Files
CTF/HTB/admirer/results/scans/_commands.log
Simon 82b0759f1e init htb
old htb folders
2023-08-29 21:53:22 +02:00

167 lines
14 KiB
Plaintext

nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN "/home/simon/htb/admirer/results/scans/_quick_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_quick_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN "/home/simon/htb/admirer/results/scans/_full_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_full_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 21 --script="banner,(ftp* or ssl*) and not (brute or broadcast or dos or external or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp21/tcp_21_ftp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp21/xml/tcp_21_ftp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 22 --script="banner,ssh2-enum-algos,ssh-hostkey,ssh-auth-methods" -oN "/home/simon/htb/admirer/results/scans/tcp22/tcp_22_ssh_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp22/xml/tcp_22_ssh_nmap.xml" admirer.htb
gobuster dir -u http://admirer.htb:80/ -t 200 -w /usr/share/seclists/Discovery/Web-Content/common.txt -e -k -x "php,html,txt" -z -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_gobuster_common.txt"
curl -sSikf http://admirer.htb:80/.well-known/security.txt
curl -sSikf http://admirer.htb:80/robots.txt
curl -sSik http://admirer.htb:80/
nmap -vv --reason -Pn -T4 -sV -p 80 --script="banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp80/xml/tcp_80_http_nmap.xml" admirer.htb
curl -sk -o /dev/null -H "Host: xnciztvwFSMdYfigwUAw.admirer.htb" http://admirer.htb:80/ -w "%{size_download}"
whatweb --color=never --no-errors -a 3 -v http://admirer.htb:80 2>&1
wkhtmltoimage --format png http://admirer.htb:80/ /home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_screenshot.png
ffuf -u http://admirer.htb:80/ -t 10 -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-110000.txt -H "Host: FUZZ.admirer.htb" -fs 6051 -noninteractive -s | tee "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_admirer.htb_vhosts_subdomains-top1million-110000.txt"
gobuster dir -u http://admirer.htb:80/ -t 200 -w /usr/share/seclists/Discovery/Web-Content/big.txt -e -k -x "php,html,txt" -z -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_gobuster_big.txt"
gobuster dir -u http://admirer.htb:80/ -t 200 -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt -e -k -x "php,html,txt" -z -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_gobuster_directory-list-2.3-medium.txt"
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN "/home/simon/htb/admirer/results/scans/_quick_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_quick_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN "/home/simon/htb/admirer/results/scans/_full_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_full_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 21 --script="banner,(ftp* or ssl*) and not (brute or broadcast or dos or external or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp21/tcp_21_ftp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp21/xml/tcp_21_ftp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 22 --script="banner,ssh2-enum-algos,ssh-hostkey,ssh-auth-methods" -oN "/home/simon/htb/admirer/results/scans/tcp22/tcp_22_ssh_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp22/xml/tcp_22_ssh_nmap.xml" admirer.htb
gobuster dir -u http://admirer.htb:80/ -t 200 -w /usr/share/seclists/Discovery/Web-Content/common.txt -e -k -x "php,html,txt" -z -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_gobuster_common.txt"
curl -sSikf http://admirer.htb:80/.well-known/security.txt
curl -sSikf http://admirer.htb:80/robots.txt
curl -sSik http://admirer.htb:80/
nmap -vv --reason -Pn -T4 -sV -p 80 --script="banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp80/xml/tcp_80_http_nmap.xml" admirer.htb
curl -sk -o /dev/null -H "Host: aZsunMZdWwGwtpOtMQkq.admirer.htb" http://admirer.htb:80/ -w "%{size_download}"
whatweb --color=never --no-errors -a 3 -v http://admirer.htb:80 2>&1
wkhtmltoimage --format png http://admirer.htb:80/ /home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_screenshot.png
gobuster dir -u http://admirer.htb:80/ -t 200 -w /usr/share/seclists/Discovery/Web-Content/big.txt -e -k -x "php,html,txt" -z -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_gobuster_big.txt"
ffuf -u http://admirer.htb:80/ -t 10 -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-110000.txt -H "Host: FUZZ.admirer.htb" -fs 6051 -noninteractive -s | tee "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_admirer.htb_vhosts_subdomains-top1million-110000.txt"
gobuster dir -u http://admirer.htb:80/ -t 200 -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt -e -k -x "php,html,txt" -z -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_gobuster_directory-list-2.3-medium.txt"
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN "/home/simon/htb/admirer/results/scans/_quick_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_quick_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN "/home/simon/htb/admirer/results/scans/_full_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_full_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 21 --script="banner,(ftp* or ssl*) and not (brute or broadcast or dos or external or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp21/tcp_21_ftp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp21/xml/tcp_21_ftp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 22 --script="banner,ssh2-enum-algos,ssh-hostkey,ssh-auth-methods" -oN "/home/simon/htb/admirer/results/scans/tcp22/tcp_22_ssh_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp22/xml/tcp_22_ssh_nmap.xml" admirer.htb
dirb http://admirer.htb:80/ /usr/share/seclists/Discovery/Web-Content/common.txt -l -r -S -X ",.php,.html,.txt" -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_dirb_common.txt"
curl -sSikf http://admirer.htb:80/.well-known/security.txt
curl -sSikf http://admirer.htb:80/robots.txt
curl -sSik http://admirer.htb:80/
nmap -vv --reason -Pn -T4 -sV -p 80 --script="banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp80/xml/tcp_80_http_nmap.xml" admirer.htb
curl -sk -o /dev/null -H "Host: JhAcpaQbtCOpoZPUUzWc.admirer.htb" http://admirer.htb:80/ -w "%{size_download}"
whatweb --color=never --no-errors -a 3 -v http://admirer.htb:80 2>&1
wkhtmltoimage --format png http://admirer.htb:80/ /home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_screenshot.png
ffuf -u http://admirer.htb:80/ -t 10 -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-110000.txt -H "Host: FUZZ.admirer.htb" -fs 6051 -noninteractive -s | tee "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_admirer.htb_vhosts_subdomains-top1million-110000.txt"
dirb http://admirer.htb:80/ /usr/share/seclists/Discovery/Web-Content/big.txt -l -r -S -X ",.php,.html,.txt" -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_dirb_big.txt"
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN "/home/simon/htb/admirer/results/scans/_quick_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_quick_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN "/home/simon/htb/admirer/results/scans/_full_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_full_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 21 --script="banner,(ftp* or ssl*) and not (brute or broadcast or dos or external or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp21/tcp_21_ftp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp21/xml/tcp_21_ftp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 22 --script="banner,ssh2-enum-algos,ssh-hostkey,ssh-auth-methods" -oN "/home/simon/htb/admirer/results/scans/tcp22/tcp_22_ssh_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp22/xml/tcp_22_ssh_nmap.xml" admirer.htb
feroxbuster -u http://admirer.htb:80/ -t 200 -w /home/simon/.local/share/AutoRecon/wordlists/dirbuster.txt -x "txt,html,php,asp,aspx,jsp" -v -k -q -e -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_feroxbuster_dirbuster.txt"
curl -sSikf http://admirer.htb:80/.well-known/security.txt
curl -sSikf http://admirer.htb:80/robots.txt
curl -sSik http://admirer.htb:80/
nmap -vv --reason -Pn -T4 -sV -p 80 --script="banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp80/xml/tcp_80_http_nmap.xml" admirer.htb
curl -sk -o /dev/null -H "Host: pmvTrBvjPwMPQzIYwXuD.admirer.htb" http://admirer.htb:80/ -w "%{size_download}"
whatweb --color=never --no-errors -a 3 -v http://admirer.htb:80 2>&1
wkhtmltoimage --format png http://admirer.htb:80/ /home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_screenshot.png
ffuf -u http://admirer.htb:80/ -t 10 -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-110000.txt -H "Host: FUZZ.admirer.htb" -fs 6051 -noninteractive -s | tee "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_admirer.htb_vhosts_subdomains-top1million-110000.txt"
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN "/home/simon/htb/admirer/results/scans/_quick_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_quick_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN "/home/simon/htb/admirer/results/scans/_full_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_full_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 21 --script="banner,(ftp* or ssl*) and not (brute or broadcast or dos or external or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp21/tcp_21_ftp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp21/xml/tcp_21_ftp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 22 --script="banner,ssh2-enum-algos,ssh-hostkey,ssh-auth-methods" -oN "/home/simon/htb/admirer/results/scans/tcp22/tcp_22_ssh_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp22/xml/tcp_22_ssh_nmap.xml" admirer.htb
feroxbuster -u http://admirer.htb:80/ -t 200 -w /usr/share/seclists/Discovery/Web-Content/common.txt -x "txt,html,php,asp,aspx,jsp" -v -k -q -e -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_feroxbuster_common.txt"
curl -sSikf http://admirer.htb:80/.well-known/security.txt
curl -sSikf http://admirer.htb:80/robots.txt
curl -sSik http://admirer.htb:80/
nmap -vv --reason -Pn -T4 -sV -p 80 --script="banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp80/xml/tcp_80_http_nmap.xml" admirer.htb
curl -sk -o /dev/null -H "Host: XhMGZBtKOYQeIGELmbmu.admirer.htb" http://admirer.htb:80/ -w "%{size_download}"
whatweb --color=never --no-errors -a 3 -v http://admirer.htb:80 2>&1
wkhtmltoimage --format png http://admirer.htb:80/ /home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_screenshot.png
ffuf -u http://admirer.htb:80/ -t 10 -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-110000.txt -H "Host: FUZZ.admirer.htb" -fs 6051 -noninteractive -s | tee "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_admirer.htb_vhosts_subdomains-top1million-110000.txt"
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -oN "/home/simon/htb/admirer/results/scans/_quick_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_quick_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -sC --version-all -A --osscan-guess -p- -oN "/home/simon/htb/admirer/results/scans/_full_tcp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/xml/_full_tcp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 21 --script="banner,(ftp* or ssl*) and not (brute or broadcast or dos or external or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp21/tcp_21_ftp_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp21/xml/tcp_21_ftp_nmap.xml" admirer.htb
nmap -vv --reason -Pn -T4 -sV -p 22 --script="banner,ssh2-enum-algos,ssh-hostkey,ssh-auth-methods" -oN "/home/simon/htb/admirer/results/scans/tcp22/tcp_22_ssh_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp22/xml/tcp_22_ssh_nmap.xml" admirer.htb
feroxbuster -u http://admirer.htb:80/ -t 200 -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt -x "txt,html,php,asp,aspx,jsp" -v -k -q -e -o "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_feroxbuster_directory-list-2.3-medium.txt"
curl -sSikf http://admirer.htb:80/.well-known/security.txt
curl -sSikf http://admirer.htb:80/robots.txt
curl -sSik http://admirer.htb:80/
nmap -vv --reason -Pn -T4 -sV -p 80 --script="banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_nmap.txt" -oX "/home/simon/htb/admirer/results/scans/tcp80/xml/tcp_80_http_nmap.xml" admirer.htb
curl -sk -o /dev/null -H "Host: ydIeZSDUWfnTKPvrHHdS.admirer.htb" http://admirer.htb:80/ -w "%{size_download}"
whatweb --color=never --no-errors -a 3 -v http://admirer.htb:80 2>&1
wkhtmltoimage --format png http://admirer.htb:80/ /home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_screenshot.png
ffuf -u http://admirer.htb:80/ -t 10 -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-110000.txt -H "Host: FUZZ.admirer.htb" -fs 6051 -noninteractive -s | tee "/home/simon/htb/admirer/results/scans/tcp80/tcp_80_http_admirer.htb_vhosts_subdomains-top1million-110000.txt"