-
Notifications
You must be signed in to change notification settings - Fork 140
Persistence
Dave Hardy edited this page Jul 6, 2016
·
7 revisions
The Install-Persistence and Remove-Persistence commands create a 'Userland' persistence through the use of the 'Run' registry keys. These DO NOT require elevated privileges.
Install-Persistence
One point to note with the output in the C2-Sever PowerShell window, you will notice that the whole PowerShell command ran against the victim is displayed, within this you will see any error traps and the associated output. Please ignore this and refer to the output Command returned against host:xxxxx
The Install-ServiceLevel-Persistence is the equivalent SYSTEM level persistence to the above. Elevated privileges ARE required.
Install-ServiceLevel-Persistence