-
Notifications
You must be signed in to change notification settings - Fork 65
Open
Description
Tried to run PowerLIne in a Win 10 machine and AV caught it:
PS C:\WINDOWS\system32> cd C:\PowerLine-master\PowerLine-master\PowerLine
PS C:\PowerLine-master\PowerLine-master\PowerLine> PowerLine.exe Invoke-Mimikatz "Invoke-Mimikatz -Command "\"sekurlsa::logonPasswords"""
At line:1 char:1
- PowerLine.exe Invoke-Mimikatz "Invoke-Mimikatz -Command "`"sekurlsa ...
-
This script contains malicious content and has been blocked by your antivirus software.
+ CategoryInfo : ParserError: (:) [], ParentContainsErrorRecordException
+ FullyQualifiedErrorId : ScriptContainedMaliciousContent
Metadata
Metadata
Assignees
Labels
No labels