Metasploit mailing list archives

fgdump auxiliary equivalent


From: jack.t.pierce at googlemail.com (Jack Pierce)
Date: Thu, 3 Apr 2008 18:57:06 -0500

Yes please, particularly the CacheDump functionality that was added by
fgdump, and the fact that fgdump is detected by common AV, whereas when
using msf's psexec and priv's hashdump is not in my experience.

On Thu, Apr 3, 2008 at 9:02 AM, H D Moore <hdm at metasploit.com> wrote:

One thing you can do is use the windows/smb/psexec module to load
meterpreter, then use meterpreter to load 'priv', and priv to run
hashdump. I think fgdump does a bit more than just hashdump these days
and we should take another look at improving it.

-HD

On Thursday 03 April 2008, Giorgio Casali wrote:
Hi guys I was wondering if there is an auxiliary module that can dump
remote windows password hashes, provided one has admin privileges on
the remote host.

More or less something like fgdump, or like using hashdump after
getting a shell.


 _______________________________________________
http://spool.metasploit.com/mailman/listinfo/framework




-- 

jack
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.metasploit.com/pipermail/framework/attachments/20080403/932dccf0/attachment.htm>


Current thread: