hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

ducky
i'm new here...and i hear lots of talking about port 4000 hacking? does it have another name?

can anyone plz explain to me how it works...and an exploit to it...


Thanks




/Ducky
OneNight
First of all, welcome to this board and enjoy ur stay with us. Feel free to contribute and lurk as much as you want.

About ur question, try google and figure out what that port is used for. Then try the search button on this board once you know what your looking for or try google again. Making an effort usually helps...

Thx.
ducky
lol sorry..ok..i'll check google before asking dumb questions smile.gif


ducky
tried google...Didn't find anything helpfull i think...Except icq vulnerability...Is this what it's all about? icq port?
DerTaller
hiya
port 4000 is the default for 'Remote anything' ...
have a look at http://www.remote-anything.com

laterz
DerTaller
larsbruggie
yeah well remote anything so, is there a bug in the system there is??
or is it just weak pass?

Would be gr8 if someone explained what it all is
Dillinja
Type "remote anything" and "exploits" into google and see what comes up.

Helloman
Its easy .

When in TRIAL you cant change the port and pw - so its always port 4000 and pass TRIAL .

Fantafour
QUOTE (Helloman @ Dec 14 2003, 11:16 AM)
Its easy .

When in TRIAL you cant change the port and pw - so its always port 4000 and pass TRIAL .

Thats too easy... thats a kind of radmin exploit (no password)

simply portscan, then check the ip with "TRIAL" pass... "that is a horrible exploit"
Helloman
Everyone talks about security online and what did they do ?

install remote admin software without password or standard - rofl
blackP0ster
lol!

but does there exist a kind of scanner or a tool that checks weak pwds?


black
Stephen79
Go in as trial and register it biggrin.gif

blackP0ster
i've already a "registered" version smile.gif

but does there exist a proggi that checks your scan-results?
e.g. with pwds like 12345, admin, trial, %null% ...

Deadlocked
It became famous for a while with a win exploit, i can remember exactly which, but i belive it was Kaht.exe (webdav) the one that spawned a cmd listening on port 4000 waiting for connection.
Tx_
i remember that
ellitio
QUOTE (DerTaller @ Aug 27 2003, 03:15 PM)
hiya
port 4000 is the default for 'Remote anything' ...
have a look at http://www.remote-anything.com

laterz
DerTaller

yep! looks like radmin
rastis_monkey
any 1 know wher to download a good port scanner free?
m0n
Excellent source of ports referance ------> http://www.iana.org/assignments/port-numbers
Blast3rPL
Hey Fowks I have a little problem. I often scan for RA by scan.exe -p 4000 and then check it with ScanLine (sl.exe). But there's lot of Bad Passwords IP. Where I could find any ReMotE Anything NULL PASS ONLY Scanner or scanner with dictionary etc. I haven't got access to download section - please help.
Fareway
you want to brute force ra machines? I think that's not worth the time.
passi
Here I have a scanning and exploiting package for Port4000. Didn't try it out...
Buluemoon
Thanks very much passiw, I am going to set this scanner up and give this exploit a try, can you tell me if i can run these through a proxy?
blackP0ster
thx..will check out this tool!

but you waste your time by bruteforcing the service behind port 4000..

black
Blast3rPL
Passiw I'm gonna test it THX !
The-X
i tried it... hmmmmmmm i dont know why to use this tool... you can use superscan instead
northernsky
I checked out the port 4000 pack that was posted, basically useless. Just run scans on port 4000, then try to connect in remote anything.

be warned though, that ra logs all attempts to connect, so even if you don't get in, you leave your ip. So probably a good idea to get some good proxies going.
headbanger
hmm, im gonna try this out thanks
tomer_shim
u realy should try google first.
for conclution from what I know, PORT4000 is a port which is opened in lots of computers and u scan ranges if they listen to this port and can hack them.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.