Heist

Great machine for those new to exploiting Windows, like myself. I learned a lot from this machine, thanks @MinatoTW! Techinically there is no exploitation involved (making it the perfect machine for practicing you Windows-fu), its a game of “find the creds”. All the tips you need are in the first 11-12 pages already. Here are some things to read up on though:

Powershell
Impacket
Process Memory Dumps
Windows Sysinternals

Also FYI if anyone is wondering why the metasploit modules don’t work, a quick inspection using wireshark shows msf sends the request in SOAP format, which causes the server to respond with a 500 code.