Jump to content

Sentry MBA leaking real IP address


Recommended Posts

I did packet inspection with wireshark and Sentry MBA was running and after all proxies have been disabled and banned Sentry MBA makes connections to the login page with no proxy. Is there a setting to turn this off or is the version i downloaded malicious?

 

i got from many sites and here

http://www.crackingdrift.com/cracking-tools/61-sentry-mba-latest-version-1-4-1-a.html

http://www.crackingdrift.com/cracking-tools/423777-sentry-mba-latest-version-1-5-0-a.html

This is the hidden content, please

other cracking sites like this one

 

 

Update:

 

ok here is a screenshot of the bug. you can see all proxies are banned 0 Active, 0 Disabled, 253 Banned. Bottom left screen still says BruteForcing, it should say "waiting 800 seconds remaining". and in mini status window under Codes "420: 839" this number keeps going up. some bots/threads have a Reply column saying "Calling main URL - Last status: 420 - Header Empty - Until Timeout: 20 seconds" Every 20 seconds in a loop over and over again Sentry MBA connects to target domain name using no proxy. It not testing passwords, or even making HTTP request just raw TCP packets.

 

not sure what makes bug, but few things i see, bug starts when bad proxy or target server return empty header or empty packet. bug only starts when all proxies are disabled when sentry should be waiting 5min cool down to reactivate all proxies

 

Here is screenshot of the bug on Progression window

 

This is the hidden content, please

 

Here is screenshot of the bug on Proxylist window

notice how one proxy has 4882 Retries and this number keeps going up, sentry mba is not using that proxy though i check packet log in wireshark

This is the hidden content, please

 

Here is screenshot of how it should look when working correct

This is the hidden content, please

 

i create new sentry snapshot/config with most basic settings that make error:

This is the hidden content, please

 

Proxy list used important cus i think the bug happen when proxy return Empty Headers or empty packets

This is the hidden content, please

 

 

 

Update: It seems to happen when all proxies are currently banned, each bot/thread the reply column saying "Authenticating - Last status 420 - Header Empty - Until Timeout: 20 seconds" it seems to wait 20sec then tries to connect to the url again but with no proxy, this just loops over and over again.

 

anyone know why it does this? and why it doesn't use a proxy? i think this is a bug?

Edited by xxxpasswordz
Link to comment
Share on other sites

its not a config issue, if is wat setting needs changing? config very basic most settings off just to easy prove bug.

 

i check raw packets in wireshark the sentry mba makes and send packets not using proxy use wireshark and see urself in packet headers

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...