caseysmithrc
58426cd424
Merge pull request #29 from redcanaryco/dev-mh
...
Updated Formatting + System Service Discovery
2017-11-27 13:09:31 -07:00
Michael Haag
f6bfcd4e52
Discovery.bat - add
...
Added sc.exe query line
2017-11-21 12:17:55 -08:00
caseysmithrc
c3d870f399
Update AtomicService.cs
2017-11-19 07:54:51 -07:00
caseysmithrc
f84a365a73
Update AtomicService.cs
2017-11-19 07:53:03 -07:00
caseysmithrc
df59f2be24
Service Binary Code
2017-11-19 07:42:50 -07:00
caseysmithrc
24e2671f45
Added Invoke-Mimnikatz
...
Invoke-Mimikatz Locally
2017-11-13 15:06:40 -07:00
caseysmithrc
c03b740553
update instructions
...
Update MHT To Doc Notes
2017-11-13 11:54:20 -07:00
caseysmithrc
4439c529ea
Sample VBA
...
Sample VBA Downloader
2017-11-13 11:53:35 -07:00
Michael Haag
d61e743c41
Discovery bat fix
...
Removed a basic thing and made it even more basic
2017-11-03 09:56:44 -07:00
Michael Haag
e22d823c4b
Credentials in Files
...
+ Credentials in Files
+ add Get-GPPPassword.ps1
+ Update matrix
2017-11-02 11:53:28 -07:00
Michael Haag
be85bb6afe
Discovery bat
...
+ Added reg queries to payload.
2017-10-31 12:58:40 -07:00
Michael Haag
34dd80d94b
Initial Commit
...
+ Audio Capture
+ Automated Collection
+ Input Capture
+ collection bat
+ Payload
+ Updated Matrix
2017-10-12 15:05:28 -07:00
Michael Haag
87743faf73
Discovery
...
+ Added a Discovery bat file to run all the things at once. Generally, none of this activity is deemed "evil" as it is recon activity. Seeing it all run at once should be suspect to anyone.
+ Updates to two discovery files.
2017-10-12 10:35:44 -07:00
caseysmithrc
ac8dd2cfec
Initial Commit
...
Initial Checkin
2017-10-11 10:35:17 -07:00