AutoC2.sh 42 KB


  1. #!/bin/bash
  2. cat << "EOF"
  3. __ _ ___ ___ _ _ _ __ ___ ___ | |__ _ __ ___ __ _ ___| |__
  4. / _` / __/ __| | | | '_ ` _ \ / _ \_____| '_ \| '__/ _ \/ _` |/ __| '_ \
  5. | (_| \__ \__ \ |_| | | | | | | __/_____| |_) | | | __/ (_| | (__| | | |
  6. \__,_|___/___/\__,_|_| |_| |_|\___| |_.__/|_| \___|\__,_|\___|_| |_|
  7. **AutoC2**
  8. Use At Your Own Risk
  9. EOF
  10. sleep 2
  11. echo""
  12. echo""
  13. echo "WARNING THIS SCRIPT TAKES FUCKING FOREVER!!!"
  14. echo""
  15. echo""
  16. echo "All Tools Can Be Found In The /opt Directory"
  17. echo ""
  18. sleep 2
  19. read -p "Press enter to continue"
  20. echo ""
  21. echo "Updating Your System"
  22. echo""
  23. sleep 2
  24. apt-get update -y && apt-get upgrade -y
  25. apt update -y && apt upgrade -y
  26. apt autoremove -y
  27. echo ""
  28. sleep 2
  29. echo "Installing System Dependencies"
  30. echo ""
  31. sleep 2
  32. apt --fix-broken install
  33. apt install git -y
  34. apt --fix-broken install
  35. apt install net-tools gparted php-curl php-xml docker.io ruby-bundler golang python-pip python3 make snap fuse ruby-bundler python3-pip pipx chromium-browser dnsmasq hostapd openssl open-vm-tools-desktop build-essential libpcap-dev -y
  36. apt --fix-broken install
  37. echo ""
  38. echo "Installing Hackery Stuff"
  39. echo ""
  40. sleep 2
  41. apt install nmap wifite nikto wpscan aircrack-ng ettercap-graphical john hashcat crunch tshark macchanger recon-ng snap dhcpd lighttpd mdk4 dsniff mdk3 php-cgi xterm cewl crunch hydra sqlmap ncrack gobuster dirb wfuzz medusa netcat -y
  42. apt --fix-broken install
  43. snap install amass
  44. echo ""
  45. sleep 2
  46. echo "Installing CherryTree For Documentation"
  47. sleep 3
  48. sudo apt-get install cherrytree -y
  49. apt --fix-broken install -y
  50. echo ""
  51. echo "Creating Tool Folders"
  52. echo ""
  53. sleep 2
  54. cd /opt
  55. mkdir Initial_Access
  56. mkdir Recon
  57. mkdir Command_And_Control
  58. mkdir Social_Engineering
  59. mkdir Phishing
  60. mkdir Delivery
  61. mkdir Lateral_Movement
  62. mkdir Cloud
  63. mkdir Payload_Development
  64. mkdir Hak5_Implants
  65. mkdir Wireless
  66. mkdir Wordlists
  67. mkdir Web
  68. mkdir Virtual_Machines
  69. mkdir Staging
  70. mkdir Log_Aggregation
  71. mkdir Windows_OS
  72. echo""
  73. echo "Getting Resources"
  74. sleep 2
  75. echo ""
  76. echo "Installing Wordlists & Rule Sets"
  77. sleep 3
  78. cd /opt/Wordlists/
  79. git clone https://github.com/NotSoSecure/password_cracking_rules.git
  80. git clone https://github.com/praetorian-inc/Hob0Rules.git
  81. git clone https://github.com/danielmiessler/SecLists.git
  82. wget https://raw.githubusercontent.com/praetorian-inc/Hob0Rules/master/wordlists/rockyou.txt.gz
  83. echo""
  84. echo "Installing Recon Resources"
  85. echo""
  86. sleep 2
  87. cd /opt/Recon/
  88. echo""
  89. echo "Installing RustScan"
  90. echo""
  91. sleep 2
  92. git clone https://github.com/RustScan/RustScan.git
  93. cd RustScan.git
  94. docker build -t rustscan .
  95. cd /opt/Recon/
  96. echo "Installing GitLeaks"
  97. echo ""
  98. sleep 2
  99. git clone https://github.com/zricethezav/gitleaks.git
  100. cd gitleaks/
  101. make build
  102. echo ""
  103. cd /opt/Windows_OS/
  104. mkdir Recon
  105. cd Recon/
  106. echo "Installing MFA Sweep"
  107. echo ""
  108. sleep 2
  109. git clone https://github.com/dafthack/MFASweep
  110. cd /opt/Recon/
  111. echo "Installing S3Scanner"
  112. echo ""
  113. sleep 2
  114. git clone https://github.com/sa7mon/S3Scanner.git
  115. cd S3Scanner/
  116. pip3 install -r requirements.txt
  117. python3 -m S3Scanner
  118. cd /opt/Recon/
  119. echo""
  120. echo "Installing Enum4Linux"
  121. cd /opt/Recon/
  122. echo ""
  123. sleep 2
  124. git clone https://github.com/CiscoCXSecurity/enum4linux.git
  125. echo "alias enum4linux='/opt/enum4linux/./enum4linux.pl'" >> /root/.bashrc
  126. echo ""
  127. echo "Installing Cloud_Enum"
  128. echo""
  129. sleep 2
  130. git clone https://github.com/initstring/cloud_enum.git
  131. cd cloud_enum
  132. pip3 install -r ./requirements.txt
  133. cd /opt/Recon/
  134. echo "Installing Buster"
  135. echo ""
  136. sleep 2
  137. git clone https://github.com/sham00n/buster.git
  138. cd buster/
  139. python3 setup.py install
  140. cd /opt/Repo/
  141. git clone https://github.com/initstring/linkedin2username.git
  142. echo ""
  143. echo "Installing WitnessMe"
  144. echo ""
  145. sleep 2
  146. python3 -m pip install --user pipx
  147. pipx install witnessme
  148. pipx ensurepath
  149. cd /opt/Recon/
  150. echo ""
  151. echo "Installing Pagodo"
  152. echo ""
  153. sleep 2
  154. git clone https://github.com/opsdisk/pagodo.git
  155. cd pagodo
  156. pip install -r requirements.txt
  157. cd /opt/Recon/
  158. echo ""
  159. echo "Installing AttackSurfaceMapper"
  160. echo""
  161. sleep 2
  162. git clone https://github.com/superhedgy/AttackSurfaceMapper.git
  163. cd AttackSurfaceMapper
  164. python3 -m pip install --no-cache-dir -r requirements.txt
  165. cd /opt/Recon/
  166. echo ""
  167. echo "Installing SpiderFoot"
  168. echo ""
  169. sleep 2
  170. git clone https://github.com/smicallef/spiderfoot.git
  171. cd spiderfoot
  172. pip3 install -r requirements.txt
  173. pip3 install cherrypy
  174. pip3 install cherrypy_cors
  175. pip3 install publicsuffixlist
  176. pip3 install networkx
  177. pip3 install openpyxl
  178. cd /opt/Recon/
  179. echo""
  180. echo "Installing DNScan"
  181. echo ""
  182. sleep 2
  183. git clone https://github.com/rbsec/dnscan.git
  184. cd dnscan
  185. pip3 install -r requirements.txt
  186. pip3 install setuptools
  187. cd /opt/Recon/
  188. echo""
  189. echo "Installing SpoofCheck"
  190. echo""
  191. sleep 2
  192. git clone https://github.com/BishopFox/spoofcheck.git
  193. cd spoofcheck
  194. pip3 install -r requirements.txt
  195. cd /opt/Recon/
  196. echo ""
  197. echo "Installing LinkedInt"
  198. echo""
  199. sleep 2
  200. git clone https://github.com/vysecurity/LinkedInt.git
  201. cd LinkedInt
  202. pip3 install -r requirements.txt
  203. cd /opt/Recon/
  204. echo ""
  205. echo "Installing EyeWitness"
  206. echo ""
  207. sleep 2
  208. git clone https://github.com/ChrisTruncer/EyeWitness.git
  209. cd EyeWitness/Python/setup
  210. bash setup.sh
  211. cd /opt/Recon/
  212. echo""
  213. echo "Installing Aquatone"
  214. echo ""
  215. sleep 2
  216. mkdir Aquatone
  217. cd Aquatone/
  218. wget https://github.com/michenriksen/aquatone/releases/download/v1.7.0/aquatone_linux_amd64_1.7.0.zip
  219. unzip aquatone_linux_amd64_1.7.0.zip
  220. cd /opt/Recon/
  221. echo""
  222. echo "Installing DNSrecon"
  223. echo ""
  224. sleep 2
  225. git clone https://github.com/darkoperator/dnsrecon.git
  226. cd dnsrecon
  227. pip install -r requirements.txt
  228. python setup.py install
  229. cd /opt/Recon/
  230. echo ""
  231. echo "Installing Social Mapper"
  232. echo ""
  233. sleep 2
  234. git clone https://github.com/SpiderLabs/social_mapper.git
  235. cd /social_mapper/setup/
  236. pip install -r requirements.txt
  237. echo""
  238. cd /opt/Recon/
  239. echo "Installing theHarvester"
  240. echo ""
  241. sleep 2
  242. git clone https://github.com/laramies/theHarvester.git
  243. cd theHarvester/
  244. pip3 install aiohttp
  245. pip3 install aiomultiprocess
  246. python3 -m pip install -r requirements/base.txt
  247. python3 setup.py install
  248. cd /opt/Recon/
  249. echo ""
  250. echo "Installing Metagoofil"
  251. echo ""
  252. sleep 2
  253. git clone https://github.com/laramies/metagoofil.git
  254. echo""
  255. echo "Installing TruffleHog"
  256. echo ""
  257. sleep 2
  258. git clone https://github.com/dxa4481/truffleHog.git
  259. cd trufflehog; go install
  260. cd /opt/Recon/
  261. echo""
  262. echo "Installing Pwned0rNot -- API KEY REQUIRE"
  263. git clone https://github.com/thewhiteh4t/pwnedOrNot.git
  264. cd pwnedOrNot
  265. chmod +x install.sh
  266. ./install.sh
  267. cd /opt/Recon/
  268. echo""
  269. echo "Installing GitHarvester"
  270. echo ""
  271. sleep 2
  272. git clone https://github.com/metac0rtex/GitHarvester.git
  273. echo ""
  274. echo "Cloning Initial Access Resources"
  275. echo ""
  276. sleep 2
  277. ###Break For Recon Folder###
  278. cd /opt/Initial_Access
  279. echo "Installing Initial Access Tools"
  280. echo ""
  281. sleep 2
  282. echo "Installing Spraying Toolkit"
  283. echo ""
  284. sleep 2
  285. git clone https://github.com/byt3bl33d3r/SprayingToolkit.git
  286. cd SprayingToolkit/
  287. pip3 install -r requirements.txt
  288. cd /opt/Initial_Access
  289. echo ""
  290. sleep 2
  291. echo "Installing O365 Recon"
  292. echo ""
  293. git clone https://github.com/nyxgeek/o365recon.git
  294. echo ""
  295. sleep 2
  296. echo "Installing TREVORspray"
  297. echo ""
  298. sleep 2
  299. git clone https://github.com/blacklanternsecurity/TREVORspray.git
  300. cd TREVORspray/
  301. pip3 install -r requirements.txt
  302. sleep 2
  303. ###Break Initial Access###
  304. echo ""
  305. echo "Installing Payload Development Resources"
  306. echo ""
  307. sleep 2
  308. cd /opt/Payload_Development
  309. echo "Installing Unicorn"
  310. git clone https://github.com/trustedsec/unicorn.git
  311. echo""
  312. echo "Installing Demiguise"
  313. echo ""
  314. sleep 2
  315. git clone https://github.com/nccgroup/demiguise.git
  316. echo ""
  317. echo "Installing The Backdoor Factory"
  318. echo ""
  319. docker pull secretsquirrel/the-backdoor-factory
  320. echo ""
  321. sleep 2
  322. echo "Installing Avet"
  323. echo ""
  324. git clone https://github.com/govolution/avet.git
  325. cd avet
  326. bash setup.sh
  327. cd /opt/Payload_Development/
  328. sleep 2
  329. echo ""
  330. echo "Installing MetaTwin"
  331. git clone https://github.com/threatexpress/metatwin.git
  332. echo ""
  333. sleep 2
  334. echo "Installing PSAmsi"
  335. git clone https://github.com/cobbr/PSAmsi.git
  336. sleep 2
  337. echo ""
  338. echo "Worse-PDF"
  339. echo ""
  340. git clone https://github.com/3gstudent/Worse-PDF.git
  341. echo ""
  342. sleep 2
  343. echo "Installing Ivy"
  344. echo ""
  345. git clone https://github.com/optiv/Ivy.git
  346. cd Ivy
  347. go get github.com/fatih/color
  348. go get github.com/KyleBanks/XOREncryption/Go
  349. go build Ivy.go
  350. echo ""
  351. cd /opt/Payload_Development/
  352. echo "Installing PEzor"
  353. echo ""
  354. git clone https://github.com/phra/PEzor.git
  355. cd PEzor/
  356. bash install.sh
  357. echo ""
  358. #read -p "Open A New Terminal And Export The Path For PEzor To Work!"
  359. echo ""
  360. sleep 2
  361. echo "Installing ScareCrow"
  362. echo""
  363. cd /opt/Payload_Development/
  364. git clone https://github.com/optiv/ScareCrow.git
  365. cd ScareCrow/
  366. go get github.com/fatih/color
  367. go get github.com/yeka/zip
  368. go get github.com/josephspurrier/goversioninfo
  369. apt install openssl -y
  370. apt install osslsigncode -y
  371. apt install mingw-w64 -y
  372. go build ScareCrow.go
  373. cd /opt/Payload_Development/
  374. echo ""
  375. sleep 2
  376. echo "Installing Donut"
  377. echo ""
  378. git clone https://github.com/TheWover/donut.git
  379. cd donut/
  380. python3 setup.py install
  381. cd /opt/Payload_Development
  382. mkdir MAC_OS
  383. cd MAC_OS
  384. echo ""
  385. sleep 2
  386. echo "Installing Mystikal"
  387. echo ""
  388. git clone https://github.com/D00MFist/Mystikal.git
  389. cd /opt/Payload_Development/
  390. echo ""
  391. sleep 2
  392. cd /opt/Windows_OS/
  393. mkdir Payload_Development/
  394. cd Payload_Development/
  395. echo "Installing GadgetToJscript"
  396. git clone https://github.com/med0x2e/GadgetToJScript.git
  397. echo ""
  398. cd /opt/Payload_Development/
  399. echo "Installing Charlotte"
  400. git clone https://github.com/9emin1/charlotte.git
  401. echo ""
  402. cd /opt/Payload_Development/
  403. echo "Installing Invisibility Cloak"
  404. git clone https://github.com/xforcered/InvisibilityCloak.git
  405. echo ""
  406. cd /opt/Windows_OS/Payload_Development/
  407. echo "Installing Dendrobate"
  408. echo ""
  409. git clone https://github.com/FuzzySecurity/Dendrobate.git
  410. echo ""
  411. sleep 2
  412. cd /opt/Payload_Development/
