Upd - Metasploitable 3 Windows Walkthrough
nmap --script http-vuln-cve2017-5638 -p 8585 192.168.1.105
Known Remote Code Execution (RCE) vulnerabilities . 3. Exploitation Walkthroughs Path A: SMB EternalBlue (Port 445) metasploitable 3 windows walkthrough
session -i <session ID>
If you have domain credentials (Metasploitable 3 has vagrant / vagrant and administrator / vagrant ): nmap --script http-vuln-cve2017-5638 -p 8585 192
Metasploitable 3 is a deliberately vulnerable virtual machine designed by Rapid7 for practicing penetration testing. Unlike its Linux-based predecessor, the Windows version presents a target rich with common Windows misconfigurations, outdated services, and unpatched vulnerabilities typical of legacy enterprise environments. metasploitable 3 windows walkthrough
Or use Metasploit: