Slort
Last updated
Was this helpful?
Last updated
Was this helpful?
Nmap scan
Found that this server is affected by RFI. Could see that when I included the IP address and sent that it actually hit my http server. Could not get pentest monkey php reverse shell to work. Uname does not exist. Found that uname is not a command on Windows systems.
Found an interesting file.
Had to get a hint here as Winpeas did not turn up much.
Found backup folder at C:\Backup
Made a reverse shell with meterpreter hoping this would spawn another shell.
Shell dropped as soon as it popped in. I believe this happened because I was just using nc as a listener when I used a meterpreter shell. Using revshells I got a one-liner for a meterpreter handler.
Wait for a while and never got a shell. Used TFTP.EXE. It does pop a shell back to me. Waiting again for TFTP.exe to run. Had to restart the machine as my VPN disconnected and the machine shutdown.
Found a nice universal php shell at **** This new shell is compatible with Windows and Linux. Sent RFI attempt again.