TCP 5985: WinRM
WinRM is Microsoft's implementation of WS-Management in Windows which allows systems to access or exchange management information across a common network.
-- Wikipedia
PSSession
Evil-WinRM
The ultimate WinRM shell for hacking/pentesting GitHub - Hackplayers/evil-winrm
Password
PtH
Using mimikatz
As mimikatz is not working fully interactively in this environment, we can just issue single commands.
Last updated