Leaderboard
Popular Content
Showing content with the highest reputation on 02/03/15 in all areas
-
Daca aveti nevoie de un cont din una dintre categoriile de mai sus, pm, si va dau cu placere!1 point
-
Exploiting “BadIRET” vulnerability February 2, 2015 / Rafal Wojtczuk Exploiting “BadIRET” vulnerability (CVE-2014-9322, Linux kernel privilege escalation) Introduction CVE-2014-9322 is described as follows: arch/x86/kernel/entry_64.S in the Linux kernel before 3.17.5 does not properly handle faults associated with the Stack Segment (SS) segment register, which allows local users to gain privileges by triggering an IRET instruction that leads to access to a GS Base address from the wrong space. It was fixed on 23rd November 2014 with this commit. I have seen neither a public exploit nor a detailed discussion about the issue. In this post I will try to explain the nature of the vulnerability and the exploitation steps as clearly as possible; unfortunately I cannot quote the full 3rd volume of Intel Software Developer’s Manuals, so if some terminology is unknown to the reader then details can be found there. All experiments were conducted on Fedora 20 system, running 64bit 3.11.10-301 kernel; all the discussion is 64bit-specific. Short results summary: With the tested kernel, the vulnerability can be reliably exploited to achieve kernelmode arbitrary code execution. SMEP does not prevent arbitrary code execution; SMAP does prevent arbitrary code execution. Digression: kernel, usermode, iret The vulnerability In a few cases, when Linux kernel returns to usermode via iret, this instruction throws an exception. The exception handler returns execution to bad_iret function, that does /* So pretend we completed the iret and took the #GPF in user mode.*/ pushq $0 SWAPGS jmp general_protection As the comment explains, the subsequent code flow should be identical to the case when general protection exception happens in user mode (just jump to the #GP handler). This works well in case of most of the exceptions that can be raised by iret, e.g. #GP. The problematic case is #SS exception. If a kernel is vulnerable (so, before kernel version 3.17.5) and has “espfix” functionality (introduced around kernel version 3.16), then bad_iret executes with a read-only stack – “push” instruction generates a page fault that gets converted into double fault. I have not analysed this scenario; from now on, we focus on pre 3.16 kernel, with no “espfix”. The vulnerability stems from the fact that the exception handler for the #SS exception does not fit the “pretend-it-was-#GP-in-userspace” schema well. In comparison with e.g. #GP handler, the #SS exception handler does one extra swapgs instruction. In case you are not familiar with swapgssemantics, read the below paragraph, otherwise skip it. Digression: swapgs instruction When memory is accessed with gs segment prefix, like this: mov %gs:LOGICAL_ADDRESS, %eax the following actually happens: BASE_ADDRESS value is retrieved from the hidden part of the segment register memory at linear address LOGICAL_ADDRESS+BASE_ADDRESS is dereferenced The base address is initially derived from Global Descriptor Table (or LDT). However, there are situations where GS segment base is changed on the fly, without involving GDT. Quoting SDM: “SWAPGS exchanges the current GS base register value with the value contained in MSR address C0000102H (IA32_KERNEL_GS_BASE). The SWAPGS instruction is a privileged instruction intended for use by system software. (…) The kernel can then use the GS prefix on normal memory references to access [per-cpu]kernel data structures.” For each CPU, Linux kernel allocates at boot time a fixed-size structure holding crucial data. Then, for each CPU, Linux loads IA32_KERNEL_GS_BASE with this structure address. Therefore, the usual pattern of e.g. syscall handler is: swapgs (now the gs base points to kernel memory) access per-cpu kernel data structures via memory instructions with gs prefix swapgs (it undos the result of the previous swapgs, gs base points to usermode memory) return to usermode Naturally, kernel code must ensure that whenever it wants to access percpu data with gs prefix, the number of swapgs instructions executed by the kernel since entry from usermode is noneven (so that gs base points to kernel memory). Triggering the vulnerability By now it should be obvious that the vulnerability is grave – because of one extra swapgs in the vulnerable code path, kernel will try to access important data structures with a wrong gs base, controllable by the user. When is #SS exception thrown by the iret instruction? Interestingly, the Intel SDM is incomplete in this aspect; in the description of iret instruction, it says: 64-Bit Mode Exceptions: #SS(0) If an attempt to pop a value off the stack violates the SS limit. If an attempt to pop a value off the stack causes a non-canonical address to be referenced. None of these conditions can be forced to happen in kernel mode. However, the pseudocode foriret (in the same SDM) shows another case: when the segment defined by the return frame is not present: IF stack segment is not present THEN #SS(SS selector); FI; So, in usermode, we need to set ss register to something not present. It is not straighforward: we cannot just use mov $nonpresent_segment_selector, %eax mov %ax, %ss as the latter instruction will generate #GP. Setting the ss via debugger/ptrace is disallowed; similarly, the sys_sigreturn syscall does not set this register on 64bits system (it might work on 32bit, though). The solution is: thread A: create a custom segment X in LDT via sys_modify_ldt syscall thread B: ss:=X_selector thread A: invalidate X via sys_modify_ldt thread B: wait for hardware interrupt The reason why one needs two threads (both in the same process) is that the return from the syscall (including sys_modify_ldt) is done via sysret instruction that hardcodes the ss value. If we invalidated X in the same thread that did “ss:=X instruction”, ss would be undone. Running the above code results in kernel panic. In order to do something more meaningful, we will need to control usermode gs base; it can be set via arch_prctl(ARCH_SET_GS) syscall. Achieving write primitive If we run the above code, then #SS handler runs fine (meaning: it will not touch memory at gs base), returns into bad_iret, that in turn jumps to #GP exception handler. This runs fine for a while, and then calls the following function: 289 dotraplinkage void 290 do_general_protection(struct pt_regs *regs, long error_code) 291 { 292 struct task_struct *tsk; ... 306 tsk = current; 307 if (!user_mode(regs)) { ... it is not reached 317 } 318 319 tsk->thread.error_code = error_code; 320 tsk->thread.trap_nr = X86_TRAP_GP; 321 322 if (show_unhandled_signals && unhandled_signal(tsk, SIGSEGV) && 323 printk_ratelimit()) { 324 pr_info("%s[%d] general protection ip:%lx sp:%lx error:%lx", 325 tsk->comm, task_pid_nr(tsk), 326 regs->ip, regs->sp, error_code); 327 print_vma_addr(" in ", regs->ip); 328 pr_cont("\n"); 329 } 330 331 force_sig_info(SIGSEGV, SEND_SIG_PRIV, tsk); 332 exit: 333 exception_exit(prev_state); 334 } It is far from obvious from the C code, but the assignment to tsk from current macro uses memory read with gs prefix. Line 306 is actually: 0xffffffff8164b79d : mov %gs:0xc780,%rbx This gets interesting. We control the “current” pointer, that points to the giant data structure describing the whole Linux process. Particularly, the lines 319 tsk->thread.error_code = error_code; 320 tsk->thread.trap_nr = X86_TRAP_GP; are writes to addresses (at some fixed offset from the beginning of the task struct) that we control. Note that the values being written are not controllable (they are 0 and 0xd constants, respectively), but this should not be a problem. Game over ? Not quite. Say, we want to overwrite some important kernel data structure at X. If we do the following steps: prepare usermode memory at FAKE_PERCPU, and set gs base to it Make the location FAKE_PERCPU+0xc780 hold the pointer FAKE_CURRENT_WITH_OFFSET, such that FAKE_CURRENT_WITH_OFFSET= X – offsetof(struct task_struct, thread.error_code) trigger the vulnerability Then indeed do_general_protection will write to X. But soon afterwards it will try to access other fields in the current task_struct again; e.g. unhandled_signal() function dereferences a pointer from task_struct. We have no control what lies beyond X, and the result will be a page fault in kernel. How can we cope with this? Options: Do nothing. Linux kernel, unlike e.g. Windows, is quite permissive when it gets an unexpected page fault in kernel mode – if possible, it kills the current process, and tries to continue (while Windows bluescreens immediately). This does not work – the result is massive kernel data corruption and whole system freeze. My suspicion is that after the current process is killed, the swapgs imbalance persists, resulting in many unexpected page faults in the context of the other processes. Use the “tsk->thread.error_code = error_code” write to overwrite IDT entry for the page fault handler. Then the page fault (triggered by, say, unhandled_signal()) will result in running our code. This technique proved to be successful on a couple of occasions before. This does not work, either, for two reasons: Linux makes IDT read-only (bravo!) even if IDT was writeable, we do not control the overwrite value – it is 0 or 0xd. If we overwrite the top DWORDS of IDT entry for #PF, the resulting address will be in usermode, and SMEP will prevent handler execution (more on SMEP later). We could nullify the lowest one or two bytes of the legal handler address, but the chances of these two addresses being an useful stack pivot sequence are negligible. [*]We can try a race. Say, “tsk->thread.error_code = error_code” write facilitates code execution, e.g. allows to control code pointer P that is called via SOME_SYSCALL. Then we can trigger our vulnerability on CPU 0, and at the same time CPU 1 can run SOME_SYSCALL in a loop. The idea is that we will get code execution via CPU 1 before damage is done on CPU 0, and e.g. hook the page fault handler, so that CPU 0 can do no more harm. I tried this approach a couple of times, with no luck; perhaps with different vulnerability the timings would be different and it would work better. [*]Throw a towel on “tsk->thread.error_code = error_code” write. With some disgust, we will follow the last option. We will point “current” to usermode location, setting the pointers in it so that the read dereferences on them hit our (controlled) memory. Naturally, we inspect the subsequent code to find more pointer write dereferences. Achieving write primitive continued, aka life after do_general_protection Our next chance is the function called by do_general_protection(): int force_sig_info(int sig, struct siginfo *info, struct task_struct *t) { unsigned long int flags; int ret, blocked, ignored; struct k_sigaction *action; spin_lock_irqsave(&t->sighand->siglock, flags); action = &t->sighand->action[sig-1]; ignored = action->sa.sa_handler == SIG_IGN; blocked = sigismember(&t->blocked, sig); if (blocked || ignored) { action->sa.sa_handler = SIG_DFL; if (blocked) { sigdelset(&t->blocked, sig); recalc_sigpending_and_wake(t); } } if (action->sa.sa_handler == SIG_DFL) t->signal->flags &= ~SIGNAL_UNKILLABLE; ret = specific_send_sig_info(sig, info, t); spin_unlock_irqrestore(&t->sighand->siglock, flags); return ret; } The field “sighand” in task_struct is a pointer, that we can set to an arbitrary value. It means that the action = &t->sighand->action[sig-1]; action->sa.sa_handler = SIG_DFL; lines are another chance for write primitive to an arbitrary location. Again, we do not control the write value – it is the constant SIG_DFL, equal to 0. This finally works, hurray ! with a little twist. Assume we want to overwrite location X in the kernel. We prepare our fake task_struct (particularly sighand field in it) so that X = address of t->sighand->action[sig-1].sa.sa_handler. But a few lines above, there is a line spin_lock_irqsave(&t->sighand->siglock, flags); As t->sighand->siglock is at constant offset from t->sighand->action[sig-1].sa.sa_handler, it means kernel will call spin_lock_irqsave on some address located after X, say at X+SPINLOCK, whose content we do not control. What happens then? There are two possibilities: memory at X+SPINLOCK looks like an unlocked spinlock. spin_lock_irqsave will complete immediately. Final spin_unlock_irqrestore will undo the writes done by spin_lock_irqsave. Good. memory at X+SPINLOCK looks like a locked spinlock. spin_lock_irqsave will loop waiting for the spinlock – infinitely, if we do not react. This is worrying. In order to bypass this, we will need another assumption – we will need to know we are in this situation, meaning we will need to know the contents of memory at X+SPINLOCK. This is acceptable – we will see later that we will set X to be in kernel .data section. We will do the following: initially, prepare FAKE_CURRENT so that t->sighand->siglock points to a locked spinlock in usermode, at SPINLOCK_USERMODE force_sig_info() will hang in spin_lock_irqsave at this moment, another usermode thread running on another CPU will change t->sighand, so that t->sighand->action[sig-1].sa.sa_handler is our overwrite target, and then unlock SPINLOCK_USERMODE spin_lock_irqsave will return. force_sig_info() will reload t->sighand, and perform the desired write. A careful reader is encouraged to enquire why cannot use the latter approach in the case X+SPINLOCK is initially unlocked. This is not all yet – we will need to prepare a few more fields in FAKE_CURRENT so that as little code as possible is executed. I will spare you the details – this blog is way too long already. The bottom line is that it works. What happens next? force_sig_info() returns, and do_general_protection() returns. The subsequent iret will throw #SS again (because still the usermode ss value on the stack refers to a nonpresent segment). But this time, the extra swapgs instruction in #SS handler will return the balance to the Force, cancelling the effect of the previous incorrect swapgs. do_general_protection() will be invoked and operate on real task_struct, not FAKE_CURRENT. Finally, the current task will be sent SIGSEGV, and another process will be scheduled for execution. The system remains stable. Digression: SMEP SMEP is a feature of Intel processors, starting from 3rd generation of Core processor. If the SMEP bit is set in CR4, CPU will refuse to execute code with kernel privileges if the code resides in usermode pages. Linux enables SMEP by default if available. Achieving code execution The previous paragraphs showed a way to overwrite 8 consecutive bytes in kernel memory with 0. How to turn this into code execution, assuming SMEP is enabled? Overwriting a kernel code pointer would not work. We can either nullify its top bytes – but then the resulting address would be in usermode, and SMEP will prevent dereference of this pointer. Alternatively, we can nullify a few low bytes, but then the chances that the resulting pointer would point to an useful stack pivot sequence are low. What we need is a kernel pointer P to structure X, that contains code pointers. We can overwrite top bytes of P so that the resulting address is in usermode, and P->code_pointer_in_) call will jump to a location that we can choose. I am not sure what is the best object to attack. For my experiments, I choose the kernel proc_rootvariable. It is a structure of type struct proc_dir_entry { ... const struct inode_operations *proc_iops; const struct file_operations *proc_fops; struct proc_dir_entry *next, *parent, *subdir; ... u8 namelen; char name[]; }; This structure represents an entry in the proc filesystem (and proc_root represents the root of the /proc filesystem). When a filename path starting with /proc is looked up, the “subdir” pointers (starting with proc_root.subdir) are followed, until the matching name is found. Afterwards, pointers from proc_iops are called: struct inode_operations { struct dentry * (*lookup) (struct inode *,struct dentry *, unsigned int); void * (*follow_link) (struct dentry *, struct nameidata *); ...many more... int (*update_time)(struct inode *, struct timespec *, int); ... } ____cacheline_aligned; proc_root resides in the kernel data section. It means that the exploit needs to know its address. This information is available from /proc/kallsyms; however, many hardened kernels do not allow unprivileged users to read from this pseudofile. Still, if the kernel is a known build (say, shipped with a distribution), this address can be obtained offline; along with tens of offsets required to build FAKE_CURRENT. So, we will ovewrite proc_root.subdir so that it becomes a pointer to a controlled struct proc_dir_entry residing in usermode. A slight complication is that we cannot overwrite the whole pointer. Remember, our write primitive is “overwrite with 8 zeroes”. If we made proc_root.subdirbe 0, we would not be able to map it, because Linux does not allow usermode to map address 0 (more precisely, any address below /proc/sys/vm/mmap_min_addr, but the latter is 4k by default). It means we need to: map 16MB of memory at address 4096 fill it with a pattern resembling proc_dir_entry, with the inode_operations field pointing to usermode address FAKE_IOPS, and name field being “A” string. configure the exploit to overwrite the top 5 bytes of proc_root.subdir Then, unless the bottom 3 bytes of proc_root.subdir are 0, we can be sure that after triggering the overwrite in force_sig_info() proc_root.subdir will point to controlled usermode memory. When our process will call open(“/proc/A”, …), pointers from FAKE_IOPS will be called. What should they point to? If you think the answer is “to our shellcode”, go back and read again. We will need to point FAKE_IOPS pointers to a stack pivot sequence. This again assumes the knowledge of the precise version of the kernel running. The usual “xchg %esp, %eax; ret” code sequence (it is two bytes only, 94 c3, found at 0xffffffff8119f1ed in case of the tested kernel), works very well for 64bit kernel ROP. Even if there is no control over %rax, this xchg instruction operates on 32bit registers, thus clearing the high 32bits of %rsp, and landing %rsp in usermode memory. At the worst case, we may need to allocate low 4GB of virtual memory and fill it with rop chain. In the case of the tested kernel, two different ways to dereference pointers in FAKE_IOPS were observed: %rax:=FAKE_IOPS; call *SOME_OFFSET(%rax) %rax:=FAKE_IOPS; %rax:=SOME_OFFSET(%rax); call *%rax In the first case, after %rsp is exchanged with %rax, it will be equal to FAKE_IOPS. We need the rop chain to reside at the beginning of FAKE_IOPS, so it needs to start with something like “add $A_LOT, %rsp; ret”, and continue after the end of FAKE_IOPS pointers. In the second case, the %rsp will be assigned the low 32bits of the call target, so 0x8119f1ed. We need to prepare the rop chain at this address as well. To sum up, as the %rax value has one of two known values at the moment of the entry to the stack pivot sequence, we do not need to fill the whole 4G with rop chain, just the above two addresses. The ROP chain itself is straightforward, shown for the second case: unsigned long *stack=0x8119f1ed; *stack++=0xffffffff81307bcdULL; // pop rdi, ret *stack++=0x407e0; //cr4 with smep bit cleared *stack++=0xffffffff8104c394ULL; // mov rdi, cr4; pop %rbp; ret *stack++=0xaabbccdd; // placeholder for rbp *stack++=actual_shellcode_in_usermode_pages; Digression: SMAP SMAP is a feature of Intel processors, starting from 5th generation of Core processor. If the SMAP bit is set in CR4, CPU will refuse to access memory with kernel privileges if this memory resides in usermode pages. Linux enables SMAP by default if available. A test kernel module (run on an a system with Core-M 5Y10a CPU) that tries to access usermode crashes with: [ 314.099024] running with cr4=0x3407e0 [ 389.885318] BUG: unable to handle kernel paging request at 00007f9d87670000 [ 389.885455] IP: [ffffffffa0832029] test_write_proc+0x29/0x50 [smaptest] [ 389.885577] PGD 427cf067 PUD 42b22067 PMD 41ef3067 PTE 80000000408f9867 [ 389.887253] Code: 48 8b 33 48 c7 c7 3f 30 83 a0 31 c0 e8 21 c1 f0 e0 44 89 e0 48 8b As we can see, although the usermode page is present, access to it throws a page fault. Windows systems do not seem to support SMAP; Windows 10 Technical Preview build 9926 runs with cr4=0x1506f8 (SMEP set, SMAP unset); in comparison with Linux (that was tested on the same hardware) you can see that bit 21 in cr4 is not set. This is not surprising; in case of Linux, access to usermode is performed explicitely, via copy_from_user, copy_to_user and similar functions, so it is doable to turn off SMAP temporarily for the duration of these functions. On Windows, kernel code accesses usermode directly, just wrapping the access in the exception handler, so it is more difficult to adjust all the drivers in all required places to work properly with SMAP. SMAP to the rescue! The above exploitation method relied on preparing certain data structures in usermode and forcing the kernel to interpret them as trusted kernel data. This approach will not work with SMAP enabled – CPU will refuse to read malicious data from usermode. What we could do is to craft all the required data structures, and then copy them to the kernel. For instance if one does write(pipe_filedescriptor, evil_data, ... then evil_data will be copied to a kernel pipe buffer. We would need to guess its address; some sort of heap spraying, combined with the fact that there is no spoon^W effective kernel ASLR, could work, although it is likely to be less reliable than exploitation without SMAP. However, there is one more hurdle – remember, we need to set usermode gs base to point to our exploit data structures. In the scenario above (without SMAP), we used arch_prctl(ARCH_SET_GS) syscall, that is implemented in the following way in the kernel: long do_arch_prctl(struct task_struct *task, int code, unsigned long addr) { int ret = 0; int doit = task == current; int cpu; switch (code) { case ARCH_SET_GS: if (addr >= TASK_SIZE_OF(task)) return -EPERM; ... honour the request otherwise Houston, we have a problem – we cannot use this API to set gs base above the end of usermode memory ! Recent CPUs feature wrgsbase instruction, that sets the gs base directly. This is a nonprivileged instruction, but needs to be enabled by the kernel by setting the FSGSBASE bit (no 16) in CR4. Linux does not set this bit, and therefore usermode cannot use this instruction. On 64bits, nonsystem entries in GDT and LDT are still 8 bytes long, and the base field is at most 4G-1 – so, no chance to set up a segment with base address in kernel space. So, unless I missed another way to set usermode gs base in the kernel range, SMAP protects 64bit Linux against achieving arbitrary code execution via exploiting CVE-2014-9322. Sursa: http://labs.bromium.com/2015/02/02/exploiting-badiret-vulnerability-cve-2014-9322-linux-kernel-privilege-escalation/1 point
-
@hackerika ai idee macar cat de putine raporturi se primesc zilnic? Nu ai. Toate raporturile care sunt trimise, se sanctioneaza, daca e cazul. Dar nu va mai asteptati ca dupa un raport, persoana respectiva sa ia direct ban. In momentul asta Hoster.ro are 4 cartonase rosii = 1 luna ban. Chatul a fost inchis pentru ca l-ati umplut de mizerii, si trolling, dar problema nu e asta, problema e ca ati adus mizeriile pe forum. Vi s-a dat un set de reguli pentru chat, reguli pe care multi dintre utilizatori nu ati fost in stare sa le respectati, dupa care veneati pe forum sa plangeti ca ati luat ban. Dupa ce s-a inchis chatul, altcineva a deschis altul in alta parte, si cand ati luat ban si acolo, ati venit tot aici sa plangeti. E o vorba, "nemultumitului i se ia darul". Chatul a fost pus pentru ca utilizatorii forumului sa poata comunica mai eficient, atunci cand e nevoie, si pentru a putea avea o discutie in timp real, nu sa va bateti joc, sa face spam, si trolling. Multi dintre utilizatori ati ajuns la concluzia ca a fi membru rst este vreun drept al vostru, drept la care noi moderatorii/admini nu avem voie sa aducem atingere. Trebuie sa intelegeti ca asta e foarte departe de adevar. Cititi regulamentul inca o data, inainte sa postati, ganditi, si nu o sa mai aveti avertismente si banuri "nemeritate". Pana una alta, terminati cu can-can-ul.1 point
-
Prietene ( da, prietene ), hai sa-ti spun ceva. Inainte ca tu sa dai cartonase galbene/rosii, citeste ceea ce a scris omul caruia ii dai/le dai/le dati, fiindca omul poate a spus ceva foarte adevarat, cu tot ca nu era locul potrivit, dar mai frecventat de catre staff. Hai sa-ti dau un exemplu, userul @Nytro La fel si tu, tu de mult ai prins boala pe mine, la un moment dat ai adaugat o regula noua pentru Market, iar eu am fost banat fiindca eu am incalcat regula noua dinainte ca ea sa fie adaugata de tine, mi-am schimbat total parerea despre tine si nivelul de inteligenta al tau. Acest user, doar asa, deja ar avea 9 cartonase, lasa-ma cu motivul tau si ale voastre, al staffului, cu dati report si va fi sanctionat, ca sunt satul peste cap, nu stiti sa oferiti respect cui este nevoie, de asta nici nu mai primiti respect ca si candva. Dati-mi numai mie moderator 2 zile, sa vedeti cum se tireaza metinarii, bagatorii de seama si agramatii, exact ca si furnicile inainte de furtuna.1 point
-
VideoMakerFX e un program de faci videclipuri de promovare la diferite câcaturi. Exemplu: Pentru ca javrele cer prea mult, i-am sters login-ul din script si il postez aici. 1.Descarcati asta: https://mega.co.nz/#!4Fki3LbD!gTYYAcMtFcJ57jsy1YU8_ft33vLtm2XSZbshFyvLMpo 2.Descarcati si asta: https://mega.co.nz/#!oIFgGDgY!6rvi6JTKOoI0yi38miTkdtDKwC5JHby-ljO1MRwTI5E 3.Instalati VideoMakerFX 4.Copiati ce e la punctul 2 unde ati instalat program and done!1 point
-
Ceea ce nu puteti voi sa vedeti este ca fiecare post inutil din acest topic este sanctionat cu cate un cartonas rosu. De fapt, daca ati vedea cate cartonase galbene/rosii se dau atunci cand debitati balarii, poate v-ati gandi de doua ori inainte sa comentati aiurea sau sa injurati. Acesta este un topic pentru abuzurile de putere de pe forum, nu pentru parerile voastre despre chat. Va rog sa pastrati topicul curat.-1 points
-
In primul rand, RST este un forum ... atata timp cat exista optiunea search iar eu sunt in cautare de ceva ce ma intereseaza nu cred ca tine neaparat de data cand x lucru a fost postat, Un forum inseamna o comunitate... unde fiecare posteaza ce are nevoie sau ce ofera , sau discutii despre anumite lucruri x si y. Ma faci sa ma simt important pentru faptul ca ti-ai pierdut timpul sa imi citesti toate posturile. Iti urez un foarte mare succes sa le urmaresti si pe viitoarele. Daca se considera ca am jignit , am gresit , am facut n posturi inutile cum spui tu ... sunt alti in masura de a lua sanctiuni. ( Spor in a te juca metin - spui ca o sa dispara metinarii ... si tu ai in semnatura Metin2Hack Free ... Esti patetic sau usor penal - Apropo este si alienware la 1000 de euro. ) - ( Ai o problema mergi la medic ) Si catre moderatori, hackerika cred ca este unul si acelasi cu dalykes ... Se simte fustrat. https://rstforums.com/forum/70533-unban-pe-conturile-vechi-3.rst ( aici dovada ) Si pe viitor te-as ruga hackerika - dalyknes inainte sa vorbesti de corectitudine ... reguliiiii , te-as ruga sa te uiti putin in gradina ta ... umbli cu doua conturi si ne dai morala? Ne ti replici despre conduita? Nu esti in masura. Si da, am o gramatica proasta si voi avea ... Da-mi niste banii sa fac cateva cursuri. In incheiere ... nu vreau mai fac offtopic aici pentru ca nu este locul , dansul daca are o problema ma poate raporta , scrie in privat si asa mai departe. Imi cer scuze fata de cine sa simtit ofensat ... Si imi cer scuze daca am incalcat regulamentul... nu a fost cu intentie ... ... Voi inceta sa mai scriu la Rubrica Abuzuri de putere - aici nu este locul pentru vendete personale.-1 points
-
Buna doresc si eu o invitatie pentru filelist dar nu stiu cum sa procedez poate ma ajuta cineva adresa mea de email este dani.berin@yahoo.it multumesc .-1 points
-
219.120.239.77:5900-null-[SURFACEPRO] 219.141.99.12:5900-null-[005SERVER] 219.143.69.7:5900-null-[QEMU (instance-00000005)] 219.141.189.12:5900-null-[None] 219.148.119.178:5900-null-[None] 219.164.239.230:5900-null-[root@toparents.katoh-net.ac.jp] 219.220.253.126:5900-null-[EQJJPHHQ8DGS9ON] 219.220.253.76:5900-null-[HHT-PLAER029] 219.223.189.241:5900-null-[QEMU (vmfedora20-4)] 219.223.189.240:5900-null-[QEMU (vmfedora20)] 219.233.183.178:5900-null-[None] 219.243.208.133:5900-null-[QEMU (instance-00000007)] 219.68.231.154:5900-null-[QEMU (WIN-XP)] 219.64.190.202:5900-null-[None] 219.74.86.231:5900-null-[QEMU (Win7_x64)] 219.76.193.25:5900-null-[None] 219.77.46.65:5900-null-[QEMU (windows7)] 219.84.218.108:5900-null-[griin HA100] 219.239.227.28:5900-null-[None] 219.89.196.39:5900-null-[None] 219.92.81.58:5900-null-[zuser@zamria.com] 219.94.234.72:5900-null-[x11] 219.94.255.21:5900-null-[x11] 219.93.61.155:5900-null-[None] 219.106.18.54:5900-12345678-[?? ?? ??????? (2)] 219.233.24.90:5900-null-[None] 219.240.164.134:5900-12345678-[pc004] 219.240.164.207:5900-12345678-[pc077] 219.240.164.204:5900-12345678-[None] 219.240.164.135:5900-12345678-[None] 219.240.164.213:5900-12345678-[pc083] 219.240.164.173:5900-12345678-[None] 219.240.164.203:5900-12345678-[None] 219.240.164.152:5900-12345678-[pc022] 219.240.164.214:5900-12345678-[None] 219.85.185.148:5900-12345678-[user-pc ( 192.168.1.120 )] 219.58.114.34:5900-admin-[None] 219.95.90.233:5900-admin-[MAINSERVER] 219.95.93.189:5900-admin-[SESERVER] 219.162.152.49:5900-password-[JSDKS365] 219.76.75.33:5900-password-[aia-magicinfo ( 192.168.0.100 ) - service mode] 219.88.68.134:5900-password-[past ( 10.15.57.30, 192.168.0.212 )] 219.92.175.91:5900-password-[ROYGRACE-PC] 219.92.204.204:5900-password-[Gavin’s Mac mini] 219.92.50.153:5900-password-[None] 219.76.236.209:5900-support-[hkserver03 ( 10.0.197.144 )] 66.112.60.213:5900-null-[WS03] 66.110.177.138:5900-null-[vnc-server] 66.119.62.124:5900-null-[QEMU (WELLDOG_WIN2012)] 66.119.62.125:5900-null-[QEMU (WELLDOG_WIN2012)] 66.155.26.34:5900-null-[kvm3] 66.160.138.39:5900-null-[QEMU (bernhard.lorenz@castlegem.co.uk-52)] 66.171.247.120:5900-null-[XenServer Virtual Terminal] 66.184.188.138:5900-null-[None] 66.156.106.227:5900-null-[None] 66.191.94.100:5900-null-[None] 66.193.190.84:5900-null-[None] 66.201.44.150:5900-null-[x11] 66.205.36.3:5900-null-[satmotion@satmotion] 66.219.37.35:5900-null-[Enki] 66.232.79.210:5900-null-[QEMU (Win7)] 66.25.29.204:5900-null-[QEMU (win7)] 66.39.166.51:5900-null-[x11] 66.64.33.82:5900-null-[None] 66.68.136.27:5900-null-[garage] 66.67.11.137:5900-null-[BASEMENT] 66.76.251.201:5900-null-[(none):0] 66.85.148.162:5900-null-[QEMU (vm1)] 66.98.52.177:5900-null-[None] 66.185.22.91:5900-letmein-[b5-5.macminivault.com] 66.241.71.53:5900-letmein-[CB’s MacBook (8)] 66.29.166.106:5900-letmein-[None] 66.99.191.230:5900-letmein-[white115dc ( 192.168.5.170 )] 66.167.51.215:5900-admin-[Alyse Paris’s iMac] 66.176.178.148:5900-password-[None] 66.60.135.20:5900-password-[Louie] 83.0.221.114:5900-null-[None] 83.102.250.34:5900-null-[yaroslavl:0] 83.103.165.220:5900-null-[LUP-MONITORIZAR] 83.110.79.95:5900-null-[None] 83.12.108.248:5900-null-[USER-53AA29EB86] 83.12.108.250:5900-null-[USER-53AA29EB86] 83.12.108.251:5900-null-[USER-53AA29EB86] 83.112.191.65:5900-null-[SERVEUR] 83.12.108.249:5900-null-[USER-53AA29EB86] 83.13.65.234:5900-null-[None] 83.141.228.20:5900-null-[QEMU] 83.144.121.198:5900-null-[rybarczykp@skwp-nas] 83.144.250.12:5900-null-[EXTER T60c] 83.144.88.202:5900-null-[x11] 83.149.171.6:5900-null-[meccanica_system@MSystem-FRW.msystem.local] 83.14.5.252:5900-null-[None] 83.144.111.240:5900-null-[KATwawa] 83.144.250.131:5900-null-[EXTER T60c] 83.15.90.112:5900-null-[SERWER] 83.162.232.188:5900-null-[HTPC] 83.165.235.137:5900-null-[QEMU] 83.167.234.208:5900-null-[QEMU (www3)] 83.167.234.207:5900-null-[QEMU (www3)] 83.167.234.25:5900-null-[QEMU (www3)] 83.166.182.29:5900-null-[00:A0:34:30:8F:EB] 83.151.9.132:5900-null-[None] 83.170.103.110:5900-null-[SERVER51412] 83.170.66.4:5900-null-[Xen-f6pnu03o1gvg2g] 83.17.197.237:5900-null-[None] 83.174.62.49:5900-null-[root's x11 desktop (VVServer:0)] 83.176.207.149:5900-null-[None] 83.177.147.110:5900-null-[T12B] 83.18.40.203:5900-null-[ELZAB2] 83.189.190.197:5900-null-[None] 83.189.184.253:5900-null-[None] 83.19.3.148:5900-null-[QEMU] 83.201.129.192:5900-null-[vnc-server] 83.206.243.33:5900-null-[x11] 83.208.185.85:5900-null-[QEMU (W2k8)] 83.209.152.62:5900-null-[None] 83.209.249.123:5900-null-[None] 83.209.251.58:5900-null-[None] 83.209.254.245:5900-null-[None] 83.212.125.150:5900-null-[QEMU (instance-00000001)] 83.209.149.70:5900-null-[root@Eltako-GFVS] 83.226.71.99:5900-null-[None] 83.226.44.70:5900-null-[None] 83.226.142.137:5900-null-[None] 83.226.65.153:5900-null-[None] 83.226.170.133:5900-null-[None] 83.226.0.70:5900-null-[None] 83.223.23.155:5900-null-[E1041] 83.226.89.5:5900-null-[None] 83.223.23.153:5900-null-[E1071] 83.226.89.86:5900-null-[None] 83.227.160.236:5900-null-[E1101] 83.226.230.46:5900-null-[None] 83.228.33.248:5900-null-[HMI] 83.226.229.253:5900-null-[None] 83.220.110.150:5900-null-[BJE-CP1:0.0] 83.228.44.50:5900-null-[root's x11 desktop (ardatur:1)] 83.233.131.46:5900-null-[None] 83.233.16.142:5900-null-[None] 83.233.195.161:5900-null-[None] 83.233.222.74:5900-null-[None] 83.233.211.140:5900-null-[None] 83.242.239.40:5900-null-[None] 83.249.220.11:5900-null-[None] 83.249.41.199:5900-null-[viktor@NUC] 83.27.191.227:5900-null-[WRO04DPC0005] 83.26.2.252:5900-null-[vnc-server] 83.28.168.134:5900-null-[puppypc:0] 83.35.166.18:5900-null-[QEMU] 83.34.159.51:5900-null-[QEMU] 83.34.159.194:5900-null-[QEMU] 83.35.93.253:5900-null-[QEMU] 83.34.145.178:5900-null-[QEMU] 83.34.186.244:5900-null-[herbasana@nas] 83.38.131.93:5900-null-[QEMU] 83.39.180.174:5900-null-[QEMU] 83.39.176.97:5900-null-[QEMU] 83.39.175.91:5900-null-[QEMU] 83.39.174.121:5900-null-[QEMU] 83.41.225.235:5900-null-[QEMU] 83.40.217.189:5900-null-[public@inocontrol] 83.45.171.16:5900-null-[T7A] 83.50.0.171:5900-null-[QEMU] 83.5.154.98:5900-null-[None] 83.59.100.241:5900-null-[Device 10001] 83.59.67.58:5900-null-[QEMU] 83.58.25.74:5900-null-[QEMU] 83.61.22.229:5900-null-[None] 83.64.192.77:5900-null-[QEMU (kvm-proxmox01.in.linuxteam.at)] 83.6.182.252:5900-null-[None] 83.71.21.209:5900-null-[cccam@cccam-desktop] 83.69.38.161:5900-null-[nobody's x11 desktop (kyklop:1)] 83.7.145.65:5900-null-[QEMU (WS_2012_R2)] 83.7.150.210:5900-null-[raspberrypi:0] 83.78.174.13:5900-null-[WindowsCE] 83.87.178.182:5900-null-[x11] 83.44.98.197:5900-null-[ESEURMARESC-LAP] 83.96.77.9:5900-null-[QEMU (Streamer2)] 83.96.77.8:5900-null-[QEMU (streamer1)] 83.5.164.182:5900-null-[None] 83.14.52.166:5900-12345678-[None] 83.14.167.246:5900-12345678-[None] 83.15.90.113:5900-null-[SERWER] 83.15.90.115:5900-null-[SERWER] 83.15.90.114:5900-null-[SERWER] 83.16.29.162:5900-12345678-[PC-8DED042FE5B0] 83.16.57.130:5900-12345678-[serwer ( 192.168.1.120 ) - service mode] 83.16.57.128:5900-12345678-[serwer ( 192.168.1.120 ) - service mode] 83.16.57.131:5900-12345678-[serwer ( 192.168.1.120 ) - service mode] 83.16.57.129:5900-12345678-[serwer ( 192.168.1.120 ) - service mode] 83.171.108.22:5900-12345678-[videonet3] 83.173.68.10:5900-12345678-[caissepref ( 83.173.68.10 ) - service mode] 83.211.85.57:5900-12345678-[display_contea ( 172.16.100.52 ) - service mode] 83.219.232.168:5900-12345678-[NDR-S2208PH [00032214b322]] 83.231.80.1:5900-12345678-[None] 83.3.242.156:5900-12345678-[user-komputer ( 10.0.0.10 ) - service mode] 83.3.242.158:5900-12345678-[user-komputer ( 10.0.0.10 ) - service mode] 83.3.242.157:5900-12345678-[user-komputer ( 10.0.0.10 ) - service mode] 83.3.242.159:5900-12345678-[user-komputer ( 10.0.0.10 ) - service mode] 83.69.111.22:5900-12345678-[None] 83.99.203.200:5900-12345678-[dell-eddd42dfb7 ( 192.168.0.2 )] 83.10.7.226:5900-admin-[None] 83.12.211.93:5900-admin-[iprobe2330] 83.19.108.2:5900-admin-[VC Project 'visual'] 83.211.241.243:5900-admin-[vdgprs-1303258 ( 192.168.1.117, 192.168.222.5 )] 83.228.51.169:5900-admin-[dvr:0] 83.227.55.45:5900-admin-[None] 83.97.160.175:5900-admin-[BJE-CP1:0.0] 83.7.77.196:5900-admin-[x-f5469e56f11c4 ( 192.168.1.111 ) - application mode] 83.103.87.14:5900-password-[Computer-Jolly.local] 83.104.45.93:5900-password-[Classicpix MailServer] 83.110.242.53:5900-password-[AWAZISRV] 83.111.92.238:5900-password-[ICOUNT] 83.104.108.89:5900-password-[sbsserver ( 192.168.5.201, 192.168.5.220 ) - service mode] 83.161.221.78:5900-password-[None] 83.206.109.123:5900-password-[srv-admin ( 10.30.0.3 )] 83.233.127.56:5900-password-[Montys Mac] 83.144.71.62:5900-director-[spk329 ( 83.144.71.62 ) - service mode] 83.235.171.252:5900-manager-[geox-11ab5 ( 192.168.1.71 ) - service mode] 83.20.34.182:5900-null-[None] 78.10.201.201:5900-null-[Xen-w3k.ekotab] 78.108.62.106:5900-null-[None] 78.100.42.12:5900-null-[yusup@mebftp] 78.130.186.133:5900-null-[WCE320961004] 78.130.107.108:5900-null-[VIPATP] 78.134.241.113:5900-null-[euromodul@embackup] 78.134.2.81:5900-null-[VisionControl:0] 78.134.255.33:5900-null-[kgz20001 ( 192.168.20.1 ) - service mode] 78.134.4.55:5900-null-[None] 78.132.6.200:5900-null-[WindowsCE] 78.137.162.197:5900-null-[QEMU (instance-00000004)] 78.138.117.16:5900-null-[None] 78.140.190.199:5900-null-[QEMU (chat-api)] 78.140.190.198:5900-null-[QEMU (chat-api)] 78.141.25.5:5900-null-[SEARLESCCTV] 78.153.222.196:5900-null-[QEMU (instance-00000094)] 78.153.222.198:5900-null-[QEMU (instance-00000062)] 78.152.49.35:5900-null-[QEMU (instance-00000001)] 78.141.111.25:5900-null-[None] 78.152.51.25:5900-null-[QEMU (instance-0000000e)] 78.154.94.86:5900-null-[QEMU (test1)] 78.152.57.107:5900-null-[QEMU (instance-00000007)] 78.158.144.106:5900-null-[Exposed - AppleTV VNC Server] 78.170.159.250:5900-null-[VNC] 78.178.131.179:5900-null-[root@DurstPrinter] 78.186.63.210:5900-null-[oracle@SEVDAECZ] 78.189.33.239:5900-null-[ZEMIN] 78.197.220.27:5900-null-[None] 78.195.38.8:5900-null-[lulu@mouette] 78.22.117.112:5900-null-[KAAN_PRAKTIJK] 78.227.24.35:5900-null-[Pliant UI] 78.147.102.204:5900-null-[NAS:0] 78.24.221.148:5900-null-[QEMU (wordpress)] 78.24.18.228:5900-null-[LIOSBAN] 78.241.155.53:5900-null-[socast VM] 78.28.157.9:5900-null-[QEMU (winServer-lic)] 78.25.99.166:5900-null-[VisionControl:0] 78.25.88.213:5900-null-[PLC-M-dev:0] 78.33.194.155:5900-null-[administrator@server.local] 78.30.144.164:5900-null-[petsplanetserver@petsplanetserver] 78.40.176.26:5900-null-[storage-desktop:0] 78.4.147.202:5900-null-[LVIS-ME200-000ab0036f29 (192.168.1.102)] 78.46.101.180:5900-null-[chainsys@erp.genlite.in] 78.46.176.35:5900-null-[QEMU] 78.46.21.93:5900-null-[QEMU (instance-00000f6c)] 78.46.39.169:5900-null-[QEMU (matteo)] 78.46.44.194:5900-null-[QEMU (test)] 78.46.46.169:5900-null-[QEMU (ASKOZIA_261014)] 78.46.84.247:5900-null-[None] 78.46.89.67:5900-null-[Xen-win2008] 78.46.98.10:5900-null-[QEMU (78.46.98.23)] 78.192.135.41:5900-null-[None] 78.47.184.185:5900-null-[sis.ru:10] 78.47.231.20:5900-null-[QEMU (instance-00000004)] 78.47.59.131:5900-null-[QEMU (mx02)] 78.49.70.114:5900-null-[QEMU (kiosk)] 78.49.112.208:5900-null-[BJE-CP1:0.0] 78.5.225.93:5900-null-[TS0X:0] 78.69.224.63:5900-null-[None] 78.72.23.220:5900-null-[VisionControl:0] 78.72.39.166:5900-null-[x11] 78.72.54.129:5900-null-[None] 78.79.166.72:5900-null-[x11] 78.82.121.64:5900-null-[None] 78.82.140.41:5900-null-[None] 78.82.136.179:5900-null-[None] 78.82.12.94:5900-null-[None] 78.82.22.30:5900-null-[None] 78.72.243.118:5900-null-[xvision@ubuntumaster] 78.82.68.66:5900-null-[None] 78.8.208.136:5900-null-[QEMU (debian7)] 78.85.172.40:5900-null-[QEMU (winxp-rdp-vm00)] 78.85.20.4:5900-null-[QEMU (winxp-rdp-vm00)] 78.84.24.106:5900-null-[till1:0] 78.84.192.178:5900-null-[till1:0] 78.87.126.200:5900-null-[None] 78.92.225.64:5900-null-[SZERVER] 78.97.172.231:5900-null-[lcfproja@lcfproja-ubuntu] 78.97.92.204:5900-null-[cornelia@cornelia-desktop] 78.93.113.213:5900-null-[myareeb@myareeb-dcl] 78.97.29.49:5900-null-[None] 78.69.177.33:5900-null-[None] 78.97.117.238:5900-null-[None] 78.78.65.67:5900-null-[None] 78.107.58.105:5900-12345678-[server ( 192.168.1.10 ) - service mode] 78.225.179.148:5900-12345678-[None] 78.204.171.28:5900-12345678-[Mac mini de Pandolfi] 78.30.140.150:5900-12345678-[server ( 192.168.0.100, 192.168.1.100 ) - service mode] 78.70.20.118:5900-null-[x11] 78.90.230.203:5900-12345678-[Nikola’s Mac mini] 78.97.243.79:5900-12345678-[None] 78.119.205.149:5900-admin-[BJE-CP1:0.0] 78.225.113.112:5900-admin-[None] 78.80.181.201:5900-admin-[MacMiniServer] 78.189.148.28:5900-password-[azoserv ( 140.80.0.7, 192.168.3.2, 10.126.13.56 ) - service mode] 78.238.132.211:5900-password-[DavcomSRV] 78.82.94.80:5900-null-[None] 78.241.38.60:5900-null-[None] 78.36.130.13:5900-null-[terminal@terminal1] 5.10.88.171:5900-null-[QEMU (instance-0000001f)] 5.100.165.200:5900-null-[manager@Linux-MGR] 5.135.135.185:5900-null-[QEMU (instance-00000009)] 5.143.203.43:5900-null-[None] 5.143.211.104:5900-null-[notebook-pc] 5.145.176.224:5900-null-[QEMU (pfSense)] 5.145.40.161:5900-null-[VNC] 5.150.213.114:5900-null-[None] 5.146.140.229:5900-null-[None] 5.146.20.194:5900-null-[None] 5.153.56.242:5900-null-[x11] 5.150.193.150:5900-null-[None] 5.158.29.183:5900-null-[root's x11 desktop (VVServer:0)] 5.189.129.89:5900-null-[QEMU (win7_0)] 5.175.74.164:5900-null-[PCSCADA] 5.206.199.44:5900-null-[CCP Remote Control] 5.20.146.209:5900-null-[None] 5.226.114.83:5900-null-[VC] 5.245.248.169:5900-null-[None] 5.255.68.181:5900-null-[QEMU (vm11)] 5.255.68.182:5900-null-[QEMU (vm11)] 5.237.35.27:5900-null-[None] 5.185.120.131:5900-micros-[None] 5.185.116.23:5900-micros-[None] 5.2.9.229:5900-null-[ay5:0] 5.30.18.209:5900-null-[None] 5.30.18.129:5900-null-[None] 5.30.17.196:5900-null-[None] 5.30.20.175:5900-null-[None] 5.30.36.9:5900-null-[None] 5.30.40.140:5900-null-[None] 5.39.233.205:5900-null-[x11] 5.43.148.87:5900-null-[None] 5.38.81.17:5900-null-[root's x11 desktop (M20:0)] 5.62.11.125:5900-null-[None] 5.63.113.199:5900-null-[OPENSCADA.trisad.kz:0] 5.62.29.104:5900-null-[MEDIA-CENTER] 5.62.30.84:5900-null-[None] 5.9.109.114:5900-null-[QEMU (instance-00000235)] 5.9.136.164:5900-null-[QEMU (vm100)] 5.9.136.247:5900-null-[QEMU (windows_2008_standard_ru)] 5.9.136.250:5900-null-[QEMU (windows_2008_standard_ru)] 5.9.142.44:5900-null-[QEMU (yosemite)] 5.9.150.80:5900-null-[XenServer Virtual Terminal] 5.9.154.175:5900-null-[QEMU (dev.cloudm)] 5.9.122.170:5900-null-[QEMU (5.9.122.185)] 5.9.218.217:5900-null-[QEMU (instance-00000012)] 5.9.30.203:5900-null-[QEMU (instance-00000012)] 5.9.30.204:5900-null-[QEMU (instance-00000012)] 5.9.33.221:5900-null-[QEMU (win-test)] 5.9.39.51:5900-null-[QEMU (W2k3s)] 5.9.61.169:5900-null-[QEMU (win7prtg)] 5.9.63.110:5900-null-[QEMU (5.9.63.122)] 5.9.63.228:5900-null-[QEMU (kerio1)] 5.61.138.59:5900-null-[None] 5.9.69.146:5900-null-[QEMU (mail)] 5.9.69.144:5900-null-[QEMU (instance-00000013)] 5.61.178.205:5900-null-[None] 5.9.81.168:5900-null-[QEMU (SQL-Server)] 5.9.81.182:5900-null-[QEMU (SQL-Server)] 5.97.185.82:5900-null-[TERMINAL] 5.244.136.232:5900-null-[AdeliPhone] 5.96.181.236:5900-null-[PC] 5.145.220.83:5900-12345678-[home-f3b45697b7 ( 10.14.21.197, 5.145.220.83 ) - service mode] 5.206.103.129:5900-12345678-[admin-utsccc68n ( 5.206.103.129, 25.85.220.195 )] 5.79.255.5:5900-12345678-[test-pc] 5.9.5.68:5900-null-[QEMU (vm01)] 5.98.166.244:5900-12345678-[srvanaclerico ( 192.168.1.25 ) - service mode] 5.146.118.38:5900-admin-[MacPro] 5.158.123.55:5900-password-[os2server] 5.226.80.77:5900-password-[organictj ( 192.168.106.2 ) - service mode] 5.35.191.231:5900-password-[thelibmac01] 91.10.72.133:5900-null-[SERVER] 91.104.33.84:5900-null-[korospi:0] 91.103.236.80:5900-null-[W10_tp_w] 91.106.142.203:5900-null-[None] 91.106.186.92:5900-null-[None] 91.106.149.33:5900-null-[None] 91.10.84.191:5900-null-[florian@minecraft-server] 91.112.33.178:5900-null-[E1032] 91.115.106.24:5900-null-[WindowsCE] 91.112.51.22:5900-null-[WindowsCE] 91.115.185.50:5900-null-[WindowsCE] 91.112.88.82:5900-null-[WindowsCE] 91.112.182.18:5900-null-[NXV 300] 91.119.156.6:5900-null-[Aquarium] 91.12.225.180:5900-null-[root@Eltako-GFVS] 91.120.105.156:5900-null-[csoty@venus] 91.126.138.131:5900-null-[win-heq4rq46858] 91.135.14.155:5900-null-[None] 91.12.33.241:5900-null-[Qt for Embedded Linux VNC Server] 91.138.97.202:5900-null-[EXTER T60] 91.143.205.171:5900-null-[QEMU (w2008)] 91.143.62.108:5900-null-[None] 91.146.106.75:5900-null-[QEMU (projectspaces)] 91.146.109.2:5900-null-[QEMU (ballyhoo)] 91.147.205.240:5900-null-[cc51:0] 91.146.66.90:5900-null-[b300 V3.04b-2.06 (MAXIMA X PAHKLIMAE6 NARVA B400)] 91.149.62.138:5900-null-[T7A] 91.113.20.120:5900-null-[None] 91.155.149.188:5900-null-[None] 91.176.154.12:5900-null-[SERVER111901] 91.183.116.242:5900-null-[None] 91.183.190.120:5900-null-[None] 91.136.145.152:5900-null-[None] 91.183.203.12:5900-null-[WindowsCE] 91.137.148.105:5900-null-[None] 91.184.220.220:5900-null-[xubuntaki:0.0] 91.185.184.222:5900-null-[QEMU (instance-0000005d)] 91.185.184.223:5900-null-[QEMU (instance-00000037)] 91.183.115.222:5900-null-[None] 91.187.214.18:5900-null-[QEMU (srv2k8)] 91.195.95.237:5900-null-[QEMU (instance-000001c9)] 91.197.24.194:5900-null-[QEMU (ssite)] 91.198.39.35:5900-null-[x11] 91.198.39.42:5900-null-[x11] 91.198.39.50:5900-null-[x11] 91.198.39.56:5900-null-[x11] 91.200.25.17:5900-null-[HP-01] 91.200.32.72:5900-null-[serwer] 91.20.143.44:5900-null-[None] 91.202.201.77:5900-null-[QEMU (r-5028-VM)] 91.202.201.76:5900-null-[QEMU (i-2-5027-VM)] 91.202.202.76:5900-null-[QEMU (s-5559-VM)] 91.202.202.77:5900-null-[QEMU (v-5558-VM)] 91.202.203.76:5900-null-[QEMU (v-25156-VM)] 91.202.203.77:5900-null-[QEMU (s-25165-VM)] 91.203.39.231:5900-null-[QEMU (Main-Router)] 91.206.26.202:5900-null-[QEMU (instance-000000b3)] 91.205.154.171:5900-null-[None] 91.209.128.196:5900-null-[QEMU (crm)] 91.214.29.197:5900-null-[QEMU (vm1)] 91.218.68.8:5900-null-[GNSeries] 91.221.70.3:5900-null-[Xen-win7] 91.221.68.22:5900-null-[QEMU (sb)] 91.2.28.249:5900-null-[myGekko VNC] 91.227.68.87:5900-null-[QEMU (instance-00000008)] 91.216.173.61:5900-null-[None] 91.239.154.213:5900-null-[programmer@SterisControlCenter] 91.240.38.235:5900-null-[None] 91.239.158.4:5900-null-[QEMU (nas1)] 91.239.158.5:5900-null-[QEMU (skf-new)] 91.239.158.3:5900-null-[QEMU (abills-new)] 91.243.171.2:5900-null-[None] 91.32.125.220:5900-null-[GVGSV01] 91.3.148.121:5900-null-[psb1751] 91.35.33.76:5900-null-[E1070] 91.38.212.45:5900-null-[myGekko VNC] 91.50.67.164:5900-null-[nobody's x11 desktop (SWV1:1)] 91.55.19.29:5900-null-[LXT-T60] 91.56.249.73:5900-null-[myGekko VNC] 91.60.211.216:5900-null-[BIOGAS] 91.45.72.27:5900-null-[BJE-CP1:0.0] 91.65.95.246:5900-null-[BJE-CP1:0.0] 91.67.152.152:5900-null-[myGekko VNC] 91.72.118.99:5900-null-[None] 91.72.24.130:5900-null-[None] 91.72.26.254:5900-null-[None] 91.72.24.69:5900-null-[None] 91.72.26.59:5900-null-[None] 91.72.24.102:5900-null-[None] 91.72.209.11:5900-null-[None] 91.72.24.132:5900-null-[None] 91.72.25.141:5900-null-[None] 91.73.1.86:5900-null-[None] 91.73.104.26:5900-null-[None] 91.72.24.236:5900-null-[None] 91.72.25.176:5900-null-[None] 91.73.89.172:5900-null-[None] 91.72.144.80:5900-null-[None] 91.72.142.204:5900-null-[None] 91.72.146.176:5900-null-[None] 91.73.89.252:5900-null-[None] 91.72.150.7:5900-null-[None] 91.72.146.159:5900-null-[None] 91.72.144.32:5900-null-[None] 91.72.146.112:5900-null-[None] 91.72.144.22:5900-null-[None] 91.72.144.195:5900-null-[None] 91.72.26.217:5900-null-[None] 91.72.144.107:5900-null-[None] 91.72.144.64:5900-null-[None] 91.72.146.115:5900-null-[None] 91.73.216.114:5900-null-[None] 91.72.25.4:5900-null-[None] 91.72.147.138:5900-null-[None] 91.72.147.250:5900-null-[None] 91.73.180.5:5900-null-[None] 91.73.201.254:5900-null-[None] 91.73.214.246:5900-null-[None] 91.73.214.101:5900-null-[None] 91.73.215.52:5900-null-[None] 91.72.147.125:5900-null-[None] 91.74.119.173:5900-null-[None] 91.74.145.223:5900-null-[None] 91.73.216.233:5900-null-[None] 91.75.242.132:5900-null-[None] 91.75.242.51:5900-null-[None] 91.74.227.207:5900-null-[None] 91.74.6.77:5900-null-[None] 91.74.94.150:5900-null-[None] 91.75.86.185:5900-null-[None] 91.75.86.204:5900-null-[None] 91.75.86.235:5900-null-[None] 91.75.85.157:5900-null-[None] 91.75.86.24:5900-null-[None] 91.73.216.197:5900-null-[None] 91.75.86.39:5900-null-[None] 91.75.87.101:5900-null-[None] 91.75.87.103:5900-null-[None] 91.75.87.25:5900-null-[None] 91.72.146.166:5900-null-[None] 91.82.238.46:5900-null-[QEMU (instance-0000017b)] 91.82.238.42:5900-null-[QEMU (instance-0000019d)] 91.74.177.22:5900-null-[E1070] 91.74.177.62:5900-null-[E1070] 91.73.38.115:5900-null-[None] 91.72.147.107:5900-null-[None] 91.9.157.197:5900-null-[WinCE] 91.64.241.247:5900-null-[None] 91.65.18.222:5900-null-[None] 91.64.41.66:5900-null-[None] 91.66.27.228:5900-null-[None] 91.67.211.233:5900-null-[None] 91.81.44.210:5900-null-[None] 91.112.157.70:5900-12345678-[Solarfocus] 91.113.137.50:5900-12345678-[ars ( 192.168.179.193, 169.254.58.200 ) - service mode] 91.122.73.10:5900-12345678-[serverbd ( 192.168.0.1, 91.122.73.10 )] 91.144.142.186:5900-12345678-[inet-server ( 192.168.2.99 )] 91.137.144.167:5900-12345678-[iroda ( 192.168.0.11 ) - service mode] 91.185.87.204:5900-12345678-[None] 91.222.69.211:5900-12345678-[gdn-mmxii ( 10.48.60.177 ) - service mode] 91.225.193.153:5900-12345678-[sbis_pc ( 91.225.193.153 ) - service mode] 91.228.230.144:5900-12345678-[??( 192.168.1.104, 192.168.1.100 ) - service mode] 91.82.238.48:5900-null-[QEMU (instance-00000183)] 91.82.13.13:5900-null-[x11] 91.80.14.160:5900-12345678-[rtvm-i_9302 ( 192.168.0.1, 192.168.1.2 ) - service mode] 91.80.14.131:5900-12345678-[rtvm-i_9302 ( 192.168.0.1, 192.168.1.2 ) - service mode] 91.80.29.219:5900-12345678-[rtvm-i_9302 ( 192.168.0.1, 192.168.1.2 ) - service mode] 91.5.150.92:5900-null-[None] 91.17.142.83:5900-admin-[SERVER] 91.115.78.128:5900-admin-[CAMERAS] 91.3.20.78:5900-admin-[SRV] 91.51.88.166:5900-admin-[BJE-CP1:0.0] 91.8.135.141:5900-admin-[buero ( 192.168.2.50 ) - service mode] 91.115.125.242:5900-1212-[BJE-CP1:0.0] 91.183.111.84:5900-support-[None] 94.100.31.69:5900-null-[QEMU (instance-00000098)] 94.103.136.51:5900-null-[QEMU (instance-0000001e)] 94.125.180.175:5900-null-[x11] 94.127.64.80:5900-null-[gdm's x11 desktop (vnc-vds:1)] 94.138.176.2:5900-null-[LibVNCServer] 94.127.69.6:5900-null-[gdm's x11 desktop (vnc-vds:1)] 94.135.146.16:5900-null-[None] 94.135.143.191:5900-null-[None] 94.135.213.139:5900-null-[None] 94.135.201.198:5900-null-[None] 94.135.206.231:5900-null-[None] 94.152.188.210:5900-null-[k77@linux-l4kw] 94.154.28.26:5900-null-[None] 94.156.12.135:5900-null-[QEMU (instance-00000009)] 94.175.85.19:5900-null-[andi@flower] 94.176.104.54:5900-null-[server:0] 94.159.67.94:5900-null-[None] 94.184.194.125:5900-null-[QEMU (instance-00000005)] 94.200.252.157:5900-null-[None] 94.200.253.168:5900-null-[None] 94.200.253.24:5900-null-[None] 94.200.253.33:5900-null-[None] 94.200.129.122:5900-null-[AIMS-SERVER] 94.201.131.84:5900-null-[None] 94.201.140.99:5900-null-[None] 94.201.140.178:5900-null-[None] 94.201.148.23:5900-null-[None] 94.201.140.80:5900-null-[None] 94.201.155.156:5900-null-[None] 94.201.162.173:5900-null-[None] 94.201.126.141:5900-null-[None] 94.201.155.71:5900-null-[None] 94.201.163.252:5900-null-[None] 94.201.155.171:5900-null-[None] 94.201.175.137:5900-null-[None] 94.201.169.58:5900-null-[None] 94.201.138.181:5900-null-[None] 94.201.182.91:5900-null-[None] 94.201.183.248:5900-null-[None] 94.201.175.192:5900-null-[None] 94.201.187.148:5900-null-[None] 94.201.196.48:5900-null-[None] 94.201.202.191:5900-null-[None] 94.201.207.161:5900-null-[None] 94.202.103.87:5900-null-[None] 94.201.23.81:5900-null-[None] 94.202.16.183:5900-null-[None] 94.201.45.99:5900-null-[None] 94.201.215.15:5900-null-[None] 94.201.249.94:5900-null-[None] 94.201.57.52:5900-null-[None] 94.201.84.137:5900-null-[None] 94.201.84.36:5900-null-[None] 94.201.84.80:5900-null-[None] 94.202.160.123:5900-null-[None] 94.201.205.234:5900-null-[None] 94.202.160.98:5900-null-[None] 94.202.17.171:5900-null-[None] 94.202.161.123:5900-null-[None] 94.202.160.99:5900-null-[None] 94.202.160.140:5900-null-[None] 94.202.17.238:5900-null-[None] 94.202.162.159:5900-null-[None] 94.202.162.138:5900-null-[None] 94.202.162.176:5900-null-[None] 94.202.162.215:5900-null-[None] 94.202.163.137:5900-null-[None] 94.202.163.143:5900-null-[None] 94.202.22.15:5900-null-[None] 94.202.22.156:5900-null-[None] 94.202.22.168:5900-null-[None] 94.202.22.6:5900-null-[None] 94.202.49.71:5900-null-[None] 94.202.80.220:5900-null-[None] 94.202.254.186:5900-null-[None] 94.202.82.11:5900-null-[None] 94.202.82.230:5900-null-[None] 94.202.254.201:5900-null-[None] 94.202.99.72:5900-null-[None] 94.202.86.47:5900-null-[None] 94.202.84.196:5900-null-[None] 94.202.84.213:5900-null-[None] 94.202.22.49:5900-null-[None] 94.203.107.133:5900-null-[None] 94.203.107.83:5900-null-[None] 94.203.0.250:5900-null-[None] 94.203.109.6:5900-null-[None] 94.203.0.31:5900-null-[None] 94.203.140.194:5900-null-[None] 94.203.0.139:5900-null-[None] 94.203.140.131:5900-null-[None] 94.203.141.168:5900-null-[None] 94.203.205.1:5900-null-[None] 94.203.160.104:5900-null-[None] 94.203.167.78:5900-null-[None] 94.203.173.245:5900-null-[None] 94.203.167.40:5900-null-[None] 94.203.168.18:5900-null-[None] 94.203.219.137:5900-null-[None] 94.203.222.78:5900-null-[None] 94.203.220.189:5900-null-[None] 94.203.167.221:5900-null-[None] 94.203.89.85:5900-null-[None] 94.203.11.100:5900-null-[None] 94.203.23.183:5900-null-[None] 94.203.23.187:5900-null-[None] 94.204.218.43:5900-null-[None] 94.203.47.146:5900-null-[None] 94.203.47.200:5900-null-[None] 94.204.71.130:5900-null-[None] 94.203.8.118:5900-null-[None] 94.205.10.166:5900-null-[None] 