SourcePoint icon indicating copy to clipboard operation
SourcePoint copied to clipboard

Added DNS Support & Spawnto fix

Open Nahid5 opened this issue 3 years ago • 1 comments

  • Added DNS support. Idle DNS points to a Microsoft owned ip.
  • Fixed one of the spawnto targets (dtdump.exe) which did not have a x64 binary. Now targets w32tm

Nahid5 avatar Nov 17 '22 01:11 Nahid5

Also forgot to mention added randomizer in the "post-ex" for the pipe name so it doesn't stay as the default. (https://hstechdocs.helpsystems.com/manuals/cobaltstrike/current/userguide/content/topics/malleable-c2-extend_controll-post-exploitation.htm#_Toc65482859)

Nahid5 avatar Nov 17 '22 01:11 Nahid5