20150703Mickey牛的HASH讲解

ntds.dit会保存域账号先前设置的NT和LM历史哈希,通过post/windows/gather/credentials/domain_hashdump可以dump出来,通过破解可以了解到账号密码的设置趋势,拷贝ntds.dit用的是卷影副本或ntdsutil方法


====


https://community.rapid7.com/community/metasploit/blog/2015/07/01/safely-dumping-domain-hashes-with-meterpreter

你可能感兴趣的:(20150703Mickey牛的HASH讲解)