usch
Mar 28 2004, 01:53 PM
hi
im very proud caus this is my first exploit compiled on my own

have fun with that
best regards
x1`
Mar 28 2004, 01:57 PM
do u know how we are ment to scan this
cyrixx
Mar 28 2004, 02:03 PM
if i'm right port 4000 , but i'm not sure
x1`
Mar 28 2004, 02:09 PM
i got problems when i try and run the exploit , something about cygwin.dll libary files
heres a screen shot
cyrixx
Mar 28 2004, 02:22 PM

here
sorry, my mistake. i have uploaded a wrong attachment... here's the new one!
x1`
Mar 28 2004, 02:31 PM
already got that still get the error
does it work for you?
oOBLazerOo
Mar 28 2004, 02:55 PM
thanks for it, will give it a try
Hellraiseruk
Mar 28 2004, 03:14 PM
gonna give it ago thx m8
xdccpt
Mar 28 2004, 03:16 PM
Thanks m8
im cheking it
anyway...that error is from a corrupt cgywin.dll...download a new one.
well....the exploit says im in but i never get a hit on nc....that is listening on the port i choose.
gonna keep trying
cheers
xdccpt
Mar 28 2004, 03:21 PM
anyway..i forgot
is this port 4000...right?
Hellraiseruk
Mar 28 2004, 03:52 PM
i think no one knows how to scan for this lol
must be away to scan with scan500/1000 then check it with a tool cuz there is over exploit on p4000
slb33
Mar 28 2004, 05:22 PM
I'll check it out.
Thanks man.
Probably need to use a banner scaner for this
xdccpt
Mar 28 2004, 05:45 PM
any ideas in how to scan?
on port 4000 with Scan1000 and then Scanline i just found Remote-Anything 4.12.15 and 5.1.30 ...maybe cause its scanning TCP and not UDP
----------------------------------------------------------------------------------------
195.*.*.*
Responds with ICMP unreachable: No
TCP ports: 4000
TCP 4000:
[4.12.15 ,d -p` ra X ! x"} Y& P hv [+p m] t J ] iI[ C iY _S _: 2 ' ' V\ Ae y( a-]D ) Z M J@ iX!G Px B Z D Y q T Q b* f]
----------------------------------------------------------------------------------------
T3cHn0b0y
Mar 28 2004, 10:28 PM
That 'IS' why!

You need a user datagram protocol scanner. Use the search on this forum, theres one there in file downloads somewhere
Zero-X
Mar 28 2004, 10:50 PM
tnx al0t
bu tsimple wonder do I have to set up a Nc to receive the shell or does it auto reverse te shell ?
Nexcess
Mar 29 2004, 02:30 AM
| QUOTE (xdccpt @ Mar 28 2004, 05:45 PM) |
any ideas in how to scan?
|
If you can't figure out how to even scan for it, maybe you shouldn't be using it.
clubfed
Mar 29 2004, 01:15 PM
uh, just to save you kids some time (go read a book or something or go out and interact socially;) I'll mention -- there IS NO port to scan for this. The bug is in a firewall parsing engine, and the only "port" involved is the source port of the packet you send, but that has nothing to do with the target host. This is a blind exploit, you have to fire it at the host and hav ethe shellcode do something meaningful like download+exec code.. i already posted on this in the other thread so i'll stop there.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please
click here.