Advertisement
Guest User

Anonymous #OpNicaragua JTSEC Full Recon #6

a guest
Jun 23rd, 2018
343
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 36.85 KB | None | 0 0
  1. #######################################################################################################################################
  2. Hostname poderjudicial.gob.ni ISP Telgua
  3. Continent North America Flag
  4. NI
  5. Country Nicaragua Country Code NI
  6. Region Departamento de Managua Local time 23 Jun 2018 04:59 CST
  7. City Managua Postal Code Unknown
  8. IP Address 190.212.237.132 Latitude 12.151
  9. Longitude -86.268
  10. #######################################################################################################################################
  11. HostIP:190.212.237.132
  12. HostName:poderjudicial.gob.ni
  13.  
  14. Gathered Inet-whois information for 190.212.237.132
  15. ---------------------------------------------------------------------------------------------------------------------------------------
  16.  
  17. inetnum: 190.212.128/17
  18. status: allocated
  19. aut-num: N/A
  20. owner: TELEMATIX/ ENITEL
  21. ownerid: NI-TEEN-LACNIC
  22. responsible: Claro Nicaragua
  23. address: Enitel Las Palmas, del Banco Popular 3c al este, n/a, n/a
  24. address: NI - Managua -
  25. country: NI
  26. phone: +505 2502424 []
  27. owner-c: RJN8
  28. tech-c: RJN8
  29. abuse-c: RJN8
  30. inetrev: 190.212.224/19
  31. nserver: NS.ENITEL.NET.NI
  32. nsstat: 20180621 AA
  33. nslastaa: 20180621
  34. nserver: NS2.ENITEL.NET.NI
  35. nsstat: 20180621 AA
  36. nslastaa: 20180621
  37. nserver: NS3.ENITEL.NET.NI
  38. nsstat: 20180621 AA
  39. nslastaa: 20180621
  40. created: 20090511
  41. changed: 20130429
  42.  
  43. nic-hdl: RJN8
  44. person: Claro Nicaragua
  45. e-mail: gestion.seguridad@CLARO.COM.NI
  46. address: Managua, ,
  47. address: 505 - Managua - Ma
  48. country: NI
  49. phone: +505 121 []
  50. created: 20130429
  51. changed: 20130711
  52.  
  53. % whois.lacnic.net accepts only direct match queries.
  54. % Types of queries are: POCs, ownerid, CIDR blocks, IP
  55. % and AS numbers.
  56.  
  57.  
  58. Gathered Inic-whois information for poderjudicial.gob.ni
  59. ---------------------------------------------------------------------------------------------------------------------------------------
  60. Error: Unable to connect - Invalid Host
  61. ERROR: Connection to InicWhois Server ni.whois-servers.net failed
  62. close error
  63.  
  64. Gathered Netcraft information for poderjudicial.gob.ni
  65. ---------------------------------------------------------------------------------------------------------------------------------------
  66.  
  67. Retrieving Netcraft.com information for poderjudicial.gob.ni
  68. Netcraft.com Information gathered
  69.  
  70. Gathered Subdomain information for poderjudicial.gob.ni
  71. ---------------------------------------------------------------------------------------------------------------------------------------
  72. Searching Google.com:80...
  73. Searching Altavista.com:80...
  74. Found 0 possible subdomain(s) for host poderjudicial.gob.ni, Searched 0 pages containing 0 results
  75.  
  76. Gathered E-Mail information for poderjudicial.gob.ni
  77. ---------------------------------------------------------------------------------------------------------------------------------------
  78. Searching Google.com:80...
  79. Searching Altavista.com:80...
  80. Found 0 E-Mail(s) for host poderjudicial.gob.ni, Searched 0 pages containing 0 results
  81.  
  82. Gathered TCP Port information for 190.212.237.132
  83. ---------------------------------------------------------------------------------------------------------------------------------------
  84.  
  85. Port State
  86.  
  87. 53/tcp open
  88.  
  89. Portscan Finished: Scanned 150 ports, 5 ports were in state closed
  90.  
  91. #######################################################################################################################################
  92. [i] Scanning Site: http://poderjudicial.gob.ni
  93.  
  94.  
  95.  
  96. B A S I C I N F O
  97. =======================================================================================================================================
  98.  
  99.  
  100. [+] Site Title:
  101. [+] IP address: 190.212.237.132
  102. [+] Web Server: Could Not Detect
  103. [+] CMS: Could Not Detect
  104. [+] Cloudflare: Not Detected
  105. [+] Robots File: Could NOT Find robots.txt!
  106.  
  107.  
  108.  
  109. G E O I P L O O K U P
  110. =======================================================================================================================================
  111.  
  112. [i] IP Address: 190.212.237.132
  113. [i] Country: NI
  114. [i] State: Managua
  115. [i] City: Managua
  116. [i] Latitude: 12.150800
  117. [i] Longitude: -86.268303
  118.  
  119.  
  120.  
  121.  
  122.  
  123. D N S L O O K U P
  124. =======================================================================================================================================
  125.  
  126. ;; Truncated, retrying in TCP mode.
  127. poderjudicial.gob.ni. 40638 IN SOA ns.poderjudicial.gob.ni. root.localhost.poderjudicial.gob.ni. 2018051801 3600 1800 604800 7200
  128. poderjudicial.gob.ni. 40638 IN NS ns2.enitel.net.ni.
  129. poderjudicial.gob.ni. 40638 IN NS ns.poderjudicial.gob.ni.
  130. poderjudicial.gob.ni. 40638 IN A 190.212.237.132
  131. poderjudicial.gob.ni. 40638 IN MX 1 mail.poderjudicial.gob.ni.
  132. poderjudicial.gob.ni. 40638 IN TXT "v=spf1 ip4:190.212.237.186 -all"
  133. poderjudicial.gob.ni. 40638 IN NS ns.enitel.net.ni.
  134. poderjudicial.gob.ni. 40638 IN MX 10 smtpgateway.enitel.net.ni.
  135.  
  136.  
  137.  
  138.  
  139. S U B N E T C A L C U L A T I O N
  140. =======================================================================================================================================
  141.  
  142. Address = 190.212.237.132
  143. Network = 190.212.237.132 / 32
  144. Netmask = 255.255.255.255
  145. Broadcast = not needed on Point-to-Point links
  146. Wildcard Mask = 0.0.0.0
  147. Hosts Bits = 0
  148. Max. Hosts = 1 (2^0 - 0)
  149. Host Range = { 190.212.237.132 - 190.212.237.132 }
  150.  
  151.  
  152.  
  153. N M A P P O R T S C A N
  154. =======================================================================================================================================
  155.  
  156.  
  157. Starting Nmap 7.01 ( https://nmap.org ) at 2018-06-23 11:46 UTC
  158. Nmap scan report for poderjudicial.gob.ni (190.212.237.132)
  159. Host is up.
  160. rDNS record for 190.212.237.132: ns.poderjudicial.gob.ni
  161. PORT STATE SERVICE VERSION
  162. 21/tcp filtered ftp
  163. 22/tcp filtered ssh
  164. 23/tcp filtered telnet
  165. 80/tcp filtered http
  166. 110/tcp filtered pop3
  167. 143/tcp filtered imap
  168. 443/tcp filtered https
  169. 3389/tcp filtered ms-wbt-server
  170.  
  171. Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  172. Nmap done: 1 IP address (1 host up) scanned in 3.43 seconds
  173.  
  174.  
  175.  
  176. S U B - D O M A I N F I N D E R
  177. =======================================================================================================================================
  178.  
  179.  
  180. [i] Total Subdomains Found : 7
  181.  
  182. [+] Subdomain: kaikaia.poderjudicial.gob.ni
  183. [-] IP: 190.212.237.145
  184.  
  185. [+] Subdomain: aulavirtualiaej.poderjudicial.gob.ni
  186. [-] IP: 190.212.237.156
  187.  
  188. [+] Subdomain: cedij.poderjudicial.gob.ni
  189. [-] IP: 190.212.237.136
  190.  
  191. [+] Subdomain: mail.poderjudicial.gob.ni
  192. [-] IP: 190.212.237.186
  193.  
  194. [+] Subdomain: correo.poderjudicial.gob.ni
  195. [-] IP: 190.212.237.148
  196.  
  197. [+] Subdomain: ns.poderjudicial.gob.ni
  198. [-] IP: 190.212.237.132
  199.  
  200. [+] Subdomain: cedijapps.poderjudicial.gob.ni
  201. [-] IP: 190.212.237.147
  202.  
  203. #######################################################################################################################################
  204. [?] Enter the target: http://poderjudicial.gob.ni/
  205. [!] IP Address : 190.212.237.132
  206. [!] poderjudicial.gob.ni doesn't seem to use a CMS
  207. ---------------------------------------------------------------------------------------------------------------------------------------
  208. [~] Trying to gather whois information for poderjudicial.gob.ni
  209. [+] Whois information found
  210. [-] Unable to build response, visit https://who.is/whois/poderjudicial.gob.ni
  211. ---------------------------------------------------------------------------------------------------------------------------------------
  212. Starting Nmap 7.01 ( https://nmap.org ) at 2018-06-23 11:45 UTC
  213. Nmap scan report for ns.poderjudicial.gob.ni (190.212.237.132)
  214. Host is up.
  215. PORT STATE SERVICE VERSION
  216. 21/tcp filtered ftp
  217. 22/tcp filtered ssh
  218. 23/tcp filtered telnet
  219. 80/tcp filtered http
  220. 110/tcp filtered pop3
  221. 143/tcp filtered imap
  222. 443/tcp filtered https
  223. 3389/tcp filtered ms-wbt-server
  224. ---------------------------------------------------------------------------------------------------------------------------------------
  225.  
  226. [+] DNS Records
  227. ns2.enitel.net.ni. (200.62.64.65) AS14754 Telgua Nicaragua
  228. ns.poderjudicial.gob.ni. (190.212.237.132) AS14754 Telgua Nicaragua
  229. ns.enitel.net.ni. (200.64.62.1) AS8151 Uninet S.A. de C.V. Mexico
  230.  
  231. [+] MX Records
  232. 1 (190.212.237.186) AS14754 Telgua Nicaragua
  233.  
  234. [+] MX Records
  235. 10 (200.62.64.6) AS14754 Telgua Nicaragua
  236.  
  237. [+] Host Records (A)
  238. aulavirtualiaej.poderjudicial.gob.niHTTP: (190.212.237.156) AS14754 Telgua Nicaragua
  239. cedijapps.poderjudicial.gob.niHTTP: (190.212.237.147) AS14754 Telgua Nicaragua
  240. cedij.poderjudicial.gob.niHTTP: (136-237-212-190.enitel.net.ni) (190.212.237.136) AS14754 Telgua Nicaragua
  241. kaikaia.poderjudicial.gob.niHTTP: (145-237-212-190.enitel.net.ni) (190.212.237.145) AS14754 Telgua Nicaragua
  242. correo.poderjudicial.gob.ni (148-237-212-190.enitel.net.ni) (190.212.237.148) AS14754 Telgua Nicaragua
  243. mail.poderjudicial.gob.niHTTP: (mail.poderjudicial.gob.ni) (190.212.237.186) AS14754 Telgua Nicaragua
  244. ns.poderjudicial.gob.ni (ns.poderjudicial.gob.ni) (190.212.237.132) AS14754 Telgua Nicaragua
  245. suprema2.poderjudicial.gob.niHTTP: (suprema2.poderjudicial.gob.ni) (190.212.237.133) AS14754 Telgua Nicaragua
  246.  
  247. [+] TXT Records
  248. "v=spf1 ip4:190.212.237.186 -all"
  249.  
  250. [+] DNS Map: https://dnsdumpster.com/static/map/poderjudicial.gob.ni.png
  251.  
  252. [>] Initiating 3 intel modules
  253. [>] Loading Alpha module (1/3)
  254. [>] Beta module deployed (2/3)
  255. [>] Gamma module initiated (3/3)
  256.  
  257.  
