Files
atomic-red-team/Windows/Collection/Input_Capture.md
T

14 lines
352 B
Markdown
Raw Normal View History

2017-10-12 15:05:28 -07:00
# Input Capture
MITRE ATT&CK Technique: [T1056](https://attack.mitre.org/wiki/Technique/T1056)
## PowerShell
### Get-Keystrokes.ps1
[Payload](Payloads/Collection/Get-keystrokes.ps1) provided by [PowerSploit](https://github.com/PowerShellMafia/PowerSploit/blob/master/Exfiltration/Get-Keystrokes.ps1)
Input:
Get-Keystrokes -LogPath C:\key.log