94.205.10.136:5900-null-[None] 94.205.10.84:5900-null-[None] 94.205.109.186:5900-null-[None] 94.203.41.206:5900-null-[None] 94.205.1.11:5900-null-[None] 94.205.160.5:5900-null-[None] 94.205.178.105:5900-null-[None] 94.205.161.29:5900-null-[None] 94.205.144.182:5900-null-[None] 94.205.160.166:5900-null-[None] 94.203.47.55:5900-null-[None] 94.205.221.61:5900-null-[None] 94.205.9.130:5900-null-[None] 94.205.64.24:5900-null-[None] 94.205.64.89:5900-null-[None] 94.205.64.33:5900-null-[None] 94.205.222.241:5900-null-[None] 94.205.232.8:5900-null-[None] 94.202.248.78:5900-null-[None] 94.205.232.121:5900-null-[None] 94.205.4.106:5900-null-[None] 94.205.233.174:5900-null-[None] 94.205.67.186:5900-null-[None] 94.206.103.116:5900-null-[None] 94.205.81.78:5900-null-[None] 94.205.85.152:5900-null-[None] 94.205.234.240:5900-null-[None] 94.205.232.211:5900-null-[None] 94.206.144.129:5900-null-[None] 94.206.145.28:5900-null-[None] 94.206.148.112:5900-null-[None] 94.206.144.154:5900-null-[None] 94.206.153.127:5900-null-[None] 94.206.153.46:5900-null-[None] 94.206.165.89:5900-null-[None] 94.206.154.3:5900-null-[None] 94.206.75.17:5900-null-[None] 94.206.75.34:5900-null-[None] 94.205.210.58:5900-null-[None] 94.206.88.129:5900-null-[None] 94.206.89.118:5900-null-[None] 94.206.24.150:5900-null-[None] 94.206.23.121:5900-null-[None] 94.206.89.166:5900-null-[None] 94.206.89.9:5900-null-[None] 94.206.35.147:5900-null-[None] 94.206.88.17:5900-null-[None] 94.206.24.228:5900-null-[None] 94.206.17.92:5900-null-[None] 94.201.199.62:5900-null-[None] 94.218.193.110:5900-null-[T10A] 94.205.123.60:5900-null-[None] 94.228.184.9:5900-null-[QEMU (LISP-LAB_RTR)] 94.228.252.90:5900-null-[QEMU (srvdc1-krilak)] 94.229.162.125:5900-null-[QEMU (instance-00000003)] 94.234.167.55:5900-null-[E1061] 94.234.176.183:5900-null-[E1100] 94.234.175.192:5900-null-[E1032] 94.234.172.235:5900-null-[E1032] 94.234.190.129:5900-null-[E1032] 94.234.179.111:5900-null-[E1032] 94.23.90.74:5900-null-[None] 94.236.219.27:5900-null-[a20-olimex:0.0] 94.243.133.42:5900-null-[None] 94.237.245.163:5900-null-[None] 94.248.38.101:5900-null-[None] 94.250.252.129:5900-null-[QEMU (redmine)] 94.250.252.32:5900-null-[QEMU (redmine)] 94.254.63.145:5900-null-[None] 94.254.58.126:5900-null-[None] 94.255.197.70:5900-null-[None] 94.255.166.110:5900-null-[None] 94.255.170.103:5900-null-[None] 94.255.226.157:5900-null-[None] 94.29.200.47:5900-null-[None] 94.30.105.35:5900-null-[root's x11 desktop (raspberrypi:2)] 94.40.17.34:5900-null-[Xen-winxp] 94.41.220.251:5900-null-[oper@M297] 94.56.50.214:5900-null-[base-6000-22680:0] 94.52.244.198:5900-null-[luminita@luminita-desktop] 94.70.246.184:5900-null-[Show Room Panel] 94.75.232.83:5900-null-[QEMU (dev1.casino)] 94.73.224.129:5900-null-[VBox (Win2003Serv)] 94.79.142.219:5900-null-[QEMU (instance-0000001d)] 94.79.54.97:5900-null-[mmmail] 94.80.160.59:5900-null-[gw-350:0] 94.30.115.44:5900-null-[None] 94.79.55.97:5900-null-[ns2.pqms.ru] 94.31.84.188:5900-null-[None] 94.91.145.213:5900-null-[client095@client095] 94.98.71.60:5900-null-[None] 94.98.38.250:5900-null-[None] 94.56.64.36:5900-null-[None] 94.56.64.37:5900-null-[None] 94.64.19.110:5900-null-[None] 94.71.191.152:5900-null-[None] 94.140.208.226:5900-12345678-[server-mn] 94.190.187.190:5900-12345678-[changeme1 ( 192.168.1.2 ) - service mode] 94.201.163.228:5900-null-[None] 94.202.17.81:5900-null-[None] 94.202.22.44:5900-null-[None] 94.203.141.66:5900-null-[None] 94.203.167.133:5900-null-[None] 94.203.143.149:5900-null-[None] 94.203.11.236:5900-null-[None] 94.203.22.174:5900-null-[None] 94.203.89.11:5900-null-[None] 94.203.41.182:5900-null-[None] 94.203.53.221:5900-null-[None] 94.203.47.213:5900-null-[None] 94.203.47.120:5900-null-[None] 94.205.109.166:5900-null-[None] 94.205.10.210:5900-null-[None] 94.205.11.206:5900-null-[None] 94.205.11.77:5900-null-[None] 94.205.109.83:5900-null-[None] 94.203.61.155:5900-null-[None] 94.205.160.19:5900-null-[None] 94.205.161.116:5900-null-[None] 94.205.159.94:5900-null-[None] 94.205.163.167:5900-null-[None] 94.205.163.171:5900-null-[None] 94.205.4.105:5900-null-[None] 94.206.108.127:5900-null-[None] 94.205.223.254:5900-null-[None] 94.205.5.199:5900-null-[None] 94.205.210.83:5900-null-[None] 94.206.144.56:5900-null-[None] 94.205.221.75:5900-null-[None] 94.206.131.136:5900-null-[None] 94.206.12.158:5900-null-[None] 94.206.173.125:5900-null-[None] 94.206.148.59:5900-null-[None] 94.206.172.90:5900-null-[None] 94.206.154.68:5900-null-[None] 94.206.65.86:5900-null-[None] 94.206.74.27:5900-null-[None] 94.206.173.109:5900-null-[None] 94.206.26.134:5900-null-[None] 94.206.27.192:5900-null-[None] 94.206.74.197:5900-null-[None] 94.206.88.237:5900-null-[None] 94.247.17.228:5900-12345678-[None] 94.249.189.143:5900-12345678-[None] 94.249.189.218:5900-12345678-[None] 94.28.24.34:5900-12345678-[Unitronics] 94.31.166.168:5900-12345678-[K?????] 94.69.249.85:5900-12345678-[None] 94.41.223.141:5900-12345678-[None] 94.200.255.102:5900-null-[None] 94.205.181.3:5900-null-[None] 94.206.148.30:5900-null-[None] 94.206.154.135:5900-null-[None] 94.205.5.118:5900-null-[None] 94.206.74.75:5900-null-[None] 94.206.88.240:5900-null-[None] 94.206.89.111:5900-null-[None] 94.231.143.144:5900-admin-[server] 94.218.210.20:5900-admin-[None] 94.245.58.196:5900-admin-[LENOVO-PC] 94.82.166.160:5900-admin-[vdgprs ( 192.168.0.25 )] 94.200.160.72:5900-password-[mednbxenapp1] 94.200.160.74:5900-password-[None] 94.200.160.75:5900-password-[megdpexc] 94.205.10.209:5900-null-[None] 94.202.196.2:5900-password-[None] 94.202.196.215:5900-password-[None] 94.202.196.222:5900-password-[None] 94.202.198.102:5900-password-[None] 94.202.196.45:5900-password-[None] 94.202.196.96:5900-password-[None] 94.202.198.3:5900-password-[None] 94.202.196.166:5900-password-[None] 94.202.198.241:5900-password-[None] 94.202.197.94:5900-password-[None] 94.205.1.97:5900-password-[None] 94.202.197.204:5900-password-[None] 94.200.160.86:5900-password-[None] 94.221.123.212:5900-password-[None] 94.242.199.222:5900-password-[loco-old ( 94.242.199.222, 192.168.1.10 ) - service mode] 94.67.0.79:5900-manager-[geox-11agk ( 192.168.1.70 ) - service mode] 75.108.60.148:5900-null-[bev-laptop-mini] 75.129.60.49:5900-null-[admin-pc6] 75.126.75.179:5900-null-[QEMU (instance-00003553)] 75.145.80.213:5900-null-[vnc-server] 75.151.41.86:5900-null-[Master Bedroom] 75.154.238.80:5900-null-[charmander:0] 75.158.78.249:5900-micros-[WindowsCE] 75.179.34.129:5900-null-[None] 75.151.128.173:5900-null-[None] 75.243.43.222:5900-null-[None] 75.211.129.32:5900-null-[E1071] 75.62.62.102:5900-null-[x11] 75.71.148.131:5900-null-[Cards Room] 75.92.15.27:5900-null-[server:0] 75.249.169.152:5900-null-[None] 75.97.23.126:5900-null-[Living RM] 75.149.179.45:5900-null-[None] 75.253.62.54:5900-null-[E1071] 75.225.36.57:5900-null-[None] 75.142.209.194:5900-null-[KITCHEN\DINING TOUCH PANEL] 75.142.216.63:5900-null-[admin@LWT0080643ab294] 75.150.202.170:5900-letmein-[mailserver ( 192.168.2.125 ) - service mode] 75.72.228.44:5900-null-[None] 75.99.151.242:5900-letmein-[Sustainable Generation Group Server] 75.145.85.169:5900-admin-[ruserwin7 ( 192.168.1.21 ) - service mode] 75.148.20.61:5900-admin-[now080047 ( 75.148.20.61 )] 75.148.34.217:5900-password-[tiny] 75.44.35.102:5900-password-[None] 75.201.215.106:5900-password-[320pm-0316l ( 75.201.215.106, 10.7.100.168 ) - service mode] 75.99.210.196:5900-password-[3DSERVER] 75.247.173.147:5900-support-[htw0gv1-lp ( 75.247.173.147 )] 75.66.144.151:5900-support-[BEAST] 75.77.18.198:5900-null-[None] 75.223.208.216:5900-support-[b4q0gv1-lp ( 75.223.208.216 )]-1 points
-
d-asta cautai tu pma scanner ma kronzy aka Castiel aka RoKH aka 321 aka badboy17 aka kron aka 1488. SICTIR SKIDZORE !!! @aelius @em-1 points