Impacket SAMRDump

Dump user accounts and group information via SAMR protocol

Tool
impacket-samrdump
Category
Enumeration / SMB
Platform
linux
Requires
password
Protocols
SMB, RPC

Open in Command Manager

Syntax

Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.

impacket-samrdump '<domain>/<user>:<password>'@'<ip>'

Credential variants

The same attack using a different authentication material.

NTLM Hash requires NTLM hash

impacket-samrdump -hashes ':<hash>' '<domain>/<user>'@'<ip>'

Kerberos Ticket requires Kerberos ticket

impacket-samrdump -k -no-pass '<domain>/<user>'@'<ip>'

Examples

impacket-samrdump 'CORP.LOCAL/user:password'@192.168.1.100

Tags

impacket samr users enumeration smb