SaintDruG

#OpTurkey_tbmm.gov.tr_Hacked

Jul 24th, 2016
99
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 27.08 KB | None | 0 0
  1. OPTurkey
  2.  
  3. Anon_CY
  4.  
  5. We are Legion
  6.  
  7. **Target: #OpTurkey_tbmm.gov.tr_Hacked **
  8.  
  9.  
  10.  
  11.  
  12.  
  13.  
  14.  
  15.  
  16. ____
  17. _________ / _/___ ___ _____
  18. / ___/ __ \ / // __ \/ _ \/ ___/
  19. (__ ) / / // // /_/ / __/ /
  20. /____/_/ /_/___/ .___/\___/_/
  21. /_/
  22.  
  23. + -- --=[http://crowdshield.com
  24. + -- --=[sn1per v1.7 by 1N3
  25.  
  26. ################################### Running recon #################################
  27. ../../../../lib/isc/unix/net.c:581: sendmsg() failed: Operation not permitted
  28. Server: 8.8.8.8
  29. Address: 8.8.8.8#53
  30.  
  31. Non-authoritative answer:
  32. Name: tbmm.gov.tr
  33. Address: 212.174.157.41
  34. Name: tbmm.gov.tr
  35. Address: 192.168.3.31
  36. Name: tbmm.gov.tr
  37. Address: 192.168.2.31
  38.  
  39. ../../../../lib/isc/unix/net.c:581: sendmsg() failed: Operation not permitted
  40. tbmm.gov.tr has address 212.174.157.41
  41. tbmm.gov.tr has address 192.168.3.31
  42. tbmm.gov.tr has address 192.168.2.31
  43. tbmm.gov.tr mail is handled by 10 mail.tbmm.gov.tr.
  44.  
  45. Xprobe2 v.0.3 Copyright (c) 2002-2005 [email protected], [email protected], [email protected]
  46.  
  47. [+] Target is tbmm.gov.tr
  48. [+] Loading modules.
  49. [+] Following modules are loaded:
  50. [x] [1] ping:icmp_ping - ICMP echo discovery module
  51. [x] [2] ping:tcp_ping - TCP-based ping discovery module
  52. [x] [3] ping:udp_ping - UDP-based ping discovery module
  53. [x] [4] infogather:ttl_calc - TCP and UDP based TTL distance calculation
  54. [x] [5] infogather:portscan - TCP and UDP PortScanner
  55. [x] [6] fingerprint:icmp_echo - ICMP Echo request fingerprinting module
  56. [x] [7] fingerprint:icmp_tstamp - ICMP Timestamp request fingerprinting module
  57. [x] [8] fingerprint:icmp_amask - ICMP Address mask request fingerprinting module
  58. [x] [9] fingerprint:icmp_port_unreach - ICMP port unreachable fingerprinting module
  59. [x] [10] fingerprint:tcp_hshake - TCP Handshake fingerprinting module
  60. [x] [11] fingerprint:tcp_rst - TCP RST fingerprinting module
  61. [x] [12] fingerprint:smb - SMB fingerprinting module
  62. [x] [13] fingerprint:snmp - SNMPv2c fingerprinting module
  63. [+] 13 modules registered
  64. [+] Initializing scan engine
  65. [+] Running scan engine
  66. [-] ping:tcp_ping module: no closed/open TCP ports known on 212.174.157.41. Module test failed
  67. [-] ping:udp_ping module: no closed/open UDP ports known on 212.174.157.41. Module test failed
  68. [-] No distance calculation. 212.174.157.41 appears to be dead or no ports known
  69. [+] Host: 212.174.157.41 is down (Guess probability: 0%)
  70. [+] Cleaning up scan engine
  71. [+] Modules deinitialized
  72. [+] Execution completed.
  73. ../../../../lib/isc/unix/net.c:581: sendmsg() failed: Operation not permitted
  74.  
  75. ; <<>> DiG 9.10.3-P4-Debian <<>> -x tbmm.gov.tr
  76. ;; global options: +cmd
  77. ;; Got answer:
  78. ;; ->>HEADER<<- opcode: QUERY, status: NXDOMAIN, id: 21511
  79. ;; flags: qr rd ra ad; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1
  80.  
  81. ;; OPT PSEUDOSECTION:
  82. ; EDNS: version: 0, flags:; udp: 4096
  83. ;; QUESTION SECTION:
  84. ;tr.gov.tbmm.in-addr.arpa. IN PTR
  85.  
  86. ;; AUTHORITY SECTION:
  87. in-addr.arpa. 3032 IN SOA b.in-addr-servers.arpa. nstld.iana.org. 2015074094 1800 900 604800 3600
  88.  
  89. ;; Query time: 329 msec
  90. ;; SERVER: 8.8.8.8#53(8.8.8.8)
  91. ;; WHEN: Sun Jul 24 12:23:41 EEST 2016
  92. ;; MSG SIZE rcvd: 121
  93.  
  94. ** Registrant:
  95. Türkiye Büyük Millet Meclisi
  96. TBMM Bilgi İşlem Başkanlığı Bakanlıklar
  97.  
  98. Ankara,
  99. Türkiye
  100. + 90-312-4206850-
  101. + 90-312-4207807-
  102.  
  103.  
  104. ** Administrative Contact:
  105. NIC Handle : tbi86-metu
  106. Organization Name : TBMM Bilgi İşlem Başkanlığı
  107. Address : TBMM Bilgi İşlem Başkanlığı
  108. Bakanlıklar
  109. Ankara,06543
  110. Türkiye
  111. Phone : + 90-420-7857-
  112. Fax : + 90-420-7807-
  113.  
  114.  
  115. ** Technical Contact:
  116. NIC Handle : tbi86-metu
  117. Organization Name : TBMM Bilgi İşlem Başkanlığı
  118. Address : TBMM Bilgi İşlem Başkanlığı
  119. Bakanlıklar
  120. Ankara,06543
  121. Türkiye
  122. Phone : + 90-420-7857-
  123. Fax : + 90-420-7807-
  124.  
  125.  
  126. ** Billing Contact:
  127. NIC Handle : tbi86-metu
  128. Organization Name : TBMM Bilgi İşlem Başkanlığı
  129. Address : TBMM Bilgi İşlem Başkanlığı
  130. Bakanlıklar
  131. Ankara,06543
  132. Türkiye
  133. Phone : + 90-420-7857-
  134. Fax : + 90-420-7807-
  135.  
  136.  
  137. ** Domain Servers:
  138. ns.tbmm.gov.tr 212.174.157.1
  139. ns2.tbmm.gov.tr 212.174.157.2
  140.  
  141. ** Additional Info:
  142. Created on..............: 1999-Nov-09.
  143. Expires on..............: 2016-Nov-08.
  144. Smartmatch is experimental at ./dnsenum.pl line 698.
  145. Smartmatch is experimental at ./dnsenum.pl line 698.
  146. dnsenum.pl VERSION:1.2.4
  147.  
  148. ----- tbmm.gov.tr -----
  149.  
  150.  
  151. Host's addresses:
  152. __________________
  153.  
  154. tbmm.gov.tr. 3587 IN A 212.174.157.41
  155. tbmm.gov.tr. 587 IN A 192.168.3.31
  156. tbmm.gov.tr. 587 IN A 192.168.2.31
  157.  
  158.  
  159. Name Servers:
  160. ______________
  161.  
  162. ns.tbmm.gov.tr. 3600 IN A 212.174.157.1
  163. ns01.tbmm.gov.tr. 3600 IN A 212.174.157.1
  164.  
  165.  
  166. Mail (MX) Servers:
  167. ___________________
  168.  
  169. mail.tbmm.gov.tr. 3600 IN CNAME tmg02.tbmm.gov.tr.
  170. tmg02.tbmm.gov.tr. 3600 IN A 212.174.157.17
  171.  
  172.  
  173. Trying Zone Transfers and getting Bind Versions:
  174. _________________________________________________
  175.  
  176.  
  177. Trying Zone Transfer for tbmm.gov.tr on ns01.tbmm.gov.tr ...
  178. AXFR record query failed: REFUSED
  179.  
  180. Trying Zone Transfer for tbmm.gov.tr on ns.tbmm.gov.tr ...
  181. AXFR record query failed: REFUSED
  182.  
  183. brute force file not specified, bay.
  184.  
  185. ____ _ _ _ _ _____
  186. / ___| _ _| |__ | (_)___| |_|___ / _ __
  187. \___ \| | | | '_ \| | / __| __| |_ \| '__|
  188. ___) | |_| | |_) | | \__ \ |_ ___) | |
  189. |____/ \__,_|_.__/|_|_|___/\__|____/|_|
  190.  
  191. # Fast Subdomains Enumeration tool using Search Engines and BruteForce
  192. # Coded By Ahmed Aboul-Ela - @aboul3la
  193. # Special Thanks to Ibrahim Mosaad - @ibrahim_mosaad for his contributions
  194.  
  195. [-] Enumerating subdomains now for tbmm.gov.tr
  196. [-] verbosity is enabled, will show the subdomains results in realtime
  197. [-] Searching now in Baidu..
  198. [-] Searching now in Yahoo..
  199. [-] Searching now in Google..
  200. [-] Searching now in Bing..
  201. [-] Searching now in Ask..
  202. [-] Searching now in Netcraft..
  203. [-] Searching now in DNSdumpster..
  204. Ask: baskanlik.tbmm.gov.tr
  205. Ask: www4.tbmm.gov.tr
  206. Ask: yenianayasa.tbmm.gov.tr
  207. Ask: anayasa.tbmm.gov.tr
  208. Ask: mevzuat.tbmm.gov.tr
  209. Ask: cocuk.tbmm.gov.tr
  210. Bing: web.tbmm.gov.tr
  211. Bing: www2.tbmm.gov.tr
  212. Bing: anayasa.tbmm.gov.tr
  213. Bing: global.tbmm.gov.tr
  214. Bing: saglik.tbmm.gov.tr
  215. Ask: acikerisim.tbmm.gov.tr
  216. Ask: eczane.tbmm.gov.tr
  217. Ask: komisyon.tbmm.gov.tr
  218. Ask: pbk.tbmm.gov.tr
  219. Bing: www.www2.tbmm.gov.tr
  220. Bing: www.web.tbmm.gov.tr
  221. Ask: edilekce.tbmm.gov.tr
  222. Ask: global.tbmm.gov.tr
  223. Yahoo: global.tbmm.gov.tr
  224. Yahoo: www.tbmm.gov.tr
  225. Yahoo: web.tbmm.gov.tr
  226. [!] Error: Google probably now is blocking our requests
  227. [~] Finished now the Google Enumeration ...
  228. Bing: eczane.tbmm.gov.tr
  229. Bing: pbk.tbmm.gov.tr
  230. Bing: komisyon.tbmm.gov.tr
  231. Bing: cocuk.tbmm.gov.tr
  232. Bing: acikerisim.tbmm.gov.tr
  233. Bing: baskanlik.tbmm.gov.tr
  234. Bing: rss.tbmm.gov.tr
  235. Bing: mevzuat.tbmm.gov.tr
  236. DNSdumpster: edilekce.tbmm.gov.tr
  237. DNSdumpster: tmg02.tbmm.gov.tr
  238. DNSdumpster: web.tbmm.gov.tr
  239. DNSdumpster: karasu.tbmm.gov.tr
  240. Baidu: global.tbmm.gov.tr
  241. Ask: web.tbmm.gov.tr
  242. [-] Total Unique Subdomains Found: 21
  243. acikerisim.tbmm.gov.tr
  244. anayasa.tbmm.gov.tr
  245. baskanlik.tbmm.gov.tr
  246. cocuk.tbmm.gov.tr
  247. eczane.tbmm.gov.tr
  248. edilekce.tbmm.gov.tr
  249. global.tbmm.gov.tr
  250. karasu.tbmm.gov.tr
  251. komisyon.tbmm.gov.tr
  252. mevzuat.tbmm.gov.tr
  253. pbk.tbmm.gov.tr
  254. rss.tbmm.gov.tr
  255. saglik.tbmm.gov.tr
  256. tmg02.tbmm.gov.tr
  257. web.tbmm.gov.tr
  258. www.tbmm.gov.tr
  259. www.web.tbmm.gov.tr
  260. www.www2.tbmm.gov.tr
  261. www2.tbmm.gov.tr
  262. www4.tbmm.gov.tr
  263. yenianayasa.tbmm.gov.tr
  264.  
  265. ################################### Pinging host ###################################
  266. PING tbmm.gov.tr (212.174.157.41) 56(84) bytes of data.
  267.  
  268. --- tbmm.gov.tr ping statistics ---
  269. 1 packets transmitted, 0 received, 100% packet loss, time 0ms
  270.  
  271.  
  272. ################################### Running TCP port scan ##########################
  273.  
  274. Starting Nmap 7.12SVN ( https://nmap.org ) at 2016-07-24 12:24 EEST
  275. Nmap scan report for tbmm.gov.tr (212.174.157.41)
  276. Host is up (0.13s latency).
  277. Other addresses for tbmm.gov.tr (not scanned): 192.168.3.31 192.168.2.31
  278. rDNS record for 212.174.157.41: 212.174.157.41.dynamic.ttnet.com.tr
  279. Not shown: 35 filtered ports
  280. PORT STATE SERVICE
  281. 80/tcp open http
  282. 443/tcp open https
  283.  
  284. Nmap done: 1 IP address (1 host up) scanned in 3.57 seconds
  285. ################################### Running UDP port scan ##########################
  286.  
  287. Starting Nmap 7.12SVN ( https://nmap.org ) at 2016-07-24 12:24 EEST
  288. WARNING: a TCP scan type was requested, but no tcp ports were specified. Skipping this scan type.
  289. Nmap done: 1 IP address (1 host up) scanned in 0.43 seconds
  290.  
  291. ################################### Running Intrusive Scans ########################
  292. + -- --=[Port 21 closed... skipping.
  293. + -- --=[Port 22 closed... skipping.
  294. + -- --=[Port 23 closed... skipping.
  295. + -- --=[Port 25 closed... skipping.
  296. + -- --=[Port 53 closed... skipping.
  297. + -- --=[Port 79 closed... skipping.
  298. + -- --=[Port 80 opened... running tests...
  299. ################################### Checking for WAF ##############################
  300.  
  301. ^ ^
  302. _ __ _ ____ _ __ _ _ ____
  303. ///7/ /.' \ / __////7/ /,' \ ,' \ / __/
  304. | V V // o // _/ | V V // 0 // 0 // _/
  305. |_n_,'/_n_//_/ |_n_,' \_,' \_,'/_/
  306. <
  307. ...'
  308.  
  309. WAFW00F - Web Application Firewall Detection Tool
  310.  
  311. By Sandro Gauci && Wendel G. Henrique
  312.  
  313. Checking http://tbmm.gov.tr
  314. The site http://tbmm.gov.tr is behind a F5 BIG-IP LTM
  315. Number of requests: 2
  316.  
  317. ################################### Gathering HTTP Info ###########################
  318. http://tbmm.gov.tr [200 OK] Content-Language[tr], Country[TURKEY][TR], HTTPServer, IP[212.174.157.41], Meta-Refresh-Redirect[http://www.tbmm.gov.tr/offline/index.htm], Title[Yeni Siteye Y�nlendiriliyor.]
  319. http://www.tbmm.gov.tr/offline/index.htm [302 Found] Country[TURKEY][TR], HTTPServer[tbmm_http], IP[212.174.157.41], RedirectLocation[https://www.tbmm.gov.tr/offline/index.htm]
  320. https://www.tbmm.gov.tr/offline/index.htm [200 OK] Content-Language[tr], Country[TURKEY][TR], Email[[email protected]], Frame, IP[212.174.157.41], JQuery[1.8.1], Meta-Author[Tasarım: Emre Baydur], Script[text/javascript], Strict-Transport-Security[max-age=31536000 ; includeSubDomains], Title[TÜRKİYE BÜYÜK MİLLET MECLİSİ], YouTube
  321.  
  322. __ ______ _____
  323. \ \/ / ___|_ _|
  324. \ /\___ \ | |
  325. / \ ___) || |
  326. /_/\_|____/ |_|
  327.  
  328. + -- --=[Cross-Site Tracer v1.3 by 1N3 @ CrowdShield
  329. + -- --=[Target: tbmm.gov.tr:80
  330. + -- --=[Site not vulnerable to Cross-Site Tracing!
  331. + -- --=[Site not vulnerable to Host Header Injection!
  332. + -- --=[Site vulnerable to Cross-Frame Scripting!
  333. + -- --=[Site vulnerable to Clickjacking!
  334.  
  335. HTTP/1.1 405 Method Not Allowed
  336. Date: Sun, 24 Jul 2016 09:25:26 GMT
  337. Server:
  338. Allow:
  339. Content-Length: 257
  340. Content-Type: text/html; charset=iso-8859-1
  341.  
  342. <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
  343. <html><head>
  344. <title>405 Method Not Allowed</title>
  345. </head><body>
  346. <h1>Method Not Allowed</h1>
  347. <p>The requested resource cannot be accessed using the method TRACE specified in the request.</p>
  348. </body></html>
  349.  
  350. HTTP/1.1 200 OK
  351. Server:
  352. Last-Modified: Thu, 14 May 2015 05:55:40 GMT
  353. ETag: "16e1041-25c-51604609aef00"
  354. Accept-Ranges: bytes
  355. Keep-Alive: timeout=5, max=100
  356. Content-Type: text/html
  357. Content-Language: tr
  358. Connection: Keep-Alive
  359. Date: Sun, 24 Jul 2016 09:24:27 GMT
  360. Age: 6
  361. Content-Length: 604
  362.  
  363. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  364. <html xmlns="http://www.w3.org/1999/xhtml">
  365. <head>
  366. <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
  367. <title>Yeni Siteye Y�nlendiriliyor.</title>
  368. <!--<meta HTTP-EQUIV="REFRESH" content="0; url=http://www.tbmm.gov.tr/offline/index.htm">-->
  369. <meta HTTP-EQUIV="REFRESH" content="0; url=http://www.tbmm.gov.tr/develop/owa/tbmm_internet.anasayfa">
  370.  
  371. <!--<meta HTTP-EQUIV="REFRESH" content="0; url=http://www.tbmm.gov.tr/bakim.htm">-->
  372. </head>
  373. <body>
  374. </body>
  375. </html>
  376.  
  377.  
  378.  
  379. ################################### Checking HTTP Headers #########################
  380. + -- --=[Checking if X-Content options are enabled on tbmm.gov.tr...
  381.  
  382. + -- --=[Checking if X-Frame options are enabled on tbmm.gov.tr...
  383.  
  384. + -- --=[Checking if X-XSS-Protection header is enabled on tbmm.gov.tr...
  385.  
  386. + -- --=[Checking HTTP methods on tbmm.gov.tr...
  387. Allow: GET,HEAD,POST,OPTIONS
  388.  
  389. + -- --=[Checking if TRACE method is enabled on tbmm.gov.tr...
  390.  
  391. + -- --=[Checking for open proxy on tbmm.gov.tr...
  392.  
  393. + -- --=[Enumerating software on tbmm.gov.tr...
  394. Server:
  395.  
  396. + -- --=[Checking if Strict-Transport-Security is enabled on tbmm.gov.tr...
  397.  
  398. + -- --=[Checking for Flash cross-domain policy on tbmm.gov.tr...
  399. <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
  400. <html><head>
  401. <title>404 Not Found</title>
  402. </head><body>
  403. <h1>Not Found</h1>
  404. <p>The requested URL /crossdomain.xml was not found.</p>
  405. </body></html>
  406.  
  407. + -- --=[Checking for Silverlight cross-domain policy on tbmm.gov.tr...
  408. <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
  409. <html><head>
  410. <title>404 Not Found</title>
  411. </head><body>
  412. <h1>Not Found</h1>
  413. <p>The requested URL /clientaccesspolicy.xml was not found.</p>
  414. </body></html>
  415.  
  416. + -- --=[Checking for HTML5 cross-origin resource sharing on tbmm.gov.tr...
  417.  
  418. + -- --=[Retrieving robots.txt on tbmm.gov.tr...
  419. <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
  420. <html><head>
  421. <title>404 Not Found</title>
  422. </head><body>
  423. <h1>Not Found</h1>
  424. <p>The requested URL /robots.txt was not found.</p>
  425. </body></html>
  426.  
  427. + -- --=[Retrieving sitemap.xml on tbmm.gov.tr...
  428. <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
  429. <html><head>
  430. <title>404 Not Found</title>
  431. </head><body>
  432. <h1>Not Found</h1>
  433. <p>The requested URL /sitemap.xml was not found.</p>
  434. </body></html>
  435.  
  436. + -- --=[Checking cookie attributes on tbmm.gov.tr...
  437.  
  438. + -- --=[Checking for ASP.NET Detailed Errors on tbmm.gov.tr...
  439.  
  440.  
  441. ################################### Running Web Vulnerability Scan ################
  442. - Nikto v2.1.6
  443. ---------------------------------------------------------------------------
  444. + Target IP: 212.174.157.41
  445. + Target Hostname: tbmm.gov.tr
  446. + Target Port: 80
  447. + Start Time: 2016-07-24 13:01:27 (GMT3)
  448. ---------------------------------------------------------------------------
  449. + Server: No banner retrieved
  450. + Server leaks inodes via ETags, header found with file /, inode: 23990337, size: 604, mtime: Thu May 14 08:55:40 2015
  451. + The anti-clickjacking X-Frame-Options header is not present.
  452. + The X-XSS-Protection header is not defined. This header can hint to the user agent to protect against some forms of XSS
  453. + The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type
  454. + Multiple index files found: /index.html, /index.htm
  455. + Allowed HTTP Methods: GET, HEAD, POST, OPTIONS
  456. + ERROR: Error limit (20) reached for host, giving up. Last error: error reading HTTP response
  457. + Scan terminated: 20 error(s) and 6 item(s) reported on remote host
  458. + End Time: 2016-07-24 13:09:23 (GMT3) (476 seconds)
  459. ---------------------------------------------------------------------------
  460. + 1 host(s) tested
  461. ################################### Saving Web Screenshots ########################
  462. [+] Screenshot saved to /root/Sn1per/loot/tbmm.gov.tr-port80.jpg
  463.  
  464. (cutycapt:5749): Gtk-WARNING **: Theme directory devices/scalable of theme maia has no size field
  465.  
  466. ################################### Running Google Hacking Queries #############
  467. ################################### Running InUrlBR OSINT Queries ##############
  468.  
  469. _____ .701F. .iBR. .7CL. .70BR. .7BR. .7BR'''Cq. .70BR. .1BR'''Yp, .8BR'''Cq.
  470. (_____) 01 01N. C 01 C 01 .01. 01 01 Yb 01 .01.
  471. (() ()) 01 C YCb C 01 C 01 ,C9 01 01 dP 01 ,C9
  472. \ / 01 C .CN. C 01 C 0101dC9 01 01'''bg. 0101dC9
  473. \ / 01 C .01.C 01 C 01 YC. 01 , 01 .Y 01 YC.
  474. /=\ 01 C Y01 YC. ,C 01 .Cb. 01 ,C 01 ,9 01 .Cb.
  475. [___] .J01L. .JCL. YC .b0101d'. .J01L. .J01. .J01010101C .J0101Cd9 .J01L. .J01./ 2.1
  476.  
  477. __[ ! ] Neither war between hackers, nor peace for the system.
  478. __[ ! ] http://blog.inurl.com.br
  479. __[ ! ] http://fb.com/InurlBrasil
  480. __[ ! ] http://twitter.com/@googleinurl
  481. __[ ! ] http://github.com/googleinurl
  482. __[ ! ] Current PHP version::[ 7.0.8-5 ]
  483. __[ ! ] Current script owner::[ root ]
  484. __[ ! ] Current uname::[ Linux anonymous 4.6.0-parrot-amd64 #1 SMP Parrot 4.6.3-1parrot1 (2016-07-15) x86_64 ]
  485. __[ ! ] Current pwd::[ /root/Sn1per ]
  486. __[ ! ] Help: php inurlbr.php --help
  487. ------------------------------------------------------------------------------------------------------------------------
  488.  
  489. [ ! ] Starting SCANNER INURLBR 2.1 at [24-07-2016 13:09:37]
  490. [ ! ] legal disclaimer: Usage of INURLBR for attacking targets without prior mutual consent is illegal.
  491. It is the end user's responsibility to obey all applicable local, state and federal laws.
  492. Developers assume no liability and are not responsible for any misuse or damage caused by this program
  493.  
  494. [ INFO ][ OUTPUT FILE ]:: [ /root/Sn1per/output/loot/inurlbr-tbmm.gov.tr.txt ]
  495. [ INFO ][ DORK ]::[ site:tbmm.gov.tr ]
  496. [ INFO ][ SEARCHING ]:: {
  497. [ INFO ][ ENGINE ]::[ GOOGLE - www.google.com.mt ]
  498.  
  499. [ INFO ][ SEARCHING ]::
  500. -[:::]
  501. [ INFO ][ ENGINE ]::[ GOOGLE API ]
  502.  
  503. [ INFO ][ SEARCHING ]::
  504. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  505. [ INFO ][ ENGINE ]::[ GOOGLE_GENERIC_RANDOM - www.google.com.bn ID: 005911257635119896548:iiolgmwf2se ]
  506.  
  507. [ INFO ][ SEARCHING ]::
  508. -[:::]-[:::]-[:::]-[:::]-[:::]-[:::]
  509.  
  510. [ INFO ][ TOTAL FOUND VALUES ]:: [ 0 ]
  511. [ INFO ] Not a satisfactory result was found!
  512.  
  513.  
  514. [ INFO ] [ Shutting down ]
  515. [ INFO ] [ End of process INURLBR at [24-07-2016 13:09:55]
  516. [ INFO ] [ TOTAL FILTERED VALUES ]:: [ 0 ]
  517. [ INFO ] [ OUTPUT FILE ]:: [ /root/Sn1per/output/loot/inurlbr-tbmm.gov.tr.txt ]
  518. |_________________________________________________________________________________________
  519.  
  520. \_________________________________________________________________________________________/
  521.  
  522. + -- --=[Port 110 closed... skipping.
  523. + -- --=[Port 111 closed... skipping.
  524. + -- --=[Port 135 closed... skipping.
  525. + -- --=[Port 139 closed... skipping.
  526. + -- --=[Port 162 closed... skipping.
  527. + -- --=[Port 389 closed... skipping.
  528. + -- --=[Port 443 opened... running tests...
  529. ################################### Checking for WAF ##############################
  530.  
  531. ^ ^
  532. _ __ _ ____ _ __ _ _ ____
  533. ///7/ /.' \ / __////7/ /,' \ ,' \ / __/
  534. | V V // o // _/ | V V // 0 // 0 // _/
  535. |_n_,'/_n_//_/ |_n_,' \_,' \_,'/_/
  536. <
  537. ...'
  538.  
  539. WAFW00F - Web Application Firewall Detection Tool
  540.  
  541. By Sandro Gauci && Wendel G. Henrique
  542.  
  543. Checking https://tbmm.gov.tr
  544. The site https://tbmm.gov.tr is behind a ModSecurity (OWASP CRS)
  545. Number of requests: 11
  546.  
  547. ################################### Gathering HTTP Info ###########################
  548. https://tbmm.gov.tr [200 OK] Content-Language[tr], Country[TURKEY][TR], HTTPServer, IP[212.174.157.41], Meta-Refresh-Redirect[http://www.tbmm.gov.tr/offline/index.htm], Title[Yeni Siteye Y�nlendiriliyor.]
  549. http://www.tbmm.gov.tr/offline/index.htm [302 Found] Country[TURKEY][TR], HTTPServer[tbmm_http], IP[212.174.157.41], RedirectLocation[https://www.tbmm.gov.tr/offline/index.htm]
  550. https://www.tbmm.gov.tr/offline/index.htm [200 OK] Content-Language[tr], Country[TURKEY][TR], Email[[email protected]], Frame, IP[212.174.157.41], JQuery[1.8.1], Meta-Author[Tasarım: Emre Baydur], Script[text/javascript], Strict-Transport-Security[max-age=31536000 ; includeSubDomains], Title[TÜRKİYE BÜYÜK MİLLET MECLİSİ], YouTube
  551.  
  552. ################################### Gathering SSL/TLS Info ########################
  553. Version: 1.11.7-static
  554. OpenSSL 1.0.2i-dev xx XXX xxxx
  555.  
  556. Testing SSL server tbmm.gov.tr on port 443
  557.  
  558. TLS Fallback SCSV:
  559. Server supports TLS Fallback SCSV
  560.  
  561. TLS renegotiation:
  562. Secure session renegotiation supported
  563.  
  564. TLS Compression:
  565. Compression disabled
  566.  
  567. Heartbleed:
  568. TLS 1.2 not vulnerable to heartbleed
  569. TLS 1.1 not vulnerable to heartbleed
  570. TLS 1.0 not vulnerable to heartbleed
  571.  
  572. Supported Server Cipher(s):
  573. Preferred TLSv1.2 256 bits AES256-GCM-SHA384
  574. Accepted TLSv1.2 256 bits AES256-SHA256
  575. Accepted TLSv1.2 256 bits AES256-SHA
  576. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-GCM-SHA384 Curve P-256 DHE 256
  577. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-SHA384 Curve P-256 DHE 256
  578. Accepted TLSv1.2 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  579. Accepted TLSv1.2 112 bits DES-CBC3-SHA
  580. Accepted TLSv1.2 112 bits ECDHE-RSA-DES-CBC3-SHA Curve P-256 DHE 256
  581. Accepted TLSv1.2 128 bits AES128-GCM-SHA256
  582. Accepted TLSv1.2 128 bits AES128-SHA256
  583. Accepted TLSv1.2 128 bits AES128-SHA
  584. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-GCM-SHA256 Curve P-256 DHE 256
  585. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-SHA256 Curve P-256 DHE 256
  586. Accepted TLSv1.2 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  587. Preferred TLSv1.1 256 bits AES256-SHA
  588. Accepted TLSv1.1 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  589. Accepted TLSv1.1 112 bits DES-CBC3-SHA
  590. Accepted TLSv1.1 112 bits ECDHE-RSA-DES-CBC3-SHA Curve P-256 DHE 256
  591. Accepted TLSv1.1 128 bits AES128-SHA
  592. Accepted TLSv1.1 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  593. Preferred TLSv1.0 256 bits AES256-SHA
  594. Accepted TLSv1.0 256 bits ECDHE-RSA-AES256-SHA Curve P-256 DHE 256
  595. Accepted TLSv1.0 112 bits DES-CBC3-SHA
  596. Accepted TLSv1.0 112 bits ECDHE-RSA-DES-CBC3-SHA Curve P-256 DHE 256
  597. Accepted TLSv1.0 128 bits AES128-SHA
  598. Accepted TLSv1.0 128 bits ECDHE-RSA-AES128-SHA Curve P-256 DHE 256
  599.  
  600. SSL Certificate:
  601. Signature Algorithm: sha256WithRSAEncryption
  602. RSA Key Strength: 2048
  603.  
  604. Subject: www.tbmm.gov.tr
  605. Altnames: DNS:www.tbmm.gov.tr, DNS:e-posta.tbmm.gov.tr, DNS:autodiscover.tbmm.gov.tr, DNS:tbmm.gov.tr
  606. Issuer: GlobalSign Extended Validation CA - SHA256 - G2
  607.  
  608. Not valid before: Dec 29 13:55:01 2014 GMT
  609. Not valid after: Dec 24 11:14:46 2016 GMT
  610.  
  611.  
  612.  
  613. AVAILABLE PLUGINS
  614. -----------------
  615.  
  616. PluginHeartbleed
  617. PluginHSTS
  618. PluginSessionRenegotiation
  619. PluginSessionResumption
  620. PluginOpenSSLCipherSuites
  621. PluginChromeSha1Deprecation
  622. PluginCompression
  623. PluginCertInfo
  624.  
  625.  
  626.  
  627. CHECKING HOST(S) AVAILABILITY
  628. -----------------------------
  629.  
  630. tbmm.gov.tr:443 => 212.174.157.41:443
  631.  
  632.  
  633.  
  634. SCAN RESULTS FOR TBMM.GOV.TR:443 - 212.174.157.41:443
  635. -----------------------------------------------------
  636.  
  637. * Deflate Compression:
  638. OK - Compression disabled
  639.  
  640. * Session Renegotiation:
  641. Client-initiated Renegotiations: VULNERABLE - Server honors client-initiated renegotiations
  642. Secure Renegotiation: OK - Supported
  643.  
  644. * Certificate - Content:
  645. SHA1 Fingerprint: 2e6311328b23677e87722c2e785b7377de6ed4c9
  646. Common Name: www.tbmm.gov.tr
  647. Issuer: GlobalSign Extended Validation CA - SHA256 - G2
  648. Serial Number: 3F66886C4FF250160BBE49C5
  649. Not Before: Dec 29 13:55:01 2014 GMT
  650. Not After: Dec 24 11:14:46 2016 GMT
  651. Signature Algorithm: sha256WithRSAEncryption
  652. Public Key Algorithm: rsaEncryption
  653. Key Size: 2048 bit
  654. Exponent: 65537 (0x10001)
  655. X509v3 Subject Alternative Name: {'DNS': ['www.tbmm.gov.tr', 'e-posta.tbmm.gov.tr', 'autodiscover.tbmm.gov.tr', 'tbmm.gov.tr']}
  656.  
  657. * Certificate - Trust:
  658. Hostname Validation: OK - Subject Alternative Name matches
  659. Google CA Store (09/2015): OK - Certificate is trusted
  660. Java 6 CA Store (Update 65): OK - Certificate is trusted
  661. Microsoft CA Store (09/2015): OK - Certificate is trusted
  662. Mozilla NSS CA Store (09/2015): OK - Certificate is trusted
  663. Apple CA Store (OS X 10.10.5): OK - Certificate is trusted
  664. Certificate Chain Received: ['www.tbmm.gov.tr', 'GlobalSign Extended Validation CA - SHA256 - G2']
  665.  
  666. * Certificate - OCSP Stapling:
  667. NOT SUPPORTED - Server did not send back an OCSP response.
  668.  
  669. * SSLV2 Cipher Suites:
  670. Server rejected all cipher suites.
  671.  
  672. * SSLV3 Cipher Suites:
  673. Server rejected all cipher suites.
  674.  
  675. * Session Resumption:
  676. With Session IDs: OK - Supported (5 successful, 0 failed, 0 errors, 5 total attempts).
  677. With TLS Session Tickets: NOT SUPPORTED - TLS ticket not assigned.
  678.  
  679.  
  680.  
  681. SCAN COMPLETED IN 3.03 S
  682. ------------------------
  683.  
  684. ███▄ ▄███▓ ▄▄▄ ██████ ██████ ▄▄▄▄ ██▓ ▓█████ ▓█████ ▓█████▄
  685. ▓██▒▀█▀ ██▒▒████▄ ▒██ ▒ ▒██ ▒ ▓█████▄ ▓██▒ ▓█ ▀ ▓█ ▀ ▒██▀ ██▌
  686. ▓██ ▓██░▒██ ▀█▄ ░ ▓██▄ ░ ▓██▄ ▒██▒ ▄██▒██░ ▒███ ▒███ ░██ █▌
  687. ▒██ ▒██ ░██▄▄▄▄██ ▒ ██▒ ▒ ██▒▒██░█▀ ▒██░ ▒▓█ ▄ ▒▓█ ▄ ░▓█▄ ▌
  688. ▒██▒ ░██▒ ▓█ ▓██▒▒██████▒▒▒██████▒▒░▓█ ▀█▓░██████▒░▒████▒░▒████▒░▒████▓
  689. ░ ▒░ ░ ░ ▒▒ ▓▒█░▒ ▒▓▒ ▒ ░▒ ▒▓▒ ▒ ░░▒▓███▀▒░ ▒░▓ ░░░ ▒░ ░░░ ▒░ ░ ▒▒▓ ▒
  690. ░ ░ ░ ▒ ▒▒ ░░ ░▒ ░ ░░ ░▒ ░ ░▒░▒ ░ ░ ░ ▒ ░ ░ ░ ░ ░ ░ ░ ░ ▒ ▒
  691. ░ ░ ░ ▒ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░
  692. ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░ ░
  693. ░ ░
  694. + -- --=[MÄŚŚBĻËËĐ V20160303 BŸ 1Ņ3 @ ĊŖÖŴĐŚȞÏËĻĐ - https://crowdshield.com
Add Comment
Please, Sign In to add comment