  258. [+] Emails found:
  259. ---------------------------------------------------------------------------------------------------------------------------------------
  260. esolorzano@poderjudicial.gob.ni
  261. ghenriquez@poderjudicial.gob.ni
  262. ngpasquier@poderjudicial.gob.ni
  263. rsolis@poderjudicial.gob.ni
  264. vgmendiola@poderjudicial.gob.ni
  265. zduarte@poderjudicial.gob.ni
  266.  
  267. [+] Hosts found in search engines:
  268. ---------------------------------------------------------------------------------------------------------------------------------------
  269. [-] Resolving hostnames IPs...
  270. 190.212.237.147:cedijapps.poderjudicial.gob.ni
  271. 190.212.237.186:mail.poderjudicial.gob.ni
  272. 190.212.237.132:ns.poderjudicial.gob.ni
  273. 190.212.237.156:www.aulavirtualiaej.poderjudicial.gob.ni
  274. 190.212.237.147:www.cedijapps.poderjudicial.gob.ni
  275. 190.212.237.164:www.consultascausas.poderjudicial.gob.ni
  276. 190.212.237.133:www.poderjudicial.gob.ni
  277. [+] Virtual hosts:
  278. ---------------------------------------------------------------------------------------------------------------------------------------
  279. 190.212.237.186 www.amazon.es
  280. 190.212.237.186 mail.registropublico.gob.ni
  281. 190.212.237.133 www.poderjudicial.gob.ni
  282. #######################################################################################################################################
  283. Server: 10.211.254.254
  284. Address: 10.211.254.254#53
  285.  
  286. Non-authoritative answer:
  287. Name: poderjudicial.gob.ni
  288. Address: 190.212.237.132
  289.  
  290. poderjudicial.gob.ni has address 190.212.237.132
  291. poderjudicial.gob.ni mail is handled by 10 smtpgateway.enitel.net.ni.
  292. poderjudicial.gob.ni mail is handled by 1 mail.poderjudicial.gob.ni.
  293. #######################################################################################################################################
  294. Xprobe2 v.0.3 Copyright (c) 2002-2005 fyodor@o0o.nu, ofir@sys-security.com, meder@o0o.nu
  295.  
  296. [+] Target is poderjudicial.gob.ni
  297. [+] Loading modules.
  298. [+] Following modules are loaded:
  299. [x] [1] ping:icmp_ping - ICMP echo discovery module
  300. [x] [2] ping:tcp_ping - TCP-based ping discovery module
  301. [x] [3] ping:udp_ping - UDP-based ping discovery module
  302. [x] [4] infogather:ttl_calc - TCP and UDP based TTL distance calculation
  303. [x] [5] infogather:portscan - TCP and UDP PortScanner
  304. [x] [6] fingerprint:icmp_echo - ICMP Echo request fingerprinting module
  305. [x] [7] fingerprint:icmp_tstamp - ICMP Timestamp request fingerprinting module
  306. [x] [8] fingerprint:icmp_amask - ICMP Address mask request fingerprinting module
  307. [x] [9] fingerprint:icmp_port_unreach - ICMP port unreachable fingerprinting module
  308. [x] [10] fingerprint:tcp_hshake - TCP Handshake fingerprinting module
  309. [x] [11] fingerprint:tcp_rst - TCP RST fingerprinting module
  310. [x] [12] fingerprint:smb - SMB fingerprinting module
  311. [x] [13] fingerprint:snmp - SNMPv2c fingerprinting module
  312. [+] 13 modules registered
  313. [+] Initializing scan engine
  314. [+] Running scan engine
  315. [-] ping:tcp_ping module: no closed/open TCP ports known on 190.212.237.132. Module test failed
  316. [-] ping:udp_ping module: no closed/open UDP ports known on 190.212.237.132. Module test failed
  317. [-] No distance calculation. 190.212.237.132 appears to be dead or no ports known
  318. [+] Host: 190.212.237.132 is down (Guess probability: 0%)
  319. [+] Cleaning up scan engine
  320. [+] Modules deinitialized
  321. [+] Execution completed.
  322. #######################################################################################################################################
  323. ; <<>> DiG 9.11.3-2-Debian <<>> -x poderjudicial.gob.ni
  324. ;; global options: +cmd
  325. ;; Got answer:
  326. ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 48318
  327. ;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1
  328.  
  329. ;; OPT PSEUDOSECTION:
  330. ; EDNS: version: 0, flags:; udp: 512
  331. ;; QUESTION SECTION:
  332. ;ni.gob.poderjudicial.in-addr.arpa. IN PTR
  333.  
  334. ;; AUTHORITY SECTION:
  335. in-addr.arpa. 900 IN SOA b.in-addr-servers.arpa. nstld.iana.org. 2018013435 1800 900 604800 3600
  336.  
  337. ;; Query time: 228 msec
  338. ;; SERVER: 10.211.254.254#53(10.211.254.254)
  339. ;; WHEN: Sat Jun 23 07:39:19 EDT 2018
  340. ;; MSG SIZE rcvd: 130
  341.  
  342. dnsenum VERSION:1.2.4
  343.  
  344. ----- poderjudicial.gob.ni -----
  345.  
  346.  
  347. Host's addresses:
  348. __________________
  349.  
  350. poderjudicial.gob.ni. 10 IN A 190.212.237.132
  351.  
  352.  
  353. Name Servers:
  354. ______________
  355.  
  356. ns.enitel.net.ni. 40585 IN A 200.62.64.1
  357. ns2.enitel.net.ni. 35549 IN A 200.62.64.65
  358. ns.poderjudicial.gob.ni. 86400 IN A 190.212.237.132
  359.  
  360.  
  361. Mail (MX) Servers:
  362. ___________________
  363.  
  364. mail.poderjudicial.gob.ni. 86400 IN A 190.212.237.186
  365. smtpgateway.enitel.net.ni. 3600 IN A 200.62.64.6
  366.  
  367.  
  368. Trying Zone Transfers and getting Bind Versions:
  369. _________________________________________________
  370.  
  371.  
