1 00:00:00,300 --> 00:00:07,200 Another feature of interpretor is the ability to capture the victim's desktop and save them on your 2 00:00:07,200 --> 00:00:07,700 system. 3 00:00:08,550 --> 00:00:11,580 So I'm already going to assume you have an interpreter console. 4 00:00:12,580 --> 00:00:18,300 And there are also a few command, so let's have a look at what is on the victim's screen. 5 00:00:19,180 --> 00:00:25,300 So let me first clear the screen and we'll start with the first command screenshot. 6 00:00:27,200 --> 00:00:28,640 Is the basic command. 7 00:00:29,650 --> 00:00:31,750 Now you can only type screenshot. 8 00:00:32,970 --> 00:00:37,920 Or with the parameter, give a name to the image. 9 00:00:38,850 --> 00:00:39,600 Screenshot. 10 00:00:40,920 --> 00:00:41,400 P. 11 00:00:42,660 --> 00:00:43,920 The path to the image. 12 00:00:51,260 --> 00:00:53,120 Now, here is a screenshot that I say. 13 00:00:54,720 --> 00:00:56,640 So let's go back to Interpretor. 14 00:00:58,590 --> 00:01:06,270 And interpreter has an extension named Espere So Lowed espere. 15 00:01:07,390 --> 00:01:09,760 Type help, espere. 16 00:01:10,810 --> 00:01:14,440 To view commands related to the SBA extension. 17 00:01:15,650 --> 00:01:17,750 And right now, only the Screengrab command. 18 00:01:20,320 --> 00:01:25,240 So will type screengrab and then the path for the image. 19 00:01:29,590 --> 00:01:38,470 Now, if you don't add false to the parameter at the end, it will not try to open the saved image. 20 00:01:40,140 --> 00:01:46,560 Now, look at that, in my case, it won't open because I don't have the appropriate library. 21 00:01:48,380 --> 00:01:54,190 So let's go back to the folder that you say, the screen shot in and over the image. 22 00:01:55,480 --> 00:02:02,620 And well, OK, so I'm sorry, it doesn't work properly, and I think it's because of some library issues. 23 00:02:04,080 --> 00:02:10,380 But thankfully, we do have in our back pocket some other modules to accomplish this. 24 00:02:13,040 --> 00:02:17,270 Interpretor also has a script named Screen Spy. 25 00:02:18,430 --> 00:02:22,180 Which takes screenshots at various time intervals. 26 00:02:23,260 --> 00:02:27,310 It doesn't always work as it as it should. 27 00:02:28,570 --> 00:02:31,690 So I'm going to use the post module of this script. 28 00:02:33,070 --> 00:02:36,700 Now display information about this module using the infocom in. 29 00:02:44,210 --> 00:02:50,570 And then run it, run post windows, gather screens by. 30 00:02:52,720 --> 00:02:53,500 Woops. 31 00:02:54,920 --> 00:02:57,830 Surely not port, so it must be post. 32 00:02:59,960 --> 00:03:02,060 OK, so it'll take a few seconds to finish. 33 00:03:03,070 --> 00:03:06,580 OK, module execution successfully completed. 34 00:03:07,800 --> 00:03:10,770 So go to MSF for Lut. 35 00:03:11,710 --> 00:03:13,000 To view the screenshot. 36 00:03:14,050 --> 00:03:17,320 I have open a folder and here are my screenshots. 37 00:03:19,000 --> 00:03:21,440 So let's open them to see if everything's OK. 38 00:03:23,740 --> 00:03:25,280 All right, everything looks good. 39 00:03:26,770 --> 00:03:32,830 And one more thing, I don't have a webcam to attach any of my virtual machines to. 40 00:03:33,840 --> 00:03:41,280 So that just means that I don't have the option to take a result from this command, but you may integrate 41 00:03:41,280 --> 00:03:44,580 a webcam and a microphone to test these functions. 42 00:03:45,880 --> 00:03:46,900 So go ahead and try that.