SMBClient Interactive
Interactive SMB client for browsing and downloading files from shares
- Tool
- smbclient
- Category
- Enumeration / SMB
- Platform
- linux
- Requires
- password
- Protocols
- SMB
Syntax
Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.
smbclient '//<ip>/<share>' -U '<domain>/<user>%<password>'
Credential variants
The same attack using a different authentication material.
NTLM Hash requires NTLM hash
smbclient '//<ip>/<share>' -U '<domain>/<user>' --pw-nt-hash '<hash>'
Kerberos Ticket requires Kerberos ticket
smbclient '//<ip>/<share>' -k --no-pass
Anonymous requires no credentials
smbclient '//<ip>/<share>' -N
Examples
smbclient '//192.168.1.100/C$' -U 'corp.local/user%password'
smbclient '//192.168.1.100/SYSVOL' -N
Tags
Related commands
- Enum4linux-ng SMB Enumeration Next generation enum4linux for SMB enumeration
- Impacket lookupsid Brute-force the RID space against SAMR / LSARPC to enumerate domain users, groups, and…
- Impacket NetView Enumerate logged-on users and sessions on remote hosts
- Impacket SAMRDump Dump user accounts and group information via SAMR protocol
- Impacket SMBClient Interactive SMB client written in pure Python. Drops you into a shell with shares, ls,…
- NetExec enum_ca Module Discover Active Directory Certificate Services CA hosts on the network and grab basic CA…
- NetExec MS17-010 Check (EternalBlue) Detect MS17-010 (EternalBlue) vulnerable hosts via the SMBv1 transaction probe. Safe…
- NetExec Password Policy Enumerate Domain Password Policy