Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

win10 - redteam tools not installed #850

Closed
kiyori-lw opened this issue Sep 19, 2022 · 5 comments
Closed

win10 - redteam tools not installed #850

kiyori-lw opened this issue Sep 19, 2022 · 5 comments

Comments

@kiyori-lw
Copy link

kiyori-lw commented Sep 19, 2022

  • Operating System Version: win11
  • Deploying via (VirtualBox/VMWare/AWS/Azure/ESXi): vmware
  • Vagrant Version (if applicable):

Please verify that you are building from an updated Master branch before filing an issue.

Description of the issue:

While building win10 host, I see that install-redteam.ps1 runs, but there are no tools in C:\tools:

    win10: Running: scripts/install-redteam.ps1 as C:\tmp\vagrant-shell.ps1
==> win10: Running provisioner: shell...

Link to Gist Containing Build Logs:

@kiyori-lw
Copy link
Author

started t-shoot. looks like 1st error is that windows defender is blocking mimikatz install, at which point install-redteam stops

@kiyori-lw
Copy link
Author

ok, looks like windows defender was supposed to be disabled, but it wasn't. i disabled it manually via the Defender GUI and the script ran fine and installed the tools as expected

reading the install-redteam script, it indicates that it should already be disabled at this line:

# Windows Defender should be disabled already by O&O ShutUp10 and the GPO

maybe there's an issue with those?

@kiyori-lw
Copy link
Author

looks like something is wrong with installing the AtomicRedTeam as well

@kiyori-lw
Copy link
Author

i think the GPO is turning the Defender back on. after some time (next day), defender is back on again

@clong
Copy link
Owner

clong commented Oct 1, 2022

Dupe of #854

@clong clong closed this as completed Oct 1, 2022
@clong clong added the duplicate label Oct 1, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants