ASSIGNMENT #2 ///////////////////////////////////////////////////////////////////////////////
FOR THIS ASSIGNMENT YOU HAVE TO PICKUP ONE OF THE GENERATORS OR AN EXPLOIT SCRIPT FROM THE
SOLID SOFTWARE SOLUTIONS FILE SERVER. I GRABBED THE SMTP EXPLOIT SCRIPT SO AS TO SHOW HOW
THEY WORK. IN #3 I WILL USE THE DICTIONARY ATTACK.
#############################################################################################
//
CMD // pscan:41.15.67.115 // 8:08 PM 7.15.03
//
START // Initializing Port Scanner... // 8:08 PM 7.15.03
SCAN // Port Scanning: 41.15.67.115 // 8:09 PM 7.15.03
// --------------------------------------------------------------- // 8:11 PM 7.15.03
OPEN // Port: 11 Class: Miscellaneous Active Users // 8:11 PM 7.15.03
OPEN // Port: 21 Class: Connection File Transfer Protocol // 8:11 PM 7.15.03
OPEN // Port: 25 Class: Connection Simple Mail Transfer // 8:11 PM 7.15.03
OPEN // Port: 107 Class: Connection Remote Telnet Service // 8:11 PM 7.15.03
OPEN // Port: 139 Class: Connection NETBIOS Session Service // 8:11 PM 7.15.03
OPEN // Port: 213 Class: Connection IPX // 8:11 PM 7.15.03
OPEN // Port: 547 Class: Miscellaneous DHCP Server // 8:11 PM 7.15.03
OPEN // Port: 9841 Class: Connection Real Secure // 8:11 PM 7.15.03
// --------------------------------------------------------------- // 8:11 PM 7.15.03
// Scan Completed : 8:11 PM 7.15.03 // 8:11 PM 7.15.03
PSCAN // Ports Vulnerable : False // 8:11 PM 7.15.03
EXIT // Terminating Port Scanner // 8:11 PM 7.15.03
//
CMD // c:\downloads // 8:35 PM 7.15.03
//
DIR // File Name Size Type E C Date // 8:35 PM 7.15.03
// =============================================================== // 8:35 PM 7.15.03
// library.exe 320k .exe 0 0 7.15.03 // 8:35 PM 7.15.03
// practice.doc 71k .doc 0 0 7.15.03 // 8:35 PM 7.15.03
// smtp.scp 34k .scp 0 0 7.15.03 // 8:35 PM 7.15.03
//
CMD // run:smtp.scp:41.15.67.115 // 8:52 PM 7.15.03
//
RUN // Script Running on 41.15.67.115, Port 25 // 8:52 PM 7.15.03
// Exploit Script has successfully opened port 25 // 9:02 PM 7.15.03
//
CMD // connect:41.15.67.115:25 // 9:08 PM 7.15.03
//
// Connecting to: 41.15.67.115 on port 25 // 9:08 PM 7.15.03
// WAN Connection Established to (41.15.67.115)... // 9:09 PM 7.15.03
// This is a practice server to test your skill. // 9:09 PM 7.15.03
//
CMD // c: // 9:16 PM 7.15.03
//
DIR // File Name Size Type E C Date // 9:16 PM 7.15.03
// =============================================================== // 9:16 PM 7.15.03
// documents\ 0 0 5.01.03 // 9:16 PM 7.15.03
// macross\ 0 0 5.01.03 // 9:16 PM 7.15.03
// programs\ 0 0 5.01.03 // 9:16 PM 7.15.03
// autoexec.bat 12k .bat 0 0 5.01.03 // 9:16 PM 7.15.03
// config.sys 6k .sys 0 0 5.01.03 // 9:16 PM 7.15.03
//
CMD // c:\documents\ // 9:22 PM 7.15.03
//
DIR // File Name Size Type E C Date // 9:22 PM 7.15.03
// =============================================================== // 9:22 PM 7.15.03
// admin\ 0 0 5.01.03 // 9:22 PM 7.15.03
// user\ 0 0 5.01.03 // 9:22 PM 7.15.03
//
CMD // c:\documents\user\ // 9:23 PM 7.15.03
//
DIR // File Name Size Type E C Date // 9:23 PM 7.15.03
// =============================================================== // 9:23 PM 7.15.03
// applications\ 0 0 5.01.03 // 9:23 PM 7.15.03
// security\ 0 0 6.15.03 // 9:23 PM 7.15.03
// ntuser.dat 120k .dat 0 0 5.01.03 // 9:23 PM 7.15.03
//
CMD // c:\documents\user\security\ // 9:25 PM 7.15.03
//
DIR // File Name Size Type E C Date // 9:25 PM 7.15.03
// =============================================================== // 9:25 PM 7.15.03
// logs.txt 22k .txt 0 0 6.15.03 // 9:25 PM 7.15.03
//
CMD // l: // 9:32 PM 7.15.03
//
DIR // File Name Size Type E C Date // 9:32 PM 7.15.03
// =============================================================== // 9:32 PM 7.15.03
// documents\ 0 0 11.12.02 // 9:32 PM 7.15.03
// downloads\ 0 0 7.15.03 // 9:32 PM 7.15.03
// macross\ 0 0 11.12.02 // 9:32 PM 7.15.03
// notes\ 0 0 11.12.02 // 9:32 PM 7.15.03
// programs\ 0 0 7.15.03 // 9:32 PM 7.15.03
// autoexec.bat 12k .bat 0 0 11.12.02 // 9:32 PM 7.15.03
// config.sys 6k .sys 0 0 11.12.02 // 9:32 PM 7.15.03
// logs.txt 21k .txt 0 0 7.15.03 // 9:32 PM 7.15.03
//
CMD // upload:c:\logs.txt // 9:41 PM 7.15.03
//
COPY // File Upload In Progress... ETA:1 Minutes // 9:41 PM 7.15.03
DONE // File Upload Complete: logs.txt // 9:43 PM 7.15.03
//
CMD // c:\documents\user\security\ // 10:09 PM 7.15.03
//
DIR // File Name Size Type E C Date // 10:09 PM 7.15.03
// =============================================================== // 10:09 PM 7.15.03
// logs.txt 21k .txt 0 0 7.15.03 // 10:09 PM 7.15.03
//
CMD // disconnect: // 10:17 PM 7.15.03
//
ABORT // Connection Terminated // 10:17 PM 7.15.03
#############################################################################################
IF YOU LOOK CLOSELY, BEFORE I UPLOADED THE NEW FILE THE DATE AND SIZE ON THE OLD LOGS.TXT
WAS 22K AND 6.15.03; AFTERWARDS IT CHANGED TO THE DATE AND SIZE OF LOGS.TXT FROM MY LOCAL C:\
ANOTHER WAY TO CONFIRM THE CHANGE IS TO CHECK THE DATA BETWEEN THE TWO DOCUMENTS. IF THERE
IS READABLE THAT IS. |