78ffe30626Added arg6 and arg7 to addWMIDaily() for finer control on persistence
tophertimzen
2017-03-21 18:47:11 -0400
a5aa8163f8Merge pull request #3 from minisllc/master
ZonkSec
2016-10-18 16:23:56 -0500
a0b9d6a194Version 3.1 modifications by @andrewchiles, Added linkinfo.dll hijack of explorer.exe user-level persistence, Added sethc.exe (StickyKeys) Debugger key system-level persistence, Modified persistence via encoded powershell commands instead of the previous Scripted Web Delivery method. This reduces the level of staging that occurs over the network, General code cleanup (use of new aggressor built-ins, removed unneccessary conditional statements, added quotes to allow modification of registry keys with spaces in the name, etc )
Andrew Chiles
2016-10-01 01:10:37 +0200
d8aaae8fd2Removed reliance on webdelivery module, added ability to select between listeners, added linkinfo.dll hijack option
Andrew Chiles
2016-09-30 23:48:05 +0200
677cdc9060updated to reflect "Scripted Web Delivery".
ZonkSec
2016-09-30 08:07:38 -0500