Guest User

http://www.indianaoathkeepers.org

a guest
Sep 28th, 2017
38
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.14 KB | None | 0 0
  1. mekijembut.info [69.10.62.204]
  2.  
  3. Starting Nmap ( http://nmap.org ) at 2017-09-28 12:18 EEST
  4. NSE: Loaded 29 scripts for scanning.
  5. Initiating Ping Scan at 12:18
  6. Scanning 69.10.62.204 [4 ports]
  7. Completed Ping Scan at 12:18, 0.22s elapsed (1 total hosts)
  8. Initiating SYN Stealth Scan at 12:18
  9. Scanning mekijembut.info (69.10.62.204) [100 ports]
  10. Discovered open port 995/tcp on 69.10.62.204
  11. Discovered open port 587/tcp on 69.10.62.204
  12. Discovered open port 993/tcp on 69.10.62.204
  13. Discovered open port 110/tcp on 69.10.62.204
  14. Discovered open port 21/tcp on 69.10.62.204
  15. Discovered open port 22/tcp on 69.10.62.204
  16. Discovered open port 53/tcp on 69.10.62.204
  17. Discovered open port 80/tcp on 69.10.62.204
  18. Discovered open port 25/tcp on 69.10.62.204
  19. Discovered open port 143/tcp on 69.10.62.204
  20. Discovered open port 443/tcp on 69.10.62.204
  21. Discovered open port 3306/tcp on 69.10.62.204
  22. Discovered open port 465/tcp on 69.10.62.204
  23. Completed SYN Stealth Scan at 12:19, 6.82s elapsed (100 total ports)
  24. Initiating Service scan at 12:19
  25. ----------------------------------------------------------------------------------------------------------------------------------
  26. Params: 69.10.62.204
  27. Host 69.10.62.204
  28. Ports Top 100 common ports
  29. Ping host True
  30. Detect OS True
  31. Detect svc version True
  32. Traceroute True
  33. ---------------------------------------------------------------------------------------------------------------------------------
  34. http://www.indianaoathkeepers.org
  35. Showing results for: INDIANAOATHKEEPERS.ORG
  36. Original Query: www.indianaoathkeepers.org
  37.  
  38. Contact Information
  39. Registrant Contact
  40. Name: Indiana OathKeepers
  41. Organization: Indiana Oath Keepers
  42. Mailing Address: PO BOX 654, WESTFIELD Indiana 46074 US
  43. Phone: +1.3174935476
  44. Ext:
  45. Fax:
  46. Fax Ext:
  47. Email:iokpubreg@indianaoathkeepers.org
  48. Admin Contact
  49. Name: Indiana OathKeepers
  50. Organization: Indiana Oath Keepers
  51. Mailing Address: PO BOX 654, WESTFIELD Indiana 46074 US
  52. Phone: +1.3174935476
  53. Ext:
  54. Fax:
  55. Fax Ext:
  56. Email:iokpubreg@indianaoathkeepers.org
  57. Tech Contact
  58. Name: Indiana OathKeepers
  59. Organization: Indiana Oath Keepers
  60. Mailing Address: PO BOX 654, WESTFIELD Indiana 46074 US
  61. Phone: +1.3174935476
  62. Ext:
  63. Fax:
  64. Fax Ext:
  65. Email:iokpubreg@indianaoathkeepers.org
  66. Registrar
  67. WHOIS Server:
  68. URL:
  69. Registrar:
  70. IANA ID:
  71. Abuse Contact Email:
  72. Abuse Contact Phone:
  73. Status
  74. Domain Status:clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
  75. Domain Status:clientRenewProhibited https://icann.org/epp#clientRenewProhibited
  76. Domain Status:clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  77. Domain Status:clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  78. Domain Status:autoRenewPeriod https://icann.org/epp#autoRenewPeriod
  79. Important Dates
  80. Updated Date: 2017-09-15
  81. Created Date: 2016-09-14
  82. Registry Expiry Date: 2018-09-14
  83. Name Servers
  84. DNS2009A.TROUBLE-FREE.NET
  85. DNS2009B.TROUBLE-FREE.NET
  86. Raw WHOIS Record
  87. Domain Name: INDIANAOATHKEEPERS.ORG
  88. Registry Domain ID: D402200000000026993-LROR
  89. Registrar WHOIS Server:
  90. Registrar URL: http://www.godaddy.com
  91. Updated Date: 2017-09-15T18:57:53Z
  92. Creation Date: 2016-09-14T19:45:38Z
  93. Registry Expiry Date: 2018-09-14T19:45:38Z
  94. Registrar Registration Expiration Date:
  95. Registrar: GoDaddy.com, LLC
  96. Registrar IANA ID: 146
  97. Registrar Abuse Contact Email:
  98. Registrar Abuse Contact Phone:
  99. Reseller:
  100. Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
  101. Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited
  102. Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
  103. Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
  104. Domain Status: autoRenewPeriod https://icann.org/epp#autoRenewPeriod
  105. Registry Registrant ID: C182796220-LROR
  106. Registrant Name: Indiana OathKeepers
  107. Registrant Organization: Indiana Oath Keepers
  108. Registrant Street: PO BOX 654
  109. Registrant City: WESTFIELD
  110. Registrant State/Province: Indiana
  111. Registrant Postal Code: 46074
  112. Registrant Country: US
  113. Registrant Phone: +1.3174935476
  114. Registrant Phone Ext:
  115. Registrant Fax:
  116. Registrant Fax Ext:
  117. Registrant Email: iokpubreg@indianaoathkeepers.org
  118. Registry Admin ID: C182796222-LROR
  119. Admin Name: Indiana OathKeepers
  120. Admin Organization: Indiana Oath Keepers
  121. Admin Street: PO BOX 654
  122. Admin City: WESTFIELD
  123. Admin State/Province: Indiana
  124. Admin Postal Code: 46074
  125. Admin Country: US
  126. Admin Phone: +1.3174935476
  127. Admin Phone Ext:
  128. Admin Fax:
  129. Admin Fax Ext:
  130. Admin Email: iokpubreg@indianaoathkeepers.org
  131. Registry Tech ID: C182796221-LROR
  132. Tech Name: Indiana OathKeepers
  133. Tech Organization: Indiana Oath Keepers
  134. Tech Street: PO BOX 654
  135. Tech City: WESTFIELD
  136. Tech State/Province: Indiana
  137. Tech Postal Code: 46074
  138. Tech Country: US
  139. Tech Phone: +1.3174935476
  140. Tech Phone Ext:
  141. Tech Fax:
  142. Tech Fax Ext:
  143. Tech Email: iokpubreg@indianaoathkeepers.org
  144. Name Server: DNS2009A.TROUBLE-FREE.NET
  145. Name Server: DNS2009B.TROUBLE-FREE.NET
  146. DNSSEC: unsigned
  147. URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
  148. >>> Last update of WHOIS database: 2017-09-28T09:32:39Z <<<
  149.  
  150. For more information on Whois status codes, please visit https://icann.org/epp
  151. ---------------------------------------------------------------------------------------------------------------------------------
  152. Summary
  153. Overall risk level:
  154. Medium
  155. Risk ratings:
  156. High:
  157. 0
  158. Medium:
  159. 1
  160. Low:
  161. 2
  162. Info:
  163. 8
  164. Scan information:
  165. Start time: 2017-09-28 12:21:06
  166. Finish time: 2017-09-28 12:21:16
  167. Scan duration: 10.0 seconds
  168. Tests performed: 11/11
  169. Scan status: Finished
  170. Findings
  171. Communication is not secure
  172. http://www.indianaoathkeepers.org/
  173. Details
  174. Risk description:
  175. The communication between the web browser and the server is done using the HTTP protocol, which transmits data unencrypted over the network. Thus, an attacker who manages to intercept the communication at the network level, is able to read and modify the data transmitted (including passwords, secret tokens, credit card information and other sensitive data).
  176.  
  177. Recommendation:
  178. We recommend you to reconfigure the web server to use HTTPS - which encrypts the communication between the web browser and the server.
  179. Server software and technology found
  180. Software / Version Category
  181. LiteSpeed Web Servers
  182. RequireJS JavaScript Frameworks
  183. jQuery 1.8.3 JavaScript Frameworks
  184. Details
  185. Missing HTTP security headers
  186. HTTP Security Header Header Role Status
  187. X-Frame-Options Protects against Clickjacking attacks Not set
  188. X-XSS-Protection Mitigates Cross-Site Scripting (XSS) attacks Not set
  189. X-Content-Type-Options Prevents possible phishing or XSS attacks Not set
  190. Details
  191. Risk description:
  192. Because the X-Frame-Options header is not sent by the server, an attacker could embed this website into an iframe of a third party website. By manipulating the display attributes of the iframe, the attacker could trick the user into performing mouse clicks in the application, thus performing activities without user's consent (ex: delete user, subscribe to newsletter, etc). This is called a Clickjacking attack and it is described in detail here:
  193. https://www.owasp.org/index.php/Clickjacking
  194.  
  195. The X-XSS-Protection HTTP header instructs the browser to stop loading web pages when they detect reflected Cross-Site Scripting (XSS) attacks. Lack of this header exposes application users to XSS attacks in case the web application contains such vulnerability.
  196.  
  197. The HTTP X-Content-Type-Options header is addressed to Internet Explorer browser and prevents it from reinterpreting the content of a web page (MIME-sniffing) and thus overriding the value of the Content-Type header). Lack of this header could lead to attacks such as Cross-Site Scripting or phishing.
  198.  
  199. Recommendation:
  200. We recommend you to add the X-Frame-Options HTTP response header to every page that you want to be protected against Clickjacking attacks.
  201. More information about this issue:
  202. https://www.owasp.org/index.php/Clickjacking_Defense_Cheat_Sheet
  203.  
  204. We recommend setting the X-XSS-Protection header to "X-XSS-Protection: 1; mode=block".
  205. More information about this issue:
  206. https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-XSS-Protection
  207.  
  208. We recommend setting the X-Content-Type-Options header to "X-Content-Type-Options: nosniff".
  209. More information about this issue:
  210. https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Content-Type-Options
  211. No vulnerabilities found for server-side software
  212. No exploits found for server-side software
  213. No security issue found regarding HTTP cookies
  214. Robots.txt file not found
  215. No security issue found regarding client access policies
  216. Directory listing not found (quick scan)
  217. No password input found (auto-complete test)
  218. No password input found (clear-text submission test)
  219. Scan coverage information
  220. List of tests performed (11/11)
  221.  
  222. Fingerprinting the server software and technology...
  223. Checking for vulnerabilities of server-side software...
  224. Checking for exploits for server-side software...
  225. Analyzing the security of HTTP cookies...
  226. Analyzing HTTP security headers...
  227. Checking for secure communication...
  228. Checking robots.txt file...
  229. Checking client access policies...
  230. Checking for directory listing (quick scan)...
  231. Checking for password auto-complete (quick scan)...
  232. Checking for clear-text submission of passwords (quick scan)...
  233. Scan parameters
  234.  
  235. Website URL: http://www.indianaoathkeepers.org
  236. Scan type: Quick
  237. -----------------------------------------------------------------------------------------------------------------------------------
  238. http://www.indianaoathkeepers.org/
  239. https://www.indianaoathkeepers.org:2083/
  240. https://www.indianaoathkeepers.org:cpanel
  241.  
  242. https://www.facebook.com/public/Meki-Jembut
  243. https://twitter.com/search?q=%23meki%20jembut
  244. https://www.pinterest.com/pin/665758757385463079/
  245. http://whisper.sh/whisper/053d8229077c0b8d8e1068a2cd1247959bf8cd/Dikirimin-foto-mekiJembut-lebat-tapi-lubang-sempit
  246. https://www.youtube.com/watch?v=EceL-6nHg5A&list=PLTTdOCSLeSCqeFBC8boaur_biDfQdqTnX&index=9:someone decide to go off the grid
  247. https://www.google.com/url?sa=t&rct=j&q=&esrc=s&source=web&cd=7&cad=rja&uact=8&ved=0ahUKEwiC3L-iuMfWAhVEyWMKHUapB9IQFghNMAY&url=http%3A%2F%2Fxyzyoutube.com%2Fwatch%3Fv%3DswS1N1eqaNw&usg=AFQjCNG6tsZjC3UqDcRpF0eUYBfBI6fqRw
  248. http://linkis.com/www.17tahun.biz/ZROC0
  249.  
  250. http://linkis.com/url/go/?url=http%3A%2F%2Fwww.17tahun.biz%2Ffoto-abg-17-tahun-pamer-meki-jembut-lebat%2F
  251. https://twitter.com/tante_bispak69
  252. http://page.is/tante-nakal
  253. https://tubepatrol.tv/videos/meki-jembut/
  254. http://cekartinama.com/cari-arti-nama/meki-jembut.html
  255. http://jo.geek-tools.org/en/ping/imc.com.jo
  256. https://www.facebook.com/mekijembut.meki
  257. mekijem-000@yahoo.com
  258. 69.10.62.204-69.10.70.255:Home » IP Tools » IP Lookup » 69.10.63.58
  259. IP Details for 69.10.63.58
  260.  
  261.  
  262. 69.10.63.58
  263. Lookup IP Address
  264.  
  265. Details for 69.10.63.58
  266.  
  267. IP: 69.10.63.58
  268. Decimal: 1158299450
  269. Hostname: server.sync-sys.com
  270. ASN: 19318
  271. ISP: Interserver
  272. Organization: Interserver
  273. Services: None detected
  274. Type: Corporate
  275. Assignment: Static IP
  276. Blacklist: Click to Check Blacklist Status
  277. Continent: North America
  278. Country: United States us flag
  279. State/Region: New Jersey
  280. City: Secaucus
  281. Latitude: 40.7801 (40° 46′ 48.36″ N)
  282. Longitude: -74.0633 (74° 3′ 47.88″ W)
  283. Postal Code: 07094
  284. ------------------------------------------------------------------------------------------------------------------------------------
  285. http://69.10.63.59/cgi-sys/defaultwebpage.cgi
  286. 2. webmaster@69.10.63.59
  287. 3.ftp://69.10.63.59/
  288. 4ftp://69.10.63.60/
  289. 5.http://69.10.63.130/iis:404
  290. 6.ftp://69.10.63.130/
  291. 7.http://69.10.63.131/
  292. 8.https://docs.labtechsoftware.com/LabTech11/Default.htm#AddOnSolutions/DesktopManagement/ScreenConnect/ConfiguringScreenConnect.htm
  293. 9.http://69.10.63.131/Login?
  294. 10.http://forum.screenconnect.com/yaf_postst4572_securely-login-admin-page.aspx
  295. 11.You'll need to install a TLS certificate and move the Screenconnect UI from port 8040 to 443.
  296. 12.http://demotfp.easysol.net/:69.10.63.138
  297. ------------------------------------------------------------------------------------------------------------------------------------
  298.  
  299. D0cumented by__K0sh__aka__g4ayHa7__aka__G4ayz4Dayz heres alil music for ya while pen testing:https://www.youtube.com/watch?v=ZB7Xjd34pjo
Add Comment
Please, Sign In to add comment