Results 1 to 5 of 5

Thread: Autor00ter/scanner for RPC/DCOM released in wild

  1. #1
    Senior Member
    Join Date
    May 2003
    Posts
    472

    Autor00ter/scanner for RPC/DCOM released in wild

    friends this is to inform u all...a new autorooter for RPC?DCOM was released today.....
    it comes with binaries for windows...but the linux source code needs a to be fixed...it takes the ip range as input....and gives u a shell as soon a vuln. system it encounters...after u have worked on the shell and existed ...it continues ....

    i think it uses ExitThread to not let the remote m/c get rebooted....also it seems to be using universal addresses of win2k and XP.....

    well for testing purpose u know where to locate it

    its kaht2.zip
    guru@linux:~> who I grep -i blonde I talk; cd ~; wine; talk; touch; unzip; touch; strip; gasp; finger; mount; fsck; more; yes; gasp; umount; make clean; sleep;

  2. #2
    Senior Member
    Join Date
    May 2003
    Posts
    207
    was that really a safe thing to post? lol, that CAN'T be safe

  3. #3
    Senior Member
    Join Date
    Nov 2001
    Posts
    4,785
    i really think you should caution people about downloading binaries from those who make backdoors, this isnt really a leet hacker hangout and someone wanting to test it themselfs like some of us here are touting could get seriously compromised. but thanks for the info NullDevice !
    Bukhari:V3B48N826 “The Prophet said, ‘Isn’t the witness of a woman equal to half of that of a man?’ The women said, ‘Yes.’ He said, ‘This is because of the deficiency of a woman’s mind.’”

  4. #4
    Senior Member
    Join Date
    May 2003
    Posts
    472
    Tedob1...point taken
    guru@linux:~> who I grep -i blonde I talk; cd ~; wine; talk; touch; unzip; touch; strip; gasp; finger; mount; fsck; more; yes; gasp; umount; make clean; sleep;

  5. #5
    Senior Member
    Join Date
    Feb 2002
    Posts
    500
    I have been meaning to scan my network, but have been discouraged to do so because all of the scanners seem to be infected. May be that they are not, but they just resemble the actuall virus, however I have no way of telling that or not. is there a safe way to scan my network using this? Or am I better off going machine to machine and phisically looking at each (which would take a very long time)?
    Ron Paul: Hope for America
    http://www.ronpaul2008.com/

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •