Advertisement
shzzoRpentesting

citroen.co.rs HACKED AND LEAKD BY CYB3R SHZZ0R

Nov 16th, 2014
667
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.15 KB | None | 0 0
  1. ____ __ ____ _ _ _____________ ____ __ ____
  2. / __ \ _ _| _/ ___|| | | |__ /__ / _ \| _ \_ |_ _ / __ \
  3. / / _` | (_|_) |\___ \| |_| | / / / / | | | |_) | (_|_) / / _` |
  4. | | (_| |_ _ _ _| | ___) | _ |/ /_ / /| |_| | _ <| |_ _ _ | | (_| |
  5. \ \__,_(_|_|_|_) ||____/|_| |_/____/____\___/|_| \_\ (_|_|_|_) \__,_|
  6. \____/ |__| |__| \____/
  7. HACKED BY CYB3R Shzz0R [ citroensavin.co.rs]
  8.  
  9. ALL USERNAMES AND PASSWORD WORK , CHECKED
  10.  
  11. Database: citroen_savin2
  12. Table: users
  13. [647 entries]
  14. +-------+------------------------------------------------------+------------------------------------------------------+
  15. | admin | password | user_name |
  16. +-------+------------------------------------------------------+------------------------------------------------------+ |
  17. | NULL | ori5iuil25 | v1ggje0ymk | |
  18. | NULL | 8WE0F7W4A | qurrceczik |
  19. | NULL | kile249 | Luka1 |
  20. | NULL | antonija2010 | abubekir |
  21. | NULL | Vbcbj9sf0 | krvjmdwmll |
  22. | NULL | dobrasdarko | darko |
  23. | NULL | r7Q7r89K6 | auosmiumzr |
  24. | NULL | citroen | mickovic |
  25. +-------+------------------------------------------------------+------------------------------------------------------+
  26.  
  27. Login page : citroen.co.rs
  28.  
  29.  
  30. ----- citroensavin.co.rs -----
  31.  
  32.  
  33. Host's addresses:
  34. __________________
  35.  
  36. citroensavin.co.rs. 202 IN A 85.17.187.29
  37.  
  38.  
  39. Name Servers:
  40. ______________
  41.  
  42. ns19.adriahost.com. 85236 IN A 85.17.187.29
  43. ns20.adriahost.com. 85236 IN A 85.17.187.30
  44.  
  45.  
  46. Mail (MX) Servers:
  47. ___________________
  48.  
  49. aspmx3.googlemail.com. 22 IN A 64.233.168.26
  50. alt2.aspmx.l.google.com. 156 IN A 64.233.168.26
  51. alt1.aspmx.l.google.com. 156 IN A 74.125.25.26
  52. aspmx2.googlemail.com. 61 IN A 74.125.25.27
  53. aspmx5.googlemail.com. 116 IN A 64.233.185.26
  54. aspmx.l.google.com. 84 IN A 74.125.136.26
  55. aspmx4.googlemail.com. 293 IN A 74.125.142.27
  56.  
  57. inetnum: 85.17.187.0 - 85.17.187.191
  58. netname: LEASEWEB
  59. descr: LeaseWeb
  60. descr: P.O. Box 93054
  61. descr: 1090BB AMSTERDAM
  62. descr: Netherlands
  63. descr: www.leaseweb.com
  64. remarks: Please send email to "abuse@leaseweb.com" for complaints
  65. remarks: regarding portscans, DoS attacks and spam.
  66. remarks: INFRA-AW
  67. country: NL
  68. admin-c: LSW1-RIPE
  69. tech-c: LSW1-RIPE
  70. status: ASSIGNED PA
  71. mnt-by: OCOM-MNT
  72. source: RIPE # Filtered
  73.  
  74. person: RIP Mean
  75. address: P.O. Box 93054
  76. address: 1090BB AMSTERDAM
  77. address: Netherlands
  78. phone: +31 20 3162880
  79. fax-no: +31 20 3162890
  80. abuse-mailbox: abuse@leaseweb.com
  81. nic-hdl: LSW1-RIPE
  82. mnt-by: OCOM-MNT
  83. source: RIPE # Filtered
  84.  
  85. % Information related to '85.17.0.0/16AS16265'
  86.  
  87. route: 85.17.0.0/16
  88. descr: LEASEWEB
  89. origin: AS16265
  90. remarks: LeaseWeb
  91. mnt-by: OCOM-MNT
  92. source: RIPE # Filtered
  93.  
  94. % Information related to '85.17.0.0/16AS60781'
  95.  
  96. route: 85.17.0.0/16
  97. descr: LEASEWEB
  98. origin: AS60781
  99. remarks: LeaseWeb
  100. mnt-by: OCOM-MNT
  101. source: RIPE # Filtered
  102.  
  103. PORT STATE SERVICE VERSION
  104. 20/tcp closed ftp-data
  105. 21/tcp open ftp Pure-FTPd
  106. | ssl-cert: Subject: commonName=budo10.adriahost.com
  107. | Issuer: commonName=COMODO RSA Domain Validation Secure Server CA/organizationName=COMODO CA Limited/stateOrProvinceName=Greater Manchester/countryName=GB
  108. | Public Key type: rsa
  109. | Public Key bits: 2048
  110. | Not valid before: 2014-02-21T00:00:00+00:00
  111. | Not valid after: 2015-02-21T23:59:59+00:00
  112. | MD5: 38fd a3a5 92d7 cdab 6023 e0a0 3694 cfc4
  113. |_SHA-1: 1006 84c9 8fdd 176a db2c 4f62 021c 8aed a800 d307
  114. |_ssl-date: 2014-11-16T14:14:56+00:00; +1s from local time.
  115. 22/tcp closed ssh
  116. 53/tcp open domain
  117. | dns-nsid:
  118. |_ bind.version: 9.8.2rc1-RedHat-9.8.2-0.30.rc1.el6
  119. 80/tcp open http nginx
  120. |_http-favicon: Unknown favicon MD5: 4A331DBA814E6C78D706BD9B4D1C78D3
  121. |_http-methods: OPTIONS GET HEAD POST
  122. |_http-title: Site doesn't have a title (text/html).
  123. 110/tcp open pop3 Dovecot pop3d
  124. |_pop3-capabilities: AUTH-RESP-CODE CAPA PIPELINING SASL(PLAIN LOGIN) TOP STLS RESP-CODES USER UIDL
  125. 143/tcp open imap Dovecot imapd
  126. |_imap-capabilities: NAMESPACE listed capabilities LOGIN-REFERRALS LITERAL+ STARTTLS SASL-IR more AUTH=PLAIN AUTH=LOGINA0001 post-login IMAP4rev1 Pre-login have ID ENABLE IDLE OK
  127. 443/tcp open http Apache httpd
  128. |_http-methods: OPTIONS GET HEAD POST
  129. |_http-title: Site doesn't have a title (text/html).
  130. 465/tcp open ssl/smtp Exim smtpd 4.82
  131. |_smtp-commands: Couldn't establish connection on port 465
  132. | ssl-cert: Subject: commonName=budo10.adriahost.com
  133. | Issuer: commonName=COMODO RSA Domain Validation Secure Server CA/organizationName=COMODO CA Limited/stateOrProvinceName=Greater Manchester/countryName=GB
  134. | Public Key type: rsa
  135. | Public Key bits: 2048
  136. | Not valid before: 2014-02-21T00:00:00+00:00
  137. | Not valid after: 2015-02-21T23:59:59+00:00
  138. | MD5: 38fd a3a5 92d7 cdab 6023 e0a0 3694 cfc4
  139. |_SHA-1: 1006 84c9 8fdd 176a db2c 4f62 021c 8aed a800 d307
  140. 587/tcp open smtp Exim smtpd 4.82
  141. | smtp-commands: budo10.adriahost.com Hello 141-136-191-236.dsl.iskon.hr [141.136.191.236], SIZE 52428800, 8BITMIME, PIPELINING, AUTH PLAIN LOGIN, STARTTLS, HELP,
  142. |_ Commands supported: AUTH STARTTLS HELO EHLO MAIL RCPT DATA NOOP QUIT RSET HELP
  143. | ssl-cert: Subject: commonName=budo10.adriahost.com
  144. | Issuer: commonName=COMODO RSA Domain Validation Secure Server CA/organizationName=COMODO CA Limited/stateOrProvinceName=Greater Manchester/countryName=GB
  145. | Public Key type: rsa
  146. | Public Key bits: 2048
  147. | Not valid before: 2014-02-21T00:00:00+00:00
  148. | Not valid after: 2015-02-21T23:59:59+00:00
  149. | MD5: 38fd a3a5 92d7 cdab 6023 e0a0 3694 cfc4
  150. |_SHA-1: 1006 84c9 8fdd 176a db2c 4f62 021c 8aed a800 d307
  151. |_ssl-date: 2014-11-16T14:14:56+00:00; +2s from local time.
  152. 993/tcp open ssl/imap Dovecot imapd
  153. |_imap-capabilities: NAMESPACE listed capabilities LOGIN-REFERRALS LITERAL+ ENABLE SASL-IR more AUTH=PLAIN AUTH=LOGINA0001 post-login IMAP4rev1 Pre-login have ID IDLE OK
  154. | ssl-cert: Subject: commonName=budo10.adriahost.com
  155. | Issuer: commonName=COMODO RSA Domain Validation Secure Server CA/organizationName=COMODO CA Limited/stateOrProvinceName=Greater Manchester/countryName=GB
  156. | Public Key type: rsa
  157. | Public Key bits: 2048
  158. | Not valid before: 2014-02-21T00:00:00+00:00
  159. | Not valid after: 2015-02-21T23:59:59+00:00
  160. | MD5: 38fd a3a5 92d7 cdab 6023 e0a0 3694 cfc4
  161. |_SHA-1: 1006 84c9 8fdd 176a db2c 4f62 021c 8aed a800 d307
  162. |_ssl-date: 2014-11-16T14:14:55+00:00; +2s from local time.
  163. 995/tcp open ssl/pop3 Dovecot pop3d
  164. | ssl-cert: Subject: commonName=budo10.adriahost.com
  165. | Issuer: commonName=COMODO RSA Domain Validation Secure Server CA/organizationName=COMODO CA Limited/stateOrProvinceName=Greater Manchester/countryName=GB
  166. | Public Key type: rsa
  167. | Public Key bits: 2048
  168. | Not valid before: 2014-02-21T00:00:00+00:00
  169. | Not valid after: 2015-02-21T23:59:59+00:00
  170. | MD5: 38fd a3a5 92d7 cdab 6023 e0a0 3694 cfc4
  171. |_SHA-1: 1006 84c9 8fdd 176a db2c 4f62 021c 8aed a800 d307
  172. |_ssl-date: 2014-11-16T14:14:55+00:00; +2s from local time.
  173. 3306/tcp open mysql MySQL 5.5.36-cll-lve
  174. | mysql-info:
  175. | Protocol: 53
  176. | Version: .5.36-cll-lve
  177. | Thread ID: 46010049
  178. | Capabilities flags: 63487
  179. | Some Capabilities: FoundRows, SupportsLoadDataLocal, Speaks41ProtocolOld, LongPassword, SupportsTransactions, SupportsCompression, IgnoreSigpipes, LongColumnFlag, ODBCClient, DontAllowDatabaseTableColumn, InteractiveClient, ConnectWithDatabase, Speaks41ProtocolNew, IgnoreSpaceBeforeParenthesis, Support41Auth
  180. | Status: Autocommit
  181. |_ Salt: rHRB5$ODGwB$)BQNu$M8
  182. Device type: general purpose|WAP|webcam|firewall
  183. Running (JUST GUESSING): Linux 2.6.X|3.X|2.4.X (93%), FreeBSD 6.X (86%), Tandberg embedded (85%), Fortinet Linux 2.6.X (85%)
  184. OS CPE: cpe:/o:linux:linux_kernel:2.6 cpe:/o:linux:linux_kernel:3 cpe:/o:freebsd:freebsd:6.2 cpe:/o:linux:linux_kernel:2.4 cpe:/h:tandberg:vcs cpe:/o:fortinet:linux_kernel:2.6
  185. Aggressive OS guesses: Linux 2.6.32 (93%), Linux 2.6.39 (93%), Linux 3.4 (93%), 2.6.32 (92%), Linux 3.1 - 3.2 (92%), Linux 2.6.32 - 2.6.39 (90%), Linux 3.2 - 3.8 (88%), Linux 3.8 (88%), Linux 3.12 (88%), Linux 2.6.32 - 3.0 (87%)
  186. No exact OS matches for host (test conditions non-ideal).
  187. Uptime guess: 18.506 days (since Wed Oct 29 03:09:11 2014)
  188. Network Distance: 12 hops
  189. TCP Sequence Prediction: Difficulty=262 (Good luck!)
  190. IP ID Sequence Generation: All zeros
  191.  
  192. TRACEROUTE (using port 22/tcp)
  193. HOP RTT ADDRESS
  194. 5 85.16 ms win-b4-link.telia.net (213.248.77.201)
  195. 6 95.09 ms prag-bb1-link.telia.net (213.155.133.66)
  196. 7 113.65 ms hbg-bb1-link.telia.net (62.115.136.52)
  197. 8 89.37 ms be2229.ccr42.fra03.atlas.cogentco.com (154.54.38.57)
  198. 9 97.16 ms be2261.ccr41.ams03.atlas.cogentco.com (154.54.37.29)
  199. 10 108.64 ms leaseweb-ic-126776-adm-evo.c.telia.net (213.248.88.194)
  200. 11 108.94 ms po100.sr1.evo.leaseweb.net (85.17.100.226)
  201. 12 118.86 ms budo10.adriahost.com (85.17.187.29)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement