diff --git a/post_exploitation/powershell_commands.md b/post_exploitation/powershell_commands.md index 4c2422e..19ec69d 100644 --- a/post_exploitation/powershell_commands.md +++ b/post_exploitation/powershell_commands.md @@ -8,9 +8,9 @@ | `Get-Location` | Gets the present directory | | `Get-Process` | Gets a process listing | | `Get-Service` | Gets a service listing | -| `Get-Process | Export-Csvprocs.csv` | Exports output to a comma-separated values (CSV) file | -| `1..255 | % {echo "10.1.2.$_"; ping -n 1 -w 100 10.1.2.$_ | SelectString ttl}` | Launches a ping sweep to the 10.1.2.0/24 network | -| `1..1024 | % {echo ((new-object Net.Sockets.TcpClient).Connect("10.1.2.3",$_))"Port $_ is open!"} 2>$null` | Launches a port scan to the 10.1.2.3 host (scans for ports 1 through 1024) | +| `Get-Process \| Export-Csvprocs.csv` | Exports output to a comma-separated values (CSV) file | +| `1..255 \| % {echo "10.1.2.$_"; ping -n 1 -w 100 10.1.2.$_ | SelectString ttl}` | Launches a ping sweep to the 10.1.2.0/24 network | +| `1..1024 \| % {echo ((new-object Net.Sockets.TcpClient).Connect("10.1.2.3",$_))"Port $_ is open!"} 2>$null` | Launches a port scan to the 10.1.2.3 host (scans for ports 1 through 1024) | | `Get-HotFix` | Obtains a list of all installed hotfixes | | ```cd HKLM: \ls``` | Navigates the Windows registry |