Related Posts Plugin for WordPress, Blogger...

Using an internal Keylogger With Metasploit Meterpreter?

Posted by VdoCity Monday, September 19, 2011

Well, I have made lots of posts on keylogging indeed I have dedicated a whole book to this topic "An Introduction To keyloggers, RATS And Malware" Which is available as a free download, Now If you are a regular reader of this blog the Chances are very less bạn might not know about keyloggers as I have written about it over and over agai. Tuy nhiên in this post I will guide you simple ways to use a keylogger inside Meteasploit once you have opened up a session with victims Meterpreter computer. For Those of you who do not know what is Kindly refer the post Metasploit "Metasploit Explained For Beginners"


What is a Meterpreter?

Basically a meterpeter is a simple type of interface helps us in compltety mà Exploitation automating the process. If you would like to learn about Meterpreter furthur Kindly do a google search.

Requirements

* Metasploit Framework
* BackTrack 5
* A session opened on a box Meterpreter

How To Use A Keylogger Inside Meterpreter Using Metasploit?

In this case I am using backtrack from Metasploit Framework 5, Backtrack 5 is an awesome linux distro mà specially dedicated to hackers and penetration testers, I have used Social Engineering Toolkit autopwn to utilize a browser in order to open up a session on the Meterpreter victims computer.


Step 1 - Before We start the keylogger and start capturing logs, We would need to migrate explorer.exe process as our We do not want the exploit to get closed, In order to migrate the process We would need the PID of the process, In order to get the PID type "PS" on the command line.




Step 2 - Once you know the exact type process PID "Migrate" command along with the PID compared with incase if the PID is 1372, you will type "Migrate 1372"

Step 3 - Now just type "Keyscan_start" to start the keylogger.

Step 4 - Now just sit back and relax, keystores In order to harvest all you need to do is type the "Keyscan_dump" command.


I have liked this post and you have Learned some thing new today, If you would like to re-publish this article trên website / blog make sure you give a proper credit đó.

0 comments

Post a Comment