-
Service Control Manager
- This method is used by psexec and all of its clones to start the executable that psexec creates.
-
Task scheduler (scheduled task)
- A command to be run at designated time(s) as SYSTEM.
-
WMI
- use of WMI to move laterally
-
Microsoft Terminal Services (RDP)
Type 7 Logons
- Interactive desktop access and/or command execution with the privileges of the user account used.
-
WinRM
-
winrs -r:REMOTECOMPUTERNAME command to run
-
Hosted by Windows Remote Management service (svchost.exe), listens on TCP/80 or TCP/5985 and can share port with IIS.
-
-
SMB Traversal
- mounting remote shares, i.e.
c$, admin$ etc
- mounting remote shares, i.e.
Created
April 17, 2018 13:04
-
-
Save jermdw/2eb185ceab5bd828a12322c01708516d to your computer and use it in GitHub Desktop.
Move Laterally Why Don't you?
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment