Metasploit mailing list archives

Reverse shell bind payload


From: norma.snockers at hotmail.co.uk (Norma Snockers)
Date: Thu, 8 Nov 2007 07:08:28 -0000

Why don't you ensure that the target has remote desktop enabled

Show you cannot logon

Shell the target, add an account and add it to the local admin group both via command line

Logon via remote desktop and show you have been added to the local admin.

Simple but effective.

NS
  ----- Original Message ----- 
  From: base64 
  To: framework at metasploit.com 
  Sent: Thursday, November 08, 2007 1:39 AM
  Subject: Re: [framework] Reverse shell bind payload


  you are most likely running the shell under context of the 'SYSTEM' user, whose processes do not interact with the 
user desktop.


  On Nov 7, 2007 6:23 PM, G Portokalidis < georgios.portokalidis at gmail.com> wrote:

    Hello,
    I'm trying to use metasploit for a demo and i'm using the reverse bind 
    payload to get a shell on a VM running windows 2000.
    The shell works fine, but i would like to be able to open some random
    windows within the remote VM to easily demonstrate to
    non-knowledgeable people that i'm in. 

    Running something like notepad from the bind shell, does start the
    process but the window never appears. Does anybody have any clues on
    why this is happening? Nothing critical, but it is really making it
    harder to demonstrate the framework.

    Cheers,
    G.




  -- 

  Best Regards,
  Adrian Castro
  Senior Software Engineer
  (310)765-0627 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.metasploit.com/pipermail/framework/attachments/20071108/36779a9e/attachment.htm>


Current thread: