-VRSN
  177. Registrar WHOIS Server: whois.godaddy.com
  178. Registrar URL: http://www.godaddy.com
  179. Update Date: 2015-03-03T22:18:47Z
  180. Creation Date: 2015-03-03T22:18:47Z
  181. Registrar Registration Expiration Date: 2016-03-03T22:18:47Z
  182. Registrar: GoDaddy.com, LLC
  183. Registrar IANA ID: 146
  184. Registrar Abuse Contact Email: abuse@godaddy.com
  185. Registrar Abuse Contact Phone: +1.4806242505
  186. Domain Status: clientTransferProhibited http://www.icann.org/epp#clientTransferProhibited
  187. Domain Status: clientUpdateProhibited http://www.icann.org/epp#clientUpdateProhibited
  188. Domain Status: clientRenewProhibited http://www.icann.org/epp#clientRenewProhibited
  189. Domain Status: clientDeleteProhibited http://www.icann.org/epp#clientDeleteProhibited
  190. Registry Registrant ID:
  191. Registrant Name: Abu Musab
  192. Registrant Organization:
  193. Registrant Street: Islamic State Mosul
  194. Registrant City: Mosul
  195. Registrant State/Province: Islamic State
  196. Registrant Postal Code: 27222
  197. Registrant Country: Egypt
  198. Registrant Phone: +20.01111111111
  199. Registrant Phone Ext:
  200. Registrant Fax:
  201. Registrant Fax Ext:
  202. Registrant Email: info@5elafabook.com
  203. Registry Admin ID:
  204. Admin Name: Abu Musab
  205. Admin Organization:
  206. Admin Street: Islamic State Mosul
  207. Admin City: Mosul
  208. Admin State/Province: Islamic State
  209. Admin Postal Code: 27222
  210. Admin Country: Egypt
  211. Admin Phone: +20.01111111111
  212. Admin Phone Ext:
  213. Admin Fax:
  214. Admin Fax Ext:
  215. Admin Email: info@5elafabook.com
  216. Registry Tech ID:
  217. Tech Name: Abu Musab
  218. Tech Organization:
  219. Tech Street: Islamic State Mosul
  220. Tech City: Mosul
  221. Tech State/Province: Islamic State
  222. Tech Postal Code: 27222
  223. Tech Country: Egypt
  224. Tech Phone: +20.01111111111
  225. Tech Phone Ext:
  226. Tech Fax:
  227. Tech Fax Ext:
  228. Tech Email: info@5elafabook.com
  229. Name Server: NS39.DOMAINCONTROL.COM
  230. Name Server: NS40.DOMAINCONTROL.COM
  231. DNSSEC: unsigned
  232. URL of the ICANN WHOIS Data Problem Reporting System: http://wdprs.internic.net/
  233. >>> Last update of WHOIS database: 2015-07-09T20:00:00Z <<<
  234.  
  235. For more information on Whois status codes, please visit
  236.  
  237. https://www.icann.org/resources/pages/epp-status-codes-2014-06-16-en
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement