hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

hias
If somebody has a tutorial about RPC, he can trade with me ....


icq: 172830900
Jay
We are a friendly lot here are try and be as helpfull to our members as possible.The idea is to post reply's so everyone can learn from the threads and share knowledge.
What kind of tutorials are you looking for. Exploit's maybe ????
illwill
all you need to know
http://illmob.org/rpc/
blackgazza
Does anybody know how to transfer files from the remote computer to my computer, using this remote shell?
OneNight
blackgazza, use dos ftp (describe in anohter thread) and then use the raw command:
put FILENAMEHERE

or

mput *.* (you can put *.exe, or *.ini there for example)
karlright
Hi sorry, this question is not really to do with the topic but I am a newbie and have a problem that I was hoping someone could help me with.

I have managed to telnet into a computer I put on a network for educational purposes. When I connected it asked for a login name and password. Hypertheticaly speaking if I did not know the user name and password how would I get access or get the information. Please e-mail me the answer at karlright@snowboard.com. PS: I am a member.
dcpartsguy
I agree with OneKnight, but also check out Microsoft's website on various FTP commands. When in DOS, type: ftp ?

It will give you some more commands that will help you.
z0mbi3
u could use tftp..
DJohn84
The only trouble with tftp is that it can timeout. FTP is much more stable.
muttley
Hi all, I'm new in this forum,
and I want to share my experinec with RPC DCOM Vulenrability.

I' ve found the Universal Exploit,
coded by OC192 Group, and it works with my Italian version.

There are some point I' dlike to verify:

I can't execute any useful program.
When try toopen an ftp location from the hacked Computer (both the computers are of my property) it asks me userid and then it doens't ask me anything anymore.
The only thing I can do is to break the connection with CTR-X and CTR-C.
At that point, it is impossible to use the exploit until the victim computer is rebooted.

Now, For me and for my little knoledge is impossible to transfer files.
Can soemone tell me something more?
thanks ALL.
rc-p90
i have a problem:

i type:
dcom32.exe 5 192.168.0.1

answer:
connect with netcat to 192.168.0.1:4444

i type:
nc -vvv 192.168.0.1 4444

answer:
connection refused

but: i have
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
"EnableDCOM"="Y"
set at the "victim" computer

what is wrong?
muttley
I had the same probelm with win32 compiled version.
So nearly it is an offset problem.
I succeeded with the one coded by OC192 Group, and it works also with my Italian version of win2000. (victim of course, I made the attack from a freebsd computer)
HI.

p.s.
if you suceeded, can you tell me how to transfer file on victim Computer?
HI


rc-p90
hm... i don't have a good compiler: i took gcc but i need more *.h-files like:
error.h
sys/socket.h
arpa/inet.h
netdb.h
windows.h
...

anybody knows a homepage to download *.h-files?
or someone can send them to me (msn: rc_p90@hotmail.com)? <- ups... .com
or someone can send me the compiled version?
thanks
andariel
the illwills link is a quiet good one. download dcom32.exe from there. i have the same problem on win32. the software tells me the operation is done but i can't connect.
PS: illwill, are you the owner of illmob.org ?
muttley
andariel,
the file you have to use is universal.exe
Is works very good.

Ilwill, if you are the owner of the site, is very very fine.
If not, thanks anyway for suggestion.

I'm leaving for holiday biggrin.gif see you all soon.
bye
andariel
thanx, i will try it asap.
rc-p90
thanks!
using universal.exe i can connect to a win2000 sp0 (german-vers) computer from a winXP sp0 (german-vers.)!
but: i can't connet to a winXP sp0 (german) from another computer...
rc-p90
dam! i'm an idiot! happy.gif
i installed the security patch (windowsupdate) on the winXP machine i tried...
on the other pc (winXP sp0 german) it works! (using universal.exe 5 ip-adress)
*lol*

now i have the same problem:
How can i transfer files from or to the "hacked" pc?
andariel
use tftp. i think it is completely explained by one of the nearby threads.
enjoy
rc-p90
yes! it wotks with tftp!
but my next problem is, that i can't execute a program on the "hacked" pc... (only if i put it in the auto run folder, and the pc reboots)
someone han an idea?
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.