Member
- Joined
- Oct 11, 2023
- Messages
- 105
- Thread Author
- #1
Hello hackers, today I will tell you about the method that I have been using for a long time.
So, let's copy a couple of logs step by step, and then analyze what has been written and think about how to avoid such unpleasant incidents.
Step 1 - Go to the tracker
We go to any gate tracker known to us, whether it's VT or a more specialized resource
In my case, it will be the good old CyberCrime Tracker
We drive "azor" into the search by the name of the software , or something like that
We often get a rather extensive list of such
Step 2 - removing the logs
We go to any address from the list, and if he is a worker should see some kind of picture
You can use this, just go to http: // gateway address / files, and we see the following amusing picture:
Download any log and make sure that we are on the right track
Instead of a conclusion
This feature is not new, Azor admins are easily googled and this method of log removal is known to many. Also, to be fair - in about a third of the gates, the index is still closed.
How to protect yourself?
Place an empty index.html in the files folder in the standard admin distribution.
P.S. In new versions of azor, it seems to be fixed, look for old panels.
So, let's copy a couple of logs step by step, and then analyze what has been written and think about how to avoid such unpleasant incidents.
Step 1 - Go to the tracker
We go to any gate tracker known to us, whether it's VT or a more specialized resource
In my case, it will be the good old CyberCrime Tracker
We drive "azor" into the search by the name of the software , or something like that
We often get a rather extensive list of such
Step 2 - removing the logs
We go to any address from the list, and if he is a worker should see some kind of picture
By default, the gate stores logs in the form of archives in the files folder, the index of which is VERY often not covered by the default settings of the web server (yes, the cybercriminal mamma loves the default)This is the entrance to the admin panel azor
You can use this, just go to http: // gateway address / files, and we see the following amusing picture:
Download any log and make sure that we are on the right track
Instead of a conclusion
This feature is not new, Azor admins are easily googled and this method of log removal is known to many. Also, to be fair - in about a third of the gates, the index is still closed.
How to protect yourself?
Place an empty index.html in the files folder in the standard admin distribution.
P.S. In new versions of azor, it seems to be fixed, look for old panels.