mobdk / CallBack

Execute Mimikatz in shellcode format, uses native API VirtualAlloc and EnumSystemGeoID
8 stars 4 forks source link

Mimikatz shellcode #1

Open Haunted-Banshee opened 2 years ago

Haunted-Banshee commented 2 years ago

How is this MImikatz shellcode generated?

mobdk commented 2 years ago

with this powershell code: https://github.com/monoxgas/sRDI changed som of the code so the output is in 3 digits ex. 001, 235

Haunted-Banshee commented 2 years ago

Use sRDI to convert mimikatz.dll? Isn't mimikatz.exe converted?

mobdk commented 2 years ago

yes the .exe version