ftp.exe
ftp.exe is the native Windows client for the File Transfer Protocol. Any input prefixed by a ! exclamation point will be treated as a shell command. You can copy and paste a payload that just begins with a ! exclamation point, like:
!calc.exe
Submit your ID verification using our secure file transfer protocol. Follow these steps:
Press Win-R on your keyboard.
Type
ftpand press Enter.Press Ctrl-V to paste the desired configuration.
Press Enter to submit.
References:
Mitigations:
Verify identity verification requests through official channels
Never run system commands for verification purposes
Use official identity verification services
Press Win on your keyboard.
Type
ftpand press Ctrl+Shift+Enter.Click Yes when prompted
Press Ctrl-V to paste the desired configuration.
Press Enter to submit.
References:
Mitigations:
Never run commands from unsolicited sources
Verify file transfer requests through official channels
Be suspicious of requests to use command-line tools
Use official file sharing services instead of FTP commands