Commit Graph

295 Commits (90500eebd1a47e5bcc1f68294468fc2854bfd25e)

Author SHA1 Message Date
Carlos Perez 5d78620a27 Full re-write of packetrecorder script
git-svn-id: file:///home/svn/framework3/trunk@10860 4d416f70-5f16-0410-b530-b9f4589650da
2010-11-02 02:05:12 +00:00
Joshua Drake e9fd935aa7 fix typo
git-svn-id: file:///home/svn/framework3/trunk@10856 4d416f70-5f16-0410-b530-b9f4589650da
2010-11-01 22:07:30 +00:00
Matt Weeks ca21c6df15 Add service option to persistence to keep escalated privileges through a reboot.
git-svn-id: file:///home/svn/framework3/trunk@10847 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-30 19:27:43 +00:00
cg 3b6d0177fd delete meter_inject.rb by request of carlos in the chan
git-svn-id: file:///home/svn/framework3/trunk@10838 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-28 01:06:37 +00:00
Carlos Perez 5fc38f15bb Keywords and removed un-used variable
git-svn-id: file:///home/svn/framework3/trunk@10837 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-28 00:42:16 +00:00
Carlos Perez c20326b829 Renamed meter_inject to multi_meter_inject, for single inbjections to memory use duplicate script, for multiple injection to diferent hosts use this one.
git-svn-id: file:///home/svn/framework3/trunk@10836 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-28 00:36:39 +00:00
Carlos Perez fc3df2303a Improvements thanks to jcran and some changes when used with sessions -s and AutoRunScript
git-svn-id: file:///home/svn/framework3/trunk@10826 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 02:30:08 +00:00
Carlos Perez 4054a21ec9 forgot to take debug puts
git-svn-id: file:///home/svn/framework3/trunk@10825 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 02:01:04 +00:00
Carlos Perez 60dcbcaa45 can now specify different versions of Reverse Meterpreter, multiple IPs and PIDs for multiple connections back, handler creation is now optional. Thanks to scriptjunkie for his duplicate script, this script is based on his work.
git-svn-id: file:///home/svn/framework3/trunk@10824 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 01:30:58 +00:00
Matt Weeks da3f263f2f Fix bug in duplicate script. Specifying target by PID should work now.
git-svn-id: file:///home/svn/framework3/trunk@10823 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-26 00:32:50 +00:00
Carlos Perez fcacbed530 Script for injecting in memory to another process given a PID or Process Name a Windows Meterpreter Reverse TCP payload
git-svn-id: file:///home/svn/framework3/trunk@10817 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:28:52 +00:00
Carlos Perez c4f9b60724 Script for EventLog Parsing, Enumeration and Clearing
git-svn-id: file:///home/svn/framework3/trunk@10816 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:26:59 +00:00
Carlos Perez ed53ac4cc8 Forgot meter_type var
git-svn-id: file:///home/svn/framework3/trunk@10815 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:21:31 +00:00
Carlos Perez 376088624c Script did not check for proper Meterpreter Platform
git-svn-id: file:///home/svn/framework3/trunk@10814 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:05:45 +00:00
Carlos Perez f77cdd1513 Script did not check for proper Meterpreter Platform
git-svn-id: file:///home/svn/framework3/trunk@10813 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-25 02:05:28 +00:00
Matt Weeks 31934868db Fix problem with incorrectly identifying vulnerable services.
git-svn-id: file:///home/svn/framework3/trunk@10796 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-23 20:14:28 +00:00
Carlos Perez ab2220f13d removed status printing and unused variables
git-svn-id: file:///home/svn/framework3/trunk@10793 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-23 14:40:49 +00:00
Joshua Drake 975cf8a741 move external files to a metasploit server
git-svn-id: file:///home/svn/framework3/trunk@10748 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-19 14:58:59 +00:00
Joshua Drake f997b37245 remove the kitrap0d meterpreter script in favor of the "getsystem" implementation, fixes #800, fixes #801
git-svn-id: file:///home/svn/framework3/trunk@10739 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 23:57:41 +00:00
Joshua Drake b364fc19a4 fix indent
git-svn-id: file:///home/svn/framework3/trunk@10738 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 23:23:45 +00:00
Joshua Drake 52260f47b1 add meterpreter scripts for deploying ssh client/server from illegal guy, closes #1728
git-svn-id: file:///home/svn/framework3/trunk@10737 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 23:20:24 +00:00
Joshua Drake 9ca53619f2 clean up meterpreter client object references, fixes #2987
git-svn-id: file:///home/svn/framework3/trunk@10732 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 20:26:18 +00:00
Carlos Perez a71ddb7b15 small typo
git-svn-id: file:///home/svn/framework3/trunk@10730 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-18 16:16:38 +00:00
HD Moore f88033f0cc Merge in R3L1K's Powershell enhancements and powerdump code (hashdump through powershell)
git-svn-id: file:///home/svn/framework3/trunk@10721 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-17 17:39:43 +00:00
HD Moore 893bc949f1 Fixes #2865 by merging in the submitted patch
git-svn-id: file:///home/svn/framework3/trunk@10715 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-16 22:07:29 +00:00
Matt Weeks 70774ba7cf Add script to escalate privs from most weak service permissions.
git-svn-id: file:///home/svn/framework3/trunk@10693 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-15 05:28:37 +00:00
Carlos Perez 4cb008be9c minor spelling error
git-svn-id: file:///home/svn/framework3/trunk@10664 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-13 01:06:15 +00:00
Carlos Perez 6a76865ca8 Google Chrome enumeration script with some minor modifications.
git-svn-id: file:///home/svn/framework3/trunk@10663 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-13 01:04:28 +00:00
Joshua Drake 19d5b4cd60 ignore comments/empty lines in rc
git-svn-id: file:///home/svn/framework3/trunk@10604 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-08 18:35:43 +00:00
Joshua Drake 9c54152d81 fail on errors
git-svn-id: file:///home/svn/framework3/trunk@10602 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-08 17:27:02 +00:00
Matt Weeks f04c1eddd2 Allow target specification by pid instead of name.
git-svn-id: file:///home/svn/framework3/trunk@10525 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-02 21:39:14 +00:00
Carlos Perez e91ec4dff4 smalll fix and added keywords
git-svn-id: file:///home/svn/framework3/trunk@10521 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-01 21:32:30 +00:00
Matt Weeks e01ec1670e Add script to spawn a new meterpreter session from another. Good for running keylogger in winlogon and explorer, insurance against crashes/AV, etc.
git-svn-id: file:///home/svn/framework3/trunk@10520 4d416f70-5f16-0410-b530-b9f4589650da
2010-10-01 20:34:10 +00:00
Carlos Perez 01f8d6b4f6 Speeded up enumeration by making the key reads threaded
git-svn-id: file:///home/svn/framework3/trunk@10481 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-26 01:19:22 +00:00
Carlos Perez d5cc7dc81a Updated to use Mixin is_uac_enabled? check and the new is_admin? check
git-svn-id: file:///home/svn/framework3/trunk@10453 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-24 00:08:53 +00:00
Joshua Drake 291027ee1f swap each_line for each
git-svn-id: file:///home/svn/framework3/trunk@10437 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-22 22:23:23 +00:00
Carlos Perez 16ae3c84e9 fixes to the script for when multiple accounts are logged on on target and Meterpreter is running as system.
git-svn-id: file:///home/svn/framework3/trunk@10358 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 21:19:04 +00:00
Carlos Perez a5c92b7a52 small fix
git-svn-id: file:///home/svn/framework3/trunk@10353 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 20:53:34 +00:00
Carlos Perez 2207e7737a script for enumerating shares being offered, mounted share history and UNC paths entered in the Run Dialog on Windows target Hosts.
git-svn-id: file:///home/svn/framework3/trunk@10352 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 20:36:22 +00:00
Carlos Perez 8fc701dcbf Updated RegEx
git-svn-id: file:///home/svn/framework3/trunk@10351 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 20:36:02 +00:00
Carlos Perez 0a34941a79 Process name is no longer case sensitive.
git-svn-id: file:///home/svn/framework3/trunk@10346 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 11:46:16 +00:00
Carlos Perez 3c8f86b8c0 Added option to query process size in Kilobytes with -q option
git-svn-id: file:///home/svn/framework3/trunk@10345 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 02:37:43 +00:00
Carlos Perez 529f95e200 writes memory as it gets it to the dump file so as to improve memory usage
git-svn-id: file:///home/svn/framework3/trunk@10344 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-17 00:26:34 +00:00
Carlos Perez 1cb4d17df7 small fix
git-svn-id: file:///home/svn/framework3/trunk@10340 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 19:51:35 +00:00
Carlos Perez 930973cacb Added ability to take a list of processes to look for and dump their memory with the -r option
git-svn-id: file:///home/svn/framework3/trunk@10338 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 19:43:35 +00:00
Carlos Perez bb842ea0b0 I need a speel checker
git-svn-id: file:///home/svn/framework3/trunk@10336 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 18:01:01 +00:00
Carlos Perez ebabb6af8f Typo and added error message
git-svn-id: file:///home/svn/framework3/trunk@10335 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 17:47:13 +00:00
Carlos Perez 47c46b7c01 Script for dumping a process memory give its pid or all instances of the process given its name. Based on Attack Research Presentation at Black Hat
git-svn-id: file:///home/svn/framework3/trunk@10334 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-16 17:38:54 +00:00
Stephen Fewer 66052df646 Tiny update to these two scripts that use railgun - we don't need to perform a 'client.core.use("railgun")' any more as railgun is directly in stdapi.
git-svn-id: file:///home/svn/framework3/trunk@10321 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-14 23:33:38 +00:00
Carlos Perez 7d665e8a8d All scripts that are not platform dependednt will check for version, windows specific will only run on win32, win64 and some on PHP
git-svn-id: file:///home/svn/framework3/trunk@10277 4d416f70-5f16-0410-b530-b9f4589650da
2010-09-09 16:09:27 +00:00