PsExec use

Here Insert Picture Description

1. The local system to privilege escalation

Command execution

PsExec.exe /accepteula /s \127.0.0.1 cmd /c “whoami”
Here Insert Picture Description

Interactive cmd

C:\Documents and Settings\Administrator\桌面>PsExec.exe /accepteula /s \127.0.0.1 cmd
Here Insert Picture Description

2. Connect the other machines

Command execution

If the password is the same as the two machines, the correct password is not required may execute commands such as connection 192.168.3.56.
(So if you are a user domain can be any connection tube within any one machine.)
C: \ Documents and Settings \ Administrator \ Desktop> PsExec.exe / accepteula / s \ 192.168.3.56 -u Administrator -ps cmd / c "ipconfig "
Here Insert Picture Description

Interactive cmd Login

PsExec.exe / accepteula / s \ 192.168.3.90 -u Administrator -p Aa19970511 cmd
Here Insert Picture Description
port connection
Here Insert Picture Description

Published 38 original articles · won praise 21 · views 20000 +

Guess you like

Origin blog.csdn.net/lhh134/article/details/104287397
use
use