OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] Undeletable user account.

trainsdoctorunix.com
Date: Wed Jan 04 2006 - 14:25:40 CST


Quoting James Bower <hando311hotmail.com>:

> Hi all, one of my servers has recently been compromised. No suprise
> but the hacker created himself a user account. The problem is that I
> can't seem to delete the account. The account is not part of any
> group. When you look at the account it and go to Member Of it
> doesn't show anything. When I try to delete it as the local admin I

You might find an interesting answer here:

http://neworder.box.sk/newsread.php?newsid=13948

I have used the exploit described therein and it does work as advertised.

t

-------------------------------------------------
Email solutions, MS Exchange alternatives and extrication,
security services, systems integration.
Contact: servicesdoctorunix.com

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/