Metasploit psexec for pass the hash


In my lab I am able to compromise the local admin password hash and use it to PTH to a 2nd machine.

On the 2nd compromised windows 7 machine, when I go into the shell and launch an executable, nothing happens.  a GETUID from meterpreter shows I am under the SYSTEM account.  Is there a way I can switch to the user account that is logged in?
Who is Participating?
psexec -i notepad
for example. -i makes it launch interactively.
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.