Got my Virtual Machines running, now what?

Discussion in 'Ethical hacking' started by Preestar, Sep 27, 2011.

  1. Preestar

    Preestar New Member

    Joined:
    Sep 27, 2011
    Messages:
    5
    Likes Received:
    0
    Trophy Points:
    0
    Hello guys, i'm very new to the world of pen testing and such so I have had a read around and created my virtual setup which consists of 2 virtual boxes, 1 running windows xp professional SP3 and another running Backtrack 5.

    Now I have followed a VERY informative metasploit video on securitytube were he uses an exploit called
    I know it's old but need to start from the basics if im going to learn. I follow the video exactly but I made the mistake of downloading with SP3 installed therfor that exploit doesnt work.

    The thing is when I go on the microsoft website and search for exploits for Windows XP Professional - SP3 it shows lots and lots of exploits, but when I search for them in metasploit using "Search MSXX-XXX" it doesnt find any!

    I really want to break into my dummy computer but im having trouble finding exploits, I think I found afew exploits but I dont understand what the exploit does and what the payloads that are asscociated with that exploit do.

    This is very confusing stuff for me so please try and help and explain in a very easy to understand way if possible.

    This is a far as I got but it didnt create the account

    Thank you so much for any help you can provide.
     
  2. Preestar

    Preestar New Member

    Joined:
    Sep 27, 2011
    Messages:
    5
    Likes Received:
    0
    Trophy Points:
    0
    Sorry for the double post but I cant edit my own one and it wont let me use links so the exploit is called MS03-026 I think which is RPC DCOM which can allow for code execution. and I tried to post a screenshot to prove I am doing this on my own PC incase some people are worried to help.

    Again sorry for DP
     
  3. Preestar

    Preestar New Member

    Joined:
    Sep 27, 2011
    Messages:
    5
    Likes Received:
    0
    Trophy Points:
    0
  4. Alex.Gabriel

    Alex.Gabriel New Member

    Joined:
    Oct 23, 2011
    Messages:
    86
    Likes Received:
    7
    Trophy Points:
    0
    Occupation:
    Linux system administrator
    Location:
    Italy
    Home Page:
    http://blog.evilcoder.net
    I didn't know that Microsoft posts exploits for Windows on theyr site. maybe you have seen some patches ...
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice