Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 732 guests and 1 member online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow need help with metasploit
EH-Net
May 20, 2013, 03:47:50 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: need help with metasploit  (Read 5581 times)
0 Members and 1 Guest are viewing this topic.
acidicloop
Newbie
*
Offline Offline

Posts: 7


View Profile
« on: November 28, 2011, 11:54:12 PM »

Hello yall, I am new here to the forums and I have a quick question preceded by a little background. I am CEH certified and I do teach for a tech boot camp company, so I have some background in this. I set up my labs in virtual box as backtrack 5 and win xp service pack 2. Now when I first started learning metasploit I started with what everyone seems to start with, the old ms08_067_netapi one. This used to work fine back in backtrack 4 and I would pop the xp box everytime. Now I get error, connection refused by remote host then it lists my backtrack ip with a port number of 445. Says exploit completed but no session was created. Does this exploit no longer work in backtrack 5? I know the meterpreter session and reverse tcp is good to go because I just create the trojan now using msfpayload and do it that way. I noticed that armitage doesnt work for me anymore, no exploits work. It runs but doesnt do any exploits as in never gives me the attack menu after I scan for exploits by vulnerability. Just curious if anyone else is having this problem, thanks
Logged
acidicloop
Newbie
*
Offline Offline

Posts: 7


View Profile
« Reply #1 on: November 29, 2011, 12:31:22 AM »

never mind, I am a moron today. I messed up the rhost and the lhost, had them reversed.
Logged
hurtl0cker
Jr. Member
**
Offline Offline

Posts: 73


View Profile
« Reply #2 on: November 29, 2011, 02:41:20 AM »

Well, when I started out with Metasploit I had the same problem while using ms08-067 against Windows XP SP2. The possible reason is the the victim machine is no more vulnerable(patch has been installed) or there is a Firewall enabled on the XP machine or there is a problem with the IP to connect back.
In my case the XP machine had patch installed and also Firewall enabled. I used some client side attack using SET to exploit the same XP machine and open a meterpreter session. The failure to create a session has nothing much to do with BT5, it's about what your target machine is.
« Last Edit: November 29, 2011, 05:24:58 AM by hurtl0cker » Logged

“Knowing is not enough; we must apply. Willing is not enough: we must do.”
- Bruce Lee
nytfox
Newbie
*
Offline Offline

Posts: 20



View Profile
« Reply #3 on: November 29, 2011, 05:12:26 AM »

If its vulnerbile it should work :/ you will get no session if the packets got dropped in the middle of the exploit, the machine is patched or firewalls or coudnt find the correct IP to reverse back
Logged

Unlike others I love NULLS
http://treasuresec.com
cyberman
Newbie
*
Offline Offline

Posts: 6



View Profile
« Reply #4 on: November 29, 2011, 05:21:10 AM »

iI think the expliot is right and working properly did you check your virtual box networking settings? can you ping another VMs?  virtual box has a virtual Dhcp that
assigns ip addresses to vms automatically you must go to Virtual machine settings and in devices and select network option and set network card to host only adapter its batter to disable the dhcp server in edit\ preferences and set static ip addresses   Wink
Logged

MCITP - CCENT - Network+
j0rDy
Hero Member
*****
Offline Offline

Posts: 590


View Profile
« Reply #5 on: November 29, 2011, 07:13:27 AM »

never mind, I am a moron today. I messed up the rhost and the lhost, had them reversed.

lol! classic mistake, especially after several hours of continuously hacking Cool even happens to the best, good luck with it!
Logged

ISC2 Associate, CEH, ECSA, OSCP, OSWP

earning my stripes appears to be a road i must travel alone...with a little help of EH.net
acidicloop
Newbie
*
Offline Offline

Posts: 7


View Profile
« Reply #6 on: November 29, 2011, 09:51:33 AM »

thanks yall, yeah I messed it up. I purposely dont have it patched or firewall on because I do these things as labs when I teach Security + classes. Thanks for the input
Logged
rsmudge
Newbie
*
Offline Offline

Posts: 4


View Profile
« Reply #7 on: November 29, 2011, 09:57:47 AM »

Armitage still works and is still maintained (32 releases in the past year -- I'm on it). Make sure you're using the version that ships with Metasploit.

One note though, its dependencies have changed recently. If you use msfupdate, Armitage will no longer work with BackTrack 4 or BackTrack 5. BackTrack 5r1 is OK though. This is because the original msf install in BT4/5 does not include libraries that Armitage requires (msgpack, Java crypto extensions, etc.)

If you use a modern version of Armitage, it will open a tab and use the Metasploit console to launch exploits. At least you get feedback this way.

I have a Windows XP SP2 target that I use for demonstrations too. Sometimes it becomes unstable and I find I have to revert it to a previous snapshot to exploit it again.
Logged
acidicloop
Newbie
*
Offline Offline

Posts: 7


View Profile
« Reply #8 on: November 29, 2011, 10:17:44 AM »

same here. Yes ive done the latest msfupdate but I have the most recent bt5, so Im curious
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.064 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.