/srv/irclogs.ubuntu.com/2011/09/20/#ubuntu-ph.txt

=== deng_c is now known as deng
Antrax2000:D11:26
* Craw^ mano kay Antrax2000 14:35
=== scryptz0 is now known as shipcode
=== shipcode is now known as projectxeno
projectxeno my new blog article >> http://blog.rootcon.org/2011/09/demystifying-backdoor-shell.html15:38
compromiseddugo ilong15:57
compromisedheh15:57
compromisedastig, ikaw nag code nung backoodr shell?15:57
compromisedbackdoor*15:58
compromisedmay ganun pala15:58
compromisedIRC bots15:58
projectxenoactually avalon15:59
projectxenonope d ako15:59
projectxenopero may personal released ako15:59
projectxenona php15:59
projectxenohehe16:00
projectxenoyung sa screenshot r57 shell yan16:00
projectxenotapos site na na napawn which I backdoored16:00
projectxenoi mean private shell ako16:00
projectxenohehe16:01
projectxenomodify ko lang16:01
projectxenothis for example is an r57 shell > http://ns10.freeheberg.com/~axelkama/images/configu.php16:02
projectxenohmmm16:02
projectxenomay c99 din na kind of shell16:02
=== projectxeno is now known as shipcode
shipcodemay personal ako shell pero prvate po. nxt time cguro debug ko php functions nun16:04
compromisedcool16:04
compromisedpara ba yang sa terminal16:04
compromisedpwde mag execute ng commands16:05
shipcodeyep16:05
shipcodelike ls -la16:05
shipcodeperl ircbot.pl16:05
shipcodeuname -a16:05
shipcodesbin/ifconfig16:05
shipcodecat /etc/issue16:05
shipcodekaya lang yang bingay ko sau wla yang run command ^^16:06
shipcodesa google16:07
shipcodedami mga shells na masesearch16:07
compromisedahh16:07
shipcodemga sites na may shells16:07
shipcodehehe16:07
compromisedoo16:07
compromisednde pwde16:07
shipcodebasta dork mo lang16:07
compromisedbakit16:07
shipcodenka safe mode yan ^^16:07
compromisedanu yung dork16:07
shipcodedork >> google query po16:07
shipcodefor example16:08
compromisedsafe mode?16:08
shipcodeinurl: c99.php site:br16:08
shipcodesafe mode >> lang run or execute command at d ka mka upload16:08
shipcodebut sa shell na yan pwede16:08
compromisedahh ic16:09
compromisedkaramihan ginagamit yan sa hacking?16:10
shipcodeactually16:10
shipcodepag backdoor na16:10
shipcodemeaning napasok na yan16:10
compromisedsan ba yan galing16:11
compromisedpaano napasok un dun16:11
shipcodethrough sql injection,rfi,remote code execution,sniffing, md5 cracking, bruteforce,etc16:11
shipcodeanong saan galing?16:11
shipcodeyung site ba?16:11
shipcodeactually yung admin ng site na yan16:12
shipcoded na active16:12
shipcodeso what i did16:12
shipcodeexploit16:12
shipcodethen i emailed the admin16:12
shipcodethen he said16:12
shipcodei can just have it16:12
shipcodena16:12
compromisedI mean yung backdoor na shell16:12
shipcodeafter reporting it can be xploited16:12
compromisedIkaw nag lagay nun dun?16:12
compromisedbuong server hawak mo mismo?16:13
shipcodenope sa site lang pre ^^16:17
shipcodewith the admin's permission after saying ur site can be xploited16:17
shipcodeand said16:17
shipcodeu can have it boy coz i don't use it anymore :p16:18
shipcodepromise16:18
compromisedah ic16:24
compromisedanu namn makukuha mo dun after mo lagyan16:25
shipcodechk mo post ko sa blog16:28
shipcodeyun na16:28
shipcodemga benefits16:28

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!