COM objects - hegusung/Windows-Initial-Access GitHub Wiki

Inputs

  • C/C++
  • .NET
  • Powershell
  • VBS/VBE
  • JS/JSE
  • VBA

Outputs

  • Command execution
  • Internet download
  • Base64 / Hex decoding
  • Write on disk
  • WMI queries
  • Schedule Tasks
  • Registry modification
  • Loading .Net in memory
  • Execute DLL on disk
  • Execute XSL files (remote/local)