hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Barvaz88
1. what is it?
2. how can I scan it?
3. with what program do I controll it?

tnx for the helpers smile.gif
cornstalk
VNC ( Virtual Network Computing ) is an open source remote control tool wich allows you to control another computer as if you would sit in front of it ( poor english, i know ).
you might compare it with commercial tools like pc anywhere.
afaik it uses port 5900, so you can scan it with your favorite port scanner.

http://www.realvnc.com/
Barvaz88
tnx man smile.gif
rush
Indeed, i think next time youll just need one search @ goole and there are all youre answers..
ps. i dont mean this bad, but if you need the intel fast just try google first ph34r.gif
Cow|
VNCPwdump
VNCPwdump can be used to dump and decrypt the registry key containing
the encrypted VNC password in a few different ways.

http://www.cqure.net/tools.jsp?id=12

VNCpasswordtryer

http://www.phenoelit.de/vncrack/

Enjoy
Barvaz88
rush Ididn't found information in google
and cow tnx you m8 smile.gif
Barvaz88
there is brute force or dictionary attack tool for that?
cornstalk
QUOTE (Cow| @ Jan 3 2004, 06:33 PM)
http://www.phenoelit.de/vncrack/

...
Barvaz88
tnx, there is a chance that there is a bruteforce for that? :\
ara
Barvaz88, the link to the bruteforce for vnc was given twice in this thread already
TedOb1
besides port 5900 vnc alsp uses a java applet (which can be turned off) that listens on port 5800 and can be accessed using a web browser. in general though accessing the server is usually done using vncviewer that comes with vnc.

the password crackers have to be used locally or the system hacked using another maens and the reg entry copied to get the pw. the only 'exploit' ive ever hear of requires session hi-jacking but that vuln has been corrected in the latest versions. it will not allow a nul password but it does not require a strong one or set a required length of charecters so password guessing is still an option if the operator is stupid but it will refuse your connection for a time after three trys
zero-maitimax
use radmin 2.1

it's better then vnc
Barvaz88
QUOTE (ara @ Jan 5 2004, 06:19 AM)
Barvaz88, the link to the bruteforce for vnc was given twice in this thread already

it's dictionary attack I don't see bruteforce in that tool
[Sunny]
than make your own bruteforcewordlist ...

0
01
011
0111 and so on ;D

But bruteforcing is very slow , try some wordlists on packetstormsecurity.org . And bruteforce from a fast connection .

Have fun and good luck
predx
with new versions of vnc.. they block your ip after so many in correct retries..
wapper
Hi guys im new in here but i programmed in perl and vncrackbot wich reads out the ip numbers of victems out of a .txt file and use x4.exe to crack it. Sometimes it take a whole day but when i wake up i got a lot of new victems with password.
So i can use there desktop cool.gif .
I also made a script for scan100.exe so you can make a list of ip ranges and he scans them all, and put the ip's with port 5900 in a list.
When its done u can take the list and copy the ip's in the list for vncrackbotlist.pl
Then start vncrackbotlist.pl and he scans all the ip's with passwords.

here's the scan file you can use to catch port 5900 ip's :

http://members1.chello.nl/~c.la.mark/scan.rar

and here is the vncrackbot.pl where you can put in your own ip ranges,
and in this pack is also vncracklist.pl to scan ip lists :

http://members1.chello.nl/~c.la.mark/vncrackbot.rar

BYE
Hadezz
wapper

your files are infected with a virus


Win32.Parite.a [KAV], W32/Pate.a [McAfee], Win32.Pinfi.A [CA], PE_PARITE.A [Trend], W32/Parite-A [Sophos], Win32/Parite.A [RAV]

http://securityresponse.symantec.com/avcen.../w32.pinfi.html



some1 edit it out



such an annoying virus .. took forever to get rid of
t00sTr0nG
I have the same Warning!
Can anyone post the files new?

t00sTr0nG
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.