Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- sh LinEnum.sh
- [00;31m#########################################################[00m
- [00;31m#[00m [00;33mLocal Linux Enumeration & Privilege Escalation Script[00m [00;31m#[00m
- [00;31m#########################################################[00m
- [00;33m# www.rebootuser.com[00m
- [00;33m# version 0.93[00m
- [-] Debug Info
- [00;33m[+] Thorough tests = Disabled (SUID/GUID checks will not be perfomed!)[00m
- [00;33mScan started at:
- Thu Nov 15 03:27:29 EST 2018
- [00m
- [00;33m### SYSTEM ##############################################[00m
- [00;31m[-] Kernel information:[00m
- Linux punchout 3.19.0-25-generic #26~14.04.1-Ubuntu SMP Fri Jul 24 21:16:20 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux
- [00;31m[-] Kernel information (continued):[00m
- Linux version 3.19.0-25-generic (buildd@lgw01-20) (gcc version 4.8.2 (Ubuntu 4.8.2-19ubuntu1) ) #26~14.04.1-Ubuntu SMP Fri Jul 24 21:16:20 UTC 2015
- [00;31m[-] Specific release information:[00m
- DISTRIB_ID=Ubuntu
- DISTRIB_RELEASE=14.04
- DISTRIB_CODENAME=trusty
- DISTRIB_DESCRIPTION="Ubuntu 14.04.3 LTS"
- NAME="Ubuntu"
- VERSION="14.04.3 LTS, Trusty Tahr"
- ID=ubuntu
- ID_LIKE=debian
- PRETTY_NAME="Ubuntu 14.04.3 LTS"
- VERSION_ID="14.04"
- HOME_URL="http://www.ubuntu.com/"
- SUPPORT_URL="http://help.ubuntu.com/"
- BUG_REPORT_URL="http://bugs.launchpad.net/ubuntu/"
- [00;31m[-] Hostname:[00m
- punchout
- [00;33m### USER/GROUP ##########################################[00m
- [00;31m[-] Current user/group info:[00m
- uid=1000(littlemac) gid=1000(littlemac) groups=1000(littlemac),4(adm),24(cdrom),27(sudo),30(dip),46(plugdev),110(lpadmin),111(sambashare)
- [00;31m[-] Users that have previously logged onto the system:[00m
- Username Port From Latest
- root tty1 Thu Apr 21 04:17:57 -0400 2016
- littlemac pts/0 10.11.0.128 Thu Nov 15 03:12:32 -0500 2018
- [00;31m[-] Who else is logged on:[00m
- 03:27:29 up 1 day, 15:04, 1 user, load average: 0.00, 0.02, 0.05
- USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT
- littlema pts/0 10.11.0.128 03:12 2.00s 0.01s 0.00s w
- [00;31m[-] Group memberships:[00m
- uid=0(root) gid=0(root) groups=0(root)
- uid=1(daemon) gid=1(daemon) groups=1(daemon)
- uid=2(bin) gid=2(bin) groups=2(bin)
- uid=3(sys) gid=3(sys) groups=3(sys)
- uid=4(sync) gid=65534(nogroup) groups=65534(nogroup)
- uid=5(games) gid=60(games) groups=60(games)
- uid=6(man) gid=12(man) groups=12(man)
- uid=7(lp) gid=7(lp) groups=7(lp)
- uid=8(mail) gid=8(mail) groups=8(mail)
- uid=9(news) gid=9(news) groups=9(news)
- uid=10(uucp) gid=10(uucp) groups=10(uucp)
- uid=13(proxy) gid=13(proxy) groups=13(proxy)
- uid=33(www-data) gid=33(www-data) groups=33(www-data)
- uid=34(backup) gid=34(backup) groups=34(backup)
- uid=38(list) gid=38(list) groups=38(list)
- uid=39(irc) gid=39(irc) groups=39(irc)
- uid=41(gnats) gid=41(gnats) groups=41(gnats)
- uid=65534(nobody) gid=65534(nogroup) groups=65534(nogroup)
- uid=100(libuuid) gid=101(libuuid) groups=101(libuuid)
- uid=101(syslog) gid=104(syslog) groups=104(syslog),4(adm)
- uid=102(messagebus) gid=106(messagebus) groups=106(messagebus)
- uid=103(landscape) gid=109(landscape) groups=109(landscape)
- uid=104(sshd) gid=65534(nogroup) groups=65534(nogroup)
- uid=1000(littlemac) gid=1000(littlemac) groups=1000(littlemac),4(adm),24(cdrom),27(sudo),30(dip),46(plugdev),110(lpadmin),111(sambashare)
- LinEnum.sh: 177: LinEnum.sh: [[: not found
- [00;31m[-] Contents of /etc/passwd:[00m
- root:x:0:0:root:/root:/bin/sh
- daemon:x:1:1:daemon:/usr/sbin:/usr/sbin/nologin
- bin:x:2:2:bin:/bin:/usr/sbin/nologin
- sys:x:3:3:sys:/dev:/usr/sbin/nologin
- sync:x:4:65534:sync:/bin:/bin/sync
- games:x:5:60:games:/usr/games:/usr/sbin/nologin
- man:x:6:12:man:/var/cache/man:/usr/sbin/nologin
- lp:x:7:7:lp:/var/spool/lpd:/usr/sbin/nologin
- mail:x:8:8:mail:/var/mail:/usr/sbin/nologin
- news:x:9:9:news:/var/spool/news:/usr/sbin/nologin
- uucp:x:10:10:uucp:/var/spool/uucp:/usr/sbin/nologin
- proxy:x:13:13:proxy:/bin:/usr/sbin/nologin
- www-data:x:33:33:www-data:/var/www:/usr/sbin/nologin
- backup:x:34:34:backup:/var/backups:/usr/sbin/nologin
- list:x:38:38:Mailing List Manager:/var/list:/usr/sbin/nologin
- irc:x:39:39:ircd:/var/run/ircd:/usr/sbin/nologin
- gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/usr/sbin/nologin
- nobody:x:65534:65534:nobody:/nonexistent:/usr/sbin/nologin
- libuuid:x:100:101::/var/lib/libuuid:
- syslog:x:101:104::/home/syslog:/bin/false
- messagebus:x:102:106::/var/run/dbus:/bin/false
- landscape:x:103:109::/var/lib/landscape:/bin/false
- sshd:x:104:65534::/var/run/sshd:/usr/sbin/nologin
- littlemac:x:1000:1000:littlemac,,,:/home/littlemac:/bin/sh
- [00;31m[-] Super user account(s):[00m
- root
- [00;31m[-] Are permissions on /home directories lax:[00m
- total 12K
- drwxr-xr-x 3 root root 4.0K Jan 26 2016 .
- drwxr-xr-x 22 root root 4.0K Jan 26 2016 ..
- drwxr-xr-x 3 littlemac littlemac 4.0K Nov 15 03:13 littlemac
- [00;33m### ENVIRONMENTAL #######################################[00m
- [00;31m[-] Environment information:[00m
- MAIL=/var/mail/littlemac
- USER=littlemac
- SSH_CLIENT=10.11.0.128 56578 22
- HOME=/home/littlemac
- OLDPWD=/home/littlemac
- SSH_TTY=/dev/pts/0
- LC_CTYPE=UTF-8
- LOGNAME=littlemac
- TERM=xterm-256color
- XDG_SESSION_ID=1
- PATH=/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/bin
- XDG_RUNTIME_DIR=/run/user/1000
- LANG=en_US.UTF-8
- SHELL=/bin/sh
- PWD=/tmp
- SSH_CONNECTION=10.11.0.128 56578 10.11.1.219 22
- [00;31m[-] Path information:[00m
- /usr/bin:/bin:/usr/sbin:/sbin:/usr/local/bin
- [00;31m[-] Available shells:[00m
- # /etc/shells: valid login shells
- /bin/sh
- /bin/dash
- /usr/bin/tmux
- /usr/bin/screen
- [00;31m[-] Current umask value:[00m
- 0002
- u=rwx,g=rwx,o=rx
- [00;31m[-] umask value as specified in /etc/login.defs:[00m
- UMASK 022
- [00;31m[-] Password and storage information:[00m
- PASS_MAX_DAYS 99999
- PASS_MIN_DAYS 0
- PASS_WARN_AGE 7
- ENCRYPT_METHOD SHA512
- [00;33m### JOBS/TASKS ##########################################[00m
- [00;31m[-] Cron jobs:[00m
- -rw-r--r-- 1 root root 722 Feb 9 2013 /etc/crontab
- /etc/cron.d:
- total 12
- drwxr-xr-x 2 root root 4096 Jan 26 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 102 Feb 9 2013 .placeholder
- /etc/cron.daily:
- total 76
- drwxr-xr-x 2 root root 4096 Jan 26 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 102 Feb 9 2013 .placeholder
- -rwxr-xr-x 1 root root 625 Oct 14 2015 apache2
- -rwxr-xr-x 1 root root 376 Apr 4 2014 apport
- -rwxr-xr-x 1 root root 15481 Apr 10 2014 apt
- -rwxr-xr-x 1 root root 314 Feb 17 2014 aptitude
- -rwxr-xr-x 1 root root 355 Jun 4 2013 bsdmainutils
- -rwxr-xr-x 1 root root 256 Mar 7 2014 dpkg
- -rwxr-xr-x 1 root root 372 Jan 22 2014 logrotate
- -rwxr-xr-x 1 root root 1261 Sep 23 2014 man-db
- -rwxr-xr-x 1 root root 435 Jun 20 2013 mlocate
- -rwxr-xr-x 1 root root 249 Feb 16 2014 passwd
- -rwxr-xr-x 1 root root 2417 May 13 2013 popularity-contest
- -rwxr-xr-x 1 root root 214 Oct 6 2014 update-notifier-common
- -rwxr-xr-x 1 root root 328 Jul 18 2014 upstart
- /etc/cron.hourly:
- total 12
- drwxr-xr-x 2 root root 4096 Jan 26 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 102 Feb 9 2013 .placeholder
- /etc/cron.monthly:
- total 12
- drwxr-xr-x 2 root root 4096 Jan 26 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 102 Feb 9 2013 .placeholder
- /etc/cron.weekly:
- total 28
- drwxr-xr-x 2 root root 4096 Jan 26 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 102 Feb 9 2013 .placeholder
- -rwxr-xr-x 1 root root 730 Feb 23 2014 apt-xapian-index
- -rwxr-xr-x 1 root root 427 Apr 16 2014 fstrim
- -rwxr-xr-x 1 root root 771 Sep 23 2014 man-db
- -rwxr-xr-x 1 root root 211 Oct 6 2014 update-notifier-common
- [00;31m[-] Crontab contents:[00m
- # /etc/crontab: system-wide crontab
- # Unlike any other crontab you don't have to run the `crontab'
- # command to install the new version when you edit this file
- # and files in /etc/cron.d. These files also have username fields,
- # that none of the other crontabs do.
- SHELL=/bin/sh
- PATH=/usr/local/sbin:/usr/local/bin:/sbin:/bin:/usr/sbin:/usr/bin
- # m h dom mon dow user command
- 17 * * * * root cd / && run-parts --report /etc/cron.hourly
- 25 6 * * * root test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.daily )
- 47 6 * * 7 root test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.weekly )
- 52 6 1 * * root test -x /usr/sbin/anacron || ( cd / && run-parts --report /etc/cron.monthly )
- #
- [00;33m### NETWORKING ##########################################[00m
- [00;31m[-] Network and IP info:[00m
- eth0 Link encap:Ethernet HWaddr 00:50:56:b8:90:af
- inet addr:10.11.1.219 Bcast:10.11.255.255 Mask:255.255.0.0
- inet6 addr: fe80::250:56ff:feb8:90af/64 Scope:Link
- UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
- RX packets:3344278 errors:0 dropped:0 overruns:0 frame:0
- TX packets:2811216 errors:0 dropped:0 overruns:0 carrier:0
- collisions:0 txqueuelen:1000
- RX bytes:475341843 (475.3 MB) TX bytes:568109305 (568.1 MB)
- lo Link encap:Local Loopback
- inet addr:127.0.0.1 Mask:255.0.0.0
- inet6 addr: ::1/128 Scope:Host
- UP LOOPBACK RUNNING MTU:65536 Metric:1
- RX packets:314871 errors:0 dropped:0 overruns:0 frame:0
- TX packets:314871 errors:0 dropped:0 overruns:0 carrier:0
- collisions:0 txqueuelen:0
- RX bytes:26450356 (26.4 MB) TX bytes:26450356 (26.4 MB)
- [00;31m[-] ARP history:[00m
- ? (10.11.0.194) at e6:59:a6:ad:7e:3d [ether] on eth0
- ? (10.11.0.200) at 26:b5:27:f3:a1:07 [ether] on eth0
- ? (10.11.0.141) at ee:4b:ce:53:fc:a3 [ether] on eth0
- ? (10.11.0.155) at da:52:03:5b:3f:47 [ether] on eth0
- ? (10.11.0.203) at 2a:cc:00:6e:7e:12 [ether] on eth0
- ? (10.11.0.212) at 92:5a:a5:63:56:90 [ether] on eth0
- ? (10.11.0.128) at da:ed:d1:16:eb:99 [ether] on eth0
- ? (10.11.0.83) at b2:bf:cd:92:06:2b [ether] on eth0
- ? (10.11.0.55) at de:15:79:35:f8:55 [ether] on eth0
- ? (10.11.0.151) at 9e:50:b6:a9:e4:e6 [ether] on eth0
- ? (10.11.0.227) at 5e:d9:d0:e4:3f:de [ether] on eth0
- ? (10.11.0.199) at aa:6f:73:f6:05:73 [ether] on eth0
- ? (10.11.0.126) at 4e:3a:19:47:9c:41 [ether] on eth0
- ? (10.11.0.129) at 42:f4:d9:87:e8:ad [ether] on eth0
- [00;31m[-] Listening TCP:[00m
- Active Internet connections (servers and established)
- Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
- tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN -
- tcp 0 17568 10.11.1.219:22 10.11.0.128:56578 ESTABLISHED -
- tcp6 0 0 :::22 :::* LISTEN -
- tcp6 0 0 :::80 :::* LISTEN -
- [00;31m[-] Listening UDP:[00m
- Active Internet connections (servers and established)
- Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
- [00;33m### SERVICES #############################################[00m
- [00;31m[-] Running processes:[00m
- USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND
- root 1 0.0 0.2 33744 4244 ? Ss Nov13 0:11 /sbin/init
- root 2 0.0 0.0 0 0 ? S Nov13 0:00 [kthreadd]
- root 3 0.0 0.0 0 0 ? S Nov13 0:23 [ksoftirqd/0]
- root 4 0.0 0.0 0 0 ? S Nov13 0:00 [kworker/0:0]
- root 5 0.0 0.0 0 0 ? S< Nov13 0:00 [kworker/0:0H]
- root 7 0.0 0.0 0 0 ? S Nov13 0:40 [rcu_sched]
- root 8 0.0 0.0 0 0 ? S Nov13 0:00 [rcu_bh]
- root 9 0.0 0.0 0 0 ? S Nov13 0:39 [rcuos/0]
- root 10 0.0 0.0 0 0 ? S Nov13 0:00 [rcuob/0]
- root 11 0.0 0.0 0 0 ? S Nov13 0:00 [migration/0]
- root 12 0.0 0.0 0 0 ? S Nov13 0:00 [watchdog/0]
- root 13 0.0 0.0 0 0 ? S< Nov13 0:00 [khelper]
- root 14 0.0 0.0 0 0 ? S Nov13 0:00 [kdevtmpfs]
- root 15 0.0 0.0 0 0 ? S< Nov13 0:00 [netns]
- root 16 0.0 0.0 0 0 ? S< Nov13 0:00 [perf]
- root 17 0.0 0.0 0 0 ? S Nov13 0:00 [khungtaskd]
- root 18 0.0 0.0 0 0 ? S< Nov13 0:00 [writeback]
- root 19 0.0 0.0 0 0 ? SN Nov13 0:00 [ksmd]
- root 20 0.0 0.0 0 0 ? SN Nov13 0:00 [khugepaged]
- root 21 0.0 0.0 0 0 ? S< Nov13 0:00 [crypto]
- root 22 0.0 0.0 0 0 ? S< Nov13 0:00 [kintegrityd]
- root 23 0.0 0.0 0 0 ? S< Nov13 0:00 [bioset]
- root 24 0.0 0.0 0 0 ? S< Nov13 0:00 [kblockd]
- root 25 0.0 0.0 0 0 ? S< Nov13 0:00 [ata_sff]
- root 26 0.0 0.0 0 0 ? S< Nov13 0:00 [md]
- root 27 0.0 0.0 0 0 ? S< Nov13 0:00 [devfreq_wq]
- root 31 0.0 0.0 0 0 ? S Nov13 0:00 [kswapd0]
- root 32 0.0 0.0 0 0 ? S Nov13 0:00 [fsnotify_mark]
- root 33 0.0 0.0 0 0 ? S Nov13 0:00 [ecryptfs-kthrea]
- root 45 0.0 0.0 0 0 ? S< Nov13 0:00 [kthrotld]
- root 46 0.0 0.0 0 0 ? S< Nov13 0:00 [acpi_thermal_pm]
- root 47 0.0 0.0 0 0 ? S Nov13 0:00 [scsi_eh_0]
- root 48 0.0 0.0 0 0 ? S< Nov13 0:00 [scsi_tmf_0]
- root 49 0.0 0.0 0 0 ? S Nov13 0:00 [scsi_eh_1]
- root 50 0.0 0.0 0 0 ? S< Nov13 0:00 [scsi_tmf_1]
- root 55 0.0 0.0 0 0 ? S< Nov13 0:00 [ipv6_addrconf]
- root 56 0.0 0.0 0 0 ? S Nov13 1:30 [kworker/0:2]
- root 76 0.0 0.0 0 0 ? S< Nov13 0:00 [deferwq]
- root 77 0.0 0.0 0 0 ? S< Nov13 0:00 [charger_manager]
- root 132 0.0 0.0 0 0 ? S< Nov13 0:00 [mpt_poll_0]
- root 133 0.0 0.0 0 0 ? S< Nov13 0:00 [mpt/0]
- root 134 0.0 0.0 0 0 ? S< Nov13 0:00 [kpsmoused]
- root 136 0.0 0.0 0 0 ? S Nov13 0:00 [scsi_eh_2]
- root 137 0.0 0.0 0 0 ? S< Nov13 0:00 [scsi_tmf_2]
- root 143 0.0 0.0 0 0 ? S< Nov13 0:00 [kdmflush]
- root 144 0.0 0.0 0 0 ? S< Nov13 0:00 [bioset]
- root 146 0.0 0.0 0 0 ? S< Nov13 0:00 [kdmflush]
- root 148 0.0 0.0 0 0 ? S< Nov13 0:00 [bioset]
- root 162 0.0 0.0 0 0 ? S Nov13 0:08 [jbd2/dm-0-8]
- root 163 0.0 0.0 0 0 ? S< Nov13 0:00 [ext4-rsv-conver]
- root 294 0.0 0.0 19480 180 ? S Nov13 0:00 upstart-udev-bridge --daemon
- root 298 0.0 0.1 51428 3556 ? Ss Nov13 0:00 /lib/systemd/systemd-udevd --daemon
- root 315 0.0 0.0 0 0 ? S< Nov13 0:00 [ext4-rsv-conver]
- message+ 357 0.0 0.1 39232 2556 ? Ss Nov13 0:00 dbus-daemon --system --fork
- root 379 0.0 0.1 43456 3140 ? Ss Nov13 0:00 /lib/systemd/systemd-logind
- syslog 381 0.0 1.4 256236 28804 ? Ssl Nov13 0:49 rsyslogd
- root 387 0.0 0.0 15280 252 ? S Nov13 0:00 upstart-file-bridge --daemon
- root 472 0.0 0.0 0 0 ? S< Nov13 0:00 [ttm_swap]
- root 656 0.0 0.0 15396 1536 ? S Nov13 0:00 upstart-socket-bridge --daemon
- root 724 0.0 0.0 15824 2036 tty4 Ss+ Nov13 0:00 /sbin/getty -8 38400 tty4
- root 728 0.0 0.0 15824 1976 tty5 Ss+ Nov13 0:00 /sbin/getty -8 38400 tty5
- root 733 0.0 0.0 15824 2012 tty2 Ss+ Nov13 0:00 /sbin/getty -8 38400 tty2
- root 734 0.0 0.1 15824 2076 tty3 Ss+ Nov13 0:00 /sbin/getty -8 38400 tty3
- root 736 0.0 0.0 15824 2036 tty6 Ss+ Nov13 0:00 /sbin/getty -8 38400 tty6
- root 768 0.0 0.2 61372 5400 ? Ss Nov13 0:52 /usr/sbin/sshd -D
- root 769 0.0 0.0 4372 1628 ? Ss Nov13 0:00 acpid -c /etc/acpi/events -s /var/run/acpid.socket
- daemon 772 0.0 0.0 19144 160 ? Ss Nov13 0:00 atd
- root 773 0.0 0.1 23660 2172 ? Ss Nov13 0:00 cron
- root 1004 0.0 0.2 69204 4692 ? Ss Nov13 0:05 /usr/sbin/apache2 -k start
- root 1111 1.2 0.1 8708 3356 ? Ss Nov13 28:21 /usr/sbin/knockd -d
- root 1123 1.1 0.1 8708 3868 ? S Nov13 28:07 knockd
- root 1126 0.0 0.0 15824 2016 tty1 Ss+ Nov13 0:00 /sbin/getty -8 38400 tty1
- root 1213 0.0 0.3 165508 7604 ? Sl Nov13 1:47 /usr/sbin/vmtoolsd
- root 1309 0.0 0.0 0 0 ? S Nov13 0:00 [kauditd]
- root 8504 0.0 0.0 0 0 ? S< Nov13 0:00 [kworker/0:1H]
- www-data 19848 0.0 0.3 818340 7888 ? Sl Nov14 0:45 /usr/sbin/apache2 -k start
- www-data 19849 0.0 0.3 621496 7536 ? Sl Nov14 0:45 /usr/sbin/apache2 -k start
- root 29560 0.0 0.0 0 0 ? S Nov14 0:00 [kworker/u2:1]
- root 29584 0.0 0.3 105636 6448 ? Ss 03:12 0:00 sshd: littlemac [priv]
- littlem+ 29588 0.0 0.2 105636 4100 ? S 03:12 0:00 sshd: littlemac@pts/0
- littlem+ 29589 0.0 0.0 4448 1588 pts/0 Ss 03:12 0:00 -sh
- root 29591 0.0 0.0 0 0 ? S 03:12 0:00 [kworker/u2:0]
- littlem+ 29616 0.0 0.0 4768 1868 pts/0 S+ 03:27 0:00 sh LinEnum.sh
- littlem+ 29617 0.0 0.0 4768 1604 pts/0 S+ 03:27 0:00 sh LinEnum.sh
- littlem+ 29618 0.0 0.0 7204 1748 pts/0 S+ 03:27 0:00 tee -a
- root 29750 0.0 0.0 51424 1564 ? S 03:27 0:00 /lib/systemd/systemd-udevd --daemon
- littlem+ 29755 0.0 0.1 18424 2488 pts/0 R+ 03:27 0:00 ps aux
- [00;31m[-] Process binaries and associated permissions (from above list):[00m
- 248K -rwxr-xr-x 1 root root 247K Jul 15 2015 /lib/systemd/systemd-logind
- 236K -rwxr-xr-x 1 root root 235K Jul 15 2015 /lib/systemd/systemd-udevd
- 32K -rwxr-xr-x 2 root root 32K Aug 4 2015 /sbin/getty
- 260K -rwxr-xr-x 1 root root 260K Jul 18 2014 /sbin/init
- 624K -rwxr-xr-x 1 root root 623K Oct 14 2015 /usr/sbin/apache2
- 48K -rwxr-xr-x 1 root root 47K Mar 25 2009 /usr/sbin/knockd
- 752K -rwxr-xr-x 1 root root 749K May 12 2014 /usr/sbin/sshd
- 0 lrwxrwxrwx 1 root root 37 Jan 26 2016 /usr/sbin/vmtoolsd -> /usr/lib/vmware-tools/sbin64/vmtoolsd
- [00;31m[-] /etc/init.d/ binary permissions:[00m
- total 196
- drwxr-xr-x 2 root root 4096 Apr 21 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 0 Aug 5 2015 .legacy-bootordering
- -rw-r--r-- 1 root root 2427 Mar 12 2014 README
- -rwxr-xr-x 1 root root 2243 Apr 3 2014 acpid
- -rwxr-xr-x 1 root root 9974 Jan 7 2014 apache2
- -rwxr-xr-x 1 root root 4596 Apr 24 2015 apparmor
- -rwxr-xr-x 1 root root 2801 May 15 2015 apport
- -rwxrwxr-x 1 root root 1071 Sep 8 2013 atd
- -rwxr-xr-x 1 root root 1919 Jan 18 2011 console-setup
- lrwxrwxrwx 1 root root 21 Jan 26 2016 cron -> /lib/init/upstart-job
- -rwxr-xr-x 1 root root 2813 Nov 25 2014 dbus
- -rwxr-xr-x 1 root root 1217 Mar 7 2013 dns-clean
- lrwxrwxrwx 1 root root 21 Mar 14 2012 friendly-recovery -> /lib/init/upstart-job
- -rwxr-xr-x 1 root root 1105 May 13 2015 grub-common
- -rwxr-xr-x 1 root root 1329 Mar 12 2014 halt
- -rwxr-xr-x 1 root root 3523 Jan 4 2013 iptables-persistent
- -rwxr-xr-x 1 root root 1864 Nov 12 2012 irqbalance
- -rwxr-xr-x 1 root root 1293 Mar 12 2014 killprocs
- -rwxr-xr-x 1 root root 1990 Jan 22 2013 kmod
- -rwxr-xr-x 1 root root 1572 Mar 25 2009 knockd
- -rwxr-xr-x 1 root root 4479 Mar 20 2014 networking
- -rwxr-xr-x 1 root root 1346 Mar 13 2015 ondemand
- -rwxr-xr-x 1 root root 561 Apr 21 2015 pppd-dns
- -rwxr-xr-x 1 root root 1192 May 27 2013 procps
- -rwxr-xr-x 1 root root 6120 Mar 12 2014 rc
- -rwxr-xr-x 1 root root 782 Mar 12 2014 rc.local
- -rwxr-xr-x 1 root root 117 Mar 12 2014 rcS
- -rwxr-xr-x 1 root root 639 Mar 12 2014 reboot
- -rwxr-xr-x 1 root root 2918 Jun 13 2014 resolvconf
- -rwxr-xr-x 1 root root 4395 Apr 17 2014 rsync
- -rwxr-xr-x 1 root root 2913 Dec 4 2013 rsyslog
- -rwxr-xr-x 1 root root 1226 Jul 22 2013 screen-cleanup
- -rwxr-xr-x 1 root root 3920 Mar 12 2014 sendsigs
- -rwxr-xr-x 1 root root 590 Mar 12 2014 single
- -rw-r--r-- 1 root root 4290 Mar 12 2014 skeleton
- -rwxr-xr-x 1 root root 4077 May 2 2014 ssh
- -rwxr-xr-x 1 root root 731 Feb 4 2014 sudo
- -rwxr-xr-x 1 root root 6173 Apr 13 2014 udev
- -rwxr-xr-x 1 root root 2721 Mar 12 2014 umountfs
- -rwxr-xr-x 1 root root 2260 Mar 12 2014 umountnfs.sh
- -rwxr-xr-x 1 root root 1872 Mar 12 2014 umountroot
- -rwxr-xr-x 1 root root 1361 Dec 6 2013 unattended-upgrades
- -rwxr-xr-x 1 root root 3111 Mar 12 2014 urandom
- [00;31m[-] /etc/init/ config file permissions:[00m
- total 336
- drwxr-xr-x 2 root root 4096 Jan 26 2016 .
- drwxr-xr-x 93 root root 4096 Jan 16 2017 ..
- -rw-r--r-- 1 root root 320 Apr 3 2014 acpid.conf
- -rw-r--r-- 1 root root 1582 May 15 2015 apport.conf
- -rw-r--r-- 1 root root 261 Oct 21 2013 atd.conf
- -rw-r--r-- 1 root root 328 Feb 21 2014 bootmisc.sh.conf
- -rw-r--r-- 1 root root 232 Feb 21 2014 checkfs.sh.conf
- -rw-r--r-- 1 root root 253 Feb 21 2014 checkroot-bootclean.sh.conf
- -rw-r--r-- 1 root root 307 Feb 21 2014 checkroot.sh.conf
- -rw-r--r-- 1 root root 250 Oct 8 2012 console-font.conf
- -rw-r--r-- 1 root root 509 Dec 21 2010 console-setup.conf
- -rw-r--r-- 1 root root 266 Apr 11 2014 console.conf
- -rw-r--r-- 1 root root 1122 Apr 11 2014 container-detect.conf
- -rw-r--r-- 1 root root 356 Apr 11 2014 control-alt-delete.conf
- -rw-r--r-- 1 root root 297 Feb 9 2013 cron.conf
- -rw-r--r-- 1 root root 489 Nov 11 2013 dbus.conf
- -rw-r--r-- 1 root root 273 Nov 19 2010 dmesg.conf
- -rw-r--r-- 1 root root 1377 Apr 11 2014 failsafe.conf
- -rw-r--r-- 1 root root 267 Apr 11 2014 flusharly-job-log.conf
- -rw-r--r-- 1 root root 1247 Mar 14 2012 friendly-recovery.conf
- -rw-r--r-- 1 root root 284 Jul 23 2013 hostname.conf
- -rw-r--r-- 1 root root 444 Apr 16 2014 hwclock-save.conf
- -rw-r--r-- 1 root root 557 Apr 16 2014 hwclock.conf
- -rw-r--r-- 1 root root 579 Aug 26 2014 irqbalance.conf
- -rw-r--r-- 1 root root 689 Apr 10 2014 kmod.conf
- -rw-r--r-- 1 root root 268 Feb 21 2014 mountall-bootclean.sh.conf
- -rw-r--r-- 1 root root 349 Feb 21 2014 mountall-net.conf
- -rw-r--r-- 1 root root 261 Feb 21 2014 mountall-reboot.conf
- -rw-r--r-- 1 root root 1201 Feb 21 2014 mountall-shell.conf
- -rw-r--r-- 1 root root 1232 Feb 21 2014 mountall.conf
- -rw-r--r-- 1 root root 311 Feb 21 2014 mountall.sh.conf
- -rw-r--r-- 1 root root 327 Feb 21 2014 mountdevsubfs.sh.conf
- -rw-r--r-- 1 root root 405 Feb 21 2014 mounted-debugfs.conf
- -rw-r--r-- 1 root root 730 Feb 21 2014 mounted-dev.conf
- -rw-r--r-- 1 root root 480 Feb 21 2014 mounted-proc.conf
- -rw-r--r-- 1 root root 618 Feb 21 2014 mounted-run.conf
- -rw-r--r-- 1 root root 1890 Feb 21 2014 mounted-tmp.conf
- -rw-r--r-- 1 root root 903 Feb 21 2014 mounted-var.conf
- -rw-r--r-- 1 root root 323 Feb 21 2014 mountkernfs.sh.conf
- -rw-r--r-- 1 root root 249 Feb 21 2014 mountnfs-bootclean.sh.conf
- -rw-r--r-- 1 root root 313 Feb 21 2014 mountnfs.sh.conf
- -rw-r--r-- 1 root root 238 Feb 21 2014 mtab.sh.conf
- -rw-r--r-- 1 root root 530 Mar 20 2014 network-interface-container.conf
- -rw-r--r-- 1 root root 1756 May 4 2013 network-interface-security.conf
- -rw-r--r-- 1 root root 1109 May 8 2014 network-interface.conf
- -rw-r--r-- 1 root root 2493 Mar 20 2014 networking.conf
- -rw-r--r-- 1 root root 534 Feb 16 2014 passwd.conf
- -rw-r--r-- 1 root root 326 Mar 13 2014 plymouth-log.conf
- -rw-r--r-- 1 root root 675 Mar 13 2014 plymouth-ready.conf
- -rw-r--r-- 1 root root 778 Mar 13 2014 plymouth-shutdown.conf
- -rw-r--r-- 1 root root 899 Mar 13 2014 plymouth-splash.conf
- -rw-r--r-- 1 root root 796 Mar 13 2014 plymouth-stop.conf
- -rw-r--r-- 1 root root 421 Apr 11 2014 plymouth-upstart-bridge.conf
- -rw-r--r-- 1 root root 519 Mar 13 2014 plymouth.conf
- -rw-r--r-- 1 root root 363 Jan 6 2014 procps.conf
- -rw-r--r-- 1 root root 1543 Apr 11 2014 rc-sysinit.conf
- -rw-r--r-- 1 root root 661 Apr 11 2014 rc.conf
- -rw-r--r-- 1 root root 683 Apr 11 2014 rcS.conf
- -rw-r--r-- 1 root root 457 Dec 13 2012 resolvconf.conf
- -rw-r--r-- 1 root root 426 Apr 18 2013 rsyslog.conf
- -rw-r--r-- 1 root root 230 Mar 18 2011 setvtrgb.conf
- -rw-r--r-- 1 root root 277 Apr 11 2014 shutdown.conf
- -rw-r--r-- 1 root root 641 May 2 2014 ssh.conf
- -rw-r--r-- 1 root root 711 Mar 12 2014 startpar-bridge.conf
- -rw-r--r-- 1 root root 1183 Oct 29 2014 systemd-logind.conf
- -rw-r--r-- 1 root root 348 Apr 11 2014 tty1.conf
- -rw-r--r-- 1 root root 333 Apr 11 2014 tty2.conf
- -rw-r--r-- 1 root root 333 Apr 11 2014 tty3.conf
- -rw-r--r-- 1 root root 333 Apr 11 2014 tty4.conf
- -rw-r--r-- 1 root root 232 Apr 11 2014 tty5.conf
- -rw-r--r-- 1 root root 232 Apr 11 2014 tty6.conf
- -rw-r--r-- 1 root root 645 Sep 12 2014 udev-fallback-graphics.conf
- -rw-r--r-- 1 root root 768 Apr 13 2014 udev-finish.conf
- -rw-r--r-- 1 root root 337 Apr 13 2014 udev.conf
- -rw-r--r-- 1 root root 356 Apr 13 2014 udevmonitor.conf
- -rw-r--r-- 1 root root 352 Apr 13 2014 udevtrigger.conf
- -rw-r--r-- 1 root root 473 Feb 28 2014 ufw.conf
- -rw-r--r-- 1 root root 412 Apr 11 2014 upstart-file-bridge.conf
- -rw-r--r-- 1 root root 329 Apr 11 2014 upstart-socket-bridge.conf
- -rw-r--r-- 1 root root 553 Apr 11 2014 upstart-udev-bridge.conf
- -rw-r--r-- 1 root root 683 Mar 25 2013 ureadahead-other.conf
- -rw-r--r-- 1 root root 889 Mar 25 2013 ureadahead.conf
- -r--r--r-- 1 root root 901 Jan 26 2016 vmware-tools.conf
- -rw-r--r-- 1 root root 1521 Apr 11 2014 wait-for-state.conf
- [00;31m[-] /lib/systemd/* config file permissions:[00m
- /lib/systemd/:
- total 728K
- drwxr-xr-x 6 root root 4.0K Jan 26 2016 system
- -rwxr-xr-x 1 root root 67K Jul 15 2015 systemd-hostnamed
- -rwxr-xr-x 1 root root 71K Jul 15 2015 systemd-localed
- -rwxr-xr-x 1 root root 247K Jul 15 2015 systemd-logind
- -rwxr-xr-x 1 root root 23K Jul 15 2015 systemd-multi-seat-x
- -rwxr-xr-x 1 root root 75K Jul 15 2015 systemd-timedated
- -rwxr-xr-x 1 root root 235K Jul 15 2015 systemd-udevd
- /lib/systemd/system:
- total 88K
- drwxr-xr-x 2 root root 4.0K Jan 26 2016 dbus.target.wants
- drwxr-xr-x 2 root root 4.0K Jan 26 2016 multi-user.target.wants
- drwxr-xr-x 2 root root 4.0K Jan 26 2016 sockets.target.wants
- drwxr-xr-x 2 root root 4.0K Jan 26 2016 sysinit.target.wants
- lrwxrwxrwx 1 root root 21 Jan 26 2016 udev.service -> systemd-udevd.service
- -rw-r--r-- 1 root root 823 Jul 15 2015 systemd-udev-settle.service
- -rw-r--r-- 1 root root 715 Jul 15 2015 systemd-udev-trigger.service
- -rw-r--r-- 1 root root 788 Jul 15 2015 systemd-udevd.service
- -rw-r--r-- 1 root root 578 Jul 15 2015 systemd-udevd-control.socket
- -rw-r--r-- 1 root root 575 Jul 15 2015 systemd-udevd-kernel.socket
- -rw-r--r-- 1 root root 248 Jun 15 2015 wpa_supplicant.service
- -rw-r--r-- 1 root root 199 May 6 2015 rsyslog.service
- -rw-r--r-- 1 root root 347 Nov 25 2014 dbus.service
- -rw-r--r-- 1 root root 106 Nov 25 2014 dbus.socket
- -rw-r--r-- 1 root root 344 May 2 2014 ssh.service
- -rw-r--r-- 1 root root 216 May 2 2014 ssh.socket
- -rw-r--r-- 1 root root 196 May 2 2014 ssh@.service
- -rw-r--r-- 1 root root 188 Apr 17 2014 rsync.service
- -rw-r--r-- 1 root root 155 Apr 3 2014 acpid.service
- -rw-r--r-- 1 root root 115 Apr 3 2014 acpid.socket
- -rw-r--r-- 1 root root 272 Feb 4 2014 sudo.service
- -rw-r--r-- 1 root root 124 Oct 21 2013 atd.service
- -rw-r--r-- 1 root root 182 Oct 15 2013 polkitd.service
- /lib/systemd/system/dbus.target.wants:
- total 0
- lrwxrwxrwx 1 root root 14 Nov 25 2014 dbus.socket -> ../dbus.socket
- /lib/systemd/system/multi-user.target.wants:
- total 0
- lrwxrwxrwx 1 root root 15 Nov 25 2014 dbus.service -> ../dbus.service
- /lib/systemd/system/sockets.target.wants:
- total 0
- lrwxrwxrwx 1 root root 31 Jan 26 2016 systemd-udevd-control.socket -> ../systemd-udevd-control.socket
- lrwxrwxrwx 1 root root 30 Jan 26 2016 systemd-udevd-kernel.socket -> ../systemd-udevd-kernel.socket
- lrwxrwxrwx 1 root root 14 Nov 25 2014 dbus.socket -> ../dbus.socket
- /lib/systemd/system/sysinit.target.wants:
- total 0
- lrwxrwxrwx 1 root root 31 Jan 26 2016 systemd-udev-trigger.service -> ../systemd-udev-trigger.service
- lrwxrwxrwx 1 root root 24 Jan 26 2016 systemd-udevd.service -> ../systemd-udevd.service
- [00;33m### SOFTWARE #############################################[00m
- [00;31m[-] Sudo version:[00m
- Sudo version 1.8.9p5
- [00;31m[-] Apache version:[00m
- Server version: Apache/2.4.7 (Ubuntu)
- Server built: Oct 14 2015 14:20:21
- [00;31m[-] Apache user configuration:[00m
- APACHE_RUN_USER=www-data
- APACHE_RUN_GROUP=www-data
- [00;31m[-] Installed Apache modules:[00m
- Loaded Modules:
- core_module (static)
- so_module (static)
- watchdog_module (static)
- http_module (static)
- log_config_module (static)
- logio_module (static)
- version_module (static)
- unixd_module (static)
- access_compat_module (shared)
- alias_module (shared)
- auth_basic_module (shared)
- authn_core_module (shared)
- authn_file_module (shared)
- authz_core_module (shared)
- authz_host_module (shared)
- authz_user_module (shared)
- deflate_module (shared)
- dir_module (shared)
- env_module (shared)
- filter_module (shared)
- mime_module (shared)
- mpm_event_module (shared)
- negotiation_module (shared)
- setenvif_module (shared)
- status_module (shared)
- [00;33m### INTERESTING FILES ####################################[00m
- [00;31m[-] Useful file locations:[00m
- /bin/nc
- /bin/netcat
- /usr/bin/wget
- /usr/bin/gcc
- /usr/bin/curl
- [00;31m[-] Installed compilers:[00m
- ii gcc 4:4.8.2-1ubuntu6 amd64 GNU C compiler
- ii gcc-4.8 4.8.4-2ubuntu1~14.04 amd64 GNU C compiler
- [00;31m[-] Can we read/write sensitive files:[00m
- -rw-r--r-- 1 root root 1161 Apr 16 2016 /etc/passwd
- -rw-r--r-- 1 root root 714 Jan 26 2016 /etc/group
- -rw-r--r-- 1 root root 665 Feb 19 2014 /etc/profile
- -rw-r----- 1 root shadow 846 Apr 17 2016 /etc/shadow
- [-] Can't search *.conf files as no keyword was entered
- [-] Can't search *.php files as no keyword was entered
- [-] Can't search *.log files as no keyword was entered
- [-] Can't search *.ini files as no keyword was entered
- [00;31m[-] All *.conf files in /etc (recursive 1 level):[00m
- -rw-r--r-- 1 root root 191 Dec 4 2013 /etc/libaudit.conf
- -rw-r--r-- 1 root root 2969 Feb 23 2014 /etc/debconf.conf
- -rw-r--r-- 1 root root 34 Aug 5 2015 /etc/ld.so.conf
- -rw-r--r-- 1 root root 771 May 18 2013 /etc/insserv.conf
- -rw-r--r-- 1 root root 144 Jan 26 2016 /etc/kernel-img.conf
- -rw-r--r-- 1 root root 2981 Aug 5 2015 /etc/adduser.conf
- -rw-r--r-- 1 root root 552 Jan 31 2014 /etc/pam.conf
- -rw-r--r-- 1 root root 7773 Jan 26 2016 /etc/ca-certificates.conf
- -rw-r--r-- 1 root root 2084 Mar 31 2013 /etc/sysctl.conf
- -rw-r----- 1 root fuse 280 May 24 2013 /etc/fuse.conf
- -rw-r--r-- 1 root root 4781 Nov 15 2013 /etc/hdparm.conf
- -rw-r--r-- 1 root root 1260 Jun 30 2013 /etc/ucf.conf
- -rw-r--r-- 1 root root 321 Apr 16 2014 /etc/blkid.conf
- -rw-r--r-- 1 root root 475 Feb 19 2014 /etc/nsswitch.conf
- -rw-r--r-- 1 root root 956 Feb 19 2014 /etc/mke2fs.conf
- -rw-r--r-- 1 root root 1320 Aug 19 2014 /etc/rsyslog.conf
- -rw-r--r-- 1 root root 2584 Oct 10 2012 /etc/gai.conf
- -rw-r--r-- 1 root root 92 Feb 19 2014 /etc/host.conf
- -rw-r--r-- 1 root root 321 Jun 20 2013 /etc/updatedb.conf
- -rw-r----- 1 root root 317 Apr 10 2016 /etc/knockd.conf
- -rw-r--r-- 1 root root 14867 May 9 2014 /etc/ltrace.conf
- -rw-r--r-- 1 root root 703 Jan 22 2014 /etc/logrotate.conf
- -rw-r--r-- 1 root root 604 Nov 7 2013 /etc/deluser.conf
- -rw-r--r-- 1 root root 350 Jan 26 2016 /etc/popularity-contest.conf
- [00;31m[-] Any interesting mail in /var/mail:[00m
- total 8
- drwxrwsr-x 2 root mail 4096 Aug 5 2015 .
- drwxr-xr-x 13 root root 4096 Jan 26 2016 ..
- root::0:0:root:/root:/bin/sh
- [00;33m### SCAN COMPLETE ####################################[00m
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement