ExtAPI Pranks
Since I’ve been gone, OJ has released the ExtAPI (Extended API) for Meterpreter. This has some pretty amazing functionality. You can find OJ’s write up on it and more amazing things he did in 3 months of meterpreter and on the Metasploit blog.
Just brushing the surface and to help people see the power of this new functionality I went ahead and created a few Meterpreter scripts that can really mess with someone.
1st is a script that loops through all of the windows for your current user and sets the focus to them in rotation. Essentially making their machine unusable.
|
|
2nd just sets all of the windows title’s the say “hacked”
|
|
and finally if in Windows if you close all of the windows, including “invisible” ones like Explorer, you will essentially make the machine unusable.
|
|
OJ suggested a few other options:
Destroy:
|
|
or Minimize all:
|
|
Thats it for now, next up we will do a few things with services as well as the clipboard. Stay tuned!