1 00:00:00,540 --> 00:00:01,720 So what is in this video? 2 00:00:01,740 --> 00:00:10,700 We are going to bypass the firewall rules, so before this first let me go to this advantage settings 3 00:00:10,710 --> 00:00:14,670 of this firewall and let me create the old boundaries. 4 00:00:15,930 --> 00:00:19,830 So click on this new rule and choose the port anchored next. 5 00:00:20,130 --> 00:00:28,450 No, I'm going to block that four thousand two three 4000 to 4500 ports. 6 00:00:29,440 --> 00:00:35,490 So I'm blocking 500 ports from the 4000 to 4400 or so in between them. 7 00:00:36,000 --> 00:00:43,080 Uh, this computer cannot connect to their destination, but if the port is in between the 4000 and 8 00:00:43,080 --> 00:00:47,310 4500 could connect and the connection. 9 00:00:49,290 --> 00:00:57,270 And that's a name that's our all boats so preconference. 10 00:00:58,970 --> 00:01:07,400 OK, now my rule was to know that Windows computer cannot cannot from the four four four four. 11 00:01:08,290 --> 00:01:14,650 So we need to, uh, generate the payroll, uh, that will connect to multiple ports. 12 00:01:14,830 --> 00:01:18,130 To do that, we need to have A minus B windows. 13 00:01:18,790 --> 00:01:19,890 So there is a payroll. 14 00:01:19,900 --> 00:01:24,310 That is the, uh, meter operator. 15 00:01:27,470 --> 00:01:33,290 And the pattern is reversed, Giuseppe Underscore Output's. 16 00:01:36,150 --> 00:01:38,940 So I me define the host. 17 00:01:45,300 --> 00:01:53,570 Which is my computer IP address, and the airport is equal to four four four four and it's architecture 18 00:01:53,790 --> 00:02:00,870 36 and output format Xixi and greater than, let's say. 19 00:02:06,040 --> 00:02:17,260 Ah, so now what this does is this will create the reverse on the CPI reports, this payroll tax for 20 00:02:17,260 --> 00:02:20,000 the airport, four four four four 21 00:02:24,030 --> 00:02:25,330 four four four four four. 22 00:02:25,450 --> 00:02:33,340 And then if the report is brokered, ah, there is no connection to the, uh, our commission, then 23 00:02:33,580 --> 00:02:39,370 this spirit will try to connect to are the ports available from starting onwards. 24 00:02:39,790 --> 00:02:46,380 So this is a very useful when there are certain ports, then it will try to connect to ah the ports. 25 00:02:46,960 --> 00:02:49,510 Now let's try to build this. 26 00:02:56,680 --> 00:02:56,990 OK. 27 00:02:57,050 --> 00:03:05,170 Meanwhile, meanwhile, let's create this pseudo IP tables. 28 00:03:07,690 --> 00:03:15,580 So before that, first, let's get cured of the four four four four four, let's use this exploit Martingrove. 29 00:03:20,850 --> 00:03:22,050 You need to set the payroll. 30 00:03:46,070 --> 00:03:51,660 And he said that he as our IP address and the reports of four four four four. 31 00:03:53,660 --> 00:04:00,590 So now let's go on this and on this handwritten note, let's compare this to their desktop. 32 00:04:05,380 --> 00:04:12,370 So let me copy this in to the transmission and execute this one. 33 00:04:14,740 --> 00:04:19,310 So there are no handlers for other sports other than four four four four. 34 00:04:19,670 --> 00:04:25,600 No, I'm going to show you that this we do not get the connection because the four four four four is 35 00:04:25,600 --> 00:04:30,000 in between the 4000 4500 and the connection will be back at for a while. 36 00:04:31,600 --> 00:04:33,490 So I have run that executable. 37 00:04:33,670 --> 00:04:37,980 As you can see, we did not get any connection. 38 00:04:38,320 --> 00:04:49,510 So our experts will know why we are exposed to this binary will be trying to are the sports from starting 39 00:04:49,720 --> 00:04:52,410 out like one to 64 to identify. 40 00:04:52,600 --> 00:04:58,880 And if there is any handler, right, a multi handler on our colonics machine, then it will connect 41 00:04:58,880 --> 00:04:59,940 to the handler. 42 00:05:00,700 --> 00:05:07,570 So further, what we going to do is we need to redirect those spots to this one book, which we can 43 00:05:07,570 --> 00:05:08,740 run our multi handler. 44 00:05:08,980 --> 00:05:15,380 So to do that, we need to to the IP tables and we need to add the rule to the. 45 00:05:16,240 --> 00:05:23,510 So we are already told you this preloading is in the table that we need to finish whether or not I need 46 00:05:23,540 --> 00:05:30,100 a special protocol, which is PXP, uh, because we are using the DCP and its character use, that is 47 00:05:30,100 --> 00:05:36,840 if we can actually let it be put to 4000 to 5000. 48 00:05:37,900 --> 00:05:46,090 So if there are any connections coming for the spot in between 4000 and 5000 now I want to take the 49 00:05:46,090 --> 00:05:48,220 action, which is called redirect. 50 00:05:49,150 --> 00:05:49,990 Redirect. 51 00:05:50,200 --> 00:05:52,550 I need to see this file to vote. 52 00:05:54,100 --> 00:05:56,400 And I need to is one, two, three, four. 53 00:05:57,700 --> 00:05:59,650 I think that what the report. 54 00:06:00,220 --> 00:06:01,980 So three, four. 55 00:06:01,990 --> 00:06:02,680 Four four four. 56 00:06:06,540 --> 00:06:13,740 So what we are doing is if we need a correction that is going to be the destination port of 4000 and 57 00:06:13,740 --> 00:06:18,210 5000, then we are going to get all the data into this four four, four four. 58 00:06:18,900 --> 00:06:20,160 Now, let's go on this. 59 00:06:20,160 --> 00:06:20,790 On this. 60 00:06:22,900 --> 00:06:33,550 OK, now it's whenever we run this, we have already this, unfortunately, is going on and resiting 61 00:06:34,390 --> 00:06:40,180 train to our airports and whenever we have added this route, oh, the connections between this photo 62 00:06:40,780 --> 00:06:42,520 has two four four four four. 63 00:06:43,300 --> 00:06:46,660 You can see their positions open because we have run that two times. 64 00:06:52,040 --> 00:06:57,310 So as you can see, that's a different issue for these four four four four four four four four. 65 00:06:57,660 --> 00:07:04,610 The sport is somewhat higher because it may be taking from the backwards on the failure or it's trying 66 00:07:04,620 --> 00:07:05,470 the right number. 67 00:07:05,870 --> 00:07:11,720 So we don't care about the sore spot because the sport is on the witness stand machine and it's connecting 68 00:07:11,720 --> 00:07:15,400 to, uh, this four four four four. 69 00:07:16,410 --> 00:07:20,690 I think it's connecting to somewhere in between 4000 and 5000. 70 00:07:21,140 --> 00:07:24,840 And that's why we got routed to this four four four four. 71 00:07:25,310 --> 00:07:31,940 So we have two sessions open because I have got this to show you previously that we did not get any 72 00:07:31,940 --> 00:07:32,350 connection. 73 00:07:33,110 --> 00:07:41,120 So it has connected to Time's Up because well, first time I have run two times, the first time it 74 00:07:41,120 --> 00:07:44,360 has gotten between 4000 and 5000. 75 00:07:44,570 --> 00:07:47,820 So you have got four four in the same time in the second time is the same. 76 00:07:48,980 --> 00:07:51,380 So finally we got the sessions. 77 00:08:03,230 --> 00:08:08,750 So even though we have the firewall rules for the 4000 and 5000, we have successfully fought and fought 78 00:08:08,780 --> 00:08:14,960 and 400 of them successfully, uh, are bypassed those firewalls. 79 00:08:15,650 --> 00:08:22,430 So why we have to fight other means, we will get some more extra space over the 4400. 80 00:08:22,700 --> 00:08:25,920 So you can also say 4000 to 65000 for. 81 00:08:26,300 --> 00:08:27,240 It's not a problem. 82 00:08:28,490 --> 00:08:29,740 So that's our goal for this. 83 00:08:29,960 --> 00:08:31,010 I hope you have understood.