Meatballs
|
25ed68af6e
|
Land #3017, Windows x86 Shell Hidden Bind
A bind shellcode that responds as 'closed' unless the client matches the
AHOST ip.
|
2014-06-08 13:49:49 +01:00 |
|
Florian Gaultier
|
6332957bd2
|
Try to add SERVICE_DESCRIPTION options to psexec, but it doesn't seem to work...
|
2014-05-13 16:04:39 +02:00 |
|
Florian Gaultier
|
e269c1e4f1
|
Improve service_block with service_stopped block to cleanly terminate service
|
2014-05-13 16:04:38 +02:00 |
|
Florian Gaultier
|
c43e3cf581
|
Improve block_create_remote_process to point on shellcode everytime
|
2014-05-13 16:04:38 +02:00 |
|
Florian Gaultier
|
25d48b7300
|
Add create_remote_process block, now used in exe_service generation
|
2014-05-13 16:04:38 +02:00 |
|
Florian Gaultier
|
0bdf7904ff
|
Change author of single_service_stuff.asm
|
2014-05-13 16:04:38 +02:00 |
|
Florian Gaultier
|
513f3de0f8
|
new service exe creation refreshed
|
2014-05-13 16:04:36 +02:00 |
|
root
|
b4a22aa25d
|
hidden bind shell payload
|
2014-02-20 16:19:40 +01:00 |
|
HD Moore
|
3e0f3639ef
|
This adds a quick windows/loadlibrary payload for folks who have a need for such things. The library path can be a UNC location and works fine over WebDAV...
git-svn-id: file:///home/svn/framework3/trunk@12765 4d416f70-5f16-0410-b530-b9f4589650da
|
2011-05-30 03:44:59 +00:00 |
|
Stephen Fewer
|
c78b87a356
|
Add support for the ring0 stager_sysenter_hook payload to run its ring3 payload in a new thread in order to preserve/resume the original hijacked ring3 thread.
git-svn-id: file:///home/svn/framework3/trunk@9819 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-07-14 13:43:17 +00:00 |
|
Stephen Fewer
|
1e63f357cb
|
For now just adding in the new APC migrate stubs and the wow64->x64 exec stub. (fix up the build scripts and use a dedicated migrate directory for this stuff).
git-svn-id: file:///home/svn/framework3/trunk@8193 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-01-22 14:03:53 +00:00 |
|
Stephen Fewer
|
f3fd2eae80
|
Commit the new x64 migrate stub. Compatible with x64->x64 migration (and x86->x64 migration once the remote thread issue is resolved)
git-svn-id: file:///home/svn/framework3/trunk@8163 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-01-19 18:39:56 +00:00 |
|
Stephen Fewer
|
d032955959
|
Commit the new x86 migrate stub. Compatible with x86->x86 migration and x64->x86 migration, on NT4 and up (where applicable).
git-svn-id: file:///home/svn/framework3/trunk@8160 4d416f70-5f16-0410-b530-b9f4589650da
|
2010-01-19 12:55:24 +00:00 |
|
HD Moore
|
d0969746a4
|
Mostly cosmetic changes from local tree
git-svn-id: file:///home/svn/framework3/trunk@7970 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-12-26 03:31:20 +00:00 |
|
HD Moore
|
21e82d8b69
|
This patch implements a much more flexible executable creation scheme at the cost of exe size. This also adds the "-x" option to msfencode, allowing the user to specify their own executable template for generation.
git-svn-id: file:///home/svn/framework3/trunk@7315 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-11-01 04:11:43 +00:00 |
|
HD Moore
|
49b7dcb30c
|
Overhaul of the metasploit payloads from Stephen Fewer - smaller/cleaner/new hashing/support for WinNT 4.0 -> Win7 with size reductions for the stagers and minimal size increases for the singles
git-svn-id: file:///home/svn/framework3/trunk@6922 4d416f70-5f16-0410-b530-b9f4589650da
|
2009-07-31 17:50:10 +00:00 |
|