JTSEC1333

Anonymous JTSEC #OpDomesticTerrorism Full Recon #6

Oct 22nd, 2019
763
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 328.47 KB | None | 0 0
  1. #######################################################################################################################################
  2. ======================================================================================================================================
  3. Hostname www.respectwashington.us ISP Hurricane Electric LLC
  4. Continent North America Flag
  5. US
  6. Country United States Country Code US
  7. Region Unknown Local time 22 Oct 2019 07:53 CDT
  8. City Unknown Postal Code Unknown
  9. IP Address 65.49.16.26 Latitude 37.751
  10. Longitude -97.822
  11. =======================================================================================================================================
  12. #######################################################################################################################################
  13. > www.respectwashington.us
  14. Server: 185.93.180.131
  15. Address: 185.93.180.131#53
  16.  
  17. Non-authoritative answer:
  18. www.respectwashington.us canonical name = respectwashington.us.
  19. Name: respectwashington.us
  20. Address: 65.49.16.26
  21. >
  22. #######################################################################################################################################
  23. Domain Name: respectwashington.us
  24. Registry Domain ID: D16560512-US
  25. Registrar WHOIS Server: whois.godaddy.com
  26. Registrar URL: whois.godaddy.com
  27. Updated Date: 2019-05-17T14:12:02Z
  28. Creation Date: 2008-05-12T19:02:13Z
  29. Registry Expiry Date: 2020-05-11T23:59:59Z
  30. Registrar: GoDaddy.com, Inc.
  31. Registrar IANA ID: 146
  32. Registrar Abuse Contact Email: [email protected]
  33. Registrar Abuse Contact Phone: +1.4806242505
  34. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  35. Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
  36. Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited
  37. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  38. Registry Registrant ID: C24033066-US
  39. Registrant Name: B. Keller
  40. Registrant Organization:
  41. Registrant Street: PO Box 3786
  42. Registrant Street:
  43. Registrant Street:
  44. Registrant City: Federal Way
  45. Registrant State/Province: Washington
  46. Registrant Postal Code: 98063-3786
  47. Registrant Country: US
  48. Registrant Phone: +1.2069353505
  49. Registrant Phone Ext:
  50. Registrant Fax:
  51. Registrant Fax Ext:
  52. Registrant Email: [email protected]
  53. Registrant Application Purpose: P3
  54. Registrant Nexus Category: C11
  55. Registry Admin ID: C24033071-US
  56. Admin Name: B. Keller
  57. Admin Organization:
  58. Admin Street: PO Box 3786
  59. Admin Street:
  60. Admin Street:
  61. Admin City: Federal Way
  62. Admin State/Province: Washington
  63. Admin Postal Code: 98063-3786
  64. Admin Country: US
  65. Admin Phone: +1.2069353505
  66. Admin Phone Ext:
  67. Admin Fax:
  68. Admin Fax Ext:
  69. Admin Email: [email protected]
  70. Admin Application Purpose: P3
  71. Admin Nexus Category: C11
  72. Registry Tech ID: C24033068-US
  73. Tech Name: B. Keller
  74. Tech Organization:
  75. Tech Street: PO Box 3786
  76. Tech Street:
  77. Tech Street:
  78. Tech City: Federal Way
  79. Tech State/Province: Washington
  80. Tech Postal Code: 98063-3786
  81. Tech Country: US
  82. Tech Phone: +1.2069353505
  83. Tech Phone Ext:
  84. Tech Fax:
  85. Tech Fax Ext:
  86. Tech Email: [email protected]
  87. Tech Application Purpose: P3
  88. Tech Nexus Category: C11
  89. Name Server: ns2.he.net
  90. Name Server: ns1.he.net
  91. DNSSEC: unsigned
  92. ######################################################################################################################################
  93. [+] Target : www.respectwashington.us
  94.  
  95. [+] IP Address : 65.49.16.26
  96.  
  97. [+] Headers :
  98.  
  99. [+] Date : Tue, 22 Oct 2019 13:02:14 GMT
  100. [+] Server : Apache/2.4.18 (Ubuntu)
  101. [+] Last-Modified : Fri, 23 Feb 2018 15:15:28 GMT
  102. [+] ETag : "8956-565e2a1613be1-gzip"
  103. [+] Accept-Ranges : bytes
  104. [+] Vary : Accept-Encoding
  105. [+] Content-Encoding : gzip
  106. [+] Content-Length : 11076
  107. [+] Keep-Alive : timeout=5, max=100
  108. [+] Connection : Keep-Alive
  109. [+] Content-Type : text/html
  110.  
  111. [+] SSL Certificate Information :
  112.  
  113. [+] commonName : respectwashington.us
  114. [+] countryName : US
  115. [+] organizationName : Let's Encrypt
  116. [+] commonName : Let's Encrypt Authority X3
  117. [+] Version : 3
  118. [+] Serial Number : 0487DBDE45DC509FE9B4B360E72AAB131161
  119. [+] Not Before : Sep 23 10:50:34 2019 GMT
  120. [+] Not After : Dec 22 10:50:34 2019 GMT
  121. [+] OCSP : ('http://ocsp.int-x3.letsencrypt.org',)
  122. [+] subject Alt Name : (('DNS', 'keller4america.us'), ('DNS', 'mail.respectwashington.us'), ('DNS', 'respectwashington.us'), ('DNS', 'www.keller4america.us'), ('DNS', 'www.respectwashington.us'))
  123. [+] CA Issuers : ('http://cert.int-x3.letsencrypt.org/',)
  124.  
  125. [+] Whois Lookup :
  126.  
  127. [+] NIR : None
  128. [+] ASN Registry : arin
  129. [+] ASN : 6939
  130. [+] ASN CIDR : 65.49.0.0/17
  131. [+] ASN Country Code : US
  132. [+] ASN Date : 2007-10-04
  133. [+] ASN Description : HURRICANE - Hurricane Electric LLC, US
  134. [+] cidr : 65.49.0.0/17
  135. [+] name : HURRICANE-9
  136. [+] handle : NET-65-49-0-0-1
  137. [+] range : 65.49.0.0 - 65.49.127.255
  138. [+] description : Hurricane Electric LLC
  139. [+] country : US
  140. [+] state : CA
  141. [+] city : Fremont
  142. [+] address : 760 Mission Court
  143. [+] postal_code : 94539
  144. [+] created : 2007-10-04
  145. [+] updated : 2012-02-24
  146.  
  147. [+] Crawling Target...
  148.  
  149. [+] Looking for robots.txt........[ Not Found ]
  150. [+] Looking for sitemap.xml.......[ Not Found ]
  151. [+] Extracting CSS Links..........[ 1 ]
  152. [+] Extracting Javascript Links...[ 0 ]
  153. [+] Extracting Internal Links.....[ 0 ]
  154. [+] Extracting External Links.....[ 10 ]
  155. [+] Extracting Images.............[ 3 ]
  156.  
  157. [+] Total Links Extracted : 14
  158.  
  159. [+] Dumping Links in /opt/FinalRecon/dumps/www.respectwashington.us.dump
  160. [+] Completed!
  161. ######################################################################################################################################
  162. [+] Starting At 2019-10-22 09:02:23.804210
  163. [+] Collecting Information On: http://www.respectwashington.us/
  164. [#] Status: 200
  165. --------------------------------------------------
  166. [#] Web Server Detected: Apache/2.4.18 (Ubuntu)
  167. [!] X-Frame-Options Headers not detect! target might be vulnerable Click Jacking
  168. - Date: Tue, 22 Oct 2019 13:02:24 GMT
  169. - Server: Apache/2.4.18 (Ubuntu)
  170. - Last-Modified: Fri, 23 Feb 2018 15:15:28 GMT
  171. - ETag: "8956-565e2a1613be1-gzip"
  172. - Accept-Ranges: bytes
  173. - Vary: Accept-Encoding
  174. - Content-Encoding: gzip
  175. - Content-Length: 11076
  176. - Keep-Alive: timeout=5, max=100
  177. - Connection: Keep-Alive
  178. - Content-Type: text/html
  179. --------------------------------------------------
  180. [#] Finding Location..!
  181. [#] status: success
  182. [#] country: United States
  183. [#] countryCode: US
  184. [#] region: CA
  185. [#] regionName: California
  186. [#] city: Fremont
  187. [#] zip: 94539
  188. [#] lat: 37.4718
  189. [#] lon: -121.92
  190. [#] timezone: America/Los_Angeles
  191. [#] isp: Hurricane Electric LLC
  192. [#] org: Hurricane Electric
  193. [#] as: AS6939 Hurricane Electric LLC
  194. [#] query: 65.49.16.26
  195. --------------------------------------------------
  196. [x] Didn't Detect WAF Presence on: http://www.respectwashington.us/
  197. --------------------------------------------------
  198. [#] Starting Reverse DNS
  199. [-] Failed ! Fail
  200. --------------------------------------------------
  201. [!] Scanning Open Port
  202. [#] 80/tcp open http
  203. [#] 110/tcp open pop3
  204. [#] 143/tcp open imap
  205. [#] 443/tcp open https
  206. [#] 465/tcp open smtps
  207. [#] 587/tcp open submission
  208. [#] 993/tcp open imaps
  209. [#] 995/tcp open pop3s
  210. --------------------------------------------------
  211. [+] Collecting Information Disclosure!
  212. [#] Detecting sitemap.xml file
  213. [-] sitemap.xml file not Found!?
  214. [#] Detecting robots.txt file
  215. [-] robots.txt file not Found!?
  216. [#] Detecting GNU Mailman
  217. [-] GNU Mailman App Not Detected!?
  218. --------------------------------------------------
  219. [+] Crawling Url Parameter On: http://www.respectwashington.us/
  220. --------------------------------------------------
  221. [#] Searching Html Form !
  222. [-] No Html Form Found!?
  223. --------------------------------------------------
  224. [-] No DOM Paramter Found!?
  225. --------------------------------------------------
  226. [-] No internal Dynamic Parameter Found!?
  227. --------------------------------------------------
  228. [!] 4 External Dynamic Parameter Discovered
  229. [#] http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=75bce2e261405110VgnVCM1000004718190aRCRD&vgnextchannel=75bce2e261405110VgnVCM1000004718190aRCRD
  230. [#] http://www.uscis.gov/portal/site/uscis/menuitem.5af9bb95919f35e66f614176543f6d1a/?vgnextoid=31b3ab0a43b5d010VgnVCM10000048f3d6a1RCRD&vgnextchannel=db029c7755cb9010VgnVCM10000045f3d6a1RCRD
  231. [#] http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  232. [#] http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  233. --------------------------------------------------
  234. [!] 23 Internal links Discovered
  235. [+] http://www.respectwashington.us//rw-style.css
  236. [+] http://www.respectwashington.us//rwhome.html
  237. [+] http://www.respectwashington.us//whyweneed.html
  238. [+] http://www.respectwashington.us//petition.html
  239. [+] http://www.respectwashington.us//support.html
  240. [+] http://www.respectwashington.us//donate.html
  241. [+] http://www.respectwashington.us//testimonials.html
  242. [+] http://www.respectwashington.us//legal-action.html
  243. [+] http://www.respectwashington.us//volunteer.html
  244. [+] http://www.respectwashington.us//contact.html
  245. [+] http://www.respectwashington.us//Spokane Appellant Opening Brief.pdf
  246. [+] http://www.respectwashington.us//001 Gomez v Spokane Complaint.pdf
  247. [+] http://www.respectwashington.us//022 Gomez v Spokane Status Report.pdf
  248. [+] http://www.respectwashington.us//GomezSettlement SR 2018.pdf
  249. [+] http://www.respectwashington.us//001 Diaz-Garcia Rape INFORMATION.pdf
  250. [+] http://www.respectwashington.us//001 Diaz-Garcia Child Molest INFORMATION.pdf
  251. [+] http://www.respectwashington.us//DoC2014CrimeIllegals.pdf
  252. [+] http://www.respectwashington.us//DoJ Incarcerated Aliens 2017.pdf
  253. [+] http://www.respectwashington.us//BurienPolice2016Data.pdf
  254. [+] http://www.respectwashington.us//studies-and-reports/FAIRCostStudyWA2012.pdf
  255. [+] http://www.respectwashington.us//donate.html
  256. [+] http://www.respectwashington.us//Oregoneo0722.pdf
  257. [+] http://www.respectwashington.us//studies-and-reports/FAIRCostStudyWA2012.pdf
  258. --------------------------------------------------
  259. [!] 7 External links Discovered
  260. [#] http://komonews.com/news/local/charges-woman-bludgeoned-raped-at-burien-apartment-complex
  261. [#] http://www.kingcounty.gov/tools/inmate-lookup
  262. [#] http://www.foxnews.com/us/2017/08/02/dreamer-accused-brutally-raping-woman-in-washington.html
  263. [#] https://cis.org/Jessica-Vaughan-Discusses-Illegal-Aliens-Prisons
  264. [#] http://www.burienwa.gov/AgendaCenter/ViewFile/Agenda/_04242017-336
  265. [#] http://wei.secstate.wa.gov/osos/en/voterinformation/Pages/RegistertoVote.aspx
  266. [#] http://www.thesocialcontract.com/reports/eitc_2011apr/earned-income-tax-credit-2011apr.html
  267. --------------------------------------------------
  268. [#] Mapping Subdomain..
  269. [!] Found 1 Subdomain
  270. - respectwashington.us
  271. --------------------------------------------------
  272. [!] Done At 2019-10-22 09:02:39.319385
  273. #######################################################################################################################################
  274. [i] Scanning Site: http://www.respectwashington.us
  275.  
  276.  
  277.  
  278. B A S I C I N F O
  279. ====================
  280.  
  281.  
  282. [+] Site Title: RespectWashington
  283. [+] IP address: 65.49.16.26
  284. [+] Web Server: Apache/2.4.18 (Ubuntu)
  285. [+] CMS: Could Not Detect
  286. [+] Cloudflare: Not Detected
  287. [+] Robots File: Could NOT Find robots.txt!
  288.  
  289.  
  290.  
  291.  
  292. W H O I S L O O K U P
  293. ========================
  294.  
  295. Domain Name: respectwashington.us
  296. Registry Domain ID: D16560512-US
  297. Registrar WHOIS Server: whois.godaddy.com
  298. Registrar URL: whois.godaddy.com
  299. Updated Date: 2019-05-17T14:12:02Z
  300. Creation Date: 2008-05-12T19:02:13Z
  301. Registry Expiry Date: 2020-05-11T23:59:59Z
  302. Registrar: GoDaddy.com, Inc.
  303. Registrar IANA ID: 146
  304. Registrar Abuse Contact Email: [email protected]
  305. Registrar Abuse Contact Phone: +1.4806242505
  306. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  307. Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited
  308. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  309. Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
  310. Registry Registrant ID: C24033066-US
  311. Registrant Name: B. Keller
  312. Registrant Organization:
  313. Registrant Street: PO Box 3786
  314. Registrant Street:
  315. Registrant Street:
  316. Registrant City: Federal Way
  317. Registrant State/Province: Washington
  318. Registrant Postal Code: 98063-3786
  319. Registrant Country: US
  320. Registrant Phone: +1.2069353505
  321. Registrant Phone Ext:
  322. Registrant Fax:
  323. Registrant Fax Ext:
  324. Registrant Email: [email protected]
  325. Registrant Application Purpose: P3
  326. Registrant Nexus Category: C11
  327. Registry Admin ID: C24033071-US
  328. Admin Name: B. Keller
  329. Admin Organization:
  330. Admin Street: PO Box 3786
  331. Admin Street:
  332. Admin Street:
  333. Admin City: Federal Way
  334. Admin State/Province: Washington
  335. Admin Postal Code: 98063-3786
  336. Admin Country: US
  337. Admin Phone: +1.2069353505
  338. Admin Phone Ext:
  339. Admin Fax:
  340. Admin Fax Ext:
  341. Admin Email: [email protected]
  342. Admin Application Purpose: P3
  343. Admin Nexus Category: C11
  344. Registry Tech ID: C24033068-US
  345. Tech Name: B. Keller
  346. Tech Organization:
  347. Tech Street: PO Box 3786
  348. Tech Street:
  349. Tech Street:
  350. Tech City: Federal Way
  351. Tech State/Province: Washington
  352. Tech Postal Code: 98063-3786
  353. Tech Country: US
  354. Tech Phone: +1.2069353505
  355. Tech Phone Ext:
  356. Tech Fax:
  357. Tech Fax Ext:
  358. Tech Email: [email protected]
  359. Tech Application Purpose: P3
  360. Tech Nexus Category: C11
  361. Name Server: ns2.he.net
  362. Name Server: ns1.he.net
  363. DNSSEC: unsigned
  364. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  365. >>> Last update of WHOIS database: 2019-10-22T13:02:47Z <<<
  366.  
  367. For more information on Whois status codes, please visit https://icann.org/epp
  368.  
  369.  
  370.  
  371.  
  372.  
  373. G E O I P L O O K U P
  374. =========================
  375.  
  376. [i] IP Address: 65.49.16.26
  377. [i] Country: United States
  378. [i] State:
  379. [i] City:
  380. [i] Latitude: 37.751
  381. [i] Longitude: -97.822
  382.  
  383.  
  384.  
  385.  
  386. H T T P H E A D E R S
  387. =======================
  388.  
  389.  
  390. [i] HTTP/1.1 200 OK
  391. [i] Date: Tue, 22 Oct 2019 13:02:50 GMT
  392. [i] Server: Apache/2.4.18 (Ubuntu)
  393. [i] Last-Modified: Fri, 23 Feb 2018 15:15:28 GMT
  394. [i] ETag: "8956-565e2a1613be1"
  395. [i] Accept-Ranges: bytes
  396. [i] Content-Length: 35158
  397. [i] Vary: Accept-Encoding
  398. [i] Connection: close
  399. [i] Content-Type: text/html
  400.  
  401.  
  402.  
  403.  
  404. D N S L O O K U P
  405. ===================
  406.  
  407. respectwashington.us. 21599 IN A 65.49.16.26
  408. respectwashington.us. 21599 IN NS ns2.he.net.
  409. respectwashington.us. 21599 IN NS ns5.he.net.
  410. respectwashington.us. 21599 IN NS ns3.he.net.
  411. respectwashington.us. 21599 IN NS ns1.he.net.
  412. respectwashington.us. 21599 IN NS ns4.he.net.
  413. respectwashington.us. 21599 IN SOA ns1.he.net. hostmaster.he.net. 200808098 10800 1800 604800 86400
  414. respectwashington.us. 21599 IN MX 1 respectwashington.us.
  415.  
  416.  
  417.  
  418.  
  419. S U B N E T C A L C U L A T I O N
  420. ====================================
  421.  
  422. Address = 65.49.16.26
  423. Network = 65.49.16.26 / 32
  424. Netmask = 255.255.255.255
  425. Broadcast = not needed on Point-to-Point links
  426. Wildcard Mask = 0.0.0.0
  427. Hosts Bits = 0
  428. Max. Hosts = 1 (2^0 - 0)
  429. Host Range = { 65.49.16.26 - 65.49.16.26 }
  430.  
  431.  
  432.  
  433. N M A P P O R T S C A N
  434. ============================
  435.  
  436. Starting Nmap 7.70 ( https://nmap.org ) at 2019-10-22 13:02 UTC
  437. Nmap scan report for respectwashington.us (65.49.16.26)
  438. Host is up (0.064s latency).
  439.  
  440. PORT STATE SERVICE
  441. 21/tcp closed ftp
  442. 22/tcp closed ssh
  443. 23/tcp closed telnet
  444. 80/tcp open http
  445. 110/tcp open pop3
  446. 143/tcp open imap
  447. 443/tcp open https
  448. 3389/tcp closed ms-wbt-server
  449.  
  450. Nmap done: 1 IP address (1 host up) scanned in 0.13 seconds
  451. #######################################################################################################################################
  452. [INFO] ------TARGET info------
  453. [*] TARGET: http://www.respectwashington.us/
  454. [*] TARGET IP: 65.49.16.26
  455. [INFO] NO load balancer detected for www.respectwashington.us...
  456. [*] DNS servers: respectwashington.us.
  457. [*] TARGET server: Apache/2.4.18 (Ubuntu)
  458. [*] CC: US
  459. [*] Country: United States
  460. [*] RegionCode: CA
  461. [*] RegionName: California
  462. [*] City: Fremont
  463. [*] ASN: AS6939
  464. [*] BGP_PREFIX: 65.49.0.0/17
  465. [*] ISP: HURRICANE - Hurricane Electric LLC, US
  466. [INFO] DNS enumeration:
  467. [*] ftp.respectwashington.us respectwashington.us. 65.49.16.26
  468. [*] mail.respectwashington.us respectwashington.us. 65.49.16.26
  469. [INFO] Possible abuse mails are:
  470. [INFO] NO PAC (Proxy Auto Configuration) file FOUND
  471. [INFO] Starting FUZZing in http://www.respectwashington.us/FUzZzZzZzZz...
  472. [INFO] Status code Folders
  473. [ALERT] Look in the source code. It may contain passwords
  474. [INFO] SAME content in http://www.respectwashington.us/ AND http://65.49.16.26/
  475. [INFO] Links found from http://www.respectwashington.us/:
  476. [*] http://komonews.com/news/local/charges-woman-bludgeoned-raped-at-burien-apartment-complex
  477. [*] https://cis.org/Jessica-Vaughan-Discusses-Illegal-Aliens-Prisons
  478. [*] http://wei.secstate.wa.gov/osos/en/voterinformation/Pages/RegistertoVote.aspx
  479. [*] http://www.burienwa.gov/AgendaCenter/ViewFile/Agenda/_04242017-336
  480. [*] http://www.foxnews.com/us/2017/08/02/dreamer-accused-brutally-raping-woman-in-washington.html
  481. [*] http://www.kingcounty.gov/tools/inmate-lookup
  482. [*] http://www.respectwashington.us/001 Diaz-Garcia Child Molest INFORMATION.pdf
  483. [*] http://www.respectwashington.us/001 Diaz-Garcia Rape INFORMATION.pdf
  484. [*] http://www.respectwashington.us/001 Gomez v Spokane Complaint.pdf
  485. [*] http://www.respectwashington.us/022 Gomez v Spokane Status Report.pdf
  486. [*] http://www.respectwashington.us/BurienPolice2016Data.pdf
  487. [*] http://www.respectwashington.us/contact.html
  488. [*] http://www.respectwashington.us/DoC2014CrimeIllegals.pdf
  489. [*] http://www.respectwashington.us/DoJ Incarcerated Aliens 2017.pdf
  490. [*] http://www.respectwashington.us/donate.html
  491. [*] http://www.respectwashington.us/GomezSettlement SR 2018.pdf
  492. [*] http://www.respectwashington.us/legal-action.html
  493. [*] http://www.respectwashington.us/Oregoneo0722.pdf
  494. [*] http://www.respectwashington.us/petition.html
  495. [*] http://www.respectwashington.us/rwhome.html
  496. [*] http://www.respectwashington.us/Spokane Appellant Opening Brief.pdf
  497. [*] http://www.respectwashington.us/studies-and-reports/FAIRCostStudyWA2012.pdf
  498. [*] http://www.respectwashington.us/support.html
  499. [*] http://www.respectwashington.us/testimonials.html
  500. [*] http://www.respectwashington.us/volunteer.html
  501. [*] http://www.respectwashington.us/whyweneed.html
  502. [*] http://www.thesocialcontract.com/reports/eitc_2011apr/earned-income-tax-credit-2011apr.html
  503. [*] http://www.uscis.gov/portal/site/uscis/menuitem.5af9bb95919f35e66f614176543f6d1a/?vgnextoid=31b3ab0a43b5d010VgnVCM10000048f3d6a1RCRD&vgnextchannel=db029c7755cb9010VgnVCM10000045f3d6a1RCRD
  504. [*] http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  505. [*] http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=75bce2e261405110VgnVCM1000004718190aRCRD&vgnextchannel=75bce2e261405110VgnVCM1000004718190aRCRD
  506. [INFO] Shodan detected the following opened ports on 65.49.16.26:
  507. [*] 1
  508. [*] 110
  509. [*] 143
  510. [*] 25
  511. [*] 4
  512. [*] 443
  513. [*] 465
  514. [*] 587
  515. [*] 80
  516. [*] 995
  517. [INFO] ------VirusTotal SECTION------
  518. [INFO] VirusTotal passive DNS only stores address records. The following domains resolved to the given IP address:
  519. [INFO] Latest URLs hosted in this IP address detected by at least one URL scanner or malicious URL dataset:
  520. [INFO] Latest files that are not detected by any antivirus solution and were downloaded by VirusTotal from the IP address provided:
  521. [INFO] ------Alexa Rank SECTION------
  522. [INFO] Percent of Visitors Rank in Country:
  523. [INFO] Percent of Search Traffic:
  524. [INFO] Percent of Unique Visits:
  525. [INFO] Total Sites Linking In:
  526. [*] Total Sites
  527. [INFO] Useful links related to www.respectwashington.us - 65.49.16.26:
  528. [*] https://www.virustotal.com/pt/ip-address/65.49.16.26/information/
  529. [*] https://www.hybrid-analysis.com/search?host=65.49.16.26
  530. [*] https://www.shodan.io/host/65.49.16.26
  531. [*] https://www.senderbase.org/lookup/?search_string=65.49.16.26
  532. [*] https://www.alienvault.com/open-threat-exchange/ip/65.49.16.26
  533. [*] http://pastebin.com/search?q=65.49.16.26
  534. [*] http://urlquery.net/search.php?q=65.49.16.26
  535. [*] http://www.alexa.com/siteinfo/www.respectwashington.us
  536. [*] http://www.google.com/safebrowsing/diagnostic?site=www.respectwashington.us
  537. [*] https://censys.io/ipv4/65.49.16.26
  538. [*] https://www.abuseipdb.com/check/65.49.16.26
  539. [*] https://urlscan.io/search/#65.49.16.26
  540. [*] https://github.com/search?q=65.49.16.26&type=Code
  541. [INFO] Useful links related to AS6939 - 65.49.0.0/17:
  542. [*] http://www.google.com/safebrowsing/diagnostic?site=AS:6939
  543. [*] https://www.senderbase.org/lookup/?search_string=65.49.0.0/17
  544. [*] http://bgp.he.net/AS6939
  545. [*] https://stat.ripe.net/AS6939
  546. [INFO] Date: 22/10/19 | Time: 09:04:07
  547. [INFO] Total time: 1 minute(s) and 21 second(s)
  548. ######################################################################################################################################
  549. Trying "respectwashington.us"
  550. ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 46465
  551. ;; flags: qr rd ra; QUERY: 1, ANSWER: 8, AUTHORITY: 5, ADDITIONAL: 10
  552.  
  553. ;; QUESTION SECTION:
  554. ;respectwashington.us. IN ANY
  555.  
  556. ;; ANSWER SECTION:
  557. respectwashington.us. 43200 IN MX 1 respectwashington.us.
  558. respectwashington.us. 43200 IN SOA ns1.he.net. hostmaster.he.net. 200808098 10800 1800 604800 86400
  559. respectwashington.us. 43200 IN A 65.49.16.26
  560. respectwashington.us. 7200 IN NS ns1.he.net.
  561. respectwashington.us. 7200 IN NS ns5.he.net.
  562. respectwashington.us. 7200 IN NS ns2.he.net.
  563. respectwashington.us. 7200 IN NS ns4.he.net.
  564. respectwashington.us. 7200 IN NS ns3.he.net.
  565.  
  566. ;; AUTHORITY SECTION:
  567. respectwashington.us. 7200 IN NS ns3.he.net.
  568. respectwashington.us. 7200 IN NS ns1.he.net.
  569. respectwashington.us. 7200 IN NS ns5.he.net.
  570. respectwashington.us. 7200 IN NS ns2.he.net.
  571. respectwashington.us. 7200 IN NS ns4.he.net.
  572.  
  573. ;; ADDITIONAL SECTION:
  574. respectwashington.us. 43200 IN A 65.49.16.26
  575. ns2.he.net. 5670 IN A 216.218.131.2
  576. ns2.he.net. 5670 IN AAAA 2001:470:200::2
  577. ns5.he.net. 5670 IN A 216.66.80.18
  578. ns5.he.net. 5670 IN AAAA 2001:470:500::2
  579. ns3.he.net. 4649 IN A 216.218.132.2
  580. ns3.he.net. 5670 IN AAAA 2001:470:300::2
  581. ns1.he.net. 5670 IN A 216.218.130.2
  582. ns1.he.net. 5670 IN AAAA 2001:470:100::2
  583. ns4.he.net. 11042 IN A 216.66.1.2
  584.  
  585. Received 491 bytes from 2001:18c0:121:6900:724f:b8ff:fefd:5b6a#53 in 101 ms
  586. #######################################################################################################################################
  587. ; <<>> DiG 9.11.5-P4-5.1+b1-Debian <<>> +trace respectwashington.us
  588. ;; global options: +cmd
  589. . 84866 IN NS j.root-servers.net.
  590. . 84866 IN NS c.root-servers.net.
  591. . 84866 IN NS i.root-servers.net.
  592. . 84866 IN NS g.root-servers.net.
  593. . 84866 IN NS b.root-servers.net.
  594. . 84866 IN NS k.root-servers.net.
  595. . 84866 IN NS m.root-servers.net.
  596. . 84866 IN NS f.root-servers.net.
  597. . 84866 IN NS e.root-servers.net.
  598. . 84866 IN NS l.root-servers.net.
  599. . 84866 IN NS d.root-servers.net.
  600. . 84866 IN NS h.root-servers.net.
  601. . 84866 IN NS a.root-servers.net.
  602. . 84866 IN RRSIG NS 8 0 518400 20191104050000 20191022040000 22545 . V7L2dB4F79xO9lx8hztPB86SYLY35tcInKqSk8aLbD8fvpqah4DWHoDe 2xbqt74EJPvBDnnxjmyB4tREMvAE2pcJYRcXgEXojn3yhrQSsQ3jFs5F PjYgRw0D2xB2yHw8rQ4l16CD7aEVgG+FefFGqt3W+daAM1PO+IYKW0wG ZlUdJNJSe51nOWemZldGoqlKha/wznCidzCCANqSG6ZPNuvTOgIFhRZB drsNOA4MFLWYNYyQpPWFiqtgkB5nZx3ACgXg/VY6Jy/blXbeM75bse+V 1878EtXXH4TdBRmzNhEyyy6uJa9iO9OjpIn2SDrdVRzSlWOKvOH+Pw8i KLe1JA==
  603. ;; Received 525 bytes from 185.93.180.131#53(185.93.180.131) in 272 ms
  604.  
  605. us. 172800 IN NS a.cctld.us.
  606. us. 172800 IN NS b.cctld.us.
  607. us. 172800 IN NS c.cctld.us.
  608. us. 172800 IN NS e.cctld.us.
  609. us. 172800 IN NS f.cctld.us.
  610. us. 172800 IN NS k.cctld.us.
  611. us. 86400 IN DS 39361 8 1 09E0AF18E54225F87A3B10E95C9DA3F1E58E5B59
  612. us. 86400 IN DS 39361 8 2 415D8DAE2299D2C2DAB7458ED4C715268CD2EB3AE3C1C249FF1696BF 62112201
  613. us. 86400 IN RRSIG DS 8 1 86400 20191104050000 20191022040000 22545 . iwNdGw1iFmnlQhMmmiTvSmYrvodp8SP96yzRKIQIIGjHcoNjhjPyuCtK 0XV6r/hXQdDALEmrOYoXXm7bm4mxMUAPzELZx53gJqZnLuNSakJSSfSD v3+V7RkjAyDqsFbo8T8xqogYq5gdyfEgywvqM2AlTlCqLDKnq+PWGZSS hs5H2PRFMoBspEeeJDoX7OyaxmOqgZu7xntkkV3BLuj7TaasFeYF7+FH lLkiQIVpoQ7ZjP9V/EYYAEpD4yvfJFYEHEJ8tDQtrfQLuO8c9BrislHb 1N+yXPjCLmzI1qeyGZmCI4EPlzT6i35DOe4GK+NtnAabenxNxdG3+NOi BjnDYA==
  614. ;; Received 702 bytes from 192.5.5.241#53(f.root-servers.net) in 235 ms
  615.  
  616. respectwashington.us. 7200 IN NS ns1.he.net.
  617. respectwashington.us. 7200 IN NS ns2.he.net.
  618. 04mlcpvb7mqd2gpuv2rh2rcgskp50v81.us. 86400 IN NSEC3 1 1 1 5BF34C13 056DH6NLLM6G7RO2Q55AA17ELRSE74UF NS SOA RRSIG DNSKEY NSEC3PARAM
  619. 04mlcpvb7mqd2gpuv2rh2rcgskp50v81.us. 86400 IN RRSIG NSEC3 8 2 86400 20191120004524 20191021004231 8985 us. HBYCNylHalmWp7B1QC9PEcoa0noKP+lJdunkL9MFmGqTB/V7U+R797ki NIFoLyjrlUpC8QXAEJJCUued6hPidMcp37LmEUOOg4J5KkgBR/q+f6A1 BwWRAhj+4HU1v6OXZPOPo2sP/lxYS4uDP+7Sfnps/rMRqXgsvVE/Z7Eu Ja4B/a8NF6KhwYfLftWfYlgiC3GBcEne+lFaWLFxl7W7Lw==
  620. sv29nkrum42r9gdc10fr6govqbv26ibh.us. 86400 IN NSEC3 1 1 1 5BF34C13 SVCMABQOVKNKUD1ODDO1FGH255K00IS1 NS DS RRSIG
  621. sv29nkrum42r9gdc10fr6govqbv26ibh.us. 86400 IN RRSIG NSEC3 8 2 86400 20191120032006 20191021022206 8985 us. i9QZRvSwQL+a4v7Ur23kXNeoalK80hyCJUyRlskjq75CPl343NoN5USk Hc/emaawPWw04sAw1LlxIOZZ4D0cI0TscpJY3voblXF9k9s4EseahHuw slUfO7MpsB2l5WlImpgbkySreSZGFzCAwOh3RZzMwNTzcvLmIe4YggDe PL2RkVfFIw9bH0iCyn7gnaRBmWksNjzFm78G/cuHaB3uvg==
  622. ;; Received 674 bytes from 156.154.125.70#53(b.cctld.us) in 238 ms
  623.  
  624. respectwashington.us. 86400 IN A 65.49.16.26
  625. ;; Received 65 bytes from 216.218.130.2#53(ns1.he.net) in 299 ms
  626. #######################################################################################################################################
  627. [*] Performing General Enumeration of Domain: respectwashington.us
  628. [-] DNSSEC is not configured for respectwashington.us
  629. [*] SOA ns1.he.net 216.218.130.2
  630. [*] NS ns2.he.net 216.218.131.2
  631. [*] Bind Version for 216.218.131.2 Served by PowerDNS - https://www.powerdns.com/
  632. [*] NS ns2.he.net 2001:470:200::2
  633. [*] Bind Version for 2001:470:200::2 Served by PowerDNS - https://www.powerdns.com/
  634. [*] NS ns1.he.net 216.218.130.2
  635. [*] Bind Version for 216.218.130.2 Served by PowerDNS - https://www.powerdns.com/
  636. [*] NS ns1.he.net 2001:470:100::2
  637. [*] Bind Version for 2001:470:100::2 Served by PowerDNS - https://www.powerdns.com/
  638. [*] MX respectwashington.us 65.49.16.26
  639. [*] A respectwashington.us 65.49.16.26
  640. [*] Enumerating SRV Records
  641. [-] No SRV Records Found for respectwashington.us
  642. [+] 0 Records Found
  643. ######################################################################################################################################
  644. [*] Processing domain respectwashington.us
  645. [*] Using system resolvers ['185.93.180.131', '194.187.251.67', '38.132.106.139', '192.168.0.1', '2001:18c0:121:6900:724f:b8ff:fefd:5b6a']
  646. [+] Getting nameservers
  647. 216.218.131.2 - ns2.he.net
  648. 216.218.130.2 - ns1.he.net
  649. [-] Zone transfer failed
  650.  
  651. [+] MX records found, added to target list
  652. 1 respectwashington.us.
  653.  
  654. [*] Scanning respectwashington.us for A records
  655. 65.49.16.26 - respectwashington.us
  656. 65.49.16.26 - ftp.respectwashington.us
  657. 65.49.16.26 - mail.respectwashington.us
  658. 65.49.16.26 - www.respectwashington.us
  659. ######################################################################################################################################
  660.  
  661.  
  662. AVAILABLE PLUGINS
  663. -----------------
  664.  
  665. CompressionPlugin
  666. OpenSslCipherSuitesPlugin
  667. HeartbleedPlugin
  668. RobotPlugin
  669. CertificateInfoPlugin
  670. FallbackScsvPlugin
  671. OpenSslCcsInjectionPlugin
  672. HttpHeadersPlugin
  673. SessionRenegotiationPlugin
  674. SessionResumptionPlugin
  675. EarlyDataPlugin
  676.  
  677.  
  678.  
  679. CHECKING HOST(S) AVAILABILITY
  680. -----------------------------
  681.  
  682. 65.49.16.26:443 => 65.49.16.26
  683.  
  684.  
  685.  
  686.  
  687. SCAN RESULTS FOR 65.49.16.26:443 - 65.49.16.26
  688. ----------------------------------------------
  689.  
  690. * Deflate Compression:
  691. OK - Compression disabled
  692.  
  693. * OpenSSL Heartbleed:
  694. OK - Not vulnerable to Heartbleed
  695.  
  696. * Certificate Information:
  697. Content
  698. SHA1 Fingerprint: f98a5fd3ac3822786c2f81cf471ae5b94540febf
  699. Common Name: respectwashington.us
  700. Issuer: Let's Encrypt Authority X3
  701. Serial Number: 394679518299288580990689807411278660178273
  702. Not Before: 2019-09-23 10:50:34
  703. Not After: 2019-12-22 10:50:34
  704. Signature Algorithm: sha256
  705. Public Key Algorithm: RSA
  706. Key Size: 2048
  707. Exponent: 65537 (0x10001)
  708. DNS Subject Alternative Names: ['keller4america.us', 'mail.respectwashington.us', 'respectwashington.us', 'www.keller4america.us', 'www.respectwashington.us']
  709.  
  710. Trust
  711. Hostname Validation: FAILED - Certificate does NOT match 65.49.16.26
  712. Android CA Store (9.0.0_r9): OK - Certificate is trusted
  713. Apple CA Store (iOS 12, macOS 10.14, watchOS 5, and tvOS 12):OK - Certificate is trusted
  714. Java CA Store (jdk-12.0.1): OK - Certificate is trusted
  715. Mozilla CA Store (2019-03-14): OK - Certificate is trusted
  716. Windows CA Store (2019-05-27): OK - Certificate is trusted
  717. Symantec 2018 Deprecation: WARNING: Certificate distrusted by Google and Mozilla on September 2018
  718. Received Chain: respectwashington.us --> Let's Encrypt Authority X3
  719. Verified Chain: respectwashington.us --> Let's Encrypt Authority X3 --> DST Root CA X3
  720. Received Chain Contains Anchor: OK - Anchor certificate not sent
  721. Received Chain Order: OK - Order is valid
  722. Verified Chain contains SHA1: OK - No SHA1-signed certificate in the verified certificate chain
  723.  
  724. Extensions
  725. OCSP Must-Staple: NOT SUPPORTED - Extension not found
  726. Certificate Transparency: WARNING - Only 2 SCTs included but Google recommends 3 or more
  727.  
  728. OCSP Stapling
  729. NOT SUPPORTED - Server did not send back an OCSP response
  730.  
  731. * TLSV1_1 Cipher Suites:
  732. Forward Secrecy OK - Supported
  733. RC4 OK - Not Supported
  734.  
  735. Preferred:
  736. None - Server followed client cipher suite preference.
  737. Accepted:
  738. TLS_RSA_WITH_CAMELLIA_256_CBC_SHA 256 bits HTTP 200 OK
  739. TLS_RSA_WITH_CAMELLIA_128_CBC_SHA 128 bits HTTP 200 OK
  740. TLS_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  741. TLS_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  742. TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  743. TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  744. TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA 256 bits HTTP 200 OK
  745. TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA 128 bits HTTP 200 OK
  746. TLS_DHE_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  747. TLS_DHE_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  748.  
  749. * TLSV1_2 Cipher Suites:
  750. Forward Secrecy OK - Supported
  751. RC4 OK - Not Supported
  752.  
  753. Preferred:
  754. None - Server followed client cipher suite preference.
  755. Accepted:
  756. TLS_RSA_WITH_CAMELLIA_256_CBC_SHA 256 bits HTTP 200 OK
  757. TLS_RSA_WITH_CAMELLIA_128_CBC_SHA 128 bits HTTP 200 OK
  758. TLS_RSA_WITH_AES_256_GCM_SHA384 256 bits HTTP 200 OK
  759. TLS_RSA_WITH_AES_256_CBC_SHA256 256 bits HTTP 200 OK
  760. TLS_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  761. TLS_RSA_WITH_AES_128_GCM_SHA256 128 bits HTTP 200 OK
  762. TLS_RSA_WITH_AES_128_CBC_SHA256 128 bits HTTP 200 OK
  763. TLS_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  764. TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 256 bits HTTP 200 OK
  765. TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 256 bits HTTP 200 OK
  766. TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  767. TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 128 bits HTTP 200 OK
  768. TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 128 bits HTTP 200 OK
  769. TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  770. TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA 256 bits HTTP 200 OK
  771. TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA 128 bits HTTP 200 OK
  772. TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 256 bits HTTP 200 OK
  773. TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 256 bits HTTP 200 OK
  774. TLS_DHE_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  775. TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 128 bits HTTP 200 OK
  776. TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 128 bits HTTP 200 OK
  777. TLS_DHE_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  778.  
  779. * Downgrade Attacks:
  780. TLS_FALLBACK_SCSV: OK - Supported
  781.  
  782. * OpenSSL CCS Injection:
  783. OK - Not vulnerable to OpenSSL CCS injection
  784.  
  785. * SSLV3 Cipher Suites:
  786. Server rejected all cipher suites.
  787.  
  788. * SSLV2 Cipher Suites:
  789. Server rejected all cipher suites.
  790.  
  791. * TLSV1 Cipher Suites:
  792. Forward Secrecy OK - Supported
  793. RC4 OK - Not Supported
  794.  
  795. Preferred:
  796. None - Server followed client cipher suite preference.
  797. Accepted:
  798. TLS_RSA_WITH_CAMELLIA_256_CBC_SHA 256 bits HTTP 200 OK
  799. TLS_RSA_WITH_CAMELLIA_128_CBC_SHA 128 bits HTTP 200 OK
  800. TLS_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  801. TLS_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  802. TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  803. TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  804. TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA 256 bits HTTP 200 OK
  805. TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA 128 bits HTTP 200 OK
  806. TLS_DHE_RSA_WITH_AES_256_CBC_SHA 256 bits HTTP 200 OK
  807. TLS_DHE_RSA_WITH_AES_128_CBC_SHA 128 bits HTTP 200 OK
  808.  
  809. * TLS 1.2 Session Resumption Support:
  810. With Session IDs: OK - Supported (5 successful, 0 failed, 0 errors, 5 total attempts).
  811. With TLS Tickets: OK - Supported
  812.  
  813. * Session Renegotiation:
  814. Client-initiated Renegotiation: OK - Rejected
  815. Secure Renegotiation: OK - Supported
  816.  
  817. * TLSV1_3 Cipher Suites:
  818. Server rejected all cipher suites.
  819.  
  820. * ROBOT Attack:
  821. OK - Not vulnerable
  822.  
  823.  
  824. SCAN COMPLETED IN 44.02 S
  825. -------------------------
  826. ######################################################################################################################################
  827. Domains still to check: 1
  828. Checking if the hostname respectwashington.us. given is in fact a domain...
  829.  
  830. Analyzing domain: respectwashington.us.
  831. Checking NameServers using system default resolver...
  832. IP: 216.218.131.2 (United States)
  833. HostName: ns2.he.net Type: NS
  834. HostName: ns2.he.net Type: PTR
  835. IP: 216.218.130.2 (United States)
  836. HostName: ns1.he.net Type: NS
  837. HostName: ns1.he.net Type: PTR
  838.  
  839. Checking MailServers using system default resolver...
  840. IP: 65.49.16.26 (United States)
  841. HostName: respectwashington.us Type: MX
  842. HostName: respectwashington.us Type: PTR
  843.  
  844. Checking the zone transfer for each NS... (if this takes more than 10 seconds, just hit CTRL-C and it will continue. Bug in the libs)
  845. No zone transfer found on nameserver 216.218.131.2
  846. No zone transfer found on nameserver 216.218.130.2
  847.  
  848. Checking SPF record...
  849. No SPF record
  850.  
  851. Checking 192 most common hostnames using system default resolver...
  852. IP: 65.49.16.26 (United States)
  853. HostName: respectwashington.us Type: MX
  854. HostName: respectwashington.us Type: PTR
  855. HostName: www.respectwashington.us. Type: A
  856. IP: 65.49.16.26 (United States)
  857. HostName: respectwashington.us Type: MX
  858. HostName: respectwashington.us Type: PTR
  859. HostName: www.respectwashington.us. Type: A
  860. HostName: ftp.respectwashington.us. Type: A
  861. IP: 65.49.16.26 (United States)
  862. HostName: respectwashington.us Type: MX
  863. HostName: respectwashington.us Type: PTR
  864. HostName: www.respectwashington.us. Type: A
  865. HostName: ftp.respectwashington.us. Type: A
  866. HostName: mail.respectwashington.us. Type: A
  867.  
  868. Checking with nmap the reverse DNS hostnames of every <ip>/24 netblock using system default resolver...
  869. Checking netblock 216.218.131.0
  870. Checking netblock 65.49.16.0
  871. Checking netblock 216.218.130.0
  872.  
  873. Searching for respectwashington.us. emails in Google
  874.  
  875. Checking 3 active hosts using nmap... (nmap -sn -n -v -PP -PM -PS80,25 -PA -PY -PU53,40125 -PE --reason <ip> -oA <output_directory>/nmap/<ip>.sn)
  876. Host 216.218.131.2 is up (echo-reply ttl 57)
  877. Host 65.49.16.26 is up (reset ttl 64)
  878. Host 216.218.130.2 is up (reset ttl 64)
  879.  
