Jun 28, 2024, 02:10 PM
How to Get Shell as Dallon.Matrix after making the shortcut file pointing to the HTA file
|
HTB - Axlle
by Sqweez - Saturday June 22, 2024 at 06:57 PM
|
|
Jun 28, 2024, 02:10 PM
How to Get Shell as Dallon.Matrix after making the shortcut file pointing to the HTA file
Jun 28, 2024, 03:26 PM
(This post was last modified: Jun 28, 2024, 03:31 PM by macavitysworld.)
(Jun 27, 2024, 02:02 PM)AdenBilal Wrote: Anybody know the password of his write-ups Yes i do know the password, but @Axura has made clear that, password should not be shared without his consent. You may ask him. I'll link his discord handle: @axurasec (Jun 28, 2024, 02:10 PM)Liy4 Wrote: How to Get Shell as Dallon.Matrix after making the shortcut file pointing to the HTA file Serve the file via smb server, create a shortcut and wait for some time, you should get shell as dallon.matrix (Jun 27, 2024, 11:50 PM)monkeyNo1 Wrote: Hi everybody. I have two questions: Make sure that there are no firewall rules blocking SMB traffic (ports 445 and 139)
Jun 28, 2024, 04:41 PM
(Jun 28, 2024, 03:26 PM)macavitysworld Wrote:(Jun 27, 2024, 02:02 PM)AdenBilal Wrote: Anybody know the password of his write-ups
Hi everybody. No need your own SMB server. Need:
1. file xx.hta with "powershell3base64" payload from revshells.com - upload to victim's folder C:\Users\Public 2. file xx.url with content: [InternetShortcut]3. Before above open http server and listener on your machine, wait 2-3 seconds 4. You''ll get shell as dallon.matrix Need help. As user dallon.matrix i change password for user jacob.greeny (tried both methods). But i can not get sell as jacob.greeny via RunasCs.exe, i get error. PLS help. Thanks advance.
Jul 09, 2024, 06:55 AM
(Jul 09, 2024, 05:52 AM)maggi Wrote: I went to see if my janky ass way of getting on the box worked....works fine lobbing msf grenades still Yes here is exploit that you can use to get administrator shell: $rebootContent = @"start nc listener and run this exploit in standalonerunner directory, and you have to wait around one minute
I got it using a blog post on github, but damn that was quick. Like an hour after I noticed the permissions changed and posted.
I honestly thought if anything they would have killed off using an msf dll named "whatever.xll" I got root when it was a simple overwrite and while the Admin hash still worked to login, and even though its an old box..... It was a new challenge just sitting there taunting me so I had to solve it.
Sep 30, 2024, 09:54 AM
(Jun 23, 2024, 11:02 PM)osamy7593 Wrote: what for root guys .... stuck on evil-winrm,
Oct 01, 2024, 10:43 AM
(Jul 09, 2024, 06:55 AM)Osminogka Wrote:(Jul 09, 2024, 05:52 AM)maggi Wrote: I went to see if my janky ass way of getting on the box worked....works fine lobbing msf grenades still can u tell spesifik method for this, using file or just copy paste that commands?. im stuck
Oct 10, 2024, 09:18 AM
Can someone help or guide me in completing the Axlle HTB machine? I’ve followed all the instructions at https://github.com/0xCyberArtisan/Axlle_...in/note.md, and when I reached the last command, I’m stuck and don’t know how to get nc 4443 to connect.
|
|
« Next Oldest | Next Newest »
|
| Possibly Related Threads… | |||||
| Thread | Author | Replies | Views | Last Post | |
| [FREE] CPTS 12 FLAGS | 68 | 1,939 |
8 hours ago Last Post: VictorPipeau |
||
| [FREE] HackTheBox Dante - complete writeup written by Tamarisk | 601 | 91,584 |
8 hours ago Last Post: VictorPipeau |
||
| [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired | 371 | 92,799 |
9 hours ago Last Post: phannguyenbaouy1 |
||
| [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags | 21 | 2,615 |
Today, 05:08 AM Last Post: popoler |
||
| Hack the box Pro Labs, VIP, VIP+ 1 month free Method | 23 | 2,268 |
Yesterday, 02:10 PM Last Post: kkkato |
||