Advertisement
Sunshineoxox

voy.com

Dec 3rd, 2017
591
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 18.65 KB | None | 0 0
  1. Non-authoritative answer:
  2. Name: voy.com
  3. Address: 192.169.188.31
  4.  
  5. voy.com has address 192.169.188.31
  6. Host voy.com not found: 3(NXDOMAIN)
  7. Host voy.com not found: 4(NOTIMP)
  8. + -- ----------------------------=[Checking OS Fingerprint]=----------------- -- +
  9.  
  10. Xprobe2 v.0.3 Copyright (c) 2002-2005 fyodor@o0o.nu, ofir@sys-security.com, meder@o0o.nu
  11.  
  12. [+] Target is voy.com
  13. [+] Loading modules.
  14. [+] Following modules are loaded:
  15. [x] [1] ping:icmp_ping - ICMP echo discovery module
  16. [x] [2] ping:tcp_ping - TCP-based ping discovery module
  17. [x] [3] ping:udp_ping - UDP-based ping discovery module
  18. [x] [4] infogather:ttl_calc - TCP and UDP based TTL distance calculation
  19. [x] [5] infogather:portscan - TCP and UDP PortScanner
  20. [x] [6] fingerprint:icmp_echo - ICMP Echo request fingerprinting module
  21. [x] [7] fingerprint:icmp_tstamp - ICMP Timestamp request fingerprinting module
  22. [x] [8] fingerprint:icmp_amask - ICMP Address mask request fingerprinting module
  23. [x] [9] fingerprint:icmp_port_unreach - ICMP port unreachable fingerprinting module
  24. [x] [10] fingerprint:tcp_hshake - TCP Handshake fingerprinting module
  25. [x] [11] fingerprint:tcp_rst - TCP RST fingerprinting module
  26. [x] [12] fingerprint:smb - SMB fingerprinting module
  27. [x] [13] fingerprint:snmp - SNMPv2c fingerprinting module
  28. [+] 13 modules registered
  29. [+] Initializing scan engine
  30. [+] Running scan engine
  31. [-] ping:tcp_ping module: no closed/open TCP ports known on 192.169.188.31. Module test failed
  32. [-] ping:udp_ping module: no closed/open UDP ports known on 192.169.188.31. Module test failed
  33. [-] No distance calculation. 192.169.188.31 appears to be dead or no ports known
  34. [+] Host: 192.169.188.31 is down (Guess probability: 0%)
  35. [+] Cleaning up scan engine
  36. [+] Modules deinitialized
  37. [+] Execution completed.
  38. + -- ----------------------------=[Gathering Whois Info]=-------------------- -- +
  39. Domain Name: VOY.COM
  40. Registry Domain ID: 550920_DOMAIN_COM-VRSN
  41. Registrar WHOIS Server: whois.networksolutions.com
  42. Registrar URL: http://networksolutions.com
  43. Updated Date: 2017-05-25T13:05:18Z
  44. Creation Date: 1994-08-26T04:00:00Z
  45. Registry Expiry Date: 2020-08-25T04:00:00Z
  46. Registrar: Network Solutions, LLC.
  47. Registrar IANA ID: 2
  48. Registrar Abuse Contact Email: abuse@web.com
  49. Registrar Abuse Contact Phone: +1.8003337680
  50. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  51. Name Server: NS49.WORLDNIC.COM
  52. Name Server: NS50.WORLDNIC.COM
  53. DNSSEC: unsigned
  54. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  55. >>> Last update of whois database: 2017-12-04T04:16:00Z <<<
  56.  
  57.  
  58.  
  59. The Registry database contains ONLY .COM, .NET, .EDU domains and
  60. Registrars.
  61.  
  62.  
  63. Domain Name: VOY.COM
  64. Registry Domain ID: 550920_DOMAIN_COM-VRSN
  65. Registrar WHOIS Server: whois.networksolutions.com
  66. Registrar URL: http://www.networksolutions.com
  67. Updated Date: 2017-05-25T13:05:23Z
  68. Creation Date: 1994-08-26T04:00:00Z
  69. Registrar Registration Expiration Date: 2020-08-25T04:00:00Z
  70. Registrar: NETWORK SOLUTIONS, LLC.
  71. Registrar IANA ID: 2
  72. Registrar Abuse Contact Email: abuse@web.com
  73. Registrar Abuse Contact Phone: +1.8003337680
  74. Reseller:
  75. Domain Status:
  76. Registry Registrant ID:
  77. Registrant Name: Voyager Info-Systems
  78. Registrant Organization: Voyager Info-Systems
  79. Registrant Street: 311 N ROBERTSON BLVD # 778
  80. Registrant City: BEVERLY HILLS
  81. Registrant State/Province: CA
  82. Registrant Postal Code: 90211-1705
  83. Registrant Country: US
  84. Registrant Phone: (310) 652-3288
  85. Registrant Phone Ext:
  86. Registrant Fax:
  87. Registrant Fax Ext:
  88. Registrant Email: voyagersystems@gmail.com
  89. Registry Admin ID:
  90. Admin Name: Sahebi, Rudi
  91. Admin Organization: Voyager Info-Systems
  92. Admin Street: 311 N ROBERTSON BLVD #778
  93. Admin City: BEVERLY HILLS
  94. Admin State/Province: CA
  95. Admin Postal Code: 90211-1705
  96. Admin Country: US
  97. Admin Phone: +1.2135374636
  98. Admin Phone Ext:
  99. Admin Fax:
  100. Admin Fax Ext:
  101. Admin Email: voyagersystems@gmail.com
  102. Registry Tech ID:
  103. Tech Name: Sahebi, Rudi
  104. Tech Organization: Voyager Info-Systems
  105. Tech Street: 311 N ROBERTSON BLVD #778
  106. Tech City: BEVERLY HILLS
  107. Tech State/Province: CA
  108. Tech Postal Code: 90211-1705
  109. Tech Country: US
  110. Tech Phone: +1.2135374636
  111. Tech Phone Ext:
  112. Tech Fax:
  113. Tech Fax Ext:
  114. Tech Email: voyagersystems@gmail.com
  115. Name Server: NS49.WORLDNIC.COM
  116. Name Server: NS50.WORLDNIC.COM
  117. DNSSEC: Unsigned
  118. URL of the ICANN WHOIS Data Problem Reporting System: http://wdprs.internic.net/
  119. >>> Last update of WHOIS database: 2017-12-04T04:16:21Z <<<
  120.  
  121.  
  122. The data in Networksolutions.com's WHOIS database is provided to you by
  123. Networksolutions.com for information purposes only, that is, to assist you in
  124. obtaining information about or related to a domain name registration
  125. record. Networksolutions.com makes this information available "as is," and
  126. does not guarantee its accuracy. By submitting a WHOIS query, you
  127. agree that you will use this data only for lawful purposes and that,
  128. under no circumstances will you use this data to: (1) allow, enable,
  129. or otherwise support the transmission of mass unsolicited, commercial
  130. advertising or solicitations via direct mail, electronic mail, or by
  131. telephone; or (2) enable high volume, automated, electronic processes
  132. that apply to Networksolutions.com (or its systems). The compilation,
  133. repackaging, dissemination or other use of this data is expressly
  134. prohibited without the prior written consent of Networksolutions.com.
  135. Networksolutions.com reserves the right to modify these terms at any time.
  136. By submitting this query, you agree to abide by these terms.
  137.  
  138. For more information on Whois status codes, please visit
  139. https://www.icann.org/resources/pages/epp-status-codes-2014-06-16-en.
  140.  
  141. + -- ----------------------------=[Gathering OSINT Info]=-------------------- -- +
  142.  
  143. *******************************************************************
  144. * *
  145. * | |_| |__ ___ /\ /\__ _ _ ____ _____ ___| |_ ___ _ __ *
  146. * | __| '_ \ / _ \ / /_/ / _` | '__\ \ / / _ \/ __| __/ _ \ '__| *
  147. * | |_| | | | __/ / __ / (_| | | \ V / __/\__ \ || __/ | *
  148. * \__|_| |_|\___| \/ /_/ \__,_|_| \_/ \___||___/\__\___|_| *
  149. * *
  150. * TheHarvester Ver. 2.7 *
  151. * Coded by Christian Martorella *
  152. * Edge-Security Research *
  153. * cmartorella@edge-security.com *
  154. *******************************************************************
  155.  
  156.  
  157. Full harvest..
  158. [-] Searching in Google..
  159. Searching 0 results...
  160. Searching 100 results...
  161. Searching 200 results...
  162. [-] Searching in PGP Key server..
  163. [-] Searching in Bing..
  164. Searching 50 results...
  165. Searching 100 results...
  166. Searching 150 results...
  167. Searching 200 results...
  168. [-] Searching in Exalead..
  169. Searching 50 results...
  170. Searching 100 results...
  171. Searching 150 results...
  172. Searching 200 results...
  173. Searching 250 results...
  174.  
  175.  
  176. [+] Emails found:
  177. ------------------
  178. john@devoy.com
  179.  
  180. [+] Hosts found in search engines:
  181. ------------------------------------
  182. [-] Resolving hostnames IPs...
  183. 192.169.188.31:www.voy.com
  184. [+] Virtual hosts:
  185. ==================
  186. 192.169.188.31 www.voy.com
  187.  
  188. ******************************************************
  189. * /\/\ ___| |_ __ _ __ _ ___ ___ / _(_) | *
  190. * / \ / _ \ __/ _` |/ _` |/ _ \ / _ \| |_| | | *
  191. * / /\/\ \ __/ || (_| | (_| | (_) | (_) | _| | | *
  192. * \/ \/\___|\__\__,_|\__, |\___/ \___/|_| |_|_| *
  193. * |___/ *
  194. * Metagoofil Ver 2.2 *
  195. * Christian Martorella *
  196. * Edge-Security.com *
  197. * cmartorella_at_edge-security.com *
  198. ******************************************************
  199.  
  200. [-] Starting online search...
  201.  
  202. [-] Searching for doc files, with a limit of 200
  203. Searching 100 results...
  204. Searching 200 results...
  205. Results: 0 files found
  206. Starting to download 50 of them:
  207. ----------------------------------------
  208.  
  209.  
  210. [-] Searching for pdf files, with a limit of 200
  211. Searching 100 results...
  212. Searching 200 results...
  213. Results: 0 files found
  214. Starting to download 50 of them:
  215. ----------------------------------------
  216.  
  217.  
  218. [-] Searching for xls files, with a limit of 200
  219. Searching 100 results...
  220. Searching 200 results...
  221. Results: 0 files found
  222. Starting to download 50 of them:
  223. ----------------------------------------
  224.  
  225.  
  226. [-] Searching for csv files, with a limit of 200
  227. Searching 100 results...
  228. Searching 200 results...
  229. Results: 0 files found
  230. Starting to download 50 of them:
  231. ----------------------------------------
  232.  
  233.  
  234. [-] Searching for txt files, with a limit of 200
  235. Searching 100 results...
  236. Searching 200 results...
  237. Results: 0 files found
  238. Starting to download 50 of them:
  239. ----------------------------------------
  240.  
  241. processing
  242. user
  243. email
  244.  
  245. [+] List of users found:
  246. --------------------------
  247.  
  248. [+] List of software found:
  249. -----------------------------
  250.  
  251. [+] List of paths and servers found:
  252. ---------------------------------------
  253.  
  254. [+] List of e-mails found:
  255. ----------------------------
  256. + -- ----------------------------=[Gathering DNS Info]=---------------------- -- +
  257.  
  258. ; <<>> DiG 9.10.6-Debian <<>> -x voy.com
  259. ;; global options: +cmd
  260. ;; Got answer:
  261. ;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 4804
  262. ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 0
  263.  
  264. ;; QUESTION SECTION:
  265. ;com.voy.in-addr.arpa. IN PTR
  266.  
  267. ;; Query time: 0 msec
  268. ;; SERVER: 127.0.0.1#53(127.0.0.1)
  269. ;; WHEN: Sun Dec 03 22:17:15 CST 2017
  270. ;; MSG SIZE rcvd: 38
  271.  
  272. Smartmatch is experimental at /usr/bin/dnsenum line 698.
  273. Smartmatch is experimental at /usr/bin/dnsenum line 698.
  274. dnsenum VERSION:1.2.4
  275.  
  276. ----- voy.com -----
  277.  
  278.  
  279. Host's addresses:
  280. __________________
  281.  
  282. voy.com. 60 IN A 192.169.188.31
  283.  
  284.  
  285. Wildcard detection using: nlxzszqktxpi
  286. _______________________________________
  287.  
  288. nlxzszqktxpi.voy.com. 60 IN A 192.169.188.31
  289.  
  290.  
  291. !!!!!!!!!!!!!!!!!!!!!!!!!!!!
  292.  
  293. Wildcards detected, all subdomains will point to the same IP address
  294. Omitting results containing 192.169.188.31.
  295. Maybe you are using OpenDNS servers.
  296.  
  297. !!!!!!!!!!!!!!!!!!!!!!!!!!!!
  298.  
  299.  
  300. Name Servers:
  301. ______________
  302.  
  303. voy.com NS record query failed: NOTIMP
  304. + -- ----------------------------=[Gathering DNS Subdomains]=---------------- -- +
  305.  
  306. ____ _ _ _ _ _____
  307. / ___| _ _| |__ | (_)___| |_|___ / _ __
  308. \___ \| | | | '_ \| | / __| __| |_ \| '__|
  309. ___) | |_| | |_) | | \__ \ |_ ___) | |
  310. |____/ \__,_|_.__/|_|_|___/\__|____/|_|
  311.  
  312. # Coded By Ahmed Aboul-Ela - @aboul3la
  313.  
  314. [-] Enumerating subdomains now for voy.com
  315. [-] verbosity is enabled, will show the subdomains results in realtime
  316. [-] Searching now in Baidu..
  317. [-] Searching now in Yahoo..
  318. [-] Searching now in Google..
  319. [-] Searching now in Bing..
  320. [-] Searching now in Ask..
  321. [-] Searching now in Netcraft..
  322. [-] Searching now in DNSdumpster..
  323. [-] Searching now in Virustotal..
  324. [-] Searching now in ThreatCrowd..
  325. [-] Searching now in SSL Certificates..
  326. [-] Searching now in PassiveDNS..
  327. SSL Certificates: www.voy.com
  328. Virustotal: clari.voy.com
  329. Virustotal: m.voy.com
  330. Virustotal: voyaretirement.voy.com
  331. Virustotal: www.voy.com
  332. Yahoo: www.voy.com
  333. Baidu: beta.voy.com
  334. DNSdumpster: www.voy.com
  335. [!] Error: Google probably now is blocking our requests
  336. [~] Finished now the Google Enumeration ...
  337. DNSdumpster: ar.voy.com
  338. DNSdumpster: beta.voy.com
  339. Netcraft: www.voy.com
  340. [-] Saving results to file: /usr/share/sniper/loot/domains/domains-voy.com.txt
  341. [-] Total Unique Subdomains Found: 6
  342. www.voy.com
  343. ar.voy.com
  344. beta.voy.com
  345. clari.voy.com
  346. m.voy.com
  347. voyaretirement.voy.com
  348.  
  349. ╔═╗╦═╗╔╦╗╔═╗╦ ╦
  350. ║ ╠╦╝ ║ ╚═╗╠═╣
  351. ╚═╝╩╚═ ╩o╚═╝╩ ╩
  352. + -- ----------------------------=[Gathering Certificate Subdomains]=-------- -- +
  353.  
  354. www.voy.com
  355. [+] Domains saved to: /usr/share/sniper/loot/domains/domains-voy.com-full.txt
  356.  
  357. + -- ----------------------------=[Checking for Sub-Domain Hijacking]=------- -- +
  358. + -- ----------------------------=[Checking Email Security]=----------------- -- +
  359.  
  360. + -- ----------------------------=[Pinging host]=---------------------------- -- +
  361. PING voy.com (192.169.188.31) 56(84) bytes of data.
  362. 64 bytes from ip-192-169-188-31.ip.secureserver.net (192.169.188.31): icmp_seq=1 ttl=64 time=0.065 ms
  363.  
  364. --- voy.com ping statistics ---
  365. 1 packets transmitted, 1 received, 0% packet loss, time 0ms
  366. rtt min/avg/max/mdev = 0.065/0.065/0.065/0.000 ms
  367.  
  368. + -- ----------------------------=[Running TCP port scan]=------------------- -- +
  369.  
  370. Starting Nmap 7.60 ( https://nmap.org ) at 2017-12-03 22:17 CST
  371. Nmap done: 1 IP address (1 host up) scanned in 42.32 seconds
  372.  
  373. + -- ----------------------------=[Running Intrusive Scans]=----------------- -- +
  374. + -- --=[Port 21 closed... skipping.
  375. + -- --=[Port 22 closed... skipping.
  376. + -- --=[Port 23 closed... skipping.
  377. + -- --=[Port 25 closed... skipping.
  378. + -- --=[Port 53 closed... skipping.
  379. + -- --=[Port 79 closed... skipping.
  380. + -- --=[Port 80 closed... skipping.
  381. + -- --=[Port 110 closed... skipping.
  382. + -- --=[Port 111 closed... skipping.
  383. + -- --=[Port 135 closed... skipping.
  384. + -- --=[Port 139 closed... skipping.
  385. + -- --=[Port 161 closed... skipping.
  386. + -- --=[Port 162 closed... skipping.
  387. + -- --=[Port 389 closed... skipping.
  388. + -- --=[Port 443 closed... skipping.
  389. + -- --=[Port 445 closed... skipping.
  390. + -- --=[Port 512 closed... skipping.
  391. + -- --=[Port 513 closed... skipping.
  392. + -- --=[Port 514 closed... skipping.
  393. + -- --=[Port 623 closed... skipping.
  394. + -- --=[Port 624 closed... skipping.
  395. + -- --=[Port 1099 closed... skipping.
  396. + -- --=[Port 1433 closed... skipping.
  397. + -- --=[Port 2049 closed... skipping.
  398. + -- --=[Port 2121 closed... skipping.
  399. + -- --=[Port 3306 closed... skipping.
  400. + -- --=[Port 3310 closed... skipping.
  401. + -- --=[Port 3128 closed... skipping.
  402. + -- --=[Port 3389 closed... skipping.
  403. + -- --=[Port 3632 closed... skipping.
  404. + -- --=[Port 4443 closed... skipping.
  405. + -- --=[Port 5432 closed... skipping.
  406. + -- --=[Port 5800 closed... skipping.
  407. + -- --=[Port 5900 closed... skipping.
  408. + -- --=[Port 5984 closed... skipping.
  409. + -- --=[Port 6000 closed... skipping.
  410. + -- --=[Port 6667 closed... skipping.
  411. + -- --=[Port 8000 closed... skipping.
  412. + -- --=[Port 8100 closed... skipping.
  413. + -- --=[Port 8080 closed... skipping.
  414. + -- --=[Port 8180 closed... skipping.
  415. + -- --=[Port 8443 closed... skipping.
  416. + -- --=[Port 8888 closed... skipping.
  417. + -- --=[Port 10000 closed... skipping.
  418. + -- --=[Port 16992 closed... skipping.
  419. + -- --=[Port 27017 closed... skipping.
  420. + -- --=[Port 27018 closed... skipping.
  421. + -- --=[Port 27019 closed... skipping.
  422. + -- --=[Port 28017 closed... skipping.
  423. + -- --=[Port 49152 closed... skipping.
  424. + -- ----------------------------=[Scanning For Common Vulnerabilities]=----- -- +
  425. #########################################################################################
  426. oooooo oooo .o. .oooooo..o ooooo ooo .oooooo.
  427. `888. .8' .888. d8P' `Y8 `888' `8' d8P' `Y8b
  428. `888. .8' .88888. Y88bo. 888 8 888 888
  429. `888.8' .8' `888. `ZY8888o. 888 8 888 888
  430. `888' .88ooo8888. `0Y88b 888 8 888 888
  431. 888 .8' `888. oo .d8P `88. .8' `88b d88'
  432. o888o o88o o8888o 88888888P' `YbodP' `Y8bood8P'
  433. Welcome to Yasuo v2.3
  434. Author: Saurabh Harit (@0xsauby) | Contribution & Coolness: Stephen Hall (@logicalsec)
  435. #########################################################################################
  436.  
  437. I, [2017-12-03T22:18:25.308204 #2299] INFO -- : Initiating port scan
  438. sendto in send_ip_packet_sd: sendto(6, packet, 40, 0, 192.169.188.31, 16) => Operation not permitted
  439. Offending packet: TCP 192.168.0.11:59538 > 192.169.188.31:80 A ttl=50 id=17153 iplen=40 seq=0 win=1024
  440. sendto in send_ip_packet_sd: sendto(6, packet, 40, 0, 192.169.188.31, 16) => Operation not permitted
  441. Offending packet: TCP 192.168.0.11:59539 > 192.169.188.31:80 A ttl=37 id=12990 iplen=40 seq=0 win=1024
  442. I, [2017-12-03T22:18:29.778666 #2299] INFO -- : Using nmap scan output file logs/nmap_output_2017-12-03_22-18-25.xml
  443. yasuo.rb:232:in `each_slice': invalid slice size (ArgumentError)
  444. from yasuo.rb:232:in `process_nmap_scan'
  445. from yasuo.rb:132:in `run'
  446. from yasuo.rb:700:in `<main>'
  447. + -- ----------------------------=[Skipping Full NMap Port Scan]=------------ -- +
  448. + -- ----------------------------=[Running Brute Force]=--------------------- -- +
  449. __________ __ ____ ___
  450. \______ \_______ __ ___/ |_ ____ \ \/ /
  451. | | _/\_ __ \ | \ __\/ __ \ \ /
  452. | | \ | | \/ | /| | \ ___/ / \
  453. |______ / |__| |____/ |__| \___ >___/\ \
  454. \/ \/ \_/
  455.  
  456. + -- --=[BruteX v1.7 by 1N3
  457. + -- --=[http://crowdshield.com
  458.  
  459.  
  460. ################################### Running Port Scan ##############################
  461.  
  462. Starting Nmap 7.60 ( https://nmap.org ) at 2017-12-03 22:18 CST
  463. Nmap done: 1 IP address (1 host up) scanned in 21.12 seconds
  464.  
  465. ################################### Running Brute Force ############################
  466.  
  467. + -- --=[Port 21 closed... skipping.
  468. + -- --=[Port 22 closed... skipping.
  469. + -- --=[Port 23 closed... skipping.
  470. + -- --=[Port 25 closed... skipping.
  471. + -- --=[Port 80 closed... skipping.
  472. + -- --=[Port 110 closed... skipping.
  473. + -- --=[Port 139 closed... skipping.
  474. + -- --=[Port 162 closed... skipping.
  475. + -- --=[Port 389 closed... skipping.
  476. + -- --=[Port 443 closed... skipping.
  477. + -- --=[Port 445 closed... skipping.
  478. + -- --=[Port 512 closed... skipping.
  479. + -- --=[Port 513 closed... skipping.
  480. + -- --=[Port 514 closed... skipping.
  481. + -- --=[Port 993 closed... skipping.
  482. + -- --=[Port 1433 closed... skipping.
  483. + -- --=[Port 1521 closed... skipping.
  484. + -- --=[Port 3306 closed... skipping.
  485. + -- --=[Port 3389 closed... skipping.
  486. + -- --=[Port 5432 closed... skipping.
  487. + -- --=[Port 5900 closed... skipping.
  488. + -- --=[Port 5901 closed... skipping.
  489. + -- --=[Port 8000 closed... skipping.
  490. + -- --=[Port 8080 closed... skipping.
  491. + -- --=[Port 8100 closed... skipping.
  492. + -- --=[Port 6667 closed... skipping.
  493.  
  494. ################################### Done! ###########################################
  495.  
  496. + -- ----------------------------=[Done]=------------------------------------ -- +
  497. root@kali:~#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement