htb-machines-irked
Differences
This shows you the differences between two versions of the page.
| htb-machines-irked [2019/04/06 11:07] – created didzkovitchz | htb-machines-irked [2020/12/15 21:32] (current) – removed didzkovitchz | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| - | ====== HTB ~~ Machines ~~ Irked ====== | ||
| - | [[htb|Retour]] | ||
| - | Pistes : | ||
| - | * * ssher ircd depuis vm aws pour que ce soit + pratique (pousser clé depuis exploit) | ||
| - | * * reprendre les infos de base et chercher point par point, à tête reposée | ||
| - | * * stegano avec le password dans le .backup et l' | ||
| - | |||
| - | |||
| - | '' | ||
| - | |||
| - | |||
| - | < | ||
| - | 10.10.10.117 / Irked | ||
| - | PORT STATE SERVICE | ||
| - | 22/ | ||
| - | 80/ | ||
| - | 111/ | ||
| - | 6697/ | ||
| - | 8067/ | ||
| - | 49608/tcp open unknown | ||
| - | 65534/tcp open unknown | ||
| - | </ | ||
| - | - | ||
| - | < | ||
| - | msf5 exploit(unix/ | ||
| - | |||
| - | [*] 10.10.10.117: | ||
| - | :irked.htb NOTICE AUTH :*** Looking up your hostname... | ||
| - | [*] 10.10.10.117: | ||
| - | [*] Started bind TCP handler against 10.10.10.117: | ||
| - | [*] Command shell session 1 opened (10.10.15.18: | ||
| - | [*] Session 1 created in the background. | ||
| - | msf5 exploit(unix/ | ||
| - | |||
| - | </ | ||
| - | - | ||
| - | < | ||
| - | / | ||
| - | ls .. | ||
| - | CVE-2014-5207_fuse_suid_3.16.1 | ||
| - | CVE-2014-5207_fuse_suid_3.16.1.1 | ||
| - | CVE-2014-5207_fuse_suid_3.16.1.c | ||
| - | test | ||
| - | </ | ||
| - | - | ||
| - | < | ||
| - | .bash_history | ||
| - | cat ../ | ||
| - | Super elite steg backup pw | ||
| - | UPupDOWNdownLRlrBAbaSSss | ||
| - | </ | ||
| - | - | ||
| - | < | ||
| - | Available information: | ||
| - | |||
| - | Kernel version: 3.16.0 | ||
| - | Architecture: | ||
| - | Distribution: | ||
| - | Distribution version: 8 | ||
| - | Additional checks (CONFIG_*, sysctl entries, custom Bash commands): performed | ||
| - | Package listing: from current OS | ||
| - | |||
| - | Searching among: | ||
| - | |||
| - | 71 kernel space exploits | ||
| - | 36 user space exploits | ||
| - | |||
| - | Possible Exploits: | ||
| - | |||
| - | cat: write error: Broken pipe | ||
| - | cat: write error: Broken pipe | ||
| - | cat: write error: Broken pipe | ||
| - | [+] [CVE-2016-5195] dirtycow | ||
| - | |||
| - | | ||
| - | Tags: [ debian=7|8 ], | ||
| - | Rank: 7 | ||
| - | | ||
| - | | ||
| - | |||
| - | [+] [CVE-2016-5195] dirtycow 2 | ||
| - | |||
| - | | ||
| - | Tags: [ debian=7|8 ], | ||
| - | Rank: 7 | ||
| - | | ||
| - | | ||
| - | | ||
| - | |||
| - | </ | ||
| - | - | ||
| - | < | ||
| - | [-] Kernel information: | ||
| - | Linux irked 3.16.0-6-686-pae #1 SMP Debian 3.16.56-1+deb8u1 (2018-05-08) i686 GNU/Linux | ||
| - | |||
| - | |||
| - | [-] Kernel information (continued): | ||
| - | Linux version 3.16.0-6-686-pae (debian-kernel@lists.debian.org) (gcc version 4.9.2 (Debian 4.9.2-10+deb8u1) ) #1 SMP Debian 3.16.56-1+deb8u1 (2018-05-08) | ||
| - | |||
| - | </ | ||
| - | - | ||
| - | < | ||
| - | Starting unix-privesc-check v1.4 ( http:// | ||
| - | </ | ||
| - | |||
| - | - | ||
| - | < | ||
| - | python privesc.py | ||
| - | ================================================================================================= | ||
| - | LINUX PRIVILEGE ESCALATION CHECKER | ||
| - | ================================================================================================= | ||
| - | |||
| - | [*] GETTING BASIC SYSTEM INFO... | ||
| - | |||
| - | [+] Kernel | ||
| - | Linux version 3.16.0-6-686-pae (debian-kernel@lists.debian.org) (gcc version 4.9.2 (Debian 4.9.2-10+deb8u1) ) #1 SMP Debian 3.16.56-1+deb8u1 (2018-05-08) | ||
| - | |||
| - | [+] Hostname | ||
| - | irked | ||
| - | |||
| - | [+] Operating System | ||
| - | Debian GNU/Linux 8 \n \l | ||
| - | |||
| - | [*] GETTING NETWORKING INFO... | ||
| - | |||
| - | [+] Interfaces | ||
| - | eth0 Link encap: | ||
| - | inet addr: | ||
| - | inet6 addr: fe80:: | ||
| - | inet6 addr: dead: | ||
| - | UP BROADCAST RUNNING MULTICAST | ||
| - | RX packets: | ||
| - | TX packets: | ||
| - | collisions: | ||
| - | RX bytes: | ||
| - | Interrupt: | ||
| - | lo Link encap:Local Loopback | ||
| - | inet addr: | ||
| - | inet6 addr: ::1/128 Scope:Host | ||
| - | UP LOOPBACK RUNNING | ||
| - | RX packets:29 errors:0 dropped:0 overruns:0 frame:0 | ||
| - | TX packets:29 errors:0 dropped:0 overruns:0 carrier:0 | ||
| - | collisions: | ||
| - | RX bytes:3221 (3.1 KiB) TX bytes:3221 (3.1 KiB) | ||
| - | |||
| - | [+] Netstat | ||
| - | Active Internet connections (servers and established) | ||
| - | Proto Recv-Q Send-Q Local Address | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 127.0.0.1: | ||
| - | tcp 0 0 127.0.0.1: | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 0.0.0.0: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 1 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp 0 0 10.10.10.117: | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | tcp6 | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp 0 0 127.0.0.1: | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp 0 0 0.0.0.0: | ||
| - | udp6 | ||
| - | udp6 | ||
| - | udp6 | ||
| - | udp6 | ||
| - | udp6 | ||
| - | |||
| - | [+] Route | ||
| - | |||
| - | [*] GETTING FILESYSTEM INFO... | ||
| - | |||
| - | [+] Mount results | ||
| - | sysfs on /sys type sysfs (rw, | ||
| - | proc on /proc type proc (rw, | ||
| - | udev on /dev type devtmpfs (rw, | ||
| - | devpts on /dev/pts type devpts (rw, | ||
| - | tmpfs on /run type tmpfs (rw, | ||
| - | /dev/sda1 on / type ext4 (rw, | ||
| - | securityfs on / | ||
| - | tmpfs on /dev/shm type tmpfs (rw, | ||
| - | tmpfs on /run/lock type tmpfs (rw, | ||
| - | tmpfs on / | ||
| - | cgroup on / | ||
| - | pstore on / | ||
| - | cgroup on / | ||
| - | cgroup on / | ||
| - | cgroup on / | ||
| - | cgroup on / | ||
| - | cgroup on / | ||
| - | cgroup on / | ||
| - | cgroup on / | ||
| - | systemd-1 on / | ||
| - | debugfs on / | ||
| - | hugetlbfs on / | ||
| - | mqueue on /dev/mqueue type mqueue (rw, | ||
| - | fusectl on / | ||
| - | rpc_pipefs on / | ||
| - | tmpfs on / | ||
| - | tmpfs on / | ||
| - | tmpfs on / | ||
| - | binfmt_misc on / | ||
| - | fuse_suid on / | ||
| - | |||
| - | [+] fstab entries | ||
| - | # /etc/fstab: static file system information. | ||
| - | # | ||
| - | # Use ' | ||
| - | # device; this may be used with UUID= as a more robust way to name devices | ||
| - | # that works even if disks are added and removed. See fstab(5). | ||
| - | # | ||
| - | # <file system> <mount point> | ||
| - | # / was on /dev/sda1 during installation | ||
| - | UUID=85e17c08-fee3-451a-a1f8-c95346ddc46c / | ||
| - | # swap was on /dev/sda5 during installation | ||
| - | UUID=29d1ae3e-562d-4323-b58c-2d48799f9632 none swap sw 0 0 | ||
| - | / | ||
| - | |||
| - | [+] Scheduled cron jobs | ||
| - | -rw-r--r-- 1 root root 722 Jun 7 2015 / | ||
| - | / | ||
| - | total 24 | ||
| - | drwxr-xr-x | ||
| - | drwxr-xr-x 135 root root 12288 Oct 30 14:51 .. | ||
| - | -rw-r--r-- | ||
| - | -rw-r--r-- | ||
| - | / | ||
| - | total 84 | ||
| - | drwxr-xr-x | ||
| - | drwxr-xr-x 135 root root 12288 Oct 30 14:51 .. | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rw-r--r-- | ||
| - | / | ||
| - | total 20 | ||
| - | drwxr-xr-x | ||
| - | drwxr-xr-x 135 root root 12288 Oct 30 14:51 .. | ||
| - | -rw-r--r-- | ||
| - | / | ||
| - | total 24 | ||
| - | drwxr-xr-x | ||
| - | drwxr-xr-x 135 root root 12288 Oct 30 14:51 .. | ||
| - | -rwxr-xr-x | ||
| - | -rw-r--r-- | ||
| - | / | ||
| - | total 28 | ||
| - | drwxr-xr-x | ||
| - | drwxr-xr-x 135 root root 12288 Oct 30 14:51 .. | ||
| - | -rwxr-xr-x | ||
| - | -rwxr-xr-x | ||
| - | -rw-r--r-- | ||
| - | |||
| - | [+] Writable cron dirs | ||
| - | |||
| - | |||
| - | [*] ENUMERATING USER AND ENVIRONMENTAL INFO... | ||
| - | |||
| - | [+] Logged in User Activity | ||
| - | 09:16:41 up 2:36, 5 users, | ||
| - | USER | ||
| - | djmardov pts/0 10.10.13.27 | ||
| - | djmardov pts/2 10.10.13.27 | ||
| - | djmardov pts/ | ||
| - | djmardov pts/ | ||
| - | |||
| - | [+] Super Users Found: | ||
| - | root | ||
| - | |||
| - | [+] Environment | ||
| - | MAIL=/ | ||
| - | USER=ircd | ||
| - | HOME=/ | ||
| - | LOGNAME=ircd | ||
| - | XDG_SESSION_ID=c1 | ||
| - | PATH=/ | ||
| - | XDG_RUNTIME_DIR=/ | ||
| - | LANG=en_US.UTF-8 | ||
| - | SHELL=/ | ||
| - | PWD=/ | ||
| - | |||
| - | [+] Root and current user history (depends on privs) | ||
| - | -rw------- 1 ircd ircd 333 May 15 2018 / | ||
| - | |||
| - | [+] Sudoers (privileged) | ||
| - | |||
| - | [+] All users | ||
| - | root: | ||
| - | daemon: | ||
| - | bin: | ||
| - | sys: | ||
| - | sync: | ||
| - | games: | ||
| - | man: | ||
| - | lp: | ||
| - | mail: | ||
| - | news: | ||
| - | uucp: | ||
| - | proxy: | ||
| - | www-data: | ||
| - | backup: | ||
| - | list: | ||
| - | irc: | ||
| - | gnats: | ||
| - | nobody: | ||
| - | systemd-timesync: | ||
| - | systemd-network: | ||
| - | systemd-resolve: | ||
| - | systemd-bus-proxy: | ||
| - | messagebus: | ||
| - | avahi: | ||
| - | Debian-exim: | ||
| - | statd: | ||
| - | colord: | ||
| - | dnsmasq: | ||
| - | geoclue: | ||
| - | pulse: | ||
| - | speech-dispatcher: | ||
| - | sshd: | ||
| - | rtkit: | ||
| - | saned: | ||
| - | usbmux: | ||
| - | hplip: | ||
| - | Debian-gdm: | ||
| - | djmardov: | ||
| - | ircd: | ||
| - | |||
| - | [+] Current User | ||
| - | ircd | ||
| - | |||
| - | [+] Current User ID | ||
| - | uid=1001(ircd) gid=1001(ircd) groups=1001(ircd) | ||
| - | |||
| - | [*] ENUMERATING FILE AND DIRECTORY PERMISSIONS/ | ||
| - | |||
| - | [+] World Writeable Directories for User/Group ' | ||
| - | drwxrwxrwt 8 root root 4096 Mar 24 06:45 /var/tmp | ||
| - | drwxrwxrwt 16 root root 4096 Mar 24 09:16 /tmp | ||
| - | drwxrwxrwt 2 root root 4096 Mar 24 06:40 / | ||
| - | drwxrwxrwt 2 root root 4096 Mar 24 06:40 / | ||
| - | drwxrwxrwt 2 root root 4096 Mar 24 06:40 / | ||
| - | drwxrwxrwt 2 root root 4096 Mar 24 06:40 / | ||
| - | drwxrwxrwt 2 root root 4096 Mar 24 06:40 / | ||
| - | drwxrwxrwt 5 root root 120 Mar 24 06:40 /run/lock | ||
| - | drwxrwxrwt 2 root root 40 Mar 24 06:40 /dev/mqueue | ||
| - | drwxrwxrwt 2 root root 120 Mar 24 06:40 /dev/shm | ||
| - | |||
| - | [+] World Writeable Directories for Users other than Root | ||
| - | |||
| - | [+] World Writable Files | ||
| - | -rwxrwxrwx 1 ircd ircd 25305 Mar 24 07:52 / | ||
| - | |||
| - | [+] Checking if root's home folder is accessible | ||
| - | |||
| - | [+] SUID/SGID Files and Directories | ||
| - | -rwxr-sr-x 1 root mail 13680 Dec 24 2016 / | ||
| - | -rwxr-sr-x 1 root utmp 13992 Jun 23 2014 / | ||
| - | -rwxr-sr-x 1 root utmp 13992 Dec 5 2014 / | ||
| - | -rwxr-sr-x 1 root utmp 4972 Feb 21 2011 / | ||
| - | -rwsr-xr-- 1 root messagebus 362672 Nov 21 2016 / | ||
| - | -rwsr-xr-x 1 root root 9468 Mar 28 2017 / | ||
| - | -rwsr-xr-x 1 root root 13816 Sep 8 2016 / | ||
| - | -rwsr-xr-x 1 root root 562536 Nov 19 2017 / | ||
| - | -rwsr-xr-x 1 root root 13564 Oct 14 2014 / | ||
| - | drwxrwsr-t 2 root lpadmin 4096 Jul 23 2017 / | ||
| - | -rwsr-xr-x 1 root root 1085300 Feb 10 2018 / | ||
| - | -rwsr-xr-- 1 root dip 338948 Apr 14 2015 / | ||
| - | -rwxr-sr-x 1 root tty 26240 Mar 29 2015 / | ||
| - | -rwxr-sr-x 1 root mail 17880 Nov 18 2017 / | ||
| - | -rwsr-xr-x 1 root root 43576 May 17 2017 / | ||
| - | -rwsr-sr-x 1 root mail 96192 Nov 18 2017 / | ||
| - | -rwsr-xr-x 1 root root 78072 May 17 2017 / | ||
| - | -rwsr-xr-x 1 root root 38740 May 17 2017 / | ||
| - | -rwsr-sr-x 1 daemon daemon 50644 Sep 30 2014 /usr/bin/at | ||
| - | -rwxr-sr-x 1 root shadow 21964 May 17 2017 / | ||
| - | -rwxr-sr-x 1 root tty 9680 Oct 17 2014 / | ||
| - | -rwxr-sr-x 1 root mail 9772 Dec 4 2014 / | ||
| - | -rwxr-sr-x 1 root ssh 419192 Nov 19 2017 / | ||
| - | -rwsr-xr-x 1 root root 18072 Sep 8 2016 / | ||
| - | -rwxr-sr-x 1 root mail 13892 Jun 2 2013 / | ||
| - | -rwxr-sr-x 1 root crontab 38844 Jun 7 2015 / | ||
| - | -rwsr-sr-x 1 root root 9468 Apr 1 2014 /usr/bin/X | ||
| - | -rwsr-xr-x 1 root root 53112 May 17 2017 / | ||
| - | -rwxr-sr-x 1 root mlocate 32116 Jun 13 2013 / | ||
| - | -rwsr-xr-x 1 root root 52344 May 17 2017 / | ||
| - | -rwxr-sr-x 1 root shadow 61232 May 17 2017 / | ||
| - | -rwsr-xr-x 1 root root 7328 May 16 2018 / | ||
| - | drwxrwsr-x 10 root staff 4096 May 11 2018 /usr/local | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 4 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 4 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 3 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 8 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 6 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 3 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 7 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxrwsr-x 2 root staff 4096 May 11 2018 / | ||
| - | drwxr-s--- 2 root dip 4096 May 11 2018 / | ||
| - | drwxr-s--- 2 root dip 4096 May 11 2018 / | ||
| - | drwxr-sr-x 29 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxr-sr-x 2 man root 4096 Mar 24 06:50 / | ||
| - | drwxrwsr-x 2 root mail 4096 May 11 2018 /var/mail | ||
| - | drwxr-s--- 2 Debian-exim adm 4096 Mar 24 06:45 / | ||
| - | drwxrwsr-x 2 root staff 4096 Jan 9 2017 /var/local | ||
| - | -rwsr-xr-x 1 root root 96760 Aug 13 2014 / | ||
| - | -rwxr-sr-x 1 root shadow 34424 May 27 2017 / | ||
| - | -rwsr-xr-x 1 root root 38868 May 17 2017 /bin/su | ||
| - | -rwsr-xr-x 1 root root 34684 Mar 29 2015 /bin/mount | ||
| - | -rwsr-xr-x 1 root root 34208 Jan 21 2016 / | ||
| - | -rwsr-xr-x 1 root root 161584 Jan 28 2017 / | ||
| - | -rwsr-xr-x 1 root root 26344 Mar 29 2015 /bin/umount | ||
| - | drwxr-sr-x 3 root systemd-journal 60 Mar 24 06:40 / | ||
| - | drwxr-s--- 2 root systemd-journal 60 Mar 24 06:40 / | ||
| - | -rwsr-xr-x 1 root root 1105840 Dec 31 1969 / | ||
| - | |||
| - | [+] Logs containing keyword ' | ||
| - | |||
| - | [+] Config files containing keyword ' | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | |||
| - | [+] Shadow File (Privileged) | ||
| - | |||
| - | [*] ENUMERATING PROCESSES AND APPLICATIONS... | ||
| - | |||
| - | [+] Installed Packages | ||
| - | Status=Not/ | ||
| - | Err? | ||
| - | Name Version | ||
| - | | ||
| - | zlib1g:i386 1: | ||
| - | |||
| - | [+] Current processes | ||
| - | USER PID START TIME COMMAND | ||
| - | root 1 06:40 0:02 /sbin/init | ||
| - | root 2 06:40 0:00 [kthreadd] | ||
| - | root 3 06:40 0:11 [ksoftirqd/ | ||
| - | root 5 06:40 0:00 [kworker/ | ||
| - | root 7 06:40 0:11 [rcu_sched] | ||
| - | root 8 06:40 0:00 [rcu_bh] | ||
| - | root 9 06:40 0:00 [migration/ | ||
| - | root 10 06:40 0:00 [watchdog/ | ||
| - | root 11 06:40 0:00 [khelper] | ||
| - | root 12 06:40 0:00 [kdevtmpfs] | ||
| - | root 13 06:40 0:00 [netns] | ||
| - | root 14 06:40 0:00 [khungtaskd] | ||
| - | root 15 06:40 0:00 [writeback] | ||
| - | root 16 06:40 0:00 [ksmd] | ||
| - | root 17 06:40 0:00 [khugepaged] | ||
| - | root 18 06:40 0:00 [crypto] | ||
| - | root 19 06:40 0:00 [kintegrityd] | ||
| - | root 20 06:40 0:00 [bioset] | ||
| - | root 21 06:40 0:00 [kblockd] | ||
| - | root 23 06:40 0:00 [kswapd0] | ||
| - | root 24 06:40 0:00 [vmstat] | ||
| - | root 25 06:40 0:00 [fsnotify_mark] | ||
| - | root 31 06:40 0:00 [kthrotld] | ||
| - | root 32 06:40 0:00 [ipv6_addrconf] | ||
| - | root 33 06:40 0:00 [deferwq] | ||
| - | root 34 06:40 0:00 [kworker/ | ||
| - | root 68 06:40 0:00 [ata_sff] | ||
| - | root 69 06:40 0:00 [mpt_poll_0] | ||
| - | root 70 06:40 0:00 [khubd] | ||
| - | root 71 06:40 0:00 [mpt/0] | ||
| - | root 72 06:40 0:00 [kpsmoused] | ||
| - | root 75 06:40 0:00 [scsi_eh_0] | ||
| - | root 76 06:40 0:00 [scsi_tmf_0] | ||
| - | root 77 06:40 0:00 [scsi_eh_1] | ||
| - | root 78 06:40 0:00 [kworker/ | ||
| - | root 80 06:40 0:00 [scsi_tmf_1] | ||
| - | root 81 06:40 0:00 [scsi_eh_2] | ||
| - | root 82 06:40 0:00 [scsi_tmf_2] | ||
| - | root 85 06:40 0:00 [kworker/ | ||
| - | root 107 06:40 0:00 [jbd2/ | ||
| - | root 108 06:40 0:00 [ext4-rsv-conver] | ||
| - | root 139 06:40 0:00 [kauditd] | ||
| - | root 151 06:40 0:00 / | ||
| - | root 152 06:40 0:00 / | ||
| - | root 194 06:40 0:00 [ttm_swap] | ||
| - | root 461 06:40 0:00 / | ||
| - | statd 470 06:40 0:00 / | ||
| - | root 476 06:40 0:00 [rpciod] | ||
| - | root 478 06:40 0:00 [nfsiod] | ||
| - | root 485 06:40 0:00 / | ||
| - | root 487 06:40 0:00 / | ||
| - | root 489 06:40 0:00 / | ||
| - | root 490 06:40 0:07 / | ||
| - | root 491 06:40 0:00 / | ||
| - | root 493 06:40 0:00 / | ||
| - | avahi 494 06:40 0:00 avahi-daemon: | ||
| - | daemon 495 06:40 0:00 / | ||
| - | root 498 06:40 0:00 / | ||
| - | avahi 502 06:40 0:00 avahi-daemon: | ||
| - | message+ 503 06:40 0:00 / | ||
| - | root 514 06:40 0:00 / | ||
| - | root 539 06:40 0:00 / | ||
| - | root 543 06:40 0:00 / | ||
| - | root 545 06:40 0:00 / | ||
| - | root 549 06:40 0:00 / | ||
| - | root 553 06:40 0:00 [cfg80211] | ||
| - | root 561 06:40 0:00 / | ||
| - | ircd 599 06:40 0:00 / | ||
| - | root 603 06:40 0:00 / | ||
| - | ircd 613 06:40 0:00 (sd-pam) | ||
| - | root 631 06:40 0:00 / | ||
| - | root 650 06:40 0:00 sshd: | ||
| - | ircd 654 06:40 0:01 / | ||
| - | root 863 06:40 0:00 / | ||
| - | Debian-+ 925 06:40 0:00 / | ||
| - | root 933 06:40 0:00 gdm-session-worker | ||
| - | Debian-+ 936 06:40 0:00 / | ||
| - | Debian-+ 937 06:40 0:00 (sd-pam) | ||
| - | Debian-+ 939 06:40 0:00 / | ||
| - | Debian-+ 942 06:40 0:00 / | ||
| - | Debian-+ 943 06:40 0:00 / | ||
| - | Debian-+ 946 06:40 0:00 / | ||
| - | Debian-+ 950 06:40 0:00 / | ||
| - | Debian-+ 953 06:40 0:00 / | ||
| - | Debian-+ 961 06:40 0:00 / | ||
| - | root 966 06:40 0:00 / | ||
| - | root 971 06:40 0:00 / | ||
| - | Debian-+ 984 06:40 0:06 gnome-shell | ||
| - | colord 985 06:40 0:00 / | ||
| - | Debian-+ 999 06:40 0:00 / | ||
| - | rtkit 1000 06:40 0:00 / | ||
| - | Debian-+ 1018 06:40 0:00 / | ||
| - | root 1027 06:40 0:00 / | ||
| - | root 1030 06:40 0:00 / | ||
| - | ircd 1044 06:41 0:00 perl | ||
| - | djmardov 1045 06:41 0:00 / | ||
| - | djmardov 1046 06:41 0:00 (sd-pam) | ||
| - | djmardov 1048 06:41 0:01 sshd: | ||
| - | djmardov 1049 06:41 0:00 -bash | ||
| - | ircd 1071 06:41 0:00 sh | ||
| - | ircd 1072 06:41 0:00 python | ||
| - | ircd 1073 06:41 0:00 /bin/bash | ||
| - | www-data 1302 06:45 0:00 / | ||
| - | root 1307 06:45 0:00 / | ||
| - | www-data 1376 06:45 2:03 / | ||
| - | www-data 1377 06:45 2:02 / | ||
| - | root 1448 06:46 0:00 sshd: | ||
| - | djmardov 1454 06:46 0:00 sshd: | ||
| - | djmardov 1455 06:46 0:00 / | ||
| - | root 2828 06:58 0:00 sshd: | ||
| - | djmardov 2830 06:58 0:00 sshd: | ||
| - | djmardov 2831 06:58 0:00 -bash | ||
| - | ircd 2859 06:59 0:00 sh | ||
| - | ircd 2860 06:59 0:00 telnet | ||
| - | ircd 2861 06:59 0:00 sh | ||
| - | ircd 2949 07:07 0:00 python3 | ||
| - | ircd 2950 07:07 0:00 /bin/bash | ||
| - | ircd 4471 07:26 0:00 sh | ||
| - | ircd 4472 07:26 0:00 telnet | ||
| - | ircd 4473 07:26 0:00 sh | ||
| - | ircd 4482 07:27 0:00 python | ||
| - | ircd 4483 07:27 0:00 /bin/bash | ||
| - | ircd 6117 07:33 0:00 sh | ||
| - | ircd 6119 07:33 0:00 sh | ||
| - | ircd 6123 07:33 0:00 / | ||
| - | ircd 6124 07:33 0:00 /bin/sh | ||
| - | ircd 6181 07:38 0:00 python | ||
| - | ircd 6200 07:39 0:00 sh | ||
| - | ircd 6201 07:39 0:00 /bin/bash | ||
| - | ircd 6273 07:43 0:00 python | ||
| - | ircd 6282 07:44 0:00 sh | ||
| - | ircd 6283 07:44 0:00 /bin/bash | ||
| - | ircd 6312 07:44 0:00 sh | ||
| - | ircd 6314 07:44 0:00 sh | ||
| - | ircd 6317 07:45 0:00 / | ||
| - | ircd 6318 07:45 0:00 /bin/sh | ||
| - | ircd 6356 07:47 0:00 sh | ||
| - | ircd 6357 07:47 0:00 telnet | ||
| - | ircd 6358 07:47 0:00 sh | ||
| - | ircd 6391 07:50 0:00 sh | ||
| - | ircd 6392 07:50 0:00 telnet | ||
| - | ircd 6396 07:50 0:00 sh | ||
| - | ircd 6409 07:51 0:00 python3 | ||
| - | ircd 6410 07:51 0:00 /bin/bash | ||
| - | ircd 7076 07:58 0:00 python | ||
| - | ircd 7082 07:58 0:00 sh | ||
| - | ircd 7083 07:58 0:00 /bin/bash | ||
| - | ircd 7118 08:00 0:02 python | ||
| - | ircd 7168 08:03 0:00 python | ||
| - | ircd 7169 08:03 0:00 sh | ||
| - | ircd 7170 08:03 0:00 /bin/sh | ||
| - | ircd 7182 08:06 0:00 sh | ||
| - | ircd 7183 08:06 0:00 telnet | ||
| - | ircd 7189 08:08 0:00 sh | ||
| - | ircd 7194 08:09 0:00 bash | ||
| - | ircd 7195 08:09 0:00 bash | ||
| - | ircd 7214 08:11 0:00 sleep | ||
| - | ircd 7215 08:11 0:00 telnet | ||
| - | ircd 7216 08:11 0:00 sh | ||
| - | ircd 7217 08:11 0:00 telnet | ||
| - | ircd 7218 08:11 0:00 sh | ||
| - | ircd 7226 08:12 0:00 bash | ||
| - | ircd 7230 08:12 0:00 sleep | ||
| - | ircd 7301 08:16 0:00 /bin/bash | ||
| - | ircd 7417 08:18 0:00 sleep | ||
| - | ircd 7455 08:21 0:00 python | ||
| - | ircd 7456 08:21 0:00 /bin/bash | ||
| - | ircd 7457 08:22 0:00 script | ||
| - | ircd 7458 08:22 0:00 script | ||
| - | ircd 7459 08:22 0:00 sh | ||
| - | ircd 7481 08:26 0:00 perl | ||
| - | ircd 7487 08:26 0:00 sleep | ||
| - | ircd 7528 08:32 0:00 sleep | ||
| - | ircd 7536 08:33 0:00 sleep | ||
| - | ircd 7537 08:33 0:00 telnet | ||
| - | ircd 7538 08:33 0:00 sh | ||
| - | ircd 7539 08:33 0:00 telnet | ||
| - | ircd 7540 08:33 0:00 sh | ||
| - | ircd 7546 08:33 0:00 /tmp/MtGtX | ||
| - | ircd 7578 08:37 0:00 sleep | ||
| - | ircd 7667 08:41 0:00 perl | ||
| - | ircd 7671 08:41 0:00 sleep | ||
| - | ircd 7672 08:41 0:00 telnet | ||
| - | ircd 7673 08:41 0:00 sh | ||
| - | ircd 7674 08:41 0:00 telnet | ||
| - | ircd 7675 08:41 0:00 sh | ||
| - | ircd 7682 08:41 0:00 sh | ||
| - | ircd 7683 08:41 0:00 / | ||
| - | ircd 7684 08:41 0:00 /bin/sh | ||
| - | ircd 8000 08:44 0:00 python | ||
| - | ircd 8001 08:44 0:00 /bin/bash | ||
| - | ircd 8003 08:45 0:00 python | ||
| - | ircd 8004 08:45 0:00 /bin/bash | ||
| - | ircd 8005 08:45 0:00 python | ||
| - | ircd 8006 08:45 0:00 /bin/bash | ||
| - | ircd 8007 08:45 0:00 python | ||
| - | ircd 8008 08:45 0:00 /bin/bash | ||
| - | ircd 8011 08:45 0:00 python | ||
| - | ircd 8012 08:45 0:00 sh | ||
| - | ircd 8013 08:45 0:00 /bin/bash | ||
| - | ircd 8024 08:46 0:00 sleep | ||
| - | ircd 8025 08:46 0:00 telnet | ||
| - | ircd 8026 08:46 0:00 sh | ||
| - | ircd 8027 08:46 0:00 telnet | ||
| - | ircd 8028 08:46 0:00 sh | ||
| - | root 8030 08:46 0:00 sshd: | ||
| - | djmardov 8032 08:47 0:00 sshd: | ||
| - | djmardov 8035 08:47 0:00 -bash | ||
| - | root 8039 08:47 0:00 sshd: | ||
| - | djmardov 8041 08:48 0:00 sshd: | ||
| - | djmardov 8042 08:48 0:00 -bash | ||
| - | ircd 8070 08:49 0:00 /bin/sh | ||
| - | ircd 8078 08:49 0:00 python | ||
| - | ircd 8097 08:50 0:00 perl | ||
| - | ircd 8104 08:50 0:00 sh | ||
| - | ircd 8105 08:50 0:00 / | ||
| - | ircd 8106 08:50 0:00 /bin/sh | ||
| - | ircd 8110 08:50 0:00 python | ||
| - | ircd 8356 08:50 0:00 sh | ||
| - | ircd 8357 08:50 0:00 /bin/sh | ||
| - | root 8766 08:52 0:00 sshd: | ||
| - | djmardov 9548 08:53 0:00 sshd: | ||
| - | djmardov 9549 08:53 0:00 -bash | ||
| - | ircd 11104 08:54 0:00 /bin/sh | ||
| - | root 11123 08:55 0:00 viewuser | ||
| - | root 11126 08:55 0:00 sh | ||
| - | root 11127 08:55 0:00 /bin/sh | ||
| - | root 11128 08:55 0:00 /bin/sh | ||
| - | ircd 11919 09:00 0:00 sleep | ||
| - | ircd 11920 09:00 0:00 telnet | ||
| - | ircd 11921 09:00 0:00 sh | ||
| - | ircd 11922 09:00 0:00 telnet | ||
| - | ircd 11923 09:00 0:00 sh | ||
| - | ircd 11929 09:00 0:00 python3 | ||
| - | ircd 11930 09:00 0:00 /bin/sh | ||
| - | ircd 11944 09:01 0:00 sh | ||
| - | ircd 11947 09:01 0:00 /bin/bash | ||
| - | ircd 12694 09:02 0:00 /bin/bash | ||
| - | ircd 12699 09:02 0:00 python3 | ||
| - | ircd 12700 09:02 0:00 /bin/bash | ||
| - | ircd 12752 09:05 0:00 sleep | ||
| - | ircd 12753 09:05 0:00 telnet | ||
| - | ircd 12754 09:05 0:00 sh | ||
| - | ircd 12755 09:05 0:00 telnet | ||
| - | ircd 12756 09:05 0:00 sh | ||
| - | root 12761 09:06 0:00 [kworker/ | ||
| - | ircd 12764 09:06 0:00 perl | ||
| - | ircd 12773 09:06 0:00 sleep | ||
| - | ircd 12774 09:06 0:00 telnet | ||
| - | ircd 12775 09:06 0:00 sh | ||
| - | ircd 12776 09:06 0:00 telnet | ||
| - | ircd 12785 09:06 0:00 sleep | ||
| - | ircd 12802 09:07 0:00 sleep | ||
| - | ircd 12803 09:07 0:00 telnet | ||
| - | ircd 12804 09:07 0:00 sh | ||
| - | ircd 12805 09:07 0:00 telnet | ||
| - | ircd 12806 09:07 0:00 sh | ||
| - | ircd 13231 09:09 0:00 sleep | ||
| - | ircd 13242 09:10 0:00 sh | ||
| - | ircd 13248 09:10 0:00 sleep | ||
| - | ircd 13249 09:10 0:00 telnet | ||
| - | ircd 13250 09:10 0:00 sh | ||
| - | ircd 13251 09:10 0:00 telnet | ||
| - | ircd 13252 09:10 0:00 sh | ||
| - | root 13259 09:11 0:00 [kworker/ | ||
| - | ircd 13262 09:11 0:00 / | ||
| - | ircd 13263 09:11 0:00 /bin/sh | ||
| - | ircd 13284 09:13 0:00 sleep | ||
| - | ircd 13285 09:13 0:00 telnet | ||
| - | ircd 13286 09:13 0:00 sh | ||
| - | ircd 13287 09:13 0:00 telnet | ||
| - | ircd 13288 09:13 0:00 sh | ||
| - | ircd 13549 09:13 0:00 vi | ||
| - | root 14317 09:16 0:00 sshd: | ||
| - | sshd 14318 09:16 0:00 sshd: | ||
| - | root 14320 09:16 0:00 [kworker/ | ||
| - | ircd 14334 09:16 0:00 ./ | ||
| - | ircd 14337 09:16 0:00 [CVE-2014-5207_f] | ||
| - | ircd 14344 09:16 0:00 python | ||
| - | ircd 14578 09:16 0:00 /bin/sh | ||
| - | ircd 14579 09:16 0:00 ps | ||
| - | ircd 14580 09:16 0:00 awk | ||
| - | |||
| - | [+] Apache Version and Modules | ||
| - | |||
| - | [+] Apache Config File | ||
| - | # This is the main Apache server configuration file. It contains the | ||
| - | # configuration directives that give the server its instructions. | ||
| - | # See http:// | ||
| - | # the directives and / | ||
| - | # hints. | ||
| - | # | ||
| - | # | ||
| - | # Summary of how the Apache 2 configuration works in Debian: | ||
| - | # The Apache 2 web server configuration in Debian is quite different to | ||
| - | # upstream' | ||
| - | # default Apache2 installation attempts to make adding and removing modules, | ||
| - | # virtual hosts, and extra configuration directives as flexible as possible, in | ||
| - | # order to make automating the changes and administering the server as easy as | ||
| - | # possible. | ||
| - | # It is split into several files forming the configuration hierarchy outlined | ||
| - | # below, all located in the / | ||
| - | # | ||
| - | # / | ||
| - | # |-- apache2.conf | ||
| - | # | ||
| - | # |-- mods-enabled | ||
| - | # | ||
| - | # | ||
| - | # |-- conf-enabled | ||
| - | # | ||
| - | # `-- sites-enabled | ||
| - | # `-- *.conf | ||
| - | # | ||
| - | # | ||
| - | # * apache2.conf is the main configuration file (this file). It puts the pieces | ||
| - | # | ||
| - | # web server. | ||
| - | # | ||
| - | # * ports.conf is always included from the main configuration file. It is | ||
| - | # | ||
| - | # | ||
| - | # | ||
| - | # * Configuration files in the mods-enabled/, | ||
| - | # | ||
| - | # | ||
| - | # | ||
| - | # | ||
| - | # They are activated by symlinking available configuration files from their | ||
| - | # | ||
| - | # | ||
| - | # their respective man pages for detailed information. | ||
| - | # | ||
| - | # * The binary is called apache2. Due to the use of environment variables, in | ||
| - | # the default configuration, | ||
| - | # / | ||
| - | # work with the default configuration. | ||
| - | # Global configuration | ||
| - | # | ||
| - | # | ||
| - | # ServerRoot: The top of the directory tree under which the server' | ||
| - | # configuration, | ||
| - | # | ||
| - | # NOTE! If you intend to place this on an NFS (or otherwise network) | ||
| - | # mounted filesystem then please read the Mutex documentation (available | ||
| - | # at < | ||
| - | # you will save yourself a lot of trouble. | ||
| - | # | ||
| - | # Do NOT add a slash at the end of the directory path. | ||
| - | # | ||
| - | #ServerRoot "/ | ||
| - | # | ||
| - | # The accept serialization lock file MUST BE STORED ON A LOCAL DISK. | ||
| - | # | ||
| - | Mutex file: | ||
| - | # | ||
| - | # PidFile: The file in which the server should record its process | ||
| - | # identification number when it starts. | ||
| - | # This needs to be set in / | ||
| - | # | ||
| - | PidFile ${APACHE_PID_FILE} | ||
| - | # | ||
| - | # Timeout: The number of seconds before receives and sends time out. | ||
| - | # | ||
| - | Timeout 300 | ||
| - | # | ||
| - | # KeepAlive: Whether or not to allow persistent connections (more than | ||
| - | # one request per connection). Set to " | ||
| - | # | ||
| - | KeepAlive On | ||
| - | # | ||
| - | # MaxKeepAliveRequests: | ||
| - | # during a persistent connection. Set to 0 to allow an unlimited amount. | ||
| - | # We recommend you leave this number high, for maximum performance. | ||
| - | # | ||
| - | MaxKeepAliveRequests 100 | ||
| - | # | ||
| - | # KeepAliveTimeout: | ||
| - | # same client on the same connection. | ||
| - | # | ||
| - | KeepAliveTimeout 5 | ||
| - | # These need to be set in / | ||
