hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: Ftp.exe Or Tftp.exe
Test24
hello I would like to know if anybody knows what is the code of the ftp.exe because I would like to see it and I would like to know if I delete tftp and ftp if there is some ways hacker can hack my reseaux.

thanks
SyN/AcK
QUOTE (Test24 @ Jan 29 2004, 12:37 AM)
hello I would like to know if anybody knows what is the code of the ftp.exe because I would like to see it and I would like to know if I delete tftp and ftp if there is some ways hacker can hack my reseaux.

thanks

Huh?

K, lets go for a lil' better english. I'll do my best here. Its not likely windows has released the code to its ftp client anywhere that any non-Microsoft person could get it. You could dissassemble it, but that's not going to help you much. The last question you asked I have no idea what you are talking about. I think you are trying to ask if you delete the ftp.exe and tftp.exe files iif hackers will be unable to grab files remotely. While this may hamper hackers, a skilled hacker will find other ways to get the files, as GSecur (I think it was him) demonstrated on this site thru the use of the Windows Scripting Host and some cleverly placed VBScript.
MuRpH
i dunno why i cant make a new post... but anyways, ive been reading throught this website and i think its a good place to learn alot of new stuff, awesome board u guys got here. now, i have a few questions...

#1. media IP's

24.2.197.27 Windows Media Services Enabled!

how and what would i use to play around with media?

#2. p6129 dameware 203.xx

same question here

#3. [SSH] 128.95.x.x
say i find a range of IP's like this

128.95.1.8 SSH-1.99-OpenSSH_3.7.1p2
128.95.1.223 SSH-1.99-OpenSSH_3.4p1
128.95.2.1 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.1.100 SSH-1.5-1.2.27
128.95.2.117 SSH-1.99-OpenSSH_3.7.1p2
128.95.2.114 SSH-1.99-OpenSSH_3.7.1p2
128.95.3.137 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.4.180 SSH-1.99-2.4.0 SSH Secure Shell (non-commercial)
128.95.4.252 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.4.108 SSH-1.99-OpenSSH_3.7.1p2
128.95.5.69 SSH-1.99-OpenSSH_3.5p1
128.95.5.100 SSH-1.5-1.2.27
128.95.5.162 SSH-1.5-OpenSSH_2.9p1
128.95.5.173 SSH-1.5-OpenSSH_2.9p1
128.95.5.253 SSH-1.5-OpenSSH_2.9p1
128.95.6.12 SSH-1.99-OpenSSH_3.6.1p1
128.95.6.100 SSH-1.5-1.2.27
128.95.6.253 SSH-1.5-OpenSSH_2.9p1
128.95.7.16 SSH-1.99-OpenSSH_2.9p1
128.95.7.100 SSH-1.5-1.2.27
128.95.7.51 SSH-2.0-OpenSSH_3.6.1p1+CAN-2003-0693
128.95.7.188 SSH-1.99-OpenSSH_3.4p1+CAN-2003-0693
128.95.8.1 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.8.2 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.8.152 - SSH-1.99-2.4.0 SSH Secure Shell (non-commercial)
128.95.9.5 SSH-1.99-OpenSSH_3.1p1
128.95.9.32 SSH-1.99-OpenSSH_3.1p1
128.95.9.42 SSH-1.99-OpenSSH_3.1p1
128.95.9.45 SSH-1.99-OpenSSH_2.9.9p2

what would i use or do to exploit them?

hmmz, as u guys may have figured i am part of an fxp board. im not sure if u frown upon them or not but it happens and its going to continue to happen. i can hack sql ntpass and webdav but these i have absolutely no knowledge on whatso ever so any information u guys can give me would be greatly appreciated... thanks a bunch and ill look forward to posting what i have learnt to help u guys out as well.
flashb4ck
you should first read the rulez *g*
agamemnon
monsieur la grenouille, 'reseaux' veut dire 'network' en anglais.

also, just because you've deleted ftp.exe doesn't mean a hacker can't install his/her own version.

(meme si on enleve ftp.exe, un hacker peut toujour installer son propre logiciel au lieu de cela)

-ed.
SyN/AcK
QUOTE (MuRpH @ Jan 29 2004, 06:02 PM)
i dunno why i cant make a new post... but anyways, ive been reading throught this website and i think its a good place to learn alot of new stuff, awesome board u guys got here. now, i have a few questions...

#1. media IP's

24.2.197.27 Windows Media Services Enabled!

how and what would i use to play around with media?

#2. p6129 dameware 203.xx

same question here

#3. [SSH] 128.95.x.x
say i find a range of IP's like this

128.95.1.8 SSH-1.99-OpenSSH_3.7.1p2
128.95.1.223 SSH-1.99-OpenSSH_3.4p1
128.95.2.1 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.1.100 SSH-1.5-1.2.27
128.95.2.117 SSH-1.99-OpenSSH_3.7.1p2
128.95.2.114 SSH-1.99-OpenSSH_3.7.1p2
128.95.3.137 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.4.180 SSH-1.99-2.4.0 SSH Secure Shell (non-commercial)
128.95.4.252 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.4.108 SSH-1.99-OpenSSH_3.7.1p2
128.95.5.69 SSH-1.99-OpenSSH_3.5p1
128.95.5.100 SSH-1.5-1.2.27
128.95.5.162 SSH-1.5-OpenSSH_2.9p1
128.95.5.173 SSH-1.5-OpenSSH_2.9p1
128.95.5.253 SSH-1.5-OpenSSH_2.9p1
128.95.6.12 SSH-1.99-OpenSSH_3.6.1p1
128.95.6.100 SSH-1.5-1.2.27
128.95.6.253 SSH-1.5-OpenSSH_2.9p1
128.95.7.16 SSH-1.99-OpenSSH_2.9p1
128.95.7.100 SSH-1.5-1.2.27
128.95.7.51 SSH-2.0-OpenSSH_3.6.1p1+CAN-2003-0693
128.95.7.188 SSH-1.99-OpenSSH_3.4p1+CAN-2003-0693
128.95.8.1 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.8.2 SSH-1.99-OpenSSH_3.4p1 FreeBSD-20020702
128.95.8.152 - SSH-1.99-2.4.0 SSH Secure Shell (non-commercial)
128.95.9.5 SSH-1.99-OpenSSH_3.1p1
128.95.9.32 SSH-1.99-OpenSSH_3.1p1
128.95.9.42 SSH-1.99-OpenSSH_3.1p1
128.95.9.45 SSH-1.99-OpenSSH_2.9.9p2

what would i use or do to exploit them?

hmmz, as u guys may have figured i am part of an fxp board. im not sure if u frown upon them or not but it happens and its going to continue to happen. i can hack sql ntpass and webdav but these i have absolutely no knowledge on whatso ever so any information u guys can give me would be greatly appreciated... thanks a bunch and ill look forward to posting what i have learnt to help u guys out as well.

Goddamn I'm already sick and tired of this. READ THE RULEZ! There's a reason you can't create a new thread. YOu haven't been here long enough. Also, every question you asked has been answered here tenfold.... why not do a little search for yourself?? The least you could've done is post this in an area similar to what your question is about. mad.gif
dmg
QUOTE (Test24 @ Jan 29 2004, 12:37 AM)
hello I would like to know if anybody knows what is the code of the ftp.exe because I would like to see it and I would like to know if I delete tftp and ftp if there is some ways hacker can hack my reseaux.

thanks

If you delete ftp.exe tftp.exe and rcp.exe (also in dllcache!) you are secure for most rehackers (read script kiddies). This is IMHO a stupid method. Better patch the server. If you still want to disable these files better replace them with cmd.exe.

The more inventive hacker allways can get his files on the server though. By misusing explorer.exe for instance. And try to delete that one smile.gif
agamemnon
you can change your shell (eg litestep) and the you'd not need to use explorer.exe

but at that point you may as well just install linux.

-ed.
MuRpH
SyN/AcK, im really sorry man, gunna take a look around, sorry readin the rules now
barty32
By deleting ftp.exe and tftp.exe you can just secure against low-skilled-hackers (like the most fxp-hax0r) but a really skilled hacker finds always another way...
priapo
QUOTE (agamemnon @ Feb 3 2004, 10:35 PM)
you can change your shell (eg litestep) and the you'd not need to use explorer.exe

but at that point you may as well just install linux.

-ed.

I'm affraid but you can still call explorer.exe when using alternative shells such as darkshell or litestep.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.