hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Realserver Scanner
maZer`-
I published these Scanner for all who wanna hack any Realservers (WIN/UNIX)

This Scanner is written in PHP and Just scan for Vulnerablity Realservers!
I hadnt got any luck with the exploit! But the Scanner works wink.gif

Usage:

Use Scan100/500/1000
scan500 -p 554 192.168.0.1 192.168.0.255
Copy the Result in a textfile!

Now u are ready to use my scanner!
php realscan.php --->> [ IN A SHELL ] <<---
enter the filename of the list!
Now enter the Port to check! If u are Unsure press Enter or type 554! wink.gif

Now the scanner will scan all ips for Vulns!
If any Vulnerablity will be found he will display the OS and Version of the Realserver!

If u get this output
207.188.7.xXx CONNECTED

The target isnt Vulnerable!!!

if u get THIS! wink.gif
62.80.65.138 CONNECTED QTSS/4.1.3 (Build/412.45; Platform/MacOSX)
Uve got a Vuln Server! wink.gif

All Results with Vulns will be written in a textfile! ($filenameoflist-result.txt)

Also good luck guys! wink.gif
Have phun
maZer`-
I forget! U must use this PHP.INI extract it in your Windows Directory! wink.gif
Vosgia
WOAH thx 4 this scanner , its brilliant ;D
maZer`-
if you see me coding, you will know that iam crazy
if you want to know how crazy i am , download this video
Carlos
I've tryed the scanner my self and it was a litle dificult to understand it's usage. Not because the scanner was no good, but because WinOS does not come enhanced with PHP. So you'll need PHP.EXE to make this work.

Files Needed:

PHP.EXE (PHP Interpreter)
php4ts.dll (dll used by php.exe)
RealScan.php (RealScan Scanner Script by maZer`-)
IP.txt (A list of IP's for the scanner to check.)

Download "RealScanner.zip" if you have none of this.

Extract RealScanner.zip to your "C:\" so it would look like "C:\RealScanner\"

Start>Run... type in "cmd"

once in DOS type:

cd C:\RealScanner\

once in C:\RealScanner> type:

php RealScan.php

At this point the scanner will ask you for the IP list - input IP.TXT than it will ask for the Port to scan, input port 554 (since it's the default RealServer Port and we ARE scanning for them. tongue.gif )

Now just sit back and wait for it to finish scanning... After it's done, it will generate a file called "scan-result.txt" (it's very much self explanatory). Yes. Those are the results.


Cheers! smile.gif
isaiah
what expliot does this work with
GSecur
Great addon to the post Carlos, well done
isaiah
be better if was a gui try to do that just my idea
maZer`-
CODE
Great addon to the post Carlos, well done


[o.O] wow biggrin.gif that isn fairness! wink.gif
Carlos BITCH *smile* wink.gif
Carlos
maZer`- nice code mate, keep 'em coming! biggrin.gif
Mephisto
i dont get shit..

I''ve waited for 5 minutes but i still don''t get the screen where he asks 4 my ip list

How can this be

In the cmd I do: PHP realscan.php

and it does nothing

[edit]When i push enter 5/6 times i get a warning that i didn't put in anything but when i wait i dont get anything

how the ell do i fix this

Greetz Mephisto

Edited by OneNight: No need for caps.
maZer`-
Mephisto PHP isnt good running in Windows! But ill Upload Executable now wink.gif

PHP.exe realscan.php
if u dont get any text u must type filename.txt and press enter 2 times! he will works! wait and he will scan all ya ips ! smile.gif
studnikov
Yes it does work, its a little buggy but never the less a great scanner. Thanks
grpi
thkx all for u job wink.gif
MKZ
thx for share , good job.
maZer`-
Ive got PHP5.X Beta new! Im Beta tester,
On my system it wasnt buggy! sad.gif
But many thx for your posts! I love good posts! wink.gif
Coktailcrazy
first of all thnx for the tools!! only 1 question, what if I get a MacOSX?? Do I must use the windowz or the linux option, or isn't that one useable?
PSR
well macos is a unix machine so i guess unix.

other than that good work mazer . it aint workin buggy for me . works perfect . np as of yet . i gotta say i'm pretty amazed.

really good work man !!!
rocco60
hello veiled I have a small problem thus I scan port 554 with scan1000.exe all occurs well I have some results then I have it test with realscan.php until A it all is well it gives me the maid. the problem as soon as want to connect me with netcat with the order nc xxx.xxx.xxx.xxx 31337 the fenetre netcat opens and is closed again at once have yourself of koi Ca peuxx to come itself thank you


ma622
im getting this error too: PHP Notice: Undefined offset: 1 in C:\real\RealScan.php on line 87......

is it OK?
bratt


With php.ini i have this error when check ip

PHP Notice: Undefined offset: 1 in C:\real\RealScan.php on line 87


without i t stop after 30 seconds
<b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>C:\real\RealScan.php</b> on line <b>60</b><br />


wheet
Yes i have this same problem:



CONNECTED<br />
<b>Fatal error</b>: Maximum execution time of 30 seconds exceeded in <b>C:\real scanner\realscan.php</b> on line <b>60</b><br />
|CraZy|
its becuz u guys use too big of ip lists.. reduce the size of em or sumfin =x
bratt
QUOTE (|CraZy| @ Aug 26 2003, 06:55 PM)
its becuz u guys use too big of ip lists.. reduce the size of em or sumfin =x

The problem is not the list .... is the timeout that is 30 seconds

there is the possibility to set more?

