Advertisement
w3bd3f4c3r

Untitled

Sep 3rd, 2011
1,215
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.67 KB | None | 0 0
  1. ################################# HACKED BY TEAM T!g3R #####################################
  2. SRI LANKAN ARMY HACKED BY TEAM T!g3R
  3. MEMBERS : w3bd3f4c3r, n3ll@!$4mur4!, r00t, burn3r, !nd4!nRuBuk
  4. WEBSITE : www.army.lk
  5. VULNERABILITY : SQli
  6. CREDITS : TEAM T!g3R
  7. ################################# PROOFS ###################################################
  8.  
  9. PROOF OF USER : http://i51.tinypic.com/birub5.png
  10. PROOF OF TABLES : http://i56.tinypic.com/2r56lpw.png
  11. PROOF THAT TENDER ALSO HAVING ADMINS : http://i51.tinypic.com/2v00knd.png
  12.  
  13. #################################### SERVER DETAILS ########################################
  14.  
  15. Target: http://www.army.lk/sevavanitha/sevafullart.php?id=1264
  16. Host IP: 222.165.133.215
  17. Web Server: Apache
  18. Powered-by: PHP/5.1.6
  19. DB Server: MySQL >=5
  20. Resp. Time(avg): 5342 ms
  21. Current User: sla_db@localhost
  22. Sql Version: 5.0.77
  23. Current DB: sla
  24. System User: sla_db@localhost
  25. Host Name: army.lk
  26. Installation dir: /usr/
  27. DB User: 'sla_db'@'localhost'
  28.  
  29. ###################################DATA BASE DETAILS########################################
  30.  
  31. Data Bases: information_schema
  32. sla
  33. tender_armytender
  34.  
  35. ################################# TABLES & COLUMNS #########################################
  36. ++TABLES++ ++++++COLUMNS+++++
  37. vedio_gallery
  38. users PassWord UserType FullName UserId
  39. sub_image_gallery
  40. sinhalasitrep
  41. sevavideo
  42. sevavanitha
  43. operations
  44. news
  45. main_image_gallery
  46. log
  47. donorforms
  48. country
  49. artcat
  50. armytenders TenderType TenderTimeOp TenderDateOfOpen TenderItems tenderCatEntQu tenderno
  51. tenderid
  52. SportsNews
  53. SportsCatogory
  54. SportsCalender
  55. SldrdCat
  56. SeatingPlanMain
  57. SchoolAdmission
  58. ScholarshipParent
  59. ScholarChildren
  60. RemovedSeats
  61. Regts
  62. Newsletter
  63. Greetings
  64. GreetingCards
  65. DonetionReceipient
  66. DonerDetails DonerAction DonerPaymentMethod DonerDonationAmount DonerDonateFuture
  67. DonerNominEmail DonerNominTele DonerNominAdd DonerNominName
  68. DonerProfession DonerEmail DonerCountry DonerTelephone DonerAddress
  69. DonerName DonerId
  70. DonerCatSldr
  71. DonationVsMedCat
  72. DonationCategory
  73. DonToBeRecd
  74. Comments
  75. ChildandDoner
  76. BookedSeats
  77.  
  78. ############################## USER DETAILS ###############################################
  79.  
  80. Data Found: UserId=bandara
  81. Data Found: FullName=L/Cpl Bandara
  82. Data Found: UserType=admin
  83. Data Found: PassWord=a61b610949f94df5475bac547926f2d8
  84.  
  85. Data Found: UserId=chathura
  86. Data Found: FullName=Sgm Chathura Harsha Kulasuriya
  87. Data Found: UserType=admin
  88. Data Found: PassWord=a3f1ee7ea66db7fdf09bb0ed5db6e364
  89.  
  90. Data Found: UserId=ian
  91. Data Found: FullName=Sgm Ian Weerasekara
  92. Data Found: UserType=admin
  93. Data Found: PassWord=2e7ec0e199cb9bed35fceb6922af3891
  94.  
  95. Data Found: UserId=mgobr
  96. Data Found: FullName=MGO Branch
  97. Data Found: UserType=tenderadmi
  98. Data Found: PassWord=c8758b517083196f05ac29810b924aca
  99.  
  100. Data Found: UserId=nilantha
  101. Data Found: FullName=Piyasiri WMN
  102. Data Found: UserType=superuser
  103. Data Found: PassWord=98f94c37b14568421f9a272e6079389a
  104.  
  105. Data Found: UserId=pradeep
  106. Data Found: FullName=Sgm Pradeep
  107. Data Found: UserType=admin
  108. Data Found: PassWord=5446a1e7ffa4b36fa3438cbfdddc47fe
  109.  
  110. Data Found: UserId=rohana
  111. Data Found: FullName=Cpl RKDE Kodithuwakku
  112. Data Found: UserType=admin
  113. Data Found: PassWord=d937f58676dc5dea276013874886bf12
  114.  
  115. Data Found: UserId=saleem
  116. Data Found: FullName=Sgm Saleem
  117. Data Found: UserType=admin
  118. Data Found: PassWord=95bf154075304493f83d517eeb854920
  119.  
  120. Data Found: UserId=sevavanitha
  121. Data Found: FullName=Seva Vanitha Army Branch
  122. Data Found: UserType=sevaadmi
  123. Data Found: PassWord=e64f55fb857a453b237f389eab490bd7
  124.  
  125. Data Found: UserId=susantha
  126. Data Found: FullName=S/Sgt Susantha Warusawithan
  127. Data Found: UserType=superuser
  128. Data Found: PassWord=0cf2af0f5e1d7d00d55a0b3718051adc
  129.  
  130. ############################ DONORS DETAILS #############################################
  131.  
  132. Data Found: DonerId=4
  133. Data Found: DonerName=laksiri marwin wijesingha
  134. Data Found: DonerAddress=weligepola, balangoda
  135. Data Found: DonerTelephone=0712170049
  136. Data Found: DonerCountry=Sri Lanka
  137. Data Found: DonerEmail=wijesinghakamal@yahoo.com
  138. Data Found: DonerProfession=
  139. Data Found: DonerNominName=laksiri
  140. Data Found: DonerNominAdd=weligepola,balangoda
  141. Data Found: DonerNominTele=0712170049
  142. Data Found: DonerNominEmail=wijesinghakamal@yahoo.com
  143. Data Found: DonerDonateFuture=onetime
  144. Data Found: DonerDonationAmount=0
  145. Data Found: DonerPaymentMethod=cash
  146. Data Found: DonerAction=
  147. Data Found: DonerId=6
  148. Data Found: DonerName=wijesingha wmlm
  149. Data Found: DonerAddress=midallanagoda, weligepola, balangoda
  150. Data Found: DonerTelephone=0718251732
  151. Data Found: DonerCountry=Sri Lanka
  152. Data Found: DonerEmail=wijesinghakamal@yahoo.com
  153. Data Found: DonerProfession=wife
  154. Data Found: DonerNominName=isurangi umesha
  155. Data Found: DonerNominAdd=midallanagoda, weligepola, balangoda
  156. Data Found: DonerNominTele=0718251532
  157. Data Found: DonerNominEmail=wijesinghakamal@yahoo.com
  158. Data Found: DonerDonateFuture=onetime
  159. Data Found: DonerDonationAmount=0
  160. Data Found: DonerPaymentMethod=cash
  161. Data Found: DonerAction=pending
  162. Data Found: DonerId=8
  163. Data Found: DonerName=Mahen Hewawasam
  164. Data Found: DonerAddress=POBox 3385,Doha
  165. Data Found: DonerTelephone=0097466137426
  166. Data Found: DonerCountry=Qatar
  167. Data Found: DonerEmail=mahen_hewawasam@yahoo.com
  168. Data Found: DonerProfession=Cost Consultant
  169. Data Found: DonerNominName=Mr.G.B.K.Hewawasam
  170. Data Found: DonerNominAdd=217/14, Jayasinghe Place,Hendala, Wattala.
  171. Data Found: DonerNominTele=0112931448
  172. Data Found: DonerDonateFuture=onetime
  173. Data Found: DonerDonationAmount=20000
  174. Data Found: DonerPaymentMethod=cash
  175. Data Found: DonerId=10
  176. Data Found: DonerName=nandapalan pranavan
  177. Data Found: DonerAddress=no, 08 rifille green qrts trincomalee
  178. Data Found: DonerTelephone=0777784671
  179. Data Found: DonerCountry=Sri Lanka
  180. Data Found: DonerEmail=pranavan05@hotmail.com
  181.  
  182. ################################## DATABASE TENDER DETALIS & TABLES #######################
  183. Table found: categories
  184. Table found: email_list
  185. Table found: main_cat
  186. Table found: sub_cat
  187. Table found: tbl_agent
  188. Table found: tender
  189. Table found: tender_user
  190. Table found: useradmin
  191. Table found: userlog
  192.  
  193. Column found: fname
  194. Column found: lname
  195. Column found: email
  196. Column found: com_address
  197. Column found: com_tele
  198. Column found: mobile
  199. Column found: com_name
  200. Column found: dob
  201. Column found: id
  202. Column found: country
  203. Column found: password
  204. Column found: sup_code
  205. Column found: fax
  206. Column found: username
  207. Column found: url
  208. Column found: vat
  209. Column found: province
  210. Column found: post_method
  211. Column found: lacode
  212. Column found: item_cat
  213. Column found: sup_type
  214.  
  215. Column found: user_id
  216. Column found: user_name1
  217. Column found: first_name
  218. Column found: last_name
  219. Column found: password
  220. Column found: email
  221. Column found: remote_addr
  222. Column found: confirm_hash
  223. Column found: is_confirmed
  224. Column found: date_created
  225. Column found: status
  226.  
  227. Column found: id
  228. Column found: userid
  229. Column found: login
  230. Column found: logout
  231.  
  232. ################################## USER DETAILS ###########################################
  233.  
  234. Data Found: user_id=1
  235. Data Found: password=21232f297a57a5a743894a0e4a801fc3
  236. Data Found: user_name1=admin
  237. Data Found: user_id=2
  238. Data Found: password=ef50d71cdce2d6425152baf52f7bb519
  239. Data Found: user_name1=diwan1
  240. Data Found: user_id=3
  241. Data Found: password=e10adc3949ba59abbe56e057f20f883e
  242. Data Found: user_name1=pradeepa
  243. Data Found: user_id=4
  244. Data Found: password=e10adc3949ba59abbe56e057f20f883e
  245. Data Found: user_name1=sunimalee
  246. Data Found: user_id=5
  247. Data Found: password=e10adc3949ba59abbe56e057f20f883e
  248. Data Found: user_name1=roshan
  249. Data Found: user_id=6
  250. Data Found: password=e10adc3949ba59abbe56e057f20f883e
  251. Data Found: user_name1=malee
  252. Data Found: user_id=7
  253. Data Found: password=ec04b50f695ad6dfb5097b16da3ef29a
  254. Data Found: user_name1=rakith
  255. Data Found: user_id=8
  256. Data Found: password=a252af026b8c6e37884df3f4c2766a7e
  257. Data Found: user_name1=testwox
  258. Data Found: user_id=9
  259. Data Found: password=7a95dec218ffaaf8992bb48b4bd94367
  260. Data Found: user_name1=testuser
  261. Data Found: user_id=10
  262. Data Found: password=a385cf6527d2d06e487fe1ab842e0342
  263. Data Found: user_name1=indika
  264. Data Found: user_id=11
  265. Data Found: password=fbf643a93cc45c20e24452d80da90b1e
  266. Data Found: user_name1=rakith2
  267. Data Found: user_id=12
  268. Data Found: password=fd99cbef084b9ff6bbad48eaec310ca0
  269. Data Found: user_name1=pabasara
  270. Data Found: user_id=13
  271. Data Found: password=e24db86c0dadf001d3029a36de866a20
  272. Data Found: user_name1=udyangani
  273. Data Found: user_id=14
  274. Data Found: password=e2e8320c55a1884a7e0f67a928986e69
  275. Data Found: user_name1=achini
  276. #################### HACKED BY TEAM T!g3R ##################################################
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement