No description, website, or topics provided.
Switch branches/tags
Nothing to show
Clone or download
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Permalink
Failed to load latest commit information.
server
README.md
WMI-Mimikatz.mof
WMI-Mimikatz.ps1
dnsping-meterpreter.mof
dnsping-meterpreter.ps1

README.md

WMI-persistence

POC code to accompany the blog. Client side code exists of the following parts:

  1. powershell script
  2. MOF to install the script.

Server side code is pretty self-explanitory.

Preparing your own Base64 code for a command line argument could be performed like the following:

$var = Get-Content file $encodedcommand = [Convert]::ToBase64String([Text.Encoding]::Unicode.GetBytes($var))

powershell -ExecutionPolicy ByPass -EncodedCommand $encodedcommand