I have a list of 15 ips and goes timeout after the second because someone cant connect

so can anyone fix it ?
VincentVega
Wasnt there a realserver scanner already somewhere?

i am almost sure but i cant remember the name

Thanks BTW

Greetz VV
studnikov
QUOTE
The problem is not the list .... is the timeout that is 30 seconds

there is the possibility to set more?

I have a list of 15 ips and goes timeout after the second because someone cant connect

so can anyone fix it ?


The problem with the timeout in 30 seconds is that you didnt add the php.ini to your windows folder. There is also a timeout setting in the ini. After you add the ini start the scanner again php.exe realscan.php hit <enter> then type in the ip list txt EX: ip.txt then hit <enter> Twice. It will start scanning and make you a results txt.
-= mAc =-
where's that php.exe?
PSR
it's in the package mazer uploaded along with the realscan.zip , the php.dll

just look through this thread.
reel
thx mate for ya tool, the scanner works fine for me, no crashes
-= mAc =-
doesn't work for me...

I type 'c> php.exe realscan.php'

and then happens.... nothing ... it just stands still...

even when i type ip.txt under this line it just stands still...


Whats wrong?
bratt
QUOTE (studnikov @ Aug 26 2003, 10:34 PM)
QUOTE
The problem is not the list .... is the timeout that is 30 seconds

there is the possibility to set more?

I have a list of 15 ips and goes timeout after the second because someone cant connect

so can anyone fix it ?


The problem with the timeout in 30 seconds is that you didnt add the php.ini to your windows folder. There is also a timeout setting in the ini. After you add the ini start the scanner again php.exe realscan.php hit <enter> then type in the ip list txt EX: ip.txt then hit <enter> Twice. It will start scanning and make you a results txt.

I do it .... and I have the second error :

HP Notice: Undefined offset: 1 in C:\real\RealScan.php on line 87....[COLOR=blue][COLOR=blue][COLOR=blue][COLOR=blue][COLOR=blue][COLOR=blue]..
tRekU
Hello.

This is the first time that I write in this forum.

I am Spanish and my ingles is very bad.

Sorry if I say some barbarism... blink.gif

I test the different versions from the RealServer and have created a data base.

I stick hear .. I hope that it serves as aid.

---------------------------------------------------------
- Wind0wS -
---------------------------------------------------------
NO - RealServer Version 9.0.2.794 (win32)
NO - RealServer Version 9.0.2.768 (win32)
NO - RealServer Version 9.0.2.766 (win32)
NO - RealServer Version 8.0.2.471 (win32)
YES - RealServer Version 8.0.1.367 (win32)
YES - RealServer Version 8.0.0.149 (win32)
NO - RealServer Version 6.1.3.970 (win32)
NO - RealServer Version 6.1.3.934 (win32)
NO - RealMedia Server Version 6.0.3.354 (win32)
NO - DSS/4.1.3 (Build/412.45; Platform/Win32)
NO - DSS/4.1 (Build/412.22; Platform/Win32)
NO - QTSS/2.0.1 [v169]-Win32

---------------------------------------------------------
- LINUX -
---------------------------------------------------------
NO - RealServer Version 9.0.2.794 (linux-2.2-libc6-i586-server)
NO - RealServer Version 9.0.2.766 (linux-2.2-libc6-i586-server)
YES - RealServer Version 8.0.2.471 (linux-2.0-libc6-i386)
NO - RealServer Version 8.0.1.367 (sunos-5.7-sparc)
NO - RealServer Version 8.0.0.149 (sunos-5.7-sparc)
NO - DSS/4.1.3 (Build/412.45; Platform/FreeBSD)
NO - DSS/4.0 [v410]-Solaris

---------------------------------------------------------

Bye ... wink.gif
MxMx
QUOTE (maZer`- @ Aug 27 2003, 08:14 PM)
Well many thx for ya Posts @ All
Big thx for your Vulnerable list! Ill change the code now!
He will now just scan for THIS vulns! wink.gif

U are done recompiling it?! or do you post it again when it's ready .. thnx
maZer`-
Well many thx for ya Posts @ All
Big thx for your Vulnerable list! Ill change the code now!
He will now just scan for THIS vulns! wink.gif
maZer`-
To the execution Time problem! biggrin.gif
Many users change another timouts in php.ini *laughs*
u must search the line "max_execution_time" and set it to 3600 or 0!
Many versions of php didnt understand the value 0! And set it to default (30)

Have pHun
maZer`-
I need a iplist with many vulns to code my scanner! im scanning now biggrin.gif
spawn543
any way to check em remotely?
maZer`-
Spawn i opened a new topic! Look there! wink.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.