From f38072c6e25ef3633bdabb119454775c453b9b27 Mon Sep 17 00:00:00 2001 From: UberGuidoZ <57457139+UberGuidoZ@users.noreply.github.com> Date: Sat, 7 May 2022 18:43:57 -0700 Subject: [PATCH] Initial ReadMe --- payloads/library/general/Defeat_Defender/ReadMe.md | 8 ++++++++ 1 file changed, 8 insertions(+) create mode 100644 payloads/library/general/Defeat_Defender/ReadMe.md diff --git a/payloads/library/general/Defeat_Defender/ReadMe.md b/payloads/library/general/Defeat_Defender/ReadMe.md new file mode 100644 index 0000000..5e8ac37 --- /dev/null +++ b/payloads/library/general/Defeat_Defender/ReadMe.md @@ -0,0 +1,8 @@ +Slightly modified version of the "[Disable Windows Defender](https://github.com/hak5/usbrubberducky-payloads/blob/master/payloads/library/general/Disable_Windows_Defender/payload.txt)" by Zero_Sploit. + +Updated by B33m0 to add exception of drive C: to Defender protection, and finally updated by [UberGuidoZ](https://github.com/UberGuidoZ) to fix some UAC and newer Windows version issues. + +Description: Opens security settings, disables Defender, then adds an exception of drive C for persistence.
+NOTE: Requires local admin privledges + +Target: Windows 10/11 (Powershell 2.0 or above)