Results 1 to 4 of 4

Thread: updated getcountermeasure script

  1. #1
    Member
    Join Date
    Feb 2010
    Location
    MTI3LjAuMC4x
    Posts
    90

    Default updated getcountermeasure script

    updated the popular script, did testing on all OS's out there seems to work ok in lab

    http://pastebin.com/fXF2jKwY

    update: 12/4/10 the script will now kill UAC on win7 if you have SYSTEM (requires a reboot)
    Last edited by spudgunman; 12-04-2010 at 08:31 AM. Reason: update to code more win7 happy

  2. #2
    Member
    Join Date
    Jun 2009
    Posts
    74

    Default Re: updated getcountermeasure script

    Glad to see this worked out for you. BTW I noticed you did the EnableLUA injection before the LocalAccountTokenFilterPolicy injection in your code. interesting it works this way. Have you already become System at that point? Or perhaps this script is just assuming you have already elevated. I guess I missed where the elevation of privs occurred. I thought the localaccount... injection was what bumped you up to NT Authority\System per that exploit I pointed you to.

    Either way glad it works. Nice work!

  3. #3
    Member
    Join Date
    Feb 2010
    Location
    MTI3LjAuMC4x
    Posts
    90

    Default Re: updated getcountermeasure script

    thanks for the feedback!!... yes I am still working on getting that link/code you sent me to work (with out much interaction so it can be scriptable) with metasploit

    with this script (getcountermeasure) it assumes that you have system via traditional methods or my other script (Bash | # $Id: killuac.rb spudgunman $ # # Meterpreter s - Getcountermeasure v2 script) once SYSTEM it will change the keys EnableLUA first because that is most common on domain attached systems second it will disable LocalAccountTokenFilterPolicy on non domain attached systems to allow SYSTEM access for remote (things like PSRun PSKill etc for RPC)

    that explain the thinking?

  4. #4
    Member
    Join Date
    Jun 2009
    Posts
    74

    Default Re: updated getcountermeasure script

    Perfectly. I just got out of my n00bie underoos recently apparently! Anyway this script looks like oodles of fun

Similar Threads

  1. Replies: 6
    Last Post: 10-08-2010, 11:40 PM
  2. Replies: 10
    Last Post: 07-12-2010, 03:04 PM
  3. Dr_green ISO updated BT3 to 2.6.28
    By doctorman in forum OLD Newbie Area
    Replies: 9
    Last Post: 01-23-2009, 04:55 PM
  4. Onesixtyone updated!
    By williamc in forum OLD BT3beta Software related issues
    Replies: 1
    Last Post: 05-06-2008, 12:09 PM
  5. updated update script
    By bofh28 in forum OLD BT3beta General
    Replies: 16
    Last Post: 02-29-2008, 06:38 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •