Sploitus

Exploit for CVE-2017-0144

gitee Β· 2020-07-01

Exploit Code

MARKDOWN2 lines
## https://sploitus.com/exploit?id=4EC4A0E9-6252-572E-AC82-22FBDF566631
PoC exploit for CVE-2017-0144, also known as Eternalblue-Doublepulsar. This Metasploit module exploits the vulnerability to install a Doublepulsar backdoor on a Windows system. The module targets the SMB protocol, specifically the Ring 0 SMB (TCP 445) backdoor. The exploit is designed to run on Windows systems with the x86 or x64 architecture. The module has several parameters, including the target IP address, port, protocol, architecture, and function. The function can be set to either output the install shellcode to a binary file on disk or to test for the presence of the backdoor. The module also has a parameter for the DLL to inject into a user mode process.