#!/usr/bin/perl -w # # IA WebMail 3.x (iaregdll.dll version 1.0.0.5) Remote Exploit # # By Peter Winter-Smith peter4020 hotmail.com # Shellcode included - will need reassembling to use different # urls and files etc. # # Tested against: # - Windows XP Home SP1 # - Windows 2000 Pro SP4 # # Shellcode should work each time, since it steals it's addresses # from the iaregdll.dll module import tables. # Uses a very static jmp esp in iaregdll.dll - Should work on all # servers without alteration! # # If the remote server is running a firewall, the urldownloader # will be unable to spawn a shell, so for testing I recommend # that you close the firewalls, or get another shellcode which # will deal with this. This exploit is for PoC purposes only :o) # # Notes: # - WebMailsvr.exe exits without consuming 100% resources in most # cases. # - This has only been tested with IA WebMail 3.1, however it was # designed to exploit all versions.
Well i changed the code used my own files.. even tryed some vb exploit proggie the from the files section. but nothing worked...
The perl script doesnt make the server download my file and the vb thing always sais ia webmail not found..(i checked 6 servers by hand and 100% there was ia webmail installed and the dll was there so i really thing that proggie doesnt work)
-=[MePhIsTo]=-
Nov 20 2003, 04:34 PM
QUOTE (Toilal @ Nov 19 2003, 12:30 PM)
Tested and works perfectly !
it will be nice when you give some feedback
Yosam
Nov 20 2003, 07:17 PM
can anyone give me more information about this xray thingie?
i tried searching for it on google but no luck..
i'll appreciate if someone could give me a link to it (and a little explaination would be helpfull as well).
thanks in advanced.
mcmix
Nov 21 2003, 08:23 AM
who have any scanner for this webmail..?
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.