  372. Trying Zone Transfer for poderjudicial.gob.ni on ns2.enitel.net.ni ...
  373.  
  374. Trying Zone Transfer for poderjudicial.gob.ni on ns.enitel.net.ni ...
  375.  
  376. Trying Zone Transfer for poderjudicial.gob.ni on ns.poderjudicial.gob.ni ...
  377.  
  378. brute force file not specified, bay.
  379. ######################################################################################################################################
  380. [-] Enumerating subdomains now for poderjudicial.gob.ni
  381. [-] verbosity is enabled, will show the subdomains results in realtime
  382. [-] Searching now in Baidu..
  383. [-] Searching now in Yahoo..
  384. [-] Searching now in Google..
  385. [-] Searching now in Bing..
  386. [-] Searching now in Ask..
  387. [-] Searching now in Netcraft..
  388. [-] Searching now in DNSdumpster..
  389. [-] Searching now in Virustotal..
  390. [-] Searching now in ThreatCrowd..
  391. [-] Searching now in SSL Certificates..
  392. [-] Searching now in PassiveDNS..
  393. Virustotal: cedijapps.poderjudicial.gob.ni
  394. Virustotal: gestioneselectronicas.poderjudicial.gob.ni
  395. Virustotal: tasacion.poderjudicial.gob.ni
  396. Virustotal: formularioabogadonotario.poderjudicial.gob.ni
  397. Virustotal: ventanilla.poderjudicial.gob.ni
  398. Virustotal: www.poderjudicial.gob.ni
  399. Virustotal: www.app.poderjudicial.gob.ni
  400. Virustotal: www.siga.poderjudicial.gob.ni
  401. Virustotal: www.sigadelegaciones.poderjudicial.gob.ni
  402. Virustotal: www.imlgaleno.poderjudicial.gob.ni
  403. Virustotal: ns.poderjudicial.gob.ni
  404. Virustotal: www.sape.poderjudicial.gob.ni
  405. Virustotal: www.aulavirtualiaej.poderjudicial.gob.ni
  406. Virustotal: www.notificacionpj.poderjudicial.gob.ni
  407. Virustotal: defensoria.poderjudicial.gob.ni
  408. Virustotal: www.consultascausas.poderjudicial.gob.ni
  409. Virustotal: correo.poderjudicial.gob.ni
  410. Virustotal: www.cedij.poderjudicial.gob.ni
  411. Virustotal: www.defensoria.poderjudicial.gob.ni
  412. Virustotal: mail.poderjudicial.gob.ni
  413. Virustotal: www.causas.poderjudicial.gob.ni
  414. Virustotal: fenecidos.poderjudicial.gob.ni
  415. Virustotal: www.prensa.poderjudicial.gob.ni
  416. Virustotal: suprema2.poderjudicial.gob.ni
  417. PassiveDNS: mailsend.poderjudicial.gob.ni
  418. PassiveDNS: mail.poderjudicial.gob.ni
  419. PassiveDNS: sirufj.poderjudicial.gob.ni
  420. PassiveDNS: suprema2.poderjudicial.gob.ni
  421. PassiveDNS: ns.poderjudicial.gob.ni
  422. Bing: gestioneselectronicas.poderjudicial.gob.ni
  423. Bing: formularioabogadonotario.poderjudicial.gob.ni
  424. Bing: ventanilla.poderjudicial.gob.ni
  425. Bing: www.consultascausas.poderjudicial.gob.ni:30001
  426. Bing: tasacion.poderjudicial.gob.ni
  427. Bing: www.aulavirtualiaej.poderjudicial.gob.ni
  428. Bing: www.cedijapps.poderjudicial.gob.ni
  429. Bing: www.cedij.poderjudicial.gob.ni
  430. Bing: www.poderjudicial.gob.ni
  431. Bing: www.app.poderjudicial.gob.ni
  432. Bing: www.sape.poderjudicial.gob.ni:30006
  433. Bing: www.siga.poderjudicial.gob.ni:1024
  434. Yahoo: www.poderjudicial.gob.ni
  435. Yahoo: gestioneselectronicas.poderjudicial.gob.ni
  436. Yahoo: ventanilla.poderjudicial.gob.ni
  437. Yahoo: www.aulavirtualiaej.poderjudicial.gob.ni
  438. Yahoo: tasacion.poderjudicial.gob.ni
  439. Yahoo: formularioabogadonotario.poderjudicial.gob.ni
  440. Yahoo: www.app.poderjudicial.gob.ni
  441. Yahoo: www.cedij.poderjudicial.gob.ni
  442. Yahoo: cedijapps.poderjudicial.gob.ni
  443. DNSdumpster: kaikaia.poderjudicial.gob.ni
  444. DNSdumpster: mail.poderjudicial.gob.ni
  445. DNSdumpster: cedij.poderjudicial.gob.ni
  446. DNSdumpster: cedijapps.poderjudicial.gob.ni
  447. DNSdumpster: correo.poderjudicial.gob.ni
  448. DNSdumpster: ns.poderjudicial.gob.ni
  449. DNSdumpster: aulavirtualiaej.poderjudicial.gob.ni
  450. DNSdumpster: suprema2.poderjudicial.gob.ni
  451. Google: notificacionpj.poderjudicial.gob.ni
  452. Google: www.aulavirtualiaej.poderjudicial.gob.ni
  453. Google: www.cedij.poderjudicial.gob.ni
  454. Google: www.cedijapps.poderjudicial.gob.ni
  455. Google: formularioabogadonotario.poderjudicial.gob.ni
  456. Google: gestioneselectronicas.poderjudicial.gob.ni
  457. Google: ventanilla.poderjudicial.gob.ni
  458. Google: www.siga.poderjudicial.gob.ni:1024
  459. Google: www.app.poderjudicial.gob.ni
  460. [-] Saving results to file: /usr/share/sniper/loot/poderjudicial.gob.ni/domains/domains-poderjudicial.gob.ni.txt
  461. [-] Total Unique Subdomains Found: 34
  462. www.poderjudicial.gob.ni
  463. www.app.poderjudicial.gob.ni
  464. aulavirtualiaej.poderjudicial.gob.ni
  465. www.aulavirtualiaej.poderjudicial.gob.ni
  466. www.causas.poderjudicial.gob.ni
  467. cedij.poderjudicial.gob.ni
  468. www.cedij.poderjudicial.gob.ni
  469. cedijapps.poderjudicial.gob.ni
  470. www.cedijapps.poderjudicial.gob.ni
  471. www.consultascausas.poderjudicial.gob.ni
  472. correo.poderjudicial.gob.ni
  473. defensoria.poderjudicial.gob.ni
  474. www.defensoria.poderjudicial.gob.ni
  475. fenecidos.poderjudicial.gob.ni
  476. formularioabogadonotario.poderjudicial.gob.ni
  477. gestioneselectronicas.poderjudicial.gob.ni
  478. www.imlgaleno.poderjudicial.gob.ni
  479. kaikaia.poderjudicial.gob.ni
  480. mail.poderjudicial.gob.ni
  481. mailsend.poderjudicial.gob.ni
  482. notificacionpj.poderjudicial.gob.ni
  483. www.notificacionpj.poderjudicial.gob.ni
  484. ns.poderjudicial.gob.ni
  485. www.prensa.poderjudicial.gob.ni
  486. www.sape.poderjudicial.gob.ni
  487. www.siga.poderjudicial.gob.ni
  488. www.sigadelegaciones.poderjudicial.gob.ni
  489. sirufj.poderjudicial.gob.ni
  490. suprema2.poderjudicial.gob.ni
  491. tasacion.poderjudicial.gob.ni
  492. ventanilla.poderjudicial.gob.ni
  493. www.siga.poderjudicial.gob.ni:1024
  494. www.consultascausas.poderjudicial.gob.ni:30001
  495. www.sape.poderjudicial.gob.ni:30006
  496. #######################################################################################################################################
  497. autodiscover.poderjudicial.gob.ni
  498. correo.poderjudicial.gob.ni
  499. kaikaia.poderjudicial.gob.ni
  500. legacy.poderjudicial.gob.ni
  501. *.poderjudicial.gob.ni
  502. www.correo.poderjudicial.gob.ni
  503. #######################################################################################################################################
  504. __
  505. ____ _____ ___ ______ _/ /_____ ____ ___
  506. / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  507. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / / __/
  508. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  509. /_/ discover v0.5.0 - by @michenriksen
  510.  
  511. Identifying nameservers for poderjudicial.gob.ni... Done
  512. Using nameservers:
  513.  
  514. - 190.212.237.132
  515. - 200.62.64.65
  516. - 200.62.64.1
  517.  
  518. Checking for wildcard DNS... Done
  519.  
  520. Running collector: PassiveTotal... Skipped
  521. -> Key 'passivetotal_key' has not been set
  522. Running collector: Certificate Search... Done (6 hosts)
  523. Running collector: DNSDB... Done (11 hosts)
  524. Running collector: Riddler... Skipped
  525. -> Key 'riddler_username' has not been set
  526. Running collector: Threat Crowd... Done (0 hosts)
  527. Running collector: Dictionary... Done (27 hosts)
  528. Running collector: PTRArchive... Error
  529. -> PTRArchive returned unexpected response code: 404
  530. Running collector: Wayback Machine... Timed out
  531. Running collector: Censys... Skipped
  532. -> Key 'censys_secret' has not been set
  533. Running collector: HackerTarget... Done (8 hosts)
  534. Running collector: Google Transparency Report... Done (2 hosts)
  535. Running collector: PublicWWW... Done (0 hosts)
  536. Running collector: VirusTotal... Skipped
  537. -> Key 'virustotal' has not been set
  538. Running collector: Netcraft... Done (1 host)
  539. Running collector: Shodan... Skipped
  540. -> Key 'shodan' has not been set
  541.  
  542. Resolving 46 unique hosts...
  543. 190.212.237.132 .poderjudicial.gob.ni
  544. 190.212.237.156 aulavirtualiaej.poderjudicial.gob.ni
  545. 190.212.237.148 autodiscover.poderjudicial.gob.ni
  546. 190.212.237.136 cedij.poderjudicial.gob.ni
  547. 190.212.237.147 cedijapps.poderjudicial.gob.ni
  548. 190.212.237.148 correo.poderjudicial.gob.ni
  549. 190.212.237.145 kaikaia.poderjudicial.gob.ni
  550. 190.212.237.186 mail.poderjudicial.gob.ni
  551. 190.212.237.132 ns.poderjudicial.gob.ni
  552. 200.62.64.5 ns2.poderjudicial.gob.ni
  553. 190.212.237.132 poderjudicial.gob.ni
  554. 190.212.237.133 suprema2.poderjudicial.gob.ni
  555. 190.212.237.133 www.poderjudicial.gob.ni
  556.  
  557. Found subnets:
  558.  
  559. - 190.212.237.0-255 : 12 hosts
  560.  
  561. Wrote 13 hosts to:
  562.  
  563. - file:///root/aquatone/poderjudicial.gob.ni/hosts.txt
  564. - file:///root/aquatone/poderjudicial.gob.ni/hosts.json
  565. __
  566. ____ _____ ___ ______ _/ /_____ ____ ___
  567. / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  568. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / / __/
  569. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  570. /_/ takeover v0.5.0 - by @michenriksen
  571.  
  572. Loaded 13 hosts from /root/aquatone/poderjudicial.gob.ni/hosts.json
  573. Loaded 25 domain takeover detectors
  574.  
  575. Identifying nameservers for poderjudicial.gob.ni... Done
  576. Using nameservers:
  577.  
  578. - 200.62.64.65
  579. - 190.212.237.132
  580. - 200.62.64.1
  581.  
  582. Checking hosts for domain takeover vulnerabilities...
  583.  
  584. Finished checking hosts:
  585.  
  586. - Vulnerable : 0
  587. - Not Vulnerable : 13
  588.  
  589. Wrote 0 potential subdomain takeovers to:
  590.  
  591. - file:///root/aquatone/poderjudicial.gob.ni/takeovers.json
  592.  
  593. __
  594. ____ _____ ___ ______ _/ /_____ ____ ___
  595. / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  596. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / / __/
  597. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  598. /_/ scan v0.5.0 - by @michenriksen
  599.  
  600. Loaded 13 hosts from /root/aquatone/poderjudicial.gob.ni/hosts.json
  601.  
  602. Probing 18 ports...
  603. 80/tcp 190.212.237.145 kaikaia.poderjudicial.gob.ni
  604. 443/tcp 190.212.237.145 kaikaia.poderjudicial.gob.ni
  605. 80/tcp 190.212.237.133 suprema2.poderjudicial.gob.ni, www.poderjudicial.gob.ni
  606. 80/tcp 190.212.237.136 cedij.poderjudicial.gob.ni
  607. 80/tcp 190.212.237.148 autodiscover.poderjudicial.gob.ni, correo.poderjudicial.gob.ni
  608. 443/tcp 190.212.237.148 autodiscover.poderjudicial.gob.ni, correo.poderjudicial.gob.ni
  609. 443/tcp 190.212.237.133 suprema2.poderjudicial.gob.ni, www.poderjudicial.gob.ni
  610. 80/tcp 190.212.237.156 aulavirtualiaej.poderjudicial.gob.ni
  611. 80/tcp 190.212.237.147 cedijapps.poderjudicial.gob.ni
  612. 80/tcp 190.212.237.186 mail.poderjudicial.gob.ni
  613.  
  614. Wrote open ports to file:///root/aquatone/poderjudicial.gob.ni/open_ports.txt
  615. Wrote URLs to file:///root/aquatone/poderjudicial.gob.ni/urls.txt
  616. __
  617. ____ _____ ___ ______ _/ /_____ ____ ___
  618. / __ `/ __ `/ / / / __ `/ __/ __ \/ __ \/ _ \
  619. / /_/ / /_/ / /_/ / /_/ / /_/ /_/ / / / / __/
  620. \__,_/\__, /\__,_/\__,_/\__/\____/_/ /_/\___/
  621. /_/ gather v0.5.0 - by @michenriksen
  622. #######################################################################################################################################
  623. ------------------------------------
  624.  
  625. Total hosts: 40
  626.  
  627. [-] Resolving hostnames IPs...
  628.  
  629. .poderjudicial.gob.ni : empty
  630. autodiscover.poderjudicial.gob.ni : 190.212.237.148
  631. cedijapps.poderjudicial.gob.ni : 190.212.237.147
  632. correo.poderjudicial.gob.ni : 190.212.237.148
  633. defensoria.poderjudicial.gob.ni : empty
  634. domaininfo.www.poderjudicial.gob.ni : empty
  635. fenecidos.poderjudicial.gob.ni : 190.212.237.141
  636. formularioabogadonotario.poderjudicial.gob.ni : 190.212.237.180
  637. gestioneselectronicas.poderjudicial.gob.ni : 190.212.237.165
  638. kaikaia.poderjudicial.gob.ni : 190.212.237.145
  639. legacy.poderjudicial.gob.ni : empty
  640. mail.poderjudicial.gob.ni : 190.212.237.186
  641. ns.poderjudicial.gob.ni : 190.212.237.132
  642. suprema2.poderjudicial.gob.ni : 190.212.237.133
  643. tasacion.poderjudicial.gob.ni : 190.212.237.171
  644. ventanilla.poderjudicial.gob.ni : 190.212.237.171
  645. www.app.poderjudicial.gob.ni : 190.212.237.141
  646. www.aulavirtualiaej.poderjudicial.gob.ni : 190.212.237.156
  647. www.causas.poderjudicial.gob.ni : empty
  648. www.cedij.poderjudicial.gob.ni : 190.212.237.136
  649. www.cedijapps.poderjudicial.gob.ni : 190.212.237.147
  650. www.consultascausas.poderjudicial.gob.ni : 190.212.237.164
  651. www.correo.poderjudicial.gob.ni : empty
  652. www.defensoria.poderjudicial.gob.ni : empty
  653. www.imlgaleno.poderjudicial.gob.ni : 190.212.237.158
  654. www.notificacionpj.poderjudicial.gob.ni : 186.1.28.4
  655. www.poderjudicial.gob.ni : 190.212.237.133
  656. www.prensa.poderjudicial.gob.ni : 190.212.237.141
  657. www.sape.poderjudicial.gob.ni : 190.212.237.163
  658. www.siga.poderjudicial.gob.ni : 190.212.237.163
  659. www.sigadelegaciones.poderjudicial.gob.ni : 190.212.237.163
  660.  
  661. [+] Virtual hosts:
  662. ------------------
  663. ns.poderjudicial.gob.ni www.amazon.es
  664.  
  665. ----------------------------------------
  666.  
  667. [1/25] /webhp?hl=en-CA
  668. [x] Error downloading /webhp?hl=en-CA
  669. [2/25] http://www.poderjudicial.gob.ni/ej/Memoria_IAEJ_2014.pdf
  670. [x] Error downloading http://www.poderjudicial.gob.ni/ej/Memoria_IAEJ_2014.pdf
  671. [3/25] http://www.poderjudicial.gob.ni/arc-pdf/plandf.pdf
  672. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/plandf.pdf
  673. [4/25] https://www.poderjudicial.gob.ni/dgtic/pdf/001.pdf
  674. [x] Error downloading https://www.poderjudicial.gob.ni/dgtic/pdf/001.pdf
  675. [5/25] http://www.poderjudicial.gob.ni/arc-pdf/spcircular.pdf
  676. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/spcircular.pdf
  677. [6/25] https://www.poderjudicial.gob.ni/arc-pdf/informej2004.pdf
  678. [x] Error downloading https://www.poderjudicial.gob.ni/arc-pdf/informej2004.pdf
  679. [7/25] http://www.poderjudicial.gob.ni/arc-pdf/incdj.pdf
  680. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/incdj.pdf
  681. [8/25] https://www.poderjudicial.gob.ni/arc-pdf/pcdf2005.pdf
  682. [x] Error downloading https://www.poderjudicial.gob.ni/arc-pdf/pcdf2005.pdf
  683. [9/25] https://www.poderjudicial.gob.ni/pjupload/noticia_reciente/ley476.pdf
  684. [x] Error downloading https://www.poderjudicial.gob.ni/pjupload/noticia_reciente/ley476.pdf
  685. [10/25] http://www.poderjudicial.gob.ni/arc-pdf/pla2005.pdf
  686. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/pla2005.pdf
  687. [11/25] http://www.poderjudicial.gob.ni/arc-pdf/diinfo.pdf
  688. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/diinfo.pdf
  689. [12/25] https://www.poderjudicial.gob.ni/arc-pdf/ley260.pdf
  690. [x] Error downloading https://www.poderjudicial.gob.ni/arc-pdf/ley260.pdf
  691. [13/25] http://www.poderjudicial.gob.ni/arc-pdf/ley_278.pdf
  692. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/ley_278.pdf
  693. [14/25] https://www.poderjudicial.gob.ni/arc-pdf/leyamparo.pdf
  694. [x] Error downloading https://www.poderjudicial.gob.ni/arc-pdf/leyamparo.pdf
  695. [15/25] http://www.poderjudicial.gob.ni/arc-pdf/conmasa.pdf
  696. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/conmasa.pdf
  697. [16/25] http://www.poderjudicial.gob.ni/arc-pdf/mujeres.pdf
  698. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/mujeres.pdf
  699. [17/25] https://www.poderjudicial.gob.ni/arc-pdf/planq.pdf
  700. [x] Error downloading https://www.poderjudicial.gob.ni/arc-pdf/planq.pdf
  701. [18/25] http://www.poderjudicial.gob.ni/arc-pdf/cosejo.pdf
  702. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/cosejo.pdf
  703. [19/25] http://www.poderjudicial.gob.ni/arc-pdf/0101.pdf
  704. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/0101.pdf
  705. [20/25] http://www.poderjudicial.gob.ni/arc-pdf/aran01.pdf
  706. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/aran01.pdf
  707. [21/25] http://www.poderjudicial.gob.ni/arc-pdf/01.pdf
  708. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/01.pdf
  709. [22/25] http://www.poderjudicial.gob.ni/arc-pdf/ctp.pdf
  710. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/ctp.pdf
  711. [23/25] http://www.poderjudicial.gob.ni/arc-pdf/spin3.pdf
  712. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/spin3.pdf
  713. [24/25] http://www.poderjudicial.gob.ni/arc-pdf/ley501.pdf
  714. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/ley501.pdf
  715. [25/25] http://www.poderjudicial.gob.ni/arc-pdf/spsen24.pdf
  716. [x] Error downloading http://www.poderjudicial.gob.ni/arc-pdf/spsen24.pdf
  717. #######################################################################################################################################
  718. Starting Nmap 7.70 ( https://nmap.org ) at 2018-06-23 07:46 EDT
  719. Nmap scan report for poderjudicial.gob.ni (190.212.237.132)
  720. Host is up (0.59s latency).
  721. Other addresses for poderjudicial.gob.ni (not scanned): 200.62.64.1 200.62.64.65
  722. rDNS record for 190.212.237.132: ns.poderjudicial.gob.ni
  723. Not shown: 469 closed ports, 6 filtered ports
  724. Some closed ports may be reported as filtered due to --defeat-rst-ratelimit
  725. PORT STATE SERVICE
  726. 53/tcp open domain
  727.  
  728. Nmap done: 1 IP address (1 host up) scanned in 8.68 seconds
  729. #######################################################################################################################################
  730. Starting Nmap 7.70 ( https://nmap.org ) at 2018-06-23 07:46 EDT
  731. Nmap scan report for poderjudicial.gob.ni (190.212.237.132)
  732. Host is up (0.34s latency).
  733. Other addresses for poderjudicial.gob.ni (not scanned): 200.62.64.1 200.62.64.65
  734. rDNS record for 190.212.237.132: ns.poderjudicial.gob.ni
  735.  
  736. PORT STATE SERVICE
  737. 53/udp open domain
  738. 67/udp open|filtered dhcps
  739. 68/udp open|filtered dhcpc
  740. 69/udp open|filtered tftp
  741. 88/udp open|filtered kerberos-sec
  742. 123/udp open|filtered ntp
  743. 137/udp open|filtered netbios-ns
  744. 138/udp open|filtered netbios-dgm
  745. 139/udp open|filtered netbios-ssn
  746. 161/udp open|filtered snmp
  747. 162/udp open|filtered snmptrap
  748. 389/udp open|filtered ldap
  749. 520/udp open|filtered route
  750. 2049/udp open|filtered nfs
  751.  
  752. Nmap done: 1 IP address (1 host up) scanned in 6.32 seconds
  753. #######################################################################################################################################
  754. Starting Nmap 7.70 ( https://nmap.org ) at 2018-06-23 07:46 EDT
  755. Nmap scan report for poderjudicial.gob.ni (190.212.237.132)
  756. Host is up (0.34s latency).
  757. Other addresses for poderjudicial.gob.ni (not scanned): 200.62.64.1 200.62.64.65
  758. rDNS record for 190.212.237.132: ns.poderjudicial.gob.ni
  759.  
  760. PORT STATE SERVICE VERSION
  761. 53/tcp open domain ISC BIND 9.9.4 (RedHat Enterprise Linux 7)
  762. |_dns-fuzz: Server didn't response to our probe, can't fuzz
  763. | dns-nsec-enum:
  764. |_ No NSEC records found
  765. | dns-nsec3-enum:
  766. |_ DNSSEC NSEC3 not supported
  767. | dns-nsid:
  768. |_ bind.version: 9.9.4-RedHat-9.9.4-38.el7_3.3
  769. Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port
  770. Device type: WAP
  771. Running: D-Link embedded, TRENDnet embedded
  772. OS CPE: cpe:/h:dlink:dwl-624%2b cpe:/h:dlink:dwl-2000ap cpe:/h:trendnet:tew-432brp
  773. OS details: D-Link DWL-624+ or DWL-2000AP, or TRENDnet TEW-432BRP WAP
  774. Network Distance: 1 hop
  775. Service Info: OS: Linux; CPE: cpe:/o:redhat:enterprise_linux:7
  776.  
  777. Host script results:
  778. | dns-brute:
  779. |_ DNS Brute-force hostnames: No results.
  780.  
  781. TRACEROUTE (using port 53/tcp)
  782. HOP RTT ADDRESS
  783. 1 356.44 ms ns.poderjudicial.gob.ni (190.212.237.132)
  784. #######################################################################################################################################
  785. Starting Nmap 7.01 ( https://nmap.org ) at 2018-06-23 11:59 UTC
  786. Nmap scan report for poderjudicial.gob.ni (190.212.237.132)
  787. Host is up.
  788. rDNS record for 190.212.237.132: ns.poderjudicial.gob.ni
  789. PORT STATE SERVICE VERSION
  790. 21/tcp filtered ftp
  791. 22/tcp filtered ssh
  792. 23/tcp filtered telnet
  793. 80/tcp filtered http
  794. 110/tcp filtered pop3
  795. 143/tcp filtered imap
  796. 443/tcp filtered https
  797. 3389/tcp filtered ms-wbt-server
  798.  
  799. Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
  800. Nmap done: 1 IP address (1 host up) scanned in 3.67 seconds
  801. #######################################################################################################################################
  802. Start: Sat Jun 23 11:59:30 2018
  803. HOST: whatweb Loss% Snt Last Avg Best Wrst StDev
  804. 1.|-- 45.55.64.254 0.0% 3 10.3 4.2 0.6 10.3 5.3
  805. 2.|-- 138.197.248.34 0.0% 3 0.6 0.5 0.3 0.6 0.0
  806. 3.|-- 138.197.244.32 0.0% 3 1.3 1.0 0.8 1.3 0.0
  807. 4.|-- ix-ae-3-0.tcore1.n75-new-york.as6453.net 0.0% 3 0.9 0.9 0.9 0.9 0.0
  808. 5.|-- if-ae-12-2.tcore2.nto-new-york.as6453.net 0.0% 3 1.0 1.2 1.0 1.4 0.0
  809. 6.|-- ae9.cr8-nyc3.ip4.gtt.net 0.0% 3 1.0 1.0 1.0 1.1 0.0
  810. 7.|-- xe-1-1-4.cr0-mia1.ip4.gtt.net 0.0% 3 32.0 32.0 32.0 32.0 0.0
  811. 8.|-- ip4.gtt.net 0.0% 3 72.7 73.6 72.7 74.7 1.0
  812. 9.|-- ??? 100.0 3 0.0 0.0 0.0 0.0 0.0
  813.  
  814. #######################################################################################################################################
  815. [*] Performing General Enumeration of Domain: poderjudicial.gob.ni
  816. [-] DNSSEC is not configured for poderjudicial.gob.ni
  817. [*] SOA ns.poderjudicial.gob.ni 190.212.237.132
  818. [*] NS ns2.enitel.net.ni 200.62.64.65
  819. [*] NS ns.poderjudicial.gob.ni 190.212.237.132
  820. [*] Bind Version for 190.212.237.132 9.9.4-RedHat-9.9.4-38.el7_3.3
  821. [*] NS ns.enitel.net.ni 200.62.64.1
  822. [*] MX smtpgateway.enitel.net.ni 200.62.64.6
  823. [*] MX mail.poderjudicial.gob.ni 190.212.237.186
  824. [*] A poderjudicial.gob.ni 200.62.64.65
  825. [*] A poderjudicial.gob.ni 200.62.64.1
  826. [*] A poderjudicial.gob.ni 190.212.237.132
  827. [*] TXT poderjudicial.gob.ni v=spf1 ip4:190.212.237.186 -all
  828. [*] Enumerating SRV Records
  829. [-] No SRV Records Found for poderjudicial.gob.ni
  830. #######################################################################################################################################
  831. [*] Processing domain poderjudicial.gob.ni
  832. [+] Getting nameservers
  833. 200.62.64.1 - ns.enitel.net.ni
  834. 200.62.64.65 - ns2.enitel.net.ni
  835. 190.212.237.132 - ns.poderjudicial.gob.ni
  836. [-] Zone transfer failed
  837. [+] TXT records found
  838. "v=spf1 ip4:190.212.237.186 -all"
  839. [+] MX records found, added to target list
  840. 10 smtpgateway.enitel.net.ni.
  841. 1 mail.poderjudicial.gob.ni.
  842. [*] Scanning poderjudicial.gob.ni for A records
  843. 200.62.64.1 - poderjudicial.gob.ni
  844. 190.212.237.148 - autodiscover.poderjudicial.gob.ni
  845. 190.212.237.148 - correo.poderjudicial.gob.ni
  846. 190.212.237.172 - demo.poderjudicial.gob.ni
  847. 190.212.237.186 - mail.poderjudicial.gob.ni
  848. 190.212.237.132 - ns.poderjudicial.gob.ni
  849. 200.62.64.5 - ns2.poderjudicial.gob.ni
  850. 190.212.237.148 - owa.poderjudicial.gob.ni
  851. 190.212.237.133 - www.poderjudicial.gob.ni
  852. #######################################################################################################################################
  853. Ip Address Status Type Domain Name Server
  854. ---------- ------ ---- ----------- ------
  855. 190.212.237.148 302 host correo.poderjudicial.gob.ni
  856. 190.212.237.172 302 host demo.poderjudicial.gob.ni
  857. 190.212.237.186 200 host mail.poderjudicial.gob.ni Apache
  858. 190.212.237.132 host ns.poderjudicial.gob.ni
  859. 200.62.64.5 host ns2.poderjudicial.gob.ni
  860. 190.212.237.148 302 host owa.poderjudicial.gob.ni
  861. 190.212.237.133 302 host www.poderjudicial.gob.ni
  862. #######################################################################################################################################
  863. Anonymous #OpNicaragua JTSEC Full Recon #6
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement