Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ashtree powershell payload #523

Open
wants to merge 10 commits into
base: master
Choose a base branch
from
Open

ashtree powershell payload #523

wants to merge 10 commits into from

Conversation

C08W38101
Copy link

ashtree uses a very small one liner to execute a (semi) obfuscated powershell script that invokes a TLS encrypted reverse shell, disables defender, and removes backups

@hak5peaks hak5peaks added the pending requested changes requires changes before merge label Mar 7, 2025
my powershell payload was slightly broken, so I removed my failed obfuscation
@C08W38101 C08W38101 requested a review from hak5peaks March 7, 2025 21:49
fixed mistakes made during design such as making a delay at the front of the program
added a better explanation
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
pending requested changes requires changes before merge
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants