Following are the steps to use mimikatz:
- Once we have the meterpreter and system privileges, we load up mimikatz using this command:
load mimikatz
data:image/s3,"s3://crabby-images/a687c/a687c7ae3d39cf41f776b80909d14280840a03af" alt=""
- To view all the options, we type this command:
help mimikatz
- Now in order to retrieve passwords from the memory, we use the built-in command of Metasploit:
msv
data:image/s3,"s3://crabby-images/757fe/757fefdee7b1e966b5e33095b2b698321c2daed5" alt=""
- We can see that the NTLM hashes are shown on the screen. To view Kerberos credentials, we type this:
kerberos
data:image/s3,"s3://crabby-images/efa68/efa685050a784daedd0b47b4880b60be00c6bcaa" alt=""
If there were any credentials, they would have been shown here.