telnet10.10.10.17110#loginuserorestispass1234656#list messageslist#read message numberretr1#To send email using STMP for LFI /var/mail/ValidUserHereEHLOhacker.anything.commailfrom:hacker@doesnt.matterrcptto:ValidVictim@MaildataSubject:emailtitle<your LFI code here><new blank line>
VRFY USER
nc-nv192.168.1.23025VRFYbob
VRFY SCRIPT (Python)
#!/usr/bin/pythonimport socketimport sysiflen(sys.argv)!=3:print"Usage: vrfy.py <username> <ipaddress>" sys.exit(0)print"Verifying user: "+ sys.argv[1]+" with "+ sys.argv[2]try: s=socket.socket(socket.AF_INET, socket.SOCK_STREAM)#create a socket connect=s.connect((sys.argv[2],25))#connect to the server banner=s.recv(1024)print banner s.send('VRFY '+ sys.argv[1] +'\r\n')#VRFY a user result=s.recv(1024)print"There is some response: "print resultexcept:print"Unable to verify. Server maybe offline/port filtered/unopened" s.close()finally: s.close()#close the socket)