Commit Graph

14 Commits

Author SHA1 Message Date
caseysmithrc 58426cd424 Merge pull request #29 from redcanaryco/dev-mh
Updated Formatting + System Service Discovery
2017-11-27 13:09:31 -07:00
Michael Haag f6bfcd4e52 Discovery.bat - add
Added sc.exe query line
2017-11-21 12:17:55 -08:00
caseysmithrc c3d870f399 Update AtomicService.cs 2017-11-19 07:54:51 -07:00
caseysmithrc f84a365a73 Update AtomicService.cs 2017-11-19 07:53:03 -07:00
caseysmithrc df59f2be24 Service Binary Code 2017-11-19 07:42:50 -07:00
caseysmithrc 24e2671f45 Added Invoke-Mimnikatz
Invoke-Mimikatz Locally
2017-11-13 15:06:40 -07:00
caseysmithrc c03b740553 update instructions
Update MHT To Doc Notes
2017-11-13 11:54:20 -07:00
caseysmithrc 4439c529ea Sample VBA
Sample VBA Downloader
2017-11-13 11:53:35 -07:00
Michael Haag d61e743c41 Discovery bat fix
Removed a basic thing and made it even more basic
2017-11-03 09:56:44 -07:00
Michael Haag e22d823c4b Credentials in Files
+ Credentials in Files
+ add Get-GPPPassword.ps1
+ Update matrix
2017-11-02 11:53:28 -07:00
Michael Haag be85bb6afe Discovery bat
+ Added reg queries to payload.
2017-10-31 12:58:40 -07:00
Michael Haag 34dd80d94b Initial Commit
+ Audio Capture
+ Automated Collection
+ Input Capture
+ collection bat
+ Payload
+ Updated Matrix
2017-10-12 15:05:28 -07:00
Michael Haag 87743faf73 Discovery
+ Added a Discovery bat file to run all the things at once. Generally, none of this activity is deemed "evil" as it is recon activity. Seeing it all run at once should be suspect to anyone.
+ Updates to two discovery files.
2017-10-12 10:35:44 -07:00
caseysmithrc ac8dd2cfec Initial Commit
Initial Checkin
2017-10-11 10:35:17 -07:00