Skip to content

Latest commit

 

History

History
14 lines (12 loc) · 340 Bytes

File metadata and controls

14 lines (12 loc) · 340 Bytes

Windows Remote Management (WinRM) enumeration and exploitation

Initial enumeration

nmap -vv -p 5985,5986 -sT <ip>

Reverse shells

evil-winrm -i <ip> -u <username> -p <password>
evil-winrm -i <ip> -u <username> -H <nt_hash>