Metasploit mailing list archives

Re: meterpreter newbie


From: Jeffs <jeffs () speakeasy net>
Date: Mon, 18 Jan 2010 18:37:45 -0500

Actually I'm glad someone asked -- I've always wondered what exactly do those two commands do.

Can someone elaborate on them?  What do they do?

getprivs
revert2self

Thanks.

HD Moore wrote:
On 1/18/2010 3:49 PM, arthur zhang wrote:
This should work - try migrating to lsass.exe
Thanks HD. But I can't see lsass.exe from ps cmd (plmt.exe is my payload).
I pick up a small pid cmd.exe but the migration take forever. Arthur

Ah, you are running with reduced privileges. Try running "getprivs" and
"revert2self". As the IUSR account you will not be able to migrate into
a SYSTEM process (by design). This is like www-user trying to become root.

-HD
_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework



_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework

Current thread: