Guest User

Equation Group APT hacks

a guest
Oct 31st, 2016
7,380
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. 194.243.154.62
  2. Country: Italy
  3. Organization: Telecom Italia
  4. Number of open ports: 1
  5.  
  6. Ports:
  7. 53
  8. 203.188.252.3
  9. Hostnames: mail.bangla.net
  10. Country: Bangladesh
  11. Organization: ISN
  12. Number of open ports: 1
  13.  
  14. Ports:
  15. 993
  16. |-- SSL Versions: TLSv1, TLSv1.1, TLSv1.2
  17. |-- Diffie-Hellman Parameters:
  18. Bits: 1024
  19. Generator: 2
  20. 202.197.0.180
  21. Hostnames: pdns.nudt.edu.cn
  22. City: Changsha
  23. Country: China
  24. Organization: China Education and Research Network Center
  25. Number of open ports: 1
  26.  
  27. Ports:
  28. 53
  29. 132.248.10.2
  30. Hostnames: dns2.unam.mx
  31. City: Coyoacan
  32. Country: Mexico
  33. Organization: Universidad Nacional Autonoma de Mexico
  34. Number of open ports: 2
  35.  
  36. Ports:
  37. 22 OpenSSH (6.6.1_hpn13v11)
  38. 37 rdate
  39. 202.30.58.1
  40. Hostnames: ns.u1.ac.kr
  41. Country: Korea, Republic of
  42. Organization: Korea Telecom
  43. Number of open ports: 1
  44.  
  45. Ports:
  46. 53
  47. 203.188.252.2
  48. Hostnames: ns1.bangla.net
  49. Country: Bangladesh
  50. Organization: ISN
  51. Number of open ports: 5
  52.  
  53. Ports:
  54. 37 rdate
  55. 53
  56. 79
  57. 111
  58. 515
  59. 192.148.167.5
  60. Hostnames: orhi.sarenet.es
  61. City: Santander
  62. Country: Spain
  63. Organization: SAREnet, S.A.
  64. Number of open ports: 2
  65.  
  66. Ports:
  67. 500
  68. 4500
  69. 202.243.222.7
  70. Hostnames: photon.sci-museum.kita.osaka.jp
  71. Country: Japan
  72. Organization: Research Organization of Information and Systems
  73. Number of open ports: 1
  74.  
  75. Ports:
  76. 25 Postfix smtpd
  77. 147.83.2.3
  78. Hostnames: backus.upc.es
  79. Country: Spain
  80. Organization: Universitat Politecnica de Catalunya
  81. Number of open ports: 1
  82.  
  83. Ports:
  84. 53
  85. 150.27.1.11
  86. Hostnames: ns.cst.ne.jp
  87. Country: Japan
  88. Organization: K-Opticom Corporation
  89. Number of open ports: 5
  90. Vulnerabilities: CVE-2015-0204
  91.  
  92. Ports:
  93. 25 Postfix smtpd
  94. 80 Apache httpd
  95. 110
  96. 443 Apache httpd
  97. |-- SSL Versions: SSLv2, SSLv3, TLSv1
  98. |-- Diffie-Hellman Parameters:
  99. Bits: 1024
  100. Generator: 2
  101. Fingerprint: mod_ssl 2.2.x/Hardcoded 1024-bit prime
  102. 995
  103. |-- SSL Versions: SSLv2, SSLv3, TLSv1
  104. 218.36.28.250
  105. Country: Korea, Republic of
  106. Organization: HCLC
  107. Number of open ports: 2
  108.  
  109. Ports:
  110. 25 Sendmail (8.13.8+Sun/8.13.8)
  111. 111
  112. 194.243.154.62
  113. Country: Italy
  114. Organization: Telecom Italia
  115. Number of open ports: 1
  116.  
  117. Ports:
  118. 53
  119. 88.147.128.28
  120. Hostnames: mail.san.ru
  121. Country: Russian Federation
  122. Organization: Network of Saratov branch of OJSC Volgatelecom
  123. Number of open ports: 3
  124.  
  125. Ports:
  126. 80 Apache httpd
  127. 143
  128. 993
  129. |-- SSL Versions: SSLv3, TLSv1, TLSv1.1, TLSv1.2
  130. |-- Diffie-Hellman Parameters:
  131. Bits: 1024
  132. Generator: 2
  133. 210.115.225.25
  134. Hostnames: mail.hallym.ac.kr
  135. Country: Korea, Republic of
  136. Organization: Hallym Univ.(HALLYM)
  137. Number of open ports: 5
  138.  
  139. Ports:
  140. 80 Microsoft IIS httpd (8.5)
  141. 110
  142. 443 Microsoft HTTPAPI httpd (2.0)
  143. |-- SSL Versions: SSLv3, TLSv1, TLSv1.1, TLSv1.2
  144. |-- Diffie-Hellman Parameters:
  145. Bits: 1024
  146. Generator: 0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000002
  147. Fingerprint: RFC2409/Oakley Group 2
  148. 3306 MySQL (5.7.14-log)
  149. 5985
  150. 202.96.203.173
  151. Hostnames: mailgate.sbell.com.cn
  152. City: Shanghai
  153. Country: China
  154. Organization: China Telecom Shanghai
  155. Number of open ports: 2
  156.  
  157. Ports:
  158. 179
  159. 2152 GPRS Tunneling Protocol (1)
  160. 218.107.133.12
  161. Hostnames: mailgw.thtf.com.cn
  162. City: Beijing
  163. Country: China
  164. Organization: China Unicom Beijing
  165. Number of open ports: 1
  166.  
  167. Ports:
  168. 53
  169. 202.38.8.1
  170. City: Beijing
  171. Country: China
  172. Organization: China Institute of Atomic Energy
  173. Number of open ports: 2
  174.  
  175. Ports:
  176. 53
  177. 80
  178. 62.116.144.147
  179. Hostnames: mailout7.unternehmen.com
  180. Country: Germany
  181. Organization: InterNetX GmbH
  182. Number of open ports: 6
  183.  
  184. Ports:
  185. 25 Sendmail (8.15.2/8.15.2)
  186. 80 Apache httpd (1.3.41)
  187. 143 UW imapd (2004.357)
  188. 587 Sendmail (8.15.2/8.15.2)
  189. 3306 MySQL (4.1.22-log)
  190. 8080 Apache httpd (1.3.41)
  191. 62.116.144.190
  192. Hostnames: no3.unternehmen.com
  193. Country: Germany
  194. Organization: InterNetX GmbH
  195. Number of open ports: 7
  196. Vulnerabilities: CVE-2015-0204
  197.  
  198. Ports:
  199. 7 Echo
  200. 22 OpenSSH (3.8p1)
  201. 25 Sendmail (8.13.6/8.13.6)
  202. 80 Apache httpd (1.3.29)
  203. 443 Apache httpd (1.3.29)
  204. |-- SSL Versions: SSLv2, SSLv3, TLSv1
  205. |-- Diffie-Hellman Parameters:
  206. Bits: 1024
  207. Generator: 2
  208. Fingerprint: mod_ssl 2.0.x/Hardcoded 1024-bit prime
  209. 587 Sendmail (8.13.6/8.13.6)
  210. 3306 MySQL (5.0.16-standard-log)
  211. 62.116.144.150
  212. Hostnames: no1.unternehmen.com
  213. Country: Germany
  214. Organization: InterNetX GmbH
  215. Number of open ports: 1
  216.  
  217. Ports:
  218. 587 Sendmail (8.15.2/8.15.2)
  219. 202.96.135.140
  220. City: Guangzhou
  221. Country: China
  222. Organization: China Telecom Guangdong
  223. Number of open ports: 2
  224. Vulnerabilities: CVE-2015-0204
  225.  
  226. Ports:
  227. 8081
  228. 8443
  229. |-- SSL Versions: SSLv3, TLSv1
  230. |-- Diffie-Hellman Parameters:
  231. Bits: 768
  232. Generator: 30470ad5a005fb14ce2d9dcd87e38bc7d1b1c5facbaecbe95f190aa7a31d23c4dbbcbe06174544401a5b2c020965d8c2bd2171d3668445771f74ba084d2029d83c1c158547f3a9f1a2715be23d51ae4d3e5a1f6a7064f316933a346d3f529252
  233. Fingerprint: Java 7/Hardcoded 768-bit prime
  234. 202.141.224.34
  235. Hostnames: ns1.multi.net.pk
  236. Country: Pakistan
  237. Organization: Multinet Pakistan Pvt. Ltd.
  238. Number of open ports: 1
  239.  
  240. Ports:
  241. 53
  242. 53
  243. 194.84.23.125
  244. Hostnames: ns2.rosprint.net
  245. Country: Russian Federation
  246. Organization: WEB Hotel, Moscow
  247. Number of open ports: 1
  248.  
  249. Ports:
  250. 53
  251. 202.117.112.4
  252. Country: China
  253. Organization: Xidian University
  254. Number of open ports: 1
  255.  
  256. Ports:
  257. 53
  258. 195.193.177.150
  259. Hostnames: opcwdns.opcw.org
  260. City: Den Haag
  261. Country: Netherlands
  262. Organization: Verizon Nederland B.V.
  263. Number of open ports: 1
  264.  
  265. Ports:
  266. 53
  267. 202.197.0.180
  268. Hostnames: pdns.nudt.edu.cn
  269. City: Changsha
  270. Country: China
  271. Organization: China Education and Research Network Center
  272. Number of open ports: 1
  273.  
  274. Ports:
  275. 53
  276. 159.93.18.100
  277. Hostnames: sunhe.jinr.ru
  278. Country: Russian Federation
  279. Organization: Joint Institute for Nuclear Research
  280. Number of open ports: 6
  281.  
  282. Ports:
  283. 7 Echo
  284. 19
  285. 21 WU-FTPD (wu-2.4.2)
  286. 37 rdate
  287. 111
  288. 3306 MySQL
  289. 130.34.115.132
  290. Hostnames: ns2.chem.tohoku.ac.jp
  291. Country: Japan
  292. Organization: Tohoku University
  293. Number of open ports: 2
  294.  
  295. Ports:
  296. 25 Sendmail (8.13.8/8.13.8)
  297. 80 Apache httpd (2.2.3)
  298. 194.243.154.57
  299. Country: Italy
  300. Organization: Telecom Italia
  301. Number of open ports: 1
  302.  
  303. Ports:
  304. 53
  305. 140.113.212.150
  306. Hostnames: ns.EE.NCTU.edu.tw
  307. City: Taipei
  308. Country: Taiwan
  309. Organization: Taiwan Academic Network
  310. Number of open ports: 2
  311.  
  312. Ports:
  313. 53
  314. 80 Apache httpd (2.0.52)
  315. 194.30.32.229
  316. Hostnames: hou3099989.sarenet.com
  317. Country: Spain
  318. Organization: SAREnet, S.A.
  319. Number of open ports: 1
  320.  
  321. Ports:
  322. 80 Apache httpd (2.2.15)
  323. 133.26.135.224
  324. Country: Japan
  325. Organization: Internet Initiative Japan Inc.
  326. Number of open ports: 1
  327.  
  328. Ports:
  329. 80 Apache httpd
  330. 132.248.10.2
  331. Hostnames: dns2.unam.mx
  332. City: Coyoacan
  333. Country: Mexico
  334. Organization: Universidad Nacional Autonoma de Mexico
  335. Number of open ports: 2
  336.  
  337. Ports:
  338. 22 OpenSSH (6.6.1_hpn13v11)
  339. 37 rdate
  340. 193.6.138.65
  341. Hostnames: zimbra.unideb.hu
  342. City: Debrecen
  343. Country: Hungary
  344. Organization: Debreceni Egyetem
  345. Number of open ports: 2
  346.  
  347. Ports:
  348. 80 Apache httpd (2.2.14)
  349. 443
  350. |-- SSL Versions: SSLv3, TLSv1, TLSv1.1, TLSv1.2
  351. |-- Diffie-Hellman Parameters:
  352. Bits: 768
  353. Generator: 30470ad5a005fb14ce2d9dcd87e38bc7d1b1c5facbaecbe95f190aa7a31d23c4dbbcbe06174544401a5b2c020965d8c2bd2171d3668445771f74ba084d2029d83c1c158547f3a9f1a2715be23d51ae4d3e5a1f6a7064f316933a346d3f529252
  354. Fingerprint: Java 7/Hardcoded 768-bit prime
  355. 211.232.97.195
  356. Hostnames: ftp.hyunwoo.co.kr
  357. Country: Korea, Republic of
  358. Organization: NexG
  359. Number of open ports: 4
  360.  
  361. Ports:
  362. 80 Apache httpd (2.2.14)
  363. 137
  364. 445
  365. 8000 Apache httpd (2.2.14)
  366. 129.194.41.4
  367. Hostnames: geosun1.unige.ch
  368. City: Geneva
  369. Country: Switzerland
  370. Organization: Universite de Geneve
  371. Number of open ports: 2
  372.  
  373. Ports:
  374. 13 Sun Solaris daytime
  375. 80 Apache httpd (1.3.41)
  376. 150.27.1.5
  377. Hostnames: hk.sun-ip.or.jp
  378. Country: Japan
  379. Organization: K-Opticom Corporation
  380. Number of open ports: 2
  381.  
  382. Ports:
  383. 25 Sendmail (8.13.1/8.13.1)
  384. 110 Qpopper pop3d (4.0.9)
  385. 194.30.0.16
  386. Country: Spain
  387. Organization: SAREnet, S.A.
  388. Number of open ports: 1
  389.  
  390. Ports:
  391. 80 Apache httpd (2.2.15)
  392. 203.188.252.3
  393. Hostnames: mail.bangla.net
  394. Country: Bangladesh
  395. Organization: ISN
  396. Number of open ports: 1
  397.  
  398. Ports:
  399. 993
  400. |-- SSL Versions: TLSv1, TLSv1.1, TLSv1.2
  401. |-- Diffie-Hellman Parameters:
  402. Bits: 1024
  403. Generator: 2
  404. 203.64.35.108
  405. Hostnames: mail.tcust.edu.tw
  406. City: Taipei
  407. Country: Taiwan
  408. Organization: Taiwan Academic Network
  409. Number of open ports: 5
  410.  
  411. Ports:
  412. 21
  413. 53
  414. 53
  415. 80 Apache httpd (2.2.22)
  416. 110 Qpopper pop3d (4.1.0)
  417. 587 Sendmail (8.13.8+Sun/8.13.8)
  418. 204.153.24.14
  419. Hostnames: mercurio.rtn.net.mx
  420. City: San Fernando
  421. Country: Mexico
  422. Organization: Fondo de Informacion y Documentacion para la Indus
  423. Number of open ports: 2
  424.  
  425. Ports:
  426. 80 Apache httpd (2.2.4)
  427. 5555
  428. 61.1.64.45
  429. Hostnames: mum1mr1-a-fixed.sancharnet.in
  430. City: Bangalore
  431. Country: India
  432. Organization: BSNL
  433. Number of open ports: 1
  434.  
  435. Ports:
  436. 53
  437. 202.54.4.39
  438. Hostnames: XXX4-39.lvsb.vsnl.net.in
  439. Country: India
  440. Organization: TATA Communications
  441. Number of open ports: 1
  442. Vulnerabilities: CVE-2015-0204
  443.  
  444. Ports:
  445. 8443 Apache Tomcat/Coyote JSP engine (1.1)
  446. |-- SSL Versions: SSLv3, TLSv1
  447. |-- Diffie-Hellman Parameters:
  448. Bits: 768
  449. Generator: 30470ad5a005fb14ce2d9dcd87e38bc7d1b1c5facbaecbe95f190aa7a31d23c4dbbcbe06174544401a5b2c020965d8c2bd2171d3668445771f74ba084d2029d83c1c158547f3a9f1a2715be23d51ae4d3e5a1f6a7064f316933a346d3f529252
  450. Fingerprint: Java 7/Hardcoded 768-bit prime
  451. 212.35.107.2
  452. Country: United Kingdom
  453. Organization: COLT Technology Services Group Limited
  454. Number of open ports: 1
  455.  
  456. Ports:
  457. 4500 ZyXEL (ZyWALL USG)
  458. 203.165.5.83
  459. Hostnames: syslog01ea-rcv.nc.noc.home.ad.jp
  460. Country: Japan
  461. Organization: @Home Network Japan
  462. Number of open ports: 1
  463.  
  464. Ports:
  465. 8080 Apache httpd (2.2.15)
  466. 150.27.1.2
  467. Country: Japan
  468. Organization: K-Opticom Corporation
  469. Number of open ports: 1
  470.  
  471. Ports:
  472. 53
  473. 203.237.216.2
  474. Country: Korea, Republic of
  475. Organization: Dankook University
  476. Number of open ports: 1
  477.  
  478. Ports:
  479. 53
  480. 192.150.195.20
  481. Hostnames: ns.univaq.it
  482. Country: Italy
  483. Organization: Universita' degli Studi dell'Aquila
  484. Number of open ports: 1
  485.  
  486. Ports:
  487. 53
  488. 203.188.252.2
  489. Hostnames: ns1.bangla.net
  490. Country: Bangladesh
  491. Organization: ISN
  492. Number of open ports: 5
  493.  
  494. Ports:
  495. 37 rdate
  496. 53
  497. 79
  498. 111
  499. 515
  500. 168.167.168.34
  501. Hostnames: ns1.btc.bw
  502. City: Gaborone
  503. Country: Botswana
  504. Organization: Btc-gate1
  505. Number of open ports: 1
  506.  
  507. Ports:
  508. 53
  509. 130.34.115.132
  510. Hostnames: ns2.chem.tohoku.ac.jp
  511. Country: Japan
  512. Organization: Tohoku University
  513. Number of open ports: 2
  514.  
  515. Ports:
  516. 25 Sendmail (8.13.8/8.13.8)
  517. 80 Apache httpd (2.2.3)
  518. 195.170.2.1
  519. Hostnames: ns2.otenet.gr
  520. Country: Greece
  521. Organization: OTEnet S.A.
  522. Number of open ports: 1
  523.  
  524. Ports:
  525. 53
  526. 53
  527. 202.243.222.7
  528. Hostnames: photon.sci-museum.kita.osaka.jp
  529. Country: Japan
  530. Organization: Research Organization of Information and Systems
  531. Number of open ports: 1
  532.  
  533. Ports:
  534. 25 Postfix smtpd
  535. 130.237.234.151
  536. Hostnames: mount-kilimanjaro.stacken.kth.se
  537. Country: Sweden
  538. Organization: Royal Institute of Technology
  539. Number of open ports: 1
  540.  
  541. Ports:
  542. 22 OpenSSH (6.7p1 Debian 5)
  543. 218.36.28.250
  544. Country: Korea, Republic of
  545. Organization: HCLC
  546. Number of open ports: 2
  547.  
  548. Ports:
  549. 25 Sendmail (8.13.8+Sun/8.13.8)
  550. 111
  551. 147.83.2.3
  552. Hostnames: backus.upc.es
  553. Country: Spain
  554. Organization: Universitat Politecnica de Catalunya
  555. Number of open ports: 1
  556.  
  557. Ports:
  558. 53
  559. 203.188.252.10
  560. Hostnames: smtp.bangla.net
  561. Country: Bangladesh
  562. Organization: ISN
  563. Number of open ports: 1
  564.  
  565. Ports:
  566. 143
  567. 202.201.0.131
  568. Hostnames: dns.lzu.cn
  569. City: Lanzhou
  570. Country: China
  571. Organization: China Education and Research Network Center
  572. Number of open ports: 1
  573.  
  574. Ports:
  575. 80
  576. 134.184.15.13
  577. Hostnames: vnet3.vub.ac.be
  578. Country: Belgium
  579. Organization: Vrije Universiteit Brussel Campus Network
  580. Number of open ports: 2
  581.  
  582. Ports:
  583. 53
  584. 6789
  585. 213.41.78.13
  586. Hostnames: webshared-front3.fr.colt.net
  587. Country: United Kingdom
  588. Organization: COLT Technology Services Group Limited
  589. Number of open ports: 2
  590.  
  591. Ports:
  592. 80 Apache httpd
  593. 111
  594. 213.41.78.12
  595. Hostnames: webshared-front2.fr.colt.net
  596. Country: United Kingdom
  597. Organization: COLT Technology Services Group Limited
  598. Number of open ports: 3
  599.  
  600. Ports:
  601. 23
  602. 80 Apache httpd
  603. 111
  604. 213.41.78.14
  605. Hostnames: webshared-front4.fr.colt.net
  606. Country: United Kingdom
  607. Organization: COLT Technology Services Group Limited
  608. Number of open ports: 1
  609.  
  610. Ports:
  611. 80 Apache httpd (1.3.29)
  612. 210.135.90.7
  613. Hostnames: www2.din.or.jp
  614. Country: Japan
  615. Organization: Dolphin
  616. Number of open ports: 2
  617.  
  618. Ports:
  619. 37 rdate
  620. 111
RAW Paste Data