  880. Checking ports on every active host using nmap... (nmap -O --reason --webxml --traceroute -sS -sV -sC -Pn -n -v -F <ip> -oA <output_directory>/nmap/<ip>)
  881. Scanning ip 216.218.131.2 (ns2.he.net (PTR)):
  882. 53/tcp open domain syn-ack ttl 57 PowerDNS 3.3 or later
  883. | dns-nsid:
  884. | NSID: ns2.he.net (6e73322e68652e6e6574)
  885. | id.server: ns2.he.net
  886. |_ bind.version: Served by PowerDNS - https://www.powerdns.com/
  887. Scanning ip 65.49.16.26 (mail.respectwashington.us.):
  888. 80/tcp open http syn-ack ttl 53 Apache httpd 2.4.18 ((Ubuntu))
  889. | http-methods:
  890. |_ Supported Methods: GET HEAD POST OPTIONS
  891. |_http-server-header: Apache/2.4.18 (Ubuntu)
  892. |_http-title: RespectWashington
  893. 110/tcp open pop3 syn-ack ttl 53 Dovecot pop3d
  894. |_pop3-capabilities: TOP CAPA UIDL USER PIPELINING SASL(PLAIN LOGIN) RESP-CODES STLS AUTH-RESP-CODE
  895. |_ssl-date: TLS randomness does not represent time
  896. 143/tcp open imap syn-ack ttl 53 Dovecot imapd
  897. |_imap-capabilities: STARTTLS AUTH=PLAIN capabilities more listed IMAP4rev1 Pre-login LOGIN-REFERRALS SASL-IR OK post-login AUTH=LOGINA0001 IDLE have ENABLE ID LITERAL+
  898. |_ssl-date: TLS randomness does not represent time
  899. 443/tcp open ssl/http syn-ack ttl 53 Apache httpd 2.4.18
  900. | http-methods:
  901. |_ Supported Methods: GET HEAD POST OPTIONS
  902. |_http-server-header: Apache/2.4.18 (Ubuntu)
  903. |_http-title: 400 Bad Request
  904. | ssl-cert: Subject: commonName=respectwashington.us
  905. | Subject Alternative Name: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  906. | Issuer: commonName=Let's Encrypt Authority X3/organizationName=Let's Encrypt/countryName=US
  907. | Public Key type: rsa
  908. | Public Key bits: 2048
  909. | Signature Algorithm: sha256WithRSAEncryption
  910. | Not valid before: 2019-09-23T10:50:34
  911. | Not valid after: 2019-12-22T10:50:34
  912. | MD5: 9c61 f3dc 6487 544c de9e 4197 e08a 5fa7
  913. |_SHA-1: f98a 5fd3 ac38 2278 6c2f 81cf 471a e5b9 4540 febf
  914. |_ssl-date: TLS randomness does not represent time
  915. | tls-alpn:
  916. |_ http/1.1
  917. 465/tcp open ssl/smtp syn-ack ttl 53 Postfix smtpd
  918. |_smtp-commands: Couldn't establish connection on port 465
  919. | ssl-cert: Subject: commonName=respectwashington.us
  920. | Subject Alternative Name: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  921. | Issuer: commonName=Let's Encrypt Authority X3/organizationName=Let's Encrypt/countryName=US
  922. | Public Key type: rsa
  923. | Public Key bits: 2048
  924. | Signature Algorithm: sha256WithRSAEncryption
  925. | Not valid before: 2019-09-23T10:50:34
  926. | Not valid after: 2019-12-22T10:50:34
  927. | MD5: 9c61 f3dc 6487 544c de9e 4197 e08a 5fa7
  928. |_SHA-1: f98a 5fd3 ac38 2278 6c2f 81cf 471a e5b9 4540 febf
  929. |_ssl-date: TLS randomness does not represent time
  930. 587/tcp open smtp syn-ack ttl 53 Postfix smtpd
  931. |_smtp-commands: respectwashington.us Hello nmap.scanme.org, STARTTLS, HELP,
  932. | ssl-cert: Subject: commonName=respectwashington.us
  933. | Subject Alternative Name: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  934. | Issuer: commonName=Let's Encrypt Authority X3/organizationName=Let's Encrypt/countryName=US
  935. | Public Key type: rsa
  936. | Public Key bits: 2048
  937. | Signature Algorithm: sha256WithRSAEncryption
  938. | Not valid before: 2019-09-23T10:50:34
  939. | Not valid after: 2019-12-22T10:50:34
  940. | MD5: 9c61 f3dc 6487 544c de9e 4197 e08a 5fa7
  941. |_SHA-1: f98a 5fd3 ac38 2278 6c2f 81cf 471a e5b9 4540 febf
  942. |_ssl-date: TLS randomness does not represent time
  943. 993/tcp open ssl/imaps? syn-ack ttl 53
  944. |_ssl-date: TLS randomness does not represent time
  945. 995/tcp open ssl/pop3s? syn-ack ttl 53
  946. |_ssl-date: TLS randomness does not represent time
  947. OS Info: Service Info: Hosts: www.respectwashington.us, respectwashington.us
  948. Scanning ip 216.218.130.2 (ns1.he.net (PTR)):
  949. 53/tcp open domain syn-ack ttl 57 PowerDNS 3.3 or later
  950. | dns-nsid:
  951. | NSID: ns1.he.net (6e73312e68652e6e6574)
  952. | id.server: ns1.he.net
  953. |_ bind.version: Served by PowerDNS - https://www.powerdns.com/
  954. WebCrawling domain's web servers... up to 50 max links.
  955.  
  956. + URL to crawl: http://ftp.respectwashington.us.
  957. + Date: 2019-10-22
  958.  
  959. + Crawling URL: http://ftp.respectwashington.us.:
  960. + Links:
  961. + Crawling http://ftp.respectwashington.us.
  962. + Crawling http://ftp.respectwashington.us./rwhome.html
  963. + Crawling http://ftp.respectwashington.us./whyweneed.html
  964. + Crawling http://ftp.respectwashington.us./petition.html
  965. + Crawling http://ftp.respectwashington.us./support.html
  966. + Crawling http://ftp.respectwashington.us./donate.html
  967. + Crawling http://ftp.respectwashington.us./testimonials.html
  968. + Crawling http://ftp.respectwashington.us./legal-action.html
  969. + Crawling http://ftp.respectwashington.us./volunteer.html
  970. + Crawling http://ftp.respectwashington.us./contact.html
  971. + Crawling http://ftp.respectwashington.us./MarchPetition (404 Not Found)
  972. + Crawling http://ftp.respectwashington.us./
  973. + Searching for directories...
  974. - Found: http://ftp.respectwashington.us./rw-images/
  975. - Found: http://ftp.respectwashington.us./studies-and-reports/
  976. - Found: http://ftp.respectwashington.us./legal-documents/
  977. + Searching open folders...
  978. - http://ftp.respectwashington.us./rw-images/ (403 Forbidden)
  979. - http://ftp.respectwashington.us./studies-and-reports/ (403 Forbidden)
  980. - http://ftp.respectwashington.us./legal-documents/ (403 Forbidden)
  981. + Crawl finished successfully.
  982. ----------------------------------------------------------------------
  983. Summary of http://http://ftp.respectwashington.us.
  984. ----------------------------------------------------------------------
  985. + Links crawled:
  986. - http://ftp.respectwashington.us.
  987. - http://ftp.respectwashington.us./
  988. - http://ftp.respectwashington.us./MarchPetition (404 Not Found)
  989. - http://ftp.respectwashington.us./contact.html
  990. - http://ftp.respectwashington.us./donate.html
  991. - http://ftp.respectwashington.us./legal-action.html
  992. - http://ftp.respectwashington.us./petition.html
  993. - http://ftp.respectwashington.us./rwhome.html
  994. - http://ftp.respectwashington.us./support.html
  995. - http://ftp.respectwashington.us./testimonials.html
  996. - http://ftp.respectwashington.us./volunteer.html
  997. - http://ftp.respectwashington.us./whyweneed.html
  998. Total links crawled: 12
  999.  
  1000. + Links to files found:
  1001. - http://ftp.respectwashington.us./001 Diaz-Garcia Child Molest INFORMATION.pdf
  1002. - http://ftp.respectwashington.us./001 Diaz-Garcia Rape INFORMATION.pdf
  1003. - http://ftp.respectwashington.us./001 Gomez v Spokane Complaint.pdf
  1004. - http://ftp.respectwashington.us./022 Gomez v Spokane Status Report.pdf
  1005. - http://ftp.respectwashington.us./BurienPolice2016Data.pdf
  1006. - http://ftp.respectwashington.us./CheckBackInMarch.pdf
  1007. - http://ftp.respectwashington.us./DoC2014CrimeIllegals.jpg
  1008. - http://ftp.respectwashington.us./DoC2014CrimeIllegals.pdf
  1009. - http://ftp.respectwashington.us./DoJ Incarcerated Aliens 2017.pdf
  1010. - http://ftp.respectwashington.us./FAIRWA2012.pdf
  1011. - http://ftp.respectwashington.us./GomezSettlement SR 2018.pdf
  1012. - http://ftp.respectwashington.us./Oregoneo0722.pdf
  1013. - http://ftp.respectwashington.us./Spokane Appellant Opening Brief.pdf
  1014. - http://ftp.respectwashington.us./how-to-ArmstrongV2.ppt
  1015. - http://ftp.respectwashington.us./legal-documents/DECLARSTEPHENSAG4-18-11424.pdf
  1016. - http://ftp.respectwashington.us./legal-documents/GAO2005-478.pdf
  1017. - http://ftp.respectwashington.us./legal-documents/KingBRIEFOPToMSJApr18.pdf
  1018. - http://ftp.respectwashington.us./legal-documents/KingDefenseFeb2011.pdf
  1019. - http://ftp.respectwashington.us./legal-documents/KingDismissMSJMar2011.pdf
  1020. - http://ftp.respectwashington.us./legal-documents/KingMSJDismissDeclMar2011.pdf
  1021. - http://ftp.respectwashington.us./legal-documents/KingReplySupportDismissMSJApr25.pdf
  1022. - http://ftp.respectwashington.us./legal-documents/ORDERGRANTINGKingMSJDis5-10-11.pdf
  1023. - http://ftp.respectwashington.us./legal-documents/RingDeclareMar2011.pdf
  1024. - http://ftp.respectwashington.us./legal-documents/RingMSJMar2011.pdf
  1025. - http://ftp.respectwashington.us./legal-documents/RingOPToKingMSJDisApr18.pdf
  1026. - http://ftp.respectwashington.us./legal-documents/RingPetitionNov2010.pdf
  1027. - http://ftp.respectwashington.us./legal-documents/RingReplySupportMSjApr25.pdf
  1028. - http://ftp.respectwashington.us./legal-documents/RingVRidgeMOTIONHEARING5-10-11.pdf
  1029. - http://ftp.respectwashington.us./legal-documents/RingVRidgeOralArgs4-29-11.PDF
  1030. - http://ftp.respectwashington.us./legal-documents/RingVRidgeOralDecTrans5-10-11.PDF
  1031. - http://ftp.respectwashington.us./legal-documents/Ringhofer v Ridge 679708.wma
  1032. - http://ftp.respectwashington.us./legal-documents/RinghoferPetitionReview2013.pdf
  1033. - http://ftp.respectwashington.us./legal-documents/SpakovskyHeritage28.pdf
  1034. - http://ftp.respectwashington.us./legal-documents/TexasHarrisCountyVoteID.pdf
  1035. - http://ftp.respectwashington.us./legal-documents/USHouseAdmin2006Bettencourt.pdf
  1036. - http://ftp.respectwashington.us./legal-documents/WSCADwyerOpinon12-10-12.pdf
  1037. - http://ftp.respectwashington.us./legal-documents/WSSCAppealOpenBrief-Amended9-6-11.pdf
  1038. - http://ftp.respectwashington.us./legal-documents/WSSCAppellantReplyBrief11-14-11.pdf
  1039. - http://ftp.respectwashington.us./legal-documents/WSSCDirectReviewGrounds6-24-11.pdf
  1040. - http://ftp.respectwashington.us./legal-documents/WSSCOrder88293-5RinghoferVRidge.pdf
  1041. - http://ftp.respectwashington.us./legal-documents/WSSCRespondentBrief10-5-11.pdf
  1042. - http://ftp.respectwashington.us./legal-documents/WSSCTransfer11-21-11.pdf
  1043. - http://ftp.respectwashington.us./rw-images/header-blue-new.jpg
  1044. - http://ftp.respectwashington.us./rw-images/keepLegal.gif
  1045. - http://ftp.respectwashington.us./rw-style.css
  1046. - http://ftp.respectwashington.us./studies-and-reports/11 03 08 FINAL whitepaper.pdf
  1047. - http://ftp.respectwashington.us./studies-and-reports/2005DHSHAudit6534.pdf
  1048. - http://ftp.respectwashington.us./studies-and-reports/BearStearnsUnderground.pdf
  1049. - http://ftp.respectwashington.us./studies-and-reports/FAIRCostStudyWA2012.pdf
  1050. - http://ftp.respectwashington.us./studies-and-reports/REAL ID Not National ID Card.pdf
  1051. Total links to files: 50
  1052.  
  1053. + Externals links found:
  1054. - http://community.seattletimes.nwsource.com/archive/?date=20060718&amp;slug=prisonbill18m
  1055. - http://irli.org/
  1056. - http://komonews.com/news/local/charges-woman-bludgeoned-raped-at-burien-apartment-complex
  1057. - http://seattletimes.nwsource.com/html/localnews/2014429238_apwaxgrillegalimmigrantslicenses3rdldwritethru.html
  1058. - http://seattletimes.nwsource.com/html/localnews/2014643197_wagetheft31m.html
  1059. - http://wei.secstate.wa.gov/osos/en/voterinformation/Pages/RegistertoVote.aspx
  1060. - http://www.alipac.us/
  1061. - http://www.burienwa.gov/AgendaCenter/ViewFile/Agenda/_04242017-336
  1062. - http://www.cis.org
  1063. - http://www.fairus.org/site/PageServer
  1064. - http://www.familysecuritymatters.org/
  1065. - http://www.familysecuritymatters.org/publications/id.9984/pub_detail.asp
  1066. - http://www.foxnews.com/us/2017/08/02/dreamer-accused-brutally-raping-woman-in-washington.html
  1067. - http://www.heritage.org/
  1068. - http://www.heritage.org/Research/HealthCare/wm1714.cfm
  1069. - http://www.heritage.org/Research/Immigration/bg1936.cfm
  1070. - http://www.heritage.org/Research/Immigration/lm25.cfm
  1071. - http://www.heritage.org/Research/Immigration/tst052107a.cfm
  1072. - http://www.ice.gov/worksite/
  1073. - http://www.irli.org/
  1074. - http://www.judicialwatch.org/wp-content/uploads/2014/02/Judicial-Watch-Special-Illegal-Immigration-Report.pdf
  1075. - http://www.kingcounty.gov/tools/inmate-lookup
  1076. - http://www.legion.org/documents/legion/pdf/illegalimmigration.pdf
  1077. - http://www.manhattaninstitute.org/tools/topical_index.php?topic=49
  1078. - http://www.minutemanhq.com/
  1079. - http://www.numbersusa.org/
  1080. - http://www.ojjpac.org/sanctuary.asp
  1081. - http://www.oregonir.org/
  1082. - http://www.securedbordersusa.com/
  1083. - http://www.sos.wa.gov/elections/initiatives/Initiatives.aspx?y=2014&t=p
  1084. - http://www.soundpolitics.com/
  1085. - http://www.soundpolitics.com/voterlookup.html
  1086. - http://www.thesocialcontract.com/
  1087. - http://www.thesocialcontract.com/artman2/publish/tsc_18_2/index.shtml
  1088. - http://www.thesocialcontract.com/events/press_conf_2009apr14.html
  1089. - http://www.thesocialcontract.com/reports/eitc_2011apr/earned-income-tax-credit-2011apr.html
  1090. - http://www.uscis.gov/portal/site/uscis/menuitem.5af9bb95919f35e66f614176543f6d1a/?vgnextoid=31b3ab0a43b5d010VgnVCM10000048f3d6a1RCRD&amp;vgnextchannel=db029c7755cb9010VgnVCM10000045f3d6a1RCRD
  1091. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&amp;vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  1092. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=75bce2e261405110VgnVCM1000004718190aRCRD&amp;vgnextchannel=75bce2e261405110VgnVCM1000004718190aRCRD
  1093. - http://www.wfir.org/
  1094. - http://www.wsp.wa.gov/crime/wanted.php
  1095. - http://zip4.usps.com/zip4/welcome.jsp
  1096. - https://cis.org/Jessica-Vaughan-Discusses-Illegal-Aliens-Prisons
  1097. Total external links: 43
  1098.  
  1099. + Email addresses found:
  1100. Total email address found: 0
  1101.  
  1102. + Directories found:
  1103. - http://ftp.respectwashington.us./legal-documents/ (403 Forbidden)
  1104. - http://ftp.respectwashington.us./rw-images/ (403 Forbidden)
  1105. - http://ftp.respectwashington.us./studies-and-reports/ (403 Forbidden)
  1106. Total directories: 3
  1107.  
  1108. + Directory indexing found:
  1109. Total directories with indexing: 0
  1110.  
  1111. ----------------------------------------------------------------------
  1112.  
  1113.  
  1114. + URL to crawl: http://www.respectwashington.us.
  1115. + Date: 2019-10-22
  1116.  
  1117. + Crawling URL: http://www.respectwashington.us.:
  1118. + Links:
  1119. + Crawling http://www.respectwashington.us.
  1120. + Crawling http://www.respectwashington.us./rwhome.html
  1121. + Crawling http://www.respectwashington.us./whyweneed.html
  1122. + Crawling http://www.respectwashington.us./petition.html
  1123. + Crawling http://www.respectwashington.us./support.html
  1124. + Crawling http://www.respectwashington.us./donate.html
  1125. + Crawling http://www.respectwashington.us./testimonials.html
  1126. + Crawling http://www.respectwashington.us./legal-action.html
  1127. + Crawling http://www.respectwashington.us./volunteer.html
  1128. + Crawling http://www.respectwashington.us./contact.html
  1129. + Crawling http://www.respectwashington.us./MarchPetition (404 Not Found)
  1130. + Crawling http://www.respectwashington.us./
  1131. + Searching for directories...
  1132. - Found: http://www.respectwashington.us./rw-images/
  1133. - Found: http://www.respectwashington.us./studies-and-reports/
  1134. - Found: http://www.respectwashington.us./legal-documents/
  1135. + Searching open folders...
  1136. - http://www.respectwashington.us./rw-images/ (403 Forbidden)
  1137. - http://www.respectwashington.us./studies-and-reports/ (403 Forbidden)
  1138. - http://www.respectwashington.us./legal-documents/ (403 Forbidden)
  1139. + Crawl finished successfully.
  1140. ----------------------------------------------------------------------
  1141. Summary of http://http://www.respectwashington.us.
  1142. ----------------------------------------------------------------------
  1143. + Links crawled:
  1144. - http://www.respectwashington.us.
  1145. - http://www.respectwashington.us./
  1146. - http://www.respectwashington.us./MarchPetition (404 Not Found)
  1147. - http://www.respectwashington.us./contact.html
  1148. - http://www.respectwashington.us./donate.html
  1149. - http://www.respectwashington.us./legal-action.html
  1150. - http://www.respectwashington.us./petition.html
  1151. - http://www.respectwashington.us./rwhome.html
  1152. - http://www.respectwashington.us./support.html
  1153. - http://www.respectwashington.us./testimonials.html
  1154. - http://www.respectwashington.us./volunteer.html
  1155. - http://www.respectwashington.us./whyweneed.html
  1156. Total links crawled: 12
  1157.  
  1158. + Links to files found:
  1159. - http://www.respectwashington.us./001 Diaz-Garcia Child Molest INFORMATION.pdf
  1160. - http://www.respectwashington.us./001 Diaz-Garcia Rape INFORMATION.pdf
  1161. - http://www.respectwashington.us./001 Gomez v Spokane Complaint.pdf
  1162. - http://www.respectwashington.us./022 Gomez v Spokane Status Report.pdf
  1163. - http://www.respectwashington.us./BurienPolice2016Data.pdf
  1164. - http://www.respectwashington.us./CheckBackInMarch.pdf
  1165. - http://www.respectwashington.us./DoC2014CrimeIllegals.jpg
  1166. - http://www.respectwashington.us./DoC2014CrimeIllegals.pdf
  1167. - http://www.respectwashington.us./DoJ Incarcerated Aliens 2017.pdf
  1168. - http://www.respectwashington.us./FAIRWA2012.pdf
  1169. - http://www.respectwashington.us./GomezSettlement SR 2018.pdf
  1170. - http://www.respectwashington.us./Oregoneo0722.pdf
  1171. - http://www.respectwashington.us./Spokane Appellant Opening Brief.pdf
  1172. - http://www.respectwashington.us./how-to-ArmstrongV2.ppt
  1173. - http://www.respectwashington.us./legal-documents/DECLARSTEPHENSAG4-18-11424.pdf
  1174. - http://www.respectwashington.us./legal-documents/GAO2005-478.pdf
  1175. - http://www.respectwashington.us./legal-documents/KingBRIEFOPToMSJApr18.pdf
  1176. - http://www.respectwashington.us./legal-documents/KingDefenseFeb2011.pdf
  1177. - http://www.respectwashington.us./legal-documents/KingDismissMSJMar2011.pdf
  1178. - http://www.respectwashington.us./legal-documents/KingMSJDismissDeclMar2011.pdf
  1179. - http://www.respectwashington.us./legal-documents/KingReplySupportDismissMSJApr25.pdf
  1180. - http://www.respectwashington.us./legal-documents/ORDERGRANTINGKingMSJDis5-10-11.pdf
  1181. - http://www.respectwashington.us./legal-documents/RingDeclareMar2011.pdf
  1182. - http://www.respectwashington.us./legal-documents/RingMSJMar2011.pdf
  1183. - http://www.respectwashington.us./legal-documents/RingOPToKingMSJDisApr18.pdf
  1184. - http://www.respectwashington.us./legal-documents/RingPetitionNov2010.pdf
  1185. - http://www.respectwashington.us./legal-documents/RingReplySupportMSjApr25.pdf
  1186. - http://www.respectwashington.us./legal-documents/RingVRidgeMOTIONHEARING5-10-11.pdf
  1187. - http://www.respectwashington.us./legal-documents/RingVRidgeOralArgs4-29-11.PDF
  1188. - http://www.respectwashington.us./legal-documents/RingVRidgeOralDecTrans5-10-11.PDF
  1189. - http://www.respectwashington.us./legal-documents/Ringhofer v Ridge 679708.wma
  1190. - http://www.respectwashington.us./legal-documents/RinghoferPetitionReview2013.pdf
  1191. - http://www.respectwashington.us./legal-documents/SpakovskyHeritage28.pdf
  1192. - http://www.respectwashington.us./legal-documents/TexasHarrisCountyVoteID.pdf
  1193. - http://www.respectwashington.us./legal-documents/USHouseAdmin2006Bettencourt.pdf
  1194. - http://www.respectwashington.us./legal-documents/WSCADwyerOpinon12-10-12.pdf
  1195. - http://www.respectwashington.us./legal-documents/WSSCAppealOpenBrief-Amended9-6-11.pdf
  1196. - http://www.respectwashington.us./legal-documents/WSSCAppellantReplyBrief11-14-11.pdf
  1197. - http://www.respectwashington.us./legal-documents/WSSCDirectReviewGrounds6-24-11.pdf
  1198. - http://www.respectwashington.us./legal-documents/WSSCOrder88293-5RinghoferVRidge.pdf
  1199. - http://www.respectwashington.us./legal-documents/WSSCRespondentBrief10-5-11.pdf
  1200. - http://www.respectwashington.us./legal-documents/WSSCTransfer11-21-11.pdf
  1201. - http://www.respectwashington.us./rw-images/header-blue-new.jpg
  1202. - http://www.respectwashington.us./rw-images/keepLegal.gif
  1203. - http://www.respectwashington.us./rw-style.css
  1204. - http://www.respectwashington.us./studies-and-reports/11 03 08 FINAL whitepaper.pdf
  1205. - http://www.respectwashington.us./studies-and-reports/2005DHSHAudit6534.pdf
  1206. - http://www.respectwashington.us./studies-and-reports/BearStearnsUnderground.pdf
  1207. - http://www.respectwashington.us./studies-and-reports/FAIRCostStudyWA2012.pdf
  1208. - http://www.respectwashington.us./studies-and-reports/REAL ID Not National ID Card.pdf
  1209. Total links to files: 50
  1210.  
  1211. + Externals links found:
  1212. - http://community.seattletimes.nwsource.com/archive/?date=20060718&amp;slug=prisonbill18m
  1213. - http://irli.org/
  1214. - http://komonews.com/news/local/charges-woman-bludgeoned-raped-at-burien-apartment-complex
  1215. - http://seattletimes.nwsource.com/html/localnews/2014429238_apwaxgrillegalimmigrantslicenses3rdldwritethru.html
  1216. - http://seattletimes.nwsource.com/html/localnews/2014643197_wagetheft31m.html
  1217. - http://wei.secstate.wa.gov/osos/en/voterinformation/Pages/RegistertoVote.aspx
  1218. - http://www.alipac.us/
  1219. - http://www.burienwa.gov/AgendaCenter/ViewFile/Agenda/_04242017-336
  1220. - http://www.cis.org
  1221. - http://www.fairus.org/site/PageServer
  1222. - http://www.familysecuritymatters.org/
  1223. - http://www.familysecuritymatters.org/publications/id.9984/pub_detail.asp
  1224. - http://www.foxnews.com/us/2017/08/02/dreamer-accused-brutally-raping-woman-in-washington.html
  1225. - http://www.heritage.org/
  1226. - http://www.heritage.org/Research/HealthCare/wm1714.cfm
  1227. - http://www.heritage.org/Research/Immigration/bg1936.cfm
  1228. - http://www.heritage.org/Research/Immigration/lm25.cfm
  1229. - http://www.heritage.org/Research/Immigration/tst052107a.cfm
  1230. - http://www.ice.gov/worksite/
  1231. - http://www.irli.org/
  1232. - http://www.judicialwatch.org/wp-content/uploads/2014/02/Judicial-Watch-Special-Illegal-Immigration-Report.pdf
  1233. - http://www.kingcounty.gov/tools/inmate-lookup
  1234. - http://www.legion.org/documents/legion/pdf/illegalimmigration.pdf
  1235. - http://www.manhattaninstitute.org/tools/topical_index.php?topic=49
  1236. - http://www.minutemanhq.com/
  1237. - http://www.numbersusa.org/
  1238. - http://www.ojjpac.org/sanctuary.asp
  1239. - http://www.oregonir.org/
  1240. - http://www.securedbordersusa.com/
  1241. - http://www.sos.wa.gov/elections/initiatives/Initiatives.aspx?y=2014&t=p
  1242. - http://www.soundpolitics.com/
  1243. - http://www.soundpolitics.com/voterlookup.html
  1244. - http://www.thesocialcontract.com/
  1245. - http://www.thesocialcontract.com/artman2/publish/tsc_18_2/index.shtml
  1246. - http://www.thesocialcontract.com/events/press_conf_2009apr14.html
  1247. - http://www.thesocialcontract.com/reports/eitc_2011apr/earned-income-tax-credit-2011apr.html
  1248. - http://www.uscis.gov/portal/site/uscis/menuitem.5af9bb95919f35e66f614176543f6d1a/?vgnextoid=31b3ab0a43b5d010VgnVCM10000048f3d6a1RCRD&amp;vgnextchannel=db029c7755cb9010VgnVCM10000045f3d6a1RCRD
  1249. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&amp;vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  1250. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=75bce2e261405110VgnVCM1000004718190aRCRD&amp;vgnextchannel=75bce2e261405110VgnVCM1000004718190aRCRD
  1251. - http://www.wfir.org/
  1252. - http://www.wsp.wa.gov/crime/wanted.php
  1253. - http://zip4.usps.com/zip4/welcome.jsp
  1254. - https://cis.org/Jessica-Vaughan-Discusses-Illegal-Aliens-Prisons
  1255. Total external links: 43
  1256.  
  1257. + Email addresses found:
  1258. Total email address found: 0
  1259.  
  1260. + Directories found:
  1261. - http://www.respectwashington.us./legal-documents/ (403 Forbidden)
  1262. - http://www.respectwashington.us./rw-images/ (403 Forbidden)
  1263. - http://www.respectwashington.us./studies-and-reports/ (403 Forbidden)
  1264. Total directories: 3
  1265.  
  1266. + Directory indexing found:
  1267. Total directories with indexing: 0
  1268.  
  1269. ----------------------------------------------------------------------
  1270.  
  1271.  
  1272. + URL to crawl: http://mail.respectwashington.us.
  1273. + Date: 2019-10-22
  1274.  
  1275. + Crawling URL: http://mail.respectwashington.us.:
  1276. + Links:
  1277. + Crawling http://mail.respectwashington.us.
  1278. + Crawling http://mail.respectwashington.us./rwhome.html
  1279. + Crawling http://mail.respectwashington.us./whyweneed.html
  1280. + Crawling http://mail.respectwashington.us./petition.html
  1281. + Crawling http://mail.respectwashington.us./support.html
  1282. + Crawling http://mail.respectwashington.us./donate.html
  1283. + Crawling http://mail.respectwashington.us./testimonials.html
  1284. + Crawling http://mail.respectwashington.us./legal-action.html
  1285. + Crawling http://mail.respectwashington.us./volunteer.html
  1286. + Crawling http://mail.respectwashington.us./contact.html
  1287. + Crawling http://mail.respectwashington.us./MarchPetition (404 Not Found)
  1288. + Crawling http://mail.respectwashington.us./
  1289. + Searching for directories...
  1290. - Found: http://mail.respectwashington.us./rw-images/
  1291. - Found: http://mail.respectwashington.us./studies-and-reports/
  1292. - Found: http://mail.respectwashington.us./legal-documents/
  1293. + Searching open folders...
  1294. - http://mail.respectwashington.us./rw-images/ (403 Forbidden)
  1295. - http://mail.respectwashington.us./studies-and-reports/ (403 Forbidden)
  1296. - http://mail.respectwashington.us./legal-documents/ (403 Forbidden)
  1297. + Crawl finished successfully.
  1298. ----------------------------------------------------------------------
  1299. Summary of http://http://mail.respectwashington.us.
  1300. ----------------------------------------------------------------------
  1301. + Links crawled:
  1302. - http://mail.respectwashington.us.
  1303. - http://mail.respectwashington.us./
  1304. - http://mail.respectwashington.us./MarchPetition (404 Not Found)
  1305. - http://mail.respectwashington.us./contact.html
  1306. - http://mail.respectwashington.us./donate.html
  1307. - http://mail.respectwashington.us./legal-action.html
  1308. - http://mail.respectwashington.us./petition.html
  1309. - http://mail.respectwashington.us./rwhome.html
  1310. - http://mail.respectwashington.us./support.html
  1311. - http://mail.respectwashington.us./testimonials.html
  1312. - http://mail.respectwashington.us./volunteer.html
  1313. - http://mail.respectwashington.us./whyweneed.html
  1314. Total links crawled: 12
  1315.  
  1316. + Links to files found:
  1317. - http://mail.respectwashington.us./001 Diaz-Garcia Child Molest INFORMATION.pdf
  1318. - http://mail.respectwashington.us./001 Diaz-Garcia Rape INFORMATION.pdf
  1319. - http://mail.respectwashington.us./001 Gomez v Spokane Complaint.pdf
  1320. - http://mail.respectwashington.us./022 Gomez v Spokane Status Report.pdf
  1321. - http://mail.respectwashington.us./BurienPolice2016Data.pdf
  1322. - http://mail.respectwashington.us./CheckBackInMarch.pdf
  1323. - http://mail.respectwashington.us./DoC2014CrimeIllegals.jpg
  1324. - http://mail.respectwashington.us./DoC2014CrimeIllegals.pdf
  1325. - http://mail.respectwashington.us./DoJ Incarcerated Aliens 2017.pdf
  1326. - http://mail.respectwashington.us./FAIRWA2012.pdf
  1327. - http://mail.respectwashington.us./GomezSettlement SR 2018.pdf
  1328. - http://mail.respectwashington.us./Oregoneo0722.pdf
  1329. - http://mail.respectwashington.us./Spokane Appellant Opening Brief.pdf
  1330. - http://mail.respectwashington.us./how-to-ArmstrongV2.ppt
  1331. - http://mail.respectwashington.us./legal-documents/DECLARSTEPHENSAG4-18-11424.pdf
  1332. - http://mail.respectwashington.us./legal-documents/GAO2005-478.pdf
  1333. - http://mail.respectwashington.us./legal-documents/KingBRIEFOPToMSJApr18.pdf
  1334. - http://mail.respectwashington.us./legal-documents/KingDefenseFeb2011.pdf
  1335. - http://mail.respectwashington.us./legal-documents/KingDismissMSJMar2011.pdf
  1336. - http://mail.respectwashington.us./legal-documents/KingMSJDismissDeclMar2011.pdf
  1337. - http://mail.respectwashington.us./legal-documents/KingReplySupportDismissMSJApr25.pdf
  1338. - http://mail.respectwashington.us./legal-documents/ORDERGRANTINGKingMSJDis5-10-11.pdf
  1339. - http://mail.respectwashington.us./legal-documents/RingDeclareMar2011.pdf
  1340. - http://mail.respectwashington.us./legal-documents/RingMSJMar2011.pdf
  1341. - http://mail.respectwashington.us./legal-documents/RingOPToKingMSJDisApr18.pdf
  1342. - http://mail.respectwashington.us./legal-documents/RingPetitionNov2010.pdf
  1343. - http://mail.respectwashington.us./legal-documents/RingReplySupportMSjApr25.pdf
  1344. - http://mail.respectwashington.us./legal-documents/RingVRidgeMOTIONHEARING5-10-11.pdf
  1345. - http://mail.respectwashington.us./legal-documents/RingVRidgeOralArgs4-29-11.PDF
  1346. - http://mail.respectwashington.us./legal-documents/RingVRidgeOralDecTrans5-10-11.PDF
  1347. - http://mail.respectwashington.us./legal-documents/Ringhofer v Ridge 679708.wma
  1348. - http://mail.respectwashington.us./legal-documents/RinghoferPetitionReview2013.pdf
  1349. - http://mail.respectwashington.us./legal-documents/SpakovskyHeritage28.pdf
  1350. - http://mail.respectwashington.us./legal-documents/TexasHarrisCountyVoteID.pdf
  1351. - http://mail.respectwashington.us./legal-documents/USHouseAdmin2006Bettencourt.pdf
  1352. - http://mail.respectwashington.us./legal-documents/WSCADwyerOpinon12-10-12.pdf
  1353. - http://mail.respectwashington.us./legal-documents/WSSCAppealOpenBrief-Amended9-6-11.pdf
  1354. - http://mail.respectwashington.us./legal-documents/WSSCAppellantReplyBrief11-14-11.pdf
  1355. - http://mail.respectwashington.us./legal-documents/WSSCDirectReviewGrounds6-24-11.pdf
  1356. - http://mail.respectwashington.us./legal-documents/WSSCOrder88293-5RinghoferVRidge.pdf
  1357. - http://mail.respectwashington.us./legal-documents/WSSCRespondentBrief10-5-11.pdf
  1358. - http://mail.respectwashington.us./legal-documents/WSSCTransfer11-21-11.pdf
  1359. - http://mail.respectwashington.us./rw-images/header-blue-new.jpg
  1360. - http://mail.respectwashington.us./rw-images/keepLegal.gif
  1361. - http://mail.respectwashington.us./rw-style.css
  1362. - http://mail.respectwashington.us./studies-and-reports/11 03 08 FINAL whitepaper.pdf
  1363. - http://mail.respectwashington.us./studies-and-reports/2005DHSHAudit6534.pdf
  1364. - http://mail.respectwashington.us./studies-and-reports/BearStearnsUnderground.pdf
  1365. - http://mail.respectwashington.us./studies-and-reports/FAIRCostStudyWA2012.pdf
  1366. - http://mail.respectwashington.us./studies-and-reports/REAL ID Not National ID Card.pdf
  1367. Total links to files: 50
  1368.  
  1369. + Externals links found:
  1370. - http://community.seattletimes.nwsource.com/archive/?date=20060718&amp;slug=prisonbill18m
  1371. - http://irli.org/
  1372. - http://komonews.com/news/local/charges-woman-bludgeoned-raped-at-burien-apartment-complex
  1373. - http://seattletimes.nwsource.com/html/localnews/2014429238_apwaxgrillegalimmigrantslicenses3rdldwritethru.html
  1374. - http://seattletimes.nwsource.com/html/localnews/2014643197_wagetheft31m.html
  1375. - http://wei.secstate.wa.gov/osos/en/voterinformation/Pages/RegistertoVote.aspx
  1376. - http://www.alipac.us/
  1377. - http://www.burienwa.gov/AgendaCenter/ViewFile/Agenda/_04242017-336
  1378. - http://www.cis.org
  1379. - http://www.fairus.org/site/PageServer
  1380. - http://www.familysecuritymatters.org/
  1381. - http://www.familysecuritymatters.org/publications/id.9984/pub_detail.asp
  1382. - http://www.foxnews.com/us/2017/08/02/dreamer-accused-brutally-raping-woman-in-washington.html
  1383. - http://www.heritage.org/
  1384. - http://www.heritage.org/Research/HealthCare/wm1714.cfm
  1385. - http://www.heritage.org/Research/Immigration/bg1936.cfm
  1386. - http://www.heritage.org/Research/Immigration/lm25.cfm
  1387. - http://www.heritage.org/Research/Immigration/tst052107a.cfm
  1388. - http://www.ice.gov/worksite/
  1389. - http://www.irli.org/
  1390. - http://www.judicialwatch.org/wp-content/uploads/2014/02/Judicial-Watch-Special-Illegal-Immigration-Report.pdf
  1391. - http://www.kingcounty.gov/tools/inmate-lookup
  1392. - http://www.legion.org/documents/legion/pdf/illegalimmigration.pdf
  1393. - http://www.manhattaninstitute.org/tools/topical_index.php?topic=49
  1394. - http://www.minutemanhq.com/
  1395. - http://www.numbersusa.org/
  1396. - http://www.ojjpac.org/sanctuary.asp
  1397. - http://www.oregonir.org/
  1398. - http://www.securedbordersusa.com/
  1399. - http://www.sos.wa.gov/elections/initiatives/Initiatives.aspx?y=2014&t=p
  1400. - http://www.soundpolitics.com/
  1401. - http://www.soundpolitics.com/voterlookup.html
  1402. - http://www.thesocialcontract.com/
  1403. - http://www.thesocialcontract.com/artman2/publish/tsc_18_2/index.shtml
  1404. - http://www.thesocialcontract.com/events/press_conf_2009apr14.html
  1405. - http://www.thesocialcontract.com/reports/eitc_2011apr/earned-income-tax-credit-2011apr.html
  1406. - http://www.uscis.gov/portal/site/uscis/menuitem.5af9bb95919f35e66f614176543f6d1a/?vgnextoid=31b3ab0a43b5d010VgnVCM10000048f3d6a1RCRD&amp;vgnextchannel=db029c7755cb9010VgnVCM10000045f3d6a1RCRD
  1407. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&amp;vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  1408. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=75bce2e261405110VgnVCM1000004718190aRCRD&amp;vgnextchannel=75bce2e261405110VgnVCM1000004718190aRCRD
  1409. - http://www.wfir.org/
  1410. - http://www.wsp.wa.gov/crime/wanted.php
  1411. - http://zip4.usps.com/zip4/welcome.jsp
  1412. - https://cis.org/Jessica-Vaughan-Discusses-Illegal-Aliens-Prisons
  1413. Total external links: 43
  1414.  
  1415. + Email addresses found:
  1416. Total email address found: 0
  1417.  
  1418. + Directories found:
  1419. - http://mail.respectwashington.us./legal-documents/ (403 Forbidden)
  1420. - http://mail.respectwashington.us./rw-images/ (403 Forbidden)
  1421. - http://mail.respectwashington.us./studies-and-reports/ (403 Forbidden)
  1422. Total directories: 3
  1423.  
  1424. + Directory indexing found:
  1425. Total directories with indexing: 0
  1426.  
  1427. ----------------------------------------------------------------------
  1428.  
  1429.  
  1430. + URL to crawl: http://respectwashington.us
  1431. + Date: 2019-10-22
  1432.  
  1433. + Crawling URL: http://respectwashington.us:
  1434. + Links:
  1435. + Crawling http://respectwashington.us
  1436. + Crawling http://respectwashington.us/rwhome.html
  1437. + Crawling http://respectwashington.us/whyweneed.html
  1438. + Crawling http://respectwashington.us/petition.html
  1439. + Crawling http://respectwashington.us/support.html
  1440. + Crawling http://respectwashington.us/donate.html
  1441. + Crawling http://respectwashington.us/testimonials.html
  1442. + Crawling http://respectwashington.us/legal-action.html
  1443. + Crawling http://respectwashington.us/volunteer.html
  1444. + Crawling http://respectwashington.us/contact.html
  1445. + Crawling http://respectwashington.us/MarchPetition (404 Not Found)
  1446. + Crawling http://respectwashington.us/
  1447. + Searching for directories...
  1448. - Found: http://respectwashington.us/rw-images/
  1449. - Found: http://respectwashington.us/studies-and-reports/
  1450. - Found: http://respectwashington.us/legal-documents/
  1451. + Searching open folders...
  1452. - http://respectwashington.us/rw-images/ (403 Forbidden)
  1453. - http://respectwashington.us/studies-and-reports/ (403 Forbidden)
  1454. - http://respectwashington.us/legal-documents/ (403 Forbidden)
  1455. + Crawl finished successfully.
  1456. ----------------------------------------------------------------------
  1457. Summary of http://http://respectwashington.us
  1458. ----------------------------------------------------------------------
  1459. + Links crawled:
  1460. - http://respectwashington.us
  1461. - http://respectwashington.us/
  1462. - http://respectwashington.us/MarchPetition (404 Not Found)
  1463. - http://respectwashington.us/contact.html
  1464. - http://respectwashington.us/donate.html
  1465. - http://respectwashington.us/legal-action.html
  1466. - http://respectwashington.us/petition.html
  1467. - http://respectwashington.us/rwhome.html
  1468. - http://respectwashington.us/support.html
  1469. - http://respectwashington.us/testimonials.html
  1470. - http://respectwashington.us/volunteer.html
  1471. - http://respectwashington.us/whyweneed.html
  1472. Total links crawled: 12
  1473.  
  1474. + Links to files found:
  1475. - http://respectwashington.us/001 Diaz-Garcia Child Molest INFORMATION.pdf
  1476. - http://respectwashington.us/001 Diaz-Garcia Rape INFORMATION.pdf
  1477. - http://respectwashington.us/001 Gomez v Spokane Complaint.pdf
  1478. - http://respectwashington.us/022 Gomez v Spokane Status Report.pdf
  1479. - http://respectwashington.us/BurienPolice2016Data.pdf
  1480. - http://respectwashington.us/CheckBackInMarch.pdf
  1481. - http://respectwashington.us/DoC2014CrimeIllegals.jpg
  1482. - http://respectwashington.us/DoC2014CrimeIllegals.pdf
  1483. - http://respectwashington.us/DoJ Incarcerated Aliens 2017.pdf
  1484. - http://respectwashington.us/FAIRWA2012.pdf
  1485. - http://respectwashington.us/GomezSettlement SR 2018.pdf
  1486. - http://respectwashington.us/Oregoneo0722.pdf
  1487. - http://respectwashington.us/Spokane Appellant Opening Brief.pdf
  1488. - http://respectwashington.us/how-to-ArmstrongV2.ppt
  1489. - http://respectwashington.us/legal-documents/DECLARSTEPHENSAG4-18-11424.pdf
  1490. - http://respectwashington.us/legal-documents/GAO2005-478.pdf
  1491. - http://respectwashington.us/legal-documents/KingBRIEFOPToMSJApr18.pdf
  1492. - http://respectwashington.us/legal-documents/KingDefenseFeb2011.pdf
  1493. - http://respectwashington.us/legal-documents/KingDismissMSJMar2011.pdf
  1494. - http://respectwashington.us/legal-documents/KingMSJDismissDeclMar2011.pdf
  1495. - http://respectwashington.us/legal-documents/KingReplySupportDismissMSJApr25.pdf
  1496. - http://respectwashington.us/legal-documents/ORDERGRANTINGKingMSJDis5-10-11.pdf
  1497. - http://respectwashington.us/legal-documents/RingDeclareMar2011.pdf
  1498. - http://respectwashington.us/legal-documents/RingMSJMar2011.pdf
  1499. - http://respectwashington.us/legal-documents/RingOPToKingMSJDisApr18.pdf
  1500. - http://respectwashington.us/legal-documents/RingPetitionNov2010.pdf
  1501. - http://respectwashington.us/legal-documents/RingReplySupportMSjApr25.pdf
  1502. - http://respectwashington.us/legal-documents/RingVRidgeMOTIONHEARING5-10-11.pdf
  1503. - http://respectwashington.us/legal-documents/RingVRidgeOralArgs4-29-11.PDF
  1504. - http://respectwashington.us/legal-documents/RingVRidgeOralDecTrans5-10-11.PDF
  1505. - http://respectwashington.us/legal-documents/Ringhofer v Ridge 679708.wma
  1506. - http://respectwashington.us/legal-documents/RinghoferPetitionReview2013.pdf
  1507. - http://respectwashington.us/legal-documents/SpakovskyHeritage28.pdf
  1508. - http://respectwashington.us/legal-documents/TexasHarrisCountyVoteID.pdf
  1509. - http://respectwashington.us/legal-documents/USHouseAdmin2006Bettencourt.pdf
  1510. - http://respectwashington.us/legal-documents/WSCADwyerOpinon12-10-12.pdf
  1511. - http://respectwashington.us/legal-documents/WSSCAppealOpenBrief-Amended9-6-11.pdf
  1512. - http://respectwashington.us/legal-documents/WSSCAppellantReplyBrief11-14-11.pdf
  1513. - http://respectwashington.us/legal-documents/WSSCDirectReviewGrounds6-24-11.pdf
  1514. - http://respectwashington.us/legal-documents/WSSCOrder88293-5RinghoferVRidge.pdf
  1515. - http://respectwashington.us/legal-documents/WSSCRespondentBrief10-5-11.pdf
  1516. - http://respectwashington.us/legal-documents/WSSCTransfer11-21-11.pdf
  1517. - http://respectwashington.us/rw-images/header-blue-new.jpg
  1518. - http://respectwashington.us/rw-images/keepLegal.gif
  1519. - http://respectwashington.us/rw-style.css
  1520. - http://respectwashington.us/studies-and-reports/11 03 08 FINAL whitepaper.pdf
  1521. - http://respectwashington.us/studies-and-reports/2005DHSHAudit6534.pdf
  1522. - http://respectwashington.us/studies-and-reports/BearStearnsUnderground.pdf
  1523. - http://respectwashington.us/studies-and-reports/FAIRCostStudyWA2012.pdf
  1524. - http://respectwashington.us/studies-and-reports/REAL ID Not National ID Card.pdf
  1525. Total links to files: 50
  1526.  
  1527. + Externals links found:
  1528. - http://community.seattletimes.nwsource.com/archive/?date=20060718&amp;slug=prisonbill18m
  1529. - http://irli.org/
  1530. - http://komonews.com/news/local/charges-woman-bludgeoned-raped-at-burien-apartment-complex
  1531. - http://seattletimes.nwsource.com/html/localnews/2014429238_apwaxgrillegalimmigrantslicenses3rdldwritethru.html
  1532. - http://seattletimes.nwsource.com/html/localnews/2014643197_wagetheft31m.html
  1533. - http://wei.secstate.wa.gov/osos/en/voterinformation/Pages/RegistertoVote.aspx
  1534. - http://www.alipac.us/
  1535. - http://www.burienwa.gov/AgendaCenter/ViewFile/Agenda/_04242017-336
  1536. - http://www.cis.org
  1537. - http://www.fairus.org/site/PageServer
  1538. - http://www.familysecuritymatters.org/
  1539. - http://www.familysecuritymatters.org/publications/id.9984/pub_detail.asp
  1540. - http://www.foxnews.com/us/2017/08/02/dreamer-accused-brutally-raping-woman-in-washington.html
  1541. - http://www.heritage.org/
  1542. - http://www.heritage.org/Research/HealthCare/wm1714.cfm
  1543. - http://www.heritage.org/Research/Immigration/bg1936.cfm
  1544. - http://www.heritage.org/Research/Immigration/lm25.cfm
  1545. - http://www.heritage.org/Research/Immigration/tst052107a.cfm
  1546. - http://www.ice.gov/worksite/
  1547. - http://www.irli.org/
  1548. - http://www.judicialwatch.org/wp-content/uploads/2014/02/Judicial-Watch-Special-Illegal-Immigration-Report.pdf
  1549. - http://www.kingcounty.gov/tools/inmate-lookup
  1550. - http://www.legion.org/documents/legion/pdf/illegalimmigration.pdf
  1551. - http://www.manhattaninstitute.org/tools/topical_index.php?topic=49
  1552. - http://www.minutemanhq.com/
  1553. - http://www.numbersusa.org/
  1554. - http://www.ojjpac.org/sanctuary.asp
  1555. - http://www.oregonir.org/
  1556. - http://www.securedbordersusa.com/
  1557. - http://www.sos.wa.gov/elections/initiatives/Initiatives.aspx?y=2014&t=p
  1558. - http://www.soundpolitics.com/
  1559. - http://www.soundpolitics.com/voterlookup.html
  1560. - http://www.thesocialcontract.com/
  1561. - http://www.thesocialcontract.com/artman2/publish/tsc_18_2/index.shtml
  1562. - http://www.thesocialcontract.com/events/press_conf_2009apr14.html
  1563. - http://www.thesocialcontract.com/reports/eitc_2011apr/earned-income-tax-credit-2011apr.html
  1564. - http://www.uscis.gov/portal/site/uscis/menuitem.5af9bb95919f35e66f614176543f6d1a/?vgnextoid=31b3ab0a43b5d010VgnVCM10000048f3d6a1RCRD&amp;vgnextchannel=db029c7755cb9010VgnVCM10000045f3d6a1RCRD
  1565. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=1721c2ec0c7c8110VgnVCM1000004718190aRCRD&amp;vgnextchannel=1721c2ec0c7c8110VgnVCM1000004718190aRCRD
  1566. - http://www.uscis.gov/portal/site/uscis/menuitem.eb1d4c2a3e5b9ac89243c6a7543f6d1a/?vgnextoid=75bce2e261405110VgnVCM1000004718190aRCRD&amp;vgnextchannel=75bce2e261405110VgnVCM1000004718190aRCRD
  1567. - http://www.wfir.org/
  1568. - http://www.wsp.wa.gov/crime/wanted.php
  1569. - http://zip4.usps.com/zip4/welcome.jsp
  1570. - https://cis.org/Jessica-Vaughan-Discusses-Illegal-Aliens-Prisons
  1571. Total external links: 43
  1572.  
  1573. + Email addresses found:
  1574. Total email address found: 1
  1575.  
  1576. + Directories found:
  1577. - http://respectwashington.us/legal-documents/ (403 Forbidden)
  1578. - http://respectwashington.us/rw-images/ (403 Forbidden)
  1579. - http://respectwashington.us/studies-and-reports/ (403 Forbidden)
  1580. Total directories: 3
  1581.  
  1582. + Directory indexing found:
  1583. Total directories with indexing: 0
  1584.  
  1585. ----------------------------------------------------------------------
  1586.  
  1587.  
  1588. + URL to crawl: https://ftp.respectwashington.us.
  1589. + Date: 2019-10-22
  1590.  
  1591. + Crawling URL: https://ftp.respectwashington.us.:
  1592. + Links:
  1593. + Crawling https://ftp.respectwashington.us.
  1594. + Searching for directories...
  1595. + Searching open folders...
  1596.  
  1597.  
  1598. + URL to crawl: https://www.respectwashington.us.
  1599. + Date: 2019-10-22
  1600.  
  1601. + Crawling URL: https://www.respectwashington.us.:
  1602. + Links:
  1603. + Crawling https://www.respectwashington.us.
  1604. + Searching for directories...
  1605. + Searching open folders...
  1606.  
  1607.  
  1608. + URL to crawl: https://mail.respectwashington.us.
  1609. + Date: 2019-10-22
  1610.  
  1611. + Crawling URL: https://mail.respectwashington.us.:
  1612. + Links:
  1613. + Crawling https://mail.respectwashington.us.
  1614. + Searching for directories...
  1615. + Searching open folders...
  1616.  
  1617.  
  1618. + URL to crawl: https://respectwashington.us
  1619. + Date: 2019-10-22
  1620.  
  1621. + Crawling URL: https://respectwashington.us:
  1622. + Links:
  1623. + Crawling https://respectwashington.us (403 Forbidden)
  1624. + Searching for directories...
  1625. + Searching open folders...
  1626.  
  1627. --Finished--
  1628. Summary information for domain respectwashington.us.
  1629. -----------------------------------------
  1630. Domain Specific Information:
  1631.  
  1632. Domain Ips Information:
  1633. IP: 216.218.131.2
  1634. HostName: ns2.he.net Type: NS
  1635. HostName: ns2.he.net Type: PTR
  1636. Country: United States
  1637. Is Active: True (echo-reply ttl 57)
  1638. Port: 53/tcp open domain syn-ack ttl 57 PowerDNS 3.3 or later
  1639. Script Info: | dns-nsid:
  1640. Script Info: | NSID: ns2.he.net (6e73322e68652e6e6574)
  1641. Script Info: | id.server: ns2.he.net
  1642. Script Info: |_ bind.version: Served by PowerDNS - https://www.powerdns.com/
  1643. IP: 65.49.16.26
  1644. HostName: respectwashington.us Type: MX
  1645. HostName: respectwashington.us Type: PTR
  1646. HostName: www.respectwashington.us. Type: A
  1647. HostName: ftp.respectwashington.us. Type: A
  1648. HostName: mail.respectwashington.us. Type: A
  1649. Country: United States
  1650. Is Active: True (reset ttl 64)
  1651. Port: 80/tcp open http syn-ack ttl 53 Apache httpd 2.4.18 ((Ubuntu))
  1652. Script Info: | http-methods:
  1653. Script Info: |_ Supported Methods: GET HEAD POST OPTIONS
  1654. Script Info: |_http-server-header: Apache/2.4.18 (Ubuntu)
  1655. Script Info: |_http-title: RespectWashington
  1656. Port: 110/tcp open pop3 syn-ack ttl 53 Dovecot pop3d
  1657. Script Info: |_pop3-capabilities: TOP CAPA UIDL USER PIPELINING SASL(PLAIN LOGIN) RESP-CODES STLS AUTH-RESP-CODE
  1658. Script Info: |_ssl-date: TLS randomness does not represent time
  1659. Port: 143/tcp open imap syn-ack ttl 53 Dovecot imapd
  1660. Script Info: |_imap-capabilities: STARTTLS AUTH=PLAIN capabilities more listed IMAP4rev1 Pre-login LOGIN-REFERRALS SASL-IR OK post-login AUTH=LOGINA0001 IDLE have ENABLE ID LITERAL+
  1661. Script Info: |_ssl-date: TLS randomness does not represent time
  1662. Port: 443/tcp open ssl/http syn-ack ttl 53 Apache httpd 2.4.18
  1663. Script Info: | http-methods:
  1664. Script Info: |_ Supported Methods: GET HEAD POST OPTIONS
  1665. Script Info: |_http-server-header: Apache/2.4.18 (Ubuntu)
  1666. Script Info: |_http-title: 400 Bad Request
  1667. Script Info: | ssl-cert: Subject: commonName=respectwashington.us
  1668. Script Info: | Subject Alternative Name: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  1669. Script Info: | Issuer: commonName=Let's Encrypt Authority X3/organizationName=Let's Encrypt/countryName=US
  1670. Script Info: | Public Key type: rsa
  1671. Script Info: | Public Key bits: 2048
  1672. Script Info: | Signature Algorithm: sha256WithRSAEncryption
  1673. Script Info: | Not valid before: 2019-09-23T10:50:34
  1674. Script Info: | Not valid after: 2019-12-22T10:50:34
  1675. Script Info: | MD5: 9c61 f3dc 6487 544c de9e 4197 e08a 5fa7
  1676. Script Info: |_SHA-1: f98a 5fd3 ac38 2278 6c2f 81cf 471a e5b9 4540 febf
  1677. Script Info: |_ssl-date: TLS randomness does not represent time
  1678. Script Info: | tls-alpn:
  1679. Script Info: |_ http/1.1
  1680. Port: 465/tcp open ssl/smtp syn-ack ttl 53 Postfix smtpd
  1681. Script Info: |_smtp-commands: Couldn't establish connection on port 465
  1682. Script Info: | ssl-cert: Subject: commonName=respectwashington.us
  1683. Script Info: | Subject Alternative Name: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  1684. Script Info: | Issuer: commonName=Let's Encrypt Authority X3/organizationName=Let's Encrypt/countryName=US
  1685. Script Info: | Public Key type: rsa
  1686. Script Info: | Public Key bits: 2048
  1687. Script Info: | Signature Algorithm: sha256WithRSAEncryption
  1688. Script Info: | Not valid before: 2019-09-23T10:50:34
  1689. Script Info: | Not valid after: 2019-12-22T10:50:34
  1690. Script Info: | MD5: 9c61 f3dc 6487 544c de9e 4197 e08a 5fa7
  1691. Script Info: |_SHA-1: f98a 5fd3 ac38 2278 6c2f 81cf 471a e5b9 4540 febf
  1692. Script Info: |_ssl-date: TLS randomness does not represent time
  1693. Port: 587/tcp open smtp syn-ack ttl 53 Postfix smtpd
  1694. Script Info: |_smtp-commands: respectwashington.us Hello nmap.scanme.org, STARTTLS, HELP,
  1695. Script Info: | ssl-cert: Subject: commonName=respectwashington.us
  1696. Script Info: | Subject Alternative Name: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  1697. Script Info: | Issuer: commonName=Let's Encrypt Authority X3/organizationName=Let's Encrypt/countryName=US
  1698. Script Info: | Public Key type: rsa
  1699. Script Info: | Public Key bits: 2048
  1700. Script Info: | Signature Algorithm: sha256WithRSAEncryption
  1701. Script Info: | Not valid before: 2019-09-23T10:50:34
  1702. Script Info: | Not valid after: 2019-12-22T10:50:34
  1703. Script Info: | MD5: 9c61 f3dc 6487 544c de9e 4197 e08a 5fa7
  1704. Script Info: |_SHA-1: f98a 5fd3 ac38 2278 6c2f 81cf 471a e5b9 4540 febf
  1705. Script Info: |_ssl-date: TLS randomness does not represent time
  1706. Port: 993/tcp open ssl/imaps? syn-ack ttl 53
  1707. Script Info: |_ssl-date: TLS randomness does not represent time
  1708. Port: 995/tcp open ssl/pop3s? syn-ack ttl 53
  1709. Script Info: |_ssl-date: TLS randomness does not represent time
  1710. Os Info: Hosts: www.respectwashington.us, respectwashington.us
  1711. IP: 216.218.130.2
  1712. HostName: ns1.he.net Type: NS
  1713. HostName: ns1.he.net Type: PTR
  1714. Country: United States
  1715. Is Active: True (reset ttl 64)
  1716. Port: 53/tcp open domain syn-ack ttl 57 PowerDNS 3.3 or later
  1717. Script Info: | dns-nsid:
  1718. Script Info: | NSID: ns1.he.net (6e73312e68652e6e6574)
  1719. Script Info: | id.server: ns1.he.net
  1720. Script Info: |_ bind.version: Served by PowerDNS - https://www.powerdns.com/
  1721. #######################################################################################################################################
  1722. dnsenum VERSION:1.2.6
  1723.  
  1724. ----- www.respectwashington.us -----
  1725.  
  1726.  
  1727. Host's addresses:
  1728. __________________
  1729.  
  1730. respectwashington.us. 84126 IN A 65.49.16.26
  1731.  
  1732.  
  1733. Name Servers:
  1734. ______________
  1735.  
  1736. ns2.he.net. 85380 IN A 216.218.131.2
  1737. ns1.he.net. 84853 IN A 216.218.130.2
  1738.  
  1739.  
  1740. Mail (MX) Servers:
  1741. ___________________
  1742.  
  1743. respectwashington.us. 84125 IN A 65.49.16.26
  1744.  
  1745.  
  1746. Trying Zone Transfers and getting Bind Versions:
  1747. _________________________________________________
  1748.  
  1749.  
  1750. Trying Zone Transfer for www.respectwashington.us on ns2.he.net ...
  1751.  
  1752. Trying Zone Transfer for www.respectwashington.us on ns1.he.net ...
  1753.  
  1754.  
  1755. Brute forcing with /usr/share/dnsenum/dns.txt:
  1756. _______________________________________________
  1757.  
  1758.  
  1759.  
  1760. www.respectwashington.us class C netranges:
  1761. ____________________________________________
  1762.  
  1763.  
  1764.  
  1765. Performing reverse lookup on 0 ip addresses:
  1766. _____________________________________________
  1767.  
  1768.  
  1769. 0 results out of 0 IP addresses.
  1770.  
  1771.  
  1772. www.respectwashington.us ip blocks:
  1773. ____________________________________
  1774. ######################################################################################################################################
  1775. [3/100] http://www.respectwashington.us/BurienPolice2016Data.pdf
  1776. [4/100] http://www.respectwashington.us/BurienPetition.pdf
  1777. [5/100] http://www.respectwashington.us/FAIRWA2012.pdf
  1778. [6/100] http://www.respectwashington.us/legal-documents/TexasHarrisCountyVoteID.pdf
  1779. [x] Error in the parsing process
  1780. [7/100] http://www.respectwashington.us/Oregoneo0722.pdf
  1781. [8/100] http://www.respectwashington.us/legal-documents/RingMSJMar2011.pdf
  1782. [x] Error in PDF metadata Creator
  1783. [9/100] http://www.respectwashington.us/legal-documents/KingDismissMSJMar2011.pdf
  1784. [x] Error in PDF metadata Creator
  1785. [10/100] http://www.respectwashington.us/legal-documents/RingDeclareMar2011.pdf
  1786. [x] Error in PDF metadata Creator
  1787. [11/100] http://www.respectwashington.us/legal-documents/KingDefenseFeb2011.pdf
  1788. [x] Error in PDF metadata Creator
  1789. [12/100] http://www.respectwashington.us/legal-documents/SpakovskyHeritage28.pdf
  1790. [13/100] http://www.respectwashington.us/legal-documents/USHouseAdmin2006Bettencourt.pdf
  1791. [14/100] http://www.respectwashington.us/legal-documents/KingMSJDismissDeclMar2011.pdf
  1792. [x] Error in PDF metadata Creator
  1793. [15/100] http://www.respectwashington.us/legal-documents/RingPetitionNov2010.pdf
  1794. [x] Error in PDF metadata Creator
  1795. [16/100] http://www.respectwashington.us/legal-documents/GAO2005-478.pdf
  1796. [17/100] http://www.respectwashington.us/legal-documents/KingReplySupportDismissMSJApr25.pdf
  1797. [x] Error in PDF metadata Creator
  1798. [18/100] http://www.respectwashington.us/studies-and-reports/BearStearnsUnderground.pdf
  1799. [19/100] http://www.respectwashington.us/studies-and-reports/2005DHSHAudit6534.pdf
  1800. [20/100] http://www.respectwashington.us/legal-documents/WSCADwyerOpinon12-10-12.pdf
  1801. [21/100] http://www.respectwashington.us/legal-documents/WSSCDirectReviewGrounds6-24-11.pdf
  1802. [22/100] http://www.respectwashington.us/GomezSettlement%2520SR%25202018.pdf
  1803. [x] Error in the parsing process
  1804. [23/100] http://www.respectwashington.us/legal-documents/WSSCTransfer11-21-11.pdf
  1805. [x] Error in the parsing process
  1806. [24/100] http://www.respectwashington.us/legal-documents/ORDERGRANTINGKingMSJDis5-10-11.pdf
  1807. [x] Error in PDF metadata Creator
  1808. [25/100] http://www.respectwashington.us/legal-documents/WSSCAppealOpenBrief-Amended9-6-11.pdf
  1809. [26/100] http://www.respectwashington.us/legal-documents/DECLARSTEPHENSAG4-18-11424.pdf
  1810. [x] Error in PDF metadata Creator
  1811. [27/100] http://www.respectwashington.us/Spokane%2520Appellant%2520Opening%2520Brief.pdf
  1812. [x] Error in the parsing process
  1813. [28/100] http://www.respectwashington.us/DoJ%2520Incarcerated%2520Aliens%25202017.pdf
  1814. [x] Error in the parsing process
  1815. [29/100] http://www.respectwashington.us/001%2520Diaz-Garcia%2520Rape%2520INFORMATION.pdf
  1816. [x] Error in the parsing process
  1817. [30/100] http://www.respectwashington.us/DoC2014CrimeIllegals.pdf
  1818. [31/100] http://www.respectwashington.us/001%2520Gomez%2520v%2520Spokane%2520Complaint.pdf
  1819. -------------------------------------------------------------------------------------------------
  1820.  
  1821. [+] List of users found:
  1822. -------------------------------------------------------------------------------------------------
  1823. Scott Greenberg
  1824. buglassr
  1825. Tax Office
  1826. U.S. Government Accountability Office, http://www.gao.gov
  1827. nlederer
  1828. wallera
  1829.  
  1830. [+] List of software found:
  1831. -------------------------------------------------------------------------------------------------
  1832. Adobe PDF Library 15.0
  1833. Acrobat PDFMaker 15 for Word
  1834. Adobe PDF Library 9.9
  1835. Adobe InDesign CS5 (7.0)
  1836. QuarkXPress(R) 8.16
  1837. Adobe Acrobat 7.05 Paper Capture Plug-in
  1838. Adobe Acrobat 7.05
  1839. Acrobat Distiller 5.0 (Windows)
  1840. FrameMaker 7.0
  1841. Acrobat Distiller 6.0 (Windows)
  1842. Acrobat PDFMaker 6.0 for Word
  1843. Acrobat Distiller 5.0.5 (Windows)
  1844. Acrobat PDFMaker 5.0 for Word
  1845. activePDF Toolkit (www.activepdf.com)
  1846. PScript5.dll Version 5.2
  1847. Adobe PDF Scan Library 3.1
  1848. ScandAll PRO V2.0.1
  1849. Canon iR3245 PDF
  1850.  
  1851. [+] List of paths and servers found:
  1852. -------------------------------------------------------------------------------------------------
  1853.  
  1854. [+] List of e-mails found:
  1855. -------------------------------------------------------------------------------------------------
  1856. merer@ki
  1857. s@g
  1858. l@k
  1859. ######################################################################################################################################
  1860. [*] Processing domain www.respectwashington.us
  1861. [*] Using system resolvers ['185.93.180.131', '194.187.251.67', '38.132.106.139', '192.168.0.1', '2001:18c0:121:6900:724f:b8ff:fefd:5b6a']
  1862. [+] Getting nameservers
  1863. 216.218.131.2 - ns2.he.net
  1864. 216.218.130.2 - ns1.he.net
  1865. [-] Zone transfer failed
  1866.  
  1867. [+] MX records found, added to target list
  1868. 1 respectwashington.us.
  1869.  
  1870. [*] Scanning www.respectwashington.us for A records
  1871. 65.49.16.26 - www.respectwashington.us
  1872. ######################################################################################################################################
  1873. Privileges have been dropped to "nobody:nogroup" for security reasons.
  1874.  
  1875. Processed queries: 0
  1876. Received packets: 0
  1877. Progress: 0.00% (00 h 00 min 00 sec / 00 h 00 min 00 sec)
  1878. Current incoming rate: 0 pps, average: 0 pps
  1879. Current success rate: 0 pps, average: 0 pps
  1880. Finished total: 0, success: 0 (0.00%)
  1881. Mismatched domains: 0 (0.00%), IDs: 0 (0.00%)
  1882. Failures: 0: 0.00%, 1: 0.00%, 2: 0.00%, 3: 0.00%, 4: 0.00%, 5: 0.00%, 6: 0.00%, 7: 0.00%, 8: 0.00%, 9: 0.00%, 10: 0.00%, 11: 0.00%, 12: 0.00%, 13: 0.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1883. Response: | Success: | Total:
  1884. OK: | 0 ( 0.00%) | 0 ( 0.00%)
  1885. NXDOMAIN: | 0 ( 0.00%) | 0 ( 0.00%)
  1886. SERVFAIL: | 0 ( 0.00%) | 0 ( 0.00%)
  1887. REFUSED: | 0 ( 0.00%) | 0 ( 0.00%)
  1888. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1889.  
  1890.  
  1891.  
  1892. Processed queries: 1919
  1893. Received packets: 318
  1894. Progress: 100.00% (00 h 00 min 01 sec / 00 h 00 min 01 sec)
  1895. Current incoming rate: 317 pps, average: 317 pps
  1896. Current success rate: 233 pps, average: 233 pps
  1897. Finished total: 234, success: 234 (100.00%)
  1898. Mismatched domains: 0 (0.00%), IDs: 0 (0.00%)
  1899. Failures: 0: 35.04%, 1: 750.43%, 2: 34.62%, 3: 0.00%, 4: 0.00%, 5: 0.00%, 6: 0.00%, 7: 0.00%, 8: 0.00%, 9: 0.00%, 10: 0.00%, 11: 0.00%, 12: 0.00%, 13: 0.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1900. Response: | Success: | Total:
  1901. OK: | 23 ( 9.83%) | 23 ( 7.30%)
  1902. NXDOMAIN: | 202 ( 86.32%) | 202 ( 64.13%)
  1903. SERVFAIL: | 9 ( 3.85%) | 9 ( 2.86%)
  1904. REFUSED: | 0 ( 0.00%) | 81 ( 25.71%)
  1905. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1906.  
  1907.  
  1908.  
  1909. Processed queries: 1919
  1910. Received packets: 702
  1911. Progress: 100.00% (00 h 00 min 02 sec / 00 h 00 min 02 sec)
  1912. Current incoming rate: 383 pps, average: 350 pps
  1913. Current success rate: 279 pps, average: 256 pps
  1914. Finished total: 514, success: 514 (100.00%)
  1915. Mismatched domains: 0 (0.00%), IDs: 0 (0.00%)
  1916. Failures: 0: 15.95%, 1: 29.57%, 2: 26.46%, 3: 265.56%, 4: 35.80%, 5: 0.00%, 6: 0.00%, 7: 0.00%, 8: 0.00%, 9: 0.00%, 10: 0.00%, 11: 0.00%, 12: 0.00%, 13: 0.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1917. Response: | Success: | Total:
  1918. OK: | 46 ( 8.95%) | 46 ( 6.59%)
  1919. NXDOMAIN: | 449 ( 87.35%) | 449 ( 64.33%)
  1920. SERVFAIL: | 19 ( 3.70%) | 19 ( 2.72%)
  1921. REFUSED: | 0 ( 0.00%) | 184 ( 26.36%)
  1922. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1923.  
  1924.  
  1925.  
  1926. Processed queries: 1919
  1927. Received packets: 1083
  1928. Progress: 100.00% (00 h 00 min 03 sec / 00 h 00 min 03 sec)
  1929. Current incoming rate: 380 pps, average: 360 pps
  1930. Current success rate: 264 pps, average: 259 pps
  1931. Finished total: 779, success: 779 (100.00%)
  1932. Mismatched domains: 0 (0.00%), IDs: 0 (0.00%)
  1933. Failures: 0: 10.53%, 1: 19.51%, 2: 17.46%, 3: 18.49%, 4: 18.23%, 5: 124.52%, 6: 37.61%, 7: 0.00%, 8: 0.00%, 9: 0.00%, 10: 0.00%, 11: 0.00%, 12: 0.00%, 13: 0.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1934. Response: | Success: | Total:
  1935. OK: | 63 ( 8.09%) | 63 ( 5.86%)
  1936. NXDOMAIN: | 687 ( 88.19%) | 687 ( 63.91%)
  1937. SERVFAIL: | 29 ( 3.72%) | 29 ( 2.70%)
  1938. REFUSED: | 0 ( 0.00%) | 296 ( 27.53%)
  1939. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1940.  
  1941.  
  1942.  
  1943. Processed queries: 1919
  1944. Received packets: 1477
  1945. Progress: 100.00% (00 h 00 min 04 sec / 00 h 00 min 04 sec)
  1946. Current incoming rate: 393 pps, average: 368 pps
  1947. Current success rate: 227 pps, average: 251 pps
  1948. Finished total: 1007, success: 1007 (100.00%)
  1949. Mismatched domains: 77 (5.25%), IDs: 0 (0.00%)
  1950. Failures: 0: 8.14%, 1: 15.09%, 2: 13.51%, 3: 14.30%, 4: 14.10%, 5: 12.71%, 6: 13.41%, 7: 65.34%, 8: 32.97%, 9: 0.99%, 10: 0.00%, 11: 0.00%, 12: 0.00%, 13: 0.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1951. Response: | Success: | Total:
  1952. OK: | 85 ( 8.44%) | 93 ( 6.34%)
  1953. NXDOMAIN: | 888 ( 88.18%) | 936 ( 63.85%)
  1954. SERVFAIL: | 34 ( 3.38%) | 35 ( 2.39%)
  1955. REFUSED: | 0 ( 0.00%) | 402 ( 27.42%)
  1956. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1957.  
  1958.  
  1959.  
  1960. Processed queries: 1919
  1961. Received packets: 1862
  1962. Progress: 100.00% (00 h 00 min 05 sec / 00 h 00 min 05 sec)
  1963. Current incoming rate: 384 pps, average: 371 pps
  1964. Current success rate: 152 pps, average: 231 pps
  1965. Finished total: 1160, success: 1160 (100.00%)
  1966. Mismatched domains: 269 (14.53%), IDs: 0 (0.00%)
  1967. Failures: 0: 7.07%, 1: 13.10%, 2: 11.72%, 3: 12.41%, 4: 12.24%, 5: 11.03%, 6: 11.64%, 7: 6.47%, 8: 5.86%, 9: 45.95%, 10: 26.64%, 11: 1.29%, 12: 0.00%, 13: 0.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1968. Response: | Success: | Total:
  1969. OK: | 101 ( 8.71%) | 124 ( 6.70%)
  1970. NXDOMAIN: | 1021 ( 88.02%) | 1201 ( 64.88%)
  1971. SERVFAIL: | 38 ( 3.28%) | 43 ( 2.32%)
  1972. REFUSED: | 0 ( 0.00%) | 483 ( 26.09%)
  1973. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1974.  
  1975.  
  1976.  
  1977. Processed queries: 1919
  1978. Received packets: 2267
  1979. Progress: 100.00% (00 h 00 min 06 sec / 00 h 00 min 06 sec)
  1980. Current incoming rate: 404 pps, average: 377 pps
  1981. Current success rate: 141 pps, average: 216 pps
  1982. Finished total: 1302, success: 1302 (100.00%)
  1983. Mismatched domains: 464 (20.59%), IDs: 0 (0.00%)
  1984. Failures: 0: 6.30%, 1: 11.67%, 2: 10.45%, 3: 11.06%, 4: 10.91%, 5: 9.83%, 6: 10.37%, 7: 5.76%, 8: 5.22%, 9: 6.30%, 10: 5.38%, 11: 30.49%, 12: 21.66%, 13: 2.00%, 14: 0.00%, 15: 0.00%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  1985. Response: | Success: | Total:
  1986. OK: | 111 ( 8.53%) | 148 ( 6.57%)
  1987. NXDOMAIN: | 1149 ( 88.25%) | 1449 ( 64.29%)
  1988. SERVFAIL: | 42 ( 3.23%) | 54 ( 2.40%)
  1989. REFUSED: | 0 ( 0.00%) | 603 ( 26.75%)
  1990. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  1991.  
  1992.  
  1993.  
  1994. Processed queries: 1919
  1995. Received packets: 2686
  1996. Progress: 100.00% (00 h 00 min 07 sec / 00 h 00 min 07 sec)
  1997. Current incoming rate: 418 pps, average: 383 pps
  1998. Current success rate: 168 pps, average: 209 pps
  1999. Finished total: 1471, success: 1471 (100.00%)
  2000. Mismatched domains: 678 (25.38%), IDs: 0 (0.00%)
  2001. Failures: 0: 5.57%, 1: 10.33%, 2: 9.25%, 3: 9.79%, 4: 9.65%, 5: 8.70%, 6: 9.18%, 7: 5.10%, 8: 4.62%, 9: 5.57%, 10: 4.76%, 11: 5.37%, 12: 4.55%, 13: 20.46%, 14: 15.43%, 15: 2.11%, 16: 0.00%, 17: 0.00%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2002. Response: | Success: | Total:
  2003. OK: | 125 ( 8.50%) | 174 ( 6.51%)
  2004. NXDOMAIN: | 1296 ( 88.10%) | 1735 ( 64.96%)
  2005. SERVFAIL: | 50 ( 3.40%) | 70 ( 2.62%)
  2006. REFUSED: | 0 ( 0.00%) | 692 ( 25.91%)
  2007. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2008.  
  2009.  
  2010.  
  2011. Processed queries: 1919
  2012. Received packets: 3091
  2013. Progress: 100.00% (00 h 00 min 08 sec / 00 h 00 min 08 sec)
  2014. Current incoming rate: 404 pps, average: 385 pps
  2015. Current success rate: 76 pps, average: 193 pps
  2016. Finished total: 1548, success: 1548 (100.00%)
  2017. Mismatched domains: 971 (31.63%), IDs: 0 (0.00%)
  2018. Failures: 0: 5.30%, 1: 9.82%, 2: 8.79%, 3: 9.30%, 4: 9.17%, 5: 8.27%, 6: 8.72%, 7: 4.84%, 8: 4.39%, 9: 5.30%, 10: 4.52%, 11: 5.10%, 12: 4.33%, 13: 5.75%, 14: 3.29%, 15: 12.14%, 16: 12.40%, 17: 2.52%, 18: 0.00%, 19: 0.00%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2019. Response: | Success: | Total:
  2020. OK: | 129 ( 8.33%) | 189 ( 6.16%)
  2021. NXDOMAIN: | 1368 ( 88.37%) | 1999 ( 65.11%)
  2022. SERVFAIL: | 51 ( 3.29%) | 79 ( 2.57%)
  2023. REFUSED: | 0 ( 0.00%) | 803 ( 26.16%)
  2024. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2025.  
  2026.  
  2027.  
  2028. Processed queries: 1919
  2029. Received packets: 3499
  2030. Progress: 100.00% (00 h 00 min 09 sec / 00 h 00 min 09 sec)
  2031. Current incoming rate: 407 pps, average: 388 pps
  2032. Current success rate: 95 pps, average: 182 pps
  2033. Finished total: 1644, success: 1644 (100.00%)
  2034. Mismatched domains: 1251 (36.03%), IDs: 0 (0.00%)
  2035. Failures: 0: 4.99%, 1: 9.25%, 2: 8.27%, 3: 8.76%, 4: 8.64%, 5: 7.79%, 6: 8.21%, 7: 4.56%, 8: 4.14%, 9: 4.99%, 10: 4.26%, 11: 4.81%, 12: 4.08%, 13: 5.41%, 14: 3.10%, 15: 2.31%, 16: 2.74%, 17: 8.21%, 18: 10.10%, 19: 2.13%, 20: 0.00%, 21: 0.00%, 22: 0.00%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2036. Response: | Success: | Total:
  2037. OK: | 141 ( 8.58%) | 225 ( 6.48%)
  2038. NXDOMAIN: | 1450 ( 88.20%) | 2256 ( 64.98%)
  2039. SERVFAIL: | 53 ( 3.22%) | 89 ( 2.56%)
  2040. REFUSED: | 0 ( 0.00%) | 902 ( 25.98%)
  2041. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2042.  
  2043.  
  2044.  
  2045. Processed queries: 1919
  2046. Received packets: 3874
  2047. Progress: 100.00% (00 h 00 min 10 sec / 00 h 00 min 10 sec)
  2048. Current incoming rate: 374 pps, average: 386 pps
  2049. Current success rate: 71 pps, average: 171 pps
  2050. Finished total: 1716, success: 1716 (100.00%)
  2051. Mismatched domains: 1535 (39.92%), IDs: 0 (0.00%)
  2052. Failures: 0: 4.78%, 1: 8.86%, 2: 7.93%, 3: 8.39%, 4: 8.28%, 5: 7.46%, 6: 7.87%, 7: 4.37%, 8: 3.96%, 9: 4.78%, 10: 4.08%, 11: 4.60%, 12: 3.90%, 13: 5.19%, 14: 2.97%, 15: 2.21%, 16: 2.62%, 17: 2.56%, 18: 2.33%, 19: 6.06%, 20: 6.70%, 21: 1.86%, 22: 0.06%, 23: 0.00%, 24: 0.00%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2053. Response: | Success: | Total:
  2054. OK: | 147 ( 8.57%) | 249 ( 6.48%)
  2055. NXDOMAIN: | 1514 ( 88.23%) | 2512 ( 65.33%)
  2056. SERVFAIL: | 55 ( 3.21%) | 97 ( 2.52%)
  2057. REFUSED: | 0 ( 0.00%) | 987 ( 25.67%)
  2058. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2059.  
  2060.  
  2061.  
  2062. Processed queries: 1919
  2063. Received packets: 4284
  2064. Progress: 100.00% (00 h 00 min 11 sec / 00 h 00 min 11 sec)
  2065. Current incoming rate: 409 pps, average: 388 pps
  2066. Current success rate: 38 pps, average: 159 pps
  2067. Finished total: 1755, success: 1755 (100.00%)
  2068. Mismatched domains: 1890 (44.44%), IDs: 0 (0.00%)
  2069. Failures: 0: 4.67%, 1: 8.66%, 2: 7.75%, 3: 8.21%, 4: 8.09%, 5: 7.29%, 6: 7.69%, 7: 4.27%, 8: 3.87%, 9: 4.67%, 10: 3.99%, 11: 4.50%, 12: 3.82%, 13: 5.07%, 14: 2.91%, 15: 2.17%, 16: 2.56%, 17: 2.51%, 18: 2.28%, 19: 1.94%, 20: 1.08%, 21: 5.07%, 22: 5.01%, 23: 0.97%, 24: 0.28%, 25: 0.00%, 26: 0.00%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2070. Response: | Success: | Total:
  2071. OK: | 150 ( 8.55%) | 277 ( 6.51%)
  2072. NXDOMAIN: | 1550 ( 88.32%) | 2773 ( 65.20%)
  2073. SERVFAIL: | 55 ( 3.13%) | 109 ( 2.56%)
  2074. REFUSED: | 0 ( 0.00%) | 1094 ( 25.72%)
  2075. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2076.  
  2077.  
  2078.  
  2079. Processed queries: 1919
  2080. Received packets: 4689
  2081. Progress: 100.00% (00 h 00 min 12 sec / 00 h 00 min 12 sec)
  2082. Current incoming rate: 404 pps, average: 390 pps
  2083. Current success rate: 18 pps, average: 147 pps
  2084. Finished total: 1774, success: 1774 (100.00%)
  2085. Mismatched domains: 2264 (48.64%), IDs: 0 (0.00%)
  2086. Failures: 0: 4.62%, 1: 8.57%, 2: 7.67%, 3: 8.12%, 4: 8.00%, 5: 7.22%, 6: 7.61%, 7: 4.23%, 8: 3.83%, 9: 4.62%, 10: 3.95%, 11: 4.45%, 12: 3.78%, 13: 5.02%, 14: 2.87%, 15: 2.14%, 16: 2.54%, 17: 2.48%, 18: 2.25%, 19: 1.92%, 20: 1.07%, 21: 1.18%, 22: 0.90%, 23: 4.17%, 24: 4.11%, 25: 0.73%, 26: 0.11%, 27: 0.00%, 28: 0.00%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2087. Response: | Success: | Total:
  2088. OK: | 150 ( 8.46%) | 296 ( 6.36%)
  2089. NXDOMAIN: | 1568 ( 88.39%) | 3036 ( 65.22%)
  2090. SERVFAIL: | 56 ( 3.16%) | 118 ( 2.53%)
  2091. REFUSED: | 0 ( 0.00%) | 1205 ( 25.89%)
  2092. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2093.  
  2094.  
  2095.  
  2096. Processed queries: 1919
  2097. Received packets: 5068
  2098. Progress: 100.00% (00 h 00 min 13 sec / 00 h 00 min 13 sec)
  2099. Current incoming rate: 378 pps, average: 389 pps
  2100. Current success rate: 12 pps, average: 137 pps
  2101. Finished total: 1787, success: 1787 (100.00%)
  2102. Mismatched domains: 2622 (52.14%), IDs: 0 (0.00%)
  2103. Failures: 0: 4.59%, 1: 8.51%, 2: 7.61%, 3: 8.06%, 4: 7.95%, 5: 7.16%, 6: 7.55%, 7: 4.20%, 8: 3.81%, 9: 4.59%, 10: 3.92%, 11: 4.42%, 12: 3.75%, 13: 4.98%, 14: 2.85%, 15: 2.13%, 16: 2.52%, 17: 2.46%, 18: 2.24%, 19: 1.90%, 20: 1.06%, 21: 1.18%, 22: 0.90%, 23: 0.45%, 24: 0.56%, 25: 4.09%, 26: 3.30%, 27: 0.56%, 28: 0.11%, 29: 0.00%, 30: 0.00%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2104. Response: | Success: | Total:
  2105. OK: | 150 ( 8.39%) | 317 ( 6.30%)
  2106. NXDOMAIN: | 1580 ( 88.42%) | 3286 ( 65.34%)
  2107. SERVFAIL: | 57 ( 3.19%) | 128 ( 2.55%)
  2108. REFUSED: | 0 ( 0.00%) | 1298 ( 25.81%)
  2109. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2110.  
  2111.  
  2112.  
  2113. Processed queries: 1919
  2114. Received packets: 5481
  2115. Progress: 100.00% (00 h 00 min 14 sec / 00 h 00 min 14 sec)
  2116. Current incoming rate: 412 pps, average: 390 pps
  2117. Current success rate: 20 pps, average: 128 pps
  2118. Finished total: 1808, success: 1808 (100.00%)
  2119. Mismatched domains: 3006 (55.27%), IDs: 0 (0.00%)
  2120. Failures: 0: 4.54%, 1: 8.41%, 2: 7.52%, 3: 7.96%, 4: 7.85%, 5: 7.08%, 6: 7.47%, 7: 4.15%, 8: 3.76%, 9: 4.54%, 10: 3.87%, 11: 4.37%, 12: 3.71%, 13: 4.92%, 14: 2.82%, 15: 2.10%, 16: 2.49%, 17: 2.43%, 18: 2.21%, 19: 1.88%, 20: 1.05%, 21: 1.16%, 22: 0.88%, 23: 0.44%, 24: 0.55%, 25: 0.44%, 26: 0.50%, 27: 4.31%, 28: 2.10%, 29: 0.50%, 30: 0.11%, 31: 0.00%, 32: 0.00%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2121. Response: | Success: | Total:
  2122. OK: | 151 ( 8.35%) | 347 ( 6.38%)
  2123. NXDOMAIN: | 1600 ( 88.50%) | 3545 ( 65.18%)
  2124. SERVFAIL: | 57 ( 3.15%) | 135 ( 2.48%)
  2125. REFUSED: | 0 ( 0.00%) | 1412 ( 25.96%)
  2126. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2127.  
  2128.  
  2129.  
  2130. Processed queries: 1919
  2131. Received packets: 5885
  2132. Progress: 100.00% (00 h 00 min 15 sec / 00 h 00 min 15 sec)
  2133. Current incoming rate: 403 pps, average: 391 pps
  2134. Current success rate: 26 pps, average: 122 pps
  2135. Finished total: 1835, success: 1835 (100.00%)
  2136. Mismatched domains: 3365 (57.62%), IDs: 0 (0.00%)
  2137. Failures: 0: 4.47%, 1: 8.28%, 2: 7.41%, 3: 7.85%, 4: 7.74%, 5: 6.98%, 6: 7.36%, 7: 4.09%, 8: 3.71%, 9: 4.47%, 10: 3.81%, 11: 4.31%, 12: 3.65%, 13: 4.85%, 14: 2.78%, 15: 2.07%, 16: 2.45%, 17: 2.40%, 18: 2.18%, 19: 1.85%, 20: 1.04%, 21: 1.14%, 22: 0.87%, 23: 0.44%, 24: 0.54%, 25: 0.44%, 26: 0.49%, 27: 0.71%, 28: 0.60%, 29: 3.38%, 30: 1.69%, 31: 0.44%, 32: 0.11%, 33: 0.00%, 34: 0.00%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2138. Response: | Success: | Total:
  2139. OK: | 153 ( 8.34%) | 368 ( 6.30%)
  2140. NXDOMAIN: | 1625 ( 88.56%) | 3800 ( 65.07%)
  2141. SERVFAIL: | 57 ( 3.11%) | 147 ( 2.52%)
  2142. REFUSED: | 0 ( 0.00%) | 1525 ( 26.11%)
  2143. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2144.  
  2145.  
  2146.  
  2147. Processed queries: 1919
  2148. Received packets: 6277
  2149. Progress: 100.00% (00 h 00 min 16 sec / 00 h 00 min 16 sec)
  2150. Current incoming rate: 391 pps, average: 391 pps
  2151. Current success rate: 24 pps, average: 116 pps
  2152. Finished total: 1860, success: 1860 (100.00%)
  2153. Mismatched domains: 3716 (59.65%), IDs: 0 (0.00%)
  2154. Failures: 0: 4.41%, 1: 8.17%, 2: 7.31%, 3: 7.74%, 4: 7.63%, 5: 6.88%, 6: 7.26%, 7: 4.03%, 8: 3.66%, 9: 4.41%, 10: 3.76%, 11: 4.25%, 12: 3.60%, 13: 4.78%, 14: 2.74%, 15: 2.04%, 16: 2.42%, 17: 2.37%, 18: 2.15%, 19: 1.83%, 20: 1.02%, 21: 1.13%, 22: 0.86%, 23: 0.43%, 24: 0.54%, 25: 0.43%, 26: 0.48%, 27: 0.70%, 28: 0.59%, 29: 0.59%, 30: 0.70%, 31: 2.53%, 32: 1.29%, 33: 0.38%, 34: 0.05%, 35: 0.00%, 36: 0.00%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2155. Response: | Success: | Total:
  2156. OK: | 153 ( 8.23%) | 391 ( 6.28%)
  2157. NXDOMAIN: | 1648 ( 88.60%) | 4046 ( 64.94%)
  2158. SERVFAIL: | 59 ( 3.17%) | 158 ( 2.54%)
  2159. REFUSED: | 0 ( 0.00%) | 1635 ( 26.24%)
  2160. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2161.  
  2162.  
  2163.  
  2164. Processed queries: 1919
  2165. Received packets: 6681
  2166. Progress: 100.00% (00 h 00 min 17 sec / 00 h 00 min 17 sec)
  2167. Current incoming rate: 403 pps, average: 392 pps
  2168. Current success rate: 37 pps, average: 111 pps
  2169. Finished total: 1898, success: 1898 (100.00%)
  2170. Mismatched domains: 4058 (61.17%), IDs: 0 (0.00%)
  2171. Failures: 0: 4.32%, 1: 8.01%, 2: 7.17%, 3: 7.59%, 4: 7.48%, 5: 6.74%, 6: 7.11%, 7: 3.95%, 8: 3.58%, 9: 4.32%, 10: 3.69%, 11: 4.16%, 12: 3.53%, 13: 4.69%, 14: 2.69%, 15: 2.00%, 16: 2.37%, 17: 2.32%, 18: 2.11%, 19: 1.79%, 20: 1.00%, 21: 1.11%, 22: 0.84%, 23: 0.42%, 24: 0.53%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.58%, 29: 0.58%, 30: 0.68%, 31: 0.53%, 32: 1.21%, 33: 1.37%, 34: 0.68%, 35: 0.32%, 36: 0.05%, 37: 0.00%, 38: 0.00%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2172. Response: | Success: | Total:
  2173. OK: | 157 ( 8.27%) | 409 ( 6.17%)
  2174. NXDOMAIN: | 1682 ( 88.62%) | 4295 ( 64.74%)
  2175. SERVFAIL: | 59 ( 3.11%) | 165 ( 2.49%)
  2176. REFUSED: | 0 ( 0.00%) | 1765 ( 26.61%)
  2177. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2178.  
  2179.  
  2180.  
  2181. Processed queries: 1919
  2182. Received packets: 7075
  2183. Progress: 100.00% (00 h 00 min 18 sec / 00 h 00 min 18 sec)
  2184. Current incoming rate: 393 pps, average: 392 pps
  2185. Current success rate: 15 pps, average: 106 pps
  2186. Finished total: 1914, success: 1914 (100.00%)
  2187. Mismatched domains: 4430 (63.05%), IDs: 0 (0.00%)
  2188. Failures: 0: 4.28%, 1: 7.94%, 2: 7.11%, 3: 7.52%, 4: 7.42%, 5: 6.69%, 6: 7.05%, 7: 3.92%, 8: 3.55%, 9: 4.28%, 10: 3.66%, 11: 4.13%, 12: 3.50%, 13: 4.65%, 14: 2.66%, 15: 1.99%, 16: 2.35%, 17: 2.30%, 18: 2.09%, 19: 1.78%, 20: 0.99%, 21: 1.10%, 22: 0.84%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.10%, 34: 0.68%, 35: 0.26%, 36: 0.16%, 37: 0.10%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2189. Response: | Success: | Total:
  2190. OK: | 157 ( 8.20%) | 432 ( 6.15%)
  2191. NXDOMAIN: | 1697 ( 88.66%) | 4556 ( 64.84%)
  2192. SERVFAIL: | 60 ( 3.13%) | 173 ( 2.46%)
  2193. REFUSED: | 0 ( 0.00%) | 1865 ( 26.54%)
  2194. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2195.  
  2196.  
  2197.  
  2198. Processed queries: 1919
  2199. Received packets: 7474
  2200. Progress: 100.00% (00 h 00 min 19 sec / 00 h 00 min 19 sec)
  2201. Current incoming rate: 398 pps, average: 392 pps
  2202. Current success rate: 2 pps, average: 100 pps
  2203. Finished total: 1917, success: 1917 (100.00%)
  2204. Mismatched domains: 4819 (64.95%), IDs: 0 (0.00%)
  2205. Failures: 0: 4.28%, 1: 7.93%, 2: 7.09%, 3: 7.51%, 4: 7.41%, 5: 6.68%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.50%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.30%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.10%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.10%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.10%, 38: 0.10%, 39: 0.00%, 40: 0.05%, 41: 0.00%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2206. Response: | Success: | Total:
  2207. OK: | 158 ( 8.24%) | 453 ( 6.11%)
  2208. NXDOMAIN: | 1699 ( 88.63%) | 4799 ( 64.69%)
  2209. SERVFAIL: | 60 ( 3.13%) | 185 ( 2.49%)
  2210. REFUSED: | 0 ( 0.00%) | 1982 ( 26.72%)
  2211. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2212.  
  2213.  
  2214.  
  2215. Processed queries: 1919
  2216. Received packets: 7863
  2217. Progress: 100.00% (00 h 00 min 20 sec / 00 h 00 min 20 sec)
  2218. Current incoming rate: 388 pps, average: 392 pps
  2219. Current success rate: 0 pps, average: 95 pps
  2220. Finished total: 1918, success: 1918 (100.00%)
  2221. Mismatched domains: 5206 (66.68%), IDs: 0 (0.00%)
  2222. Failures: 0: 4.28%, 1: 7.92%, 2: 7.09%, 3: 7.51%, 4: 7.40%, 5: 6.67%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.29%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.05%, 40: 0.00%, 41: 0.05%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2223. Response: | Success: | Total:
  2224. OK: | 158 ( 8.24%) | 477 ( 6.11%)
  2225. NXDOMAIN: | 1700 ( 88.63%) | 5061 ( 64.83%)
  2226. SERVFAIL: | 60 ( 3.13%) | 195 ( 2.50%)
  2227. REFUSED: | 0 ( 0.00%) | 2074 ( 26.57%)
  2228. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2229.  
  2230.  
  2231.  
  2232. Processed queries: 1919
  2233. Received packets: 8056
  2234. Progress: 100.00% (00 h 00 min 21 sec / 00 h 00 min 21 sec)
  2235. Current incoming rate: 192 pps, average: 382 pps
  2236. Current success rate: 0 pps, average: 91 pps
  2237. Finished total: 1918, success: 1918 (100.00%)
  2238. Mismatched domains: 5399 (67.49%), IDs: 0 (0.00%)
  2239. Failures: 0: 4.28%, 1: 7.92%, 2: 7.09%, 3: 7.51%, 4: 7.40%, 5: 6.67%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.29%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.10%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2240. Response: | Success: | Total:
  2241. OK: | 158 ( 8.24%) | 486 ( 6.07%)
  2242. NXDOMAIN: | 1700 ( 88.63%) | 5202 ( 65.03%)
  2243. SERVFAIL: | 60 ( 3.13%) | 201 ( 2.51%)
  2244. REFUSED: | 0 ( 0.00%) | 2111 ( 26.39%)
  2245. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2246.  
  2247.  
  2248.  
  2249. Processed queries: 1919
  2250. Received packets: 8071
  2251. Progress: 100.00% (00 h 00 min 22 sec / 00 h 00 min 22 sec)
  2252. Current incoming rate: 14 pps, average: 366 pps
  2253. Current success rate: 0 pps, average: 87 pps
  2254. Finished total: 1918, success: 1918 (100.00%)
  2255. Mismatched domains: 5414 (67.55%), IDs: 0 (0.00%)
  2256. Failures: 0: 4.28%, 1: 7.92%, 2: 7.09%, 3: 7.51%, 4: 7.40%, 5: 6.67%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.29%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.05%, 42: 0.00%, 43: 0.05%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2257. Response: | Success: | Total:
  2258. OK: | 158 ( 8.24%) | 486 ( 6.06%)
  2259. NXDOMAIN: | 1700 ( 88.63%) | 5212 ( 65.03%)
  2260. SERVFAIL: | 60 ( 3.13%) | 203 ( 2.53%)
  2261. REFUSED: | 0 ( 0.00%) | 2114 ( 26.38%)
  2262. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2263.  
  2264.  
  2265.  
  2266. Processed queries: 1919
  2267. Received packets: 8077
  2268. Progress: 100.00% (00 h 00 min 23 sec / 00 h 00 min 23 sec)
  2269. Current incoming rate: 5 pps, average: 350 pps
  2270. Current success rate: 0 pps, average: 83 pps
  2271. Finished total: 1918, success: 1918 (100.00%)
  2272. Mismatched domains: 5420 (67.57%), IDs: 0 (0.00%)
  2273. Failures: 0: 4.28%, 1: 7.92%, 2: 7.09%, 3: 7.51%, 4: 7.40%, 5: 6.67%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.29%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.05%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.05%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2274. Response: | Success: | Total:
  2275. OK: | 158 ( 8.24%) | 486 ( 6.06%)
  2276. NXDOMAIN: | 1700 ( 88.63%) | 5214 ( 65.00%)
  2277. SERVFAIL: | 60 ( 3.13%) | 204 ( 2.54%)
  2278. REFUSED: | 0 ( 0.00%) | 2117 ( 26.39%)
  2279. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2280.  
  2281.  
  2282.  
  2283. Processed queries: 1919
  2284. Received packets: 8088
  2285. Progress: 100.00% (00 h 00 min 24 sec / 00 h 00 min 24 sec)
  2286. Current incoming rate: 10 pps, average: 336 pps
  2287. Current success rate: 0 pps, average: 79 pps
  2288. Finished total: 1918, success: 1918 (100.00%)
  2289. Mismatched domains: 5431 (67.62%), IDs: 0 (0.00%)
  2290. Failures: 0: 4.28%, 1: 7.92%, 2: 7.09%, 3: 7.51%, 4: 7.40%, 5: 6.67%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.29%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.05%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.05%, 48: 0.00%, 49: 0.00%, 50: 0.00%,
  2291. Response: | Success: | Total:
  2292. OK: | 158 ( 8.24%) | 486 ( 6.05%)
  2293. NXDOMAIN: | 1700 ( 88.63%) | 5220 ( 64.99%)
  2294. SERVFAIL: | 60 ( 3.13%) | 208 ( 2.59%)
  2295. REFUSED: | 0 ( 0.00%) | 2118 ( 26.37%)
  2296. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2297.  
  2298.  
  2299.  
  2300. Processed queries: 1919
  2301. Received packets: 8095
  2302. Progress: 100.00% (00 h 00 min 25 sec / 00 h 00 min 25 sec)
  2303. Current incoming rate: 6 pps, average: 323 pps
  2304. Current success rate: 0 pps, average: 76 pps
  2305. Finished total: 1918, success: 1918 (100.00%)
  2306. Mismatched domains: 5438 (67.65%), IDs: 0 (0.00%)
  2307. Failures: 0: 4.28%, 1: 7.92%, 2: 7.09%, 3: 7.51%, 4: 7.40%, 5: 6.67%, 6: 7.04%, 7: 3.91%, 8: 3.55%, 9: 4.28%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.35%, 17: 2.29%, 18: 2.09%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.05%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.05%, 50: 0.00%,
  2308. Response: | Success: | Total:
  2309. OK: | 158 ( 8.24%) | 486 ( 6.05%)
  2310. NXDOMAIN: | 1700 ( 88.63%) | 5226 ( 65.01%)
  2311. SERVFAIL: | 60 ( 3.13%) | 209 ( 2.60%)
  2312. REFUSED: | 0 ( 0.00%) | 2118 ( 26.35%)
  2313. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2314.  
  2315.  
  2316.  
  2317. Processed queries: 1919
  2318. Received packets: 8096
  2319. Progress: 100.00% (00 h 00 min 25 sec / 00 h 00 min 25 sec)
  2320. Current incoming rate: 17 pps, average: 322 pps
  2321. Current success rate: 0 pps, average: 76 pps
  2322. Finished total: 1919, success: 1918 (99.95%)
  2323. Mismatched domains: 5439 (67.65%), IDs: 0 (0.00%)
  2324. Failures: 0: 4.27%, 1: 7.92%, 2: 7.09%, 3: 7.50%, 4: 7.40%, 5: 6.67%, 6: 7.03%, 7: 3.91%, 8: 3.54%, 9: 4.27%, 10: 3.65%, 11: 4.12%, 12: 3.49%, 13: 4.64%, 14: 2.66%, 15: 1.98%, 16: 2.34%, 17: 2.29%, 18: 2.08%, 19: 1.77%, 20: 0.99%, 21: 1.09%, 22: 0.83%, 23: 0.42%, 24: 0.52%, 25: 0.42%, 26: 0.47%, 27: 0.68%, 28: 0.57%, 29: 0.57%, 30: 0.68%, 31: 0.52%, 32: 1.20%, 33: 1.09%, 34: 0.68%, 35: 0.21%, 36: 0.16%, 37: 0.05%, 38: 0.10%, 39: 0.00%, 40: 0.00%, 41: 0.05%, 42: 0.00%, 43: 0.00%, 44: 0.00%, 45: 0.00%, 46: 0.00%, 47: 0.00%, 48: 0.00%, 49: 0.00%, 50: 0.05%,
  2325. Response: | Success: | Total:
  2326. OK: | 158 ( 8.24%) | 486 ( 6.04%)
  2327. NXDOMAIN: | 1700 ( 88.63%) | 5226 ( 65.00%)
  2328. SERVFAIL: | 60 ( 3.13%) | 210 ( 2.61%)
  2329. REFUSED: | 0 ( 0.00%) | 2118 ( 26.34%)
  2330. FORMERR: | 0 ( 0.00%) | 0 ( 0.00%)
  2331. www.respectwashington.us
  2332. respectwashington.us.
  2333. ######################################################################################################################################
  2334. [+] www.respectwashington.us has no SPF record!
  2335. [*] No DMARC record found. Looking for organizational record
  2336. [+] No organizational DMARC record
  2337. [+] Spoofing possible for www.respectwashington.us!
  2338. ######################################################################################################################################
  2339. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:57 EDT
  2340. Nmap scan report for www.respectwashington.us (65.49.16.26)
  2341. Host is up (0.79s latency).
  2342. rDNS record for 65.49.16.26: respectwashington.us
  2343. Not shown: 992 closed ports
  2344. PORT STATE SERVICE
  2345. 80/tcp open http
  2346. 110/tcp open pop3
  2347. 143/tcp open imap
  2348. 443/tcp open https
  2349. 465/tcp open smtps
  2350. 587/tcp open submission
  2351. 993/tcp open imaps
  2352. 995/tcp open pop3s
  2353.  
  2354. Nmap done: 1 IP address (1 host up) scanned in 3.83 seconds
  2355. ######################################################################################################################################
  2356. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:57 EDT
  2357. Nmap scan report for www.respectwashington.us (65.49.16.26)
  2358. Host is up (0.28s latency).
  2359. rDNS record for 65.49.16.26: respectwashington.us
  2360. Not shown: 12 closed ports, 2 filtered ports
  2361. PORT STATE SERVICE
  2362. 2049/udp open|filtered nfs
  2363.  
  2364. Nmap done: 1 IP address (1 host up) scanned in 7.48 seconds
  2365. ######################################################################################################################################
  2366. HTTP/1.1 200 OK
  2367. Date: Tue, 22 Oct 2019 13:57:25 GMT
  2368. Server: Apache/2.4.18 (Ubuntu)
  2369. Last-Modified: Fri, 23 Feb 2018 15:15:28 GMT
  2370. ETag: "8956-565e2a1613be1"
  2371. Accept-Ranges: bytes
  2372. Content-Length: 35158
  2373. Vary: Accept-Encoding
  2374. Content-Type: text/html
  2375.  
  2376. Allow: GET,HEAD,POST,OPTIONS
  2377. ######################################################################################################################################
  2378. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX Top Nav XXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  2379. <!--Second row-->
  2380. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX End Top Nav XXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  2381. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX About the legislation XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  2382. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX Cost of the legislation XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  2383. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXX Quote from WA Sate Constitution XXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  2384. <!-- XXXXXXXXXXXXXXXXXXXX "Keep it Legal" logo XXXXXXXXXXXXXXXXX-->
  2385. <!-- XXXXXXXXXXXXXXXXXX End "Keep it Legal" logo XXXXXXXXXXXXXXXXX-->
  2386. ######################################################################################################################################
  2387. http://www.w3.org/1999/xhtml
  2388. text/css
  2389. -//W3C//DTD XHTML 1.0 Transitional//EN
  2390. #######################################################################################################################################
  2391. http://www.respectwashington.us [200 OK] Apache[2.4.18], Country[UNITED STATES][US], Email[[email protected]], HTTPServer[Ubuntu Linux][Apache/2.4.18 (Ubuntu)], IP[65.49.16.26], Title[RespectWashington]
  2392. #######################################################################################################################################
  2393.  
  2394. wig - WebApp Information Gatherer
  2395.  
  2396.  
  2397. Scanning http://www.respectwashington.us...
  2398. _________________ SITE INFO __________________
  2399. IP Title
  2400. 65.49.16.26 RespectWashington
  2401.  
  2402. __________________ VERSION ___________________
  2403. Name Versions Type
  2404. Apache 2.4.18 Platform
  2405. Ubuntu 16.04 OS
  2406.  
  2407. ______________________________________________
  2408. Time: 90.4 sec Urls: 813 Fingerprints: 40401
  2409. #######################################################################################################################################
  2410. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:59 EDT
  2411. NSE: Loaded 163 scripts for scanning.
  2412. NSE: Script Pre-scanning.
  2413. Initiating NSE at 09:59
  2414. Completed NSE at 09:59, 0.00s elapsed
  2415. Initiating NSE at 09:59
  2416. Completed NSE at 09:59, 0.00s elapsed
  2417. Initiating Parallel DNS resolution of 1 host. at 09:59
  2418. Completed Parallel DNS resolution of 1 host. at 09:59, 0.03s elapsed
  2419. Initiating SYN Stealth Scan at 09:59
  2420. Scanning www.respectwashington.us (65.49.16.26) [1 port]
  2421. Discovered open port 80/tcp on 65.49.16.26
  2422. Completed SYN Stealth Scan at 09:59, 0.27s elapsed (1 total ports)
  2423. Initiating Service scan at 09:59
  2424. Scanning 1 service on www.respectwashington.us (65.49.16.26)
  2425. Completed Service scan at 09:59, 6.49s elapsed (1 service on 1 host)
  2426. Initiating OS detection (try #1) against www.respectwashington.us (65.49.16.26)
  2427. Retrying OS detection (try #2) against www.respectwashington.us (65.49.16.26)
  2428. Initiating Traceroute at 09:59
  2429. Completed Traceroute at 09:59, 1.32s elapsed
  2430. Initiating Parallel DNS resolution of 11 hosts. at 09:59
  2431. Completed Parallel DNS resolution of 11 hosts. at 09:59, 0.24s elapsed
  2432. NSE: Script scanning 65.49.16.26.
  2433. Initiating NSE at 09:59
  2434. Completed NSE at 10:01, 95.87s elapsed
  2435. Initiating NSE at 10:01
  2436. Completed NSE at 10:01, 1.45s elapsed
  2437. Nmap scan report for www.respectwashington.us (65.49.16.26)
  2438. Host is up (0.30s latency).
  2439. rDNS record for 65.49.16.26: respectwashington.us
  2440.  
  2441. PORT STATE SERVICE VERSION
  2442. 80/tcp open http Apache httpd 2.4.18 ((Ubuntu))
  2443. | http-brute:
  2444. |_ Path "/" does not require authentication
  2445. |_http-chrono: Request times for /; avg: 1578.32ms; min: 1423.87ms; max: 1782.78ms
  2446. | http-csrf:
  2447. | Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=www.respectwashington.us
  2448. | Found the following possible CSRF vulnerabilities:
  2449. |
  2450. | Path: http://www.respectwashington.us:80/donate.html
  2451. | Form id:
  2452. |_ Form action: https://www.paypal.com/cgi-bin/webscr
  2453. |_http-date: Tue, 22 Oct 2019 13:59:46 GMT; -1s from local time.
  2454. |_http-devframework: Couldn't determine the underlying framework or CMS. Try increasing 'httpspider.maxpagecount' value to spider more pages.
  2455. |_http-dombased-xss: Couldn't find any DOM based XSS.
  2456. |_http-drupal-enum: Nothing found amongst the top 100 resources,use --script-args number=<number|all> for deeper analysis)
  2457. | http-errors:
  2458. | Spidering limited to: maxpagecount=40; withinhost=www.respectwashington.us
  2459. | Found the following error pages:
  2460. |
  2461. | Error Code: 404
  2462. |_ http://www.respectwashington.us:80/MarchPetition
  2463. |_http-exif-spider: ERROR: Script execution failed (use -d to debug)
  2464. |_http-feed: Couldn't find any feeds.
  2465. |_http-fetch: Please enter the complete path of the directory to save data in.
  2466. | http-fileupload-exploiter:
  2467. |
  2468. | Couldn't find a file-type field.
  2469. |
  2470. |_ Couldn't find a file-type field.
  2471. | http-grep:
  2472. | (1) http://www.respectwashington.us:80/:
  2473. | (1) email:
  2474. | (1) http://www.respectwashington.us:80/volunteer.html:
  2475. | (1) email:
  2476. | (1) http://www.respectwashington.us:80/donate.html:
  2477. | (1) email:
  2478. | (1) http://www.respectwashington.us:80/petition.html:
  2479. | (1) email:
  2480. | (356) http://www.respectwashington.us:80/support.html:
  2481. | (356) email:
  2482. | http-headers:
  2483. | Date: Tue, 22 Oct 2019 13:59:43 GMT
  2484. | Server: Apache/2.4.18 (Ubuntu)
  2485. | Last-Modified: Fri, 23 Feb 2018 15:15:28 GMT
  2486. | ETag: "8956-565e2a1613be1"
  2487. | Accept-Ranges: bytes
  2488. | Content-Length: 35158
  2489. | Vary: Accept-Encoding
  2490. | Connection: close
  2491. | Content-Type: text/html
  2492. |
  2493. |_ (Request type: HEAD)
  2494. |_http-jsonp-detection: Couldn't find any JSONP endpoints.
  2495. | http-methods:
  2496. |_ Supported Methods: GET HEAD POST OPTIONS
  2497. |_http-mobileversion-checker: No mobile version detected.
  2498. | http-php-version: Logo query returned unknown hash 70292b41bac2f29a9009dbd6b677a696
  2499. |_Credits query returned unknown hash 70292b41bac2f29a9009dbd6b677a696
  2500. |_http-security-headers:
  2501. |_http-server-header: Apache/2.4.18 (Ubuntu)
  2502. | http-sitemap-generator:
  2503. | Directory structure:
  2504. | /
  2505. | Other: 1; css: 1; html: 9; jpg: 1; pdf: 6
  2506. | /rw-images/
  2507. | jpg: 1
  2508. | Longest directory structure:
  2509. | Depth: 1
  2510. | Dir: /rw-images/
  2511. | Total files found (by extension):
  2512. |_ Other: 1; css: 1; html: 9; jpg: 2; pdf: 6
  2513. |_http-stored-xss: Couldn't find any stored XSS vulnerabilities.
  2514. |_http-title: RespectWashington
  2515. | http-vhosts:
  2516. |_127 names had status 200
  2517. |_http-wordpress-enum: Nothing found amongst the top 100 resources,use --script-args search-limit=<number|all> for deeper analysis)
  2518. |_http-wordpress-users: [Error] Wordpress installation was not found. We couldn't find wp-login.php
  2519. |_http-xssed: No previously reported XSS vuln.
  2520. | vulners:
  2521. | cpe:/a:apache:http_server:2.4.18:
  2522. | CVE-2017-7679 7.5 https://vulners.com/cve/CVE-2017-7679
  2523. | CVE-2017-7668 7.5 https://vulners.com/cve/CVE-2017-7668
  2524. | CVE-2017-3169 7.5 https://vulners.com/cve/CVE-2017-3169
  2525. | CVE-2017-3167 7.5 https://vulners.com/cve/CVE-2017-3167
  2526. | CVE-2019-0211 7.2 https://vulners.com/cve/CVE-2019-0211
  2527. | CVE-2018-1312 6.8 https://vulners.com/cve/CVE-2018-1312
  2528. | CVE-2017-15715 6.8 https://vulners.com/cve/CVE-2017-15715
  2529. | CVE-2019-10082 6.4 https://vulners.com/cve/CVE-2019-10082
  2530. | CVE-2017-9788 6.4 https://vulners.com/cve/CVE-2017-9788
  2531. | CVE-2019-10098 5.8 https://vulners.com/cve/CVE-2019-10098
  2532. | CVE-2019-0220 5.0 https://vulners.com/cve/CVE-2019-0220
  2533. | CVE-2019-0196 5.0 https://vulners.com/cve/CVE-2019-0196
  2534. | CVE-2018-17199 5.0 https://vulners.com/cve/CVE-2018-17199
  2535. | CVE-2018-1333 5.0 https://vulners.com/cve/CVE-2018-1333
  2536. | CVE-2017-9798 5.0 https://vulners.com/cve/CVE-2017-9798
  2537. | CVE-2017-15710 5.0 https://vulners.com/cve/CVE-2017-15710
  2538. | CVE-2016-8743 5.0 https://vulners.com/cve/CVE-2016-8743
  2539. | CVE-2016-8740 5.0 https://vulners.com/cve/CVE-2016-8740
  2540. | CVE-2016-4979 5.0 https://vulners.com/cve/CVE-2016-4979
  2541. | CVE-2019-0197 4.9 https://vulners.com/cve/CVE-2019-0197
  2542. | CVE-2019-10092 4.3 https://vulners.com/cve/CVE-2019-10092
  2543. | CVE-2018-11763 4.3 https://vulners.com/cve/CVE-2018-11763
  2544. | CVE-2016-4975 4.3 https://vulners.com/cve/CVE-2016-4975
  2545. | CVE-2016-1546 4.3 https://vulners.com/cve/CVE-2016-1546
  2546. | CVE-2018-1283 3.5 https://vulners.com/cve/CVE-2018-1283
  2547. |_ CVE-2016-8612 3.3 https://vulners.com/cve/CVE-2016-8612
  2548. | vulscan: VulDB - https://vuldb.com:
  2549. | [88747] Apache HTTP Server 2.4.17/2.4.18 mod_http2 denial of service
  2550. | [76731] Apache HTTP Server 2.4.12 ErrorDocument 400 Crash denial of service
  2551. | [74367] Apache HTTP Server up to 2.4.12 mod_lua lua_request.c wsupgrade denial of service
  2552. | [68575] Apache HTTP Server up to 2.4.10 LuaAuthzProvider mod_lua.c privilege escalation
  2553. | [68435] Apache HTTP Server 2.4.10 mod_proxy_fcgi.c handle_headers denial of service
  2554. | [13300] Apache HTTP Server 2.4.1/2.4.2 mod_wsgi setuid privilege escalation
  2555. | [13299] Apache HTTP Server 2.4.1/2.4.2 mod_wsgi Content-Type Header information disclosure
  2556. | [136374] Apache HTTP Server up to 2.4.38 Slash Regular Expression unknown vulnerability
  2557. | [136373] Apache HTTP Server 2.4.34/2.4.35/2.4.36/2.4.37/2.4.38 HTTP2 Request Crash denial of service
  2558. | [136372] Apache HTTP Server up to 2.4.38 HTTP2 Request unknown vulnerability
  2559. | [133112] Apache HTTP Server up to 2.4.38 mod_auth_digest race condition privilege escalation
  2560. | [133111] Apache HTTP Server 2.4.37/2.4.38 mod_ssl Bypass privilege escalation
  2561. | [130341] Apache HTTP Server 2.4.37 mod_ssl Loop denial of service
  2562. | [130330] Apache HTTP Server up to 2.4.37 mod_session Expired privilege escalation
  2563. | [130329] Apache HTTP Server 2.4.37 mod_http2 Slowloris denial of service
  2564. | [124447] Apache HTTP Server up to 2.4.34 SETTINGS Frame denial of service
  2565. | [121910] Apache HTTP Server 2.4.33 mod_md HTTP Requests denial of service
  2566. | [122569] Apache HTTP Server up to 2.4.33 HTTP2 Request denial of service
  2567. | [115061] Apache HTTP Server up to 2.4.29 HTTP Digest Authentication Challenge HTTP Requests Replay privilege escalation
  2568. | [115060] Apache HTTP Server up to 2.4.29 mod_cache_socache Request Header Crash denial of service
  2569. | [115059] Apache HTTP Server up to 2.4.29 HTTP2 NULL Pointer Dereference denial of service
  2570. | [115058] Apache HTTP Server up to 2.4.29 HTTP Header Crash denial of service
  2571. | [115057] Apache HTTP Server up to 2.4.29 mod_session Variable Name Cache privilege escalation
  2572. | [115039] Apache HTTP Server up to 2.4.29 FilesMatch File Upload privilege escalation
  2573. | [114258] Apache HTTP Server up to 2.4.22 mod_cluster Segmentation Fault denial of service
  2574. | [104986] Apache CXF 2.4.5/2.5.1 WS-SP UsernameToken Policy SOAP Request weak authentication
  2575. | [103521] Apache HTTP Server 2.4.26 HTTP2 Free memory corruption
  2576. | [94627] Apache HTTP Server up to 2.4.24 mod_auth_digest Crash denial of service
  2577. | [94626] Apache HTTP Server up to 2.4.24 mod_session_crypto Padding weak encryption
  2578. | [94625] Apache HTTP Server up to 2.4.24 Response Split privilege escalation
  2579. | [93958] Apache HTTP Server up to 2.4.23 mod_http2 h2_stream.c denial of service
  2580. | [89669] Apache HTTP Server up to 2.4.23 RFC 3875 Namespace Conflict Environment Variable Open Redirect
  2581. | [88667] Apache HTTP Server up to 2.4.20 mod_http2 Certificate weak authentication
  2582. | [77083] Apache Groovy up to 2.4.3 MethodClosure.java MethodClosure memory corruption
  2583. | [76733] Apache HTTP Server 2.4.7/2.4.8/2.4.9/2.4.10/2.4.12 ap_some_auth_required unknown vulnerability
  2584. | [76732] Apache HTTP Server 2.4.7/2.4.8/2.4.9/2.4.10/2.4.12 Request apr_brigade_flatten privilege escalation
  2585. | [73106] Apache Hadoop up to 2.4.0 Symlink privilege escalation
  2586. | [67183] Apache HTTP Server up to 2.4.9 mod_proxy denial of service
  2587. | [67180] Apache HTTP Server up to 2.4.9 WinNT MPM Memory Leak denial of service
  2588. | [67185] Apache HTTP Server up to 2.4.9 mod_status Heap-Based memory corruption
  2589. | [67184] Apache HTTP Server 2.4.5/2.4.6 mod_cache NULL Pointer Dereference denial of service
  2590. | [67182] Apache HTTP Server up to 2.4.9 mod_deflate Memory Consumption denial of service
  2591. | [67181] Apache HTTP Server up to 2.4.9 mod_cgid denial of service
  2592. | [12667] Apache HTTP Server 2.4.7 mod_log_config.c log_cookie denial of service
  2593. | [9683] Apache HTTP Server 2.4.5 mod_session_dbd denial of service
  2594. | [7202] Apache HTTP Server 2.4.2 on Oracle Solaris ld_library_path cross site scripting
  2595. | [62417] Apache CXF 2.4.7/2.4.8/2.5.3/2.5.4/2.6.1 spoofing
  2596. | [6092] Apache HTTP Server 2.4.0/2.4.1/2.4.2 mod_proxy_ajp.c information disclosure
  2597. | [6090] Apache HTTP Server 2.4.0/2.4.1/2.4.2 mod_proxy_http.c information disclosure
  2598. | [9673] Apache HTTP Server up to 2.4.4 mod_dav mod_dav.c Request denial of service
  2599. |
  2600. | MITRE CVE - https://cve.mitre.org:
  2601. | [CVE-2013-2249] mod_session_dbd.c in the mod_session_dbd module in the Apache HTTP Server before 2.4.5 proceeds with save operations for a session without considering the dirty flag and the requirement for a new session ID, which has unspecified impact and remote attack vectors.
  2602. | [CVE-2012-4558] Multiple cross-site scripting (XSS) vulnerabilities in the balancer_handler function in the manager interface in mod_proxy_balancer.c in the mod_proxy_balancer module in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via a crafted string.
  2603. | [CVE-2012-3502] The proxy functionality in (1) mod_proxy_ajp.c in the mod_proxy_ajp module and (2) mod_proxy_http.c in the mod_proxy_http module in the Apache HTTP Server 2.4.x before 2.4.3 does not properly determine the situations that require closing a back-end connection, which allows remote attackers to obtain sensitive information in opportunistic circumstances by reading a response that was intended for a different client.
  2604. | [CVE-2012-3499] Multiple cross-site scripting (XSS) vulnerabilities in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via vectors involving hostnames and URIs in the (1) mod_imagemap, (2) mod_info, (3) mod_ldap, (4) mod_proxy_ftp, and (5) mod_status modules.
  2605. | [CVE-2012-3451] Apache CXF before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 allows remote attackers to execute unintended web-service operations by sending a header with a SOAP Action String that is inconsistent with the message body.
  2606. | [CVE-2012-2687] Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.
  2607. | [CVE-2012-2379] Apache CXF 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1, when a Supporting Token specifies a child WS-SecurityPolicy 1.1 or 1.2 policy, does not properly ensure that an XML element is signed or encrypted, which has unspecified impact and attack vectors.
  2608. | [CVE-2012-2378] Apache CXF 2.4.5 through 2.4.7, 2.5.1 through 2.5.3, and 2.6.x before 2.6.1, does not properly enforce child policies of a WS-SecurityPolicy 1.1 SupportingToken policy on the client side, which allows remote attackers to bypass the (1) AlgorithmSuite, (2) SignedParts, (3) SignedElements, (4) EncryptedParts, and (5) EncryptedElements policies.
  2609. | [CVE-2012-0883] envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl.
  2610. | [CVE-2011-2516] Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.
  2611. |
  2612. | SecurityFocus - https://www.securityfocus.com/bid/:
  2613. | [42102] Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure Vulnerability
  2614. | [27237] Apache HTTP Server 2.2.6, 2.0.61 and 1.3.39 'mod_status' Cross-Site Scripting Vulnerability
  2615. | [15413] PHP Apache 2 Virtual() Safe_Mode and Open_Basedir Restriction Bypass Vulnerability
  2616. | [15177] PHP Apache 2 Local Denial of Service Vulnerability
  2617. | [6065] Apache 2 WebDAV CGI POST Request Information Disclosure Vulnerability
  2618. | [5816] Apache 2 mod_dav Denial Of Service Vulnerability
  2619. | [5486] Apache 2.0 CGI Path Disclosure Vulnerability
  2620. | [5485] Apache 2.0 Path Disclosure Vulnerability
  2621. | [5434] Apache 2.0 Encoded Backslash Directory Traversal Vulnerability
  2622. | [5256] Apache httpd 2.0 CGI Error Path Disclosure Vulnerability
  2623. | [4057] Apache 2 for Windows OPTIONS request Path Disclosure Vulnerability
  2624. | [4056] Apache 2 for Windows php.exe Path Disclosure Vulnerability
  2625. |
  2626. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  2627. | [75211] Debian GNU/Linux apache 2 cross-site scripting
  2628. |
  2629. | Exploit-DB - https://www.exploit-db.com:
  2630. | [31052] Apache <= 2.2.6 'mod_negotiation' HTML Injection and HTTP Response Splitting Vulnerability
  2631. | [30901] Apache HTTP Server 2.2.6 Windows Share PHP File Extension Mapping Information Disclosure Vulnerability
  2632. | [30835] Apache HTTP Server <= 2.2.4 413 Error HTTP Request Method Cross-Site Scripting Weakness
  2633. | [28424] Apache 2.x HTTP Server Arbitrary HTTP Request Headers Security Weakness
  2634. | [28365] Apache 2.2.2 CGI Script Source Code Information Disclosure Vulnerability
  2635. | [27915] Apache James 2.2 SMTP Denial of Service Vulnerability
  2636. | [27135] Apache Struts 2 DefaultActionMapper Prefixes OGNL Code Execution
  2637. | [26710] Apache CXF prior to 2.5.10, 2.6.7 and 2.7.4 - Denial of Service
  2638. | [24590] Apache 2.0.x mod_ssl Remote Denial of Service Vulnerability
  2639. | [23581] Apache 2.0.4x mod_perl Module File Descriptor Leakage Vulnerability
  2640. | [23482] Apache 2.0.4x mod_php Module File Descriptor Leakage Vulnerability (2)
  2641. | [23481] Apache 2.0.4x mod_php Module File Descriptor Leakage Vulnerability (1)
  2642. | [23296] Red Hat Apache 2.0.40 Directory Index Default Configuration Error
  2643. | [23282] apache cocoon 2.14/2.2 - Directory Traversal vulnerability
  2644. | [22191] Apache Web Server 2.0.x MS-DOS Device Name Denial of Service Vulnerability
  2645. | [21854] Apache 2.0.39/40 Oversized STDERR Buffer Denial of Service Vulnerability
  2646. | [21719] Apache 2.0 Path Disclosure Vulnerability
  2647. | [21697] Apache 2.0 Encoded Backslash Directory Traversal Vulnerability
  2648. | [20272] Apache 1.2.5/1.3.1,UnityMail 2.0 MIME Header DoS Vulnerability
  2649. | [19828] Cobalt RaQ 2.0/3.0 Apache .htaccess Disclosure Vulnerability
  2650. | [18984] Apache Struts <= 2.2.1.1 - Remote Command Execution
  2651. | [18329] Apache Struts2 <= 2.3.1 - Multiple Vulnerabilities
  2652. | [17691] Apache Struts < 2.2.0 - Remote Command Execution
  2653. | [15319] Apache 2.2 (Windows) Local Denial of Service
  2654. | [14617] Apache JackRabbit 2.0.0 webapp XPath Injection
  2655. | [11650] Apache 2.2.14 mod_isapi Dangling Pointer Remote SYSTEM Exploit
  2656. | [8458] Apache Geronimo <= 2.1.3 - Multiple Directory Traversal Vulnerabilities
  2657. | [5330] Apache 2.0 mod_jk2 2.0.2 - Remote Buffer Overflow Exploit (win32)
  2658. | [3996] Apache 2.0.58 mod_rewrite Remote Overflow Exploit (win2k3)
  2659. | [2237] Apache < 1.3.37, 2.0.59, 2.2.3 (mod_rewrite) Remote Overflow PoC
  2660. | [1056] Apache <= 2.0.49 Arbitrary Long HTTP Headers Denial of Service
  2661. | [855] Apache <= 2.0.52 HTTP GET request Denial of Service Exploit
  2662. | [132] Apache 1.3.x - 2.0.48 - mod_userdir Remote Users Disclosure Exploit
  2663. | [38] Apache <= 2.0.45 APR Remote Exploit -Apache-Knacker.pl
  2664. | [34] Webfroot Shoutbox < 2.32 (Apache) Remote Exploit
  2665. | [11] Apache <= 2.0.44 Linux Remote Denial of Service Exploit
  2666. | [9] Apache HTTP Server 2.x Memory Leak Exploit
  2667. |
  2668. | OpenVAS (Nessus) - http://www.openvas.org:
  2669. | [855524] Solaris Update for Apache 2 120544-14
  2670. | [855077] Solaris Update for Apache 2 120543-14
  2671. | [100858] Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure Vulnerability
  2672. | [72626] Debian Security Advisory DSA 2579-1 (apache2)
  2673. | [71551] Gentoo Security Advisory GLSA 201206-25 (apache)
  2674. | [71550] Gentoo Security Advisory GLSA 201206-24 (apache tomcat)
  2675. | [71485] Debian Security Advisory DSA 2506-1 (libapache-mod-security)
  2676. | [71256] Debian Security Advisory DSA 2452-1 (apache2)
  2677. | [71238] Debian Security Advisory DSA 2436-1 (libapache2-mod-fcgid)
  2678. | [70724] Debian Security Advisory DSA 2405-1 (apache2)
  2679. | [70235] Debian Security Advisory DSA 2298-2 (apache2)
  2680. | [70233] Debian Security Advisory DSA 2298-1 (apache2)
  2681. | [69988] Debian Security Advisory DSA 2279-1 (libapache2-mod-authnz-external)
  2682. | [69338] Debian Security Advisory DSA 2202-1 (apache2)
  2683. | [65131] SLES9: Security update for Apache 2 oes/CORE
  2684. | [64426] Gentoo Security Advisory GLSA 200907-04 (apache)
  2685. | [61381] Gentoo Security Advisory GLSA 200807-06 (apache)
  2686. | [60582] Gentoo Security Advisory GLSA 200803-19 (apache)
  2687. | [58745] Gentoo Security Advisory GLSA 200711-06 (apache)
  2688. | [57851] Gentoo Security Advisory GLSA 200608-01 (apache)
  2689. | [56246] Gentoo Security Advisory GLSA 200602-03 (Apache)
  2690. | [55392] Gentoo Security Advisory GLSA 200509-12 (Apache)
  2691. | [55129] Gentoo Security Advisory GLSA 200508-15 (apache)
  2692. | [54739] Gentoo Security Advisory GLSA 200411-18 (apache)
  2693. | [54724] Gentoo Security Advisory GLSA 200411-03 (apache)
  2694. | [54712] Gentoo Security Advisory GLSA 200410-21 (apache)
  2695. | [54689] Gentoo Security Advisory GLSA 200409-33 (net=www/apache)
  2696. | [54677] Gentoo Security Advisory GLSA 200409-21 (apache)
  2697. | [54610] Gentoo Security Advisory GLSA 200407-03 (Apache)
  2698. | [54601] Gentoo Security Advisory GLSA 200406-16 (Apache)
  2699. | [54590] Gentoo Security Advisory GLSA 200406-05 (Apache)
  2700. | [54582] Gentoo Security Advisory GLSA 200405-22 (Apache)
  2701. | [54529] Gentoo Security Advisory GLSA 200403-04 (Apache)
  2702. | [54499] Gentoo Security Advisory GLSA 200310-04 (Apache)
  2703. | [54498] Gentoo Security Advisory GLSA 200310-03 (Apache)
  2704. | [11092] Apache 2.0.39 Win32 directory traversal
  2705. | [66081] SLES11: Security update for Apache 2
  2706. | [66074] SLES10: Security update for Apache 2
  2707. | [66070] SLES9: Security update for Apache 2
  2708. | [65893] SLES10: Security update for Apache 2
  2709. | [65888] SLES10: Security update for Apache 2
  2710. | [65510] SLES9: Security update for Apache 2
  2711. | [65249] SLES9: Security update for Apache 2
  2712. | [65230] SLES9: Security update for Apache 2
  2713. | [65228] SLES9: Security update for Apache 2
  2714. | [65207] SLES9: Security update for Apache 2
  2715. | [65136] SLES9: Security update for Apache 2
  2716. | [65017] SLES9: Security update for Apache 2
  2717. |
  2718. | SecurityTracker - https://www.securitytracker.com:
  2719. | [1008196] Apache 2.x on Windows May Return Unexpected Files For URLs Ending With Certain Characters
  2720. | [1007143] Apache 2.0 Web Server May Use a Weaker Encryption Implementation Than Specified in Some Cases
  2721. | [1006444] Apache 2.0 Web Server Line Feed Buffer Allocation Flaw Lets Remote Users Deny Service
  2722. | [1005963] Apache Web Server 2.x Windows Device Access Flaw Lets Remote Users Crash the Server or Possibly Execute Arbitrary Code
  2723. | [1004770] Apache 2.x Web Server ap_log_rerror() Function May Disclose Full Installation Path to Remote Users
  2724. |
  2725. | OSVDB - http://www.osvdb.org:
  2726. | [20897] PHP w/ Apache 2 SAPI virtual() Function Unspecified INI Setting Disclosure
  2727. |_
  2728. Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
  2729. Aggressive OS guesses: Linux 3.18 (99%), Linux 2.6.35 (98%), Tandberg VCS video conferencing system (98%), Synology DiskStation Manager 5.1 (98%), Linux 3.10 - 3.12 (98%), Linux 4.4 (98%), Linux 2.6.32 (97%), Linux 2.6.32 or 3.10 (97%), Linux 2.6.39 (97%), Linux 3.10 (97%)
  2730. No exact OS matches for host (test conditions non-ideal).
  2731. Uptime guess: 40.651 days (since Wed Sep 11 18:23:43 2019)
  2732. Network Distance: 11 hops
  2733. TCP Sequence Prediction: Difficulty=262 (Good luck!)
  2734. IP ID Sequence Generation: All zeros
  2735.  
  2736. TRACEROUTE (using port 80/tcp)
  2737. HOP RTT ADDRESS
  2738. 1 193.79 ms 10.252.204.1
  2739. 2 336.66 ms 45.131.4.3
  2740. 3 336.62 ms 109.236.95.228
  2741. 4 336.70 ms 109.236.95.167
  2742. 5 336.72 ms amsix-200gbps.core1.ams1.he.net (80.249.209.150)
  2743. 6 336.75 ms 100ge16-1.core1.lon2.he.net (72.52.92.213)
  2744. 7 336.79 ms 100ge13-2.core1.nyc4.he.net (72.52.92.166)
  2745. 8 436.58 ms 100ge8-1.core1.sjc2.he.net (184.105.81.218)
  2746. 9 308.61 ms 100ge13-2.core1.sjc1.he.net (184.105.65.113)
  2747. 10 436.64 ms e0-50.core4.fmt1.he.net (184.105.65.214)
  2748. 11 236.08 ms respectwashington.us (65.49.16.26)
  2749.  
  2750. NSE: Script Post-scanning.
  2751. Initiating NSE at 10:01
  2752. Completed NSE at 10:01, 0.00s elapsed
  2753. Initiating NSE at 10:01
  2754. Completed NSE at 10:01, 0.00s elapsed
  2755. ######################################################################################################################################
  2756. ------------------------------------------------------------------------------------------------------------------------
  2757.  
  2758. [ ! ] Starting SCANNER INURLBR 2.1 at [22-10-2019 10:01:37]
  2759. [ ! ] legal disclaimer: Usage of INURLBR for attacking targets without prior mutual consent is illegal.
  2760. It is the end user's responsibility to obey all applicable local, state and federal laws.
  2761. Developers assume no liability and are not responsible for any misuse or damage caused by this program
  2762.  
  2763. [ INFO ][ OUTPUT FILE ]:: [ /usr/share/sniper/loot/workspace/www.respectwashington.us/output/inurlbr-www.respectwashington.us ]
  2764. [ INFO ][ DORK ]::[ site:www.respectwashington.us ]
  2765. [ INFO ][ SEARCHING ]:: {
  2766. [ INFO ][ ENGINE ]::[ GOOGLE - www.google.dm ]
  2767.  
  2768. [ INFO ][ SEARCHING ]::
  2769. -[:::]
  2770. [ INFO ][ ENGINE ]::[ GOOGLE API ]
  2771.  
  2772. [ INFO ][ SEARCHING ]::
  2773. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  2774. [ INFO ][ ENGINE ]::[ GOOGLE_GENERIC_RANDOM - www.google.dz ID: 006748068166572874491:55ez0c3j3ey ]
  2775.  
  2776. [ INFO ][ SEARCHING ]::
  2777. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  2778.  
  2779. [ INFO ][ TOTAL FOUND VALUES ]:: [ 42 ]
  2780.  
  2781.  
  2782. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2783. |_[ + ] [ 0 / 42 ]-[10:01:57] [ - ]
  2784. |_[ + ] Target:: [ http://www.respectwashington.us/ ]
  2785. |_[ + ] Exploit::
  2786. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2787. |_[ + ] More details:: / - / , ISP:
  2788. |_[ + ] Found:: UNIDENTIFIED
  2789.  
  2790. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2791. |_[ + ] [ 1 / 42 ]-[10:02:00] [ - ]
  2792. |_[ + ] Target:: [ http://www.respectwashington.us/petition.html ]
  2793. |_[ + ] Exploit::
  2794. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2795. |_[ + ] More details:: / - / , ISP:
  2796. |_[ + ] Found:: UNIDENTIFIED
  2797.  
  2798. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2799. |_[ + ] [ 2 / 42 ]-[10:02:02] [ - ]
  2800. |_[ + ] Target:: [ http://www.respectwashington.us/support.html ]
  2801. |_[ + ] Exploit::
  2802. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2803. |_[ + ] More details:: / - / , ISP:
  2804. |_[ + ] Found:: UNIDENTIFIED
  2805.  
  2806. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2807. |_[ + ] [ 3 / 42 ]-[10:02:04] [ - ]
  2808. |_[ + ] Target:: [ http://www.respectwashington.us/testimonials.html ]
  2809. |_[ + ] Exploit::
  2810. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2811. |_[ + ] More details:: / - / , ISP:
  2812. |_[ + ] Found:: UNIDENTIFIED
  2813.  
  2814. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2815. |_[ + ] [ 4 / 42 ]-[10:02:06] [ - ]
  2816. |_[ + ] Target:: [ http://www.respectwashington.us/whyweneed.html ]
  2817. |_[ + ] Exploit::
  2818. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2819. |_[ + ] More details:: / - / , ISP:
  2820. |_[ + ] Found:: UNIDENTIFIED
  2821.  
  2822. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2823. |_[ + ] [ 5 / 42 ]-[10:02:08] [ - ]
  2824. |_[ + ] Target:: [ http://www.respectwashington.us/volunteer.html ]
  2825. |_[ + ] Exploit::
  2826. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2827. |_[ + ] More details:: / - / , ISP:
  2828. |_[ + ] Found:: UNIDENTIFIED
  2829.  
  2830. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2831. |_[ + ] [ 6 / 42 ]-[10:02:10] [ - ]
  2832. |_[ + ] Target:: [ http://www.respectwashington.us/donate.html ]
  2833. |_[ + ] Exploit::
  2834. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2835. |_[ + ] More details:: / - / , ISP:
  2836. |_[ + ] Found:: UNIDENTIFIED
  2837.  
  2838. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2839. |_[ + ] [ 7 / 42 ]-[10:02:11] [ - ]
  2840. |_[ + ] Target:: [ http://www.respectwashington.us/contact.html ]
  2841. |_[ + ] Exploit::
  2842. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2843. |_[ + ] More details:: / - / , ISP:
  2844. |_[ + ] Found:: UNIDENTIFIED
  2845.  
  2846. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2847. |_[ + ] [ 8 / 42 ]-[10:02:14] [ - ]
  2848. |_[ + ] Target:: [ http://www.respectwashington.us/legal-action.html ]
  2849. |_[ + ] Exploit::
  2850. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2851. |_[ + ] More details:: / - / , ISP:
  2852. |_[ + ] Found:: UNIDENTIFIED
  2853.  
  2854. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2855. |_[ + ] [ 9 / 42 ]-[10:02:19] [ - ]
  2856. |_[ + ] Target:: [ http://www.respectwashington.us/BurienPolice2016Data.pdf ]
  2857. |_[ + ] Exploit::
  2858. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2859. |_[ + ] More details:: / - / , ISP:
  2860. |_[ + ] Found:: UNIDENTIFIED
  2861.  
  2862. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2863. |_[ + ] [ 10 / 42 ]-[10:02:23] [ - ]
  2864. |_[ + ] Target:: [ http://www.respectwashington.us/BurienPetition.pdf ]
  2865. |_[ + ] Exploit::
  2866. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2867. |_[ + ] More details:: / - / , ISP:
  2868. |_[ + ] Found:: UNIDENTIFIED
  2869.  
  2870. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2871. |_[ + ] [ 11 / 42 ]-[10:02:28] [ - ]
  2872. |_[ + ] Target:: [ http://www.respectwashington.us/FAIRWA2012.pdf ]
  2873. |_[ + ] Exploit::
  2874. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2875. |_[ + ] More details:: / - / , ISP:
  2876. |_[ + ] Found:: UNIDENTIFIED
  2877.  
  2878. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2879. |_[ + ] [ 12 / 42 ]-[10:02:31] [ - ]
  2880. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/TexasHarrisCountyVoteID.pdf ]
  2881. |_[ + ] Exploit::
  2882. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2883. |_[ + ] More details:: / - / , ISP:
  2884. |_[ + ] Found:: UNIDENTIFIED
  2885.  
  2886. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2887. |_[ + ] [ 13 / 42 ]-[10:02:34] [ - ]
  2888. |_[ + ] Target:: [ http://www.respectwashington.us/Oregoneo0722.pdf ]
  2889. |_[ + ] Exploit::
  2890. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2891. |_[ + ] More details:: / - / , ISP:
  2892. |_[ + ] Found:: UNIDENTIFIED
  2893.  
  2894. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2895. |_[ + ] [ 14 / 42 ]-[10:02:40] [ - ]
  2896. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/RingMSJMar2011.pdf ]
  2897. |_[ + ] Exploit::
  2898. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2899. |_[ + ] More details:: / - / , ISP:
  2900. |_[ + ] Found:: UNIDENTIFIED
  2901.  
  2902. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2903. |_[ + ] [ 15 / 42 ]-[10:02:46] [ - ]
  2904. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/KingDismissMSJMar2011.pdf ]
  2905. |_[ + ] Exploit::
  2906. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2907. |_[ + ] More details:: / - / , ISP:
  2908. |_[ + ] Found:: UNIDENTIFIED
  2909.  
  2910. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2911. |_[ + ] [ 16 / 42 ]-[10:02:51] [ - ]
  2912. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/RingDeclareMar2011.pdf ]
  2913. |_[ + ] Exploit::
  2914. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2915. |_[ + ] More details:: / - / , ISP:
  2916. |_[ + ] Found:: UNIDENTIFIED
  2917.  
  2918. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2919. |_[ + ] [ 17 / 42 ]-[10:02:57] [ - ]
  2920. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/KingDefenseFeb2011.pdf ]
  2921. |_[ + ] Exploit::
  2922. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2923. |_[ + ] More details:: / - / , ISP:
  2924. |_[ + ] Found:: UNIDENTIFIED
  2925.  
  2926. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2927. |_[ + ] [ 18 / 42 ]-[10:03:03] [ - ]
  2928. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/SpakovskyHeritage28.pdf ]
  2929. |_[ + ] Exploit::
  2930. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2931. |_[ + ] More details:: / - / , ISP:
  2932. |_[ + ] Found:: UNIDENTIFIED
  2933.  
  2934. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2935. |_[ + ] [ 19 / 42 ]-[10:03:05] [ - ]
  2936. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/USHouseAdmin2006Bettencourt.pdf ]
  2937. |_[ + ] Exploit::
  2938. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2939. |_[ + ] More details:: / - / , ISP:
  2940. |_[ + ] Found:: UNIDENTIFIED
  2941.  
  2942. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2943. |_[ + ] [ 20 / 42 ]-[10:03:11] [ - ]
  2944. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/KingMSJDismissDeclMar2011.pdf ]
  2945. |_[ + ] Exploit::
  2946. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2947. |_[ + ] More details:: / - / , ISP:
  2948. |_[ + ] Found:: UNIDENTIFIED
  2949.  
  2950. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2951. |_[ + ] [ 21 / 42 ]-[10:03:17] [ - ]
  2952. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/RingPetitionNov2010.pdf ]
  2953. |_[ + ] Exploit::
  2954. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2955. |_[ + ] More details:: / - / , ISP:
  2956. |_[ + ] Found:: UNIDENTIFIED
  2957.  
  2958. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2959. |_[ + ] [ 22 / 42 ]-[10:03:23] [ - ]
  2960. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/GAO2005-478.pdf ]
  2961. |_[ + ] Exploit::
  2962. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2963. |_[ + ] More details:: / - / , ISP:
  2964. |_[ + ] Found:: UNIDENTIFIED
  2965.  
  2966. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2967. |_[ + ] [ 23 / 42 ]-[10:03:28] [ - ]
  2968. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/KingReplySupportDismissMSJApr25.pdf ]
  2969. |_[ + ] Exploit::
  2970. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2971. |_[ + ] More details:: / - / , ISP:
  2972. |_[ + ] Found:: UNIDENTIFIED
  2973.  
  2974. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2975. |_[ + ] [ 24 / 42 ]-[10:03:32] [ - ]
  2976. |_[ + ] Target:: [ http://www.respectwashington.us/studies-and-reports/BearStearnsUnderground.pdf ]
  2977. |_[ + ] Exploit::
  2978. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2979. |_[ + ] More details:: / - / , ISP:
  2980. |_[ + ] Found:: UNIDENTIFIED
  2981.  
  2982. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2983. |_[ + ] [ 25 / 42 ]-[10:03:37] [ - ]
  2984. |_[ + ] Target:: [ http://www.respectwashington.us/studies-and-reports/2005DHSHAudit6534.pdf ]
  2985. |_[ + ] Exploit::
  2986. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2987. |_[ + ] More details:: / - / , ISP:
  2988. |_[ + ] Found:: UNIDENTIFIED
  2989.  
  2990. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2991. |_[ + ] [ 26 / 42 ]-[10:03:42] [ - ]
  2992. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/WSCADwyerOpinon12-10-12.pdf ]
  2993. |_[ + ] Exploit::
  2994. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  2995. |_[ + ] More details:: / - / , ISP:
  2996. |_[ + ] Found:: UNIDENTIFIED
  2997.  
  2998. _[ - ]::--------------------------------------------------------------------------------------------------------------
  2999. |_[ + ] [ 27 / 42 ]-[10:03:47] [ - ]
  3000. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/WSSCDirectReviewGrounds6-24-11.pdf ]
  3001. |_[ + ] Exploit::
  3002. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3003. |_[ + ] More details:: / - / , ISP:
  3004. |_[ + ] Found:: UNIDENTIFIED
  3005.  
  3006. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3007. |_[ + ] [ 28 / 42 ]-[10:03:49] [ - ]
  3008. |_[ + ] Target:: [ http://www.respectwashington.us/GomezSettlement SR 2018.pdf ]
  3009. |_[ + ] Exploit::
  3010. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3011. |_[ + ] More details:: / - / , ISP:
  3012. |_[ + ] Found:: UNIDENTIFIED
  3013.  
  3014. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3015. |_[ + ] [ 29 / 42 ]-[10:03:52] [ - ]
  3016. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/WSSCTransfer11-21-11.pdf ]
  3017. |_[ + ] Exploit::
  3018. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3019. |_[ + ] More details:: / - / , ISP:
  3020. |_[ + ] Found:: UNIDENTIFIED
  3021.  
  3022. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3023. |_[ + ] [ 30 / 42 ]-[10:03:54] [ - ]
  3024. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/ORDERGRANTINGKingMSJDis5-10-11.pdf ]
  3025. |_[ + ] Exploit::
  3026. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3027. |_[ + ] More details:: / - / , ISP:
  3028. |_[ + ] Found:: UNIDENTIFIED
  3029.  
  3030. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3031. |_[ + ] [ 31 / 42 ]-[10:04:00] [ - ]
  3032. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/WSSCAppealOpenBrief-Amended9-6-11.pdf ]
  3033. |_[ + ] Exploit::
  3034. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3035. |_[ + ] More details:: / - / , ISP:
  3036. |_[ + ] Found:: UNIDENTIFIED
  3037.  
  3038. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3039. |_[ + ] [ 32 / 42 ]-[10:04:04] [ - ]
  3040. |_[ + ] Target:: [ http://www.respectwashington.us/legal-documents/DECLARSTEPHENSAG4-18-11424.pdf ]
  3041. |_[ + ] Exploit::
  3042. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3043. |_[ + ] More details:: / - / , ISP:
  3044. |_[ + ] Found:: UNIDENTIFIED
  3045.  
  3046. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3047. |_[ + ] [ 33 / 42 ]-[10:04:06] [ - ]
  3048. |_[ + ] Target:: [ http://www.respectwashington.us/Spokane Appellant Opening Brief.pdf ]
  3049. |_[ + ] Exploit::
  3050. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3051. |_[ + ] More details:: / - / , ISP:
  3052. |_[ + ] Found:: UNIDENTIFIED
  3053.  
  3054. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3055. |_[ + ] [ 34 / 42 ]-[10:04:08] [ - ]
  3056. |_[ + ] Target:: [ http://www.respectwashington.us/DoJ Incarcerated Aliens 2017.pdf ]
  3057. |_[ + ] Exploit::
  3058. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3059. |_[ + ] More details:: / - / , ISP:
  3060. |_[ + ] Found:: UNIDENTIFIED
  3061.  
  3062. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3063. |_[ + ] [ 35 / 42 ]-[10:04:09] [ - ]
  3064. |_[ + ] Target:: [ http://www.respectwashington.us/001 Diaz-Garcia Rape INFORMATION.pdf ]
  3065. |_[ + ] Exploit::
  3066. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3067. |_[ + ] More details:: / - / , ISP:
  3068. |_[ + ] Found:: UNIDENTIFIED
  3069.  
  3070. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3071. |_[ + ] [ 36 / 42 ]-[10:04:12] [ - ]
  3072. |_[ + ] Target:: [ http://www.respectwashington.us/DoC2014CrimeIllegals.pdf ]
  3073. |_[ + ] Exploit::
  3074. |_[ + ] Information Server:: HTTP/1.1 200 OK, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3075. |_[ + ] More details:: / - / , ISP:
  3076. |_[ + ] Found:: UNIDENTIFIED
  3077.  
  3078. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3079. |_[ + ] [ 37 / 42 ]-[10:04:14] [ - ]
  3080. |_[ + ] Target:: [ http://www.respectwashington.us/001 Gomez v Spokane Complaint.pdf ]
  3081. |_[ + ] Exploit::
  3082. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3083. |_[ + ] More details:: / - / , ISP:
  3084. |_[ + ] Found:: UNIDENTIFIED
  3085.  
  3086. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3087. |_[ + ] [ 38 / 42 ]-[10:04:15] [ - ]
  3088. |_[ + ] Target:: [ http://www.respectwashington.us/001 Diaz-Garcia Child Molest INFORMATION.pdf ]
  3089. |_[ + ] Exploit::
  3090. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3091. |_[ + ] More details:: / - / , ISP:
  3092. |_[ + ] Found:: UNIDENTIFIED
  3093.  
  3094. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3095. |_[ + ] [ 39 / 42 ]-[10:04:17] [ - ]
  3096. |_[ + ] Target:: [ http://www.respectwashington.us/022 Gomez v Spokane Status Report.pdf ]
  3097. |_[ + ] Exploit::
  3098. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3099. |_[ + ] More details:: / - / , ISP:
  3100. |_[ + ] Found:: UNIDENTIFIED
  3101.  
  3102. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3103. |_[ + ] [ 40 / 42 ]-[10:04:19] [ - ]
  3104. |_[ + ] Target:: [ http://www.respectwashington.us/studies-and-reports/11 03 08 FINAL whitepaper.pdf ]
  3105. |_[ + ] Exploit::
  3106. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3107. |_[ + ] More details:: / - / , ISP:
  3108. |_[ + ] Found:: UNIDENTIFIED
  3109.  
  3110. _[ - ]::--------------------------------------------------------------------------------------------------------------
  3111. |_[ + ] [ 41 / 42 ]-[10:04:21] [ - ]
  3112. |_[ + ] Target:: [ http://www.respectwashington.us/studies-and-reports/REAL ID Not National ID Card.pdf ]
  3113. |_[ + ] Exploit::
  3114. |_[ + ] Information Server:: HTTP/1.1 400 Bad Request, Server: Apache/2.4.18 (Ubuntu) , IP:65.49.16.26:80
  3115. |_[ + ] More details:: / - / , ISP:
  3116. |_[ + ] Found:: UNIDENTIFIED
  3117.  
  3118. [ INFO ] [ Shutting down ]
  3119. [ INFO ] [ End of process INURLBR at [22-10-2019 10:04:21]
  3120. [ INFO ] [ TOTAL FILTERED VALUES ]:: [ 0 ]
  3121. [ INFO ] [ OUTPUT FILE ]:: [ /usr/share/sniper/loot/workspace/www.respectwashington.us/output/inurlbr-www.respectwashington.us ]
  3122. |_________________________________________________________________________________________
  3123.  
  3124. \_________________________________________________________________________________________/
  3125. ######################################################################################################################################
  3126. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 10:04 EDT
  3127. Nmap scan report for www.respectwashington.us (65.49.16.26)
  3128. Host is up (0.32s latency).
  3129. rDNS record for 65.49.16.26: respectwashington.us
  3130.  
  3131. PORT STATE SERVICE VERSION
  3132. 110/tcp open pop3 Dovecot pop3d
  3133. | pop3-brute:
  3134. | Accounts: No valid accounts found
  3135. | Statistics: Performed 45 guesses in 35 seconds, average tps: 1.3
  3136. |_ ERROR: Failed to connect.
  3137. |_pop3-capabilities: STLS AUTH-RESP-CODE SASL(PLAIN LOGIN) TOP CAPA UIDL RESP-CODES USER PIPELINING
  3138. | vulscan: VulDB - https://vuldb.com:
  3139. | [139289] cPanel up to 68.0.14 dovecot-xaps-plugin Format privilege escalation
  3140. | [134480] Dovecot up to 2.3.5.2 Submission-Login Crash denial of service
  3141. | [134479] Dovecot up to 2.3.5.2 IMAP Server Crash denial of service
  3142. | [134024] Dovecot up to 2.3.5.1 JSON Encoder Username Crash denial of service
  3143. | [132543] Dovecot up to 2.2.36.0/2.3.4.0 Certificate Impersonation weak authentication
  3144. | [119762] Dovecot up to 2.2.28 dict Authentication var_expand() denial of service
  3145. | [114012] Dovecot up to 2.2.33 TLS SNI Restart denial of service
  3146. | [114009] Dovecot SMTP Delivery Email Message Out-of-Bounds memory corruption
  3147. | [112447] Dovecot up to 2.2.33/2.3.0 SASL Auth Memory Leak denial of service
  3148. | [106837] Dovecot up to 2.2.16 ssl-proxy-openssl.c ssl-proxy-opensslc denial of service
  3149. | [97052] Dovecot up to 2.2.26 auth-policy Unset Crash denial of service
  3150. | [69835] Dovecot 2.2.0/2.2.1 denial of service
  3151. | [13348] Dovecot up to 1.2.15/2.1.15 IMAP4/POP3 SSL/TLS Handshake denial of service
  3152. | [65684] Dovecot up to 2.2.6 unknown vulnerability
  3153. | [9807] Dovecot up to 1.2.7 on Exim Input Sanitizer privilege escalation
  3154. | [63692] Dovecot up to 2.0.15 spoofing
  3155. | [7062] Dovecot 2.1.10 mail-search.c denial of service
  3156. | [57517] Dovecot up to 2.0.12 Login directory traversal
  3157. | [57516] Dovecot up to 2.0.12 Access Restriction directory traversal
  3158. | [57515] Dovecot up to 2.0.12 Crash denial of service
  3159. | [54944] Dovecot up to 1.2.14 denial of service
  3160. | [54943] Dovecot up to 1.2.14 Access Restriction Symlink privilege escalation
  3161. | [54942] Dovecot up to 2.0.4 Access Restriction denial of service
  3162. | [54941] Dovecot up to 2.0.4 Access Restriction unknown vulnerability
  3163. | [54840] Dovecot up to 1.2.12 AGate unknown vulnerability
  3164. | [53277] Dovecot up to 1.2.10 denial of service
  3165. | [50082] Dovecot up to 1.1.6 Stack-based memory corruption
  3166. | [45256] Dovecot up to 1.1.5 directory traversal
  3167. | [44846] Dovecot 1.1.4/1.1.5 IMAP Client Crash denial of service
  3168. | [44546] Dovecot up to 1.0.x Access Restriction unknown vulnerability
  3169. | [44545] Dovecot up to 1.0.x Access Restriction unknown vulnerability
  3170. | [41430] Dovecot 1.0.12/1.1 Locking unknown vulnerability
  3171. | [40356] Dovecot 1.0.9 Cache unknown vulnerability
  3172. | [38222] Dovecot 1.0.2 directory traversal
  3173. | [36376] Dovecot up to 1.0.x directory traversal
  3174. | [33332] Timo Sirainen Dovecot up to 1.0test53 Off-By-One memory corruption
  3175. |
  3176. | MITRE CVE - https://cve.mitre.org:
  3177. | [CVE-2011-4318] Dovecot 2.0.x before 2.0.16, when ssl or starttls is enabled and hostname is used to define the proxy destination, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a valid certificate for a different hostname.
  3178. | [CVE-2011-2167] script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a script.
  3179. | [CVE-2011-2166] script-login in Dovecot 2.0.x before 2.0.13 does not follow the user and group configuration settings, which might allow remote authenticated users to bypass intended access restrictions by leveraging a script.
  3180. | [CVE-2011-1929] lib-mail/message-header-parser.c in Dovecot 1.2.x before 1.2.17 and 2.0.x before 2.0.13 does not properly handle '\0' characters in header names, which allows remote attackers to cause a denial of service (daemon crash or mailbox corruption) via a crafted e-mail message.
  3181. | [CVE-2010-4011] Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."
  3182. | [CVE-2010-3780] Dovecot 1.2.x before 1.2.15 allows remote authenticated users to cause a denial of service (master process outage) by simultaneously disconnecting many (1) IMAP or (2) POP3 sessions.
  3183. | [CVE-2010-3779] Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.beta2 grants the admin permission to the owner of each mailbox in a non-public namespace, which might allow remote authenticated users to bypass intended access restrictions by changing the ACL of a mailbox, as demonstrated by a symlinked shared mailbox.
  3184. | [CVE-2010-3707] plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving more specific entries that occur after less specific entries, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox.
  3185. | [CVE-2010-3706] plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving the private namespace of a user, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox.
  3186. | [CVE-2010-3304] The ACL plugin in Dovecot 1.2.x before 1.2.13 propagates INBOX ACLs to newly created mailboxes in certain configurations, which might allow remote attackers to read mailboxes that have unintended weak ACLs.
  3187. | [CVE-2010-0745] Unspecified vulnerability in Dovecot 1.2.x before 1.2.11 allows remote attackers to cause a denial of service (CPU consumption) via long headers in an e-mail message.
  3188. | [CVE-2010-0535] Dovecot in Apple Mac OS X 10.6 before 10.6.3, when Kerberos is enabled, does not properly enforce the service access control list (SACL) for sending and receiving e-mail, which allows remote authenticated users to bypass intended access restrictions via unspecified vectors.
  3189. | [CVE-2010-0433] The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.
  3190. | [CVE-2009-3897] Dovecot 1.2.x before 1.2.8 sets 0777 permissions during creation of certain directories at installation time, which allows local users to access arbitrary user accounts by replacing the auth socket, related to the parent directories of the base_dir directory, and possibly the base_dir directory itself.
  3191. | [CVE-2009-3235] Multiple stack-based buffer overflows in the Sieve plugin in Dovecot 1.0 before 1.0.4 and 1.1 before 1.1.7, as derived from Cyrus libsieve, allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SIEVE script, as demonstrated by forwarding an e-mail message to a large number of recipients, a different vulnerability than CVE-2009-2632.
  3192. | [CVE-2009-2632] Buffer overflow in the SIEVE script component (sieve/script.c), as used in cyrus-imapd in Cyrus IMAP Server 2.2.13 and 2.3.14, and Dovecot 1.0 before 1.0.4 and 1.1 before 1.1.7, allows local users to execute arbitrary code and read or modify arbitrary messages via a crafted SIEVE script, related to the incorrect use of the sizeof operator for determining buffer length, combined with an integer signedness error.
  3193. | [CVE-2008-5301] Directory traversal vulnerability in the ManageSieve implementation in Dovecot 1.0.15, 1.1, and 1.2 allows remote attackers to read and modify arbitrary .sieve files via a ".." (dot dot) in a script name.
  3194. | [CVE-2008-4907] The message parsing feature in Dovecot 1.1.4 and 1.1.5, when using the FETCH ENVELOPE command in the IMAP client, allows remote attackers to cause a denial of service (persistent crash) via an email with a malformed From address, which triggers an assertion error, aka "invalid message address parsing bug."
  3195. | [CVE-2008-4870] dovecot 1.0.7 in Red Hat Enterprise Linux (RHEL) 5, and possibly Fedora, uses world-readable permissions for dovecot.conf, which allows local users to obtain the ssl_key_password parameter value.
  3196. | [CVE-2008-4578] The ACL plugin in Dovecot before 1.1.4 allows attackers to bypass intended access restrictions by using the "k" right to create unauthorized "parent/child/child" mailboxes.
  3197. | [CVE-2008-4577] The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
  3198. | [CVE-2008-1218] Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.
  3199. | [CVE-2008-1199] Dovecot before 1.0.11, when configured to use mail_extra_groups to allow Dovecot to create dotlocks in /var/mail, might allow local users to read sensitive mail files for other users, or modify files or directories that are writable by group, via a symlink attack.
  3200. | [CVE-2007-6598] Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
  3201. | [CVE-2007-5794] Race condition in nss_ldap, when used in applications that are linked against the pthread library and fork after a call to nss_ldap, might send user data to the wrong process because of improper handling of the LDAP connection. NOTE: this issue was originally reported for Dovecot with the wrong mailboxes being returned, but other applications might also be affected.
  3202. | [CVE-2007-4211] The ACL plugin in Dovecot before 1.0.3 allows remote authenticated users with the insert right to save certain flags via a (1) COPY or (2) APPEND command.
  3203. | [CVE-2007-2231] Directory traversal vulnerability in index/mbox/mbox-storage.c in Dovecot before 1.0.rc29, when using the zlib plugin, allows remote attackers to read arbitrary gzipped (.gz) mailboxes (mbox files) via a .. (dot dot) sequence in the mailbox name.
  3204. | [CVE-2007-2173] Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execute arbitrary commands via the XMAILDIR variable, related to the LOGINRUN variable.
  3205. | [CVE-2007-0618] Unspecified vulnerability in (1) pop3d, (2) pop3ds, (3) imapd, and (4) imapds in IBM AIX 5.3.0 has unspecified impact and attack vectors, involving an "authentication vulnerability."
  3206. | [CVE-2006-5973] Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.
  3207. | [CVE-2006-2502] Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.
  3208. | [CVE-2006-2414] Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows remote attackers to list files and directories under the mbox parent directory and obtain mailbox names via ".." sequences in the (1) LIST or (2) DELETE IMAP command.
  3209. | [CVE-2006-0730] Multiple unspecified vulnerabilities in Dovecot before 1.0beta3 allow remote attackers to cause a denial of service (application crash or hang) via unspecified vectors involving (1) "potential hangs" in the APPEND command and "potential crashes" in (2) dovecot-auth and (3) imap/pop3-login. NOTE: vector 2 might be related to a double free vulnerability.
  3210. | [CVE-2002-0925] Format string vulnerability in mmsyslog function allows remote attackers to execute arbitrary code via (1) the USER command to mmpop3d for mmmail 0.0.13 and earlier, (2) the HELO command to mmsmtpd for mmmail 0.0.13 and earlier, or (3) the USER command to mmftpd 0.0.7 and earlier.
  3211. | [CVE-2001-0143] vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
  3212. | [CVE-2000-1197] POP2 or POP3 server (pop3d) in imap-uw IMAP package on FreeBSD and other operating systems creates lock files with predictable names, which allows local users to cause a denial of service (lack of mail access) for other users by creating lock files for other mail boxes.
  3213. | [CVE-1999-1445] Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.
  3214. |
  3215. | SecurityFocus - https://www.securityfocus.com/bid/:
  3216. | [103201] Dovecot CVE-2017-14461 Out-Of-Bounds Read Information Disclosure Vulnerability
  3217. | [97536] Dovecot CVE-2017-2669 Denial of Service Vulnerability
  3218. | [94639] Dovecot Auth Component CVE-2016-8652 Denial of Service Vulnerability
  3219. | [91175] Dovecot CVE-2016-4982 Local Information Disclosure Vulnerability
  3220. | [84736] Dovecot CVE-2008-4870 Local Security Vulnerability
  3221. | [74335] Dovecot 'ssl-proxy-openssl.c' Remote Denial of Service Vulnerability
  3222. | [67306] Dovecot Denial of Service Vulnerability
  3223. | [67219] akpop3d 'pszQuery' Remote Memory Corruption Vulnerability
  3224. | [63367] Dovecot Checkpassword Authentication Protocol Local Authentication Bypass Vulnerability
  3225. | [61763] RETIRED: Dovecot 'LIST' Command Denial of Service Vulnerability
  3226. | [60465] Exim for Dovecot 'use_shell' Remote Command Execution Vulnerability
  3227. | [60052] Dovecot 'APPEND' Parameter Denial of Service Vulnerability
  3228. | [56759] RETIRED: Dovecot 'mail-search.c' Denial of Service Vulnerability
  3229. | [50709] Dovecot SSL Certificate 'Common Name' Field Validation Security Bypass Vulnerability
  3230. | [48003] Dovecot 'script-login' Multiple Security Bypass Vulnerabilities
  3231. | [47930] Dovecot Header Name NULL Character Denial of Service Vulnerability
  3232. | [44874] Apple Mac OS X Dovecot (CVE-2010-4011) Memory Corruption Vulnerability
  3233. | [43690] Dovecot Access Control List (ACL) Multiple Remote Vulnerabilities
  3234. | [41964] Dovecot Access Control List (ACL) Plugin Security Bypass Weakness
  3235. | [39838] tpop3d Remote Denial of Service Vulnerability
  3236. | [39258] Dovecot Service Control Access List Security Bypass Vulnerability
  3237. | [37084] Dovecot Insecure 'base_dir' Permissions Local Privilege Escalation Vulnerability
  3238. | [36377] Dovecot Sieve Plugin Multiple Unspecified Buffer Overflow Vulnerabilities
  3239. | [32582] Dovecot ManageSieve Service '.sieve' Files Directory Traversal Vulnerability
  3240. | [31997] Dovecot Invalid Message Address Parsing Denial of Service Vulnerability
  3241. | [31587] Dovecot ACL Plugin Multiple Security Bypass Vulnerabilities
  3242. | [28181] Dovecot 'Tab' Character Password Check Security Bypass Vulnerability
  3243. | [28092] Dovecot 'mail_extra_groups' Insecure Settings Local Unauthorized Access Vulnerability
  3244. | [27093] Dovecot Authentication Cache Security Bypass Vulnerability
  3245. | [25182] Dovecot ACL Plugin Security Bypass Vulnerability
  3246. | [23552] Dovecot Zlib Plugin Remote Information Disclosure Vulnerability
  3247. | [22262] IBM AIX Pop3D/Pop3DS/IMapD/IMapDS Authentication Bypass Vulnerability
  3248. | [21183] Dovecot IMAP Server Mapped Pages Off-By-One Buffer Overflow Vulnerability
  3249. | [18056] Cyrus IMAPD POP3D Remote Buffer Overflow Vulnerability
  3250. | [17961] Dovecot Remote Information Disclosure Vulnerability
  3251. | [16672] Dovecot Double Free Denial of Service Vulnerability
  3252. | [8495] akpop3d User Name SQL Injection Vulnerability
  3253. | [8473] Vpop3d Remote Denial Of Service Vulnerability
  3254. | [3990] ZPop3D Bad Login Logging Failure Vulnerability
  3255. | [2781] DynFX MailServer POP3d Denial of Service Vulnerability
  3256. |
  3257. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  3258. | [86382] Dovecot POP3 Service denial of service
  3259. | [84396] Dovecot IMAP APPEND denial of service
  3260. | [80453] Dovecot mail-search.c denial of service
  3261. | [71354] Dovecot SSL Common Name (CN) weak security
  3262. | [67675] Dovecot script-login security bypass
  3263. | [67674] Dovecot script-login directory traversal
  3264. | [67589] Dovecot header name denial of service
  3265. | [63267] Apple Mac OS X Dovecot information disclosure
  3266. | [62340] Dovecot mailbox security bypass
  3267. | [62339] Dovecot IMAP or POP3 denial of service
  3268. | [62256] Dovecot mailbox security bypass
  3269. | [62255] Dovecot ACL entry security bypass
  3270. | [60639] Dovecot ACL plugin weak security
  3271. | [57267] Apple Mac OS X Dovecot Kerberos security bypass
  3272. | [56763] Dovecot header denial of service
  3273. | [54363] Dovecot base_dir privilege escalation
  3274. | [53248] CMU Sieve plugin for Dovecot unspecified buffer overflow
  3275. | [46323] Dovecot dovecot.conf information disclosure
  3276. | [46227] Dovecot message parsing denial of service
  3277. | [45669] Dovecot ACL mailbox security bypass
  3278. | [45667] Dovecot ACL plugin rights security bypass
  3279. | [41085] Dovecot TAB characters authentication bypass
  3280. | [41009] Dovecot mail_extra_groups option unauthorized access
  3281. | [39342] Dovecot LDAP auth cache configuration security bypass
  3282. | [35767] Dovecot ACL plugin security bypass
  3283. | [34082] Dovecot mbox-storage.c directory traversal
  3284. | [30433] Dovecot IMAP/POP3 server dovecot.index.cache buffer overflow
  3285. | [26578] Cyrus IMAP pop3d buffer overflow
  3286. | [26536] Dovecot IMAP LIST information disclosure
  3287. | [24710] Dovecot dovecot-auth and imap/pop3-login denial of service
  3288. | [24709] Dovecot APPEND command denial of service
  3289. | [13018] akpop3d authentication code SQL injection
  3290. | [7345] Slackware Linux imapd and ipop3d core dump
  3291. | [6269] imap, ipop2d and ipop3d buffer overflows
  3292. | [5923] Linuxconf vpop3d symbolic link
  3293. | [4918] IPOP3D, Buffer overflow attack
  3294. | [1560] IPOP3D, user login successful
  3295. | [1559] IPOP3D user login to remote host successful
  3296. | [1525] IPOP3D, user logout
  3297. | [1524] IPOP3D, user auto-logout
  3298. | [1523] IPOP3D, user login failure
  3299. | [1522] IPOP3D, brute force attack
  3300. | [1521] IPOP3D, user kiss of death logout
  3301. | [418] pop3d mktemp creates insecure temporary files
  3302. |
  3303. | Exploit-DB - https://www.exploit-db.com:
  3304. | [25297] Dovecot with Exim sender_address Parameter - Remote Command Execution
  3305. | [23053] Vpop3d Remote Denial of Service Vulnerability
  3306. | [16836] Cyrus IMAPD pop3d popsubfolders USER Buffer Overflow
  3307. | [11893] tPop3d 1.5.3 DoS
  3308. | [5257] Dovecot IMAP 1.0.10 <= 1.1rc2 - Remote Email Disclosure Exploit
  3309. | [2185] Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (3)
  3310. | [2053] Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (2)
  3311. | [1813] Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit
  3312. |
  3313. | OpenVAS (Nessus) - http://www.openvas.org:
  3314. | [901026] Dovecot Sieve Plugin Multiple Buffer Overflow Vulnerabilities
  3315. | [901025] Dovecot Version Detection
  3316. | [881402] CentOS Update for dovecot CESA-2011:1187 centos5 x86_64
  3317. | [881358] CentOS Update for dovecot CESA-2011:1187 centos4 x86_64
  3318. | [880980] CentOS Update for dovecot CESA-2011:1187 centos5 i386
  3319. | [880967] CentOS Update for dovecot CESA-2011:1187 centos4 i386
  3320. | [870607] RedHat Update for dovecot RHSA-2011:0600-01
  3321. | [870471] RedHat Update for dovecot RHSA-2011:1187-01
  3322. | [870153] RedHat Update for dovecot RHSA-2008:0297-02
  3323. | [863272] Fedora Update for dovecot FEDORA-2011-7612
  3324. | [863115] Fedora Update for dovecot FEDORA-2011-7258
  3325. | [861525] Fedora Update for dovecot FEDORA-2007-664
  3326. | [861394] Fedora Update for dovecot FEDORA-2007-493
  3327. | [861333] Fedora Update for dovecot FEDORA-2007-1485
  3328. | [860845] Fedora Update for dovecot FEDORA-2008-9202
  3329. | [860663] Fedora Update for dovecot FEDORA-2008-2475
  3330. | [860169] Fedora Update for dovecot FEDORA-2008-2464
  3331. | [860089] Fedora Update for dovecot FEDORA-2008-9232
  3332. | [840950] Ubuntu Update for dovecot USN-1295-1
  3333. | [840668] Ubuntu Update for dovecot USN-1143-1
  3334. | [840583] Ubuntu Update for dovecot vulnerabilities USN-1059-1
  3335. | [840335] Ubuntu Update for dovecot vulnerabilities USN-593-1
  3336. | [840290] Ubuntu Update for dovecot vulnerability USN-567-1
  3337. | [840234] Ubuntu Update for dovecot vulnerability USN-666-1
  3338. | [840072] Ubuntu Update for dovecot vulnerability USN-487-1
  3339. | [831405] Mandriva Update for dovecot MDVSA-2011:101 (dovecot)
  3340. | [831230] Mandriva Update for dovecot MDVSA-2010:217 (dovecot)
  3341. | [831197] Mandriva Update for dovecot MDVSA-2010:196 (dovecot)
  3342. | [831054] Mandriva Update for dovecot MDVSA-2010:104 (dovecot)
  3343. | [830496] Mandriva Update for dovecot MDVSA-2008:232 (dovecot)
  3344. | [801055] Dovecot 'base_dir' Insecure Permissions Security Bypass Vulnerability
  3345. | [800030] Dovecot ACL Plugin Security Bypass Vulnerabilities
  3346. | [70767] Gentoo Security Advisory GLSA 201110-04 (Dovecot)
  3347. | [70259] FreeBSD Ports: dovecot
  3348. | [69959] Debian Security Advisory DSA 2252-1 (dovecot)
  3349. | [66522] FreeBSD Ports: dovecot
  3350. | [65010] Ubuntu USN-838-1 (dovecot)
  3351. | [64978] Debian Security Advisory DSA 1892-1 (dovecot)
  3352. | [64953] Mandrake Security Advisory MDVSA-2009:242-1 (dovecot)
  3353. | [64952] Mandrake Security Advisory MDVSA-2009:242 (dovecot)
  3354. | [64861] Fedora Core 10 FEDORA-2009-9559 (dovecot)
  3355. | [62965] Gentoo Security Advisory GLSA 200812-16 (dovecot)
  3356. | [62854] FreeBSD Ports: dovecot-managesieve
  3357. | [61916] FreeBSD Ports: dovecot
  3358. | [60588] Gentoo Security Advisory GLSA 200803-25 (dovecot)
  3359. | [60568] Debian Security Advisory DSA 1516-1 (dovecot)
  3360. | [60528] FreeBSD Ports: dovecot
  3361. | [60134] Debian Security Advisory DSA 1457-1 (dovecot)
  3362. | [60089] FreeBSD Ports: dovecot
  3363. | [58578] Debian Security Advisory DSA 1359-1 (dovecot)
  3364. | [56834] Debian Security Advisory DSA 1080-1 (dovecot)
  3365. |
  3366. | SecurityTracker - https://www.securitytracker.com:
  3367. | [1028585] Dovecot APPEND Parameter Processing Flaw Lets Remote Authenticated Users Deny Service
  3368. | [1024740] Mac OS X Server Dovecot Memory Aliasing Bug May Cause Mail to Be Delivered to the Wrong User
  3369. | [1017288] Dovecot POP3/IMAP Cache File Buffer Overflow May Let Remote Users Execute Arbitrary Code
  3370. |
  3371. | OSVDB - http://www.osvdb.org:
  3372. | [96172] Dovecot POP3 Service Terminated LIST Command Remote DoS
  3373. | [93525] Dovecot IMAP APPEND Command Malformed Parameter Parsing Remote DoS
  3374. | [93004] Dovecot with Exim sender_address Parameter Remote Command Execution
  3375. | [88058] Dovecot lib-storage/mail-search.c Multiple Keyword Search Handling Remote DoS
  3376. | [77185] Dovecot SSL Certificate Common Name Field MitM Spoofing Weakness
  3377. | [74515] Dovecot script-login chroot Configuration Setting Traversal Arbitrary File Access
  3378. | [74514] Dovecot script-login User / Group Configuration Settings Remote Access Restriction Bypass
  3379. | [72495] Dovecot lib-mail/message-header-parser.c Mail Header Name NULL Character Handling Remote DoS
  3380. | [69260] Apple Mac OS X Server Dovecot Memory Aliasing Mail Delivery Issue
  3381. | [68516] Dovecot plugins/acl/acl-backend-vfile.c ACL Permission Addition User Private Namespace Mailbox Access Restriction Remote Bypass
  3382. | [68515] Dovecot plugins/acl/acl-backend-vfile.c ACL Permission Addition Specific Entry Order Mailbox Access Restriction Remote Bypass
  3383. | [68513] Dovecot Non-public Namespace Mailbox ACL Manipulation Access Restriction Remote Bypass
  3384. | [68512] Dovecot IMAP / POP3 Session Disconnect Master Process Outage Remote DoS
  3385. | [66625] Dovecot ACL Plugin INBOX ACL Copying Weakness Restriction Bypass
  3386. | [66113] Dovecot Mail Root Directory Creation Permission Weakness
  3387. | [66112] Dovecot Installation base_dir Parent Directory Permission Weakness
  3388. | [66111] Dovecot SEARCH Functionality str_find_init() Function Overflow
  3389. | [66110] Dovecot Multiple Unspecified Buffer Overflows
  3390. | [66108] Dovecot Malformed Message Body Processing Unspecified Functions Remote DoS
  3391. | [64783] Dovecot E-mail Message Header Unspecified DoS
  3392. | [63372] Apple Mac OS X Dovecot Kerberos Authentication SACL Restriction Bypass
  3393. | [62796] Dovecot mbox Format Email Header Handling DoS
  3394. | [60316] Dovecot base_dir Directory Permission Weakness Local Privilege Escalation
  3395. | [58103] Dovecot CMU Sieve Plugin Script Handling Multiple Overflows
  3396. | [50253] Dovecot dovecot.conf Permission Weakness Local ssl_key_password Parameter Disclosure
  3397. | [49918] Dovecot ManageSieve Script Name Handling Traversal Arbitrary File Manipulation
  3398. | [49429] Dovecot Message Parsing Feature Crafted Email Header Handling Remote DoS
  3399. | [49099] Dovecot ACL Plugin k Right Mailbox Creation Restriction Bypass
  3400. | [49098] Dovecot ACL Plugin Negative Access Rights Bypass
  3401. | [43137] Dovecot mail_extra_groups Symlink File Manipulation
  3402. | [42979] Dovecot passdbs Argument Injection Authentication Bypass
  3403. | [39876] Dovecot LDAP Auth Cache Security Bypass
  3404. | [39386] Dovecot ACL Plugin Insert Right APPEND / COPY Command Unauthorized Flag Manipulation
  3405. | [35489] Dovecot index/mbox/mbox-storage.c Traversal Arbitrary Gzip File Access
  3406. | [30524] Dovecot IMAP/POP3 Server dovecot.index.cache Handling Overflow
  3407. | [25853] Cyrus IMAPD pop3d USER Command Remote Overflow
  3408. | [25727] Dovecot Multiple Command Traversal Arbitrary Directory Listing
  3409. | [23281] Dovecot imap/pop3-login dovecot-auth DoS
  3410. | [23280] Dovecot Malformed APPEND Command DoS
  3411. | [14459] mmmail mmpop3d USER Command mmsyslog Function Format String
  3412. | [12033] Slackware Linux imapd/ipop3d Malformed USER/PASS Sequence DoS
  3413. | [5857] Linux pop3d Arbitrary Mail File Access
  3414. | [2471] akpop3d username SQL Injection
  3415. |_
  3416. Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
  3417. Aggressive OS guesses: Linux 4.4 (99%), Linux 3.18 (99%), Linux 2.6.32 (98%), Linux 2.6.32 or 3.10 (98%), Linux 2.6.35 (98%), Linux 3.10 (98%), Linux 3.4 (98%), Linux 3.5 (98%), Linux 3.7 (98%), Linux 4.2 (98%)
  3418. No exact OS matches for host (test conditions non-ideal).
  3419. Network Distance: 11 hops
  3420.  
  3421. TRACEROUTE (using port 110/tcp)
  3422. HOP RTT ADDRESS
  3423. 1 292.61 ms 10.252.204.1
  3424. 2 244.39 ms 45.131.4.2
  3425. 3 145.10 ms 109.236.95.224
  3426. 4 244.45 ms 109.236.95.173
  3427. 5 244.48 ms amsix-200gbps.core1.ams1.he.net (80.249.209.150)
  3428. 6 244.51 ms 100ge16-1.core1.lon2.he.net (72.52.92.213)
  3429. 7 244.54 ms 100ge13-2.core1.nyc4.he.net (72.52.92.166)
  3430. 8 344.30 ms 100ge8-1.core1.sjc2.he.net (184.105.81.218)
  3431. 9 344.33 ms 100ge13-2.core1.sjc1.he.net (184.105.65.113)
  3432. 10 344.30 ms e0-50.core4.fmt1.he.net (184.105.65.214)
  3433. 11 344.32 ms respectwashington.us (65.49.16.26)
  3434. #######################################################################################################################################
  3435. https://www.respectwashington.us [403 Forbidden] Apache[2.4.18], Country[UNITED STATES][US], HTTPServer[Ubuntu Linux][Apache/2.4.18 (Ubuntu)], IP[65.49.16.26], Title[403 Forbidden]
  3436. ######################################################################################################################################
  3437. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:05 EDT
  3438. Nmap scan report for respectwashington.us (65.49.16.26)
  3439. Host is up (0.65s latency).
  3440. Not shown: 992 closed ports
  3441. PORT STATE SERVICE
  3442. 80/tcp open http
  3443. 110/tcp open pop3
  3444. 143/tcp open imap
  3445. 443/tcp open https
  3446. 465/tcp open smtps
  3447. 587/tcp open submission
  3448. 993/tcp open imaps
  3449. 995/tcp open pop3s
  3450.  
  3451. Nmap done: 1 IP address (1 host up) scanned in 3.63 seconds
  3452. #######################################################################################################################################
  3453. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:05 EDT
  3454. Nmap scan report for respectwashington.us (65.49.16.26)
  3455. Host is up (0.33s latency).
  3456. Not shown: 12 closed ports, 2 filtered ports
  3457. PORT STATE SERVICE
  3458. 2049/udp open|filtered nfs
  3459.  
  3460. Nmap done: 1 IP address (1 host up) scanned in 8.51 seconds
  3461. #######################################################################################################################################
  3462. HTTP/1.1 200 OK
  3463. Date: Tue, 22 Oct 2019 13:05:33 GMT
  3464. Server: Apache/2.4.18 (Ubuntu)
  3465. Vary: Host,Accept-Encoding
  3466. Last-Modified: Fri, 23 Feb 2018 15:15:28 GMT
  3467. ETag: "8956-565e2a1613be1"
  3468. Accept-Ranges: bytes
  3469. Content-Length: 35158
  3470. Content-Type: text/html
  3471.  
  3472. Allow: GET,HEAD,POST,OPTIONS
  3473. #######################################################################################################################################
  3474. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX Top Nav XXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  3475. <!--Second row-->
  3476. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX End Top Nav XXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  3477. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX About the legislation XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  3478. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX Cost of the legislation XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  3479. <!-- XXXXXXXXXXXXXXXXXXXXXXXXXXXX Quote from WA Sate Constitution XXXXXXXXXXXXXXXXXXXXXXXXXXX -->
  3480. <!-- XXXXXXXXXXXXXXXXXXXX "Keep it Legal" logo XXXXXXXXXXXXXXXXX-->
  3481. <!-- XXXXXXXXXXXXXXXXXX End "Keep it Legal" logo XXXXXXXXXXXXXXXXX-->
  3482. #######################################################################################################################################
  3483. http://www.w3.org/1999/xhtml
  3484. text/css
  3485. -//W3C//DTD XHTML 1.0 Transitional//EN
  3486. ######################################################################################################################################
  3487. http://65.49.16.26 [200 OK] Apache[2.4.18], Country[UNITED STATES][US], Email[[email protected]], HTTPServer[Ubuntu Linux][Apache/2.4.18 (Ubuntu)], IP[65.49.16.26], Title[RespectWashington]
  3488. ######################################################################################################################################
  3489.  
  3490. wig - WebApp Information Gatherer
  3491.  
  3492.  
  3493. Scanning http://65.49.16.26...
  3494. _________________ SITE INFO __________________
  3495. IP Title
  3496. 65.49.16.26 RespectWashington
  3497.  
  3498. __________________ VERSION ___________________
  3499. Name Versions Type
  3500. Apache 2.4.18 Platform
  3501. Ubuntu 16.04 OS
  3502.  
  3503. ______________________________________________
  3504. Time: 53.8 sec Urls: 603 Fingerprints: 40401
  3505. #######################################################################################################################################
  3506. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:07 EDT
  3507. Nmap scan report for respectwashington.us (65.49.16.26)
  3508. Host is up (0.34s latency).
  3509.  
  3510. PORT STATE SERVICE VERSION
  3511. 110/tcp open pop3 Dovecot pop3d
  3512. | pop3-brute:
  3513. | Accounts: No valid accounts found
  3514. | Statistics: Performed 55 guesses in 49 seconds, average tps: 1.0
  3515. |_ ERROR: Failed to connect.
  3516. |_pop3-capabilities: TOP CAPA PIPELINING RESP-CODES STLS SASL(PLAIN LOGIN) AUTH-RESP-CODE UIDL USER
  3517. | vulscan: VulDB - https://vuldb.com:
  3518. | [139289] cPanel up to 68.0.14 dovecot-xaps-plugin Format privilege escalation
  3519. | [134480] Dovecot up to 2.3.5.2 Submission-Login Crash denial of service
  3520. | [134479] Dovecot up to 2.3.5.2 IMAP Server Crash denial of service
  3521. | [134024] Dovecot up to 2.3.5.1 JSON Encoder Username Crash denial of service
  3522. | [132543] Dovecot up to 2.2.36.0/2.3.4.0 Certificate Impersonation weak authentication
  3523. | [119762] Dovecot up to 2.2.28 dict Authentication var_expand() denial of service
  3524. | [114012] Dovecot up to 2.2.33 TLS SNI Restart denial of service
  3525. | [114009] Dovecot SMTP Delivery Email Message Out-of-Bounds memory corruption
  3526. | [112447] Dovecot up to 2.2.33/2.3.0 SASL Auth Memory Leak denial of service
  3527. | [106837] Dovecot up to 2.2.16 ssl-proxy-openssl.c ssl-proxy-opensslc denial of service
  3528. | [97052] Dovecot up to 2.2.26 auth-policy Unset Crash denial of service
  3529. | [69835] Dovecot 2.2.0/2.2.1 denial of service
  3530. | [13348] Dovecot up to 1.2.15/2.1.15 IMAP4/POP3 SSL/TLS Handshake denial of service
  3531. | [65684] Dovecot up to 2.2.6 unknown vulnerability
  3532. | [9807] Dovecot up to 1.2.7 on Exim Input Sanitizer privilege escalation
  3533. | [63692] Dovecot up to 2.0.15 spoofing
  3534. | [7062] Dovecot 2.1.10 mail-search.c denial of service
  3535. | [57517] Dovecot up to 2.0.12 Login directory traversal
  3536. | [57516] Dovecot up to 2.0.12 Access Restriction directory traversal
  3537. | [57515] Dovecot up to 2.0.12 Crash denial of service
  3538. | [54944] Dovecot up to 1.2.14 denial of service
  3539. | [54943] Dovecot up to 1.2.14 Access Restriction Symlink privilege escalation
  3540. | [54942] Dovecot up to 2.0.4 Access Restriction denial of service
  3541. | [54941] Dovecot up to 2.0.4 Access Restriction unknown vulnerability
  3542. | [54840] Dovecot up to 1.2.12 AGate unknown vulnerability
  3543. | [53277] Dovecot up to 1.2.10 denial of service
  3544. | [50082] Dovecot up to 1.1.6 Stack-based memory corruption
  3545. | [45256] Dovecot up to 1.1.5 directory traversal
  3546. | [44846] Dovecot 1.1.4/1.1.5 IMAP Client Crash denial of service
  3547. | [44546] Dovecot up to 1.0.x Access Restriction unknown vulnerability
  3548. | [44545] Dovecot up to 1.0.x Access Restriction unknown vulnerability
  3549. | [41430] Dovecot 1.0.12/1.1 Locking unknown vulnerability
  3550. | [40356] Dovecot 1.0.9 Cache unknown vulnerability
  3551. | [38222] Dovecot 1.0.2 directory traversal
  3552. | [36376] Dovecot up to 1.0.x directory traversal
  3553. | [33332] Timo Sirainen Dovecot up to 1.0test53 Off-By-One memory corruption
  3554. |
  3555. | MITRE CVE - https://cve.mitre.org:
  3556. | [CVE-2011-4318] Dovecot 2.0.x before 2.0.16, when ssl or starttls is enabled and hostname is used to define the proxy destination, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a valid certificate for a different hostname.
  3557. | [CVE-2011-2167] script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a script.
  3558. | [CVE-2011-2166] script-login in Dovecot 2.0.x before 2.0.13 does not follow the user and group configuration settings, which might allow remote authenticated users to bypass intended access restrictions by leveraging a script.
  3559. | [CVE-2011-1929] lib-mail/message-header-parser.c in Dovecot 1.2.x before 1.2.17 and 2.0.x before 2.0.13 does not properly handle '\0' characters in header names, which allows remote attackers to cause a denial of service (daemon crash or mailbox corruption) via a crafted e-mail message.
  3560. | [CVE-2010-4011] Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."
  3561. | [CVE-2010-3780] Dovecot 1.2.x before 1.2.15 allows remote authenticated users to cause a denial of service (master process outage) by simultaneously disconnecting many (1) IMAP or (2) POP3 sessions.
  3562. | [CVE-2010-3779] Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.beta2 grants the admin permission to the owner of each mailbox in a non-public namespace, which might allow remote authenticated users to bypass intended access restrictions by changing the ACL of a mailbox, as demonstrated by a symlinked shared mailbox.
  3563. | [CVE-2010-3707] plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving more specific entries that occur after less specific entries, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox.
  3564. | [CVE-2010-3706] plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving the private namespace of a user, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox.
  3565. | [CVE-2010-3304] The ACL plugin in Dovecot 1.2.x before 1.2.13 propagates INBOX ACLs to newly created mailboxes in certain configurations, which might allow remote attackers to read mailboxes that have unintended weak ACLs.
  3566. | [CVE-2010-0745] Unspecified vulnerability in Dovecot 1.2.x before 1.2.11 allows remote attackers to cause a denial of service (CPU consumption) via long headers in an e-mail message.
  3567. | [CVE-2010-0535] Dovecot in Apple Mac OS X 10.6 before 10.6.3, when Kerberos is enabled, does not properly enforce the service access control list (SACL) for sending and receiving e-mail, which allows remote authenticated users to bypass intended access restrictions via unspecified vectors.
  3568. | [CVE-2010-0433] The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.
  3569. | [CVE-2009-3897] Dovecot 1.2.x before 1.2.8 sets 0777 permissions during creation of certain directories at installation time, which allows local users to access arbitrary user accounts by replacing the auth socket, related to the parent directories of the base_dir directory, and possibly the base_dir directory itself.
  3570. | [CVE-2009-3235] Multiple stack-based buffer overflows in the Sieve plugin in Dovecot 1.0 before 1.0.4 and 1.1 before 1.1.7, as derived from Cyrus libsieve, allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SIEVE script, as demonstrated by forwarding an e-mail message to a large number of recipients, a different vulnerability than CVE-2009-2632.
  3571. | [CVE-2009-2632] Buffer overflow in the SIEVE script component (sieve/script.c), as used in cyrus-imapd in Cyrus IMAP Server 2.2.13 and 2.3.14, and Dovecot 1.0 before 1.0.4 and 1.1 before 1.1.7, allows local users to execute arbitrary code and read or modify arbitrary messages via a crafted SIEVE script, related to the incorrect use of the sizeof operator for determining buffer length, combined with an integer signedness error.
  3572. | [CVE-2008-5301] Directory traversal vulnerability in the ManageSieve implementation in Dovecot 1.0.15, 1.1, and 1.2 allows remote attackers to read and modify arbitrary .sieve files via a ".." (dot dot) in a script name.
  3573. | [CVE-2008-4907] The message parsing feature in Dovecot 1.1.4 and 1.1.5, when using the FETCH ENVELOPE command in the IMAP client, allows remote attackers to cause a denial of service (persistent crash) via an email with a malformed From address, which triggers an assertion error, aka "invalid message address parsing bug."
  3574. | [CVE-2008-4870] dovecot 1.0.7 in Red Hat Enterprise Linux (RHEL) 5, and possibly Fedora, uses world-readable permissions for dovecot.conf, which allows local users to obtain the ssl_key_password parameter value.
  3575. | [CVE-2008-4578] The ACL plugin in Dovecot before 1.1.4 allows attackers to bypass intended access restrictions by using the "k" right to create unauthorized "parent/child/child" mailboxes.
  3576. | [CVE-2008-4577] The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
  3577. | [CVE-2008-1218] Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.
  3578. | [CVE-2008-1199] Dovecot before 1.0.11, when configured to use mail_extra_groups to allow Dovecot to create dotlocks in /var/mail, might allow local users to read sensitive mail files for other users, or modify files or directories that are writable by group, via a symlink attack.
  3579. | [CVE-2007-6598] Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
  3580. | [CVE-2007-5794] Race condition in nss_ldap, when used in applications that are linked against the pthread library and fork after a call to nss_ldap, might send user data to the wrong process because of improper handling of the LDAP connection. NOTE: this issue was originally reported for Dovecot with the wrong mailboxes being returned, but other applications might also be affected.
  3581. | [CVE-2007-4211] The ACL plugin in Dovecot before 1.0.3 allows remote authenticated users with the insert right to save certain flags via a (1) COPY or (2) APPEND command.
  3582. | [CVE-2007-2231] Directory traversal vulnerability in index/mbox/mbox-storage.c in Dovecot before 1.0.rc29, when using the zlib plugin, allows remote attackers to read arbitrary gzipped (.gz) mailboxes (mbox files) via a .. (dot dot) sequence in the mailbox name.
  3583. | [CVE-2007-2173] Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execute arbitrary commands via the XMAILDIR variable, related to the LOGINRUN variable.
  3584. | [CVE-2007-0618] Unspecified vulnerability in (1) pop3d, (2) pop3ds, (3) imapd, and (4) imapds in IBM AIX 5.3.0 has unspecified impact and attack vectors, involving an "authentication vulnerability."
  3585. | [CVE-2006-5973] Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file.
  3586. | [CVE-2006-2502] Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.
  3587. | [CVE-2006-2414] Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows remote attackers to list files and directories under the mbox parent directory and obtain mailbox names via ".." sequences in the (1) LIST or (2) DELETE IMAP command.
  3588. | [CVE-2006-0730] Multiple unspecified vulnerabilities in Dovecot before 1.0beta3 allow remote attackers to cause a denial of service (application crash or hang) via unspecified vectors involving (1) "potential hangs" in the APPEND command and "potential crashes" in (2) dovecot-auth and (3) imap/pop3-login. NOTE: vector 2 might be related to a double free vulnerability.
  3589. | [CVE-2002-0925] Format string vulnerability in mmsyslog function allows remote attackers to execute arbitrary code via (1) the USER command to mmpop3d for mmmail 0.0.13 and earlier, (2) the HELO command to mmsmtpd for mmmail 0.0.13 and earlier, or (3) the USER command to mmftpd 0.0.7 and earlier.
  3590. | [CVE-2001-0143] vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
  3591. | [CVE-2000-1197] POP2 or POP3 server (pop3d) in imap-uw IMAP package on FreeBSD and other operating systems creates lock files with predictable names, which allows local users to cause a denial of service (lack of mail access) for other users by creating lock files for other mail boxes.
  3592. | [CVE-1999-1445] Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.
  3593. |
  3594. | SecurityFocus - https://www.securityfocus.com/bid/:
  3595. | [103201] Dovecot CVE-2017-14461 Out-Of-Bounds Read Information Disclosure Vulnerability
  3596. | [97536] Dovecot CVE-2017-2669 Denial of Service Vulnerability
  3597. | [94639] Dovecot Auth Component CVE-2016-8652 Denial of Service Vulnerability
  3598. | [91175] Dovecot CVE-2016-4982 Local Information Disclosure Vulnerability
  3599. | [84736] Dovecot CVE-2008-4870 Local Security Vulnerability
  3600. | [74335] Dovecot 'ssl-proxy-openssl.c' Remote Denial of Service Vulnerability
  3601. | [67306] Dovecot Denial of Service Vulnerability
  3602. | [67219] akpop3d 'pszQuery' Remote Memory Corruption Vulnerability
  3603. | [63367] Dovecot Checkpassword Authentication Protocol Local Authentication Bypass Vulnerability
  3604. | [61763] RETIRED: Dovecot 'LIST' Command Denial of Service Vulnerability
  3605. | [60465] Exim for Dovecot 'use_shell' Remote Command Execution Vulnerability
  3606. | [60052] Dovecot 'APPEND' Parameter Denial of Service Vulnerability
  3607. | [56759] RETIRED: Dovecot 'mail-search.c' Denial of Service Vulnerability
  3608. | [50709] Dovecot SSL Certificate 'Common Name' Field Validation Security Bypass Vulnerability
  3609. | [48003] Dovecot 'script-login' Multiple Security Bypass Vulnerabilities
  3610. | [47930] Dovecot Header Name NULL Character Denial of Service Vulnerability
  3611. | [44874] Apple Mac OS X Dovecot (CVE-2010-4011) Memory Corruption Vulnerability
  3612. | [43690] Dovecot Access Control List (ACL) Multiple Remote Vulnerabilities
  3613. | [41964] Dovecot Access Control List (ACL) Plugin Security Bypass Weakness
  3614. | [39838] tpop3d Remote Denial of Service Vulnerability
  3615. | [39258] Dovecot Service Control Access List Security Bypass Vulnerability
  3616. | [37084] Dovecot Insecure 'base_dir' Permissions Local Privilege Escalation Vulnerability
  3617. | [36377] Dovecot Sieve Plugin Multiple Unspecified Buffer Overflow Vulnerabilities
  3618. | [32582] Dovecot ManageSieve Service '.sieve' Files Directory Traversal Vulnerability
  3619. | [31997] Dovecot Invalid Message Address Parsing Denial of Service Vulnerability
  3620. | [31587] Dovecot ACL Plugin Multiple Security Bypass Vulnerabilities
  3621. | [28181] Dovecot 'Tab' Character Password Check Security Bypass Vulnerability
  3622. | [28092] Dovecot 'mail_extra_groups' Insecure Settings Local Unauthorized Access Vulnerability
  3623. | [27093] Dovecot Authentication Cache Security Bypass Vulnerability
  3624. | [25182] Dovecot ACL Plugin Security Bypass Vulnerability
  3625. | [23552] Dovecot Zlib Plugin Remote Information Disclosure Vulnerability
  3626. | [22262] IBM AIX Pop3D/Pop3DS/IMapD/IMapDS Authentication Bypass Vulnerability
  3627. | [21183] Dovecot IMAP Server Mapped Pages Off-By-One Buffer Overflow Vulnerability
  3628. | [18056] Cyrus IMAPD POP3D Remote Buffer Overflow Vulnerability
  3629. | [17961] Dovecot Remote Information Disclosure Vulnerability
  3630. | [16672] Dovecot Double Free Denial of Service Vulnerability
  3631. | [8495] akpop3d User Name SQL Injection Vulnerability
  3632. | [8473] Vpop3d Remote Denial Of Service Vulnerability
  3633. | [3990] ZPop3D Bad Login Logging Failure Vulnerability
  3634. | [2781] DynFX MailServer POP3d Denial of Service Vulnerability
  3635. |
  3636. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  3637. | [86382] Dovecot POP3 Service denial of service
  3638. | [84396] Dovecot IMAP APPEND denial of service
  3639. | [80453] Dovecot mail-search.c denial of service
  3640. | [71354] Dovecot SSL Common Name (CN) weak security
  3641. | [67675] Dovecot script-login security bypass
  3642. | [67674] Dovecot script-login directory traversal
  3643. | [67589] Dovecot header name denial of service
  3644. | [63267] Apple Mac OS X Dovecot information disclosure
  3645. | [62340] Dovecot mailbox security bypass
  3646. | [62339] Dovecot IMAP or POP3 denial of service
  3647. | [62256] Dovecot mailbox security bypass
  3648. | [62255] Dovecot ACL entry security bypass
  3649. | [60639] Dovecot ACL plugin weak security
  3650. | [57267] Apple Mac OS X Dovecot Kerberos security bypass
  3651. | [56763] Dovecot header denial of service
  3652. | [54363] Dovecot base_dir privilege escalation
  3653. | [53248] CMU Sieve plugin for Dovecot unspecified buffer overflow
  3654. | [46323] Dovecot dovecot.conf information disclosure
  3655. | [46227] Dovecot message parsing denial of service
  3656. | [45669] Dovecot ACL mailbox security bypass
  3657. | [45667] Dovecot ACL plugin rights security bypass
  3658. | [41085] Dovecot TAB characters authentication bypass
  3659. | [41009] Dovecot mail_extra_groups option unauthorized access
  3660. | [39342] Dovecot LDAP auth cache configuration security bypass
  3661. | [35767] Dovecot ACL plugin security bypass
  3662. | [34082] Dovecot mbox-storage.c directory traversal
  3663. | [30433] Dovecot IMAP/POP3 server dovecot.index.cache buffer overflow
  3664. | [26578] Cyrus IMAP pop3d buffer overflow
  3665. | [26536] Dovecot IMAP LIST information disclosure
  3666. | [24710] Dovecot dovecot-auth and imap/pop3-login denial of service
  3667. | [24709] Dovecot APPEND command denial of service
  3668. | [13018] akpop3d authentication code SQL injection
  3669. | [7345] Slackware Linux imapd and ipop3d core dump
  3670. | [6269] imap, ipop2d and ipop3d buffer overflows
  3671. | [5923] Linuxconf vpop3d symbolic link
  3672. | [4918] IPOP3D, Buffer overflow attack
  3673. | [1560] IPOP3D, user login successful
  3674. | [1559] IPOP3D user login to remote host successful
  3675. | [1525] IPOP3D, user logout
  3676. | [1524] IPOP3D, user auto-logout
  3677. | [1523] IPOP3D, user login failure
  3678. | [1522] IPOP3D, brute force attack
  3679. | [1521] IPOP3D, user kiss of death logout
  3680. | [418] pop3d mktemp creates insecure temporary files
  3681. |
  3682. | Exploit-DB - https://www.exploit-db.com:
  3683. | [25297] Dovecot with Exim sender_address Parameter - Remote Command Execution
  3684. | [23053] Vpop3d Remote Denial of Service Vulnerability
  3685. | [16836] Cyrus IMAPD pop3d popsubfolders USER Buffer Overflow
  3686. | [11893] tPop3d 1.5.3 DoS
  3687. | [5257] Dovecot IMAP 1.0.10 <= 1.1rc2 - Remote Email Disclosure Exploit
  3688. | [2185] Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (3)
  3689. | [2053] Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (2)
  3690. | [1813] Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit
  3691. |
  3692. | OpenVAS (Nessus) - http://www.openvas.org:
  3693. | [901026] Dovecot Sieve Plugin Multiple Buffer Overflow Vulnerabilities
  3694. | [901025] Dovecot Version Detection
  3695. | [881402] CentOS Update for dovecot CESA-2011:1187 centos5 x86_64
  3696. | [881358] CentOS Update for dovecot CESA-2011:1187 centos4 x86_64
  3697. | [880980] CentOS Update for dovecot CESA-2011:1187 centos5 i386
  3698. | [880967] CentOS Update for dovecot CESA-2011:1187 centos4 i386
  3699. | [870607] RedHat Update for dovecot RHSA-2011:0600-01
  3700. | [870471] RedHat Update for dovecot RHSA-2011:1187-01
  3701. | [870153] RedHat Update for dovecot RHSA-2008:0297-02
  3702. | [863272] Fedora Update for dovecot FEDORA-2011-7612
  3703. | [863115] Fedora Update for dovecot FEDORA-2011-7258
  3704. | [861525] Fedora Update for dovecot FEDORA-2007-664
  3705. | [861394] Fedora Update for dovecot FEDORA-2007-493
  3706. | [861333] Fedora Update for dovecot FEDORA-2007-1485
  3707. | [860845] Fedora Update for dovecot FEDORA-2008-9202
  3708. | [860663] Fedora Update for dovecot FEDORA-2008-2475
  3709. | [860169] Fedora Update for dovecot FEDORA-2008-2464
  3710. | [860089] Fedora Update for dovecot FEDORA-2008-9232
  3711. | [840950] Ubuntu Update for dovecot USN-1295-1
  3712. | [840668] Ubuntu Update for dovecot USN-1143-1
  3713. | [840583] Ubuntu Update for dovecot vulnerabilities USN-1059-1
  3714. | [840335] Ubuntu Update for dovecot vulnerabilities USN-593-1
  3715. | [840290] Ubuntu Update for dovecot vulnerability USN-567-1
  3716. | [840234] Ubuntu Update for dovecot vulnerability USN-666-1
  3717. | [840072] Ubuntu Update for dovecot vulnerability USN-487-1
  3718. | [831405] Mandriva Update for dovecot MDVSA-2011:101 (dovecot)
  3719. | [831230] Mandriva Update for dovecot MDVSA-2010:217 (dovecot)
  3720. | [831197] Mandriva Update for dovecot MDVSA-2010:196 (dovecot)
  3721. | [831054] Mandriva Update for dovecot MDVSA-2010:104 (dovecot)
  3722. | [830496] Mandriva Update for dovecot MDVSA-2008:232 (dovecot)
  3723. | [801055] Dovecot 'base_dir' Insecure Permissions Security Bypass Vulnerability
  3724. | [800030] Dovecot ACL Plugin Security Bypass Vulnerabilities
  3725. | [70767] Gentoo Security Advisory GLSA 201110-04 (Dovecot)
  3726. | [70259] FreeBSD Ports: dovecot
  3727. | [69959] Debian Security Advisory DSA 2252-1 (dovecot)
  3728. | [66522] FreeBSD Ports: dovecot
  3729. | [65010] Ubuntu USN-838-1 (dovecot)
  3730. | [64978] Debian Security Advisory DSA 1892-1 (dovecot)
  3731. | [64953] Mandrake Security Advisory MDVSA-2009:242-1 (dovecot)
  3732. | [64952] Mandrake Security Advisory MDVSA-2009:242 (dovecot)
  3733. | [64861] Fedora Core 10 FEDORA-2009-9559 (dovecot)
  3734. | [62965] Gentoo Security Advisory GLSA 200812-16 (dovecot)
  3735. | [62854] FreeBSD Ports: dovecot-managesieve
  3736. | [61916] FreeBSD Ports: dovecot
  3737. | [60588] Gentoo Security Advisory GLSA 200803-25 (dovecot)
  3738. | [60568] Debian Security Advisory DSA 1516-1 (dovecot)
  3739. | [60528] FreeBSD Ports: dovecot
  3740. | [60134] Debian Security Advisory DSA 1457-1 (dovecot)
  3741. | [60089] FreeBSD Ports: dovecot
  3742. | [58578] Debian Security Advisory DSA 1359-1 (dovecot)
  3743. | [56834] Debian Security Advisory DSA 1080-1 (dovecot)
  3744. |
  3745. | SecurityTracker - https://www.securitytracker.com:
  3746. | [1028585] Dovecot APPEND Parameter Processing Flaw Lets Remote Authenticated Users Deny Service
  3747. | [1024740] Mac OS X Server Dovecot Memory Aliasing Bug May Cause Mail to Be Delivered to the Wrong User
  3748. | [1017288] Dovecot POP3/IMAP Cache File Buffer Overflow May Let Remote Users Execute Arbitrary Code
  3749. |
  3750. | OSVDB - http://www.osvdb.org:
  3751. | [96172] Dovecot POP3 Service Terminated LIST Command Remote DoS
  3752. | [93525] Dovecot IMAP APPEND Command Malformed Parameter Parsing Remote DoS
  3753. | [93004] Dovecot with Exim sender_address Parameter Remote Command Execution
  3754. | [88058] Dovecot lib-storage/mail-search.c Multiple Keyword Search Handling Remote DoS
  3755. | [77185] Dovecot SSL Certificate Common Name Field MitM Spoofing Weakness
  3756. | [74515] Dovecot script-login chroot Configuration Setting Traversal Arbitrary File Access
  3757. | [74514] Dovecot script-login User / Group Configuration Settings Remote Access Restriction Bypass
  3758. | [72495] Dovecot lib-mail/message-header-parser.c Mail Header Name NULL Character Handling Remote DoS
  3759. | [69260] Apple Mac OS X Server Dovecot Memory Aliasing Mail Delivery Issue
  3760. | [68516] Dovecot plugins/acl/acl-backend-vfile.c ACL Permission Addition User Private Namespace Mailbox Access Restriction Remote Bypass
  3761. | [68515] Dovecot plugins/acl/acl-backend-vfile.c ACL Permission Addition Specific Entry Order Mailbox Access Restriction Remote Bypass
  3762. | [68513] Dovecot Non-public Namespace Mailbox ACL Manipulation Access Restriction Remote Bypass
  3763. | [68512] Dovecot IMAP / POP3 Session Disconnect Master Process Outage Remote DoS
  3764. | [66625] Dovecot ACL Plugin INBOX ACL Copying Weakness Restriction Bypass
  3765. | [66113] Dovecot Mail Root Directory Creation Permission Weakness
  3766. | [66112] Dovecot Installation base_dir Parent Directory Permission Weakness
  3767. | [66111] Dovecot SEARCH Functionality str_find_init() Function Overflow
  3768. | [66110] Dovecot Multiple Unspecified Buffer Overflows
  3769. | [66108] Dovecot Malformed Message Body Processing Unspecified Functions Remote DoS
  3770. | [64783] Dovecot E-mail Message Header Unspecified DoS
  3771. | [63372] Apple Mac OS X Dovecot Kerberos Authentication SACL Restriction Bypass
  3772. | [62796] Dovecot mbox Format Email Header Handling DoS
  3773. | [60316] Dovecot base_dir Directory Permission Weakness Local Privilege Escalation
  3774. | [58103] Dovecot CMU Sieve Plugin Script Handling Multiple Overflows
  3775. | [50253] Dovecot dovecot.conf Permission Weakness Local ssl_key_password Parameter Disclosure
  3776. | [49918] Dovecot ManageSieve Script Name Handling Traversal Arbitrary File Manipulation
  3777. | [49429] Dovecot Message Parsing Feature Crafted Email Header Handling Remote DoS
  3778. | [49099] Dovecot ACL Plugin k Right Mailbox Creation Restriction Bypass
  3779. | [49098] Dovecot ACL Plugin Negative Access Rights Bypass
  3780. | [43137] Dovecot mail_extra_groups Symlink File Manipulation
  3781. | [42979] Dovecot passdbs Argument Injection Authentication Bypass
  3782. | [39876] Dovecot LDAP Auth Cache Security Bypass
  3783. | [39386] Dovecot ACL Plugin Insert Right APPEND / COPY Command Unauthorized Flag Manipulation
  3784. | [35489] Dovecot index/mbox/mbox-storage.c Traversal Arbitrary Gzip File Access
  3785. | [30524] Dovecot IMAP/POP3 Server dovecot.index.cache Handling Overflow
  3786. | [25853] Cyrus IMAPD pop3d USER Command Remote Overflow
  3787. | [25727] Dovecot Multiple Command Traversal Arbitrary Directory Listing
  3788. | [23281] Dovecot imap/pop3-login dovecot-auth DoS
  3789. | [23280] Dovecot Malformed APPEND Command DoS
  3790. | [14459] mmmail mmpop3d USER Command mmsyslog Function Format String
  3791. | [12033] Slackware Linux imapd/ipop3d Malformed USER/PASS Sequence DoS
  3792. | [5857] Linux pop3d Arbitrary Mail File Access
  3793. | [2471] akpop3d username SQL Injection
  3794. |_
  3795. Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
  3796. Aggressive OS guesses: Linux 3.10 - 3.12 (99%), Linux 4.4 (99%), Linux 3.18 (99%), Linux 2.6.32 (98%), Linux 2.6.35 (98%), Linux 2.6.39 (98%), Linux 3.10 (98%), Linux 3.4 (98%), Linux 3.5 (98%), Linux 3.7 (98%)
  3797. No exact OS matches for host (test conditions non-ideal).
  3798. Network Distance: 11 hops
  3799.  
  3800. TRACEROUTE (using port 110/tcp)
  3801. HOP RTT ADDRESS
  3802. 1 240.15 ms 10.252.204.1
  3803. 2 716.83 ms 45.131.4.2
  3804. 3 201.33 ms 109.236.95.226
  3805. 4 300.79 ms 109.236.95.106
  3806. 5 300.84 ms amsix-200gbps.core1.ams1.he.net (80.249.209.150)
  3807. 6 300.87 ms 100ge16-1.core1.lon2.he.net (72.52.92.213)
  3808. 7 300.94 ms 100ge13-2.core1.nyc4.he.net (72.52.92.166)
  3809. 8 442.90 ms 100ge8-1.core1.sjc2.he.net (184.105.81.218)
  3810. 9 442.94 ms 100ge13-2.core1.sjc1.he.net (184.105.65.113)
  3811. 10 442.94 ms e0-50.core4.fmt1.he.net (184.105.65.214)
  3812. 11 300.99 ms respectwashington.us (65.49.16.26)
  3813. #######################################################################################################################################
  3814. https://65.49.16.26 [200 OK] Apache[2.4.18], Country[UNITED STATES][US], Email[[email protected]], HTTPServer[Ubuntu Linux][Apache/2.4.18 (Ubuntu)], IP[65.49.16.26], Title[RespectWashington]
  3815. ######################################################################################################################################
  3816. Version: 1.11.13-static
  3817. OpenSSL 1.0.2-chacha (1.0.2g-dev)
  3818.  
  3819. Connected to 65.49.16.26
  3820.  
  3821. Testing SSL server 65.49.16.26 on port 443 using SNI name 65.49.16.26
  3822.  
  3823. TLS Fallback SCSV:
  3824. Server supports TLS Fallback SCSV
  3825.  
  3826. TLS renegotiation:
  3827. Secure session renegotiation supported
  3828.  
  3829. TLS Compression:
  3830. Compression disabled
  3831.  
  3832. Heartbleed:
  3833. TLS 1.2 not vulnerable to heartbleed
  3834. TLS 1.1 not vulnerable to heartbleed
  3835. TLS 1.0 not vulnerable to heartbleed
  3836.  
  3837. Supported Server Cipher(s):
  3838. Preferred TLSv1.2 256 bits ECDHE-RSA-AES256-GCM-SHA384 Curve P-256 DHE 256
  3839. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-SHA384 Curve P-256 DHE 256
  3840. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  3841. Accepted TLSv1.2 256 bits DHE-RSA-AES256-GCM-SHA384 DHE 2048 bits
  3842. Accepted TLSv1.2 256 bits DHE-RSA-AES256-SHA256 DHE 2048 bits
  3843. Accepted TLSv1.2 256 bits DHE-RSA-AES256-SHA DHE 2048 bits
  3844. Accepted TLSv1.2 256 bits DHE-RSA-CAMELLIA256-SHA DHE 2048 bits
  3845. Accepted TLSv1.2 256 bits AES256-GCM-SHA384
  3846. Accepted TLSv1.2 256 bits AES256-SHA256
  3847. Accepted TLSv1.2 256 bits AES256-SHA
  3848. Accepted TLSv1.2 256 bits CAMELLIA256-SHA
  3849. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-GCM-SHA256 Curve P-256 DHE 256
  3850. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-SHA256 Curve P-256 DHE 256
  3851. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  3852. Accepted TLSv1.2 128 bits DHE-RSA-AES128-GCM-SHA256 DHE 2048 bits
  3853. Accepted TLSv1.2 128 bits DHE-RSA-AES128-SHA256 DHE 2048 bits
  3854. Accepted TLSv1.2 128 bits DHE-RSA-AES128-SHA DHE 2048 bits
  3855. Accepted TLSv1.2 128 bits DHE-RSA-CAMELLIA128-SHA DHE 2048 bits
  3856. Accepted TLSv1.2 128 bits AES128-GCM-SHA256
  3857. Accepted TLSv1.2 128 bits AES128-SHA256
  3858. Accepted TLSv1.2 128 bits AES128-SHA
  3859. Accepted TLSv1.2 128 bits CAMELLIA128-SHA
  3860. Preferred TLSv1.1 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  3861. Accepted TLSv1.1 256 bits DHE-RSA-AES256-SHA DHE 2048 bits
  3862. Accepted TLSv1.1 256 bits DHE-RSA-CAMELLIA256-SHA DHE 2048 bits
  3863. Accepted TLSv1.1 256 bits AES256-SHA
  3864. Accepted TLSv1.1 256 bits CAMELLIA256-SHA
  3865. Accepted TLSv1.1 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  3866. Accepted TLSv1.1 128 bits DHE-RSA-AES128-SHA DHE 2048 bits
  3867. Accepted TLSv1.1 128 bits DHE-RSA-CAMELLIA128-SHA DHE 2048 bits
  3868. Accepted TLSv1.1 128 bits AES128-SHA
  3869. Accepted TLSv1.1 128 bits CAMELLIA128-SHA
  3870. Preferred TLSv1.0 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  3871. Accepted TLSv1.0 256 bits DHE-RSA-AES256-SHA DHE 2048 bits
  3872. Accepted TLSv1.0 256 bits DHE-RSA-CAMELLIA256-SHA DHE 2048 bits
  3873. Accepted TLSv1.0 256 bits AES256-SHA
  3874. Accepted TLSv1.0 256 bits CAMELLIA256-SHA
  3875. Accepted TLSv1.0 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  3876. Accepted TLSv1.0 128 bits DHE-RSA-AES128-SHA DHE 2048 bits
  3877. Accepted TLSv1.0 128 bits DHE-RSA-CAMELLIA128-SHA DHE 2048 bits
  3878. Accepted TLSv1.0 128 bits AES128-SHA
  3879. Accepted TLSv1.0 128 bits CAMELLIA128-SHA
  3880.  
  3881. SSL Certificate:
  3882. Signature Algorithm: sha256WithRSAEncryption
  3883. RSA Key Strength: 2048
  3884.  
  3885. Subject: respectwashington.us
  3886. Altnames: DNS:keller4america.us, DNS:mail.respectwashington.us, DNS:respectwashington.us, DNS:www.keller4america.us, DNS:www.respectwashington.us
  3887. Issuer: Let's Encrypt Authority X3
  3888.  
  3889. Not valid before: Sep 23 10:50:34 2019 GMT
  3890. Not valid after: Dec 22 10:50:34 2019 GMT
  3891. #######################################################################################################################################
  3892. --------------------------------------------------------
  3893. <<<Yasuo discovered following vulnerable applications>>>
  3894. --------------------------------------------------------
  3895. +-----------------+-----------------------------------+--------------------------------------------------+-----------+-----------+
  3896. | App Name | URL to Application | Potential Exploit | Username | Password |
  3897. +-----------------+-----------------------------------+--------------------------------------------------+-----------+-----------+
  3898. | phpMyAdmin | http://65.49.16.26:80/phpmyadmin/ | ./exploits/multi/http/phpmyadmin_preg_replace.rb | Not Found | Not Found |
  3899. | Linksys WRT54GL | https://65.49.16.26:443/apply.cgi | ./auxiliary/admin/http/linksys_wrt54gl_exec.rb | Not Found | Not Found |
  3900. +-----------------+-----------------------------------+--------------------------------------------------+-----------+-----------+
  3901. ######################################################################################################################################
  3902. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:15 EDT
  3903. NSE: Loaded 47 scripts for scanning.
  3904. NSE: Script Pre-scanning.
  3905. Initiating NSE at 09:15
  3906. Completed NSE at 09:15, 0.00s elapsed
  3907. Initiating NSE at 09:15
  3908. Completed NSE at 09:15, 0.00s elapsed
  3909. Initiating Ping Scan at 09:15
  3910. Scanning 65.49.16.26 [4 ports]
  3911. Completed Ping Scan at 09:15, 0.28s elapsed (1 total hosts)
  3912. Initiating Parallel DNS resolution of 1 host. at 09:15
  3913. Completed Parallel DNS resolution of 1 host. at 09:15, 0.02s elapsed
  3914. Initiating SYN Stealth Scan at 09:15
  3915. Scanning respectwashington.us (65.49.16.26) [65535 ports]
  3916. Discovered open port 587/tcp on 65.49.16.26
  3917. Discovered open port 80/tcp on 65.49.16.26
  3918. Discovered open port 443/tcp on 65.49.16.26
  3919. SYN Stealth Scan Timing: About 1.26% done; ETC: 09:56 (0:40:25 remaining)
  3920. SYN Stealth Scan Timing: About 2.12% done; ETC: 10:03 (0:47:00 remaining)
  3921. SYN Stealth Scan Timing: About 4.01% done; ETC: 09:53 (0:36:18 remaining)
  3922. SYN Stealth Scan Timing: About 12.48% done; ETC: 09:31 (0:14:09 remaining)
  3923. SYN Stealth Scan Timing: About 30.58% done; ETC: 09:34 (0:13:19 remaining)
  3924. Discovered open port 47025/tcp on 65.49.16.26
  3925. SYN Stealth Scan Timing: About 39.08% done; ETC: 09:36 (0:12:20 remaining)
  3926. SYN Stealth Scan Timing: About 45.45% done; ETC: 09:36 (0:11:18 remaining)
  3927. Discovered open port 465/tcp on 65.49.16.26
  3928. Discovered open port 36095/tcp on 65.49.16.26
  3929. SYN Stealth Scan Timing: About 51.03% done; ETC: 09:36 (0:10:14 remaining)
  3930. SYN Stealth Scan Timing: About 56.26% done; ETC: 09:36 (0:09:09 remaining)
  3931. Discovered open port 34816/tcp on 65.49.16.26
  3932. SYN Stealth Scan Timing: About 61.93% done; ETC: 09:37 (0:08:06 remaining)
  3933. SYN Stealth Scan Timing: About 67.62% done; ETC: 09:37 (0:07:00 remaining)
  3934. SYN Stealth Scan Timing: About 72.45% done; ETC: 09:37 (0:05:54 remaining)
  3935. SYN Stealth Scan Timing: About 78.10% done; ETC: 09:37 (0:04:47 remaining)
  3936. Discovered open port 35643/tcp on 65.49.16.26
  3937. SYN Stealth Scan Timing: About 83.63% done; ETC: 09:37 (0:03:37 remaining)
  3938. SYN Stealth Scan Timing: About 88.83% done; ETC: 09:38 (0:02:31 remaining)
  3939. SYN Stealth Scan Timing: About 93.91% done; ETC: 09:38 (0:01:23 remaining)
  3940. Completed SYN Stealth Scan at 09:38, 1391.51s elapsed (65535 total ports)
  3941. Initiating Service scan at 09:38
  3942. Scanning 8 services on respectwashington.us (65.49.16.26)
  3943. Completed Service scan at 09:39, 22.62s elapsed (8 services on 1 host)
  3944. Initiating OS detection (try #1) against respectwashington.us (65.49.16.26)
  3945. Retrying OS detection (try #2) against respectwashington.us (65.49.16.26)
  3946. Initiating Traceroute at 09:39
  3947. Completed Traceroute at 09:39, 0.45s elapsed
  3948. Initiating Parallel DNS resolution of 11 hosts. at 09:39
  3949. Completed Parallel DNS resolution of 11 hosts. at 09:39, 0.30s elapsed
  3950. NSE: Script scanning 65.49.16.26.
  3951. Initiating NSE at 09:39
  3952. Completed NSE at 09:39, 14.11s elapsed
  3953. Initiating NSE at 09:39
  3954. Completed NSE at 09:39, 2.73s elapsed
  3955. Nmap scan report for respectwashington.us (65.49.16.26)
  3956. Host is up (0.34s latency).
  3957. Not shown: 65522 closed ports
  3958. PORT STATE SERVICE VERSION
  3959. 80/tcp open http Apache httpd 2.4.18 ((Ubuntu))
  3960. |_http-server-header: Apache/2.4.18 (Ubuntu)
  3961. | vulners:
  3962. | cpe:/a:apache:http_server:2.4.18:
  3963. | CVE-2017-7679 7.5 https://vulners.com/cve/CVE-2017-7679
  3964. | CVE-2017-7668 7.5 https://vulners.com/cve/CVE-2017-7668
  3965. | CVE-2017-3169 7.5 https://vulners.com/cve/CVE-2017-3169
  3966. | CVE-2017-3167 7.5 https://vulners.com/cve/CVE-2017-3167
  3967. | CVE-2019-0211 7.2 https://vulners.com/cve/CVE-2019-0211
  3968. | CVE-2018-1312 6.8 https://vulners.com/cve/CVE-2018-1312
  3969. | CVE-2017-15715 6.8 https://vulners.com/cve/CVE-2017-15715
  3970. | CVE-2019-10082 6.4 https://vulners.com/cve/CVE-2019-10082
  3971. | CVE-2017-9788 6.4 https://vulners.com/cve/CVE-2017-9788
  3972. | CVE-2019-10098 5.8 https://vulners.com/cve/CVE-2019-10098
  3973. | CVE-2019-0220 5.0 https://vulners.com/cve/CVE-2019-0220
  3974. | CVE-2019-0196 5.0 https://vulners.com/cve/CVE-2019-0196
  3975. | CVE-2018-17199 5.0 https://vulners.com/cve/CVE-2018-17199
  3976. | CVE-2018-1333 5.0 https://vulners.com/cve/CVE-2018-1333
  3977. | CVE-2017-9798 5.0 https://vulners.com/cve/CVE-2017-9798
  3978. | CVE-2017-15710 5.0 https://vulners.com/cve/CVE-2017-15710
  3979. | CVE-2016-8743 5.0 https://vulners.com/cve/CVE-2016-8743
  3980. | CVE-2016-8740 5.0 https://vulners.com/cve/CVE-2016-8740
  3981. | CVE-2016-4979 5.0 https://vulners.com/cve/CVE-2016-4979
  3982. | CVE-2019-0197 4.9 https://vulners.com/cve/CVE-2019-0197
  3983. | CVE-2019-10092 4.3 https://vulners.com/cve/CVE-2019-10092
  3984. | CVE-2018-11763 4.3 https://vulners.com/cve/CVE-2018-11763
  3985. | CVE-2016-4975 4.3 https://vulners.com/cve/CVE-2016-4975
  3986. | CVE-2016-1546 4.3 https://vulners.com/cve/CVE-2016-1546
  3987. | CVE-2018-1283 3.5 https://vulners.com/cve/CVE-2018-1283
  3988. |_ CVE-2016-8612 3.3 https://vulners.com/cve/CVE-2016-8612
  3989. | vulscan: VulDB - https://vuldb.com:
  3990. | [88747] Apache HTTP Server 2.4.17/2.4.18 mod_http2 denial of service
  3991. | [76731] Apache HTTP Server 2.4.12 ErrorDocument 400 Crash denial of service
  3992. | [74367] Apache HTTP Server up to 2.4.12 mod_lua lua_request.c wsupgrade denial of service
  3993. | [68575] Apache HTTP Server up to 2.4.10 LuaAuthzProvider mod_lua.c privilege escalation
  3994. | [68435] Apache HTTP Server 2.4.10 mod_proxy_fcgi.c handle_headers denial of service
  3995. | [13300] Apache HTTP Server 2.4.1/2.4.2 mod_wsgi setuid privilege escalation
  3996. | [13299] Apache HTTP Server 2.4.1/2.4.2 mod_wsgi Content-Type Header information disclosure
  3997. | [136374] Apache HTTP Server up to 2.4.38 Slash Regular Expression unknown vulnerability
  3998. | [136373] Apache HTTP Server 2.4.34/2.4.35/2.4.36/2.4.37/2.4.38 HTTP2 Request Crash denial of service
  3999. | [136372] Apache HTTP Server up to 2.4.38 HTTP2 Request unknown vulnerability
  4000. | [133112] Apache HTTP Server up to 2.4.38 mod_auth_digest race condition privilege escalation
  4001. | [133111] Apache HTTP Server 2.4.37/2.4.38 mod_ssl Bypass privilege escalation
  4002. | [130341] Apache HTTP Server 2.4.37 mod_ssl Loop denial of service
  4003. | [130330] Apache HTTP Server up to 2.4.37 mod_session Expired privilege escalation
  4004. | [130329] Apache HTTP Server 2.4.37 mod_http2 Slowloris denial of service
  4005. | [124447] Apache HTTP Server up to 2.4.34 SETTINGS Frame denial of service
  4006. | [121910] Apache HTTP Server 2.4.33 mod_md HTTP Requests denial of service
  4007. | [122569] Apache HTTP Server up to 2.4.33 HTTP2 Request denial of service
  4008. | [115061] Apache HTTP Server up to 2.4.29 HTTP Digest Authentication Challenge HTTP Requests Replay privilege escalation
  4009. | [115060] Apache HTTP Server up to 2.4.29 mod_cache_socache Request Header Crash denial of service
  4010. | [115059] Apache HTTP Server up to 2.4.29 HTTP2 NULL Pointer Dereference denial of service
  4011. | [115058] Apache HTTP Server up to 2.4.29 HTTP Header Crash denial of service
  4012. | [115057] Apache HTTP Server up to 2.4.29 mod_session Variable Name Cache privilege escalation
  4013. | [115039] Apache HTTP Server up to 2.4.29 FilesMatch File Upload privilege escalation
  4014. | [114258] Apache HTTP Server up to 2.4.22 mod_cluster Segmentation Fault denial of service
  4015. | [104986] Apache CXF 2.4.5/2.5.1 WS-SP UsernameToken Policy SOAP Request weak authentication
  4016. | [103521] Apache HTTP Server 2.4.26 HTTP2 Free memory corruption
  4017. | [94627] Apache HTTP Server up to 2.4.24 mod_auth_digest Crash denial of service
  4018. | [94626] Apache HTTP Server up to 2.4.24 mod_session_crypto Padding weak encryption
  4019. | [94625] Apache HTTP Server up to 2.4.24 Response Split privilege escalation
  4020. | [93958] Apache HTTP Server up to 2.4.23 mod_http2 h2_stream.c denial of service
  4021. | [89669] Apache HTTP Server up to 2.4.23 RFC 3875 Namespace Conflict Environment Variable Open Redirect
  4022. | [88667] Apache HTTP Server up to 2.4.20 mod_http2 Certificate weak authentication
  4023. | [77083] Apache Groovy up to 2.4.3 MethodClosure.java MethodClosure memory corruption
  4024. | [76733] Apache HTTP Server 2.4.7/2.4.8/2.4.9/2.4.10/2.4.12 ap_some_auth_required unknown vulnerability
  4025. | [76732] Apache HTTP Server 2.4.7/2.4.8/2.4.9/2.4.10/2.4.12 Request apr_brigade_flatten privilege escalation
  4026. | [73106] Apache Hadoop up to 2.4.0 Symlink privilege escalation
  4027. | [67183] Apache HTTP Server up to 2.4.9 mod_proxy denial of service
  4028. | [67180] Apache HTTP Server up to 2.4.9 WinNT MPM Memory Leak denial of service
  4029. | [67185] Apache HTTP Server up to 2.4.9 mod_status Heap-Based memory corruption
  4030. | [67184] Apache HTTP Server 2.4.5/2.4.6 mod_cache NULL Pointer Dereference denial of service
  4031. | [67182] Apache HTTP Server up to 2.4.9 mod_deflate Memory Consumption denial of service
  4032. | [67181] Apache HTTP Server up to 2.4.9 mod_cgid denial of service
  4033. | [12667] Apache HTTP Server 2.4.7 mod_log_config.c log_cookie denial of service
  4034. | [9683] Apache HTTP Server 2.4.5 mod_session_dbd denial of service
  4035. | [7202] Apache HTTP Server 2.4.2 on Oracle Solaris ld_library_path cross site scripting
  4036. | [62417] Apache CXF 2.4.7/2.4.8/2.5.3/2.5.4/2.6.1 spoofing
  4037. | [6092] Apache HTTP Server 2.4.0/2.4.1/2.4.2 mod_proxy_ajp.c information disclosure
  4038. | [6090] Apache HTTP Server 2.4.0/2.4.1/2.4.2 mod_proxy_http.c information disclosure
  4039. | [9673] Apache HTTP Server up to 2.4.4 mod_dav mod_dav.c Request denial of service
  4040. |
  4041. | MITRE CVE - https://cve.mitre.org:
  4042. | [CVE-2013-2249] mod_session_dbd.c in the mod_session_dbd module in the Apache HTTP Server before 2.4.5 proceeds with save operations for a session without considering the dirty flag and the requirement for a new session ID, which has unspecified impact and remote attack vectors.
  4043. | [CVE-2012-4558] Multiple cross-site scripting (XSS) vulnerabilities in the balancer_handler function in the manager interface in mod_proxy_balancer.c in the mod_proxy_balancer module in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via a crafted string.
  4044. | [CVE-2012-3502] The proxy functionality in (1) mod_proxy_ajp.c in the mod_proxy_ajp module and (2) mod_proxy_http.c in the mod_proxy_http module in the Apache HTTP Server 2.4.x before 2.4.3 does not properly determine the situations that require closing a back-end connection, which allows remote attackers to obtain sensitive information in opportunistic circumstances by reading a response that was intended for a different client.
  4045. | [CVE-2012-3499] Multiple cross-site scripting (XSS) vulnerabilities in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via vectors involving hostnames and URIs in the (1) mod_imagemap, (2) mod_info, (3) mod_ldap, (4) mod_proxy_ftp, and (5) mod_status modules.
  4046. | [CVE-2012-3451] Apache CXF before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 allows remote attackers to execute unintended web-service operations by sending a header with a SOAP Action String that is inconsistent with the message body.
  4047. | [CVE-2012-2687] Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.
  4048. | [CVE-2012-2379] Apache CXF 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1, when a Supporting Token specifies a child WS-SecurityPolicy 1.1 or 1.2 policy, does not properly ensure that an XML element is signed or encrypted, which has unspecified impact and attack vectors.
  4049. | [CVE-2012-2378] Apache CXF 2.4.5 through 2.4.7, 2.5.1 through 2.5.3, and 2.6.x before 2.6.1, does not properly enforce child policies of a WS-SecurityPolicy 1.1 SupportingToken policy on the client side, which allows remote attackers to bypass the (1) AlgorithmSuite, (2) SignedParts, (3) SignedElements, (4) EncryptedParts, and (5) EncryptedElements policies.
  4050. | [CVE-2012-0883] envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl.
  4051. | [CVE-2011-2516] Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.
  4052. |
  4053. | SecurityFocus - https://www.securityfocus.com/bid/:
  4054. | [42102] Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure Vulnerability
  4055. | [27237] Apache HTTP Server 2.2.6, 2.0.61 and 1.3.39 'mod_status' Cross-Site Scripting Vulnerability
  4056. | [15413] PHP Apache 2 Virtual() Safe_Mode and Open_Basedir Restriction Bypass Vulnerability
  4057. | [15177] PHP Apache 2 Local Denial of Service Vulnerability
  4058. | [6065] Apache 2 WebDAV CGI POST Request Information Disclosure Vulnerability
  4059. | [5816] Apache 2 mod_dav Denial Of Service Vulnerability
  4060. | [5486] Apache 2.0 CGI Path Disclosure Vulnerability
  4061. | [5485] Apache 2.0 Path Disclosure Vulnerability
  4062. | [5434] Apache 2.0 Encoded Backslash Directory Traversal Vulnerability
  4063. | [5256] Apache httpd 2.0 CGI Error Path Disclosure Vulnerability
  4064. | [4057] Apache 2 for Windows OPTIONS request Path Disclosure Vulnerability
  4065. | [4056] Apache 2 for Windows php.exe Path Disclosure Vulnerability
  4066. |
  4067. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  4068. | [75211] Debian GNU/Linux apache 2 cross-site scripting
  4069. |
  4070. | Exploit-DB - https://www.exploit-db.com:
  4071. | [31052] Apache <= 2.2.6 'mod_negotiation' HTML Injection and HTTP Response Splitting Vulnerability
  4072. | [30901] Apache HTTP Server 2.2.6 Windows Share PHP File Extension Mapping Information Disclosure Vulnerability
  4073. | [30835] Apache HTTP Server <= 2.2.4 413 Error HTTP Request Method Cross-Site Scripting Weakness
  4074. | [28424] Apache 2.x HTTP Server Arbitrary HTTP Request Headers Security Weakness
  4075. | [28365] Apache 2.2.2 CGI Script Source Code Information Disclosure Vulnerability
  4076. | [27915] Apache James 2.2 SMTP Denial of Service Vulnerability
  4077. | [27135] Apache Struts 2 DefaultActionMapper Prefixes OGNL Code Execution
  4078. | [26710] Apache CXF prior to 2.5.10, 2.6.7 and 2.7.4 - Denial of Service
  4079. | [24590] Apache 2.0.x mod_ssl Remote Denial of Service Vulnerability
  4080. | [23581] Apache 2.0.4x mod_perl Module File Descriptor Leakage Vulnerability
  4081. | [23482] Apache 2.0.4x mod_php Module File Descriptor Leakage Vulnerability (2)
  4082. | [23481] Apache 2.0.4x mod_php Module File Descriptor Leakage Vulnerability (1)
  4083. | [23296] Red Hat Apache 2.0.40 Directory Index Default Configuration Error
  4084. | [23282] apache cocoon 2.14/2.2 - Directory Traversal vulnerability
  4085. | [22191] Apache Web Server 2.0.x MS-DOS Device Name Denial of Service Vulnerability
  4086. | [21854] Apache 2.0.39/40 Oversized STDERR Buffer Denial of Service Vulnerability
  4087. | [21719] Apache 2.0 Path Disclosure Vulnerability
  4088. | [21697] Apache 2.0 Encoded Backslash Directory Traversal Vulnerability
  4089. | [20272] Apache 1.2.5/1.3.1,UnityMail 2.0 MIME Header DoS Vulnerability
  4090. | [19828] Cobalt RaQ 2.0/3.0 Apache .htaccess Disclosure Vulnerability
  4091. | [18984] Apache Struts <= 2.2.1.1 - Remote Command Execution
  4092. | [18329] Apache Struts2 <= 2.3.1 - Multiple Vulnerabilities
  4093. | [17691] Apache Struts < 2.2.0 - Remote Command Execution
  4094. | [15319] Apache 2.2 (Windows) Local Denial of Service
  4095. | [14617] Apache JackRabbit 2.0.0 webapp XPath Injection
  4096. | [11650] Apache 2.2.14 mod_isapi Dangling Pointer Remote SYSTEM Exploit
  4097. | [8458] Apache Geronimo <= 2.1.3 - Multiple Directory Traversal Vulnerabilities
  4098. | [5330] Apache 2.0 mod_jk2 2.0.2 - Remote Buffer Overflow Exploit (win32)
  4099. | [3996] Apache 2.0.58 mod_rewrite Remote Overflow Exploit (win2k3)
  4100. | [2237] Apache < 1.3.37, 2.0.59, 2.2.3 (mod_rewrite) Remote Overflow PoC
  4101. | [1056] Apache <= 2.0.49 Arbitrary Long HTTP Headers Denial of Service
  4102. | [855] Apache <= 2.0.52 HTTP GET request Denial of Service Exploit
  4103. | [132] Apache 1.3.x - 2.0.48 - mod_userdir Remote Users Disclosure Exploit
  4104. | [38] Apache <= 2.0.45 APR Remote Exploit -Apache-Knacker.pl
  4105. | [34] Webfroot Shoutbox < 2.32 (Apache) Remote Exploit
  4106. | [11] Apache <= 2.0.44 Linux Remote Denial of Service Exploit
  4107. | [9] Apache HTTP Server 2.x Memory Leak Exploit
  4108. |
  4109. | OpenVAS (Nessus) - http://www.openvas.org:
  4110. | [855524] Solaris Update for Apache 2 120544-14
  4111. | [855077] Solaris Update for Apache 2 120543-14
  4112. | [100858] Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure Vulnerability
  4113. | [72626] Debian Security Advisory DSA 2579-1 (apache2)
  4114. | [71551] Gentoo Security Advisory GLSA 201206-25 (apache)
  4115. | [71550] Gentoo Security Advisory GLSA 201206-24 (apache tomcat)
  4116. | [71485] Debian Security Advisory DSA 2506-1 (libapache-mod-security)
  4117. | [71256] Debian Security Advisory DSA 2452-1 (apache2)
  4118. | [71238] Debian Security Advisory DSA 2436-1 (libapache2-mod-fcgid)
  4119. | [70724] Debian Security Advisory DSA 2405-1 (apache2)
  4120. | [70235] Debian Security Advisory DSA 2298-2 (apache2)
  4121. | [70233] Debian Security Advisory DSA 2298-1 (apache2)
  4122. | [69988] Debian Security Advisory DSA 2279-1 (libapache2-mod-authnz-external)
  4123. | [69338] Debian Security Advisory DSA 2202-1 (apache2)
  4124. | [65131] SLES9: Security update for Apache 2 oes/CORE
  4125. | [64426] Gentoo Security Advisory GLSA 200907-04 (apache)
  4126. | [61381] Gentoo Security Advisory GLSA 200807-06 (apache)
  4127. | [60582] Gentoo Security Advisory GLSA 200803-19 (apache)
  4128. | [58745] Gentoo Security Advisory GLSA 200711-06 (apache)
  4129. | [57851] Gentoo Security Advisory GLSA 200608-01 (apache)
  4130. | [56246] Gentoo Security Advisory GLSA 200602-03 (Apache)
  4131. | [55392] Gentoo Security Advisory GLSA 200509-12 (Apache)
  4132. | [55129] Gentoo Security Advisory GLSA 200508-15 (apache)
  4133. | [54739] Gentoo Security Advisory GLSA 200411-18 (apache)
  4134. | [54724] Gentoo Security Advisory GLSA 200411-03 (apache)
  4135. | [54712] Gentoo Security Advisory GLSA 200410-21 (apache)
  4136. | [54689] Gentoo Security Advisory GLSA 200409-33 (net=www/apache)
  4137. | [54677] Gentoo Security Advisory GLSA 200409-21 (apache)
  4138. | [54610] Gentoo Security Advisory GLSA 200407-03 (Apache)
  4139. | [54601] Gentoo Security Advisory GLSA 200406-16 (Apache)
  4140. | [54590] Gentoo Security Advisory GLSA 200406-05 (Apache)
  4141. | [54582] Gentoo Security Advisory GLSA 200405-22 (Apache)
  4142. | [54529] Gentoo Security Advisory GLSA 200403-04 (Apache)
  4143. | [54499] Gentoo Security Advisory GLSA 200310-04 (Apache)
  4144. | [54498] Gentoo Security Advisory GLSA 200310-03 (Apache)
  4145. | [11092] Apache 2.0.39 Win32 directory traversal
  4146. | [66081] SLES11: Security update for Apache 2
  4147. | [66074] SLES10: Security update for Apache 2
  4148. | [66070] SLES9: Security update for Apache 2
  4149. | [65893] SLES10: Security update for Apache 2
  4150. | [65888] SLES10: Security update for Apache 2
  4151. | [65510] SLES9: Security update for Apache 2
  4152. | [65249] SLES9: Security update for Apache 2
  4153. | [65230] SLES9: Security update for Apache 2
  4154. | [65228] SLES9: Security update for Apache 2
  4155. | [65207] SLES9: Security update for Apache 2
  4156. | [65136] SLES9: Security update for Apache 2
  4157. | [65017] SLES9: Security update for Apache 2
  4158. |
  4159. | SecurityTracker - https://www.securitytracker.com:
  4160. | [1008196] Apache 2.x on Windows May Return Unexpected Files For URLs Ending With Certain Characters
  4161. | [1007143] Apache 2.0 Web Server May Use a Weaker Encryption Implementation Than Specified in Some Cases
  4162. | [1006444] Apache 2.0 Web Server Line Feed Buffer Allocation Flaw Lets Remote Users Deny Service
  4163. | [1005963] Apache Web Server 2.x Windows Device Access Flaw Lets Remote Users Crash the Server or Possibly Execute Arbitrary Code
  4164. | [1004770] Apache 2.x Web Server ap_log_rerror() Function May Disclose Full Installation Path to Remote Users
  4165. |
  4166. | OSVDB - http://www.osvdb.org:
  4167. | [20897] PHP w/ Apache 2 SAPI virtual() Function Unspecified INI Setting Disclosure
  4168. |_
  4169. 110/tcp filtered pop3
  4170. 143/tcp filtered imap
  4171. 443/tcp open ssl/http Apache httpd 2.4.18
  4172. |_http-server-header: Apache/2.4.18 (Ubuntu)
  4173. | vulners:
  4174. | Apache httpd 2.4.18:
  4175. | HTTPD:F564BBA32AA088833DA032B7EB77CA29 7.5 https://vulners.com/httpd/HTTPD:F564BBA32AA088833DA032B7EB77CA29
  4176. | HTTPD:E74D6161229FA3D00A1783E6C3426C5D 7.5 https://vulners.com/httpd/HTTPD:E74D6161229FA3D00A1783E6C3426C5D
  4177. | HTTPD:C7D2DA1ACB016A5220CA8E74647BED26 7.5 https://vulners.com/httpd/HTTPD:C7D2DA1ACB016A5220CA8E74647BED26
  4178. | HTTPD:8F00FB1DD7567228376803FEDB0EC3B6 7.5 https://vulners.com/httpd/HTTPD:8F00FB1DD7567228376803FEDB0EC3B6
  4179. | HTTPD:7EEE138FD834328B3FC98E4B7FCAD266 7.5 https://vulners.com/httpd/HTTPD:7EEE138FD834328B3FC98E4B7FCAD266
  4180. | HTTPD:24E96D438275A8177C289509C796525C 7.5 https://vulners.com/httpd/HTTPD:24E96D438275A8177C289509C796525C
  4181. | HTTPD:237FAB5DE739A612077A245192137A48 7.5 https://vulners.com/httpd/HTTPD:237FAB5DE739A612077A245192137A48
  4182. | HTTPD:143F3A43D871E3AFFF956DB1049A6A2A 7.5 https://vulners.com/httpd/HTTPD:143F3A43D871E3AFFF956DB1049A6A2A
  4183. | HTTPD:0C6EE30D77005EBF2B39E351B1F3E2C4 7.5 https://vulners.com/httpd/HTTPD:0C6EE30D77005EBF2B39E351B1F3E2C4
  4184. | HTTPD:FC354B921BA807DFCACD7CD3C1D02FF9 7.2 https://vulners.com/httpd/HTTPD:FC354B921BA807DFCACD7CD3C1D02FF9
  4185. | HTTPD:9CDB89FBD1162B1E462FDF5BEA375759 6.8 https://vulners.com/httpd/HTTPD:9CDB89FBD1162B1E462FDF5BEA375759
  4186. | HTTPD:13B5FCC9676077F8FD08063C83511140 6.8 https://vulners.com/httpd/HTTPD:13B5FCC9676077F8FD08063C83511140
  4187. | HTTPD:B057D0A07B0AC97248CE6210E08ACAF7 6.4 https://vulners.com/httpd/HTTPD:B057D0A07B0AC97248CE6210E08ACAF7
  4188. | HTTPD:99188FFDCAF9C4932D00C218A2E58EC7 6.4 https://vulners.com/httpd/HTTPD:99188FFDCAF9C4932D00C218A2E58EC7
  4189. | HTTPD:531CF2A74E1A5A02A1D6AE2505AD586F 6.4 https://vulners.com/httpd/HTTPD:531CF2A74E1A5A02A1D6AE2505AD586F
  4190. | HTTPD:1696C4DDCBC58CE20005FCB002958C09 6.0 https://vulners.com/httpd/HTTPD:1696C4DDCBC58CE20005FCB002958C09
  4191. | HTTPD:01BB9C701A4D4302EF59FA7EA89D9115 5.8 https://vulners.com/httpd/HTTPD:01BB9C701A4D4302EF59FA7EA89D9115
  4192. | HTTPD:F292DF1CEE1729E4240D1D62A10F5D32 5.1 https://vulners.com/httpd/HTTPD:F292DF1CEE1729E4240D1D62A10F5D32
  4193. | HTTPD:CE14FA5A5B1A2BE3A35EA809C9D8CFF7 5.1 https://vulners.com/httpd/HTTPD:CE14FA5A5B1A2BE3A35EA809C9D8CFF7
  4194. | HTTPD:79096CA36FAE041205EFAB66A6D4EF4B 5.1 https://vulners.com/httpd/HTTPD:79096CA36FAE041205EFAB66A6D4EF4B
  4195. | HTTPD:E91F31FD116386F2922B3EDA4BE3899B 5.0 https://vulners.com/httpd/HTTPD:E91F31FD116386F2922B3EDA4BE3899B
  4196. | HTTPD:E05CACB9D575871BA1E3088D02930266 5.0 https://vulners.com/httpd/HTTPD:E05CACB9D575871BA1E3088D02930266
  4197. | HTTPD:D7BF4648C333C0F770A30DEB0A23601C 5.0 https://vulners.com/httpd/HTTPD:D7BF4648C333C0F770A30DEB0A23601C
  4198. | HTTPD:D5609C15618DCADFDAD5AD396F2B83D7 5.0 https://vulners.com/httpd/HTTPD:D5609C15618DCADFDAD5AD396F2B83D7
  4199. | HTTPD:D5091608B1DC5DB5CABE405261B7658E 5.0 https://vulners.com/httpd/HTTPD:D5091608B1DC5DB5CABE405261B7658E
  4200. | HTTPD:D26626D944F16D90B877FB157E4A128F 5.0 https://vulners.com/httpd/HTTPD:D26626D944F16D90B877FB157E4A128F
  4201. | HTTPD:D0D55654F7429E8A4965CBBE30779CD6 5.0 https://vulners.com/httpd/HTTPD:D0D55654F7429E8A4965CBBE30779CD6
  4202. | HTTPD:C191D6FAD0C97D0A2E0A2A9F7BFE6B38 5.0 https://vulners.com/httpd/HTTPD:C191D6FAD0C97D0A2E0A2A9F7BFE6B38
  4203. | HTTPD:BD5F2FE0FF24D28F3450C11422A68AC8 5.0 https://vulners.com/httpd/HTTPD:BD5F2FE0FF24D28F3450C11422A68AC8
  4204. | HTTPD:B2B68FFCE0FB45D09BE91EE9ECBA07F6 5.0 https://vulners.com/httpd/HTTPD:B2B68FFCE0FB45D09BE91EE9ECBA07F6
  4205. | HTTPD:A5459AF02C9EC35CE80EA173C36C3F47 5.0 https://vulners.com/httpd/HTTPD:A5459AF02C9EC35CE80EA173C36C3F47
  4206. | HTTPD:824D39D8A30F1234C966CBDA41E1C446 5.0 https://vulners.com/httpd/HTTPD:824D39D8A30F1234C966CBDA41E1C446
  4207. | HTTPD:73656ED41609146303D488C86337BC2D 5.0 https://vulners.com/httpd/HTTPD:73656ED41609146303D488C86337BC2D
  4208. | HTTPD:6CAC4F8B58BB2BE168795A6BA0CA26A1 5.0 https://vulners.com/httpd/HTTPD:6CAC4F8B58BB2BE168795A6BA0CA26A1
  4209. | HTTPD:5D6E315A1B98558C0DF8CBE51264FBA5 5.0 https://vulners.com/httpd/HTTPD:5D6E315A1B98558C0DF8CBE51264FBA5
  4210. | HTTPD:4EC9662496A151DDE6D030D9127572E7 5.0 https://vulners.com/httpd/HTTPD:4EC9662496A151DDE6D030D9127572E7
  4211. | HTTPD:42FA2547862AB3B3F5E7F776E2D90614 5.0 https://vulners.com/httpd/HTTPD:42FA2547862AB3B3F5E7F776E2D90614
  4212. | HTTPD:3647863A8E4AE972669D5EE60974E777 5.0 https://vulners.com/httpd/HTTPD:3647863A8E4AE972669D5EE60974E777
  4213. | HTTPD:18105DABC6D0ADE97D12B90F63EAE025 5.0 https://vulners.com/httpd/HTTPD:18105DABC6D0ADE97D12B90F63EAE025
  4214. | HTTPD:174A0D44882BCA7E2F229BC91D6D5A09 5.0 https://vulners.com/httpd/HTTPD:174A0D44882BCA7E2F229BC91D6D5A09
  4215. | HTTPD:04C30566E99EFB3C0D60F08EE2524591 5.0 https://vulners.com/httpd/HTTPD:04C30566E99EFB3C0D60F08EE2524591
  4216. | HTTPD:F4FBBB7467F08F96828B98E753E5FE7D 4.3 https://vulners.com/httpd/HTTPD:F4FBBB7467F08F96828B98E753E5FE7D
  4217. | HTTPD:D94ACD37B5627A621B2D592BD44873F2 4.3 https://vulners.com/httpd/HTTPD:D94ACD37B5627A621B2D592BD44873F2
  4218. | HTTPD:D26FFC4C8AA598C5F130A0223836644E 4.3 https://vulners.com/httpd/HTTPD:D26FFC4C8AA598C5F130A0223836644E
  4219. | HTTPD:A5773ECB3CB67826707B252F21BB80BB 4.3 https://vulners.com/httpd/HTTPD:A5773ECB3CB67826707B252F21BB80BB
  4220. | HTTPD:86C509FC37A85DC3C01E3CE10402C6DC 4.3 https://vulners.com/httpd/HTTPD:86C509FC37A85DC3C01E3CE10402C6DC
  4221. | HTTPD:714A18409AEB3B8362DC4FA2B923CA7A 4.3 https://vulners.com/httpd/HTTPD:714A18409AEB3B8362DC4FA2B923CA7A
  4222. | HTTPD:43E63F90DCA6F418ACF2327C4F88C3D8 4.3 https://vulners.com/httpd/HTTPD:43E63F90DCA6F418ACF2327C4F88C3D8
  4223. | HTTPD:2E568217BC35E0AA91DF49E7CE65CA67 3.5 https://vulners.com/httpd/HTTPD:2E568217BC35E0AA91DF49E7CE65CA67
  4224. | HTTPD:B6CF5630624F83951A477D36DC8FD634 0.0 https://vulners.com/httpd/HTTPD:B6CF5630624F83951A477D36DC8FD634
  4225. | HTTPD:94C27BCF50CA81A222019B9F06735AA1 0.0 https://vulners.com/httpd/HTTPD:94C27BCF50CA81A222019B9F06735AA1
  4226. | HTTPD:914D0BB6DF64CDA58BDF1461563DCBC2 0.0 https://vulners.com/httpd/HTTPD:914D0BB6DF64CDA58BDF1461563DCBC2
  4227. | HTTPD:7ED2E94FC8175AF57B0B84C966E78986 0.0 https://vulners.com/httpd/HTTPD:7ED2E94FC8175AF57B0B84C966E78986
  4228. | HTTPD:55F8C86BB4FE80544B301C6F772E1F21 0.0 https://vulners.com/httpd/HTTPD:55F8C86BB4FE80544B301C6F772E1F21
  4229. | HTTPD:53F7D531D201D0209EE31F3FA8829F5B 0.0 https://vulners.com/httpd/HTTPD:53F7D531D201D0209EE31F3FA8829F5B
  4230. |_ HTTPD:21A860C56B7B6A55960FB17E72B7E4B4 0.0 https://vulners.com/httpd/HTTPD:21A860C56B7B6A55960FB17E72B7E4B4
  4231. | vulscan: VulDB - https://vuldb.com:
  4232. | [88747] Apache HTTP Server 2.4.17/2.4.18 mod_http2 denial of service
  4233. | [76731] Apache HTTP Server 2.4.12 ErrorDocument 400 Crash denial of service
  4234. | [74367] Apache HTTP Server up to 2.4.12 mod_lua lua_request.c wsupgrade denial of service
  4235. | [68575] Apache HTTP Server up to 2.4.10 LuaAuthzProvider mod_lua.c privilege escalation
  4236. | [68435] Apache HTTP Server 2.4.10 mod_proxy_fcgi.c handle_headers denial of service
  4237. | [13300] Apache HTTP Server 2.4.1/2.4.2 mod_wsgi setuid privilege escalation
  4238. | [13299] Apache HTTP Server 2.4.1/2.4.2 mod_wsgi Content-Type Header information disclosure
  4239. | [136374] Apache HTTP Server up to 2.4.38 Slash Regular Expression unknown vulnerability
  4240. | [136373] Apache HTTP Server 2.4.34/2.4.35/2.4.36/2.4.37/2.4.38 HTTP2 Request Crash denial of service
  4241. | [136372] Apache HTTP Server up to 2.4.38 HTTP2 Request unknown vulnerability
  4242. | [133112] Apache HTTP Server up to 2.4.38 mod_auth_digest race condition privilege escalation
  4243. | [133111] Apache HTTP Server 2.4.37/2.4.38 mod_ssl Bypass privilege escalation
  4244. | [130341] Apache HTTP Server 2.4.37 mod_ssl Loop denial of service
  4245. | [130330] Apache HTTP Server up to 2.4.37 mod_session Expired privilege escalation
  4246. | [130329] Apache HTTP Server 2.4.37 mod_http2 Slowloris denial of service
  4247. | [124447] Apache HTTP Server up to 2.4.34 SETTINGS Frame denial of service
  4248. | [121910] Apache HTTP Server 2.4.33 mod_md HTTP Requests denial of service
  4249. | [122569] Apache HTTP Server up to 2.4.33 HTTP2 Request denial of service
  4250. | [115061] Apache HTTP Server up to 2.4.29 HTTP Digest Authentication Challenge HTTP Requests Replay privilege escalation
  4251. | [115060] Apache HTTP Server up to 2.4.29 mod_cache_socache Request Header Crash denial of service
  4252. | [115059] Apache HTTP Server up to 2.4.29 HTTP2 NULL Pointer Dereference denial of service
  4253. | [115058] Apache HTTP Server up to 2.4.29 HTTP Header Crash denial of service
  4254. | [115057] Apache HTTP Server up to 2.4.29 mod_session Variable Name Cache privilege escalation
  4255. | [115039] Apache HTTP Server up to 2.4.29 FilesMatch File Upload privilege escalation
  4256. | [114258] Apache HTTP Server up to 2.4.22 mod_cluster Segmentation Fault denial of service
  4257. | [104986] Apache CXF 2.4.5/2.5.1 WS-SP UsernameToken Policy SOAP Request weak authentication
  4258. | [103521] Apache HTTP Server 2.4.26 HTTP2 Free memory corruption
  4259. | [94627] Apache HTTP Server up to 2.4.24 mod_auth_digest Crash denial of service
  4260. | [94626] Apache HTTP Server up to 2.4.24 mod_session_crypto Padding weak encryption
  4261. | [94625] Apache HTTP Server up to 2.4.24 Response Split privilege escalation
  4262. | [93958] Apache HTTP Server up to 2.4.23 mod_http2 h2_stream.c denial of service
  4263. | [89669] Apache HTTP Server up to 2.4.23 RFC 3875 Namespace Conflict Environment Variable Open Redirect
  4264. | [88667] Apache HTTP Server up to 2.4.20 mod_http2 Certificate weak authentication
  4265. | [77083] Apache Groovy up to 2.4.3 MethodClosure.java MethodClosure memory corruption
  4266. | [76733] Apache HTTP Server 2.4.7/2.4.8/2.4.9/2.4.10/2.4.12 ap_some_auth_required unknown vulnerability
  4267. | [76732] Apache HTTP Server 2.4.7/2.4.8/2.4.9/2.4.10/2.4.12 Request apr_brigade_flatten privilege escalation
  4268. | [73106] Apache Hadoop up to 2.4.0 Symlink privilege escalation
  4269. | [67183] Apache HTTP Server up to 2.4.9 mod_proxy denial of service
  4270. | [67180] Apache HTTP Server up to 2.4.9 WinNT MPM Memory Leak denial of service
  4271. | [67185] Apache HTTP Server up to 2.4.9 mod_status Heap-Based memory corruption
  4272. | [67184] Apache HTTP Server 2.4.5/2.4.6 mod_cache NULL Pointer Dereference denial of service
  4273. | [67182] Apache HTTP Server up to 2.4.9 mod_deflate Memory Consumption denial of service
  4274. | [67181] Apache HTTP Server up to 2.4.9 mod_cgid denial of service
  4275. | [12667] Apache HTTP Server 2.4.7 mod_log_config.c log_cookie denial of service
  4276. | [9683] Apache HTTP Server 2.4.5 mod_session_dbd denial of service
  4277. | [7202] Apache HTTP Server 2.4.2 on Oracle Solaris ld_library_path cross site scripting
  4278. | [62417] Apache CXF 2.4.7/2.4.8/2.5.3/2.5.4/2.6.1 spoofing
  4279. | [6092] Apache HTTP Server 2.4.0/2.4.1/2.4.2 mod_proxy_ajp.c information disclosure
  4280. | [6090] Apache HTTP Server 2.4.0/2.4.1/2.4.2 mod_proxy_http.c information disclosure
  4281. | [9673] Apache HTTP Server up to 2.4.4 mod_dav mod_dav.c Request denial of service
  4282. |
  4283. | MITRE CVE - https://cve.mitre.org:
  4284. | [CVE-2013-2249] mod_session_dbd.c in the mod_session_dbd module in the Apache HTTP Server before 2.4.5 proceeds with save operations for a session without considering the dirty flag and the requirement for a new session ID, which has unspecified impact and remote attack vectors.
  4285. | [CVE-2012-4558] Multiple cross-site scripting (XSS) vulnerabilities in the balancer_handler function in the manager interface in mod_proxy_balancer.c in the mod_proxy_balancer module in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via a crafted string.
  4286. | [CVE-2012-3502] The proxy functionality in (1) mod_proxy_ajp.c in the mod_proxy_ajp module and (2) mod_proxy_http.c in the mod_proxy_http module in the Apache HTTP Server 2.4.x before 2.4.3 does not properly determine the situations that require closing a back-end connection, which allows remote attackers to obtain sensitive information in opportunistic circumstances by reading a response that was intended for a different client.
  4287. | [CVE-2012-3499] Multiple cross-site scripting (XSS) vulnerabilities in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2.4.4 allow remote attackers to inject arbitrary web script or HTML via vectors involving hostnames and URIs in the (1) mod_imagemap, (2) mod_info, (3) mod_ldap, (4) mod_proxy_ftp, and (5) mod_status modules.
  4288. | [CVE-2012-3451] Apache CXF before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 allows remote attackers to execute unintended web-service operations by sending a header with a SOAP Action String that is inconsistent with the message body.
  4289. | [CVE-2012-2687] Multiple cross-site scripting (XSS) vulnerabilities in the make_variant_list function in mod_negotiation.c in the mod_negotiation module in the Apache HTTP Server 2.4.x before 2.4.3, when the MultiViews option is enabled, allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is not properly handled during construction of a variant list.
  4290. | [CVE-2012-2379] Apache CXF 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1, when a Supporting Token specifies a child WS-SecurityPolicy 1.1 or 1.2 policy, does not properly ensure that an XML element is signed or encrypted, which has unspecified impact and attack vectors.
  4291. | [CVE-2012-2378] Apache CXF 2.4.5 through 2.4.7, 2.5.1 through 2.5.3, and 2.6.x before 2.6.1, does not properly enforce child policies of a WS-SecurityPolicy 1.1 SupportingToken policy on the client side, which allows remote attackers to bypass the (1) AlgorithmSuite, (2) SignedParts, (3) SignedElements, (4) EncryptedParts, and (5) EncryptedElements policies.
  4292. | [CVE-2012-0883] envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl.
  4293. | [CVE-2011-2516] Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.
  4294. |
  4295. | SecurityFocus - https://www.securityfocus.com/bid/:
  4296. | [42102] Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure Vulnerability
  4297. | [27237] Apache HTTP Server 2.2.6, 2.0.61 and 1.3.39 'mod_status' Cross-Site Scripting Vulnerability
  4298. | [15413] PHP Apache 2 Virtual() Safe_Mode and Open_Basedir Restriction Bypass Vulnerability
  4299. | [15177] PHP Apache 2 Local Denial of Service Vulnerability
  4300. | [6065] Apache 2 WebDAV CGI POST Request Information Disclosure Vulnerability
  4301. | [5816] Apache 2 mod_dav Denial Of Service Vulnerability
  4302. | [5486] Apache 2.0 CGI Path Disclosure Vulnerability
  4303. | [5485] Apache 2.0 Path Disclosure Vulnerability
  4304. | [5434] Apache 2.0 Encoded Backslash Directory Traversal Vulnerability
  4305. | [5256] Apache httpd 2.0 CGI Error Path Disclosure Vulnerability
  4306. | [4057] Apache 2 for Windows OPTIONS request Path Disclosure Vulnerability
  4307. | [4056] Apache 2 for Windows php.exe Path Disclosure Vulnerability
  4308. |
  4309. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  4310. | [75211] Debian GNU/Linux apache 2 cross-site scripting
  4311. |
  4312. | Exploit-DB - https://www.exploit-db.com:
  4313. | [31052] Apache <= 2.2.6 'mod_negotiation' HTML Injection and HTTP Response Splitting Vulnerability
  4314. | [30901] Apache HTTP Server 2.2.6 Windows Share PHP File Extension Mapping Information Disclosure Vulnerability
  4315. | [30835] Apache HTTP Server <= 2.2.4 413 Error HTTP Request Method Cross-Site Scripting Weakness
  4316. | [28424] Apache 2.x HTTP Server Arbitrary HTTP Request Headers Security Weakness
  4317. | [28365] Apache 2.2.2 CGI Script Source Code Information Disclosure Vulnerability
  4318. | [27915] Apache James 2.2 SMTP Denial of Service Vulnerability
  4319. | [27135] Apache Struts 2 DefaultActionMapper Prefixes OGNL Code Execution
  4320. | [26710] Apache CXF prior to 2.5.10, 2.6.7 and 2.7.4 - Denial of Service
  4321. | [24590] Apache 2.0.x mod_ssl Remote Denial of Service Vulnerability
  4322. | [23581] Apache 2.0.4x mod_perl Module File Descriptor Leakage Vulnerability
  4323. | [23482] Apache 2.0.4x mod_php Module File Descriptor Leakage Vulnerability (2)
  4324. | [23481] Apache 2.0.4x mod_php Module File Descriptor Leakage Vulnerability (1)
  4325. | [23296] Red Hat Apache 2.0.40 Directory Index Default Configuration Error
  4326. | [23282] apache cocoon 2.14/2.2 - Directory Traversal vulnerability
  4327. | [22191] Apache Web Server 2.0.x MS-DOS Device Name Denial of Service Vulnerability
  4328. | [21854] Apache 2.0.39/40 Oversized STDERR Buffer Denial of Service Vulnerability
  4329. | [21719] Apache 2.0 Path Disclosure Vulnerability
  4330. | [21697] Apache 2.0 Encoded Backslash Directory Traversal Vulnerability
  4331. | [20272] Apache 1.2.5/1.3.1,UnityMail 2.0 MIME Header DoS Vulnerability
  4332. | [19828] Cobalt RaQ 2.0/3.0 Apache .htaccess Disclosure Vulnerability
  4333. | [18984] Apache Struts <= 2.2.1.1 - Remote Command Execution
  4334. | [18329] Apache Struts2 <= 2.3.1 - Multiple Vulnerabilities
  4335. | [17691] Apache Struts < 2.2.0 - Remote Command Execution
  4336. | [15319] Apache 2.2 (Windows) Local Denial of Service
  4337. | [14617] Apache JackRabbit 2.0.0 webapp XPath Injection
  4338. | [11650] Apache 2.2.14 mod_isapi Dangling Pointer Remote SYSTEM Exploit
  4339. | [8458] Apache Geronimo <= 2.1.3 - Multiple Directory Traversal Vulnerabilities
  4340. | [5330] Apache 2.0 mod_jk2 2.0.2 - Remote Buffer Overflow Exploit (win32)
  4341. | [3996] Apache 2.0.58 mod_rewrite Remote Overflow Exploit (win2k3)
  4342. | [2237] Apache < 1.3.37, 2.0.59, 2.2.3 (mod_rewrite) Remote Overflow PoC
  4343. | [1056] Apache <= 2.0.49 Arbitrary Long HTTP Headers Denial of Service
  4344. | [855] Apache <= 2.0.52 HTTP GET request Denial of Service Exploit
  4345. | [132] Apache 1.3.x - 2.0.48 - mod_userdir Remote Users Disclosure Exploit
  4346. | [38] Apache <= 2.0.45 APR Remote Exploit -Apache-Knacker.pl
  4347. | [34] Webfroot Shoutbox < 2.32 (Apache) Remote Exploit
  4348. | [11] Apache <= 2.0.44 Linux Remote Denial of Service Exploit
  4349. | [9] Apache HTTP Server 2.x Memory Leak Exploit
  4350. |
  4351. | OpenVAS (Nessus) - http://www.openvas.org:
  4352. | [855524] Solaris Update for Apache 2 120544-14
  4353. | [855077] Solaris Update for Apache 2 120543-14
  4354. | [100858] Apache 'mod_proxy_http' 2.2.9 for Unix Timeout Handling Information Disclosure Vulnerability
  4355. | [72626] Debian Security Advisory DSA 2579-1 (apache2)
  4356. | [71551] Gentoo Security Advisory GLSA 201206-25 (apache)
  4357. | [71550] Gentoo Security Advisory GLSA 201206-24 (apache tomcat)
  4358. | [71485] Debian Security Advisory DSA 2506-1 (libapache-mod-security)
  4359. | [71256] Debian Security Advisory DSA 2452-1 (apache2)
  4360. | [71238] Debian Security Advisory DSA 2436-1 (libapache2-mod-fcgid)
  4361. | [70724] Debian Security Advisory DSA 2405-1 (apache2)
  4362. | [70235] Debian Security Advisory DSA 2298-2 (apache2)
  4363. | [70233] Debian Security Advisory DSA 2298-1 (apache2)
  4364. | [69988] Debian Security Advisory DSA 2279-1 (libapache2-mod-authnz-external)
  4365. | [69338] Debian Security Advisory DSA 2202-1 (apache2)
  4366. | [65131] SLES9: Security update for Apache 2 oes/CORE
  4367. | [64426] Gentoo Security Advisory GLSA 200907-04 (apache)
  4368. | [61381] Gentoo Security Advisory GLSA 200807-06 (apache)
  4369. | [60582] Gentoo Security Advisory GLSA 200803-19 (apache)
  4370. | [58745] Gentoo Security Advisory GLSA 200711-06 (apache)
  4371. | [57851] Gentoo Security Advisory GLSA 200608-01 (apache)
  4372. | [56246] Gentoo Security Advisory GLSA 200602-03 (Apache)
  4373. | [55392] Gentoo Security Advisory GLSA 200509-12 (Apache)
  4374. | [55129] Gentoo Security Advisory GLSA 200508-15 (apache)
  4375. | [54739] Gentoo Security Advisory GLSA 200411-18 (apache)
  4376. | [54724] Gentoo Security Advisory GLSA 200411-03 (apache)
  4377. | [54712] Gentoo Security Advisory GLSA 200410-21 (apache)
  4378. | [54689] Gentoo Security Advisory GLSA 200409-33 (net=www/apache)
  4379. | [54677] Gentoo Security Advisory GLSA 200409-21 (apache)
  4380. | [54610] Gentoo Security Advisory GLSA 200407-03 (Apache)
  4381. | [54601] Gentoo Security Advisory GLSA 200406-16 (Apache)
  4382. | [54590] Gentoo Security Advisory GLSA 200406-05 (Apache)
  4383. | [54582] Gentoo Security Advisory GLSA 200405-22 (Apache)
  4384. | [54529] Gentoo Security Advisory GLSA 200403-04 (Apache)
  4385. | [54499] Gentoo Security Advisory GLSA 200310-04 (Apache)
  4386. | [54498] Gentoo Security Advisory GLSA 200310-03 (Apache)
  4387. | [11092] Apache 2.0.39 Win32 directory traversal
  4388. | [66081] SLES11: Security update for Apache 2
  4389. | [66074] SLES10: Security update for Apache 2
  4390. | [66070] SLES9: Security update for Apache 2
  4391. | [65893] SLES10: Security update for Apache 2
  4392. | [65888] SLES10: Security update for Apache 2
  4393. | [65510] SLES9: Security update for Apache 2
  4394. | [65249] SLES9: Security update for Apache 2
  4395. | [65230] SLES9: Security update for Apache 2
  4396. | [65228] SLES9: Security update for Apache 2
  4397. | [65207] SLES9: Security update for Apache 2
  4398. | [65136] SLES9: Security update for Apache 2
  4399. | [65017] SLES9: Security update for Apache 2
  4400. |
  4401. | SecurityTracker - https://www.securitytracker.com:
  4402. | [1008196] Apache 2.x on Windows May Return Unexpected Files For URLs Ending With Certain Characters
  4403. | [1007143] Apache 2.0 Web Server May Use a Weaker Encryption Implementation Than Specified in Some Cases
  4404. | [1006444] Apache 2.0 Web Server Line Feed Buffer Allocation Flaw Lets Remote Users Deny Service
  4405. | [1005963] Apache Web Server 2.x Windows Device Access Flaw Lets Remote Users Crash the Server or Possibly Execute Arbitrary Code
  4406. | [1004770] Apache 2.x Web Server ap_log_rerror() Function May Disclose Full Installation Path to Remote Users
  4407. |
  4408. | OSVDB - http://www.osvdb.org:
  4409. | [20897] PHP w/ Apache 2 SAPI virtual() Function Unspecified INI Setting Disclosure
  4410. |_
  4411. 465/tcp open ssl/smtp Postfix smtpd
  4412. | vulscan: VulDB - https://vuldb.com:
  4413. | [108975] Apple macOS up to 10.13.1 Postfix unknown vulnerability
  4414. | [98314] PostfixAdmin up to 3.0.1 AliasHandler delete.php gen_show_status denial of service
  4415. | [71720] Postfix up to 2.3.0 backup.php pacrypt sql injection
  4416. | [12746] Postfix Admin 2.3.6 functions.inc.php sql injection
  4417. | [57422] Postfix memory corruption
  4418. | [56843] Postfix up to 2.7.2 Cleartext weak encryption
  4419. |
  4420. | MITRE CVE - https://cve.mitre.org:
  4421. | [CVE-2013-2852] Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main.c in the Broadcom B43 wireless driver in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and including format string specifiers in an fwpostfix modprobe parameter, leading to improper construction of an error message.
  4422. | [CVE-2011-1720] The SMTP server in Postfix before 2.5.13, 2.6.x before 2.6.10, 2.7.x before 2.7.4, and 2.8.x before 2.8.3, when certain Cyrus SASL authentication methods are enabled, does not create a new server handle after client authentication fails, which allows remote attackers to cause a denial of service (heap memory corruption and daemon crash) or possibly execute arbitrary code via an invalid AUTH command with one method followed by an AUTH command with a different method.
  4423. | [CVE-2011-0411] The STARTTLS implementation in Postfix 2.4.x before 2.4.16, 2.5.x before 2.5.12, 2.6.x before 2.6.9, and 2.7.x before 2.7.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack.
  4424. | [CVE-2010-0230] SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.
  4425. | [CVE-2009-2939] The postfix.postinst script in the Debian GNU/Linux and Ubuntu postfix 2.5.5 package grants the postfix user write access to /var/spool/postfix/pid, which might allow local users to conduct symlink attacks that overwrite arbitrary files.
  4426. | [CVE-2008-4977] ** DISPUTED ** postfix_groups.pl in Postfix 2.5.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/postfix_groups.stdout, (2) /tmp/postfix_groups.stderr, and (3) /tmp/postfix_groups.message temporary files. NOTE: the vendor disputes this vulnerability, stating "This is not a real issue ... users would have to edit a script under /usr/lib to enable it."
  4427. | [CVE-2008-3889] Postfix 2.4 before 2.4.9, 2.5 before 2.5.5, and 2.6 before 2.6-20080902, when used with the Linux 2.6 kernel, leaks epoll file descriptors during execution of "non-Postfix" commands, which allows local users to cause a denial of service (application slowdown or exit) via a crafted command, as demonstrated by a command in a .forward file.
  4428. | [CVE-2008-3646] The Postfix configuration file in Mac OS X 10.5.5 causes Postfix to be network-accessible when mail is sent from a local command-line tool, which allows remote attackers to send mail to local Mac OS X users.
  4429. | [CVE-2008-2937] Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user's account name.
  4430. | [CVE-2008-2936] Postfix before 2.3.15, 2.4 before 2.4.8, 2.5 before 2.5.4, and 2.6 before 2.6-20080814, when the operating system supports hard links to symlinks, allows local users to append e-mail messages to a file to which a root-owned symlink points, by creating a hard link to this symlink and then sending a message. NOTE: this can be leveraged to gain privileges if there is a symlink to an init script.
  4431. | [CVE-2007-3791] Buffer overflow in the w_read function in sockets.c in Cami Sardinha and Nigel Kukard policyd before 1.81 for Postfix allows remote attackers to cause a denial of service and possibly execute arbitrary code via long SMTP commands. NOTE: some of these details are obtained from third party information.
  4432. | [CVE-2006-0213] Kolab Server 2.0.1, 2.0.2 and development versions pre-2.1-20051215 and earlier, when authenticating users via secure SMTP, stores authentication credentials in plaintext in the postfix.log file, which allows local users to gain privileges.
  4433. | [CVE-2005-1127] Format string vulnerability in the log function in Net::Server 0.87 and earlier, as used in Postfix Greylisting Policy Server (Postgrey) 1.18 and earlier, and possibly other products, allows remote attackers to cause a denial of service (crash) via format string specifiers that are not properly handled before being sent to syslog, as demonstrated using sender addresses to Postgrey.
  4434. | [CVE-2005-0337] Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.
  4435. | [CVE-2004-1113] SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) sender or (2) recipient e-mail addresses.
  4436. | [CVE-2004-1088] Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information.
  4437. | [CVE-2004-0925] Postfix on Mac OS X 10.3.x through 10.3.5, with SMTPD AUTH enabled, does not properly clear the username between authentication attempts, which allows users with the longest username to prevent other valid users from being able to authenticate.
  4438. | [CVE-2003-0540] The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope address to a local host that would generate a bounce and contains the ".!" string in the MAIL FROM or Errors-To headers, which causes nqmgr to lock up, or (2) via a valid MAIL FROM with a RCPT TO containing a ".!" string, which causes an instance of the SMTP listener to lock up.
  4439. | [CVE-2003-0468] Postfix 1.1.11 and earlier allows remote attackers to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to the local host containing the target IP address and service name followed by a "!" string, which causes Postfix to attempt to use SMTP to communicate with the target on the associated port.
  4440. | [CVE-2001-0894] Vulnerability in Postfix SMTP server before 20010228-pl07, when configured to email the postmaster when SMTP errors cause the session to terminate, allows remote attackers to cause a denial of service (memory exhaustion) by generating a large number of SMTP errors, which forces the SMTP session log to grow too large.
  4441. |
  4442. | SecurityFocus - https://www.securityfocus.com/bid/:
  4443. | [96142] PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
  4444. | [90814] Postfix Admin Multiple Cross Site Request Forgery Vulnerabilities
  4445. | [67250] Postfix Arbitrary Content Security Bypass Vulnerability
  4446. | [66455] Postfix Admin 'functions.inc.php' SQL Injection Vulnerability
  4447. | [65184] Fail2ban Postfix Filter Remote Denial of Service Vulnerability
  4448. | [51680] Postfix Admin Multiple SQL Injection and Cross Site Scripting Vulnerabilities
  4449. | [47778] Postfix SMTP Server Cyrus SASL Support Memory Corruption Vulnerability
  4450. | [36469] Debian and Ubuntu Postfix Insecure Temporary File Creation Vulnerability
  4451. | [31721] Apple Mac OS X 10.5 Postfix Security Bypass Vulnerability
  4452. | [30977] Postfix 'epoll' Linux Event Handler Local Denial of Service Vulnerability
  4453. | [30691] Postfix Local Information Disclosure and Local Privilege Escalation Vulnerabilities
  4454. | [13133] Salim Gasmi GLD Postfix Greylisting Daemon Format String Vulnerability
  4455. | [13129] Salim Gasmi GLD Postfix Greylisting Daemon Buffer Overflow Vulnerability
  4456. | [12445] Postfix IPv6 Unauthorized Mail Relay Vulnerability
  4457. | [11898] SQLgrey Postfix Greylisting Service Unspecified SQL Injection Vulnerability
  4458. | [11633] SQLgrey Postfix Greylisting Service SQL Injection Vulnerability
  4459. | [11323] Apple Mac OS X Postfix Release SMTPD AUTH Username Denial Of Service Vulnerability
  4460. | [8362] Postfix SMTP Malformed E-mail Envelope Address Denial of Service Vulnerability
  4461. | [8361] Postfix Connection Proxying Vulnerability
  4462. | [8333] Multiple Postfix Denial of Service Vulnerabilities
  4463. | [3638] SuSEConfig.postfix chroot Local DoS Attack Vulnerability
  4464. | [3637] SuSEConfig.postfix chroot File Ownership Vulnerability
  4465. | [3544] Postfix SMTP Log Denial Of Service Vulnerability
  4466. | [1428] cyrus With postfix and Procmail Remote Shell Expansion Vulnerabilities
  4467. |
  4468. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  4469. | [72752] Postfix Admin multiple parameters SQL injection
  4470. | [72751] PostfixAdmin multiple parameters cross-site scripting
  4471. | [67359] Postfix Cyrus SASL library in the SMTP server code execution
  4472. | [55970] SUSE Linux Enterprise postfix security bypass
  4473. | [53425] Postfix in Debian and Ubuntu pid symlink
  4474. | [45876] Apple Mac OS X Postfix configuration file weak security
  4475. | [44865] Postfix file descriptor denial of service
  4476. | [44461] Postfix email information disclosure
  4477. | [44460] Postfix symlink code execution
  4478. | [22655] RHSA-2005:152 updates for postfix not installed
  4479. | [19218] Postfix IPv6 mail relay
  4480. | [18435] SQLgrey Postfix greylisting service SQL injection
  4481. | [18353] Postfix CRAM-MD5 authentication replay attack
  4482. | [17998] SQLgrey Postfix greylisting service SQL injection
  4483. | [17595] Apple Mac OS postfix SMTPD AUTH denial of service
  4484. | [12816] Postfix MAIL FROM or RCPT TO denial of service
  4485. | [12815] Postfix could be used as a distributed denial of service tool
  4486. | [7568] Postfix SMTP log denial of service
  4487. | [4905] Cyrus with postfix and procmail integration could allow remote command execution
  4488. |
  4489. | Exploit-DB - https://www.exploit-db.com:
  4490. | [25392] Salim Gasmi GLD 1.x Postfix Greylisting Daemon Buffer Overflow Vulnerability
  4491. | [22982] Postfix 1.1.x Denial of Service Vulnerabilities (2)
  4492. | [22981] Postfix 1.1.x Denial of Service Vulnerabilities (1)
  4493. | [16841] GLD (Greylisting Daemon) Postfix Buffer Overflow
  4494. | [10023] Salim Gasmi GLD 1.0 - 1.4 Postfix Greylisting Buffer Overflow
  4495. | [6472] Postfix < 2.4.9, 2.5.5, 2.6-20080902 - (.forward) Local DoS Exploit
  4496. | [6337] Postfix <= 2.6-20080814 - (symlink) Local Privilege Escalation Exploit
  4497. | [934] gld 1.4 (Postfix Greylisting Daemon) Remote Format String Exploit
  4498. |
  4499. | OpenVAS (Nessus) - http://www.openvas.org:
  4500. | [902517] Postfix SMTP Server Cyrus SASL Support Memory Corruption Vulnerability
  4501. | [881389] CentOS Update for postfix CESA-2011:0422 centos5 x86_64
  4502. | [881293] CentOS Update for postfix CESA-2011:0843 centos4 x86_64
  4503. | [881278] CentOS Update for postfix CESA-2011:0422 centos4 x86_64
  4504. | [881267] CentOS Update for postfix CESA-2011:0843 centos5 x86_64
  4505. | [880520] CentOS Update for postfix CESA-2011:0422 centos5 i386
  4506. | [880509] CentOS Update for postfix CESA-2011:0843 centos5 i386
  4507. | [880488] CentOS Update for postfix CESA-2011:0843 centos4 i386
  4508. | [880485] CentOS Update for postfix CESA-2011:0422 centos4 i386
  4509. | [880268] CentOS Update for postfix CESA-2008:0839 centos3 i386
  4510. | [880023] CentOS Update for postfix CESA-2008:0839 centos3 x86_64
  4511. | [870658] RedHat Update for postfix RHSA-2011:0423-01
  4512. | [870440] RedHat Update for postfix RHSA-2011:0843-01
  4513. | [870418] RedHat Update for postfix RHSA-2011:0422-01
  4514. | [870021] RedHat Update for postfix RHSA-2008:0839-01
  4515. | [863100] Fedora Update for postfix FEDORA-2011-6777
  4516. | [863097] Fedora Update for postfix FEDORA-2011-6771
  4517. | [862950] Fedora Update for postfix FEDORA-2011-3394
  4518. | [862938] Fedora Update for postfix FEDORA-2011-3355
  4519. | [860510] Fedora Update for postfix FEDORA-2008-8593
  4520. | [860419] Fedora Update for postfix FEDORA-2008-8595
  4521. | [850126] SuSE Update for postfix SUSE-SA:2010:011
  4522. | [850031] SuSE Update for postfix SUSE-SA:2008:040
  4523. | [840658] Ubuntu Update for postfix USN-1131-1
  4524. | [840648] Ubuntu Update for postfix USN-1113-1
  4525. | [840227] Ubuntu Update for postfix vulnerabilities USN-642-1
  4526. | [840190] Ubuntu Update for postfix vulnerability USN-636-1
  4527. | [831400] Mandriva Update for postfix MDVSA-2011:090 (postfix)
  4528. | [830713] Mandriva Update for postfix MDVSA-2008:171 (postfix)
  4529. | [830635] Mandriva Update for postfix MDVSA-2008:190 (postfix)
  4530. | [830075] Mandriva Update for postfix MDKA-2007:079 (postfix)
  4531. | [72452] Gentoo Security Advisory GLSA 201209-18 (postfixadmin)
  4532. | [71559] Gentoo Security Advisory GLSA 201206-33 (Postfix)
  4533. | [70744] FreeBSD Ports: postfixadmin
  4534. | [69770] FreeBSD Ports: postfix, postfix-base
  4535. | [69733] Debian Security Advisory DSA 2233-1 (postfix)
  4536. | [69363] FreeBSD Ports: postfix, postfix-base
  4537. | [66394] Mandriva Security Advisory MDVSA-2009:224-1 (postfix)
  4538. | [65957] SLES10: Security update for Postfix
  4539. | [65911] SLES10: Security update for Postfix
  4540. | [65353] SLES9: Security update for Postfix
  4541. | [65350] SLES9: Security update for postfix
  4542. | [64696] Mandrake Security Advisory MDVSA-2009:224 (postfix)
  4543. | [61646] Gentoo Security Advisory GLSA 200809-09 (postfix)
  4544. | [61445] Gentoo Security Advisory GLSA 200808-12 (postfix)
  4545. | [61435] Debian Security Advisory DSA 1629-2 (postfix)
  4546. | [61434] Debian Security Advisory DSA 1629-1 (postfix)
  4547. | [60836] FreeBSD Ports: postfix-policyd-weight
  4548. | [58580] Debian Security Advisory DSA 1361-1 (postfix-policyd)
  4549. | [53833] Debian Security Advisory DSA 093-1 (postfix)
  4550. | [53652] Debian Security Advisory DSA 363-1 (postfix)
  4551. |
  4552. | SecurityTracker - https://www.securitytracker.com:
  4553. | [1025521] Postfix SASL Authentication Heap Overflow Lets Remote Users Deny Service
  4554. | [1025179] Postfix Plaintext to TLS Switching Error Lets Remote Users Inject Plaintext Commands
  4555. | [1020800] Postfix Linux epoll File Descriptor Leak Lets Local Users Deny Service
  4556. | [1020700] Postfix Symlink Dereference Bug Lets Local Users Gain Elevated Privileges
  4557. | [1012395] Postfix CRAM-MD5 Replay Attack May Let Remote Users Send Mail
  4558. | [1011532] Postfix Buffer Error May Prevent Remote Users from Being Able to Authenticate Using SMTPD AUTH
  4559. | [1007382] Postfix Bounce Messages Let Remote Users Scan for Open Ports on Other Hosts
  4560. | [1007381] Postfix Address Resolver Parsing Bug Lets Remote Users Hang the System
  4561. | [1002756] Postfix Mail Server Can Be Crashed By Remote Users Initiating Unsuccessful Sessions
  4562. |
  4563. | OSVDB - http://www.osvdb.org:
  4564. | [94034] Linux Kernel Broadcom B43 Wireless Driver b43_request_firmware Function fwpostfix modprobe Parameter Format String Local Privilege Escalation
  4565. | [78567] Postfix Admin backup.php Unspecified SQL Injection
  4566. | [78566] Postfix Admin functions.inc.php pacrypt() Function Unspecified SQL Injection
  4567. | [78565] Postfix Admin create-domain.php Unspecified SQL Injection
  4568. | [78564] Postfix Admin Unspecified XSS
  4569. | [78563] Postfix Admin edit-alias.php Unspecified XSS
  4570. | [78562] Postfix Admin create-alias.php Unspecified XSS
  4571. | [78561] Postfix Admin create-domain.php Unspecified XSS
  4572. | [78560] Postfix Admin templates/edit-vacation.php domain Parameter XSS
  4573. | [78559] Postfix Admin templates/menu.php domain Parameter XSS
  4574. | [72259] Postfix SMTP Cyrus SASL Authentication Context Data Reuse Memory Corruption
  4575. | [71021] Postfix STARTTLS Arbitrary Plaintext Command Injection
  4576. | [68340] Artica postfix.events.php Unrestricted Access Information Disclosure
  4577. | [61983] SUSE Linux postfix Network Interface Remote Access Restriction Bypass
  4578. | [58325] Debian GNU/Linux postfix postfix.postinst Symlink Arbitrary File Overwrite
  4579. | [49634] Postfix postfix_groups.pl Multiple Temporary File Symlink Arbitrary File Overwrite
  4580. | [48973] Apple Mac OS X Postfix Network Access Configuration Weakness
  4581. | [48108] Postfix epoll File Descriptor Leak Local DoS
  4582. | [47659] Postfix Cross-user Filename Local Mail Interception
  4583. | [47658] Postfix Hardlink to Symlink Mailspool Arbitrary Content Append
  4584. | [43888] policyd-weight for Postfix Socket Handling Unspecified Arbitrary File Manipulation
  4585. | [38091] policyd for Postfix sockets.c read_w() Function SMTP Command Remote Overflow
  4586. | [22381] Kolab Server Secure SMTP postfix.log Authentication Credential Disclosure
  4587. | [13470] Postfix IPv6 Patch if_inet6 Failure Arbitrary Mail Relay
  4588. | [12339] SQLgrey Postfix greylisting service Unspecified SQL Injection
  4589. | [12200] Apple Mac OS X Postfix CRAM-MD5 Replay Credentials
  4590. | [11571] SQLgrey Postfix greylisting Email Address SQL Injection
  4591. | [10545] Postfix Multiple Mail Header SMTP listener DoS
  4592. | [10544] Postfix Malformed Envelope Address nqmgr DoS
  4593. | [10500] Apple Mac OS X Postfix SMTPD AUTH Username Overflow DoS
  4594. | [6551] Postfix Bounce Scan / Packet Amplification DDoS
  4595. | [1991] Postfix SMTP Log DoS
  4596. |_
  4597. 587/tcp open smtp Postfix smtpd
  4598. | vulscan: VulDB - https://vuldb.com:
  4599. | [108975] Apple macOS up to 10.13.1 Postfix unknown vulnerability
  4600. | [98314] PostfixAdmin up to 3.0.1 AliasHandler delete.php gen_show_status denial of service
  4601. | [71720] Postfix up to 2.3.0 backup.php pacrypt sql injection
  4602. | [12746] Postfix Admin 2.3.6 functions.inc.php sql injection
  4603. | [57422] Postfix memory corruption
  4604. | [56843] Postfix up to 2.7.2 Cleartext weak encryption
  4605. |
  4606. | MITRE CVE - https://cve.mitre.org:
  4607. | [CVE-2013-2852] Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main.c in the Broadcom B43 wireless driver in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and including format string specifiers in an fwpostfix modprobe parameter, leading to improper construction of an error message.
  4608. | [CVE-2011-1720] The SMTP server in Postfix before 2.5.13, 2.6.x before 2.6.10, 2.7.x before 2.7.4, and 2.8.x before 2.8.3, when certain Cyrus SASL authentication methods are enabled, does not create a new server handle after client authentication fails, which allows remote attackers to cause a denial of service (heap memory corruption and daemon crash) or possibly execute arbitrary code via an invalid AUTH command with one method followed by an AUTH command with a different method.
  4609. | [CVE-2011-0411] The STARTTLS implementation in Postfix 2.4.x before 2.4.16, 2.5.x before 2.5.12, 2.6.x before 2.6.9, and 2.7.x before 2.7.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack.
  4610. | [CVE-2010-0230] SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.
  4611. | [CVE-2009-2939] The postfix.postinst script in the Debian GNU/Linux and Ubuntu postfix 2.5.5 package grants the postfix user write access to /var/spool/postfix/pid, which might allow local users to conduct symlink attacks that overwrite arbitrary files.
  4612. | [CVE-2008-4977] ** DISPUTED ** postfix_groups.pl in Postfix 2.5.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/postfix_groups.stdout, (2) /tmp/postfix_groups.stderr, and (3) /tmp/postfix_groups.message temporary files. NOTE: the vendor disputes this vulnerability, stating "This is not a real issue ... users would have to edit a script under /usr/lib to enable it."
  4613. | [CVE-2008-3889] Postfix 2.4 before 2.4.9, 2.5 before 2.5.5, and 2.6 before 2.6-20080902, when used with the Linux 2.6 kernel, leaks epoll file descriptors during execution of "non-Postfix" commands, which allows local users to cause a denial of service (application slowdown or exit) via a crafted command, as demonstrated by a command in a .forward file.
  4614. | [CVE-2008-3646] The Postfix configuration file in Mac OS X 10.5.5 causes Postfix to be network-accessible when mail is sent from a local command-line tool, which allows remote attackers to send mail to local Mac OS X users.
  4615. | [CVE-2008-2937] Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user's account name.
  4616. | [CVE-2008-2936] Postfix before 2.3.15, 2.4 before 2.4.8, 2.5 before 2.5.4, and 2.6 before 2.6-20080814, when the operating system supports hard links to symlinks, allows local users to append e-mail messages to a file to which a root-owned symlink points, by creating a hard link to this symlink and then sending a message. NOTE: this can be leveraged to gain privileges if there is a symlink to an init script.
  4617. | [CVE-2007-3791] Buffer overflow in the w_read function in sockets.c in Cami Sardinha and Nigel Kukard policyd before 1.81 for Postfix allows remote attackers to cause a denial of service and possibly execute arbitrary code via long SMTP commands. NOTE: some of these details are obtained from third party information.
  4618. | [CVE-2006-0213] Kolab Server 2.0.1, 2.0.2 and development versions pre-2.1-20051215 and earlier, when authenticating users via secure SMTP, stores authentication credentials in plaintext in the postfix.log file, which allows local users to gain privileges.
  4619. | [CVE-2005-1127] Format string vulnerability in the log function in Net::Server 0.87 and earlier, as used in Postfix Greylisting Policy Server (Postgrey) 1.18 and earlier, and possibly other products, allows remote attackers to cause a denial of service (crash) via format string specifiers that are not properly handled before being sent to syslog, as demonstrated using sender addresses to Postgrey.
  4620. | [CVE-2005-0337] Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.
  4621. | [CVE-2004-1113] SQL injection vulnerability in SQLgrey Postfix greylisting service before 1.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) sender or (2) recipient e-mail addresses.
  4622. | [CVE-2004-1088] Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information.
  4623. | [CVE-2004-0925] Postfix on Mac OS X 10.3.x through 10.3.5, with SMTPD AUTH enabled, does not properly clear the username between authentication attempts, which allows users with the longest username to prevent other valid users from being able to authenticate.
  4624. | [CVE-2003-0540] The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope address to a local host that would generate a bounce and contains the ".!" string in the MAIL FROM or Errors-To headers, which causes nqmgr to lock up, or (2) via a valid MAIL FROM with a RCPT TO containing a ".!" string, which causes an instance of the SMTP listener to lock up.
  4625. | [CVE-2003-0468] Postfix 1.1.11 and earlier allows remote attackers to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to the local host containing the target IP address and service name followed by a "!" string, which causes Postfix to attempt to use SMTP to communicate with the target on the associated port.
  4626. | [CVE-2001-0894] Vulnerability in Postfix SMTP server before 20010228-pl07, when configured to email the postmaster when SMTP errors cause the session to terminate, allows remote attackers to cause a denial of service (memory exhaustion) by generating a large number of SMTP errors, which forces the SMTP session log to grow too large.
  4627. |
  4628. | SecurityFocus - https://www.securityfocus.com/bid/:
  4629. | [96142] PostfixAdmin CVE-2017-5930 Session Management Security Bypass Vulnerability
  4630. | [90814] Postfix Admin Multiple Cross Site Request Forgery Vulnerabilities
  4631. | [67250] Postfix Arbitrary Content Security Bypass Vulnerability
  4632. | [66455] Postfix Admin 'functions.inc.php' SQL Injection Vulnerability
  4633. | [65184] Fail2ban Postfix Filter Remote Denial of Service Vulnerability
  4634. | [51680] Postfix Admin Multiple SQL Injection and Cross Site Scripting Vulnerabilities
  4635. | [47778] Postfix SMTP Server Cyrus SASL Support Memory Corruption Vulnerability
  4636. | [36469] Debian and Ubuntu Postfix Insecure Temporary File Creation Vulnerability
  4637. | [31721] Apple Mac OS X 10.5 Postfix Security Bypass Vulnerability
  4638. | [30977] Postfix 'epoll' Linux Event Handler Local Denial of Service Vulnerability
  4639. | [30691] Postfix Local Information Disclosure and Local Privilege Escalation Vulnerabilities
  4640. | [13133] Salim Gasmi GLD Postfix Greylisting Daemon Format String Vulnerability
  4641. | [13129] Salim Gasmi GLD Postfix Greylisting Daemon Buffer Overflow Vulnerability
  4642. | [12445] Postfix IPv6 Unauthorized Mail Relay Vulnerability
  4643. | [11898] SQLgrey Postfix Greylisting Service Unspecified SQL Injection Vulnerability
  4644. | [11633] SQLgrey Postfix Greylisting Service SQL Injection Vulnerability
  4645. | [11323] Apple Mac OS X Postfix Release SMTPD AUTH Username Denial Of Service Vulnerability
  4646. | [8362] Postfix SMTP Malformed E-mail Envelope Address Denial of Service Vulnerability
  4647. | [8361] Postfix Connection Proxying Vulnerability
  4648. | [8333] Multiple Postfix Denial of Service Vulnerabilities
  4649. | [3638] SuSEConfig.postfix chroot Local DoS Attack Vulnerability
  4650. | [3637] SuSEConfig.postfix chroot File Ownership Vulnerability
  4651. | [3544] Postfix SMTP Log Denial Of Service Vulnerability
  4652. | [1428] cyrus With postfix and Procmail Remote Shell Expansion Vulnerabilities
  4653. |
  4654. | IBM X-Force - https://exchange.xforce.ibmcloud.com:
  4655. | [72752] Postfix Admin multiple parameters SQL injection
  4656. | [72751] PostfixAdmin multiple parameters cross-site scripting
  4657. | [67359] Postfix Cyrus SASL library in the SMTP server code execution
  4658. | [55970] SUSE Linux Enterprise postfix security bypass
  4659. | [53425] Postfix in Debian and Ubuntu pid symlink
  4660. | [45876] Apple Mac OS X Postfix configuration file weak security
  4661. | [44865] Postfix file descriptor denial of service
  4662. | [44461] Postfix email information disclosure
  4663. | [44460] Postfix symlink code execution
  4664. | [22655] RHSA-2005:152 updates for postfix not installed
  4665. | [19218] Postfix IPv6 mail relay
  4666. | [18435] SQLgrey Postfix greylisting service SQL injection
  4667. | [18353] Postfix CRAM-MD5 authentication replay attack
  4668. | [17998] SQLgrey Postfix greylisting service SQL injection
  4669. | [17595] Apple Mac OS postfix SMTPD AUTH denial of service
  4670. | [12816] Postfix MAIL FROM or RCPT TO denial of service
  4671. | [12815] Postfix could be used as a distributed denial of service tool
  4672. | [7568] Postfix SMTP log denial of service
  4673. | [4905] Cyrus with postfix and procmail integration could allow remote command execution
  4674. |
  4675. | Exploit-DB - https://www.exploit-db.com:
  4676. | [25392] Salim Gasmi GLD 1.x Postfix Greylisting Daemon Buffer Overflow Vulnerability
  4677. | [22982] Postfix 1.1.x Denial of Service Vulnerabilities (2)
  4678. | [22981] Postfix 1.1.x Denial of Service Vulnerabilities (1)
  4679. | [16841] GLD (Greylisting Daemon) Postfix Buffer Overflow
  4680. | [10023] Salim Gasmi GLD 1.0 - 1.4 Postfix Greylisting Buffer Overflow
  4681. | [6472] Postfix < 2.4.9, 2.5.5, 2.6-20080902 - (.forward) Local DoS Exploit
  4682. | [6337] Postfix <= 2.6-20080814 - (symlink) Local Privilege Escalation Exploit
  4683. | [934] gld 1.4 (Postfix Greylisting Daemon) Remote Format String Exploit
  4684. |
  4685. | OpenVAS (Nessus) - http://www.openvas.org:
  4686. | [902517] Postfix SMTP Server Cyrus SASL Support Memory Corruption Vulnerability
  4687. | [881389] CentOS Update for postfix CESA-2011:0422 centos5 x86_64
  4688. | [881293] CentOS Update for postfix CESA-2011:0843 centos4 x86_64
  4689. | [881278] CentOS Update for postfix CESA-2011:0422 centos4 x86_64
  4690. | [881267] CentOS Update for postfix CESA-2011:0843 centos5 x86_64
  4691. | [880520] CentOS Update for postfix CESA-2011:0422 centos5 i386
  4692. | [880509] CentOS Update for postfix CESA-2011:0843 centos5 i386
  4693. | [880488] CentOS Update for postfix CESA-2011:0843 centos4 i386
  4694. | [880485] CentOS Update for postfix CESA-2011:0422 centos4 i386
  4695. | [880268] CentOS Update for postfix CESA-2008:0839 centos3 i386
  4696. | [880023] CentOS Update for postfix CESA-2008:0839 centos3 x86_64
  4697. | [870658] RedHat Update for postfix RHSA-2011:0423-01
  4698. | [870440] RedHat Update for postfix RHSA-2011:0843-01
  4699. | [870418] RedHat Update for postfix RHSA-2011:0422-01
  4700. | [870021] RedHat Update for postfix RHSA-2008:0839-01
  4701. | [863100] Fedora Update for postfix FEDORA-2011-6777
  4702. | [863097] Fedora Update for postfix FEDORA-2011-6771
  4703. | [862950] Fedora Update for postfix FEDORA-2011-3394
  4704. | [862938] Fedora Update for postfix FEDORA-2011-3355
  4705. | [860510] Fedora Update for postfix FEDORA-2008-8593
  4706. | [860419] Fedora Update for postfix FEDORA-2008-8595
  4707. | [850126] SuSE Update for postfix SUSE-SA:2010:011
  4708. | [850031] SuSE Update for postfix SUSE-SA:2008:040
  4709. | [840658] Ubuntu Update for postfix USN-1131-1
  4710. | [840648] Ubuntu Update for postfix USN-1113-1
  4711. | [840227] Ubuntu Update for postfix vulnerabilities USN-642-1
  4712. | [840190] Ubuntu Update for postfix vulnerability USN-636-1
  4713. | [831400] Mandriva Update for postfix MDVSA-2011:090 (postfix)
  4714. | [830713] Mandriva Update for postfix MDVSA-2008:171 (postfix)
  4715. | [830635] Mandriva Update for postfix MDVSA-2008:190 (postfix)
  4716. | [830075] Mandriva Update for postfix MDKA-2007:079 (postfix)
  4717. | [72452] Gentoo Security Advisory GLSA 201209-18 (postfixadmin)
  4718. | [71559] Gentoo Security Advisory GLSA 201206-33 (Postfix)
  4719. | [70744] FreeBSD Ports: postfixadmin
  4720. | [69770] FreeBSD Ports: postfix, postfix-base
  4721. | [69733] Debian Security Advisory DSA 2233-1 (postfix)
  4722. | [69363] FreeBSD Ports: postfix, postfix-base
  4723. | [66394] Mandriva Security Advisory MDVSA-2009:224-1 (postfix)
  4724. | [65957] SLES10: Security update for Postfix
  4725. | [65911] SLES10: Security update for Postfix
  4726. | [65353] SLES9: Security update for Postfix
  4727. | [65350] SLES9: Security update for postfix
  4728. | [64696] Mandrake Security Advisory MDVSA-2009:224 (postfix)
  4729. | [61646] Gentoo Security Advisory GLSA 200809-09 (postfix)
  4730. | [61445] Gentoo Security Advisory GLSA 200808-12 (postfix)
  4731. | [61435] Debian Security Advisory DSA 1629-2 (postfix)
  4732. | [61434] Debian Security Advisory DSA 1629-1 (postfix)
  4733. | [60836] FreeBSD Ports: postfix-policyd-weight
  4734. | [58580] Debian Security Advisory DSA 1361-1 (postfix-policyd)
  4735. | [53833] Debian Security Advisory DSA 093-1 (postfix)
  4736. | [53652] Debian Security Advisory DSA 363-1 (postfix)
  4737. |
  4738. | SecurityTracker - https://www.securitytracker.com:
  4739. | [1025521] Postfix SASL Authentication Heap Overflow Lets Remote Users Deny Service
  4740. | [1025179] Postfix Plaintext to TLS Switching Error Lets Remote Users Inject Plaintext Commands
  4741. | [1020800] Postfix Linux epoll File Descriptor Leak Lets Local Users Deny Service
  4742. | [1020700] Postfix Symlink Dereference Bug Lets Local Users Gain Elevated Privileges
  4743. | [1012395] Postfix CRAM-MD5 Replay Attack May Let Remote Users Send Mail
  4744. | [1011532] Postfix Buffer Error May Prevent Remote Users from Being Able to Authenticate Using SMTPD AUTH
  4745. | [1007382] Postfix Bounce Messages Let Remote Users Scan for Open Ports on Other Hosts
  4746. | [1007381] Postfix Address Resolver Parsing Bug Lets Remote Users Hang the System
  4747. | [1002756] Postfix Mail Server Can Be Crashed By Remote Users Initiating Unsuccessful Sessions
  4748. |
  4749. | OSVDB - http://www.osvdb.org:
  4750. | [94034] Linux Kernel Broadcom B43 Wireless Driver b43_request_firmware Function fwpostfix modprobe Parameter Format String Local Privilege Escalation
  4751. | [78567] Postfix Admin backup.php Unspecified SQL Injection
  4752. | [78566] Postfix Admin functions.inc.php pacrypt() Function Unspecified SQL Injection
  4753. | [78565] Postfix Admin create-domain.php Unspecified SQL Injection
  4754. | [78564] Postfix Admin Unspecified XSS
  4755. | [78563] Postfix Admin edit-alias.php Unspecified XSS
  4756. | [78562] Postfix Admin create-alias.php Unspecified XSS
  4757. | [78561] Postfix Admin create-domain.php Unspecified XSS
  4758. | [78560] Postfix Admin templates/edit-vacation.php domain Parameter XSS
  4759. | [78559] Postfix Admin templates/menu.php domain Parameter XSS
  4760. | [72259] Postfix SMTP Cyrus SASL Authentication Context Data Reuse Memory Corruption
  4761. | [71021] Postfix STARTTLS Arbitrary Plaintext Command Injection
  4762. | [68340] Artica postfix.events.php Unrestricted Access Information Disclosure
  4763. | [61983] SUSE Linux postfix Network Interface Remote Access Restriction Bypass
  4764. | [58325] Debian GNU/Linux postfix postfix.postinst Symlink Arbitrary File Overwrite
  4765. | [49634] Postfix postfix_groups.pl Multiple Temporary File Symlink Arbitrary File Overwrite
  4766. | [48973] Apple Mac OS X Postfix Network Access Configuration Weakness
  4767. | [48108] Postfix epoll File Descriptor Leak Local DoS
  4768. | [47659] Postfix Cross-user Filename Local Mail Interception
  4769. | [47658] Postfix Hardlink to Symlink Mailspool Arbitrary Content Append
  4770. | [43888] policyd-weight for Postfix Socket Handling Unspecified Arbitrary File Manipulation
  4771. | [38091] policyd for Postfix sockets.c read_w() Function SMTP Command Remote Overflow
  4772. | [22381] Kolab Server Secure SMTP postfix.log Authentication Credential Disclosure
  4773. | [13470] Postfix IPv6 Patch if_inet6 Failure Arbitrary Mail Relay
  4774. | [12339] SQLgrey Postfix greylisting service Unspecified SQL Injection
  4775. | [12200] Apple Mac OS X Postfix CRAM-MD5 Replay Credentials
  4776. | [11571] SQLgrey Postfix greylisting Email Address SQL Injection
  4777. | [10545] Postfix Multiple Mail Header SMTP listener DoS
  4778. | [10544] Postfix Malformed Envelope Address nqmgr DoS
  4779. | [10500] Apple Mac OS X Postfix SMTPD AUTH Username Overflow DoS
  4780. | [6551] Postfix Bounce Scan / Packet Amplification DDoS
  4781. | [1991] Postfix SMTP Log DoS
  4782. |_
  4783. 993/tcp filtered imaps
  4784. 995/tcp filtered pop3s
  4785. 5355/tcp filtered llmnr
  4786. 34816/tcp open mountd 1-3 (RPC #100005)
  4787. 35643/tcp open nlockmgr 1-4 (RPC #100021)
  4788. 36095/tcp open mountd 1-3 (RPC #100005)
  4789. 47025/tcp open mountd 1-3 (RPC #100005)
  4790. Aggressive OS guesses: Linux 4.4 (95%), Android 5.0.1 (94%), Linux 2.6.32 (94%), Linux 2.6.35 (94%), Linux 3.10 (94%), Linux 3.4 (94%), Linux 3.5 (94%), Linux 4.2 (94%), Synology DiskStation Manager 5.1 (94%), WatchGuard Fireware 11.8 (94%)
  4791. No exact OS matches for host (test conditions non-ideal).
  4792. Uptime guess: 40.636 days (since Wed Sep 11 18:23:44 2019)
  4793. Network Distance: 11 hops
  4794. TCP Sequence Prediction: Difficulty=261 (Good luck!)
  4795. IP ID Sequence Generation: All zeros
  4796. Service Info: Host: www.respectwashington.us
  4797.  
  4798. TRACEROUTE (using port 554/tcp)
  4799. HOP RTT ADDRESS
  4800. 1 199.21 ms 10.252.204.1
  4801. 2 341.72 ms 45.131.4.3
  4802. 3 341.68 ms 109.236.95.226
  4803. 4 341.76 ms 109.236.95.167
  4804. 5 341.79 ms amsix-200gbps.core1.ams1.he.net (80.249.209.150)
  4805. 6 341.82 ms 100ge16-1.core1.lon2.he.net (72.52.92.213)
  4806. 7 341.86 ms 100ge13-2.core1.nyc4.he.net (72.52.92.166)
  4807. 8 442.40 ms 100ge8-1.core1.sjc2.he.net (184.105.81.218)
  4808. 9 442.44 ms 10ge4-4.core1.sjc1.he.net (72.52.92.117)
  4809. 10 442.47 ms e0-50.core4.fmt1.he.net (184.105.65.214)
  4810. 11 238.68 ms respectwashington.us (65.49.16.26)
  4811.  
  4812. NSE: Script Post-scanning.
  4813. Initiating NSE at 09:39
  4814. Completed NSE at 09:39, 0.00s elapsed
  4815. Initiating NSE at 09:39
  4816. Completed NSE at 09:39, 0.00s elapsed
  4817. ######################################################################################################################################
  4818. Starting Nmap 7.80 ( https://nmap.org ) at 2019-10-22 09:39 EDT
  4819. NSE: Loaded 47 scripts for scanning.
  4820. NSE: Script Pre-scanning.
  4821. Initiating NSE at 09:39
  4822. Completed NSE at 09:39, 0.00s elapsed
  4823. Initiating NSE at 09:39
  4824. Completed NSE at 09:39, 0.00s elapsed
  4825. Initiating Parallel DNS resolution of 1 host. at 09:39
  4826. Completed Parallel DNS resolution of 1 host. at 09:39, 0.02s elapsed
  4827. Initiating UDP Scan at 09:39
  4828. Scanning respectwashington.us (65.49.16.26) [15 ports]
  4829. Completed UDP Scan at 09:39, 7.92s elapsed (15 total ports)
  4830. Initiating Service scan at 09:39
  4831. Scanning 1 service on respectwashington.us (65.49.16.26)
  4832. Completed Service scan at 09:41, 97.59s elapsed (1 service on 1 host)
  4833. Initiating OS detection (try #1) against respectwashington.us (65.49.16.26)
  4834. Retrying OS detection (try #2) against respectwashington.us (65.49.16.26)
  4835. Initiating Traceroute at 09:41
  4836. Completed Traceroute at 09:41, 7.37s elapsed
  4837. Initiating Parallel DNS resolution of 1 host. at 09:41
  4838. Completed Parallel DNS resolution of 1 host. at 09:41, 0.00s elapsed
  4839. NSE: Script scanning 65.49.16.26.
  4840. Initiating NSE at 09:41
  4841. Completed NSE at 09:41, 0.01s elapsed
  4842. Initiating NSE at 09:41
  4843. Completed NSE at 09:41, 1.64s elapsed
  4844. Nmap scan report for respectwashington.us (65.49.16.26)
  4845. Host is up (0.36s latency).
  4846.  
  4847. PORT STATE SERVICE VERSION
  4848. 53/udp closed domain
  4849. 67/udp closed dhcps
  4850. 68/udp closed dhcpc
  4851. 69/udp closed tftp
  4852. 88/udp closed kerberos-sec
  4853. 123/udp closed ntp
  4854. 137/udp filtered netbios-ns
  4855. 138/udp filtered netbios-dgm
  4856. 139/udp closed netbios-ssn
  4857. 161/udp closed snmp
  4858. 162/udp closed snmptrap
  4859. 389/udp closed ldap
  4860. 500/udp closed isakmp
  4861. 520/udp closed route
  4862. 2049/udp open|filtered nfs
  4863. Too many fingerprints match this host to give specific OS details
  4864. Network Distance: 11 hops
  4865.  
  4866. TRACEROUTE (using port 137/udp)
  4867. HOP RTT ADDRESS
  4868. 1 ...
  4869. 2 140.84 ms 10.252.204.1
  4870. 3 ... 4
  4871. 5 206.21 ms 10.252.204.1
  4872. 6 221.54 ms 10.252.204.1
  4873. 7 221.54 ms 10.252.204.1
  4874. 8 221.53 ms 10.252.204.1
  4875. 9 221.53 ms 10.252.204.1
  4876. 10 221.50 ms 10.252.204.1
  4877. 11 121.94 ms 10.252.204.1
  4878. 12 ... 18
  4879. 19 199.13 ms 10.252.204.1
  4880. 20 141.69 ms 10.252.204.1
  4881. 21 130.79 ms 10.252.204.1
  4882. 22 ... 27
  4883. 28 163.61 ms 10.252.204.1
  4884. 29 ...
  4885. 30 127.01 ms 10.252.204.1
  4886.  
  4887. NSE: Script Post-scanning.
  4888. Initiating NSE at 09:41
  4889. Completed NSE at 09:41, 0.00s elapsed
  4890. Initiating NSE at 09:41
  4891. Completed NSE at 09:41, 0.00s elapsed
  4892. ######################################################################################################################################
  4893. Hosts
  4894. =====
  4895.  
  4896. address mac name os_name os_flavor os_sp purpose info comments
  4897. ------- --- ---- ------- --------- ----- ------- ---- --------
  4898. 65.49.16.26 respectwashington.us Linux 4.X server
  4899.  
  4900. Services
  4901. ========
  4902.  
  4903. host port proto name state info
  4904. ---- ---- ----- ---- ----- ----
  4905. 65.49.16.26 53 udp domain closed
  4906. 65.49.16.26 67 udp dhcps closed
  4907. 65.49.16.26 68 udp dhcpc closed
  4908. 65.49.16.26 69 udp tftp closed
  4909. 65.49.16.26 80 tcp http open Apache httpd 2.4.18 (Ubuntu)
  4910. 65.49.16.26 88 udp kerberos-sec closed
  4911. 65.49.16.26 110 tcp pop3 filtered
  4912. 65.49.16.26 123 udp ntp closed
  4913. 65.49.16.26 137 udp netbios-ns filtered
  4914. 65.49.16.26 138 udp netbios-dgm filtered
  4915. 65.49.16.26 139 udp netbios-ssn closed
  4916. 65.49.16.26 143 tcp imap filtered
  4917. 65.49.16.26 161 udp snmp closed
  4918. 65.49.16.26 162 udp snmptrap closed
  4919. 65.49.16.26 389 udp ldap closed
  4920. 65.49.16.26 443 tcp ssl/http open Apache httpd 2.4.18
  4921. 65.49.16.26 465 tcp ssl/smtp open Postfix smtpd
  4922. 65.49.16.26 500 udp isakmp closed
  4923. 65.49.16.26 520 udp route closed
  4924. 65.49.16.26 587 tcp smtp open Postfix smtpd
  4925. 65.49.16.26 993 tcp imaps filtered
  4926. 65.49.16.26 995 tcp pop3s filtered
  4927. 65.49.16.26 2049 udp nfs unknown
  4928. 65.49.16.26 5355 tcp llmnr filtered
  4929. 65.49.16.26 34816 tcp mountd open 1-3 RPC #100005
  4930. 65.49.16.26 35643 tcp nlockmgr open 1-4 RPC #100021
  4931. 65.49.16.26 36095 tcp mountd open 1-3 RPC #100005
  4932. 65.49.16.26 47025 tcp mountd open 1-3 RPC #100005
  4933. #######################################################################################################################################
  4934. Anonymous JTSEC #OpDomesticTerrorism Full Recon #6
Advertisement
Add Comment
Please, Sign In to add comment