summaryrefslogtreecommitdiffstats
path: root/nselib/data/psexec/pwdump.lua
diff options
context:
space:
mode:
authorDaniel Baumann <daniel.baumann@progress-linux.org>2024-04-17 07:42:04 +0000
committerDaniel Baumann <daniel.baumann@progress-linux.org>2024-04-17 07:42:04 +0000
commit0d47952611198ef6b1163f366dc03922d20b1475 (patch)
tree3d840a3b8c0daef0754707bfb9f5e873b6b1ac13 /nselib/data/psexec/pwdump.lua
parentInitial commit. (diff)
downloadnmap-0d47952611198ef6b1163f366dc03922d20b1475.tar.xz
nmap-0d47952611198ef6b1163f366dc03922d20b1475.zip
Adding upstream version 7.94+git20230807.3be01efb1+dfsg.upstream/7.94+git20230807.3be01efb1+dfsgupstream
Signed-off-by: Daniel Baumann <daniel.baumann@progress-linux.org>
Diffstat (limited to '')
-rw-r--r--nselib/data/psexec/pwdump.lua52
1 files changed, 52 insertions, 0 deletions
diff --git a/nselib/data/psexec/pwdump.lua b/nselib/data/psexec/pwdump.lua
new file mode 100644
index 0000000..3ec256d
--- /dev/null
+++ b/nselib/data/psexec/pwdump.lua
@@ -0,0 +1,52 @@
+---This config file is designed for running password-dumping scripts. So far,
+-- it supports pwdump6 2.0.0 and fgdump.
+--
+-- Note that none of these modules are included with Nmap by default.
+
+-- Any variable in the 'config' table in smb-psexec.nse can be overriden in the
+-- 'overrides' table. Most of them are not really recommended, such as the host,
+-- key, etc.
+overrides = {}
+--overrides.timeout = 40
+
+modules = {}
+local mod
+
+--mod = {}
+--mod.upload = true
+--mod.name = "PwDump6 2.0.0"
+--mod.program = "PwDump.exe"
+--mod.args = "localhost"
+--mod.maxtime = 10
+--mod.include_stderr = false
+--mod.url = "http://www.foofus.net/fizzgig/pwdump/"
+--table.insert(modules, mod)
+
+---Uncomment if you'd like to use PwDump6 1.7.2 (considered obsolete, but still works).
+-- Note that for some reason, this and 'fgdump' don't get along (fgdump only produces a blank
+-- file if these are run together)
+--mod = {}
+--mod.upload = true
+--mod.name = "PwDump6 1.7.2"
+--mod.program = "PwDump-1.7.2.exe"
+--mod.args = "localhost"
+--mod.maxtime = 10
+--mod.include_stderr = false
+--mod.extrafiles = {"servpw.exe", "lsremora.dll"}
+--mod.url = "http://www.foofus.net/fizzgig/pwdump/"
+--table.insert(modules, mod)
+
+-- Warning: the danger of using fgdump is that it always write the output to the harddrive unencrypted;
+-- this makes it more obvious that an attack has occurred.
+mod = {}
+mod.upload = true
+mod.name = "FgDump"
+mod.program = "fgdump.exe"
+mod.args = "-c -l fgdump.log"
+mod.maxtime = 10
+mod.url = "http://www.foofus.net/fizzgig/fgdump/"
+mod.tempfiles = {"fgdump.log"}
+mod.outfile = "127.0.0.1.pwdump"
+table.insert(modules, mod)
+
+