- The first one to be exlcuded from the free service is: zgfrik.
He violated the policy of NO password cracking programs!
- The second one, caught trying to hack the FREE SHELL SERVER?!?! is slaserx.
On 27.01.2007 he requested a free service account stating he will only use eggdrop.
Here is part of the body of his email:
Ivan Bachvarov
Burgas Slaveikov 27
Bulgaria
user :slaserx
pass
:smotan
Shte go polzvam da pusna 1 bot ot nego :)
However, he tried to exploit a kernel overflow, which however did not work out. The worst thing here is, he forgot to erase what got into /tmp.
Here is a link of the archived files that were found under /tmp with his UID and GID. There is also a copy of his .bash_history file that proves what he was trying to do.
His account has been suspended and all processes killed.
Archive of slaserx activity
- 26.06.2007: user busta - account stopped. Cron was running every minute to check for an eggdrop process on a free shell? Damn that is greedy.
Also, busta had eggdrop.tar.gz file in his home directory and his own compilation as well! That is not allowed, as eggdrop is system-wide installed!
- 26.06.2007: user extazyti - account stopped.
Lied about his name, address, home town.
What he did wrong was to email me from the same gmail account extazyti@gmail.com again asking for shell with the same username!
Compiled apache?! Apache is already running! Also ran ./a.out software, which I presume is a precompiled
exploit! Hope he did not succeed in obtaining root! ;-) Will you all the rest like it if I bring down the whole virtual server and investigate for a couple
of weeks, as I seem to be very busy lately? **kidding!** ;-)