After zerologon + wmi are ran on all exploitable machines, a new password appears in the configuration. That password doesn't look like a typical password and the orgin of it is unknown.
To Reproduce
Steps to reproduce the behavior:
Configure WMI + zerologon exploiter + all machines exploitable by these
Run the agent
Check config, see the long password that looks like a concatenation of hashes
Tasks
[x] Investigate the origins of this credential (0d) - @VakarisZ
Describe the bug
After zerologon + wmi are ran on all exploitable machines, a new password appears in the configuration. That password doesn't look like a typical password and the orgin of it is unknown.
To Reproduce
Steps to reproduce the behavior:
Tasks