| - | User ${APACHE_RUN_USER} | ||
| - | Group ${APACHE_RUN_GROUP} | ||
| - | # | ||
| - | # HostnameLookups: | ||
| - | # e.g., www.apache.org (on) or 204.62.129.132 (off). | ||
| - | # The default is off because it'd be overall better for the net if people | ||
| - | # had to knowingly turn this feature on, since enabling it means that | ||
| - | # each client request will result in AT LEAST one lookup request to the | ||
| - | # nameserver. | ||
| - | # | ||
| - | HostnameLookups Off | ||
| - | # ErrorLog: The location of the error log file. | ||
| - | # If you do not specify an ErrorLog directive within a < | ||
| - | # container, error messages relating to that virtual host will be | ||
| - | # logged here. If you *do* define an error logfile for a < | ||
| - | # container, that host's errors will be logged there and not here. | ||
| - | # | ||
| - | ErrorLog ${APACHE_LOG_DIR}/ | ||
| - | # | ||
| - | # LogLevel: Control the severity of messages logged to the error_log. | ||
| - | # Available values: trace8, ..., trace1, debug, info, notice, warn, | ||
| - | # error, crit, alert, emerg. | ||
| - | # It is also possible to configure the log level for particular modules, e.g. | ||
| - | # " | ||
| - | # | ||
| - | LogLevel warn | ||
| - | # Include module configuration: | ||
| - | IncludeOptional mods-enabled/ | ||
| - | IncludeOptional mods-enabled/ | ||
| - | # Include list of ports to listen on | ||
| - | Include ports.conf | ||
| - | # Sets the default security model of the Apache2 HTTPD server. It does | ||
| - | # not allow access to the root filesystem outside of /usr/share and /var/www. | ||
| - | # The former is used by web applications packaged in Debian, | ||
| - | # the latter may be used for local directories served by the web server. If | ||
| - | # your system is serving content from a sub-directory in /srv you must allow | ||
| - | # access here, or in any related virtual host. | ||
| - | < | ||
| - | Options FollowSymLinks | ||
| - | AllowOverride None | ||
| - | Require all denied | ||
| - | </ | ||
| - | < | ||
| - | AllowOverride None | ||
| - | Require all granted | ||
| - | </ | ||
| - | < | ||
| - | Options Indexes FollowSymLinks | ||
| - | AllowOverride None | ||
| - | Require all granted | ||
| - | </ | ||
| - | #< | ||
| - | # | ||
| - | # | ||
| - | # | ||
| - | #</ | ||
| - | # AccessFileName: | ||
| - | # for additional configuration directives. | ||
| - | # directive. | ||
| - | # | ||
| - | AccessFileName .htaccess | ||
| - | # | ||
| - | # The following lines prevent .htaccess and .htpasswd files from being | ||
| - | # viewed by Web clients. | ||
| - | # | ||
| - | < | ||
| - | Require all denied | ||
| - | </ | ||
| - | # | ||
| - | # The following directives define some format nicknames for use with | ||
| - | # a CustomLog directive. | ||
| - | # | ||
| - | # These deviate from the Common Log Format definitions in that they use %O | ||
| - | # (the actual bytes sent including headers) instead of %b (the size of the | ||
| - | # requested file), because the latter makes it impossible to detect partial | ||
| - | # requests. | ||
| - | # | ||
| - | # Note that the use of %{X-Forwarded-For}i instead of %h is not recommended. | ||
| - | # Use mod_remoteip instead. | ||
| - | # | ||
| - | LogFormat "%v:%p %h %l %u %t \" | ||
| - | LogFormat "%h %l %u %t \" | ||
| - | LogFormat "%h %l %u %t \" | ||
| - | LogFormat " | ||
| - | LogFormat " | ||
| - | # Include of directories ignores editors' | ||
| - | # see README.Debian for details. | ||
| - | # Include generic snippets of statements | ||
| - | IncludeOptional conf-enabled/ | ||
| - | # Include the virtual host configurations: | ||
| - | IncludeOptional sites-enabled/ | ||
| - | # vim: syntax=apache ts=4 sw=4 sts=4 sr noet | ||
| - | |||
| - | [+] Sudo Version (Check out http:// | ||
| - | |||
| - | [*] IDENTIFYING PROCESSES AND PACKAGES RUNNING AS ROOT OR OTHER SUPERUSER... | ||
| - | |||
| - | root 8030 08:46 0:00 sshd: | ||
| - | root 461 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | root 108 06:40 0:00 [ext4-rsv-conver] | ||
| - | root 70 06:40 0:00 [khubd] | ||
| - | root 151 06:40 0:00 / | ||
| - | root 1030 06:40 0:00 / | ||
| - | root 25 06:40 0:00 [fsnotify_mark] | ||
| - | root 491 06:40 0:00 / | ||
| - | root 21 06:40 0:00 [kblockd] | ||
| - | root 11127 08:55 0:00 /bin/sh | ||
| - | root 71 06:40 0:00 [mpt/0] | ||
| - | root 545 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | root 9 06:40 0:00 [migration/ | ||
| - | root 24 06:40 0:00 [vmstat] | ||
| - | root 1448 06:46 0:00 sshd: | ||
| - | root 971 06:40 0:00 / | ||
| - | root 650 06:40 0:00 sshd: | ||
| - | root 14 06:40 0:00 [khungtaskd] | ||
| - | root 631 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | root 32 06:40 0:00 [ipv6_addrconf] | ||
| - | root 8766 08:52 0:00 sshd: | ||
| - | root 485 06:40 0:00 / | ||
| - | root 78 06:40 0:00 [kworker/ | ||
| - | root 13 06:40 0:00 [netns] | ||
| - | root 11 06:40 0:00 [khelper] | ||
| - | root 490 06:40 0:07 / | ||
| - | root 1027 06:40 0:00 / | ||
| - | root 80 06:40 0:00 [scsi_tmf_1] | ||
| - | root 14317 09:16 0:00 sshd: | ||
| - | root 69 06:40 0:00 [mpt_poll_0] | ||
| - | root 85 06:40 0:00 [kworker/ | ||
| - | root 11123 08:55 0:00 viewuser | ||
| - | root 1307 06:45 0:00 / | ||
| - | root 2 06:40 0:00 [kthreadd] | ||
| - | root 561 06:40 0:00 / | ||
| - | root 20 06:40 0:00 [bioset] | ||
| - | root 3 06:40 0:11 [ksoftirqd/ | ||
| - | root 13259 09:11 0:00 [kworker/ | ||
| - | root 33 06:40 0:00 [deferwq] | ||
| - | root 10 06:40 0:00 [watchdog/ | ||
| - | root 18 06:40 0:00 [crypto] | ||
| - | root 966 06:40 0:00 / | ||
| - | root 2828 06:58 0:00 sshd: | ||
| - | root 76 06:40 0:00 [scsi_tmf_0] | ||
| - | root 498 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | cron 3.0pl1-127+deb8u1 | ||
| - | root 16 06:40 0:00 [ksmd] | ||
| - | root 489 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | root 68 06:40 0:00 [ata_sff] | ||
| - | root 5 06:40 0:00 [kworker/ | ||
| - | root 17 06:40 0:00 [khugepaged] | ||
| - | root 933 06:40 0:00 gdm-session-worker | ||
| - | root 72 06:40 0:00 [kpsmoused] | ||
| - | root 77 06:40 0:00 [scsi_eh_1] | ||
| - | root 543 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | acpid 1: | ||
| - | root 75 06:40 0:00 [scsi_eh_0] | ||
| - | root 487 06:40 0:00 / | ||
| - | root 107 06:40 0:00 [jbd2/ | ||
| - | root 19 06:40 0:00 [kintegrityd] | ||
| - | root 8 06:40 0:00 [rcu_bh] | ||
| - | root 476 06:40 0:00 [rpciod] | ||
| - | root 23 06:40 0:00 [kswapd0] | ||
| - | root 82 06:40 0:00 [scsi_tmf_2] | ||
| - | root 863 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | root 11128 08:55 0:00 /bin/sh | ||
| - | root 194 06:40 0:00 [ttm_swap] | ||
| - | root 81 06:40 0:00 [scsi_eh_2] | ||
| - | root 8039 08:47 0:00 sshd: | ||
| - | root 11126 08:55 0:00 sh | ||
| - | root 14320 09:16 0:00 [kworker/ | ||
| - | root 514 06:40 0:00 / | ||
| - | root 34 06:40 0:00 [kworker/ | ||
| - | root 478 06:40 0:00 [nfsiod] | ||
| - | root 553 06:40 0:00 [cfg80211] | ||
| - | root 31 06:40 0:00 [kthrotld] | ||
| - | root 139 06:40 0:00 [kauditd] | ||
| - | root 549 06:40 0:00 / | ||
| - | root 493 06:40 0:00 / | ||
| - | root 1 06:40 0:02 /sbin/init | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | init 1.22 System-V-like init utilities - metapackage | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | | ||
| - | xinit 1.3.4-1 | ||
| - | root 7 06:40 0:11 [rcu_sched] | ||
| - | root 12761 09:06 0:00 [kworker/ | ||
| - | root 539 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | | ||
| - | root 603 06:40 0:00 / | ||
| - | Possible Related Packages: | ||
| - | gdm3 3.14.1-7 | ||
| - | | ||
| - | root 15 06:40 0:00 [writeback] | ||
| - | root 152 06:40 0:00 / | ||
| - | root 12 06:40 0:00 [kdevtmpfs] | ||
| - | |||
| - | [*] ENUMERATING INSTALLED LANGUAGES/ | ||
| - | |||
| - | [+] Installed Tools | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | / | ||
| - | /usr/bin/cc | ||
| - | /usr/bin/vi | ||
| - | / | ||
| - | / | ||
| - | /bin/netcat | ||
| - | /bin/nc | ||
| - | / | ||
| - | / | ||
| - | |||
| - | [+] Related Shell Escape Sequences... | ||
| - | |||
| - | nmap--> | ||
| - | vi--> | ||
| - | vi--> | ||
| - | awk--> | ||
| - | find--> | ||
| - | perl--> | ||
| - | |||
| - | [*] FINDING RELEVENT PRIVILEGE ESCALATION EXPLOITS... | ||
| - | |||
| - | Note: Exploits relying on a compile/ | ||
| - | |||
| - | - Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit || http:// | ||
| - | The following exploits are ranked higher in probability of success because this script detected a related running process, OS, or mounted file system | ||
| - | |||
| - | The following exploits are applicable to this kernel version and should be investigated as well | ||
| - | - Kernel ia32syscall Emulation Privilege Escalation || http:// | ||
| - | - Sendpage Local Privilege Escalation || http:// | ||
| - | - CAP_SYS_ADMIN to Root Exploit 2 (32 and 64-bit) || http:// | ||
| - | - CAP_SYS_ADMIN to root Exploit || http:// | ||
| - | - MySQL 4.x/5.0 User-Defined Function Local Privilege Escalation Exploit || http:// | ||
| - | - open-time Capability file_ns_capable() Privilege Escalation || http:// | ||
| - | - open-time Capability file_ns_capable() - Privilege Escalation Vulnerability || http:// | ||
| - | |||
| - | Finished | ||
| - | ================================================================================================= | ||
| - | </ | ||
| - | |||
| - | - | ||
| - | < | ||
| - | </ | ||
htb-machines-irked.1554541624.txt.gz · Last modified: 2019/04/06 11:07 by didzkovitchz
