Friday, June 11, 2010

Remote-Microsoft-IIS-Provider NEOTEL

Web server of NEOTEL | IIS Microsoft. | 80.77.144.13
The exploit is ranked as HIGH RISK because a attacker can take FULL control of the Server.
Proof of Concept:
user:IUSR_WEBSERVER
pass:GE|-TWRZc*****
domain:80
path:c:\inetpub\wwwroot
web site count: 121 web sites can be HACKED

To al users who have a Web page on this server pls change login details and DB access lists updated because every single WEBCONFIG file is readable !!!

ps. We contacted the authority of this companies warning them about this FLAW's but they rejected our suggestions… and we decided to PUBLISH this flaws in our FaceBook Page.

list:
:80:act.com.mk
:80:adtrpenoski.com.mk
:80:aerodrom.gov.mk
:80:agrotehna.com.mk
:80:aleksandrija-a.com.mk
:80:algoritamcentar.com
:80:algoritamcentar.edu.mk
:80:alphagroup.com.mk
:80:ambasadabih.org.mk
:80:amsm.net.mk
:80:arcuss.com
:80:arcuss.net
:80:b-kings.com
:80:b-kings.neotel.net.mk
:80:b2brhs.com.mk
:80:banesombor.com.mk
:80:beershop.com.mk
:80:bella.com.mk
:80:berlitz.com.mk
:80:bica.mk
:80:bica.neotel.net.mk
:80:bih.neotel.net.mk
:80:ccb.mk
:80:ccbank.mk
:80:cdodite.com.mk
:80:cf
:80:cigre.org.mk
:80:cirko-mes.com
:80:diaspora.gov.mk
:80:dna.com.mk
:80:ekonekt.com.mk
:80:elem.com.mk
:80:ema.com.mk
:80:esoft.com.mk
:80:esoftsolution.com.mk
:80:etest.algoritamcentar.edu.mk
:80:euroins.com.mk
:80:fhibc.net.mk
:80:fizijatri.org.mk
:80:fon.edu.mk
:80:fon.mk
:80:fon.neotel.net.mk
:80:fonuniversity.edu.mk
:80:fonuniverzitet.edu.mk
:80:foss.undp.org.mk
:80:generaltourist.com.mk
:80:genesis.com.mk
:80:giff4u.com
:80:goin.com.mk
:80:gps.mk
:80:hqproducts.com.mk
:80:idbc-ingregistar.com.mk
:80:insta-credit.com.mk
:80:institut-kozle.org.mk
:80:intelicom.com.mk
:80:intelikom.com.mk
:80:intellicom.com.mk
:80:internik.com.mk
:80:interworks.com.mk
:80:itgma.com
:80:itm.org.mk
:80:jagodaslaneva.name.mk
:80:jagodaslaneva.neotel.net.mk
:80:jorm.gov.mk
:80:jorm.org.mk
:80:jpssdp.gov.mk
:80:junior.com.mk
:80:kalinhotel.com.mk
:80:karmabella.com.mk
:80:kbpublikum.com.mk
:80:kemofarm.com.mk
:80:kentaur.com.mk
:80:kikservice.com.mk
:80:kirodandaro.com.mk
:80:koli.com.mk
:80:kristino.com.mk
:80:larkom.com.mk
:80:lavita.com.mk
:80:ljubeboskoski.com.mk
:80:maran-atha.org.mk
:80:marketsurv.org.mk
:80:marketsurveillance.org.mk
:80:martin.com.mk
:80:melt.com.mk
:80:mezon.com.mk
:80:mfa.gov.mk
:80:mma.com.mk
:80:namiko.com.mk
:80:namiko.neotel.net.mk
:80:nana.com.mk
:80:neotel.com.mk
:80:neotel.mk
:80:noevi.com.mk
:80:nov.neotel.net.mk
:80:novaalternativa.org.mk
:80:novadom.com.mk
:80:novamakedonija.com.mk
:80:novamakedonija.neotel.net.mk
:80:office1.com.mk
:80:pbf.edu.mk
:80:popovwinery.com.mk
:80:popovwinery.mk
:80:procit.com.mk
:80:realestate.com.mk
:80:redsped.com.mk
:80:remedika.com.mk
:80:restorannacional.com.mk
:80:rolomatik.com.mk
:80:sfc.com.mk
:80:sileksbanka.com.mk
:80:simistravel.com.mk
:80:simt.com.mk
:80:sinergijaplus.com.mk
:80:skopjeair.com.mk
:80:smef.com.mk
:80:speedydelivery.mk
:80:suncity.net.mk
:80:tecnegotino.com.mk
:80:telefonija.com.mk
:80:telefonija.net.mk
:80:tempus.gov.mk
:80:tims.com.mk
:80:transfuzija.org.mk
:80:trelektronik.com.mk
:80:tri-i.com.mk
:80:un.org.mk
:80:undp.org.mk
:80:unystil.com.mk
:80:usje.com.mk
:80:usje.neotel.net.mk
:80:vinart.com.mk
:80:vinart.mk
:80:votopforma.com.mk
:80:wvp.mk
:80:www.algoritamcentar.com
:80:www.arcuss.net
:80:www.ccb.mk
:80:www.ccbank.mk
:80:www.esoftsolution.com.mk
:80:www.fhibc.net.mk
:80:www.fon.mk
:80:www.fonuniversity.edu.mk
:80:www.fonuniverzitet.edu.mk
:80:www.foundation.giff4u.com
:80:www.intelikom.com.mk
:80:www.intellicom.com.mk
:80:www.jorm.gov.mk
:80:www.koli.com.mk
:80:www.marketsurveillance.org.mk
:80:www.neotel.mk
:80:www.popovwinery.mk
:80:www.telefonija.net.mk
:80:www.transfuzija.org.mk
:80:www.uist.edu.mk
:80:www.vinart.mk
:80:www.zamp.com.mk
:80:zora.com.mk

Remote-Microsoft-IIS-Provider ULTRA

Web server of ULTRA | IIS Microsoft. | 212.13.93-95.***
The exploit is ranked as HIGH RISK because a attacker can take FULL control of the Server.
Proof of Concept:
user:IUSR_APOLLO
pass:$rEM273#******
domain:80
path: D:\wwweb\
web site count: 241 web sites can be HACKED

To al users who have a Web page on this server pls change login details and DB access lists updated because every single WEBCONFIG file is readable !!!

ps. We contacted the authority of this companies warning them about this FLAW's but they rejected our suggestions… and we decided to PUBLISH this flaws in our FaceBook Page.

list:
D:\wwweb\horoskop.com.mk
D:\wwweb\jugoars.com
D:\wwweb\grafos.com.mk
D:\wwweb\katena.com.mk
D:\wwweb\iorrm.org.mk
D:\wwweb\safe-invest.com.mk
D:\wwweb\zpd.org.mk
D:\wwweb\lory-kozmetika.com
D:\wwweb\cetismak.edu.mk
D:\wwweb\prografika.com.mk
D:\wwweb\opstinakratovo.gov.mk
D:\wwweb\sudovi1.unet.com.mk
D:\wwweb\austrianairlines.com.mk
D:\wwweb\jsp.com.mk
D:\wwweb\osnegotino.unet.com.mk
D:\wwweb\veniamin.com.mk
D:\wwweb\asbitola.unet.com.mk
D:\wwweb\sjorm.mk
D:\wwweb\pepeljugoski.com.mk
D:\wwweb\oskocani.unet.com.mk
D:\wwweb\skopjesedvizi.org.mk
D:\wwweb\innerwheel.org.mk
D:\wwweb\asskopje.unet.com.mk
D:\wwweb\epa-media.com.mk
D:\wwweb\turizam.com.mk
D:\wwweb\tgs.com.mk
D:\wwweb\unet\LoveUnet
D:\wwweb\osradovis.unet.com.mk
D:\wwweb\test.ramstore.com.mk
D:\wwweb\polzela-corapi.com.mk
D:\wwweb\rozafa.com.mk
D:\wwweb\tancevska.com
D:\wwweb\cmg.com.mk
D:\wwweb\stomatologija.org.mk
D:\wwweb\danishconsulate-sk.org.mk
D:\wwweb\balkan-consulting.com
D:\wwweb\newmoment.com.mk
D:\wwweb\goljalawoffice.com
D:\wwweb\3d-project.com.mk
D:\wwweb\tehnoauto.com.mk
D:\wwweb\kkaerodrom.mk
D:\wwweb\oskumanovo.unet.com.mk
D:\wwweb\rotaryclubskopje.org.mk
D:\wwweb\cakarovska.com.mk
D:\wwweb\macef.org.mk
D:\wwweb\idsco.org.mk
D:\wwweb\razvoj.org.mk
D:\wwweb\koki2005.com.mk
D:\wwweb\orfej.com.mk
D:\wwweb\vertigo.org.mk
D:\wwweb\unet\mrchette
D:\wwweb\made.org.mk
D:\wwweb\necc.org.mk
D:\wwweb\savic.com.mk
D:\wwweb\glm.org.mk
D:\wwweb\unetel.com.mk
D:\wwweb\rztk.com.mk
D:\wwweb\e-mapas.gov.mk
D:\wwweb\sozm.org.mk
D:\wwweb\ioa.com.mk
D:\wwweb\osprilep.unet.com.mk
D:\wwweb\jasenko.com.mk
D:\wwweb\nimet.com.mk
D:\wwweb\racio.com.mk
D:\wwweb\drpetkovi.com.mk
D:\wwweb\usrm.unet.com.mk
D:\wwweb\bioeco.org.mk
D:\wwweb\dijag.com.mk
D:\wwweb\smsbox.com.mk
D:\wwweb\global-plus.com.mk
D:\wwweb\eurosong.com.mk
D:\wwweb\kerim
D:\wwweb\upe.unet.com.mk
D:\wwweb\leonardo.com.mk
D:\wwweb\virtual-m.com.mk
D:\wwweb\epamedia.com.mk
D:\wwweb\putnikrentacar.com.mk
D:\wwweb\sgnm_gluvi.org.mk
D:\wwweb\lebisol.com.mk
D:\wwweb\bodan-arsovski.com.mk
D:\wwweb\necc.org.mk
D:\wwweb\osstruga.unet.com.mk
D:\wwweb\markoni-art.com.mk
D:\wwweb\hotxxx.com.mk
D:\wwweb\bileti.mk
D:\wwweb\k-15.com.mk
D:\wwweb\asgostivar.unet.com.mk
D:\wwweb\vrhoven.unet.com.mk
D:\wwweb\brothermk.com.mk
D:\wwweb\oskicevo.unet.com.mk
D:\wwweb\osgevgelija.unet.com.mk
D:\wwweb\macedonia-export.com.mk
D:\wwweb\castrolprimoracing.com.mk
D:\wwweb\test 3.5
D:\wwweb\mladost.com.mk
D:\wwweb\ramstore.com.mk
D:\wwweb\unet
D:\wwweb\globsaldo.com.mk
D:\wwweb\koismenie.com.mk
D:\wwweb\art.net.mk
D:\wwweb\pen.org.mk
D:\wwweb\osvinica.unet.com.mk
D:\wwweb\crosig.mk
D:\wwweb\osstip.unet.com.mk
D:\wwweb\casusfoederis.com
D:\wwweb\euroforum.com.mk
D:\wwweb\ssrm.mk
D:\wwweb\asstip.unet.com.mk
D:\wwweb\cbs.com.mk
D:\wwweb\telit.com.mk
D:\wwweb\proektpecat.com.mk
D:\wwweb\trnodol.com.mk
D:\wwweb\marjan
D:\wwweb\vlatkostefanovski.com.mk
D:\wwweb\rubinkarmin
D:\wwweb\osgostivar.unet.com.mk
D:\wwweb\sudovi.unet.com.mk
D:\wwweb\obrazovanie.net.mk
D:\wwweb\osdelcevo.unet.com.mk
D:\wwweb\sigal.com.mk
D:\wwweb\ah-komerc.com.mk
D:\wwweb\osohrid.unet.com.mk
D:\wwweb\impact-hd.com.mk
D:\wwweb\osbitola.unet.com.mk
D:\wwweb\pintoconsulting.de
D:\wwweb\osberovo.unet.com.mk
D:\wwweb\epmsick.com.mk
D:\wwweb\kreativa-mr.org.mk
D:\wwweb\Support
D:\wwweb\Support-old
D:\wwweb\Default
D:\wwweb\partysans.com.mk
D:\wwweb\comtrade.com.mk
D:\wwweb\osresen.unet.com.mk
D:\wwweb\unetinteractive.com\fashion-article
D:\wwweb\orki.org.mk
D:\wwweb\volvo.com.mk
D:\wwweb\telma.com.mk
D:\wwweb\topki.net
D:\wwweb\niz.org.mk
D:\wwweb\elsa-rm.org.mk
D:\wwweb\menada.com.mk
D:\wwweb\skyradio.com.mk
D:\wwweb\vrteleska.com
D:\wwweb\osdebar.unet.com.mk
D:\wwweb\delo.com.mk
D:\wwweb\zastava-agp.com.mk
D:\wwweb\fditdi.org.mk
D:\wwweb\mkd.com.mk
D:\wwweb\zsm.org.mk
D:\wwweb\tender.com.mk
D:\wwweb\ultra.com.mk\anketa
D:\wwweb\medf.ukim.edu.mk
D:\wwweb\ilijoski.com.mk
D:\wwweb\kikboksingsojuznamakedonija.com.mk
D:\wwweb\longurov.com.mk
D:\wwweb\fashion-article.com
D:\wwweb\abvimenik.com.mk
D:\wwweb\paintinggallery66.com.mk
D:\wwweb\wchmkd2003.org.mk
D:\wwweb\atk.mk
D:\wwweb\publicspace.com.mk
D:\wwweb\agrounija.com.mk
D:\wwweb\polenak.com
D:\wwweb\radioravel.com.mk
D:\wwweb\mifa.org.mk
D:\wwweb\oskavadarci.unet.com.mk
D:\wwweb\quadrant.com.mk
D:\wwweb\saris.com.mk
D:\wwweb\kultura.com.mk
D:\wwweb\restorannana.com.mk
D:\wwweb\ostetovo.unet.com.mk
D:\wwweb\unetinteractive.com
D:\wwweb\styrawithstyle.com
D:\wwweb\vertigovisual.com.mk
D:\wwweb\lider.com.mk
D:\wwweb\seeffw2009.com.mk
D:\wwweb\anketa.unet.com.mk
D:\wwweb\visual.com.mk
D:\wwweb\biznisideja.com
D:\wwweb\vfx.com.mk
D:\wwweb\oskrusevo.unet.com.mk
D:\wwweb\vertigo.com.mk
D:\wwweb\UnetEd
D:\wwweb\vipro.com.mk
D:\wwweb\avtomobil.com.mk
D:\wwweb\mrc.com.mk
D:\wwweb\go-derm.com
D:\wwweb\osskopje1.unet.com.mk
D:\wwweb\dragandautovski.com.mk
D:\wwweb\ossvnikole.unet.com.mk
D:\wwweb\gostivar.com.mk
D:\wwweb\vodenica.com.mk
D:\wwweb\jewish.org.mk
D:\wwweb\test.unet.com.mk
D:\wwweb\stratagem-consulting.biz
D:\wwweb\doremi-yamaha.com.mk
D:\wwweb\jpacademy.gov.mk
D:\wwweb\glumcitepeat.com.mk
D:\wwweb\osstrumica.unet.com.mk
D:\wwweb\realenaikido.com.mk
D:\wwweb\tehnolab.com.mk
D:\wwweb\operationflorian-macedonia.org.mk
D:\wwweb\fasp.com.mk
D:\wwweb\mediatrend.com.mk
D:\wwweb\zora.org.mk
D:\wwweb\rkweld\rkweld
D:\wwweb\osveles.unet.com.mk
D:\wwweb\rkweld\ri
D:\wwweb\lokomotiva.org.mk
D:\wwweb\skopje.com.mk
D:\wwweb\laserlab.com.mk
D:\wwweb\dku.org.mk
D:\wwweb\oskrpalanka.unet.com.mk
D:\wwweb\heritage.org.mk
D:\wwweb\antitrafficking.org.mk
D:\wwweb\lighthouse.com.mk
D:\wwweb\fondacijatoseproeski.org
D:\wwweb\osskopje2.unet.com.mk
D:\wwweb\cosmoinnovate.com.mk
D:\wwweb\ultra.com.mk
D:\wwweb\vero
D:\wwweb\oskratovo.unet.com.mk
D:\wwweb\b2consulting.com.mk
D:\wwweb\moe.gov.mk
D:\wwweb\UnetIntra
D:\wwweb\moe.gov.mk\air
D:\wwweb\moe.gov.mk\globe
D:\wwweb\moe.gov.mk\soer
D:\wwweb\toseproeski-music.com
D:\wwweb\statistics\
D:\wwweb\q-consulting.com.mk
D:\wwweb\picaso-design.com.mk
D:\wwweb\imt.mk
D:\wwweb\fon.edu.mk
D:\wwweb\harmony-montenegro.com
D:\wwweb\svetlatocka.com.mk
D:\wwweb\galerija.net
D:\wwweb\skolazapolitika.org.mk
D:\wwweb\eacmfs-skopje.org.mk

Tuesday, December 15, 2009

We Announced our Professional TEAM

Today we officially announced our Professional TEAM. They are professionals on their profession.