Domain Enumeration
Tools
Powershell
Get Current Forest
$Forest = [System.DirectoryServices.ActiveDirectory.Forest]
$Forest::GetCurrentForest()Name : corp.com
Sites : {Default-First-Site-Name}
Domains : {corp.com}
GlobalCatalogs : {dc01.corp.com}
ApplicationPartitions : {DC=ForestDnsZones,DC=corp,DC=com, DC=DomainDnsZones,DC=corp,DC=com}
ForestModeLevel : 6
ForestMode : Windows2012R2Forest
RootDomain : corp.com
Schema : CN=Schema,CN=Configuration,DC=corp,DC=com
SchemaRoleOwner : dc01.corp.com
NamingRoleOwner : dc01.corp.comGet Current Domain
Get Domain Kerberos Policy
PowerView
Import module
Get Current Domain
Get object of another domain
Get Domain SID for the current domain
Get Domain Policy for the Current Domain
Get Domain Controllers for the current domain
Get Domain Controllers for another Domain
Get a List of Users in the Current Domain
ActiveDirectory module
Import module
Get Current Domain
Get object of another domain
Get Domain SID for the current domain
Get Domain Controllers for the current domain
Get Domain Controllers for another Domain
Get a List of Users in the Current Domain
Get list of all Properties for Users in the Current Domain
Last updated