Description
This module dumps memory contents using a crafted Range header and affects only Windows 8.1, Server 2012, and Server 2012R2. Note that if the target is running in VMware Workstation, this module has a high likelihood of resulting in BSOD; however, VMware ESX and non-virtualized hosts seem stable. Using a larger target file should result in more memory being dumped, and SSL seems to produce more data as well.
Module options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':
msf > use auxiliary/scanner/http/ms15/034_http_sys_memory_dumpmsf undefined(034_http_sys_memory_dump) > show actions ...actions...msf undefined(034_http_sys_memory_dump) > set ACTION < action-name >msf undefined(034_http_sys_memory_dump) > show options ...show and set options...msf undefined(034_http_sys_memory_dump) > runPrioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub