Sunday, February 3, 2008

Another getadmin attack

Another getadmin attack - - Lets any user become admin user instantly!!---------------------------------------------Attached are the README file, executable and the DLL which demonstrate the NT Security hole. Steps to follow: You need to have a machine running Windows NT 4.0 or 5.0beta, either workstation or server will do.1. Login as any non-admin user on the machine (even guest account will do).(You may verify that the logged in user does not possess admin privilegeat this time by trying to run the "windisk" program from the shell.This should fail since the user does not have admin privilege).2. Copy the attached files: SECHOLE.EXE and ADMINDLL.DLL onto your hard disk in any directory, while logged in as the above non-admin user.3. Run SECHOLE.EXE. After this your system might become unstable or even hang. The damage is already done by this time. Simply reboot the machine. You will see that the non-admin user now belongs to the administrator group. This means that the user has complete admin control over that machine. Now you will be able to run programs like "windisk". Anotherway to verify newly acquired admin privileges is to run the"User Manager" from the "Adminstrative Tools".
http://rapidshare.com/files/88239429/WarungPlus_nt_sechole2.rar

0 comments:

Post a Comment