Advertisement
Guest User

InfinitySN - ZendMap - Dump - by DoGo

a guest
Sep 27th, 2017
127
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.55 KB | None | 0 0
  1.  
  2. Starting Nmap 7.60 ( https://nmap.org ) at 2017-09-27 00:35 CDT
  3. NSE: Loaded 280 scripts for scanning.
  4. NSE: Script Pre-scanning.
  5. Initiating NSE at 00:35
  6. NSE: [shodan-api] Error: Please specify your ShodanAPI key with the shodan-api.apikey argument
  7. NSE: [mtrace] A source IP must be provided through fromip argument.
  8. Completed NSE at 00:36, 10.39s elapsed
  9. Initiating NSE at 00:36
  10. Completed NSE at 00:36, 0.00s elapsed
  11. Initiating NSE at 00:36
  12. Completed NSE at 00:36, 0.00s elapsed
  13. Pre-scan script results:
  14. | broadcast-igmp-discovery:
  15. | 192.168.0.7
  16. | Interface: eth0
  17. | Version: 2
  18. | Group: 224.0.0.251
  19. | Description: mDNS (rfc6762)
  20. | 192.168.0.7
  21. | Interface: eth0
  22. | Version: 2
  23. | Group: 224.0.0.252
  24. | Description: Link-local Multicast Name Resolution (rfc4795)
  25. | 192.168.0.7
  26. | Interface: eth0
  27. | Version: 2
  28. | Group: 224.0.0.253
  29. | Description: Teredo (rfc4380)
  30. | 192.168.0.1
  31. | Interface: eth0
  32. | Version: 2
  33. | Group: 239.255.255.250
  34. | Description: Organization-Local Scope (rfc2365)
  35. |_ Use the newtargets script-arg to add the results as targets
  36. | targets-asn:
  37. |_ targets-asn.asn is a mandatory parameter
  38. Initiating Ping Scan at 00:36
  39. Scanning 54.67.61.91 [7 ports]
  40. Completed Ping Scan at 00:36, 0.22s elapsed (1 total hosts)
  41. Initiating Parallel DNS resolution of 1 host. at 00:36
  42. Completed Parallel DNS resolution of 1 host. at 00:36, 0.06s elapsed
  43. Initiating SYN Stealth Scan at 00:36
  44. Scanning ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91) [1000 ports]
  45. Discovered open port 22/tcp on 54.67.61.91
  46. SYN Stealth Scan Timing: About 5.70% done; ETC: 00:45 (0:08:33 remaining)
  47. Increasing send delay for 54.67.61.91 from 0 to 5 due to 11 out of 12 dropped probes since last increase.
  48. SYN Stealth Scan Timing: About 10.00% done; ETC: 00:46 (0:09:09 remaining)
  49. Increasing send delay for 54.67.61.91 from 5 to 10 due to 11 out of 12 dropped probes since last increase.
  50. Discovered open port 3001/tcp on 54.67.61.91
  51. SYN Stealth Scan Timing: About 15.95% done; ETC: 00:45 (0:08:00 remaining)
  52. SYN Stealth Scan Timing: About 28.10% done; ETC: 00:43 (0:05:10 remaining)
  53. Completed SYN Stealth Scan at 00:38, 138.92s elapsed (1000 total ports)
  54. Initiating UDP Scan at 00:38
  55. Scanning ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91) [1000 ports]
  56. Completed UDP Scan at 00:38, 7.88s elapsed (1000 total ports)
  57. Initiating Service scan at 00:38
  58. Scanning 1002 services on ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91)
  59. Service scan Timing: About 0.40% done
  60. Service scan Timing: About 3.29% done; ETC: 02:17 (1:35:26 remaining)
  61. Service scan Timing: About 6.29% done; ETC: 01:55 (1:12:32 remaining)
  62. Service scan Timing: About 9.28% done; ETC: 01:48 (1:03:32 remaining)
  63. Service scan Timing: About 12.28% done; ETC: 01:44 (0:58:07 remaining)
  64. Service scan Timing: About 15.27% done; ETC: 01:42 (0:54:06 remaining)
  65. Service scan Timing: About 20.56% done; ETC: 01:34 (0:44:18 remaining)
  66. Service scan Timing: About 21.26% done; ETC: 01:39 (0:48:09 remaining)
  67. Service scan Timing: About 26.45% done; ETC: 01:34 (0:40:56 remaining)
  68. Service scan Timing: About 30.14% done; ETC: 01:33 (0:38:05 remaining)
  69. Service scan Timing: About 30.24% done; ETC: 01:37 (0:41:15 remaining)
  70. Service scan Timing: About 35.43% done; ETC: 01:33 (0:35:43 remaining)
  71. Service scan Timing: About 41.42% done; ETC: 01:33 (0:32:19 remaining)
  72. Service scan Timing: About 47.41% done; ETC: 01:33 (0:28:57 remaining)
  73. Service scan Timing: About 53.39% done; ETC: 01:33 (0:25:37 remaining)
  74. Service scan Timing: About 59.38% done; ETC: 01:33 (0:22:18 remaining)
  75. Service scan Timing: About 65.37% done; ETC: 01:33 (0:19:00 remaining)
  76. Service scan Timing: About 71.36% done; ETC: 01:33 (0:15:42 remaining)
  77. Service scan Timing: About 77.35% done; ETC: 01:33 (0:12:24 remaining)
  78. Service scan Timing: About 83.33% done; ETC: 01:33 (0:09:07 remaining)
  79. Service scan Timing: About 88.82% done; ETC: 01:33 (0:06:09 remaining)
  80. Service scan Timing: About 94.81% done; ETC: 01:33 (0:02:51 remaining)
  81. Service scan Timing: About 99.10% done; ETC: 01:34 (0:00:30 remaining)
  82. Completed Service scan at 01:33, 3317.03s elapsed (1002 services on 1 host)
  83. Initiating OS detection (try #1) against ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91)
  84. Initiating Traceroute at 01:33
  85. Completed Traceroute at 01:33, 3.06s elapsed
  86. Initiating Parallel DNS resolution of 10 hosts. at 01:33
  87. Completed Parallel DNS resolution of 10 hosts. at 01:33, 6.68s elapsed
  88. NSE: Script scanning 54.67.61.91.
  89. Initiating NSE at 01:33
  90. NSE: [ip-geolocation-maxmind] You must specify a Maxmind database file with the maxmind_db argument.
  91. NSE: [ip-geolocation-maxmind] Download the database from http://dev.maxmind.com/geoip/legacy/geolite/
  92. Completed NSE at 01:35, 74.49s elapsed
  93. Initiating NSE at 01:35
  94. Completed NSE at 01:36, 49.01s elapsed
  95. Initiating NSE at 01:36
  96. Completed NSE at 01:36, 3.43s elapsed
  97. Nmap scan report for ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91)
  98. Host is up (0.076s latency).
  99. Not shown: 1000 open|filtered ports, 997 filtered ports
  100. PORT STATE SERVICE VERSION
  101. 22/tcp open ssh OpenSSH 6.6.1p1 Ubuntu 2ubuntu2.8 (Ubuntu Linux; protocol 2.0)
  102. |_banner: SSH-2.0-OpenSSH_6.6.1p1 Ubuntu-2ubuntu2.8
  103. | ssh-hostkey:
  104. | 1024 e7:bb:f9:46:dd:7b:6d:eb:f5:82:a9:8e:8e:5b:a1:d5 (DSA)
  105. | 2048 39:53:37:76:46:e2:43:85:2d:5c:e0:0a:51:1b:bf:86 (RSA)
  106. | 256 04:dd:40:43:65:60:f9:6a:bd:50:8e:8b:dd:43:57:eb (ECDSA)
  107. |_ 256 84:20:45:ed:51:06:01:4b:57:18:a7:33:4d:da:d5:d9 (EdDSA)
  108. | ssh2-enum-algos:
  109. | kex_algorithms: (8)
  110. | curve25519-sha256@libssh.org
  111. | ecdh-sha2-nistp256
  112. | ecdh-sha2-nistp384
  113. | ecdh-sha2-nistp521
  114. | diffie-hellman-group-exchange-sha256
  115. | diffie-hellman-group-exchange-sha1
  116. | diffie-hellman-group14-sha1
  117. | diffie-hellman-group1-sha1
  118. | server_host_key_algorithms: (4)
  119. | ssh-rsa
  120. | ssh-dss
  121. | ecdsa-sha2-nistp256
  122. | ssh-ed25519
  123. | encryption_algorithms: (16)
  124. | aes128-ctr
  125. | aes192-ctr
  126. | aes256-ctr
  127. | arcfour256
  128. | arcfour128
  129. | aes128-gcm@openssh.com
  130. | aes256-gcm@openssh.com
  131. | chacha20-poly1305@openssh.com
  132. | aes128-cbc
  133. | 3des-cbc
  134. | blowfish-cbc
  135. | cast128-cbc
  136. | aes192-cbc
  137. | aes256-cbc
  138. | arcfour
  139. | rijndael-cbc@lysator.liu.se
  140. | mac_algorithms: (19)
  141. | hmac-md5-etm@openssh.com
  142. | hmac-sha1-etm@openssh.com
  143. | umac-64-etm@openssh.com
  144. | umac-128-etm@openssh.com
  145. | hmac-sha2-256-etm@openssh.com
  146. | hmac-sha2-512-etm@openssh.com
  147. | hmac-ripemd160-etm@openssh.com
  148. | hmac-sha1-96-etm@openssh.com
  149. | hmac-md5-96-etm@openssh.com
  150. | hmac-md5
  151. | hmac-sha1
  152. | umac-64@openssh.com
  153. | umac-128@openssh.com
  154. | hmac-sha2-256
  155. | hmac-sha2-512
  156. | hmac-ripemd160
  157. | hmac-ripemd160@openssh.com
  158. | hmac-sha1-96
  159. | hmac-md5-96
  160. | compression_algorithms: (2)
  161. | none
  162. |_ zlib@openssh.com
  163. 3000/tcp closed ppp
  164. 3001/tcp open http Node.js Express framework
  165. | http-comments-displayer:
  166. | Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=ec2-54-67-61-91.us-west-1.compute.amazonaws.com
  167. |
  168. | Path: http://ec2-54-67-61-91.us-west-1.compute.amazonaws.com:3001/js/participant.js
  169. | Line number: 17
  170. | Comment:
  171. | // Signal received from another client
  172. |
  173. | Path: http://ec2-54-67-61-91.us-west-1.compute.amazonaws.com:3001/css/sample.css
  174. | Line number: 1
  175. | Comment:
  176. | /* Move down content because we have a fixed navbar that is 50px tall */
  177. |
  178. | Path: http://ec2-54-67-61-91.us-west-1.compute.amazonaws.com:3001/css/sample.css
  179. | Line number: 8
  180. | Comment:
  181. | /* Responsive: Portrait tablets and up */
  182. |
  183. | Path: http://ec2-54-67-61-91.us-west-1.compute.amazonaws.com:3001/history?page=101
  184. | Line number: 19
  185. | Comment:
  186. | <!-- Brand and toggle get grouped for better mobile display -->
  187. |
  188. | Path: http://ec2-54-67-61-91.us-west-1.compute.amazonaws.com:3001/css/sample.css
  189. | Line number: 10
  190. | Comment:
  191. |_ /* Remove padding from wrapping element since we kick in the grid classes here */
  192. |_http-date: Wed, 27 Sep 2017 06:34:21 GMT; -27s from local time.
  193. | http-headers:
  194. | X-Powered-By: Express
  195. | Access-Control-Allow-Origin: *
  196. | Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept
  197. | Content-Type: text/html; charset=utf-8
  198. | Content-Length: 2574
  199. | ETag: W/"a0e-WgmWGvPalA0AVJjJY2ZOdA"
  200. | Date: Wed, 27 Sep 2017 06:34:18 GMT
  201. | Connection: close
  202. |
  203. |_ (Request type: HEAD)
  204. | http-methods:
  205. |_ Supported Methods: GET HEAD POST OPTIONS
  206. |_http-mobileversion-checker: No mobile version detected.
  207. | http-referer-checker:
  208. | Spidering limited to: maxpagecount=30
  209. | https://static.opentok.com/v2/js/opentok.min.js
  210. | http://cdnjs.cloudflare.com/ajax/libs/jquery/1.10.2/jquery.min.js
  211. |_ http://cdnjs.cloudflare.com/ajax/libs/twitter-bootstrap/3.0.0/js/bootstrap.min.js
  212. |_http-security-headers:
  213. |_http-title: Archiving Sample
  214. | http-traceroute:
  215. |_ Possible reverse proxy detected.
  216. | http-useragent-tester:
  217. | Status for browser useragent: 200
  218. | Allowed User Agents:
  219. | Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)
  220. | libwww
  221. | lwp-trivial
  222. | libcurl-agent/1.0
  223. | PHP/
  224. | Python-urllib/2.5
  225. | GT::WWW
  226. | Snoopy
  227. | MFC_Tear_Sample
  228. | HTTP::Lite
  229. | PHPCrawl
  230. | URI::Fetch
  231. | Zend_Http_Client
  232. | http client
  233. | PECL::HTTP
  234. | Wget/1.13.4 (linux-gnu)
  235. |_ WWW-Mechanize/1.34
  236. |_http-xssed: No previously reported XSS vuln.
  237. Device type: general purpose
  238. Running: Linux 3.X|4.X
  239. OS CPE: cpe:/o:linux:linux_kernel:3 cpe:/o:linux:linux_kernel:4
  240. OS details: Linux 3.11 - 4.1
  241. Uptime guess: 26.024 days (since Fri Sep 1 01:01:46 2017)
  242. Network Distance: 16 hops
  243. TCP Sequence Prediction: Difficulty=265 (Good luck!)
  244. IP ID Sequence Generation: All zeros
  245. Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernel
  246.  
  247. Host script results:
  248. | asn-query:
  249. | BGP: 54.67.0.0/17 | Country: US
  250. | Origin AS: 16509 - AMAZON-02 - Amazon.com, Inc., US
  251. |_ Peer AS: 209 1273 1299 2603 2914 3257 3356 11164
  252. |_clock-skew: mean: -27s, deviation: 0s, median: -27s
  253. | fcrdns:
  254. | ec2-54-67-61-91.us-west-1.compute.amazonaws.com:
  255. | status: pass
  256. | addresses:
  257. |_ 54.67.61.91
  258. | firewalk:
  259. | HOP HOST PROTOCOL BLOCKED PORTS
  260. | 12 205.251.230.118 tcp 3-4,6-7,17,20
  261. |_ udp 3,7,9,13,17,19-22
  262. |_hostmap-robtex: ERROR: Script execution failed (use -d to debug)
  263. | ip-geolocation-geoplugin:
  264. |_54.67.61.91
  265. |_ipidseq: All zeros
  266. |_path-mtu: PMTU == 1500
  267. | qscan:
  268. | PORT FAMILY MEAN (us) STDDEV LOSS (%)
  269. | 22 0 72588.00 2000.76 0.0%
  270. | 3000 0 71719.78 2771.89 10.0%
  271. |_3001 1 70224.70 2549.59 0.0%
  272. | traceroute-geolocation:
  273. | HOP RTT ADDRESS GEOLOCATION
  274. | 1 8.01 192.168.0.1 - ,-
  275. | 2 ...
  276. | 3 14.80 172.30.3.141 - ,-
  277. | 4 23.73 po28.stlmo001cr1.mchsi.com (68.66.73.142) 37.751,-97.822 United States ()
  278. | 5 20.47 po10.stlmo001er1.mchsi.com (68.66.73.105) 37.751,-97.822 United States ()
  279. | 6 20.30 stlo-b1-link.telia.net (213.248.85.84) 47.000,8.000 Europe ()
  280. | 7 26.07 kanc-b1-link.telia.net (62.115.143.210) 47.000,8.000 Europe ()
  281. | 8 65.92 sjo-b21-link.telia.net (213.155.132.180) 47.000,8.000 Europe ()
  282. | 9 73.75 a100us-ic-151265-sjo-b21.c.telia.net (80.239.128.134) 47.000,8.000 Europe ()
  283. | 10 ...
  284. | 11 ...
  285. | 12 69.13 205.251.230.118 37.339,-121.891 United States (California)
  286. | 13 ...
  287. | 14 ...
  288. | 15 ...
  289. |_ 16 73.22 ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91) 37.339,-121.891 United States (California)
  290. |_whois-domain: You should provide a domain name.
  291. | whois-ip: Record found at whois.arin.net
  292. | netrange: 54.64.0.0 - 54.71.255.255
  293. | netname: AMAZON-2011L
  294. | orgname: Amazon Technologies Inc.
  295. | orgid: AT-88-Z
  296. | country: US stateprov: WA
  297. | orgtechname: Amazon EC2 Network Operations
  298. |_orgtechemail: amzn-noc-contact@amazon.com
  299.  
  300. TRACEROUTE (using port 3000/tcp)
  301. HOP RTT ADDRESS
  302. 1 8.01 ms 192.168.0.1
  303. 2 ...
  304. 3 14.80 ms 172.30.3.141
  305. 4 23.73 ms po28.stlmo001cr1.mchsi.com (68.66.73.142)
  306. 5 20.47 ms po10.stlmo001er1.mchsi.com (68.66.73.105)
  307. 6 20.30 ms stlo-b1-link.telia.net (213.248.85.84)
  308. 7 26.07 ms kanc-b1-link.telia.net (62.115.143.210)
  309. 8 65.92 ms sjo-b21-link.telia.net (213.155.132.180)
  310. 9 73.75 ms a100us-ic-151265-sjo-b21.c.telia.net (80.239.128.134)
  311. 10 ... 11
  312. 12 69.13 ms 205.251.230.118
  313. 13 ... 15
  314. 16 73.22 ms ec2-54-67-61-91.us-west-1.compute.amazonaws.com (54.67.61.91)
  315.  
  316. NSE: Script Post-scanning.
  317. Initiating NSE at 01:36
  318. Completed NSE at 01:36, 0.00s elapsed
  319. Initiating NSE at 01:36
  320. Completed NSE at 01:36, 0.00s elapsed
  321. Initiating NSE at 01:36
  322. Completed NSE at 01:36, 0.00s elapsed
  323. Read data files from: /usr/bin/../share/nmap
  324. OS and Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  325. Nmap done: 1 IP address (1 host up) scanned in 3615.43 seconds
  326. Raw packets sent: 4366 (164.492KB) | Rcvd: 9232 (2.205MB)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement