Open init5-SF opened 3 years ago
oh shit, firstly, yea it's normal to take that long. second, try to set the iteration to the default, which is 2. lemme know what's the result after you set the iteration to 2. I'm so sorry about this, I've been focusing on other project. And do you ever get caught by AVs when using Powershell before, cause it can be the problem, please try it on a freshly installed Windows 10. Oh, and can you give me the script that you have encrypted?
Tried with 2 iterations, same result unfortunately. (Also the script exceeded 1mb in size)
Here's the script - https://gist.githubusercontent.com/monoxgas/9d238accd969550136db/raw/7806cc26744b6025e8f1daf616bc359cb6a11965/Invoke-DCSync.ps1
Tried with 2 iterations, same result unfortunately. (Also the script exceeded 1mb in size)
Here's the script - https://gist.githubusercontent.com/monoxgas/9d238accd969550136db/raw/7806cc26744b6025e8f1daf616bc359cb6a11965/Invoke-DCSync.ps1
Oh sorry,what i mean is please upload the output of the BetterXencrypt.I will test them on my VM when i get time 😉
Sure, Here!
Ok, Thx! Gotta test it on my VM when I have time
Same thing for me I have used Invoke-Mimikatz using the default 2 iterations, changed the name into Invoke-DilanDog and used the classic powershell directive like so :
Those are the results.
Sorry, I've been busy working on something else. I'm going to update the stub as soon as I have time.
I'm trying to make my own Crypter for Linux, you can give it a look from my repository on my own profile
Hey there, I've ran the script using 1 iteration but the resultant payload still got flagged, also importing the encrypted script took a very long time, is that normal?