Full Disclosure mailing list archives

Re: Psexec on *NIX


From: Ron DuFresne <dufresne () winternet com>
Date: Mon, 10 May 2004 16:22:25 -0500 (CDT)

On Sat, 8 May 2004, Sean Crawford wrote:


Now again this is only an educated guess..........but I'm pretty sure the
latest Windblows patches stop the use of Psexec from being of much use at
all...


actually, most secured networks will stop this from working as remotely as
the requestor mentioned he'd like to use this tool.  Unless inside the
chewy center, and possibly even then, depending upon the policy enforced,
all the ports of access should be closed.  Course, since all the
worms/trojans/viruses that do their work on ports 135-139 and the even
nastier 445 et. al. prove that some policies enforced are pretty soft and
chewy from the get-go.

Thanks,

Ron DuFresne
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
"Cutting the space budget really restores my faith in humanity.  It
eliminates dreams, goals, and ideals and lets us get straight to the
business of hate, debauchery, and self-annihilation." -- Johnny Hart
        ***testing, only testing, and damn good at it too!***

OK, so you're a Ph.D.  Just don't touch anything.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: