Laman

Rabu, 25 Januari 2012

Gathering infomation about 3 website

at this second meeting is gathering information on the following 3 websites:

 

http://is2c-dojo.com/

 passive gathering information

root@bt:~# whois is2c-dojo.com

Whois Server Version 2.0

Domain names in the .com and .net domains can now be registered
with many different competing registrars. Go to http://www.internic.net
for detailed information.

   Domain Name: IS2C-DOJO.COM
   Registrar: CV. JOGJACAMP
   Whois Server: whois.resellercamp.com
   Referral URL: http://www.resellercamp.com
   Name Server: NS1.PARTNERIT.US
   Name Server: NS2.PARTNERIT.US
   Status: clientTransferProhibited
   Updated Date: 14-jan-2012
   Creation Date: 14-jan-2012
   Expiration Date: 14-jan-2013



>>> Last update of whois database: Wed, 25 Jan 2012 20:50:22 UTC <<<

NOTICE: The expiration date displayed in this record is the date the
registrar's sponsorship of the domain name registration in the registry is
currently set to expire. This date does not necessarily reflect the expiration
date of the domain name registrant's agreement with the sponsoring
registrar.  Users may consult the sponsoring registrar's Whois database to
view the registrar's reported date of expiration for this registration.

TERMS OF USE: You are not authorized to access or query our Whois
database through the use of electronic processes that are high-volume and
automated except as reasonably necessary to register domain names or
modify existing registrations; the Data in VeriSign Global Registry
Services' ("VeriSign") Whois database is provided by VeriSign for
information purposes only, and to assist persons in obtaining information
about or related to a domain name registration record. VeriSign does not
guarantee its accuracy. By submitting a Whois query, you agree to abide
by the following terms of use: You agree that you may use this Data only
for lawful purposes and that under no circumstances will you use this Data
to: (1) allow, enable, or otherwise support the transmission of mass
unsolicited, commercial advertising or solicitations via e-mail, telephone,
or facsimile; or (2) enable high volume, automated, electronic processes
that apply to VeriSign (or its computer systems). The compilation,
repackaging, dissemination or other use of this Data is expressly
prohibited without the prior written consent of VeriSign. You agree not to
use electronic processes that are automated and high-volume to access or
query the Whois database except as reasonably necessary to register
domain names or modify existing registrations. VeriSign reserves the right
to restrict your access to the Whois database in its sole discretion to ensure
operational stability.  VeriSign may restrict or terminate your access to the
Whois database for failure to abide by these terms of use. VeriSign
reserves the right to modify these terms at any time.

The Registry database contains ONLY .COM, .NET, .EDU domains and
Registrars.

Registration Service Provided By: PARTNER IT
Contact: +62.2749570974

Domain Name: IS2C-DOJO.COM

Registrant:
    n/a
    Mada Rambu Perdhana        (mrp.bpp@gmail.com)
    Jl. MT Haryono No.25A rt.36 Kelurahan Damaii
    Balikpapan
    Balikpapan,12345
    ID
    Tel. +62.087838463816

Creation Date: 14-Jan-2012
Expiration Date: 14-Jan-2013

Domain servers in listed order:
    ns1.partnerit.us
    ns2.partnerit.us


Administrative Contact:
    n/a
    Mada Rambu Perdhana        (mrp.bpp@gmail.com)
    Jl. MT Haryono No.25A rt.36 Kelurahan Damaii
    Balikpapan
    Balikpapan,12345
    ID
    Tel. +62.087838463816

Technical Contact:
    n/a
    Mada Rambu Perdhana        (mrp.bpp@gmail.com)
    Jl. MT Haryono No.25A rt.36 Kelurahan Damaii
    Balikpapan
    Balikpapan,12345
    ID
    Tel. +62.087838463816

Billing Contact:
    n/a
    Mada Rambu Perdhana        (mrp.bpp@gmail.com)
    Jl. MT Haryono No.25A rt.36 Kelurahan Damaii
    Balikpapan
    Balikpapan,12345
    ID
    Tel. +62.087838463816

Status:LOCKED
        Note: This Domain Name is currently Locked. In this status the domain
        name cannot be transferred, hijacked, or modified. The Owner of this
        domain name can easily change this status from their control panel.
        This feature is provided as a security measure against fraudulent domain name hijacking.

The data in this whois database is provided to you for information purposes only,
that is, to assist you in obtaining information about or related
to a domain name registration record. We make this information available "as is",
and do not guarantee its accuracy. By submitting a whois query, you agree that you will
use this data only for lawful purposes and that, under no circumstances will you use this data to:
(1) enable high volume, automated, electronic processes that stress
or load this whois database system providing you this information; or
(2) allow, enable, or otherwise support the transmission of mass unsolicited,
commercial advertising or solicitations via direct mail, electronic mail, or by telephone.
The compilation, repackaging, dissemination or other use of this data is expressly prohibited without
prior written consent from us. The Registrar of record is CV. Jogjacamp.
Domain Name: is2c-dojo.com
Updated: 6 hours ago - Refresh

Registrar: CV. JOGJACAMP
Whois Server: whois.resellercamp.com
Referral URL: http://www.resellercamp.com
Status: clientTransferProhibited

Expiration Date: 2013-01-14
Creation Date: 2012-01-14
Last Update Date: 2012-01-14

IS2C-DOJO.COM SITE INFORMATION

IP: 67.222.154.106
Website Status: active
Server Type: Apache/2.2.21 (Unix) mod_ssl/2.2.21 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4 mod_antiloris/0.4



We reserve the right to modify these terms at any time.
By submitting this query, you agree to abide by these terms.

Active gathering information

nmap -T4 -A -v 67.222.154.106
Starting Nmap 5.61TEST4 ( http://nmap.org ) at 2012-01-26 03:46 WIT
NSE: Loaded 87 scripts for scanning.
NSE: Script Pre-scanning.
Initiating Ping Scan at 03:46
Scanning 67.222.154.106 [4 ports]
Completed Ping Scan at 03:46, 0.46s elapsed (1 total hosts)
Initiating Parallel DNS resolution of 1 host. at 03:46
Completed Parallel DNS resolution of 1 host. at 03:46, 0.36s elapsed
Initiating SYN Stealth Scan at 03:46
Scanning gudeg.partnerit.us (67.222.154.106) [1000 ports]
Discovered open port 53/tcp on 67.222.154.106
Discovered open port 110/tcp on 67.222.154.106
Discovered open port 80/tcp on 67.222.154.106
Discovered open port 995/tcp on 67.222.154.106
Discovered open port 993/tcp on 67.222.154.106
Discovered open port 143/tcp on 67.222.154.106
Discovered open port 443/tcp on 67.222.154.106
Discovered open port 21/tcp on 67.222.154.106
Discovered open port 25/tcp on 67.222.154.106
SYN Stealth Scan Timing: About 58.70% done; ETC: 03:48 (0:00:30 remaining)
SYN Stealth Scan Timing: About 61.25% done; ETC: 03:48 (0:00:46 remaining)
Increasing send delay for 67.222.154.106 from 0 to 5 due to 13 out of 31 dropped probes since last increase.
SYN Stealth Scan Timing: About 64.50% done; ETC: 03:49 (0:01:02 remaining)
Increasing send delay for 67.222.154.106 from 5 to 10 due to 11 out of 11 dropped probes since last increase.
SYN Stealth Scan Timing: About 69.75% done; ETC: 03:51 (0:01:16 remaining)
SYN Stealth Scan Timing: About 76.30% done; ETC: 03:52 (0:01:19 remaining)
SYN Stealth Scan Timing: About 83.10% done; ETC: 03:53 (0:01:08 remaining)



http://is2c-dojo.net/

passive gathering information

root@bt:~# whois is2c-dojo.net

Whois Server Version 2.0

Domain names in the .com and .net domains can now be registered
with many different competing registrars. Go to http://www.internic.net
for detailed information.

   Domain Name: IS2C-DOJO.NET
   Registrar: CV. JOGJACAMP
   Whois Server: whois.resellercamp.com
   Referral URL: http://www.resellercamp.com
   Name Server: PARTNERIT1.EARTH.ORDERBOX-DNS.COM
   Name Server: PARTNERIT1.MARS.ORDERBOX-DNS.COM
   Name Server: PARTNERIT1.MERCURY.ORDERBOX-DNS.COM
   Name Server: PARTNERIT1.VENUS.ORDERBOX-DNS.COM
   Status: clientTransferProhibited
   Updated Date: 22-dec-2011
   Creation Date: 22-dec-2011
   Expiration Date: 22-dec-2012

>>> Last update of whois database: Wed, 25 Jan 2012 20:54:25 UTC <<<

NOTICE: The expiration date displayed in this record is the date the
registrar's sponsorship of the domain name registration in the registry is
currently set to expire. This date does not necessarily reflect the expiration
date of the domain name registrant's agreement with the sponsoring
registrar.  Users may consult the sponsoring registrar's Whois database to
view the registrar's reported date of expiration for this registration.

TERMS OF USE: You are not authorized to access or query our Whois
database through the use of electronic processes that are high-volume and
automated except as reasonably necessary to register domain names or
modify existing registrations; the Data in VeriSign Global Registry
Services' ("VeriSign") Whois database is provided by VeriSign for
information purposes only, and to assist persons in obtaining information
about or related to a domain name registration record. VeriSign does not
guarantee its accuracy. By submitting a Whois query, you agree to abide
by the following terms of use: You agree that you may use this Data only
for lawful purposes and that under no circumstances will you use this Data
to: (1) allow, enable, or otherwise support the transmission of mass
unsolicited, commercial advertising or solicitations via e-mail, telephone,
or facsimile; or (2) enable high volume, automated, electronic processes
that apply to VeriSign (or its computer systems). The compilation,
repackaging, dissemination or other use of this Data is expressly
prohibited without the prior written consent of VeriSign. You agree not to
use electronic processes that are automated and high-volume to access or
query the Whois database except as reasonably necessary to register
domain names or modify existing registrations. VeriSign reserves the right
to restrict your access to the Whois database in its sole discretion to ensure
operational stability.  VeriSign may restrict or terminate your access to the
Whois database for failure to abide by these terms of use. VeriSign
reserves the right to modify these terms at any time.

The Registry database contains ONLY .COM, .NET, .EDU domains and
Registrars.
Registration Service Provided By: PARTNER IT
Contact: +62.2749570974

Domain Name: IS2C-DOJO.NET

Registrant:
    PrivacyProtect.org
    Domain Admin        (contact@privacyprotect.org)
    ID#10760, PO Box 16
    Note - All Postal Mails Rejected, visit Privacyprotect.org
    Nobby Beach
    null,QLD 4218
    AU
    Tel. +45.36946676

Creation Date: 22-Dec-2011
Expiration Date: 22-Dec-2012

Domain servers in listed order:
    partnerit1.earth.orderbox-dns.com
    partnerit1.mars.orderbox-dns.com
    partnerit1.mercury.orderbox-dns.com
    partnerit1.venus.orderbox-dns.com


Administrative Contact:
    PrivacyProtect.org
    Domain Admin        (contact@privacyprotect.org)
    ID#10760, PO Box 16
    Note - All Postal Mails Rejected, visit Privacyprotect.org
    Nobby Beach
    null,QLD 4218
    AU
    Tel. +45.36946676

Technical Contact:
    PrivacyProtect.org
    Domain Admin        (contact@privacyprotect.org)
    ID#10760, PO Box 16
    Note - All Postal Mails Rejected, visit Privacyprotect.org
    Nobby Beach
    null,QLD 4218
    AU
    Tel. +45.36946676

Billing Contact:
    PrivacyProtect.org
    Domain Admin        (contact@privacyprotect.org)
    ID#10760, PO Box 16
    Note - All Postal Mails Rejected, visit Privacyprotect.org
    Nobby Beach
    null,QLD 4218
    AU
    Tel. +45.36946676

Status:LOCKED
        Note: This Domain Name is currently Locked. In this status the domain
        name cannot be transferred, hijacked, or modified. The Owner of this
        domain name can easily change this status from their control panel.
        This feature is provided as a security measure against fraudulent domain name hijacking.

PRIVACYPROTECT.ORG is providing privacy protection services to this domain name to
protect the owner from spam and phishing attacks. PrivacyProtect.org is not
responsible for any of the activities associated with this domain name. If you wish
to report any abuse concerning the usage of this domain name, you may do so at
http://privacyprotect.org/contact. We have a stringent abuse policy and any
complaint will be actioned within a short period of time.

The data in this whois database is provided to you for information purposes only,
that is, to assist you in obtaining information about or related
to a domain name registration record. We make this information available "as is",
and do not guarantee its accuracy. By submitting a whois query, you agree that you will
use this data only for lawful purposes and that, under no circumstances will you use this data to:
(1) enable high volume, automated, electronic processes that stress
or load this whois database system providing you this information; or
(2) allow, enable, or otherwise support the transmission of mass unsolicited,
commercial advertising or solicitations via direct mail, electronic mail, or by telephone.
The compilation, repackaging, dissemination or other use of this data is expressly prohibited without
prior written consent from us. The Registrar of record is CV. Jogjacamp.
We reserve the right to modify these terms at any time.
By submitting this query, you agree to abide by these terms.

active gathering information
nmap -T4 -A -v 72.14.204.121
Starting Nmap 5.61TEST4 ( http://nmap.org ) at 2012-01-26 03:58 WIT
NSE: Loaded 87 scripts for scanning.
NSE: Script Pre-scanning.
Initiating Ping Scan at 03:58
Scanning 72.14.204.121 [4 ports]
Completed Ping Scan at 03:58, 0.74s elapsed (1 total hosts)
Initiating Parallel DNS resolution of 1 host. at 03:58
Completed Parallel DNS resolution of 1 host. at 03:58, 0.98s elapsed
Initiating SYN Stealth Scan at 03:58
Scanning iad04s01-in-f121.1e100.net (72.14.204.121) [1000 ports]
Discovered open port 80/tcp on 72.14.204.121
Completed SYN Stealth Scan at 03:59, 46.33s elapsed (1000 total ports)
Initiating Service scan at 03:59
Scanning 1 service on iad04s01-in-f121.1e100.net (72.14.204.121)
Completed Service scan at 03:59, 10.36s elapsed (1 service on 1 host)
Initiating OS detection (try #1) against iad04s01-in-f121.1e100.net (72.14.204.121)
Retrying OS detection (try #2) against iad04s01-in-f121.1e100.net (72.14.204.121)
Initiating Traceroute at 03:59
Completed Traceroute at 03:59, 0.54s elapsed
Initiating Parallel DNS resolution of 11 hosts. at 03:59
Completed Parallel DNS resolution of 11 hosts. at 03:59, 4.77s elapsed
NSE: Script scanning 72.14.204.121.
Initiating NSE at 03:59
Completed NSE at 04:00, 27.88s elapsed
Nmap scan report for iad04s01-in-f121.1e100.net (72.14.204.121)
Host is up (0.76s latency).
Not shown: 998 filtered ports
PORT    STATE  SERVICE VERSION
80/tcp  open   http    Google httpd 2.0 (GFE)
|_http-title: Error 404 (Not Found)!!1
|_http-methods: No Allow or Public header in OPTIONS response (status code 404)
113/tcp closed ident
Device type: general purpose
Running (JUST GUESSING): IBM OS/2 4.X (86%)
OS CPE: cpe:/o:ibm:os2:4
Aggressive OS guesses: IBM OS/2 Warp 2.0 (86%)
No exact OS matches for host (test conditions non-ideal).
Uptime guess: 0.000 days (since Thu Jan 26 03:59:23 2012)
Network Distance: 11 hops
TCP Sequence Prediction: Difficulty=264 (Good luck!)
IP ID Sequence Generation: Randomized
Service Info: OS: Linux; CPE: cpe:/o:linux:kernel

TRACEROUTE (using port 113/tcp)
HOP RTT       ADDRESS
1   15.97 ms  dsldevice (192.168.1.1)
2   495.49 ms 1.subnet110-136-160.speedy.telkom.net.id (110.136.160.1)
3   495.43 ms 181.subnet125-160-15.infra.telkom.net.id (125.160.15.181)
4   494.29 ms 17.subnet118-98-57.astinet.telkom.net.id (118.98.57.17)
5   494.27 ms 118.98.15.29
6   494.27 ms 181.subnet118-98-57.astinet.telkom.net.id (118.98.57.181)
7   494.26 ms 37.subnet118-98-56.astinet.telkom.net.id (118.98.56.37)
8   494.25 ms 6.subnet118-98-59.astinet.telkom.net.id (118.98.59.6)
9   494.24 ms 42.subnet118-98-59.astinet.telkom.net.id (118.98.59.42)
10  494.25 ms 180.240.190.13
11  513.73 ms iad04s01-in-f121.1e100.net (72.14.204.121)

NSE: Script Post-scanning.
Read data files from: /usr/local/bin/../share/nmap
OS and Service detection performed. Please report any incorrect results at http://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 111.08 seconds
           Raw packets sent: 2095 (96.024KB) | Rcvd: 71 (5.244KB)

http://www.spentera.com/ 

passive information gahtering

root@bt:~# whois spentera.com

Whois Server Version 2.0

Domain names in the .com and .net domains can now be registered
with many different competing registrars. Go to http://www.internic.net
for detailed information.

   Domain Name: SPENTERA.COM
   Registrar: ENOM, INC.
   Whois Server: whois.enom.com
   Referral URL: http://www.enom.com
   Name Server: DNS1.NAMECHEAPHOSTING.COM
   Name Server: DNS2.NAMECHEAPHOSTING.COM
   Status: ok
   Updated Date: 12-may-2011
   Creation Date: 15-feb-2011
   Expiration Date: 15-feb-2012

>>> Last update of whois database: Wed, 25 Jan 2012 21:02:46 UTC <<<

NOTICE: The expiration date displayed in this record is the date the
registrar's sponsorship of the domain name registration in the registry is
currently set to expire. This date does not necessarily reflect the expiration
date of the domain name registrant's agreement with the sponsoring
registrar.  Users may consult the sponsoring registrar's Whois database to
view the registrar's reported date of expiration for this registration.

TERMS OF USE: You are not authorized to access or query our Whois
database through the use of electronic processes that are high-volume and
automated except as reasonably necessary to register domain names or
modify existing registrations; the Data in VeriSign Global Registry
Services' ("VeriSign") Whois database is provided by VeriSign for
information purposes only, and to assist persons in obtaining information
about or related to a domain name registration record. VeriSign does not
guarantee its accuracy. By submitting a Whois query, you agree to abide
by the following terms of use: You agree that you may use this Data only
for lawful purposes and that under no circumstances will you use this Data
to: (1) allow, enable, or otherwise support the transmission of mass
unsolicited, commercial advertising or solicitations via e-mail, telephone,
or facsimile; or (2) enable high volume, automated, electronic processes
that apply to VeriSign (or its computer systems). The compilation,
repackaging, dissemination or other use of this Data is expressly
prohibited without the prior written consent of VeriSign. You agree not to
use electronic processes that are automated and high-volume to access or
query the Whois database except as reasonably necessary to register
domain names or modify existing registrations. VeriSign reserves the right
to restrict your access to the Whois database in its sole discretion to ensure
operational stability.  VeriSign may restrict or terminate your access to the
Whois database for failure to abide by these terms of use. VeriSign
reserves the right to modify these terms at any time.

The Registry database contains ONLY .COM, .NET, .EDU domains and
Registrars.
=-=-=-=

Registration Service Provided By: Namecheap.com
Contact: support@namecheap.com
Visit: http://namecheap.com

Domain name: spentera.com

Registrant Contact:
   WhoisGuard
   WhoisGuard Protected ()
  
   Fax:
   11400 W. Olympic Blvd. Suite 200
   Los Angeles, CA 90064
   US

Administrative Contact:
   WhoisGuard
   WhoisGuard Protected (2289eab88851476688242cf0144287f4.protect@whoisguard.com)
   +1.6613102107
   Fax: +1.6613102107
   11400 W. Olympic Blvd. Suite 200
   Los Angeles, CA 90064
   US

Technical Contact:
   WhoisGuard
   WhoisGuard Protected (2289eab88851476688242cf0144287f4.protect@whoisguard.com)
   +1.6613102107
   Fax: +1.6613102107
   11400 W. Olympic Blvd. Suite 200
   Los Angeles, CA 90064
   US

Status: Active

Name Servers:
   dns1.namecheaphosting.com
   dns2.namecheaphosting.com
  
Creation date: 15 Feb 2011 13:04:00
Expiration date: 15 Feb 2012 08:04:00


  

=-=-=-=
The data in this whois database is provided to you for information
purposes only, that is, to assist you in obtaining information about or
related to a domain name registration record. We make this information
available "as is," and do not guarantee its accuracy. By submitting a
whois query, you agree that you will use this data only for lawful
purposes and that, under no circumstances will you use this data to: (1)
enable high volume, automated, electronic processes that stress or load
this whois database system providing you this information; or (2) allow,
enable, or otherwise support the transmission of mass unsolicited,
commercial advertising or solicitations via direct mail, electronic
mail, or by telephone. The compilation, repackaging, dissemination or
other use of this data is expressly prohibited without prior written
consent from us. 

We reserve the right to modify these terms at any time. By submitting
this query, you agree to abide by these terms.
Version 6.3 4/3/2002

active information gathering

nmap -T4 -A -v 74.81.66.104

Starting Nmap 5.61TEST4 ( http://nmap.org ) at 2012-01-26 04:09 WIT
NSE: Loaded 87 scripts for scanning.
NSE: Script Pre-scanning.
Initiating Ping Scan at 04:09
Scanning 74.81.66.104 [4 ports]
Completed Ping Scan at 04:09, 2.03s elapsed (1 total hosts)
Nmap scan report for 74.81.66.104 [host down]
NSE: Script Post-scanning.
Read data files from: /usr/local/bin/../share/nmap
Note: Host seems down. If it is really up, but blocking our ping probes, try -Pn
Nmap done: 1 IP address (0 hosts up) scanned in 2.73 seconds
           Raw packets sent: 8 (304B) | Rcvd: 0 (0B)






@keep smile & spirit
be fun

Tidak ada komentar:

Posting Komentar