SMB
I was able to retrieve a data share with the credentials for ryan.
There was an html file the name of the account for TempAdmin.
-- New production network will be going live on Wednesday so keep an eye out for any issues.
-- We will be using a temporary account to perform all tasks related to the network migration and this account will be deleted at the end of 2018 once the migration is complete. This will allow us to identify actions related to the migration in security logs etc. Username is TempAdmin (password is the same as the normal admin account password).
-- The winner of the βBest GPOβ competition will be announced on Friday so get your submissions in soon.
There was also a .reg file that allowed me to view a hexed password for VNC.
We have to put the hex in the following format and pass it to the tool called vncpwd.
Now we have to do the same shit again
I validated the creds with crackmapexec and was able to get a foothold on the machine with winrm
Last updated