Metasploit mailing list archives

Metasploit vs ANI


From: morning_wood at frame4.com (Donnie Werner)
Date: Thu, 5 Apr 2007 02:48:51 -0700

what is your attack machine?
It seems that the exploit works when it is launched from: MAC OSX, Gentoo, 
BackTrack... but has some problems when launched from Windows (Unicode...)

under limited testing: MSF 3 win32 -vs- ANI

Target:
Windows XP SP2 / Software DEP default
IE: 6.0.290.2180.xpsp.050301-1521
user32.dll: 5.1.2600.2622
userenv.dll: 5.1.2600.2180

EXPLOIT    windows/browser/ani_loadimage_chunksize


Tested Successfull:
TARGET    Windows XP SP2 user32.dll 5.1.2600.2622
PAYLOAD    generic/shell_reverse_tcp

Tested Unsuccessfull:
TARGET:        Automatic, Windows XP SP2 userenv.dll English
PAYLOADS: windows/download_exec, windows/download_exec/reverse_http, 
windows/shell/reverse_http

Not tested:
all else


cheers,
M.W 




Current thread: