bof_postex
Execute post-exploitation tasks: add firewall rules via COM, take screenshots without fork-and-run, and search files for keywords.
Instructions
PostEx-BOF: Post-exploitation utilities.
firewallrule add [-g groupname] [-d description] Add inbound/outbound firewall rule via COM (no admin needed). Example: firewallrule add 80 RuleName in -g Group1 -d TestRule
screenshot_bof [-n name] [-p pid] Alternative screenshot — does NOT use fork-and-run. Example: screenshot_bof -n screen1 -p 812
sauroneye -d -f -k Search directories for files with specific keywords (SauronEye BOF port). Example: sauroneye -d C:\Users -f .txt,.docx -k pass*,secret*
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| agent_id | Yes | ||
| command | Yes | ||
| args | No |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |