kokxxoo
kokxxoo
add pipePotato https://github.com/BeichenDream/BadPotato
https://github.com/crisprss/PrintSpoofer
https://github.com/0neAtSec/EfsPotato-1
配置提示错误

没有AVG进程
1.6167636056505682e+09 info wmiexec/wmiexec.go:176 Successfully connected to host and sent an RPC request packet panic: Got an unexpected response. Wanted 0x02 got 3 goroutine 1 [running]: main.main() /home/runner/work/goWMIExec/src/github.com/C-Sto/goWMIExec/main.go:43 +0x65c
添加quake和hunter
Microsoft Windows Server 2012 R2 Standard `SeIncreaseQuotaPrivilege İşlem için bellek kotaları ayarla Disabled SeChangeNotifyPrivilege Çapraz geçiş denetimini atla Enabled SeImpersonatePrivilege Kimlik doğrulamasından sonra istemcinin özelliklerini al Enabled SeIncreaseWorkingSetPrivilege İşlem çalışma...
run post/windows/gather/hashdump ``` [*] Obtaining the boot key... [*] Calculating the hboot key using SYSKEY feafa24f2f975fdc62f236r899999999... [*] Obtaining the user list and keys... [*] Decrypting user keys... [-] Post failed:...