  413. echo "Installing Offensive-VBA-and-XLS-Entanglement"
  414. echo ""
  415. git clone https://github.com/BC-SECURITY/Offensive-VBA-and-XLS-Entanglement.git
  416. sleep 2
  417. echo ""
  418. echo "Installing xlsGen"
  419. echo ""
  420. sleep 2
  421. git clone https://github.com/aaaddress1/xlsGen.git
  422. echo ""
  423. echo "Installing DarkArmour"
  424. echo ""
  425. sleep 2
  426. git clone https://github.com/bats3c/darkarmour.git
  427. sudo apt install mingw-w64-tools mingw-w64-common g++-mingw-w64 gcc-mingw-w64 upx-ucl osslsigncode -y
  428. echo ""
  429. echo "Installing InlineWhispers"
  430. echo""
  431. sleep 2
  432. git clone https://github.com/outflanknl/InlineWhispers.git
  433. echo ""
  434. cd /opt/Windows_OS/Payload_Development/
  435. echo "Installing EvilClippy"
  436. echo ""
  437. sleep 2
  438. git clone https://github.com/outflanknl/EvilClippy.git
  439. echo ""
  440. echo "Installing OfficePurge"
  441. echo ""
  442. git clone https://github.com/fireeye/OfficePurge.git
  443. sleep 2
  444. echo ""
  445. echo "Installing ThreatCheck"
  446. echo ""
  447. git clone https://github.com/rasta-mouse/ThreatCheck.git
  448. echo ""
  449. echo "Ruler"
  450. echo ""
  451. sleep 2
  452. git clone https://github.com/sensepost/ruler.git
  453. echo ""
  454. echo "Installing DueDLLigence"
  455. echo ""
  456. sleep 2
  457. git clone https://github.com/fireeye/DueDLLigence.git
  458. echo ""
  459. echo "Installing RuralBishop"
  460. echo ""
  461. sleep 2
  462. git clone https://github.com/rasta-mouse/RuralBishop.git
  463. echo ""
  464. echo "Installing TikiTorch"
  465. echo ""
  466. sleep 2
  467. git clone https://github.com/rasta-mouse/TikiTorch.git
  468. echo ""
  469. echo "Installing SharpShooter"
  470. echo ""
  471. sleep 2
  472. git clone https://github.com/mdsecactivebreach/SharpShooter.git
  473. echo ""
  474. echo "Installing SharpSploit"
  475. echo ""
  476. sleep 2
  477. git clone https://github.com/cobbr/SharpSploit.git
  478. echo ""
  479. echo "Installing MSBuildAPICaller"
  480. echo ""
  481. sleep 2
  482. git clone https://github.com/rvrsh3ll/MSBuildAPICaller.git
  483. echo ""
  484. echo "Installing Macro_Pack"
  485. echo ""
  486. sleep 2
  487. git clone https://github.com/sevagas/macro_pack.git
  488. echo ""
  489. echo "Installing Inceptor"
  490. echo ""
  491. sleep 2
  492. git clone https://github.com/klezVirus/inceptor.git
  493. echo ""
  494. echo "Installing Mortar"
  495. echo ""
  496. sleep 2
  497. git clone https://github.com/0xsp-SRD/mortar.git
  498. echo ""
  499. echo "Installing RedTeamCCode"
  500. echo ""
  501. sleep 2
  502. git clone https://github.com/Mr-Un1k0d3r/RedTeamCCode.git
  503. echo ""
  504. cd /opt/Payload_Development/
  505. echo "Installing Nimcrypt2"
  506. echo ""
  507. git clone https://github.com/icyguider/Nimcrypt2.git
  508. apt install gcc mingw-w64 xz-utils git
  509. cd Nimcrypt2/
  510. curl https://nim-lang.org/choosenim/init.sh -sSf | sh
  511. echo "export PATH=$HOME/.nimble/bin:$PATH" >> ~/.bashrc
  512. export PATH=$HOME/.nimble/bin:$PATH
  513. nimble install winim nimcrypto docopt ptr_math strenc
  514. nim c -d=release --cc:gcc --embedsrc=on --hints=on --app=console --cpu=amd64 --out=nimcrypt nimcrypt.nim
  515. cd /opt/Payload_Development/
  516. echo ""
  517. echo "Installing FourEye"
  518. echo ""
  519. sleep 2
  520. git clone https://github.com/lengjibo/FourEye.git
  521. cd FourEye/
  522. chmod 755 setup.sh
  523. ./setup.sh
  524. echo ""
  525. ###Break For Payload Development###
  526. echo "Cloning Delivery Resources"
  527. echo ""
  528. cd /opt/Delivery/
  529. echo ""
  530. echo "Installing O365 Attack Toolkit"
  531. echo ""
  532. sleep 2
  533. git clone https://github.com/mdsecactivebreach/o365-attack-toolkit.git
  534. echo ""
  535. sleep 2
  536. echo ""
  537. echo "Installing BEEF"
  538. echo ""
  539. sleep 2
  540. git clone https://github.com/beefproject/beef.git
  541. cd beef
  542. bundle install
  543. ./install
  544. echo ""
  545. ###Break For Delivery###
  546. echo "Cloning Your C2 Resources"
  547. echo ""
  548. cd /opt/Command_And_Control/
  549. echo "Cloning C2 Frameworks"
  550. echo ""
  551. echo "Installing Empire & Starkiller"
  552. echo ""
  553. sleep 2
  554. git clone https://github.com/BC-SECURITY/Empire.git
  555. version=$(lsb_release -sr)
  556. cd Empire/
  557. pip install poetry -y
  558. wget https://github.com/PowerShell/PowerShell/releases/download/v7.2.2/powershell-lts_7.2.2-1.deb_amd64.deb
  559. dpkg -i powershell-lts_7.2.2-1.deb_amd64.deb
  560. find ./ -type f -print0 | xargs -0 sed -i "s/20.04/${version}/g"
  561. find ./ -type f -print0 | xargs -0 sed -i "s/18.04/${version}/g"
  562. find ./ -type f -print0 | xargs -0 sed -i "s/21.04/${version}/g"
  563. find ./ -type f -print0 | xargs -0 sed -i "s/21.10/${version}/g"
  564. find ./ -type f -print0 | xargs -0 sed -i "s/16.04/${version}/g"
  565. find ./ -type f -print0 | xargs -0 sed -i "s/22.04/${version}/g"
  566. cd setup/
  567. bash install.sh
  568. cd ../
  569. sudo wget https://github.com/BC-SECURITY/Starkiller/releases/download/v1.8.0/starkiller-1.8.0.AppImage
  570. sudo chmod +x starkiller-1.8.0.AppImage
  571. echo""
  572. sleep 2
  573. cd /opt/Command_And_Control/
  574. echo "Installing PoshC2"
  575. echo ""
  576. git clone https://github.com/nettitude/PoshC2.git
  577. cd PoshC2/
  578. bash Install.sh
  579. cd /opt/Command_And_Control/
  580. echo ""
  581. echo "Installing Merlin C2"
  582. echo ""
  583. sleep 2
  584. git clone https://github.com/Ne0nd0g/merlin.git
  585. cd merlin/
  586. go build
  587. cd /opt/Command_And_Control/
  588. echo ""
  589. echo "Installing Mythic"
  590. echo ""
  591. sleep 2
  592. git clone https://github.com/its-a-feature/Mythic.git
  593. cd Mythic/
  594. ./install_docker_ubuntu.sh
  595. echo ""
  596. cd /opt/Command_And_Control/
  597. echo ""
  598. echo "Installing Covenant With Random Profile"
  599. echo ""
  600. echo "Enter A Random Word!"
  601. read Random1
  602. echo ""
  603. echo "Enter A Different Random Word!"
  604. read Random2
  605. echo ""
  606. echo "Enter A Different Random Word!"
  607. read Random3
  608. custom1=$(echo $custom1 | md5sum | head -c 20)
  609. cd /opt/Command_And_Control/
  610. sudo git clone --recurse-submodules https://github.com/ZeroPointSecurity/Covenant.git
  611. cd /opt/Command_And_Control/Covenant/Covenant/
  612. wget -q https://packages.microsoft.com/config/ubuntu/20.04/packages-microsoft-prod.deb -O packages-microsoft-prod.deb
  613. sudo dpkg -i packages-microsoft-prod.deb
  614. sudo apt-get update -y
  615. apt --fix-broken install -y
  616. sudo apt-get install apt-transport-https -y
  617. apt --fix-broken install -y
  618. sudo apt-get update -y
  619. apt --fix-broken install -y
  620. sudo apt-get install dotnet-sdk-3.1 -y
  621. apt --fix-broken install -y
  622. mv ./Data/AssemblyReferences/ ../AssemblyReferences/
  623. mv ./Data/ReferenceSourceLibraries/ ../ReferenceSourceLibraries/
  624. mv ./Data/EmbeddedResources/ ../EmbeddedResources/
  625. mv ./Models/Covenant/ ./Models/${Random1^}/
  626. mv ./Components/CovenantUsers/ ./Components/${Random1^}Users/
  627. mv ./Components/Grunts/ ./Components/${Random2^}s/
  628. mv ./Models/Grunts/ ./Models/${Random2^}s/
  629. mv ./Data/Grunt/GruntBridge/ ./Data/Grunt/${Random2^}Bridge/
  630. mv ./Data/Grunt/GruntHTTP/ ./Data/Grunt/${Random2^}HTTP/
  631. mv ./Data/Grunt/GruntSMB/ ./Data/Grunt/${Random2^}SMB/
  632. mv ./Components/GruntTaskings/ ./Components/${Random2^}Taskings/
  633. mv ./Components/GruntTasks/ ./Components/${Random2^}Tasks/
  634. mv ./Data/Grunt/ ./Data/${Random2^}/
  635. find ./ -type f -print0 | xargs -0 sed -i "s/Grunt/${Random2^}/g"
  636. find ./ -type f -print0 | xargs -0 sed -i "s/GRUNT/${Random2^^}/g"
  637. find ./ -type f -print0 | xargs -0 sed -i "s/grunt/${Random2,,}/g"
  638. #find ./ -type f -print0 | xargs -0 sed -i "s/covenant/${Random1,,}/g"
  639. find ./ -type f -print0 | xargs -0 sed -i "s/Covenant/${Random1^}/g"
  640. find ./ -type f -print0 | xargs -0 sed -i "s/COVENANT/${Random1^^}/g"
  641. find ./ -type f -print0 | xargs -0 sed -i "s/ExecuteStager/ExecLevel/g"
  642. #find ./ -type f -print0 | xargs -0 sed -i "s/REPLACE_PROFILE/REP_PROF/g"
  643. #find ./ -type f -print0 | xargs -0 sed -i "s/REPLACE_PIPE/REP_PIP/g"
  644. #find ./ -type f -print0 | xargs -0 sed -i "s/GUID/ANGID/g"
  645. find ./ -type f -print0 | xargs -0 sed -i "s/SetupAES/Install"${custom1}"AES/g"
  646. find ./ -type f -print0 | xargs -0 sed -i "s/SessionKey/Sess"${custom1}"KEy/g"
  647. find ./ -type f -print0 | xargs -0 sed -i "s/EncryptedChallenge/Enc"${custom1}"ChallEnge/g"
  648. find ./ -type f -print0 | xargs -0 sed -i "s/DecryptedChallenges/Decrypt"${custom1}"ChallEnges/g"
  649. find ./ -type f -print0 | xargs -0 sed -i "s/Stage0Body/First"${custom1}"Body/g"
  650. find ./ -type f -print0 | xargs -0 sed -i "s/Stage0Response/First"${custom1}"Response/g"
  651. find ./ -type f -print0 | xargs -0 sed -i "s/Stage0Bytes/First"${custom1}"Bytes/g"
  652. find ./ -type f -print0 | xargs -0 sed -i "s/Stage1Body/Seccond"${custom1}"Body/g"
  653. find ./ -type f -print0 | xargs -0 sed -i "s/Stage1Response/Seccond"${custom1}"Response/g"
  654. find ./ -type f -print0 | xargs -0 sed -i "s/Stage1Bytes/Seccond"${custom1}"Bytes/g"
  655. find ./ -type f -print0 | xargs -0 sed -i "s/Stage2Body/Third"${custom1}"Body/g"
  656. find ./ -type f -print0 | xargs -0 sed -i "s/Stage2Response/Third"${custom1}"Response/g"
  657. find ./ -type f -print0 | xargs -0 sed -i "s/Stage2Bytes/Third"${custom1}"Bytes/g"
  658. find ./ -type f -print0 | xargs -0 sed -i "s/message64str/messAgE"${custom1}"64str/g"
  659. find ./ -type f -print0 | xargs -0 sed -i "s/messageBytes/messAgE"${custom1}"bytes/g"
  660. find ./ -type f -print0 | xargs -0 sed -i "s/totalReadBytes/ToTal"${custom1}"ReaDBytes/g"
  661. #find ./ -type f -print0 | xargs -0 sed -i "s/inputStream/instream/g"
  662. #find ./ -type f -print0 | xargs -0 sed -i "s/outputStream/outstream/g"
  663. find ./ -type f -print0 | xargs -0 sed -i "s/deflateStream/deFlatE"${custom1}"stream/g"
  664. find ./ -type f -print0 | xargs -0 sed -i "s/memoryStream/memOrYstream/g" #don't change
  665. find ./ -type f -print0 | xargs -0 sed -i "s/compressedBytes/packed"${custom1}"bytes/g"
  666. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/REPLACE_/REP"${custom1}"_/g"
  667. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/_PROFILE_/_PROF"${custom1}"_/g"
  668. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/_VALIDATE_/_VA"${custom1}"L_/g"
  669. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/GUID/${Random3^^}/g"
  670. find ./ -type f -name "*.razor" -print0 | xargs -0 sed -i "s/GUID/${Random3^^}/g"
  671. find ./ -type f -name "*.json" -print0 | xargs -0 sed -i "s/GUID/${Random3^^}/g"
  672. find ./ -type f -name "*.yaml" -print0 | xargs -0 sed -i "s/GUID/${Random3^^}/g"
  673. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/guid/${Random3,,}/g"
  674. find ./ -type f -name "*.razor" -print0 | xargs -0 sed -i "s/guid/${Random3,,}/g"
  675. find ./ -type f -name "*.json" -print0 | xargs -0 sed -i "s/guid/${Random3,,}/g"
  676. find ./ -type f -name "*.yaml" -print0 | xargs -0 sed -i "s/guid/${Random3,,}/g"
  677. find ./ -type f -print0 | xargs -0 sed -i "s/ProfileHttp/Prof"${custom1}"HTTP/g"
  678. find ./ -type f -print0 | xargs -0 sed -i "s/baseMessenger/bAse"${custom1}"mEsSenger/g"
  679. find ./ -type f -print0 | xargs -0 sed -i "s/PartiallyDecrypted/Part"${custom1}"decrypted/g"
  680. find ./ -type f -print0 | xargs -0 sed -i "s/FullyDecrypted/Fulld"${custom1}"ecrypted/g"
  681. find ./ -type f -print0 | xargs -0 sed -i "s/compressedBytes/packed"${custom1}"bytes/g"
  682. find ./ -type f -print0 | xargs -0 sed -i "s/CookieWebClient/Ottos"${custom1}"WebClient/g"
  683. #find ./ -type f -print0 | xargs -0 sed -i "s/CookieContainer/KekseContains/g"
  684. #find ./ -type f -print0 | xargs -0 sed -i "s/GetWebRequest/DoAnWebReq/g"
  685. find ./ -type f -print0 | xargs -0 sed -i "s/Jitter/JIt"${custom1}"ter/g"
  686. find ./ -type f -print0 | xargs -0 sed -i "s/ConnectAttempts/ConneCT"${custom1}"AttEmpts/g"
  687. find ./ -type f -print0 | xargs -0 sed -i "s/RegisterBody/Reg"${custom1}"Body/g"
  688. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/messenger/meSsenGer"${custom1}"/g"
  689. find ./ -type f -print0 | xargs -0 sed -i "s/Hello World/"${custom1}"/g"
  690. find ./ -type f -print0 | xargs -0 sed -i "s/ValidateCert/Val"${custom1}"CerT/g"
  691. find ./ -type f -print0 | xargs -0 sed -i "s/UseCertPinning/UsCert"${custom1}"Pin/g"
  692. find ./ -type f -print0 | xargs -0 sed -i "s/EncryptedMessage/Enc"${custom1}"Msg/g"
  693. find ./ -type f -print0 | xargs -0 sed -i "s/cookieWebClient/"${custom1}"WebClient/g" #ottos
  694. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/aes/crypt"${custom1}"var/g"
  695. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/aes2/crypt"${custom1}"var2/g"
  696. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array5/ar"${custom1}"r5/g"
  697. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array6/ar"${custom1}"r6/g"
  698. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array4/ar"${custom1}"r4/g"
  699. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array7/ar"${custom1}"r7/g"
  700. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array1/ar"${custom1}"r1/g"
  701. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array2/ar"${custom1}"r2/g"
  702. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/array3/ar"${custom1}"r3/g"
  703. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/list1/l"${custom1}"i1/g"
  704. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/list2/l"${custom1}"i2/g"
  705. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/list3/l"${custom1}"i3/g"
  706. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/list4/l"${custom1}"i4/g"
  707. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/list5/l"${custom1}"i5/g"
  708. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group0/gr"${custom1}"p0/g"
  709. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group1/gr"${custom1}"p1/g"
  710. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group2/gr"${custom1}"p2/g"
  711. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group3/gr"${custom1}"p3/g"
  712. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group4/gr"${custom1}"p4/g"
  713. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group5/gr"${custom1}"p5/g"
  714. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group6/gr"${custom1}"p6/g"
  715. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group7/gr"${custom1}"p7/g"
  716. find ./ -type f -name "*.cs" -print0 | xargs -0 sed -i "s/group8/gr"${custom1}"p8/g"
  717. find ./ -type f -name "*Grunt*" | while read FILE ; do
  718. newfile="$(echo ${FILE} |sed -e "s/Grunt/${Random2^}/g")";
  719. mv "${FILE}" "${newfile}";
  720. done
  721. find ./ -type f -name "*GRUNT*" | while read FILE ; do
  722. newfile="$(echo ${FILE} |sed -e "s/GRUNT/${Random2^^}/g")";
  723. mv "${FILE}" "${newfile}";
  724. done
  725. find ./ -type f -name "*grunt*" | while read FILE ; do
  726. newfile="$(echo ${FILE} |sed -e "s/grunt/${Random2,,}/g")";
  727. mv "${FILE}" "${newfile}";
  728. done
  729. find ./ -type f -name "*Covenant*" | while read FILE ; do
  730. newfile="$(echo ${FILE} |sed -e "s/Covenant/${Random1^}/g")";
  731. mv "${FILE}" "${newfile}";
  732. done
  733. find ./ -type f -name "*COVENANT*" | while read FILE ; do
  734. newfile="$(echo ${FILE} |sed -e "s/COVENANT/${Random2^^}/g")";
  735. mv "${FILE}" "${newfile}";
  736. done
  737. #find ./ -type f -name "*covenant*" | while read FILE ; do
  738. # newfile="$(echo ${FILE} |sed -e "s/covenant/ottocommand/g")";
  739. # mv "${FILE}" "${newfile}";
  740. #done
  741. mv ../AssemblyReferences/ ./Data/
  742. mv ../ReferenceSourceLibraries/ ./Data/
  743. mv ../EmbeddedResources/ ./Data/
  744. dotnet build
  745. echo ""
  746. cd /opt/Command_And_Control/
  747. echo "Installing Shad0w"
  748. echo ""
  749. sleep 2
  750. git clone https://github.com/bats3c/shad0w.git
  751. cd shad0w/
  752. bash install.sh
  753. echo ""
  754. cd /opt/Command_And_Control/
  755. echo "Installing Sliver"
  756. echo ""
  757. sleep 2
  758. git clone https://github.com/BishopFox/sliver.git
  759. cd sliver/
  760. python3 build.py
  761. cd /opt/Command_And_Control
  762. echo ""
  763. echo "Installing SilentTrinity"
  764. echo ""
  765. sleep 2
  766. git clone https://github.com/byt3bl33d3r/SILENTTRINITY.git
  767. cd SILENTTRINITY/
  768. pip3 install -r requirements.txt
  769. cd /opt/Command_And_Control/
  770. echo ""
  771. echo "Installing Pupy C2"
  772. echo ""
  773. sleep 2
  774. git clone https://github.com/n1nj4sec/pupy.git
  775. echo ""
  776. echo "Installing Metasploit"
  777. sleep 2
  778. echo ""
  779. apt install postgresql -y
  780. systemctl start postgresql
  781. systemctl enable postgresql
  782. apt install curl -y
  783. apt --fix-broken install -y
  784. cd /opt/Command_And_Control/
  785. curl https://raw.githubusercontent.com/rapid7/metasploit-omnibus/master/config/templates/metasploit-framework-wrappers/msfupdate.erb > msfinstall
  786. chmod +x msfinstall
  787. ./msfinstall
  788. apt --fix-broken install -y
  789. echo ""
  790. ###Break For C2 Frameworks###
  791. echo "Cloning Staging Resources"
  792. echo ""
  793. cd /opt/Staging/
  794. echo""
  795. echo "Installing PwnDrop"
  796. git clone https://github.com/kgretzky/pwndrop.git
  797. cd pwndrop/
  798. go build
  799. cd /opt/Staging
  800. echo ""
  801. echo "Installing C2 Concealer"
  802. echo ""
  803. sleep 2
  804. git clone https://github.com/FortyNorthSecurity/C2concealer.git
  805. cd C2concealer/
  806. bash install.sh
  807. cd /opt/Staging/
  808. echo ""
  809. echo "Installing FindFrontableDomains"
  810. echo ""
  811. sleep 2
  812. git clone https://github.com/rvrsh3ll/FindFrontableDomains.git
  813. cd FindFrontableDomains/
  814. bash install.sh
  815. echo ""
  816. echo "Installing DomainHunter"
  817. echo ""
  818. cd /opt/Staging/
  819. sleep 2
  820. git clone https://github.com/threatexpress/domainhunter.git
  821. cd domainhunter/
  822. pip3 install -r requirements.txt
  823. echo ""
  824. cd /opt/Staging/
  825. echo "Installing RedWarden"
  826. echo ""
  827. sleep 2
  828. git clone https://github.com/mgeeky/RedWarden.git
  829. cd RedWarden/
  830. pip3 install -r requirements.txt
  831. cd /opt/Staging/
  832. echo ""
  833. echo "Installing AzureC2Relay"
  834. echo ""
  835. sleep 2
  836. git clone https://github.com/Flangvik/AzureC2Relay.git
  837. echo ""
  838. echo "Installing C3"
  839. echo ""
  840. sleep 2
  841. cd /opt/Windows_OS
  842. git clone https://github.com/FSecureLABS/C3.git
  843. echo ""
  844. cd /opt/Staging/
  845. echo "Installing Chameleon"
  846. echo ""
  847. sleep 2
  848. git clone https://github.com/mdsecactivebreach/Chameleon.git
  849. cd Chameleon/
  850. pip3 install -r requirements.txt
  851. cd /opt/Staging/
  852. echo ""
  853. echo "Installing Redirect Rules"
  854. echo ""
  855. sleep 2
  856. git clone https://github.com/0xZDH/redirect.rules.git
  857. cd redirect.rules/
  858. bash setup.sh
  859. echo ""
  860. echo "Installing Log Aggregation Resources"
  861. echo ""
  862. sleep 2
  863. cd /opt/Log_Aggregation
  864. echo ""
  865. echo "Installing RedELK"
  866. echo ""
  867. sleep 2
  868. git clone https://github.com/outflanknl/RedELK.git
  869. echo ""
  870. echo "Installing RedTeamSIEM"
  871. echo ""
  872. sleep 2
  873. git clone https://github.com/SecurityRiskAdvisors/RedTeamSIEM.git
  874. echo ""
  875. echo "Installing Situational Awareness Resources"
  876. echo ""
  877. sleep 2
  878. cd /opt/Windows_OS
  879. mkdir Situational_Awareness
  880. cd Situational_Awareness/
  881. echo ""
  882. echo "Installing AggressiveProxy"
  883. echo ""
  884. sleep 2
  885. git clone https://github.com/EncodeGroup/AggressiveProxy.git
  886. echo ""
  887. echo "Installing Gopher"
  888. echo ""
  889. sleep 2
  890. git clone https://github.com/EncodeGroup/Gopher.git
  891. echo ""
  892. echo "Installing SharpEDRChecker"
  893. echo ""
  894. sleep 2
  895. git clone https://github.com/PwnDexter/SharpEDRChecker.git
  896. echo ""
  897. echo "Installing CS-Situational-Awareness-BOF"
  898. echo ""
  899. sleep 2
  900. git clone https://github.com/trustedsec/CS-Situational-Awareness-BOF.git
  901. echo ""
  902. echo "Installing Seatbelt"
  903. echo ""
  904. sleep 2
  905. git clone https://github.com/GhostPack/Seatbelt.git
  906. echo ""
  907. echo "Installing SauronEye"
  908. echo ""
  909. sleep 2
  910. git clone https://github.com/vivami/SauronEye.git
  911. echo ""
  912. echo "Installing SharpShares"
  913. echo ""
  914. sleep 2
  915. git clone https://github.com/mitchmoser/SharpShares.git
  916. echo ""
  917. echo "Installing SharpAppLocker"
  918. echo ""
  919. sleep2
  920. git clone https://github.com/Flangvik/SharpAppLocker/.git
  921. echo ""
  922. echo "Installing SharpPrinter"
  923. echo ""
  924. sleep 2
  925. git clone https://github.com/rvrsh3ll/SharpPrinter.git
  926. echo ""
  927. echo "Installing Standin"
  928. echo ""
  929. git clone https://github.com/FuzzySecurity/StandIn.git
  930. echo ""
  931. echo "Installing Recon-AD"
  932. echo ""
  933. sleep 2
  934. git clone https://github.com/outflanknl/Recon-AD.git
  935. echo ""
  936. echo "Cloning BloodHound For Windows"
  937. echo ""
  938. sleep 2
  939. git clone https://github.com/BloodHoundAD/BloodHound.git
  940. echo ""
  941. echo "Installing PSPKIAudit"
  942. echo ""
  943. sleep 2
  944. git clone https://github.com/GhostPack/PSPKIAudit.git
  945. echo ""
  946. echo "Installing SharpView"
  947. echo ""
  948. sleep 2
  949. git clone https://github.com/tevora-threat/SharpView.git
  950. echo ""
  951. echo "Installing Rubeus"
  952. echo ""
  953. sleep 2
  954. git clone https://github.com/GhostPack/Rubeus.git
  955. echo ""
  956. echo "Installing Grouper"
  957. echo ""
  958. sleep 2
  959. git clone https://github.com/l0ss/Grouper.git
  960. echo ""
  961. echo "Installing ImproHound"
  962. echo ""
  963. sleep 2
  964. git clone https://github.com/improsec/ImproHound.git
  965. echo ""
  966. echo "Installing ADRecon"
  967. echo ""
  968. sleep 2
  969. git clone https://github.com/adrecon/ADRecon.git
  970. echo ""
  971. echo "Installing ADCSPwn"
  972. echo ""
  973. sleep2
  974. git clone https://github.com/bats3c/ADCSPwn.git
  975. echo ""
  976. echo "Cloning Credential Dumping Resource"
  977. echo ""
  978. sleep 2
  979. cd /opt/Windows_OS
  980. mkdir Credential_Dumping
  981. cd Credential_Dumping/
  982. echo ""
  983. echo "Cloning Mimikatz"
  984. echo ""
  985. sleep2
  986. git clone https://github.com/gentilkiwi/mimikatz.git
  987. echo ""
  988. echo "Cloning Dumpert"
  989. echo ""
  990. sleep 2
  991. git clone https://github.com/outflanknl/Dumpert.git
  992. echo ""
  993. echo "Cloning SharpLAPS"
  994. echo ""
  995. sleep 2
  996. git clone https://github.com/swisskyrepo/SharpLAPS.git
  997. echo ""
  998. echo "Cloning SharpDPAPI"
  999. echo ""
  1000. sleep 2
  1001. git clone https://github.com/GhostPack/SharpDPAPI.git
  1002. echo ""
  1003. echo "Cloning KeeThief"
  1004. echo ""
  1005. sleep 2
  1006. git clone https://github.com/GhostPack/KeeThief.git
  1007. echo ""
  1008. echo "Cloning SafetyKatz"
  1009. echo ""
  1010. sleep 2
  1011. git clone https://github.com/GhostPack/SafetyKatz.git
  1012. echo ""
  1013. echo "Cloning Forkatz"
  1014. echo ""
  1015. sleep 2
  1016. git clone https://github.com/Barbarisch/forkatz.git
  1017. echo ""
  1018. echo "Cloning PPLKiller"
  1019. echo ""
  1020. sleep 2
  1021. git clone https://github.com/RedCursorSecurityConsulting/PPLKiller.git
  1022. echo ""
  1023. echo "Cloning LaZagne"
  1024. echo ""
  1025. sleep 2
  1026. git clone https://github.com/AlessandroZ/LaZagne.git
  1027. echo ""
  1028. echo "Cloning AndrewSpecial"
  1029. echo ""
  1030. sleep 2
  1031. git clone https://github.com/hoangprod/AndrewSpecial.git
  1032. echo ""
  1033. echo "Cloning Net-GPPassword"
  1034. echo ""
  1035. sleep 2
  1036. git clone https://github.com/outflanknl/Net-GPPPassword.git
  1037. echo ""
  1038. echo "Cloning SharpChromium"
  1039. echo ""
  1040. sleep 2
  1041. git clone https://github.com/djhohnstein/SharpChromium.git
  1042. echo ""
  1043. echo "Cloning Chlonium"
  1044. echo ""
  1045. sleep 2
  1046. git clone https://github.com/rxwx/chlonium.git
  1047. echo ""
  1048. echo "Cloning SharpCloud"
  1049. echo ""
  1050. sleep 2
  1051. git clone https://github.com/chrismaddalena/SharpCloud.git
  1052. echo ""
  1053. echo "Cloning PypyKatz"
  1054. echo ""
  1055. sleep 2
  1056. git clone https://github.com/skelsec/pypykatz.git
  1057. echo ""
  1058. echo "Cloning NanoDump"
  1059. echo ""
  1060. sleep 2
  1061. git clone https://github.com/helpsystems/nanodump.git
  1062. echo ""
  1063. sleep 2
  1064. echo "Installing Privilege Escalation Resources"
  1065. echo ""
  1066. cd /opt/Windows_OS/
  1067. mkdir Privilege_Escalation
  1068. cd Privilege_Escalation/
  1069. echo ""
  1070. echo "Installing ElevateKit"
  1071. echo ""
  1072. sleep 2
  1073. git clone https://github.com/rsmudge/ElevateKit.git
  1074. echo ""
  1075. echo "Cloning Watson"
  1076. echo ""
  1077. sleep 2
  1078. git clone https://github.com/rasta-mouse/Watson.git
  1079. echo ""
  1080. echo "Cloning SharpUp"
  1081. echo ""
  1082. sleep 2
  1083. git clone https://github.com/GhostPack/SharpUp.git
  1084. echo ""
  1085. echo "Cloning dazzleUp"
  1086. echo ""
  1087. sleep 2
  1088. git clone https://github.com/hlldz/dazzleUP.git
  1089. echo ""
  1090. echo "Cloning PEASS-ng"
  1091. echo ""
  1092. sleep 2
  1093. git clone https://github.com/carlospolop/PEASS-ng.git
  1094. echo ""
  1095. echo "Cloning SweetPotato"
  1096. echo ""
  1097. sleep 2
  1098. git clone https://github.com/CCob/SweetPotato.git
  1099. echo ""
  1100. echo "Cloning MultiPotato"
  1101. echo ""
  1102. git clone https://github.com/S3cur3Th1sSh1t/MultiPotato.git
  1103. echo ""
  1104. echo "Cloning Defense Evasion Resources -- This is all Windows Based"
  1105. echo ""
  1106. sleep 2
  1107. cd /opt/Windows_OS/
  1108. mkdir Defense_Evasion
  1109. cd Defense_Evasion/
  1110. git clone https://github.com/hlldz/RefleXXion.git
  1111. git clone https://github.com/wavestone-cdt/EDRSandblast.git
  1112. git clone https://github.com/APTortellini/unDefender.git
  1113. git clone https://github.com/Yaxser/Backstab.git
  1114. git clone https://github.com/boku7/spawn.git
  1115. git clone https://github.com/CCob/BOF.NET.git
  1116. git clone https://github.com/Flangvik/NetLoader.git
  1117. git clone https://github.com/outflanknl/FindObjects-BOF.git
  1118. git clone https://github.com/GetRektBoy724/SharpUnhooker.git
  1119. git clone https://github.com/bats3c/EvtMute.git
  1120. git clone https://github.com/xforcered/InlineExecute-Assembly.git
  1121. git clone https://github.com/hlldz/Phant0m.git
  1122. git clone https://github.com/CCob/SharpBlock.git
  1123. git clone https://github.com/Kharos102/NtdllUnpatcher.git
  1124. git clone https://github.com/bats3c/DarkLoadLibrary.git
  1125. git clone https://github.com/Soledge/BlockEtw.git
  1126. git clone https://github.com/mdsecactivebreach/firewalker.git
  1127. git clone https://github.com/Cerbersec/KillDefenderBOF.git
  1128. echo ""
  1129. echo "Cloning Web Resources"
  1130. echo ""
  1131. sleep 2
  1132. cd /opt/Web/
  1133. git clone https://github.com/rastating/wordpress-exploit-framework
  1134. apt-get install ruby-dev zlib1g-dev liblzma-dev libsqlite3-dev -y
  1135. apt-get install build-essential patch -y
  1136. cd wordpress-exploit-framework/
  1137. ./rebuild_and_install_gem.sh
  1138. cd /opt/Web/
  1139. echo "Installing RED HAWK Framework"
  1140. echo ""
  1141. sleep 2
  1142. git clone https://github.com/Tuhinshubhra/RED_HAWK
  1143. cd RED_HAWK
  1144. apt-get update -y && apt-get upgrade -y
  1145. apt --fix-broken install -y
  1146. apt install php -y
  1147. echo "Cloning Social Engineering Resources"
  1148. echo ""
  1149. sleep 2
  1150. cd /opt/Social_Engineering
  1151. echo ""
  1152. echo "Installing Social Engineering Toolkit"
  1153. echo ""
  1154. sleep 2
  1155. git clone https://github.com/trustedsec/social-engineer-toolkit.git
  1156. cd social-engineering-toolkit/
  1157. python3 setup.py install
  1158. cd /opt/Social_Engineering/
  1159. echo ""
  1160. echo "Installing Social Engineering Payloads"
  1161. echo ""
  1162. sleep 2
  1163. git clone https://github.com/bhdresh/SocialEngineeringPayloads.git
  1164. echo ""
  1165. echo "Cloning Phishing Resources"
  1166. echo ""
  1167. sleep 2
  1168. cd /opt/Phishing/
  1169. echo ""
  1170. echo "Installing Phishery"
  1171. echo ""
  1172. sleep 2
  1173. mkdir phishery
  1174. cd phishery
  1175. wget https://github.com/ryhanson/phishery/releases/download/v1.0.2/phishery1.0.2linux-amd64.tar.gz
  1176. tar -xzvf phishery*.tar.gz
  1177. cp phishery /usr/local/bin
  1178. cd /opt/Phishing/
  1179. echo ""
  1180. echo "Installing EvilginX2"
  1181. echo ""
  1182. sleep 2
  1183. git clone https://github.com/kgretzky/evilginx2.git
  1184. cd evilginx2/
  1185. make
  1186. sudo make install
  1187. cd /opt/Phishing/
  1188. echo ""
  1189. echo "Installing PwnAuth"
  1190. echo ""
  1191. sleep 2
  1192. git clone https://github.com/fireeye/PwnAuth.git
  1193. cd PwnAuth/
  1194. bash setup.sh
  1195. cd /opt/Phishing/
  1196. echo ""
  1197. echo "Installig Modlishka"
  1198. echo ""
  1199. sleep 2
  1200. git clone https://github.com/drk1wi/Modlishka.git
  1201. cd Modlishka/
  1202. make
  1203. go build
  1204. cd /opt/Phishing/
  1205. echo ""
  1206. echo "Installing King-Phisher"
  1207. echo ""
  1208. sleep 2
  1209. git clone https://github.com/securestate/king-phisher.git
  1210. echo ""
  1211. echo "Installing FiercePhish"
  1212. echo ""
  1213. sleep 2
  1214. git clone https://github.com/Raikia/FiercePhish.git
  1215. cd FiercePhish/
  1216. bash install.sh
  1217. echo ""
  1218. echo "Installing ReelPhish"
  1219. echo ""
  1220. sleep 2
  1221. git clone https://github.com/fireeye/ReelPhish.git
  1222. cd ReelPhish/
  1223. pip3 install -r requirements.txt
  1224. cd /opt/Phishing/
  1225. echo ""
  1226. echo "Installing GoPhish"
  1227. echo ""
  1228. sleep 2
  1229. git clone https://github.com/gophish/gophish.git
  1230. cd gophish/
  1231. go build
  1232. echo ""
  1233. cd /opt/Phishing/
  1234. echo "Installing CredSniper"
  1235. echo ""
  1236. sleep 2
  1237. git clone https://github.com/ustayready/CredSniper.git
  1238. cd CredSniper/
  1239. read -p "Just Hit Enter Until All Dependencies Are Installed"
  1240. cd /opt/Phishing/
  1241. echo ""
  1242. echo "Cloning Phishing Pretexts"
  1243. echo ""
  1244. sleep 2
  1245. git clone https://github.com/L4bF0x/PhishingPretexts.git
  1246. echo ""
  1247. echo "Cloning Persistence Resources"
  1248. cd /opt/Windows_OS
  1249. mkdir Persistence
  1250. cd Persistence/
  1251. git clone https://github.com/0xthirteen/SharpStay.git
  1252. git clone https://github.com/fireeye/SharPersist.git
  1253. git clone https://github.com/outflanknl/SharpHide.git
  1254. git clone https://github.com/Ben0xA/DoUCMe.git
  1255. git clone https://github.com/nccgroup/ABPTTS.git
  1256. git clone https://github.com/blackarrowsec/pivotnacci.git
  1257. git clone https://github.com/sensepost/reGeorg.git
  1258. git clone https://github.com/HarmJ0y/DAMP.git
  1259. git clone https://github.com/0x09AL/IIS-Raid.git
  1260. git clone https://github.com/antonioCoco/SharPyShell.git
  1261. echo ""
  1262. echo "Cloning Lateral Movement Resources"
  1263. echo ""
  1264. echo ""
  1265. cd /opt/Lateral_Movement/
  1266. echo ""
  1267. echo "Installing Responder"
  1268. echo ""
  1269. sleep 2
  1270. git clone https://github.com/lgandx/Responder.git
  1271. echo ""
  1272. echo "Installing MITM6"
  1273. echo ""
  1274. sleep 2
  1275. git clone https://github.com/dirkjanm/mitm6.git
  1276. cd mitm6/
  1277. pip3 install -r requirements.txt
  1278. python3 setup.py install
  1279. cd /opt/Lateral_Movement/
  1280. echo ""
  1281. echo "Installing Impacket"
  1282. echo ""
  1283. sleep 2
  1284. git clone https://github.com/SecureAuthCorp/impacket.git
  1285. cd impacket/
  1286. python3 setup.py install
  1287. echo ""
  1288. sleep 2
  1289. cd /opt/Lateral_Movement/
  1290. echo "Cloning CrackMapExec"
  1291. git clone https://github.com/byt3bl33d3r/CrackMapExec.git
  1292. cd CrackMapExec/
  1293. echo "Cloning Windows Lateral Movement Resources"
  1294. echo ""
  1295. sleep 2
  1296. cd /opt/Windows_OS/
  1297. mkdir Lateral_Movement
  1298. cd Lateral_Movement/
  1299. git clone https://github.com/nettitude/SharpWSUS
  1300. git clone https://github.com/RiccardoAncarani/LiquidSnake.git
  1301. git clone https://github.com/NetSPI/PowerUpSQL.git
  1302. git clone https://github.com/0xthirteen/SharpRDP.git
  1303. git clone https://github.com/0xthirteen/MoveKit.git
  1304. git clone https://github.com/juliourena/SharpNoPSExec.git
  1305. git clone https://github.com/mdsecactivebreach/Farmer.git
  1306. git clone https://github.com/FortyNorthSecurity/CIMplant.git
  1307. git clone https://github.com/Mr-Un1k0d3r/PowerLessShell.git
  1308. git clone https://github.com/FSecureLABS/SharpGPOAbuse.git
  1309. git clone https://github.com/ropnop/kerbrute.git
  1310. git clone https://github.com/blackarrowsec/mssqlproxy.git
  1311. git clone https://github.com/Kevin-Robertson/Invoke-TheHash.git
  1312. git clone https://github.com/Kevin-Robertson/InveighZero.git
  1313. git clone https://github.com/jnqpblc/SharpSpray/git
  1314. git clone https://github.com/pkb1s/SharpAllowedToAct.git
  1315. git clone https://github.com/bohops/SharpRDPHijack.git
  1316. git clone https://github.com/klezVirus/CheeseTools.git
  1317. git clone https://github.com/PowerShellMafia/PowerSploit.git
  1318. git clone https://github.com/DanMcInerney/icebreaker.git
  1319. git clone https://github.com/JavelinNetworks/HoneypotBuster.git
  1320. echo ""
  1321. echo "Cloning Exfiltration Resources"
  1322. echo ""
  1323. sleep 2
  1324. cd /opt/Windows_OS/
  1325. mkdir Exfiltration
  1326. cd Exfiltration/
  1327. echo ""
  1328. sleep 2
  1329. git clone https://github.com/Flangvik/SharpExfiltrate.git
  1330. git clone https://github.com/Arno0x/DNSExfiltrator.git
  1331. git clone https://github.com/FortyNorthSecurity/Egress-Assess.git
  1332. echo ""
  1333. echo "Cloning Cloud Resources"
  1334. echo ""
  1335. sleep 2
  1336. cd /opt/Cloud
  1337. echo ""
  1338. mkdir AWS
  1339. cd AWS/
  1340. echo "Installing AWS Resources"
  1341. echo ""
  1342. sleep 2
  1343. echo ""
  1344. echo "Installing Pacu"
  1345. echo ""
  1346. sleep 2
  1347. git clone https://github.com/RhinoSecurityLabs/pacu.git
  1348. cd pacu/
  1349. bash install.sh
  1350. echo ""
  1351. cd /opt/Cloud/AWS/
  1352. echo "Installing CloudMapper"
  1353. echo ""
  1354. sleep 2
  1355. git clone https://github.com/duo-labs/cloudmapper.git
  1356. pip3 install -r requirements.txt
  1357. echo ""
  1358. echo "Installing Enumerate-IAM"
  1359. echo ""
  1360. sleep 2
  1361. cd /opt/Cloud/AWS/
  1362. git clone https://github.com/andresriancho/enumerate-iam.git
  1363. cd enumerate-iam/
  1364. pip3 install -r requirements.txt
  1365. echo ""
  1366. cd /opt/Cloud/AWS/
  1367. echo "Installing AWSBucketDump"
  1368. echo ""
  1369. sleep 2
  1370. git clone https://github.com/jordanpotti/AWSBucketDump.git
  1371. cd AWSBucketDump/
  1372. pip3 install -r requirements.txt
  1373. cd /opt/Cloud/
  1374. mkdir Azure
  1375. cd Azure
  1376. echo "Installing Azure Resources"
  1377. echo ""
  1378. echo "Installing ADConnectDump"
  1379. echo ""
  1380. sleep 2
  1381. git clone https://github.com/fox-it/adconnectdump.git
  1382. echo ""
  1383. cd /opt/Cloud/Azure/
  1384. echo ""
  1385. echo "Installing Stormspotter"
  1386. echo ""
  1387. sleep 2
  1388. git clone https://github.com/Azure/Stormspotter.git
  1389. cd /opt/Cloud/Azure/
  1390. echo ""
  1391. echo "Installing ROADtools"
  1392. echo ""
  1393. sleep 2
  1394. git clone https://github.com/dirkjanm/ROADtools.git
  1395. cd ROADtools/
  1396. pip install -e roadlib/
  1397. pip install -e roadrecon/
  1398. cd roadrecon/frontend/
  1399. npm install
  1400. npm audit fix
  1401. echo ""
  1402. echo "Installing MicroBurst"
  1403. echo ""
  1404. sleep 2
  1405. cd /opt/Cloud/Azure/
  1406. git clone https://github.com/NetSPI/MicroBurst.git
  1407. echo ""
  1408. echo "Installing AADInternals"
  1409. echo ""
  1410. sleep 2
  1411. cd /opt/Windows_OS/
  1412. mkdir Cloud
  1413. cd Cloud
  1414. mkdir Azure
  1415. cd Azure
  1416. git clone https://github.com/Gerenios/AADInternals.git
  1417. echo ""
  1418. echo "Cloning Hak5 Implant Resources"
  1419. echo ""
  1420. cd /opt/Hak5_Implants
  1421. echo ""
  1422. git clone https://github.com/hak5/omg-payloads.git
  1423. git clone https://github.com/hak5/bashbunny-payloads.git
  1424. git clone https://github.com/hak5/usbrubberducky-payloads.git
  1425. git clone https://github.com/hak5/pineapple-community-packages.git
  1426. git clone https://github.com/hak5/pineapple-modules.git
  1427. git clone https://github.com/hak5/mk7-docs.git
  1428. git clone https://github.com/hak5/keycroc-payloads.git
  1429. git clone https://github.com/hak5/sharkjack-payloads.git
  1430. git clone https://github.com/hak5/lanturtle-modules.git
  1431. git clone https://github.com/hak5/hak5-docs.git
  1432. git clone https://github.com/hak5/packetsquirrel-payloads.git
  1433. git clone https://github.com/hak5/nano-tetra-modules.git
  1434. git clone https://github.com/hak5/signalowl-payloads.git
  1435. git clone https://github.com/hak5/plunderbug-scripts.git
  1436. echo ""
  1437. echo "Cloning Wireless Resources"
  1438. echo ""
  1439. cd /opt/Wireless/
  1440. echo ""
  1441. echo "Installing BeRateAP"
  1442. echo ""
  1443. sleep 2
  1444. git clone https://github.com/sensepost/berate_ap
  1445. echo ""
  1446. cd /opt/Wireless/
  1447. echo "Installing EvilTwin Capitive Portal"
  1448. echo ""
  1449. sleep 2
  1450. git clone https://github.com/athanstan/EvilTwin_AP_CaptivePortal.git
  1451. echo ""
  1452. cd /opt/Wireless/
  1453. echo "Installing Fluxion"
  1454. echo ""
  1455. sleep 2
  1456. git clone https://www.github.com/FluxionNetwork/fluxion.git
  1457. echo ""
  1458. echo "Installing Bettercap"
  1459. echo ""
  1460. sleep 2
  1461. git clone https://github.com/bettercap/bettercap
  1462. cd bettercap/
  1463. bash build.sh
  1464. echo ""
  1465. echo "Installing Airgeddon"
  1466. echo ""
  1467. sleep 2
  1468. git clone https://github.com/v1s1t0r1sh3r3/airgeddon.git
  1469. echo ""
  1470. cd /opt/Wireless/
  1471. echo "Installing HCXTools"
  1472. echo ""
  1473. sleep 2
  1474. git clone https://github.com/ZerBea/hcxtools
  1475. cd hcxtools/
  1476. make && make install
  1477. echo "Installing HCX Dump Tool"
  1478. cd /opt/Wireless/
  1479. git clone https://github.com/ZerBea/hcxdumptool
  1480. cd hcxdumptool/
  1481. make && make install
  1482. cd /opt/Wireless/
  1483. echo "Installing Bully"
  1484. echo ""
  1485. sleep 2
  1486. git clone https://github.com/aanarchyy/bully
  1487. cd bully/src
  1488. make && make install
  1489. cd /opt/Wireless/
  1490. echo "Installing EapHammer"
  1491. echo ""
  1492. sleep 2
  1493. git clone https://github.com/s0lst1c3/eaphammer.git
  1494. cd eaphammer/
  1495. ./kali-setup
  1496. cd /opt/Wireless
  1497. mkdir Wireless_Drivers
  1498. cd Wireless_Drivers/
  1499. apt install dkms -y
  1500. git clone https://github.com/aircrack-ng/rtl8812au
  1501. cd rtl8812au/
  1502. make && make install
  1503. cd /opt/Virtual_Machines
  1504. echo "Installing VirtualBox"
  1505. echo ""
  1506. sleep 3
  1507. apt-get update -y && apt-get upgrade -y
  1508. apt --fix-broken install -y
  1509. wget https://download.virtualbox.org/virtualbox/6.1.34/Oracle_VM_VirtualBox_Extension_Pack-6.1.34.vbox-extpack
  1510. wget https://download.virtualbox.org/virtualbox/6.1.34/virtualbox-6.1_6.1.34-150636.1~Ubuntu~eoan_amd64.deb
  1511. dpkg --install virtualbox-6.1_6.1.34-150636.1~Ubuntu~eoan_amd64.deb
  1512. echo""
  1513. echo "Downloading Kali VM"
  1514. echo ""
  1515. wget https://kali.download/virtual-images/kali-2022.1/kali-linux-2022.1-virtualbox-amd64.ova
  1516. echo ""
  1517. echo "Downloading Windows Ops Box"
  1518. echo ""
  1519. sleep 2
  1520. wget https://az792536.vo.msecnd.net/vms/VMBuild_20190311/VirtualBox/MSEdge/MSEdge.Win10.VirtualBox.zip
  1521. echo ""
  1522. sleep 2
  1523. echo ""
  1524. apt --fix-broken install -y
  1525. read -p "Press Enter To Reboot Your New C2 Box"
  1526. reboot now