Guys bago ko i share ito credit muna...
Cramf Sy para sa Backdoor
Pedik para sa Telnet (kay sir pedik via Iperf)
at kay mr logie0726
Share din kayo kasi hanggang ngayon disconnected padin modem ko sa wimax pero LTE connected na. Tulungan tayo!!!
At importante hit Button kasi may mapupulutan kayo dito galing kay mr logie0726.
1st GUI Access muna syempre...
(Kaso limited talaga access ng Power User at Operator) Alam nyo na ito diba. Wait lang antay mo yung trick ko nasa baba!!!
Option 1 - Backdoor (Alam nyo na ito diba)
Alamin ang available na user gamit ito
You do not have permission to view the full content of this post.
Log in or register now.
Default result
Successfully,u878mJAskqMd,Admin,user,enable,enable,enable,/www/power_user,/www/operator_user,/www/guest_user,
Delete a user (Palitan ang u878mJAskqMd ng available na nasa taas kung gusto Operator or User Access)
You do not have permission to view the full content of this post.
Log in or register now.
To execute command/view result
You do not have permission to view the full content of this post.
Log in or register now.
Add a user (wag kalimutan palitan phc.onl/#forbidden#)
You do not have permission to view the full content of this post.
Log in or register now.
To execute command/view result
You do not have permission to view the full content of this post.
Log in or register now.
Check mo kung kumagat dapat napalitan na yung user
You do not have permission to view the full content of this post.
Log in or register now.
THEN LOG IN NA! Wala po password yan kasi galing sa backdoor. May access na kayo sa Power User, Operator or User.
Option 2 - Open TELNET pwede nyo paltan port kayo bahala. Eto po galing sakin na discover ko lang. Mas mabilis di na dadaan sa Iperf.
You do not have permission to view the full content of this post.
Log in or register now.
To execute command/view result
You do not have permission to view the full content of this post.
Log in or register now.
NOW Open Telnet (putty or via cmd) Note wala po ito challenge question gaya sa backdoor ni Cramf Sy
Eto commands
deluser u878mJAskqMd
adduser phc.onl/#forbidden#
Now enter password. Pwede nyo enter lang para blank password. Then Login sa GUI.
Ngayon nasa Telnet kayo INGAT lang!!!! Kung Advanced User ka alam mo na.
2nd Missing Admin Access...
Ako din po naka diskubre nito. Dito po galing mga SS ko sa mga post ko dati...
CHANGE FREQ, PEM/KEY, APN, SMS INBOX ETC.
Requirement:
1. Firefox
2. https://addons.mozilla.org/en-US/firefox/addon/cøøkíés-manager-plus/
3. Common sense
Procedure:
1. Login sa GUI 192.168.254.254 - gamit ang na create mo na user sa taas (Power User, Operator or User) kahit ano wala problema
2. Open About page or kahit anong page - Important para sa cøøkíés
2. Open cøøkíés Manager (Search mo 192.168.254.254 para wala iba lumabas)
3. Double Click Page (Hindi SID or Userlevel)
4. Palitan mo yung nasa Content ng kahit ano missing pages
5. Reload or Refresh nyo si GUI or Firefox
Click image for larger version.
Name: KLNJmj2.png
Views: 130
Size: 21.2 KB
ID: 1050463
Eto yung sample ng missing pages kasi block ni bibo access mo dyan e.
1. control_panel_certificate.asp - PEM/KEY upload
2. lte_apn.asp - APN para sa LTE
3. lte_multiple_apn.asp - Multiple APN
4. lte_cell_lock.asp - FREQ scanner daw
5. lte_plmn_select.asp - ETO ata para maOpenLine sa Smart di ko sure.
6. mobile_sms_inbox.asp - Send SMS Inbox
7. personalize_password.asp - Change Username/Password via GUI
8. wimax_auth.asp - Wimax Authentication (lagayan ng Usernmae/Pass/Anonymous ID)
Clue sa missing pages 0=off 1=on
You do not have permission to view the full content of this post.
Log in or register now.
You do not have permission to view the full content of this post.
Log in or register now.
You do not have permission to view the full content of this post.
Log in or register now.
Sample Useful Telnet commands
ifconfig eth2 down
cmscfg -s -n supplicant_anonymous_id_string -v TAGAGLOBEAKO
cmscfg -s -n supplicant_phase1 -v EAP-TLS
cmscfg -s -n supplicant_realm_en -v enable
cmscfg -s -n supplicant_realm -v globelines.com.ph
cmscfg -s -n supplicant_username -v
2008AlaMonaTOdiBa@globelines.com.ph
cmscfg -s -n supplicant_password -v 2008AlaMonaTOdiBa
ifconfig eth2 down hw ether TA:GA:GL:OB:EA:KO
ifconfig eth2 up
fw_setenv wmxaddr TA:GA:GL:OB:EA:KO
fw_setenv lanaddr TA:GA:GL:OB:EA:KO
Change Wimax FREQ (Diskarte nyo na pwede 0-19) Witribe na FREQ po yan.
cmscfg -s -n wimax_channel_plan_Id_7_enable -v 1
cmscfg -s -n wimax_channel_plan_first_freq_7 -v 2570000
cmscfg -s -n wimax_channel_plan_last_freq_7 -v 2570000
cmscfg -s -n wimax_channel_plan_step_7 -v 5000
cmscfg -s -n wimax_channel_plan_bw_7 -v 5000
MORE SS
Click image for larger version.
Name: XarpgMz.png
Views: 108
Size: 17.3 KB
ID: 1050458
Click image for larger version.
Name: jx77ktC.png
Views: 100
Size: 24.0 KB
ID: 1050460
Click image for larger version.
Name: DcQWqqK.png
Views: 87
Size: 9.9 KB
ID: 1050461
Click image for larger version.
Name: vO7qz5z.png
Views: 105
Size: 13.2 KB
ID: 1050462
QUESTIONS:
1. mga tol paano makikita yung mac ng od ko? Thanks
2.Try mo yung APN tol baguhin to AUTO gayahin mo SS. - lte_apn.asp
Tapos try mo mag check ng FREQ dito - CLICK mo SURVEY. - lte_cell_lock.asp
Tsaka RESTART. Yan lang binago ko nagulat ako bigla nag connect.
Syempre tol wait mo lang ilang minutes (3-5mins) titigan mo yang yung status or LTE Information mag handshake sya sa tower .
at Isure mo na may signal. Ako kasi tinry ko sa Phone ko na 4G para sure na may signal sa area.
Bat ganun pansin ko parang WALA CAPPING! More than 5G nadownload ko highspeed pa din.