Foothold

$ gobuster dir -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt -x php,txt,html -t 100 -u http://192.168.190.169/               
===============================================================
Gobuster v3.6
by OJ Reeves (@TheColonial) & Christian Mehlmauer (@firefart)
===============================================================
[+] Url:                     http://192.168.190.169/
[+] Method:                  GET
[+] Threads:                 100
[+] Wordlist:                /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt
[+] Negative Status codes:   404
[+] User Agent:              gobuster/3.6
[+] Extensions:              php,txt,html
[+] Timeout:                 10s
===============================================================
Starting gobuster in directory enumeration mode
===============================================================
/.html                (Status: 403) [Size: 304]
/index.php            (Status: 200) [Size: 9635]
/uploads              (Status: 301) [Size: 344] [--> http://192.168.190.169/uploads/]
/assets               (Status: 301) [Size: 343] [--> http://192.168.190.169/assets/]
/upload.php           (Status: 200) [Size: 537]
/css                  (Status: 301) [Size: 340] [--> http://192.168.190.169/css/]
/Index.php            (Status: 200) [Size: 9635]
/js                   (Status: 301) [Size: 339] [--> http://192.168.190.169/js/]
/examples             (Status: 503) [Size: 404]
/licenses             (Status: 403) [Size: 423]
/%20                  (Status: 403) [Size: 304]
/Assets               (Status: 301) [Size: 343] [--> http://192.168.190.169/Assets/]
/INDEX.php            (Status: 200) [Size: 9635]

Install dependencies

Verify

Forgot we can't really do much with the NTLMv2 hash since SMB is closed on the machine... so we follow this guide instead

Last updated