PG: ClamAV

The box name is "ClamAV". So it seems ClamAV is the next step. This is the first time I've seen SNMP be helpful for me. https://www.exploit-db.com/exploits/16924

Lessons Learned:

  1. Even if a program doesn't make sense at all, it can be piggybacking off an open port service. ClamAV -> SendMail 25
  2. Use snmp-check 192.168.232.42.
  3. Make pages for SMTP and SNMP enumeration.
  4. Used 2/3 hints.
  5. ~3 hours with hints
  6. Need better enumeration

Comments

Popular posts from this blog

Palo Alto for GNS3 CCDC Tutorial

Trace Labs Global Missing Persons CTF V

Release of CCDC ISE Manager Website