Full Disclosure mailing list archives

RE: DCOM RPC exploit (dcom.c)


From: "Mortis" <m0rtis () adelphia net>
Date: Wed, 30 Jul 2003 07:52:40 -0400

A man named Tom once bragged:
I used nmap to scan a random /16 for systems with
port 135 open,
Then I ran the win32 binary I compiled from from
the c code posted to this list
against that list of ips.
I got 156 command prompts.

Then Donny chimed in with:
i too have experienced these percentages in a
block of ip addresses ..

That's all you got??  I musta got 2000 command prompts
yesterday while I was scanning through the .gov address
space.  Boring...

China is good, too.  Every machine has the newest OS on it.
What's up with that?  All your vases are belong to Mortis.

Don't bother scanning Iceland, though, they are still using
Win3.1 and the sploit don't work right.  Can someone fix it
and send it to me?  TIA.  They need to stop partying so much
and upgrade their OSs to something with more recent bugs.
NE1 have a good Commodore sploit?  I'll 0wn your sprites
yet, Iceland!

Either of you two wanna trade a .nasa.gov for an aol account
and a beanie baby?  I need an aol account real bad so I can
send out my Nigerian money spam.  I gotta pay off my
gambling debts or I might have to learn how to type with one
hand.  That w00d suck.

The beanie baby is not negotiable.  I want a beanie baby if
I'm gonna give up a g00d machine.

The Jerry one or the deal's off.
http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItem&item=314000327
7&category=1639
--
Behold, thou art but a dead man,,
m0rtis

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: