Metasploit mailing list archives

honoring route in aux modules


From: ihackstuff at gmail.com (j0hnny)
Date: Mon, 23 Apr 2007 21:54:56 -0400

Hey all!

First post, so be extra kind. =) Anyhow, I'm working on getting pivot
stuff to work, and I've had great luck with routing exploit modules
through "route", but no luck in getting aux modules to ehhh... route
through route.

For my testing, my payload is windows/meterpreter/reverse_tcp fired
through windows/browser/ms06_013_createtextrange. My target is natted
on a 10.8.1.0 net. He hits up the MSF url, meterpreter loads, I
interact with the session and add a route for 10.8.1.0 through that
session.

As I said, any further exploit module targeting the 10.8.1 net routes
through the session as expected. Aux modules, like sweep_udp ignore
the route and fail looking for 10.8.1 on my local net.

So anyhow, is there a way to get auxilliary modules to honor this type
of route? Sorry if this has been asked before. My Google Fu is tired.
;-) Thanks for all the great work. You've single-handedly gotten me
interested in learning Ruby.

j0hnny



Current thread: