hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

usch
hi
im very proud caus this is my first exploit compiled on my own biggrin.gif
have fun with that

best regards
x1`
do u know how we are ment to scan this biggrin.gif
cyrixx
if i'm right port 4000 , but i'm not sure
x1`
i got problems when i try and run the exploit , something about cygwin.dll libary files
heres a screen shot
cyrixx
tongue.gif here

sorry, my mistake. i have uploaded a wrong attachment... here's the new one!
x1`
already got that still get the error
does it work for you?
oOBLazerOo
thanks for it, will give it a try
Hellraiseruk
gonna give it ago thx m8 wink.gif
xdccpt
Thanks m8

im cheking it

anyway...that error is from a corrupt cgywin.dll...download a new one.


well....the exploit says im in but i never get a hit on nc....that is listening on the port i choose.


gonna keep trying



cheers
xdccpt
anyway..i forgot


is this port 4000...right?
Hellraiseruk
i think no one knows how to scan for this lol

must be away to scan with scan500/1000 then check it with a tool cuz there is over exploit on p4000

tongue.gif
slb33
I'll check it out.

Thanks man.

Probably need to use a banner scaner for this
xdccpt
any ideas in how to scan?


on port 4000 with Scan1000 and then Scanline i just found Remote-Anything 4.12.15 and 5.1.30 ...maybe cause its scanning TCP and not UDP

----------------------------------------------------------------------------------------
195.*.*.*
Responds with ICMP unreachable: No
TCP ports: 4000


TCP 4000:
[4.12.15 ,d -p` ra X ! x"} Y& P hv [+p m] t J ] iI[ C iY _S _: 2 ' ' V\ Ae y( a-]D ) Z M J@ iX!G Px B Z D Y q T Q b* f]

----------------------------------------------------------------------------------------
T3cHn0b0y
That 'IS' why! tongue.gif

You need a user datagram protocol scanner. Use the search on this forum, theres one there in file downloads somewhere wink.gif
Zero-X
tnx al0t

bu tsimple wonder do I have to set up a Nc to receive the shell or does it auto reverse te shell ?
Nexcess
QUOTE (xdccpt @ Mar 28 2004, 05:45 PM)
any ideas in how to scan?


If you can't figure out how to even scan for it, maybe you shouldn't be using it.
clubfed
uh, just to save you kids some time (go read a book or something or go out and interact socially;) I'll mention -- there IS NO port to scan for this. The bug is in a firewall parsing engine, and the only "port" involved is the source port of the packet you send, but that has nothing to do with the target host. This is a blind exploit, you have to fire it at the host and hav ethe shellcode do something meaningful like download+exec code.. i already posted on this in the other thread so i'll stop there.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.