Hands-On Web Penetration Testing with Metasploit
上QQ阅读APP看书,第一时间看更新

Exploring MSF modules

All the options and modules available in Metasploit Framework can be accessed using the show command. Let's take a look:

  1. To see all the valid parameters for this command, you need to execute the show -h command in the MSF console, as follows:

  1. To show the auxiliary available in Metasploit Framework, execute the show auxiliary command, as follows:

  1. The same command is used to list the other modules and module-specific parameters. Alternatively, you can always press the Tab button on your keyboard twice to see the available parameters for the show command:

  1. For module-specific parameters, just load the module that you want to use and then execute the show command in it. In this case, we used the smb_version auxiliary module and pressed the Tab button twice to see all the parameters available for the show command:

  1. We can look at all the evasion options that are available for this particular module using the show evasion command:

Note: These options are generally used to bypass network filtration endpoints such as intrusion detection/prevention systems (IDSes/IPSes).