¡m¤À¨É¡nWindows 2000±Ò¥Îtelnet service | |
°ò©ó¦w¥þ¦Ò¶q¡A¦b¹w³]±¡ªp¤UWindows 2000¬O¨S¦³±Ò°Êtelnet service¨Ñ¨ä¥¦¹q¸£³sµ²¡C
¤£¹L§ÚÌ¥i¥H¦b¨t²ÎºÞ²z¤u¨ãªºªA°È¤¤¡A±N¥¦±Ò°Ê¡C
ÁöµM¦bªA°ÈùرҰʤFtelnet service¡A¦ý¬O¨ä¹w³]ÅçÃҤ覡¬°NTLM¡A©Ò¥H·|³y¦¨telnet³s½u¥¢±Ñ¡C
¬°¤F¦¨¥\³s½u¡A§ÚÌ¥i¥H³z¹L¨t²ÎºÞ²z¤u¨ãùتº¡§Telnet¦øªA¾¹ºÞ²z¡¨¨ÓקïNTLM³]©w¡C
±NNTLMªºÈ±q2קאּ0«á¡AÂ÷¶}µ{¦¡¡AµM«á«·s±Ò¥ÎªA°È¡A³o¼ËWindows 2000´N¯à´£¨ÑtelnetªA°ÈÅo¡ã
*ª`·N¡G±Ò°ÊtelnetªA°È¦b¦w¥þ¤W¦³¤@©wªº·ÀI¡A½Ð½T©w±z»Ýn¦¹ªA°È¦A¶}±Ò³á¡I
PS.NTLM¬O¤°»ò¡H
¦´ÁªºSMB¨ó©w¦bºô¸ô¤W©ú¤å¶Ç¿é¤f¥O¡A«á¨Ó¥X²{¤F"LAN Manager Challenge/Response"ÅçÃÒ¾÷¨î¡A²ºÙLM¡A
¥¦¤Q¤À²³æ¥H¦Ü«Ü®e©ö³Q¯}¸Ñ¡A·L³nÀH«á´£¥X¤FWindowsNT¬D¾Ô/¦^À³ÅçÃÒ¾÷¨î¡A§Y NTLM¡C
²{¦b¤w¸g¦³¤F§ó·sªºNTLMv2¥H¤ÎKerberosÅçÃÒÅé¨t¡CNTLM¤u§@¬yµ{¬O³o¼Ëªº¡G
1¡B¥Î¤áºÝº¥ý¦b¥»¦a¥[±K·í«e¥Î¤áªº±K½X¦¨¬°±K½X´²¦C
2¡B¥Î¤áºÝ¦V¦øªA¾¹µo°e¦Û¤vªº±b¸¹¡A³oÓ±b¸¹¬O¨S¦³¸g¹L¥[±Kªº¡A©ú¤åª½±µ¶Ç¿é
3¡B¦øªA¾¹²£¥Í¤@Ó16¦ì¤¸ªº¶Ã¼Æ¦rµo°eµ¹¥Î¤áºÝ¡A§@¬°¤@Ó challenge(¬D¾Ô)
4¡B¥Î¤áºÝ¦A¥Î¥[±K«áªº±K½X´²¦C¨Ó¥[±K³oÓ challenge ¡AµM«á§â³oÓªð¦^µ¹¦øªA¾¹¡C§@¬° response(¦^À³)
5¡B¦øªA¾¹§â¥Î¤á¦W¡Bµ¹¥Î¤áºÝªºchallenge ¡B¥Î¤áºÝªð¦^ªº response ³o¤TÓªF¦è¡Aµo°eºô°ì±±¨î¾¹
6¡Bºô°ì±±¨î¾¹¥Î³oӥΤá¦W¦b SAM±K½XºÞ²z®w¤¤§ä¨ì³oӥΤ᪺±K½X´²¦C¡AµM«á¨Ï¥Î³oÓ±K½X´²¦C¨Ó¥[±K challenge¡C
7¡Bºô°ì±±¨î¾¹¤ñ¸û¨â¦¸¥[±Kªº challenge ¡A¦pªG¤@¼Ë¡A¨º»ò»{ÃÒ¦¨¥\¡C
±q¤W±ªº¹Lµ{§ÚÌ¥i¥H¬Ý¥X¡ANTLM¬O¥H·í«e¥Î¤áªº¨¥÷¦VTelnet¦øªA¾¹µo°eµn¿ý½Ð¨Dªº¡A
¦Ó¤£¬O¥Î§A±½¨ìªº¹ï¤èºÞ²zûªº±b¤á©M±K½Xµn¿ý¡AÅãµM¡A§Aªºµn¿ý±N·|¥¢±Ñ¡C
Á|Ó¨Ò¤l¨Ó»¡¡A§A®aªº¾÷¾¹¦W¬°A(¥»¦a¾÷¾¹)¡A§A¤J«Iªº¾÷¾¹¦W¬°B(»·¦a¾÷¾¹)¡A
§A¦bA¤Wªº±b¤á¬Oxinxin¡A±K½X¬O1234¡A§A±½¨ìBªººÞ²zû±b¸¹¬OAdministrator¡A±K½X¬O5678¡A
·í§A·QTelnet¨ìB®É¡ANTLM±N¦Û°Ê¥H·í«e¥Î¤áªº±b¸¹©M±K½X§@¬°µn¿ýªº¾Ì¾Ú¨Ó¶i¦æ¤W±ªº7¶µ¾Þ§@¡A
§Y¥Îxinxin©M1234¡A¦Ó¨Ã«D¥Î§A±½¨ìªºAdministrator©M5678¡A
¥B³o¨Ç³£¬O¦Û°Ê§¹¦¨ªº¡A®Ú¥»¤£µ¹§A´¡¤âªº¾÷·|¡A¦]¦¹§Aªºµn¿ý¾Þ§@±N¥¢±Ñ¡C
¥Ñ©óTelnet¦øªA¾¹¹ïNTLMªº¨Ï¥Î¦³3ӿﶵ¡A©Ò¥H·í§ATelnet»·¦a¾÷¾¹®É¡A·|Åã¥Ü¤U±±¡ªp¤¤ªº¤@ºØ¡G
1)¨¥÷ÅçÃҿﶵ=0®É
=====================================
Microsoft (R) Windows (TM) Version 5.00 (Build 2195)
Welcome to Microsoft Telnet Service
Telnet Server Build 5.00.99201.1
login:
password:
¬°0®É¤£¨Ï¥ÎNTML¨¥÷ÅçÃÒ¡Aª½±µ¿é¤J¥Î¤á¦W©M±K½X¡A¤ñ¦p§A¥i¥H¿é¤J±½¨ìªºAdministrator©M5678
2)¨¥÷ÅçÃҿﶵ=1®É
=====================================
NTLM Authentication failed due to insufficient credentials. Please login withclear text username and password
Microsoft (R) Windows (TM) Version 5.00 (Build 2195)
Welcome to Microsoft Telnet Service
Telnet Server Build 5.00.99201.1
login:
password:
¥ý¹Á¸Õ NTLM ¨¥÷ÅçÃÒ¡A¦pªG¥¢±Ñ¡A¦A¨Ï¥Î¥Î¤á¦W©M±K½X¡A¨ä¹ê³oºØ¤è¦¡¹ï©ó§Ų́ӻ¡¡A»P¤W¤@ºØ¤è¦¡¨S¤°»ò°Ï§O
3)¨¥÷ÅçÃҿﶵ=2®É
=====================================
NTLM Authentication failed due to insufficient credentials. Please login withclear text username and password
Server allows NTLM authentication only
Server has closed connection
¿ò¥¢¹ï¥D¾÷ªº³s±µ¡C
C:\>
¥J²Ó¬Ý¬Ý¤W±ªºÅã¥Ü¡A®Ú¥»¨S¦³µ¹§A¿é¤J¥Î¤á¦W©M±K½Xªº¾÷·|¡Aª½±µÂ_¶}³s±µ¡A±½¨ì¤F±K½X¤]¬O¥Õ±½
|
|
♥¶¶¤l¦Ñ±Cªººô©ç¡A½Ð¦hÃö·Ó¡ã
If you don't like something, change it.
If you can't change it, change your attitude.
Don't complain!
|