Vulnerability & Exploit Database

Back to search

SMB Group Policy Preference Saved Passwords Enumeration

This module enumerates files from target domain controllers and connects to them via SMB. It then looks for Group Policy Preference XML files containing local/domain user accounts and passwords and decrypts them using Microsofts public AES key. This module has been tested successfully on a Win2k8 R2 Domain Controller.

Free Metasploit Download

Get your copy of the world's leading penetration testing tool

 Download Now

Module Name



  • Joshua D. Abraham <jabra [at]>




Module Options

To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':

msf > use auxiliary/scanner/smb/smb_enum_gpp msf auxiliary(smb_enum_gpp) > show actions ...actions... msf auxiliary(smb_enum_gpp) > set ACTION <action-name> msf auxiliary(smb_enum_gpp) > show options and set options... msf auxiliary(smb_enum_gpp) > run