AnonymousSriLanka

OHCHR.COM - Human Rights Commission SSL/RSA Info Leaked

Apr 23rd, 2012
259
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. OHCHR.COM (Human Rights Commission) - INFO DUMP ..!!
  2. (ATTACK NON-INTRUSIVE)
  3.  
  4. PROJECT DEDICATION: PROJECT SARADIYEL (http://en.wikipedia.org/wiki/Uthuwankande_Soora_Saradiyel)
  5.  
  6. EXCLUSIVE FROM - Anonymous Sri Lanka
  7.  
  8. WWW.OHCHR.COM -----> Servers Fuck3D and Bust3D
  9.  
  10. Primary Server Data Leak with Transferring (Data Leak)....!!
  11.  
  12. Hail to Anonymous, Lulzsec and Operation Anti-Sec...
  13.  
  14.  
  15. THIS ATTACK AGAINST THE DIRTIEST THINGS AGAINST THE SRI LANKA BY HUMAN RIGHTS COMMISSION ....!!!!!
  16.  
  17. treaty.ohchr.org (193.194.138.95)
  18.  
  19. 80/tcp open http syn-ack
  20. |
  21. |-http-headers:
  22. | Content-Type: text/html; charset=us-ascii
  23. | Content-Length: 315
  24. | Date: Tue, 20 Mar 2012 19:05:10 GMT
  25. | Server: Microsoft-HTTPAPI/2.0
  26. |
  27. |-443/tcp open https syn-ack
  28. |
  29. |
  30. | sslv2: server still supports SSLv2
  31. | SSL2_RC4_128_WITH_MD5
  32. |_ SSL2_DES_192_EDE3_CBC_WITH_MD5
  33. | ssl-cert: Subject: commonName=extranet.ohchr.org/organizationName=ICC/stateOrProvinceName=Geneva/countryName=CH/streetAddress=Palais des Nations/localityName=Geneva/postalCode=1211/organizationalUnitName=Comodo InstantSSL
  34. | Issuer: commonName=UTN-USERFirst-Hardware/organizationName=The USERTRUST Network/stateOrProvinceName=UT/countryName=US/localityName=Salt Lake City/organizationalUnitName=http://www.usertrust.com
  35. | Public Key type: rsa
  36. | Public Key bits: 2048
  37. | Not valid before: 2011-03-09 00:00:00
  38. | Not valid after: 2013-03-08 23:59:59
  39. | MD5: 7b45 efca b1ec 385f 928f b03f 3ff1 643f
  40. | SHA-1: 8f19 18e6 2a48 5f3c a314 5b26 477e 57d5 d487 1291
  41. | -----BEGIN CERTIFICATE-----
  42. | MIIF8jCCBNqgAwIBAgIQQOjA4TspFIVQ2TaWEY4a3zANBgkqhkiG9w0BAQUFADCB
  43. | lzELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAlVUMRcwFQYDVQQHEw5TYWx0IExha2Ug
  44. | Q2l0eTEeMBwGA1UEChMVVGhlIFVTRVJUUlVTVCBOZXR3b3JrMSEwHwYDVQQLExho
  45. | dHRwOi8vd3d3LnVzZXJ0cnVzdC5jb20xHzAdBgNVBAMTFlVUTi1VU0VSRmlyc3Qt
  46. | SGFyZHdhcmUwHhcNMTEwMzA5MDAwMDAwWhcNMTMwMzA4MjM1OTU5WjCB3TELMAkG
  47. | A1UEBhMCQ0gxDTALBgNVBBETBDEyMTExDzANBgNVBAgTBkdlbmV2YTEPMA0GA1UE
  48. | BxMGR2VuZXZhMRswGQYDVQQJExJQYWxhaXMgZGVzIE5hdGlvbnMxDDAKBgNVBAoT
  49. | A0lDQzEMMAoGA1UECxMDSUNDMSswKQYDVQQLEyJJc3N1ZWQgdGhyb3VnaCBVTklD
  50. | QyBFLVBLSSBNYW5hZ2VyMRowGAYDVQQLExFDb21vZG8gSW5zdGFudFNTTDEbMBkG
  51. | A1UEAxMSZXh0cmFuZXQub2hjaHIub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
  52. | MIIBCgKCAQEAxq3Rj2tpZ1M4xKPGkuP0Ka5lMlu9wI4HJJMxv6jcR+lizg1XLqfC
  53. | +TE3FqBJIOHW7CYwD3fFy8/vlG639s4HShlrO3U3Gho61v/JC3NtsB2ZR3Mcqxwz
  54. | mQFxk7WdebWytooB75p8gUQ6OBr2jhVDHtaXzvfZP2GfKCTEt43zBgV+7fIrWTBy
  55. | JJII+qI+Kth3V4rNR5XWBMKhJEv9sCotYu8QUJWpoWG2YctiSOAVUpFdD7LuyUhG
  56. | M3qirTn2nO+dFp1JEcjbTCNGm1+WDlYwRqIkHJpWtTdc9W6cINlO0MlE0033H+0g
  57. | VPpo3COJbMfKgts7i9pJBPcDjlxpM9HsQwIDAQABo4IB8DCCAewwHwYDVR0jBBgw
  58. | FoAUoXJfJhsomEOVXQc31YWWnUvSw0UwHQYDVR0OBBYEFKFshaxbgCilAbLRzOtS
  59. | GK+ByzLUMA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQG
  60. | CCsGAQUFBwMBBggrBgEFBQcDAjBGBgNVHSAEPzA9MDsGDCsGAQQBsjEBAgEDBDAr
  61. | MCkGCCsGAQUFBwIBFh1odHRwczovL3NlY3VyZS5jb21vZG8uY29tL0NQUzB7BgNV
  62. | HR8EdDByMDigNqA0hjJodHRwOi8vY3JsLmNvbW9kb2NhLmNvbS9VVE4tVVNFUkZp
  63. | cnN0LUhhcmR3YXJlLmNybDA2oDSgMoYwaHR0cDovL2NybC5jb21vZG8ubmV0L1VU
  64. | Ti1VU0VSRmlyc3QtSGFyZHdhcmUuY3JsMHEGCCsGAQUFBwEBBGUwYzA7BggrBgEF
  65. | BQcwAoYvaHR0cDovL2NydC5jb21vZG9jYS5jb20vVVROQWRkVHJ1c3RTZXJ2ZXJD
  66. | QS5jcnQwJAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmNvbW9kb2NhLmNvbTA1BgNV
  67. | HREELjAsghJleHRyYW5ldC5vaGNoci5vcmeCFnd3dy5leHRyYW5ldC5vaGNoci5v
  68. | cmcwDQYJKoZIhvcNAQEFBQADggEBAI/ONMFx88JEDHgY0awltyCLV5MbXvp6mRDI
  69. | 2jqoOJ8IAbcaYu/YdUqtdlfvsuhbsRmaKJLmv4Krsml8CQ6c+Sl4lMPNn/yh2alS
  70. | FW6NxiNUGkRW/Sj/t5kLvUfDyjmrznXJtJ+1/uqCUjQpsngNpu8/JDmeGUgstRBg
  71. | G5yoDeIAvT53MqjYYixPzBgrGiOaHQWWWZK181MWeMrENtwHhs4vbFVI+/py7dwu
  72. | XQdgRtvq4n+gFBt3FnQ8agY0ExVnnM89jJyk6hG4z5rAKK6oZnODEKlaoFTvL7p1
  73. | BHgjGIlVfwUON7vpCCDZ4JYapGtuAaRYuvcJxk6CYj1lgOkO/2I=
  74. |_-----END CERTIFICATE-----
  75. |
  76. | http-title: Object moved
  77. |
  78. |_http-date: Tue, 20 Mar 2012 19:05:08 GMT; +1m41s from local time.
  79. | http-headers:
  80. | Content-Type: text/html; charset=utf-8
  81. | Location: https://treaty.ohchr.org/_layouts/Authenticate.aspx?Source=%2F
  82. | Server: Microsoft-IIS/7.0
  83. | SPRequestGuid: b64351ed-eba5-4d4c-a744-b9d472e99d32
  84. | X-SharePointHealthScore: 0
  85. | X-Powered-By: ASP.NET
  86. | Date: Tue, 20 Mar 2012 19:05:18 GMT
  87. | Connection: close
  88. | Content-Length: 179
  89. |
  90. |_ (Request type: GET)
  91. |_http-userdir-enum: Potential Users: root, admin, administrator, webadmin, sysadmin, netadmin, guest, user, web, test
  92. | ssl-enum-ciphers:
  93. | SSLv3
  94. | Ciphers (3)
  95. | TLS_RSA_WITH_3DES_EDE_CBC_SHA - strong
  96. | TLS_RSA_WITH_RC4_128_MD5 - unknown strength
  97. | TLS_RSA_WITH_RC4_128_SHA - strong
  98. | Compressors (1)
  99. | NULL
  100. | TLSv1.0
  101. | Ciphers (7)
  102. | TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA - strong
  103. | TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA - unknown strength
  104. | TLS_RSA_WITH_3DES_EDE_CBC_SHA - strong
  105. | TLS_RSA_WITH_AES_128_CBC_SHA - strong
  106. | TLS_RSA_WITH_AES_256_CBC_SHA - unknown strength
  107. | TLS_RSA_WITH_RC4_128_MD5 - unknown strength
  108. | TLS_RSA_WITH_RC4_128_SHA - strong
  109. | Compressors (1)
  110. | NULL
  111. |_ Least strength = unknown strength
  112. | http-enum:
  113. | /_layouts/images/helpicon.gif: MS Sharepoint
  114. | /_layouts/userdisp.aspx: MS Sharepoint
  115. | /_vti_bin/_vti_aut/author.dll: Frontpage file or folder
  116. | /_vti_bin/_vti_adm/admin.dll: Frontpage file or folder
  117. | /_vti_bin/shtml.dll: Frontpage file or folder
  118. | /_vti_pvt/service.cnf: Frontpage file or folder
  119. |_ /_vti_pvt/services.cnf: Frontpage file or folder
  120.  
  121. Host script results:
  122. | unusual-port:
  123. |_ WARNING: this script depends on Nmap's service/version detection (-sV)
  124. |_path-mtu: PMTU == 1500
  125. | whois: Record found at whois.ripe.net
  126. | inetnum: 193.194.138.0 - 193.194.139.255
  127. | netname: UNICC
  128. | descr: United Nations International Computing Center
  129. | country: CH
  130. | person: Roberto Kuroiwa
  131. |_email: callcentre@unicc.org
  132. | asn-query:
  133. | BGP: 193.194.138.0/24 | Country: CH
  134. | Origin AS: 8659 - AS8659 United Nations International Computing Centre
  135. |_ Peer AS: 3549 8220
  136. | ip-geolocation-geobytes:
  137. | 193.194.138.95
  138. | coordinates (lat,lon): 46.2,6.167
  139. |_ city: Geneva, Geneve, Switzerland
  140. |_hostmap: Error: found no hostnames but not the marker for "no hostnames found" (pattern error?)
  141. | ip-geolocation-geoplugin:
  142. | 193.194.138.95
  143. | coordinates (lat,lon): 46.200000762939,6.166699886322
  144. |_ state: 7, Switzerland
  145. |_ipidseq: Unknown [used port 80]
  146. | dns-brute:
  147. | DNS Brute-force hostnames
  148. | smtp.ohchr.org - 193.194.138.188
  149. | www.ohchr.org - 193.194.138.68
  150. | intranet.ohchr.org - 193.194.138.111
  151. | mail.ohchr.org - 193.194.138.188
  152. | ap.ohchr.org - 193.194.138.185
  153. | info.ohchr.org - 193.194.138.183
  154. |_ ftp.ohchr.org - 192.91.247.98
  155. |
  156. 193.194.138.95 treaty.ohchr.org
  157. 193.194.138.95 nhri.ohchr.org
  158. 193.194.138.95 ac.ohchr.org
  159. 193.194.138.183 portal.ohchr.org
  160. 193.194.138.185 uhri.ohchr.org
  161. 193.194.138.188 webmail.ohchr.org
  162. 193.194.138.185 ap.ohchr.org
  163. 193.194.138.68 www.ohchr.org
  164. 193.194.138.68 crpd.ohchr.org
  165. 193.194.138.68 lib.ohchr.org
  166. 193.194.138.68 europe.ohchr.org
  167. 193.194.138.95 extranet.ohchr.org
  168. 192.91.247.98 ftp.ohchr.org
  169. 193.194.138.215 bih.ohchr.org
  170. 193.194.138.218 searchportal.ohchr.org
  171. 193.194.138.221 travel.ohchr.org
  172. 193.194.138.215 car.ohchr.org
  173. 193.194.138.215 drc.ohchr.org
  174. 193.194.138.215 scg.ohchr.org
  175. 193.194.138.215 fiji.ohchr.org
  176. 193.194.138.215 iraq.ohchr.org
  177. 193.194.138.215 chile.ohchr.org
  178. 193.194.138.215 fyrom.ohchr.org
  179. 193.194.138.215 haiti.ohchr.org
  180. 193.194.138.215 nepal.ohchr.org
  181. 193.194.138.215 sudan.ohchr.org
  182. 193.194.138.215 angola.ohchr.org
  183. 193.194.138.215 mexico.ohchr.org
  184. 193.194.138.215 seasia.ohchr.org
  185. 193.194.138.215 uganda.ohchr.org
  186. 193.194.138.215 voting.ohchr.org
  187. 193.194.138.215 bangkok.ohchr.org
  188. 193.194.138.215 bolivia.ohchr.org
  189. 193.194.138.215 burundi.ohchr.org
  190. 193.194.138.215 ecuador.ohchr.org
  191. 193.194.138.215 eritrea.ohchr.org
  192. 193.194.138.215 georgia.ohchr.org
  193. 193.194.138.215 lebanon.ohchr.org
  194. 193.194.138.215 liberia.ohchr.org
  195. 193.194.138.215 pacific.ohchr.org
  196. 193.194.138.215 cameroon.ohchr.org
  197. 193.194.138.215 colombia.ohchr.org
  198. 193.194.138.215 ethiopia.ohchr.org
  199. 193.194.138.215 srilanka.ohchr.org
  200. 193.194.138.215 thailand.ohchr.org
  201. 193.194.138.215 palestine.ohchr.org
  202. 193.194.138.215 eastafrica.ohchr.org
  203. 193.194.138.215 kazakhstan.ohchr.org
  204. 193.194.138.215 tajikistan.ohchr.org
  205. 193.194.138.215 timorleste.ohchr.org
  206. 193.194.138.215 afghanistan.ohchr.org
  207. 193.194.138.215 cotedivoire.ohchr.org
  208. 193.194.138.215 sierraleone.ohchr.org
  209. 193.194.138.215 guineabissau.ohchr.org
  210. 193.194.138.215 intranet-video.ohchr.org
  211. 193.194.138.215 southernafrica.ohchr.org
  212. 193.194.138.215 businesstraining.ohchr.org
  213. 193.194.138.183 info.ohchr.org
  214. 193.194.138.111 ohchrportalprod.ohchr.org
  215. 193.194.138.112 cambodia.ohchr.org
  216. 193.194.138.111 mysites-portal.ohchr.org
  217. 193.194.138.111 intranet.ohchr.org
  218. 193.194.138.215 k.ohchr.org
  219. 193.194.138.188 mail.ohchr.org
  220. 193.194.138.68 newyork.ohchr.org
  221. 193.194.138.33 remote.ohchr.org
  222. 193.194.138.252 search.ohchr.org
  223. 193.194.138.188 smtp.ohchr.org
  224. 193.194.138.56 easset.ohchr.org
  225. 193.194.138.51 esurvey.ohchr.org
  226. 193.194.138.58 www2.ohchr.org
  227. |
  228. | qscan:
  229. | PORT FAMILY MEAN (us) STDDEV LOSS (%)
  230. | 80 0 402356.70 48928.98 0.0%
  231. |_443 0 427008.60 103943.33 0.0%
RAW Paste Data