PDA

View Full Version : backtracking ip. need help!


arcus
07-06-2007, 07:16 AM
hello guys... recently i found a website vulnerable to sql injection n somehow i managed to make myself an admin privileged account.. the question is when i do reverse dns to the site (example: sub-domain.domain.com ) then i got an ip (example: 202.58.80.77) .. i put the ip in the address bar and i goes straight to the sub-domain.domain.com but when i try to nmap the ip, it says invalid ip address..what's wrong? and one more question if I do reverse dns to domain.com, the ip got is that the same as i do reverse dns to sub-domain.com? thnx..

streaker69
07-06-2007, 07:19 AM
hello guys... recently i found a website vulnerable to sql injection n somehow i managed to make myself an admin privileged account.. the question is when i do reverse dns to the site (example: sub-domain.domain.com ) then i got an ip (example: 202.58.80.77) .. i put the ip in the address bar and i goes straight to the sub-domain.domain.com but when i try to nmap the ip, it says invalid ip address..what's wrong? and one more question if I do reverse dns to domain.com, the ip got is that the same as i do reverse dns to sub-domain.com? thnx..

Oh, you somehow made yourself an admin? Meaning you just illegally escalated priviledges upon a system you have no right to? You're a criminal, plain and simple.

I hope you get anally raped in jail.

balding_parrot
07-06-2007, 07:20 AM
hello guys... recently i found a website vulnerable to sql injection n somehow i managed to make myself an admin privileged account.. the question is when i do reverse dns to the site (example: sub-domain.domain.com ) then i got an ip (example: 202.58.80.77) .. i put the ip in the address bar and i goes straight to the sub-domain.domain.com but when i try to nmap the ip, it says invalid ip address..what's wrong? and one more question if I do reverse dns to domain.com, the ip got is that the same as i do reverse dns to sub-domain.com? thnx..

CAN YOU GUESS WHERE THIS POST IS GOING TO END UP ??

-=Xploitz=-
07-06-2007, 07:24 AM
CAN YOU GUESS WHERE THIS POST IS GOING TO END UP ??


In the tutorial section?? :confused::D


How not to get your ass reamed by theprez98 and remote -=Xploitz=- members tutorial??? That one??

Or the tutorial about how I posted illegal activity on a public site that is monitored by the FBI, and ended up in prison where I met my new boyfriend Big Bubba, and I'm now FORCED into having homosexual acts performed on me against my will for the next 5-10 years tutorial....:confused:

balding_parrot
07-06-2007, 07:26 AM
In the tutorial section??


How not to get your ass reamed by theprez98 and remote -=Xploitz=- members tutorial??? That one??

Not quite where I was thinking

arcus
07-06-2007, 07:27 AM
hey sorry for being bad ass.. but it wasn't my intention to crack the databases. anyways it's my university site and im about to report to them the vulnerability..but i need what i asked u guys just now... i aint doing it for cracking the site, i just want to learn...that's all...

-=Xploitz=-
07-06-2007, 07:31 AM
hey sorry for being bad ass.. but it wasn't my intention to crack the databases. anyways it's my university site and im about to report to them the vulnerability..but i need what i asked u guys just now... i aint doing it for cracking the site, i just want to learn...that's all...

Accidentally "stumbled upon" admin rights or not arcus...Were not answering your questions. I know you want to learn..but we want our freedom. Sorry m8....you'll have to learn the hard way or the "Google" way.

balding_parrot
07-06-2007, 07:32 AM
hey sorry for being bad ass.. but it wasn't my intention to crack the databases. anyways it's my university site and im about to report to them the vulnerability..but i need what i asked u guys just now... i aint doing it for cracking the site, i just want to learn...that's all...

So I take it you don't like university life anymore ?

muts
07-06-2007, 07:35 AM
This post and relevant IP addresses has been submitted to the relevant law enforcement agencies. We will NOT tolerate ANY illegal activities, even if losely implied.

streaker69
07-06-2007, 07:35 AM
hey sorry for being bad ass.. but it wasn't my intention to crack the databases. anyways it's my university site and im about to report to them the vulnerability..but i need what i asked u guys just now... i aint doing it for cracking the site, i just want to learn...that's all...

If you have no authority to conduct such tests against the network, you've committed a felony, plain and simple, if you don't know the laws involved in what you're doing that's your problem. Ignorance is no excuse.

Maybe your cellmate will take it easy on you and soap up your ass first.

-=Xploitz=-
07-06-2007, 07:41 AM
Maybe your cellmate will take it easy on you and soap up your ass first.


I forgot they don't sell Vaseline petroleum jelly anymore on commissary in prison...
I hear soap really burns a persons asshole. :eek::eek:

fish ...Fish..FISH..FISH FISH FISH!!!

http://www.siliconera.com/news/0611/prisongame.jpg

arcus
07-06-2007, 07:45 AM
ok thnx mate for the help... my bad..sorry for that.. it wasnt really my intention..thnx anyway..

ghaze
07-06-2007, 07:55 AM
Note to self:

Next time I decide to confess to multiple felonies on an internet forum board, make sure to go through multiple proxies from an open wireless ap after spoofing mac address.

arcus,

I'd be sorry, too, now. :( My brother is an admin for a major university. He's seen lots of "bright young men" ruin their lives from curiosity. When they catch them, the least they suffer is expulsion.

arcus
07-06-2007, 08:00 AM
thnx buddy for not going harsh on me :) yeah i know bout the 'expulsion' thing in uni.. i already emailed the admin bout the flaw in their site, i just want to show them that with sql injection..some people can do more than just editing the database..that's all..no bad intention..ive done this for several uni in my place and i reported to the admin once i found the flaw... peace mate..

balding_parrot
07-06-2007, 08:25 AM
thnx buddy for not going harsh on me :) yeah i know bout the 'expulsion' thing in uni.. i already emailed the admin bout the flaw in their site, i just want to show them that with sql injection..some people can do more than just editing the database..that's all..no bad intention..ive done this for several uni in my place and i reported to the admin once i found the flaw... peace mate..

If it's not bad enough that your admitting to one count of a crime, but now you are saying you have done this at several uni's !! :eek:

Have you ever heard the advice "If you are in a hole, stop digging"

theprez98
07-06-2007, 03:20 PM
thnx buddy for not going harsh on me :) yeah i know bout the 'expulsion' thing in uni.. i already emailed the admin bout the flaw in their site, i just want to show them that with sql injection..some people can do more than just editing the database..that's all..no bad intention..ive done this for several uni in my place and i reported to the admin once i found the flaw... peace mate..
Consider this (http://forums.remote-exploit.org/showpost.php?p=33120&postcount=9) and the thread being closed as your one and only warning.